Malware

BankerX-gen [Trj] information

Malware Removal

The BankerX-gen [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BankerX-gen [Trj] virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality

How to determine BankerX-gen [Trj]?


File Info:

name: 1B9285A90E0A4117087E.mlw
path: /opt/CAPEv2/storage/binaries/66fd6c10d6bad1ca49f6b083aa03e14b1f0694d90a1c14020f33437dfa4b20b5
crc32: 6EF87ED8
md5: 1b9285a90e0a4117087e34bea377622a
sha1: 6554354ab24b1df7bd209d240aff88db60ecace0
sha256: 66fd6c10d6bad1ca49f6b083aa03e14b1f0694d90a1c14020f33437dfa4b20b5
sha512: 09aafac5bfda601ba3857d6d46b31775d04b6cf38ecfc8ab24c2a7a0f7c608e0ca52e96ebd7cd4e5389073250363683bbb9665d51b2a60f8abea75708a7a19f4
ssdeep: 24576:30aWgWHZscZqsBA9tDm2azuavCH9lBsSuk2DxbByXdYfLcd:3JMFZiIKlySukXaW
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1818539137259257FC45B963A09B38A55CB3F666175838C176AF03C0CEF752823E3A68B
sha3_384: 55f9d8829faf8521168c749d20cedded0b4d33e73328001d37bcd2b9aab5d3ec819f536d6b31b372132e4beca650b23f
ep_bytes: 558bec83c4ec33c08945eca140fa5700
timestamp: 2018-01-22 07:06:38

Version Info:

CompanyName: NVIDIA
FileDescription: NVIDIA Container
FileVersion: 1.2.0.0
LegalCopyright: (C) 2016 NVIDIA Corporation. All rights reserved.
OriginalFilename: NvContainer.exe
ProgramID: NVIDIA Container
ProductName: NVIDIA Container
ProductVersion: 1.2.0.0
Translation: 0x0409 0x04e4

BankerX-gen [Trj] also known as:

CynetMalicious (score: 100)
FireEyeGeneric.mg.1b9285a90e0a4117
McAfeeGenericRXDW-LQ!1B9285A90E0A
ZillyaTrojan.ClipBanker.Win32.495
K7AntiVirusTrojan ( 00523f661 )
K7GWTrojan ( 00523f661 )
Cybereasonmalicious.90e0a4
BitDefenderThetaGen:NN.ZelphiF.34646.RP2@aaWFi5ki
VirITTrojan.Win32.ClipSpy.Z
SymantecInfostealer
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/ClipBanker.CF
ClamAVWin.Malware.Sneaky-9958137-0
KasperskyHEUR:Trojan-Banker.Win32.ClipBanker.gen
BitDefenderGen:Heur.Mint.SP.Sneaky.1
NANO-AntivirusTrojan.Win32.ClipBanker.exlgjp
MicroWorld-eScanGen:Heur.Mint.SP.Sneaky.1
TencentMalware.Win32.Gencirc.10c891d8
Ad-AwareGen:Heur.Mint.SP.Sneaky.1
EmsisoftGen:Heur.Mint.SP.Sneaky.1 (B)
F-SecureTrojan.TR/ClipBanker.qkbpu
DrWebTrojan.ClipSpy.25
VIPREGen:Heur.Mint.SP.Sneaky.1
McAfee-GW-EditionBehavesLike.Win32.Infected.th
Trapminesuspicious.low.ml.score
SophosTroj/Agent-AYLK
IkarusTrojan.Win32.Clipbanker
GDataGen:Heur.Mint.SP.Sneaky.1
JiangminTrojan.Banker.Agent.agc
WebrootW32.Trojan.Gen
AviraTR/ClipBanker.qkbpu
MAXmalware (ai score=82)
Antiy-AVLTrojan/Generic.ASMalwS.3C54
ArcabitTrojan.Mint.SP.Sneaky.1
ZoneAlarmHEUR:Trojan-Banker.Win32.ClipBanker.gen
MicrosoftTrojan:Win32/CryptoJacker.A
GoogleDetected
AhnLab-V3Trojan/Win32.Banker.R222073
VBA32TScope.Trojan.Delf
ALYacGen:Heur.Mint.SP.Sneaky.1
MalwarebytesMalware.AI.527249285
AvastBankerX-gen [Trj]
RisingTrojan.ClipBanker!8.5FB (TFE:4:FnKG3yiVjXE)
YandexTrojan.GenAsa!MMqWW1d/ktI
MaxSecureTrojan.Malware.300983.susgen
AVGBankerX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_60% (D)

How to remove BankerX-gen [Trj]?

BankerX-gen [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment