AVZ 4.46 http://z-oleg.com/secur/avz/
File name | PID | Description | Copyright | MD5 | Information
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe | Script: Quarantine, Delete, Delete via BC, Terminate 1240 | HP Active Health | Copyright © HP Development Company L.P. 2013-2016 | 4FF880AFFCAC2EC8B26AE13BC1EF779D | 194.84 kb, rsAh,created: 13.03.2016 13:05:11,modified: 18.08.2016 13:48:56 | Command line: c:\program files (x86)\common files\adobe\arm\1.0\armsvc.exe | Script: Quarantine, Delete, Delete via BC, Terminate 1768 | Adobe Acrobat Update Service | Copyright © 2013 Adobe Systems Incorporated. All rights reserved. | DC00FD73505DAEDD99CAF4533B0C05BD | 80.20 kb, rsAh,created: 16.09.2016 20:24:06,modified: 16.09.2016 20:24:06 | Command line: "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" c:\program files (x86)\avira\antivirus\avgnt.exe | Script: Quarantine, Delete, Delete via BC, Terminate 6084 | Avira system tray application | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | E49A23D41A1F29D67EE24F1E3C29B8D0 | 896.08 kb, rsAh,created: 05.03.2016 13:12:53,modified: 11.10.2016 11:05:38 | Command line: "C:\Program Files (x86)\Avira\Antivirus\avgnt.exe" /min c:\program files (x86)\avira\antivirus\avguard.exe | Script: Quarantine, Delete, Delete via BC, Terminate 1900 | Antivirus Host Framework Service | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | 0511A349A99745B0811B94A008C639BE | 464.09 kb, rsAh,created: 05.03.2016 13:12:54,modified: 11.10.2016 11:05:38 | Command line: "C:\Program Files (x86)\Avira\Antivirus\avguard.exe" c:\program files (x86)\avira\launcher\avira.systray.exe | Script: Quarantine, Delete, Delete via BC, Terminate 6024 | Avira | Copyright © 2015 Avira Operations GmbH & Co. KG and its Licensors | 2BC195F50643A542581CE8645063922E | 158.24 kb, rsAh,created: 24.08.2016 16:03:26,modified: 24.08.2016 16:03:26 | Command line: "C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe" C:\Program Files (x86)\Avira\Antivirus\avshadow.exe | Script: Quarantine, Delete, Delete via BC, Terminate 4440 | AntiVir shadow copy service | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | F9A6B8F2B6FBEFEFBB9A090837257D77 | 1021.33 kb, rsAh,created: 05.03.2016 13:12:55,modified: 11.10.2016 11:05:46 | Command line: c:\users\anne\appdata\local\temp\oxrumao1.yxu\getsysteminfodllcache\avz\avz.exe | Script: Quarantine, Delete, Delete via BC, Terminate 3188 | | | FF6D0AE888488259B661DCCA3F1DBF44 | 5508.45 kb, rsAh,created: 22.01.2016 12:59:26,modified: 01.03.2016 10:43:13 | Command line: "C:\Users\Anne\AppData\Local\Temp\oxrumao1.yxu\GetSystemInfoDllCache\avz\avz.exe" Script="C:\Users\Anne\AppData\Local\Temp\oxrumao1.yxu\GetSystemInfoDllCache\avz\asa.avz" HiddenMode="3" SpoolLog="C:\Users\Anne\AppData\Local\Temp\oxrumao1.yxu\GetSystemInfo\avz.log" TempFolder="C:\Users\Anne\AppData\Local\Temp\oxrumao1.yxu\GetSystemInfo\AvzTemp" c:\program files (x86)\google\chrome\application\chrome.exe | Script: Quarantine, Delete, Delete via BC, Terminate 6336 | Google Chrome | Copyright 2016 Google Inc. All rights reserved. | 35B3E3E8AB090DB701C1766704DD624D | 944.10 kb, rsAh,created: 13.04.2016 21:13:51,modified: 25.09.2016 05:47:08 | Command line: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" c:\program files (x86)\google\chrome\application\chrome.exe | Script: Quarantine, Delete, Delete via BC, Terminate 2508 | Google Chrome | Copyright 2016 Google Inc. All rights reserved. | 35B3E3E8AB090DB701C1766704DD624D | 944.10 kb, rsAh,created: 13.04.2016 21:13:51,modified: 25.09.2016 05:47:08 | Command line: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Anne\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=-m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=53.0.2785.143 --handshake-handle=0x1bc c:\program files (x86)\google\chrome\application\chrome.exe | Script: Quarantine, Delete, Delete via BC, Terminate 6004 | Google Chrome | Copyright 2016 Google Inc. All rights reserved. | 35B3E3E8AB090DB701C1766704DD624D | 944.10 kb, rsAh,created: 13.04.2016 21:13:51,modified: 25.09.2016 05:47:08 | Command line: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6336.0.1248324193\1907280195" --mojo-application-channel-token=9C53540C83B42711FCDD6DD7C2A7E64C --enable-features=AutomaticTabDiscarding c:\program files (x86)\google\chrome\application\chrome.exe | Script: Quarantine, Delete, Delete via BC, Terminate 7024 | Google Chrome | Copyright 2016 Google Inc. All rights reserved. | 35B3E3E8AB090DB701C1766704DD624D | 944.10 kb, rsAh,created: 13.04.2016 21:13:51,modified: 25.09.2016 05:47:08 | Command line: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-unsafe-es3-apis --enable-webgl-draft-extensions --enable-features=AutomaticTabDiscarding C:\WINDOWS\System32\DbxSvc.exe | Script: Quarantine, Delete, Delete via BC, Terminate 2000 | Dropbox Service | © Microsoft Corporation. All rights reserved. | 2A98519A9486CEB4D0A513A2AD09C2A0 | error getting file info | Command line: c:\program files (x86)\dropbox\update\dropboxupdate.exe | Script: Quarantine, Delete, Delete via BC, Terminate 6156 | Dropbox Update | Copyright: Dropbox, Inc. 2015 (Omaha Copyright Google Inc.) | A1F58FFF448E4099297D6EE0641D4D0E | 139.79 kb, rsAh,created: 09.03.2016 21:49:21,modified: 09.03.2016 21:49:12 | Command line: "C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe" /ua /installsource scheduler c:\program files (x86)\dropbox\update\dropboxupdate.exe | Script: Quarantine, Delete, Delete via BC, Terminate 5700 | Dropbox Update | Copyright: Dropbox, Inc. 2015 (Omaha Copyright Google Inc.) | A1F58FFF448E4099297D6EE0641D4D0E | 139.79 kb, rsAh,created: 09.03.2016 21:49:21,modified: 09.03.2016 21:49:12 | Command line: "C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe" /svc C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe | Script: Quarantine, Delete, Delete via BC, Terminate 1848 | Service Fusion Utility | Copyright © 2009-2010 Advanced Micro Devices, Inc. All Rights Reserved. | CD705E27BE16A31E1FE97DFEC4977854 | 336.00 kb, rsAh,created: 06.08.2015 22:38:58,modified: 06.08.2015 22:38:58 | Command line: c:\program files (x86)\wildtangent games\app\gamesappintegrationservice.exe | Script: Quarantine, Delete, Delete via BC, Terminate 5824 | WildTangent Games App Integration Service | (c) WildTangent 2013. All rights reserved. | C038F33667622C46FE589D6E98396EA2 | 341.53 kb, rsAh,created: 14.08.2015 00:33:26,modified: 14.08.2015 00:33:26 | Command line: "C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe" c:\users\anne\downloads\getsysteminfo6.1.exe | Script: Quarantine, Delete, Delete via BC, Terminate 5956 | Kaspersky Get System Info | © 2016 AO Kaspersky Lab. All Rights Reserved. | B1274ADF56907D8D1B85985D21576D2F | 10753.57 kb, rsAh,created: 14.10.2016 11:25:23,modified: 14.10.2016 11:26:43 | Command line: "C:\Users\Anne\Downloads\GetSystemInfo6.1.exe" c:\users\anne\appdata\local\temp\s5q4\gsi.exe | Script: Quarantine, Delete, Delete via BC, Terminate 3664 | Kaspersky Get System Info | 2016 AO Kaspersky Lab. All Rights Reserved. | A729EFCD89A0C3F802A00397163C0903 | 3333.58 kb, rsAh,created: 14.10.2016 11:26:51,modified: 01.03.2016 10:40:56 | Command line: C:\Users\Anne\AppData\Local\Temp\s5q4\GSI.exe C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe | Script: Quarantine, Delete, Delete via BC, Terminate 5732 | HP Support Solutions Framework Service | © Copyright 2016 HP Development Company, L.P. | 02F1253476B7F5F818364443DFED3264 | 29.03 kb, rsAh,created: 20.12.2015 20:05:18,modified: 15.08.2016 03:56:34 | Command line: c:\program files (x86)\avira\antivirus\sched.exe | Script: Quarantine, Delete, Delete via BC, Terminate 1552 | Antivirus Host Framework Service | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | 0511A349A99745B0811B94A008C639BE | 464.09 kb, rsAh,created: 05.03.2016 13:12:59,modified: 11.10.2016 11:06:07 | Command line: "C:\Program Files (x86)\Avira\Antivirus\sched.exe" c:\program files (x86)\tweaking.com\windows repair (all in one)\wr_tray_icon.exe | Script: Quarantine, Delete, Delete via BC, Terminate 6372 | Tweaking.com - Windows Repair Tray Icon | | 8007AF9F2434F390AA51F0A516B9756F | 65.25 kb, rsAh,created: 11.03.2015 04:21:17,modified: 12.03.2015 01:54:32 | Command line: "C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe" Detected:90, recognized as trusted 71
| |
Module name | Handle | Description | Copyright | AVZ0311 | Used by processes
c:\program files (x86)\avira\antivirus\57\ProductImageRc.dll | Script: Quarantine, Delete, Delete via BC 57212928 | Avira Antivirus Free product image resource (English) | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=FC8703A2C436651692BE4FFA75ADA871 | 84.34 kb, rsAh, created: 05.03.2016 13:12:59, modified: 11.10.2016 11:05:34 6084
| C:\Program Files (x86)\Avira\Antivirus\57\ProductTextRc.dll | Script: Quarantine, Delete, Delete via BC 9109504 | Avira Antivirus Free product text resource (Base) | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=9E025FD85F956D5A6D481E993B7AE822 | 15.91 kb, rsAh, created: 05.03.2016 13:12:59, modified: 11.10.2016 11:05:34 6084, 1900, 1552
| C:\Program Files (x86)\Avira\Antivirus\aecore.dll | Script: Quarantine, Delete, Delete via BC 1940717568 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=798044CC8D370B19A47CAEFA3711671A | 241.91 kb, rsAh, created: 05.03.2016 13:12:52, modified: 21.03.2016 14:40:26 1900
| C:\Program Files (x86)\Avira\Antivirus\aecrypto.dll | Script: Quarantine, Delete, Delete via BC 1940520960 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=51A5B5DB511A40E83E53942E68F3944A | 125.91 kb, rsAh, created: 05.03.2016 13:12:52, modified: 12.05.2016 12:04:33 1900
| C:\Program Files (x86)\Avira\Antivirus\aedroid.dll | Script: Quarantine, Delete, Delete via BC 1937768448 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=85D26C58A8479D787CF060313D326296 | 2662.86 kb, rsAh, created: 05.03.2016 13:12:52, modified: 27.09.2016 12:49:10 1900
| C:\Program Files (x86)\Avira\Antivirus\aeemu.dll | Script: Quarantine, Delete, Delete via BC 1937309696 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=99A10AD06433D0D9F44FEC554E59FC98 | 394.85 kb, rsAh, created: 05.03.2016 13:12:52, modified: 18.03.2016 13:18:04 1900
| C:\Program Files (x86)\Avira\Antivirus\aeexp.dll | Script: Quarantine, Delete, Delete via BC 1936982016 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=5056E6EAB3947513F94B3702CEFCC637 | 301.91 kb, rsAh, created: 05.03.2016 13:12:52, modified: 04.08.2016 14:24:53 1900
| C:\Program Files (x86)\Avira\Antivirus\aegen.dll | Script: Quarantine, Delete, Delete via BC 1935671296 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=1B1294DB33F8651FA39025755C580F22 | 581.91 kb, rsAh, created: 05.03.2016 13:12:52, modified: 04.10.2016 12:49:53 1900
| C:\Program Files (x86)\Avira\Antivirus\aehelp.dll | Script: Quarantine, Delete, Delete via BC 1936654336 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=310FD1DF0FD366B9571F279BE37D88AF | 277.91 kb, rsAh, created: 05.03.2016 13:12:52, modified: 18.02.2016 10:49:14 1900
| C:\Program Files (x86)\Avira\Antivirus\aeheur.dll | Script: Quarantine, Delete, Delete via BC 1894645760 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=39A8FBF8A58FF2F89617A183110DF4BE | 10290.86 kb, rsAh, created: 05.03.2016 13:12:52, modified: 07.10.2016 16:46:57 1900
| C:\Program Files (x86)\Avira\Antivirus\aelibinf.dll | Script: Quarantine, Delete, Delete via BC 1936588800 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=2992AA1D80C5D81AD74397E036415EF7 | 66.86 kb, rsAh, created: 05.03.2016 13:12:52, modified: 12.05.2016 12:04:33 1900
| C:\Program Files (x86)\Avira\Antivirus\aemobile.dll | Script: Quarantine, Delete, Delete via BC 1934884864 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=371E57F1074E4631C779EE55439757CF | 330.86 kb, rsAh, created: 05.03.2016 13:12:52, modified: 17.08.2016 18:24:23 1900
| C:\Program Files (x86)\Avira\Antivirus\aeoffice.dll | Script: Quarantine, Delete, Delete via BC 1934360576 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=AB5659BE6011E6A3D6DFB43F754650AF | 509.91 kb, rsAh, created: 05.03.2016 13:12:52, modified: 07.10.2016 16:46:58 1900
| C:\Program Files (x86)\Avira\Antivirus\aepack.dll | Script: Quarantine, Delete, Delete via BC 1933508608 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=1F604CE05DF5465CAA2C4974F8E0E79D | 786.86 kb, rsAh, created: 05.03.2016 13:12:52, modified: 22.08.2016 14:15:20 1900
| C:\Program Files (x86)\Avira\Antivirus\aerdl.dll | Script: Quarantine, Delete, Delete via BC 1932656640 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=89DAF9294CF08A09C283653165ECA3F6 | 793.91 kb, rsAh, created: 05.03.2016 13:12:52, modified: 18.08.2016 18:41:54 1900
| C:\Program Files (x86)\Avira\Antivirus\aesbx.dll | Script: Quarantine, Delete, Delete via BC 1916600320 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=877428B73C7E9D356D449B3D66D9A682 | 1594.85 kb, rsAh, created: 05.03.2016 13:12:52, modified: 26.06.2016 12:35:29 1900
| C:\Program Files (x86)\Avira\Antivirus\aescn.dll | Script: Quarantine, Delete, Delete via BC 1932460032 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=060AC0E0858ECC3E0E58405A588F4243 | 137.91 kb, rsAh, created: 05.03.2016 13:12:52, modified: 04.05.2016 16:18:11 1900
| C:\Program Files (x86)\Avira\Antivirus\aescript.dll | Script: Quarantine, Delete, Delete via BC 1915879424 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=43EBB150C50788C99278CB32311895B0 | 681.91 kb, rsAh, created: 05.03.2016 13:12:52, modified: 05.10.2016 16:14:48 1900
| C:\Program Files (x86)\Avira\Antivirus\aevdf.dll | Script: Quarantine, Delete, Delete via BC 1932263424 | Avira Engine Module for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG. All rights reserved. | MD5=852877D335F2EA01CCFC041791EB9539 | 138.85 kb, rsAh, created: 05.03.2016 13:12:52, modified: 21.03.2016 14:40:26 1900
| c:\program files (x86)\avira\antivirus\avesvc.dll | Script: Quarantine, Delete, Delete via BC 1915027456 | Antivirus Engine Service Dynamic Link Library | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=B350E6A32BF97A46F79A0113E243D7EF | 245.26 kb, rsAh, created: 05.03.2016 13:12:53, modified: 11.10.2016 11:05:37 1900
| c:\program files (x86)\avira\antivirus\avesvcr.dll | Script: Quarantine, Delete, Delete via BC 81592320 | avesvc.dll | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=1EF357B96E9E0ED397957B39F4E9F271 | 17.41 kb, rsAh, created: 05.03.2016 13:12:53, modified: 11.10.2016 11:05:37 1900
| C:\Program Files (x86)\Avira\Antivirus\avgio.dll | Script: Quarantine, Delete, Delete via BC 1932132352 | On-access scan support | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=AB76449503C0B99CE68BF7915C322BFC | 68.75 kb, rsAh, created: 05.03.2016 13:12:53, modified: 11.10.2016 11:05:37 1900
| C:\Program Files (x86)\Avira\Antivirus\avipc.dll | Script: Quarantine, Delete, Delete via BC 1941372928 | AVIRA IPC Library | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=2049C04DF51DEF893A381A757695E9A3 | 86.34 kb, rsAh, created: 05.03.2016 13:12:54, modified: 11.10.2016 11:05:32 6084, 1900, 1552
| c:\program files (x86)\avira\antivirus\avlode.dll | Script: Quarantine, Delete, Delete via BC 1909129216 | Avira Local Decider | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=12A04ED76C00541C87F4A8D6F603ABDA | 766.83 kb, rsAh, created: 05.03.2016 13:12:54, modified: 11.10.2016 11:05:39 1900
| C:\Program Files (x86)\Avira\Antivirus\avpref.dll | Script: Quarantine, Delete, Delete via BC 1940979712 | Prefix DLL | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=EEBBAA9A85D43492C78A630DEBE3C69D | 52.68 kb, rsAh, created: 05.03.2016 13:12:54, modified: 11.10.2016 11:05:42 1900
| c:\program files (x86)\avira\antivirus\avreg.dll | Script: Quarantine, Delete, Delete via BC 1913126912 | Avira Registry Library | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=18FF8D0BE646AE753EE57763D61499E2 | 418.34 kb, rsAh, created: 05.03.2016 13:12:54, modified: 11.10.2016 11:05:42 1900
| C:\Program Files (x86)\Avira\Antivirus\avwinll.dll | Script: Quarantine, Delete, Delete via BC 1905197056 | Avira Licensing System Dll for Windows | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=EFA1D231CED36AB16612A52F40F8AC0D | 28.52 kb, rsAh, created: 05.03.2016 13:12:56, modified: 11.10.2016 11:05:33 1900
| c:\program files (x86)\avira\antivirus\ccfwmgt.dll | Script: Quarantine, Delete, Delete via BC 1881800704 | Control center plugin of the managed firewall | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=24C102DE5BDCF9BD194CDB17D2C323E5 | 431.88 kb, rsAh, created: 05.03.2016 13:12:56, modified: 11.10.2016 11:05:49 6084
| c:\program files (x86)\avira\antivirus\ccfwmgtrc.dll | Script: Quarantine, Delete, Delete via BC 32768000 | Control Center General Plugin (Desktop) | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=A488D762696E3997C94EF7D702A06FFC | 17.41 kb, rsAh, created: 05.03.2016 13:12:56, modified: 11.10.2016 11:05:49 6084
| c:\program files (x86)\avira\antivirus\ccgen.dll | Script: Quarantine, Delete, Delete via BC 1880358912 | Control Center General Plugin | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=493101169B6E6C0B843C72DD12C257C1 | 1344.23 kb, rsAh, created: 05.03.2016 13:12:56, modified: 11.10.2016 11:05:49 6084
| c:\program files (x86)\avira\antivirus\ccgenrc.dll | Script: Quarantine, Delete, Delete via BC 45809664 | Control Center General Plugin Resources (Desktop) | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=E6B16BE58327DC6D9D7E5125E4E49FA6 | 50.16 kb, rsAh, created: 05.03.2016 13:12:56, modified: 11.10.2016 11:05:49 6084
| c:\program files (x86)\avira\antivirus\ccmainrc.dll | Script: Quarantine, Delete, Delete via BC 51576832 | Control Center Resources (Desktop) | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=8A1A046FD74C24B8CEF5B9EB1E2FA530 | 25.96 kb, rsAh, created: 05.03.2016 13:12:56, modified: 11.10.2016 11:05:54 6084
| c:\program files (x86)\avira\antivirus\ccmsg.dll | Script: Quarantine, Delete, Delete via BC 1879834624 | Control Center Message Plugin | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=B183514E2CD0AA8ADF2C537A51847F3C | 458.02 kb, rsAh, created: 05.03.2016 13:12:56, modified: 11.10.2016 11:05:54 6084
| c:\program files (x86)\avira\antivirus\ccmsgrc.dll | Script: Quarantine, Delete, Delete via BC 46006272 | Control Center MSG Plugin Resources (Desktop) | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=83972C6DC2CC91BD9411DEA923B59F5F | 11.91 kb, rsAh, created: 05.03.2016 13:12:56, modified: 11.10.2016 11:05:54 6084
| C:\Program Files (x86)\Avira\Antivirus\ccwkrlib.dll | Script: Quarantine, Delete, Delete via BC 1884422144 | Control Center Common Worker Library (Desktop) | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=F269C8D337FFDA48849815C5006862B5 | 808.56 kb, rsAh, created: 05.03.2016 13:12:57, modified: 11.10.2016 11:05:59 6084
| c:\program files (x86)\avira\antivirus\cfglib.dll | Script: Quarantine, Delete, Delete via BC 1945567232 | Avira Configuration Library | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=A84FA461A6D721A4A324F18349B5CE67 | 105.94 kb, rsAh, created: 05.03.2016 13:12:57, modified: 11.10.2016 11:05:33 6084, 1900, 1552
| c:\program files (x86)\avira\antivirus\CommonImageRc.dll | Script: Quarantine, Delete, Delete via BC 41549824 | Avira Antivirus Pro product image resource (English) | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=764517BC480F338E700861868311CE92 | 4003.67 kb, rsAh, created: 05.03.2016 13:12:59, modified: 11.10.2016 11:05:34 6084
| C:\Program Files (x86)\Avira\Antivirus\CommonTextRc.dll | Script: Quarantine, Delete, Delete via BC 8847360 | Avira Antivirus common text resource (base) | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=159FCD0337D357EDDBC8C7E4DF6A62AD | 72.27 kb, rsAh, created: 05.03.2016 13:12:59, modified: 11.10.2016 11:05:34 6084, 1900, 1552
| C:\Program Files (x86)\Avira\Antivirus\firewall.dll | Script: Quarantine, Delete, Delete via BC 1931476992 | Adapter to use the Microsoft Windows Firewall | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=0FAFDF72527253FD6843CA2233F69FD1 | 29.06 kb, rsAh, created: 05.03.2016 13:12:57, modified: 11.10.2016 11:06:01 6084, 1900
| c:\program files (x86)\avira\antivirus\gavidb.dll | Script: Quarantine, Delete, Delete via BC 1928921088 | Antivirus On-Access Service Gavid Plugin | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=40D490A4F0603A6BEA68EBBBF0043B60 | 215.62 kb, rsAh, created: 05.03.2016 13:12:58, modified: 11.10.2016 11:06:01 1900
| c:\program files (x86)\avira\antivirus\gpacp.dll | Script: Quarantine, Delete, Delete via BC 1929183232 | Avira Communication Protocol | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=873B745A86F2C938244582F77F2A0C5D | 111.48 kb, rsAh, created: 28.07.2016 12:15:55, modified: 11.10.2016 11:06:04 1900
| c:\program files (x86)\avira\antivirus\gpavgio.dll | Script: Quarantine, Delete, Delete via BC 1915355136 | Antivirus On-Access Service AVGIO Plugin | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=08E6BEA6C27A83D65AFFD72A89395020 | 438.91 kb, rsAh, created: 05.03.2016 13:12:58, modified: 11.10.2016 11:06:02 1900
| c:\program files (x86)\avira\antivirus\gpgen.dll | Script: Quarantine, Delete, Delete via BC 1944977408 | Antivirus On-Access Service General Plugin | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=0C146D52E1ADE88B4E7A3328918FCF27 | 231.73 kb, rsAh, created: 05.03.2016 13:12:58, modified: 11.10.2016 11:06:02 1900, 1552
| c:\program files (x86)\avira\antivirus\gpgenrep.dll | Script: Quarantine, Delete, Delete via BC 1929773056 | Antivirus On-Access Service Generic Repair Plugin | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=248ABF3DCA63FE479FF24DF77F9A3E2A | 62.73 kb, rsAh, created: 05.03.2016 13:12:58, modified: 11.10.2016 11:06:02 1900
| c:\program files (x86)\avira\antivirus\gpgrd.dll | Script: Quarantine, Delete, Delete via BC 1930166272 | Antivirus On-Access Service Guard Plugin | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=89538AA317CF3E0AE61224246922AED6 | 113.55 kb, rsAh, created: 05.03.2016 13:12:58, modified: 11.10.2016 11:06:02 1900
| c:\program files (x86)\avira\antivirus\gpgui.dll | Script: Quarantine, Delete, Delete via BC 1930035200 | Antivirus On-Access Service Gui Plugin | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=9010EA1C3FCAD458C17F62951185B7C9 | 82.37 kb, rsAh, created: 05.03.2016 13:12:58, modified: 11.10.2016 11:06:03 1900
| c:\program files (x86)\avira\antivirus\gpipc.dll | Script: Quarantine, Delete, Delete via BC 1945239552 | Antivirus On-Access Service Ipc Plugin | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=D329842DD4B39C80BCAF9B0A03D79F47 | 261.85 kb, rsAh, created: 05.03.2016 13:12:58, modified: 11.10.2016 11:06:03 1900, 1552
| c:\program files (x86)\avira\antivirus\gplegacy.dll | Script: Quarantine, Delete, Delete via BC 1929904128 | Antivirus On-Access Service Legacy Plugin | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=697CA1B45D2BA347C2BA2A4108FF15D7 | 42.59 kb, rsAh, created: 05.03.2016 13:12:58, modified: 11.10.2016 11:06:03 1900
| c:\program files (x86)\avira\antivirus\gpscan.dll | Script: Quarantine, Delete, Delete via BC 1914568704 | Scan plugin for scan clients | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=054011E5C90290FB3071FB9AE78CBBE7 | 405.22 kb, rsAh, created: 28.07.2016 12:15:55, modified: 11.10.2016 11:06:04 1900
| c:\program files (x86)\avira\antivirus\gpschd.dll | Script: Quarantine, Delete, Delete via BC 1944518656 | Scheduler Plug-In Dll | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=DB74A7F28BCF5823E4DD6E11DF8DACAC | 395.65 kb, rsAh, created: 05.03.2016 13:12:58, modified: 11.10.2016 11:06:04 1552
| C:\Program Files (x86)\Avira\Antivirus\grdcore.dll | Script: Quarantine, Delete, Delete via BC 1945894912 | Antivirus Host Framework Core Library | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=206B89565A7216DEA233EAC19B0EAAF2 | 615.41 kb, rsAh, created: 05.03.2016 13:12:58, modified: 11.10.2016 11:06:05 1900, 1552
| C:\Program Files (x86)\Avira\Antivirus\guardmsg.dll | Script: Quarantine, Delete, Delete via BC 81723392 | Antivirus On-Access Service Resources | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=B6D5D40894E29278D845BAD182A5C853 | 52.63 kb, rsAh, created: 05.03.2016 13:12:58, modified: 11.10.2016 11:06:05 1900
| C:\Program Files (x86)\Avira\Antivirus\libapr-1.dll | Script: Quarantine, Delete, Delete via BC 1907032064 | Apache Portable Runtime Library | Copyright (c) 2000-2014 The Apache Software Foundation or its licensors, as applicable. | MD5=5FC9113BC55F676D0D2B3A857A03C540 | 153.93 kb, rsAh, created: 05.03.2016 13:12:58, modified: 17.03.2016 11:26:38 1900
| C:\Program Files (x86)\Avira\Antivirus\libapriconv-1.dll | Script: Quarantine, Delete, Delete via BC 1908473856 | Apache Portable Runtime Library | Copyright 2000-2005 The Apache Software Foundation or its licensors, as applicable. | MD5=EB207C17B82F6CA49042D563965FD54D | 33.70 kb, rsAh, created: 05.03.2016 13:12:58, modified: 17.03.2016 11:26:39 1900
| C:\Program Files (x86)\Avira\Antivirus\libaprutil-1.dll | Script: Quarantine, Delete, Delete via BC 1908539392 | Apache Portable Runtime Utility Library | Copyright (c) 2013 The Apache Software Foundation or its licensors, as applicable. | MD5=6720EC6A81F6A2B1323A890F5ADBB34F | 204.69 kb, rsAh, created: 05.03.2016 13:12:58, modified: 17.03.2016 11:26:39 1900
| C:\Program Files (x86)\Avira\Antivirus\libcurl.dll | Script: Quarantine, Delete, Delete via BC 1906704384 | libcurl Shared Library | © 1996 - 2016 Daniel Stenberg, | MD5=B0B50148EB2FD4517F18E9ECD2F75F65 | 300.76 kb, rsAh, created: 05.03.2016 13:12:58, modified: 11.10.2016 11:05:33 1900
| C:\Program Files (x86)\Avira\Antivirus\LIBEAY32.dll | Script: Quarantine, Delete, Delete via BC 1907228672 | OpenSSL Shared Library | Copyright © 1998-2005 The OpenSSL Project. Copyright © 1995-1998 Eric A. Young, Tim J. Hudson. All rights reserved. | MD5=6F7511B8BB3E451CE25573029B7D3BA4 | 1192.96 kb, rsAh, created: 05.03.2016 13:12:58, modified: 11.10.2016 11:05:33 1900
| C:\Program Files (x86)\Avira\Antivirus\msgclient.dll | Script: Quarantine, Delete, Delete via BC 1912930304 | Client for the message communication used by slideups | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=6AF82D943CB8F1288489909DC71156E3 | 135.17 kb, rsAh, created: 05.03.2016 13:12:58, modified: 11.10.2016 11:05:33 1900
| c:\program files (x86)\avira\antivirus\onlcfg.dll | Script: Quarantine, Delete, Delete via BC 1929707520 | Antivirus On-Access Service Online configuration Plugin | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=04DE813787E34997D659BCB2AB1B091B | 44.11 kb, rsAh, created: 05.03.2016 13:12:59, modified: 11.10.2016 11:06:07 1900
| C:\Program Files (x86)\Avira\Antivirus\ProductUtilities.dll | Script: Quarantine, Delete, Delete via BC 1948516352 | product utility library | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=FBC871708DA7981C2ED25866E1602CEC | 1555.45 kb, rsAh, created: 05.03.2016 13:12:55, modified: 11.10.2016 11:05:33 6084, 1900, 1552
| C:\Program Files (x86)\Avira\Antivirus\Repair.dll | Script: Quarantine, Delete, Delete via BC 1913847808 | avira intelligent repair system | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=A760D29E4356AA2A52D81A62674F28F0 | 672.29 kb, rsAh, created: 05.03.2016 13:12:55, modified: 11.10.2016 11:05:43 1900
| C:\Program Files (x86)\Avira\Antivirus\sqlite3.dll | Script: Quarantine, Delete, Delete via BC 1942814720 | SQLite 3 Database Library | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=77131948EB67CB37933E8E231E209490 | 448.98 kb, rsAh, created: 05.03.2016 13:12:59, modified: 11.10.2016 11:06:09 6084, 1900, 1552
| C:\Program Files (x86)\Avira\Antivirus\SSLEAY32.dll | Script: Quarantine, Delete, Delete via BC 1906376704 | OpenSSL Shared Library | Copyright © 1998-2005 The OpenSSL Project. Copyright © 1995-1998 Eric A. Young, Tim J. Hudson. All rights reserved. | MD5=BA957F1A18AB77E02D5B72DD274F4414 | 276.59 kb, rsAh, created: 05.03.2016 13:12:59, modified: 11.10.2016 11:05:34 1900
| C:\Program Files (x86)\Avira\Antivirus\SystemUtilities.dll | Script: Quarantine, Delete, Delete via BC 1947664384 | system utility library | Copyright © 2016 Avira Operations GmbH & Co. KG and its Licensors | MD5=FE7861B0DD4277558E03EFD2069943F2 | 803.04 kb, rsAh, created: 05.03.2016 13:12:55, modified: 11.10.2016 11:05:33 6084, 1900, 1552
| C:\Program Files (x86)\Dropbox\Update\1.3.35.3\goopdate.dll | Script: Quarantine, Delete, Delete via BC 1644429312 | Dropbox Update | Copyright: Dropbox, Inc. 2015 (Omaha Copyright Google Inc.) | MD5=A7A707800C186918AE0FB2FC566EE346 | 1102.29 kb, rsAh, created: 09.03.2016 21:49:13, modified: 09.03.2016 21:49:12 6156, 5700
| C:\Program Files (x86)\Dropbox\Update\1.3.35.3\psmachine.dll | Script: Quarantine, Delete, Delete via BC 1644167168 | Dropbox Update | Copyright: Dropbox, Inc. 2015 (Omaha Copyright Google Inc.) | MD5=0EDB6C81E8528770D3ECA9C91839AD1E | 213.79 kb, rsAh, created: 09.03.2016 21:49:21, modified: 09.03.2016 21:49:12 6156, 5700
| C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\chrome.dll | Script: Quarantine, Delete, Delete via BC 1745354752 | Google Chrome | Copyright 2016 Google Inc. All rights reserved. | MD5=3DCB4679E8433975B54DC0F24E881CEE | 37396.10 kb, rsAh, created: 04.10.2016 09:23:37, modified: 25.09.2016 05:47:10 6336
| C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\chrome_child.dll | Script: Quarantine, Delete, Delete via BC 1687027712 | Google Chrome | Copyright 2016 Google Inc. All rights reserved. | MD5=BC92A0EBFBA100D2A85A239D50587BDD | 46857.10 kb, rsAh, created: 04.10.2016 09:23:38, modified: 25.09.2016 05:47:12 6004, 7024
| C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\chrome_elf.dll | Script: Quarantine, Delete, Delete via BC 1911422976 | Google Chrome | Copyright 2016 Google Inc. All rights reserved. | MD5=4DC38AA583967DE2B7D5CA3D5DD76D88 | 278.60 kb, rsAh, created: 04.10.2016 09:23:40, modified: 25.09.2016 05:47:13 6336, 2508, 6004, 7024
| C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libegl.dll | Script: Quarantine, Delete, Delete via BC 1663041536 | ANGLE libEGL Dynamic Link Library | Copyright (C) 2015 Google Inc. | MD5=66C8858DF6B1749B2CED25187E9CDD47 | 91.10 kb, rsAh, created: 04.10.2016 09:23:41, modified: 25.09.2016 05:47:16 6004
| C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libglesv2.dll | Script: Quarantine, Delete, Delete via BC 1665073152 | ANGLE libGLESv2 Dynamic Link Library | Copyright (C) 2015 Google Inc. | MD5=BE0608D54991AD3FEC5D2743D1809EA7 | 1763.10 kb, rsAh, created: 04.10.2016 09:23:41, modified: 25.09.2016 05:47:17 6004
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Compba577418#\5c45a768da1f33b05ccbf6353fdaf8dd\System.ComponentModel.Composition.ni.dll | Script: Quarantine, Delete, Delete via BC 1789067264 | System.ComponentModel.Composition.dll | © Microsoft Corporation. All rights reserved. | MD5=D6E6DFB003BCB2CCA0C3B85DE2C0A98F | 1052.00 kb, rsAh, created: 22.09.2016 21:25:12, modified: 22.09.2016 21:25:12 6024
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Configuration\343f16d982bf383bfbef9ebc1a48b87b\System.Configuration.ni.dll | Script: Quarantine, Delete, Delete via BC 1816133632 | System.Configuration.dll | © Microsoft Corporation. All rights reserved. | MD5=ED22A2463C98B1D59695A684CF9D5A98 | 949.50 kb, rsAh, created: 22.09.2016 14:45:38, modified: 22.09.2016 14:45:38 6024
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Core\dff5d8fe170c77795ef6d46ebe855d49\System.Core.ni.dll | Script: Quarantine, Delete, Delete via BC 1830092800 | .NET Framework | © Microsoft Corporation. All rights reserved. | MD5=C30DC217764AFDEC36FC861D2323DE45 | 7232.00 kb, rsAh, created: 22.09.2016 14:45:35, modified: 22.09.2016 14:45:35 6024, 3664
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Data.Linq\be7e8c711c2ca41894ead5f57a27e519\System.Data.Linq.ni.dll | Script: Quarantine, Delete, Delete via BC 1785462784 | System.Data.Linq.dll | © Microsoft Corporation. All rights reserved. | MD5=C7FAA93D98BBB8A15FACB8D455471D14 | 2471.50 kb, rsAh, created: 22.09.2016 21:25:38, modified: 22.09.2016 21:25:38 6024
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Data\f6df277b21783daa55d0ef458982fe8b\System.Data.ni.dll | Script: Quarantine, Delete, Delete via BC 1796407296 | .NET Framework | © Microsoft Corporation. All rights reserved. | MD5=9D9F927BBA363E9FE253BC80F3068BD2 | 7645.50 kb, rsAh, created: 22.09.2016 21:25:34, modified: 22.09.2016 21:25:34 6024
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Drawing\bc4fcaa67d657ac74e54c5a77d713671\System.Drawing.ni.dll | Script: Quarantine, Delete, Delete via BC 1874526208 | .NET Framework | © Microsoft Corporation. All rights reserved. | MD5=0867D864CD843AD69A494B5A211A058A | 1582.50 kb, rsAh, created: 02.08.2016 18:57:25, modified: 02.08.2016 18:57:25 6024, 3664
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\a9dfe23bb8c0e77cad41f8536bebc6c7\System.Runtime.Serialization.ni.dll | Script: Quarantine, Delete, Delete via BC 1790181376 | System.Runtime.Serialization.dll | © Microsoft Corporation. All rights reserved. | MD5=F58BE1D4CB6C4A2028FB7ED43F0DA56F | 2708.50 kb, rsAh, created: 02.08.2016 18:57:38, modified: 02.08.2016 18:57:38 6024
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Serv759bfb78#\74442a8247a63ffe4dba43938f81662e\System.ServiceProcess.ni.dll | Script: Quarantine, Delete, Delete via BC 1910964224 | .NET Framework | © Microsoft Corporation. All rights reserved. | MD5=683FC44336D97F6C8DCF109A962AE102 | 211.50 kb, rsAh, created: 03.08.2016 12:54:05, modified: 03.08.2016 12:54:05 6024
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Transactions\dcd0a9de03d2082d020bd0de2a2d761d\System.Transactions.ni.dll | Script: Quarantine, Delete, Delete via BC 1788346368 | .NET Framework | © Microsoft Corporation. All rights reserved. | MD5=7D4E9BF39795CA4CCC4245CE1F115D08 | 658.50 kb, rsAh, created: 03.08.2016 12:53:51, modified: 03.08.2016 12:53:51 6024
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\98345f39f1a9850c28fdb8c482418856\System.Windows.Forms.ni.dll | Script: Quarantine, Delete, Delete via BC 1817116672 | .NET Framework | © Microsoft Corporation. All rights reserved. | MD5=3EF8FCF30785DEE8AAFE02467340EBDC | 12631.00 kb, rsAh, created: 22.09.2016 21:25:24, modified: 22.09.2016 21:25:24 6024, 3664
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\2ff599eb701079c1d41dbf7c234cd90b\System.Xml.Linq.ni.dll | Script: Quarantine, Delete, Delete via BC 1874067456 | .NET Framework | © Microsoft Corporation. All rights reserved. | MD5=A481DB043B491689E19252D9B713CC22 | 382.00 kb, rsAh, created: 22.09.2016 21:51:32, modified: 22.09.2016 21:51:32 6024
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml\a1c57b2825eee83083e57a8e2eb91b48\System.Xml.ni.dll | Script: Quarantine, Delete, Delete via BC 1808728064 | .NET Framework | © Microsoft Corporation. All rights reserved. | MD5=ABEAAB09EA688CD4818E3479352EAFAE | 7205.50 kb, rsAh, created: 02.08.2016 18:56:29, modified: 02.08.2016 18:56:29 6024, 3664
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System\67522f98cbf06a7151f8f7f4c3ec0385\System.ni.dll | Script: Quarantine, Delete, Delete via BC 1837563904 | .NET Framework | © Microsoft Corporation. All rights reserved. | MD5=3F17CBB6B03A1310B8ED9EB89B4CD7C0 | 9712.00 kb, rsAh, created: 02.08.2016 18:56:23, modified: 02.08.2016 18:56:23 6024, 3664
| Modules found:285, recognized as trusted 201
| |
Module | Base address | Size in memory | Description | Manufacturer
C:\WINDOWS\System32\Drivers\dump_diskdump.sys | error getting file info Script: Quarantine, Delete, Delete via BC 9A9A0000 | 00F000 (61440) |
| C:\WINDOWS\System32\Drivers\dump_dumpfve.sys | error getting file info Script: Quarantine, Delete, Delete via BC 99B10000 | 01A000 (106496) |
| C:\WINDOWS\System32\Drivers\dump_storahci.sys | error getting file info Script: Quarantine, Delete, Delete via BC 99AC0000 | 025000 (151552) |
| C:\WINDOWS\system32\DRIVERS\usbfilter.sys | error getting file info Script: Quarantine, Delete, Delete via BC 99790000 | 00D000 (53248) | AMD USB Filter Driver | Copyright © 2009 AMD, Inc.
| Modules found - 169, recognized as trusted - 165
| |
Service | Description | Status | File | Group | Dependencies
AdobeARMservice | Service: Stop, Delete, Disable, Delete via BC Adobe Acrobat Update Service | Running | C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe | 80.20 kb, rsAh, created: 16.09.2016 20:24:06, modified: 16.09.2016 20:24:06 Script: Quarantine, Delete, Delete via BC |
| AMD FUEL Service | Service: Stop, Delete, Disable, Delete via BC AMD FUEL Service | Running | C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe | 336.00 kb, rsAh, created: 06.08.2015 22:38:58, modified: 06.08.2015 22:38:58 Script: Quarantine, Delete, Delete via BC | RpcSs
| AntiVirSchedulerService | Service: Stop, Delete, Disable, Delete via BC Avira Planificateur | Running | C:\Program Files (x86)\Avira\Antivirus\sched.exe | 464.09 kb, rsAh, created: 05.03.2016 13:12:59, modified: 11.10.2016 11:06:07 Script: Quarantine, Delete, Delete via BC NetworkProvider |
| AntiVirService | Service: Stop, Delete, Disable, Delete via BC Avira Protection temps réel | Running | C:\Program Files (x86)\Avira\Antivirus\avguard.exe | 464.09 kb, rsAh, created: 05.03.2016 13:12:54, modified: 11.10.2016 11:05:38 Script: Quarantine, Delete, Delete via BC |
| DbxSvc | Service: Stop, Delete, Disable, Delete via BC DbxSvc | Running | C:\WINDOWS\system32\DbxSvc.exe | 41.79 kb, rsAh, created: 06.10.2016 23:06:30, modified: 06.10.2016 23:06:30 Script: Quarantine, Delete, Delete via BC |
| GamesAppIntegrationService | Service: Stop, Delete, Disable, Delete via BC GamesAppIntegrationService | Running | C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe | 341.53 kb, rsAh, created: 14.08.2015 00:33:26, modified: 14.08.2015 00:33:26 Script: Quarantine, Delete, Delete via BC | RPCSS
| HPSupportSolutionsFrameworkService | Service: Stop, Delete, Disable, Delete via BC HP Support Solutions Framework Service | Running | C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe | 29.03 kb, rsAh, created: 20.12.2015 20:05:18, modified: 15.08.2016 03:56:34 Script: Quarantine, Delete, Delete via BC |
| AdobeFlashPlayerUpdateSvc | Service: Stop, Delete, Disable, Delete via BC Adobe Flash Player Update Service | Not started | C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe | 263.69 kb, rsAh, created: 22.02.2014 22:10:55, modified: 11.10.2016 09:48:56 Script: Quarantine, Delete, Delete via BC |
| AntiVirMailService | Service: Stop, Delete, Disable, Delete via BC Avira Protection e-mail | Not started | C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe | 1060.59 kb, rsAh, created: 05.03.2016 13:12:54, modified: 11.10.2016 11:05:40 Script: Quarantine, Delete, Delete via BC | AntiVirService
| AntiVirWebService | Service: Stop, Delete, Disable, Delete via BC Avira Protection Web | Not started | C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe | 1454.34 kb, rsAh, created: 05.03.2016 13:12:55, modified: 11.10.2016 11:05:47 Script: Quarantine, Delete, Delete via BC | AntiVirService
| Avira.ServiceHost | Service: Stop, Delete, Disable, Delete via BC Avira Service Host | Not started | C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe | 338.80 kb, rsAh, created: 24.08.2016 16:03:06, modified: 24.08.2016 16:03:06 Script: Quarantine, Delete, Delete via BC | Winmgmt
| GamesAppService | Service: Stop, Delete, Disable, Delete via BC GamesAppService | Not started | C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe | 205.03 kb, rsAh, created: 14.08.2015 00:33:30, modified: 14.08.2015 00:33:30 Script: Quarantine, Delete, Delete via BC | RPCSS
| gupdate | Service: Stop, Delete, Disable, Delete via BC Service Google Update (gupdate) | Not started | C:\Program Files (x86)\Google\Update\GoogleUpdate.exe | 150.82 kb, rsAh, created: 02.04.2016 15:56:09, modified: 02.04.2016 15:56:03 Script: Quarantine, Delete, Delete via BC | RPCSS
| gupdatem | Service: Stop, Delete, Disable, Delete via BC Service Google Update (gupdatem) | Not started | C:\Program Files (x86)\Google\Update\GoogleUpdate.exe | 150.82 kb, rsAh, created: 02.04.2016 15:56:09, modified: 02.04.2016 15:56:03 Script: Quarantine, Delete, Delete via BC | RPCSS
| LBTServ | Service: Stop, Delete, Disable, Delete via BC Logitech Bluetooth Service | Not started | C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe | 348.45 kb, rsAh, created: 02.07.2015 22:21:26, modified: 02.07.2015 22:21:26 Script: Quarantine, Delete, Delete via BC PlugPlay | PlugPlay
| MozillaMaintenance | Service: Stop, Delete, Disable, Delete via BC Mozilla Maintenance Service | Not started | C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe | 168.45 kb, rsAh, created: 02.04.2016 15:47:23, modified: 24.09.2016 07:21:53 Script: Quarantine, Delete, Delete via BC |
| Detected - 240, recognized as trusted - 224
| |
Service | Description | Status | File | Group | Dependencies
usbfilter | Driver: Unload, Delete, Disable, Delete via BC AMD USB Filter Driver | Running | C:\WINDOWS\system32\DRIVERS\usbfilter.sys | 35.55 kb, rsAh, created: 22.02.2014 14:55:22, modified: 09.03.2009 07:49:08 Script: Quarantine, Delete, Delete via BC PNP Filter |
| catchme | Driver: Unload, Delete, Disable, Delete via BC catchme | Not started | C:\Users\Anne\AppData\Local\Temp\catchmesmca.sys | error getting file info Script: Quarantine, Delete, Delete via BC Base |
| dbx | Driver: Unload, Delete, Disable, Delete via BC dbx | Not started | C:\WINDOWS\system32\DRIVERS\dbx.sys | error getting file info Script: Quarantine, Delete, Delete via BC FSFilter HSM | FltMgr
| fssfltr | Driver: Unload, Delete, Disable, Delete via BC fssfltr | Not started | C:\WINDOWS\system32\DRIVERS\fssfltr.sys | 56.69 kb, rsAh, created: 23.02.2014 20:48:59, modified: 10.01.2014 13:56:32 Script: Quarantine, Delete, Delete via BC NDIS | tcpip
| wfpcapture | Driver: Unload, Delete, Disable, Delete via BC Microsoft WFP Message Capture | Not started | C:\WINDOWS\System32\drivers\wfpcapture.sys | error getting file info Script: Quarantine, Delete, Delete via BC NDIS |
| Detected - 321, recognized as trusted - 316
| |
File name | Status | Startup method | Description
C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe | 749.20 kb, rsAh, created: 06.08.2015 23:10:08, modified: 06.08.2015 23:10:08 Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\Run, StartCCC | Delete C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe | 58.73 kb, rsAh, created: 24.08.2016 16:01:06, modified: 24.08.2016 16:01:06 Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\Run, Avira SystrayStartTrigger | Delete C:\Program Files (x86)\Avira\Antivirus\avgnt.exe | 896.08 kb, rsAh, created: 05.03.2016 13:12:53, modified: 11.10.2016 11:05:38 Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\Run, avgnt | Delete C:\Program Files (x86)\Dropbox\Client\Dropbox.exe | 24651.41 kb, rsAh, created: 07.10.2016 12:03:31, modified: 06.10.2016 23:06:04 Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\Run, Dropbox | Delete C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe | 584.52 kb, rsAh, created: 22.06.2016 02:33:14, modified: 22.06.2016 02:33:14 Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\Run, SunJavaUpdateSched | Delete C:\Program Files\CCleaner\CCleaner64.exe | 8703.21 kb, rsAh, created: 26.08.2016 21:23:10, modified: 26.08.2016 21:23:10 Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_CURRENT_USER, Software\Microsoft\Windows\CurrentVersion\Run, CCleaner Monitoring | Delete C:\WINDOWS\System32\win32k.sys | error getting file info Script: Quarantine, Delete, Delete via BC -- | Registry key | HKEY_LOCAL_MACHINE, System\CurrentControlSet\Control\Session Manager\SubSystems, Kmode
| C:\WINDOWS\system32\psxss.exe | error getting file info Script: Quarantine, Delete, Delete via BC -- | Registry key | HKEY_LOCAL_MACHINE, System\CurrentControlSet\Control\Session Manager\SubSystems, Posix
| C:\WINDOWS\System32\AJRouter.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\AJRouter\Parameters, ServiceDll | Delete C:\WINDOWS\System32\appidsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\AppIDSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\appinfo.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Appinfo\Parameters, ServiceDll | Delete C:\WINDOWS\system32\AppReadiness.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\AppReadiness\Parameters, ServiceDll | Delete C:\WINDOWS\system32\appxdeploymentserver.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\AppXSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\AudioEndpointBuilder.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\AudioEndpointBuilder\Parameters, ServiceDll | Delete C:\WINDOWS\System32\Audiosrv.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Audiosrv\Parameters, ServiceDll | Delete C:\WINDOWS\System32\AxInstSV.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\AxInstSV\Parameters, ServiceDll | Delete C:\WINDOWS\System32\bdesvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\BDESVC\Parameters, ServiceDll | Delete C:\WINDOWS\System32\bfe.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\BFE\Parameters, ServiceDll | Delete C:\WINDOWS\System32\qmgr.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\BITS\Parameters, ServiceDll | Delete C:\WINDOWS\System32\bisrv.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\BrokerInfrastructure\Parameters, ServiceDll | Delete C:\WINDOWS\System32\browser.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Browser\Parameters, ServiceDll | Delete C:\WINDOWS\System32\BthHFSrv.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\BthHFSrv\Parameters, ServiceDll | Delete C:\WINDOWS\system32\bthserv.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\bthserv\Parameters, ServiceDll | Delete C:\WINDOWS\System32\CDPSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\CDPSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\certprop.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\CertPropSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\ClipSVC.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\ClipSVC\Parameters, ServiceDll | Delete C:\WINDOWS\system32\cryptsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\CryptSvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\rpcss.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DcomLaunch\Parameters, ServiceDll | Delete C:\WINDOWS\system32\dcpsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DcpSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\defragsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\defragsvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\das.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DeviceAssociationService\Parameters, ServiceDll | Delete C:\WINDOWS\system32\umpnpmgr.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DeviceInstall\Parameters, ServiceDll | Delete C:\WINDOWS\system32\DevQueryBroker.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DevQueryBroker\Parameters, ServiceDll | Delete C:\WINDOWS\system32\diagtrack.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DiagTrack\Parameters, ServiceDll | Delete C:\WINDOWS\system32\dmwappushsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\dmwappushservice\Parameters, ServiceDll | Delete C:\WINDOWS\System32\dnsrslvr.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Dnscache\Parameters, ServiceDll | Delete C:\WINDOWS\System32\dot3svc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\dot3svc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\dps.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DPS\Parameters, ServiceDll | Delete C:\WINDOWS\System32\DeviceSetupManager.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DsmSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\DsSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DsSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\eapsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Eaphost\Parameters, ServiceDll | Delete C:\WINDOWS\system32\efssvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\EFS\Parameters, ServiceDll | Delete C:\WINDOWS\System32\embeddedmodesvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\embeddedmode\Parameters, ServiceDll | Delete C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\EntAppSvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\fdPHost.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\fdPHost\Parameters, ServiceDll | Delete C:\WINDOWS\system32\fdrespub.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\FDResPub\Parameters, ServiceDll | Delete C:\WINDOWS\system32\fhsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\fhsvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\FntCache.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\FontCache\Parameters, ServiceDll | Delete C:\WINDOWS\System32\gpsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\gpsvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\ListSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\HomeGroupListener\Parameters, ServiceDll | Delete C:\WINDOWS\System32\tetheringservice.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\icssvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\ikeext.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\IKEEXT\Parameters, ServiceDll | Delete C:\WINDOWS\System32\iphlpsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\iphlpsvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\msdtckrm.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\KtmRm\Parameters, ServiceDll | Delete C:\WINDOWS\system32\srvsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\LanmanServer\Parameters, ServiceDll | Delete C:\WINDOWS\System32\wkssvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Parameters, ServiceDll | Delete C:\WINDOWS\system32\LicenseManagerSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\LicenseManager\Parameters, ServiceDll | Delete C:\WINDOWS\System32\lltdsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\lltdsvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\lmhsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\lmhosts\Parameters, ServiceDll | Delete C:\WINDOWS\System32\lsm.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\LSM\Parameters, ServiceDll | Delete C:\WINDOWS\System32\moshost.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\MapsBroker\Parameters, ServiceDll | Delete C:\WINDOWS\system32\mpssvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\MpsSvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\iscsiexe.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\MSiSCSI\Parameters, ServiceDll | Delete C:\WINDOWS\System32\ncasvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NcaSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\ncbservice.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NcbService\Parameters, ServiceDll | Delete C:\WINDOWS\System32\NcdAutoSetup.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NcdAutoSetup\Parameters, ServiceDll | Delete C:\Windows\system32\HPZinw12.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Net Driver HPZ12\Parameters, ServiceDll | Delete C:\WINDOWS\System32\netman.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Netman\Parameters, ServiceDll | Delete C:\WINDOWS\System32\netprofmsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\netprofm\Parameters, ServiceDll | Delete C:\WINDOWS\System32\NetSetupSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NetSetupSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\NgcCtnrSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NgcCtnrSvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\ngcsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NgcSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\nlasvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NlaSvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\nsisvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\nsi\Parameters, ServiceDll | Delete C:\WINDOWS\System32\APHostService.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\OneSyncSvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\pnrpsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\p2pimsvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\p2psvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\p2psvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\pcasvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\PcaSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\PimIndexMaintenance.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\PimIndexMaintenanceSvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\umpnpmgr.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\PlugPlay\Parameters, ServiceDll | Delete C:\Windows\system32\HPZipm12.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Pml Driver HPZ12\Parameters, ServiceDll | Delete C:\WINDOWS\system32\pnrpauto.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\PNRPAutoReg\Parameters, ServiceDll | Delete C:\WINDOWS\system32\pnrpsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\PNRPsvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\ipsecsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\PolicyAgent\Parameters, ServiceDll | Delete C:\WINDOWS\system32\umpo.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Power\Parameters, ServiceDll | Delete |