Удаление вирусов и троянов. Защита компьютера. › Помощь в удалении вирусов, троянов, рекламы и других зловредов › помогите избавиться от информера в IE
- This topic has 8 ответов, 2 участника, and was last updated 16 years, 3 months назад by
Admin.
-
АвторСообщения
-
11 января, 2009 в 7:39 пп #16117
здраствуйте. помогите пожалуйста избавиться от всплывающего информера. вылезла гадость в IE. Постоянно работаю в Опере. В ней ничего подобного не возникает. Ретранслирую здесь log file. Info file у меня почему-то не появляется. Делаю что-то не так?
Мой log fileLogfile of random’s system information tool 1.05 (written by random/random)
Run by LexaF at 2009-01-11 22:44:48
Microsoft Windows XP Professional Service Pack 3
System drive C: has 4 GB (9%) free of 49 GB
Total RAM: 1023 MB (39% free)Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:45:05, on 11.01.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: NormalRunning processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32Ati2evxx.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSsystem32Ati2evxx.exe
C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe
C:Program FilesBonjourmDNSResponder.exe
C:WINDOWSSystem32CTsvcCDA.exe
C:Program FilesESETESET NOD32 Antivirusekrn.exe
C:Program FilesTRENDnet802.11g Wireless Client UtilityNICServ.exe
C:Program FilesTRENDnet802.11g Wireless Client UtilitySrvRunDetect.exe
C:Program FilesTRENDnet802.11g Wireless Client UtilityDetectDev.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesWestern DigitalWD Drive ManagerWDBtnMgrSvc.exe
c:windowsexplorer.exe
C:Program FilesATI TechnologiesATI Control Panelatiptaxx.exe
C:WINDOWSSystem32G-VGA.exe
C:Program FilesCreativeSBAudigy2Surround MixerCTSysVol.exe
C:Program FilesCreativeSBAudigy2DVDAudioCTDVDDet.EXE
C:WINDOWSsystem32CTHELPER.EXE
C:Program FilesHewlett-PackardHP Share-to-Webhpgs2wnd.exe
C:Program FilesNokiaNokia PC Suite 6LaunchApplication.exe
C:Program FilesNokiaNokia Software LauncherNSLauncher.exe
C:Program FilesAdobePhotoshop Album Starter Edition3.0Appsapdproxy.exe
C:Program FilesWestern DigitalWD Drive ManagerWDBtnMgrUI.exe
C:Program FilesiTunesiTunesHelper.exe
C:Program FilesESETESET NOD32 Antivirusegui.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesSkypePhoneSkype.exe
C:Program FilesPicasa2PicasaMediaDetector.exe
C:Program FilesMessengermsmsgs.exe
C:Program FilesPC Connectivity SolutionServiceLayer.exe
C:Program FilesICQ6ICQ.exe
C:Program FilesMicrosoft ActiveSyncwcescomm.exe
C:Program FilesHewlett-PackardHP Share-to-Webhpgs2wnf.exe
C:Program FilesTRENDnet802.11g Wireless Client UtilityUMCCfg.exe
C:PROGRA~1MICROS~4rapimgr.exe
C:Program FilesNikonPictureProjectNkbMonitor.exe
C:Program FilesiPodbiniPodService.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesOperaopera.exe
F:RSIT.exe
C:Program Filestrend microLexaF.exeR0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = about:blank
R1 — HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = *.local
F2 — REG:system.ini: Shell=c:windowsexplorer.exe
F2 — REG:system.ini: UserInit=c:windowssystem32userinit.exe
O2 — BHO: agblibP — {065C52C3-9AA2-4577-AFB0-33F17EA5686E} — C:Documents and SettingsAll UsersApplication Dataagblib.dll
O2 — BHO: AcroIEHlprObj Class — {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} — C:Program FilesAdobeAcrobat 7.0ActiveXAcroIEHelper.dll
O2 — BHO: SSVHelper Class — {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} — C:Program FilesJavajre1.6.0_05binssv.dll
O2 — BHO: Google Toolbar Helper — {AA58ED58-01DD-4d91-8333-CF10577473F7} — c:program filesgooglegoogletoolbar3.dll
O2 — BHO: Google Toolbar Notifier BHO — {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} — C:Program FilesGoogleGoogleToolbarNotifier3.0.1225.9868swg.dll
O2 — BHO: EpsonToolBandKicker Class — {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll
O3 — Toolbar: FlashGet Bar — {E0E899AB-F487-11D5-8D29-0050BA6940E3} — C:PROGRA~1FlashGetfgiebar.dll
O3 — Toolbar: EPSON Web-To-Page — {EE5D279F-081B-4404-994D-C6B60AAEBA6D} — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll
O3 — Toolbar: &Google — {2318C2B1-4965-11d4-9B18-009027A5CD4F} — c:program filesgooglegoogletoolbar3.dll
O4 — HKLM..Run: [ATIPTA] C:Program FilesATI TechnologiesATI Control Panelatiptaxx.exe
O4 — HKLM..Run: [VGAUtil] C:WINDOWSSystem32G-VGA.exe
O4 — HKLM..Run: [CTSysVol] C:Program FilesCreativeSBAudigy2Surround MixerCTSysVol.exe
O4 — HKLM..Run: [CTDVDDet] C:Program FilesCreativeSBAudigy2DVDAudioCTDVDDet.EXE
O4 — HKLM..Run: [CTHelper] CTHELPER.EXE
O4 — HKLM..Run: [AsioReg] REGSVR32.EXE /S CTASIO.DLL
O4 — HKLM..Run: [SBDrvDet] C:Program FilesCreativeSB Drive DetSBDrvDet.exe /r
O4 — HKLM..Run: [UpdReg] C:WINDOWSUpdReg.EXE
O4 — HKLM..Run: [FineReader7NewsReaderPro] C:Program FilesABBYY FineReader 7.0 Professional EditionAbbyyNewsReader.exe
O4 — HKLM..Run: [Share-to-Web Namespace Daemon] C:Program FilesHewlett-PackardHP Share-to-Webhpgs2wnd.exe
O4 — HKLM..Run: [PCSuiteTrayApplication] C:Program FilesNokiaNokia PC Suite 6LaunchApplication.exe -startup
O4 — HKLM..Run: [NSLauncher] C:Program FilesNokiaNokia Software LauncherNSLauncher.exe /startup
O4 — HKLM..Run: [Adobe Photo Downloader] «C:Program FilesAdobePhotoshop Album Starter Edition3.0Appsapdproxy.exe»
O4 — HKLM..Run: [WD Drive Manager] C:Program FilesWestern DigitalWD Drive ManagerWDBtnMgrUI.exe
O4 — HKLM..Run: [AppleSyncNotifier] C:Program FilesCommon FilesAppleMobile Device SupportbinAppleSyncNotifier.exe
O4 — HKLM..Run: [QuickTime Task] «C:Program FilesQuickTimeQTTask.exe» -atboottime
O4 — HKLM..Run: [iTunesHelper] «C:Program FilesiTunesiTunesHelper.exe»
O4 — HKLM..Run: [egui] «C:Program FilesESETESET NOD32 Antivirusegui.exe» /hide /waitservice
O4 — HKLM..RunServices: [winmgr.exe] scvhost.exe
O4 — HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe
O4 — HKCU..Run: [Skype] «C:Program FilesSkypePhoneSkype.exe» /nosplash /minimized
O4 — HKCU..Run: [Picasa Media Detector] C:Program FilesPicasa2PicasaMediaDetector.exe
O4 — HKCU..Run: [MSMSGS] «C:Program FilesMessengermsmsgs.exe» /background
O4 — HKCU..Run: [ICQ] «C:Program FilesICQ6ICQ.exe» silent
O4 — HKCU..Run: [H/PC Connection Agent] «C:Program FilesMicrosoft ActiveSyncwcescomm.exe»
O4 — HKCU..Run: [WINSOS VERIFY] «C:Program FilesWinsosWINSOS.EXE» MINI
O4 — HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSSystem32CTFMON.EXE (User ‘SYSTEM’)
O4 — HKUSS-1-5-18..Run: [PcSync] C:Program FilesNokiaNokia PC Suite 6PcSync2.exe /NoDialog (User ‘SYSTEM’)
O4 — HKUSS-1-5-18..Run: [] C:Documents and SettingsLexaF.exe /i (User ‘SYSTEM’)
O4 — HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSSystem32CTFMON.EXE (User ‘Default user’)
O4 — Startup: Adobe Gamma.lnk = C:Program FilesCommon FilesAdobeCalibrationAdobe Gamma Loader.exe
O4 — Global Startup: 802.11g Wireless Client Utility.lnk = ?
O4 — Global Startup: NkbMonitor.exe.lnk = C:Program FilesNikonPictureProjectNkbMonitor.exe
O4 — Global Startup: Ускоренный запуск Adobe Reader.lnk = C:Program FilesAdobeAcrobat 7.0Readerreader_sl.exe
O8 — Extra context menu item: &Экспорт в Microsoft Excel — res://C:PROGRA~1MICROS~2Office10EXCEL.EXE/3000
O8 — Extra context menu item: Закачать все при помощи FlashGet — C:Program FilesFlashGetjc_all.htm
O8 — Extra context menu item: Закачать при помощи FlashGet — C:Program FilesFlashGetjc_link.htm
O9 — Extra button: (no name) — {08B0E5C0-4FCB-11CF-AAA5-00401C608501} — C:Program FilesJavajre1.6.0_05binssv.dll
O9 — Extra ‘Tools’ menuitem: Sun Java Console — {08B0E5C0-4FCB-11CF-AAA5-00401C608501} — C:Program FilesJavajre1.6.0_05binssv.dll
O9 — Extra button: Create Mobile Favorite — {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} — C:PROGRA~1MICROS~4INetRepl.dll
O9 — Extra button: (no name) — {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} — C:PROGRA~1MICROS~4INetRepl.dll
O9 — Extra ‘Tools’ menuitem: Добавить в избранное мобильного устройства… — {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} — C:PROGRA~1MICROS~4INetRepl.dll
O9 — Extra button: ICQ 4.1 — {B863453A-26C3-4e1f-A54D-A2CD196348E9} — C:Program FilesICQLiteICQLite.exe (file missing)
O9 — Extra ‘Tools’ menuitem: ICQ Lite — {B863453A-26C3-4e1f-A54D-A2CD196348E9} — C:Program FilesICQLiteICQLite.exe (file missing)
O9 — Extra button: FlashGet — {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} — C:PROGRA~1FlashGetflashget.exe
O9 — Extra ‘Tools’ menuitem: &FlashGet — {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} — C:PROGRA~1FlashGetflashget.exe
O9 — Extra button: (no name) — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra button: ICQ6 — {E59EB121-F339-4851-A3BA-FE49C35617C2} — C:Program FilesICQ6ICQ.exe
O9 — Extra ‘Tools’ menuitem: ICQ6 — {E59EB121-F339-4851-A3BA-FE49C35617C2} — C:Program FilesICQ6ICQ.exe
O9 — Extra button: Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O9 — Extra ‘Tools’ menuitem: Windows Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O10 — Unknown file in Winsock LSP: c:windowssystem32nwprovau.dll
O12 — Plugin for .spop: C:Program FilesInternet ExplorerPluginsNPDocBox.dll
O16 — DPF: {11111111-1111-1111-1111-111111113457} — file://c:ied_s7m.cab
O16 — DPF: {11111111-1111-1111-1111-511111113457} — file://c:x.cab
O16 — DPF: {11111111-1111-1111-1111-511111113458} — file://c:x.cab
O16 — DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) — http://go.microsoft.com/fwlink/?linkid=39204
O16 — DPF: {33331111-1111-1111-1111-611111193423} —
O16 — DPF: {33331111-1111-1111-1111-611111193429} —
O16 — DPF: {33331111-1111-1111-1111-615111193427} —
O16 — DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) — http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1165077325234
O16 — DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) — http://80.247.200.168/willemii/AxisCamControl.ocx
O16 — DPF: {9eb320ce-be1d-4304-a081-4b4665414bef} — file://c:x.cab
O17 — HKLMSystemCCSServicesTcpip..{3E0A4A09-56A5-4FE7-B661-076246DC4FD2}: NameServer = 192.168.1.1
O17 — HKLMSystemCCSServicesTcpip..{9033B17E-296C-447E-A5A8-751A3CEA89FF}: NameServer = 192.168.1.1
O18 — Protocol: skype4com — {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} — C:PROGRA~1COMMON~1SkypeSKYPE4~1.DLL
O21 — SSODL: SystemCheck2 — {54645654-2225-4455-44A1-9F4543D34546} — C:WINDOWSsystem32vbsys2.dll (file missing)
O23 — Service: Adobe LM Service — Adobe Systems — C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe
O23 — Service: Apple Mobile Device — Apple Inc. — C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe
O23 — Service: Ati HotKey Poller — ATI Technologies Inc. — C:WINDOWSsystem32Ati2evxx.exe
O23 — Service: ATI Smart — Unknown owner — C:WINDOWSsystem32ati2sgag.exe
O23 — Service: Bonjour Service — Apple Inc. — C:Program FilesBonjourmDNSResponder.exe
O23 — Service: Creative Service for CDROM Access — Creative Technology Ltd — C:WINDOWSSystem32CTsvcCDA.exe
O23 — Service: Eset HTTP Server (EhttpSrv) — ESET — C:Program FilesESETESET NOD32 AntivirusEHttpSrv.exe
O23 — Service: Eset Service (ekrn) — ESET — C:Program FilesESETESET NOD32 Antivirusekrn.exe
O23 — Service: Google Updater Service (gusvc) — Google — C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe
O23 — Service: InstallDriver Table Manager (IDriverT) — Macrovision Corporation — C:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe
O23 — Service: Сервис iPod (iPod Service) — Apple Inc. — C:Program FilesiPodbiniPodService.exe
O23 — Service: Machine Debug Manager (MDM) — Pinnacle Systems GmbH — (no file)
O23 — Service: NICSer_TEW429UF — Unknown owner — C:Program FilesTRENDnet802.11g Wireless Client UtilityNICServ.exe
O23 — Service: NICSrv_Detect_TEW429UF — Unknown owner — C:Program FilesTRENDnet802.11g Wireless Client UtilitySrvRunDetect.exe
O23 — Service: ServiceLayer — Nokia. — C:Program FilesPC Connectivity SolutionServiceLayer.exe
O23 — Service: WD Drive Manager Service (WDBtnMgrSvc.exe) — WDC — C:Program FilesWestern DigitalWD Drive ManagerWDBtnMgrSvc.exe—
End of file — 12368 bytes======Scheduled tasks folder======
C:WINDOWStasksAppleSoftwareUpdate.job
======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{065C52C3-9AA2-4577-AFB0-33F17EA5686E}]
ALAC Video Helper — C:Documents and SettingsAll UsersApplication Dataagblib.dll [2009-01-10 322560][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class — C:Program FilesAdobeAcrobat 7.0ActiveXAcroIEHelper.dll [2004-12-14 63136][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class — C:Program FilesJavajre1.6.0_05binssv.dll [2008-02-22 509328][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper — c:program filesgooglegoogletoolbar3.dll [2007-01-19 2403392][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO — C:Program FilesGoogleGoogleToolbarNotifier3.0.1225.9868swg.dll [2008-04-13 734704][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll [2004-02-10 339968][HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{E0E899AB-F487-11D5-8D29-0050BA6940E3} — FlashGet Bar — C:PROGRA~1FlashGetfgiebar.dll [2002-05-27 86016]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} — EPSON Web-To-Page — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll [2004-02-10 339968]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} — &Google — c:program filesgooglegoogletoolbar3.dll [2007-01-19 2403392][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«ATIPTA»=C:Program FilesATI TechnologiesATI Control Panelatiptaxx.exe [2003-04-28 323584]
«VGAUtil»=C:WINDOWSSystem32G-VGA.exe [2003-01-06 540672]
«CTSysVol»=C:Program FilesCreativeSBAudigy2Surround MixerCTSysVol.exe [2002-10-29 49152]
«CTDVDDet»=C:Program FilesCreativeSBAudigy2DVDAudioCTDVDDet.EXE [2002-09-30 45056]
«CTHelper»=C:WINDOWSsystem32CTHELPER.EXE [2003-04-10 28672]
«AsioReg»=REGSVR32.EXE /S CTASIO.DLL []
«SBDrvDet»=C:Program FilesCreativeSB Drive DetSBDrvDet.exe [2002-12-03 45056]
«UpdReg»=C:WINDOWSUpdReg.EXE [2000-05-11 90112]
«FineReader7NewsReaderPro»=C:Program FilesABBYY FineReader 7.0 Professional EditionAbbyyNewsReader.exe [2003-08-19 278528]
«Share-to-Web Namespace Daemon»=C:Program FilesHewlett-PackardHP Share-to-Webhpgs2wnd.exe [2002-04-17 69632]
«PCSuiteTrayApplication»=C:Program FilesNokiaNokia PC Suite 6LaunchApplication.exe [2006-11-08 222208]
«NSLauncher»=C:Program FilesNokiaNokia Software LauncherNSLauncher.exe [2006-11-28 2658304]
«Adobe Photo Downloader»=C:Program FilesAdobePhotoshop Album Starter Edition3.0Appsapdproxy.exe [2005-06-06 57344]
«WD Drive Manager»=C:Program FilesWestern DigitalWD Drive ManagerWDBtnMgrUI.exe [2008-01-30 438272]
«AppleSyncNotifier»=C:Program FilesCommon FilesAppleMobile Device SupportbinAppleSyncNotifier.exe [2008-11-07 111936]
«QuickTime Task»=C:Program FilesQuickTimeQTTask.exe [2008-11-04 413696]
«iTunesHelper»=C:Program FilesiTunesiTunesHelper.exe [2008-11-20 290088]
«egui»=C:Program FilesESETESET NOD32 Antivirusegui.exe [2008-07-01 1447168][HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
«ctfmon.exe»=C:WINDOWSsystem32ctfmon.exe [2008-04-14 15360]
«Skype»=C:Program FilesSkypePhoneSkype.exe [2008-09-23 21755688]
«Picasa Media Detector»=C:Program FilesPicasa2PicasaMediaDetector.exe [2007-10-24 443968]
«MSMSGS»=C:Program FilesMessengermsmsgs.exe [2008-04-14 1695232]
«ICQ»=C:Program FilesICQ6ICQ.exe [2008-09-01 173304]
«H/PC Connection Agent»=C:Program FilesMicrosoft ActiveSyncwcescomm.exe [2006-11-13 1289000]
«WINSOS VERIFY»=C:Program FilesWinsosWINSOS.EXE MINI [][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregMSMSGS]
C:Program FilesMessengermsmsgs.exe [2008-04-14 1695232][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregRoxioAudioCentral]
C:Program FilesRoxioEasy CD Creator 6AudioCentralRxMon.exe [][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregRoxioDragToDisc]
C:Program FilesRoxioEasy CD Creator 6DragToDiscDrgToDsc.exe [][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregSunJavaUpdateSched]
C:Program FilesJavajre1.6.0_05binjusched.exe [2008-02-22 144784][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregswg]
C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe [2007-07-28 68856][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregTrickler]
c:program filesdivxdivx pro codecgain_trickler_3202.exe [][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregwinmgr.exe]
scvhost.exe [][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupfolderC:^Documents and Settings^All Users^Start Menu^Programs^Startup^Microsoft Office.lnk]
C:PROGRA~1MICROS~2Office10OSA.EXE [2001-02-13 83360][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupfolderC:^Documents and Settings^All Users^Главное меню^Программы^Автозагрузка^Microsoft Office.lnk]
C:PROGRA~1MICROS~2Office10OSA.EXE [2001-02-13 83360]C:Documents and SettingsAll UsersГлавное менюПрограммыАвтозагрузка
802.11g Wireless Client Utility.lnk — C:Program FilesTRENDnet802.11g Wireless Client UtilityUMCCfg.exe
NkbMonitor.exe.lnk — C:Program FilesNikonPictureProjectNkbMonitor.exe
Ускоренный запуск Adobe Reader.lnk — C:Program FilesAdobeAcrobat 7.0Readerreader_sl.exeC:Documents and SettingsLexaFStart MenuProgramsStartup
Adobe Gamma.lnk — C:Program FilesCommon FilesAdobeCalibrationAdobe Gamma Loader.exe[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyAtiExtEvent]
C:WINDOWSsystem32Ati2evxx.dll [2007-09-29 122880][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyWgaLogon]
C:WINDOWSsystem32WgaLogon.dll [2008-06-04 0][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionShellServiceObjectDelayLoad]
SystemCheck2 — {54645654-2225-4455-44A1-9F4543D34546} — C:WINDOWSsystem32vbsys2.dll []
WPDShServiceObj — {AAA288BA-9A4C-45B0-95D7-94D524869DB5} — C:WINDOWSsystem32WPDShServiceObj.dll [2006-10-18 133632][HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkUploadMgr]
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
«dontdisplaylastusername»=0
«legalnoticecaption»=
«legalnoticetext»=
«shutdownwithoutlogon»=1
«undockwithoutlogon»=1[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«NoDriveTypeAutoRun»=145[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:Program FilesMessengermsmsgs.exe»=»C:Program FilesMessengermsmsgs.exe:*:Enabled:Windows Messenger»
«C:Program FilesIntuwave LtdSharedmRouterRunTimemRouterRuntime.exe»=»C:Program FilesIntuwave LtdSharedmRouterRunTimemRouterRuntime.exe:*:Enabled:mRouterRuntime»
«D:Program FilesMicrosoft GamesAge of Empires IIempires2.exe»=»D:Program FilesMicrosoft GamesAge of Empires IIempires2.exe:*:Enabled:Age of Empires II»
«C:GamesSinEP1SinEpisodes.exe»=»C:GamesSinEP1SinEpisodes.exe:*:Disabled:SinEpisodes»
«C:Program FilesICQLiteICQLite.exe»=»C:Program FilesICQLiteICQLite.exe:*:Disabled:ICQLite»
«D:GamesNeed For Speed Undergroundspeed.exe»=»D:GamesNeed For Speed Undergroundspeed.exe:*:Enabled:speed»
«C:Program FilesTVAntsTvants.exe»=»C:Program FilesTVAntsTvants.exe:*:Enabled:TVAnts»
«C:Program FilesMicrosoft ActiveSyncrapimgr.exe»=»C:Program FilesMicrosoft ActiveSyncrapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager»
«C:Program FilesMicrosoft ActiveSyncwcescomm.exe»=»C:Program FilesMicrosoft ActiveSyncwcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager»
«C:Program FilesMicrosoft ActiveSyncWCESMgr.exe»=»C:Program FilesMicrosoft ActiveSyncWCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application»
«C:Program FilesSprite SoftwareSprite BackupSpriteService.exe»=»C:Program FilesSprite SoftwareSprite BackupSpriteService.exe:*:Enabled:Sprite Backup PC Service»
«C:Documents and SettingsAll UsersApplication DataKaspersky Lab Setup FilesKaspersky Anti-Virus 7.0.1.325Russiansetup.exe»=»C:Documents and SettingsAll UsersApplication DataKaspersky Lab Setup FilesKaspersky Anti-Virus 7.0.1.325Russiansetup.exe:*:Enabled:Программа установки Антивируса Касперского 7.0»
«C:Program FilesKaspersky LabKaspersky Anti-Virus 7.0avp.exe»=»C:Program FilesKaspersky LabKaspersky Anti-Virus 7.0avp.exe:*:Enabled:Kaspersky Anti-Virus»
«C:Program FilesOperaOpera.exe»=»C:Program FilesOperaOpera.exe:*:Enabled:Opera Internet Browser»
«C:Program FilesICQ6ICQ.exe»=»C:Program FilesICQ6ICQ.exe:*:Enabled:ICQ6»
«C:Program FilesSopCastadvSopAdver.exe»=»C:Program FilesSopCastadvSopAdver.exe:*:Enabled:SopCast Adver»
«C:Program FilesSopCastSopCast.exe»=»C:Program FilesSopCastSopCast.exe:*:Enabled:SopCast Main Application»
«C:Program FilesuTorrentuTorrent.exe»=»C:Program FilesuTorrentuTorrent.exe:*:Enabled:µTorrent»
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»
«C:Program FilesSkypePhoneSkype.exe»=»C:Program FilesSkypePhoneSkype.exe:*:Enabled:Skype»
«C:Program FilesiTunesiTunes.exe»=»C:Program FilesiTunesiTunes.exe:*:Enabled:iTunes»
«C:WINDOWSsystem32rundll32.exe»=»C:WINDOWSsystem32rundll32.exe:*:Enabled:Run a DLL as an App»
«C:WINDOWSsystem32dpvsetup.exe»=»C:WINDOWSsystem32dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test»
«C:Program FilesBonjourmDNSResponder.exe»=»C:Program FilesBonjourmDNSResponder.exe:*:Enabled:Bonjour»[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:Program FilesMicrosoft ActiveSyncrapimgr.exe»=»C:Program FilesMicrosoft ActiveSyncrapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager»
«C:Program FilesMicrosoft ActiveSyncwcescomm.exe»=»C:Program FilesMicrosoft ActiveSyncwcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager»
«C:Program FilesMicrosoft ActiveSyncWCESMgr.exe»=»C:Program FilesMicrosoft ActiveSyncWCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application»
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2F]
shellAutoRuncommand — F:Setup.exe -Autorun[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2G]
shellAutoRuncommand — G:Setup.exe -Autorun[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{35fecee9-afdc-11dd-a45d-0014d1c0ce28}]
shellAutoRuncommand — xn1i9x.com
shellexplorecommand — xn1i9x.com
shellopencommand — xn1i9x.com======List of files/folders created in the last 1 months======
2009-01-11 22:38:25 —-D—- C:Program Filestrend micro
2009-01-11 22:38:18 —-D—- C:rsit
2009-01-10 03:01:05 —-A—- C:Documents and SettingsAll UsersApplication Dataagblib.dll
2009-01-06 00:47:38 —-D—- C:Program FilesOE-Mail Recovery
2009-01-05 21:42:24 —-D—- C:Program FilesAddress Book Recovery
2009-01-05 12:44:04 —-A—- C:WINDOWSsystem32ptpusb.dll
2009-01-05 12:43:58 —-A—- C:WINDOWSsystem32ptpusd.dll
2008-12-30 22:46:33 —-D—- C:Program FilesSprite Software
2008-12-26 02:43:58 —-N—- C:WINDOWSsystem32cc3260mt.dll
2008-12-25 04:38:54 —-D—- C:Program FilesTRENDnet
2008-12-25 03:25:08 —-D—- C:Program FilesESET
2008-12-25 03:25:08 —-D—- C:Documents and SettingsAll UsersApplication DataESET
2008-12-23 23:05:39 —-SHD—- C:Config.Msi
2008-12-23 21:34:04 —-D—- C:Program FilesPrevxCSI
2008-12-23 21:33:56 —-D—- C:Documents and SettingsAll UsersApplication DataPrevxCSI
2008-12-23 21:00:21 —-D—- C:Documents and SettingsLexaFApplication DataUniblue
2008-12-23 21:00:11 —-D—- C:Program FilesUniblue
2008-12-23 20:59:18 —-HDC—- C:Documents and SettingsAll UsersApplication Data{B46E1EF5-0B37-4DB4-A4E2-9F2B41036185}
2008-12-23 15:02:51 —-D—- C:Program FilesBonjour
2008-12-23 00:35:39 —-A—- C:WINDOWSsystem32rundll32.exe
2008-12-18 19:01:47 —-ADC—- C:WINDOWS$NtUninstallKB960714$
2008-12-12 11:18:16 —-A—- C:WINDOWSsystem32dns-sd.exe
2008-12-12 11:11:46 —-A—- C:WINDOWSsystem32dnssd.dll======List of files/folders modified in the last 1 months======
2009-01-11 22:44:55 —-AD—- C:temp
2009-01-11 22:44:03 —-D—- C:WINDOWSPrefetch
2009-01-11 22:38:25 —-RD—- C:Program Files
2009-01-11 14:36:41 —-AD—- C:WINDOWSsystem32
2009-01-11 14:36:41 —-A—- C:WINDOWSsystem32PerfStringBackup.INI
2009-01-11 13:26:10 —-A—- C:WINDOWSSchedLgU.Txt
2009-01-08 02:15:00 —-D—- C:WINDOWSsystem32CatRoot2
2009-01-05 21:33:51 —-D—- C:WINDOWS
2009-01-05 21:29:05 —-SD—- C:Documents and SettingsLexaFApplication DataMicrosoft
2009-01-05 21:28:39 —-SHD—- C:WINDOWSInstaller
2009-01-05 21:22:35 —-A—- C:ASLog.txt
2009-01-05 19:25:22 —-A—- C:WINDOWSsystem32user32.DLL
2008-12-30 22:48:22 —-D—- C:Documents and SettingsLexaFApplication DataSprite Software
2008-12-30 22:46:32 —-HD—- C:Program FilesInstallShield Installation Information
2008-12-29 22:46:47 —-A—- C:WINDOWSntbtlog.txt
2008-12-29 22:44:14 —-D—- C:WINDOWSsystem32drivers
2008-12-29 22:43:31 —-D—- C:WINDOWSinf
2008-12-29 22:43:27 —-D—- C:WINDOWSTemp
2008-12-26 02:44:06 —-D—- C:WINDOWSsystem32CatRoot
2008-12-25 07:50:18 —-RSHDC—- C:WINDOWSsystem32dllcache
2008-12-25 04:00:51 —-SD—- C:WINDOWSDownloaded Program Files
2008-12-24 02:43:48 —-ADC—- C:WINDOWS$NtUninstallWudf01005$
2008-12-24 02:43:48 —-ADC—- C:WINDOWS$NtUninstallwmp11$
2008-12-24 02:43:47 —-ADC—- C:WINDOWS$NtUninstallWMFDist11$
2008-12-24 02:43:47 —-ADC—- C:WINDOWS$NtUninstallQ828026$
2008-12-24 02:43:46 —-ADC—- C:WINDOWS$NtUninstallKB958644$
2008-12-24 02:43:46 —-ADC—- C:WINDOWS$NtUninstallKB958215$
2008-12-24 02:43:46 —-ADC—- C:WINDOWS$NtUninstallKB957097$
2008-12-24 02:43:46 —-ADC—- C:WINDOWS$NtUninstallKB957095$
2008-12-24 02:43:45 —-ADC—- C:WINDOWS$NtUninstallKB956841$
2008-12-24 02:43:45 —-ADC—- C:WINDOWS$NtUninstallKB956803$
2008-12-24 02:43:45 —-ADC—- C:WINDOWS$NtUninstallKB956802$
2008-12-24 02:43:45 —-ADC—- C:WINDOWS$NtUninstallKB956391$
2008-12-24 02:43:45 —-ADC—- C:WINDOWS$NtUninstallKB956390$
2008-12-24 02:43:45 —-ADC—- C:WINDOWS$NtUninstallKB955839$
2008-12-24 02:43:45 —-ADC—- C:WINDOWS$NtUninstallKB955069$
2008-12-24 02:43:44 —-ADC—- C:WINDOWS$NtUninstallKB954600$
2008-12-24 02:43:44 —-ADC—- C:WINDOWS$NtUninstallKB954459$
2008-12-24 02:43:44 —-ADC—- C:WINDOWS$NtUninstallKB954211$
2008-12-24 02:43:44 —-ADC—- C:WINDOWS$NtUninstallKB954154_WM11$
2008-12-24 02:43:44 —-ADC—- C:WINDOWS$NtUninstallKB953839$
2008-12-24 02:43:44 —-ADC—- C:WINDOWS$NtUninstallKB953838_0$
2008-12-24 02:43:43 —-ADC—- C:WINDOWS$NtUninstallKB953838$
2008-12-24 02:43:43 —-ADC—- C:WINDOWS$NtUninstallKB952954_0$
2008-12-24 02:43:43 —-ADC—- C:WINDOWS$NtUninstallKB952954$
2008-12-24 02:43:42 —-ADC—- C:WINDOWS$NtUninstallKB952287_0$
2008-12-24 02:43:42 —-ADC—- C:WINDOWS$NtUninstallKB952287$
2008-12-24 02:43:42 —-ADC—- C:WINDOWS$NtUninstallKB952069_WM9$
2008-12-24 02:43:42 —-ADC—- C:WINDOWS$NtUninstallKB951978$
2008-12-24 02:43:42 —-ADC—- C:WINDOWS$NtUninstallKB951748_0$
2008-12-24 02:43:41 —-ADC—- C:WINDOWS$NtUninstallKB951748$
2008-12-24 02:43:41 —-ADC—- C:WINDOWS$NtUninstallKB951698_0$
2008-12-24 02:43:41 —-ADC—- C:WINDOWS$NtUninstallKB951698$
2008-12-24 02:43:41 —-ADC—- C:WINDOWS$NtUninstallKB951376_0$
2008-12-24 02:43:40 —-ADC—- C:WINDOWS$NtUninstallKB951376-v2_0$
2008-12-24 02:43:40 —-ADC—- C:WINDOWS$NtUninstallKB951376-v2$
2008-12-24 02:43:40 —-ADC—- C:WINDOWS$NtUninstallKB951376$
2008-12-24 02:43:40 —-ADC—- C:WINDOWS$NtUninstallKB951072-v2$
2008-12-24 02:43:40 —-ADC—- C:WINDOWS$NtUninstallKB951066_0$
2008-12-24 02:43:40 —-ADC—- C:WINDOWS$NtUninstallKB951066$
2008-12-24 02:43:39 —-ADC—- C:WINDOWS$NtUninstallKB950974_0$
2008-12-24 02:43:39 —-ADC—- C:WINDOWS$NtUninstallKB950974$
2008-12-24 02:43:39 —-ADC—- C:WINDOWS$NtUninstallKB950762_0$
2008-12-24 02:43:39 —-ADC—- C:WINDOWS$NtUninstallKB950762$
2008-12-24 02:43:38 —-ADC—- C:WINDOWS$NtUninstallKB950760$
2008-12-24 02:43:38 —-ADC—- C:WINDOWS$NtUninstallKB950759_0$
2008-12-24 02:43:38 —-ADC—- C:WINDOWS$NtUninstallKB950759$
2008-12-24 02:43:38 —-ADC—- C:WINDOWS$NtUninstallKB950749$
2008-12-24 02:43:37 —-ADC—- C:WINDOWS$NtUninstallKB948881$
2008-12-24 02:43:37 —-ADC—- C:WINDOWS$NtUninstallKB948590$
2008-12-24 02:43:37 —-ADC—- C:WINDOWS$NtUninstallKB947864$
2008-12-24 02:43:36 —-ADC—- C:WINDOWS$NtUninstallKB946648_0$
2008-12-24 02:43:36 —-ADC—- C:WINDOWS$NtUninstallKB946648$
2008-12-24 02:43:36 —-ADC—- C:WINDOWS$NtUninstallKB946026$
2008-12-24 02:43:36 —-ADC—- C:WINDOWS$NtUninstallKB945553$
2008-12-24 02:43:35 —-ADC—- C:WINDOWS$NtUninstallKB944653$
2008-12-24 02:43:35 —-ADC—- C:WINDOWS$NtUninstallKB944533$
2008-12-24 02:43:35 —-ADC—- C:WINDOWS$NtUninstallKB944338$
2008-12-24 02:43:35 —-ADC—- C:WINDOWS$NtUninstallKB943485$
2008-12-24 02:43:35 —-ADC—- C:WINDOWS$NtUninstallKB943460$
2008-12-24 02:43:34 —-ADC—- C:WINDOWS$NtUninstallKB943055$
2008-12-24 02:43:34 —-ADC—- C:WINDOWS$NtUninstallKB942840$
2008-12-24 02:43:34 —-ADC—- C:WINDOWS$NtUninstallKB942763$
2008-12-24 02:43:34 —-ADC—- C:WINDOWS$NtUninstallKB942615$
2008-12-24 02:43:34 —-ADC—- C:WINDOWS$NtUninstallKB941693$
2008-12-24 02:43:33 —-ADC—- C:WINDOWS$NtUninstallKB941644$
2008-12-24 02:43:33 —-ADC—- C:WINDOWS$NtUninstallKB941569$
2008-12-24 02:43:33 —-ADC—- C:WINDOWS$NtUninstallKB941568$
2008-12-24 02:43:33 —-ADC—- C:WINDOWS$NtUninstallKB941202$
2008-12-24 02:43:33 —-ADC—- C:WINDOWS$NtUninstallKB939683$
2008-12-24 02:43:33 —-ADC—- C:WINDOWS$NtUninstallKB939653$
2008-12-24 02:43:32 —-ADC—- C:WINDOWS$NtUninstallKB938829$
2008-12-24 02:43:31 —-ADC—- C:WINDOWS$NtUninstallKB938828$
2008-12-24 02:43:31 —-ADC—- C:WINDOWS$NtUninstallKB938464$
2008-12-24 02:43:31 —-ADC—- C:WINDOWS$NtUninstallKB938127$
2008-12-24 02:43:30 —-ADC—- C:WINDOWS$NtUninstallKB937894$
2008-12-24 02:43:29 —-ADC—- C:WINDOWS$NtUninstallKB937143$
2008-12-24 02:43:27 —-ADC—- C:WINDOWS$NtUninstallKB936782_WMP9$
2008-12-24 02:43:27 —-ADC—- C:WINDOWS$NtUninstallKB936782_WMP11$
2008-12-24 02:43:26 —-ADC—- C:WINDOWS$NtUninstallKB936357$
2008-12-24 02:43:26 —-ADC—- C:WINDOWS$NtUninstallKB936021$
2008-12-24 02:43:25 —-ADC—- C:WINDOWS$NtUninstallKB935840$
2008-12-24 02:43:25 —-ADC—- C:WINDOWS$NtUninstallKB935839$
2008-12-24 02:43:24 —-ADC—- C:WINDOWS$NtUninstallKB933729$
2008-12-24 02:43:24 —-ADC—- C:WINDOWS$NtUninstallKB933566$
2008-12-24 02:43:22 —-ADC—- C:WINDOWS$NtUninstallKB933360$
2008-12-24 02:43:21 —-ADC—- C:WINDOWS$NtUninstallKB932168$
2008-12-24 02:43:20 —-ADC—- C:WINDOWS$NtUninstallKB931784$
2008-12-24 02:43:20 —-ADC—- C:WINDOWS$NtUninstallKB931768$
2008-12-24 02:43:18 —-ADC—- C:WINDOWS$NtUninstallKB931261$
2008-12-24 02:43:18 —-ADC—- C:WINDOWS$NtUninstallKB930916$
2008-12-24 02:43:18 —-ADC—- C:WINDOWS$NtUninstallKB930178$
2008-12-24 02:43:17 —-ADC—- C:WINDOWS$NtUninstallKB929969$
2008-12-24 02:43:17 —-ADC—- C:WINDOWS$NtUninstallKB929399$
2008-12-24 02:43:17 —-ADC—- C:WINDOWS$NtUninstallKB929338$
2008-12-24 02:43:16 —-ADC—- C:WINDOWS$NtUninstallKB929123$
2008-12-24 02:43:15 —-ADC—- C:WINDOWS$NtUninstallKB928843$
2008-12-24 02:43:14 —-ADC—- C:WINDOWS$NtUninstallKB928255$
2008-12-24 02:43:14 —-ADC—- C:WINDOWS$NtUninstallKB928090$
2008-12-24 02:43:13 —-ADC—- C:WINDOWS$NtUninstallKB927891$
2008-12-24 02:43:12 —-ADC—- C:WINDOWS$NtUninstallKB927802$
2008-12-24 02:43:12 —-ADC—- C:WINDOWS$NtUninstallKB927779$
2008-12-24 02:43:11 —-ADC—- C:WINDOWS$NtUninstallKB926436$
2008-12-24 02:43:11 —-ADC—- C:WINDOWS$NtUninstallKB926255$
2008-12-24 02:43:10 —-ADC—- C:WINDOWS$NtUninstallKB926239$
2008-12-24 02:43:10 —-ADC—- C:WINDOWS$NtUninstallKB925902$
2008-12-24 02:43:09 —-ADC—- C:WINDOWS$NtUninstallKB925486$
2008-12-24 02:43:09 —-ADC—- C:WINDOWS$NtUninstallKB925454$
2008-12-24 02:43:07 —-ADC—- C:WINDOWS$NtUninstallKB925398_WMP64$
2008-12-24 02:43:06 —-ADC—- C:WINDOWS$NtUninstallKB924667$
2008-12-24 02:43:06 —-ADC—- C:WINDOWS$NtUninstallKB924496$
2008-12-24 02:43:05 —-ADC—- C:WINDOWS$NtUninstallKB924270$
2008-12-24 02:43:05 —-ADC—- C:WINDOWS$NtUninstallKB924191$
2008-12-24 02:43:04 —-ADC—- C:WINDOWS$NtUninstallKB923980$
2008-12-24 02:43:04 —-ADC—- C:WINDOWS$NtUninstallKB923694$
2008-12-24 02:43:03 —-ADC—- C:WINDOWS$NtUninstallKB923689$
2008-12-24 02:43:02 —-ADC—- C:WINDOWS$NtUninstallKB923414$
2008-12-24 02:43:02 —-ADC—- C:WINDOWS$NtUninstallKB923191$
2008-12-24 02:43:02 —-ADC—- C:WINDOWS$NtUninstallKB922819$
2008-12-24 02:43:02 —-ADC—- C:WINDOWS$NtUninstallKB922760$
2008-12-24 02:43:00 —-ADC—- C:WINDOWS$NtUninstallKB922616$
2008-12-24 02:43:00 —-ADC—- C:WINDOWS$NtUninstallKB922582$
2008-12-24 02:42:58 —-ADC—- C:WINDOWS$NtUninstallKB921503$
2008-12-24 02:42:58 —-ADC—- C:WINDOWS$NtUninstallKB921398$
2008-12-24 02:42:57 —-ADC—- C:WINDOWS$NtUninstallKB920872$
2008-12-24 02:42:57 —-ADC—- C:WINDOWS$NtUninstallKB920685$
2008-12-24 02:42:57 —-ADC—- C:WINDOWS$NtUninstallKB920683$
2008-12-24 02:42:56 —-ADC—- C:WINDOWS$NtUninstallKB920670$
2008-12-24 02:42:56 —-ADC—- C:WINDOWS$NtUninstallKB920214$
2008-12-24 02:42:55 —-ADC—- C:WINDOWS$NtUninstallKB920213$
2008-12-24 02:42:55 —-ADC—- C:WINDOWS$NtUninstallKB919007$
2008-12-24 02:42:55 —-ADC—- C:WINDOWS$NtUninstallKB918439$
2008-12-24 02:42:54 —-ADC—- C:WINDOWS$NtUninstallKB918118$
2008-12-24 02:42:54 —-ADC—- C:WINDOWS$NtUninstallKB917953$
2008-12-24 02:42:53 —-ADC—- C:WINDOWS$NtUninstallKB917734_WMP9$
2008-12-24 02:42:53 —-ADC—- C:WINDOWS$NtUninstallKB917422$
2008-12-24 02:42:53 —-ADC—- C:WINDOWS$NtUninstallKB917344$
2008-12-24 02:42:53 —-ADC—- C:WINDOWS$NtUninstallKB916595$
2008-12-24 02:42:52 —-ADC—- C:WINDOWS$NtUninstallKB914389$
2008-12-24 02:42:52 —-ADC—- C:WINDOWS$NtUninstallKB914388$
2008-12-24 02:42:52 —-ADC—- C:WINDOWS$NtUninstallKB913580$
2008-12-24 02:42:51 —-ADC—- C:WINDOWS$NtUninstallKB912919$
2008-12-24 02:42:51 —-ADC—- C:WINDOWS$NtUninstallKB911927$
2008-12-24 02:42:51 —-ADC—- C:WINDOWS$NtUninstallKB911567$
2008-12-24 02:42:50 —-ADC—- C:WINDOWS$NtUninstallKB911564$
2008-12-24 02:42:50 —-ADC—- C:WINDOWS$NtUninstallKB911562$
2008-12-24 02:42:50 —-ADC—- C:WINDOWS$NtUninstallKB911280$
2008-12-24 02:42:50 —-ADC—- C:WINDOWS$NtUninstallKB910437$
2008-12-24 02:42:50 —-ADC—- C:WINDOWS$NtUninstallKB909394$
2008-12-24 02:42:49 —-ADC—- C:WINDOWS$NtUninstallKB908531$
2008-12-24 02:42:49 —-ADC—- C:WINDOWS$NtUninstallKB908519$
2008-12-24 02:42:49 —-ADC—- C:WINDOWS$NtUninstallKB905749$
2008-12-24 02:42:49 —-ADC—- C:WINDOWS$NtUninstallKB905414$
2008-12-24 02:42:48 —-ADC—- C:WINDOWS$NtUninstallKB904706$
2008-12-24 02:42:48 —-ADC—- C:WINDOWS$NtUninstallKB902400$
2008-12-24 02:42:47 —-ADC—- C:WINDOWS$NtUninstallKB901214$
2008-12-24 02:42:47 —-ADC—- C:WINDOWS$NtUninstallKB901017$
2008-12-24 02:42:46 —-ADC—- C:WINDOWS$NtUninstallKB900725$
2008-12-24 02:42:46 —-ADC—- C:WINDOWS$NtUninstallKB900485$
2008-12-24 02:42:45 —-ADC—- C:WINDOWS$NtUninstallKB899591$
2008-12-24 02:42:45 —-ADC—- C:WINDOWS$NtUninstallKB899587$
2008-12-24 02:42:45 —-ADC—- C:WINDOWS$NtUninstallKB896428$
2008-12-24 02:42:45 —-ADC—- C:WINDOWS$NtUninstallKB896424$
2008-12-24 02:42:44 —-ADC—- C:WINDOWS$NtUninstallKB896423$
2008-12-24 02:42:44 —-ADC—- C:WINDOWS$NtUninstallKB896358$
2008-12-24 02:42:44 —-ADC—- C:WINDOWS$NtUninstallKB894391$
2008-12-24 02:42:43 —-ADC—- C:WINDOWS$NtUninstallKB893756$
2008-12-24 02:42:43 —-ADC—- C:WINDOWS$NtUninstallKB891781$
2008-12-24 02:42:43 —-ADC—- C:WINDOWS$NtUninstallKB890859$
2008-12-24 02:42:43 —-ADC—- C:WINDOWS$NtUninstallKB888302$
2008-12-24 02:42:43 —-ADC—- C:WINDOWS$NtUninstallKB887472$
2008-12-24 02:42:42 —-ADC—- C:WINDOWS$NtUninstallKB886185$
2008-12-24 02:42:42 —-ADC—- C:WINDOWS$NtUninstallKB885836$
2008-12-24 02:42:42 —-ADC—- C:WINDOWS$NtUninstallKB873339$
2008-12-24 02:42:42 —-ADC—- C:WINDOWS$NtUninstallKB834707$
2008-12-24 02:42:41 —-ADC—- C:WINDOWS$NtUninstallKB828035$
2008-12-24 02:42:41 —-ADC—- C:WINDOWS$NtUninstallKB828028$
2008-12-24 02:42:41 —-ADC—- C:WINDOWS$NtUninstallKB826939$
2008-12-24 02:42:40 —-ADC—- C:WINDOWS$NtUninstallKB825119$
2008-12-24 02:42:40 —-ADC—- C:WINDOWS$NtUninstallKB824141$
2008-12-24 02:42:39 —-ADC—- C:WINDOWS$NtUninstallKB824105$
2008-12-24 02:42:39 —-ADC—- C:WINDOWS$NtUninstallKB823980$
2008-12-24 02:42:39 —-ADC—- C:WINDOWS$NtUninstallKB823182$
2008-12-24 02:42:39 —-ADC—- C:WINDOWS$NtServicePackUninstall$
2008-12-24 02:42:24 —-ADC—- C:WINDOWS$MSI31Uninstall_KB893803v2$
2008-12-23 22:34:03 —-AD—- C:Program FilesFurnish Pro
2008-12-23 22:34:02 —-D—- C:Program FilesPixie
2008-12-23 22:33:31 —-D—- C:Program FilesTomTom HOME
2008-12-23 22:07:32 —-D—- C:Program FilesCommon FilesRoxio Shared
2008-12-23 19:56:52 —-D—- C:Program FilesMicrosoft ActiveSync
2008-12-23 19:56:48 —-D—- C:WINDOWSHelp
2008-12-23 15:04:14 —-D—- C:Program FilesOpera
2008-12-18 19:01:20 —-HD—- C:WINDOWS$hf_mig$
2008-12-14 14:47:09 —-D—- C:Flat
2008-12-12 20:01:00 —-A—- C:WINDOWSsystem32mshtml.dll======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AFS2K;AFS2k; C:WINDOWSsystem32driversAFS2K.sys [2004-10-08 35840]
R1 easdrv;easdrv; C:WINDOWSsystem32DRIVERSeasdrv.sys [2008-07-01 53256]
R1 epfwtdir;epfwtdir; C:WINDOWSsystem32DRIVERSepfwtdir.sys [2008-07-01 34312]
R1 intelppm;Intel Processor Driver; C:WINDOWSSystem32DRIVERSintelppm.sys [2008-04-13 36352]
R1 PCLEPCI;PCLEPCI; ??C:WINDOWSSystem32driverspclepci.sys []
R1 Udfreadr_xp;Udfreadr_xp; C:WINDOWSsystem32driversUdfreadr_xp.sys [2005-01-17 213120]
R1 WS2IFSL;Среда Windows Socket 2.0 поддержки поставщиков не-IFS служб; C:WINDOWSSystem32driversws2ifsl.sys [2001-08-23 12032]
R2 eamon;EAMON; C:WINDOWSsystem32DRIVERSeamon.sys [2008-07-01 39944]
R2 GVCplDrv;GVCplDrv; C:WINDOWSsystem32driversGVCplDrv.sys [2003-05-06 20156]
R2 MASPINT;MASPINT; C:WINDOWSsystem32driversMASPINT.sys [2000-03-29 8096]
R2 PDIHWCTL;PDIHWCTL; ??C:WINDOWSsystem32driverspdihwctl.sys []
R2 PfModNT;PfModNT; ??C:WINDOWSSystem32PfModNT.sys []
R3 Arp1394;1394 ARP Client Protocol; C:WINDOWSSystem32DRIVERSarp1394.sys [2008-04-13 60800]
R3 ASAPIW2k;ASAPIW2K; C:WINDOWSsystem32driversASAPIW2k.sys [2004-03-10 11264]
R3 ati2mtag;ati2mtag; C:WINDOWSSystem32DRIVERSati2mtag.sys [2007-09-29 2456064]
R3 BridgeMP;MAC Bridge Miniport; C:WINDOWSSystem32DRIVERSbridge.sys [2008-04-13 71552]
R3 ctac32k;Creative AC3 Software Decoder; C:WINDOWSSystem32driversctac32k.sys [2003-03-25 134656]
R3 ctaud2k;Creative Audio Driver (WDM); C:WINDOWSsystem32driversctaud2k.sys [2003-04-11 502160]
R3 ctprxy2k;Creative Proxy Driver; C:WINDOWSSystem32driversctprxy2k.sys [2003-03-25 6144]
R3 ctsfm2k;Creative SoundFont Management Device Driver; C:WINDOWSSystem32driversctsfm2k.sys [2003-03-25 135696]
R3 emupia;E-mu Plug-in Architecture Driver; C:WINDOWSsystem32driversemupia2k.sys [2003-03-25 144736]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:WINDOWSSystem32DriversGEARAspiWDM.sys [2008-04-17 15464]
R3 ha10kx2k;Creative Hardware Abstract Layer Driver; C:WINDOWSsystem32driversha10kx2k.sys [2003-04-03 850880]
R3 hap16v2k;Creative P16V HAL Driver; C:WINDOWSSystem32drivershap16v2k.sys [2003-04-01 142752]
R3 hidusb;Microsoft HID Class Driver; C:WINDOWSSystem32DRIVERShidusb.sys [2008-04-13 10368]
R3 MaBtPort;MA Bluetooth VCOM Driver; C:WINDOWSSystem32DRIVERSmabtport.sys [2003-11-21 120800]
R3 MarvinBus;Pinnacle Marvin Bus; C:WINDOWSSystem32DRIVERSMarvinBus.sys [2004-03-29 90464]
R3 mouhid;Mouse HID Driver; C:WINDOWSSystem32DRIVERSmouhid.sys [2001-08-23 12160]
R3 NIC1394;1394 Net Driver; C:WINDOWSSystem32DRIVERSnic1394.sys [2008-04-13 61824]
R3 ossrv;Creative OS Services Driver; C:WINDOWSsystem32driversctoss2k.sys [2003-03-25 190176]
R3 pfc;Padus ASPI Shell; ??C:WINDOWSsystem32driverspfc.sys []
R3 rtl8139;Realtek RTL8139/810x Family Fast Ethernet NIC NT Driver; C:WINDOWSSystem32DRIVERSR8139n51.SYS [2002-10-04 46976]
R3 Stmatm;ZyXEL P-630S EE Минипорт; C:WINDOWSsystem32DRIVERSstmatm.sys [2003-08-12 60255]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:WINDOWSSystem32DRIVERSusbccgp.sys [2008-04-13 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:WINDOWSSystem32DRIVERSusbehci.sys [2008-04-13 30208]
R3 usbhub;Microsoft USB Standard Hub Driver; C:WINDOWSSystem32DRIVERSusbhub.sys [2008-04-13 59520]
R3 USBSTOR;USB Mass Storage Driver; C:WINDOWSSystem32DRIVERSUSBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:WINDOWSSystem32DRIVERSusbuhci.sys [2008-04-13 20608]
R3 ZD1211BU(TRENDnet);802.11g Wireless USB 2.0 Adapter C1 Driver(TRENDnet); C:WINDOWSsystem32DRIVERSzd1211Bu.sys [2005-10-28 402432]
R3 ZDPSp50;ZDPSp50 NDIS Protocol Driver; C:WINDOWSSystem32DriversZDPSp50.sys [2004-10-25 17664]
S1 Cdr4_xp;Cdr4_xp; C:WINDOWSsystem32driversCdr4_xp.sys [2007-07-27 9336]
S1 Cdralw2k;Cdralw2k; C:WINDOWSsystem32driversCdralw2k.sys [2007-07-27 9464]
S1 cdudf_xp;cdudf_xp; C:WINDOWSsystem32driverscdudf_xp.sys [2005-01-17 260224]
S3 61883;61883 Unit Device; C:WINDOWSSystem32DRIVERS61883.sys [2008-04-13 48128]
S3 Avc;AVC Device; C:WINDOWSSystem32DRIVERSavc.sys [2008-04-13 38912]
S3 Bridge;MAC Bridge; C:WINDOWSSystem32DRIVERSbridge.sys [2008-04-13 71552]
S3 BtAudio;Bluetooth Audio; C:WINDOWSSystem32DRIVERSbtaudio.sys []
S3 BTDriver;Bluetooth Virtual Communications Driver; C:WINDOWSSystem32DRIVERSbtport.sys []
S3 BthEnum;Bluetooth Enumerator Service; C:WINDOWSsystem32DRIVERSBthEnum.sys [2008-04-13 17024]
S3 BthPan;Bluetooth Device (Personal Area Network); C:WINDOWSsystem32DRIVERSbthpan.sys [2008-04-13 101120]
S3 BTHPORT;Bluetooth Port Driver; C:WINDOWSSystem32DriversBTHport.sys [2008-06-13 272128]
S3 BTHUSB;Bluetooth Radio USB Driver; C:WINDOWSSystem32DriversBTHUSB.sys [2008-04-13 18944]
S3 BTWDNDIS;Bluetooth LAN Access Server; C:WINDOWSSystem32DRIVERSbtwdndis.sys []
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:WINDOWSSystem32Driversbtwusb.sys []
S3 CCDECODE;Closed Caption Decoder; C:WINDOWSSystem32DRIVERSCCDECODE.sys [2008-04-13 17024]
S3 ctdvda2k;Creative DVD-Audio Device Driver; C:WINDOWSsystem32driversctdvda2k.sys [2003-03-27 287920]
S3 eyeonedp;eye-one display; C:WINDOWSsystem32DRIVERSeyeonedp.sys [2004-05-07 44344]
S3 FTDIBUS;SEMC DSS SyncStation Serial Converter Driver; C:WINDOWSsystem32driversftdibus.sys [2004-01-19 19153]
S3 FTLUND;Lundinova Filter Driver; C:WINDOWSsystem32driversftlund.sys [2004-01-19 6828]
S3 FTSER2K;SEMC DSS SyncStation Driver; C:WINDOWSsystem32driversftser2k.sys [2004-01-19 50396]
S3 GAGPDrv;GAGPDrv; C:WINDOWSsystem32driversGAGPDrv.sys [2003-05-30 4764]
S3 MaBtc;MA Bluetooth Core Driver; C:WINDOWSSystem32DRIVERSMABTC.sys [2003-11-25 80736]
S3 MSDV;Microsoft DV Camera and VCR; C:WINDOWSSystem32DRIVERSmsdv.sys [2008-04-13 51200]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:WINDOWSsystem32driversMSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:WINDOWSSystem32DRIVERSNABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:WINDOWSSystem32DRIVERSNdisIP.sys [2008-04-13 10880]
S3 Nokia USB Generic;Nokia USB Generic; C:WINDOWSsystem32driversnmwcdc.sys [2006-10-10 9216]
S3 Nokia USB Modem;Nokia USB Modem; C:WINDOWSsystem32driversnmwcdcm.sys [2006-10-10 12800]
S3 Nokia USB Phone Parent;Nokia USB Phone Parent; C:WINDOWSsystem32driversnmwcd.sys [2006-10-10 138240]
S3 Nokia USB Port;Nokia USB Port; C:WINDOWSsystem32driversnmwcdcj.sys [2006-10-10 12800]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:WINDOWSsystem32DRIVERSrfcomm.sys [2008-04-13 59136]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:WINDOWSSystem32DriversRootMdm.sys [2001-08-23 5888]
S3 SLIP;BDA Slip De-Framer; C:WINDOWSSystem32DRIVERSSLIP.sys [2008-04-13 11136]
S3 SONYPVU1;Sony USB Filter Driver (SONYPVU1); C:WINDOWSSystem32DRIVERSSONYPVU1.SYS [2001-08-17 7552]
S3 streamip;BDA IPSink; C:WINDOWSSystem32DRIVERSStreamIP.sys [2008-04-13 15232]
S3 TaurusUsb;Сервис ADSL-модема ZyXEL P-630S EE; C:WINDOWSsystem32DRIVERStorususb.sys [2005-04-13 653704]
S3 USB_RNDIS;ZTE ADSL Router USB Remote NDIS Device Driver; C:WINDOWSsystem32DRIVERSusb8023.sys [2008-04-13 12800]
S3 usb_rndisx;USB RNDIS Adapter; C:WINDOWSsystem32DRIVERSusb8023x.sys [2008-04-13 12800]
S3 USBAAPL;Apple Mobile USB Driver; C:WINDOWSSystem32Driversusbaapl.sys [2008-10-01 32000]
S3 usbprint;Microsoft USB PRINTER Class; C:WINDOWSSystem32DRIVERSusbprint.sys [2008-04-13 25856]
S3 usbscan;USB Scanner Driver; C:WINDOWSSystem32DRIVERSusbscan.sys [2008-04-13 15104]
S3 usbser;ZyXEL Omni 56K UNO Modem Driver; C:WINDOWSSystem32DRIVERSusbser.sys [2008-04-13 26112]
S3 wceusbsh;Windows CE USB Serial Host Driver; C:WINDOWSsystem32DRIVERSwceusbsh.sys [2005-06-14 104576]
S3 WSTCODEC;World Standard Teletext Codec; C:WINDOWSSystem32DRIVERSWSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation — User-mode Driver Framework Reflector; C:WINDOWSsystem32DRIVERSwudfrd.sys [2006-09-15 82688]
S4 IntelIde;IntelIde; C:WINDOWSsystem32driversIntelIde.sys []======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe [2008-11-07 132424]
R2 Ati HotKey Poller;Ati HotKey Poller; C:WINDOWSsystem32Ati2evxx.exe [2007-09-29 483328]
R2 Bonjour Service;Bonjour Service; C:Program FilesBonjourmDNSResponder.exe [2008-12-12 238888]
R2 BthServ;Bluetooth Support Service; C:WINDOWSsystem32svchost.exe [2008-04-14 14336]
R2 Creative Service for CDROM Access;Creative Service for CDROM Access; C:WINDOWSSystem32CTsvcCDA.exe [1999-12-13 44032]
R2 ekrn;Eset Service; C:Program FilesESETESET NOD32 Antivirusekrn.exe [2008-07-01 468224]
R2 NICSer_TEW429UF;NICSer_TEW429UF; C:Program FilesTRENDnet802.11g Wireless Client UtilityNICServ.exe [2005-06-15 529920]
R2 NICSrv_Detect_TEW429UF;NICSrv_Detect_TEW429UF; C:Program FilesTRENDnet802.11g Wireless Client UtilitySrvRunDetect.exe [2005-08-19 528896]
R2 WDBtnMgrSvc.exe;WD Drive Manager Service; C:Program FilesWestern DigitalWD Drive ManagerWDBtnMgrSvc.exe [2008-01-30 106496]
R2 WudfSvc;Windows Driver Foundation — User-mode Driver Framework; C:WINDOWSsystem32svchost.exe [2008-04-14 14336]
R3 iPod Service;Сервис iPod; C:Program FilesiPodbiniPodService.exe [2008-11-20 536872]
R3 ServiceLayer;ServiceLayer; C:Program FilesPC Connectivity SolutionServiceLayer.exe [2006-11-06 210432]
S2 ATI Smart;ATI Smart; C:WINDOWSsystem32ati2sgag.exe [2003-04-28 114775]
S3 Adobe LM Service;Adobe LM Service; C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe [2006-01-30 72704]
S3 aspnet_state;ASP.NET State Service; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:WINDOWSMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe [2007-10-24 70144]
S3 EhttpSrv;Eset HTTP Server; C:Program FilesESETESET NOD32 AntivirusEHttpSrv.exe [2008-07-01 19200]
S3 gusvc;Google Updater Service; C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe [2007-02-07 138168]
S3 IDriverT;InstallDriver Table Manager; C:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe [2005-04-04 69632]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:Program FilesWindows Media PlayerWMPNetwk.exe [2006-10-18 913408]
S4 AutoSyncService;Memeo AutoSync ; C:Program FilesMemeoAutoSyncMemeoService.exe [2007-07-06 31768]
EOF
Заранее благодарен за помощь. Алексей12 января, 2009 в 5:34 пп #21074Здравствуйте Алексей, добро пожаловать на Spyware-ru форум.
Ваш компьютер заражён несколькими паразитами, включая autorun.inf троян.
Прочитайте эту инструкцию Flash_Disinfector ещё одно оружие против autorun.inf троянов. Скачайте и запустите Flash_Disinfector, не забудьте при этом по требованию программы вставить ваш флэш диск или подключить другие внешние устройства хранения информации.Запустите HijackThis, для этого кликните Пуск, Выполнить, введите C:Program Filestrend microLexaF.exe и нажмите Enter.
Далее отметьте галочкой (слева) следующие строки:F2 - REG:system.ini: Shell=c:windowsexplorer.exe
F2 - REG:system.ini: UserInit=c:windowssystem32userinit.exeКликните по кнопке Fix checked и подтвердите свои действия выбрав YES.
Скачайте OTMoveIt3 by OldTimer кликнув по этой ссылке.
Запустите программу и в большое поле ввода (заголовок этого поля выделено желтым цветом) скопируйте следующий текст.:Processes
explorer.exe
:reg
[-HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{065C52C3-9AA2-4577-AFB0-33F17EA5686E}]
[-HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregTrickler]
[-HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregwinmgr.exe]
[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
"WINSOS VERIFY"=-
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionShellServiceObjectDelayLoad]
"SystemCheck2"=-
[-HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{35fecee9-afdc-11dd-a45d-0014d1c0ce28}]
:files
C:Documents and SettingsAll UsersApplication Dataagblib.dll
C:WINDOWSsystem32vbsys2.dll
:Commands
[emptytemp]
[start explorer]
[Reboot]Кликните по кнопке MoveIt!. В процессе работы возможна перезагрузка компьютера.
По-завершении работы программы должен будет показан лог, вставьте его в ваш ответ.
Так же к вашему следующему сообщению приложите свежий RSIt лог.14 января, 2009 в 11:43 дп #21075Добрый день, уважаемый админ! Спасибо Вам за помощь… Копирую в это сообщение лог от программ Move it и Rsit (в следующем сообщении
========== PROCESSES ==========
Process explorer.exe killed successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{065C52C3-9AA2-4577-AFB0-33F17EA5686E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregTrickler\ deleted successfully.
Registry key HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregwinmgr.exe\ deleted successfully.
Registry value HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun\WINSOS VERIFY deleted successfully.
Registry value HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionShellServiceObjectDelayLoad\SystemCheck2 deleted successfully.
Registry key HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{35fecee9-afdc-11dd-a45d-0014d1c0ce28}\ deleted successfully.
========== FILES ==========
File/Folder C:Documents and SettingsAll UsersApplication Dataagblib.dll not found.
File/Folder C:WINDOWSsystem32vbsys2.dll not found.
========== COMMANDS ==========
File delete failed. c:tempJETE60A.tmp scheduled to be deleted on reboot.
File delete failed. c:tempWCESLog.log scheduled to be deleted on reboot.
User’s Temp folder emptied.
User’s Temporary Internet Files folder emptied.
User’s Internet Explorer cache folder emptied.
Local Service Temp folder emptied.
File delete failed. C:Documents and SettingsLocalServiceLocal SettingsTemporary Internet FilesContent.IE5index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
Windows Temp folder emptied.
Java cache emptied.
FireFox cache emptied.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 011adoc.bx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 011md.dat scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 011url.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 011w.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 011wb.vx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 010adoc.bx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 010md.dat scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 010url.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 010w.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 010wb.vx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 009adoc.bx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 009md.dat scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 009url.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 009w.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 009wb.vx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 008adoc.bx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 008md.dat scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 008url.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 008w.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 008wb.vx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 007adoc.bx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 007md.dat scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 007url.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 007w.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 007wb.vx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 006adoc.bx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 006md.dat scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 006url.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 006w.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 006wb.vx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 005adoc.bx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 005md.dat scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 005url.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 005w.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 005wb.vx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 004adoc.bx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 004md.dat scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 004url.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 004w.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 004wb.vx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 003adoc.bx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 003md.dat scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 003url.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 003w.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 003wb.vx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 002adoc.bx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 002md.dat scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 002url.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 002w.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 002wb.vx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 001adoc.bx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 001md.dat scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 001url.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 001w.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 001wb.vx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 000adoc.bx scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 000md.dat scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 000url.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 000w.ax scheduled to be deleted on reboot.
File delete failed. C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 000wb.vx scheduled to be deleted on reboot.
Opera cache emptied.
Temp folders emptied.
Explorer started successfullyOTMoveIt3 by OldTimer — Version 1.0.8.0 log created on 01142009_142739
Files moved on Reboot…
File c:tempJETE60A.tmp not found!
c:tempWCESLog.log moved successfully.
File move failed. C:Documents and SettingsLocalServiceLocal SettingsTemporary Internet FilesContent.IE5index.dat scheduled to be moved on reboot.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 011adoc.bx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 011md.dat moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 011url.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 011w.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 011wb.vx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 010adoc.bx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 010md.dat moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 010url.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 010w.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 010wb.vx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 009adoc.bx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 009md.dat moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 009url.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 009w.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 009wb.vx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 008adoc.bx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 008md.dat moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 008url.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 008w.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 008wb.vx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 007adoc.bx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 007md.dat moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 007url.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 007w.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 007wb.vx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 006adoc.bx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 006md.dat moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 006url.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 006w.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 006wb.vx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 005adoc.bx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 005md.dat moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 005url.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 005w.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 005wb.vx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 004adoc.bx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 004md.dat moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 004url.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 004w.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 004wb.vx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 003adoc.bx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 003md.dat moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 003url.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 003w.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 003wb.vx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 002adoc.bx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 002md.dat moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 002url.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 002w.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 002wb.vx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 001adoc.bx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 001md.dat moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 001url.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 001w.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 001wb.vx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 000adoc.bx moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 000md.dat moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 000url.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 000w.ax moved successfully.
C:Documents and SettingsLexaFLocal SettingsApplication DataOperaOperaProfilevps 000wb.vx moved successfully.Спасибо ещё раз за помощь
С уважением, Филатов Алексей14 января, 2009 в 11:44 дп #21076Logfile of random’s system information tool 1.05 (written by random/random)
Run by LexaF at 2009-01-14 14:48:17
Microsoft Windows XP Professional Service Pack 3
System drive C: has 5 GB (10%) free of 49 GB
Total RAM: 1023 MB (50% free)Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:48:23, on 14.01.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: NormalRunning processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32Ati2evxx.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSsystem32Ati2evxx.exe
C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe
C:Program FilesBonjourmDNSResponder.exe
C:WINDOWSSystem32CTsvcCDA.exe
C:Program FilesESETESET NOD32 Antivirusekrn.exe
C:WINDOWSExplorer.EXE
C:Program FilesTRENDnet802.11g Wireless Client UtilityNICServ.exe
C:Program FilesTRENDnet802.11g Wireless Client UtilitySrvRunDetect.exe
C:Program FilesTRENDnet802.11g Wireless Client UtilityDetectDev.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesWestern DigitalWD Drive ManagerWDBtnMgrSvc.exe
C:WINDOWSnotepad.exe
C:Program FilesATI TechnologiesATI Control Panelatiptaxx.exe
C:WINDOWSSystem32G-VGA.exe
C:Program FilesCreativeSBAudigy2Surround MixerCTSysVol.exe
C:Program FilesCreativeSBAudigy2DVDAudioCTDVDDet.EXE
C:WINDOWSsystem32CTHELPER.EXE
C:Program FilesABBYY FineReader 7.0 Professional EditionAbbyyNewsReader.exe
C:Program FilesHewlett-PackardHP Share-to-Webhpgs2wnd.exe
C:Program FilesNokiaNokia PC Suite 6LaunchApplication.exe
C:Program FilesNokiaNokia Software LauncherNSLauncher.exe
C:Program FilesAdobePhotoshop Album Starter Edition3.0Appsapdproxy.exe
C:Program FilesWestern DigitalWD Drive ManagerWDBtnMgrUI.exe
C:Program FilesiTunesiTunesHelper.exe
C:Program FilesESETESET NOD32 Antivirusegui.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesSkypePhoneSkype.exe
C:Program FilesPicasa2PicasaMediaDetector.exe
C:Program FilesMessengermsmsgs.exe
C:Program FilesICQ6ICQ.exe
C:Program FilesPC Connectivity SolutionServiceLayer.exe
C:Program FilesMicrosoft ActiveSyncwcescomm.exe
C:Program FilesHewlett-PackardHP Share-to-Webhpgs2wnf.exe
C:PROGRA~1MICROS~4rapimgr.exe
C:Program FilesTRENDnet802.11g Wireless Client UtilityUMCCfg.exe
C:Program FilesNikonPictureProjectNkbMonitor.exe
C:Program FilesAdobeAcrobat 7.0Readerreader_sl.exe
C:Program FilesiPodbiniPodService.exe
C:WINDOWSsystem32wuauclt.exe
C:Program FilesOperaopera.exe
C:Documents and SettingsLexaFDesktopRSIT.exe
C:Program Filestrend microLexaF.exeR0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = about:blank
R1 — HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = *.local
O2 — BHO: AcroIEHlprObj Class — {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} — C:Program FilesAdobeAcrobat 7.0ActiveXAcroIEHelper.dll
O2 — BHO: SSVHelper Class — {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} — C:Program FilesJavajre1.6.0_05binssv.dll
O2 — BHO: Google Toolbar Helper — {AA58ED58-01DD-4d91-8333-CF10577473F7} — c:program filesgooglegoogletoolbar3.dll
O2 — BHO: Google Toolbar Notifier BHO — {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} — C:Program FilesGoogleGoogleToolbarNotifier3.0.1225.9868swg.dll
O2 — BHO: EpsonToolBandKicker Class — {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll
O3 — Toolbar: FlashGet Bar — {E0E899AB-F487-11D5-8D29-0050BA6940E3} — C:PROGRA~1FlashGetfgiebar.dll
O3 — Toolbar: EPSON Web-To-Page — {EE5D279F-081B-4404-994D-C6B60AAEBA6D} — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll
O3 — Toolbar: &Google — {2318C2B1-4965-11d4-9B18-009027A5CD4F} — c:program filesgooglegoogletoolbar3.dll
O4 — HKLM..Run: [ATIPTA] C:Program FilesATI TechnologiesATI Control Panelatiptaxx.exe
O4 — HKLM..Run: [VGAUtil] C:WINDOWSSystem32G-VGA.exe
O4 — HKLM..Run: [CTSysVol] C:Program FilesCreativeSBAudigy2Surround MixerCTSysVol.exe
O4 — HKLM..Run: [CTDVDDet] C:Program FilesCreativeSBAudigy2DVDAudioCTDVDDet.EXE
O4 — HKLM..Run: [CTHelper] CTHELPER.EXE
O4 — HKLM..Run: [AsioReg] REGSVR32.EXE /S CTASIO.DLL
O4 — HKLM..Run: [SBDrvDet] C:Program FilesCreativeSB Drive DetSBDrvDet.exe /r
O4 — HKLM..Run: [UpdReg] C:WINDOWSUpdReg.EXE
O4 — HKLM..Run: [FineReader7NewsReaderPro] C:Program FilesABBYY FineReader 7.0 Professional EditionAbbyyNewsReader.exe
O4 — HKLM..Run: [Share-to-Web Namespace Daemon] C:Program FilesHewlett-PackardHP Share-to-Webhpgs2wnd.exe
O4 — HKLM..Run: [PCSuiteTrayApplication] C:Program FilesNokiaNokia PC Suite 6LaunchApplication.exe -startup
O4 — HKLM..Run: [NSLauncher] C:Program FilesNokiaNokia Software LauncherNSLauncher.exe /startup
O4 — HKLM..Run: [Adobe Photo Downloader] «C:Program FilesAdobePhotoshop Album Starter Edition3.0Appsapdproxy.exe»
O4 — HKLM..Run: [WD Drive Manager] C:Program FilesWestern DigitalWD Drive ManagerWDBtnMgrUI.exe
O4 — HKLM..Run: [AppleSyncNotifier] C:Program FilesCommon FilesAppleMobile Device SupportbinAppleSyncNotifier.exe
O4 — HKLM..Run: [QuickTime Task] «C:Program FilesQuickTimeQTTask.exe» -atboottime
O4 — HKLM..Run: [iTunesHelper] «C:Program FilesiTunesiTunesHelper.exe»
O4 — HKLM..Run: [egui] «C:Program FilesESETESET NOD32 Antivirusegui.exe» /hide /waitservice
O4 — HKLM..RunServices: [winmgr.exe] scvhost.exe
O4 — HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe
O4 — HKCU..Run: [Skype] «C:Program FilesSkypePhoneSkype.exe» /nosplash /minimized
O4 — HKCU..Run: [Picasa Media Detector] C:Program FilesPicasa2PicasaMediaDetector.exe
O4 — HKCU..Run: [MSMSGS] «C:Program FilesMessengermsmsgs.exe» /background
O4 — HKCU..Run: [ICQ] «C:Program FilesICQ6ICQ.exe» silent
O4 — HKCU..Run: [H/PC Connection Agent] «C:Program FilesMicrosoft ActiveSyncwcescomm.exe»
O4 — HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSSystem32CTFMON.EXE (User ‘SYSTEM’)
O4 — HKUSS-1-5-18..Run: [PcSync] C:Program FilesNokiaNokia PC Suite 6PcSync2.exe /NoDialog (User ‘SYSTEM’)
O4 — HKUSS-1-5-18..Run: [] C:Documents and SettingsLexaF.exe /i (User ‘SYSTEM’)
O4 — HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSSystem32CTFMON.EXE (User ‘Default user’)
O4 — Startup: Adobe Gamma.lnk = C:Program FilesCommon FilesAdobeCalibrationAdobe Gamma Loader.exe
O4 — Global Startup: 802.11g Wireless Client Utility.lnk = ?
O4 — Global Startup: NkbMonitor.exe.lnk = C:Program FilesNikonPictureProjectNkbMonitor.exe
O4 — Global Startup: Ускоренный запуск Adobe Reader.lnk = C:Program FilesAdobeAcrobat 7.0Readerreader_sl.exe
O8 — Extra context menu item: &Экспорт в Microsoft Excel — res://C:PROGRA~1MICROS~2Office10EXCEL.EXE/3000
O8 — Extra context menu item: Закачать все при помощи FlashGet — C:Program FilesFlashGetjc_all.htm
O8 — Extra context menu item: Закачать при помощи FlashGet — C:Program FilesFlashGetjc_link.htm
O9 — Extra button: (no name) — {08B0E5C0-4FCB-11CF-AAA5-00401C608501} — C:Program FilesJavajre1.6.0_05binssv.dll
O9 — Extra ‘Tools’ menuitem: Sun Java Console — {08B0E5C0-4FCB-11CF-AAA5-00401C608501} — C:Program FilesJavajre1.6.0_05binssv.dll
O9 — Extra button: Create Mobile Favorite — {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} — C:PROGRA~1MICROS~4INetRepl.dll
O9 — Extra button: (no name) — {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} — C:PROGRA~1MICROS~4INetRepl.dll
O9 — Extra ‘Tools’ menuitem: Добавить в избранное мобильного устройства… — {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} — C:PROGRA~1MICROS~4INetRepl.dll
O9 — Extra button: ICQ 4.1 — {B863453A-26C3-4e1f-A54D-A2CD196348E9} — C:Program FilesICQLiteICQLite.exe (file missing)
O9 — Extra ‘Tools’ menuitem: ICQ Lite — {B863453A-26C3-4e1f-A54D-A2CD196348E9} — C:Program FilesICQLiteICQLite.exe (file missing)
O9 — Extra button: FlashGet — {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} — C:PROGRA~1FlashGetflashget.exe
O9 — Extra ‘Tools’ menuitem: &FlashGet — {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} — C:PROGRA~1FlashGetflashget.exe
O9 — Extra button: (no name) — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra button: ICQ6 — {E59EB121-F339-4851-A3BA-FE49C35617C2} — C:Program FilesICQ6ICQ.exe
O9 — Extra ‘Tools’ menuitem: ICQ6 — {E59EB121-F339-4851-A3BA-FE49C35617C2} — C:Program FilesICQ6ICQ.exe
O9 — Extra button: Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O9 — Extra ‘Tools’ menuitem: Windows Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O10 — Unknown file in Winsock LSP: c:windowssystem32nwprovau.dll
O12 — Plugin for .spop: C:Program FilesInternet ExplorerPluginsNPDocBox.dll
O16 — DPF: {11111111-1111-1111-1111-111111113457} — file://c:ied_s7m.cab
O16 — DPF: {11111111-1111-1111-1111-511111113457} — file://c:x.cab
O16 — DPF: {11111111-1111-1111-1111-511111113458} — file://c:x.cab
O16 — DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) — http://go.microsoft.com/fwlink/?linkid=39204
O16 — DPF: {33331111-1111-1111-1111-611111193423} —
O16 — DPF: {33331111-1111-1111-1111-611111193429} —
O16 — DPF: {33331111-1111-1111-1111-615111193427} —
O16 — DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) — http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1165077325234
O16 — DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) — http://80.247.200.168/willemii/AxisCamControl.ocx
O16 — DPF: {9eb320ce-be1d-4304-a081-4b4665414bef} — file://c:x.cab
O17 — HKLMSystemCCSServicesTcpip..{3E0A4A09-56A5-4FE7-B661-076246DC4FD2}: NameServer = 192.168.1.1
O17 — HKLMSystemCCSServicesTcpip..{9033B17E-296C-447E-A5A8-751A3CEA89FF}: NameServer = 192.168.1.1
O18 — Protocol: skype4com — {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} — C:PROGRA~1COMMON~1SkypeSKYPE4~1.DLL
O23 — Service: Adobe LM Service — Adobe Systems — C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe
O23 — Service: Apple Mobile Device — Apple Inc. — C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe
O23 — Service: Ati HotKey Poller — ATI Technologies Inc. — C:WINDOWSsystem32Ati2evxx.exe
O23 — Service: ATI Smart — Unknown owner — C:WINDOWSsystem32ati2sgag.exe
O23 — Service: Bonjour Service — Apple Inc. — C:Program FilesBonjourmDNSResponder.exe
O23 — Service: Creative Service for CDROM Access — Creative Technology Ltd — C:WINDOWSSystem32CTsvcCDA.exe
O23 — Service: Eset HTTP Server (EhttpSrv) — ESET — C:Program FilesESETESET NOD32 AntivirusEHttpSrv.exe
O23 — Service: Eset Service (ekrn) — ESET — C:Program FilesESETESET NOD32 Antivirusekrn.exe
O23 — Service: Google Updater Service (gusvc) — Google — C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe
O23 — Service: InstallDriver Table Manager (IDriverT) — Macrovision Corporation — C:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe
O23 — Service: Сервис iPod (iPod Service) — Apple Inc. — C:Program FilesiPodbiniPodService.exe
O23 — Service: Machine Debug Manager (MDM) — Pinnacle Systems GmbH — (no file)
O23 — Service: NICSer_TEW429UF — Unknown owner — C:Program FilesTRENDnet802.11g Wireless Client UtilityNICServ.exe
O23 — Service: NICSrv_Detect_TEW429UF — Unknown owner — C:Program FilesTRENDnet802.11g Wireless Client UtilitySrvRunDetect.exe
O23 — Service: ServiceLayer — Nokia. — C:Program FilesPC Connectivity SolutionServiceLayer.exe
O23 — Service: WD Drive Manager Service (WDBtnMgrSvc.exe) — WDC — C:Program FilesWestern DigitalWD Drive ManagerWDBtnMgrSvc.exe—
End of file — 12115 bytes======Scheduled tasks folder======
C:WINDOWStasksAppleSoftwareUpdate.job
======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class — C:Program FilesAdobeAcrobat 7.0ActiveXAcroIEHelper.dll [2004-12-14 63136][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class — C:Program FilesJavajre1.6.0_05binssv.dll [2008-02-22 509328][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper — c:program filesgooglegoogletoolbar3.dll [2007-01-19 2403392][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO — C:Program FilesGoogleGoogleToolbarNotifier3.0.1225.9868swg.dll [2008-04-13 734704][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll [2004-02-10 339968][HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{E0E899AB-F487-11D5-8D29-0050BA6940E3} — FlashGet Bar — C:PROGRA~1FlashGetfgiebar.dll [2002-05-27 86016]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} — EPSON Web-To-Page — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll [2004-02-10 339968]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} — &Google — c:program filesgooglegoogletoolbar3.dll [2007-01-19 2403392][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«ATIPTA»=C:Program FilesATI TechnologiesATI Control Panelatiptaxx.exe [2003-04-28 323584]
«VGAUtil»=C:WINDOWSSystem32G-VGA.exe [2003-01-06 540672]
«CTSysVol»=C:Program FilesCreativeSBAudigy2Surround MixerCTSysVol.exe [2002-10-29 49152]
«CTDVDDet»=C:Program FilesCreativeSBAudigy2DVDAudioCTDVDDet.EXE [2002-09-30 45056]
«CTHelper»=C:WINDOWSsystem32CTHELPER.EXE [2003-04-10 28672]
«AsioReg»=REGSVR32.EXE /S CTASIO.DLL []
«SBDrvDet»=C:Program FilesCreativeSB Drive DetSBDrvDet.exe [2002-12-03 45056]
«UpdReg»=C:WINDOWSUpdReg.EXE [2000-05-11 90112]
«FineReader7NewsReaderPro»=C:Program FilesABBYY FineReader 7.0 Professional EditionAbbyyNewsReader.exe [2003-08-19 278528]
«Share-to-Web Namespace Daemon»=C:Program FilesHewlett-PackardHP Share-to-Webhpgs2wnd.exe [2002-04-17 69632]
«PCSuiteTrayApplication»=C:Program FilesNokiaNokia PC Suite 6LaunchApplication.exe [2006-11-08 222208]
«NSLauncher»=C:Program FilesNokiaNokia Software LauncherNSLauncher.exe [2006-11-28 2658304]
«Adobe Photo Downloader»=C:Program FilesAdobePhotoshop Album Starter Edition3.0Appsapdproxy.exe [2005-06-06 57344]
«WD Drive Manager»=C:Program FilesWestern DigitalWD Drive ManagerWDBtnMgrUI.exe [2008-01-30 438272]
«AppleSyncNotifier»=C:Program FilesCommon FilesAppleMobile Device SupportbinAppleSyncNotifier.exe [2008-11-07 111936]
«QuickTime Task»=C:Program FilesQuickTimeQTTask.exe [2008-11-04 413696]
«iTunesHelper»=C:Program FilesiTunesiTunesHelper.exe [2008-11-20 290088]
«egui»=C:Program FilesESETESET NOD32 Antivirusegui.exe [2008-07-01 1447168][HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
«ctfmon.exe»=C:WINDOWSsystem32ctfmon.exe [2008-04-14 15360]
«Skype»=C:Program FilesSkypePhoneSkype.exe [2008-09-23 21755688]
«Picasa Media Detector»=C:Program FilesPicasa2PicasaMediaDetector.exe [2007-10-24 443968]
«MSMSGS»=C:Program FilesMessengermsmsgs.exe [2008-04-14 1695232]
«ICQ»=C:Program FilesICQ6ICQ.exe [2008-09-01 173304]
«H/PC Connection Agent»=C:Program FilesMicrosoft ActiveSyncwcescomm.exe [2006-11-13 1289000][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregMSMSGS]
C:Program FilesMessengermsmsgs.exe [2008-04-14 1695232][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregRoxioAudioCentral]
C:Program FilesRoxioEasy CD Creator 6AudioCentralRxMon.exe [][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregRoxioDragToDisc]
C:Program FilesRoxioEasy CD Creator 6DragToDiscDrgToDsc.exe [][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregSunJavaUpdateSched]
C:Program FilesJavajre1.6.0_05binjusched.exe [2008-02-22 144784][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregswg]
C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe [2007-07-28 68856][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupfolderC:^Documents and Settings^All Users^Start Menu^Programs^Startup^Microsoft Office.lnk]
C:PROGRA~1MICROS~2Office10OSA.EXE [2001-02-13 83360][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupfolderC:^Documents and Settings^All Users^Главное меню^Программы^Автозагрузка^Microsoft Office.lnk]
C:PROGRA~1MICROS~2Office10OSA.EXE [2001-02-13 83360]C:Documents and SettingsAll UsersГлавное менюПрограммыАвтозагрузка
802.11g Wireless Client Utility.lnk — C:Program FilesTRENDnet802.11g Wireless Client UtilityUMCCfg.exe
NkbMonitor.exe.lnk — C:Program FilesNikonPictureProjectNkbMonitor.exe
Ускоренный запуск Adobe Reader.lnk — C:Program FilesAdobeAcrobat 7.0Readerreader_sl.exeC:Documents and SettingsLexaFStart MenuProgramsStartup
Adobe Gamma.lnk — C:Program FilesCommon FilesAdobeCalibrationAdobe Gamma Loader.exe[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyAtiExtEvent]
C:WINDOWSsystem32Ati2evxx.dll [2007-09-29 122880][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyWgaLogon]
C:WINDOWSsystem32WgaLogon.dll [2008-06-04 0][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionShellServiceObjectDelayLoad]
WPDShServiceObj — {AAA288BA-9A4C-45B0-95D7-94D524869DB5} — C:WINDOWSsystem32WPDShServiceObj.dll [2006-10-18 133632][HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkUploadMgr]
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
«dontdisplaylastusername»=0
«legalnoticecaption»=
«legalnoticetext»=
«shutdownwithoutlogon»=1
«undockwithoutlogon»=1[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«NoDriveTypeAutoRun»=36
«NoDriveAutoRun»=FFFFFFFF[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:Program FilesMessengermsmsgs.exe»=»C:Program FilesMessengermsmsgs.exe:*:Enabled:Windows Messenger»
«C:Program FilesIntuwave LtdSharedmRouterRunTimemRouterRuntime.exe»=»C:Program FilesIntuwave LtdSharedmRouterRunTimemRouterRuntime.exe:*:Enabled:mRouterRuntime»
«D:Program FilesMicrosoft GamesAge of Empires IIempires2.exe»=»D:Program FilesMicrosoft GamesAge of Empires IIempires2.exe:*:Enabled:Age of Empires II»
«C:GamesSinEP1SinEpisodes.exe»=»C:GamesSinEP1SinEpisodes.exe:*:Disabled:SinEpisodes»
«C:Program FilesICQLiteICQLite.exe»=»C:Program FilesICQLiteICQLite.exe:*:Disabled:ICQLite»
«D:GamesNeed For Speed Undergroundspeed.exe»=»D:GamesNeed For Speed Undergroundspeed.exe:*:Enabled:speed»
«C:Program FilesTVAntsTvants.exe»=»C:Program FilesTVAntsTvants.exe:*:Enabled:TVAnts»
«C:Program FilesMicrosoft ActiveSyncrapimgr.exe»=»C:Program FilesMicrosoft ActiveSyncrapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager»
«C:Program FilesMicrosoft ActiveSyncwcescomm.exe»=»C:Program FilesMicrosoft ActiveSyncwcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager»
«C:Program FilesMicrosoft ActiveSyncWCESMgr.exe»=»C:Program FilesMicrosoft ActiveSyncWCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application»
«C:Program FilesSprite SoftwareSprite BackupSpriteService.exe»=»C:Program FilesSprite SoftwareSprite BackupSpriteService.exe:*:Enabled:Sprite Backup PC Service»
«C:Documents and SettingsAll UsersApplication DataKaspersky Lab Setup FilesKaspersky Anti-Virus 7.0.1.325Russiansetup.exe»=»C:Documents and SettingsAll UsersApplication DataKaspersky Lab Setup FilesKaspersky Anti-Virus 7.0.1.325Russiansetup.exe:*:Enabled:Программа установки Антивируса Касперского 7.0»
«C:Program FilesKaspersky LabKaspersky Anti-Virus 7.0avp.exe»=»C:Program FilesKaspersky LabKaspersky Anti-Virus 7.0avp.exe:*:Enabled:Kaspersky Anti-Virus»
«C:Program FilesOperaOpera.exe»=»C:Program FilesOperaOpera.exe:*:Enabled:Opera Internet Browser»
«C:Program FilesICQ6ICQ.exe»=»C:Program FilesICQ6ICQ.exe:*:Enabled:ICQ6»
«C:Program FilesSopCastadvSopAdver.exe»=»C:Program FilesSopCastadvSopAdver.exe:*:Enabled:SopCast Adver»
«C:Program FilesSopCastSopCast.exe»=»C:Program FilesSopCastSopCast.exe:*:Enabled:SopCast Main Application»
«C:Program FilesuTorrentuTorrent.exe»=»C:Program FilesuTorrentuTorrent.exe:*:Enabled:µTorrent»
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»
«C:Program FilesSkypePhoneSkype.exe»=»C:Program FilesSkypePhoneSkype.exe:*:Enabled:Skype»
«C:Program FilesiTunesiTunes.exe»=»C:Program FilesiTunesiTunes.exe:*:Enabled:iTunes»
«C:WINDOWSsystem32rundll32.exe»=»C:WINDOWSsystem32rundll32.exe:*:Enabled:Run a DLL as an App»
«C:WINDOWSsystem32dpvsetup.exe»=»C:WINDOWSsystem32dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test»
«C:Program FilesBonjourmDNSResponder.exe»=»C:Program FilesBonjourmDNSResponder.exe:*:Enabled:Bonjour»[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:Program FilesMicrosoft ActiveSyncrapimgr.exe»=»C:Program FilesMicrosoft ActiveSyncrapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager»
«C:Program FilesMicrosoft ActiveSyncwcescomm.exe»=»C:Program FilesMicrosoft ActiveSyncwcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager»
«C:Program FilesMicrosoft ActiveSyncWCESMgr.exe»=»C:Program FilesMicrosoft ActiveSyncWCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application»
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2F]
shellAutoRuncommand — F:Setup.exe -Autorun[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2G]
shellAutoRuncommand — G:Setup.exe -Autorun======List of files/folders created in the last 1 months======
2009-01-14 14:27:39 —-D—- C:_OTMoveIt
2009-01-13 13:19:16 —-D—- C:Program FilesAlawar
2009-01-12 22:41:18 —-RASHD—- C:autorun.inf
2009-01-11 22:38:25 —-D—- C:Program Filestrend micro
2009-01-11 22:38:18 —-D—- C:rsit
2009-01-06 00:47:38 —-D—- C:Program FilesOE-Mail Recovery
2009-01-05 21:42:24 —-D—- C:Program FilesAddress Book Recovery
2009-01-05 12:44:04 —-A—- C:WINDOWSsystem32ptpusb.dll
2009-01-05 12:43:58 —-A—- C:WINDOWSsystem32ptpusd.dll
2008-12-30 22:46:33 —-D—- C:Program FilesSprite Software
2008-12-26 02:43:58 —-N—- C:WINDOWSsystem32cc3260mt.dll
2008-12-25 04:38:54 —-D—- C:Program FilesTRENDnet
2008-12-25 03:25:08 —-D—- C:Program FilesESET
2008-12-25 03:25:08 —-D—- C:Documents and SettingsAll UsersApplication DataESET
2008-12-23 23:05:39 —-SHD—- C:Config.Msi
2008-12-23 21:34:04 —-D—- C:Program FilesPrevxCSI
2008-12-23 21:33:56 —-D—- C:Documents and SettingsAll UsersApplication DataPrevxCSI
2008-12-23 21:00:21 —-D—- C:Documents and SettingsLexaFApplication DataUniblue
2008-12-23 21:00:11 —-D—- C:Program FilesUniblue
2008-12-23 20:59:18 —-HDC—- C:Documents and SettingsAll UsersApplication Data{B46E1EF5-0B37-4DB4-A4E2-9F2B41036185}
2008-12-23 15:02:51 —-D—- C:Program FilesBonjour
2008-12-23 00:35:39 —-A—- C:WINDOWSsystem32rundll32.exe
2008-12-18 19:01:47 —-ADC—- C:WINDOWS$NtUninstallKB960714$======List of files/folders modified in the last 1 months======
2009-01-14 14:48:20 —-AD—- C:temp
2009-01-14 14:47:40 —-AD—- C:WINDOWSsystem32
2009-01-14 14:47:40 —-A—- C:WINDOWSsystem32PerfStringBackup.INI
2009-01-14 14:42:06 —-A—- C:WINDOWSSchedLgU.Txt
2009-01-14 14:27:48 —-D—- C:WINDOWSTemp
2009-01-14 14:21:35 —-D—- C:WINDOWSPrefetch
2009-01-13 13:28:03 —-D—- C:Program FilesMicrosoft ActiveSync
2009-01-13 13:19:16 —-RD—- C:Program Files
2009-01-13 13:16:30 —-D—- C:WINDOWSsystem32CatRoot2
2009-01-11 23:19:19 —-A—- C:WINDOWSsystem32user32.DLL
2009-01-05 21:33:51 —-D—- C:WINDOWS
2009-01-05 21:29:05 —-SD—- C:Documents and SettingsLexaFApplication DataMicrosoft
2009-01-05 21:28:39 —-SHD—- C:WINDOWSInstaller
2009-01-05 21:22:35 —-A—- C:ASLog.txt
2008-12-30 22:48:22 —-D—- C:Documents and SettingsLexaFApplication DataSprite Software
2008-12-30 22:46:32 —-HD—- C:Program FilesInstallShield Installation Information
2008-12-29 22:46:47 —-A—- C:WINDOWSntbtlog.txt
2008-12-29 22:44:14 —-D—- C:WINDOWSsystem32drivers
2008-12-29 22:43:31 —-D—- C:WINDOWSinf
2008-12-26 02:44:06 —-D—- C:WINDOWSsystem32CatRoot
2008-12-25 07:50:18 —-RSHDC—- C:WINDOWSsystem32dllcache
2008-12-25 04:00:51 —-SD—- C:WINDOWSDownloaded Program Files
2008-12-24 02:43:48 —-ADC—- C:WINDOWS$NtUninstallWudf01005$
2008-12-24 02:43:48 —-ADC—- C:WINDOWS$NtUninstallwmp11$
2008-12-24 02:43:47 —-ADC—- C:WINDOWS$NtUninstallWMFDist11$
2008-12-24 02:43:47 —-ADC—- C:WINDOWS$NtUninstallQ828026$
2008-12-24 02:43:46 —-ADC—- C:WINDOWS$NtUninstallKB958644$
2008-12-24 02:43:46 —-ADC—- C:WINDOWS$NtUninstallKB958215$
2008-12-24 02:43:46 —-ADC—- C:WINDOWS$NtUninstallKB957097$
2008-12-24 02:43:46 —-ADC—- C:WINDOWS$NtUninstallKB957095$
2008-12-24 02:43:45 —-ADC—- C:WINDOWS$NtUninstallKB956841$
2008-12-24 02:43:45 —-ADC—- C:WINDOWS$NtUninstallKB956803$
2008-12-24 02:43:45 —-ADC—- C:WINDOWS$NtUninstallKB956802$
2008-12-24 02:43:45 —-ADC—- C:WINDOWS$NtUninstallKB956391$
2008-12-24 02:43:45 —-ADC—- C:WINDOWS$NtUninstallKB956390$
2008-12-24 02:43:45 —-ADC—- C:WINDOWS$NtUninstallKB955839$
2008-12-24 02:43:45 —-ADC—- C:WINDOWS$NtUninstallKB955069$
2008-12-24 02:43:44 —-ADC—- C:WINDOWS$NtUninstallKB954600$
2008-12-24 02:43:44 —-ADC—- C:WINDOWS$NtUninstallKB954459$
2008-12-24 02:43:44 —-ADC—- C:WINDOWS$NtUninstallKB954211$
2008-12-24 02:43:44 —-ADC—- C:WINDOWS$NtUninstallKB954154_WM11$
2008-12-24 02:43:44 —-ADC—- C:WINDOWS$NtUninstallKB953839$
2008-12-24 02:43:44 —-ADC—- C:WINDOWS$NtUninstallKB953838_0$
2008-12-24 02:43:43 —-ADC—- C:WINDOWS$NtUninstallKB953838$
2008-12-24 02:43:43 —-ADC—- C:WINDOWS$NtUninstallKB952954_0$
2008-12-24 02:43:43 —-ADC—- C:WINDOWS$NtUninstallKB952954$
2008-12-24 02:43:42 —-ADC—- C:WINDOWS$NtUninstallKB952287_0$
2008-12-24 02:43:42 —-ADC—- C:WINDOWS$NtUninstallKB952287$
2008-12-24 02:43:42 —-ADC—- C:WINDOWS$NtUninstallKB952069_WM9$
2008-12-24 02:43:42 —-ADC—- C:WINDOWS$NtUninstallKB951978$
2008-12-24 02:43:42 —-ADC—- C:WINDOWS$NtUninstallKB951748_0$
2008-12-24 02:43:41 —-ADC—- C:WINDOWS$NtUninstallKB951748$
2008-12-24 02:43:41 —-ADC—- C:WINDOWS$NtUninstallKB951698_0$
2008-12-24 02:43:41 —-ADC—- C:WINDOWS$NtUninstallKB951698$
2008-12-24 02:43:41 —-ADC—- C:WINDOWS$NtUninstallKB951376_0$
2008-12-24 02:43:40 —-ADC—- C:WINDOWS$NtUninstallKB951376-v2_0$
2008-12-24 02:43:40 —-ADC—- C:WINDOWS$NtUninstallKB951376-v2$
2008-12-24 02:43:40 —-ADC—- C:WINDOWS$NtUninstallKB951376$
2008-12-24 02:43:40 —-ADC—- C:WINDOWS$NtUninstallKB951072-v2$
2008-12-24 02:43:40 —-ADC—- C:WINDOWS$NtUninstallKB951066_0$
2008-12-24 02:43:40 —-ADC—- C:WINDOWS$NtUninstallKB951066$
2008-12-24 02:43:39 —-ADC—- C:WINDOWS$NtUninstallKB950974_0$
2008-12-24 02:43:39 —-ADC—- C:WINDOWS$NtUninstallKB950974$
2008-12-24 02:43:39 —-ADC—- C:WINDOWS$NtUninstallKB950762_0$
2008-12-24 02:43:39 —-ADC—- C:WINDOWS$NtUninstallKB950762$
2008-12-24 02:43:38 —-ADC—- C:WINDOWS$NtUninstallKB950760$
2008-12-24 02:43:38 —-ADC—- C:WINDOWS$NtUninstallKB950759_0$
2008-12-24 02:43:38 —-ADC—- C:WINDOWS$NtUninstallKB950759$
2008-12-24 02:43:38 —-ADC—- C:WINDOWS$NtUninstallKB950749$
2008-12-24 02:43:37 —-ADC—- C:WINDOWS$NtUninstallKB948881$
2008-12-24 02:43:37 —-ADC—- C:WINDOWS$NtUninstallKB948590$
2008-12-24 02:43:37 —-ADC—- C:WINDOWS$NtUninstallKB947864$
2008-12-24 02:43:36 —-ADC—- C:WINDOWS$NtUninstallKB946648_0$
2008-12-24 02:43:36 —-ADC—- C:WINDOWS$NtUninstallKB946648$
2008-12-24 02:43:36 —-ADC—- C:WINDOWS$NtUninstallKB946026$
2008-12-24 02:43:36 —-ADC—- C:WINDOWS$NtUninstallKB945553$
2008-12-24 02:43:35 —-ADC—- C:WINDOWS$NtUninstallKB944653$
2008-12-24 02:43:35 —-ADC—- C:WINDOWS$NtUninstallKB944533$
2008-12-24 02:43:35 —-ADC—- C:WINDOWS$NtUninstallKB944338$
2008-12-24 02:43:35 —-ADC—- C:WINDOWS$NtUninstallKB943485$
2008-12-24 02:43:35 —-ADC—- C:WINDOWS$NtUninstallKB943460$
2008-12-24 02:43:34 —-ADC—- C:WINDOWS$NtUninstallKB943055$
2008-12-24 02:43:34 —-ADC—- C:WINDOWS$NtUninstallKB942840$
2008-12-24 02:43:34 —-ADC—- C:WINDOWS$NtUninstallKB942763$
2008-12-24 02:43:34 —-ADC—- C:WINDOWS$NtUninstallKB942615$
2008-12-24 02:43:34 —-ADC—- C:WINDOWS$NtUninstallKB941693$
2008-12-24 02:43:33 —-ADC—- C:WINDOWS$NtUninstallKB941644$
2008-12-24 02:43:33 —-ADC—- C:WINDOWS$NtUninstallKB941569$
2008-12-24 02:43:33 —-ADC—- C:WINDOWS$NtUninstallKB941568$
2008-12-24 02:43:33 —-ADC—- C:WINDOWS$NtUninstallKB941202$
2008-12-24 02:43:33 —-ADC—- C:WINDOWS$NtUninstallKB939683$
2008-12-24 02:43:33 —-ADC—- C:WINDOWS$NtUninstallKB939653$
2008-12-24 02:43:32 —-ADC—- C:WINDOWS$NtUninstallKB938829$
2008-12-24 02:43:31 —-ADC—- C:WINDOWS$NtUninstallKB938828$
2008-12-24 02:43:31 —-ADC—- C:WINDOWS$NtUninstallKB938464$
2008-12-24 02:43:31 —-ADC—- C:WINDOWS$NtUninstallKB938127$
2008-12-24 02:43:30 —-ADC—- C:WINDOWS$NtUninstallKB937894$
2008-12-24 02:43:29 —-ADC—- C:WINDOWS$NtUninstallKB937143$
2008-12-24 02:43:27 —-ADC—- C:WINDOWS$NtUninstallKB936782_WMP9$
2008-12-24 02:43:27 —-ADC—- C:WINDOWS$NtUninstallKB936782_WMP11$
2008-12-24 02:43:26 —-ADC—- C:WINDOWS$NtUninstallKB936357$
2008-12-24 02:43:26 —-ADC—- C:WINDOWS$NtUninstallKB936021$
2008-12-24 02:43:25 —-ADC—- C:WINDOWS$NtUninstallKB935840$
2008-12-24 02:43:25 —-ADC—- C:WINDOWS$NtUninstallKB935839$
2008-12-24 02:43:24 —-ADC—- C:WINDOWS$NtUninstallKB933729$
2008-12-24 02:43:24 —-ADC—- C:WINDOWS$NtUninstallKB933566$
2008-12-24 02:43:22 —-ADC—- C:WINDOWS$NtUninstallKB933360$
2008-12-24 02:43:21 —-ADC—- C:WINDOWS$NtUninstallKB932168$
2008-12-24 02:43:20 —-ADC—- C:WINDOWS$NtUninstallKB931784$
2008-12-24 02:43:20 —-ADC—- C:WINDOWS$NtUninstallKB931768$
2008-12-24 02:43:18 —-ADC—- C:WINDOWS$NtUninstallKB931261$
2008-12-24 02:43:18 —-ADC—- C:WINDOWS$NtUninstallKB930916$
2008-12-24 02:43:18 —-ADC—- C:WINDOWS$NtUninstallKB930178$
2008-12-24 02:43:17 —-ADC—- C:WINDOWS$NtUninstallKB929969$
2008-12-24 02:43:17 —-ADC—- C:WINDOWS$NtUninstallKB929399$
2008-12-24 02:43:17 —-ADC—- C:WINDOWS$NtUninstallKB929338$
2008-12-24 02:43:16 —-ADC—- C:WINDOWS$NtUninstallKB929123$
2008-12-24 02:43:15 —-ADC—- C:WINDOWS$NtUninstallKB928843$
2008-12-24 02:43:14 —-ADC—- C:WINDOWS$NtUninstallKB928255$
2008-12-24 02:43:14 —-ADC—- C:WINDOWS$NtUninstallKB928090$
2008-12-24 02:43:13 —-ADC—- C:WINDOWS$NtUninstallKB927891$
2008-12-24 02:43:12 —-ADC—- C:WINDOWS$NtUninstallKB927802$
2008-12-24 02:43:12 —-ADC—- C:WINDOWS$NtUninstallKB927779$
2008-12-24 02:43:11 —-ADC—- C:WINDOWS$NtUninstallKB926436$
2008-12-24 02:43:11 —-ADC—- C:WINDOWS$NtUninstallKB926255$
2008-12-24 02:43:10 —-ADC—- C:WINDOWS$NtUninstallKB926239$
2008-12-24 02:43:10 —-ADC—- C:WINDOWS$NtUninstallKB925902$
2008-12-24 02:43:09 —-ADC—- C:WINDOWS$NtUninstallKB925486$
2008-12-24 02:43:09 —-ADC—- C:WINDOWS$NtUninstallKB925454$
2008-12-24 02:43:07 —-ADC—- C:WINDOWS$NtUninstallKB925398_WMP64$
2008-12-24 02:43:06 —-ADC—- C:WINDOWS$NtUninstallKB924667$
2008-12-24 02:43:06 —-ADC—- C:WINDOWS$NtUninstallKB924496$
2008-12-24 02:43:05 —-ADC—- C:WINDOWS$NtUninstallKB924270$
2008-12-24 02:43:05 —-ADC—- C:WINDOWS$NtUninstallKB924191$
2008-12-24 02:43:04 —-ADC—- C:WINDOWS$NtUninstallKB923980$
2008-12-24 02:43:04 —-ADC—- C:WINDOWS$NtUninstallKB923694$
2008-12-24 02:43:03 —-ADC—- C:WINDOWS$NtUninstallKB923689$
2008-12-24 02:43:02 —-ADC—- C:WINDOWS$NtUninstallKB923414$
2008-12-24 02:43:02 —-ADC—- C:WINDOWS$NtUninstallKB923191$
2008-12-24 02:43:02 —-ADC—- C:WINDOWS$NtUninstallKB922819$
2008-12-24 02:43:02 —-ADC—- C:WINDOWS$NtUninstallKB922760$
2008-12-24 02:43:00 —-ADC—- C:WINDOWS$NtUninstallKB922616$
2008-12-24 02:43:00 —-ADC—- C:WINDOWS$NtUninstallKB922582$
2008-12-24 02:42:58 —-ADC—- C:WINDOWS$NtUninstallKB921503$
2008-12-24 02:42:58 —-ADC—- C:WINDOWS$NtUninstallKB921398$
2008-12-24 02:42:57 —-ADC—- C:WINDOWS$NtUninstallKB920872$
2008-12-24 02:42:57 —-ADC—- C:WINDOWS$NtUninstallKB920685$
2008-12-24 02:42:57 —-ADC—- C:WINDOWS$NtUninstallKB920683$
2008-12-24 02:42:56 —-ADC—- C:WINDOWS$NtUninstallKB920670$
2008-12-24 02:42:56 —-ADC—- C:WINDOWS$NtUninstallKB920214$
2008-12-24 02:42:55 —-ADC—- C:WINDOWS$NtUninstallKB920213$
2008-12-24 02:42:55 —-ADC—- C:WINDOWS$NtUninstallKB919007$
2008-12-24 02:42:55 —-ADC—- C:WINDOWS$NtUninstallKB918439$
2008-12-24 02:42:54 —-ADC—- C:WINDOWS$NtUninstallKB918118$
2008-12-24 02:42:54 —-ADC—- C:WINDOWS$NtUninstallKB917953$
2008-12-24 02:42:53 —-ADC—- C:WINDOWS$NtUninstallKB917734_WMP9$
2008-12-24 02:42:53 —-ADC—- C:WINDOWS$NtUninstallKB917422$
2008-12-24 02:42:53 —-ADC—- C:WINDOWS$NtUninstallKB917344$
2008-12-24 02:42:53 —-ADC—- C:WINDOWS$NtUninstallKB916595$
2008-12-24 02:42:52 —-ADC—- C:WINDOWS$NtUninstallKB914389$
2008-12-24 02:42:52 —-ADC—- C:WINDOWS$NtUninstallKB914388$
2008-12-24 02:42:52 —-ADC—- C:WINDOWS$NtUninstallKB913580$
2008-12-24 02:42:51 —-ADC—- C:WINDOWS$NtUninstallKB912919$
2008-12-24 02:42:51 —-ADC—- C:WINDOWS$NtUninstallKB911927$
2008-12-24 02:42:51 —-ADC—- C:WINDOWS$NtUninstallKB911567$
2008-12-24 02:42:50 —-ADC—- C:WINDOWS$NtUninstallKB911564$
2008-12-24 02:42:50 —-ADC—- C:WINDOWS$NtUninstallKB911562$
2008-12-24 02:42:50 —-ADC—- C:WINDOWS$NtUninstallKB911280$
2008-12-24 02:42:50 —-ADC—- C:WINDOWS$NtUninstallKB910437$
2008-12-24 02:42:50 —-ADC—- C:WINDOWS$NtUninstallKB909394$
2008-12-24 02:42:49 —-ADC—- C:WINDOWS$NtUninstallKB908531$
2008-12-24 02:42:49 —-ADC—- C:WINDOWS$NtUninstallKB908519$
2008-12-24 02:42:49 —-ADC—- C:WINDOWS$NtUninstallKB905749$
2008-12-24 02:42:49 —-ADC—- C:WINDOWS$NtUninstallKB905414$
2008-12-24 02:42:48 —-ADC—- C:WINDOWS$NtUninstallKB904706$
2008-12-24 02:42:48 —-ADC—- C:WINDOWS$NtUninstallKB902400$
2008-12-24 02:42:47 —-ADC—- C:WINDOWS$NtUninstallKB901214$
2008-12-24 02:42:47 —-ADC—- C:WINDOWS$NtUninstallKB901017$
2008-12-24 02:42:46 —-ADC—- C:WINDOWS$NtUninstallKB900725$
2008-12-24 02:42:46 —-ADC—- C:WINDOWS$NtUninstallKB900485$
2008-12-24 02:42:45 —-ADC—- C:WINDOWS$NtUninstallKB899591$
2008-12-24 02:42:45 —-ADC—- C:WINDOWS$NtUninstallKB899587$
2008-12-24 02:42:45 —-ADC—- C:WINDOWS$NtUninstallKB896428$
2008-12-24 02:42:45 —-ADC—- C:WINDOWS$NtUninstallKB896424$
2008-12-24 02:42:44 —-ADC—- C:WINDOWS$NtUninstallKB896423$
2008-12-24 02:42:44 —-ADC—- C:WINDOWS$NtUninstallKB896358$
2008-12-24 02:42:44 —-ADC—- C:WINDOWS$NtUninstallKB894391$
2008-12-24 02:42:43 —-ADC—- C:WINDOWS$NtUninstallKB893756$
2008-12-24 02:42:43 —-ADC—- C:WINDOWS$NtUninstallKB891781$
2008-12-24 02:42:43 —-ADC—- C:WINDOWS$NtUninstallKB890859$
2008-12-24 02:42:43 —-ADC—- C:WINDOWS$NtUninstallKB888302$
2008-12-24 02:42:43 —-ADC—- C:WINDOWS$NtUninstallKB887472$
2008-12-24 02:42:42 —-ADC—- C:WINDOWS$NtUninstallKB886185$
2008-12-24 02:42:42 —-ADC—- C:WINDOWS$NtUninstallKB885836$
2008-12-24 02:42:42 —-ADC—- C:WINDOWS$NtUninstallKB873339$
2008-12-24 02:42:42 —-ADC—- C:WINDOWS$NtUninstallKB834707$
2008-12-24 02:42:41 —-ADC—- C:WINDOWS$NtUninstallKB828035$
2008-12-24 02:42:41 —-ADC—- C:WINDOWS$NtUninstallKB828028$
2008-12-24 02:42:41 —-ADC—- C:WINDOWS$NtUninstallKB826939$
2008-12-24 02:42:40 —-ADC—- C:WINDOWS$NtUninstallKB825119$
2008-12-24 02:42:40 —-ADC—- C:WINDOWS$NtUninstallKB824141$
2008-12-24 02:42:39 —-ADC—- C:WINDOWS$NtUninstallKB824105$
2008-12-24 02:42:39 —-ADC—- C:WINDOWS$NtUninstallKB823980$
2008-12-24 02:42:39 —-ADC—- C:WINDOWS$NtUninstallKB823182$
2008-12-24 02:42:39 —-ADC—- C:WINDOWS$NtServicePackUninstall$
2008-12-24 02:42:24 —-ADC—- C:WINDOWS$MSI31Uninstall_KB893803v2$
2008-12-23 22:34:03 —-AD—- C:Program FilesFurnish Pro
2008-12-23 22:34:02 —-D—- C:Program FilesPixie
2008-12-23 22:33:31 —-D—- C:Program FilesTomTom HOME
2008-12-23 22:07:32 —-D—- C:Program FilesCommon FilesRoxio Shared
2008-12-23 19:56:48 —-D—- C:WINDOWSHelp
2008-12-23 15:04:14 —-D—- C:Program FilesOpera
2008-12-18 19:01:20 —-HD—- C:WINDOWS$hf_mig$======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AFS2K;AFS2k; C:WINDOWSsystem32driversAFS2K.sys [2004-10-08 35840]
R1 easdrv;easdrv; C:WINDOWSsystem32DRIVERSeasdrv.sys [2008-07-01 53256]
R1 epfwtdir;epfwtdir; C:WINDOWSsystem32DRIVERSepfwtdir.sys [2008-07-01 34312]
R1 intelppm;Intel Processor Driver; C:WINDOWSSystem32DRIVERSintelppm.sys [2008-04-13 36352]
R1 PCLEPCI;PCLEPCI; ??C:WINDOWSSystem32driverspclepci.sys []
R1 Udfreadr_xp;Udfreadr_xp; C:WINDOWSsystem32driversUdfreadr_xp.sys [2005-01-17 213120]
R1 WS2IFSL;Среда Windows Socket 2.0 поддержки поставщиков не-IFS служб; C:WINDOWSSystem32driversws2ifsl.sys [2001-08-23 12032]
R2 eamon;EAMON; C:WINDOWSsystem32DRIVERSeamon.sys [2008-07-01 39944]
R2 GVCplDrv;GVCplDrv; C:WINDOWSsystem32driversGVCplDrv.sys [2003-05-06 20156]
R2 MASPINT;MASPINT; C:WINDOWSsystem32driversMASPINT.sys [2000-03-29 8096]
R2 PDIHWCTL;PDIHWCTL; ??C:WINDOWSsystem32driverspdihwctl.sys []
R2 PfModNT;PfModNT; ??C:WINDOWSSystem32PfModNT.sys []
R3 Arp1394;1394 ARP Client Protocol; C:WINDOWSSystem32DRIVERSarp1394.sys [2008-04-13 60800]
R3 ASAPIW2k;ASAPIW2K; C:WINDOWSsystem32driversASAPIW2k.sys [2004-03-10 11264]
R3 ati2mtag;ati2mtag; C:WINDOWSSystem32DRIVERSati2mtag.sys [2007-09-29 2456064]
R3 BridgeMP;MAC Bridge Miniport; C:WINDOWSSystem32DRIVERSbridge.sys [2008-04-13 71552]
R3 ctac32k;Creative AC3 Software Decoder; C:WINDOWSSystem32driversctac32k.sys [2003-03-25 134656]
R3 ctaud2k;Creative Audio Driver (WDM); C:WINDOWSsystem32driversctaud2k.sys [2003-04-11 502160]
R3 ctprxy2k;Creative Proxy Driver; C:WINDOWSSystem32driversctprxy2k.sys [2003-03-25 6144]
R3 ctsfm2k;Creative SoundFont Management Device Driver; C:WINDOWSSystem32driversctsfm2k.sys [2003-03-25 135696]
R3 emupia;E-mu Plug-in Architecture Driver; C:WINDOWSsystem32driversemupia2k.sys [2003-03-25 144736]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:WINDOWSSystem32DriversGEARAspiWDM.sys [2008-04-17 15464]
R3 ha10kx2k;Creative Hardware Abstract Layer Driver; C:WINDOWSsystem32driversha10kx2k.sys [2003-04-03 850880]
R3 hap16v2k;Creative P16V HAL Driver; C:WINDOWSSystem32drivershap16v2k.sys [2003-04-01 142752]
R3 hidusb;Microsoft HID Class Driver; C:WINDOWSSystem32DRIVERShidusb.sys [2008-04-13 10368]
R3 MaBtPort;MA Bluetooth VCOM Driver; C:WINDOWSSystem32DRIVERSmabtport.sys [2003-11-21 120800]
R3 MarvinBus;Pinnacle Marvin Bus; C:WINDOWSSystem32DRIVERSMarvinBus.sys [2004-03-29 90464]
R3 mouhid;Mouse HID Driver; C:WINDOWSSystem32DRIVERSmouhid.sys [2001-08-23 12160]
R3 NIC1394;1394 Net Driver; C:WINDOWSSystem32DRIVERSnic1394.sys [2008-04-13 61824]
R3 ossrv;Creative OS Services Driver; C:WINDOWSsystem32driversctoss2k.sys [2003-03-25 190176]
R3 pfc;Padus ASPI Shell; ??C:WINDOWSsystem32driverspfc.sys []
R3 rtl8139;Realtek RTL8139/810x Family Fast Ethernet NIC NT Driver; C:WINDOWSSystem32DRIVERSR8139n51.SYS [2002-10-04 46976]
R3 Stmatm;ZyXEL P-630S EE Минипорт; C:WINDOWSsystem32DRIVERSstmatm.sys [2003-08-12 60255]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:WINDOWSSystem32DRIVERSusbccgp.sys [2008-04-13 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:WINDOWSSystem32DRIVERSusbehci.sys [2008-04-13 30208]
R3 usbhub;Microsoft USB Standard Hub Driver; C:WINDOWSSystem32DRIVERSusbhub.sys [2008-04-13 59520]
R3 USBSTOR;USB Mass Storage Driver; C:WINDOWSSystem32DRIVERSUSBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:WINDOWSSystem32DRIVERSusbuhci.sys [2008-04-13 20608]
R3 ZD1211BU(TRENDnet);802.11g Wireless USB 2.0 Adapter C1 Driver(TRENDnet); C:WINDOWSsystem32DRIVERSzd1211Bu.sys [2005-10-28 402432]
R3 ZDPSp50;ZDPSp50 NDIS Protocol Driver; C:WINDOWSSystem32DriversZDPSp50.sys [2004-10-25 17664]
S1 Cdr4_xp;Cdr4_xp; C:WINDOWSsystem32driversCdr4_xp.sys [2007-07-27 9336]
S1 Cdralw2k;Cdralw2k; C:WINDOWSsystem32driversCdralw2k.sys [2007-07-27 9464]
S1 cdudf_xp;cdudf_xp; C:WINDOWSsystem32driverscdudf_xp.sys [2005-01-17 260224]
S3 61883;61883 Unit Device; C:WINDOWSSystem32DRIVERS61883.sys [2008-04-13 48128]
S3 Avc;AVC Device; C:WINDOWSSystem32DRIVERSavc.sys [2008-04-13 38912]
S3 Bridge;MAC Bridge; C:WINDOWSSystem32DRIVERSbridge.sys [2008-04-13 71552]
S3 BtAudio;Bluetooth Audio; C:WINDOWSSystem32DRIVERSbtaudio.sys []
S3 BTDriver;Bluetooth Virtual Communications Driver; C:WINDOWSSystem32DRIVERSbtport.sys []
S3 BthEnum;Bluetooth Enumerator Service; C:WINDOWSsystem32DRIVERSBthEnum.sys [2008-04-13 17024]
S3 BthPan;Bluetooth Device (Personal Area Network); C:WINDOWSsystem32DRIVERSbthpan.sys [2008-04-13 101120]
S3 BTHPORT;Bluetooth Port Driver; C:WINDOWSSystem32DriversBTHport.sys [2008-06-13 272128]
S3 BTHUSB;Bluetooth Radio USB Driver; C:WINDOWSSystem32DriversBTHUSB.sys [2008-04-13 18944]
S3 BTWDNDIS;Bluetooth LAN Access Server; C:WINDOWSSystem32DRIVERSbtwdndis.sys []
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:WINDOWSSystem32Driversbtwusb.sys []
S3 CCDECODE;Closed Caption Decoder; C:WINDOWSSystem32DRIVERSCCDECODE.sys [2008-04-13 17024]
S3 ctdvda2k;Creative DVD-Audio Device Driver; C:WINDOWSsystem32driversctdvda2k.sys [2003-03-27 287920]
S3 eyeonedp;eye-one display; C:WINDOWSsystem32DRIVERSeyeonedp.sys [2004-05-07 44344]
S3 FTDIBUS;SEMC DSS SyncStation Serial Converter Driver; C:WINDOWSsystem32driversftdibus.sys [2004-01-19 19153]
S3 FTLUND;Lundinova Filter Driver; C:WINDOWSsystem32driversftlund.sys [2004-01-19 6828]
S3 FTSER2K;SEMC DSS SyncStation Driver; C:WINDOWSsystem32driversftser2k.sys [2004-01-19 50396]
S3 GAGPDrv;GAGPDrv; C:WINDOWSsystem32driversGAGPDrv.sys [2003-05-30 4764]
S3 MaBtc;MA Bluetooth Core Driver; C:WINDOWSSystem32DRIVERSMABTC.sys [2003-11-25 80736]
S3 MSDV;Microsoft DV Camera and VCR; C:WINDOWSSystem32DRIVERSmsdv.sys [2008-04-13 51200]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:WINDOWSsystem32driversMSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:WINDOWSSystem32DRIVERSNABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:WINDOWSSystem32DRIVERSNdisIP.sys [2008-04-13 10880]
S3 Nokia USB Generic;Nokia USB Generic; C:WINDOWSsystem32driversnmwcdc.sys [2006-10-10 9216]
S3 Nokia USB Modem;Nokia USB Modem; C:WINDOWSsystem32driversnmwcdcm.sys [2006-10-10 12800]
S3 Nokia USB Phone Parent;Nokia USB Phone Parent; C:WINDOWSsystem32driversnmwcd.sys [2006-10-10 138240]
S3 Nokia USB Port;Nokia USB Port; C:WINDOWSsystem32driversnmwcdcj.sys [2006-10-10 12800]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:WINDOWSsystem32DRIVERSrfcomm.sys [2008-04-13 59136]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:WINDOWSSystem32DriversRootMdm.sys [2001-08-23 5888]
S3 SLIP;BDA Slip De-Framer; C:WINDOWSSystem32DRIVERSSLIP.sys [2008-04-13 11136]
S3 SONYPVU1;Sony USB Filter Driver (SONYPVU1); C:WINDOWSSystem32DRIVERSSONYPVU1.SYS [2001-08-17 7552]
S3 streamip;BDA IPSink; C:WINDOWSSystem32DRIVERSStreamIP.sys [2008-04-13 15232]
S3 TaurusUsb;Сервис ADSL-модема ZyXEL P-630S EE; C:WINDOWSsystem32DRIVERStorususb.sys [2005-04-13 653704]
S3 USB_RNDIS;ZTE ADSL Router USB Remote NDIS Device Driver; C:WINDOWSsystem32DRIVERSusb8023.sys [2008-04-13 12800]
S3 usb_rndisx;USB RNDIS Adapter; C:WINDOWSsystem32DRIVERSusb8023x.sys [2008-04-13 12800]
S3 USBAAPL;Apple Mobile USB Driver; C:WINDOWSSystem32Driversusbaapl.sys [2008-10-01 32000]
S3 usbprint;Microsoft USB PRINTER Class; C:WINDOWSSystem32DRIVERSusbprint.sys [2008-04-13 25856]
S3 usbscan;USB Scanner Driver; C:WINDOWSSystem32DRIVERSusbscan.sys [2008-04-13 15104]
S3 usbser;ZyXEL Omni 56K UNO Modem Driver; C:WINDOWSSystem32DRIVERSusbser.sys [2008-04-13 26112]
S3 wceusbsh;Windows CE USB Serial Host Driver; C:WINDOWSsystem32DRIVERSwceusbsh.sys [2005-06-14 104576]
S3 WSTCODEC;World Standard Teletext Codec; C:WINDOWSSystem32DRIVERSWSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation — User-mode Driver Framework Reflector; C:WINDOWSsystem32DRIVERSwudfrd.sys [2006-09-15 82688]
S4 IntelIde;IntelIde; C:WINDOWSsystem32driversIntelIde.sys []======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe [2008-11-07 132424]
R2 Ati HotKey Poller;Ati HotKey Poller; C:WINDOWSsystem32Ati2evxx.exe [2007-09-29 483328]
R2 Bonjour Service;Bonjour Service; C:Program FilesBonjourmDNSResponder.exe [2008-12-12 238888]
R2 BthServ;Bluetooth Support Service; C:WINDOWSsystem32svchost.exe [2008-04-14 14336]
R2 Creative Service for CDROM Access;Creative Service for CDROM Access; C:WINDOWSSystem32CTsvcCDA.exe [1999-12-13 44032]
R2 ekrn;Eset Service; C:Program FilesESETESET NOD32 Antivirusekrn.exe [2008-07-01 468224]
R2 NICSer_TEW429UF;NICSer_TEW429UF; C:Program FilesTRENDnet802.11g Wireless Client UtilityNICServ.exe [2005-06-15 529920]
R2 NICSrv_Detect_TEW429UF;NICSrv_Detect_TEW429UF; C:Program FilesTRENDnet802.11g Wireless Client UtilitySrvRunDetect.exe [2005-08-19 528896]
R2 WDBtnMgrSvc.exe;WD Drive Manager Service; C:Program FilesWestern DigitalWD Drive ManagerWDBtnMgrSvc.exe [2008-01-30 106496]
R2 WudfSvc;Windows Driver Foundation — User-mode Driver Framework; C:WINDOWSsystem32svchost.exe [2008-04-14 14336]
R3 iPod Service;Сервис iPod; C:Program FilesiPodbiniPodService.exe [2008-11-20 536872]
R3 ServiceLayer;ServiceLayer; C:Program FilesPC Connectivity SolutionServiceLayer.exe [2006-11-06 210432]
S2 ATI Smart;ATI Smart; C:WINDOWSsystem32ati2sgag.exe [2003-04-28 114775]
S3 Adobe LM Service;Adobe LM Service; C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe [2006-01-30 72704]
S3 aspnet_state;ASP.NET State Service; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:WINDOWSMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe [2007-10-24 70144]
S3 EhttpSrv;Eset HTTP Server; C:Program FilesESETESET NOD32 AntivirusEHttpSrv.exe [2008-07-01 19200]
S3 gusvc;Google Updater Service; C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe [2007-02-07 138168]
S3 IDriverT;InstallDriver Table Manager; C:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe [2005-04-04 69632]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:Program FilesWindows Media PlayerWMPNetwk.exe [2006-10-18 913408]
S4 AutoSyncService;Memeo AutoSync ; C:Program FilesMemeoAutoSyncMemeoService.exe [2007-07-06 31768]
EOF
14 января, 2009 в 12:41 пп #21077Лог выглядит нормально, но нужно немножко подчистить реестр.
Запустите HijackThis, для этого кликните Пуск, Выполнить. Наберите C:Program Filestrend microLexaF.exe и нажмите Enter.
Далее отметьте галочкой (слева) следующие строки:O16 - DPF: {11111111-1111-1111-1111-111111113457} - file://c:ied_s7m.cab
O16 - DPF: {11111111-1111-1111-1111-511111113457} - file://c:x.cab
O16 - DPF: {11111111-1111-1111-1111-511111113458} - file://c:x.cab
O16 - DPF: {33331111-1111-1111-1111-611111193423} -
O16 - DPF: {33331111-1111-1111-1111-611111193429} -
O16 - DPF: {33331111-1111-1111-1111-615111193427} -Кликните по кнопке Fix checked и подтвердите свои действия выбрав YES.
Перезагрузите компьютер.Как работает компьютер ? Нет проблем с инфомером ?
14 января, 2009 в 2:21 пп #21078Спасибо большое, с информером больше проблем нет. подскажите, при загрузке windows у меня выскакивало и до сих пор через раз вываливается сообщение «cheking file system on F:. The type of the file system is FAT 32». И при моём бездействии начинается тестирование с последующим зависанием компьютера. И при следующей загрузке машины первой строчкой на экране появляется сообщение о проверке памяти. Машина висит долго, и комп можно запустить через продолжительное время при помощи кнопки отключения-включения питания. Эти проблемы из-за вирусов или устаревшего компьютера? Извините, если вопросы некорректны и может не совсем входят в компетенцию вашей конференции…
С уважением, Алексей
15 января, 2009 в 3:42 пп #21079Если с информером больше проблем нет, то несколько завершающих действий.
Обновите Java, у вас устаревшая версия. Прочитайте эту инструкцию: Как обновить Java.Запустите программу OTMoveIT3. Кликните по кнопке CleanUp. Если появится запрос на перезагрузку компьютера, то кликните Да/Yes.
Удалите RSIT и другие скачанные вами сканеры и небольшие утилиты, а так же все файлы и каталоги который были созданы в процессе лечения компьютера.Установите программу Spybot Search and Destroy, это довольно неплохая дополнительная защита от шпионских и других вредоносных программ..
Запустите ваш антивирус и проверьте состояние автоматической защиты. Включите, если она выключена.
Удалите старые точки восстановления, так как в них возможно нахождения инфицированных файлов, троянов и других вредоносных программ. Для этого кликните по иконке Мой компьютер, выберите пункт Свойства. В открывшемся окне выберите вкладку Восстановление системы. Поставьте галочку напротив пункта Отключить восстановление системы на всех дисках. Кликните по кнопке Применить. Подтвердите свои действия кликнув по кнопке OK в открывшемся диалоге. Закройте окно Свойства системы, кликнув по кнопке OK.
После загрузки компьютера выполните действия описанные выше, только в этот раз снимите галочку.
Создайте новую точку восстановления. Это поможет вам в случае необходимости загрузить текущую конфигурацию Windows и быстро излечиться от спайваре/вируса. Для этого кликните по кнопке Пуск, далее выберите пункт Стандартные, в нём Служебные и запустите программу Восстановление системы. В открывшемся окне выберите задачу Создать точку восстановления и нажмите кнопку Далее и следуйте указаниям.
Не забывайте обновлять Windows, ваши программы и особенно ваш антивирус.
И по-поводу проблемы описанной вами.
Думаю в данном случае дело не в вирусах и тд.
Вы пробовали проверить диск на ошибки ?
В папке Мой компьютер кликните правой клавишей по имени диска, в меню выберите Свойства.
Далее в открывшемся окне выберите вкладку Сервис и кликните по кнопке Выполнить проверку.15 января, 2009 в 9:08 пп #21080Спасибо огромное Вам, Валерий, за помощь. Удачи Вам!
С уважением, Алексей16 января, 2009 в 3:52 пп #21081Рад помочь:)
Всего доброго и безопасного Интернета!
-
АвторСообщения
- Для ответа в этой теме необходимо авторизоваться.