Avira AntiVir Personal Report file date: Monday, December 07, 2009 13:25 Scanning for 1417608 virus strains and unwanted programs. Licensee : Avira AntiVir Personal - FREE Antivirus Serial number : 0000149996-ADJIE-0000001 Platform : Windows Vista Windows version : (Service Pack 2) [6.0.6002] Boot mode : Normally booted Username : SYSTEM Computer name : MARITERE-PC Version information: BUILD.DAT : 9.0.0.415 21609 Bytes 11/8/2009 10:00:00 AVSCAN.EXE : 9.0.3.10 466689 Bytes 10/13/2009 15:26:33 AVSCAN.DLL : 9.0.3.0 40705 Bytes 2/27/2009 14:58:24 LUKE.DLL : 9.0.3.2 209665 Bytes 2/20/2009 15:35:49 LUKERES.DLL : 9.0.2.0 12033 Bytes 2/27/2009 14:58:52 VBASE000.VDF : 7.10.0.0 19875328 Bytes 11/6/2009 11:35:52 VBASE001.VDF : 7.10.1.0 1372672 Bytes 11/19/2009 17:14:15 VBASE002.VDF : 7.10.1.1 2048 Bytes 11/19/2009 17:14:15 VBASE003.VDF : 7.10.1.2 2048 Bytes 11/19/2009 17:14:16 VBASE004.VDF : 7.10.1.3 2048 Bytes 11/19/2009 17:14:16 VBASE005.VDF : 7.10.1.4 2048 Bytes 11/19/2009 17:14:16 VBASE006.VDF : 7.10.1.5 2048 Bytes 11/19/2009 17:14:16 VBASE007.VDF : 7.10.1.6 2048 Bytes 11/19/2009 17:14:16 VBASE008.VDF : 7.10.1.7 2048 Bytes 11/19/2009 17:14:16 VBASE009.VDF : 7.10.1.8 2048 Bytes 11/19/2009 17:14:16 VBASE010.VDF : 7.10.1.9 2048 Bytes 11/19/2009 17:14:16 VBASE011.VDF : 7.10.1.10 2048 Bytes 11/19/2009 17:14:16 VBASE012.VDF : 7.10.1.11 2048 Bytes 11/19/2009 17:14:16 VBASE013.VDF : 7.10.1.79 209920 Bytes 11/25/2009 17:14:17 VBASE014.VDF : 7.10.1.128 197632 Bytes 11/30/2009 17:14:19 VBASE015.VDF : 7.10.1.129 2048 Bytes 11/30/2009 17:14:19 VBASE016.VDF : 7.10.1.130 2048 Bytes 11/30/2009 17:14:19 VBASE017.VDF : 7.10.1.131 2048 Bytes 11/30/2009 17:14:19 VBASE018.VDF : 7.10.1.132 2048 Bytes 11/30/2009 17:14:19 VBASE019.VDF : 7.10.1.133 2048 Bytes 11/30/2009 17:14:19 VBASE020.VDF : 7.10.1.134 2048 Bytes 11/30/2009 17:14:19 VBASE021.VDF : 7.10.1.135 2048 Bytes 11/30/2009 17:14:20 VBASE022.VDF : 7.10.1.136 2048 Bytes 11/30/2009 17:14:20 VBASE023.VDF : 7.10.1.137 2048 Bytes 11/30/2009 17:14:20 VBASE024.VDF : 7.10.1.138 2048 Bytes 11/30/2009 17:14:20 VBASE025.VDF : 7.10.1.139 2048 Bytes 11/30/2009 17:14:20 VBASE026.VDF : 7.10.1.140 2048 Bytes 11/30/2009 17:14:20 VBASE027.VDF : 7.10.1.141 2048 Bytes 11/30/2009 17:14:20 VBASE028.VDF : 7.10.1.142 2048 Bytes 11/30/2009 17:14:20 VBASE029.VDF : 7.10.1.143 2048 Bytes 11/30/2009 17:14:20 VBASE030.VDF : 7.10.1.144 2048 Bytes 11/30/2009 17:14:20 VBASE031.VDF : 7.10.1.170 150528 Bytes 12/5/2009 17:14:21 Engineversion : 8.2.1.92 AEVDF.DLL : 8.1.1.2 106867 Bytes 11/8/2009 11:38:52 AESCRIPT.DLL : 8.1.2.45 586108 Bytes 12/7/2009 17:14:35 AESCN.DLL : 8.1.2.5 127346 Bytes 11/8/2009 11:38:46 AESBX.DLL : 8.1.1.1 246132 Bytes 11/8/2009 11:38:44 AERDL.DLL : 8.1.3.4 479605 Bytes 12/7/2009 17:14:33 AEPACK.DLL : 8.2.0.3 422261 Bytes 11/8/2009 11:38:40 AEOFFICE.DLL : 8.1.0.38 196987 Bytes 11/8/2009 11:38:38 AEHEUR.DLL : 8.1.0.184 2146681 Bytes 12/7/2009 17:14:31 AEHELP.DLL : 8.1.7.5 237942 Bytes 12/7/2009 17:14:24 AEGEN.DLL : 8.1.1.78 364917 Bytes 12/7/2009 17:14:23 AEEMU.DLL : 8.1.1.0 393587 Bytes 11/8/2009 11:38:26 AECORE.DLL : 8.1.8.5 180598 Bytes 12/7/2009 17:14:21 AEBB.DLL : 8.1.0.3 53618 Bytes 11/8/2009 11:38:20 AVWINLL.DLL : 9.0.0.3 18177 Bytes 12/12/2008 12:47:59 AVPREF.DLL : 9.0.3.0 44289 Bytes 8/26/2009 19:14:02 AVREP.DLL : 8.0.0.3 155905 Bytes 1/20/2009 18:34:28 AVREG.DLL : 9.0.0.0 36609 Bytes 12/5/2008 14:32:09 AVARKT.DLL : 9.0.0.3 292609 Bytes 3/24/2009 19:05:41 AVEVTLOG.DLL : 9.0.0.7 167169 Bytes 1/30/2009 14:37:08 SQLITE3.DLL : 3.6.1.0 326401 Bytes 1/28/2009 19:03:49 SMTPLIB.DLL : 9.2.0.25 28417 Bytes 2/2/2009 12:21:33 NETNT.DLL : 9.0.0.0 11521 Bytes 12/5/2008 14:32:10 RCIMAGE.DLL : 9.0.0.25 2438913 Bytes 5/15/2009 19:39:58 RCTEXT.DLL : 9.0.73.0 86785 Bytes 10/13/2009 16:25:47 Configuration settings for the scan: Jobname.............................: Complete system scan Configuration file..................: c:\program files\avira\antivir desktop\sysscan.avp Logging.............................: low Primary action......................: interactive Secondary action....................: ignore Scan master boot sector.............: on Scan boot sector....................: on Boot sectors........................: C:, D:, Process scan........................: on Scan registry.......................: on Search for rootkits.................: on Integrity checking of system files..: off Scan all files......................: All files Scan archives.......................: on Recursion depth.....................: 20 Smart extensions....................: on Macro heuristic.....................: on File heuristic......................: medium Deviating risk categories...........: +APPL,+GAME,+JOKE,+PCK,+PFS,+SPR, Start of the scan: Monday, December 07, 2009 13:25 Starting search for hidden objects. '97160' objects were checked, '0' hidden objects were found. The scan of running processes will be started Scan process 'SearchFilterHost.exe' - '1' Module(s) have been scanned Scan process 'SearchProtocolHost.exe' - '1' Module(s) have been scanned Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'avcenter.exe' - '1' Module(s) have been scanned Scan process 'notepad.exe' - '1' Module(s) have been scanned Scan process 'avgnt.exe' - '1' Module(s) have been scanned Scan process 'sched.exe' - '1' Module(s) have been scanned Scan process 'avguard.exe' - '1' Module(s) have been scanned Scan process 'HPHC_Service.exe' - '1' Module(s) have been scanned Scan process 'SynTPHelper.exe' - '1' Module(s) have been scanned Scan process 'HpqToaster.exe' - '1' Module(s) have been scanned Scan process 'wlcomm.exe' - '1' Module(s) have been scanned Scan process 'Ymsgr_tray.exe' - '1' Module(s) have been scanned Scan process 'WLIDSVCM.EXE' - '1' Module(s) have been scanned Scan process 'WiFiMsg.exe' - '1' Module(s) have been scanned Scan process 'Com4QLBEx.exe' - '1' Module(s) have been scanned Scan process 'WmiPrvSE.exe' - '1' Module(s) have been scanned Scan process 'wmpnetwk.exe' - '1' Module(s) have been scanned Scan process 'hpqwmiex.exe' - '1' Module(s) have been scanned Scan process 'WUDFHost.exe' - '1' Module(s) have been scanned Scan process 'YahooAUService.exe' - '1' Module(s) have been scanned Scan process 'XAudio.exe' - '1' Module(s) have been scanned Scan process 'SearchIndexer.exe' - '1' Module(s) have been scanned Scan process 'WLIDSVC.EXE' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'SeaPort.exe' - '1' Module(s) have been scanned Scan process 'BLService.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'MSCamS32.exe' - '1' Module(s) have been scanned Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'ACService.exe' - '1' Module(s) have been scanned Scan process 'ehmsas.exe' - '1' Module(s) have been scanned Scan process 'TechTracker.exe' - '1' Module(s) have been scanned Scan process 'the_blinkx_toolbar.exe' - '1' Module(s) have been scanned Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned Scan process 'E_FATIEQA.EXE' - '1' Module(s) have been scanned Scan process 'wmpnscfg.exe' - '1' Module(s) have been scanned Scan process 'ehtray.exe' - '1' Module(s) have been scanned Scan process 'LightScribeControlPanel.exe' - '1' Module(s) have been scanned Scan process 'vVX3000.exe' - '1' Module(s) have been scanned Scan process 'jusched.exe' - '1' Module(s) have been scanned Scan process 'mswinext.exe' - '1' Module(s) have been scanned Scan process 'SearchProtection.exe' - '1' Module(s) have been scanned Scan process 'HPWAMain.exe' - '1' Module(s) have been scanned Scan process 'hpwuSchd2.exe' - '1' Module(s) have been scanned Scan process 'igfxsrvc.exe' - '1' Module(s) have been scanned Scan process 'QLBCTRL.exe' - '1' Module(s) have been scanned Scan process 'MSASCui.exe' - '1' Module(s) have been scanned Scan process 'QPService.exe' - '1' Module(s) have been scanned Scan process 'igfxpers.exe' - '1' Module(s) have been scanned Scan process 'hkcmd.exe' - '1' Module(s) have been scanned Scan process 'igfxtray.exe' - '1' Module(s) have been scanned Scan process 'SynTPEnh.exe' - '1' Module(s) have been scanned Scan process 'explorer.exe' - '1' Module(s) have been scanned Scan process 'taskeng.exe' - '1' Module(s) have been scanned Scan process 'dwm.exe' - '1' Module(s) have been scanned Scan process 'taskeng.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'spoolsv.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'SLsvc.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'audiodg.exe' - '0' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'winlogon.exe' - '1' Module(s) have been scanned Scan process 'lsm.exe' - '1' Module(s) have been scanned Scan process 'lsass.exe' - '1' Module(s) have been scanned Scan process 'services.exe' - '1' Module(s) have been scanned Scan process 'csrss.exe' - '1' Module(s) have been scanned Scan process 'wininit.exe' - '1' Module(s) have been scanned Scan process 'csrss.exe' - '1' Module(s) have been scanned Scan process 'smss.exe' - '1' Module(s) have been scanned 81 processes with 81 modules were scanned Starting master boot sector scan: Master boot sector HD0 [INFO] No virus was found! Master boot sector HD1 [INFO] No virus was found! [INFO] Please restart the search with Administrator rights Start scanning boot sectors: Boot sector 'C:\' [INFO] No virus was found! Boot sector 'D:\' [INFO] No virus was found! Starting to scan executable files (registry). C:\Program Files\ShoppingReport\Bin\2.6.58\ShoppingReport.dll [DETECTION] Contains recognition pattern of the ADSPY/SmartShoper adware or spyware C:\Program Files\ShoppingReport\Bin\2.6.58\ShoppingReport.dll [DETECTION] Contains recognition pattern of the ADSPY/SmartShoper adware or spyware The registry was scanned ( '48' files ). Starting the file scan: Begin scan in 'C:\' C:\hiberfil.sys [WARNING] The file could not be opened! [NOTE] This file is a Windows system file. [NOTE] This file cannot be opened for scanning. C:\pagefile.sys [WARNING] The file could not be opened! [NOTE] This file is a Windows system file. [NOTE] This file cannot be opened for scanning. C:\HP\BIN\EndProcess.exe [DETECTION] Contains recognition pattern of the APPL/KillApp.A application C:\Program Files\Hewlett-Packard\HP TCS\SetACL.exe [DETECTION] Contains recognition pattern of the APPL/ACLSet application Begin scan in 'D:\' Beginning disinfection: C:\Program Files\ShoppingReport\Bin\2.6.58\ShoppingReport.dll [DETECTION] Contains recognition pattern of the ADSPY/SmartShoper adware or spyware [WARNING] An error has occurred and the file was not deleted. ErrorID: 26004 [WARNING] The source file could not be found. [NOTE] Attempting to perform action using the ARK library. [WARNING] Error in ARK library [NOTE] The file is scheduled for deleting after reboot. C:\Program Files\ShoppingReport\Bin\2.6.58\ShoppingReport.dll [DETECTION] Contains recognition pattern of the ADSPY/SmartShoper adware or spyware [WARNING] An error has occurred and the file was not deleted. ErrorID: 26004 [WARNING] The source file could not be found. [NOTE] Attempting to perform action using the ARK library. [WARNING] Error in ARK library [NOTE] The file is scheduled for deleting after reboot. C:\HP\BIN\EndProcess.exe [DETECTION] Contains recognition pattern of the APPL/KillApp.A application [NOTE] The file was moved to '4b8146a9.qua'! C:\Program Files\Hewlett-Packard\HP TCS\SetACL.exe [DETECTION] Contains recognition pattern of the APPL/ACLSet application [NOTE] The file was moved to '4b9146a0.qua'! End of the scan: Monday, December 07, 2009 14:15 Used time: 46:39 Minute(s) The scan has been done completely. 22382 Scanned directories 333205 Files were scanned 4 Viruses and/or unwanted programs were found 0 Files were classified as suspicious 0 files were deleted 0 Viruses and unwanted programs were repaired 2 Files were moved to quarantine 0 Files were renamed 2 Files cannot be scanned 333199 Files not concerned 1854 Archives were scanned 4 Warnings 6 Notes 97160 Objects were scanned with rootkit scan 0 Hidden objects were found