Avast Anti-rootkit Log Code:
GMER 2.1.19357 - hxxp://www.gmer.net
Rootkit scan 2014-12-08 13:26:45
Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP2T0L0-2 KINGSTON_SV300S37A120G rev.521ABBF0 111,79GB
Running: Gmer-19357.exe; Driver: C:\Users\Marvin\AppData\Local\Temp\pxdiypob.sys
---- Kernel code sections - GMER 2.1 ----
INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 528 fffff800033b6000 45 bytes [00, 00, 00, 00, 00, 00, 00, ...]
INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 575 fffff800033b602f 16 bytes [00, 00, 00, 00, 00, 00, 00, ...]
---- User code sections - GMER 2.1 ----
.text C:\Windows\SysWOW64\PnkBstrA.exe[2676] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 322 0000000074a31a22 2 bytes [A3, 74]
.text C:\Windows\SysWOW64\PnkBstrA.exe[2676] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 496 0000000074a31ad0 2 bytes [A3, 74]
.text C:\Windows\SysWOW64\PnkBstrA.exe[2676] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 552 0000000074a31b08 2 bytes [A3, 74]
.text C:\Windows\SysWOW64\PnkBstrA.exe[2676] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 730 0000000074a31bba 2 bytes [A3, 74]
.text C:\Windows\SysWOW64\PnkBstrA.exe[2676] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 762 0000000074a31bda 2 bytes [A3, 74]
.text C:\Windows\SysWOW64\PnkBstrA.exe[2676] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075231465 2 bytes [23, 75]
.text C:\Windows\SysWOW64\PnkBstrA.exe[2676] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000752314bb 2 bytes [23, 75]
.text ... * 2
.text C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe[4104] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075231465 2 bytes [23, 75]
.text C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe[4104] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000752314bb 2 bytes [23, 75]
.text ... * 2
.text C:\Program Files\AVAST Software\Avast\AvastUI.exe[3916] C:\Windows\syswow64\kernel32.dll!SetUnhandledExceptionFilter 0000000075c58791 8 bytes [31, C0, C2, 04, 00, 90, 90, ...]
.text C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe[3376] C:\Windows\syswow64\PsApi.dll!GetModuleInformation + 69 0000000075231465 2 bytes [23, 75]
.text C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe[3376] C:\Windows\syswow64\PsApi.dll!GetModuleInformation + 155 00000000752314bb 2 bytes [23, 75]
.text ... * 2
.text C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe[5040] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075231465 2 bytes [23, 75]
.text C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe[5040] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000752314bb 2 bytes [23, 75]
.text ... * 2
.text C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe[5360] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075231465 2 bytes [23, 75]
.text C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe[5360] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000752314bb 2 bytes [23, 75]
.text ... * 2
---- EOF - GMER 2.1 ---- Avast Eventlog Code:
19.11.2014 23:46:13 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
19.11.2014 23:46:13 The virus definitions have been automatically updated to version 141119-1.
19.11.2014 23:46:18 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
19.11.2014 23:46:18 [0000188C] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
19.11.2014 23:46:18 [0000188C] WaitForWscService( 600 ) -> true
19.11.2014 23:46:18 [0000188C] Antivirus state 0 updatedSign 1
19.11.2014 23:46:18 [0000188C] Antispyware state 0 updatedSign 1
20.11.2014 11:19:21 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
20.11.2014 11:19:21 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
20.11.2014 11:19:21 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
20.11.2014 11:19:21 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
20.11.2014 11:19:21 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
20.11.2014 11:19:21 [000007E4] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
20.11.2014 11:19:21 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
20.11.2014 11:19:30 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
20.11.2014 11:19:30 The virus definitions have been automatically updated to version 141120-0.
20.11.2014 11:19:35 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
20.11.2014 11:19:35 [00000F90] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
20.11.2014 11:22:22 [00000F90] WaitForWscService( 269 ) -> true
20.11.2014 11:22:22 [00000F90] Antivirus state 0 updatedSign 1
20.11.2014 11:22:22 [00000F90] Antispyware state 0 updatedSign 1
20.11.2014 11:22:23 [000007E4] WaitForWscService( 242 ) -> true
20.11.2014 11:22:23 [000007E4] Antivirus state 0 updatedSign 1
20.11.2014 11:22:23 [000007E4] Antispyware state 0 updatedSign 1
21.11.2014 13:07:49 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
21.11.2014 13:07:50 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
21.11.2014 13:07:50 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
21.11.2014 13:07:51 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
21.11.2014 13:07:51 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
21.11.2014 13:07:51 [000007C4] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
21.11.2014 13:07:51 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
21.11.2014 13:07:59 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
21.11.2014 13:08:00 The virus definitions have been automatically updated to version 141121-0.
21.11.2014 13:08:05 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
21.11.2014 13:08:05 [00000FAC] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
21.11.2014 13:09:55 [00000FAC] WaitForWscService( 383 ) -> true
21.11.2014 13:09:55 [00000FAC] Antivirus state 0 updatedSign 1
21.11.2014 13:09:55 [00000FAC] Antispyware state 0 updatedSign 1
21.11.2014 13:09:55 [000007C4] WaitForWscService( 355 ) -> true
21.11.2014 13:09:55 [000007C4] Antivirus state 0 updatedSign 1
21.11.2014 13:09:55 [000007C4] Antispyware state 0 updatedSign 1
21.11.2014 21:09:19 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
21.11.2014 21:09:24 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
21.11.2014 21:09:24 [00001870] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
21.11.2014 21:09:24 [00001870] WaitForWscService( 600 ) -> true
21.11.2014 21:09:24 [00001870] Antivirus state 0 updatedSign 1
21.11.2014 21:09:24 [00001870] Antispyware state 0 updatedSign 1
21.11.2014 21:09:41 The virus definitions have been automatically updated to version 141121-1.
22.11.2014 16:36:57 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
22.11.2014 16:36:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
22.11.2014 16:36:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
22.11.2014 16:36:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
22.11.2014 16:36:59 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
22.11.2014 16:36:59 [000007B8] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
22.11.2014 16:36:59 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
22.11.2014 16:37:08 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
22.11.2014 16:37:08 The virus definitions have been automatically updated to version 141122-0.
22.11.2014 16:37:13 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
22.11.2014 16:37:13 [00000F28] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
22.11.2014 16:39:08 [00000F28] WaitForWscService( 374 ) -> true
22.11.2014 16:39:08 [00000F28] Antivirus state 0 updatedSign 1
22.11.2014 16:39:08 [00000F28] Antispyware state 0 updatedSign 1
22.11.2014 16:39:08 [000007B8] WaitForWscService( 346 ) -> true
22.11.2014 16:39:08 [000007B8] Antivirus state 0 updatedSign 1
22.11.2014 16:39:08 [000007B8] Antispyware state 0 updatedSign 1
23.11.2014 13:37:04 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
23.11.2014 13:37:05 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
23.11.2014 13:37:05 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
23.11.2014 13:37:06 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
23.11.2014 13:37:06 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
23.11.2014 13:37:06 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
23.11.2014 13:37:06 [000007B8] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
23.11.2014 13:37:15 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
23.11.2014 13:37:15 The virus definitions have been automatically updated to version 141123-0.
23.11.2014 13:37:20 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
23.11.2014 13:37:20 [000010B0] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
23.11.2014 13:39:09 [000010B0] WaitForWscService( 383 ) -> true
23.11.2014 13:39:09 [000010B0] Antivirus state 0 updatedSign 1
23.11.2014 13:39:09 [000007B8] WaitForWscService( 354 ) -> true
23.11.2014 13:39:09 [000007B8] Antivirus state 0 updatedSign 1
23.11.2014 13:39:09 [000007B8] Antispyware state 0 updatedSign 1
23.11.2014 13:39:09 [000010B0] Antispyware state 0 updatedSign 1
23.11.2014 21:38:13 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
23.11.2014 21:38:13 The virus definitions have been automatically updated to version 141123-1.
23.11.2014 21:38:18 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
23.11.2014 21:38:18 [00000CF8] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
23.11.2014 21:38:18 [00000CF8] WaitForWscService( 600 ) -> true
23.11.2014 21:38:18 [00000CF8] Antivirus state 0 updatedSign 1
23.11.2014 21:38:18 [00000CF8] Antispyware state 0 updatedSign 1
24.11.2014 10:40:56 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 10:40:56 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 10:40:56 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 10:40:56 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 10:40:56 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
24.11.2014 10:40:56 [000007B8] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
24.11.2014 10:40:56 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 10:41:05 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 10:41:05 The virus definitions have been automatically updated to version 141124-0.
24.11.2014 10:41:10 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
24.11.2014 10:41:10 [000013D0] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
24.11.2014 10:43:02 [000007B8] WaitForWscService( 352 ) -> true
24.11.2014 10:43:02 [000007B8] Antivirus state 0 updatedSign 1
24.11.2014 10:43:02 [000007B8] Antispyware state 0 updatedSign 1
24.11.2014 10:43:03 [000013D0] WaitForWscService( 378 ) -> true
24.11.2014 10:43:03 [000013D0] Antivirus state 0 updatedSign 1
24.11.2014 10:43:03 [000013D0] Antispyware state 0 updatedSign 1
24.11.2014 17:49:09 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 17:49:09 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 17:49:09 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 17:49:10 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
24.11.2014 17:49:10 [0000078C] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
24.11.2014 17:49:10 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 17:49:10 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 17:49:12 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 17:49:25 Aavm AUID event 1, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 17:51:13 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 17:51:13 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 17:51:13 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 17:51:14 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 17:51:14 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
24.11.2014 17:51:14 [00000A08] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
24.11.2014 17:51:14 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 17:53:17 [00000A08] WaitForWscService( 355 ) -> true
24.11.2014 17:53:17 [00000A08] Antivirus state 0 updatedSign 1
24.11.2014 17:53:17 [00000A08] Antispyware state 0 updatedSign 1
24.11.2014 21:54:42 The virus definitions have been automatically updated to version 141124-1.
24.11.2014 21:54:42 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
24.11.2014 21:54:47 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
24.11.2014 21:54:47 [00000CE4] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
24.11.2014 21:54:47 [00000CE4] WaitForWscService( 600 ) -> true
24.11.2014 21:54:47 [00000CE4] Antivirus state 0 updatedSign 1
24.11.2014 21:54:47 [00000CE4] Antispyware state 0 updatedSign 1
25.11.2014 12:16:26 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
25.11.2014 12:16:27 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
25.11.2014 12:16:27 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
25.11.2014 12:16:27 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
25.11.2014 12:16:27 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
25.11.2014 12:16:27 [000007D4] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
25.11.2014 12:16:27 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
25.11.2014 12:16:34 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
25.11.2014 12:16:35 The virus definitions have been automatically updated to version 141125-0.
25.11.2014 12:16:40 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
25.11.2014 12:16:40 [00000F3C] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
25.11.2014 12:18:32 [000007D4] WaitForWscService( 351 ) -> true
25.11.2014 12:18:32 [00000F3C] WaitForWscService( 376 ) -> true
25.11.2014 12:18:32 [000007D4] Antivirus state 0 updatedSign 1
25.11.2014 12:18:32 [00000F3C] Antivirus state 0 updatedSign 1
25.11.2014 12:18:32 [000007D4] Antispyware state 0 updatedSign 1
25.11.2014 12:18:32 [00000F3C] Antispyware state 0 updatedSign 1
25.11.2014 20:17:49 There is a new version of the program available on the Internet.
25.11.2014 20:17:50 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
25.11.2014 20:17:55 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
25.11.2014 20:17:55 [00000928] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
25.11.2014 20:17:55 [00000928] WaitForWscService( 600 ) -> true
25.11.2014 20:17:55 [00000928] Antivirus state 0 updatedSign 1
25.11.2014 20:17:55 [00000928] Antispyware state 0 updatedSign 1
26.11.2014 00:18:13 There is a new version of the program available on the Internet.
26.11.2014 11:02:40 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
26.11.2014 11:02:40 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
26.11.2014 11:02:40 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
26.11.2014 11:02:40 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
26.11.2014 11:02:41 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
26.11.2014 11:02:41 [000007AC] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
26.11.2014 11:02:41 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
26.11.2014 11:02:49 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
26.11.2014 11:02:49 There is a new version of the program available on the Internet.
26.11.2014 11:02:54 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
26.11.2014 11:02:54 [0000102C] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
26.11.2014 11:04:45 [000007AC] WaitForWscService( 352 ) -> true
26.11.2014 11:04:45 [000007AC] Antivirus state 0 updatedSign 1
26.11.2014 11:04:45 [000007AC] Antispyware state 0 updatedSign 1
26.11.2014 11:04:46 [0000102C] WaitForWscService( 378 ) -> true
26.11.2014 11:04:46 [0000102C] Antivirus state 0 updatedSign 1
26.11.2014 11:04:46 [0000102C] Antispyware state 0 updatedSign 1
26.11.2014 11:05:58 There is a new version of the program available on the Internet.
26.11.2014 15:06:17 There is a new version of the program available on the Internet.
26.11.2014 19:06:33 There is a new version of the program available on the Internet.
26.11.2014 23:06:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
26.11.2014 23:06:58 There is a new version of the program available on the Internet.
26.11.2014 23:07:03 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
26.11.2014 23:07:03 [00000674] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
26.11.2014 23:07:03 [00000674] WaitForWscService( 600 ) -> true
26.11.2014 23:07:03 [00000674] Antivirus state 0 updatedSign 1
26.11.2014 23:07:03 [00000674] Antispyware state 0 updatedSign 1
27.11.2014 15:43:04 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
27.11.2014 15:43:04 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
27.11.2014 15:43:05 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
27.11.2014 15:43:05 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
27.11.2014 15:43:05 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
27.11.2014 15:43:05 [000007C0] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
27.11.2014 15:43:05 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
27.11.2014 15:43:07 There is a new version of the program available on the Internet.
27.11.2014 15:45:10 [000007C0] WaitForWscService( 352 ) -> true
27.11.2014 15:45:10 [000007C0] Antivirus state 0 updatedSign 1
27.11.2014 15:45:10 [000007C0] Antispyware state 0 updatedSign 1
27.11.2014 15:52:17 There is a new version of the program available on the Internet.
27.11.2014 19:52:38 There is a new version of the program available on the Internet.
27.11.2014 23:53:03 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
27.11.2014 23:53:03 There is a new version of the program available on the Internet.
27.11.2014 23:53:08 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
27.11.2014 23:53:08 [00000FF0] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
27.11.2014 23:53:08 [00000FF0] WaitForWscService( 600 ) -> true
27.11.2014 23:53:08 [00000FF0] Antivirus state 0 updatedSign 1
27.11.2014 23:53:08 [00000FF0] Antispyware state 0 updatedSign 1
28.11.2014 11:25:15 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
28.11.2014 11:25:16 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
28.11.2014 11:25:16 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
28.11.2014 11:25:16 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
28.11.2014 11:25:16 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
28.11.2014 11:25:16 [000007B8] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
28.11.2014 11:25:16 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
28.11.2014 11:25:25 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
28.11.2014 11:25:25 There is a new version of the program available on the Internet.
28.11.2014 11:25:30 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
28.11.2014 11:25:30 [00000F28] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
28.11.2014 11:27:22 [00000F28] WaitForWscService( 379 ) -> true
28.11.2014 11:27:22 [00000F28] Antivirus state 0 updatedSign 1
28.11.2014 11:27:22 [00000F28] Antispyware state 0 updatedSign 1
28.11.2014 11:27:22 [000007B8] WaitForWscService( 351 ) -> true
28.11.2014 11:27:22 [000007B8] Antivirus state 0 updatedSign 1
28.11.2014 11:27:22 [000007B8] Antispyware state 0 updatedSign 1
28.11.2014 11:29:22 There is a new version of the program available on the Internet.
28.11.2014 15:29:43 There is a new version of the program available on the Internet.
28.11.2014 19:30:06 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
28.11.2014 19:30:07 There is a new version of the program available on the Internet.
28.11.2014 19:30:11 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
28.11.2014 19:30:11 [00001CBC] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
28.11.2014 19:30:11 [00001CBC] WaitForWscService( 600 ) -> true
28.11.2014 19:30:11 [00001CBC] Antivirus state 0 updatedSign 1
28.11.2014 19:30:11 [00001CBC] Antispyware state 0 updatedSign 1
28.11.2014 23:30:30 There is a new version of the program available on the Internet.
29.11.2014 03:30:46 There is a new version of the program available on the Internet.
29.11.2014 15:29:57 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
29.11.2014 15:29:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
29.11.2014 15:29:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
29.11.2014 15:29:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
29.11.2014 15:29:58 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
29.11.2014 15:29:58 [000007C0] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
29.11.2014 15:29:58 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
29.11.2014 15:30:00 There is a new version of the program available on the Internet.
29.11.2014 15:32:03 [000007C0] WaitForWscService( 358 ) -> true
29.11.2014 15:32:03 [000007C0] Antivirus state 0 updatedSign 1
29.11.2014 15:32:03 [000007C0] Antispyware state 0 updatedSign 1
30.11.2014 20:20:05 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
30.11.2014 20:20:06 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
30.11.2014 20:20:06 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
30.11.2014 20:20:07 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
30.11.2014 20:20:07 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
30.11.2014 20:20:07 [000007D0] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
30.11.2014 20:20:07 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
30.11.2014 20:21:29 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
30.11.2014 20:21:30 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 0, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
30.11.2014 20:21:30 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
30.11.2014 20:21:31 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
30.11.2014 20:21:31 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
30.11.2014 20:21:31 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
30.11.2014 20:21:31 [00000610] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
30.11.2014 20:21:42 Aavm AUID event 8, product 1, ARCEn 0, rn , status 0, progver 150996965, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
30.11.2014 20:21:43 There is a new version of the program available on the Internet.
30.11.2014 20:21:48 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
30.11.2014 20:21:48 [00000F24] WriteAVASFirewallStatus preVis 0 IsWin8 0 Expired 0 Fw 0 Fs 1
30.11.2014 20:23:35 [00000F24] WaitForWscService( 388 ) -> true
30.11.2014 20:23:35 [00000F24] Antivirus state 0 updatedSign 1
30.11.2014 20:23:35 [00000610] WaitForWscService( 355 ) -> true
30.11.2014 20:23:35 [00000610] Antivirus state 0 updatedSign 1
30.11.2014 20:23:35 [00000610] Antispyware state 0 updatedSign 1
30.11.2014 20:23:35 [00000F24] Antispyware state 0 updatedSign 1
30.11.2014 20:25:11 There is a new version of the program available on the Internet.
30.11.2014 20:27:06 Aavm AUID event 8, product 1, ARCEn 0, rn , status 1, progver 150997152, Guid fba4c0ee-06d1-440b-9db2-d3c681939b79, Auid ntqJ2B4zJ7m8RD38
30.11.2014 20:27:10 VistaAux started /remwsc
30.11.2014 20:27:10 UninstallAVASFirewall VistAux preVista 0 firewall 0
30.11.2014 20:29:00 Maj 6 Min 1 GetVersionEx 6.1 Stored 5.0
30.11.2014 20:29:00 [00000D8C] RegisterAVASFirewall preVista 0 pszProductName avast! Antivirus pszProductExe C:\Program Files\AVAST Software\Avast\VisthAux.exe firewall 0
30.11.2014 20:29:00 [00000D8C] WaitForWscService( 599 ) -> true, SCM OK wsc OK err 0
30.11.2014 20:29:00 [00000D8C] Register AV OK
30.11.2014 20:29:00 [00000D8C] WaitForWscService( 599 ) -> true, SCM OK wsc OK err 0
30.11.2014 20:29:00 [00000D8C] Register AS OK
30.11.2014 20:29:00 [00000D8C] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
30.11.2014 20:29:00 [00000D8C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
30.11.2014 20:29:00 [00000D8C] UpdateStatus AV OK status 0 sign 1
30.11.2014 20:29:00 [00000D8C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
30.11.2014 20:29:00 [00000D8C] UpdateStatus AS OK status 0 sign 1
01.12.2014 10:56:44 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
01.12.2014 10:56:44 [000007D0] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
01.12.2014 10:56:50 [000007D0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
01.12.2014 10:56:50 [000007D0] UpdateStatus AV OK status 0 sign 1
01.12.2014 10:56:50 [000007D0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
01.12.2014 10:56:50 [000007D0] UpdateStatus AS OK status 0 sign 1
01.12.2014 10:56:52 The virus definitions have been automatically updated to version 141201-0.
01.12.2014 10:56:56 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
01.12.2014 10:56:56 [0000135C] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
01.12.2014 10:56:56 [0000135C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
01.12.2014 10:56:56 [0000135C] UpdateStatus AV OK status 0 sign 1
01.12.2014 10:56:56 [0000135C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
01.12.2014 10:56:56 [0000135C] UpdateStatus AS OK status 0 sign 1
02.12.2014 11:04:23 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
02.12.2014 11:04:23 [00000484] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
02.12.2014 11:04:26 [00000484] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
02.12.2014 11:04:26 [00000484] UpdateStatus AV OK status 0 sign 1
02.12.2014 11:04:26 [00000484] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
02.12.2014 11:04:26 [00000484] UpdateStatus AS OK status 0 sign 1
02.12.2014 11:04:42 The virus definitions have been automatically updated to version 141202-0.
02.12.2014 11:04:45 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
02.12.2014 11:04:45 [00000A04] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
02.12.2014 11:04:45 [00000A04] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
02.12.2014 11:04:45 [00000A04] UpdateStatus AV OK status 0 sign 1
02.12.2014 11:04:45 [00000A04] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
02.12.2014 11:04:45 [00000A04] UpdateStatus AS OK status 0 sign 1
02.12.2014 19:05:36 The virus definitions have been automatically updated to version 141202-1.
02.12.2014 19:05:40 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
02.12.2014 19:05:40 [00001398] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
02.12.2014 19:05:40 [00001398] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
02.12.2014 19:05:40 [00001398] UpdateStatus AV OK status 0 sign 1
02.12.2014 19:05:40 [00001398] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
02.12.2014 19:05:40 [00001398] UpdateStatus AS OK status 0 sign 1
03.12.2014 13:13:14 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
03.12.2014 13:13:14 [000007C0] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
03.12.2014 13:13:18 [000007C0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
03.12.2014 13:13:18 [000007C0] UpdateStatus AV OK status 0 sign 1
03.12.2014 13:13:18 [000007C0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
03.12.2014 13:13:18 [000007C0] UpdateStatus AS OK status 0 sign 1
03.12.2014 13:13:23 The virus definitions have been automatically updated to version 141203-0.
03.12.2014 13:13:27 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
03.12.2014 13:13:27 [0000089C] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
03.12.2014 13:13:27 [0000089C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
03.12.2014 13:13:27 [0000089C] UpdateStatus AV OK status 0 sign 1
03.12.2014 13:13:27 [0000089C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
03.12.2014 13:13:27 [0000089C] UpdateStatus AS OK status 0 sign 1
03.12.2014 21:14:07 The virus definitions have been automatically updated to version 141203-1.
03.12.2014 21:14:11 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
03.12.2014 21:14:11 [0000154C] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
03.12.2014 21:14:11 [0000154C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
03.12.2014 21:14:11 [0000154C] UpdateStatus AV OK status 0 sign 1
03.12.2014 21:14:11 [0000154C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
03.12.2014 21:14:11 [0000154C] UpdateStatus AS OK status 0 sign 1
04.12.2014 13:02:27 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
04.12.2014 13:02:27 [000007CC] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
04.12.2014 13:02:34 [000007CC] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
04.12.2014 13:02:34 [000007CC] UpdateStatus AV OK status 0 sign 1
04.12.2014 13:02:34 [000007CC] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
04.12.2014 13:02:34 [000007CC] UpdateStatus AS OK status 0 sign 1
04.12.2014 13:02:36 The virus definitions have been automatically updated to version 141204-0.
04.12.2014 13:02:40 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
04.12.2014 13:02:40 [00000F18] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
04.12.2014 13:02:40 [00000F18] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
04.12.2014 13:02:40 [00000F18] UpdateStatus AV OK status 0 sign 1
04.12.2014 13:02:40 [00000F18] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
04.12.2014 13:02:40 [00000F18] UpdateStatus AS OK status 0 sign 1
04.12.2014 21:03:45 The virus definitions have been automatically updated to version 141204-1.
04.12.2014 21:03:49 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
04.12.2014 21:03:49 [00000A70] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
04.12.2014 21:03:49 [00000A70] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
04.12.2014 21:03:49 [00000A70] UpdateStatus AV OK status 0 sign 1
04.12.2014 21:03:49 [00000A70] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
04.12.2014 21:03:49 [00000A70] UpdateStatus AS OK status 0 sign 1
05.12.2014 11:59:57 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
05.12.2014 11:59:57 [000007E0] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
05.12.2014 12:00:04 [000007E0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
05.12.2014 12:00:04 [000007E0] UpdateStatus AV OK status 0 sign 1
05.12.2014 12:00:04 [000007E0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
05.12.2014 12:00:04 [000007E0] UpdateStatus AS OK status 0 sign 1
05.12.2014 16:03:54 The virus definitions have been automatically updated to version 141205-1.
05.12.2014 16:03:57 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
05.12.2014 16:03:57 [00001574] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
05.12.2014 16:03:57 [00001574] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
05.12.2014 16:03:57 [00001574] UpdateStatus AV OK status 0 sign 1
05.12.2014 16:03:57 [00001574] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
05.12.2014 16:03:57 [00001574] UpdateStatus AS OK status 0 sign 1
06.12.2014 00:04:32 The virus definitions have been automatically updated to version 141205-2.
06.12.2014 00:04:37 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
06.12.2014 00:04:37 [00001808] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
06.12.2014 00:04:37 [00001808] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
06.12.2014 00:04:37 [00001808] UpdateStatus AV OK status 0 sign 1
06.12.2014 00:04:37 [00001808] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
06.12.2014 00:04:37 [00001808] UpdateStatus AS OK status 0 sign 1
06.12.2014 14:16:08 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
06.12.2014 14:16:08 [000007D8] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
06.12.2014 14:16:14 [000007D8] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
06.12.2014 14:16:14 [000007D8] UpdateStatus AV OK status 0 sign 1
06.12.2014 14:16:14 [000007D8] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
06.12.2014 14:16:14 [000007D8] UpdateStatus AS OK status 0 sign 1
06.12.2014 14:16:18 The virus definitions have been automatically updated to version 141206-0.
06.12.2014 14:16:21 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
06.12.2014 14:16:21 [00000A14] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
06.12.2014 14:16:21 [00000A14] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
06.12.2014 14:16:21 [00000A14] UpdateStatus AV OK status 0 sign 1
06.12.2014 14:16:21 [00000A14] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
06.12.2014 14:16:21 [00000A14] UpdateStatus AS OK status 0 sign 1
06.12.2014 22:19:53 The virus definitions have been automatically updated to version 141206-1.
06.12.2014 22:19:57 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
06.12.2014 22:19:57 [00001678] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
06.12.2014 22:19:57 [00001678] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
06.12.2014 22:19:57 [00001678] UpdateStatus AV OK status 0 sign 1
06.12.2014 22:19:57 [00001678] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
06.12.2014 22:19:57 [00001678] UpdateStatus AS OK status 0 sign 1
07.12.2014 12:09:29 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
07.12.2014 12:09:29 [000007A4] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
07.12.2014 12:09:35 [000007A4] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
07.12.2014 12:09:35 [000007A4] UpdateStatus AV OK status 0 sign 1
07.12.2014 12:09:35 [000007A4] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
07.12.2014 12:09:35 [000007A4] UpdateStatus AS OK status 0 sign 1
07.12.2014 12:09:39 The virus definitions have been automatically updated to version 141207-0.
07.12.2014 12:09:43 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
07.12.2014 12:09:43 [00000E9C] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
07.12.2014 12:09:43 [00000E9C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
07.12.2014 12:09:43 [00000E9C] UpdateStatus AV OK status 0 sign 1
07.12.2014 12:09:43 [00000E9C] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
07.12.2014 12:09:43 [00000E9C] UpdateStatus AS OK status 0 sign 1
07.12.2014 14:00:52 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
07.12.2014 14:00:52 [00000AEC] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
07.12.2014 14:00:52 [00000AEC] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
07.12.2014 14:00:52 [00000AEC] UpdateStatus AV OK status 0 sign 1
07.12.2014 14:00:52 [00000AEC] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
07.12.2014 14:00:52 [00000AEC] UpdateStatus AS OK status 0 sign 1
07.12.2014 18:04:26 The virus definitions have been automatically updated to version 141207-1.
07.12.2014 18:04:31 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
07.12.2014 18:04:31 [00000690] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
07.12.2014 18:04:31 [00000690] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
07.12.2014 18:04:31 [00000690] UpdateStatus AV OK status 0 sign 1
07.12.2014 18:04:31 [00000690] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
07.12.2014 18:04:31 [00000690] UpdateStatus AS OK status 0 sign 1
07.12.2014 22:04:55 The virus definitions have been automatically updated to version 141207-2.
07.12.2014 22:04:59 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
07.12.2014 22:04:59 [00001A80] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
07.12.2014 22:04:59 [00001A80] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
07.12.2014 22:04:59 [00001A80] UpdateStatus AV OK status 0 sign 1
07.12.2014 22:04:59 [00001A80] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
07.12.2014 22:04:59 [00001A80] UpdateStatus AS OK status 0 sign 1
08.12.2014 11:10:41 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
08.12.2014 11:10:41 [000007C0] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
08.12.2014 11:10:47 [000007C0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
08.12.2014 11:10:47 [000007C0] UpdateStatus AV OK status 0 sign 1
08.12.2014 11:10:47 [000007C0] WaitForWscService( 839 ) -> true, SCM OK wsc OK err 0
08.12.2014 11:10:47 [000007C0] UpdateStatus AS OK status 0 sign 1
08.12.2014 11:10:50 The virus definitions have been automatically updated to version 141208-0.
08.12.2014 11:10:54 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
08.12.2014 11:10:54 [00000D54] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
08.12.2014 11:10:54 [00000D54] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
08.12.2014 11:10:54 [00000D54] UpdateStatus AV OK status 0 sign 1
08.12.2014 11:10:54 [00000D54] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
08.12.2014 11:10:54 [00000D54] UpdateStatus AS OK status 0 sign 1
08.12.2014 13:12:57 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
08.12.2014 13:12:57 [000006D8] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 0
08.12.2014 13:12:57 [000006D8] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
08.12.2014 13:12:57 [000006D8] UpdateStatus AV OK status 1 sign 1
08.12.2014 13:12:57 [000006D8] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
08.12.2014 13:12:57 [000006D8] UpdateStatus AS OK status 1 sign 1
08.12.2014 13:26:58 VistaAux started /enable /av
08.12.2014 13:26:58 VistaAux Trying to start avast service
08.12.2014 13:26:58 VistaAux starting providers
08.12.2014 13:27:12 Maj 6 Min 1 GetVersionEx 6.1 Stored 6.1
08.12.2014 13:27:12 [00000CDC] WriteAVASFirewallStat SignUpToDate 1 preVis0 IsWin80 ExpPrg 0 Fw 0 Fs 1
08.12.2014 13:27:12 [00000CDC] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
08.12.2014 13:27:12 [00000CDC] UpdateStatus AV OK status 0 sign 1
08.12.2014 13:27:12 [00000CDC] WaitForWscService( 840 ) -> true, SCM OK wsc OK err 0
08.12.2014 13:27:12 [00000CDC] UpdateStatus AS OK status 0 sign 1
08.12.2014 13:27:26 AAVM - initialization error: AvResRun failed, ahresws2.dll.
08.12.2014 13:27:39 AAVM - initialization error: AvResRun failed, ahresws2.dll.
08.12.2014 13:28:10 AAVM - initialization error: AvResRun failed, ahresws2.dll.
08.12.2014 13:35:26 AAVM - initialization error: AvResRun failed, ahresws2.dll. Ok habe noch einen Echtzeit logfile gefunden Code:
*
06.12.2014 14:16:30 C:\ProgramData\374311380\BITAC20.tmp [L] Win32:Malware-gen (0)
Datei erfolgreich gelöscht...
*
* Avast Echtzeit-Schutz-Bericht
* Diese Berichtdatei wurde automatisch erstellt
*
* Start: Sonntag, 7. Dezember 2014 12:09:29
*
*
* Schutz beendet: Sonntag, 7. Dezember 2014 12:31:46
* Laufzeit war 22 Minute(n), 22 Sekunde(n)
*
*
* Avast Echtzeit-Schutz-Bericht
* Diese Berichtdatei wurde automatisch erstellt
*
* Start: Sonntag, 7. Dezember 2014 14:00:51
*
07.12.2014 14:01:04 C:\ProgramData\374311380\BITAC20.tmp [L] Win32:Malware-gen (0)
Datei erfolgreich gelöscht...
*
* Schutz beendet: Montag, 8. Dezember 2014 01:45:06
* Laufzeit war 11 Stunde(n), 44 Minute(n), 44 Sekunde(n)
*
*
* Avast Echtzeit-Schutz-Bericht
* Diese Berichtdatei wurde automatisch erstellt
*
* Start: Montag, 8. Dezember 2014 11:10:41
*
08.12.2014 11:11:00 C:\ProgramData\374311380\BITAC20.tmp [L] Win32:Malware-gen (0)
Datei erfolgreich gelöscht...
*
* Schutz beendet: Montag, 8. Dezember 2014 13:12:43
* Laufzeit war 2 Stunde(n), 2 Minute(n), 2 Sekunde(n)
*
*
* Avast Echtzeit-Schutz-Bericht
* Diese Berichtdatei wurde automatisch erstellt
*
* Start: Montag, 8. Dezember 2014 13:26:58
*
08.12.2014 13:28:16 C:\ProgramData\374311380\BITAC20.tmp [L] Win32:Adware-CAW [Adw] (0)
Datei erfolgreich gelöscht... In der "Webshield.txt" den anderen Virus Code:
04.12.2014 13:02:46 hxxp://lovered.info/distrib/1.80.1926/sp.dll.x86_64/used/sp32_64_10000058991358062590.dll [L] Win32:BProtect-J [Trj] (0)
*
* Schutz beendet: Freitag, 5. Dezember 2014 02:35:57
* Laufzeit war 13 Stunde(n), 33 Minute(n), 33 Sekunde(n)
*
*
* Avast Echtzeit-Schutz-Bericht
* Diese Berichtdatei wurde automatisch erstellt
*
* Start: Freitag, 5. Dezember 2014 11:59:57
*
05.12.2014 12:00:27 hxxp://lovered.info/distrib/1.80.1926/sp.dll.x86_64/used/sp32_64_10000058991358062590.dll [L] Win32:BProtect-J [Trj] (0)
*
* Avast Echtzeit-Schutz-Bericht
* Diese Berichtdatei wurde automatisch erstellt
*
* Start: Samstag, 6. Dezember 2014 14:16:08
*
06.12.2014 14:16:30 hxxp://lovered.info/distrib/1.80.1926/sp.dll.x86_64/used/sp32_64_10000058991358062590.dll [L] Win32:BProtect-J [Trj] (0)
*
* Avast Echtzeit-Schutz-Bericht
* Diese Berichtdatei wurde automatisch erstellt
*
* Start: Sonntag, 7. Dezember 2014 12:09:29
*
*
* Schutz beendet: Sonntag, 7. Dezember 2014 12:31:46
* Laufzeit war 22 Minute(n), 22 Sekunde(n)
*
*
* Avast Echtzeit-Schutz-Bericht
* Diese Berichtdatei wurde automatisch erstellt
*
* Start: Sonntag, 7. Dezember 2014 14:00:51
*
07.12.2014 14:01:04 hxxp://lovered.info/distrib/1.80.1926/sp.dll.x86_64/used/sp32_64_10000058991358062590.dll [L] Win32:BProtect-J [Trj] (0)
*
* Schutz beendet: Montag, 8. Dezember 2014 01:45:06
* Laufzeit war 11 Stunde(n), 44 Minute(n), 44 Sekunde(n)
*
*
* Avast Echtzeit-Schutz-Bericht
* Diese Berichtdatei wurde automatisch erstellt
*
* Start: Montag, 8. Dezember 2014 11:10:41
*
08.12.2014 11:11:00 hxxp://lovered.info/distrib/1.80.1926/sp.dll.x86_64/used/sp32_64_10000058991358062590.dll [L] Win32:BProtect-J [Trj] (0)
*
* Schutz beendet: Montag, 8. Dezember 2014 13:13:26
* Laufzeit war 2 Stunde(n), 2 Minute(n), 2 Sekunde(n)
*
*
* Avast Echtzeit-Schutz-Bericht
* Diese Berichtdatei wurde automatisch erstellt
*
* Start: Montag, 8. Dezember 2014 13:27:16
* |