• Инструкции
    • Как использовать
      • Программы
    • Как удалить
      • Шпионское и рекламное ПО (adware и spyware)
      • Поддельное антиспайваре
      • Руткиты
      • Трояны
      • Кейлоггеры
  • Скачать программы
  • Вопросы и Ответы
  • Форумы

SPYWARE-RU.COM

Меню
  • Инструкции
    • Как использовать
      • Программы
    • Как удалить
      • Шпионское и рекламное ПО (adware и spyware)
      • Поддельное антиспайваре
      • Руткиты
      • Трояны
      • Кейлоггеры
  • Скачать программы
  • Вопросы и Ответы
  • Форумы
В начало › На рабочем столе выскакивает порно баннер
Adguard
 

На рабочем столе выскакивает порно баннер

Удаление вирусов и троянов. Защита компьютера. › Помощь в удалении вирусов, троянов, рекламы и других зловредов › На рабочем столе выскакивает порно баннер

  • This topic has 1 ответ, 2 участника, and was last updated 16 years назад by Admin.
Просмотр 2 сообщений - с 1 по 2 (из 2 всего)
  • Автор
    Сообщения
  • 25 сентября, 2009 в 8:52 пп #17147
    terrible
    Participant
    • Темы:1
    • Сообщений:1
    • ☆

    Здравствуйте, помогите пожалуйста! На рабочем столе стали выскакивать порно баннеры, не знаю что делать, все перепробовал.
    Вот скриншот и логи от RSIT:

    log.txt

    Logfile of random’s system information tool 1.06 (written by random/random)
    Run by Master Terrible at 2009-09-25 21:43:42
    Microsoft Windows XP Professional Service Pack 3
    System drive F: has 10 GB (11%) free of 93 GB
    Total RAM: 2047 MB (68% free)

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 21:44, on 2009-09-25
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
    Boot mode: Normal

    Running processes:
    F:WINDOWSSystem32smss.exe
    F:WINDOWSsystem32winlogon.exe
    F:WINDOWSsystem32services.exe
    F:WINDOWSsystem32lsass.exe
    F:WINDOWSsystem32Ati2evxx.exe
    F:WINDOWSsystem32svchost.exe
    F:WINDOWSSystem32svchost.exe
    F:WINDOWSsystem32spoolsv.exe
    F:WINDOWSsystem32svchost.exe
    F:WINDOWSsystem32Ati2evxx.exe
    F:WINDOWSsystem32ctfmon.exe
    F:WINDOWSsystem32wscntfy.exe
    F:Program FilesATI TechnologiesATI.ACECore-StaticMOM.exe
    F:Program FilesDAEMON Tools Litedaemon.exe
    F:Program FilesVirtual CD v9SystemVC9Tray.exe
    F:Program FilesATI TechnologiesATI.ACECore-Staticccc.exe
    F:WINDOWSexplorer.exe
    F:Program FilesKaspersky LabKaspersky Anti-Virus 7.0avp.exe
    F:Program FilesKaspersky LabKaspersky Anti-Virus 7.0avp.exe
    F:Program FilesOperaopera.exe
    F:PROGRA~1PANICW~1POP-UP~1POPUPS~1.EXE
    F:Program FilesTotal_CommanderTotalcmd.exe
    F:DownloadsRSIT.exe
    F:Program Filestrend microMaster Terrible.exe

    R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 — HKCUSoftwareMicrosoftInternet Connection Wizard,ShellNext = http://82.98.235.214/?source=mercury_p&affid=154347&guid=5342D2E81D7A451BA6ACA86EB3346A7F&uid=768E564404D611DEB65F154347CFFFFF&rid=zdez&url=&v=1176&m=an2g&rv=10638
    R0 — HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Ссылки
    O2 — BHO: btorbit.com — {000123B4-9B42-4900-B3F7-F4B073EFC214} — F:Program FilesOrbitdownloaderorbitcth.dll
    O2 — BHO: (no name) — {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} — (no file)
    O2 — BHO: Java(tm) Plug-In SSV Helper — {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} — F:Program FilesJavajre6binssv.dll
    O2 — BHO: IE 4.x-6.x BHO for Download Master — {9961627E-4059-41B4-8E0E-A7D6B3854ADF} — F:PROGRA~1DOWNLO~1dmiehlp.dll
    O2 — BHO: Google Toolbar Helper — {AA58ED58-01DD-4D91-8333-CF10577473F7} — F:Program FilesGooglegoogletoolbar1.dll
    O2 — BHO: Java(tm) Plug-In 2 SSV Helper — {DBC80044-A445-435b-BC74-9C25C1C588A9} — F:Program FilesJavajre6binjp2ssv.dll
    O2 — BHO: JQSIEStartDetectorImpl — {E7E6F031-17CE-4C07-BC86-EABFE594F69C} — F:Program FilesJavajre6libdeployjqsiejqs_plugin.dll
    O3 — Toolbar: DM Bar — {0E1230F8-EA50-42A9-983C-D22ABC2EED3C} — F:Program FilesDownload Masterdmbar.dll
    O3 — Toolbar: (no name) — {E0E899AB-F487-11D5-8D29-0050BA6940E3} — (no file)
    O4 — HKLM..Run: [BigDog305] F:WINDOWSVM305_STI.EXE VIMICRO USB PC Camera (ZC0305)
    O4 — HKLM..Run: [StartCCC] «F:Program FilesATI TechnologiesATI.ACECore-StaticCLIStart.exe» MSRun
    O4 — HKLM..Run: [VC9Player] F:Program FilesVirtual CD v9SystemVC9Play.exe
    O4 — HKLM..Run: [SDFix] F:SDFixRunThis.bat /second
    O4 — HKLM..Run: [AVP] «F:Program FilesKaspersky LabKaspersky Anti-Virus 7.0avp.exe»
    O4 — HKCU..Run: [DAEMON Tools Lite] «F:Program FilesDAEMON Tools Litedaemon.exe» -autorun
    O4 — HKCU..Run: [ctfmon.exe] F:WINDOWSsystem32ctfmon.exe
    O4 — HKCU..Run: [ICQ] «F:Program FilesICQ6.5ICQ.exe» silent
    O4 — HKCU..Run: [AlcoholAutomount] «F:Program FilesAlcohol SoftAlcohol 120axcmd.exe» /automount
    O4 — HKCU..Run: [SUPERAntiSpyware] F:Program FilesSUPERAntiSpywareSUPERAntiSpyware.exe
    O4 — HKCU..Run: [PopUpStopperProfessional] «F:PROGRA~1PANICW~1POP-UP~1POPUPS~1.EXE»
    O4 — HKUSS-1-5-19..Run: [CTFMON.EXE] F:WINDOWSsystem32CTFMON.EXE (User ‘LOCAL SERVICE’)
    O4 — HKUSS-1-5-20..Run: [CTFMON.EXE] F:WINDOWSsystem32CTFMON.EXE (User ‘NETWORK SERVICE’)
    O4 — HKUSS-1-5-18..Run: [CTFMON.EXE] F:WINDOWSsystem32CTFMON.EXE (User ‘SYSTEM’)
    O4 — HKUS.DEFAULT..Run: [CTFMON.EXE] F:WINDOWSsystem32CTFMON.EXE (User ‘Default user’)
    O4 — Startup: HardCopy Pro.lnk = F:Program FilesHardCopy ProHardCopy Pro.exe
    O8 — Extra context menu item: &Экспорт в Microsoft Excel — res://F:PROGRA~1MICROS~2Office12EXCEL.EXE/3000
    O8 — Extra context menu item: + &Mass Downloader: загрузить этот файл — F:Program FilesMass DownloaderAdd_Url.htm
    O8 — Extra context menu item: + Mass Downloader: загрузить &все файлы — F:Program FilesMass DownloaderAdd_All.htm
    O9 — Extra button: Mass Downloader — {0FD01980-CCCB-11D3-80D4-0000E80E2EDE} — F:Program FilesMass Downloadermassdown.exe (file missing)
    O9 — Extra ‘Tools’ menuitem: &Mass Downloader — {0FD01980-CCCB-11D3-80D4-0000E80E2EDE} — F:Program FilesMass Downloadermassdown.exe (file missing)
    O9 — Extra button: Cтатистика Веб-Антивируса — {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} — F:Program FilesKaspersky LabKaspersky Anti-Virus 7.0SCIEPlgn.dll
    O9 — Extra button: Download Master — {8DAE90AD-4583-4977-9DD4-4360F7A45C74} — F:Program FilesDownload Masterdmaster.exe
    O9 — Extra ‘Tools’ menuitem: &Download Master — {8DAE90AD-4583-4977-9DD4-4360F7A45C74} — F:Program FilesDownload Masterdmaster.exe
    O9 — Extra button: Research — {92780B25-18CC-41C8-B9BE-3C9C571A8263} — F:PROGRA~1MICROS~2Office12REFIEBAR.DLL
    O9 — Extra button: ICQ6 — {E59EB121-F339-4851-A3BA-FE49C35617C2} — F:Program FilesICQ6.5ICQ.exe
    O9 — Extra ‘Tools’ menuitem: ICQ6 — {E59EB121-F339-4851-A3BA-FE49C35617C2} — F:Program FilesICQ6.5ICQ.exe
    O9 — Extra button: Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — F:Program FilesMessengermsmsgs.exe
    O9 — Extra ‘Tools’ menuitem: Windows Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — F:Program FilesMessengermsmsgs.exe
    O16 — DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) — http://fpdownload.adobe.com/pub/shockwave/cabs/flash/swflash.cab
    O17 — HKLMSystemCCSServicesTcpip..{94093126-8285-4E7A-BAF7-1B4616F15839}: NameServer = 213.177.96.1 213.177.97.1
    O18 — Protocol: skype4com — {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} — F:PROGRA~1COMMON~1SkypeSKYPE4~1.DLL
    O20 — Winlogon Notify: !SASWinLogon — F:Program FilesSUPERAntiSpywareSASWINLO.dll
    O23 — Service: Ad-Aware 2007 Service (aawservice) — Lavasoft AB — F:Program FilesLavasoftAd-Aware 2007aawservice.exe
    O23 — Service: Ati HotKey Poller — ATI Technologies Inc. — F:WINDOWSsystem32Ati2evxx.exe
    O23 — Service: ATI Smart — Unknown owner — F:WINDOWSsystem32ati2sgag.exe
    O23 — Service: Kaspersky Anti-Virus 7.0 (AVP) — Kaspersky Lab — F:Program FilesKaspersky LabKaspersky Anti-Virus 7.0avp.exe
    O23 — Service: Журнал событий (Eventlog) — Корпорация Майкрософт — F:WINDOWSsystem32services.exe
    O23 — Service: InstallDriver Table Manager (IDriverT) — Macrovision Corporation — F:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe
    O23 — Service: Служба COM записи компакт-дисков IMAPI (ImapiService) — Корпорация Майкрософт — F:WINDOWSsystem32imapi.exe
    O23 — Service: Java Quick Starter (JavaQuickStarterService) — Sun Microsystems, Inc. — F:Program FilesJavajre6binjqs.exe
    O23 — Service: NetMeeting Remote Desktop Sharing (mnmsrvc) — Корпорация Майкрософт — F:WINDOWSsystem32mnmsrvc.exe
    O23 — Service: Plug and Play (PlugPlay) — Корпорация Майкрософт — F:WINDOWSsystem32services.exe
    O23 — Service: Диспетчер сеанса справки для удаленного рабочего стола (RDSessMgr) — Корпорация Майкрософт — F:WINDOWSsystem32sessmgr.exe
    O23 — Service: Смарт-карты (SCardSvr) — Корпорация Майкрософт — F:WINDOWSSystem32SCardSvr.exe
    O23 — Service: Журналы и оповещения производительности (SysmonLog) — Корпорация Майкрософт — F:WINDOWSsystem32smlogsvc.exe
    O23 — Service: TuneUp Drive Defrag Service (TuneUp.Defrag) — TuneUp Software GmbH — F:WINDOWSSystem32TuneUpDefragService.exe
    O23 — Service: Virtual CD v9 Management Service (VC9SecS) — H+H Software GmbH — F:Program FilesVirtual CD v9Systemvc9secs.exe
    O23 — Service: Теневое копирование тома (VSS) — Корпорация Майкрософт — F:WINDOWSSystem32vssvc.exe
    O23 — Service: Адаптер производительности WMI (WmiApSrv) — Корпорация Майкрософт — F:WINDOWSsystem32wbemwmiapsrv.exe

    —
    End of file — 8347 bytes

    ======Scheduled tasks folder======

    F:WINDOWStasks1-Click Maintenance.job

    ======Registry dump======

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{000123B4-9B42-4900-B3F7-F4B073EFC214}]
    Octh Class — F:Program FilesOrbitdownloaderorbitcth.dll [2007-09-20 187504]

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{2F364306-AA45-47B5-9F9D-39A8B94E7EF7}]

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
    Java(tm) Plug-In SSV Helper — F:Program FilesJavajre6binssv.dll [2009-06-03 320920]

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{9961627E-4059-41B4-8E0E-A7D6B3854ADF}]
    IE 4.x-6.x BHO for Download Master — F:PROGRA~1DOWNLO~1dmiehlp.dll [2007-07-20 152064]

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AA58ED58-01DD-4D91-8333-CF10577473F7}]
    &Google — F:Program FilesGooglegoogletoolbar1.dll [2008-08-25 49152]

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{DBC80044-A445-435b-BC74-9C25C1C588A9}]
    Java(tm) Plug-In 2 SSV Helper — F:Program FilesJavajre6binjp2ssv.dll [2009-06-03 34816]

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
    JQSIEStartDetectorImpl Class — F:Program FilesJavajre6libdeployjqsiejqs_plugin.dll [2009-06-03 73728]

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
    {0E1230F8-EA50-42A9-983C-D22ABC2EED3C} — DM Bar — F:Program FilesDownload Masterdmbar.dll [2007-05-15 180224]
    {E0E899AB-F487-11D5-8D29-0050BA6940E3}

    [HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
    «BigDog305″=F:WINDOWSVM305_STI.EXE [2007-04-09 57344]
    «StartCCC»=F:Program FilesATI TechnologiesATI.ACECore-StaticCLIStart.exe [2009-05-20 98304]
    «VC9Player»=F:Program FilesVirtual CD v9SystemVC9Play.exe [2009-04-21 202056]
    «SDFix»=F:SDFixRunThis.bat [2008-10-20 868385]
    «AVP»=F:Program FilesKaspersky LabKaspersky Anti-Virus 7.0avp.exe [2007-06-28 218376]

    [HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
    «DAEMON Tools Lite»=F:Program FilesDAEMON Tools Litedaemon.exe [2008-12-29 687560]
    «ctfmon.exe»=F:WINDOWSsystem32ctfmon.exe [2008-04-14 15360]
    «ICQ»=F:Program FilesICQ6.5ICQ.exe [2009-03-01 172792]
    «AlcoholAutomount»=F:Program FilesAlcohol SoftAlcohol 120axcmd.exe [2007-07-02 220544]
    «SUPERAntiSpyware»=F:Program FilesSUPERAntiSpywareSUPERAntiSpyware.exe [2008-09-03 1576176]
    «PopUpStopperProfessional»=F:PROGRA~1PANICW~1POP-UP~1POPUPS~1.EXE [2005-06-01 516096]

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregC-Media Mixer]
    Mixer.exe /startup []

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregCTFMON.EXE]
    F:WINDOWSsystem32ctfmon.exe [2008-04-14 15360]

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregDAEMON Tools Lite]
    F:Program FilesDAEMON Tools Litedaemon.exe [2008-12-29 687560]

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregInfium]
    F:Program FilesQIP Infiuminfium.exe [2008-12-09 5062144]

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregOODefragTray]
    F:WINDOWSsystem32oodtray.exe [2007-05-11 2512392]

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregQIP2005]
    F:Program FilesQIPqip.exe [2008-07-01 3256320]

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregRTHDCPL]
    F:WINDOWSRTHDCPL.EXE [2006-11-14 16270848]

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregSkype]
    F:Program FilesSkypePhoneSkype.exe [2008-07-23 21738792]

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregSkyTel]
    F:WINDOWSSkyTel.EXE [2006-05-16 2879488]

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregStartCCC]
    F:Program FilesATI TechnologiesATI.ACECore-StaticCLIStart.exe [2009-05-20 98304]

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregTermometr]
    J:DownloadsprogsTermometrTermometr.exe [2008-11-27 797696]

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregWindow Hide Tool]
    F:Program FilesWindow Hide ToolWindow Hide Tool.exe [2008-01-18 307200]

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregWService]
    F:WINDOWSsystem32WService.EXE [2005-11-23 40960]

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupfolderF:^Documents and Settings^Master Terrible^Главное меню^Программы^Автозагрузка^iNetCalc.lnk]
    F:PROGRA~1iNetCalciNetCalc.exe []

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupfolderF:^Documents and Settings^Master Terrible^Главное меню^Программы^Автозагрузка^Volume.lnk]
    J:DOWNLO~2progsvolumevolume.exe [2005-01-12 19456]

    [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupfolderF:^Documents and Settings^Master Terrible^Главное меню^Программы^Автозагрузка^Сократ Персональный 4.1.lnk]
    F:PROGRA~1ARSENA~14024E~1.1spv.exe [2001-10-19 475136]

    F:Documents and SettingsMaster TerribleГлавное менюПрограммыАвтозагрузка
    HardCopy Pro.lnk — F:Program FilesHardCopy ProHardCopy Pro.exe

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotify!SASWinLogon]
    F:Program FilesSUPERAntiSpywareSASWINLO.dll [2008-07-23 352256]

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyAtiExtEvent]
    F:WINDOWSsystem32Ati2evxx.dll [2009-05-16 155648]

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyklogon]
    F:WINDOWSsystem32klogon.dll [2007-06-28 206088]

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionShellServiceObjectDelayLoad]
    WPDShServiceObj — {AAA288BA-9A4C-45B0-95D7-94D524869DB5} — F:WINDOWSsystem32WPDShServiceObj.dll [2006-10-18 133632]
    UPnPMonitor — {e57ce738-33e8-4c51-8354-bb4de9d215d1} — F:WINDOWSsystem32upnpui.dll [2008-04-14 239616]

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerShellExecuteHooks]
    «{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}»=F:Program FilesSUPERAntiSpywareSASSEH.DLL [2008-05-13 77824]

    [HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlLsa]
    «authentication packages»=msv1_0
    F:WINDOWSsystem32ssqPhIBu

    [HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalaawservice]

    [HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkaawservice]

    [HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
    «dontdisplaylastusername»=0
    «legalnoticecaption»=
    «legalnoticetext»=
    «shutdownwithoutlogon»=0
    «undockwithoutlogon»=1

    [HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
    «NoDrives»=0

    [HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
    «NoDriveTypeAutoRun»=
    «NoDrives»=

    [HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
    «%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
    «F:Program FilesQIPqip.exe»=»F:Program FilesQIPqip.exe:*:Enabled:Quiet Internet Pager»
    «F:Program FilesuTorrentutorrent.exe»=»F:Program FilesuTorrentutorrent.exe:*:Enabled:µTorrent»
    «F:Program FilesCyberLinkPowerDVDPowerDVD.exe»=»F:Program FilesCyberLinkPowerDVDPowerDVD.exe:*:Disabled:CyberLink PowerDVD»
    «D:GamesMinyDendyЭмуляторыDandyNESTCL95.EXE»=»D:GamesMinyDendyЭмуляторыDandyNESTCL95.EXE:*:Disabled:NESTCL95»
    «F:Program FilesAvant Browseravant.exe»=»F:Program FilesAvant Browseravant.exe:*:Enabled:Avant Browser»
    «F:Program FilesOrbitdownloaderorbitdm.exe»=»F:Program FilesOrbitdownloaderorbitdm.exe:*:Enabled:Orbit»
    «F:Program FilesOrbitdownloaderorbitnet.exe»=»F:Program FilesOrbitdownloaderorbitnet.exe:*:Enabled:Orbit»
    «F:Program FilesOperaopera.exe»=»F:Program FilesOperaopera.exe:*:Enabled:Opera Internet Browser»
    «F:WINDOWSsystem32dpvsetup.exe»=»F:WINDOWSsystem32dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test»
    «F:Program FilesKaspersky LabKaspersky Anti-Virus 7.0avp.exe»=»F:Program FilesKaspersky LabKaspersky Anti-Virus 7.0avp.exe:*:Enabled:Kaspersky Anti-Virus»
    «G:DownloadsGamesteeworlds-0.4.3-win32teeworlds_srv.exe»=»G:DownloadsGamesteeworlds-0.4.3-win32teeworlds_srv.exe:*:Enabled:teeworlds_srv»
    «F:Program FilesSonyStationLaunchPadLaunchPad.exe»=»F:Program FilesSonyStationLaunchPadLaunchPad.exe:*:Enabled:LaunchPad»
    «F:WINDOWSNetwork Diagnosticxpnetdiag.exe»=»F:WINDOWSNetwork Diagnosticxpnetdiag.exe:*:Disabled:@xpsp3res.dll,-20000»
    «F:Program FilesDMBooksDMBooks.exe»=»F:Program FilesDMBooksDMBooks.exe:*:Enabled:Запуск DMBooks»
    «J:GamesGuitar Hero IIIGH3.exe»=»J:GamesGuitar Hero IIIGH3.exe:*:Enabled:Guitar Hero III»
    «F:Documents and SettingsAll UsersApplication DataKaspersky Lab Setup FilesKaspersky Internet Security 2009Russiansetup.exe»=»F:Documents and SettingsAll UsersApplication DataKaspersky Lab Setup FilesKaspersky Internet Security 2009Russiansetup.exe:*:Enabled:Программа установки Kaspersky Internet Security 2009»
    «F:Program FilesMicrosoft OfficeOffice12OUTLOOK.EXE»=»F:Program FilesMicrosoft OfficeOffice12OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook»
    «D:Gamesvalvehl.exe»=»D:Gamesvalvehl.exe:*:Enabled:Half-Life Launcher»
    «G:Xtreme Counter-Strike 1.6 Final Release-2cstrike.exe»=»G:Xtreme Counter-Strike 1.6 Final Release-2cstrike.exe:*:Enabled:XTCS Counter-Strike 1.6 Final Release»
    «D:GamesNecromaniaNecromania.exe»=»D:GamesNecromaniaNecromania.exe:*:Enabled:Necromania»
    «F:Java_uploadingUploaderUploader.exe»=»F:Java_uploadingUploaderUploader.exe:*:Enabled:Uploader»
    «F:GamesDragonsDWarC2.exe»=»F:GamesDragonsDWarC2.exe:*:Enabled:Легенда: Наследие Драконов»
    «F:Games3Kingdomtksclient.exe»=»F:Games3Kingdomtksclient.exe:*:Enabled:Троецарствие»
    «F:Program FilesSkypePhoneSkype.exe»=»F:Program FilesSkypePhoneSkype.exe:*:Enabled:Skype»
    «F:Program FilesICQ6.5ICQ.exe»=»F:Program FilesICQ6.5ICQ.exe:*:Enabled:ICQ6»

    [HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
    «%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
    «%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»

    [HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{3dad5167-6f65-11dd-a0b9-001a4df103b2}]
    shellAutoRuncommand — H:setup.exe

    [HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{7aeaca60-c2de-11dd-866c-806d6172696f}]
    shellAutoRuncommand — E:PROGSSYS.EXE

    ======List of files/folders created in the last 1 months======

    2009-09-25 21:43:44 —-D—- F:Program Filestrend micro
    2009-09-25 21:43:42 —-D—- F:rsit
    2009-09-25 21:17:21 —-D—- F:ComboFix
    2009-09-25 21:17:12 —-A—- F:WINDOWSsystem32CF17350.exe
    2009-09-25 21:01:01 —-D—- F:Program FilesPanicware
    2009-09-25 20:48:08 —-D—- F:Program FilesLavasoft
    2009-09-25 20:35:01 —-A—- F:ComboFix.txt
    2009-09-25 20:27:25 —-SHD—- F:Config.Msi
    2009-09-25 20:26:53 —-D—- F:WINDOWSERDNT
    2009-09-25 20:26:53 —-D—- F:Qoobox
    2009-09-25 19:16:33 —-D—- F:WINDOWSERUNT
    2009-09-25 19:13:46 —-A—- F:WINDOWSntbtlog.txt
    2009-09-25 14:16:35 —-D—- F:SDFix
    2009-09-25 11:08:30 —-A—- F:WINDOWSsystem32NMSDVDX.dll
    2009-09-25 11:08:25 —-A—- F:WINDOWSsystem32NCTAudioPlayer2.dll
    2009-09-25 11:08:24 —-A—- F:WINDOWSsystem32NCTAudioFile2.dll
    2009-09-25 11:08:09 —-D—- F:Program FilesVirtual CD v9
    2009-09-25 02:12:58 —-A—- F:WINDOWSsystem32XAudio2_5.dll
    2009-09-25 02:12:57 —-A—- F:WINDOWSsystem32xactengine3_5.dll
    2009-09-25 02:12:56 —-A—- F:WINDOWSsystem32d3dcsx_42.dll
    2009-09-25 02:12:56 —-A—- F:WINDOWSsystem32D3DCompiler_42.dll
    2009-09-25 02:12:55 —-A—- F:WINDOWSsystem32d3dx11_42.dll
    2009-09-25 02:12:55 —-A—- F:WINDOWSsystem32d3dx10_42.dll
    2009-09-25 02:12:53 —-A—- F:WINDOWSsystem32D3DX9_42.dll
    2009-09-24 08:29:29 —-D—- F:CE
    2009-09-24 08:07:24 —-D—- F:Celtic Enchantment
    2009-09-02 01:19:29 —-D—- F:WINDOWSsystem32AGEIA
    2009-09-02 01:19:29 —-D—- F:Program FilesAGEIA Technologies
    2009-09-01 19:04:24 —-D—- F:Documents and SettingsAll UsersApplication DataATI
    2009-09-01 18:57:46 —-D—- F:ATI
    2009-08-28 18:54:10 —-D—- F:Program FilesAdobe
    2009-08-27 17:59:59 —-D—- F:Documents and SettingsAll UsersApplication DataDivinity 2
    2009-08-26 19:39:34 —-A—- F:WINDOWSMC14_RC_IS_Log.txt
    2009-08-26 19:37:04 —-A—- F:WINDOWSMC14_Help_IS_Log.txt
    2009-08-26 19:36:58 —-A—- F:WINDOWSMC14_IS_LOG.txt

    ======List of files/folders modified in the last 1 months======

    2009-09-25 21:44:46 —-D—- F:WINDOWSTemp
    2009-09-25 21:43:44 —-RD—- F:Program Files
    2009-09-25 21:40:05 —-D—- F:Downloads
    2009-09-25 21:17:26 —-D—- F:WINDOWSsystem32
    2009-09-25 20:51:17 —-D—- F:Documents and SettingsMaster TerribleApplication DatauTorrent
    2009-09-25 20:49:47 —-D—- F:WINDOWS
    2009-09-25 20:48:24 —-SHD—- F:WINDOWSInstaller
    2009-09-25 20:48:08 —-D—- F:WINDOWSsystem32drivers
    2009-09-25 20:47:27 —-D—- F:Program FilesCommon FilesWise Installation Wizard
    2009-09-25 20:47:22 —-D—- F:Documents and SettingsAll UsersApplication DataLavasoft
    2009-09-25 20:40:05 —-D—- F:Documents and SettingsAll UsersApplication DataKaspersky Lab
    2009-09-25 20:39:30 —-D—- F:Program FilesSUPERAntiSpyware
    2009-09-25 20:39:29 —-D—- F:Documents and SettingsMaster TerribleApplication DataSUPERAntiSpyware.com
    2009-09-25 20:29:50 —-A—- F:WINDOWSsystem.ini
    2009-09-25 20:28:27 —-A—- F:WINDOWSSchedLgU.Txt
    2009-09-25 19:59:21 —-D—- F:Program FilesAIMP2
    2009-09-25 19:57:07 —-SHD—- F:WINDOWSCSC
    2009-09-25 19:57:05 —-D—- F:WINDOWSsystem32CatRoot2
    2009-09-25 19:37:57 —-D—- F:System Volume Information
    2009-09-25 19:33:43 —-D—- F:Program FilesCommon Files
    2009-09-25 19:22:07 —-RSHDC—- F:WINDOWSsystem32dllcache
    2009-09-25 19:14:26 —-D—- F:WINDOWSsystem32Restore
    2009-09-25 12:54:11 —-D—- F:WINDOWSsystem32CatRoot
    2009-09-25 12:54:10 —-HD—- F:WINDOWSinf
    2009-09-25 12:05:21 —-D—- F:Program FilesGoogle
    2009-09-25 11:35:10 —-D—- F:WINDOWSPrefetch
    2009-09-25 11:08:09 —-HD—- F:Program FilesInstallShield Installation Information
    2009-09-25 02:12:59 —-D—- F:WINDOWSsystem32DirectX
    2009-09-24 19:02:53 —-RSD—- F:WINDOWSassembly
    2009-09-24 19:02:03 —-D—- F:Games
    2009-09-12 16:48:32 —-D—- F:FLASH
    2009-09-10 19:16:51 —-D—- F:Documents and SettingsAll UsersApplication DataAlawarWrapper
    2009-09-04 17:44:40 —-A—- F:WINDOWSsystem32XAPOFX1_3.dll
    2009-09-01 19:00:17 —-D—- F:WINDOWSWinSxS
    2009-09-01 18:59:45 —-D—- F:Program FilesATI Technologies
    2009-09-01 18:31:31 —-D—- F:Program FilesCheat Engine
    2009-08-27 16:58:24 —-D—- F:WINDOWSsystem32Samsung_USB_Drivers
    2009-08-26 19:50:44 —-D—- F:Program FilesSamsung
    2009-08-26 19:46:30 —-D—- F:Program FilesИгры от NevoSoft
    2009-08-26 19:40:32 —-D—- F:WINDOWSSHELLNEW
    2009-08-26 19:40:27 —-RSD—- F:WINDOWSFonts
    2009-08-26 19:34:37 —-D—- F:Program FilesGet-Styles 2.0
    2009-08-26 19:33:55 —-A—- F:WINDOWSODBC.INI

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R1 intelppm;Драйвер Intel процессора; F:WINDOWSsystem32DRIVERSintelppm.sys [2008-04-14 40704]
    R1 klif;Klif; ??F:WINDOWSsystem32driversklif.sys []
    R1 SASKUTIL;SASKUTIL; ??F:Program FilesSUPERAntiSpywareSASKUTIL.sys []
    R1 StarOpen;StarOpen; F:WINDOWSsystem32driversStarOpen.sys [2006-07-24 5632]
    R1 Tcpip6;Драйвер протокола IPv6 (Microsoft); F:WINDOWSsystem32DRIVERStcpip6.sys [2008-04-14 225664]
    R2 {95808DC4-FA4A-4C74-92FE-5B863F82066B};{95808DC4-FA4A-4C74-92FE-5B863F82066B}; ??F:Program FilesCyberLinkPowerDVD00.fcl []
    R2 acedrv11;acedrv11; F:WINDOWSsystem32driversacedrv11.sys [2008-07-30 277736]
    R2 Aspi32;Aspi32; F:WINDOWSSystem32driversaspi32.sys [2005-11-21 16512]
    R2 DgiVecp;Team MFP Comm Driver; F:WINDOWSSystem32DriversDgiVecp.sys [2003-07-29 40448]
    R2 Hardlock;Hardlock; ??F:WINDOWSsystem32drivershardlock.sys []
    R2 Haspnt;Haspnt; ??F:WINDOWSsystem32driversHaspnt.sys []
    R2 hl_mull;hl_mull; F:WINDOWSSystem32drivershl_mull.SYS [2007-06-21 67712]
    R2 lirsgt;lirsgt; F:WINDOWSsystem32DRIVERSlirsgt.sys [2008-12-02 25416]
    R2 Sentinel;Sentinel; F:WINDOWSSystem32DriversSENTINEL.SYS [1999-01-15 73216]
    R3 ati2mtag;ati2mtag; F:WINDOWSsystem32DRIVERSati2mtag.sys [2009-05-16 4069888]
    R3 FStarForce;FStarForce; F:WINDOWSsystem32DRIVERSFStarForce.sys [2009-04-08 8704]
    R3 HDAudBus;Драйвер шины Microsoft UAA для High Definition Audio; F:WINDOWSsystem32DRIVERSHDAudBus.sys [2008-04-13 144384]
    R3 hidusb;Драйвер класса HID Microsoft; F:WINDOWSsystem32DRIVERShidusb.sys [2008-04-14 10368]
    R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); F:WINDOWSsystem32driversRtkHDAud.sys [2006-11-15 4225920]
    R3 klim5;Kaspersky Anti-Virus NDIS Filter; F:WINDOWSsystem32DRIVERSklim5.sys [2007-04-04 24344]
    R3 mouhid;Драйвер мыши HID; F:WINDOWSsystem32DRIVERSmouhid.sys [2002-09-25 12160]
    R3 ROOTMODEM;Microsoft Legacy Modem Driver; F:WINDOWSSystem32DriversRootMdm.sys [2002-09-25 5888]
    R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; F:WINDOWSsystem32DRIVERSRtenicxp.sys [2006-08-14 83200]
    R3 SASENUM;SASENUM; ??F:Program FilesSUPERAntiSpywareSASENUM.SYS []
    R3 TClass2k;Tablet Class Driver; F:WINDOWSsystem32DRIVERSTClass2k.sys [2007-04-23 18432]
    R3 tunmp;Драйвер адаптера минипорта Microsoft Tun; F:WINDOWSsystem32DRIVERStunmp.sys [2008-04-14 12288]
    R3 UCTblHid;HID Tablet Port Driver; F:WINDOWSsystem32DRIVERSUCTblHid.sys [2007-05-31 12800]
    R3 usbehci;Драйвер минипорта Microsoft USB 2.0 расширенного хост-контроллера; F:WINDOWSsystem32DRIVERSusbehci.sys [2008-04-14 30208]
    R3 usbhub;USB2 концентратор; F:WINDOWSsystem32DRIVERSusbhub.sys [2008-04-14 59520]
    R3 usbuhci;Драйвер минипорта Microsoft USB универсального хост-контроллера; F:WINDOWSsystem32DRIVERSusbuhci.sys [2008-04-14 20608]
    R3 ZSMC0305;A4 TECH PC Camera V; F:WINDOWSSystem32DriversusbVM305.sys [2006-05-08 391688]
    R4 catchme;catchme; ??F:ComboFixcatchme.sys []
    S1 SASDIFSV;SASDIFSV; ??F:Program FilesSUPERAntiSpywareSASDIFSV.SYS []
    S2 atksgt;atksgt; F:WINDOWSsystem32DRIVERSatksgt.sys []
    S3 a9ypxuom;a9ypxuom; F:WINDOWSsystem32driversa9ypxuom.sys []
    S3 ajwnn38g;ajwnn38g; F:WINDOWSsystem32driversajwnn38g.sys []
    S3 AmdLLD;AMD Low Level Device Driver; F:WINDOWSsystem32DRIVERSAmdLLD.sys []
    S3 Arp1394;Протокол клиента 1394 ARP; F:WINDOWSsystem32DRIVERSarp1394.sys [2008-04-14 60800]
    S3 BlueletAudio;Bluetooth Audio Service; F:WINDOWSsystem32DRIVERSblueletaudio.sys [2005-05-31 20480]
    S3 BT;Bluetooth PAN Network Adapter; F:WINDOWSsystem32DRIVERSbtnetdrv.sys [2005-04-30 10804]
    S3 Btcsrusb;Bluetooth USB For Bluetooth Service; F:WINDOWSSystem32Driversbtcusb.sys [2005-05-31 23000]
    S3 BthEnum;Драйвер блока запроса Bluetooth; F:WINDOWSsystem32DRIVERSBthEnum.sys [2008-04-14 17024]
    S3 BTHidEnum;Bluetooth HID Enumerator; F:WINDOWSsystem32DRIVERSvbtenum.sys [2005-04-30 11860]
    S3 BTHMODEM;Драйвер для устройства связи по последовательному каналу Bluetooth; F:WINDOWSsystem32DRIVERSbthmodem.sys [2008-04-14 37888]
    S3 BthPan;Bluetooth Device (Personal Area Network); F:WINDOWSsystem32DRIVERSbthpan.sys [2008-04-14 101120]
    S3 BTHPORT;Драйвер порта Bluetooth; F:WINDOWSSystem32DriversBTHport.sys [2008-04-14 273408]
    S3 BTHUSB;Драйвер порта USB радиомодуля Bluetooth; F:WINDOWSSystem32DriversBTHUSB.sys [2008-04-14 18944]
    S3 CCDECODE;Closed Caption декодер; F:WINDOWSsystem32DRIVERSCCDECODE.sys [2008-04-14 17024]
    S3 cmpci;C-Media PCI Audio Driver (WDM); F:WINDOWSsystem32driverscmaudio.sys [2002-11-18 377358]
    S3 ctac32k;Creative AC3 Software Decoder; F:WINDOWSsystem32driversctac32k.sys [2006-08-11 502272]
    S3 ctaud2k;Creative Audio Driver (WDM); F:WINDOWSsystem32driversctaud2k.sys [2006-08-11 499584]
    S3 ctdvda2k;Creative DVD-Audio Device Driver; F:WINDOWSsystem32driversctdvda2k.sys [2005-11-10 340704]
    S3 ctprxy2k;Creative Proxy Driver; F:WINDOWSsystem32driversctprxy2k.sys [2006-08-11 7168]
    S3 ctsfm2k;Creative SoundFont Management Device Driver; F:WINDOWSsystem32driversctsfm2k.sys [2006-08-11 143872]
    S3 EagleNT;EagleNT; ??F:WINDOWSsystem32driversEagleNT.sys []
    S3 emupia;E-mu Plug-in Architecture Driver; F:WINDOWSsystem32driversemupia2k.sys [2006-08-11 78336]
    S3 ENTECH;ENTECH; ??F:WINDOWSsystem32DRIVERSENTECH.sys []
    S3 ha10kx2k;Creative Hardware Abstract Layer Driver; F:WINDOWSsystem32driversha10kx2k.sys [2006-08-11 766976]
    S3 hap16v2k;Creative P16V HAL Driver; F:WINDOWSsystem32drivershap16v2k.sys [2006-08-11 154112]
    S3 hap17v2k;Creative P17V HAL Driver; F:WINDOWSsystem32drivershap17v2k.sys [2006-08-11 180224]
    S3 HdAudAddService;ATI Function Driver for High Definition Audio Service; F:WINDOWSsystem32driversAtiHdAud.sys [2006-12-28 84992]
    S3 HH9Help.sys;HH9Help.sys; ??F:WINDOWSsystem32driversHH9Help.sys []
    S3 MSTEE;Преобразователь потоков Tee/Sink-to-Sink Microsoft; F:WINDOWSsystem32driversMSTEE.sys [2008-04-14 5504]
    S3 NABTSFEC;NABTS/FEC VBI кодек; F:WINDOWSsystem32DRIVERSNABTSFEC.sys [2008-04-14 85248]
    S3 NdisIP;Microsoft видео или ТВ подключение; F:WINDOWSsystem32DRIVERSNdisIP.sys [2008-04-14 10880]
    S3 NIC1394;Сетевой драйвер 1394; F:WINDOWSsystem32DRIVERSnic1394.sys [2008-04-14 61824]
    S3 npkcrypt;npkcrypt; ??F:GamesLineage IIsystemnpkcrypt.sys []
    S3 ossrv;Creative OS Services Driver; F:WINDOWSsystem32driversctoss2k.sys [2006-08-11 116224]
    S3 RFCOMM;Устройство Bluetooth (протокол RFCOMM TDI); F:WINDOWSsystem32DRIVERSrfcomm.sys [2008-04-14 59136]
    S3 rockusb;Driver for rockusb Device; F:WINDOWSsystem32DRIVERSrockusb.sys [2006-03-22 73984]
    S3 SLIP;BDA Slip De-Framer; F:WINDOWSsystem32DRIVERSSLIP.sys [2008-04-14 11136]
    S3 streamip;BDA IPSink; F:WINDOWSsystem32DRIVERSStreamIP.sys [2008-04-14 15232]
    S3 Tablet2k;Serial Tablet Port Driver; F:WINDOWSSystem32DriversTablet2k.sys [2000-06-13 15370]
    S3 usbprint;Класс принтеров Microsoft USB; F:WINDOWSsystem32DRIVERSusbprint.sys [2008-04-14 25856]
    S3 usbscan;Драйвер USB-сканера; F:WINDOWSsystem32DRIVERSusbscan.sys [2008-04-14 15104]
    S3 usbstor;Драйвер запоминающих устройств для USB; F:WINDOWSsystem32DRIVERSUSBSTOR.SYS [2008-04-14 26368]
    S3 VComm;Virtual Serial port driver; F:WINDOWSsystem32DRIVERSVComm.sys [2004-10-19 61312]
    S3 VcommMgr;Bluetooth VComm Manager Service; F:WINDOWSSystem32DriversVcommMgr.sys [2005-03-25 82148]
    S3 WSTCODEC;World Standard Teletext кодек; F:WINDOWSsystem32DRIVERSWSTCODEC.SYS [2008-04-14 19200]
    S3 WudfPf;Windows Driver Foundation — User-mode Driver Framework Platform Driver; F:WINDOWSsystem32DRIVERSWudfPf.sys [2006-09-28 77568]
    S3 WudfRd;Windows Driver Foundation — User-mode Driver Framework Reflector; F:WINDOWSsystem32DRIVERSwudfrd.sys [2006-09-28 82944]
    S4 IntelIde;IntelIde; F:WINDOWSsystem32driversIntelIde.sys []

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 6to4;Служба поддержки IPv6; F:WINDOWSsystem32svchost.exe [2008-04-14 14336]
    R2 Ati HotKey Poller;Ati HotKey Poller; F:WINDOWSsystem32Ati2evxx.exe [2009-05-16 602112]
    R2 AVP;Kaspersky Anti-Virus 7.0; F:Program FilesKaspersky LabKaspersky Anti-Virus 7.0avp.exe [2007-06-28 218376]
    R2 BthServ;Bluetooth Support Service; F:WINDOWSsystem32svchost.exe [2008-04-14 14336]
    R2 UxTuneUp;TuneUp Theme Extension; F:WINDOWSSystem32svchost.exe [2008-04-14 14336]
    S2 aawservice;Ad-Aware 2007 Service; F:Program FilesLavasoftAd-Aware 2007aawservice.exe [2007-07-20 557056]
    S2 ATI Smart;ATI Smart; F:WINDOWSsystem32ati2sgag.exe [2009-05-15 593920]
    S2 JavaQuickStarterService;Java Quick Starter; F:Program FilesJavajre6binjqs.exe [2009-06-03 152984]
    S2 VC9SecS;Virtual CD v9 Management Service; F:Program FilesVirtual CD v9Systemvc9secs.exe [2009-04-21 132424]
    S3 aspnet_state;ASP.NET State Service; F:WINDOWSMicrosoft.NETFrameworkv2.0.50727aspnet_state.exe [2005-09-23 29896]
    S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; F:WINDOWSMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe [2005-09-23 66240]
    S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; F:WINDOWSMicrosoft.NetFrameworkv3.0WPFPresentationFontCache.exe [2006-10-20 36864]
    S3 IDriverT;InstallDriver Table Manager; F:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe [2005-04-04 69632]
    S3 idsvc;Windows CardSpace; F:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication Foundationinfocard.exe [2006-10-30 741376]
    S3 odserv;Microsoft Office Diagnostics Service; F:Program FilesCommon FilesMicrosoft SharedOFFICE12ODSERV.EXE [2006-10-26 441136]
    S3 ose;Office Source Engine; F:Program FilesCommon FilesMicrosoft SharedSource EngineOSE.EXE [2006-10-26 145184]
    S3 TuneUp.Defrag;TuneUp Drive Defrag Service; F:WINDOWSSystem32TuneUpDefragService.exe [2009-03-02 354560]
    S3 usprserv;User Privilege Service; F:WINDOWSSystem32svchost.exe [2008-04-14 14336]
    S3 WudfSvc;Windows Driver Foundation — User-mode Driver Framework; F:WINDOWSsystem32svchost.exe [2008-04-14 14336]
    S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; F:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication FoundationSMSvcHost.exe [2006-10-30 122880]
    S4 O&O Defrag;O&O Defrag; F:WINDOWSsystem32oodag.exe [2007-05-11 1050120]
    S4 RichVideo;Cyberlink RichVideo Service(CRVS); F:Program FilesCyberLinkShared filesRichVideo.exe [2007-05-14 272024]
    S4 WinTabService;WinTab Service; F:WINDOWSsystem32DRIVERSWtSrv.exe [2003-09-30 40960]


    EOF


    info.txt

    info.txt logfile of random’s system information tool 1.06 2009-09-25 21:45:04

    ======Uninstall list======

    —>msiexec /package {90120000-0012-0000-0000-0000000FF1CE} /uninstall {744C859F-C225-48A9-A524-4DED432F36C7}
    —>MsiExec /X{B83FC356-B7C0-441F-8A4D-D71E088E7974}
    —>rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 F:WINDOWSINFPCHealth.inf
    7-Zip 4.15 beta—>»F:Program Files7-ZipUninstall.exe»
    A4 TECH PC Camera V—>F:Program FilesInstallShield Installation Information{8AD824A5-1CCC-4BB7-82C9-E6FB25CC0479}setup.exe -runfromtemp -l0x0019 -removeonly
    AC Tool—>F:PROGRA~1ACTOOL~1UNWISE.EXE F:PROGRA~1ACTOOL~1INSTALL.LOG
    ACDSee 7.0 PowerPack—>MsiExec.exe /I{B0625F16-B742-4F75-9FD8-20B47ACC7DE2}
    Ad-Aware 2007—>MsiExec.exe /X{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}
    Adobe Flash Player 10 Plugin—>F:WINDOWSsystem32MacromedFlashuninstall_plugin.exe
    Adobe Flash Player ActiveX—>F:WINDOWSsystem32MacromedFlashuninstall_activeX.exe
    AIMP2 Skins Pack 29.09.07 (By YurCompMan)—>»F:Program FilesAIMP2unins000.exe»
    AIMP2—>F:Program FilesAIMP2UnInstall.exe
    ATI — Software Uninstall Utility—>F:Program FilesATI TechnologiesUninstallAllAtiCimUn.exe
    ATI AVIVO Codecs—>MsiExec.exe /I{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}
    ATI Catalyst Control Center—>RunDll32 F:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime91Intel32Ctor.dll,LaunchSetup «F:Program FilesInstallShield Installation Information{055EE59D-217B-43A7-ABFF-507B966405D8}setup.exe» -l0x0
    ATI Display Driver—>rundll32 F:WINDOWSsystem32atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
    Avant Browser (remove only)—>»F:Program FilesAvant Browseruninst.exe»
    AVIConverter 2.0—>F:Program FilesAVIConverteruninst.exe
    Bink and Smacker—>F:PROGRA~1RADVideoUNWISE.EXE F:PROGRA~1RADVideoINSTALL.LOG
    Catalyst Control Center — Branding—>MsiExec.exe /I{D3B1C799-CB73-42DE-BA0F-2344793A095C}
    CCleaner (remove only)—>»F:Program FilesCCleaneruninst.exe»
    Cheat Engine 5.4—>»F:Program FilesCheat Engineunins000.exe»
    ConsumerUpdate—>MsiExec.exe /I{7C6999B2-1A35-4F2C-8DB7-3CB46B640CC9}
    Corel Painter IX—>MsiExec.exe /I{A0383B7D-81A2-49D3-BE06-C0FD9EFB9DFC}
    Darkest of Days v1.0—>»F:GamesDarkest of Daysunins000.exe»
    DirectX 10 RP (RePack)—>»F:Program FilesCommon Filesunins000.exe»
    Divinity II — Ego Draconis—>»F:GamesDivinity II — Ego Draconisunins000.exe»
    DosBlaster 2.5—>»F:Program FilesDosBlaster2.5unins000.exe»
    Download Master version 5.3.4.1093—>»F:Program FilesDownload Masterunins000.exe»
    Dream Aquarium—>»F:Program FilesDream AquariumUnInstall.exe»
    FaceGen Modeller 3.2 Free—>MsiExec.exe /I{9F7F073B-CBC1-4588-9B21-D21971173301}
    Fallout 3 v1.0—>»f:GamlesBethesda SoftworksFallout 3unins000.exe»
    Fallout Mod Manager 0.9.15—>»f:GamlesBethesda SoftworksFallout 3fommuninstallunins000.exe»
    FLAC codecs—>F:Program Filesilliminableoggcodecsuninst.exe
    Foxit Reader—>F:Program FilesFoxit SoftwareFoxit ReaderUninstall.exe
    Google Планета Земля—>MsiExec.exe /I{97C0EA4A-1A0B-4C53-ACEB-49984DA79C90}
    Guitar Hero III—>J:GamesGUITAR~1UNWISE.EXE J:GamesGUITAR~1INSTALL.LOG
    HardCopy Pro V2.4.0—>F:Program FilesHardCopy ProUninstall.exe
    HijackThis 2.0.2—>»F:Program Filestrend microHijackThis.exe» /uninstall
    ICE Book Reader Professional v8.10.2 Russian—>»F:Program FilesICE Book Reader Professional Russianunins000.exe»
    ICQ6.5—>»F:Program FilesInstallShield Installation Information{60DE4033-9503-48D1-A483-7846BD217CA9}setup.exe» -runfromtemp -l0x0009 -removeonly
    Indeo® Software—>F:WINDOWSIsUninst.exe -f»F:Program FilesLigosIndeoUninst.isu» -c»F:Program FilesLigosIndeoIndeo System Filesindounin.dll»
    Java(TM) 6 Update 11—>MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
    Jigs@w Puzzle Nature Edition—>»D:GamesMinyJigs@w Puzzle Nature Editionuninstall.exe»
    K-Lite Mega Codec Pack 4.7.5—>»F:Program FilesK-Lite Codec Packunins000.exe»
    Light Alloy 2.9—>F:WINDOWSmuninst.exe «Light Alloy 2.9»
    Microsoft .NET Framework 2.0—>F:WINDOWSMicrosoft.NETFrameworkv2.0.50727Microsoft .NET Framework 2.0install.exe
    Microsoft .NET Framework 3.0—>F:WINDOWSMicrosoft.NETFrameworkv3.0Microsoft .NET Framework 3.0setup.exe
    Microsoft .NET Framework 3.0—>MsiExec.exe /X{15095BF3-A3D7-4DDF-B193-3A496881E003}
    Microsoft Games for Windows — LIVE Redistributable—>MsiExec.exe /X{59E4543A-D49D-4489-B445-473D763C79AF}
    Microsoft Office Excel MUI (Russian) 2007—>MsiExec.exe /X{90120000-0016-0419-0000-0000000FF1CE}
    Microsoft Office Outlook MUI (Russian) 2007—>MsiExec.exe /X{90120000-001A-0419-0000-0000000FF1CE}
    Microsoft Office PowerPoint MUI (Russian) 2007—>MsiExec.exe /X{90120000-0018-0419-0000-0000000FF1CE}
    Microsoft Office Proof (English) 2007—>MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
    Microsoft Office Proof (German) 2007—>MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
    Microsoft Office Proof (Russian) 2007—>MsiExec.exe /X{90120000-001F-0419-0000-0000000FF1CE}
    Microsoft Office Proof (Ukrainian) 2007—>MsiExec.exe /X{90120000-001F-0422-0000-0000000FF1CE}
    Microsoft Office Proofing (Russian) 2007—>MsiExec.exe /X{90120000-002C-0419-0000-0000000FF1CE}
    Microsoft Office Shared MUI (Russian) 2007—>MsiExec.exe /X{90120000-006E-0419-0000-0000000FF1CE}
    Microsoft Office Standard 2007—>MsiExec.exe /X{90120000-0012-0000-0000-0000000FF1CE}
    Microsoft Office Word MUI (Russian) 2007—>MsiExec.exe /X{90120000-001B-0419-0000-0000000FF1CE}
    Microsoft Office Стандартный 2007—>»F:Program FilesCommon FilesMicrosoft SharedOFFICE12Office Setup Controllersetup.exe» /uninstall STANDARD /dll OSETUP.DLL
    Microsoft User-Mode Driver Framework Feature Pack 1.0—>»F:WINDOWS$NtUninstallWudf01000$spuninstspuninst.exe»
    Microsoft Visual C++ 2005 Redistributable—>MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
    Microsoft Visual C++ 2005 Redistributable—>MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
    Microsoft Visual C++ 2008 Redistributable — x86 9.0.21022—>MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
    Microsoft Visual J# 2.0 Redistributable Package—>F:WINDOWSMicrosoft.NETFrameworkv2.0.50727Microsoft Visual J# 2.0 Redistributable Packageinstall.exe
    Microsoft Windows Media Video 9 VCM—>RunDll32 advpack.dll,LaunchINFSection F:WINDOWSINFwmv9vcm.inf, Uninstall
    Microsoft XNA Framework Redistributable 1.0 Refresh—>MsiExec.exe /I{311F799A-FCE9-4D9E-B5D2-CBB8859B40BB}
    Microsoft XNA Framework Redistributable 2.0—>MsiExec.exe /I{245F6C7A-0C22-4DE0-8202-2AAA620A1D3A}
    Mount&Blade—>F:GamesMount&Blade_903uninstall.exe
    MSXML 4.0 SP2 Parser and SDK—>MsiExec.exe /I{716E0306-8318-4364-8B8F-0CC4E9376BAC}
    MSXML 6.0 Parser (KB927977)—>MsiExec.exe /I{5A710547-B58E-488B-828D-CA9A25A0533C}
    Nero 8 Micro v8.1.1.0—>»F:Program FilesNerounins000.exe»
    NVIDIA PhysX Unreal Tournament 3 Mods—>MsiExec.exe /X{D60924D0-86C6-441B-BD39-BA3037508976}
    NVIDIA PhysX—>MsiExec.exe /X{B83FC356-B7C0-441F-8A4D-D71E088E7974}
    O&O Defrag Professional Edition—>MsiExec.exe /I{53480330-E1D1-41CA-B8F8-7F78644F7F50}
    Oblivion — Vile Lair—>RunDll32 F:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime110Intel32Ctor.dll,LaunchSetup «F:Program FilesInstallShield Installation Information{520F4B09-3A51-47A2-82B0-9FF1DC2D20FA}setup.exe» -l0x9 -removeonly
    Oblivion Face Exchange Lite—>MsiExec.exe /I{97EEEC00-A1C4-40BA-869E-F569EC876766}
    Oblivion mod manager 1.1.3—>»d:GamesOblivionobmmuninstallunins000.exe»
    Oblivion—>F:Program FilesInstallShield Installation Information{7EE1AAD4-0E84-4A90-8614-AA6E4E9764D4}setup.exe
    OBSE Launcher 1.3—>D:GamesOblivionuninst.exe
    OpenAL—>»F:Program FilesOpenALoalinst.exe» /U
    Opera 9.50—>MsiExec.exe /X{7472B5B4-3FB7-446F-BC78-6BBA506EC473}
    Orbit—>»F:Program FilesOrbitdownloaderunins000.exe»
    Patch PowerDVD 7.3 RUS & REG—>»F:Program FilesCyberLinkPowerDVDunins000.exe»
    PCI Audio Driver—>cmuninst.exe
    PFConfig 1.0.163—>F:Program FilesPFConfiguninst.exe
    PIMS & File Manager—>RunDll32 F:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «F:Program FilesInstallShield Installation Information{3F340FE0-E93E-4A53-B5E4-19ED2648FCAE}Setup.exe» -l0x19
    Pop-Up Stopper Professional—>F:PROGRA~1PANICW~1POP-UP~1UNWISE.EXE F:PROGRA~1PANICW~1POP-UP~1INSTALL.LOG
    PowerDVD Ultra—>»F:Program FilesInstallShield Installation Information{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}Setup.exe» -l0x000409 /z-uninstall
    Puzzle Quest Galactrix—>»F:WINDOWSPuzzle Quest Galactrixuninstall.exe» «/U:d:GamesPuzzleQuest2Uninstalluninstall.xml»
    QIP 2005 Uninstall—>»F:Program FilesQIPunqip.exe»
    QIP Infium 2.0.9020 RC3—>»F:Program FilesQIP Infiumunins000.exe»
    RandomScreen Deluxe V4.12—>»F:Program FilesangGoGo SoftwareRandomScreen Deluxeunins000.exe»
    REALTEK GbE & FE Ethernet PCI-E NIC Driver—>F:Program FilesInstallShield Installation Information{C9BED750-1211-4480-B1A5-718A3BE15525}SETUP.EXE -runfromtemp -l0x0019 -removeonly
    Realtek High Definition Audio Driver—>RtlUpd.exe -r -m
    Runes of Magic—>»l:GamesRunes of Magicunins000.exe»
    Samsung PC Studio 2.0 PIM & File Manager—>MsiExec.exe /I{4513F51E-3D1B-4791-B652-4C8B263ACD07}
    Sentinel System Driver—>F:WINDOWSSYSTEM32RNBOSENTSETUPX86.EXE /U /q
    Skype™ 3.8—>MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
    Softick PPP 2.21 (remove only)—>»F:Program FilesSoftickPPPuninstall.exe»
    SUPERAntiSpyware Professional—>MsiExec.exe /X{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}
    Switch Off—>»F:Program FilesSwitch Offuninstall.exe»
    thriXXX 3DSexVilla2-051.001—>»F:GamesthriXXX3D SexVilla 2 — EverlustBinariesUninstall-3DSexVilla2-Everlust-051.001.exe»
    thriXXX Hentai3D2-052.003—>»F:GamesthriXXXHentai 3D 2 — Cry of PleasureBinariesUninstall-Hentai3D2-CryofPleasure-052.003.exe»
    thriXXX VirtuallyJenna2-054.002—>»F:GamesthriXXXVirtuallyJenna 2 — ForeverBinariesUninstall-VirtuallyJenna2-Forever-054.002.exe»
    thriXXX WebLaunch—>F:Program FilesthriXXXWebLaunchWebLaunchUninstall.exe
    Total Commander 7.01 Total Commander 7.01 PowerPack 1.30—>»F:Program FilesTotal Commanderuninstall.exe»
    TuneUp Utilities 2008—>MsiExec.exe /I{5888428E-699C-4E71-BF71-94EE06B497DA}
    UltraISO Premium V8.66—>»F:Program FilesUltraISO8unins000.exe»
    UMS 5.0—>F:Program FilesUniversal Math SolverUMS 5.0 offlineUninstall.exe
    UMS 9.0.1.1 Russian online—>»F:Program FilesUniversal Math SolverUMS 9.0 RUS onlineunins000.exe»
    UMS 9.7 demonew—>F:Program FilesUniversal Math SolverUMS 9.7 demonewuninstall.exe
    Virtual CD v9—>F:Program FilesInstallShield Installation Information{98A64C75-BFD6-4212-8746-8BADC7ABA79E}setup.exe -runfromtemp -l0x0009 -removeonly
    Virtual Hottie 2—>f:GamesthrixxxVirtual Hottie 2DefaultQ3DUnInst.exe
    VirtualNetwork—>»F:Program FilesVirtualNetworkUninstall.exe»
    VKLife 1.9—>»F:Program FilesVKLifeunins000.exe»
    Vodafone 804SS USB driver Software—>F:WINDOWSsystem32Samsung_USB_Drivers4SSVDUninstall.exe
    VoptXP v7.22—>F:PROGRA~1VOPTXP~1UNWISE.EXE F:PROGRA~1VOPTXP~1INSTALL.LOG
    VP-EYE—>RunDll32 F:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «F:Program FilesInstallShield Installation Information{DC17B2BE-BA6F-4696-8E5D-ED2A62981CDA}setup.exe» -l0x9
    WarRun 4.00 alpha—>»F:Program FilesWarRununins000.exe»
    Winamp—>»F:Program FilesWinampUninstWA.exe»
    Window Hide Tool 2.0—>»F:Program FilesWindow Hide Toolunins000.exe»
    Windows Communication Foundation—>MsiExec.exe /X{491DD792-AD81-429C-9EB4-86DD3D22E333}
    Windows Imaging Component—>»F:WINDOWS$NtUninstallWIC$spuninstspuninst.exe»
    Windows Media Format 11 runtime—>»F:Program FilesWindows Media Playerwmsetsdk.exe» /UninstallAll
    Windows Media Format 11 runtime—>»F:WINDOWS$NtUninstallWMFDist11$spuninstspuninst.exe»
    Windows Presentation Foundation—>MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
    Windows Workflow Foundation—>MsiExec.exe /I{7D1B85BD-AA07-48B8-808D-67A4067FC6BD}
    Windows XP Service Pack 3—>»F:WINDOWS$NtServicePackUninstall$spuninstspuninst.exe»
    WinHex—>F:Program FilesWinHexWinHex.exe uninst
    Xerox Phaser 3116—>»F:WINDOWSXeroxPhaser 3116setup.exe» /L0019
    Xfire (remove only)—>»F:Program FilesXfireuninst.exe»
    Xilisoft Video Converter Ultimate—>F:Program FilesXilisoftVideo Converter UltimateUninstall.exe
    X-Moto—>»F:gamesXMotouninstall.exe»
    Антивирус Касперского 7.0—>MsiExec.exe /I{4B9BB601-13E9-4042-A3BC-E7955BF4A98F}
    Антивирус Касперского 7.0—>MsiExec.exe /I{4B9BB601-13E9-4042-A3BC-E7955BF4A98F}
    Архиватор WinRAR (только удаление)—>F:Program FilesWinRARuninstall.exe
    Бильярд—>F:Program FilesAlawar.ruБильярдUninstall.exe
    КОМПАС-3D V10—>MsiExec.exe /I{B3724E1F-F02F-49D3-94DB-C81539A27D9F}
    Легенда — Наследие Драконов (с графикой, с плагинами), Версия 2—>»F:GamesDragonsunins000.exe»
    Обновление безопасности для Windows XP — (KB941569)—>»F:WINDOWS$NtUninstallKB941569$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB923789)—>F:WINDOWSsystem32MacroMedFlashgenuinst.exe F:WINDOWSsystem32MacroMedFlashKB923789.inf
    Обновление безопасности для Windows XP (KB958644)—>»F:WINDOWS$NtUninstallKB958644$spuninstspuninst.exe»
    Пакет драйверов Windows — Advanced Micro Devices (AmdK8) Processor (05/27/2006 1.3.2.0)—>F:PROGRA~1DIFX7B44739871F4D539FA473F57A832EA4B6A59EF06DPInst.exe /d /u F:WINDOWSsystem32DRVSTOREamdk8_5F4DE5B38BD0C6463F94F7534C8C84D5EACE412Damdk8.inf
    Русификатор ACDSee 7.0—>»F:Program FilesACD SystemsACDSee7.0unins000.exe»
    Сократ Персональный 4.1—>RunDll32 F:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1ctor.dll,LaunchSetup «F:Program FilesInstallShield Installation Information{9CD789E2-B7CE-11D5-B7E9-00A0C9449F99}setup.exe»
    СуперБильярд в пятницу вечером—>F:Program FilesInstallShield Installation Information{297947BC-45A8-4A64-80DC-B340D512381D}setup.exe
    Троецарствие (с графикой, с плагинами), Версия 1.17.71—>»F:gAMes3Kingdomunins000.exe»

    ======Hosts File======

    127.0.0.1 localhost

    ======Security center information======

    AV: Антивирус Касперского

    ======System event log======

    Computer Name: TERRIBLE
    Event Code: 6006
    Message: Служба журнала событий остановлена.

    Record Number: 23864
    Source Name: EventLog
    Time Written: 20090726211439.000000+240
    Event Type: информация
    User:

    Computer Name: TERRIBLE
    Event Code: 20159
    Message: Подключение пользователя , выполненное с помощью устройства «PPPoE4-0», было прервано.

    Record Number: 23863
    Source Name: RemoteAccess
    Time Written: 20090726211437.000000+240
    Event Type: информация
    User:

    Computer Name: TERRIBLE
    Event Code: 7036
    Message: Служба «Ati HotKey Poller» перешла в состояние Остановлена.

    Record Number: 23862
    Source Name: Service Control Manager
    Time Written: 20090726211407.000000+240
    Event Type: информация
    User:

    Computer Name: TERRIBLE
    Event Code: 20158
    Message: Успешно выполнено подключение пользователя , с помощью устройства «PPPoE4-0».

    Record Number: 23861
    Source Name: RemoteAccess
    Time Written: 20090726154540.000000+240
    Event Type: информация
    User:

    Computer Name: TERRIBLE
    Event Code: 7036
    Message: Служба «Служба COM записи компакт-дисков IMAPI» перешла в состояние Остановлена.

    Record Number: 23860
    Source Name: Service Control Manager
    Time Written: 20090726154524.000000+240
    Event Type: информация
    User:

    =====Application event log=====

    Computer Name: TERRIBLE
    Event Code: 1102
    Message: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) — Succesfully compiled: Microsoft.Build.Tasks, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a

    Record Number: 131
    Source Name: .NET Runtime Optimization Service
    Time Written: 20090704193311.000000+240
    Event Type:
    User:

    Computer Name: TERRIBLE
    Event Code: 1100
    Message: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) — Began compiling: Microsoft.Build.Tasks, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a

    Record Number: 130
    Source Name: .NET Runtime Optimization Service
    Time Written: 20090704193304.000000+240
    Event Type: информация
    User:

    Computer Name: TERRIBLE
    Event Code: 1102
    Message: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) — Succesfully compiled: Microsoft.Build.Framework, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a

    Record Number: 129
    Source Name: .NET Runtime Optimization Service
    Time Written: 20090704193304.000000+240
    Event Type:
    User:

    Computer Name: TERRIBLE
    Event Code: 1100
    Message: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) — Began compiling: Microsoft.Build.Framework, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a

    Record Number: 128
    Source Name: .NET Runtime Optimization Service
    Time Written: 20090704193303.000000+240
    Event Type: информация
    User:

    Computer Name: TERRIBLE
    Event Code: 1102
    Message: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) — Succesfully compiled: Microsoft.Build.Engine, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a

    Record Number: 127
    Source Name: .NET Runtime Optimization Service
    Time Written: 20090704193302.000000+240
    Event Type:
    User:

    ======Environment variables======

    «ComSpec»=%SystemRoot%system32cmd.exe
    «Path»=%systemroot%system32;%systemroot%;%systemroot%system32wbem;F:Perlsitebin;F:Perlbin;F:Program FilesSamsungSamsung PC Studio 3;F:Program FilesATI TechnologiesATI.ACECore-Static
    «windir»=%SystemRoot%
    «FP_NO_HOST_CHECK»=NO
    «OS»=Windows_NT
    «PROCESSOR_ARCHITECTURE»=x86
    «PROCESSOR_LEVEL»=15
    «PROCESSOR_IDENTIFIER»=x86 Family 15 Model 4 Stepping 7, GenuineIntel
    «PROCESSOR_REVISION»=0407
    «NUMBER_OF_PROCESSORS»=2
    «PATHEXT»=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
    «TEMP»=%SystemRoot%TEMP
    «TMP»=%SystemRoot%TEMP


    EOF


    30 сентября, 2009 в 6:06 пп #25904
    Admin
    Keymaster
    • Темы:40
    • Сообщений:5676
    • ☆☆☆☆☆

    Здравствуйте, добро пожаловать на Spyware-ru форум.

    Вижу вы запускали Combofix.
    Запустите эту программу ещё раз и получившийся лог вставьте в ваше следующее сообщение.

  • Автор
    Сообщения
Просмотр 2 сообщений - с 1 по 2 (из 2 всего)
  • Для ответа в этой теме необходимо авторизоваться.
Войти

Добро пожаловать

На нашем сайте размещены инструкции и программы, которые помогут вам абсолютно бесплатно и самостоятельно удалить навязчивую рекламу, вирусы и трояны.

Поиск

Последние темы

  • Странность в Malwebytes опубликовано Artem225
    5 years, 11 months назад
  • SUSPICIOUS.FakedMBR.1 что делать, помогите!!! опубликовано White
    6 years назад
  • Помогите пожалуйста вирус замучил. опубликовано dimazons1233211
    6 years, 2 months назад
  • Замучила реклама опубликовано Данила Беспятов
    6 years, 3 months назад
  • Замучила реклама опубликовано Марк
    6 years назад
  • Вирус S1.video.ru.net опубликовано ludovik
    6 years, 5 months назад
  • Чертов Safe Finder!!!! опубликовано kosta savo
    6 years, 2 months назад
  • ESET блокирует неизвестный сайт , вход на который не осуществлялся. опубликовано trollhamaren
    6 years, 6 months назад

СПАЙВАРЕ РУ

  • О Спайваре Ру
  • Контакты
  • Реклама на сайте
  • Политика конфиденциальности
  • Правила использования

Нужна помощь?

Задайте свой вопрос прямо сейчас кликнув по следующей ссылке Задать вопрос.

Или обратитесь на наш форум, где команда Spyware-ru поможет вам. Узнайте, как попросить о помощи здесь.

Ссылки

  • Инструкции
  • Скачать программы
  • Помощь в удалении вирусов
  • Как вылечить компьютер
Copyright © 2008 - 2024 Spyware-RU.com (en)