Categories: SpyTrojan

What is “TrojanSpy:AndroidOS/Banker!rfn”?

The TrojanSpy:AndroidOS/Banker!rfn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanSpy:AndroidOS/Banker!rfn virus can do?

    Related domains:

    z.whorecord.xyz
    a.tomx.xyz

    How to determine TrojanSpy:AndroidOS/Banker!rfn?

    
    

    File Info:

    crc32: 0C28B266md5: 87fa4403bc62aefbe1fd5bedd5a165baname: upload_filesha1: cf40820cab6418e3a1fd341cc64d6f0f81544b78sha256: 53c9d185f75515b2a78d7351d4b03b0c12b19c3ff0350a9c3fb44e8c88a709d3sha512: 27f62829af2e7ff535b5c1d1048dc0176aa1b9ba7442668a155c058e24604bf51bba6d5f1be874f9de666dee12e2cab2beb24f7c8297de21b43708b44f93d0d0ssdeep: 6144:jZaEmpT/cjsWodaxmyavmogbNuWbDKRJhV15rg3jT9eToCBHbVXPHMwZpy1s:gZgod6APgboWy3h1rg3deTpFPjZpyGtype: Java Jar file data (zip)

    Version Info:

    0: [No Data]

    TrojanSpy:AndroidOS/Banker!rfn also known as:

    MicroWorld-eScan Trojan.GenericKD.34404296
    FireEye Trojan.GenericKD.34404296
    CAT-QuickHeal Android.Agent.Ad58
    AegisLab Trojan.AndroidOS.Agent.C!c
    Trustlook Android.PUA.DebugKey
    BitDefender Trojan.GenericKD.34404296
    K7GW Trojan ( 0055ad531 )
    SymantecMobileInsight Other:Android.Reputation.1
    Symantec Trojan.Gen.MBT
    Kaspersky HEUR:Trojan-Banker.AndroidOS.Agent.eq
    Alibaba TrojanBanker:Android/Agent.c10052ac
    Ad-Aware Trojan.GenericKD.34404296
    F-Secure Malware.ANDROID/Banker.FGUW.Gen
    DrWeb Android.Banker.397.origin
    Invincea Andr/Xgen2-UH
    Sophos Andr/Xgen2-UH
    GData Trojan.GenericKD.34404296
    Avira ANDROID/Banker.FGUW.Gen
    Microsoft TrojanSpy:AndroidOS/Banker!rfn
    Arcabit Trojan.Generic.D20CF7C8
    ZoneAlarm HEUR:Trojan-Banker.AndroidOS.Agent.eq
    Avast-Mobile Android:Evo-gen [Trj]
    Cynet Malicious (score: 85)
    AhnLab-V3 Dropper/Android.PhishingApp.983417
    McAfee Artemis!87FA4403BC62
    Zoner Trojan.Android.Gen.5709131
    ESET-NOD32 a variant of Android/TrojanDropper.Agent.DNM
    Tencent a.privacy.emial.d
    Ikarus Trojan-Dropper.AndroidOS.Agent
    Fortinet Android/Agent.FGK!tr
    Qihoo-360 Trojan.Android.Gen

    How to remove TrojanSpy:AndroidOS/Banker!rfn?

    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.
    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Recent Posts

    MSIL/GenKryptik.GXIZ information

    The MSIL/GenKryptik.GXIZ is considered dangerous by lots of security experts. When this infection is active,…

    1 month ago

    Malware.AI.2789448175 (file analysis)

    The Malware.AI.2789448175 is considered dangerous by lots of security experts. When this infection is active,…

    1 month ago

    Jalapeno.1878 removal instruction

    The Jalapeno.1878 is considered dangerous by lots of security experts. When this infection is active,…

    1 month ago

    What is “Trojan.Heur3.LPT.YmKfaKBcBekib”?

    The Trojan.Heur3.LPT.YmKfaKBcBekib is considered dangerous by lots of security experts. When this infection is active,…

    1 month ago

    How to remove “Worm.Win32.Vobfus.exmt”?

    The Worm.Win32.Vobfus.exmt is considered dangerous by lots of security experts. When this infection is active,…

    1 month ago

    About “TrojanDownloader:Win32/Beebone.JO” infection

    The TrojanDownloader:Win32/Beebone.JO is considered dangerous by lots of security experts. When this infection is active,…

    1 month ago