Удаление вирусов и троянов. Защита компьютера. › Помощь в удалении вирусов, троянов, рекламы и других зловредов › порнобаннер на рабочем столе › Re: Re: порнобаннер на рабочем столе
- Темы:532
- Сообщений:1553
- ☆☆☆☆☆
Сделала как было вами написано, вот результат, помогите пожалуйста!!!
All processes killed
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{88888888-8888-8888-8888-888888888888} deleted successfully.
Registry key HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{88888888-8888-8888-8888-888888888888} not found.
Registry key HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{9D64F819-9380-8473-DAB2-702FCB3D7A3E} deleted successfully.
Registry key HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{9D64F819-9380-8473-DAB2-702FCB3D7A3E} deleted successfully.
Registry value HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun\servises deleted successfully.
Registry value HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun\amva deleted successfully.
HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun\»servises»| /E : value set successfully!
========== FILES ==========
C:WINDOWStasksPCConfidential.job moved successfully.
C:WINDOWStasksSys Check.job moved successfully.
========== COMMANDS ==========
[EMPTYTEMP]
Logfile of random’s system information tool 1.06 (written by random/random)
Run by User at 2009-12-31 08:17:35
Microsoft Windows XP Professional Service Pack 3
System drive C: has 4 GB (5%) free of 76 GB
Total RAM: 511 MB (43% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:17:48, on 31.12.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:Program FilesIVT CorporationBlueSoleilBTNtService.exe
C:Program FilesESETESET NOD32 Antivirusekrn.exe
C:WINDOWSsystem32nvsvc32.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32wuauclt.exe
C:WINDOWSExplorer.EXE
C:WINDOWSnotepad.exe
C:WINDOWSSOUNDMAN.EXE
C:Program FilesCyberLinkPowerDVDPDVDServ.exe
C:Program FilesESETESET NOD32 Antivirusegui.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesuTorrentuTorrent.exe
C:Program FilesIVT CorporationBlueSoleilBlueSoleil.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesInternet Exploreriexplore.exe
C:Documents and SettingsUserРабочий столRSIT.exe
C:Program Filestrend microUser.exe
R1 — HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.yandex.ru/?clid=48084
R0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.yandex.ru/
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 — HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 — HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = about:blank
R0 — HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Ссылки
R3 — URLSearchHook: MyPlayCityRU Toolbar — {dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — C:Program FilesMyPlayCityRUtbMyPl.dll (file missing)
O2 — BHO: MyPlayCityRU Toolbar — {dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — C:Program FilesMyPlayCityRUtbMyPl.dll (file missing)
O3 — Toolbar: Яндекс.Бар — {91397D20-1446-11D4-8AF4-0040CA1127B6} — C:Program FilesYandexYandexBarIEyndbar.dll
O3 — Toolbar: MyPlayCityRU Toolbar — {dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — C:Program FilesMyPlayCityRUtbMyPl.dll (file missing)
O4 — HKLM..Run: [SoundMan] SOUNDMAN.EXE
O4 — HKLM..Run: [RemoteControl] «C:Program FilesCyberLinkPowerDVDPDVDServ.exe»
O4 — HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup
O4 — HKLM..Run: [nwiz] nwiz.exe /install
O4 — HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit
O4 — HKLM..Run: [DrWebScheduler] «C:Program FilesDrWeb for Windowsdrwebscd.exe»
O4 — HKLM..Run: [egui] «C:Program FilesESETESET NOD32 Antivirusegui.exe» /hide /waitservice
O4 — HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe
O4 — HKCU..Run: [uTorrent] «C:Program FilesuTorrentuTorrent.exe»
O4 — HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘LOCAL SERVICE’)
O4 — HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘NETWORK SERVICE’)
O4 — HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘SYSTEM’)
O4 — HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘Default user’)
O4 — Global Startup: BlueSoleil.lnk = ?
O4 — Global Startup: Microsoft Office.lnk = C:Program FilesMicrosoft OfficeOffice10OSA.EXE
O6 — HKCUSoftwarePoliciesMicrosoftInternet ExplorerControl Panel present
O8 — Extra context menu item: &Экспорт в Microsoft Excel — res://C:PROGRA~1MICROS~2Office10EXCEL.EXE/3000
O9 — Extra button: (no name) — {53F6FCCD-9E22-4d71-86EA-6E43136192AB} — (no file)
O9 — Extra button: (no name) — {925DAB62-F9AC-4221-806A-057BFB1014AA} — (no file)
O9 — Extra button: (no name) — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra button: Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O9 — Extra ‘Tools’ menuitem: Windows Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O17 — HKLMSystemCCSServicesTcpip..{25024B0E-CD1E-47CC-B32F-5B9F39994616}: NameServer = 212.120.160.130 212.120.173.34
O23 — Service: BlueSoleil Hid Service — Unknown owner — C:Program FilesIVT CorporationBlueSoleilBTNtService.exe
O23 — Service: ESET HTTP Server (EhttpSrv) — ESET — C:Program FilesESETESET NOD32 AntivirusEHttpSrv.exe
O23 — Service: ESET Service (ekrn) — ESET — C:Program FilesESETESET NOD32 Antivirusekrn.exe
O23 — Service: Журнал событий (Eventlog) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: InstallDriver Table Manager (IDriverT) — Macrovision Corporation — C:Program FilesCommon FilesInstallShieldDriver1150Intel 32IDriverT.exe
O23 — Service: Служба COM записи компакт-дисков IMAPI (ImapiService) — Корпорация Майкрософт — C:WINDOWSsystem32imapi.exe
O23 — Service: NetMeeting Remote Desktop Sharing (mnmsrvc) — Корпорация Майкрософт — C:WINDOWSsystem32mnmsrvc.exe
O23 — Service: NVIDIA Display Driver Service (NVSvc) — NVIDIA Corporation — C:WINDOWSsystem32nvsvc32.exe
O23 — Service: Plug and Play (PlugPlay) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: Диспетчер сеанса справки для удаленного рабочего стола (RDSessMgr) — Корпорация Майкрософт — C:WINDOWSsystem32sessmgr.exe
O23 — Service: Смарт-карты (SCardSvr) — Корпорация Майкрософт — C:WINDOWSSystem32SCardSvr.exe
O23 — Service: Журналы и оповещения производительности (SysmonLog) — Корпорация Майкрософт — C:WINDOWSsystem32smlogsvc.exe
O23 — Service: Теневое копирование тома (VSS) — Корпорация Майкрософт — C:WINDOWSSystem32vssvc.exe
O23 — Service: Адаптер производительности WMI (WmiApSrv) — Корпорация Майкрософт — C:WINDOWSsystem32wbemwmiapsrv.exe
—
End of file — 6416 bytes
======Scheduled tasks folder======
C:WINDOWStasksUser_Feed_Synchronization-{35EBB7AA-472E-4A9E-A409-A1B3452724BC}.job
======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{dfbeb35b-444d-4f25-8d7d-eb2683c206ec}]
MyPlayCityRU Toolbar — C:Program FilesMyPlayCityRUtbMyPl.dll []
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{91397D20-1446-11D4-8AF4-0040CA1127B6} — Яндекс.Бар — C:Program FilesYandexYandexBarIEyndbar.dll [2009-07-24 5586208]
{dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — MyPlayCityRU Toolbar — C:Program FilesMyPlayCityRUtbMyPl.dll []
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«SoundMan»=C:WINDOWSSOUNDMAN.EXE [2004-05-14 67072]
«RemoteControl»=C:Program FilesCyberLinkPowerDVDPDVDServ.exe [2003-10-31 32768]
«NvCplDaemon»=C:WINDOWSsystem32NvCpl.dll [2004-01-29 2899968]
«nwiz»=nwiz.exe /install []
«NvMediaCenter»=C:WINDOWSsystem32NvMcTray.dll [2004-01-29 46080]
«DrWebScheduler»=C:Program FilesDrWeb for Windowsdrwebscd.exe []
«egui»=C:Program FilesESETESET NOD32 Antivirusegui.exe [2009-09-29 2054360]
[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
«CTFMON.EXE»=C:WINDOWSsystem32ctfmon.exe [2008-04-14 15360]
«uTorrent»=C:Program FilesuTorrentuTorrent.exe [2009-10-06 289072]
«servises»= []
C:Documents and SettingsAll UsersГлавное менюПрограммыАвтозагрузка
BlueSoleil.lnk — C:Program FilesIVT CorporationBlueSoleilBlueSoleil.exe
Microsoft Office.lnk — C:Program FilesMicrosoft OfficeOffice10OSA.EXE
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«HonorAutoRunSetting»=
[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:Program FilesIVT CorporationBlueSoleilBlueSoleil.exe»=»C:Program FilesIVT CorporationBlueSoleilBlueSoleil.exe:*:Enabled:BlueSoleil»
«C:Program FilesGroove GamesCombat 121SystemCombat.exe»=»C:Program FilesGroove GamesCombat 121SystemCombat.exe:*:Enabled:Combat»
«C:Program FilesLeft 4 Deadhl2.exe»=»C:Program FilesLeft 4 Deadhl2.exe:*:Disabled:hl2»
«C:Program FilesuTorrentuTorrent.exe»=»C:Program FilesuTorrentuTorrent.exe:*:Enabled:µTorrent»
«C:Program FilesEA GAMESNeed for Speed Most Wantedspeed.exe»=»C:Program FilesEA GAMESNeed for Speed Most Wantedspeed.exe:*:Disabled:speed»
«C:Program FilesESETESET NOD32 Antivirusegui.exe»=»C:Program FilesESETESET NOD32 Antivirusegui.exe:*:Enabled:ESET NOD32 Antivirus»
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»
«C:Program FilesSharemanShareman.exe»=»C:Program FilesSharemanShareman.exe:*:Enabled:Shareman»
[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»
======List of files/folders created in the last 1 months======
2009-12-31 08:10:13 —-DC—- C:_OTM
2009-12-29 18:09:16 —-D—- C:WINDOWSDownloaded Program Files
2009-12-29 13:20:32 —-DC—- C:rsit
2009-12-29 13:20:32 —-D—- C:Program Filestrend micro
2009-12-29 08:15:52 —-D—- C:Documents and SettingsUserApplication DataAdobe
2009-12-28 11:35:16 —-DC—- C:View7
2009-12-28 11:14:28 —-DC—- C:новые платья
2009-12-28 11:05:57 —-D—- C:Program FilesConduit
2009-12-28 11:05:56 —-D—- C:Program FilesMyPlayCityRU
2009-12-24 16:56:07 —-DC—- C:билайн
2009-12-22 12:29:28 —-D—- C:Documents and SettingsAll UsersApplication DataSugarGames
2009-12-20 09:33:44 —-D—- C:Program FilesOverlord
2009-12-17 19:26:38 —-HDC—- C:WINDOWS$NtUninstallKB970430$
2009-12-17 19:26:23 —-HDC—- C:WINDOWS$NtUninstallKB974318$
2009-12-17 19:26:09 —-HDC—- C:WINDOWS$NtUninstallKB973904$
2009-12-17 19:25:57 —-HDC—- C:WINDOWS$NtUninstallKB974392$
2009-12-17 19:25:28 —-HDC—- C:WINDOWS$NtUninstallKB971737$
2009-12-07 15:36:00 —-A—- C:WINDOWSsystem32XAudio2_0.dll
2009-12-07 15:36:00 —-A—- C:WINDOWSsystem32X3DAudio1_3.dll
2009-12-07 15:35:59 —-A—- C:WINDOWSsystem32d3dx10_37.dll
2009-12-07 15:35:59 —-A—- C:WINDOWSsystem32D3DCompiler_37.dll
2009-12-07 15:35:58 —-A—- C:WINDOWSsystem32D3DX9_37.dll
2009-12-07 15:08:08 —-D—- C:Program FilesLEGO Star Wars — The Complete Saga
2009-12-03 20:20:51 —-HDC—- C:WINDOWS$NtUninstallKB951978$
2009-12-03 20:18:53 —-HDC—- C:WINDOWS$NtUninstallKB961118$
2009-12-03 20:18:02 —-HDC—- C:WINDOWS$NtUninstallKB956744$
2009-12-03 20:15:31 —-HDC—- C:WINDOWS$NtUninstallKB973540_WM9$
2009-12-03 19:37:14 —-D—- C:WINDOWSRegisteredPackages
2009-12-03 19:35:55 —-A—- C:WINDOWSsystem32psisdecd.dll
2009-12-03 19:35:48 —-A—- C:WINDOWSsystem32dxdllreg.exe
2009-12-02 14:52:58 —-D—- C:WINDOWSPrefetch
2009-12-02 14:48:29 —-HDC—- C:WINDOWS$NtUninstallKB975467$
2009-12-02 14:48:11 —-HDC—- C:WINDOWS$NtUninstallKB975025$
2009-12-02 14:47:56 —-HDC—- C:WINDOWS$NtUninstallKB974571$
2009-12-02 14:47:38 —-HDC—- C:WINDOWS$NtUninstallKB974112$
2009-12-02 14:47:24 —-HDC—- C:WINDOWS$NtUninstallKB973869$
2009-12-02 14:47:08 —-HDC—- C:WINDOWS$NtUninstallKB973815$
2009-12-02 14:46:54 —-HDC—- C:WINDOWS$NtUninstallKB973687$
2009-12-02 14:46:36 —-HDC—- C:WINDOWS$NtUninstallKB973507$
2009-12-02 14:46:22 —-HDC—- C:WINDOWS$NtUninstallKB973354$
2009-12-02 14:46:04 —-HDC—- C:WINDOWS$NtUninstallKB971657$
2009-12-02 14:45:50 —-HDC—- C:WINDOWS$NtUninstallKB971633$
2009-12-02 14:45:35 —-HDC—- C:WINDOWS$NtUninstallKB971557$
2009-12-02 14:45:18 —-HDC—- C:WINDOWS$NtUninstallKB971486$
2009-12-02 14:45:02 —-HDC—- C:WINDOWS$NtUninstallKB970238$
2009-12-02 14:44:47 —-HDC—- C:WINDOWS$NtUninstallKB969947$
2009-12-02 14:44:33 —-HDC—- C:WINDOWS$NtUninstallKB969059$
2009-12-02 14:44:17 —-HDC—- C:WINDOWS$NtUninstallKB968389$
2009-12-02 14:44:01 —-HDC—- C:WINDOWS$NtUninstallKB967715$
2009-12-02 14:43:46 —-HDC—- C:WINDOWS$NtUninstallKB961501$
2009-12-02 14:43:32 —-HDC—- C:WINDOWS$NtUninstallKB961371-v2$
2009-12-02 14:43:16 —-HDC—- C:WINDOWS$NtUninstallKB960859$
2009-12-02 14:43:02 —-HDC—- C:WINDOWS$NtUninstallKB960803$
2009-12-02 14:42:49 —-HDC—- C:WINDOWS$NtUninstallKB960225$
2009-12-02 14:42:34 —-HDC—- C:WINDOWS$NtUninstallKB959426$
2009-12-02 14:42:19 —-HDC—- C:WINDOWS$NtUninstallKB958687$
2009-12-02 14:42:05 —-HDC—- C:WINDOWS$NtUninstallKB958644$
2009-12-02 14:41:49 —-HDC—- C:WINDOWS$NtUninstallKB957097$
2009-12-02 14:41:36 —-HDC—- C:WINDOWS$NtUninstallKB956844$
2009-12-02 14:41:22 —-HDC—- C:WINDOWS$NtUninstallKB956803$
2009-12-02 14:41:07 —-HDC—- C:WINDOWS$NtUninstallKB956802$
2009-12-02 14:40:42 —-HDC—- C:WINDOWS$NtUninstallKB956572$
2009-12-02 14:40:24 —-HDC—- C:WINDOWS$NtUninstallKB973687_1$
2009-12-02 14:40:10 —-HDC—- C:WINDOWS$NtUninstallKB955069$
2009-12-02 14:39:56 —-HDC—- C:WINDOWS$NtUninstallKB952954$
2009-12-02 14:39:42 —-HDC—- C:WINDOWS$NtUninstallKB952287$
2009-12-02 14:39:23 —-HDC—- C:WINDOWS$NtUninstallKB952004$
2009-12-02 14:39:04 —-HDC—- C:WINDOWS$NtUninstallKB951748$
2009-12-02 14:38:51 —-HDC—- C:WINDOWS$NtUninstallKB951376-v2$
2009-12-02 14:38:37 —-HDC—- C:WINDOWS$NtUninstallKB951066$
2009-12-02 14:38:22 —-HDC—- C:WINDOWS$NtUninstallKB950974$
2009-12-02 14:38:07 —-HDC—- C:WINDOWS$NtUninstallKB950762$
2009-12-02 14:37:53 —-HDC—- C:WINDOWS$NtUninstallKB946648$
2009-12-02 14:37:36 —-HDC—- C:WINDOWS$NtUninstallKB923561$
2009-12-02 14:30:33 —-D—- C:WINDOWSsystem32ru
2009-12-02 14:30:33 —-D—- C:WINDOWSl2schemas
2009-12-02 14:30:31 —-D—- C:WINDOWSsystem32bits
2009-12-02 14:18:26 —-D—- C:WINDOWSnetwork diagnostic
2009-12-02 14:09:09 —-HDC—- C:WINDOWS$NtServicePackUninstall$
2009-12-02 13:08:42 —-DC—- C:f8d1cecae4c6a4f287
2009-12-02 12:57:23 —-A—- C:WINDOWSsystem32rmoc3260.dll
2009-12-02 12:57:23 —-A—- C:WINDOWSsystem32pndx5032.dll
2009-12-02 12:57:23 —-A—- C:WINDOWSsystem32pndx5016.dll
2009-12-02 12:57:23 —-A—- C:WINDOWSsystem32pncrt.dll
2009-12-02 12:57:16 —-A—- C:WINDOWSavisplitter.ini
2009-12-02 12:57:06 —-A—- C:WINDOWSsystem32yv12vfw.dll
2009-12-02 12:57:06 —-A—- C:WINDOWSsystem32xvidvfw.dll
2009-12-02 12:57:06 —-A—- C:WINDOWSsystem32xvidcore.dll
2009-12-02 12:57:00 —-A—- C:WINDOWSsystem32qt-dx331.dll
2009-12-02 12:57:00 —-A—- C:WINDOWSsystem32dpl100.dll
2009-12-02 12:56:48 —-A—- C:WINDOWSsystem32divx.dll
2009-12-02 12:56:44 —-A—- C:WINDOWSsystem32ff_vfw.dll.manifest
2009-12-02 12:56:43 —-A—- C:WINDOWSsystem32ff_vfw.dll
2009-12-02 12:56:40 —-D—- C:Program FilesK-Lite Codec Pack
2009-12-02 08:25:35 —-N—- C:WINDOWSsystem32spmsg.dll
======List of files/folders modified in the last 1 months======
2009-12-31 08:17:38 —-D—- C:WINDOWSTemp
2009-12-31 08:11:42 —-D—- C:WINDOWSsystem32
2009-12-31 08:11:42 —-D—- C:WINDOWS
2009-12-31 08:10:17 —-SD—- C:WINDOWSTasks
2009-12-31 08:06:05 —-A—- C:WINDOWSSchedLgU.Txt
2009-12-31 08:05:55 —-D—- C:Documents and SettingsUserApplication DatauTorrent
2009-12-31 07:51:28 —-DC—- C:есет
2009-12-30 13:21:31 —-D—- C:Program FilesShareman
2009-12-30 12:42:42 —-D—- C:WINDOWSsystem32CatRoot2
2009-12-30 12:00:06 —-A—- C:WINDOWSsetuplog.txt
2009-12-29 13:20:32 —-RD—- C:Program Files
2009-12-28 20:00:58 —-D—- C:Documents and SettingsUserApplication DataAce
2009-12-28 19:32:30 —-SD—- C:Documents and SettingsUserApplication DataMicrosoft
2009-12-24 17:51:10 —-D—- C:Program FilesMyPlayCity.ru
2009-12-19 18:10:37 —-SHD—- C:WINDOWSInstaller
2009-12-18 15:39:39 —-HD—- C:WINDOWSinf
2009-12-18 15:39:26 —-RSHDC—- C:WINDOWSsystem32dllcache
2009-12-18 15:39:22 —-D—- C:Program FilesInternet Explorer
2009-12-18 15:38:40 —-HD—- C:WINDOWS$hf_mig$
2009-12-18 05:27:47 —-A—- C:WINDOWSsystem32PerfStringBackup.INI
2009-12-17 19:26:45 —-A—- C:WINDOWSimsins.BAK
2009-12-17 19:26:41 —-D—- C:WINDOWSsystem32drivers
2009-12-16 13:32:22 —-HD—- C:Program FilesInstallShield Installation Information
2009-12-16 13:15:47 —-D—- C:Program Files1C
2009-12-07 15:36:02 —-D—- C:WINDOWSsystem32DirectX
2009-12-07 13:45:52 —-D—- C:WINDOWSMicrosoft.NET
2009-12-07 13:45:21 —-RSD—- C:WINDOWSassembly
2009-12-05 19:41:36 —-DC—- C:макияж
2009-12-05 19:35:28 —-DC—- C:выкорйки
2009-12-05 17:20:43 —-DC—- C:редактор одежды,фен-шуй, гороскоп
2009-12-05 17:20:43 —-DC—- C:выкройка
2009-12-05 17:10:22 —-DC—- C:игры, программы из инета
2009-12-04 21:31:17 —-D—- C:Program FilesCommon FilesMicrosoft Shared
2009-12-04 15:04:07 —-D—- C:Program FilesCommon Files
2009-12-04 15:03:56 —-D—- C:WINDOWSWinSxS
2009-12-03 20:21:44 —-D—- C:WINDOWSsystem32CatRoot
2009-12-03 20:13:52 —-A—- C:WINDOWSwin.ini
2009-12-02 14:54:23 —-AC—- C:WINDOWSOEWABLog.txt
2009-12-02 14:52:30 —-D—- C:WINDOWSsystem32wbem
2009-12-02 14:52:30 —-D—- C:WINDOWSsystem32Setup
2009-12-02 14:52:30 —-D—- C:WINDOWSAppPatch
2009-12-02 14:52:28 —-RSD—- C:WINDOWSFonts
2009-12-02 14:46:23 —-D—- C:Program FilesOutlook Express
2009-12-02 14:43:09 —-D—- C:WINDOWSsecurity
2009-12-02 14:37:55 —-D—- C:Program FilesMessenger
2009-12-02 14:31:46 —-D—- C:Program FilesWindows Media Player
2009-12-02 14:31:43 —-D—- C:WINDOWSHelp
2009-12-02 14:31:12 —-D—- C:WINDOWSehome
2009-12-02 14:31:06 —-D—- C:WINDOWSsystem32inetsrv
2009-12-02 14:31:05 —-D—- C:WINDOWSime
2009-12-02 14:30:38 —-D—- C:WINDOWSsystem32ru-RU
2009-12-02 14:30:37 —-D—- C:WINDOWSsystem32usmt
2009-12-02 14:30:31 —-D—- C:WINDOWSPeerNet
2009-12-02 14:30:31 —-D—- C:Program FilesMovie Maker
2009-12-02 14:22:52 —-D—- C:WINDOWSServicePackFiles
2009-12-02 14:22:12 —-D—- C:WINDOWSsystem32Restore
2009-12-02 14:22:11 —-D—- C:WINDOWSsystem32npp
2009-12-02 14:22:09 —-D—- C:WINDOWSmsagent
2009-12-02 14:22:07 —-D—- C:WINDOWSsrchasst
2009-12-02 14:22:06 —-D—- C:Program FilesNetMeeting
2009-12-02 14:22:03 —-D—- C:WINDOWSsystem32Com
2009-12-02 14:21:56 —-D—- C:Program FilesWindows NT
2009-12-02 14:21:51 —-D—- C:Program FilesCommon FilesSystem
2009-12-02 14:21:12 —-D—- C:WINDOWSsystem32oobe
2009-12-02 14:21:08 —-D—- C:WINDOWSsystem
2009-12-02 14:14:29 —-D—- C:WINDOWSsystem32ReinstallBackups
2009-12-02 13:09:58 —-D—- C:WINDOWSsystem32XPSViewer
2009-12-02 13:09:53 —-D—- C:WINDOWSsystem32en-us
2009-12-01 23:06:19 —-A—- C:WINDOWSsystem32MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ehdrv;ehdrv; C:WINDOWSsystem32DRIVERSehdrv.sys [2009-09-29 108792]
R1 epfwtdir;epfwtdir; C:WINDOWSsystem32DRIVERSepfwtdir.sys [2009-09-29 96408]
R1 intelppm;Драйвер Intel процессора; C:WINDOWSsystem32DRIVERSintelppm.sys [2008-04-14 40704]
R1 WS2IFSL;Среда Windows Socket 2.0 поддержки поставщиков не-IFS служб; C:WINDOWSSystem32driversws2ifsl.sys [2001-10-20 12032]
R2 eamon;eamon; C:WINDOWSsystem32DRIVERSeamon.sys [2009-09-29 116008]
R2 GenPort;GenPort; C:WINDOWSsystem32driversGenPort.sys [1998-05-01 4832]
R2 HidUsb;Microsoft HID Class Driver; C:WINDOWSsystem32DRIVERShidusb.sys [2008-04-13 10368]
R2 MapMem;MapMem; C:WINDOWSsystem32driversMapMem.sys [1998-05-01 6816]
R2 mdmxsdk;mdmxsdk; C:WINDOWSsystem32DRIVERSmdmxsdk.sys [2004-08-04 11868]
R2 NTRemap;NTRemap; C:WINDOWSsystem32driversNTRemap.sys [1998-05-01 6336]
R3 ALCXSENS;Service for WDM 3D Audio Driver; C:WINDOWSsystem32driversALCXSENS.SYS [2004-02-24 400384]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:WINDOWSsystem32driversALCXWDM.SYS [2004-05-14 622172]
R3 BlueletAudio;Bluetooth Audio Service; C:WINDOWSsystem32DRIVERSblueletaudio.sys [2005-05-31 20480]
R3 BTHidEnum;Bluetooth HID Enumerator; C:WINDOWSsystem32DRIVERSvbtenum.sys [2005-04-30 11860]
R3 mouhid;Драйвер мыши HID; C:WINDOWSsystem32DRIVERSmouhid.sys [2001-10-19 12160]
R3 nv;nv; C:WINDOWSsystem32DRIVERSnv4_mini.sys [2004-01-29 1880320]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:WINDOWSSystem32DriversRootMdm.sys [2001-10-20 5888]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet адаптер, драйвер для NT; C:WINDOWSsystem32DRIVERSRTL8139.SYS [2004-08-03 20992]
R3 usbaudio;Аудио драйвер USB (WDM); C:WINDOWSsystem32driversusbaudio.sys [2008-04-13 60032]
R3 usbccgp;Драйвер универсального родительского устройства USB (Microsoft); C:WINDOWSsystem32DRIVERSusbccgp.sys [2008-04-13 32128]
R3 usbehci;Драйвер минипорта Microsoft USB 2.0 расширенного хост-контроллера; C:WINDOWSsystem32DRIVERSusbehci.sys [2008-04-13 30208]
R3 usbhub;USB2 концентратор; C:WINDOWSsystem32DRIVERSusbhub.sys [2008-04-13 59520]
R3 usbprint;Класс принтеров Microsoft USB; C:WINDOWSsystem32DRIVERSusbprint.sys [2008-04-13 25856]
R3 usbuhci;Драйвер минипорта Microsoft USB универсального хост-контроллера; C:WINDOWSsystem32DRIVERSusbuhci.sys [2008-04-13 20608]
R3 VComm;Virtual Serial port driver; C:WINDOWSsystem32DRIVERSVComm.sys [2004-10-19 61312]
R3 VcommMgr;Bluetooth VComm Manager Service; C:WINDOWSSystem32DriversVcommMgr.sys [2005-03-25 82148]
S3 BT;Bluetooth PAN Network Adapter; C:WINDOWSsystem32DRIVERSbtnetdrv.sys [2005-04-30 10804]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:WINDOWSSystem32Driversbtcusb.sys [2005-05-31 23000]
S3 BTNetFilter;Bluetooth Network Filter; ??C:WINDOWSsystem32driversBTNetFilter.sys []
S3 CCDECODE;Closed Caption декодер; C:WINDOWSsystem32DRIVERSCCDECODE.sys [2008-04-13 17024]
S3 dtscsi;dtscsi; C:WINDOWSSystem32Driversdtscsi.sys [2008-03-15 223128]
S3 FT3893;FT3893 Filter; C:WINDOWSsystem32DRIVERSFT3893.sys [2006-08-17 30667]
S3 HSF_DP;HSF_DP; C:WINDOWSsystem32DRIVERSHSFDPSP2.sys [2004-08-04 1041536]
S3 HSFHWBS2;HSFHWBS2; C:WINDOWSsystem32DRIVERSHSFBS2S2.sys [2004-08-04 220032]
S3 MSTEE;Преобразователь потоков Tee/Sink-to-Sink Microsoft; C:WINDOWSsystem32driversMSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI кодек; C:WINDOWSsystem32DRIVERSNABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft видео или ТВ подключение; C:WINDOWSsystem32DRIVERSNdisIP.sys [2008-04-13 10880]
S3 SLIP;BDA Slip De-Framer; C:WINDOWSsystem32DRIVERSSLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:WINDOWSsystem32DRIVERSStreamIP.sys [2008-04-13 15232]
S3 usbscan;Драйвер USB-сканера; C:WINDOWSsystem32DRIVERSusbscan.sys [2008-04-13 15104]
S3 USBSTOR;Драйвер запоминающих устройств для USB; C:WINDOWSsystem32DRIVERSUSBSTOR.SYS [2008-04-13 26368]
S3 usbvideo;USB-видеоустройство (WDM); C:WINDOWSSystem32Driversusbvideo.sys [2008-04-13 121984]
S3 winachsf;winachsf; C:WINDOWSsystem32DRIVERSHSFCXTS2.sys [2004-08-04 685056]
S3 WSTCODEC;World Standard Teletext кодек; C:WINDOWSsystem32DRIVERSWSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation — User-mode Driver Framework Platform Driver; C:WINDOWSsystem32DRIVERSWudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation — User-mode Driver Framework Reflector; C:WINDOWSsystem32DRIVERSwudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BlueSoleil Hid Service;BlueSoleil Hid Service; C:Program FilesIVT CorporationBlueSoleilBTNtService.exe [2005-04-06 110592]
R2 ekrn;ESET Service; C:Program FilesESETESET NOD32 Antivirusekrn.exe [2009-09-29 735960]
R2 NVSvc;NVIDIA Display Driver Service; C:WINDOWSsystem32nvsvc32.exe [2004-01-29 77824]
S3 aspnet_state;Служба состояний ASP.NET; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:Program FilesESETESET NOD32 AntivirusEHttpSrv.exe [2009-09-29 20680]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:WINDOWSMicrosoft.NETFrameworkv3.0WPFPresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:Program FilesCommon FilesInstallShieldDriver1150Intel 32IDriverT.exe [2005-11-14 69632]
S3 idsvc;Windows CardSpace; C:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication Foundationinfocard.exe [2008-07-29 881664]
S3 WudfSvc;Windows Driver Foundation — User-mode Driver Framework; C:WINDOWSsystem32svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Служба общего доступа к портам Net.Tcp; C:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication FoundationSMSvcHost.exe [2008-07-29 132096]
EOF
User: All Users

