Avira AntiVir Personal Report file date: 12 czerwca 2012 13:03 Scanning for 3814688 virus strains and unwanted programs. The program is running as an unrestricted full version. Online services are available: Licensee : Avira AntiVir Personal - Free Antivirus Serial number : 0000149996-ADJIE-0000001 Platform : Windows XP Windows version : (Dodatek Service Pack 3) [5.1.2600] Boot mode : Normally booted Username : SYSTEM Computer name : WLASCICI-E3CF91 Version information: BUILD.DAT : 10.2.0.707 36070 Bytes 2012-01-25 13:11:00 AVSCAN.EXE : 10.3.0.7 484008 Bytes 2012-02-09 13:52:09 AVSCAN.DLL : 10.0.5.0 47464 Bytes 2012-02-09 13:52:09 LUKE.DLL : 10.3.0.5 45416 Bytes 2012-02-09 13:52:09 LUKERES.DLL : 10.0.0.1 12648 Bytes 2010-02-10 22:40:49 AVSCPLR.DLL : 10.3.0.7 119656 Bytes 2012-02-09 13:52:10 AVREG.DLL : 10.3.0.9 88833 Bytes 2012-02-09 13:52:10 VBASE000.VDF : 7.10.0.0 19875328 Bytes 2009-11-06 08:05:36 VBASE001.VDF : 7.11.0.0 13342208 Bytes 2010-12-14 13:23:50 VBASE002.VDF : 7.11.19.170 14374912 Bytes 2011-12-20 13:52:07 VBASE003.VDF : 7.11.21.238 4472832 Bytes 2012-02-01 13:52:08 VBASE004.VDF : 7.11.26.44 4329472 Bytes 2012-03-28 06:15:18 VBASE005.VDF : 7.11.29.136 2166272 Bytes 2012-05-10 16:19:50 VBASE006.VDF : 7.11.29.137 2048 Bytes 2012-05-10 16:19:50 VBASE007.VDF : 7.11.29.138 2048 Bytes 2012-05-10 16:19:50 VBASE008.VDF : 7.11.29.139 2048 Bytes 2012-05-10 16:19:50 VBASE009.VDF : 7.11.29.140 2048 Bytes 2012-05-10 16:19:50 VBASE010.VDF : 7.11.29.141 2048 Bytes 2012-05-10 16:19:50 VBASE011.VDF : 7.11.29.142 2048 Bytes 2012-05-10 16:19:50 VBASE012.VDF : 7.11.29.143 2048 Bytes 2012-05-10 16:19:50 VBASE013.VDF : 7.11.29.144 2048 Bytes 2012-05-10 16:19:50 VBASE014.VDF : 7.11.30.3 198144 Bytes 2012-05-14 06:55:24 VBASE015.VDF : 7.11.30.69 186368 Bytes 2012-05-17 06:55:25 VBASE016.VDF : 7.11.30.143 223744 Bytes 2012-05-21 06:42:44 VBASE017.VDF : 7.11.30.207 287744 Bytes 2012-05-23 06:52:11 VBASE018.VDF : 7.11.31.57 188416 Bytes 2012-05-28 06:59:25 VBASE019.VDF : 7.11.31.111 214528 Bytes 2012-05-30 08:14:37 VBASE020.VDF : 7.11.31.151 116736 Bytes 2012-05-31 08:14:38 VBASE021.VDF : 7.11.31.205 134144 Bytes 2012-06-03 08:14:39 VBASE022.VDF : 7.11.32.9 169472 Bytes 2012-06-05 08:14:39 VBASE023.VDF : 7.11.32.85 155648 Bytes 2012-06-08 17:33:04 VBASE024.VDF : 7.11.32.86 2048 Bytes 2012-06-08 17:33:04 VBASE025.VDF : 7.11.32.87 2048 Bytes 2012-06-08 17:33:04 VBASE026.VDF : 7.11.32.88 2048 Bytes 2012-06-08 17:33:04 VBASE027.VDF : 7.11.32.89 2048 Bytes 2012-06-08 17:33:04 VBASE028.VDF : 7.11.32.90 2048 Bytes 2012-06-08 17:33:04 VBASE029.VDF : 7.11.32.91 2048 Bytes 2012-06-08 17:33:05 VBASE030.VDF : 7.11.32.92 2048 Bytes 2012-06-08 17:33:05 VBASE031.VDF : 7.11.32.116 77824 Bytes 2012-06-10 17:33:05 Engineversion : 8.2.10.80 AEVDF.DLL : 8.1.2.8 106867 Bytes 2012-06-07 08:14:51 AESCRIPT.DLL : 8.1.4.24 450939 Bytes 2012-06-07 08:14:51 AESCN.DLL : 8.1.8.2 131444 Bytes 2012-02-09 13:52:09 AESBX.DLL : 8.2.5.10 606580 Bytes 2012-05-30 07:01:30 AERDL.DLL : 8.1.9.15 639348 Bytes 2012-02-09 13:52:09 AEPACK.DLL : 8.2.16.16 807288 Bytes 2012-05-30 07:01:15 AEOFFICE.DLL : 8.1.2.28 201082 Bytes 2012-05-03 16:10:30 AEHEUR.DLL : 8.1.4.36 4874615 Bytes 2012-06-07 08:14:50 AEHELP.DLL : 8.1.21.0 254326 Bytes 2012-05-12 16:20:06 AEGEN.DLL : 8.1.5.28 422260 Bytes 2012-05-03 16:10:21 AEEXP.DLL : 8.1.0.44 82293 Bytes 2012-05-30 07:01:31 AEEMU.DLL : 8.1.3.0 393589 Bytes 2011-01-10 13:23:18 AECORE.DLL : 8.1.25.10 201080 Bytes 2012-06-07 08:14:43 AEBB.DLL : 8.1.1.0 53618 Bytes 2011-01-10 13:23:18 AVWINLL.DLL : 10.0.0.0 19304 Bytes 2011-01-10 13:23:32 AVPREF.DLL : 10.0.3.2 44904 Bytes 2012-02-09 13:52:09 AVREP.DLL : 10.0.0.10 174120 Bytes 2012-02-09 13:52:10 AVARKT.DLL : 10.0.26.1 255336 Bytes 2012-02-09 13:52:09 AVEVTLOG.DLL : 10.0.0.9 203112 Bytes 2012-02-09 13:52:09 SQLITE3.DLL : 3.6.19.0 355688 Bytes 2010-06-17 13:27:22 AVSMTP.DLL : 10.0.0.17 63848 Bytes 2011-01-10 13:23:31 NETNT.DLL : 10.0.0.0 11624 Bytes 2010-06-17 13:27:21 RCIMAGE.DLL : 10.0.0.35 2589544 Bytes 2012-02-09 13:52:06 RCTEXT.DLL : 10.0.64.0 97640 Bytes 2012-02-09 13:52:06 Configuration settings for the scan: Jobname.............................: avguard_async_scan Configuration file..................: C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\TEMP\AVGUARD_0f48f7ac\guard_slideup.avp Logging.............................: Default Primary action......................: repair Secondary action....................: quarantine Scan master boot sector.............: on Scan boot sector....................: off Process scan........................: on Scan registry.......................: off Search for rootkits.................: off Integrity checking of system files..: off Scan all files......................: All files Scan archives.......................: on Recursion depth.....................: 20 Smart extensions....................: on Macro heuristic.....................: on File heuristic......................: Complete Start of the scan: 12 czerwca 2012 13:03 The scan of running processes will be started Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'plugin-container.exe' - '1' Module(s) have been scanned Scan process 'avcenter.exe' - '1' Module(s) have been scanned Scan process 'msdtc.exe' - '1' Module(s) have been scanned Scan process 'dllhost.exe' - '1' Module(s) have been scanned Scan process 'DAP.EXE' - '1' Module(s) have been scanned Scan process 'firefox.exe' - '1' Module(s) have been scanned Scan process 'AAWTray.exe' - '1' Module(s) have been scanned Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned Scan process 'unsecapp.exe' - '1' Module(s) have been scanned Scan process 'hpqimzone.exe' - '1' Module(s) have been scanned Scan process 'Skype.exe' - '1' Module(s) have been scanned Scan process 'ctfmon.exe' - '1' Module(s) have been scanned Scan process 'jusched.exe' - '1' Module(s) have been scanned Scan process 'HPWuSchd2.exe' - '1' Module(s) have been scanned Scan process 'avgnt.exe' - '1' Module(s) have been scanned Scan process 'RUNDLL32.EXE' - '1' Module(s) have been scanned Scan process 'Smax4.exe' - '1' Module(s) have been scanned Scan process 'smax4pnp.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'Explorer.EXE' - '1' Module(s) have been scanned Scan process 'avshadow.exe' - '1' Module(s) have been scanned Scan process 'c2c_service.exe' - '1' Module(s) have been scanned Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned Scan process 'jqs.exe' - '1' Module(s) have been scanned Scan process 'ATKKBService.exe' - '1' Module(s) have been scanned Scan process 'avguard.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'sched.exe' - '1' Module(s) have been scanned Scan process 'spoolsv.exe' - '1' Module(s) have been scanned Scan process 'AAWService.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'lsass.exe' - '1' Module(s) have been scanned Scan process 'services.exe' - '1' Module(s) have been scanned Scan process 'winlogon.exe' - '1' Module(s) have been scanned Scan process 'csrss.exe' - '1' Module(s) have been scanned Scan process 'smss.exe' - '1' Module(s) have been scanned Starting the file scan: Begin scan in 'C:\WINDOWS\Installer\{5cb26a82-49ea-45d7-4d3b-52b8ad1cf5c9}\U\800000cb.@' C:\WINDOWS\Installer\{5cb26a82-49ea-45d7-4d3b-52b8ad1cf5c9}\U\800000cb.@ [DETECTION] Is the TR/ATRAPS.Gen2 Trojan [NOTE] The file was moved to the quarantine directory under the name '52558342.qua'. End of the scan: 12 czerwca 2012 13:03 Used time: 00:04 Minute(s) The scan has been done completely. 0 Scanned directories 42 Files were scanned 1 Viruses and/or unwanted programs were found 0 Files were classified as suspicious 0 files were deleted 0 Viruses and unwanted programs were repaired 1 Files were moved to quarantine 0 Files were renamed 0 Files cannot be scanned 41 Files not concerned 0 Archives were scanned 0 Warnings 1 Notes