Encyclopedia

Panda Global Protection 2010

Panda Global Protection 2011

Enjoy total security and ensure information integrity.

Banbra.GRW

 
Threat LevelModerate threatDamageHighDistributionNot widespread
Common name:Banbra.GRW
Technical name:Trj/Banbra.GRW
Threat level:Low
Type:Trojan
Effects:  

It is designed to steal users' banking details belonging to certain Brazilian banking entities. It reaches the computer in a file with the typical icon of the Internet Explorer browser.

Affected platforms:

Windows 2003/XP/2000/NT/ME/98/95

First detected on:May 3, 2010
Detection updated on:June 2, 2010
StatisticsNo
Yes, using TruPrevent Technologies

Brief Description 

    

Banbra.GRW is a Trojan designed to steal users' banking details belonging to a certain Brazilian banking entities. In order to do so, when users access the website belonging to certain banking entities, that website is opened in a browser specially designed by the Trojan with malicious intention.

The website it displays is identical in appearance to the original one and in the address bar the page is the same as the original. However, it is a copy of the real website. If users enter their bank data in that website, it will fall into the hands of the creator of the Trojan.

Banbra.GRW reaches the computer in a file with the Internet Explorer icon. It does not spread automatically using its own means. It needs an attacking user's intervention in order to reach the affected computer.

Visible Symptoms 

    

Banbra.GRW is difficult to recognize, as it does not display messages or warnings that indicate it has reached the computer.

Curiously, if the version of the browser is not in Portuguese, the users who access the affected websites will see that the language of the browser has changed and it is now in Portuguese, as can be seen in the following images:

Webiste of the bank displayed by Banbra.GRW

And more detailed:

Language of the browser in Portuguese

Last updated:  02/06/2010 

Thanks to Collective Intelligence, Panda's exclusive cloud-computing technology, the company's 2010 solutions leverage the knowledge gathered from the community of millions of Panda users around the world. Each new file received is automatically classified within six minutes and the Collective Intelligence servers classify more than 50,000 new malware samples every day. These technologies correlate information on malware received from each computer to continuously improve the protection level for the worldwide community of users. Panda's 2010 solutions have continuous, real-time contact with this vast knowledge base allowing the company to offer users the fastest response against the new malware that appears every day.

News

Help your friends against viruses: share, save and subscribe to our security content. Thank you.

Share/Bookmark