Avira AntiVir Personal
Report file date: domenica 19 ottobre 2008 18:17
Scanning for 1692263 virus strains and unwanted programs.
Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Boot mode: Normally booted
Username: SYSTEM
Computer name: DIRTYPC
Version information:
BUILD.DAT : 8.1.0.331 16934 Bytes 12/08/2008 11:46:00
AVSCAN.EXE : 8.1.4.7 315649 Bytes 26/06/2008 08:57:53
AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 07:56:40
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:19
LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 07:58:52
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 10:33:34
ANTIVIR1.VDF : 7.0.5.1 8182784 Bytes 24/06/2008 13:54:15
ANTIVIR2.VDF : 7.0.7.12 4066816 Bytes 08/10/2008 16:15:53
ANTIVIR3.VDF : 7.0.7.58 315904 Bytes 17/10/2008 16:15:54
Engineversion : 8.2.0.5
AEVDF.DLL : 8.1.0.6 102772 Bytes 19/10/2008 16:16:02
AESCRIPT.DLL : 8.1.1.9 319867 Bytes 19/10/2008 16:16:01
AESCN.DLL : 8.1.1.3 123252 Bytes 19/10/2008 16:16:00
AERDL.DLL : 8.1.1.2 438644 Bytes 19/10/2008 16:16:00
AEPACK.DLL : 8.1.2.4 369014 Bytes 19/10/2008 16:15:59
AEOFFICE.DLL : 8.1.0.28 196987 Bytes 19/10/2008 16:15:59
AEHEUR.DLL : 8.1.0.59 1438071 Bytes 19/10/2008 16:15:58
AEHELP.DLL : 8.1.1.2 115062 Bytes 19/10/2008 16:15:57
AEGEN.DLL : 8.1.0.41 319861 Bytes 19/10/2008 16:15:56
AEEMU.DLL : 8.1.0.9 393588 Bytes 19/10/2008 16:15:56
AECORE.DLL : 8.1.2.6 172406 Bytes 19/10/2008 16:15:55
AEBB.DLL : 8.1.0.3 53618 Bytes 19/10/2008 16:15:55
AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 08:40:05
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:28:01
AVREP.DLL : 8.0.0.2 98344 Bytes 19/10/2008 16:15:54
AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 11:26:40
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:49
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:40
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 12/06/2008 13:48:07
RCTEXT.DLL : 8.0.52.0 86273 Bytes 27/06/2008 13:34:37
Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\programmi\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, H:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: high
Start of the scan: domenica 19 ottobre 2008 18:17
The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'taskmgr.exe' - '1' Module(s) have been scanned
Scan process 'thunderbird.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'wdfmgr.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'a2service.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'reader_sl.exe' - '1' Module(s) have been scanned
Scan process 'taskswitch.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
29 processes with 29 modules were scanned
Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'H:\'
[INFO] No virus was found!
Starting to scan the registry.
The registry was scanned ( '52' files ).
Starting the file scan:
Begin scan in 'C:\'
C:\hiberfil.sys
[WARNING] The file could not be opened!
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\System Volume Information\_restore{7303F7E8-70B2-4CE6-874F-A2FF80865781}\RP875\A0721765.exe
[DETECTION] Is the TR/Spy.Gen Trojan
[NOTE] The file was moved to '4932646a.qua'!
C:\System Volume Information\_restore{7303F7E8-70B2-4CE6-874F-A2FF80865781}\RP875\A0721766.exe
[DETECTION] Is the TR/Dialer.VSE Trojan
[NOTE] The file was moved to '4932646d.qua'!
C:\System Volume Information\_restore{7303F7E8-70B2-4CE6-874F-A2FF80865781}\RP875\A0721767.exe
[DETECTION] Contains recognition pattern of the DIAL/24576.B dialer
[NOTE] The file was moved to '49326470.qua'!
C:\System Volume Information\_restore{7303F7E8-70B2-4CE6-874F-A2FF80865781}\RP875\A0721768.exe
[DETECTION] Is the TR/Dialer.VSE Trojan
[NOTE] The file was moved to '49326473.qua'!
C:\System Volume Information\_restore{7303F7E8-70B2-4CE6-874F-A2FF80865781}\RP875\A0721769.exe
[DETECTION] Is the TR/Spy.Gen Trojan
[NOTE] The file was moved to '49326475.qua'!
Begin scan in 'H:\' <Dati Mobili>
H:\Mu\[Audio]\[000 Robe Tecniche 000]\SAM.Broadcaster.v3.4.3.Incl.Keymaker-AGAiN.rar
[0] Archive type: RAR

setup_pack\keygen.exe
[DETECTION] Contains recognition pattern of the WORM/Mytob.LU worm
[NOTE] The file was moved to '494871a5.qua'!
H:\Mu\[Audio]\[000 Robe Tecniche 000]\SAM.Party.DJ.v3.4.2.Incl.Keymaker-AGAiN.rar
[0] Archive type: RAR

setup_pack\keygen.exe
[DETECTION] Contains recognition pattern of the WORM/Mytob.DE.9 worm
[NOTE] The file was moved to '494871ac.qua'!
H:\Mu\[Audio]\[000 Robe Tecniche 000]\SAM.Broadcaster.v3.4.3.Incl.Keymaker-AGAiN\setup_pack\keygen.exe
[DETECTION] Contains recognition pattern of the WORM/Mytob.LU worm
[NOTE] The file was moved to '497471d5.qua'!
H:\System Volume Information\_restore{7303F7E8-70B2-4CE6-874F-A2FF80865781}\RP878\A0722087.exe
[DETECTION] Contains recognition pattern of the WORM/Mytob.LU worm
[NOTE] The file was moved to '493272e4.qua'!
End of the scan: domenica 19 ottobre 2008 19:47
Used time: 1:30:15 Hour(s)
The scan has been done completely.
6549 Scanning directories
324550 Files were scanned
9 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
9 files were moved to quarantine
0 files were renamed
2 Files cannot be scanned
324539 Files not concerned
2684 Archives were scanned
2 Warnings
9 Notes