Avira AntiVir Personal Report file date: 16 października 2010 15:16 Scanning for 2939811 virus strains and unwanted programs. The program is running as an unrestricted full version. Online services are available: Licensee : Avira AntiVir Personal - FREE Antivirus Serial number : 0000149996-ADJIE-0000001 Platform : Windows XP Windows version : (Dodatek Service Pack 3) [5.1.2600] Boot mode : Normally booted Username : SYSTEM Computer name : DUCH Version information: BUILD.DAT : 10.0.0.567 32097 Bytes 2010-04-19 15:07:00 AVSCAN.EXE : 10.0.3.0 433832 Bytes 2010-04-01 11:37:40 AVSCAN.DLL : 10.0.3.0 46440 Bytes 2010-04-01 11:57:06 LUKE.DLL : 10.0.2.3 104296 Bytes 2010-03-07 17:33:06 LUKERES.DLL : 10.0.0.1 12648 Bytes 2010-02-10 22:40:50 VBASE000.VDF : 7.10.0.0 19875328 Bytes 2009-11-06 08:05:36 VBASE001.VDF : 7.10.1.0 1372672 Bytes 2009-11-19 18:27:50 VBASE002.VDF : 7.10.3.1 3143680 Bytes 2010-01-20 16:37:44 VBASE003.VDF : 7.10.3.75 996864 Bytes 2010-01-26 15:37:44 VBASE004.VDF : 7.10.4.203 1579008 Bytes 2010-03-05 10:29:04 VBASE005.VDF : 7.10.6.82 2494464 Bytes 2010-04-15 07:59:16 VBASE006.VDF : 7.10.7.218 2294784 Bytes 2010-06-02 07:59:34 VBASE007.VDF : 7.10.9.165 4840960 Bytes 2010-07-23 08:00:12 VBASE008.VDF : 7.10.11.133 3454464 Bytes 2010-09-13 08:00:38 VBASE009.VDF : 7.10.11.134 2048 Bytes 2010-09-13 08:00:38 VBASE010.VDF : 7.10.11.135 2048 Bytes 2010-09-13 08:00:38 VBASE011.VDF : 7.10.11.136 2048 Bytes 2010-09-13 08:00:38 VBASE012.VDF : 7.10.11.137 2048 Bytes 2010-09-13 08:00:38 VBASE013.VDF : 7.10.11.165 172032 Bytes 2010-09-15 08:00:40 VBASE014.VDF : 7.10.11.202 144384 Bytes 2010-09-18 08:00:42 VBASE015.VDF : 7.10.11.231 129024 Bytes 2010-09-21 08:00:42 VBASE016.VDF : 7.10.12.4 126464 Bytes 2010-09-23 08:00:44 VBASE017.VDF : 7.10.12.38 146944 Bytes 2010-09-27 08:00:44 VBASE018.VDF : 7.10.12.64 133120 Bytes 2010-09-29 08:00:46 VBASE019.VDF : 7.10.12.99 134144 Bytes 2010-10-01 08:00:48 VBASE020.VDF : 7.10.12.122 131584 Bytes 2010-10-05 08:00:48 VBASE021.VDF : 7.10.12.148 119296 Bytes 2010-10-07 08:00:50 VBASE022.VDF : 7.10.12.175 142848 Bytes 2010-10-11 08:00:50 VBASE023.VDF : 7.10.12.198 131584 Bytes 2010-10-13 08:00:52 VBASE024.VDF : 7.10.12.216 133120 Bytes 2010-10-14 08:00:52 VBASE025.VDF : 7.10.12.217 2048 Bytes 2010-10-14 08:00:52 VBASE026.VDF : 7.10.12.218 2048 Bytes 2010-10-14 08:00:52 VBASE027.VDF : 7.10.12.219 2048 Bytes 2010-10-14 08:00:52 VBASE028.VDF : 7.10.12.220 2048 Bytes 2010-10-14 08:00:52 VBASE029.VDF : 7.10.12.221 2048 Bytes 2010-10-14 08:00:54 VBASE030.VDF : 7.10.12.222 2048 Bytes 2010-10-14 08:00:54 VBASE031.VDF : 7.10.12.229 66048 Bytes 2010-10-15 08:00:54 Engineversion : 8.2.4.82 AEVDF.DLL : 8.1.2.1 106868 Bytes 2010-10-16 08:01:20 AESCRIPT.DLL : 8.1.3.45 1368443 Bytes 2010-10-16 08:01:20 AESCN.DLL : 8.1.6.1 127347 Bytes 2010-10-16 08:01:16 AESBX.DLL : 8.1.3.1 254324 Bytes 2010-10-16 08:01:20 AERDL.DLL : 8.1.9.2 635252 Bytes 2010-10-16 08:01:16 AEPACK.DLL : 8.2.3.11 471416 Bytes 2010-10-16 08:01:14 AEOFFICE.DLL : 8.1.1.8 201081 Bytes 2010-10-16 08:01:12 AEHEUR.DLL : 8.1.2.35 2961784 Bytes 2010-10-16 08:01:10 AEHELP.DLL : 8.1.14.0 246134 Bytes 2010-10-16 08:01:00 AEGEN.DLL : 8.1.3.23 401779 Bytes 2010-10-16 08:01:00 AEEMU.DLL : 8.1.2.0 393588 Bytes 2010-10-16 08:00:58 AECORE.DLL : 8.1.17.0 196982 Bytes 2010-10-16 08:00:56 AEBB.DLL : 8.1.1.0 53618 Bytes 2010-10-16 08:00:56 AVWINLL.DLL : 10.0.0.0 19304 Bytes 2010-01-14 11:03:40 AVPREF.DLL : 10.0.0.0 44904 Bytes 2010-01-14 11:03:36 AVREP.DLL : 10.0.0.8 62209 Bytes 2010-02-18 15:47:42 AVREG.DLL : 10.0.3.0 53096 Bytes 2010-04-01 11:35:48 AVSCPLR.DLL : 10.0.3.0 83816 Bytes 2010-04-01 11:39:52 AVARKT.DLL : 10.0.0.14 227176 Bytes 2010-04-01 11:22:14 AVEVTLOG.DLL : 10.0.0.8 203112 Bytes 2010-01-26 08:53:32 SQLITE3.DLL : 3.6.19.0 355688 Bytes 2010-01-28 11:58:00 AVSMTP.DLL : 10.0.0.17 63848 Bytes 2010-03-16 14:38:58 NETNT.DLL : 10.0.0.0 11624 Bytes 2010-02-19 13:41:02 RCIMAGE.DLL : 10.0.0.26 2550120 Bytes 2010-01-28 12:10:22 RCTEXT.DLL : 10.0.53.0 97128 Bytes 2010-04-09 13:14:30 Configuration settings for the scan: Jobname.............................: Complete system scan Configuration file..................: c:\program files\avira\antivir desktop\sysscan.avp Logging.............................: low Primary action......................: interactive Secondary action....................: ignore Scan master boot sector.............: on Scan boot sector....................: on Boot sectors........................: C:, D:, Process scan........................: on Extended process scan...............: on Scan registry.......................: on Search for rootkits.................: on Integrity checking of system files..: off Scan all files......................: All files Scan archives.......................: on Recursion depth.....................: 20 Smart extensions....................: on Macro heuristic.....................: on File heuristic......................: medium Start of the scan: 16 października 2010 15:16 Starting search for hidden objects. The scan of running processes will be started Scan process 'msdtc.exe' - '42' Module(s) have been scanned Scan process 'dllhost.exe' - '59' Module(s) have been scanned Scan process 'dllhost.exe' - '45' Module(s) have been scanned Scan process 'vssvc.exe' - '48' Module(s) have been scanned Scan process 'avscan.exe' - '66' Module(s) have been scanned Scan process 'avcenter.exe' - '62' Module(s) have been scanned Scan process 'alg.exe' - '33' Module(s) have been scanned Scan process 'SMAgent.exe' - '14' Module(s) have been scanned Scan process 'avshadow.exe' - '25' Module(s) have been scanned Scan process 'ctfmon.exe' - '25' Module(s) have been scanned Scan process 'jqs.exe' - '74' Module(s) have been scanned Scan process 'avguard.exe' - '53' Module(s) have been scanned Scan process 'SUPERAntiSpyware.exe' - '59' Module(s) have been scanned Scan process 'jusched.exe' - '20' Module(s) have been scanned Scan process 'avgnt.exe' - '50' Module(s) have been scanned Scan process 'svchost.exe' - '34' Module(s) have been scanned Scan process 'sched.exe' - '42' Module(s) have been scanned Scan process 'Explorer.EXE' - '101' Module(s) have been scanned Scan process 'spoolsv.exe' - '51' Module(s) have been scanned Scan process 'svchost.exe' - '38' Module(s) have been scanned Scan process 'svchost.exe' - '32' Module(s) have been scanned Scan process 'svchost.exe' - '163' Module(s) have been scanned Scan process 'svchost.exe' - '38' Module(s) have been scanned Scan process 'svchost.exe' - '51' Module(s) have been scanned Scan process 'lsass.exe' - '58' Module(s) have been scanned Scan process 'services.exe' - '27' Module(s) have been scanned Scan process 'winlogon.exe' - '71' Module(s) have been scanned Scan process 'csrss.exe' - '12' Module(s) have been scanned Scan process 'smss.exe' - '2' Module(s) have been scanned Starting master boot sector scan: Master boot sector HD0 [INFO] No virus was found! Start scanning boot sectors: Boot sector 'C:\' [INFO] No virus was found! Boot sector 'D:\' [INFO] No virus was found! Starting to scan executable files (registry). The registry was scanned ( '379' files ). Starting the file scan: Begin scan in 'C:\' C:\WINDOWS\system32\alv.exe [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan --> Object [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan C:\WINDOWS\system32\exclean.exe [DETECTION] Contains recognition pattern of the ADSPY/Exact.SearchBar adware or spyware C:\WINDOWS\system32\qmgrs.dll [DETECTION] Contains a recognition pattern of the (harmful) BDS/Backdoor.Gen back-door program Begin scan in 'D:\' Beginning disinfection: C:\WINDOWS\system32\qmgrs.dll [DETECTION] Contains a recognition pattern of the (harmful) BDS/Backdoor.Gen back-door program [WARNING] The file was ignored! C:\WINDOWS\system32\exclean.exe [DETECTION] Contains recognition pattern of the ADSPY/Exact.SearchBar adware or spyware [WARNING] The file was ignored! C:\WINDOWS\system32\alv.exe [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan [WARNING] The file was ignored! End of the scan: 16 października 2010 17:14 Used time: 1:13:14 Hour(s) The scan has been done completely. 7204 Scanned directories 287834 Files were scanned 3 Viruses and/or unwanted programs were found 0 Files were classified as suspicious 0 files were deleted 0 Viruses and unwanted programs were repaired 0 Files were moved to quarantine 0 Files were renamed 0 Files cannot be scanned 287831 Files not concerned 2757 Archives were scanned 3 Warnings 0 Notes 270625 Objects were scanned with rootkit scan 0 Hidden objects were found