• Инструкции
    • Как использовать
      • Программы
    • Как удалить
      • Шпионское и рекламное ПО (adware и spyware)
      • Поддельное антиспайваре
      • Руткиты
      • Трояны
      • Кейлоггеры
  • Скачать программы
  • Вопросы и Ответы
  • Форумы

SPYWARE-RU.COM

Меню
  • Инструкции
    • Как использовать
      • Программы
    • Как удалить
      • Шпионское и рекламное ПО (adware и spyware)
      • Поддельное антиспайваре
      • Руткиты
      • Трояны
      • Кейлоггеры
  • Скачать программы
  • Вопросы и Ответы
  • Форумы
В начало › Re: Re: Троян и червь
Adguard
 

Re: Re: Троян и червь

Удаление вирусов и троянов. Защита компьютера. › Помощь в удалении вирусов, троянов, рекламы и других зловредов › Троян и червь › Re: Re: Троян и червь

16 января, 2011 в 8:34 дп #31907
albash
Participant
  • Темы:2
  • Сообщений:20
  • ☆

Продолжение:
CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders — Created Within 30 Days ==========

[2011.01.16 12:29:23 | 000,602,112 | —- | C] (OldTimer Tools) — C:UsersОбщий компьютерDesktopOTL.exe
[2011.01.11 14:57:56 | 000,000,000 | —D | C] — C:Windowstemp
[2011.01.11 14:46:06 | 000,000,000 | -HSD | C] — C:$RECYCLE.BIN
[2011.01.11 14:30:55 | 000,161,792 | —- | C] (SteelWerX) — C:WindowsSWREG.exe
[2011.01.11 14:30:55 | 000,136,704 | —- | C] (SteelWerX) — C:WindowsSWSC.exe
[2011.01.11 14:30:55 | 000,031,232 | —- | C] (NirSoft) — C:WindowsNIRCMD.exe
[2011.01.11 14:30:38 | 000,000,000 | —D | C] — C:WindowsERDNT
[2011.01.11 14:30:37 | 000,000,000 | —D | C] — C:ComboFix
[2011.01.11 14:30:26 | 000,000,000 | —D | C] — C:Qoobox
[2011.01.11 14:30:04 | 000,212,480 | —- | C] (SteelWerX) — C:WindowsSWXCACLS.exe
[2011.01.08 18:10:25 | 000,000,000 | —D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsSkype
[2011.01.08 18:10:24 | 000,000,000 | —D | C] — C:Program FilesCommon FilesSkype
[2011.01.04 15:10:12 | 000,000,000 | —D | C] — C:Program FilesMicrosoft CAPICOM 2.1.0.2
[2011.01.03 18:19:20 | 000,000,000 | —D | C] — C:ProgramDataLogiShrd
[2011.01.03 18:17:26 | 000,000,000 | —D | C] — C:UsersОбщий компьютерAppDataLocalLogiShrd
[2011.01.03 18:15:37 | 000,000,000 | —D | C] — C:UsersОбщий компьютерAppDataRoamingLeadertech
[2011.01.03 18:15:15 | 000,000,000 | —D | C] — C:WindowsSystem32logishrd
[2011.01.03 18:15:00 | 000,000,000 | —D | C] — C:ProgramDataLogitech
[2011.01.03 18:14:57 | 000,000,000 | —D | C] — C:Program FilesCommon FilesLWS
[2011.01.03 18:14:25 | 000,000,000 | —D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsLogitech
[2011.01.03 18:14:21 | 000,000,000 | —D | C] — C:Program FilesLogitech
[2011.01.03 18:01:41 | 000,000,000 | —D | C] — C:Program FilesCommon Fileslogishrd
[2010.12.28 10:27:37 | 000,000,000 | —D | C] — C:UsersОбщий компьютерAppDataRoamingPeerNetworking
[2010.12.23 22:24:06 | 000,000,000 | —D | C] — C:ProgramDataGuard.Mail.Ru
[2009.05.21 12:04:28 | 000,049,152 | R— | C] ( ) — C:WindowsInterop.IWshRuntimeLibrary.dll
[2002.03.11 14:06:30 | 001,822,520 | —- | C] (Microsoft Corporation) — C:Program Filesinstmsiw.exe
[2002.03.11 13:45:04 | 001,708,856 | —- | C] (Microsoft Corporation) — C:Program Filesinstmsia.exe
[2 C:WindowsSystem32*.tmp files -> C:WindowsSystem32*.tmp -> ]

========== Files — Modified Within 30 Days ==========

[2011.01.16 12:46:35 | 002,621,440 | -HS- | M] () — C:UsersОбщий компьютерntuser.dat
[2011.01.16 12:30:59 | 000,602,112 | —- | M] (OldTimer Tools) — C:UsersОбщий компьютерDesktopOTL.exe
[2011.01.16 12:05:23 | 000,000,199 | —- | M] () — C:WindowsSystem32driversetcpfdnnt.act
[2011.01.16 12:05:19 | 000,001,132 | —- | M] () — C:WindowsSystem32driversAPPFLTR.CFG.bck
[2011.01.16 12:05:19 | 000,001,132 | —- | M] () — C:WindowsSystem32driversAPPFLTR.CFG
[2011.01.16 12:05:19 | 000,000,252 | —- | M] () — C:WindowsSystem32driversetcIdsFlt.cfg.bck
[2011.01.16 12:05:19 | 000,000,252 | —- | M] () — C:WindowsSystem32driversetcIdsFlt.cfg
[2011.01.16 12:05:19 | 000,000,092 | —- | M] () — C:WindowsSystem32driversetcNetLoc.wlt.bck
[2011.01.16 12:05:19 | 000,000,092 | —- | M] () — C:WindowsSystem32driversetcNetLoc.wlt
[2011.01.16 12:05:19 | 000,000,068 | —- | M] () — C:WindowsSystem32driversetcNetFlt.cfg.bck
[2011.01.16 12:05:19 | 000,000,068 | —- | M] () — C:WindowsSystem32driversetcNetFlt.cfg
[2011.01.16 12:05:19 | 000,000,056 | —- | M] () — C:WindowsSystem32driversetcWnmFlt.cfg.bck
[2011.01.16 12:05:19 | 000,000,056 | —- | M] () — C:WindowsSystem32driversetcWnmFlt.cfg
[2011.01.16 12:05:19 | 000,000,056 | —- | M] () — C:WindowsSystem32driversetcDsaFlt.cfg.bck
[2011.01.16 12:05:19 | 000,000,056 | —- | M] () — C:WindowsSystem32driversetcDsaFlt.cfg
[2011.01.16 12:05:03 | 000,418,468 | —- | M] () — C:WindowsSystem32driversetcDsaFlt.rls.bck
[2011.01.16 12:05:03 | 000,418,468 | —- | M] () — C:WindowsSystem32driversetcDsaFlt.rls
[2011.01.16 12:02:39 | 000,000,464 | -H— | M] () — C:WindowstasksUser_Feed_Synchronization-{40CBA629-AF20-4EA7-B068-C4E5C2E3414E}.job
[2011.01.16 12:02:22 | 000,000,136 | —- | M] () — C:WindowsSystem32driversetcNetAdapt.cfg.bck
[2011.01.16 12:02:22 | 000,000,136 | —- | M] () — C:WindowsSystem32driversetcNetAdapt.cfg
[2011.01.16 12:02:21 | 000,000,064 | —- | M] () — C:WindowsSystem32driversetcNetAR.wlt.bck
[2011.01.16 12:02:21 | 000,000,064 | —- | M] () — C:WindowsSystem32driversetcNetAR.wlt
[2011.01.16 12:02:01 | 000,054,181 | —- | M] () — C:ProgramDatanvModes.dat
[2011.01.16 12:02:00 | 000,054,181 | —- | M] () — C:ProgramDatanvModes.001
[2011.01.16 11:59:44 | 000,000,928 | —- | M] () — C:WindowstasksGoogleUpdateTaskMachineCore.job
[2011.01.16 11:59:40 | 000,003,216 | -H— | M] () — C:WindowsSystem327B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011.01.16 11:59:40 | 000,000,006 | -H— | M] () — C:WindowstasksSA.DAT
[2011.01.16 11:59:39 | 000,003,216 | -H— | M] () — C:WindowsSystem327B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011.01.16 11:59:31 | 000,067,584 | —S- | M] () — C:Windowsbootstat.dat
[2011.01.16 11:59:28 | 000,000,000 | —- | M] () — C:WindowsSystem32driverslvuvc.hs
[2011.01.16 11:59:27 | 2146,619,392 | -HS- | M] () — C:hiberfil.sys
[2011.01.15 21:58:00 | 000,524,288 | -HS- | M] () — C:UsersОбщий компьютерntuser.dat{176ebc84-5348-11df-a606-00158333c2b0}.TMContainer00000000000000000001.regtrans-ms
[2011.01.15 21:58:00 | 000,065,536 | -HS- | M] () — C:UsersОбщий компьютерntuser.dat{176ebc84-5348-11df-a606-00158333c2b0}.TM.blf
[2011.01.15 21:57:40 | 003,279,506 | -H— | M] () — C:UsersОбщий компьютерAppDataLocalIconCache.db
[2011.01.15 21:54:01 | 000,000,932 | —- | M] () — C:WindowstasksGoogleUpdateTaskMachineUA.job
[2011.01.15 10:48:35 | 000,322,592 | —- | M] () — C:WindowsSystem32driversAPPFCONT.DAT.bck
[2011.01.15 10:48:35 | 000,322,592 | —- | M] () — C:WindowsSystem32driversAPPFCONT.DAT
[2011.01.14 09:51:47 | 000,008,627 | —- | M] () — C:WindowsSystem32PAV_FOG.OPC
[2011.01.11 14:43:36 | 000,000,215 | —- | M] () — C:Windowssystem.ini
[2011.01.11 14:43:24 | 000,000,027 | —- | M] () — C:WindowsSystem32driversetchosts
[2011.01.11 14:29:57 | 004,152,003 | R— | M] () — C:UsersОбщий компьютерDesktopComboFix.exe
[2011.01.11 14:20:14 | 001,484,556 | —- | M] () — C:WindowsSystem32PerfStringBackup.INI
[2011.01.11 14:20:14 | 000,662,300 | —- | M] () — C:WindowsSystem32perfh019.dat
[2011.01.11 14:20:14 | 000,595,798 | —- | M] () — C:WindowsSystem32perfh009.dat
[2011.01.11 14:20:14 | 000,129,218 | —- | M] () — C:WindowsSystem32perfc019.dat
[2011.01.11 14:20:14 | 000,103,872 | —- | M] () — C:WindowsSystem32perfc009.dat
[2011.01.10 09:59:36 | 251,797,106 | —- | M] () — C:WindowsMEMORY.DMP
[2011.01.08 18:10:25 | 000,001,878 | —- | M] () — C:UsersPublicDesktopSkype.lnk
[2011.01.05 20:41:08 | 000,000,877 | —- | M] () — C:UsersОбщий компьютерAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupLogitech . Регистрация Продукта.lnk
[2011.01.04 11:42:23 | 000,021,504 | —- | M] () — C:UsersОбщий компьютерAppDataLocalDCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.01.03 18:16:30 | 000,001,750 | —- | M] () — C:UsersPublicDesktopLogitech Vid HD.lnk
[2011.01.03 18:14:25 | 000,001,437 | —- | M] () — C:UsersPublicDesktopLogitech Webcam Software .lnk
[2010.12.28 10:27:44 | 000,024,064 | —- | M] () — C:UsersОбщий компьютерAppDataRoamingUserTile.png
[2 C:WindowsSystem32*.tmp files -> C:WindowsSystem32*.tmp -> ]

========== Files Created — No Company Name ==========

[2011.01.11 14:30:55 | 000,256,512 | —- | C] () — C:WindowsPEV.exe
[2011.01.11 14:30:55 | 000,098,816 | —- | C] () — C:Windowssed.exe
[2011.01.11 14:30:55 | 000,089,088 | —- | C] () — C:WindowsMBR.exe
[2011.01.11 14:30:55 | 000,080,412 | —- | C] () — C:Windowsgrep.exe
[2011.01.11 14:30:55 | 000,068,096 | —- | C] () — C:Windowszip.exe
[2011.01.11 14:29:26 | 004,152,003 | R— | C] () — C:UsersОбщий компьютерDesktopComboFix.exe
[2011.01.10 10:00:29 | 2146,619,392 | -HS- | C] () — C:hiberfil.sys
[2011.01.08 18:10:25 | 000,001,878 | —- | C] () — C:UsersPublicDesktopSkype.lnk
[2011.01.05 20:41:08 | 000,000,877 | —- | C] () — C:UsersОбщий компьютерAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupLogitech . Регистрация Продукта.lnk
[2011.01.03 18:16:30 | 000,001,750 | —- | C] () — C:UsersPublicDesktopLogitech Vid HD.lnk
[2011.01.03 18:14:25 | 000,001,437 | —- | C] () — C:UsersPublicDesktopLogitech Webcam Software .lnk
[2011.01.03 18:01:59 | 000,000,000 | —- | C] () — C:WindowsSystem32driverslvuvc.hs
[2010.12.28 10:27:37 | 000,024,064 | —- | C] () — C:UsersОбщий компьютерAppDataRoamingUserTile.png
[2010.12.09 13:14:37 | 000,000,036 | —- | C] () — C:UsersОбщий компьютерAppDataLocalhousecall.guid.cache
[2010.11.10 02:45:30 | 010,871,128 | —- | C] () — C:WindowsSystem32LogiDPP.dll
[2010.11.10 02:45:20 | 000,316,248 | —- | C] () — C:WindowsSystem32DevManagerCore.dll
[2010.11.10 02:31:42 | 000,026,286 | —- | C] () — C:WindowsSystem32lvcoinst.ini
[2010.11.03 16:33:41 | 000,165,376 | —- | C] () — C:WindowsSystem32unrar.dll
[2010.11.03 16:33:40 | 000,000,038 | —- | C] () — C:Windowsavisplitter.ini
[2010.11.03 16:33:29 | 000,790,528 | —- | C] () — C:WindowsSystem32xvidcore.dll
[2010.11.03 16:33:29 | 000,134,144 | —- | C] () — C:WindowsSystem32xvidvfw.dll
[2010.11.03 16:33:28 | 000,108,032 | —- | C] () — C:WindowsSystem32ff_vfw.dll
[2010.11.03 16:33:28 | 000,000,547 | —- | C] () — C:WindowsSystem32ff_vfw.dll.manifest
[2010.08.03 09:24:27 | 000,311,296 | —- | C] () — C:WindowsSystem32ibank2ccom.dll
[2010.08.03 09:24:27 | 000,102,400 | —- | C] () — C:WindowsSystem32ibank2agava.dll
[2010.05.28 17:40:52 | 003,091,968 | —- | C] () — C:Program Filesopenofficeorg32.msi
[2010.05.28 17:37:28 | 128,699,053 | —- | C] () — C:Program Filesopenofficeorg1.cab
[2010.05.28 16:49:02 | 000,000,290 | —- | C] () — C:Program Filessetup.ini
[2010.05.20 11:48:46 | 000,031,744 | —- | C] () — C:WindowsSystem32driverseps2kt1.sys
[2010.05.20 11:48:46 | 000,004,608 | —- | C] () — C:WindowsSystem32R5CoInst.dll
[2010.05.07 18:46:36 | 000,014,168 | —- | C] () — C:WindowsSystem32driversiKeyLFT2.dll
[2010.05.07 18:43:30 | 000,025,824 | —- | C] () — C:WindowsSystem32driversLVPr2Mon.sys
[2010.02.20 08:55:13 | 000,000,084 | —- | C] () — C:Windowsnetdet.ini
[2010.02.20 08:54:15 | 000,237,568 | —- | C] () — C:WindowsSystem32lame_enc.dll
[2010.02.14 15:23:25 | 000,018,944 | —- | C] () — C:WindowsSystem32ventmon.dll
[2010.02.04 09:34:48 | 000,000,810 | —- | C] () — C:WindowsNTIWVEDT.INI
[2010.02.01 10:52:37 | 000,000,000 | —- | C] () — C:WindowsJCMKR32.INI
[2010.01.31 18:34:35 | 000,000,790 | —- | C] () — C:ProgramDatahpzinstall.log
[2009.12.18 12:00:50 | 000,000,069 | —- | C] () — C:Windowscm.ini
[2009.11.30 13:54:24 | 000,021,504 | —- | C] () — C:UsersОбщий компьютерAppDataLocalDCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009.11.30 13:32:35 | 000,000,091 | —- | C] () — C:ProgramDataPS.log
[2009.11.29 19:01:42 | 000,117,248 | —- | C] () — C:WindowsSystem32EhStorAuthn.dll
[2009.11.29 19:01:25 | 000,368,640 | —- | C] () — C:WindowsSystem32msjetoledb40.dll
[2009.11.28 18:56:16 | 000,000,056 | -H— | C] () — C:ProgramDataezsidmv.dat
[2009.11.28 18:18:33 | 000,013,880 | —- | C] () — C:WindowsSystem32driversCOMFiltr.sys
[2009.11.28 17:11:14 | 003,279,506 | -H— | C] () — C:UsersОбщий компьютерAppDataLocalIconCache.db
[2009.11.28 16:59:17 | 000,000,272 | —- | C] () — C:Windowshpqcopy.INI
[2009.11.28 16:56:53 | 000,000,235 | —- | C] () — C:UsersОбщий компьютерAppDataRoamingdevices.xml
[2009.11.28 16:56:53 | 000,000,012 | —- | C] () — C:UsersОбщий компьютерAppDataRoamingsettings.xml
[2009.11.28 16:38:08 | 000,106,496 | —- | C] () — C:WindowsSystem32VSHP1018.DLL
[2009.11.28 16:29:33 | 000,082,384 | —- | C] () — C:UsersОбщий компьютерAppDataLocalGDIPFONTCACHEV1.DAT
[2008.01.21 10:59:39 | 001,484,556 | —- | C] () — C:WindowsSystem32PerfStringBackup.INI
[2008.01.21 07:34:22 | 000,060,124 | —- | C] () — C:WindowsSystem32tcpmon.ini
[2006.11.02 17:48:00 | 000,000,174 | -HS- | C] () — C:Program Filesdesktop.ini
[2006.11.02 15:24:31 | 000,001,405 | —- | C] () — C:Windowsmsdfmap.ini
[2006.11.02 15:23:31 | 000,000,221 | —- | C] () — C:Windowswin.ini
[2006.11.02 15:23:31 | 000,000,215 | —- | C] () — C:Windowssystem.ini
[2006.11.02 12:40:29 | 000,013,750 | —- | C] () — C:WindowsSystem32pacerprf.ini
[2006.11.02 12:09:45 | 000,027,097 | —- | C] () — C:WindowsSystem32country.sys
[2006.11.02 12:09:44 | 000,042,809 | —- | C] () — C:WindowsSystem32KEY01.SYS
[2006.11.02 12:09:44 | 000,042,537 | —- | C] () — C:WindowsSystem32KEYBOARD.SYS
[2006.11.02 12:09:42 | 000,009,029 | —- | C] () — C:WindowsSystem32ANSI.SYS
[2006.11.02 12:09:41 | 000,004,768 | —- | C] () — C:WindowsSystem32HIMEM.SYS
[2006.11.02 12:09:40 | 000,029,274 | —- | C] () — C:WindowsSystem32NTDOS412.SYS
[2006.11.02 12:09:38 | 000,029,370 | —- | C] () — C:WindowsSystem32NTDOS411.SYS
[2006.11.02 12:09:35 | 000,029,146 | —- | C] () — C:WindowsSystem32NTDOS404.SYS
[2006.11.02 12:09:31 | 000,029,146 | —- | C] () — C:WindowsSystem32NTDOS804.SYS
[2006.11.02 12:09:29 | 000,027,866 | —- | C] () — C:WindowsSystem32NTDOS.SYS
[2006.11.02 12:09:26 | 000,035,536 | —- | C] () — C:WindowsSystem32NTIO412.SYS
[2006.11.02 12:09:24 | 000,035,776 | —- | C] () — C:WindowsSystem32NTIO411.SYS
[2006.11.02 12:09:23 | 000,034,672 | —- | C] () — C:WindowsSystem32NTIO404.SYS
[2006.11.02 12:09:22 | 000,034,672 | —- | C] () — C:WindowsSystem32NTIO804.SYS
[2006.11.02 12:09:20 | 000,033,952 | —- | C] () — C:WindowsSystem32NTIO.SYS
[2006.11.02 11:25:08 | 000,013,312 | —- | C] () — C:WindowsSystem32win87em.dll
[2006.10.10 14:08:14 | 000,000,044 | —- | C] () — C:WindowsAcer(Normal).ini
[2006.10.10 14:08:14 | 000,000,042 | —- | C] () — C:WindowsAcer(Wide).ini
[2006.10.10 14:04:58 | 000,007,372 | —- | C] () — C:ProgramDataArcadeDeluxe2.log
[2006.10.10 13:59:17 | 000,054,181 | —- | C] () — C:ProgramDatanvModes.001
[2006.10.10 13:59:16 | 000,054,181 | —- | C] () — C:ProgramDatanvModes.dat

========== LOP Check ==========

[2009.05.21 01:58:02 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingAcer GameZone Console
[2009.11.30 18:19:14 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingBarbieIP
[2010.01.16 17:52:42 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingcerasus.media
[2010.02.20 16:40:10 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingCrypto Pro
[2009.11.28 22:21:49 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingeSobi
[2011.01.03 18:15:37 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingLeadertech
[2010.11.03 16:30:09 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingMail.Ru
[2010.02.08 16:33:28 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingMeridian93
[2010.08.02 14:03:11 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingMra
[2009.12.07 10:17:45 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingOpenOffice.org
[2009.11.28 18:17:38 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingPanda Security
[2010.12.28 10:27:37 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingPeerNetworking
[2009.11.28 16:33:50 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingSoftDMA
[2009.11.28 16:55:01 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingПапка выгрузки Share-to-Web
[2011.01.15 21:58:09 | 000,032,568 | —- | M] () — C:WindowsTasksSCHEDLGU.TXT
[2011.01.16 12:02:39 | 000,000,464 | -H— | M] () — C:WindowsTasksUser_Feed_Synchronization-{40CBA629-AF20-4EA7-B068-C4E5C2E3414E}.job

========== Purity Check ==========

========== Custom Scans ==========


[2009.05.21 01:58:02 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingAcer GameZone Console
[2009.12.14 12:23:43 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingAdobe
[2010.01.19 20:56:27 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingApple Computer
[2009.11.30 18:19:14 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingBarbieIP
[2010.01.16 17:52:42 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingcerasus.media
[2010.02.20 16:40:10 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingCrypto Pro
[2010.02.04 10:28:02 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingCyberLink
[2009.11.28 22:21:49 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingeSobi
[2009.11.28 16:41:46 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingGoogle
[2010.01.31 21:35:59 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingHP
[2010.07.30 22:05:59 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingHpUpdate
[2009.11.28 16:29:19 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingIdentities
[2011.01.03 18:15:37 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingLeadertech
[2009.11.28 16:29:49 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingMacromedia
[2010.11.03 16:30:09 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingMail.Ru
[2010.11.03 16:48:04 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingMedia Player Classic
[2010.02.08 16:33:28 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingMeridian93
[2011.01.03 18:15:36 | 000,000,000 | —SD | M] — C:UsersОбщий компьютерAppDataRoamingMicrosoft
[2010.08.02 14:03:11 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingMra
[2010.01.27 15:42:58 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingNero
[2009.12.07 10:17:45 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingOpenOffice.org
[2009.11.28 18:17:38 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingPanda Security
[2010.12.28 10:27:37 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingPeerNetworking
[2011.01.16 12:04:10 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingSkype
[2011.01.16 12:03:20 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingskypePM
[2009.11.28 16:33:50 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingSoftDMA
[2010.01.29 12:37:24 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingWinRAR
[2009.11.28 16:55:01 | 000,000,000 | —D | M] — C:UsersОбщий компьютерAppDataRoamingПапка выгрузки Share-to-Web


[2011.01.03 18:15:36 | 000,053,248 | R— | M] (Acresso Software Inc.) — C:UsersОбщий компьютерAppDataRoamingMicrosoftInstaller{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}ARPPRODUCTICON.exe


[2008.01.21 07:32:22 | 000,056,376 | —- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 — C:WindowsERDNTcacheAGP440.sys
[2008.01.21 07:32:22 | 000,056,376 | —- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 — C:WindowsSystem32driversAGP440.sys
[2008.01.21 07:32:22 | 000,056,376 | —- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 — C:WindowsSystem32DriverStoreFileRepositorymachine.inf_51b95d75AGP440.sys
[2008.01.21 07:32:22 | 000,056,376 | —- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 — C:WindowsSystem32DriverStoreFileRepositorymachine.inf_f750e484AGP440.sys
[2008.01.21 07:32:22 | 000,056,376 | —- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 — C:Windowswinsxsx86_machine.inf_31bf3856ad364e35_6.0.6001.18000_none_ba12ed3bbeb0d97aAGP440.sys
[2008.01.21 07:32:22 | 000,056,376 | —- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 — C:Windowswinsxsx86_machine.inf_31bf3856ad364e35_6.0.6002.18005_none_bbfe6647bbd2a4c6AGP440.sys
[2006.11.02 14:49:52 | 000,053,864 | —- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 — C:WindowsSystem32DriverStoreFileRepositorymachine.inf_920a2c1fAGP440.sys


[2009.04.11 11:32:26 | 000,019,944 | —- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 — C:WindowsSystem32DriverStoreFileRepositorymshdc.inf_b12d8e84atapi.sys
[2009.04.11 11:32:26 | 000,019,944 | —- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 — C:Windowswinsxsx86_mshdc.inf_31bf3856ad364e35_6.0.6002.18005_none_df23a1261eab99e8atapi.sys
[2008.01.21 07:32:21 | 000,021,560 | —- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 — C:WindowsERDNTcacheatapi.sys
[2008.01.21 07:32:21 | 000,021,560 | —- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 — C:WindowsSystem32driversatapi.sys
[2008.01.21 07:32:21 | 000,021,560 | —- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 — C:WindowsSystem32DriverStoreFileRepositorymshdc.inf_cc18792datapi.sys
[2008.01.21 07:32:21 | 000,021,560 | —- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 — C:Windowswinsxsx86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9catapi.sys
[2006.11.02 14:49:36 | 000,019,048 | —- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F — C:WindowsSystem32DriverStoreFileRepositorymshdc.inf_c6c2e699atapi.sys


[2009.04.11 11:27:20 | 000,643,072 | —- | M] (Microsoft Corporation) MD5=10761177A6EBE45843F443E99509F5E7 — C:WindowsSystem32autochk.exe
[2009.04.11 11:27:20 | 000,643,072 | —- | M] (Microsoft Corporation) MD5=10761177A6EBE45843F443E99509F5E7 — C:Windowswinsxsx86_microsoft-windows-autochk_31bf3856ad364e35_6.0.6002.18005_none_e3df6655bee2ee3bautochk.exe
[2008.01.21 07:34:33 | 000,642,560 | —- | M] (Microsoft Corporation) MD5=2FC5BE79B51714B479809358E4908FC3 — C:Windowswinsxsx86_microsoft-windows-autochk_31bf3856ad364e35_6.0.6001.18000_none_e1f3ed49c1c122efautochk.exe


[2008.01.21 07:33:14 | 000,006,144 | —- | M] (Microsoft Corporation) MD5=67E506B75BD5326A3EC7B70BD014DFB6 — C:WindowsERDNTcachebeep.sys
[2008.01.21 07:33:14 | 000,006,144 | —- | M] (Microsoft Corporation) MD5=67E506B75BD5326A3EC7B70BD014DFB6 — C:WindowsSystem32driversbeep.sys
[2008.01.21 07:33:14 | 000,006,144 | —- | M] (Microsoft Corporation) MD5=67E506B75BD5326A3EC7B70BD014DFB6 — C:Windowswinsxsx86_microsoft-windows-beepsys_31bf3856ad364e35_6.0.6001.18000_none_c420a153079d485bbeep.sys


[2006.11.02 14:46:03 | 000,011,776 | —- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D — C:WindowsERDNTcachecngaudit.dll
[2006.11.02 14:46:03 | 000,011,776 | —- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D — C:WindowsSystem32cngaudit.dll
[2006.11.02 14:46:03 | 000,011,776 | —- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D — C:Windowswinsxsx86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.0.6000.16386_none_e62d292932a96ce6cngaudit.dll


[2008.10.29 11:20:29 | 002,923,520 | —- | M] (Microsoft Corporation) MD5=37440D09DEAE0B672A04DCCF7ABF06BE — C:Windowswinsxsx86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.16771_none_4f83bb287ccdb7e3explorer.exe
[2008.10.29 11:29:41 | 002,927,104 | —- | M] (Microsoft Corporation) MD5=4F554999D7D5F05DAAEBBA7B5BA1089D — C:Windowswinsxsx86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18164_none_5177ca9879e978e8explorer.exe
[2008.10.30 08:59:17 | 002,927,616 | —- | M] (Microsoft Corporation) MD5=50BA5850147410CDE89C523AD3BC606E — C:Windowswinsxsx86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.22298_none_51e4f8c7931bd1e1explorer.exe
[2009.04.11 11:27:36 | 002,926,592 | —- | M] (Microsoft Corporation) MD5=D07D4C3038F3578FFCE1C0237F2A1253 — C:WindowsERDNTcacheexplorer.exe
[2009.04.11 11:27:36 | 002,926,592 | —- | M] (Microsoft Corporation) MD5=D07D4C3038F3578FFCE1C0237F2A1253 — C:Windowsexplorer.exe
[2009.04.11 11:27:36 | 002,926,592 | —- | M] (Microsoft Corporation) MD5=D07D4C3038F3578FFCE1C0237F2A1253 — C:Windowswinsxsx86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6002.18005_none_53a0201e76de3a0bexplorer.exe
[2008.10.28 07:15:02 | 002,923,520 | —- | M] (Microsoft Corporation) MD5=E7156B0B74762D9DE0E66BDCDE06E5FB — C:Windowswinsxsx86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.20947_none_5033cb5995cd990bexplorer.exe
[2008.01.21 07:34:05 | 002,927,104 | —- | M] (Microsoft Corporation) MD5=FFA764631CB70A30065C12EF8E174F9F — C:Windowswinsxsx86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18000_none_51b4a71279bc6ebfexplorer.exe


[2008.09.12 14:48:26 | 000,406,040 | —- | M] (Intel Corporation) MD5=756879FA65978DF948437CE3FD1EACCD — C:Program FilesIntelIntel Matrix Storage Managerdriver64IaStor.sys
[2008.09.12 14:32:56 | 000,327,192 | —- | M] (Intel Corporation) MD5=8EF427C54497C5F8A7A645990E4278C7 — C:Program FilesIntelIntel Matrix Storage ManagerdriverIaStor.sys
[2008.09.12 14:32:56 | 000,327,192 | —- | M] (Intel Corporation) MD5=8EF427C54497C5F8A7A645990E4278C7 — C:WindowsSystem32driversiaStor.sys
[2008.09.12 14:32:56 | 000,327,192 | —- | M] (Intel Corporation) MD5=8EF427C54497C5F8A7A645990E4278C7 — C:WindowsSystem32DriverStoreFileRepositoryiaahci.inf_3c4af4a0iaStor.sys


[2008.01.21 07:32:49 | 000,235,064 | —- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 — C:WindowsSystem32driversiaStorV.sys
[2008.01.21 07:32:49 | 000,235,064 | —- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 — C:WindowsSystem32DriverStoreFileRepositoryiastorv.inf_c9df7691iaStorV.sys
[2008.01.21 07:32:49 | 000,235,064 | —- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 — C:Windowswinsxsx86_iastorv.inf_31bf3856ad364e35_6.0.6001.18000_none_af11527887c7fa8fiaStorV.sys
[2006.11.02 14:51:25 | 000,232,040 | —- | M] (Intel Corporation) MD5=C957BF4B5D80B46C5017BF0101E6C906 — C:WindowsSystem32DriverStoreFileRepositoryiastorv.inf_37cdafa4iaStorV.sys


[2009.04.11 11:28:20 | 000,114,688 | —- | M] (Microsoft Corporation) MD5=C8BDCECEE082B54F0BAC838BF0A34597 — C:WindowsERDNTcacheimm32.dll
[2008.01.21 07:34:05 | 000,114,688 | —- | M] (Microsoft Corporation) MD5=EC17194A193CD8E90D27CFB93DFA9A2E — C:Windowswinsxsx86_microsoft-windows-imm32_31bf3856ad364e35_6.0.6001.18000_none_5c561e167a6afd02imm32.dll
[2009.04.11 11:28:20 | 000,114,688 | —- | M] (Microsoft Corporation) Unable to obtain MD5 — C:WindowsSystem32imm32.dll
[2009.04.11 11:28:20 | 000,114,688 | —- | M] (Microsoft Corporation) Unable to obtain MD5 — C:Windowswinsxsx86_microsoft-windows-imm32_31bf3856ad364e35_6.0.6002.18005_none_5e419722778cc84eimm32.dll


[2009.02.13 13:21:09 | 000,890,880 | —- | M] (Microsoft Corporation) MD5=1987D817D08F5EAF0B7F334026FDDB79 — C:Windowswinsxsx86_microsoft-windows-kernel32_31bf3856ad364e35_6.0.6001.22376_none_9401d8206f9c7e67kernel32.dll
[2009.02.13 12:26:37 | 000,875,520 | —- | M] (Microsoft Corporation) MD5=B82C7AC1D559F0FD088792171D64C7F3 — C:Windowswinsxsx86_microsoft-windows-kernel32_31bf3856ad364e35_6.0.6000.16820_none_91c20a8f593529edkernel32.dll
[2009.02.13 12:13:01 | 000,875,520 | —- | M] (Microsoft Corporation) MD5=BB792054BD990EC05D9E260D50FEAD39 — C:Windowswinsxsx86_microsoft-windows-kernel32_31bf3856ad364e35_6.0.6000.21010_none_92564f68724ae108kernel32.dll
[2009.04.11 11:28:20 | 000,891,392 | —- | M] (Microsoft Corporation) MD5=BB8509089E7DF514310814E1B2593FFC — C:WindowsERDNTcachekernel32.dll
[2009.02.13 13:49:05 | 000,888,832 | —- | M] (Microsoft Corporation) MD5=DB6E3731E6F5C8AE2843F80B5787F7C6 — C:Windowswinsxsx86_microsoft-windows-kernel32_31bf3856ad364e35_6.0.6001.18215_none_93b81a93564f1da0kernel32.dll
[2008.01.21 07:33:52 | 000,888,320 | —- | M] (Microsoft Corporation) MD5=DC2338093F91BA4E0512208E60206DDD — C:Windowswinsxsx86_microsoft-windows-kernel32_31bf3856ad364e35_6.0.6001.18000_none_93bde541564b88aekernel32.dll
[2009.04.11 11:28:20 | 000,891,392 | —- | M] (Microsoft Corporation) Unable to obtain MD5 — C:WindowsSystem32kernel32.dll
[2009.04.11 11:28:20 | 000,891,392 | —- | M] (Microsoft Corporation) Unable to obtain MD5 — C:Windowswinsxsx86_microsoft-windows-kernel32_31bf3856ad364e35_6.0.6002.18005_none_95a95e4d536d53fakernel32.dll


[2009.04.11 11:28:22 | 000,223,232 | —- | M] (Microsoft Corporation) MD5=8617350C9B590B63E620881092751BCB — C:WindowsERDNTcachemswsock.dll
[2009.04.11 11:28:22 | 000,223,232 | —- | M] (Microsoft Corporation) MD5=8617350C9B590B63E620881092751BCB — C:WindowsSystem32mswsock.dll
[2009.04.11 11:28:22 | 000,223,232 | —- | M] (Microsoft Corporation) MD5=8617350C9B590B63E620881092751BCB — C:Windowswinsxsx86_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.0.6002.18005_none_ba3ed0122a6d89damswsock.dll
[2008.01.21 07:33:36 | 000,223,232 | —- | M] (Microsoft Corporation) MD5=89FD0595EEA4E505CABEFCF7008F2612 — C:Windowswinsxsx86_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.0.6001.18000_none_b85357062d4bbe8emswsock.dll


[2009.04.11 11:32:49 | 000,527,848 | —- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 — C:WindowsERDNTcachendis.sys
[2009.04.11 11:32:49 | 000,527,848 | —- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 — C:WindowsSystem32driversndis.sys
[2009.04.11 11:32:49 | 000,527,848 | —- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 — C:Windowswinsxsx86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6002.18005_none_a9b2a4d31930d864ndis.sys
[2008.01.21 07:33:22 | 000,529,464 | —- | M] (Microsoft Corporation) MD5=9BDC71790FA08F0A0B5F10462B1BD0B1 — C:Windowswinsxsx86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6001.18000_none_a7c72bc71c0f0d18ndis.sys


[2009.04.11 11:28:23 | 000,592,896 | —- | M] (Microsoft Corporation) MD5=95DAECF0FB120A7B5DA679CC54E37DDE — C:WindowsERDNTcachenetlogon.dll
[2009.04.11 11:28:23 | 000,592,896 | —- | M] (Microsoft Corporation) MD5=95DAECF0FB120A7B5DA679CC54E37DDE — C:WindowsSystem32netlogon.dll
[2009.04.11 11:28:23 | 000,592,896 | —- | M] (Microsoft Corporation) MD5=95DAECF0FB120A7B5DA679CC54E37DDE — C:Windowswinsxsx86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6002.18005_none_ffa3304f351bb3a3netlogon.dll
[2008.01.21 07:33:41 | 000,592,384 | —- | M] (Microsoft Corporation) MD5=A8EFC0B6E75B789F7FD3BA5025D4E37F — C:Windowswinsxsx86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6001.18000_none_fdb7b74337f9e857netlogon.dll


[2009.04.11 11:32:49 | 001,083,880 | —- | M] (Microsoft Corporation) MD5=6A4A98CEE84CF9E99564510DDA4BAA47 — C:WindowsERDNTcachentfs.sys
[2009.04.11 11:32:49 | 001,083,880 | —- | M] (Microsoft Corporation) MD5=6A4A98CEE84CF9E99564510DDA4BAA47 — C:WindowsSystem32driversntfs.sys
[2009.04.11 11:32:49 | 001,083,880 | —- | M] (Microsoft Corporation) MD5=6A4A98CEE84CF9E99564510DDA4BAA47 — C:Windowswinsxsx86_microsoft-windows-ntfs_31bf3856ad364e35_6.0.6002.18005_none_a85ca2c91a0d64dfntfs.sys
[2008.01.21 07:33:23 | 001,081,912 | —- | M] (Microsoft Corporation) MD5=B4EFFE29EB4F15538FD8A9681108492D — C:Windowswinsxsx86_microsoft-windows-ntfs_31bf3856ad364e35_6.0.6001.18000_none_a67129bd1ceb9993ntfs.sys


[2008.01.21 07:35:18 | 000,460,288 | —- | M] (Microsoft Corporation) MD5=A7DFF9642D510BE1EEC6664CD0369953 — C:Windowswinsxsx86_microsoft-windows-r..emanagement-service_31bf3856ad364e35_6.0.6001.18000_none_0e3e31f00e12b007ntmssvc.dll


[2006.11.02 14:50:13 | 000,040,040 | —- | M] (NVIDIA Corporation) MD5=9E0BA19A28C498A6D323D065DB76DFFC — C:WindowsSystem32DriverStoreFileRepositorynvraid.inf_733654ffnvstor.sys
[2008.01.21 07:32:47 | 000,045,112 | —- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 — C:WindowsSystem32driversnvstor.sys
[2008.01.21 07:32:47 | 000,045,112 | —- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 — C:WindowsSystem32DriverStoreFileRepositorynvraid.inf_31c3d71dnvstor.sys
[2008.01.21 07:32:47 | 000,045,112 | —- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 — C:Windowswinsxsx86_nvraid.inf_31bf3856ad364e35_6.0.6001.18000_none_39dac327befea467nvstor.sys


[2006.11.02 14:45:33 | 000,027,648 | —- | M] (Microsoft Corporation) MD5=C31AE90F24870B9A51655C36A9EB4BF3 — C:WindowsSystem32proquota.exe
[2006.11.02 14:45:33 | 000,027,648 | —- | M] (Microsoft Corporation) MD5=C31AE90F24870B9A51655C36A9EB4BF3 — C:Windowswinsxsx86_microsoft-windows-proquota_31bf3856ad364e35_6.0.6000.16386_none_259035db957a1715proquota.exe


[2008.01.21 07:34:49 | 000,758,272 | —- | M] (Microsoft Corporation) MD5=02ED7B4DBC2A3232A389106DA7515C3D — C:Windowswinsxsx86_microsoft-windows-bits-client_31bf3856ad364e35_6.0.6001.18000_none_2390c4ecf9720b8cqmgr.dll
[2009.04.11 11:28:23 | 000,758,784 | —- | M] (Microsoft Corporation) MD5=93952506C6D67330367F7E7934B6A02F — C:WindowsERDNTcacheqmgr.dll
[2009.04.11 11:28:23 | 000,758,784 | —- | M] (Microsoft Corporation) MD5=93952506C6D67330367F7E7934B6A02F — C:WindowsSystem32qmgr.dll
[2009.04.11 11:28:23 | 000,758,784 | —- | M] (Microsoft Corporation) MD5=93952506C6D67330367F7E7934B6A02F — C:Windowswinsxsx86_microsoft-windows-bits-client_31bf3856ad364e35_6.0.6002.18005_none_257c3df8f693d6d8qmgr.dll


[2008.01.21 07:34:39 | 000,177,152 | —- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 — C:Windowswinsxsx86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6001.18000_none_380de25bd91b6f12scecli.dll
[2009.04.11 11:28:24 | 000,177,152 | —- | M] (Microsoft Corporation) MD5=8FC182167381E9915651267044105EE1 — C:WindowsERDNTcachescecli.dll
[2009.04.11 11:28:24 | 000,177,152 | —- | M] (Microsoft Corporation) MD5=8FC182167381E9915651267044105EE1 — C:WindowsSystem32scecli.dll
[2009.04.11 11:28:24 | 000,177,152 | —- | M] (Microsoft Corporation) MD5=8FC182167381E9915651267044105EE1 — C:Windowswinsxsx86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6002.18005_none_39f95b67d63d3a5escecli.dll


[2010.08.17 18:32:33 | 000,126,464 | —- | M] (Microsoft Corporation) MD5=3665F79026A3F91FBCA63F2C65A09B19 — C:Windowswinsxsx86_microsoft-windows-printing-spooler-core_31bf3856ad364e35_6.0.6001.18511_none_d641dcfdc18fec21spoolsv.exe
[2009.04.11 11:28:05 | 000,127,488 | —- | M] (Microsoft Corporation) MD5=524BFBEA40E6E404737CCBC754647A2E — C:Windowswinsxsx86_microsoft-windows-printing-spooler-core_31bf3856ad364e35_6.0.6002.18005_none_d8371c2dbeaa9062spoolsv.exe
[2008.01.21 07:34:33 | 000,125,952 | —- | M] (Microsoft Corporation) MD5=846CDF9A3CF4DA9B306ADFB7D55EE4C2 — C:Windowswinsxsx86_microsoft-windows-printing-spooler-core_31bf3856ad364e35_6.0.6001.18000_none_d64ba321c188c516spoolsv.exe
[2010.08.17 19:11:37 | 000,128,000 | —- | M] (Microsoft Corporation) MD5=8554097E5136C3BF9F69FE578A1B35F4 — C:WindowsERDNTcachespoolsv.exe
[2010.08.17 19:11:37 | 000,128,000 | —- | M] (Microsoft Corporation) MD5=8554097E5136C3BF9F69FE578A1B35F4 — C:WindowsSystem32spoolsv.exe
[2010.08.17 19:11:37 | 000,128,000 | —- | M] (Microsoft Corporation) MD5=8554097E5136C3BF9F69FE578A1B35F4 — C:Windowswinsxsx86_microsoft-windows-printing-spooler-core_31bf3856ad364e35_6.0.6002.18294_none_d7d4d063bef46cd2spoolsv.exe
[2010.08.17 19:20:09 | 000,128,000 | —- | M] (Microsoft Corporation) MD5=AAE98B295E88D439A6E0F6E8929424FB — C:Windowswinsxsx86_microsoft-windows-printing-spooler-core_31bf3856ad364e35_6.0.6002.22468_none_d882e000d7f61b4cspoolsv.exe
[2010.08.17 18:27:48 | 000,128,000 | —- | M] (Microsoft Corporation) MD5=E807FC542C295BA256CE3567829E02A6 — C:Windowswinsxsx86_microsoft-windows-printing-spooler-core_31bf3856ad364e35_6.0.6001.22743_none_d6ad0c7edac40f93spoolsv.exe


[2008.01.21 07:33:13 | 000,021,504 | —- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF — C:WindowsERDNTcachesvchost.exe
[2008.01.21 07:33:13 | 000,021,504 | —- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF — C:WindowsSystem32svchost.exe
[2008.01.21 07:33:13 | 000,021,504 | —- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF — C:Windowswinsxsx86_microsoft-windows-services-svchost_31bf3856ad364e35_6.0.6001.18000_none_b5bb59a1054dbde5svchost.exe


[2008.04.26 13:08:16 | 000,891,448 | —- | M] (Microsoft Corporation) MD5=01EC1E92595F839BEE70D439C46796E3 — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22167_none_b36dd19b7fae39c7tcpip.sys
[2009.04.11 11:33:02 | 000,897,000 | —- | M] (Microsoft Corporation) MD5=0E6B0885C3D5E4643ED2D043DE3433D8 — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18005_none_b5098b5e63880c42tcpip.sys
[2009.12.09 01:52:30 | 000,897,624 | —- | M] (Microsoft Corporation) MD5=1ACBB7A47E78F4CC82D2EFFB72901528 — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18377_none_b2d96a966698ad63tcpip.sys
[2009.08.16 02:30:53 | 000,816,640 | —- | M] (Microsoft Corporation) MD5=2512B4D1353370D6688B1AF1F5AFA1CF — C:Windowswinsxsx86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.21108_none_6030d425ab49af00tcpip.sys
[2009.08.14 22:01:55 | 000,900,168 | —- | M] (Microsoft Corporation) MD5=2608E71AAD54564647D4BB984E1925AA — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22497_none_b34d67897fc6850ftcpip.sys
[2010.02.18 16:51:51 | 000,818,688 | —- | M] (Microsoft Corporation) MD5=2C1F7005AA3B62721BFDB307BD5F5010 — C:Windowswinsxsx86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.21226_none_6019359fab5bb15btcpip.sys
[2010.02.18 19:49:38 | 000,898,952 | —- | M] (Microsoft Corporation) MD5=2EAE4500984C2F8DACFB977060300A15 — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18427_none_b30f7c1866701ed5tcpip.sys
[2009.08.14 19:24:47 | 000,813,568 | —- | M] (Microsoft Corporation) MD5=300208927321066EA53761FDC98747C6 — C:Windowswinsxsx86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.16908_none_5fa75f38922bdbf4tcpip.sys
[2009.12.09 01:15:00 | 000,907,832 | —- | M] (Microsoft Corporation) MD5=46E6685F3E92AEC743773ADD4CD54F57 — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22283_none_b53aaa1b7ce8560dtcpip.sys
[2010.02.18 19:07:16 | 000,904,576 | —- | M] (Microsoft Corporation) MD5=48CBE6D53632D0067C2D6B20F90D84CA — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18209_none_b50d905263846bectcpip.sys
[2010.02.18 17:05:37 | 000,815,104 | —- | M] (Microsoft Corporation) MD5=4A82FA8F0DF67AA354580C3FAAF8BDE3 — C:Windowswinsxsx86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.17021_none_5f8a957c924295b7tcpip.sys
[2009.12.09 01:37:09 | 000,900,696 | —- | M] (Microsoft Corporation) MD5=5653230D480A9C54D169E1B080B72CF5 — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22577_none_b36309477fb64a54tcpip.sys
[2010.06.16 20:55:58 | 000,902,032 | —- | M] (Microsoft Corporation) MD5=6216A954ED7045B62880A92D6C9B9FC7 — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0tcpip.sys
[2009.08.14 21:27:34 | 000,904,776 | —- | M] (Microsoft Corporation) MD5=65877AA1B6A7CB797488E831698973E9 — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18091_none_b4a43aea63d4a25ftcpip.sys
[2010.06.16 21:39:32 | 000,912,776 | —- | M] (Microsoft Corporation) MD5=6A10AFCE0B38371064BE41C1FBFD3C6B — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22425_none_b57d8e037cb5db63tcpip.sys
[2010.06.16 20:59:54 | 000,898,952 | —- | M] (Microsoft Corporation) MD5=782568AB6A43160A159B6215B70BCCE9 — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18493_none_b2bfcb7c66ac7d10tcpip.sys
[2008.04.26 13:26:49 | 000,891,448 | —- | M] (Microsoft Corporation) MD5=82E266BEE5F0167E41C6ECFDD2A79C02 — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18063_none_b2e033a8669434a1tcpip.sys
[2009.12.08 22:58:13 | 000,813,568 | —- | M] (Microsoft Corporation) MD5=8734BD051FFDCBF8425CF222141C3741 — C:Windowswinsxsx86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.16973_none_5f56ae52926920d8tcpip.sys
[2009.08.14 22:07:56 | 000,897,608 | —- | M] (Microsoft Corporation) MD5=8A7AD2A214233F684242F289ED83EBC3 — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18311_none_b3144862666d6db3tcpip.sys
[2010.02.18 22:36:50 | 000,902,024 | —- | M] (Microsoft Corporation) MD5=93A5655CD9CD2F080EF1CB71A3666215 — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60tcpip.sys
[2010.06.16 21:04:57 | 000,905,088 | —- | M] (Microsoft Corporation) MD5=A474879AFA4A596B3A531F3E69730DBF — C:WindowsERDNTcachetcpip.sys
[2010.06.16 21:04:57 | 000,905,088 | —- | M] (Microsoft Corporation) MD5=A474879AFA4A596B3A531F3E69730DBF — C:WindowsSystem32driverstcpip.sys
[2010.06.16 21:04:57 | 000,905,088 | —- | M] (Microsoft Corporation) MD5=A474879AFA4A596B3A531F3E69730DBF — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18272_none_b4baded863c37e22tcpip.sys
[2009.12.08 22:45:32 | 000,816,640 | —- | M] (Microsoft Corporation) MD5=CA3A5756672013A66BB9D547A5A62DCA — C:Windowswinsxsx86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.21175_none_5fe223d3ab852692tcpip.sys
[2010.02.18 19:22:11 | 000,910,216 | —- | M] (Microsoft Corporation) MD5=D9F5DD5BBC8348E8F8220CCBF14C022E — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22341_none_b563eb1d7cc9b0c2tcpip.sys
[2009.12.09 01:01:08 | 000,904,776 | —- | M] (Microsoft Corporation) MD5=DA467E7619AE5F4588E6262C13C8940A — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18160_none_b4c3ac4a63bd325ctcpip.sys
[2008.01.21 07:34:55 | 000,891,448 | —- | M] (Microsoft Corporation) MD5=FC6E2835D667774D409C7C7021EAF9C4 — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18000_none_b31e1252666640f6tcpip.sys
[2009.08.14 21:33:50 | 000,905,784 | —- | M] (Microsoft Corporation) MD5=FF71856BD4CD6D4367F9FD84BE79A874 — C:Windowswinsxsx86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22200_none_b58e289d7caa2a80tcpip.sys


[2009.04.11 11:28:24 | 000,449,024 | —- | M] (Microsoft Corporation) MD5=BB95DA09BEF6E7A131BFF3BA5032090D — C:WindowsERDNTcachetermsrv.dll
[2009.04.11 11:28:24 | 000,449,024 | —- | M] (Microsoft Corporation) MD5=BB95DA09BEF6E7A131BFF3BA5032090D — C:WindowsSystem32termsrv.dll
[2009.04.11 11:28:24 | 000,449,024 | —- | M] (Microsoft Corporation) MD5=BB95DA09BEF6E7A131BFF3BA5032090D — C:Windowswinsxsx86_microsoft-windows-t..teconnectionmanager_31bf3856ad364e35_6.0.6002.18005_none_908abad45165e2aetermsrv.dll
[2008.01.21 07:33:51 | 000,448,512 | —- | M] (Microsoft Corporation) MD5=D605031E225AACCBCEB5B76A4F1603A6 — C:Windowswinsxsx86_microsoft-windows-t..teconnectionmanager_31bf3856ad364e35_6.0.6001.18000_none_8e9f41c854441762termsrv.dll


[2008.01.21 07:34:37 | 000,025,088 | —- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 — C:WindowsERDNTcacheuserinit.exe
[2008.01.21 07:34:37 | 000,025,088 | —- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 — C:WindowsSystem32userinit.exe
[2008.01.21 07:34:37 | 000,025,088 | —- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 — C:Windowswinsxsx86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6001.18000_none_dc28ba15d1aff80buserinit.exe


[2008.01.21 07:34:36 | 000,179,200 | —- | M] (Microsoft Corporation) MD5=B304D47D5744BA20FCB99FB8B2C07B0B — C:WindowsERDNTcachews2_32.dll
[2008.01.21 07:34:36 | 000,179,200 | —- | M] (Microsoft Corporation) Unable to obtain MD5 — C:WindowsSystem32ws2_32.dll
[2008.01.21 07:34:36 | 000,179,200 | —- | M] (Microsoft Corporation) Unable to obtain MD5 — C:Windowswinsxsx86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.0.6001.18000_none_f2b7b0c2ce5605c4ws2_32.dll


[2009.03.08 16:31:42 | 000,348,160 | —- | M] (Microsoft Corporation) Unable to obtain MD5 — C:WindowsSystem32dxtmsft.dll
[2009.03.08 16:31:37 | 000,216,064 | —- | M] (Microsoft Corporation) Unable to obtain MD5 — C:WindowsSystem32dxtrans.dll
[2009.04.11 11:27:47 | 000,241,128 | —- | M] (Microsoft Corporation) Unable to obtain MD5 — C:WindowsSystem32rsaenh.dll
[2009.04.11 11:28:23 | 000,228,352 | —- | M] (Microsoft Corporation) Unable to obtain MD5 — C:WindowsSystem32SLC.dll
[2 C:Windowssystem32*.tmp files -> C:Windowssystem32*.tmp -> ]


[2008.01.21 08:31:11 | 015,716,352 | —- | M] () — C:WindowsSystem32configCOMPONENTS.SAV
[2008.01.21 08:31:01 | 000,102,400 | —- | M] () — C:WindowsSystem32configDEFAULT.SAV
[2008.01.21 08:31:12 | 000,020,480 | —- | M] () — C:WindowsSystem32configSECURITY.SAV
[2006.11.02 15:34:08 | 010,133,504 | —- | M] () — C:WindowsSystem32configSOFTWARE.SAV
[2006.11.02 15:34:08 | 001,826,816 | —- | M] () — C:WindowsSystem32configSYSTEM.SAV


[2010.11.10 02:49:50 | 004,323,040 | —- | M] (Logitech Inc.) — C:WindowsSystem32driverslvuvc.sys

========== Alternate Data Streams ==========

@Alternate Data Stream — 144 bytes -> C:ProgramDataTemp:B623B5B8
@Alternate Data Stream — 131 bytes -> C:ProgramDataTemp:A42A9F39
@Alternate Data Stream — 130 bytes -> C:ProgramDataTemp:F880DE59
@Alternate Data Stream — 124 bytes -> C:ProgramDataTemp:5D7E5A8F
@Alternate Data Stream — 122 bytes -> C:ProgramDataTemp:793F316E
@Alternate Data Stream — 121 bytes -> C:ProgramDataTemp:7CACEF61
@Alternate Data Stream — 120 bytes -> C:ProgramDataTemp:4CF61E54
@Alternate Data Stream — 117 bytes -> C:ProgramDataTemp:F3176E45
@Alternate Data Stream — 117 bytes -> C:ProgramDataTemp:798A3728
@Alternate Data Stream — 116 bytes -> C:ProgramDataTemp:4D066AD2
@Alternate Data Stream — 109 bytes -> C:ProgramDataTemp:DAFD38AE
@Alternate Data Stream — 109 bytes -> C:ProgramDataTemp:AB689DEA

Добро пожаловать

На нашем сайте размещены инструкции и программы, которые помогут вам абсолютно бесплатно и самостоятельно удалить навязчивую рекламу, вирусы и трояны.

Поиск

Важные инструкции

Как восстановить зашифрованные файлы (Инструкция)
Удалить всплывающие окна, рекламу, уведомления в Chrome
Рекламный вирус в Планировщике заданий
Проверка на вирусы Андроид телефона
Как удалить вирус с телефона Андроид (Инструкция)
Установлено в соответствии с корпоративным правилом (Удалить из Хрома)

СПАЙВАРЕ РУ

  • О Спайваре Ру
  • Контакты
  • Реклама на сайте
  • Политика конфиденциальности
  • Правила использования

Нужна помощь?

Задайте свой вопрос прямо сейчас кликнув по следующей ссылке Задать вопрос.

Или обратитесь на наш форум, где команда Spyware-ru поможет вам. Узнайте, как попросить о помощи здесь.

Ссылки

  • Инструкции
  • Скачать программы
  • Помощь в удалении вирусов
  • Как вылечить компьютер
Copyright © 2008 - 2024 Spyware-RU.com (en)