Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 21:08:00 UTC Home > List all groups > List all tools > List all groups using tool Banjori Tool: Banjori Names Banjori BankPatch BackPatcher MultiBanker 2 Category Malware Type Banking trojan, Backdoor, Info stealer, Credential stealer, Botnet Description (johannesbader) This post analyses the domain generation algorithm (DGA) of the banking trojan Banjori, also known as MultiBanker 2 or BankPatch/BackPatcher. The DGA was active mostly between April and November of 2013 (at least thats when I found most seeds). Information Malpedia AlienVault OTX Last change to this tool card: 24 May 2020 Download this tool card in JSON format All groups using tool Banjori Changed Name Country Observed Unknown groups _[ Interesting malware not linked to an actor yet ]_ 1 group listed (0 APT, 0 other, 1 unknown) https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=294d088c-ca14-443c-b714-46a6fc485726 Page 1 of 2 Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=294d088c-ca14-443c-b714-46a6fc485726 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=294d088c-ca14-443c-b714-46a6fc485726 Page 2 of 2 Unknown groups _[ Interesting malware not linked to an actor yet ]_ 1 group listed (0 APT, 0 other, 1 unknown) Page 1 of 2