Discovered: October 14, 2003
Updated: April 21, 2006 4:16:09 PM
Type: Trojan
Systems Affected: Windows 98, Windows 95, Windows XP, Windows Me, Windows NT, Windows 2000
Infostealer.Banpaes is a Trojan horse program that searches for certain strings in Internet Explorer windows and logs keystrokes in those windows.
Notes:- Definitions prior to May 10, 2006 may detect this threat as PWSteal.Banpaes.
- Definitions between October 17, 2006 and October 20, 2006 may detect %System%\sfc.dll as Infostealer.Banpaes. For detailed removal information, please read the document, Symantec AntiVirus detects Sfc.dll as Infostealer.Banpaes.
Protection
-
Initial Rapid Release version October 14, 2003
-
Latest Rapid Release version July 1, 2009 revision 050
-
Initial Daily Certified version October 14, 2003
-
Latest Daily Certified version July 1, 2009 revision 048
-
Initial Weekly Certified release date April 26, 2006
Click for a more detailed description of Rapid Release and Daily Certified virus definitions.
Threat Assessment
Wild
-
Wild Level: Low
-
Number of Infections: 0 - 49
-
Number of Sites: 0 - 2
-
Geographical Distribution: Low
-
Threat Containment: Easy
-
Removal: Moderate
Damage
-
Damage Level: Low
-
Releases Confidential Info: Logs keystrokes related to online banking sites and sends them to a predetermined address.
Distribution
Writeup By: Kaoru Hayashi