You're in: Panda Security > Home Users > security-info > about-malware > encyclopedia > overview
Active Scan. Scan your PC free
Panda Security Product Line 2012

Virus Encyclopedia

Welcome to the Virus Encyclopedia of Panda Security.

Encyclopedia GetVirusCard True 0

Sinowal.CR

 
Threat LevelHigh threatDamageSevereDistributionNot widespread
Common name:Sinowal.CR
Technical name:Trj/Sinowal.CR
Threat level:Medium
Alias:Trojan-PSW.Win32.Sinowal.m
Type:Trojan
Effects:  

It harvests passwords and other data stored by Protected Storage or certain email clients, and obtains other data such as the IP address or geographic area of the affected computer. Then, it publishes the gathered information in certain servers.

Affected platforms:

Windows 2003/XP/2000/NT/ME/98/95

First detected on:Oct. 16, 2006
Detection updated on:Oct. 16, 2006
StatisticsNo
Yes, using TruPrevent Technologies

Brief Description 

    

Sinowal.CR is a Trojan that harvests information from the affected computer, such as passwords and other data stored in Protected Storage, as well as in the email clients Ak-Mail, Eudora and The Bat, among others.

Additionally, it obtains other information such as IP address, name, geographic area, opened ports, etc.

Then, it publishes the gathered data in certain servers.

Sinowal.CR does not spread automatically using its own means. It needs an attacking user's intervention in order to reach the affected computer. The means of transmission used include, among others, floppy disks, CD-ROMs, email messages with attached files, Internet downloads, FTP, IRC channels, peer-to-peer (P2P) file sharing networks, etc.

Visible Symptoms 

    

Sinowal.CR is difficult to recognize, as it does not display any messages or warnings that indicate it has reached the computer.