رن سكنر
Runscanner logfile
* = signed file
- = file not found
General info
------------
Computer name : NADER-PC
Creation time : 09/02/2012 06:44:38 م
Hosts <> 127.0.0.1 : 0
Hosts file location : %SystemRoot%\System32\drivers\etc
IE version : 9.0.8112.16421
OS : Windows 7 Enterprise
OS Build : 7601
OS SP : Service Pack 1
RunScanner Version : 2.0.0.50
User Language : العربية (مصر)
User rights : Administrator
Windows folder : C:\Windows
Running processes
-----------------
* C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
* C:\Windows\System32\atieclxx.exe (AMD)
* C:\Windows\System32\atiesrxx.exe (AMD)
* C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe (Avira Operations GmbH & Co. KG)
* C:\Program Files\Avira\AntiVir Desktop\avmailc.exe (Avira Operations GmbH & Co. KG)
* C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
* C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
* C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG)
* C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
* C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe (Avira Operations GmbH & Co. KG)
* C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
* C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe (DeviceVM, Inc.)
* C:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe (DeviceVM, Inc.)
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (ATI Technologies Inc.)
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Advanced Micro Devices Inc.)
* C:\Program Files\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe (CyberLink Corp.)
* C:\Windows\System32\csrss.exe (Microsoft Corporation)
* C:\Windows\System32\csrss.exe (Microsoft Corporation)
* C:\Windows\System32\dllhost.exe (Microsoft Corporation)
* C:\Windows\System32\conhost.exe (Microsoft Corporation)
C:\Program Files\SUPERAntiSpyware\SASCore.exe (SUPERAntiSpyware.com)
* C:\Program Files\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe (CyberLink)
* C:\Program Files\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe (CyberLink)
* C:\Windows\System32\dwm.exe (Microsoft Corporation)
* C:\Program Files\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe (CyberLink)
* C:\Program Files\Emsisoft Anti-Malware\a2service.exe (Emsi Software GmbH)
* C:\Program Files\Gigabyte\EasySaver\essvr.exe
* C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
* C:\Program Files\Mail.Ru\Guard\GuardMailRu.exe
* C:\Program Files\Mail.Ru\Guard\GuardMailRu.exe
* C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (Realtek Semiconductor)
* C:\Program Files\HitmanPro\hmpsched.exe (SurfRight B.V.)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\taskhost.exe (Microsoft Corporation)
C:\Program Files\ImageShack Uploader\ImageShackUploader.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (InstallShield Software Corporation)
* C:\Program Files\Internet Download Manager\IDMan.exe (Tonec Inc.)
* C:\Program Files\Internet Download Manager\IEMonitor.exe (Tonec Inc.)
* C:\Windows\System32\lsass.exe (Microsoft Corporation)
* C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
C:\Program Files\Yuna Software\Messenger Plus!\PlusService.exe (Yuna Software)
* C:\Windows\System32\msfeedssync.exe (Microsoft Corporation)
* C:\Windows\System32\SearchIndexer.exe (Microsoft Corporation)
* C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.)
* C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE (Microsoft Corp.)
* C:\Program Files\Nero\Update\NASvc.exe (Nero AG)
* C:\Program Files\Nitro PDF\Professional 7\NitroPDFDriverService2.exe (Nitro PDF Software)
C:\Users\Nader\AppData\Local\Temp\npkklq.exe
* C:\Program Files\Mozilla Firefox\plugin-container.exe (Mozilla Corporation)
* C:\Windows\System32\PnkBstrA.exe
* C:\Windows\System32\PnkBstrB.exe
* C:\Program Files\CyberLink\PowerDVD12\PowerDVD12Agent.exe (CyberLink Corp.)
* C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
* C:\Program Files\Acronis\DiskDirector\OSS\reinstall_svc.exe
* C:\Zyzoom_Forum_Tools\zRunScanner.com (Runscanner.net)
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe (Nokia)
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia)
* C:\Windows\System32\services.exe (Microsoft Corporation)
* C:\Program Files\TechSmith\Snagit 10\Snagit32.exe (TechSmith Corporation)
* C:\Program Files\TechSmith\Snagit 10\SnagitEditor.exe (TechSmith Corporation)
* C:\Program Files\TechSmith\Snagit 10\SnagPriv.exe (TechSmith Corporation)
* C:\Program Files\Sophos\Sophos Anti-Rootkit\sargui.exe (Sophos Group)
* C:\Windows\System32\spoolsv.exe (Microsoft Corporation)
* C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation)
* C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (Microsoft Corporation)
* C:\Users\Nader\Downloads\Programs\tdsskiller.exe (Kaspersky Lab ZAO)
* C:\Program Files\TechSmith\Snagit 10\TscHelp.exe (TechSmith Corporation)
* C:\Windows\System32\NLSSRV32.EXE (Nalpeiron Ltd.)
* C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe (TuneUp Software)
* C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe (TuneUp Software)
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe (Nokia)
C:\Program Files\Winamp\winampa.exe (Nullsoft, Inc.)
* C:\Windows\system32\audiodg.exe (Microsoft Corporation)
* C:\Program Files\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
* C:\Windows\System32\smss.exe (Microsoft Corporation)
* C:\Windows\System32\wbem\WmiPrvSE.exe (Microsoft Corporation)
C:\Zyzoom_Forum_Tools\zyzoom.exe
* C:\Windows\System32\wininit.exe (Microsoft Corporation)
* C:\Windows\System32\winlogon.exe (Microsoft Corporation)
* C:\Windows\System32\lsm.exe (Microsoft Corporation)
* C:\Windows\explorer.exe (Microsoft Corporation)
Unrated items
-------------
002 * C:\Program Files\AntiLogger\AntiLogger.exe (Zemana Ltd.)
002 * C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
002 * C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe (DeviceVM, Inc.)
002 C:\Program Files\GIGABYTE\ET6\ETcall.exe
002 * C:\Program Files\Mail.Ru\Guard\GuardMailRu.exe
002 C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (InstallShield Software Corporation)
002 * C:\Program Files\KeyScrambler\keyscrambler.exe (QFX Software Corporation)
002 * C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
002 C:\Program Files\Yuna Software\Messenger Plus!\PlusService.exe (Yuna Software)
002 * C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
002 C:\Program Files\Winamp\winampa.exe (Nullsoft, Inc.)
003 * C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
003 C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe (InstallShield Software Corporation)
003 C:\Program Files\Nimbuzz\Nimbuzz.exe
003 C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)
003 C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
010 * C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe (Avira Firewall Service)
010 * C:\Program Files\Avira\AntiVir Desktop\avmailc.exe (Avira MailGuard Service)
010 * C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira On-Access Service)
010 * C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Scheduler)
010 * C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE (Avira WebGuard Service)
010 * C:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe (Browser Configuration Utility Auto-recovery Service)
010 C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (Core Service)
010 * C:\Program Files\Mail.Ru\Guard\GuardMailRu.exe (GuardMailRu Module)
010 * C:\Program Files\HitmanPro\hmpsched.exe (HitmanPro Scheduler)
010 C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe (IDriverT Module)
010 * C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Anti-Malware)
010 C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (ServiceLayer Module)
010 * C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (SwitchBoard Server (32 bit))
011 C:\Program Files\Gigabyte\ET6\i386\AODDriver.sys (AODDriver.sys)
011 * C:\Windows\system32\DRIVERS\avipbb.sys (Avira Driver for Security Enhancement)
011 * C:\Windows\system32\DRIVERS\avkmgr.sys (Avira Manager Driver)
011 * C:\Windows\system32\DRIVERS\avgntflt.sys (Avira Minifilter Driver)
011 * C:\Windows\system32\DRIVERS\dtsoftbus01.sys (DAEMON Tools Virtual Bus Driver)
011 * C:\Windows\system32\Drivers\GVTDrv.sys (GVTDrv)
011 * C:\Program Files\UltraISO\drivers\ISODrive.sys (ISO DVD/CD-ROM Device Driver)
011 * C:\Windows\System32\drivers\keyscrambler.sys (KeyScrambler)
011 C:\Windows\system32\drivers\mbam.sys (MBAMProtector)
011 * C:\Windows\system32\DRIVERS\avfwim.sys (Packet filtering kernel driver ( NDIS IM ))
011 * C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS (SASDIFSV.SYS)
011 * C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SASKUTIL.SYS)
011 * c:\windows\System32\Drivers\sptd.sys (sptd)
011 * C:\Windows\system32\DRIVERS\avfwot.sys (TDI filtering kernel driver)
011 * C:\Windows\system32\DRIVERS\VBoxNetFlt.sys (VirtualBox Bridged Networking Driver)
011 * C:\Windows\system32\DRIVERS\VBoxNetAdp.sys (VirtualBox Host-Only Network Adapter Driver)
011 * C:\Windows\system32\DRIVERS\VBoxDrv.sys (VirtualBox Support Driver)
011 * C:\Windows\system32\DRIVERS\VBoxUSBMon.sys (VirtualBox USB Monitor Driver)
011 C:\Program Files\Microsoft Visual Studio 10.0\Team Tools\Performance Tools\VSPerfDrv100.sys (VSPerf Profiling Control Driver)
011 * C:\Program Files\AntiLogger\AntiLog32.sys (Zemana AntiLogger Driver)
042 GUID / CLSID not found {5C106A59-CC3C-4caa-81A4-6D909B5ACE23}
042 GUID / CLSID not found {0000036B-C524-4050-81A0-243669A86B9F}
042 GUID / CLSID not found {219C3416-8CB2-491a-A3C7-D9FCDDC9D600}
042 GUID / CLSID not found {2670000A-7350-4f3c-8081-5663EE0C6C49}
042 GUID / CLSID not found {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}
052 GUID / CLSID not found {8984B388-A5BB-4DF7-B274-77B879E179DB}
060 GUID / CLSID not found {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
061 C:\Program Files\7-Zip\7-zip.dll (Igor Pavlov) {23170F69-40C1-278A-1000-000100020000}
061 C:\Program Files\AIMP3\Modules\aimp_menu32.dll (AIMP DevTeam) {1F77B17B-F531-44DB-ACA4-76ABB5010A28}
061 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll (Advanced Micro Devices, Inc.) {5E2121EE-0300-11D4-8D3B-444553540000}
061 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiamaxx.dll (Advanced Micro Devices, Inc.) {872A9397-E0D6-4e28-B64D-52B8D0A7EA35}
061 C:\Program Files\HashTab Shell Extension\HashTab32.dll (Implbits Software) {8A56567E-A333-4843-B6E1-C3A262E41D8C}
061 C:\Program Files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll (Nokia) {416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A}
061 * C:\Program Files\Avira\AntiVir Desktop\shlext.dll (Avira Operations GmbH & Co. KG) {45AC2688-0253-4ED8-97DE-B5370FA7D48A}
061 * C:\Program Files\UltraISO\isoshell.dll (EZB Systems, Inc.) {AD392E40-428C-459F-961E-9B147782D099}
061 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
068 * C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
068 * C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
068 * C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
068 * C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
068 * C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
100 Start Page HKCU :
105 إر&سال إلى OneNote : res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
105 ت&صدير إلى Microsoft Excel : res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
105 تحميل الكل بواسطة Internet Download Manager : C:\Program Files\Internet Download Manager\IEGetAll.htm
105 تحميل بواسطة Internet Download Manager : C:\Program Files\Internet Download Manager\IEExt.htm
145 * C:\Windows\system32\drivers\keyscrambler.sys (QFX Software Corporation)
170 {685e3193-486d-11e1-add9-6cf049151400} : H:\autorun.exe
173 C:\Program Files\7-Zip\7-zip.dll (Igor Pavlov) {23170F69-40C1-278A-1000-000100020000}
173 C:\Program Files\AIMP3\Modules\aimp_menu32.dll (AIMP DevTeam) {1F77B17B-F531-44DB-ACA4-76ABB5010A28}
173 C:\Program Files\FreeTime\FormatFactory\ShellEx_101.dll (Free Time) {A3777921-CFD3-4A6B-89BF-08E6B95716E8}
173 * C:\Program Files\Avira\AntiVir Desktop\shlext.dll (Avira Operations GmbH & Co. KG) {45AC2688-0253-4ED8-97DE-B5370FA7D48A}
173 C:\Program Files\SUPERAntiSpyware\SASCTXMN.DLL (SUPERAntiSpyware.com) SUPERAntiSpyware Context Menu
173 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
221 C:\Program Files\7-Zip\7-zip.dll (Igor Pavlov) {23170F69-40C1-278A-1000-000100020000}
221 C:\Program Files\AIMP3\Modules\aimp_menu32.dll (AIMP DevTeam) {1F77B17B-F531-44DB-ACA4-76ABB5010A28}
221 C:\Program Files\FreeTime\FormatFactory\ShellEx_101.dll (Free Time) {A3777921-CFD3-4A6B-89BF-08E6B95716E8}
221 * C:\Program Files\Avira\AntiVir Desktop\shlext.dll (Avira Operations GmbH & Co. KG) {45AC2688-0253-4ED8-97DE-B5370FA7D48A}
221 C:\Program Files\SUPERAntiSpyware\SASCTXMN.DLL (SUPERAntiSpyware.com) SUPERAntiSpyware Context Menu
221 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
225 * C:\Program Files\Avira\AntiVir Desktop\shlext.dll (Avira Operations GmbH & Co. KG) {45AC2688-0253-4ED8-97DE-B5370FA7D48A}
225 * C:\Program Files\Avira\AntiVir Desktop\shlext.dll (Avira Operations GmbH & Co. KG) {45AC2688-0253-4ED8-97DE-B5370FA7D48A}
225 * C:\Program Files\UltraISO\isoshell.dll (EZB Systems, Inc.) {AD392E40-428C-459F-961E-9B147782D099}
225 * C:\Program Files\UltraISO\isoshell.dll (EZB Systems, Inc.) {AD392E40-428C-459F-961E-9B147782D099}
225 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
225 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
227 C:\Program Files\7-Zip\7-zip.dll (Igor Pavlov) {23170F69-40C1-278A-1000-000100020000}
227 C:\Program Files\AIMP3\Modules\aimp_menu32.dll (AIMP DevTeam) {1F77B17B-F531-44DB-ACA4-76ABB5010A28}
227 C:\Program Files\FreeTime\FormatFactory\ShellEx_101.dll (Free Time) {A3777921-CFD3-4A6B-89BF-08E6B95716E8}
227 C:\Program Files\SUPERAntiSpyware\SASCTXMN.DLL (SUPERAntiSpyware.com) SUPERAntiSpyware Context Menu
227 * C:\Program Files\UltraISO\isoshell.dll (EZB Systems, Inc.) {AD392E40-428C-459F-961E-9B147782D099}
227 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
229 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll (Advanced Micro Devices, Inc.) {5E2121EE-0300-11D4-8D3B-444553540000}
251 C:\Program Files\7-Zip\7-zip.dll (Igor Pavlov) {23170F69-40C1-278A-1000-000100020000}
251 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
254 C:\Program Files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll (Nokia) {416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A}
Missing files
-------------
011 C:\Windows\system32\D930.tmp
011 C:\Users\Nader\AppData\Local\Temp\mfe_rr.sys
011 System32\drivers\rdvgkmd.sys
011 System32\drivers\synth3dvsc.sys
011 C:\Windows\system32\drivers\tsusbhub.sys