Author Topic: [Resolved K] avira warnings and hidden files  (Read 1002 times)

0 Members and 1 Guest are viewing this topic.

Offline mommyto3furballs

  • Bronze Member
  • Posts: 66
[Resolved K] avira warnings and hidden files
« on: May 15, 2012, 12:42:14 PM »
i just did a antivirus scan and i have a whole bunch of warnings and hidden files. thought i'd come in for a checkup because i can't seem to get rid of them. thank you.

avira scan:



Avira Free Antivirus
Report file date: Tuesday, May 15, 2012  13:08

Scanning for 3700848 virus strains and unwanted programs.

The program is running as an unrestricted full version.
Online services are available.

Licensee        : Avira AntiVir Personal - Free Antivirus
Serial number   : 0000149996-ADJIE-0000001
Platform        : Windows 7 Home Premium
Windows version : (Service Pack 1)  [6.1.7601]
Boot mode       : Normally booted
Username        : adam
Computer name   : ADAM-PC

Version information:
BUILD.DAT       : 12.0.0.1125    41829 Bytes    5/2/2012 17:40:00
AVSCAN.EXE      : 12.3.0.15     466896 Bytes    5/8/2012 21:49:42
AVSCAN.DLL      : 12.3.0.15      54736 Bytes    5/8/2012 21:49:42
LUKE.DLL        : 12.3.0.15      68304 Bytes    5/8/2012 21:49:42
AVSCPLR.DLL     : 12.3.0.14      97032 Bytes    5/8/2012 21:49:43
AVREG.DLL       : 12.3.0.17     232200 Bytes   5/10/2012 21:52:18
VBASE000.VDF    : 7.10.0.0    19875328 Bytes   11/6/2009 16:05:36
VBASE001.VDF    : 7.11.0.0    13342208 Bytes  12/14/2010 15:57:15
VBASE002.VDF    : 7.11.19.170 14374912 Bytes  12/20/2011 15:57:20
VBASE003.VDF    : 7.11.21.238  4472832 Bytes    2/1/2012 16:30:48
VBASE004.VDF    : 7.11.26.44   4329472 Bytes   3/28/2012 12:56:03
VBASE005.VDF    : 7.11.29.136  2166272 Bytes   5/10/2012 21:52:15
VBASE006.VDF    : 7.11.29.137     2048 Bytes   5/10/2012 21:52:15
VBASE007.VDF    : 7.11.29.138     2048 Bytes   5/10/2012 21:52:15
VBASE008.VDF    : 7.11.29.139     2048 Bytes   5/10/2012 21:52:15
VBASE009.VDF    : 7.11.29.140     2048 Bytes   5/10/2012 21:52:16
VBASE010.VDF    : 7.11.29.141     2048 Bytes   5/10/2012 21:52:16
VBASE011.VDF    : 7.11.29.142     2048 Bytes   5/10/2012 21:52:16
VBASE012.VDF    : 7.11.29.143     2048 Bytes   5/10/2012 21:52:16
VBASE013.VDF    : 7.11.29.144     2048 Bytes   5/10/2012 21:52:16
VBASE014.VDF    : 7.11.30.3     198144 Bytes   5/14/2012 15:35:35
VBASE015.VDF    : 7.11.30.4       2048 Bytes   5/14/2012 15:35:35
VBASE016.VDF    : 7.11.30.5       2048 Bytes   5/14/2012 15:35:35
VBASE017.VDF    : 7.11.30.6       2048 Bytes   5/14/2012 15:35:35
VBASE018.VDF    : 7.11.30.7       2048 Bytes   5/14/2012 15:35:35
VBASE019.VDF    : 7.11.30.8       2048 Bytes   5/14/2012 15:35:35
VBASE020.VDF    : 7.11.30.9       2048 Bytes   5/14/2012 15:35:35
VBASE021.VDF    : 7.11.30.10      2048 Bytes   5/14/2012 15:35:35
VBASE022.VDF    : 7.11.30.11      2048 Bytes   5/14/2012 15:35:35
VBASE023.VDF    : 7.11.30.12      2048 Bytes   5/14/2012 15:35:35
VBASE024.VDF    : 7.11.30.13      2048 Bytes   5/14/2012 15:35:35
VBASE025.VDF    : 7.11.30.14      2048 Bytes   5/14/2012 15:35:35
VBASE026.VDF    : 7.11.30.15      2048 Bytes   5/14/2012 15:35:35
VBASE027.VDF    : 7.11.30.16      2048 Bytes   5/14/2012 15:35:35
VBASE028.VDF    : 7.11.30.17      2048 Bytes   5/14/2012 15:35:35
VBASE029.VDF    : 7.11.30.18      2048 Bytes   5/14/2012 15:35:35
VBASE030.VDF    : 7.11.30.19      2048 Bytes   5/14/2012 15:35:35
VBASE031.VDF    : 7.11.30.40     66560 Bytes   5/15/2012 17:02:06
Engine version  : 8.2.10.64
AEVDF.DLL       : 8.1.2.2       106868 Bytes   1/31/2012 15:56:42
AESCRIPT.DLL    : 8.1.4.19      455034 Bytes   5/10/2012 21:52:17
AESCN.DLL       : 8.1.8.2       131444 Bytes   3/16/2012 16:35:31
AESBX.DLL       : 8.2.5.5       606579 Bytes   3/16/2012 16:35:46
AERDL.DLL       : 8.1.9.15      639348 Bytes   1/31/2012 15:56:42
AEPACK.DLL      : 8.2.16.13     807287 Bytes   5/10/2012 21:52:17
AEOFFICE.DLL    : 8.1.2.28      201082 Bytes   4/26/2012 21:17:37
AEHEUR.DLL      : 8.1.4.25     4788598 Bytes   5/10/2012 21:52:17
AEHELP.DLL      : 8.1.21.0      254326 Bytes   5/10/2012 21:52:16
AEGEN.DLL       : 8.1.5.28      422260 Bytes   4/26/2012 21:17:29
AEEXP.DLL       : 8.1.0.36       82292 Bytes   5/10/2012 21:52:17
AEEMU.DLL       : 8.1.3.0       393589 Bytes   1/31/2012 15:56:38
AECORE.DLL      : 8.1.25.6      201078 Bytes   3/16/2012 16:33:58
AEBB.DLL        : 8.1.1.0        53618 Bytes   1/31/2012 15:56:38
AVWINLL.DLL     : 12.3.0.15      27344 Bytes    5/8/2012 21:49:42
AVPREF.DLL      : 12.3.0.15      51920 Bytes    5/8/2012 21:49:42
AVREP.DLL       : 12.3.0.15     179208 Bytes    5/8/2012 21:49:43
AVARKT.DLL      : 12.3.0.15     211408 Bytes    5/8/2012 21:49:42
AVEVTLOG.DLL    : 12.3.0.15     169168 Bytes    5/8/2012 21:49:42
SQLITE3.DLL     : 3.7.0.1       398288 Bytes    5/8/2012 21:49:43
AVSMTP.DLL      : 12.3.0.15      63440 Bytes    5/8/2012 21:49:42
NETNT.DLL       : 12.3.0.15      17104 Bytes    5/8/2012 21:49:42
RCIMAGE.DLL     : 12.3.0.15    4450000 Bytes    5/8/2012 21:49:42
RCTEXT.DLL      : 12.3.0.15      96720 Bytes    5/8/2012 21:49:42

Configuration settings for the scan:
Jobname.............................: Local Hard Disks
Configuration file..................: C:\program files\avira\antivir desktop\alldiscs.avp
Logging.............................: default
Primary action......................: Interactive
Secondary action....................: Ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:,
Process scan........................: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: on
Scan all files......................: All files
Scan archives.......................: on
Recursion depth.....................: 20
Smart extensions....................: on
Deviating archive types.............: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox, +ISO 9660, +Windows Imaging File (WIM),
Macro heuristic.....................: on
File heuristic......................: extended
Deviating risk categories...........: +APPL,+GAME,+JOKE,+PCK,+PFS,+SPR,

Start of the scan: Tuesday, May 15, 2012  13:08

Starting master boot sector scan:
Master boot sector HD0
    [INFO]      No virus was found!

Start scanning boot sectors:
Boot sector 'C:\'
    [INFO]      No virus was found!

Starting search for hidden objects.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\Linkage\Bind
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\Linkage\Route
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\Linkage\Export
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanWorkstation\Linkage\Bind
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanWorkstation\Linkage\Route
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanWorkstation\Linkage\Export
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS\Linkage\LanaMap
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS\Linkage\Bind
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS\Linkage\Route
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS\Linkage\Export
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBT\Linkage\Bind
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBT\Linkage\Route
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBT\Linkage\Export
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Smb\Linkage\Bind
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Smb\Linkage\Route
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Smb\Linkage\Export
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TCPIP6\Linkage\Bind
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TCPIP6\Linkage\Route
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TCPIP6\Linkage\Export
  [NOTE]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Winsock\Setup Migration\Providers\NetBIOS\WinSock 1.1 Provider Data
  [NOTE]      The registry entry is invisible.

The scan of running processes will be started
Scan process 'SearchProtocolHost.exe' - '1' Module(s) have been scanned
Scan process 'SearchFilterHost.exe' - '1' Module(s) have been scanned
Scan process 'SearchProtocolHost.exe' - '1' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned
Scan process 'wmpnetwk.exe' - '1' Module(s) have been scanned
Scan process 'FlashUtil32_11_2_202_235_ActiveX.exe' - '1' Module(s) have been scanned
Scan process 'iexplore.exe' - '1' Module(s) have been scanned
Scan process 'iexplore.exe' - '1' Module(s) have been scanned
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'vssvc.exe' - '1' Module(s) have been scanned
Scan process 'sppsvc.exe' - '1' Module(s) have been scanned
Scan process 'iPodService.exe' - '1' Module(s) have been scanned
Scan process 'SearchIndexer.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'conhost.exe' - '1' Module(s) have been scanned
Scan process 'avshadow.exe' - '1' Module(s) have been scanned
Scan process 'EasyShare.exe' - '1' Module(s) have been scanned
Scan process 'sidebar.exe' - '1' Module(s) have been scanned
Scan process 'SUPERANTISPYWARE.EXE' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'ACDaemon.exe' - '1' Module(s) have been scanned
Scan process 'iTunesHelper.exe' - '1' Module(s) have been scanned
Scan process 'CLIStart.exe' - '1' Module(s) have been scanned
Scan process 'PLFSetI.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'SchedulerSvc.exe' - '1' Module(s) have been scanned
Scan process 'UpdaterService.exe' - '1' Module(s) have been scanned
Scan process 'mDNSResponder.exe' - '1' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'Fuel.Service.exe' - '1' Module(s) have been scanned
Scan process 'ACService.exe' - '1' Module(s) have been scanned
Scan process 'SASCORE.EXE' - '1' Module(s) have been scanned
Scan process 'taskhost.exe' - '1' Module(s) have been scanned
Scan process 'Explorer.EXE' - '1' Module(s) have been scanned
Scan process 'Dwm.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'conhost.exe' - '1' Module(s) have been scanned
Scan process 'WLANExt.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'atieclxx.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'atiesrxx.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'lsm.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'wininit.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned

Initiating scan of system files:
Signed -> 'C:\Windows\system32\svchost.exe'
Signed -> 'C:\Windows\system32\winlogon.exe'
Signed -> 'C:\Windows\explorer.exe'
Signed -> 'C:\Windows\system32\smss.exe'
Signed -> 'C:\Windows\system32\wininet.DLL'
Signed -> 'C:\Windows\system32\wsock32.DLL'
Signed -> 'C:\Windows\system32\ws2_32.DLL'
Signed -> 'C:\Windows\system32\services.exe'
Signed -> 'C:\Windows\system32\lsass.exe'
Signed -> 'C:\Windows\system32\csrss.exe'
Signed -> 'C:\Windows\system32\drivers\kbdclass.sys'
Signed -> 'C:\Windows\system32\spoolsv.exe'
Signed -> 'C:\Windows\system32\alg.exe'
Signed -> 'C:\Windows\system32\wuauclt.exe'
Signed -> 'C:\Windows\system32\advapi32.DLL'
Signed -> 'C:\Windows\system32\user32.DLL'
Signed -> 'C:\Windows\system32\gdi32.DLL'
Signed -> 'C:\Windows\system32\kernel32.DLL'
Signed -> 'C:\Windows\system32\ntdll.DLL'
Signed -> 'C:\Windows\system32\ntoskrnl.exe'
Signed -> 'C:\Windows\system32\ctfmon.exe'
The system files were scanned ('21' files)

Starting to scan executable files (registry).
The registry was scanned ( '3027' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 03-21-2011 - 18-20-14.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 03-23-2011 - 03-58-06.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 03-25-2011 - 11-51-12.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 03-28-2011 - 08-33-30.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 03-31-2011 - 09-53-47.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-03-2011 - 10-49-24.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-10-2011 - 14-04-15.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-10-2011 - 16-38-09.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-10-2011 - 18-04-03.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-12-2011 - 20-46-04.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-14-2011 - 08-56-04.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-17-2011 - 11-20-01.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-18-2011 - 07-44-31.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-18-2011 - 13-39-43.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-18-2011 - 22-03-17.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-20-2011 - 10-22-43.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-22-2011 - 11-46-19.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-23-2011 - 10-33-00.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-24-2011 - 12-13-49.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-25-2011 - 15-21-23.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-27-2011 - 11-04-45.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-30-2011 - 16-44-22.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 05-02-2011 - 11-39-45.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 05-05-2011 - 11-23-47.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 05-06-2011 - 17-00-40.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 05-09-2011 - 21-35-40.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 05-11-2011 - 12-07-32.SBU
  [WARNING]   The file is password protected
C:\New folder\C\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 05-11-2011 - 21-48-04.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 03-21-2011 - 18-20-14.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 03-23-2011 - 03-58-06.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 03-25-2011 - 11-51-12.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 03-28-2011 - 08-33-30.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 03-31-2011 - 09-53-47.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-03-2011 - 10-49-24.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-10-2011 - 14-04-15.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-10-2011 - 16-38-09.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-10-2011 - 18-04-03.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-12-2011 - 20-46-04.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-14-2011 - 08-56-04.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-17-2011 - 11-20-01.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-18-2011 - 07-44-31.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-18-2011 - 13-39-43.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-18-2011 - 22-03-17.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-20-2011 - 10-22-43.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-22-2011 - 11-46-19.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-23-2011 - 10-33-00.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-24-2011 - 12-13-49.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-25-2011 - 15-21-23.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-27-2011 - 11-04-45.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 04-30-2011 - 16-44-22.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 05-02-2011 - 11-39-45.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 05-05-2011 - 11-23-47.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 05-06-2011 - 17-00-40.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 05-09-2011 - 21-35-40.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 05-11-2011 - 12-07-32.SBU
  [WARNING]   The file is password protected
C:\Users\tigger\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine\Quarantine - 05-11-2011 - 21-48-04.SBU
  [WARNING]   The file is password protected


End of the scan: Tuesday, May 15, 2012  14:31
Used time:  1:23:41 Hour(s)

The scan has been done completely.

  25354 Scanned directories
 643079 Files were scanned
      0 Viruses and/or unwanted programs were found
      0 Files were classified as suspicious
      0 Files were deleted
      0 Viruses and unwanted programs were repaired
      0 Files were moved to quarantine
      0 Files were renamed
      0 Files cannot be scanned
 643079 Files not concerned
   7645 Archives were scanned
     56 Warnings
     20 Notes
  36815 Objects were scanned with rootkit scan
     20 Hidden objects were found

DDS Scan

.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 9.0.8112.16421
Run by adam at 14:33:31 on 2012-05-15
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.2814.1819 [GMT -4:00]
.
AV: Avira Desktop *Enabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Enabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Acer\Acer Updater\UpdaterService.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Windows\PLFSetI.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\vssvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.ca/
uInternet Settings,ProxyOverride = *.local
BHO: HistoryTriggerBHO Class: {21a88cb9-84d2-4020-a2d1-b25a21034884} - c:\program files\lg electronics\lg pc suite iv\linkair\LinkAirBrowserHelper.dll
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
uRun: [LG LinkAir]
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [Google Update] "c:\users\adam\appdata\local\google\update\GoogleUpdate.exe" /c
uRun: [Facebook Update] "c:\users\adam\appdata\local\facebook\update\FacebookUpdate.exe" /c /nocrashserver
mRun: [avgnt] "c:\program files\avira\antivir desktop\avgnt.exe" /min
mRun: [PLFSetI] c:\windows\PLFSetI.exe
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [ArcSoft Connection Service] c:\program files\common files\arcsoft\connection service\bin\ACDaemon.exe
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\amldev~1.lnk - c:\program files\amd avt\bin\kdbsync.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\kodake~1.lnk - c:\program files\kodak\kodak easyshare software\bin\EasyShare.exe
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
TCP: DhcpNameServer = 192.168.0.1
TCP: Interfaces\{248AFF69-DEDD-4069-B311-9A0CDEA6A415} : DhcpNameServer = 192.168.0.1
TCP: Interfaces\{A84B9E7F-65D4-4054-B4D8-6B1014AA701E} : DhcpNameServer = 192.168.0.1
TCP: Interfaces\{A84B9E7F-65D4-4054-B4D8-6B1014AA701E}\46C696E6B6 : DhcpNameServer = 192.168.0.1
.
============= SERVICES / DRIVERS ===============
.
R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [2012-3-16 36000]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2011-7-22 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2011-7-12 67664]
R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\drivers\vwififlt.sys [2009-7-13 48128]
R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCore.exe [2011-8-11 116608]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2012-2-14 163328]
R2 AMD FUEL Service;AMD FUEL Service;c:\program files\ati technologies\ati.ace\fuel\Fuel.Service.exe [2012-2-14 291840]
R2 AntiVirSchedulerService;Avira Scheduler;c:\program files\avira\antivir desktop\sched.exe [2012-3-16 86224]
R2 AntiVirService;Avira Realtime Protection;c:\program files\avira\antivir desktop\avguard.exe [2012-3-16 110032]
R2 AODDriver4.1;AODDriver4.1;c:\program files\ati technologies\ati.ace\fuel\i386\aoddriver2.sys [2012-2-1 46720]
R2 avgntflt;avgntflt;c:\windows\system32\drivers\avgntflt.sys [2012-3-16 83392]
R2 Live Updater Service;Live Updater Service;c:\program files\acer\acer updater\UpdaterService.exe [2012-3-16 255376]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files\newtech infosystems\nti backup now 5\SchedulerSvc.exe [2010-4-16 144640]
R3 amdiox86;AMD IO Driver;c:\windows\system32\drivers\amdiox86.sys [2012-3-18 37944]
R3 amdkmdag;amdkmdag;c:\windows\system32\drivers\atikmdag.sys [2012-2-14 9182208]
R3 amdkmdap;amdkmdap;c:\windows\system32\drivers\atikmpag.sys [2012-2-14 264704]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW73.sys [2011-12-5 86032]
R3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\k57nd60x.sys [2010-7-13 343592]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 Andbus;LGE Android Platform Composite USB Device;c:\windows\system32\drivers\lgandbus.sys [2010-12-23 14336]
S3 AndDiag;LGE Android Platform USB Serial Port;c:\windows\system32\drivers\lganddiag.sys [2010-12-23 20736]
S3 AndGps;LGE Android Platform USB GPS NMEA Port;c:\windows\system32\drivers\lgandgps.sys [2010-12-23 20096]
S3 ANDModem;LGE Android Platform USB Modem;c:\windows\system32\drivers\lgandmodem.sys [2010-12-23 25088]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files\newtech infosystems\nti backup now 5\BackupSvc.exe [2010-4-16 50432]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2012-3-16 52224]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2012-3-16 1343400]
.
=============== Created Last 30 ================
.
2012-05-15 18:05:52   --------   d-----w-   c:\users\adam\appdata\local\Apple Computer
2012-05-14 17:55:54   --------   d-----w-   c:\programdata\Sophos
2012-05-14 17:55:50   73728   ----a-r-   c:\users\adam\appdata\roaming\microsoft\installer\{b829e117-d072-41ea-9606-9826a38d34c1}\SVRTgui.exe1_810EDD9E2F0A4E2BACF86673C38D9F48.exe
2012-05-14 17:55:50   73728   ----a-r-   c:\users\adam\appdata\roaming\microsoft\installer\{b829e117-d072-41ea-9606-9826a38d34c1}\SVRTgui.exe_810EDD9E2F0A4E2BACF86673C38D9F48.exe
2012-05-14 17:55:50   73728   ----a-r-   c:\users\adam\appdata\roaming\microsoft\installer\{b829e117-d072-41ea-9606-9826a38d34c1}\ARPPRODUCTICON.exe
2012-05-14 17:55:48   --------   d-----w-   c:\program files\Sophos
2012-05-10 19:33:45   1291632   ----a-w-   c:\windows\system32\drivers\tcpip.sys
2012-05-10 19:33:39   989184   ----a-w-   c:\program files\windows journal\JNTFiltr.dll
2012-05-10 19:33:39   969216   ----a-w-   c:\program files\windows journal\JNWDRV.dll
2012-05-10 19:33:39   936960   ----a-w-   c:\program files\common files\microsoft shared\ink\journal.dll
2012-05-10 19:33:39   1221632   ----a-w-   c:\program files\windows journal\NBDoc.DLL
2012-05-10 19:33:37   3968368   ----a-w-   c:\windows\system32\ntkrnlpa.exe
2012-05-10 19:33:37   3913072   ----a-w-   c:\windows\system32\ntoskrnl.exe
2012-05-10 19:33:36   2343424   ----a-w-   c:\windows\system32\win32k.sys
2012-05-10 19:33:12   1077248   ----a-w-   c:\windows\system32\DWrite.dll
2012-05-10 19:33:11   56176   ----a-w-   c:\windows\system32\drivers\partmgr.sys
2012-05-05 14:57:02   70304   ----a-w-   c:\windows\system32\FlashPlayerCPLApp.cpl
2012-05-05 14:57:02   419488   ----a-w-   c:\windows\system32\FlashPlayerApp.exe
2012-05-03 12:01:21   476960   ----a-w-   c:\windows\system32\npdeployJava1.dll
2012-05-03 12:01:21   472864   ----a-w-   c:\windows\system32\deployJava1.dll
2012-04-25 19:44:26   --------   d-----w-   c:\users\adam\appdata\local\KodakGallery
2012-04-25 19:43:30   --------   d-----w-   c:\users\adam\appdata\roaming\Skinux
2012-04-25 19:43:08   --------   d-----w-   c:\users\adam\appdata\local\Programs
2012-04-25 19:42:51   --------   d-----w-   c:\users\adam\appdata\local\ArcSoft
2012-04-25 19:42:43   --------   d-----w-   c:\programdata\ArcSoft
2012-04-25 19:41:29   77824   ----a-w-   c:\program files\common files\installshield\engine\6\intel 32\ctor.dll
2012-04-25 19:41:29   614532   ----a-w-   c:\program files\common files\installshield\engine\6\intel 32\IKernel.exe
2012-04-25 19:41:29   32768   ----a-w-   c:\program files\common files\installshield\engine\6\intel 32\objectps.dll
2012-04-25 19:41:29   225280   ----a-w-   c:\program files\common files\installshield\iscript\iscript.dll
2012-04-25 19:41:29   176128   ----a-w-   c:\program files\common files\installshield\engine\6\intel 32\iuser.dll
2012-04-25 19:40:29   --------   d-----w-   c:\program files\common files\Kodak
2012-04-25 19:40:16   --------   d-----w-   c:\program files\common files\MSSoap
2012-04-25 19:40:15   --------   d-----w-   c:\program files\Kodak
2012-04-25 19:38:16   --------   d-----w-   c:\programdata\Kodak
2012-04-22 22:50:15   --------   d-----w-   c:\windows\system32\Adobe
2012-04-21 12:32:42   --------   d-----w-   c:\users\adam\appdata\roaming\LibreOffice
2012-04-21 12:29:58   --------   d-----w-   c:\program files\LibreOffice 3.5
2012-04-20 12:59:16   --------   d-----w-   C:\New folder
2012-04-16 17:30:47   --------   d-----w-   c:\program files\ESET
2012-04-16 00:58:54   --------   d-----w-   c:\users\adam\appdata\local\Facebook
.
==================== Find3M  ====================
.
2012-05-08 21:49:43   83392   ----a-w-   c:\windows\system32\drivers\avgntflt.sys
2012-04-16 11:19:44   29480   ----a-w-   c:\windows\system32\msxml3a.dll
2012-04-16 11:19:43   505128   ----a-w-   c:\windows\system32\msvcp71.dll
2012-04-16 11:19:43   353576   ----a-w-   c:\windows\system32\msvcr71.dll
2012-04-04 19:56:40   22344   ----a-w-   c:\windows\system32\drivers\mbam.sys
2012-03-16 22:22:06   152576   ----a-w-   c:\windows\system32\msclmd.dll
2012-03-16 17:45:50   0   ----a-w-   c:\windows\ativpsrm.bin
2012-03-01 05:46:57   19824   ----a-w-   c:\windows\system32\drivers\fs_rec.sys
2012-03-01 05:37:41   172544   ----a-w-   c:\windows\system32\wintrust.dll
2012-03-01 05:33:23   159232   ----a-w-   c:\windows\system32\imagehlp.dll
2012-03-01 05:29:16   5120   ----a-w-   c:\windows\system32\wmi.dll
2012-02-28 01:18:55   1799168   ----a-w-   c:\windows\system32\jscript9.dll
2012-02-28 01:11:21   1427456   ----a-w-   c:\windows\system32\inetcpl.cpl
2012-02-28 01:11:07   1127424   ----a-w-   c:\windows\system32\wininet.dll
2012-02-28 01:03:16   2382848   ----a-w-   c:\windows\system32\mshtml.tlb
2012-02-23 16:18:36   237072   ------w-   c:\windows\system32\MpSigStub.exe
2012-02-17 05:34:22   826880   ----a-w-   c:\windows\system32\rdpcore.dll
2012-02-17 04:14:08   183808   ----a-w-   c:\windows\system32\drivers\rdpwd.sys
2012-02-17 04:13:22   24576   ----a-w-   c:\windows\system32\drivers\tdtcp.sys
.
============= FINISH: 14:34:19.77 ===============

Attach:

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 3/16/2012 1:38:33 AM
System Uptime: 5/15/2012 1:05:55 PM (1 hours ago)
.
Motherboard: Acer            |  | Aspire 7551                    
Processor: AMD Athlon(tm) II P340 Dual-Core Processor | Socket S1G4 | 2200/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 466 GiB total, 423.435 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
No restore point in system.
.
==== Installed Programs ======================
.
123CopyDVDPlatinum
Acer Crystal Eye Webcam
Acer eRecovery Management
Acer Updater
Adobe Flash Player 11 ActiveX
Adobe Shockwave Player 11.6
AMD Accelerated Video Transcoding
AMD APP SDK Runtime
AMD Catalyst Install Manager
AMD Drag and Drop Transcoding
AMD Fuel
AMD Media Foundation Decoders
AMD VISION Engine Control Center
Apple Application Support
Apple Mobile Device Support
Apple Software Update
ArcSoft Print Creations
ArcSoft Print Creations - Album Page
ArcSoft Print Creations - Funhouse
ArcSoft Print Creations - Greeting Card
ArcSoft Print Creations - Photo Book
ArcSoft Print Creations - Photo Calendar
ArcSoft Print Creations - Scrapbook
ArcSoft Print Creations - Slimline Card
Atheros Client Installation Program
Avira Free Antivirus
AviSynth 2.5
Bonjour
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
ccc-utility
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
CCScore
CyberLink PowerDVD 9
ESET Online Scanner v3
ESSBrwr
ESSCDBK
ESScore
ESSgui
ESSini
ESSPCD
ESSTOOLS
essvatgt
Facebook Video Calling 1.2.0.159
Google Chrome
ImgBurn
iTunes
Java Auto Updater
Java(TM) 6 Update 32
Kodak EasyShare software
LG Bluetooth Drivers
LG PC Suite IV
LG United Mobile Drivers
LibreOffice 3.5
Malwarebytes Anti-Malware version 1.61.0.1400
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft Silverlight
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
Mozilla Thunderbird 12.0.1 (x86 en-US)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP2 Parser and SDK
netbrdg
NTI Backup Now 5
NTI Backup Now Standard
NTI Media Maker 8
OfotoXMI
PDF-Viewer
QuickTime
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
SFR
SHASTA
skin0001
SKINXSDK
Sophos Virus Removal Tool
SpywareBlaster 4.6
staticcr
SUPERAntiSpyware
swMSM
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Extended (KB2468871)
Update for Microsoft .NET Framework 4 Extended (KB2533523)
Update for Microsoft .NET Framework 4 Extended (KB2600217)
VPRINTOL
Windows Media Encoder 9 Series
WIRELESS
.
==== Event Viewer Messages From Past Week ========
.
5/14/2012 11:20:05 AM, Error: Service Control Manager [7009]  - A timeout was reached (30000 milliseconds) while waiting for the Windows Error Reporting Service service to connect.
5/14/2012 11:19:32 AM, Error: Service Control Manager [7022]  - The AMD FUEL Service service hung on starting.
5/13/2012 3:07:56 PM, Error: Schannel [36888]  - The following fatal alert was generated: 40. The internal error state is 107.
5/13/2012 3:07:56 PM, Error: Schannel [36874]  - An SSL 3.0 connection request was received from a remote client application, but none of the cipher suites supported by the client application are supported by the server. The SSL connection request has failed.
.
==== End Of File ===========================


« Last Edit: May 16, 2012, 02:27:19 PM by kevinf80 »



Offline kevinf80

  • Malware Removal Staff
  • Diamond Member
  • Posts: 6353
Re: [Resolved K] avira warnings and hidden files
« Reply #1 on: May 15, 2012, 01:48:08 PM »
Hiya mommyto3furballs,

Your logs are clean, nothing to worry about. Read here http://forum.avira.com/wbb/index.php?page=Thread&postID=1146398 about the hidden files.

The warnings are related SuperAntiSpyware Quarantine, harmless....

Any other issues/concerns?

Kevin

Offline mommyto3furballs

  • Bronze Member
  • Posts: 66
Re: [Resolved K] avira warnings and hidden files
« Reply #2 on: May 15, 2012, 02:54:46 PM »
i thought so but you just never know now days.  :ty Kevin :w2

Offline kevinf80

  • Malware Removal Staff
  • Diamond Member
  • Posts: 6353
Re: [Resolved K] avira warnings and hidden files
« Reply #3 on: May 15, 2012, 03:20:37 PM »
Yep its always best to get your system checked if you have concerns,

Here are some tips to reduce the potential for malware infection in the future:

Make proper use of your antivirus and firewall

Antivirus and Firewall programs are integral to your computer security. However, just having them installed isn't enough. The definitions of these programs are frequently updated to detect the latest malware, if you don't keep up with these updates then you'll be vulnerable to infection. Many antivirus and firewall programs have automatic update features, make use of those if you can. If your program doesn't, then get in the habit of routinely performing manual updates, because it's important.

You should keep your antivirus and firewall guard enabled at all times, NEVER turn them off unless there's a specific reason to do so. Also, regularly performing a full system scan with your antivirus program is a good idea to make sure you're system remains clean. Once a week should be adequate. You can set the scan to run during a time when you don't plan to use the computer and just leave it to complete on its own.

Install and use WinPatrol  This will inform you of any attempted unauthorized changes to your system.

WinPatrol features explained Here

You will have several programs installed, these maybe outdated and vulnerable to exploits also. To be certain, please run the free online scan by Secunia, available Here   Before clicking the Start scan  button, please check the box for the option Enable thorough system inspection. Just below the "Scan Options:" section, you'll see the status of what's currently processing....
...when the scan completes, the message "Detection completed successfully" will appear in the Programs/Result section. For each problem detected, Secunia will offer a "Solution" option. Please follow those instructions to download updated versions of the programs as recommended by Secunia.

Use a safer web browser

Internet Explorer is not the most secure tool for browsing the web. It has been known to be very susceptible to infection, and there are a few good free alternatives:
 
Firefox,

Opera, and

Chrome.
 
All of these are excellent faster, safer, more powerful and functional free alternatives to Internet Explorer. It's definitely worth the short period of adjustment to start using one of these. If you wish to continue using Internet Explorer, it would be a good idea to follow the tutorial HERE which will help you to make IE MUCH safer.

These browser add-ons will help to make your browser safer:

Web of Trust warns you about risky websites that try to scam visitors, deliver malware or send spam. WOT's color-coded icons show you ratings for 21 million websites, helping you avoid the dangerous ones:

Available for Firefox and Internet Explorer.

Green to go,
Yellow for caution, and
Red to stop.


Available for Firefox only. NoScript helps to block malicious scripts and in general gives you much better control over what types of things webpages can do to your computer while you're browsing.

These are just a couple of the most popular add-ons, if you're interested in more, take a look at THIS article.

Here a couple of links by two security experts that will give some excellent tips and advice.

So how did I get infected in the first place by Tony Klein

How to prevent Malware by Miekiemoes

Finally this link HERE will give a comprehensive upto date list of free Security programs. To include - Antivirus, Antispyware, Firewall, Antimalware, Online scanners and rescue CD`s.

Don`t forget, the best form of defense is common sense. If you don`t recognize it, don`t open it. If something looks to good to be true, then it aint.

if you have no more issues are you OK to close?

Take care,

Kevin


Offline kevinf80

  • Malware Removal Staff
  • Diamond Member
  • Posts: 6353
Re: [Resolved K] avira warnings and hidden files
« Reply #4 on: May 16, 2012, 02:28:53 PM »
Since this issue appears to be resolved the topic has been closed. Glad we could help.  :t

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.

The fixes and advice in this thread are for this System only. Do not apply the instructions from this thread to your own System. Please start a new thread describing your issue and someone will be along to assist you.