Avira Free Antivirus Report file date: 9 lipca 2012 12:16 Scanning for 3849835 virus strains and unwanted programs. The program is running as an unrestricted full version. Online services are available. Licensee : Avira AntiVir Personal - Free Antivirus Serial number : 0000149996-ADJIE-0000001 Platform : Windows 7 Professional Windows version : (Service Pack 1) [6.1.7601] Boot mode : Normally booted Username : Yommie Computer name : YOMMIE-I7_WIN7 Version information: BUILD.DAT : 12.0.0.1125 41829 Bytes 2012-05-02 17:40:00 AVSCAN.EXE : 12.3.0.15 466896 Bytes 2012-05-08 20:10:59 AVSCAN.DLL : 12.3.0.15 54736 Bytes 2012-05-08 20:10:59 LUKE.DLL : 12.3.0.15 68304 Bytes 2012-05-08 20:10:59 AVSCPLR.DLL : 12.3.0.14 97032 Bytes 2012-05-08 20:10:59 AVREG.DLL : 12.3.0.17 232200 Bytes 2012-05-10 20:10:37 VBASE000.VDF : 7.10.0.0 19875328 Bytes 2009-11-06 18:18:34 VBASE001.VDF : 7.11.0.0 13342208 Bytes 2010-12-14 09:07:39 VBASE002.VDF : 7.11.19.170 14374912 Bytes 2011-12-20 16:58:06 VBASE003.VDF : 7.11.21.238 4472832 Bytes 2012-02-01 07:06:07 VBASE004.VDF : 7.11.26.44 4329472 Bytes 2012-03-28 09:36:32 VBASE005.VDF : 7.11.34.116 4034048 Bytes 2012-06-29 21:19:17 VBASE006.VDF : 7.11.34.117 2048 Bytes 2012-06-29 21:19:18 VBASE007.VDF : 7.11.34.118 2048 Bytes 2012-06-29 21:19:18 VBASE008.VDF : 7.11.34.119 2048 Bytes 2012-06-29 21:19:18 VBASE009.VDF : 7.11.34.120 2048 Bytes 2012-06-29 21:19:18 VBASE010.VDF : 7.11.34.121 2048 Bytes 2012-06-29 21:19:18 VBASE011.VDF : 7.11.34.122 2048 Bytes 2012-06-29 21:19:18 VBASE012.VDF : 7.11.34.123 2048 Bytes 2012-06-29 21:19:18 VBASE013.VDF : 7.11.34.124 2048 Bytes 2012-06-29 21:19:18 VBASE014.VDF : 7.11.34.201 169472 Bytes 2012-07-02 02:44:35 VBASE015.VDF : 7.11.35.19 122368 Bytes 2012-07-04 09:11:23 VBASE016.VDF : 7.11.35.87 146944 Bytes 2012-07-06 09:18:46 VBASE017.VDF : 7.11.35.88 2048 Bytes 2012-07-06 09:18:46 VBASE018.VDF : 7.11.35.89 2048 Bytes 2012-07-06 09:18:46 VBASE019.VDF : 7.11.35.90 2048 Bytes 2012-07-06 09:18:47 VBASE020.VDF : 7.11.35.91 2048 Bytes 2012-07-06 09:18:47 VBASE021.VDF : 7.11.35.92 2048 Bytes 2012-07-06 09:18:47 VBASE022.VDF : 7.11.35.93 2048 Bytes 2012-07-06 09:18:48 VBASE023.VDF : 7.11.35.94 2048 Bytes 2012-07-06 09:18:49 VBASE024.VDF : 7.11.35.95 2048 Bytes 2012-07-06 09:18:50 VBASE025.VDF : 7.11.35.96 2048 Bytes 2012-07-06 09:18:51 VBASE026.VDF : 7.11.35.97 2048 Bytes 2012-07-06 09:18:51 VBASE027.VDF : 7.11.35.98 2048 Bytes 2012-07-06 09:18:52 VBASE028.VDF : 7.11.35.99 2048 Bytes 2012-07-06 09:18:53 VBASE029.VDF : 7.11.35.100 2048 Bytes 2012-07-06 09:18:54 VBASE030.VDF : 7.11.35.101 2048 Bytes 2012-07-06 09:18:54 VBASE031.VDF : 7.11.35.130 73216 Bytes 2012-07-09 08:56:03 Engine version : 8.2.10.106 AEVDF.DLL : 8.1.2.8 106867 Bytes 2012-06-03 21:30:48 AESCRIPT.DLL : 8.1.4.32 455034 Bytes 2012-07-06 09:24:05 AESCN.DLL : 8.1.8.2 131444 Bytes 2012-01-27 21:30:01 AESBX.DLL : 8.2.5.12 606578 Bytes 2012-06-14 21:02:32 AERDL.DLL : 8.1.9.15 639348 Bytes 2011-09-08 21:16:06 AEPACK.DLL : 8.2.16.22 807288 Bytes 2012-06-21 20:53:54 AEOFFICE.DLL : 8.1.2.40 201082 Bytes 2012-06-28 21:19:17 AEHEUR.DLL : 8.1.4.64 5009782 Bytes 2012-07-06 09:24:05 AEHELP.DLL : 8.1.23.2 258422 Bytes 2012-06-28 21:19:12 AEGEN.DLL : 8.1.5.32 434548 Bytes 2012-07-07 09:18:59 AEEXP.DLL : 8.1.0.60 86388 Bytes 2012-07-06 09:24:05 AEEMU.DLL : 8.1.3.0 393589 Bytes 2011-09-01 21:46:01 AECORE.DLL : 8.1.25.10 201080 Bytes 2012-06-01 11:07:52 AEBB.DLL : 8.1.1.0 53618 Bytes 2011-09-01 21:46:01 AVWINLL.DLL : 12.3.0.15 27344 Bytes 2012-05-08 20:10:59 AVPREF.DLL : 12.3.0.15 51920 Bytes 2012-05-08 20:10:59 AVREP.DLL : 12.3.0.15 179208 Bytes 2012-05-08 20:10:59 AVARKT.DLL : 12.3.0.15 211408 Bytes 2012-05-08 20:10:59 AVEVTLOG.DLL : 12.3.0.15 169168 Bytes 2012-05-08 20:10:59 SQLITE3.DLL : 3.7.0.1 398288 Bytes 2012-05-08 20:10:59 AVSMTP.DLL : 12.3.0.15 63440 Bytes 2012-05-08 20:10:59 NETNT.DLL : 12.3.0.15 17104 Bytes 2012-05-08 20:10:59 RCIMAGE.DLL : 12.3.0.15 4450000 Bytes 2012-05-08 20:10:59 RCTEXT.DLL : 12.3.0.15 96720 Bytes 2012-05-08 20:10:59 Configuration settings for the scan: Jobname.............................: Quick system scan Configuration file..................: C:\program files (x86)\avira\antivir desktop\quicksysscan.avp Logging.............................: default Primary action......................: Interactive Secondary action....................: Ignore Scan master boot sector.............: on Scan boot sector....................: on Boot sectors........................: C:, Process scan........................: on Scan registry.......................: on Search for rootkits.................: off Integrity checking of system files..: off Scan all files......................: Intelligent file selection Scan archives.......................: on Recursion depth.....................: 20 Smart extensions....................: on Macro heuristic.....................: on File heuristic......................: off Start of the scan: 9 lipca 2012 12:16 Starting master boot sector scan: Master boot sector HD0 [INFO] No virus was found! Master boot sector HD1 [INFO] No virus was found! Master boot sector HD2 [INFO] No virus was found! Master boot sector HD3 [INFO] No virus was found! Start scanning boot sectors: Boot sector 'C:\' [INFO] No virus was found! The scan of running processes will be started Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'avcenter.exe' - '1' Module(s) have been scanned Scan process 'NovaBackX.exe' - '1' Module(s) have been scanned Scan process 'VSTBridgeApp.exe' - '1' Module(s) have been scanned Scan process 'VideoEngineOutputer.exe' - '1' Module(s) have been scanned Scan process 'VideoEnginePreloader.exe' - '1' Module(s) have been scanned Scan process 'VideoEngineDecoder.exe' - '1' Module(s) have been scanned Scan process 'SYNSOPOS.exe' - '1' Module(s) have been scanned Scan process 'nsCtrl.exe' - '1' Module(s) have been scanned Scan process 'opera_plugin_wrapper.exe' - '1' Module(s) have been scanned Scan process 'opera.exe' - '1' Module(s) have been scanned Scan process 'notepad++.exe' - '1' Module(s) have been scanned Scan process 'mbamservice.exe' - '1' Module(s) have been scanned Scan process 'winamp.exe' - '1' Module(s) have been scanned Scan process 'jusched.exe' - '1' Module(s) have been scanned Scan process 'iTunesHelper.exe' - '1' Module(s) have been scanned Scan process 'avgnt.exe' - '1' Module(s) have been scanned Scan process 'speedfan.exe' - '1' Module(s) have been scanned Scan process 'PnkBstrA.exe' - '1' Module(s) have been scanned Scan process 'CtHelper.exe' - '1' Module(s) have been scanned Scan process 'Dropbox.exe' - '1' Module(s) have been scanned Scan process 'nsService.exe' - '1' Module(s) have been scanned Scan process 'AnyDVDtray.exe' - '1' Module(s) have been scanned Scan process 'KiesPDLR.exe' - '1' Module(s) have been scanned Scan process 'AppleMobileDeviceService.exe' - '1' Module(s) have been scanned Scan process 'avguard.exe' - '1' Module(s) have been scanned Scan process 'armsvc.exe' - '1' Module(s) have been scanned Scan process 'sched.exe' - '1' Module(s) have been scanned Starting to scan executable files (registry). C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVD-uninst.exe [WARNING] Invalid compressed data C:\Program Files (x86)\SpeedFan\uninstall.exe [WARNING] Invalid end of file C:\Program Files (x86)\Winamp\UninstWA.exe [WARNING] Unsupported archive version The registry was scanned ( '3804' files ). Starting the file scan: Begin scan in 'C:\Users\Yommie' C:\Users\Yommie\AppData\Local\Temp\ir_ext_temp_0\AutoPlay\autorun.cdd [WARNING] The file is password protected C:\Users\Yommie\AppData\Local\Temp\ir_ext_temp_0\AutoPlay\Docs\SetupAnyDVD7040.exe [WARNING] Invalid compressed data C:\Users\Yommie\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\29\3aa5201d-78361ecc [0] Archive type: ZIP --> main.class [DETECTION] Contains recognition pattern of the EXP/12-0507.BI.4 exploit Begin scan in 'C:\Windows' C:\Windows\SoftwareDistribution\Download\13e33b33d0c662fcc18b84169366ca88\BIT42B8.tmp [WARNING] No further files can be extracted from this archive. The archive will be closed Begin scan in 'C:\Users\' C:\Users\Yommie\AppData\Local\Temp\ir_ext_temp_0\AutoPlay\autorun.cdd [WARNING] The file is password protected C:\Users\Yommie\AppData\Local\Temp\ir_ext_temp_0\AutoPlay\Docs\SetupAnyDVD7040.exe [WARNING] Invalid compressed data C:\Users\Yommie\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\29\3aa5201d-78361ecc [0] Archive type: ZIP --> main.class [DETECTION] Contains recognition pattern of the EXP/12-0507.BI.4 exploit Begin scan in 'C:\Program Files (x86)' C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool-1.bin [WARNING] Error multiple volume C:\Program Files (x86)\K-Lite Codec Pack\Tools\Win7DSFilterTweaker-1.bin [WARNING] Error multiple volume C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVD-uninst.exe [WARNING] Invalid compressed data C:\Program Files (x86)\SpeedFan\uninstall.exe [WARNING] Invalid end of file C:\Program Files (x86)\Winamp\UninstWA.exe [WARNING] Unsupported archive version C:\Program Files (x86)\Winamp\Skins\mp3\mp3\mp3\dane\Tripex3.exe [WARNING] Unsupported archive version C:\Program Files (x86)\Winamp\Skins\Skins\dane\lamewin32.exe [WARNING] Unsupported archive version Beginning disinfection: C:\Users\Yommie\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\29\3aa5201d-78361ecc [DETECTION] Contains recognition pattern of the EXP/12-0507.BI.4 exploit [NOTE] The file was moved to the quarantine directory under the name '548e623c.qua'. End of the scan: 9 lipca 2012 14:24 Used time: 1:52:44 Hour(s) The scan has been done completely. 40673 Scanned directories 721943 Files were scanned 2 Viruses and/or unwanted programs were found 0 Files were classified as suspicious 0 Files were deleted 0 Viruses and unwanted programs were repaired 1 Files were moved to quarantine 0 Files were renamed 0 Files cannot be scanned 721941 Files not concerned 8107 Archives were scanned 15 Warnings 1 Notes