FRST wird nachgeliefert, jetzt erst mal MBAM und Avira: Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 01.09.2014
Suchlauf-Zeit: 18:30:13
Logdatei: 2. log.txt
Administrator: Nein
Version: 2.00.2.1012
Malware Datenbank: v2014.09.01.05
Rootkit Datenbank: v2014.08.21.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Self-protection: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x86
Dateisystem: NTFS
Benutzer:
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 298796
Verstrichene Zeit: 14 Min, 50 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristics: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 0
(No malicious items detected)
Registrierungswerte: 0
(No malicious items detected)
Registrierungsdaten: 0
(No malicious items detected)
Ordner: 4
PUP.Optional.OpenCandy, C:\Users\\AppData\Roaming\OpenCandy, In Quarantäne, [1762ce1aeb90c96d4955d5ef887adb25],
PUP.Optional.OpenCandy, C:\Users\\AppData\Roaming\OpenCandy\832C57B42F0940569A7FB585BF5D0096, In Quarantäne, [1762ce1aeb90c96d4955d5ef887adb25],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}, In Quarantäne, [84f58e5a6e0d2a0c72255597be4452ae],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\C06B0F556C27638B, In Quarantäne, [84f58e5a6e0d2a0c72255597be4452ae],
Dateien: 11
PUP.Optional.OpenCandy.A, C:\Users\\AppData\Roaming\OpenCandy\832C57B42F0940569A7FB585BF5D0096\dlm.exe, In Quarantäne, [d8a12eba4e2d0432d4e5de4e857c29d7],
PUP.Optional.OpenCandy, C:\Users\\AppData\Local\temp\is-17A5K.tmp\OCSetupHlp.dll, In Quarantäne, [8dec08e085f6d561bbc56da0a65fef11],
PUP.Optional.OpenCandy, C:\Users\\AppData\Roaming\OpenCandy\832C57B42F0940569A7FB585BF5D0096\Installer.exe, In Quarantäne, [1762ce1aeb90c96d4955d5ef887adb25],
PUP.Optional.OpenCandy, C:\Users\\AppData\Roaming\OpenCandy\832C57B42F0940569A7FB585BF5D0096\LinkuryYAHOO_RBCB_p5v5.exe, In Quarantäne, [1762ce1aeb90c96d4955d5ef887adb25],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\20120702102648.log, In Quarantäne, [84f58e5a6e0d2a0c72255597be4452ae],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\Setup.dat, In Quarantäne, [84f58e5a6e0d2a0c72255597be4452ae],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\Setup.exe, In Quarantäne, [84f58e5a6e0d2a0c72255597be4452ae],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\Setup.ico, In Quarantäne, [84f58e5a6e0d2a0c72255597be4452ae],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\TsuDll.dll, In Quarantäne, [84f58e5a6e0d2a0c72255597be4452ae],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\_Setup.dll, In Quarantäne, [84f58e5a6e0d2a0c72255597be4452ae],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\_Setupx.dll, In Quarantäne, [84f58e5a6e0d2a0c72255597be4452ae],
Physische Sektoren: 0
(No malicious items detected)
(end) Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 02.09.2014
Suchlauf-Zeit: 09:47:36
Logdatei: 4. log.txt
Administrator: Nein
Version: 2.00.2.1012
Malware Datenbank: v2014.09.02.03
Rootkit Datenbank: v2014.08.21.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Self-protection: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x86
Dateisystem: NTFS
Benutzer:
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 298347
Verstrichene Zeit: 22 Min, 42 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristics: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 0
(No malicious items detected)
Registrierungswerte: 0
(No malicious items detected)
Registrierungsdaten: 0
(No malicious items detected)
Ordner: 1
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}, In Quarantäne, [e8f34a9e671467cf7b68509c24de0bf5],
Dateien: 4
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\Setup.ico, In Quarantäne, [e8f34a9e671467cf7b68509c24de0bf5],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\TsuDll.dll, In Quarantäne, [e8f34a9e671467cf7b68509c24de0bf5],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\_Setup.dll, In Quarantäne, [e8f34a9e671467cf7b68509c24de0bf5],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\_Setupx.dll, In Quarantäne, [e8f34a9e671467cf7b68509c24de0bf5],
Physische Sektoren: 0
(No malicious items detected)
(end) Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 02.09.2014
Suchlauf-Zeit: 09:47:36
Logdatei: 4. log.txt
Administrator: Nein
Version: 2.00.2.1012
Malware Datenbank: v2014.09.02.03
Rootkit Datenbank: v2014.08.21.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Self-protection: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x86
Dateisystem: NTFS
Benutzer:
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 298347
Verstrichene Zeit: 22 Min, 42 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristics: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 0
(No malicious items detected)
Registrierungswerte: 0
(No malicious items detected)
Registrierungsdaten: 0
(No malicious items detected)
Ordner: 1
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}, In Quarantäne, [e8f34a9e671467cf7b68509c24de0bf5],
Dateien: 4
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\Setup.ico, In Quarantäne, [e8f34a9e671467cf7b68509c24de0bf5],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\TsuDll.dll, In Quarantäne, [e8f34a9e671467cf7b68509c24de0bf5],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\_Setup.dll, In Quarantäne, [e8f34a9e671467cf7b68509c24de0bf5],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\_Setupx.dll, In Quarantäne, [e8f34a9e671467cf7b68509c24de0bf5],
Physische Sektoren: 0
(No malicious items detected)
(end) Code:
Avira Free Antivirus
Report file date: Dienstag, 2. September 2014 09:52
The program is running as an unrestricted full version.
Online services are available.
Licensee : Avira Antivirus Free
Serial number : 0000149996-AVHOE-0000001
Platform : Windows 7 Professional
Windows version : (Service Pack 1) [6.1.7601]
Boot mode : Normally booted
Username : SYSTEM
Computer name :
Version information:
BUILD.DAT : 14.0.6.570 92022 Bytes 15.08.2014 10:30:00
AVSCAN.EXE : 14.0.6.548 1046608 Bytes 12.08.2014 07:19:01
AVSCANRC.DLL : 14.0.6.522 52816 Bytes 12.08.2014 07:19:01
LUKE.DLL : 14.0.6.522 57936 Bytes 12.08.2014 07:19:17
AVSCPLR.DLL : 14.0.6.548 92752 Bytes 12.08.2014 07:19:02
AVREG.DLL : 14.0.6.522 262224 Bytes 12.08.2014 07:19:00
avlode.dll : 14.0.6.526 603728 Bytes 12.08.2014 07:18:59
avlode.rdf : 14.0.4.42 65114 Bytes 17.07.2014 17:43:03
XBV00009.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00010.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00011.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00012.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00013.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00014.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00015.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00016.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00017.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00018.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00019.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00020.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00021.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00022.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00023.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00024.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00025.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00026.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00027.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:13
XBV00028.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:14
XBV00029.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:14
XBV00030.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:14
XBV00031.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:14
XBV00032.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:14
XBV00033.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:14
XBV00034.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:14
XBV00035.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:14
XBV00036.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:14
XBV00037.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:14
XBV00038.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:14
XBV00039.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:14
XBV00040.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:14
XBV00041.VDF : 8.11.165.190 2048 Bytes 07.08.2014 21:46:14
XBV00143.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00144.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00145.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00146.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00147.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00148.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00149.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00150.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00151.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00152.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00153.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00154.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00155.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00156.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00157.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00158.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00159.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00160.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00161.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00162.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00163.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00164.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00165.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00166.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00167.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00168.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00169.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00170.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00171.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00172.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00173.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00174.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00175.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:08
XBV00176.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00177.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00178.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00179.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00180.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00181.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00182.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00183.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00184.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00185.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00186.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00187.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00188.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00189.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00190.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00191.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00192.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00193.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00194.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00195.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00196.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00197.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00198.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00199.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00200.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00201.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00202.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00203.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00204.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00205.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00206.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00207.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00208.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00209.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00210.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00211.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00212.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00213.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00214.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:09
XBV00215.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00216.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00217.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00218.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00219.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00220.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00221.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00222.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00223.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00224.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00225.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00226.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00227.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00228.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00229.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00230.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00231.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00232.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00233.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00234.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00235.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00236.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00237.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00238.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00239.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00240.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00241.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00242.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00243.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00244.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00245.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00246.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00247.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00248.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00249.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00250.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00251.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00252.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00253.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00254.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:10
XBV00255.VDF : 8.11.167.234 2048 Bytes 19.08.2014 12:15:11
XBV00000.VDF : 7.11.70.0 66736640 Bytes 04.04.2013 15:04:06
XBV00001.VDF : 7.11.74.226 2201600 Bytes 30.04.2013 14:40:44
XBV00002.VDF : 7.11.80.60 2751488 Bytes 28.05.2013 13:47:00
XBV00003.VDF : 7.11.85.214 2162688 Bytes 21.06.2013 10:02:50
XBV00004.VDF : 7.11.91.176 3903488 Bytes 23.07.2013 15:54:11
XBV00005.VDF : 7.11.98.186 6822912 Bytes 29.08.2013 14:59:47
XBV00006.VDF : 7.11.139.38 15708672 Bytes 27.03.2014 17:40:59
XBV00007.VDF : 7.11.152.100 4193792 Bytes 02.06.2014 15:34:13
XBV00008.VDF : 8.11.165.192 4251136 Bytes 07.08.2014 21:46:13
XBV00042.VDF : 8.11.167.234 1073152 Bytes 19.08.2014 12:15:05
XBV00043.VDF : 8.11.167.236 3584 Bytes 19.08.2014 12:15:05
XBV00044.VDF : 8.11.167.238 17408 Bytes 19.08.2014 07:19:26
XBV00045.VDF : 8.11.167.242 7168 Bytes 19.08.2014 07:19:26
XBV00046.VDF : 8.11.167.248 2048 Bytes 19.08.2014 07:19:26
XBV00047.VDF : 8.11.168.26 19968 Bytes 19.08.2014 07:19:26
XBV00048.VDF : 8.11.168.44 10240 Bytes 19.08.2014 14:12:17
XBV00049.VDF : 8.11.168.60 2048 Bytes 19.08.2014 14:12:17
XBV00050.VDF : 8.11.168.78 27136 Bytes 20.08.2014 14:12:17
XBV00051.VDF : 8.11.168.80 2048 Bytes 20.08.2014 14:12:17
XBV00052.VDF : 8.11.168.98 15360 Bytes 20.08.2014 14:12:17
XBV00053.VDF : 8.11.168.100 2048 Bytes 20.08.2014 14:12:17
XBV00054.VDF : 8.11.168.116 28160 Bytes 20.08.2014 07:44:12
XBV00055.VDF : 8.11.168.118 9216 Bytes 20.08.2014 07:44:12
XBV00056.VDF : 8.11.168.120 4096 Bytes 20.08.2014 07:44:12
XBV00057.VDF : 8.11.168.124 12800 Bytes 21.08.2014 07:44:12
XBV00058.VDF : 8.11.168.126 25088 Bytes 21.08.2014 17:49:05
XBV00059.VDF : 8.11.168.132 33280 Bytes 21.08.2014 17:49:05
XBV00060.VDF : 8.11.168.134 2048 Bytes 21.08.2014 17:49:05
XBV00061.VDF : 8.11.168.138 11776 Bytes 21.08.2014 07:23:14
XBV00062.VDF : 8.11.168.140 3584 Bytes 21.08.2014 07:23:14
XBV00063.VDF : 8.11.168.158 3584 Bytes 22.08.2014 16:42:01
XBV00064.VDF : 8.11.168.174 2048 Bytes 22.08.2014 16:42:01
XBV00065.VDF : 8.11.168.180 5120 Bytes 22.08.2014 16:42:01
XBV00066.VDF : 8.11.168.220 7168 Bytes 22.08.2014 16:42:01
XBV00067.VDF : 8.11.168.222 20480 Bytes 22.08.2014 16:42:01
XBV00068.VDF : 8.11.168.226 17920 Bytes 22.08.2014 07:43:43
XBV00069.VDF : 8.11.168.230 8704 Bytes 22.08.2014 07:43:44
XBV00070.VDF : 8.11.168.234 4608 Bytes 23.08.2014 20:14:18
XBV00071.VDF : 8.11.168.236 4608 Bytes 23.08.2014 20:14:18
XBV00072.VDF : 8.11.168.238 4608 Bytes 23.08.2014 20:14:18
XBV00073.VDF : 8.11.168.240 37376 Bytes 23.08.2014 20:14:18
XBV00074.VDF : 8.11.168.242 2048 Bytes 23.08.2014 20:14:18
XBV00075.VDF : 8.11.168.244 38400 Bytes 24.08.2014 10:07:35
XBV00076.VDF : 8.11.168.246 2048 Bytes 24.08.2014 10:07:35
XBV00077.VDF : 8.11.168.248 14848 Bytes 24.08.2014 17:44:33
XBV00078.VDF : 8.11.168.252 2048 Bytes 24.08.2014 17:44:33
XBV00079.VDF : 8.11.168.254 24576 Bytes 24.08.2014 17:44:33
XBV00080.VDF : 8.11.169.2 2048 Bytes 24.08.2014 06:31:34
XBV00081.VDF : 8.11.169.4 22528 Bytes 25.08.2014 06:31:34
XBV00082.VDF : 8.11.169.20 6656 Bytes 25.08.2014 06:31:34
XBV00083.VDF : 8.11.169.36 4608 Bytes 25.08.2014 15:44:29
XBV00084.VDF : 8.11.169.38 11264 Bytes 25.08.2014 15:44:29
XBV00085.VDF : 8.11.169.40 2048 Bytes 25.08.2014 15:44:29
XBV00086.VDF : 8.11.169.54 8192 Bytes 25.08.2014 15:44:30
XBV00087.VDF : 8.11.169.62 28672 Bytes 25.08.2014 06:01:16
XBV00088.VDF : 8.11.169.66 14336 Bytes 25.08.2014 06:01:16
XBV00089.VDF : 8.11.169.68 3584 Bytes 25.08.2014 06:01:16
XBV00090.VDF : 8.11.169.72 15872 Bytes 26.08.2014 06:01:16
XBV00091.VDF : 8.11.169.74 6144 Bytes 26.08.2014 06:01:16
XBV00092.VDF : 8.11.169.76 12288 Bytes 26.08.2014 20:02:22
XBV00093.VDF : 8.11.169.78 5632 Bytes 26.08.2014 20:02:22
XBV00094.VDF : 8.11.169.80 25088 Bytes 26.08.2014 20:02:22
XBV00095.VDF : 8.11.169.82 5120 Bytes 26.08.2014 20:02:22
XBV00096.VDF : 8.11.169.88 24064 Bytes 26.08.2014 20:02:22
XBV00097.VDF : 8.11.169.90 9216 Bytes 26.08.2014 20:02:22
XBV00098.VDF : 8.11.169.94 33280 Bytes 26.08.2014 20:02:22
XBV00099.VDF : 8.11.169.108 7680 Bytes 26.08.2014 01:58:22
XBV00100.VDF : 8.11.169.122 5120 Bytes 26.08.2014 01:58:22
XBV00101.VDF : 8.11.169.136 3072 Bytes 27.08.2014 07:58:27
XBV00102.VDF : 8.11.169.138 8704 Bytes 27.08.2014 07:58:27
XBV00103.VDF : 8.11.169.140 15872 Bytes 27.08.2014 07:58:27
XBV00104.VDF : 8.11.169.142 10240 Bytes 27.08.2014 06:11:13
XBV00105.VDF : 8.11.169.144 17408 Bytes 27.08.2014 06:11:13
XBV00106.VDF : 8.11.169.148 18944 Bytes 27.08.2014 06:11:13
XBV00107.VDF : 8.11.169.150 2048 Bytes 27.08.2014 06:11:13
XBV00108.VDF : 8.11.169.152 14336 Bytes 27.08.2014 06:11:13
XBV00109.VDF : 8.11.169.154 2048 Bytes 27.08.2014 06:11:13
XBV00110.VDF : 8.11.169.156 2048 Bytes 27.08.2014 06:11:13
XBV00111.VDF : 8.11.169.160 11264 Bytes 27.08.2014 06:11:13
XBV00112.VDF : 8.11.169.164 31744 Bytes 28.08.2014 06:11:13
XBV00113.VDF : 8.11.169.166 18432 Bytes 28.08.2014 13:18:04
XBV00114.VDF : 8.11.169.168 10240 Bytes 28.08.2014 13:18:04
XBV00115.VDF : 8.11.169.186 35328 Bytes 28.08.2014 08:21:38
XBV00116.VDF : 8.11.169.202 8192 Bytes 28.08.2014 08:21:38
XBV00117.VDF : 8.11.169.214 2048 Bytes 28.08.2014 08:21:38
XBV00118.VDF : 8.11.169.216 2048 Bytes 28.08.2014 08:21:38
XBV00119.VDF : 8.11.169.230 40960 Bytes 29.08.2014 08:21:38
XBV00120.VDF : 8.11.169.232 8192 Bytes 29.08.2014 08:21:38
XBV00121.VDF : 8.11.169.238 45056 Bytes 29.08.2014 17:34:30
XBV00122.VDF : 8.11.169.242 4096 Bytes 29.08.2014 17:34:30
XBV00123.VDF : 8.11.169.248 52224 Bytes 29.08.2014 17:34:30
XBV00124.VDF : 8.11.170.12 4096 Bytes 29.08.2014 10:26:45
XBV00125.VDF : 8.11.170.24 2560 Bytes 29.08.2014 10:26:45
XBV00126.VDF : 8.11.170.38 5632 Bytes 30.08.2014 10:26:45
XBV00127.VDF : 8.11.170.40 19456 Bytes 30.08.2014 16:26:56
XBV00128.VDF : 8.11.170.42 25088 Bytes 30.08.2014 16:26:56
XBV00129.VDF : 8.11.170.44 69632 Bytes 31.08.2014 10:01:52
XBV00130.VDF : 8.11.170.48 7168 Bytes 31.08.2014 17:10:01
XBV00131.VDF : 8.11.170.50 8192 Bytes 31.08.2014 07:05:23
XBV00132.VDF : 8.11.170.52 19456 Bytes 01.09.2014 07:05:23
XBV00133.VDF : 8.11.170.64 3072 Bytes 01.09.2014 07:05:23
XBV00134.VDF : 8.11.170.74 3584 Bytes 01.09.2014 14:03:43
XBV00135.VDF : 8.11.170.84 8192 Bytes 01.09.2014 14:03:43
XBV00136.VDF : 8.11.170.90 41472 Bytes 01.09.2014 07:22:10
XBV00137.VDF : 8.11.170.94 2048 Bytes 01.09.2014 07:22:11
XBV00138.VDF : 8.11.170.96 29696 Bytes 01.09.2014 07:22:11
XBV00139.VDF : 8.11.170.100 28160 Bytes 01.09.2014 07:22:11
XBV00140.VDF : 8.11.170.102 23552 Bytes 01.09.2014 07:22:11
XBV00141.VDF : 8.11.170.106 13824 Bytes 02.09.2014 07:22:11
XBV00142.VDF : 8.11.170.116 10752 Bytes 02.09.2014 07:22:11
LOCAL001.VDF : 8.11.170.116 109971968 Bytes 02.09.2014 07:22:29
Engine version : 8.3.24.18
AEVDF.DLL : 8.3.1.6 133992 Bytes 20.08.2014 14:12:17
AESCRIPT.DLL : 8.2.0.18 437104 Bytes 22.08.2014 16:42:01
AESCN.DLL : 8.3.2.2 139456 Bytes 21.07.2014 12:57:33
AESBX.DLL : 8.2.20.24 1409224 Bytes 08.05.2014 14:04:36
AERDL.DLL : 8.2.0.138 704888 Bytes 02.12.2013 16:35:30
AEPACK.DLL : 8.4.0.50 792488 Bytes 09.08.2014 17:06:32
AEOFFICE.DLL : 8.3.0.20 216104 Bytes 14.08.2014 14:56:27
AEHEUR.DLL : 8.1.4.1240 7433072 Bytes 22.08.2014 16:42:01
AEHELP.DLL : 8.3.1.0 278728 Bytes 30.05.2014 07:59:49
AEGEN.DLL : 8.1.7.28 450752 Bytes 06.06.2014 12:45:24
AEEXP.DLL : 8.4.2.30 247712 Bytes 22.08.2014 16:42:01
AEEMU.DLL : 8.1.3.4 399264 Bytes 09.08.2014 17:06:31
AEDROID.DLL : 8.4.2.24 442568 Bytes 04.06.2014 13:16:19
AECORE.DLL : 8.3.2.6 243712 Bytes 09.08.2014 17:06:31
AEBB.DLL : 8.1.2.0 60448 Bytes 09.08.2014 17:06:31
AVWINLL.DLL : 14.0.6.522 24144 Bytes 12.08.2014 07:18:57
AVPREF.DLL : 14.0.6.522 50256 Bytes 12.08.2014 07:19:00
AVREP.DLL : 14.0.6.522 219216 Bytes 12.08.2014 07:19:00
AVARKT.DLL : 14.0.5.368 226384 Bytes 04.07.2014 07:47:06
AVEVTLOG.DLL : 14.0.6.522 182352 Bytes 12.08.2014 07:18:58
SQLITE3.DLL : 14.0.6.522 452176 Bytes 12.08.2014 07:19:19
AVSMTP.DLL : 14.0.6.522 76368 Bytes 12.08.2014 07:19:04
NETNT.DLL : 14.0.6.522 13392 Bytes 12.08.2014 07:19:17
RCIMAGE.DLL : 14.0.6.522 4864080 Bytes 12.08.2014 07:18:57
RCTEXT.DLL : 14.0.6.558 76536 Bytes 02.09.2014 07:22:10
Configuration settings for the scan:
Jobname.............................: AVGuardAsyncScan
Configuration file..................: C:\ProgramData\Avira\AntiVir Desktop\TEMP\AVGUARD_54057068\guard_slideup.avp
Reporting...........................: default
Primary action......................: Interactive
Secondary action....................: Quarantine
Scan master boot sector.............: on
Scan boot sector....................: off
Process scan........................: on
Scan registry.......................: off
Search for rootkits.................: on
Integrity checking of system files..: on
Scan all files......................: All files
Scan archives.......................: on
Limit recursion depth...............: 20
Smart extensions....................: on
Macrovirus heuristic................: on
File heuristic......................: Complete
Deviating risk categories...........: +APPL,+GAME,+JOKE,+PCK,+PFS,+SPR,
Start of the scan: Dienstag, 2. September 2014 09:52
Starting search for hidden objects.
The scan of running processes will be started:
Scan process 'SearchFilterHost.exe' - '27' Module(s) have been scanned
Scan process 'SearchProtocolHost.exe' - '29' Module(s) have been scanned
Scan process 'svchost.exe' - '28' Module(s) have been scanned
Scan process 'vssvc.exe' - '47' Module(s) have been scanned
Scan process 'avscan.exe' - '113' Module(s) have been scanned
Scan process 'mbam.exe' - '87' Module(s) have been scanned
Scan process 'firefox.exe' - '116' Module(s) have been scanned
Scan process 'svchost.exe' - '23' Module(s) have been scanned
Scan process 'thunderbird.exe' - '119' Module(s) have been scanned
Scan process 'SpotifyWebHelper.exe' - '50' Module(s) have been scanned
Scan process 'KiesTrayAgent.exe' - '67' Module(s) have been scanned
Scan process 'phonostarTimer.exe' - '46' Module(s) have been scanned
Scan process 'Skype.exe' - '127' Module(s) have been scanned
Scan process 'avgnt.exe' - '117' Module(s) have been scanned
Scan process 'avshadow.exe' - '37' Module(s) have been scanned
Scan process 'avguard.exe' - '123' Module(s) have been scanned
Scan process 'sched.exe' - '57' Module(s) have been scanned
Scan process 'syncagentsrv.exe' - '68' Module(s) have been scanned
Scan process 'svchost.exe' - '56' Module(s) have been scanned
Scan process 'svchost.exe' - '59' Module(s) have been scanned
Scan process 'WUDFHost.exe' - '34' Module(s) have been scanned
Scan process 'svchost.exe' - '73' Module(s) have been scanned
Scan process 'wmpnetwk.exe' - '115' Module(s) have been scanned
Scan process 'SearchIndexer.exe' - '55' Module(s) have been scanned
Scan process 'sua.exe' - '18' Module(s) have been scanned
Scan process 'psi_tray.exe' - '21' Module(s) have been scanned
Scan process 'sidebar.exe' - '97' Module(s) have been scanned
Scan process 'Avira.OE.Systray.exe' - '129' Module(s) have been scanned
Scan process 'jusched.exe' - '31' Module(s) have been scanned
Scan process 'schedhlp.exe' - '24' Module(s) have been scanned
Scan process 'TibMounterMonitor.exe' - '36' Module(s) have been scanned
Scan process 'TrueImageMonitor.exe' - '89' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '48' Module(s) have been scanned
Scan process 'RtHDVCpl.exe' - '46' Module(s) have been scanned
Scan process 'svchost.exe' - '34' Module(s) have been scanned
Scan process 'svchost.exe' - '32' Module(s) have been scanned
Scan process 'OpenHardwareMonitor.exe' - '72' Module(s) have been scanned
Scan process 'taskeng.exe' - '28' Module(s) have been scanned
Scan process 'PSIA.exe' - '79' Module(s) have been scanned
Scan process 'taskhost.exe' - '67' Module(s) have been scanned
Scan process 'Explorer.EXE' - '202' Module(s) have been scanned
Scan process 'Dwm.exe' - '35' Module(s) have been scanned
Scan process 'OkayFreedomService.exe' - '28' Module(s) have been scanned
Scan process 'IJPLMSVC.EXE' - '20' Module(s) have been scanned
Scan process 'dirmngr.exe' - '30' Module(s) have been scanned
Scan process 'SkypeC2CPNRSvc.exe' - '19' Module(s) have been scanned
Scan process 'SkypeC2CAutoUpdateSvc.exe' - '25' Module(s) have been scanned
Scan process 'afcdpsrv.exe' - '42' Module(s) have been scanned
Scan process 'armsvc.exe' - '23' Module(s) have been scanned
Scan process 'schedul2.exe' - '43' Module(s) have been scanned
Scan process 'aavus.exe' - '45' Module(s) have been scanned
Scan process 'svchost.exe' - '63' Module(s) have been scanned
Scan process 'spoolsv.exe' - '90' Module(s) have been scanned
Scan process 'atieclxx.exe' - '34' Module(s) have been scanned
Scan process 'svchost.exe' - '87' Module(s) have been scanned
Scan process 'svchost.exe' - '28' Module(s) have been scanned
Scan process 'svchost.exe' - '163' Module(s) have been scanned
Scan process 'svchost.exe' - '87' Module(s) have been scanned
Scan process 'svchost.exe' - '124' Module(s) have been scanned
Scan process 'svchost.exe' - '92' Module(s) have been scanned
Scan process 'atiesrxx.exe' - '26' Module(s) have been scanned
Scan process 'svchost.exe' - '34' Module(s) have been scanned
Scan process 'svchost.exe' - '52' Module(s) have been scanned
Scan process 'winlogon.exe' - '31' Module(s) have been scanned
Scan process 'lsm.exe' - '16' Module(s) have been scanned
Scan process 'lsass.exe' - '64' Module(s) have been scanned
Scan process 'services.exe' - '33' Module(s) have been scanned
Scan process 'csrss.exe' - '18' Module(s) have been scanned
Scan process 'wininit.exe' - '26' Module(s) have been scanned
Scan process 'csrss.exe' - '18' Module(s) have been scanned
Scan process 'smss.exe' - '2' Module(s) have been scanned
Initiating scan of system files:
Signed -> 'C:\Windows\system32\svchost.exe'
Signed -> 'C:\Windows\system32\winlogon.exe'
Signed -> 'C:\Windows\explorer.exe'
Signed -> 'C:\Windows\system32\smss.exe'
Signed -> 'C:\Windows\system32\wininet.DLL'
Signed -> 'C:\Windows\system32\wsock32.DLL'
Signed -> 'C:\Windows\system32\ws2_32.DLL'
Signed -> 'C:\Windows\system32\services.exe'
Signed -> 'C:\Windows\system32\lsass.exe'
Signed -> 'C:\Windows\system32\csrss.exe'
Signed -> 'C:\Windows\system32\drivers\kbdclass.sys'
Signed -> 'C:\Windows\system32\spoolsv.exe'
Signed -> 'C:\Windows\system32\alg.exe'
Signed -> 'C:\Windows\system32\wuauclt.exe'
Signed -> 'C:\Windows\system32\advapi32.DLL'
Signed -> 'C:\Windows\system32\user32.DLL'
Signed -> 'C:\Windows\system32\gdi32.DLL'
Signed -> 'C:\Windows\system32\kernel32.DLL'
Signed -> 'C:\Windows\system32\ntdll.DLL'
Signed -> 'C:\Windows\system32\ntoskrnl.exe'
Signed -> 'C:\Windows\system32\drivers\beep.sys'
Signed -> 'C:\Windows\system32\ctfmon.exe'
Signed -> 'C:\Windows\system32\imm32.dll'
Signed -> 'C:\Windows\system32\dsound.dll'
Signed -> 'C:\Windows\system32\aclui.dll'
Signed -> 'C:\Windows\system32\msvcrt.dll'
Signed -> 'C:\Windows\system32\d3d9.dll'
Signed -> 'C:\Windows\system32\dnsapi.dll'
Signed -> 'C:\Windows\system32\mshtml.dll'
Signed -> 'C:\Windows\system32\regsvr32.exe'
Signed -> 'C:\Windows\system32\rundll32.exe'
Signed -> 'C:\Windows\system32\userinit.exe'
Signed -> 'C:\Windows\system32\reg.exe'
Signed -> 'C:\Windows\system32\ntvdm.exe'
Signed -> 'C:\Windows\regedit.exe'
The system files were scanned ('35' files)
Starting the file scan:
Begin scan in 'C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\TsuDll.dll'
C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\TsuDll.dll
[DETECTION] Is the TR/Trash.Gen Trojan
Begin scan in 'C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\_Setup.dll'
C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\_Setup.dll
[DETECTION] Is the TR/Trash.Gen Trojan
Begin scan in 'C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\_Setupx.dll'
C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\_Setupx.dll
[DETECTION] Is the TR/Trash.Gen Trojan
Beginning disinfection:
C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\_Setupx.dll
[DETECTION] Is the TR/Trash.Gen Trojan
[WARNING] The file could not be copied to quarantine!
[WARNING] Error in ARK library
[NOTE] The file is scheduled for deleting after reboot.
[NOTE] It is recommended to restart your computer in order to finish the repair.
C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\_Setup.dll
[DETECTION] Is the TR/Trash.Gen Trojan
[WARNING] The file could not be copied to quarantine!
[WARNING] Error in ARK library
[NOTE] The file is scheduled for deleting after reboot.
[NOTE] It is recommended to restart your computer in order to finish the repair.
C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\TsuDll.dll
[DETECTION] Is the TR/Trash.Gen Trojan
[WARNING] The file could not be copied to quarantine!
[WARNING] Error in ARK library
[NOTE] The file is scheduled for deleting after reboot.
[NOTE] It is recommended to restart your computer in order to finish the repair.
End of the scan: Dienstag, 2. September 2014 10:28
Used time: 16:38 Minute(s)
The scan has been done completely.
0 Scanned directories
805 Files were scanned
3 Viruses and/or unwanted programs were found
0 Files were classified as suspicious
0 Files were deleted
0 Viruses and unwanted programs were repaired
0 Files were moved to quarantine
0 Files were renamed
0 Files cannot be scanned
802 Files not concerned
11 Archives were scanned
3 Warnings
3 Notes
153632 Objects were scanned with rootkit scan
0 Hidden objects were found
The scan results will be transferred to the Guard.
The repair notes were written to the file 'C:\avrescue\rescue.avp'.
|