![]() |
![]() | Win.Trojan.Bancos-2115 false positives | ![]() |
![]() |
![]() | ![]() |
GuitarBob
![]() |
![]() |
You should report all false positives to Clam AV at their web site. ClamWin uses the Clam AV scan engine/signatures, so it can do nothing about false positives.
Regards, |
|||||||||||
|
![]() |
![]() | win.trojan.bancos-2115 | ![]() |
whizzo666
![]() |
![]() |
I have just downloaded v 0.99, database version 55 : 21363
This is what I got. Any helpful ideas as to what is wrong / what I should do. Thanks aLAN Scan Started Fri Feb 12 19:03:47 2016 ------------------------------------------------------------------------------- C:\Documents and Settings\Administrator\Application Data\Adobe\Shockwave Player 12\xtras\download\AdobeSystemsIncorporated\FlashAsset\Flash Asset.x32: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Application Data\Adobe\Shockwave Player 12\xtras\download\AdobeSystemsIncorporated\TextXtra\TextXtra.x32: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Application Data\GeoSetter\tools\exiftool.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\extensions\{b97ed18c-1a8a-4acc-884f-b4fe7415adf2}\components\RadioWMPCoreGecko19.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Application Data\Sun\Java\jre1.6.0_10\Data1.cab: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Application Data\Sun\Java\jre1.6.0_18\Data1.cab: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Application Data\Sun\Java\jre1.6.0_22\Data1.cab: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Application Data\Sun\Java\jre1.6.0_22\jre1.6.0_22.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Application Data\Virgin Media\Service Manager\downloads\UiEventReporter-Silent.18467.zip.dir\resources\UiEventReporter.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Apple\Apple Software Update\Bonjour.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\assembly\dl3\CX843W7E.MEM\D1RT5CQD.Q53\09bb2970\006c2358_7b81ce01\AddinExpress.OL.2005.DLL: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Downloaded Installations\{43A9A470-1180-4B5A-8ECD-B3A3280BEBEE}\ASUS Sync.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Dropbox\Update\1.3.27.33\DropboxCrashHandler.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Dropbox\Update\1.3.27.33\DropboxUpdate.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Dropbox\Update\1.3.27.33\DropboxUpdateBroker.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Dropbox\Update\1.3.27.33\DropboxUpdateOnDemand.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Dropbox\Update\1.3.27.33\goopdate.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Dropbox\Update\1.3.27.33\npDropboxUpdate3.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Dropbox\Update\1.3.27.33\psmachine.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Dropbox\Update\1.3.27.33\psuser.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Dropbox\Update\Download\{CC46080E-4C33-4981-859A-BBA2F780F31E}\3.10.11\DropboxClient_3.10.11.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Dropbox\Update\Download\{D8968FF2-E0B1-4A13-A3E2-C9F2995F3BC6}\1.3.27.33\DropboxUpdateSetup_1.3.27.33.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Dropbox\Update\DropboxUpdate.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\PepperFlash\20.0.0.286\pepflashplayer.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libGLESv2.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\SwReporter\5.39.1\software_reporter_tool.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\WidevineCDM\1.4.8.866\_platform_specific\win_x86\widevinecdm.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\WidevineCDM\1.4.8.866\_platform_specific\win_x86\widevinecdmadapter.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\join.me\jmlaunchermgr.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\join.me\LMIFilterHook32-Clone000.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\join.me\LMIFilterHook32.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\join.me\LMIGuardianDll.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\join.me\LMIInputHook32.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\join.me\lmiscrhook32-Clone000.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\join.me\lmiscrhook32.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\join.me\LMISupportM32.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\join.me\MediaClientLib.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\WinZip\WzProdAdv.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Application Data\{144B42D3-144F-466A-BA16-79245A51069E}\Splashtop Streamer.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Temp\AvgSetup_2cd25579-8334-42dd-901a-6c98f5133bca\install\avgsetupuix.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Temp\AvgSetup_2cd25579-8334-42dd-901a-6c98f5133bca\install\libcef.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Temp\DEL1B.tmp: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\Local Settings\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpxrgfxb.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\hp deskjet 3500.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\instmsia.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\instmsiw.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\Overland.cab: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\appshell.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\docshell.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\editor.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\gkcontent.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\gkgfxwin.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\gklayout.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\gkparser.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\gkview.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\gkwidget.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\jsdom.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\necko.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\rdf.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\uconv.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\ucvibm.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\ucvlatin.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\components\xpc3250.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\gkgfx.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\hpvcp60.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\js3250.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\nspr4.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\xerces-c_1_3.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\program files\Hewlett-Packard\hp deskjet assistant\bin\xpcom.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\system32\Redist\MS\System\asycfilt.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\system32\Redist\MS\System\mfc42.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\system32\Redist\MS\System\msvcp60.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\system32\Redist\MS\System\oleaut32.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\system32\Redist\MS\System\olepro32.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\0900a5a28032f862\3500\tls704d.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\AdobeDownloadAssistant (1).exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\AdobeDownloadAssistant.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\Adobe_Air_v20.0.0.233.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\ALBUMPLUS1033_5.0.5.024_Patch (1).exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\ALBUMPLUS1033_5.0.5.024_Patch.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\ALBUMPLUS1033_6.0.3.018_Patch-Setup.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Administrator\My Documents\Downloads\AmazonMP3DownloaderInstall.exe: Win.Trojan.Bancos-2115 FOUND ![]() ![]() ![]() |
|||||||||||
|
![]() |
![]() | ![]() |
jimimaseye
![]() |
![]() |
21363 update stopped the problem for me (or so I thought).
Read here: https://forums.clamwin.com/viewtopic.php?p=18970#18970 |
|||||||||||
|
![]() |
![]() | Same here... 3,790 "Infected files" just today. | ![]() |
mc4bbs
![]() |
![]() |
Scan Started Sat Feb 13 00:01:00 2016
------------------------------------------------------------------------------- *** Scanning Programs in Computer Memory *** *** Memory Scan: using ToolHelp *** C:\WINDOWS\system32\vrlogon.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ThinkPad\ConnectUtilities\AcCryptHlpr.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\MSVCP71.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\MSVCR71.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ThinkVantage Fingerprint Software\homefus2.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ThinkVantage Fingerprint Software\infql2.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ThinkVantage Fingerprint Software\homepass.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ThinkVantage Fingerprint Software\bio.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ThinkVantage Fingerprint Software\qlbase.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ThinkPad\ConnectUtilities\ACON.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\SpeedBit Video Accelerator\SBLSP.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Intel\WiFi\bin\IntStngs.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Common Files\Intel\WirelessCommon\PsRegApi.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Common Files\Intel\WirelessCommon\TraceApi.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Intel\WiFi\bin\KmmdlPlugins\SupplicantPlugin.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Intel\WiFi\bin\supplicant.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe: Win.Trojan.Bancos-2115 FOUND Unloading program C:\Program Files\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe from memory C:\WINDOWS\system32\WidcommSdk.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\wbtapi.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Lenovo\AwayTask\AwayDB.DLL: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\MFC71U.DLL: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\athcfg20ResU.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\wsfwDS.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\wsimd.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\DSA.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Intel\WiFi\bin\PfMgrApi.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Intel\WiFi\bin\MurocAPI.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Bonjour\mDNSResponder.exe: Win.Trojan.Bancos-2115 FOUND Unloading program C:\Program Files\Bonjour\mDNSResponder.exe from memory C:\Program Files\Intel\WiFi\bin\AmtWsMan.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Intel\WiFi\bin\PfQOSMgr.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\4b0455ae94e3cecca4bb3ba8c96828c9\System.ni.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\8cd995f00848816e3ec49dc326e3d49b\System.ServiceProcess.ni.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\WindowsBase\872e96c13f44bfaeff84d126fb847963\WindowsBase.ni.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationCore\89c032d0f8bccf31bb55b775a10c6992\PresentationCore.ni.dll: Win.Trojan.Bancos-2115 FOUND C:\PROGRA~1\COMMON~1\SYMANT~1\PIF\{B8E1D~1\PollMgr.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe: Win.Trojan.Bancos-2115 FOUND Unloading program C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe from memory C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe: Excluded C:\Program Files\Malwarebytes Anti-Malware\mbamsrv.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Malwarebytes Anti-Malware\Qt5Core.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Malwarebytes Anti-Malware\MSVCP100.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\7faf645dc46781225cb722edf9e1e738\System.Xml.ni.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Management\5c157466d360a10b2c97e94b41ddc588\System.Management.ni.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Symantec\PKI Client\LUE\ccL100U.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Symantec\PKI Client\SAND-x86-1.0.0.0.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\SpeedBit Video Accelerator\CommPipe.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\SpeedBit Video Accelerator\Accelerator.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\VMware\VMware Player\vmwarebase.DLL: Win.Trojan.Bancos-2115 FOUND C:\Program Files\VMware\VMware Player\libxml2.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\VMware\VMware Player\libeay32.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Common Files\VMware\USB\vmware-usbarbitrator.exe: Win.Trojan.Bancos-2115 FOUND Unloading program C:\Program Files\Common Files\VMware\USB\vmware-usbarbitrator.exe from memory C:\WINDOWS\system32\vmnat.exe: Win.Trojan.Bancos-2115 FOUND Unloading program C:\WINDOWS\system32\vmnat.exe from memory C:\DOCUME~1\LENOVO~1\LOCALS~1\Temp\clamav-eb6d06cbb2902d913ab3370b63c42e90.00000b00.clamtmp: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ThinkPad\Utilities\PWMDBSVC.EXE: Win.Trojan.Bancos-2115 FOUND Unloading program C:\Program Files\ThinkPad\Utilities\PWMDBSVC.EXE from memory C:\Program Files\ThinkPad\Utilities\PWMEWSVC.EXE: Win.Trojan.Bancos-2115 FOUND Unloading program C:\Program Files\ThinkPad\Utilities\PWMEWSVC.EXE from memory C:\WINDOWS\system32\vmnetdhcp.exe: Win.Trojan.Bancos-2115 FOUND Unloading program C:\WINDOWS\system32\vmnetdhcp.exe from memory C:\Program Files\Malwarebytes Anti-Malware\mbam.exe: Win.Trojan.Bancos-2115 FOUND Unloading program C:\Program Files\Malwarebytes Anti-Malware\mbam.exe from memory C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_a4c618fa\ATL80.DLL: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\WinSCP\DragExt.dll: Win.Trojan.Bancos-2115 FOUND C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRTR.DLL: Win.Trojan.Bancos-2115 FOUND C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRIF.DLL: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll: Win.Trojan.Bancos-2115 FOUND C:\PROGRA~1\COMMON~1\SYMANT~1\PIF\{B8E1D~1\AlertUi.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\ltdis12n.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LTKRN12n.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\ltfil12n.dll: Win.Trojan.Bancos-2115 FOUND C:\PROGRA~1\THINKV~2\PrdCtr\LIBEAY32.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\lvmaenum.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Logitech\Video\QCUI2.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Logitech\Video\LTWVC12n.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\MFC71.DLL: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Logitech\Video\LTKRN12n.dll: Win.Trojan.Bancos-2115 FOUND C:\PROGRA~1\ThinkPad\UTILIT~1\PWMUICtl.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\424bff3295c6e7539cc6df62b9425bd0\System.Drawing.ni.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\508d144b1e81e6642be4fea8799fb424\PresentationFramework.Luna.ni.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ThinkPad\Utilities\PWRMGR.DLL: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ClamWin\bin\python23.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ClamWin\lib\_sre.pyd: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ClamWin\lib\_ssl.pyd: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ClamWin\lib\pythoncom23.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ClamWin\lib\shell.pyd: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ClamWin\lib\wxc.pyd: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ClamWin\lib\wxmsw24h.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ClamWin\lib\_bsddb.pyd: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe: Win.Trojan.Bancos-2115 FOUND Unloading program C:\Program Files\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe from memory C:\Program Files\Symantec\PKI Client\tblive-4-core-x86-4.12.1.0.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Symantec\PKI Client\Modules\5_10_1_win_x86-capi.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Symantec\PKI Client\Modules\2_9_1_win_x86-lxp.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Common Files\Java\Java Update\jusched.exe: Win.Trojan.Bancos-2115 FOUND Unloading program C:\Program Files\Common Files\Java\Java Update\jusched.exe from memory C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Update\GoogleUpdate.exe: Excluded C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Update\1.3.29.5\goopdate.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe: Win.Trojan.Bancos-2115 FOUND Unloading program C:\Program Files\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe from memory C:\WINDOWS\system32\Macromed\Flash\Flash32_16_0_0_257.ocx: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\btosif.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\btwhidcs.DLL: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\btrez.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_150c9e8b\MFC80U.DLL: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\KemWnd.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Logitech\SetPoint\Macros\MacroCore.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Logitech\SetPoint\WebBrowserSupport.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\mssph.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\btins.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\btosif_ol.dll: Win.Trojan.Bancos-2115 FOUND C:\WINDOWS\system32\btosif_notes.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Common Files\Logishrd\KHAL2\KHALUSB.DLL: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ClamWin\bin\libclamav.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\ClamWin\bin\libclamav_llvm.dll: Win.Trojan.Bancos-2115 FOUND *** Scanned 102 processes - 638 modules *** *** Computer Memory Scan Completed *** C:\ausdiskdefragportable.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Adobe\AIH.0203a3a9453fa7f358d64370b3f3695cc48afd46\downloader.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Adobe\AIH.0203a3a9453fa7f358d64370b3f3695cc48afd46\launcher.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Adobe\AIH.9b755b6152cd6513c6f59cb08498c22bd6340b52\downloader.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Adobe\AIH.9b755b6152cd6513c6f59cb08498c22bd6340b52\launcher.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Adobe\Setup\{AC76BA86-7AD7-1033-7B44-A95000000001}\AcroRead.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Adobe\Setup\{AC76BA86-7AD7-1033-7B44-AB0000000001}\AcroRead.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Apple\Installer Cache\AppleApplicationSupport 2.1.7\AppleApplicationSupport.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Apple\Installer Cache\AppleApplicationSupport 2.3\AppleApplicationSupport.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Apple\Installer Cache\Bonjour 2.0.0.34\Bonjour.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Apple\Installer Cache\Bonjour 2.0.0.34\Bonjour64.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Apple Computer\Installer Cache\QuickTime 7.73.80.64\QuickTime.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Common\rpcommon150browserrecordplugin.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Common\rpmainbrowserrecordplugin.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1363662769jtun_esid2013031601.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1363923040jtun_esid2013032101.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1364602451jtun_esid2013032801.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1365208435jtun_esid2013040401.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1365807009jtun_esid2013041101.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1366319166jtun_esid2013041801.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1366942923jtun_esid2013042501.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1367542923jtun_esid2013050101.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1368151574jtun_esid2013050801.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1368754724jtun_esid2013051501.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1369334614jtun_esid2013052201.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1369961210jtun_esid2013053001.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1370656068jtun_esid2013060601.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1371258845jtun_esid2013061301.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1371866840jtun_esid2013062001.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1372389745jtun_esid2013062701.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1372991600jtun_esid2013070201.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\1373614970jtun_esid2013071101.x09: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\SCFPolcy\9C852448.cfp: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Thomson Reuters\TRD 6\Setup\TRD_1CF445D70F5E366\TRD8.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Thomson Reuters\TRD 6\Setup\TRD_1CF445DDB8F4762\TRD8.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Thomson Reuters\TRD 6\Setup\Update Agent_1CF445D7D7F009A\TRD8_UpdateAgentAdd-On.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Thomson Reuters\TRD 6.bk\Setup\TRD_1CE5457810B657E\TRD8.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\Thomson Reuters\TRD 6.bk\Setup\Update Agent_1CE5457851D4920\TRD8_UpdateAgentAdd-On.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\UIB\{41894269-0DD1-4C85-B3DD-1EB41B07621D}\pshome.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\UIB\{6CE851D7-DD98-489A-9227-5BBE08E7064B}\pshome.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\VMware\VMware Player\Uninstaller\module_core.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\VMware\VMware Player\Uninstaller\module_ws.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\VMware\VMware Player\Uninstaller\vnetlib.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\VMware\VMware Player\Uninstaller\vnetlib.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\All Users\Application Data\VSO\VSO Downloader\4\Lang\EditLoc_online.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\Default User\Local Settings\Application Data\{3248F0A6-6813-11D6-A77B-00B0D0150060}\J2SE Runtime Environment 5.0 Update 6.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Adobe\AIR\Updater\Background\1.0\updater: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\j2 Global\eFax Messenger\updates\4.4.4 Minor Update\msgrplus.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\ieatgpc.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\npgoogletalk.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\npo1d.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\AppSharing.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\atarm.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\atasctrl.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\atasuicom.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\atgpcext.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\atnote.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\atpdmod.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\atpollk2.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\attp.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\Atwbxui14.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\libeay32.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\mcsnew.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\msvc.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\mutiltpd.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\PsImgStrm.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\uilibres.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\wbxreport.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\webexmgr.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\WebexRcd\atplayim.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1324\wseclient.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\AppSharing.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\AppSharingUI.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\atarm.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\atasctrl.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\atasuicom.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\atgpcext.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\atlchat.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\atmccli.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\atmgr.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\atnote.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\atpdmod.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\atpollk2.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\comUI.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\hybridaudio.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\mac.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\msvc.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\mutiltpd.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\PsImgStrm.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\ssleay32.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\uilibres.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\wbxaecodec.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\wbxreport.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\WCLDll.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\WCLProxy.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\webexmgr.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\WebexRcd\atplayim.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Mozilla\plugins\WebEx\1524\wseclient.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\cache\6.0\15\58fb3e0f-489dcff4: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\cache\6.0\15\58fb3e0f-489dcff4-n\msvcp71.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\cache\6.0\15\58fb3e0f-489dcff4-n\msvcr71.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\cache\6.0\21\14e5d595-22f3ca69: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\cache\6.0\21\14e5d595-22f3ca69-n\msvcp71.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\cache\6.0\21\14e5d595-22f3ca69-n\msvcr71.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\cache\6.0\33\258cea61-515183ce: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\cache\6.0\33\258cea61-515183ce-n\msvcp71.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-5707e625: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-5707e625-n\jmc.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-5707e625-n\msvcp71.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-5707e625-n\msvcr71.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\SystemCache\6.0\46\f84c6ae-62d595f2: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\SystemCache\6.0\46\f84c6ae-62d595f2-n\jmc.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\SystemCache\6.0\46\f84c6ae-62d595f2-n\msvcp71.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\SystemCache\6.0\46\f84c6ae-62d595f2-n\msvcr71.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-4d14873b: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-4d14873b-n\msvcp71.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-4d14873b-n\msvcr71.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Chromium\Application\45.0.2422.0\Installer\setup.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Chromium\Application\45.0.2422.0\Installer\uninstall.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Cisco\Cisco HostScan\bin\cscan.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Cisco\Cisco HostScan\lib\ClamWin.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Cisco\Cisco HostScan\lib\CoreUtils.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Cisco\Cisco HostScan\lib\FWManager.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Cisco\Cisco HostScan\lib\Kaspersky Labs.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Cisco\Cisco HostScan\lib\NortonAS.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Cisco\Cisco HostScan\lib\NortonAV.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Cisco\Cisco HostScan\lib\Yahoo.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.103\chrome_elf.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.103\delegate_execute.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.103\libegl.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.103\libexif.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.103\libglesv2.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.103\metro_driver.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.103\PepperFlash\pepflashplayer.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.103\widevinecdmadapter.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.109\chrome_elf.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.109\delegate_execute.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.109\libegl.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.109\libexif.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.109\libglesv2.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.109\metro_driver.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.109\PepperFlash\pepflashplayer.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\48.0.2564.109\widevinecdmadapter.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\Application\chrome.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\User Data\PepperFlash\11.8.800.170\pepflashplayer.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libGLESv2.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\User Data\Temp\scoped_dir_8125\CRX_INSTALL\npSkypeChromePlugin.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Chrome\User Data\Temp\scoped_dir_8125\skype_chrome_extension.crx: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Google Talk Plugin\googletalkax.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Update\1.3.29.5\GoogleCrashHandler.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Update\1.3.29.5\GoogleUpdateSetup.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Update\1.3.29.5\goopdate.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Update\1.3.29.5\psmachine.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Update\1.3.29.5\psuser.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.29.5\GoogleUpdateSetup.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\Google\Update\Download\{D0AB2EBC-931B-4013-9FEB-C9C4C2225C8C}\5.41.3.0\googletalkpluginaccel.msi: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\iWesoft\PDF Compressor\engine\pdfcompressor_enp\gsdll32.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\PKI Client\4\modules\2_10_0_win_x86-lxp.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\PKI Client\4\modules\5_11_0_win_x86-capi.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\AppSharingUI_7z\RxhVqi32_qVTBYs5TbGet+EnSghFvkPUcm8Y+4EEWSo=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\AppSharingUI_7z\UNnVupSYTew+lc8qmW9DfFxmUKnKIQ5W+2Jp9NXzaaw=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\AppSharing_7z\CDX39glLtgni3BRELM3jRwJ4ZcDS69C2FsBOTPCJhy8=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\AppSharing_7z\yDbudtP4mj+4CyqaGTo7d4PB9AyvZphcs89tBr6lDAQ=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atarm_7z\a6N0HYWtMMt_qqQL10SYpklIbVOvwmOdBsoaMKG5A7g=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atarm_7z\NIn7YEwPjhgCqW8o8TRYqEB8U9i7SgQCPN0i2XOusCs=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atasctrl_7z\5XfInelczTsG1N_NFOuq95nXm2r7dLuywm7BggKXvS8=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atasctrl_7z\F1Y31uahl1M+C0BawdbuGI5Rgube342juaPOiD9QcW8=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atasuicom_7z\783iER3PuVSJAxXozw3lBSF4n5Nu6SguOoSLMazlGy4=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atasuicom_7z\8U2DsFwxvR8Ll0n2rNVGPxXt4C69BSzZfxBY9c95rqk=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atlchat_reskin_7z\iHc9wxbmRPnO3d6XSvHL6P1Kz834gr5m0Ny+gpPDLEY=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atlchat_reskin_7z\S7EHAhnP6W4xjEFOHfB32l4o4J31KYbF0AUzKzOChS4=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atmccli_7z\M6L7c_0qFl550TbPSQOWeivDqDPgDcQA3Bg_ALBfgeg=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atmccli_7z\oLXQ4KBRN7KkttE25ocCAxS_cURb0QEQk8EMGFZHpYU=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atmgr_7z\Cr67rLdNT1GeEDL5DGcOeYUcB+PRF4lYwgY+A1z4zDo=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atnote_reskin_7z\oUh4Mxbuc5SzY0aNjDvN2IEqpRD6WWwDXlQkXbDbMNI=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atnote_reskin_7z\XlXuCepkB6b0tWI7mbaceL0H2S7IJQNIJ9F_eNim0eI=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atpdmod_7z\N+wKPKyMzb5+5nHv47sY9K7_FHOfGiAl6ygfHVx9xeI=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atpdmod_7z\SheE+PUepukbNJ_1KvuNfIOepOvUTzxhbbVMnelo9Vs=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atplayim_7z\kGJccLtDJguB8kGXv5y4Dywe5c5iOg1umiqLNHWYLdA=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atplayim_7z\SrTXnWXJBJa7qnG+urSaC+SFDXgKMIUCpUpiazgUWB4=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atpollk2_reskin_7z\a3+XgRLyBXNYaSQ91usfedhwnS1fGjV71JKCTFQBzB8=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\atpollk2_reskin_7z\qPCkMi9kh11e_I_dk3JaxyVI71kmK9mIH7YhXY9AHHI=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\attp_7z\gOI8zCSWFQW7jxyXQFtvpsdbosumrQmdrX8A2DW4tkg=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\comUI_7z\bJP4duowDTnhWfJc6obH0jgf16v8UcCixPXYUi3txzA=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\comUI_7z\LDtT_uOyVO5tFdo96AL1UIR5JV3wkO_j95O0EqNIbvA=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\hybridaudio_7z\Gy9TMgJC5TGCozcOABv0y0YAUfFlkiveUfOlgmU_+mw=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\hybridaudio_7z\Gyag_QhFl2_X4qwZW8y2wlMSgMMXwb5PkZJQMGDmxYc=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\ieatgpc_7z\cqzaoxeN2gmsofAUy7ijBQlGgrNzI0Jb6rdnzSqriZ8=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\ieatgpc_7z\jxzd9W5iTZoqgYWXHv58iEKW2bA9u2_4_SCAg8Vi55Y=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\libeay32_7z\9NJcyU0lOrH4fOPmsH5i8AJsl1EUMkKyMzyIRc70t9c=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\macdol_7z\O74Q3BFGBi1jEa4DCqT_jrmLVS9Fhrm3Z1Z+hdjBWSc=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\msvcp90_7z\BCd40AjKFS8XXrbb4inblh+tCZPxkpmp0b2EOR2aD_A=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\msvcp90_7z\Eo8DgRi7HYBTZ3NtBJbZUaLnPXk2Wsd6psU_PylppxI=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\msvcr100_7z\u3EaeeJu0oT23f6qI6AFSSeJHNGMV_yLC1pKvrvvE3k=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\msvcr100_7z\VFHS8viFmOLlF8bl8fK3atOLwhduV_44S8XDPwworW0=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\msvc_7z\LwOQtHpSGR5mtozmj1pfBHEElvV5SqD7sBes7Uy8XRE=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\msvc_7z\ybTm1NvGF0lvwfEwYPrn0BWI9Ku1PhmT57obKNLKRsI=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\mutiltpd_7z\SRYZp7Ng0DYhyAdhpapSPZesEy9WstqwJRziX1v+96I=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\mutiltpd_7z\zrGmI7dQ_0VyE3fJCCmDJ39yfLnk6ei0obNNYviQ5Tk=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\PsImgStrm_7z\kj0hQ02x1Khf4IEKdjthuqC8n1EDS34Lr4Uf441uBd4=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\PsImgStrm_7z\vf46CfhqevAEBuzoQwyWZ_Mi8Q5vSREj_hFsglGk740=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\ssleay32_7z\9dt5KagLwATgFu6hkisY2f1Wh5JFgInSq0hwZkCfyPY=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\ssleay32_7z\g201PRlYfei0V6xN2y8p4lrSxMQG33LaIv_nNHX3O9g=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\uilibresreskin_7z\0+Q6zcGcYLxZxDegWfb2W1RhX5fxgqOMkUp53lm_RRM=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\uilibresreskin_7z\D67g5ziwifbwX2a8npXtn+sDaXvVyh+VUcCfomMNmMc=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\wbxaecodec_7z\7TaKzfyqSUYLaFLUDtkVO9jJEbgppyxY_ti1u3THJDg=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\wbxreport_7z\doen_JjAUeAfSW22Z_bt8hMMdW8A9BlueO5KBhnK1XU=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\wbxreport_7z\SXfPEEYXaZT5yWoMeRwRsfrFrulguRMOoZv069emgdg=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\WCLDll_7z\ih9G2Okmr2SKay7tYikX3IBcXyhwUBKCGIT3d+Fo7NY=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\WCLDll_7z\OCfLhQZMfDMkJsqb4tomGRc4ID2Pl7aK0Cz3knX8NGU=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\WCLProxy_7z\6GzNivGcHMdBdTV_tpJUnuJ6J26xeC1P4HHlHojt3s0=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\WCLProxy_7z\d6zqAT+4rVNFpLi_uMHM+6RhcOf5vZ3fd4myBcL7P80=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\webexmgr_7z\AHr0omTnnNUpd2bXV1P5sX+eokHYHpncQhoWKz9nC4Y=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\webexmgr_7z\lnJI9TV5i_ffrOBZLFXfhIIo4XQLMP+y3I9udHRnSJU=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\wseclient_7z\RIAyPclnYw9v_2aIxQKyenjzstTgQVmjrx5ZqRtz07I=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Application Data\WebEx\wbxcache\wseclient_7z\WYcHKRXJ+McicnAtJ3WINzkgfrG0Lm0hjb9Vt1K8GYU=: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\Pre3A9.tmp: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\Pre400.tmp: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\AppSharing.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\atarm.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\atasctrl.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\atasuicom.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\atgpcext.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\atgpcext.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\atnote.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\atpdmod.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\atpollk2.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\attp.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\Atwbxui14.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\libeay32.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\mcsnew.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\msvc.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\mutiltpd.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\PsImgStrm.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\uilibres.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\wbxreport.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\webexmgr.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\WebexRcd\atplayim.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\1324\wseclient.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\AppSharing.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\atarm.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\atasctrl.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\atasuicom.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\atlchat.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\atmgr.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\atnote.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\atpdmod.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\atpollk2.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\attp.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\Atwbxui15.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\CiscoWebExUpdate.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\comUI.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\libeay32.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\mac.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\mcsnew.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\mfs.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\msvc.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\msvcr100.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\mutiltpd.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\ssleay32.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\uilibres.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\wbxaecodec.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\wbxaudioengine.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\wbxreport.exe: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\WCLDll.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\WCLProxy.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\webexmgr.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\welsenc.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\Local Settings\Temporary Internet Files\webexmc\WebEx\T30_MC\wseclient.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\My Documents\Root Batch Files & Stuff\bin\iviewers.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\My Documents\Root Batch Files & Stuff\bin\msdis130.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\My Documents\Root Batch Files & Stuff\bin\mstlsapi.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\My Documents\Root Batch Files & Stuff\bin\msvbvm60.dll: Win.Trojan.Bancos-2115 FOUND C:\Documents and Settings\LENOVO USER\My Documents\Root Batch Files & Stuff\bin\prnadmin.dll: Win.Trojan.Bancos-2115 FOUND C:\DRIVERS\TPBTooth\Win32\BTW.msi: Win.Trojan.Bancos-2115 FOUND C:\DRIVERS\TPBTooth\Win32\BtwRSupport.dll: Win.Trojan.Bancos-2115 FOUND C:\DRIVERS\TPBTooth\Win32\instmsia.exe: Win.Trojan.Bancos-2115 FOUND C:\DRIVERS\TPBTooth\Win32\instmsiw.exe: Win.Trojan.Bancos-2115 FOUND C:\DRIVERS\TPBTooth\Win32\Lang\1033\btrez.dll: Win.Trojan.Bancos-2115 FOUND C:\DRIVERS\TPBTooth\Win32\MSVCP60.DLL: Win.Trojan.Bancos-2115 FOUND C:\DRIVERS\TPBTooth\Win64\instmsia.exe: Win.Trojan.Bancos-2115 FOUND C:\DRIVERS\TPBTooth\Win64\instmsiw.exe: Win.Trojan.Bancos-2115 FOUND C:\DRIVERS\WIN\Audio\engine32.cab: Win.Trojan.Bancos-2115 FOUND C:\DRIVERS\WIN\Audio\SM_Panel\Sys\SMax4.cpl: Win.Trojan.Bancos-2115 FOUND C:\DRIVERS\WIN\Audio\SM_Power\Sys\PwrMan.dll: Win.Trojan.Bancos-2115 FOUND C:\DRIVERS\WIN\WLANINT\Vista\v32\Install\Intel PROSet Wireless.msi: Win.Trojan.Bancos-2115 FOUND C:\DRIVERS\WIN\WLANINT\Win7\S32\Install\Intel PROSet Wireless.msi: Win.Trojan.Bancos-2115 FOUND C:\DRIVERS\WIN\WLANINT\XP\x32\Install\Intel PROSet Wireless.msi: Win.Trojan.Bancos-2115 FOUND C:\I386\browseui.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\catsrvut.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\CIC.DL_: Win.Trojan.Bancos-2115 FOUND C:\I386\clbcatq.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\COMSETUP.DL_: Win.Trojan.Bancos-2115 FOUND C:\I386\COMSNAP.DL_: Win.Trojan.Bancos-2115 FOUND C:\I386\comsvcs.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\comuid.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\CONFMSP.DL_: Win.Trojan.Bancos-2115 FOUND C:\I386\danim.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\DATIME.DL_: Win.Trojan.Bancos-2115 FOUND C:\I386\dhtmled.ocx: Win.Trojan.Bancos-2115 FOUND C:\I386\DIGCORE.EX_: Win.Trojan.Bancos-2115 FOUND C:\I386\DIGOPT.MS_: Win.Trojan.Bancos-2115 FOUND C:\I386\DMDLGS.DL_: Win.Trojan.Bancos-2115 FOUND C:\I386\dxtrans.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\fontsub.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\FONTSUB.DL_: Win.Trojan.Bancos-2115 FOUND C:\I386\hhctrl.ocx: Win.Trojan.Bancos-2115 FOUND C:\I386\iepeers.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\IMS.CAB: Win.Trojan.Bancos-2115 FOUND C:\I386\inseng.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\MFC40U.DL_: Win.Trojan.Bancos-2115 FOUND C:\I386\MINDEX.DL_: Win.Trojan.Bancos-2115 FOUND C:\I386\msdtcprx.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\msdtctm.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\msdtcuiu.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\mshtml.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\mshtmled.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\MSISAM11.DL_: Win.Trojan.Bancos-2115 FOUND C:\I386\MSNCLI.EX_: Win.Trojan.Bancos-2115 FOUND C:\I386\MSNMSGS.MS_: Win.Trojan.Bancos-2115 FOUND C:\I386\MSNSUSII.EX_: Win.Trojan.Bancos-2115 FOUND C:\I386\msrating.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\mstime.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\mswrd6.wpc: Win.Trojan.Bancos-2115 FOUND C:\I386\mtxoci.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\NETSETUP.EXE: Win.Trojan.Bancos-2115 FOUND C:\I386\ntkrnlmp.exe: Win.Trojan.Bancos-2115 FOUND C:\I386\ntkrpamp.exe: Win.Trojan.Bancos-2115 FOUND C:\I386\ntoskrnl.exe: Win.Trojan.Bancos-2115 FOUND C:\I386\ole32.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\quartz.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\rpcss.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\shdocvw.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\shell32.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\shlwapi.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\svcpack\KB890859.exe: Win.Trojan.Bancos-2115 FOUND C:\I386\svcpack\KB902400.exe: Win.Trojan.Bancos-2115 FOUND C:\I386\svcpack\KB905915.exe: Win.Trojan.Bancos-2115 FOUND C:\I386\t2embed.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\urlmon.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\user32.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\WAVEMSP.DL_: Win.Trojan.Bancos-2115 FOUND C:\I386\WEBFLDRS.MS_: Win.Trojan.Bancos-2115 FOUND C:\I386\win32k.sys: Win.Trojan.Bancos-2115 FOUND C:\I386\winsrv.dll: Win.Trojan.Bancos-2115 FOUND C:\I386\WMIDX.OC_: Win.Trojan.Bancos-2115 FOUND C:\lotus\123\l14appr.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\123\l14chart.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\123\l14excel.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\123\l14maps.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\123\l14ns.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\123\l14ole.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\123\l14vm.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\123\l14web.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\123\l14wk.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\123\main123w.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\123\spchchnl.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\approach\apprans1.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\approach\aprtx.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\approach\db123.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\approach\dbpxmgr.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\approach\dbqmf.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\beans.ocx: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\ccvim\meapi32.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\ccvim\medb632.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\flters98\emps_32.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\flters98\emwp232.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\flters98\ibpcx32.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\flters98\imdxf32.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\flters98\imgal32.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\flters98\imhgl32.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\flters98\isgdi32.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\flters98\kpp97wrt.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\lcsrtn10.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\ltaswn23.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\ltchen23.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\lticnc90.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\ltnetn02.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\ltsctn40.ocx: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\ltsin40.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\ltsun40.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\ltttsn10.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\ltuin22.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\compnent\packager.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\fastsite\fstdefv2.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\fastsite\keyview\kpagrdr.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\fastsite\keyview\kwad.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\fastsite\keyview\lwpapin.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\fastsite\odyawdef.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\fastsite\odyawhtm.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\flg\player\lmp01.d32: Win.Trojan.Bancos-2115 FOUND C:\lotus\flg\rtf.f32: Win.Trojan.Bancos-2115 FOUND C:\lotus\organize\MSVCRT.DLL: Win.Trojan.Bancos-2115 FOUND C:\lotus\organize\orback.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\organize\ormprot.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\organize\orutil.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\smartctr\LDINET.DLL: Win.Trojan.Bancos-2115 FOUND C:\lotus\smartctr\LDSERV.DLL: Win.Trojan.Bancos-2115 FOUND C:\lotus\smartctr\WEBLOTUS.OCX: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\chtdmann.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwpami3n.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwpdcan.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwpdrwn.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwpeqnn.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwpgfxn.dll: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwphtml.ocx: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwphtmn.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwpmsw5n.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwpmswwn.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwprtfn.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwpwk1n.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwpwk3n.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwpwk6n.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwpwp6n.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\lwpwpn.flt: Win.Trojan.Bancos-2115 FOUND C:\lotus\wordpro\W4W42F.DLL: Win.Trojan.Bancos-2115 FOUND C:\MSOCache\All Users\{90120000-0010-0409-0000-0000000FF1CE}-C\RbudLR.cab: Win.Trojan.Bancos-2115 FOUND C:\MSOCache\All Users\{90120000-002C-0409-0000-0000000FF1CE}-C\Proof.es\Proof.cab: Win.Trojan.Bancos-2115 FOUND C:\MSOCache\All Users\{90120000-002C-0409-0000-0000000FF1CE}-C\Proof.fr\Proof.cab: Win.Trojan.Ramnit-6561 FOUND C:\MSOCache\All Users\{90120000-0044-0409-0000-0000000FF1CE}-C\InfLR.cab: Win.Trojan.Bancos-2115 FOUND C:\MSOCache\All Users\{90120000-00A1-0409-0000-0000000FF1CE}-C\OnoteLR.cab: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\ACE.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\AcroRd32.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\AcroRd32.exe: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\adoberfp.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\AdobeXMP.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\AGM.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\AXE8SharedExpat.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\AXSLE.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\BIB.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\ccme_asym.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\ccme_base.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\ccme_ecc.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\CoolType.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\cryptocme.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\Eula.exe: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\ExtendScript.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\icucnv40.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\icuuc40.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\logsession.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\LogTransport2.exe: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\NPSWF32.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\PDFPrevHndlrShim.exe: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\pe.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins\Accessibility.api: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins\AcroForm.api: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins\Annots.api: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins\Checkers.api: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins\DigSig.api: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins\MakeAccessible.api: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins\Multimedia.api: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins\PDDom.api: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins\PPKLite.api: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins\reflow.api: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins\SaveAsRTF.api: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins\SendMail.api: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins\Spelling.api: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins3d\2d.x3d: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins3d\drvDX9.x3d: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\plug_ins3d\prcr.x3d: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\rt3d.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Adobe\Reader 11.0\Reader\ScCore.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\CoverDesigner\CoverEdCtrl.ocx: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\Nero\AudioPluginMgr.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\Nero\CDROM.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\Nero\Drweb32.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\Nero\GenFAT.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\Nero\geniso.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\Nero\GenPCHy.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\Nero\GenUDF.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\Nero\image.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\Nero\ImageGen.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\Nero\ISOFS.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\Nero\mfc42.DLL: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\Nero\MMC.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\Nero\msvcrt.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files\Ahead\Nero\NeEm2a.dll: Win.Trojan.Bancos-2115 FOUND C:\Program Files |
|||||||||||
|
![]() |
![]() | Win.Trojan.Bancos-2115 false positives | ![]() |
|
||
![]() |
![]() |
Powered by phpBB © phpBB Group
Design by phpBBStyles.com | Styles Database.
Content © ClamWin Free Antivirus GNU GPL Free Software Open Source Virus Scanner. Free Windows Antivirus. Stay Virus Free with Free Software.
Design by phpBBStyles.com | Styles Database.
Content © ClamWin Free Antivirus GNU GPL Free Software Open Source Virus Scanner. Free Windows Antivirus. Stay Virus Free with Free Software.