BitDefender QuickScan Beta v0.9.7.8
-----------------------------------
Scan date: Sat Nov 28 17:15:39 2009
Machine ID: 54A4E9FB
Warning: Low execution rights. Please run QuickScan/browser as Administrator.
No infection found.
---------------------
Processes
---------
<unsigned> Antivirus System Tray Tool 2352 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
<verified> iTunesHelper Module 2128 C:\Program Files\iTunes\iTunesHelper.exe
<verified> Java Platform SE binary 3896 C:\Program Files\Java\jre6\bin\java.exe
<verified> Java Platform SE binary 1320 C:\Program Files\Java\jre6\bin\jp2launcher.exe
<verified> Java Platform SE binary 2344 C:\Program Files\Java\jre6\bin\jusched.exe
<verified> Firefox 704 C:\Program Files\Mozilla Firefox\firefox.exe
<verified> System settings protector 2476 C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
<verified> Windows Defender User Interface 1296 C:\Program Files\Windows Defender\MSASCui.exe
<verified> Media Center Media Status Aggregator Service 3244 C:\Windows\ehome\ehmsas.exe
<verified> Media Center Tray Applet 2488 C:\Windows\ehome\ehtray.exe
<verified> Windows Explorer 1992 C:\Windows\Explorer.EXE
<verified> HD Audio Control Panel 2328 C:\Windows\RtHDVCpl.exe
<verified> Desktop Window Manager 1892 C:\Windows\system32\Dwm.exe
<verified> Microsoft Sync Center 2144 C:\Windows\System32\mobsync.exe
<verified> Notepad 3288 C:\Windows\System32\notepad.exe
<verified> Windows host process (Rundll32) 2308 C:\Windows\System32\rundll32.exe
<verified> Task Scheduler Engine 1884 C:\Windows\system32\taskeng.exe
Network activity
----------------
Process jusched.exe (2344) connected on port 80 (HTTP) - 63.116.166.18
Autoruns and critical files
---------------------------
<unsigned> Antivirus System Tray Tool C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
<unsigned> Microsoft Office 2000 component C:\Program Files\Microsoft Office\Office\OSA9.EXE
<unsigned> QuickTime Task C:\Program Files\QuickTime\QTTask.exe
<unsigned> Recguard Application C:\WINDOWS\SMINST\RECGUARD.EXE
<verified> Adobe Acrobat SpeedLauncher C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
<verified> Apple Software Update C:\Program Files\Apple Software Update\SoftwareUpdate.exe
<verified> AppleSyncNotifier C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
<verified> Product Registration C:\Program Files\Common Files\LogiShrd\eReg\SetPoint\eReg.exe
<verified> Logitech Bluetooth Service c:\program files\common files\logitech\bluetooth\LBTWlgn.dll
<verified> iTunesHelper Module C:\Program Files\iTunes\iTunesHelper.exe
<verified> Java Platform SE binary C:\Program Files\Java\jre6\bin\jusched.exe
<verified> Logitech SetPoint Event Manager (UNICODE) C:\Program Files\Logitech\SetPoint\SetPoint.exe
<verified> Malwarebytes' Anti-Malware C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
<verified> System settings protector C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
<verified> Windows Defender User Interface C:\Program Files\Windows Defender\MSASCui.exe
<verified> Media Center Tray Applet C:\Windows\ehome\ehtray.exe
<verified> Logitech KHAL Main Process C:\Windows\KHALMNPR.EXE
<verified> HD Audio Control Panel C:\Windows\RtHDVCpl.exe
<verified> Shell Browser UI Library C:\Windows\System32\browseui.dll
<verified> NVIDIA Display Properties Extension C:\Windows\system32\NvCpl.dll
<verified> NVIDIA Media Center Library C:\Windows\System32\nvmctray.dll
<verified> Windows host process (Rundll32) C:\Windows\System32\rundll32.exe
<verified> Userinit Logon Application c:\windows\system32\userinit.exe
<verified> Web Site Monitor C:\Windows\System32\webcheck.dll
<verified> Windows Genuine Advantage Notification C:\Windows\system32\WgaLogon.dll
<verified> Windows Portable Device Shell Service Object C:\Windows\System32\WPDShServiceObj.dll
Browser plugins
---------------
<unsigned> Bonjour Namespace Provider C:\Program Files\Bonjour\mdnsNSP.dll
<unsigned> DivX® Content Upload Plugin C:\Program Files\DivX\DivX Content Uploader\npUpload.dll
<unsigned> DivX Web Player version 1.4.2.7 C:\Program Files\DivX\DivX Web Player\npdivx32.dll
<unsigned> npitunes.dll C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
<unsigned> Adobe Shockwave for Director Netscape plug-in, ver C:\Program Files\Mozilla Firefox\plugins\np32dsw.dll
<unsigned> getPlusAdobe12250 C:\Program Files\Mozilla Firefox\plugins\np_gp.dll
<unsigned> DivX Web Player version 1.4.2.7 C:\Program Files\Mozilla Firefox\plugins\npdivx32.dll
<unsigned> npdnu C:\Program Files\Mozilla Firefox\plugins\npdnu.dll
<unsigned> npdnupdater2 C:\Program Files\Mozilla Firefox\plugins\npdnupdater2.dll
<unsigned> The QuickTime Plugin allows you to view a wide var C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
<unsigned> The QuickTime Plugin allows you to view a wide var C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
<unsigned> The QuickTime Plugin allows you to view a wide var C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
<unsigned> The QuickTime Plugin allows you to view a wide var C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
<unsigned> The QuickTime Plugin allows you to view a wide var C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
<unsigned> The QuickTime Plugin allows you to view a wide var C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
<unsigned> The QuickTime Plugin allows you to view a wide var C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
<unsigned> npunagi2 C:\Program Files\Mozilla Firefox\plugins\npunagi2.dll
<unsigned> unagiuninst.exe C:\Windows\Downloaded Program Files\unagiuninst.exe
<unsigned> Adobe Shockwave for Director Netscape plug-in, ver C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
<verified> Adobe PDF Helper for Internet Explorer c:\program files\common files\adobe\acrobat\activex\acroiehelper.dll
<verified> Java Platform SE binary c:\program files\java\jre6\bin\jp2ssv.dll
<verified> 3.0.40818.0 c:\Program Files\Microsoft Silverlight\3.0.40818.0\npctrl.dll
<verified> np-mswmp C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll
<verified> NPRuntime Script Plug-in Library for Java Depl C:\Program Files\Mozilla Firefox\plugins\npdeploytk.dll
<verified> 1.7.0069.3 C:\Program Files\Mozilla Firefox\plugins\npLegitCheckPlugin.dll
<verified> Default Plug-in C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
<verified> Adobe PDF Plug-In For Firefox and Netscape C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll
<verified> Rhapsody Player Engine Plugin C:\Program Files\Real\RhapsodyPlayerEngine\nprhapengine.dll
<verified> SBSD IE Protection c:\program files\spybot - search & destroy\sdhelper.dll
<verified> AOL Media Playback Control C:\Windows\Downloaded Program Files\ampAx3.0.84.2.dll
<verified> HPDEXADO C:\Windows\Downloaded Program Files\HPDEXAXO.dll
<verified> sprthelper Module C:\Windows\Downloaded Program Files\sprthelper.exe
<verified> tgctlcm Module C:\Windows\Downloaded Program Files\tgctlcm.dll
<verified> Windows Presentation Foundation (WPF) plug-in for c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
<verified> Internet Explorer C:\Windows\System32\ieframe.dll
<verified> NPSWF32.dll C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
<verified> Microsoft Windows Sockets 2.0 Service Provider C:\Windows\System32\mswsock.dll
<verified> E-mail Naming Shim Provider C:\Windows\System32\NapiNSP.dll
<verified> Network Location Awareness 2 C:\Windows\System32\nlaapi.dll
<verified> PNRP Name Space Provider C:\Windows\System32\pnrpnsp.dll
<verified> LDAP RnR Provider DLL C:\Windows\System32\winrnr.dll
Missing files
-------------
File not found: C:\Program Files\Yahoo!\Common\npyaxmpb.dll
referenced in: HLKM\Software\MozillaPlugins\yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1\"Path"
File not found: C:\Program Files\Yahoo!\Shared\npYVerInfo.dll
referenced in: HLKM\Software\MozillaPlugins\@yverinfo.yahoo.com/YahooVersionInfoPlugin;version=1.0.0.1\"Path"
File not found: c:\program files\avg\avg8\avgssie.dll
referenced in: HKCR\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}\InprocServer32\(default)
File not found: c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\plugin\webhelper.dll
referenced in: HKCR\CLSID\{AAAE832A-5FFF-4661-9C8F-369692D1DCB9}\InprocServer32\(default)
Scan
----
No file uploaded.
Scan finished - communication took 16 sec
Total traffic - 0.04 MB sent, 2.44 KB recvd
Scanned 998 files and modules - 103 seconds
Edited by KateetaK, 28 November 2009 - 09:49 PM.