![]() |
|
Log-Analyse und Auswertung: Windows 7 Hartnäckiger svchost VirusWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #5 |
![]() | ![]() Windows 7 Hartnäckiger svchost Virus Avast Anti-rootkit Log Code:
ATTFilter GMER 2.1.19357 - hxxp://www.gmer.net Rootkit scan 2014-12-08 13:26:45 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP2T0L0-2 KINGSTON_SV300S37A120G rev.521ABBF0 111,79GB Running: Gmer-19357.exe; Driver: C:\Users\Marvin\AppData\Local\Temp\pxdiypob.sys ---- Kernel code sections - GMER 2.1 ---- INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 528 fffff800033b6000 45 bytes [00, 00, 00, 00, 00, 00, 00, ...] INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 575 fffff800033b602f 16 bytes [00, 00, 00, 00, 00, 00, 00, ...] ---- User code sections - GMER 2.1 ---- .text C:\Windows\SysWOW64\PnkBstrA.exe[2676] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 322 0000000074a31a22 2 bytes [A3, 74] .text C:\Windows\SysWOW64\PnkBstrA.exe[2676] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 496 0000000074a31ad0 2 bytes [A3, 74] .text C:\Windows\SysWOW64\PnkBstrA.exe[2676] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 552 0000000074a31b08 2 bytes [A3, 74] .text C:\Windows\SysWOW64\PnkBstrA.exe[2676] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 730 0000000074a31bba 2 bytes [A3, 74] .text C:\Windows\SysWOW64\PnkBstrA.exe[2676] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 762 0000000074a31bda 2 bytes [A3, 74] .text C:\Windows\SysWOW64\PnkBstrA.exe[2676] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075231465 2 bytes [23, 75] .text C:\Windows\SysWOW64\PnkBstrA.exe[2676] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000752314bb 2 bytes [23, 75] .text ... * 2 .text C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe[4104] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075231465 2 bytes [23, 75] .text C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe[4104] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000752314bb 2 bytes [23, 75] .text ... * 2 .text C:\Program Files\AVAST Software\Avast\AvastUI.exe[3916] C:\Windows\syswow64\kernel32.dll!SetUnhandledExceptionFilter 0000000075c58791 8 bytes [31, C0, C2, 04, 00, 90, 90, ...] .text C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe[3376] C:\Windows\syswow64\PsApi.dll!GetModuleInformation + 69 0000000075231465 2 bytes [23, 75] .text C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe[3376] C:\Windows\syswow64\PsApi.dll!GetModuleInformation + 155 00000000752314bb 2 bytes [23, 75] .text ... * 2 .text C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe[5040] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075231465 2 bytes [23, 75] .text C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe[5040] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000752314bb 2 bytes [23, 75] .text ... * 2 .text C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe[5360] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075231465 2 bytes [23, 75] .text C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe[5360] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000752314bb 2 bytes [23, 75] .text ... * 2 ---- EOF - GMER 2.1 ---- Code:
ATTFilter 19.11.2014 23:46:13 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 19.11.2014 23:46:13 The virus definitions have been automatically updated to version 141119-1. 19.11.2014 23:46:18 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 19.11.2014 23:46:18 [0000188C] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 19.11.2014 23:46:18 [0000188C] WaitForWscService( 600 ) -> true 19.11.2014 23:46:18 [0000188C] Antivirus state 0 updatedSign 1 19.11.2014 23:46:18 [0000188C] Antispyware state 0 updatedSign 1 20.11.2014 11:19:21 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 20.11.2014 11:19:21 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 20.11.2014 11:19:21 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 20.11.2014 11:19:21 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 20.11.2014 11:19:21 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 20.11.2014 11:19:21 [000007E4] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 20.11.2014 11:19:21 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 20.11.2014 11:19:30 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 20.11.2014 11:19:30 The virus definitions have been automatically updated to version 141120-0. 20.11.2014 11:19:35 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 20.11.2014 11:19:35 [00000F90] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 20.11.2014 11:22:22 [00000F90] WaitForWscService( 269 ) -> true 20.11.2014 11:22:22 [00000F90] Antivirus state 0 updatedSign 1 20.11.2014 11:22:22 [00000F90] Antispyware state 0 updatedSign 1 20.11.2014 11:22:23 [000007E4] WaitForWscService( 242 ) -> true 20.11.2014 11:22:23 [000007E4] Antivirus state 0 updatedSign 1 20.11.2014 11:22:23 [000007E4] Antispyware state 0 updatedSign 1 21.11.2014 13:07:49 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 21.11.2014 13:07:50 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 21.11.2014 13:07:50 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 21.11.2014 13:07:51 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 21.11.2014 13:07:51 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 21.11.2014 13:07:51 [000007C4] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 21.11.2014 13:07:51 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 21.11.2014 13:07:59 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 21.11.2014 13:08:00 The virus definitions have been automatically updated to version 141121-0. 21.11.2014 13:08:05 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 21.11.2014 13:08:05 [00000FAC] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 21.11.2014 13:09:55 [00000FAC] WaitForWscService( 383 ) -> true 21.11.2014 13:09:55 [00000FAC] Antivirus state 0 updatedSign 1 21.11.2014 13:09:55 [00000FAC] Antispyware state 0 updatedSign 1 21.11.2014 13:09:55 [000007C4] WaitForWscService( 355 ) -> true 21.11.2014 13:09:55 [000007C4] Antivirus state 0 updatedSign 1 21.11.2014 13:09:55 [000007C4] Antispyware state 0 updatedSign 1 21.11.2014 21:09:19 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 21.11.2014 21:09:24 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 21.11.2014 21:09:24 [00001870] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 21.11.2014 21:09:24 [00001870] WaitForWscService( 600 ) -> true 21.11.2014 21:09:24 [00001870] Antivirus state 0 updatedSign 1 21.11.2014 21:09:24 [00001870] Antispyware state 0 updatedSign 1 21.11.2014 21:09:41 The virus definitions have been automatically updated to version 141121-1. 22.11.2014 16:36:57 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 22.11.2014 16:36:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 22.11.2014 16:36:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 22.11.2014 16:36:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 22.11.2014 16:36:59 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 22.11.2014 16:36:59 [000007B8] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 22.11.2014 16:36:59 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 22.11.2014 16:37:08 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 22.11.2014 16:37:08 The virus definitions have been automatically updated to version 141122-0. 22.11.2014 16:37:13 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 22.11.2014 16:37:13 [00000F28] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 22.11.2014 16:39:08 [00000F28] WaitForWscService( 374 ) -> true 22.11.2014 16:39:08 [00000F28] Antivirus state 0 updatedSign 1 22.11.2014 16:39:08 [00000F28] Antispyware state 0 updatedSign 1 22.11.2014 16:39:08 [000007B8] WaitForWscService( 346 ) -> true 22.11.2014 16:39:08 [000007B8] Antivirus state 0 updatedSign 1 22.11.2014 16:39:08 [000007B8] Antispyware state 0 updatedSign 1 23.11.2014 13:37:04 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 23.11.2014 13:37:05 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 23.11.2014 13:37:05 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 23.11.2014 13:37:06 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 23.11.2014 13:37:06 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 23.11.2014 13:37:06 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 23.11.2014 13:37:06 [000007B8] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 23.11.2014 13:37:15 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 23.11.2014 13:37:15 The virus definitions have been automatically updated to version 141123-0. 23.11.2014 13:37:20 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 23.11.2014 13:37:20 [000010B0] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 23.11.2014 13:39:09 [000010B0] WaitForWscService( 383 ) -> true 23.11.2014 13:39:09 [000010B0] Antivirus state 0 updatedSign 1 23.11.2014 13:39:09 [000007B8] WaitForWscService( 354 ) -> true 23.11.2014 13:39:09 [000007B8] Antivirus state 0 updatedSign 1 23.11.2014 13:39:09 [000007B8] Antispyware state 0 updatedSign 1 23.11.2014 13:39:09 [000010B0] Antispyware state 0 updatedSign 1 23.11.2014 21:38:13 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 23.11.2014 21:38:13 The virus definitions have been automatically updated to version 141123-1. 23.11.2014 21:38:18 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 23.11.2014 21:38:18 [00000CF8] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 23.11.2014 21:38:18 [00000CF8] WaitForWscService( 600 ) -> true 23.11.2014 21:38:18 [00000CF8] Antivirus state 0 updatedSign 1 23.11.2014 21:38:18 [00000CF8] Antispyware state 0 updatedSign 1 24.11.2014 10:40:56 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 10:40:56 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 10:40:56 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 10:40:56 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 10:40:56 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 24.11.2014 10:40:56 [000007B8] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 24.11.2014 10:40:56 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 10:41:05 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 10:41:05 The virus definitions have been automatically updated to version 141124-0. 24.11.2014 10:41:10 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 24.11.2014 10:41:10 [000013D0] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 24.11.2014 10:43:02 [000007B8] WaitForWscService( 352 ) -> true 24.11.2014 10:43:02 [000007B8] Antivirus state 0 updatedSign 1 24.11.2014 10:43:02 [000007B8] Antispyware state 0 updatedSign 1 24.11.2014 10:43:03 [000013D0] WaitForWscService( 378 ) -> true 24.11.2014 10:43:03 [000013D0] Antivirus state 0 updatedSign 1 24.11.2014 10:43:03 [000013D0] Antispyware state 0 updatedSign 1 24.11.2014 17:49:09 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 17:49:09 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 17:49:09 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 17:49:10 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 24.11.2014 17:49:10 [0000078C] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 24.11.2014 17:49:10 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 17:49:10 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 17:49:12 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 17:49:25 Aavm AUID event 1, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 17:51:13 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 17:51:13 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 17:51:13 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 17:51:14 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 17:51:14 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 24.11.2014 17:51:14 [00000A08] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 24.11.2014 17:51:14 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 17:53:17 [00000A08] WaitForWscService( 355 ) -> true 24.11.2014 17:53:17 [00000A08] Antivirus state 0 updatedSign 1 24.11.2014 17:53:17 [00000A08] Antispyware state 0 updatedSign 1 24.11.2014 21:54:42 The virus definitions have been automatically updated to version 141124-1. 24.11.2014 21:54:42 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 24.11.2014 21:54:47 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 24.11.2014 21:54:47 [00000CE4] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 24.11.2014 21:54:47 [00000CE4] WaitForWscService( 600 ) -> true 24.11.2014 21:54:47 [00000CE4] Antivirus state 0 updatedSign 1 24.11.2014 21:54:47 [00000CE4] Antispyware state 0 updatedSign 1 25.11.2014 12:16:26 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 25.11.2014 12:16:27 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 25.11.2014 12:16:27 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 25.11.2014 12:16:27 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 25.11.2014 12:16:27 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 25.11.2014 12:16:27 [000007D4] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 25.11.2014 12:16:27 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 25.11.2014 12:16:34 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 25.11.2014 12:16:35 The virus definitions have been automatically updated to version 141125-0. 25.11.2014 12:16:40 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 25.11.2014 12:16:40 [00000F3C] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 25.11.2014 12:18:32 [000007D4] WaitForWscService( 351 ) -> true 25.11.2014 12:18:32 [00000F3C] WaitForWscService( 376 ) -> true 25.11.2014 12:18:32 [000007D4] Antivirus state 0 updatedSign 1 25.11.2014 12:18:32 [00000F3C] Antivirus state 0 updatedSign 1 25.11.2014 12:18:32 [000007D4] Antispyware state 0 updatedSign 1 25.11.2014 12:18:32 [00000F3C] Antispyware state 0 updatedSign 1 25.11.2014 20:17:49 There is a new version of the program available on the Internet. 25.11.2014 20:17:50 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 25.11.2014 20:17:55 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 25.11.2014 20:17:55 [00000928] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 25.11.2014 20:17:55 [00000928] WaitForWscService( 600 ) -> true 25.11.2014 20:17:55 [00000928] Antivirus state 0 updatedSign 1 25.11.2014 20:17:55 [00000928] Antispyware state 0 updatedSign 1 26.11.2014 00:18:13 There is a new version of the program available on the Internet. 26.11.2014 11:02:40 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 26.11.2014 11:02:40 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 26.11.2014 11:02:40 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 26.11.2014 11:02:40 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 26.11.2014 11:02:41 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 26.11.2014 11:02:41 [000007AC] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 26.11.2014 11:02:41 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 26.11.2014 11:02:49 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 26.11.2014 11:02:49 There is a new version of the program available on the Internet. 26.11.2014 11:02:54 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 26.11.2014 11:02:54 [0000102C] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 26.11.2014 11:04:45 [000007AC] WaitForWscService( 352 ) -> true 26.11.2014 11:04:45 [000007AC] Antivirus state 0 updatedSign 1 26.11.2014 11:04:45 [000007AC] Antispyware state 0 updatedSign 1 26.11.2014 11:04:46 [0000102C] WaitForWscService( 378 ) -> true 26.11.2014 11:04:46 [0000102C] Antivirus state 0 updatedSign 1 26.11.2014 11:04:46 [0000102C] Antispyware state 0 updatedSign 1 26.11.2014 11:05:58 There is a new version of the program available on the Internet. 26.11.2014 15:06:17 There is a new version of the program available on the Internet. 26.11.2014 19:06:33 There is a new version of the program available on the Internet. 26.11.2014 23:06:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 26.11.2014 23:06:58 There is a new version of the program available on the Internet. 26.11.2014 23:07:03 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 26.11.2014 23:07:03 [00000674] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 26.11.2014 23:07:03 [00000674] WaitForWscService( 600 ) -> true 26.11.2014 23:07:03 [00000674] Antivirus state 0 updatedSign 1 26.11.2014 23:07:03 [00000674] Antispyware state 0 updatedSign 1 27.11.2014 15:43:04 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 27.11.2014 15:43:04 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 27.11.2014 15:43:05 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 27.11.2014 15:43:05 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 27.11.2014 15:43:05 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 27.11.2014 15:43:05 [000007C0] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 27.11.2014 15:43:05 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 27.11.2014 15:43:07 There is a new version of the program available on the Internet. 27.11.2014 15:45:10 [000007C0] WaitForWscService( 352 ) -> true 27.11.2014 15:45:10 [000007C0] Antivirus state 0 updatedSign 1 27.11.2014 15:45:10 [000007C0] Antispyware state 0 updatedSign 1 27.11.2014 15:52:17 There is a new version of the program available on the Internet. 27.11.2014 19:52:38 There is a new version of the program available on the Internet. 27.11.2014 23:53:03 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 27.11.2014 23:53:03 There is a new version of the program available on the Internet. 27.11.2014 23:53:08 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 27.11.2014 23:53:08 [00000FF0] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 27.11.2014 23:53:08 [00000FF0] WaitForWscService( 600 ) -> true 27.11.2014 23:53:08 [00000FF0] Antivirus state 0 updatedSign 1 27.11.2014 23:53:08 [00000FF0] Antispyware state 0 updatedSign 1 28.11.2014 11:25:15 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 28.11.2014 11:25:16 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 28.11.2014 11:25:16 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 28.11.2014 11:25:16 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 28.11.2014 11:25:16 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 28.11.2014 11:25:16 [000007B8] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 28.11.2014 11:25:16 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 28.11.2014 11:25:25 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 28.11.2014 11:25:25 There is a new version of the program available on the Internet. 28.11.2014 11:25:30 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 28.11.2014 11:25:30 [00000F28] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 28.11.2014 11:27:22 [00000F28] WaitForWscService( 379 ) -> true 28.11.2014 11:27:22 [00000F28] Antivirus state 0 updatedSign 1 28.11.2014 11:27:22 [00000F28] Antispyware state 0 updatedSign 1 28.11.2014 11:27:22 [000007B8] WaitForWscService( 351 ) -> true 28.11.2014 11:27:22 [000007B8] Antivirus state 0 updatedSign 1 28.11.2014 11:27:22 [000007B8] Antispyware state 0 updatedSign 1 28.11.2014 11:29:22 There is a new version of the program available on the Internet. 28.11.2014 15:29:43 There is a new version of the program available on the Internet. 28.11.2014 19:30:06 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 28.11.2014 19:30:07 There is a new version of the program available on the Internet. 28.11.2014 19:30:11 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 28.11.2014 19:30:11 [00001CBC] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 28.11.2014 19:30:11 [00001CBC] WaitForWscService( 600 ) -> true 28.11.2014 19:30:11 [00001CBC] Antivirus state 0 updatedSign 1 28.11.2014 19:30:11 [00001CBC] Antispyware state 0 updatedSign 1 28.11.2014 23:30:30 There is a new version of the program available on the Internet. 29.11.2014 03:30:46 There is a new version of the program available on the Internet. 29.11.2014 15:29:57 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 29.11.2014 15:29:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 29.11.2014 15:29:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 29.11.2014 15:29:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 29.11.2014 15:29:58 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 29.11.2014 15:29:58 [000007C0] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 29.11.2014 15:29:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 29.11.2014 15:30:00 There is a new version of the program available on the Internet. 29.11.2014 15:32:03 [000007C0] WaitForWscService( 358 ) -> true 29.11.2014 15:32:03 [000007C0] Antivirus state 0 updatedSign 1 29.11.2014 15:32:03 [000007C0] Antispyware state 0 updatedSign 1 30.11.2014 20:20:05 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 30.11.2014 20:20:06 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 30.11.2014 20:20:06 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 30.11.2014 20:20:07 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 30.11.2014 20:20:07 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 30.11.2014 20:20:07 [000007D0] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 30.11.2014 20:20:07 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 30.11.2014 20:21:29 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 30.11.2014 20:21:30 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 30.11.2014 20:21:30 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 30.11.2014 20:21:31 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 30.11.2014 20:21:31 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 30.11.2014 20:21:31 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 30.11.2014 20:21:31 [00000610] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 30.11.2014 20:21:42 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 30.11.2014 20:21:43 There is a new version of the program available on the Internet. 30.11.2014 20:21:48 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 30.11.2014 20:21:48 [00000F24] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1 30.11.2014 20:23:35 [00000F24] WaitForWscService( 388 ) -> true 30.11.2014 20:23:35 [00000F24] Antivirus state 0 updatedSign 1 30.11.2014 20:23:35 [00000610] WaitForWscService( 355 ) -> true 30.11.2014 20:23:35 [00000610] Antivirus state 0 updatedSign 1 30.11.2014 20:23:35 [00000610] Antispyware state 0 updatedSign 1 30.11.2014 20:23:35 [00000F24] Antispyware state 0 updatedSign 1 30.11.2014 20:25:11 There is a new version of the program available on the Internet. 30.11.2014 20:27:06 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150997152, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38 30.11.2014 20:27:10 VistaAux started /remwsc 30.11.2014 20:27:10 UninstallAVASFirewall VistAux preVista 0 firewall 0 30.11.2014 20:29:00 Maj 6 Min 1 GetVersionEx 6.1 Stored 5.0 30.11.2014 20:29:00 [00000D8C] RegisterAVASFirewall preVista 0 pszProductName avast! Antivirus pszProductExe C:\Program Files\AVAST Software\Avast\VisthAux.exe firewall 0 30.11.2014 20:29:00 [00000D8C] WaitForWscService( 599 ) -> true, SCM OK wsc OK err 0 30.11.2014 20:29:00 [00000D8C] Register AV OK 30.11.2014 20:29:00 [00000D8C] WaitForWscService( 599 ) -> true, SCM OK wsc OK err 0 30.11.2014 20:29:00 [00000D8C] Register AS OK 30.11.2014 20:29:00 [00000D8C] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 30.11.2014 20:29:00 [00000D8C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 30.11.2014 20:29:00 [00000D8C] UpdateStatus AV OK status 0 sign 1 30.11.2014 20:29:00 [00000D8C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 30.11.2014 20:29:00 [00000D8C] UpdateStatus AS OK status 0 sign 1 01.12.2014 10:56:44 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 01.12.2014 10:56:44 [000007D0] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 01.12.2014 10:56:50 [000007D0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 01.12.2014 10:56:50 [000007D0] UpdateStatus AV OK status 0 sign 1 01.12.2014 10:56:50 [000007D0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 01.12.2014 10:56:50 [000007D0] UpdateStatus AS OK status 0 sign 1 01.12.2014 10:56:52 The virus definitions have been automatically updated to version 141201-0. 01.12.2014 10:56:56 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 01.12.2014 10:56:56 [0000135C] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 01.12.2014 10:56:56 [0000135C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 01.12.2014 10:56:56 [0000135C] UpdateStatus AV OK status 0 sign 1 01.12.2014 10:56:56 [0000135C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 01.12.2014 10:56:56 [0000135C] UpdateStatus AS OK status 0 sign 1 02.12.2014 11:04:23 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 02.12.2014 11:04:23 [00000484] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 02.12.2014 11:04:26 [00000484] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 02.12.2014 11:04:26 [00000484] UpdateStatus AV OK status 0 sign 1 02.12.2014 11:04:26 [00000484] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 02.12.2014 11:04:26 [00000484] UpdateStatus AS OK status 0 sign 1 02.12.2014 11:04:42 The virus definitions have been automatically updated to version 141202-0. 02.12.2014 11:04:45 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 02.12.2014 11:04:45 [00000A04] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 02.12.2014 11:04:45 [00000A04] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 02.12.2014 11:04:45 [00000A04] UpdateStatus AV OK status 0 sign 1 02.12.2014 11:04:45 [00000A04] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 02.12.2014 11:04:45 [00000A04] UpdateStatus AS OK status 0 sign 1 02.12.2014 19:05:36 The virus definitions have been automatically updated to version 141202-1. 02.12.2014 19:05:40 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 02.12.2014 19:05:40 [00001398] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 02.12.2014 19:05:40 [00001398] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 02.12.2014 19:05:40 [00001398] UpdateStatus AV OK status 0 sign 1 02.12.2014 19:05:40 [00001398] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 02.12.2014 19:05:40 [00001398] UpdateStatus AS OK status 0 sign 1 03.12.2014 13:13:14 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 03.12.2014 13:13:14 [000007C0] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 03.12.2014 13:13:18 [000007C0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 03.12.2014 13:13:18 [000007C0] UpdateStatus AV OK status 0 sign 1 03.12.2014 13:13:18 [000007C0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 03.12.2014 13:13:18 [000007C0] UpdateStatus AS OK status 0 sign 1 03.12.2014 13:13:23 The virus definitions have been automatically updated to version 141203-0. 03.12.2014 13:13:27 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 03.12.2014 13:13:27 [0000089C] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 03.12.2014 13:13:27 [0000089C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 03.12.2014 13:13:27 [0000089C] UpdateStatus AV OK status 0 sign 1 03.12.2014 13:13:27 [0000089C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 03.12.2014 13:13:27 [0000089C] UpdateStatus AS OK status 0 sign 1 03.12.2014 21:14:07 The virus definitions have been automatically updated to version 141203-1. 03.12.2014 21:14:11 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 03.12.2014 21:14:11 [0000154C] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 03.12.2014 21:14:11 [0000154C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 03.12.2014 21:14:11 [0000154C] UpdateStatus AV OK status 0 sign 1 03.12.2014 21:14:11 [0000154C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 03.12.2014 21:14:11 [0000154C] UpdateStatus AS OK status 0 sign 1 04.12.2014 13:02:27 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 04.12.2014 13:02:27 [000007CC] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 04.12.2014 13:02:34 [000007CC] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 04.12.2014 13:02:34 [000007CC] UpdateStatus AV OK status 0 sign 1 04.12.2014 13:02:34 [000007CC] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 04.12.2014 13:02:34 [000007CC] UpdateStatus AS OK status 0 sign 1 04.12.2014 13:02:36 The virus definitions have been automatically updated to version 141204-0. 04.12.2014 13:02:40 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 04.12.2014 13:02:40 [00000F18] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 04.12.2014 13:02:40 [00000F18] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 04.12.2014 13:02:40 [00000F18] UpdateStatus AV OK status 0 sign 1 04.12.2014 13:02:40 [00000F18] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 04.12.2014 13:02:40 [00000F18] UpdateStatus AS OK status 0 sign 1 04.12.2014 21:03:45 The virus definitions have been automatically updated to version 141204-1. 04.12.2014 21:03:49 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 04.12.2014 21:03:49 [00000A70] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 04.12.2014 21:03:49 [00000A70] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 04.12.2014 21:03:49 [00000A70] UpdateStatus AV OK status 0 sign 1 04.12.2014 21:03:49 [00000A70] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 04.12.2014 21:03:49 [00000A70] UpdateStatus AS OK status 0 sign 1 05.12.2014 11:59:57 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 05.12.2014 11:59:57 [000007E0] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 05.12.2014 12:00:04 [000007E0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 05.12.2014 12:00:04 [000007E0] UpdateStatus AV OK status 0 sign 1 05.12.2014 12:00:04 [000007E0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 05.12.2014 12:00:04 [000007E0] UpdateStatus AS OK status 0 sign 1 05.12.2014 16:03:54 The virus definitions have been automatically updated to version 141205-1. 05.12.2014 16:03:57 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 05.12.2014 16:03:57 [00001574] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 05.12.2014 16:03:57 [00001574] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 05.12.2014 16:03:57 [00001574] UpdateStatus AV OK status 0 sign 1 05.12.2014 16:03:57 [00001574] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 05.12.2014 16:03:57 [00001574] UpdateStatus AS OK status 0 sign 1 06.12.2014 00:04:32 The virus definitions have been automatically updated to version 141205-2. 06.12.2014 00:04:37 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 06.12.2014 00:04:37 [00001808] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 06.12.2014 00:04:37 [00001808] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 06.12.2014 00:04:37 [00001808] UpdateStatus AV OK status 0 sign 1 06.12.2014 00:04:37 [00001808] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 06.12.2014 00:04:37 [00001808] UpdateStatus AS OK status 0 sign 1 06.12.2014 14:16:08 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 06.12.2014 14:16:08 [000007D8] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 06.12.2014 14:16:14 [000007D8] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 06.12.2014 14:16:14 [000007D8] UpdateStatus AV OK status 0 sign 1 06.12.2014 14:16:14 [000007D8] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 06.12.2014 14:16:14 [000007D8] UpdateStatus AS OK status 0 sign 1 06.12.2014 14:16:18 The virus definitions have been automatically updated to version 141206-0. 06.12.2014 14:16:21 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 06.12.2014 14:16:21 [00000A14] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 06.12.2014 14:16:21 [00000A14] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 06.12.2014 14:16:21 [00000A14] UpdateStatus AV OK status 0 sign 1 06.12.2014 14:16:21 [00000A14] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 06.12.2014 14:16:21 [00000A14] UpdateStatus AS OK status 0 sign 1 06.12.2014 22:19:53 The virus definitions have been automatically updated to version 141206-1. 06.12.2014 22:19:57 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 06.12.2014 22:19:57 [00001678] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 06.12.2014 22:19:57 [00001678] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 06.12.2014 22:19:57 [00001678] UpdateStatus AV OK status 0 sign 1 06.12.2014 22:19:57 [00001678] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 06.12.2014 22:19:57 [00001678] UpdateStatus AS OK status 0 sign 1 07.12.2014 12:09:29 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 07.12.2014 12:09:29 [000007A4] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 07.12.2014 12:09:35 [000007A4] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 07.12.2014 12:09:35 [000007A4] UpdateStatus AV OK status 0 sign 1 07.12.2014 12:09:35 [000007A4] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 07.12.2014 12:09:35 [000007A4] UpdateStatus AS OK status 0 sign 1 07.12.2014 12:09:39 The virus definitions have been automatically updated to version 141207-0. 07.12.2014 12:09:43 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 07.12.2014 12:09:43 [00000E9C] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 07.12.2014 12:09:43 [00000E9C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 07.12.2014 12:09:43 [00000E9C] UpdateStatus AV OK status 0 sign 1 07.12.2014 12:09:43 [00000E9C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 07.12.2014 12:09:43 [00000E9C] UpdateStatus AS OK status 0 sign 1 07.12.2014 14:00:52 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 07.12.2014 14:00:52 [00000AEC] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 07.12.2014 14:00:52 [00000AEC] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 07.12.2014 14:00:52 [00000AEC] UpdateStatus AV OK status 0 sign 1 07.12.2014 14:00:52 [00000AEC] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 07.12.2014 14:00:52 [00000AEC] UpdateStatus AS OK status 0 sign 1 07.12.2014 18:04:26 The virus definitions have been automatically updated to version 141207-1. 07.12.2014 18:04:31 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 07.12.2014 18:04:31 [00000690] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 07.12.2014 18:04:31 [00000690] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 07.12.2014 18:04:31 [00000690] UpdateStatus AV OK status 0 sign 1 07.12.2014 18:04:31 [00000690] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 07.12.2014 18:04:31 [00000690] UpdateStatus AS OK status 0 sign 1 07.12.2014 22:04:55 The virus definitions have been automatically updated to version 141207-2. 07.12.2014 22:04:59 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 07.12.2014 22:04:59 [00001A80] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 07.12.2014 22:04:59 [00001A80] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 07.12.2014 22:04:59 [00001A80] UpdateStatus AV OK status 0 sign 1 07.12.2014 22:04:59 [00001A80] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 07.12.2014 22:04:59 [00001A80] UpdateStatus AS OK status 0 sign 1 08.12.2014 11:10:41 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 08.12.2014 11:10:41 [000007C0] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 08.12.2014 11:10:47 [000007C0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 08.12.2014 11:10:47 [000007C0] UpdateStatus AV OK status 0 sign 1 08.12.2014 11:10:47 [000007C0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0 08.12.2014 11:10:47 [000007C0] UpdateStatus AS OK status 0 sign 1 08.12.2014 11:10:50 The virus definitions have been automatically updated to version 141208-0. 08.12.2014 11:10:54 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 08.12.2014 11:10:54 [00000D54] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 08.12.2014 11:10:54 [00000D54] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 08.12.2014 11:10:54 [00000D54] UpdateStatus AV OK status 0 sign 1 08.12.2014 11:10:54 [00000D54] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 08.12.2014 11:10:54 [00000D54] UpdateStatus AS OK status 0 sign 1 08.12.2014 13:12:57 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 08.12.2014 13:12:57 [000006D8] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 0 08.12.2014 13:12:57 [000006D8] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 08.12.2014 13:12:57 [000006D8] UpdateStatus AV OK status 1 sign 1 08.12.2014 13:12:57 [000006D8] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 08.12.2014 13:12:57 [000006D8] UpdateStatus AS OK status 1 sign 1 08.12.2014 13:26:58 VistaAux started /enable /av 08.12.2014 13:26:58 VistaAux Trying to start avast service 08.12.2014 13:26:58 VistaAux starting providers 08.12.2014 13:27:12 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1 08.12.2014 13:27:12 [00000CDC] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1 08.12.2014 13:27:12 [00000CDC] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 08.12.2014 13:27:12 [00000CDC] UpdateStatus AV OK status 0 sign 1 08.12.2014 13:27:12 [00000CDC] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0 08.12.2014 13:27:12 [00000CDC] UpdateStatus AS OK status 0 sign 1 08.12.2014 13:27:26 AAVM - initialization error: AvResRun failed, ahresws2.dll. 08.12.2014 13:27:39 AAVM - initialization error: AvResRun failed, ahresws2.dll. 08.12.2014 13:28:10 AAVM - initialization error: AvResRun failed, ahresws2.dll. 08.12.2014 13:35:26 AAVM - initialization error: AvResRun failed, ahresws2.dll. Code:
ATTFilter * 06.12.2014 14:16:30 C:\ProgramData\374311380\BITAC20.tmp [L] Win32:Malware-gen (0) Datei erfolgreich gelöscht... * * Avast Echtzeit-Schutz-Bericht * Diese Berichtdatei wurde automatisch erstellt * * Start: Sonntag, 7. Dezember 2014 12:09:29 * * * Schutz beendet: Sonntag, 7. Dezember 2014 12:31:46 * Laufzeit war 22 Minute(n), 22 Sekunde(n) * * * Avast Echtzeit-Schutz-Bericht * Diese Berichtdatei wurde automatisch erstellt * * Start: Sonntag, 7. Dezember 2014 14:00:51 * 07.12.2014 14:01:04 C:\ProgramData\374311380\BITAC20.tmp [L] Win32:Malware-gen (0) Datei erfolgreich gelöscht... * * Schutz beendet: Montag, 8. Dezember 2014 01:45:06 * Laufzeit war 11 Stunde(n), 44 Minute(n), 44 Sekunde(n) * * * Avast Echtzeit-Schutz-Bericht * Diese Berichtdatei wurde automatisch erstellt * * Start: Montag, 8. Dezember 2014 11:10:41 * 08.12.2014 11:11:00 C:\ProgramData\374311380\BITAC20.tmp [L] Win32:Malware-gen (0) Datei erfolgreich gelöscht... * * Schutz beendet: Montag, 8. Dezember 2014 13:12:43 * Laufzeit war 2 Stunde(n), 2 Minute(n), 2 Sekunde(n) * * * Avast Echtzeit-Schutz-Bericht * Diese Berichtdatei wurde automatisch erstellt * * Start: Montag, 8. Dezember 2014 13:26:58 * 08.12.2014 13:28:16 C:\ProgramData\374311380\BITAC20.tmp [L] Win32:Adware-CAW [Adw] (0) Datei erfolgreich gelöscht... Code:
ATTFilter 04.12.2014 13:02:46 hxxp://lovered.info/distrib/1.80.1926/sp.dll.x86_64/used/sp32_64_10000058991358062590.dll [L] Win32:BProtect-J [Trj] (0) * * Schutz beendet: Freitag, 5. Dezember 2014 02:35:57 * Laufzeit war 13 Stunde(n), 33 Minute(n), 33 Sekunde(n) * * * Avast Echtzeit-Schutz-Bericht * Diese Berichtdatei wurde automatisch erstellt * * Start: Freitag, 5. Dezember 2014 11:59:57 * 05.12.2014 12:00:27 hxxp://lovered.info/distrib/1.80.1926/sp.dll.x86_64/used/sp32_64_10000058991358062590.dll [L] Win32:BProtect-J [Trj] (0) * * Avast Echtzeit-Schutz-Bericht * Diese Berichtdatei wurde automatisch erstellt * * Start: Samstag, 6. Dezember 2014 14:16:08 * 06.12.2014 14:16:30 hxxp://lovered.info/distrib/1.80.1926/sp.dll.x86_64/used/sp32_64_10000058991358062590.dll [L] Win32:BProtect-J [Trj] (0) * * Avast Echtzeit-Schutz-Bericht * Diese Berichtdatei wurde automatisch erstellt * * Start: Sonntag, 7. Dezember 2014 12:09:29 * * * Schutz beendet: Sonntag, 7. Dezember 2014 12:31:46 * Laufzeit war 22 Minute(n), 22 Sekunde(n) * * * Avast Echtzeit-Schutz-Bericht * Diese Berichtdatei wurde automatisch erstellt * * Start: Sonntag, 7. Dezember 2014 14:00:51 * 07.12.2014 14:01:04 hxxp://lovered.info/distrib/1.80.1926/sp.dll.x86_64/used/sp32_64_10000058991358062590.dll [L] Win32:BProtect-J [Trj] (0) * * Schutz beendet: Montag, 8. Dezember 2014 01:45:06 * Laufzeit war 11 Stunde(n), 44 Minute(n), 44 Sekunde(n) * * * Avast Echtzeit-Schutz-Bericht * Diese Berichtdatei wurde automatisch erstellt * * Start: Montag, 8. Dezember 2014 11:10:41 * 08.12.2014 11:11:00 hxxp://lovered.info/distrib/1.80.1926/sp.dll.x86_64/used/sp32_64_10000058991358062590.dll [L] Win32:BProtect-J [Trj] (0) * * Schutz beendet: Montag, 8. Dezember 2014 13:13:26 * Laufzeit war 2 Stunde(n), 2 Minute(n), 2 Sekunde(n) * * * Avast Echtzeit-Schutz-Bericht * Diese Berichtdatei wurde automatisch erstellt * * Start: Montag, 8. Dezember 2014 13:27:16 * |
Themen zu Windows 7 Hartnäckiger svchost Virus |
adware, akamai, antivirus, desktop, firefox, firefox 34.0, flash player, google, helper, homepage, installation, internet, malware, mozilla, pirates, realtek, registry, robot, rundll, security, software, svchost, svchost.exe, system, teamspeak, usb, virus, windows |