************' Anti-Malware 1.46
Database version: 4381
Windows 5.1.2600 Service Pack 2
Internet Explorer 6.0.2900.2180
9/20/2010 4:39:43 PM
mbam-log-2010-09-20 (16-39-43).txt
Scan type: Full scan (C:\|D:\|F:\|)
Objects scanned: 183249
Time elapsed: 29 minute(s), 24 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 1
Registry Keys Infected: 1
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 83
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
c:\WINDOWS\system32\termsrv.dll (Trojan.Downloader) -> Delete on reboot.
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\termservice (Trojan.Downloader) -> Quarantined and deleted successfully.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\WINDOWS\system32\termsrv.dll (Trojan.Downloader) -> Delete on reboot.
D:\kel shi\programs\old prog and staff\new desktop\Style XP RC2\Crack\StyleXP.091.RC2.CaRcK.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\kel shi\programs\old prog and staff\Wafi 3\Crack\GAL-WAFICrack.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP20\A0010219.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP20\A0010229.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP20\A0011231.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP20\A0011241.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP20\A0011573.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP20\A0011583.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP20\A0012571.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP20\A0012581.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP22\A0013650.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP22\A0013660.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP24\A0014689.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP24\A0014699.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP25\A0015691.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP25\A0015703.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP25\A0016692.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP25\A0016702.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP29\A0022311.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP29\A0022339.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP34\A0025100.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP34\A0025111.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP34\A0025524.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP34\A0025545.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP41\A0027325.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{860DD408-3B3C-47F9-8D8B-0BAAB7794423}\RP41\A0027333.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP79\A0112072.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP79\A0112082.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP79\A0113071.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP79\A0114393.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP79\A0114403.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP79\A0115408.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP79\A0115418.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP79\A0115893.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP79\A0115903.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0118391.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0118401.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0119927.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0119937.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0121065.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0121076.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0122565.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0122575.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0122895.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0122905.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0123930.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0123920.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0124918.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0124928.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0125926.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0125936.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0132207.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP80\A0132217.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP81\A0138642.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP81\A0138652.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP91\A0140203.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP91\A0140213.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP91\A0141027.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP91\A0141037.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP92\A0141576.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP92\A0141586.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP93\A0145142.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP93\A0145152.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP94\A0145993.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP94\A0146003.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP94\A0146978.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP94\A0146988.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP95\A0149975.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP95\A0149986.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP95\A0150499.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP95\A0150509.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP96\A0150999.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP96\A0151009.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP96\A0153056.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP96\A0153066.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP97\A0154058.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP97\A0154069.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP97\A0156059.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{890D7932-9047-4E0B-8CDB-B0C993B05472}\RP97\A0156069.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{989ACF54-D623-4752-B045-1C23F2BA0FDA}\RP81\A0041976.exe (RiskWare.Tool.CK) -> Quarantined and deleted successfully.
F:\programs\old prog and staff\new desktop\Style XP RC2\Crack\StyleXP.091.RC2.CaRcK.exe (Trojan.Bancos) -> Quarantined and deleted successfully.
F:\programs\old prog and staff\Wafi 3\Crack\GAL-WAFICrack.exe (Trojan.Bancos) -> Quarantined and deleted successfully.