Avira AntiVir Personal Report file date: 18 września 2011 15:21 Scanning for 3382851 virus strains and unwanted programs. The program is running as an unrestricted full version. Online services are available: Licensee : Avira AntiVir Personal - Free Antivirus Serial number : 0000149996-ADJIE-0000001 Platform : Windows XP Windows version : (Dodatek Service Pack 3) [5.1.2600] Boot mode : Normally booted Username : SYSTEM Computer name : ASUSPN Version information: BUILD.DAT : 10.2.0.700 35934 Bytes 2011-07-21 17:12:00 AVSCAN.EXE : 10.3.0.7 484008 Bytes 2011-06-28 18:15:56 AVSCAN.DLL : 10.0.5.0 47464 Bytes 2011-06-28 18:15:56 LUKE.DLL : 10.3.0.5 45416 Bytes 2011-06-28 18:15:56 LUKERES.DLL : 10.0.0.1 12648 Bytes 2010-02-10 22:40:49 AVSCPLR.DLL : 10.3.0.7 119656 Bytes 2011-06-28 18:15:57 AVREG.DLL : 10.3.0.9 88833 Bytes 2011-07-12 18:15:18 VBASE000.VDF : 7.10.0.0 19875328 Bytes 2009-11-06 08:08:06 VBASE001.VDF : 7.11.0.0 13342208 Bytes 2010-12-14 08:08:06 VBASE002.VDF : 7.11.3.0 1950720 Bytes 2011-02-09 08:08:06 VBASE003.VDF : 7.11.5.225 1980416 Bytes 2011-04-07 08:08:06 VBASE004.VDF : 7.11.8.178 2354176 Bytes 2011-05-31 08:08:06 VBASE005.VDF : 7.11.10.251 1788416 Bytes 2011-07-07 08:08:06 VBASE006.VDF : 7.11.13.60 6411776 Bytes 2011-08-16 08:08:06 VBASE007.VDF : 7.11.13.61 2048 Bytes 2011-08-16 08:08:06 VBASE008.VDF : 7.11.13.62 2048 Bytes 2011-08-16 08:08:06 VBASE009.VDF : 7.11.13.63 2048 Bytes 2011-08-16 08:08:06 VBASE010.VDF : 7.11.13.64 2048 Bytes 2011-08-16 08:08:06 VBASE011.VDF : 7.11.13.65 2048 Bytes 2011-08-16 08:08:06 VBASE012.VDF : 7.11.13.66 2048 Bytes 2011-08-16 08:08:06 VBASE013.VDF : 7.11.13.95 166400 Bytes 2011-08-17 08:08:06 VBASE014.VDF : 7.11.13.125 209920 Bytes 2011-08-18 08:08:06 VBASE015.VDF : 7.11.13.157 184832 Bytes 2011-08-22 08:08:06 VBASE016.VDF : 7.11.13.201 128000 Bytes 2011-08-24 08:08:06 VBASE017.VDF : 7.11.13.234 160768 Bytes 2011-08-25 08:08:06 VBASE018.VDF : 7.11.14.16 141312 Bytes 2011-08-30 08:08:06 VBASE019.VDF : 7.11.14.48 133120 Bytes 2011-08-31 08:08:06 VBASE020.VDF : 7.11.14.78 156160 Bytes 2011-09-02 08:08:06 VBASE021.VDF : 7.11.14.109 126976 Bytes 2011-09-06 08:08:06 VBASE022.VDF : 7.11.14.137 131584 Bytes 2011-09-08 18:15:19 VBASE023.VDF : 7.11.14.166 196096 Bytes 2011-09-12 18:16:13 VBASE024.VDF : 7.11.14.193 184832 Bytes 2011-09-14 18:16:00 VBASE025.VDF : 7.11.14.215 125952 Bytes 2011-09-16 18:15:16 VBASE026.VDF : 7.11.14.216 2048 Bytes 2011-09-16 18:15:16 VBASE027.VDF : 7.11.14.217 2048 Bytes 2011-09-16 18:15:16 VBASE028.VDF : 7.11.14.218 2048 Bytes 2011-09-16 18:15:16 VBASE029.VDF : 7.11.14.219 2048 Bytes 2011-09-16 18:15:16 VBASE030.VDF : 7.11.14.220 2048 Bytes 2011-09-16 18:15:17 VBASE031.VDF : 7.11.14.223 43520 Bytes 2011-09-16 18:15:17 Engineversion : 8.2.6.64 AEVDF.DLL : 8.1.2.1 106868 Bytes 2011-09-07 08:08:04 AESCRIPT.DLL : 8.1.3.76 1626490 Bytes 2011-09-07 08:08:04 AESCN.DLL : 8.1.7.2 127349 Bytes 2011-09-07 08:08:04 AESBX.DLL : 8.2.1.34 323957 Bytes 2011-09-07 08:08:04 AERDL.DLL : 8.1.9.15 639348 Bytes 2011-09-09 18:15:58 AEPACK.DLL : 8.2.10.10 684407 Bytes 2011-09-07 08:08:04 AEOFFICE.DLL : 8.1.2.15 201083 Bytes 2011-09-16 18:15:27 AEHEUR.DLL : 8.1.2.169 3703160 Bytes 2011-09-16 18:15:25 AEHELP.DLL : 8.1.17.7 254327 Bytes 2011-09-07 08:08:04 AEGEN.DLL : 8.1.5.9 401780 Bytes 2011-09-07 08:08:04 AEEMU.DLL : 8.1.3.0 393589 Bytes 2011-09-07 08:08:04 AECORE.DLL : 8.1.23.0 196983 Bytes 2011-09-07 08:08:04 AEBB.DLL : 8.1.1.0 53618 Bytes 2011-09-07 08:08:04 AVWINLL.DLL : 10.0.0.0 19304 Bytes 2011-03-28 14:15:31 AVPREF.DLL : 10.0.3.2 44904 Bytes 2011-06-28 18:15:56 AVREP.DLL : 10.0.0.10 174120 Bytes 2011-09-07 08:08:06 AVARKT.DLL : 10.0.26.1 255336 Bytes 2011-06-28 18:15:56 AVEVTLOG.DLL : 10.0.0.9 203112 Bytes 2011-06-28 18:15:56 SQLITE3.DLL : 3.6.19.0 355688 Bytes 2010-06-17 13:27:22 AVSMTP.DLL : 10.0.0.17 63848 Bytes 2011-03-28 14:15:30 NETNT.DLL : 10.0.0.0 11624 Bytes 2011-03-28 14:15:39 RCIMAGE.DLL : 10.0.0.35 2589544 Bytes 2011-06-28 18:15:55 RCTEXT.DLL : 10.0.64.0 97640 Bytes 2011-06-28 18:15:55 Configuration settings for the scan: Jobname.............................: avguard_async_scan Configuration file..................: C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\TEMP\AVGUARD_4eb08142\guard_slideup.avp Logging.............................: Default Primary action......................: repair Secondary action....................: quarantine Scan master boot sector.............: on Scan boot sector....................: off Process scan........................: on Scan registry.......................: off Search for rootkits.................: off Integrity checking of system files..: off Scan all files......................: All files Scan archives.......................: on Recursion depth.....................: 20 Smart extensions....................: on Macro heuristic.....................: on File heuristic......................: Complete Skipped files.......................: *.jpg, *.pdf, c:\www_movamp, D:\Dane_Kinga\DOKTORAT\Doktorat_Arch, Doktorat_Arch, WWW_movAmp, Start of the scan: 18 września 2011 15:21 The scan of running processes will be started Scan process 'RunDll32.exe' - '1' Module(s) have been scanned Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'CCleaner.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'BTSTAC~1.EXE' - '1' Module(s) have been scanned Scan process 'unsecapp.exe' - '1' Module(s) have been scanned Scan process 'webshots.scr' - '1' Module(s) have been scanned Scan process 'BTTray.exe' - '1' Module(s) have been scanned Scan process 'msmsgs.exe' - '1' Module(s) have been scanned Scan process 'ctfmon.exe' - '1' Module(s) have been scanned Scan process 'iFrmewrk.exe' - '1' Module(s) have been scanned Scan process 'ZCfgSvc.exe' - '1' Module(s) have been scanned Scan process 'WDC.exe' - '1' Module(s) have been scanned Scan process 'avgnt.exe' - '1' Module(s) have been scanned Scan process 'KBFiltr.exe' - '1' Module(s) have been scanned Scan process 'RUNDLL32.EXE' - '1' Module(s) have been scanned Scan process 'ATKOSD.exe' - '1' Module(s) have been scanned Scan process 'Reader_sl.exe' - '1' Module(s) have been scanned Scan process 'RTHDCPL.EXE' - '1' Module(s) have been scanned Scan process 'SynTPEnh.exe' - '1' Module(s) have been scanned Scan process 'ATKOSD2.exe' - '1' Module(s) have been scanned Scan process 'HControl.exe' - '1' Module(s) have been scanned Scan process 'HControlUser.exe' - '1' Module(s) have been scanned Scan process 'MsgTranAgt.exe' - '1' Module(s) have been scanned Scan process 'visicom_antiphishing.exe' - '1' Module(s) have been scanned Scan process 'DMEDIA.EXE' - '1' Module(s) have been scanned Scan process 'Explorer.EXE' - '1' Module(s) have been scanned Scan process 'alg.exe' - '1' Module(s) have been scanned Scan process 'wmiapsrv.exe' - '1' Module(s) have been scanned Scan process 'unsecapp.exe' - '1' Module(s) have been scanned Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned Scan process 'wuauclt.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'spmgr.exe' - '1' Module(s) have been scanned Scan process 'RegSrvc.exe' - '1' Module(s) have been scanned Scan process 'avshadow.exe' - '1' Module(s) have been scanned Scan process 'jqs.exe' - '1' Module(s) have been scanned Scan process 'EvtEng.exe' - '1' Module(s) have been scanned Scan process 'avguard.exe' - '1' Module(s) have been scanned Scan process 'AGCoreService.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'sched.exe' - '1' Module(s) have been scanned Scan process 'spoolsv.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'S24EvMon.exe' - '1' Module(s) have been scanned Scan process 'btwdins.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned Scan process 'lsass.exe' - '1' Module(s) have been scanned Scan process 'services.exe' - '1' Module(s) have been scanned Scan process 'winlogon.exe' - '1' Module(s) have been scanned Scan process 'csrss.exe' - '1' Module(s) have been scanned Scan process 'smss.exe' - '1' Module(s) have been scanned Starting the file scan: Begin scan in 'C:\Documents and Settings\Kinga_PN\Ustawienia lokalne\Temp\50554453.Uninstall\Uninstall.exe' C:\Documents and Settings\Kinga_PN\Ustawienia lokalne\Temp\50554453.Uninstall\Uninstall.exe [DETECTION] Contains virus patterns of Adware ADWARE/FaceMoods.C [NOTE] The file was moved to the quarantine directory under the name '4cb351a9.qua'. Begin scan in 'C:\Documents and Settings\Kinga_PN\Ustawienia lokalne\Temp\ICReinstall\FlvPlayerSetup.exe' C:\Documents and Settings\Kinga_PN\Ustawienia lokalne\Temp\ICReinstall\FlvPlayerSetup.exe [DETECTION] Contains virus patterns of Adware ADWARE/FaceMoods.C [NOTE] The file was moved to the quarantine directory under the name '54117e0c.qua'. End of the scan: 18 września 2011 15:21 Used time: 00:08 Minute(s) The scan has been done completely. 0 Scanned directories 58 Files were scanned 2 Viruses and/or unwanted programs were found 0 Files were classified as suspicious 0 files were deleted 0 Viruses and unwanted programs were repaired 2 Files were moved to quarantine 0 Files were renamed 0 Files cannot be scanned 56 Files not concerned 0 Archives were scanned 0 Warnings 2 Notes