Report of OSAM: Autorun Manager v5.0.11926.0
http://www.online-solutions.ru/en/
Saved at 16:13:54 on 17.12.2012
Risk | Name | Publisher | Full Path | Status | |
---|---|---|---|---|---|
Boot Execute | |||||
HKLM\SYSTEM\CurrentControlSet\Control\Session Manager | |||||
"BootExecute" | "AVG Technologies CZ, s.r.o." | C:\PROGRA~1\AVG\AVG2013\avgrsx.exe | File exists | ||
Common | |||||
%SystemRoot%\Tasks | |||||
|||| | "GoogleUpdateTaskUserS-1-5-21-1177238915-562591055-725345543-500Core.job" | "Google Inc." | C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe | File exists | |
|||| | "GoogleUpdateTaskUserS-1-5-21-1177238915-562591055-725345543-500UA.job" | "Google Inc." | C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe | File exists | |
"Adobe Flash Player Updater.job" | "Adobe Systems Incorporated" | C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe | File exists | ||
Control Panel Objects | |||||
%SystemRoot%\system32 | |||||
|||||| | "ALSNDMGR.CPL" | C:\WINDOWS\system32\ALSNDMGR.CPL | File found, but it contains no detailed information | ||
"FlashPlayerCPLApp.cpl" | "Adobe Systems Incorporated" | C:\WINDOWS\system32\FlashPlayerCPLApp.cpl | File exists | ||
Drivers | |||||
HKLM\SYSTEM\CurrentControlSet\Services | |||||
"AVG Anti-Rootkit Driver" (Avgrkx86) | "AVG Technologies CZ, s.r.o." | C:\WINDOWS\System32\DRIVERS\avgrkx86.sys | File exists | ||
"AVG Mini-Filter Resident Anti-Virus Shield" (Avgmfx86) | "AVG Technologies CZ, s.r.o." | C:\WINDOWS\System32\DRIVERS\avgmfx86.sys | File exists | ||
"AVG TDI Driver" (Avgtdix) | "AVG Technologies CZ, s.r.o." | C:\WINDOWS\System32\DRIVERS\avgtdix.sys | File exists | ||
"AVGIDSShim" (AVGIDSShim) | "AVG Technologies CZ, s.r.o. " | C:\WINDOWS\System32\DRIVERS\avgidsshimx.sys | File exists | ||
"Changer" (Changer) | C:\WINDOWS\system32\drivers\Changer.sys | File not found | |||
"gfiark" (gfiark) | "GFI Software" | C:\WINDOWS\System32\drivers\gfiark.sys | File exists | ||
"i2omgmt" (i2omgmt) | C:\WINDOWS\system32\drivers\i2omgmt.sys | File not found | |||
"lbrtfdc" (lbrtfdc) | C:\WINDOWS\system32\drivers\lbrtfdc.sys | File not found | |||
|||||| | "MBAMSwissArmy" (MBAMSwissArmy) | "Malwarebytes Corporation" | C:\WINDOWS\system32\drivers\mbamswissarmy.sys | File exists | |
"PCIDump" (PCIDump) | C:\WINDOWS\system32\drivers\PCIDump.sys | File not found | |||
"PDCOMP" (PDCOMP) | C:\WINDOWS\system32\drivers\PDCOMP.sys | File not found | |||
"PDFRAME" (PDFRAME) | C:\WINDOWS\system32\drivers\PDFRAME.sys | File not found | |||
"PDRELI" (PDRELI) | C:\WINDOWS\system32\drivers\PDRELI.sys | File not found | |||
"PDRFRAME" (PDRFRAME) | C:\WINDOWS\system32\drivers\PDRFRAME.sys | File not found | |||
|||||| | "pxkbf" (pxkbf) | "Prevx" | C:\WINDOWS\System32\drivers\pxkbf.sys | File exists | |
|||||| | "pxrts" (pxrts) | "Prevx" | C:\WINDOWS\System32\drivers\pxrts.sys | File exists | |
|||||| | "pxscan" (pxscan) | "Prevx" | C:\WINDOWS\System32\drivers\pxscan.sys | File exists | |
|||||| | "Service for Realtek AC97 Audio (WDM)" (ALCXWDM) | "Realtek Semiconductor Corp." | C:\WINDOWS\System32\drivers\ALCXWDM.SYS | File exists | |
"TuneUpUtilitiesDrv" (TuneUpUtilitiesDrv) | "TuneUp Software" | C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver32.sys | File exists | ||
"WDICA" (WDICA) | C:\WINDOWS\system32\drivers\WDICA.sys | File not found | |||
Explorer | |||||
HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | |||||
|||||| | {BDEADF00-C265-11d0-BCED-00A0C90AB50F} "Web Folders" | "Microsoft Corporation" | C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL | File exists | |
HKLM\Software\Classes\Protocols\Handler | |||||
|||||| | {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class" | "Skype Technologies" | C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL | File exists | |
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | |||||
{4838CD50-7E5D-4811-9B17-C47A85539F28} "AVG Disk Space Explorer Shell Extension" | "AVG" | C:\Program Files\AVG\AVG PC TuneUp\DseShExt-x86.dll | File exists | ||
{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} "AVG Find Extension" | File not found | COM-object registry key not found | ||||
{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} "AVG Shell Extension Class" | "AVG Technologies CZ, s.r.o." | C:\Program Files\AVG\AVG2013\avgse.dll | File exists | ||
{4858E7D9-8E12-45a3-B6A3-1CD128C9D403} "AVG Shredder Shell Extension" | "AVG" | C:\Program Files\AVG\AVG PC TuneUp\SDShelEx-win32.dll | File exists | ||
{42071714-76d4-11d1-8b24-00a0c9068ff3} "Display Panning CPL Extension" | File not found | COM-object registry key not found | ||||
{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} "Encryption Context Menu" | File not found | COM-object registry key not found | ||||
|| | {1B96FAD8-1C10-416E-8027-6EFF94045F6F} "FoxitPDFPreviewHandlerHost Class" | "Foxit Software Company" | C:\Program Files\Foxit Software\Foxit Reader\Shell Extensions\FoxitPrevhost.exe | File exists | |
{FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75} "IE User Assist" | File not found | COM-object registry key not found | ||||
|||||| | {0006F045-0000-0000-C000-000000000046} "Outlook File Icon Extension" | "Microsoft Corporation" | C:\PROGRA~1\MICROS~2\Office\OLKFSTUB.DLL | File exists | |
{764BF0E1-F219-11ce-972D-00AA00A14F56} "Shell extensions for file compression" | File not found | COM-object registry key not found | ||||
{B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" | "Alexander Roshal" | C:\Program Files\WinRAR\rarext.dll | File exists | ||
Internet Explorer | |||||
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser | |||||
ITBar7Height "ITBar7Height" | File not found | COM-object registry key not found | ||||
File not found | COM-object registry key not found | |||||
File not found | COM-object registry key not found | |||||
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects | |||||
|||||| | {69D72956-317C-44bd-B369-8E44D4EF9801} "SafeOnline BHO" | "Prevx" | C:\WINDOWS\system32\PxSecure.dll | File exists | |
Logon | |||||
%AllUsersProfile%\Start Menu\Programs\Startup | |||||
|||||| | "desktop.ini" | C:\Documents and Settings\All Users\Start Menu\Programs\Startup\desktop.ini | File exists | ||
%UserProfile%\Start Menu\Programs\Startup | |||||
|||||| | "desktop.ini" | C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\desktop.ini | File exists | ||
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run | |||||
|||| | "Google Update" | "Google Inc." | "C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c | File exists | |
|||| | "Skype" | "Skype Technologies S.A." | "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun | File exists | |
HKLM\Software\Microsoft\Windows\CurrentVersion\Run | |||||
|||| | "ATIPTA" | "ATI Technologies, Inc." | "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" | File exists | |
"AVG_UI" | "AVG Technologies CZ, s.r.o." | "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY | File exists | ||
|||| | "SoundMan" | "Realtek Semiconductor Corp." | SOUNDMAN.EXE | File exists | |
Services | |||||
HKLM\SYSTEM\CurrentControlSet\Services | |||||
"Adobe Flash Player Update Service" (AdobeFlashPlayerUpdateSvc) | "Adobe Systems Incorporated" | C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe | File exists | ||
|||||| | "ATI Smart" (ATI Smart) | C:\WINDOWS\system32\ati2sgag.exe | File exists | ||
"AVG PC TuneUp Service" (TuneUp.UtilitiesSvc) | "AVG" | C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe | File exists | ||
"AVG WatchDog" (avgwd) | "AVG Technologies CZ, s.r.o." | C:\Program Files\AVG\AVG2013\avgwdsvc.exe | File exists | ||
"AVGIDSAgent" (AVGIDSAgent) | "AVG Technologies CZ, s.r.o." | C:\Program Files\AVG\AVG2013\avgidsagent.exe | File exists | ||
"Cisco Valet Connector Service" (RaAutoInstSrv_AM10) | "Cisco Consumer Products LLC" | C:\Program Files\Cisco Systems\Cisco Valet Connector\CiscoAdapterSvc.exe | File exists | ||
|||| | "CLCV0" (UTSCSI) | C:\WINDOWS\system32\UTSCSI.EXE | File exists | ||
|||||| | "CSIScanner" (CSIScanner) | "Prevx" | C:\Program Files\Prevx\prevx.exe | File exists | |
|||| | "Google Updater Service" (gusvc) | "Google" | C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe | File exists | |
"Mozilla Maintenance Service" (MozillaMaintenance) | "Mozilla Foundation" | C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe | File exists | ||
|||||| | "Skype Updater" (SkypeUpdate) | "Skype Technologies" | C:\Program Files\Skype\Updater\Updater.exe | File exists | |
Winlogon | |||||
HKCU\Control Panel\Desktop | |||||
"SCRNSAVE.EXE" | "Google Inc." | C:\WINDOWS\system32\GPhotos.scr | File exists | ||
HKCU\Control Panel\IOProcs | |||||
"MVB" | mvfs32.dll | File not found |
If You have questions or want to get some help, You can visit http://forum.online-solutions.ru