Bird_banner_small4
Trojan-Dropper.Java.Agent.e
TSL ID TSL20110524-04
Severity Moderate
Description

Trojan-Dropper.Java.Agent.e is a banking Trojan that targets Windows systems having Java Runtime Environment installed. This malware may operate on 32-bit and 64-bit platforms. The malware drops multiple files on the infected computer and changes certificate settings for the Firefox Web browser. It may also steal information related to certain Brazilian banking websites.

Affected Products
  • Microsoft Windows All Versions
File Hashes
MD5:
  • D0C4BD6F5521804C345952E615AA633B
SHA1:
  • 8780645AEACF2CBA20AD51681918FB91B579E6C9
Identifiers
Kaspersky
  • ROOTKIT.WIN32.BANKER.DY
  • ROOTKIT.WIN64.BANKER.A
  • TROJAN-DROPPER.JAVA.AGENT.E
Symantec
  • TROJAN.MALJAVA
Avast
  • WIN32:BANKER-HIX
DrWeb
  • TROJAN.PWS.BANKER.55837
ESET
  • JAVA/SPY.BANKER.AA
References http://www.securelist.com/en/blog/11266/Rootkit_Banker_now_also_to_64_bit
http://www.symantec.com/business/security_response/writeup.jsp?docid=2011-052405-0550-99
Related Threats