Avira Free Antivirus Report file date: 31 maja 2012 21:26 Scanning for 3776968 virus strains and unwanted programs. The program is running as an unrestricted full version. Online services are available. Licensee : Avira AntiVir Personal - Free Antivirus Serial number : 0000149996-ADJIE-0000001 Platform : Microsoft Windows XP Windows version : (Service Pack 3) [5.1.2600] Boot mode : Normally booted Username : SYSTEM Computer name : MICHAL-0CA1A2A5 Version information: BUILD.DAT : 12.0.0.1125 41829 Bytes 2012-05-02 17:40:00 AVSCAN.EXE : 12.3.0.15 466896 Bytes 2012-05-09 12:05:43 AVSCAN.DLL : 12.3.0.15 54736 Bytes 2012-05-09 12:05:43 LUKE.DLL : 12.3.0.15 68304 Bytes 2012-05-09 12:05:44 AVSCPLR.DLL : 12.3.0.14 97032 Bytes 2012-05-09 12:05:45 AVREG.DLL : 12.3.0.17 232200 Bytes 2012-05-12 21:09:24 VBASE000.VDF : 7.10.0.0 19875328 Bytes 2009-11-06 08:05:36 VBASE001.VDF : 7.11.0.0 13342208 Bytes 2010-12-14 07:57:15 VBASE002.VDF : 7.11.19.170 14374912 Bytes 2011-12-20 07:57:20 VBASE003.VDF : 7.11.21.238 4472832 Bytes 2012-02-01 20:26:04 VBASE004.VDF : 7.11.26.44 4329472 Bytes 2012-03-28 18:59:35 VBASE005.VDF : 7.11.29.136 2166272 Bytes 2012-05-10 21:09:15 VBASE006.VDF : 7.11.29.137 2048 Bytes 2012-05-10 21:09:15 VBASE007.VDF : 7.11.29.138 2048 Bytes 2012-05-10 21:09:15 VBASE008.VDF : 7.11.29.139 2048 Bytes 2012-05-10 21:09:15 VBASE009.VDF : 7.11.29.140 2048 Bytes 2012-05-10 21:09:15 VBASE010.VDF : 7.11.29.141 2048 Bytes 2012-05-10 21:09:15 VBASE011.VDF : 7.11.29.142 2048 Bytes 2012-05-10 21:09:16 VBASE012.VDF : 7.11.29.143 2048 Bytes 2012-05-10 21:09:16 VBASE013.VDF : 7.11.29.144 2048 Bytes 2012-05-10 21:09:16 VBASE014.VDF : 7.11.30.3 198144 Bytes 2012-05-14 19:58:45 VBASE015.VDF : 7.11.30.69 186368 Bytes 2012-05-17 08:24:53 VBASE016.VDF : 7.11.30.143 223744 Bytes 2012-05-21 18:45:16 VBASE017.VDF : 7.11.30.207 287744 Bytes 2012-05-23 18:55:31 VBASE018.VDF : 7.11.31.57 188416 Bytes 2012-05-28 20:35:29 VBASE019.VDF : 7.11.31.111 214528 Bytes 2012-05-30 19:02:17 VBASE020.VDF : 7.11.31.151 116736 Bytes 2012-05-31 19:02:21 VBASE021.VDF : 7.11.31.152 2048 Bytes 2012-05-31 19:02:21 VBASE022.VDF : 7.11.31.153 2048 Bytes 2012-05-31 19:02:22 VBASE023.VDF : 7.11.31.154 2048 Bytes 2012-05-31 19:02:23 VBASE024.VDF : 7.11.31.155 2048 Bytes 2012-05-31 19:02:23 VBASE025.VDF : 7.11.31.156 2048 Bytes 2012-05-31 19:02:23 VBASE026.VDF : 7.11.31.157 2048 Bytes 2012-05-31 19:02:24 VBASE027.VDF : 7.11.31.158 2048 Bytes 2012-05-31 19:02:24 VBASE028.VDF : 7.11.31.159 2048 Bytes 2012-05-31 19:02:25 VBASE029.VDF : 7.11.31.160 2048 Bytes 2012-05-31 19:02:25 VBASE030.VDF : 7.11.31.161 2048 Bytes 2012-05-31 19:02:25 VBASE031.VDF : 7.11.31.162 2048 Bytes 2012-05-31 19:02:27 Engine version : 8.2.10.78 AEVDF.DLL : 8.1.2.6 106868 Bytes 2012-05-31 19:05:27 AESCRIPT.DLL : 8.1.4.24 450939 Bytes 2012-05-31 19:05:24 AESCN.DLL : 8.1.8.2 131444 Bytes 2012-02-19 20:26:16 AESBX.DLL : 8.2.5.10 606580 Bytes 2012-05-29 20:37:18 AERDL.DLL : 8.1.9.15 639348 Bytes 2012-01-31 07:56:42 AEPACK.DLL : 8.2.16.16 807288 Bytes 2012-05-29 20:37:05 AEOFFICE.DLL : 8.1.2.28 201082 Bytes 2012-05-04 20:04:43 AEHEUR.DLL : 8.1.4.36 4874615 Bytes 2012-05-31 19:05:11 AEHELP.DLL : 8.1.21.0 254326 Bytes 2012-05-12 21:09:19 AEGEN.DLL : 8.1.5.28 422260 Bytes 2012-05-04 20:03:54 AEEXP.DLL : 8.1.0.44 82293 Bytes 2012-05-29 20:37:19 AEEMU.DLL : 8.1.3.0 393589 Bytes 2012-01-31 07:56:38 AECORE.DLL : 8.1.25.10 201080 Bytes 2012-05-31 19:03:21 AEBB.DLL : 8.1.1.0 53618 Bytes 2012-01-31 07:56:38 AVWINLL.DLL : 12.3.0.15 27344 Bytes 2012-05-09 12:05:43 AVPREF.DLL : 12.3.0.15 51920 Bytes 2012-05-09 12:05:43 AVREP.DLL : 12.3.0.15 179208 Bytes 2012-05-09 12:05:45 AVARKT.DLL : 12.3.0.15 211408 Bytes 2012-05-09 12:05:43 AVEVTLOG.DLL : 12.3.0.15 169168 Bytes 2012-05-09 12:05:43 SQLITE3.DLL : 3.7.0.1 398288 Bytes 2012-05-09 12:05:44 AVSMTP.DLL : 12.3.0.15 63440 Bytes 2012-05-09 12:05:43 NETNT.DLL : 12.3.0.15 17104 Bytes 2012-05-09 12:05:44 RCIMAGE.DLL : 12.3.0.15 4450000 Bytes 2012-05-09 12:05:43 RCTEXT.DLL : 12.3.0.15 96720 Bytes 2012-05-09 12:05:43 Configuration settings for the scan: Jobname.............................: AVGuardAsyncScan Configuration file..................: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir Desktop\TEMP\AVGUARD_4fc7bfee\guard_slideup.avp Logging.............................: default Primary action......................: Interactive Secondary action....................: Quarantine Scan master boot sector.............: on Scan boot sector....................: off Process scan........................: on Scan registry.......................: off Search for rootkits.................: off Integrity checking of system files..: off Scan all files......................: All files Scan archives.......................: on Recursion depth.....................: 20 Smart extensions....................: on Deviating archive types.............: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox, +ISO 9660, Macro heuristic.....................: on File heuristic......................: Complete Deviating risk categories...........: +SPR, Start of the scan: 31 maja 2012 21:26 The scan of running processes will be started Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'mbam.exe' - '1' Module(s) have been scanned Scan process 'avshadow.exe' - '1' Module(s) have been scanned Scan process 'WMPNSCFG.exe' - '1' Module(s) have been scanned Scan process 'ctfmon.exe' - '1' Module(s) have been scanned Scan process 'avgnt.exe' - '1' Module(s) have been scanned Scan process 'jusched.exe' - '1' Module(s) have been scanned Scan process 'EabServr.exe' - '1' Module(s) have been scanned Scan process 'atiptaxx.exe' - '1' Module(s) have been scanned Scan process 'SynTPEnh.exe' - '1' Module(s) have been scanned Scan process 'Explorer.EXE' - '1' Module(s) have been scanned Scan process 'Ati2evxx.exe' - '1' Module(s) have been scanned Scan process 'HP1006MC.EXE' - '1' Module(s) have been scanned Scan process 'WMPNetwk.exe' - '1' Module(s) have been scanned Scan process 'mdm.exe' - '1' Module(s) have been scanned Scan process 'jqs.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'avguard.exe' - '1' Module(s) have been scanned Scan process 'sched.exe' - '1' Module(s) have been scanned Scan process 'spoolsv.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'Ati2evxx.exe' - '1' Module(s) have been scanned Scan process 'lsass.exe' - '1' Module(s) have been scanned Scan process 'services.exe' - '1' Module(s) have been scanned Scan process 'winlogon.exe' - '1' Module(s) have been scanned Scan process 'csrss.exe' - '1' Module(s) have been scanned Scan process 'smss.exe' - '1' Module(s) have been scanned Starting the file scan: Begin scan in 'C:\WINDOWS\Installer\{bfecd975-01f3-ed3a-67b3-24e00a45fd97}\U\80000000.@' C:\WINDOWS\Installer\{bfecd975-01f3-ed3a-67b3-24e00a45fd97}\U\80000000.@ [DETECTION] Is the TR/Sirefef.AG.35 Trojan Begin scan in 'C:\WINDOWS\Installer\{bfecd975-01f3-ed3a-67b3-24e00a45fd97}\U\800000cb.@' C:\WINDOWS\Installer\{bfecd975-01f3-ed3a-67b3-24e00a45fd97}\U\800000cb.@ [DETECTION] Is the TR/ATRAPS.Gen2 Trojan Beginning disinfection: C:\WINDOWS\Installer\{bfecd975-01f3-ed3a-67b3-24e00a45fd97}\U\800000cb.@ [DETECTION] Is the TR/ATRAPS.Gen2 Trojan [NOTE] The file was moved to the quarantine directory under the name '4d826287.qua'. C:\WINDOWS\Installer\{bfecd975-01f3-ed3a-67b3-24e00a45fd97}\U\80000000.@ [DETECTION] Is the TR/Sirefef.AG.35 Trojan [NOTE] The file was moved to the quarantine directory under the name '55154d20.qua'. End of the scan: 31 maja 2012 21:27 Used time: 00:02 Minute(s) The scan has been done completely. 0 Scanned directories 35 Files were scanned 2 Viruses and/or unwanted programs were found 0 Files were classified as suspicious 0 Files were deleted 0 Viruses and unwanted programs were repaired 2 Files were moved to quarantine 0 Files were renamed 0 Files cannot be scanned 33 Files not concerned 0 Archives were scanned 0 Warnings 2 Notes The scan results will be transferred to the Guard.