Удаление вирусов и троянов. Защита компьютера. › Помощь в удалении вирусов, троянов, рекламы и других зловредов › порнозаставку — сталкнулся с этой грёбаной рекламой › Re: Re: порнозаставку — сталкнулся с этой грёбаной рекламой
Logfile of random’s system information tool 1.06 (written by random/random)
Run by Татьяна at 2010-04-04 14:17:43
Microsoft Windows XP Home Edition Service Pack 2
System drive C: has 5 GB (14%) free of 38 GB
Total RAM: 223 MB (11% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:19:01, on 04.04.2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17023)
Boot mode: Normal
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32Ati2evxx.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSExplorer.EXE
C:Program FilesKaspersky LabKaspersky Anti-Virus 6.0 for Windows Workstationsavp.exe
C:Program FilesWIDCOMMПрограммное обеспечение Bluetoothbinbtwdins.exe
C:WINDOWSsystem32HPZipm12.exe
C:Program FilesAnalog DevicesSoundMAXSMAgent.exe
C:Program FilesJavaj2re1.4.2_03binjusched.exe
C:Program FilesATI TechnologiesATI Control Panelatiptaxx.exe
C:WINDOWSAGRSMMSG.exe
C:Program FilesltmohLtmoh.exe
C:Program FilesAnalog DevicesSoundMAXSMax4PNP.exe
C:Program FilesCyberLinkPowerDVDPDVDServ.exe
C:Program FilesHPHP Software UpdateHPWuSchd2.exe
C:Documents and SettingsAll UsersДокументыНовая папкаQuickTimeQuickTimeqttask.exe
C:Program FilesMail.RuAgentMAgent.exe
C:Program FilesKaspersky LabKaspersky Anti-Virus 6.0 for Windows Workstationsavp.exe
C:Documents and SettingsТатьянаLocal SettingsApplication DataOperaOperaprofilecache4temporary_downloadMediaCodec.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesSkypePhoneSkype.exe
C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe
C:Program FilesSAMSUNGMagicKBDMagicKBD.exe
C:WINDOWSsystem32REG.exe
C:Program FilesSkypePlugin ManagerSkypePM.exe
C:WINDOWSsystem32wuauclt.exe
C:Program FilesOperaopera.exe
C:Documents and SettingsТатьянаРабочий столRSIT.exe
C:Documents and SettingsТатьянаРабочий столRSIT.exe
C:Program Filestrend microТатьяна.exe
R0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = mail.ru
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 — HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 — HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Ссылки
R3 — URLSearchHook: Спутник@Mail.Ru — {09900DE8-1DCA-443F-9243-26FF581438AF} — c:program filesmail.rusputnikMailRuSputnik.dll
O2 — BHO: AcroIEHlprObj Class — {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} — C:Program FilesAdobeAcrobat 5.0ReaderActiveXAcroIEHelper.ocx
O2 — BHO: Skype add-on (mastermind) — {22BF413B-C6D2-4d91-82A9-A0F997BA588C} — C:PROGRA~1SkypePhoneIEPluginSKYPEI~1.DLL
O2 — BHO: Спутник@Mail.Ru — {8984B388-A5BB-4DF7-B274-77B879E179DB} — c:program filesmail.rusputnikMailRuSputnik.dll
O2 — BHO: Google Toolbar Helper — {AA58ED58-01DD-4d91-8333-CF10577473F7} — c:program filesgooglegoogletoolbar3.dll
O2 — BHO: Google Toolbar Notifier BHO — {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} — C:Program FilesGoogleGoogleToolbarNotifier5.4.4525.1752swg.dll
O3 — Toolbar: &Google — {2318C2B1-4965-11d4-9B18-009027A5CD4F} — c:program filesgooglegoogletoolbar3.dll
O3 — Toolbar: Спутник@Mail.Ru — {09900DE8-1DCA-443F-9243-26FF581438AF} — c:program filesmail.rusputnikMailRuSputnik.dll
O4 — HKLM..Run: [SunJavaUpdateSched] C:Program FilesJavaj2re1.4.2_03binjusched.exe
O4 — HKLM..Run: [ATIPTA] C:Program FilesATI TechnologiesATI Control Panelatiptaxx.exe
O4 — HKLM..Run: [AGRSMMSG] AGRSMMSG.exe
O4 — HKLM..Run: [LtMoh] C:Program FilesltmohLtmoh.exe
O4 — HKLM..Run: [MagicKeyboard] C:Program FilesSAMSUNGMagicKBDPreMKBD.exe
O4 — HKLM..Run: [SoundMAXPnP] C:Program FilesAnalog DevicesSoundMAXSMax4PNP.exe
O4 — HKLM..Run: [SoundMAX] C:Program FilesAnalog DevicesSoundMAXSmax4.exe /tray
O4 — HKLM..Run: [RemoteControl] «C:Program FilesCyberLinkPowerDVDPDVDServ.exe»
O4 — HKLM..Run: [NeroFilterCheck] C:WINDOWSsystem32NeroCheck.exe
O4 — HKLM..Run: [HP Software Update] C:Program FilesHPHP Software UpdateHPWuSchd2.exe
O4 — HKLM..Run: [QuickTime Task] «C:Documents and SettingsAll UsersДокументыНовая папкаQuickTimeQuickTimeqttask.exe» -atboottime
O4 — HKLM..Run: [MAgent] C:Program FilesMail.RuAgentMAgent.exe -LM
O4 — HKLM..Run: [AVP] «C:Program FilesKaspersky LabKaspersky Anti-Virus 6.0 for Windows Workstationsavp.exe»
O4 — HKLM..Run: [mon.exe] C:Documents and SettingsТатьянаLocal SettingsApplication DataOperaOperaprofilecache4temporary_downloadMediaCodec.exe
O4 — HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe
O4 — HKCU..Run: [Skype] «C:Program FilesSkypePhoneSkype.exe» /nosplash /minimized
O4 — HKCU..Run: [swg] «C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe»
O4 — HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘LOCAL SERVICE’)
O4 — HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘NETWORK SERVICE’)
O4 — HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘SYSTEM’)
O4 — HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘Default user’)
O8 — Extra context menu item: &Экспорт в Microsoft Excel — res://C:PROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000
O8 — Extra context menu item: Добавить в Анти-Баннер — C:Program FilesKaspersky LabKaspersky Anti-Virus 6.0 for Windows Workstationsie_banner_deny.htm
O8 — Extra context menu item: Отправить через &Bluetooth — C:Program FilesWIDCOMMПрограммное обеспечение Bluetoothbtsendto_ie_ctx.htm
O8 — Extra context menu item: Поиск@Mail.Ru — res://c:program filesmail.rusputnikMailRuSputnik.dll/282
O8 — Extra context menu item: Словари@Mail.Ru — res://c:program filesmail.rusputnikMailRuSputnik.dll/283
O9 — Extra button: (no name) — {08B0E5C0-4FCB-11CF-AAA5-00401C608501} — C:Program FilesJavaj2re1.4.2_03binnpjpi142_03.dll
O9 — Extra ‘Tools’ menuitem: Sun Java Console — {08B0E5C0-4FCB-11CF-AAA5-00401C608501} — C:Program FilesJavaj2re1.4.2_03binnpjpi142_03.dll
O9 — Extra button: Cтатистика Веб-Антивируса — {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} — C:Program FilesKaspersky LabKaspersky Anti-Virus 6.0 for Windows WorkstationsSCIEPlgn.dll
O9 — Extra button: Mail.Ru Агент — {7558B7E5-7B26-4201-BEDB-00D5FF534523} — C:Program FilesMail.RuAgentmagent.exe
O9 — Extra ‘Tools’ menuitem: Mail.Ru Агент — {7558B7E5-7B26-4201-BEDB-00D5FF534523} — C:Program FilesMail.RuAgentmagent.exe
O9 — Extra button: Skype — {77BF5300-1474-4EC7-9980-D32B190E9B07} — C:PROGRA~1SkypePhoneIEPluginSKYPEI~1.DLL
O9 — Extra button: Справочные материалы — {92780B25-18CC-41C8-B9BE-3C9C571A8263} — C:PROGRA~1MICROS~2OFFICE11REFIEBAR.DLL
O9 — Extra button: @btrez.dll,-4015 — {CCA281CA-C863-46ef-9331-5C8D4460577F} — C:Program FilesWIDCOMMПрограммное обеспечение Bluetoothbtsendto_ie.htm
O9 — Extra ‘Tools’ menuitem: @btrez.dll,-4017 — {CCA281CA-C863-46ef-9331-5C8D4460577F} — C:Program FilesWIDCOMMПрограммное обеспечение Bluetoothbtsendto_ie.htm
O9 — Extra button: Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O9 — Extra ‘Tools’ menuitem: Windows Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O16 — DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) — http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab
O16 — DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) — http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 — HKLMSystemCCSServicesTcpip..{8319FEC2-0E56-48EA-9B94-C72CA4419575}: NameServer = 212.120.160.130,212.120.173.34
O18 — Protocol: skype4com — {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} — C:PROGRA~1COMMON~1SkypeSKYPE4~1.DLL
O20 — AppInit_DLLs: C:PROGRA~1KASPER~1KASPER~1.0FOadialhk.dll
O23 — Service: Ati HotKey Poller — Unknown owner — C:WINDOWSsystem32Ati2evxx.exe
O23 — Service: Kaspersky Anti-Virus 6.0 (AVP) — Kaspersky Lab — C:Program FilesKaspersky LabKaspersky Anti-Virus 6.0 for Windows Workstationsavp.exe
O23 — Service: Bluetooth Service (btwdins) — Broadcom Corporation. — C:Program FilesWIDCOMMПрограммное обеспечение Bluetoothbinbtwdins.exe
O23 — Service: Журнал событий (Eventlog) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: Google Updater Service (gusvc) — Google — C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe
O23 — Service: Служба COM записи компакт-дисков IMAPI (ImapiService) — Корпорация Майкрософт — C:WINDOWSsystem32imapi.exe
O23 — Service: NetMeeting Remote Desktop Sharing (mnmsrvc) — Корпорация Майкрософт — C:WINDOWSsystem32mnmsrvc.exe
O23 — Service: Plug and Play (PlugPlay) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: Pml Driver HPZ12 — HP — C:WINDOWSsystem32HPZipm12.exe
O23 — Service: Диспетчер сеанса справки для удаленного рабочего стола (RDSessMgr) — Корпорация Майкрософт — C:WINDOWSsystem32sessmgr.exe
O23 — Service: Samsung Update Plus — Unknown owner — C:Program FilesSamsungSamsung Update PlusSLUBackgroundService.exe
O23 — Service: Смарт-карты (SCardSvr) — Корпорация Майкрософт — C:WINDOWSSystem32SCardSvr.exe
O23 — Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) — Analog Devices, Inc. — C:Program FilesAnalog DevicesSoundMAXSMAgent.exe
O23 — Service: SymWMI Service (SymWSC) — Symantec Corporation — C:Program FilesCommon FilesSymantec SharedSecurity CenterSymWSC.exe
O23 — Service: Журналы и оповещения производительности (SysmonLog) — Корпорация Майкрософт — C:WINDOWSsystem32smlogsvc.exe
O23 — Service: Теневое копирование тома (VSS) — Корпорация Майкрософт — C:WINDOWSSystem32vssvc.exe
O23 — Service: Адаптер производительности WMI (WmiApSrv) — Корпорация Майкрософт — C:WINDOWSsystem32wbemwmiapsrv.exe
—
End of file — 10272 bytes
======Scheduled tasks folder======
C:WINDOWStasksHPpromotions journeysoftware.job
======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class — C:Program FilesAdobeAcrobat 5.0ReaderActiveXAcroIEHelper.ocx [2001-04-16 37808]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) — C:PROGRA~1SkypePhoneIEPluginSKYPEI~1.DLL [2006-12-11 726568]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{8984B388-A5BB-4DF7-B274-77B879E179DB}]
MailRuBHO Class — c:program filesmail.rusputnikMailRuSputnik.dll [2010-01-17 1029296]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper — c:program filesgooglegoogletoolbar3.dll [2007-01-20 2427968]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO — C:Program FilesGoogleGoogleToolbarNotifier5.4.4525.1752swg.dll [2009-12-04 764912]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} — &Google — c:program filesgooglegoogletoolbar3.dll [2007-01-20 2427968]
{09900DE8-1DCA-443F-9243-26FF581438AF} — Спутник@Mail.Ru — c:program filesmail.rusputnikMailRuSputnik.dll [2010-01-17 1029296]
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«SunJavaUpdateSched»=C:Program FilesJavaj2re1.4.2_03binjusched.exe [2004-10-18 32881]
«ATIPTA»=C:Program FilesATI TechnologiesATI Control Panelatiptaxx.exe [2004-08-25 339968]
«AGRSMMSG»=C:WINDOWSAGRSMMSG.exe [2004-04-13 88363]
«LtMoh»=C:Program FilesltmohLtmoh.exe [2003-09-05 184320]
«MagicKeyboard»=C:Program FilesSAMSUNGMagicKBDPreMKBD.exe [2004-04-14 151552]
«SoundMAXPnP»=C:Program FilesAnalog DevicesSoundMAXSMax4PNP.exe [2004-06-30 1388544]
«SoundMAX»=C:Program FilesAnalog DevicesSoundMAXSmax4.exe [2004-07-07 847872]
«RemoteControl»=C:Program FilesCyberLinkPowerDVDPDVDServ.exe [2004-03-17 32768]
«NeroFilterCheck»=C:WINDOWSsystem32NeroCheck.exe [2001-07-09 155648]
«HP Software Update»=C:Program FilesHPHP Software UpdateHPWuSchd2.exe [2005-05-12 49152]
«QuickTime Task»=C:Documents and SettingsAll UsersДокументыНовая папкаQuickTimeQuickTimeqttask.exe [2005-05-19 77824]
«MAgent»=C:Program FilesMail.RuAgentMAgent.exe [2010-01-17 8746680]
«AVP»=C:Program FilesKaspersky LabKaspersky Anti-Virus 6.0 for Windows Workstationsavp.exe [2007-11-19 231952]
«mon.exe»=C:Documents and SettingsТатьянаLocal SettingsApplication DataOperaOperaprofilecache4temporary_downloadMediaCodec.exe [2010-04-04 230400]
[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
«CTFMON.EXE»=C:WINDOWSsystem32ctfmon.exe [2004-08-18 15360]
«Skype»=C:Program FilesSkypePhoneSkype.exe [2006-12-11 25343016]
«swg»=C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe [2007-07-20 68856]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWindows]
«AppInit_DLLS»=»C:PROGRA~1KASPER~1KASPER~1.0FOadialhk.dll»
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyklogon]
C:WINDOWSsystem32klogon.dll [2007-11-19 219664]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyWgaLogon]
C:WINDOWSsystem32WgaLogon.dll [2007-02-15 236928]
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
«dontdisplaylastusername»=0
«legalnoticecaption»=
«legalnoticetext»=
«shutdownwithoutlogon»=1
«undockwithoutlogon»=1
[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«NoDriveTypeAutoRun»=145
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«HonorAutoRunSetting»=
[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:Program FilesMessengermsmsgs.exe»=»C:Program FilesMessengermsmsgs.exe:*:Enabled:Windows Messenger»
«C:Program FilesMail.RuAgentMagent.exe»=»C:Program FilesMail.RuAgentMagent.exe:*:Enabled:Mail.Ru Agent»
«C:Program FilesSkypePhoneSkype.exe»=»C:Program FilesSkypePhoneSkype.exe:*:Enabled:Skype»
[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{51199632-e37e-11dc-87fe-0000f07ccb97}]
shellAutoRuncommand — E:ntde1ect.com
shellexplorecommand — E:ntde1ect.com
shellopencommand — E:ntde1ect.com
[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{6d585ae0-71b3-11db-86da-0000f07ccb97}]
shellAutoRuncommand — E:driverusbusb_driver.exe
shellopencommand — E:driverusbusb_driver.exe
[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{b53779a0-6475-11dc-87c6-0000f07ccb97}]
shellAutoRuncommand — E:ntde1ect.com
shellexplorecommand — E:ntde1ect.com
shellopencommand — E:ntde1ect.com
[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{c7b62e50-45b4-11dd-885a-0000f07ccb97}]
shellAutoRuncommand — E:ntde1ect.com
shellexplorecommand — E:ntde1ect.com
shellopencommand — E:ntde1ect.com
[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{e1656870-5c24-11dc-87bb-0000f07ccb97}]
shellAutoRuncommand — E:ntde1ect.com
shellexplorecommand — E:ntde1ect.com
shellopencommand — E:ntde1ect.com
[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{e5bcf160-451e-11dd-8857-0000f07ccb97}]
shellAutoRuncommand — E:ntde1ect.com
shellexplorecommand — E:ntde1ect.com
shellopencommand — E:ntde1ect.com
[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{e98d5742-a2c7-11de-89bc-0000f07ccb97}]
shellAutoRuncommand — driverusbusb_driver.exe
shellopencommand — driverusbusb_driver.exe
[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{f356a3c0-ce6e-11dd-88e6-0000f07ccb97}]
shellAutoRuncommand — E:driverusbusb_driver.exe
shellopencommand — E:driverusbusb_driver.exe
======List of files/folders created in the last 1 months======
2010-04-04 14:17:56 —-D—- C:Program Filestrend micro
2010-04-04 14:17:43 —-D—- C:rsit
2010-04-01 01:01:29 —-N—- C:WINDOWSsystem32spmsg.dll
2010-03-20 03:20:57 —-AD—- C:Documents and SettingsAll UsersApplication DataTEMP
2010-03-20 03:18:42 —-D—- C:Program FilesRealore
2010-03-11 18:37:10 —-A—- C:WINDOWSsystem32SETB79.tmp
2010-03-11 18:37:10 —-A—- C:WINDOWSsystem32SETB77.tmp
2010-03-11 18:37:09 —-A—- C:WINDOWSsystem32SETB82.tmp
2010-03-11 18:37:09 —-A—- C:WINDOWSsystem32SETB81.tmp
2010-03-11 18:37:09 —-A—- C:WINDOWSsystem32SETB80.tmp
2010-03-11 18:37:09 —-A—- C:WINDOWSsystem32SETB7A.tmp
2010-03-11 18:37:08 —-A—- C:WINDOWSsystem32SETB8A.tmp
2010-03-11 18:37:08 —-A—- C:WINDOWSsystem32SETB86.tmp
2010-03-11 18:37:07 —-A—- C:WINDOWSsystem32SETB95.tmp
2010-03-11 18:37:07 —-A—- C:WINDOWSsystem32SETB91.tmp
2010-03-11 18:37:07 —-A—- C:WINDOWSsystem32SETB8C.tmp
2010-03-11 04:08:41 —-HDC—- C:WINDOWS$NtUninstallKB975561$
2010-03-10 16:01:39 —-D—- C:Documents and SettingsAll UsersApplication DataKaspersky Lab
2010-03-05 03:48:07 —-HDC—- C:WINDOWS$NtUninstallKB977165-v2$
======List of files/folders modified in the last 1 months======
2010-04-04 14:17:56 —-RD—- C:Program Files
2010-04-04 14:17:01 —-D—- C:Documents and SettingsТатьянаApplication DataSkype
2010-04-04 11:47:31 —-D—- C:WINDOWSTemp
2010-04-04 11:46:06 —-D—- C:WINDOWSsystem32CatRoot2
2010-04-04 01:17:35 —-A—- C:WINDOWSSchedLgU.Txt
2010-04-03 15:44:12 —-A—- C:WINDOWSNeroDigital.ini
2010-04-01 21:21:15 —-D—- C:WINDOWSsystem32
2010-04-01 20:41:03 —-D—- C:WINDOWSsystem32CatRoot
2010-04-01 20:40:53 —-HD—- C:WINDOWSinf
2010-04-01 20:40:36 —-D—- C:WINDOWS
2010-04-01 20:39:33 —-RSHDC—- C:WINDOWSsystem32dllcache
2010-04-01 20:39:32 —-D—- C:WINDOWSsystem32ru-ru
2010-04-01 01:01:57 —-D—- C:Program FilesInternet Explorer
2010-04-01 01:00:22 —-D—- C:WINDOWSPrefetch
2010-03-31 19:19:52 —-HD—- C:WINDOWS$hf_mig$
2010-03-28 14:12:17 —-D—- C:WINDOWSHelp
2010-03-28 11:33:02 —-A—- C:WINDOWSsystem32PerfStringBackup.INI
2010-03-11 18:37:10 —-A—- C:WINDOWSsystem32wininet.dll
2010-03-11 18:37:10 —-A—- C:WINDOWSsystem32webcheck.dll
2010-03-11 18:37:10 —-A—- C:WINDOWSsystem32urlmon.dll
2010-03-11 18:37:09 —-A—- C:WINDOWSsystem32url.dll
2010-03-11 18:37:09 —-A—- C:WINDOWSsystem32pngfilt.dll
2010-03-11 18:37:09 —-A—- C:WINDOWSsystem32occache.dll
2010-03-11 18:37:09 —-A—- C:WINDOWSsystem32mstime.dll
2010-03-11 18:37:09 —-A—- C:WINDOWSsystem32msrating.dll
2010-03-11 18:37:09 —-A—- C:WINDOWSsystem32mshtmled.dll
2010-03-11 18:37:09 —-A—- C:WINDOWSsystem32mshtml.dll
2010-03-11 18:37:09 —-A—- C:WINDOWSsystem32msfeedsbs.dll
2010-03-11 18:37:09 —-A—- C:WINDOWSsystem32msfeeds.dll
2010-03-11 18:37:08 —-A—- C:WINDOWSsystem32jsproxy.dll
2010-03-11 18:37:08 —-A—- C:WINDOWSsystem32iertutil.dll
2010-03-11 18:37:08 —-A—- C:WINDOWSsystem32iernonce.dll
2010-03-11 18:37:08 —-A—- C:WINDOWSsystem32iepeers.dll
2010-03-11 18:37:08 —-A—- C:WINDOWSsystem32ieframe.dll
2010-03-11 18:37:07 —-A—- C:WINDOWSsystem32ieencode.dll
2010-03-11 18:37:07 —-A—- C:WINDOWSsystem32iedkcs32.dll
2010-03-11 18:37:07 —-A—- C:WINDOWSsystem32ieapfltr.dll
2010-03-11 18:37:07 —-A—- C:WINDOWSsystem32ieaksie.dll
2010-03-11 18:37:07 —-A—- C:WINDOWSsystem32ieakeng.dll
2010-03-11 18:37:07 —-A—- C:WINDOWSsystem32icardie.dll
2010-03-11 18:37:07 —-A—- C:WINDOWSsystem32extmgr.dll
2010-03-11 18:37:07 —-A—- C:WINDOWSsystem32dxtrans.dll
2010-03-11 18:37:07 —-A—- C:WINDOWSsystem32dxtmsft.dll
2010-03-11 18:37:07 —-A—- C:WINDOWSsystem32corpol.dll
2010-03-11 18:37:07 —-A—- C:WINDOWSsystem32advpack.dll
2010-03-11 04:10:02 —-A—- C:WINDOWSimsins.BAK
2010-03-11 04:09:15 —-D—- C:Program FilesMovie Maker
2010-03-10 19:21:43 —-A—- C:WINDOWSsystem32ieudinit.exe
2010-03-10 19:21:43 —-A—- C:WINDOWSsystem32ie4uinit.exe
2010-03-10 16:03:06 —-SHD—- C:WINDOWSInstaller
2010-03-10 16:02:44 —-D—- C:WINDOWSsystem32drivers
2010-03-10 15:56:09 —-D—- C:Program FilesKaspersky Lab
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 intelppm;Драйвер Intel процессора; C:WINDOWSsystem32DRIVERSintelppm.sys [2004-08-28 40448]
R1 klif;Klif; ??C:WINDOWSsystem32driversklif.sys []
R2 BTSERIAL;Bluetooth Serial Driver; ??C:WINDOWSsystem32driversbtserial.sys []
R2 BTSLBCSP;Bluetooth Port Client Driver; ??C:WINDOWSsystem32driversbtslbcsp.sys []
R2 DOSMEMIO;MEMIO; ??C:WINDOWSsystem32MEMIO.SYS []
R3 aeaudio;aeaudio; C:WINDOWSsystem32driversaeaudio.sys [2004-04-07 116176]
R3 AgereSoftModem;SENS LT56ADW Modem; C:WINDOWSsystem32DRIVERSAGRSM.sys [2004-04-13 1266380]
R3 ati2mtag;ati2mtag; C:WINDOWSsystem32DRIVERSati2mtag.sys [2004-08-25 787456]
R3 bcm4sbxp;Broadcom 440x 10/100 Integrated Controller XP Driver; C:WINDOWSsystem32DRIVERSbcm4sbxp.sys [2003-09-26 44032]
R3 BTKRNL;Нумератор шины Bluetooth; C:WINDOWSsystem32DRIVERSbtkrnl.sys [2006-05-12 1342602]
R3 CmBatt;Драйвер батареи с ACPI-управлением (Майкрософт); C:WINDOWSsystem32DRIVERSCmBatt.sys [2004-08-04 14080]
R3 klim5;Kaspersky Anti-Virus NDIS Filter; C:WINDOWSsystem32DRIVERSklim5.sys [2007-05-30 24344]
R3 smwdm;smwdm; C:WINDOWSsystem32driverssmwdm.sys [2004-07-08 267392]
R3 usbehci;Драйвер минипорта Microsoft USB 2.0 расширенного хост-контроллера; C:WINDOWSsystem32DRIVERSusbehci.sys [2004-08-18 26624]
R3 usbhub;Драйвер стандартного концентратора USB (Microsoft); C:WINDOWSsystem32DRIVERSusbhub.sys [2004-08-18 57600]
R3 usbohci;Драйвер минипорта Microsoft USB открытого хост-контроллера; C:WINDOWSsystem32DRIVERSusbohci.sys [2004-08-18 17024]
S3 Arp1394;Протокол клиента 1394 ARP; C:WINDOWSsystem32DRIVERSarp1394.sys [2004-08-18 60800]
S3 btaudio;Аудиоустройство Bluetooth; C:WINDOWSsystem32driversbtaudio.sys [2006-05-12 401664]
S3 BTDriver;Драйвер виртуальной связи Bluetooth; C:WINDOWSsystem32DRIVERSbtport.sys [2006-05-12 30363]
S3 BTWDNDIS;Сервер доступа к локальной сети Bluetooth; C:WINDOWSsystem32DRIVERSbtwdndis.sys [2006-05-12 148168]
S3 btwmodem;Модем Bluetooth; C:WINDOWSsystem32DRIVERSbtwmodem.sys [2006-05-12 30189]
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:WINDOWSSystem32Driversbtwusb.sys [2006-05-12 57320]
S3 HidUsb;Драйвер класса HID Microsoft; C:WINDOWSsystem32DRIVERShidusb.sys [2001-08-17 9600]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:WINDOWSsystem32DRIVERSHPZid412.sys [2005-03-08 51120]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:WINDOWSsystem32DRIVERSHPZipr12.sys [2005-03-08 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:WINDOWSsystem32DRIVERSHPZius12.sys [2005-03-08 21744]
S3 mouhid;Драйвер мыши HID; C:WINDOWSsystem32DRIVERSmouhid.sys [2001-10-19 12160]
S3 NIC1394;Сетевой драйвер 1394; C:WINDOWSsystem32DRIVERSnic1394.sys [2004-08-18 61824]
S3 ssm_bus;SAMSUNG Mobile USB Device II 1.0 driver (WDM); C:WINDOWSsystem32DRIVERSssm_bus.sys [2005-08-30 58320]
S3 ssm_mdfl;SAMSUNG Mobile USB Modem II 1.0 Filter; C:WINDOWSsystem32DRIVERSssm_mdfl.sys [2005-08-30 8336]
S3 ssm_mdm;SAMSUNG Mobile USB Modem II 1.0 Drivers; C:WINDOWSsystem32DRIVERSssm_mdm.sys [2005-08-30 94000]
S3 SWL52N5;SAMSUNG SWL5200 Wireless Network Adapter Service; C:WINDOWSsystem32DRIVERSswl52n5.sys [2004-05-08 378816]
S3 usbccgp;Драйвер универсального родительского устройства USB (Microsoft); C:WINDOWSsystem32DRIVERSusbccgp.sys [2004-08-04 31616]
S3 usbprint;Класс принтеров Microsoft USB; C:WINDOWSsystem32DRIVERSusbprint.sys [2004-08-04 25856]
S3 USBSTOR;Драйвер запоминающих устройств для USB; C:WINDOWSsystem32DRIVERSUSBSTOR.SYS [2004-08-04 26496]
S3 wlsam48d;Samsung PCCard Service; C:WINDOWSsystem32DRIVERSwlsam48d.sys [2004-05-21 167936]
S4 IntelIde;IntelIde; C:WINDOWSsystem32driversIntelIde.sys []
S4 sr;Драйвер фильтра восстановления системы; C:WINDOWSsystem32DRIVERSsr.sys [2004-08-18 73472]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:WINDOWSsystem32Ati2evxx.exe [2004-08-25 389120]
R2 AVP;Kaspersky Anti-Virus 6.0; C:Program FilesKaspersky LabKaspersky Anti-Virus 6.0 for Windows Workstationsavp.exe [2007-11-19 231952]
R2 btwdins;Bluetooth Service; C:Program FilesWIDCOMMПрограммное обеспечение Bluetoothbinbtwdins.exe [2006-05-12 258103]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:WINDOWSsystem32HPZipm12.exe [2004-09-29 69632]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:Program FilesAnalog DevicesSoundMAXSMAgent.exe [2002-09-20 45056]
S2 Samsung Update Plus;Samsung Update Plus; C:Program FilesSamsungSamsung Update PlusSLUBackgroundService.exe [2006-07-21 57344]
S2 SymWSC;SymWMI Service; C:Program FilesCommon FilesSymantec SharedSecurity CenterSymWSC.exe [2004-11-02 316544]
S3 aspnet_state;Служба состояний ASP.NET; C:WINDOWSMicrosoft.NETFrameworkv1.1.4322aspnet_state.exe [2004-07-15 32768]
S3 gusvc;Google Updater Service; C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe [2007-02-01 138168]
S3 ose;Office Source Engine; C:Program FilesCommon FilesMicrosoft SharedSource EngineOSE.EXE [2003-07-28 89136]
EOF

