addicted to....
Membru Senior
 Din: N.53.21.836 W.006.14.565
Inregistrat: acum 17 ani
|
|
nu e atat de cura ,l am scanat cu avira de pe o alta partitie Rezultatul:
Version information: BUILD.DAT : 9.0.0.421 21382 Bytes 24/03/2009 11:03:00 AVSCAN.EXE : 9.0.3.3 464641 Bytes 24/02/2009 11:13:26 AVSCAN.DLL : 9.0.3.0 40705 Bytes 27/02/2009 09:58:24 LUKE.DLL : 9.0.3.2 209665 Bytes 20/02/2009 10:35:49 LUKERES.DLL : 9.0.2.0 12033 Bytes 27/02/2009 09:58:52 ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 11:30:36 ANTIVIR1.VDF : 7.1.2.12 3336192 Bytes 11/02/2009 19:33:26 ANTIVIR2.VDF : 7.1.3.0 1330176 Bytes 01/04/2009 18:13:58 ANTIVIR3.VDF : 7.1.3.42 169984 Bytes 11/04/2009 18:13:59 Engineversion : 8.2.0.138 AEVDF.DLL : 8.1.1.0 106868 Bytes 27/01/2009 16:36:42 AESCRIPT.DLL : 8.1.1.73 373114 Bytes 12/04/2009 18:14:04 AESCN.DLL : 8.1.1.10 127348 Bytes 12/04/2009 18:14:03 AERDL.DLL : 8.1.1.3 438645 Bytes 29/10/2008 17:24:41 AEPACK.DLL : 8.1.3.12 397687 Bytes 12/04/2009 18:14:03 AEOFFICE.DLL : 8.1.0.36 196987 Bytes 26/02/2009 19:01:56 AEHEUR.DLL : 8.1.0.114 1700214 Bytes 12/04/2009 18:14:01 AEHELP.DLL : 8.1.2.2 119158 Bytes 26/02/2009 19:01:56 AEGEN.DLL : 8.1.1.33 340340 Bytes 12/04/2009 18:14:00 AEEMU.DLL : 8.1.0.9 393588 Bytes 09/10/2008 13:32:40 AECORE.DLL : 8.1.6.7 176502 Bytes 12/04/2009 18:13:59 AEBB.DLL : 8.1.0.3 53618 Bytes 09/10/2008 13:32:40 AVWINLL.DLL : 9.0.0.3 18177 Bytes 12/12/2008 07:47:59 AVPREF.DLL : 9.0.0.1 43777 Bytes 05/12/2008 09:32:15 AVREP.DLL : 8.0.0.3 155905 Bytes 20/01/2009 13:34:28 AVREG.DLL : 9.0.0.0 36609 Bytes 05/12/2008 09:32:09 AVARKT.DLL : 9.0.0.1 292609 Bytes 09/02/2009 06:52:24 AVEVTLOG.DLL : 9.0.0.7 167169 Bytes 30/01/2009 09:37:08 SQLITE3.DLL : 3.6.1.0 326401 Bytes 28/01/2009 14:03:49 SMTPLIB.DLL : 9.2.0.25 28417 Bytes 02/02/2009 07:21:33 NETNT.DLL : 9.0.0.0 11521 Bytes 05/12/2008 09:32:10 RCIMAGE.DLL : 9.0.0.21 2622721 Bytes 09/02/2009 10:19:34 RCTEXT.DLL : 9.0.35.0 90369 Bytes 11/03/2009 14:37:37
Configuration settings for the scan: Jobname.............................: Complete system scan Configuration file..................: c:\program files (x86)\avira\antivir desktop\sysscan.avp Logging.............................: low Primary action......................: interactive Secondary action....................: ignore Scan master boot sector.............: on Scan boot sector....................: on Boot sectors........................: C:, D:, E:, Process scan........................: on Scan registry.......................: on Search for rootkits.................: on Integrity checking of system files..: off Scan all files......................: All files Scan archives.......................: on Recursion depth.....................: 20 Smart extensions....................: on Macro heuristic.....................: on File heuristic......................: medium Deviating risk categories...........: +APPL,+GAME,+JOKE,+PCK,+SPR,
Start of the scan: 12 April 2009 19:14
Starting search for hidden objects. The driver could not be initialized.
The scan of running processes will be started Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'SearchFilterHost.exe' - '0' Module(s) have been scanned Scan process 'SearchProtocolHost.exe' - '0' Module(s) have been scanned Scan process 'taskhost.exe' - '0' Module(s) have been scanned Scan process 'WmiPrvSE.exe' - '0' Module(s) have been scanned Scan process 'svchost.exe' - '0' Module(s) have been scanned Scan process 'svchost.exe' - '0' Module(s) have been scanned Scan process 'sppsvc.exe' - '0' Module(s) have been scanned Scan process 'mscorsvw.exe' - '0' Module(s) have been scanned Scan process 'mscorsvw.exe' - '1' Module(s) have been scanned Scan process 'avgnt.exe' - '1' Module(s) have been scanned Scan process 'avmailc.exe' - '1' Module(s) have been scanned Scan process 'avwebgrd.exe' - '1' Module(s) have been scanned Scan process 'sched.exe' - '1' Module(s) have been scanned Scan process 'avguard.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '0' Module(s) have been scanned Scan process 'WmiPrvSE.exe' - '0' Module(s) have been scanned Scan process 'SearchProtocolHost.exe' - '0' Module(s) have been scanned Scan process 'wmpnetwk.exe' - '0' Module(s) have been scanned Scan process 'SearchIndexer.exe' - '0' Module(s) have been scanned Scan process 'svchost.exe' - '0' Module(s) have been scanned Scan process 'WUDFHost.exe' - '0' Module(s) have been scanned Scan process 'svchost.exe' - '0' Module(s) have been scanned Scan process 'explorer.exe' - '0' Module(s) have been scanned Scan process 'dwm.exe' - '0' Module(s) have been scanned Scan process 'taskhost.exe' - '0' Module(s) have been scanned Scan process 'svchost.exe' - '0' Module(s) have been scanned Scan process 'spoolsv.exe' - '0' Module(s) have been scanned Scan process 'svchost.exe' - '0' Module(s) have been scanned Scan process 'svchost.exe' - '0' Module(s) have been scanned Scan process 'audiodg.exe' - '0' Module(s) have been scanned Scan process 'svchost.exe' - '0' Module(s) have been scanned Scan process 'svchost.exe' - '0' Module(s) have been scanned Scan process 'svchost.exe' - '0' Module(s) have been scanned Scan process 'svchost.exe' - '0' Module(s) have been scanned Scan process 'svchost.exe' - '0' Module(s) have been scanned Scan process 'winlogon.exe' - '0' Module(s) have been scanned Scan process 'lsm.exe' - '0' Module(s) have been scanned Scan process 'lsass.exe' - '0' Module(s) have been scanned Scan process 'services.exe' - '0' Module(s) have been scanned Scan process 'csrss.exe' - '0' Module(s) have been scanned Scan process 'wininit.exe' - '0' Module(s) have been scanned Scan process 'csrss.exe' - '0' Module(s) have been scanned Scan process 'smss.exe' - '0' Module(s) have been scanned 8 processes with 8 modules were scanned
Starting master boot sector scan:
Start scanning boot sectors:
Starting to scan executable files (registry). The registry was scanned ( '17' files ).
Starting the file scan:
Begin scan in 'C:\' C:\hiberfil.sys [WARNING] The file could not be opened! [NOTE] This file is a Windows system file. [NOTE] This file cannot be opened for scanning. C:\pagefile.sys [WARNING] The file could not be opened! [NOTE] This file is a Windows system file. [NOTE] This file cannot be opened for scanning. Begin scan in 'D:\' D:\Documents and Settings\Default User\7zS2571.tmp\Pwr-cmd.exe [0] Archive type: RAR SFX (self extracting) --> cmdow.exe [DETECTION] Contains recognition pattern of the APPL/HideWindows.31232.1 application D:\Documents and Settings\Default User\7zS2577.tmp\Sys.mod.exe [0] Archive type: RAR SFX (self extracting) --> WINDOWS\nircmd.exe [DETECTION] Contains recognition pattern of the APPL/NirCmd.E.2.B application D:\Documents and Settings\iri\7zS2571.tmp\Pwr-cmd.exe [0] Archive type: RAR SFX (self extracting) --> cmdow.exe [DETECTION] Contains recognition pattern of the APPL/HideWindows.31232.1 application D:\Documents and Settings\iri\7zS2577.tmp\Sys.mod.exe [0] Archive type: RAR SFX (self extracting) --> WINDOWS\nircmd.exe [DETECTION] Contains recognition pattern of the APPL/NirCmd.E.2.B application D:\Documents and Settings\iri\My Documents\DriverScanner.2009.v2.0.0.26.rar [0] Archive type: RAR --> DS.2009.v2.0.0.26_downarchive\DS.2009.v2.0.0.26\patch 2.0.0.20\patch.exe [DETECTION] Is the TR/AdbPat.D Trojan D:\WINDOWS\nircmd.exe [DETECTION] Contains recognition pattern of the APPL/NirCmd.E.2.B application D:\WINDOWS\system32\config\systemprofile\7zS2571.tmp\Pwr-cmd.exe [0] Archive type: RAR SFX (self extracting) --> cmdow.exe [DETECTION] Contains recognition pattern of the APPL/HideWindows.31232.1 application D:\WINDOWS\system32\config\systemprofile\7zS2577.tmp\Sys.mod.exe [0] Archive type: RAR SFX (self extracting) --> WINDOWS\nircmd.exe [DETECTION] Contains recognition pattern of the APPL/NirCmd.E.2.B application
_______________________________________


 Oh, I’m in no condition to drive. Wait a minute. I don’t have to listen to myself, I’m drunk. Homer J. Simpson
|
|