Avira Free Antivirus
Report file date: 11 ابريل, 2015 08:09
Scanning for 3412251 virus strains and unwanted programs.
The program is running as an unrestricted full version.
Online services are no longer available since s.
Licensee : Avira AntiVir Personal - Free Antivirus
Serial number : 0000149996-ADJIE-0000001
Platform : Windows XP
Windows version : (Service Pack 3) [5.1.2600]
Boot mode : Normally booted
Username : Administrator
Computer name : BATMANXP
Version information:
BUILD.DAT : 12.0.0.849 41825 Bytes 23/09/2011 20:19:00
AVSCAN.EXE : 12.1.0.17 490448 Bytes 23/09/2011 16:04:48
AVSCAN.DLL : 12.1.0.17 54224 Bytes 23/09/2011 11:34:58
LUKE.DLL : 12.1.0.17 68304 Bytes 23/09/2011 10:55:18
AVSCPLR.DLL : 12.1.0.19 99536 Bytes 23/09/2011 10:02:38
AVREG.DLL : 12.1.0.20 227024 Bytes 23/09/2011 09:54:32
VBASE000.VDF : 7.10.0.0 19875328 Bytes 06/11/2009 18:18:34
VBASE001.VDF : 7.11.0.0 13342208 Bytes 14/12/2010 09:07:40
VBASE002.VDF : 7.11.3.0 1950720 Bytes 09/02/2011 15:08:52
VBASE003.VDF : 7.11.5.225 1980416 Bytes 07/04/2011 10:00:56
VBASE004.VDF : 7.11.8.178 2354176 Bytes 31/05/2011 10:18:24
VBASE005.VDF : 7.11.10.251 1788416 Bytes 07/07/2011 12:12:54
VBASE006.VDF : 7.11.13.60 6411776 Bytes 16/08/2011 07:26:10
VBASE007.VDF : 7.11.13.61 2048 Bytes 16/08/2011 07:26:10
VBASE008.VDF : 7.11.13.62 2048 Bytes 16/08/2011 07:26:10
VBASE009.VDF : 7.11.13.63 2048 Bytes 16/08/2011 07:26:10
VBASE010.VDF : 7.11.13.64 2048 Bytes 16/08/2011 07:26:10
VBASE011.VDF : 7.11.13.65 2048 Bytes 16/08/2011 07:26:10
VBASE012.VDF : 7.11.13.66 2048 Bytes 16/08/2011 07:26:10
VBASE013.VDF : 7.11.13.95 166400 Bytes 17/08/2011 12:59:00
VBASE014.VDF : 7.11.13.125 209920 Bytes 18/08/2011 17:56:00
VBASE015.VDF : 7.11.13.157 184832 Bytes 22/08/2011 08:08:50
VBASE016.VDF : 7.11.13.201 128000 Bytes 24/08/2011 09:39:54
VBASE017.VDF : 7.11.13.234 160768 Bytes 25/08/2011 20:21:08
VBASE018.VDF : 7.11.14.16 141312 Bytes 30/08/2011 08:42:14
VBASE019.VDF : 7.11.14.48 133120 Bytes 31/08/2011 15:45:44
VBASE020.VDF : 7.11.14.78 156160 Bytes 02/09/2011 15:17:04
VBASE021.VDF : 7.11.14.109 126976 Bytes 06/09/2011 12:06:30
VBASE022.VDF : 7.11.14.137 131584 Bytes 08/09/2011 09:36:56
VBASE023.VDF : 7.11.14.166 196096 Bytes 12/09/2011 09:23:28
VBASE024.VDF : 7.11.14.193 184832 Bytes 14/09/2011 09:49:50
VBASE025.VDF : 7.11.14.215 125952 Bytes 16/09/2011 09:31:28
VBASE026.VDF : 7.11.14.239 231936 Bytes 20/09/2011 14:18:48
VBASE027.VDF : 7.11.15.22 203776 Bytes 23/09/2011 10:54:52
VBASE028.VDF : 7.11.15.23 2048 Bytes 23/09/2011 10:54:54
VBASE029.VDF : 7.11.15.24 2048 Bytes 23/09/2011 10:54:54
VBASE030.VDF : 7.11.15.25 2048 Bytes 23/09/2011 10:54:54
VBASE031.VDF : 7.11.15.29 35840 Bytes 23/09/2011 15:35:00
Engineversion : 8.2.6.68
AEVDF.DLL : 8.1.2.1 106868 Bytes 01/09/2011 21:46:04
AESCRIPT.DLL : 8.1.3.76 1626490 Bytes 01/09/2011 21:46:04
AESCN.DLL : 8.1.7.2 127349 Bytes 01/09/2011 21:46:04
AESBX.DLL : 8.2.1.34 323957 Bytes 01/09/2011 21:46:04
AERDL.DLL : 8.1.9.15 639348 Bytes 08/09/2011 21:16:08
AEPACK.DLL : 8.2.10.11 684408 Bytes 22/09/2011 14:18:46
AEOFFICE.DLL : 8.1.2.15 201083 Bytes 15/09/2011 23:17:26
AEHEUR.DLL : 8.1.2.172 3711352 Bytes 22/09/2011 14:18:46
AEHELP.DLL : 8.1.17.7 254327 Bytes 01/09/2011 21:46:02
AEGEN.DLL : 8.1.5.9 401780 Bytes 01/09/2011 21:46:02
AEEMU.DLL : 8.1.3.0 393589 Bytes 01/09/2011 21:46:02
AECORE.DLL : 8.1.23.0 196983 Bytes 01/09/2011 21:46:02
AEBB.DLL : 8.1.1.0 53618 Bytes 01/09/2011 21:46:02
AVWINLL.DLL : 12.1.0.17 27344 Bytes 23/09/2011 10:13:20
AVPREF.DLL : 12.1.0.17 51920 Bytes 23/09/2011 09:53:58
AVREP.DLL : 12.1.0.17 179408 Bytes 23/09/2011 09:55:02
AVARKT.DLL : 12.1.0.17 223184 Bytes 23/09/2011 09:25:28
AVEVTLOG.DLL : 12.1.0.17 169168 Bytes 23/09/2011 09:34:38
SQLITE3.DLL : 3.7.0.0 398288 Bytes 16/09/2011 00:06:00
AVSMTP.DLL : 12.1.0.17 62928 Bytes 23/09/2011 10:03:48
NETNT.DLL : 12.1.0.17 17104 Bytes 23/09/2011 10:58:08
RCIMAGE.DLL : 12.1.0.17 4450000 Bytes 23/09/2011 11:37:26
RCTEXT.DLL : 12.1.0.16 96208 Bytes 23/09/2011 11:37:26
Configuration settings for the scan:
Jobname.............................: ShlExt
Configuration file..................: C:DOCUME~1ADMINI~1LOCALS~1Tempe24ccc1c.avp
Logging.............................: default
Primary action......................: interactive
Secondary action....................: ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: D:,
Process scan........................: off
Scan registry.......................: off
Search for rootkits.................: off
Integrity checking of system files..: off
Scan all files......................: Intelligent file selection
Scan archives.......................: on
Recursion depth.....................: 20
Smart extensions....................: on
Macro heuristic.....................: on
File heuristic......................: extended
Start of the scan: 11 ابريل, 2015 08:09
Starting the file scan:
Begin scan in 'D:hema'
D:hemalpk.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Contains code of the W32/Virut.Gen Windows virus
D:hemaSpark_Setup_all.zip
[0] Archive type: ZIP
--> Spark_Setup_all.exe
[DETECTION] Contains virus patterns of Adware ADWARE/Adware.Gen
D:hemaQQPlayerQPToolbox.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
D:hemaQQPlayerQPUp.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
D:hemaQQPlayerQQDeskUpdate.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
D:hemaQQPlayerQQPlayer.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
D:hemaQQPlayerTencentdl.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
D:hemaQQPlayeruninst.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
D:hemaQQPlayerlpk.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Contains code of the W32/Virut.Gen Windows virus
D:hemaDreamLight Photo Editorunins000.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
D:hemaDreamLight Photo Editordreamlight.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
D:hemaDreamLight Photo Editorlpk.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Contains code of the W32/Virut.Gen Windows virus
D:hemaDreamLight Photo EditorPhotoshineunins000.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
D:hemaDreamLight Photo EditorPhotoshinephotoshine.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
D:hemaDreamLight Photo EditorPhotoshinelpk.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Contains code of the W32/Virut.Gen Windows virus
D:hemaDreamLight Photo EditorMagic Photo Editorlpk.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Contains code of the W32/Virut.Gen Windows virus
D:hemaDreamLight Photo EditorMagic Photo EditorMagicPhoto.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
D:hemaDreamLight Photo EditorMagic Photo Editorunins000.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
Beginning disinfection:
D:hemaDreamLight Photo EditorMagic Photo Editorunins000.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
[NOTE] A backup was created as '56ed188f.qua' ( QUARANTINE )
[NOTE] The file was repaired!
D:hemaDreamLight Photo EditorMagic Photo EditorMagicPhoto.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
[NOTE] A backup was created as '4e64372c.qua' ( QUARANTINE )
[NOTE] The file was repaired!
D:hemaDreamLight Photo EditorMagic Photo Editorlpk.dll
[DETECTION] Contains code of the W32/Virut.Gen Windows virus
[NOTE] The file was moved to the quarantine directory under the name '1c276d20.qua'.
D:hemaDreamLight Photo EditorPhotoshinelpk.dll
[DETECTION] Contains code of the W32/Virut.Gen Windows virus
[NOTE] The file was moved to the quarantine directory under the name '7a1022e2.qua'.
D:hemaDreamLight Photo EditorPhotoshinephotoshine.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
[NOTE] A backup was created as '3f900f2c.qua' ( QUARANTINE )
[NOTE] The file was repaired!
D:hemaDreamLight Photo EditorPhotoshineunins000.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
[NOTE] A backup was created as '408d3d31.qua' ( QUARANTINE )
[NOTE] The file was repaired!
D:hemaDreamLight Photo Editorlpk.dll
[DETECTION] Contains code of the W32/Virut.Gen Windows virus
[NOTE] The file was moved to the quarantine directory under the name '0c37119d.qua'.
D:hemaDreamLight Photo Editordreamlight.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
[NOTE] A backup was created as '7031513b.qua' ( QUARANTINE )
[NOTE] The file was repaired!
D:hemaDreamLight Photo Editorunins000.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
[NOTE] A backup was created as '5d777e4a.qua' ( QUARANTINE )
[NOTE] The file was repaired!
D:hemaQQPlayerlpk.dll
[DETECTION] Contains code of the W32/Virut.Gen Windows virus
[NOTE] The file was moved to the quarantine directory under the name '441d453c.qua'.
D:hemaQQPlayeruninst.exe
[DETECTION] Contains code of the W32/Sality.AG Windows virus
[NOTE] A backup was created as '284369ea