Удаление вирусов и троянов. Защита компьютера. › Помощь в удалении вирусов, троянов, рекламы и других зловредов › порнобаннер на рабочем столе
- This topic has 4 ответа, 2 участника, and was last updated 15 years, 10 months назад by
Admin.
-
АвторСообщения
-
29 декабря, 2009 в 11:50 дп #17669
Аноним
Гость- Темы:532
- Сообщений:1553
- ☆☆☆☆☆
Я скачала его под видом Adobe flash player 10 txt, помогите пожалуйста!!! Компьютер виснет если пытаюсь удалять в програмном файле, баннер поверх всех окон, мешает, остальное все работает вроде как раньше
Logfile of random’s system information tool 1.06 (written by random/random)
Run by User at 2009-12-29 13:20:32
Microsoft Windows XP Professional Service Pack 3
System drive C: has 3 GB (4%) free of 76 GB
Total RAM: 511 MB (43% free)Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:20:55, on 29.12.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: NormalсRunning processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSExplorer.EXE
C:WINDOWSSOUNDMAN.EXE
C:Program FilesCyberLinkPowerDVDPDVDServ.exe
C:Program FilesESETESET NOD32 Antivirusegui.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesuTorrentuTorrent.exe
C:Program FilesIVT CorporationBlueSoleilBlueSoleil.exe
C:Program FilesIVT CorporationBlueSoleilBTNtService.exe
C:Program FilesESETESET NOD32 Antivirusekrn.exe
C:WINDOWSsystem32nvsvc32.exe
C:WINDOWSsystem32svchost.exe
C:Program FilesInternet Exploreriexplore.exe
C:WINDOWSsystem32wuauclt.exe
C:Program FilesInternet Exploreriexplore.exe
C:Documents and SettingsUserРабочий столRSIT.exe
C:Program Filestrend microUser.exeR1 — HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.yandex.ru/?clid=48084
R0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.yandex.ru/
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 — HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 — HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = about:blank
R0 — HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Ссылки
R3 — URLSearchHook: MyPlayCityRU Toolbar — {dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — C:Program FilesMyPlayCityRUtbMyPl.dll (file missing)
O2 — BHO: (no name) — {88888888-8888-8888-8888-888888888888} — (no file)
O2 — BHO: MS Media Module — {9D64F819-9380-8473-DAB2-702FCB3D7A3E} — %APPDATA%msmedia.dll (file missing)
O2 — BHO: MyPlayCityRU Toolbar — {dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — C:Program FilesMyPlayCityRUtbMyPl.dll (file missing)
O3 — Toolbar: Яндекс.Бар — {91397D20-1446-11D4-8AF4-0040CA1127B6} — C:Program FilesYandexYandexBarIEyndbar.dll
O3 — Toolbar: MyPlayCityRU Toolbar — {dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — C:Program FilesMyPlayCityRUtbMyPl.dll (file missing)
O4 — HKLM..Run: [SoundMan] SOUNDMAN.EXE
O4 — HKLM..Run: [RemoteControl] «C:Program FilesCyberLinkPowerDVDPDVDServ.exe»
O4 — HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup
O4 — HKLM..Run: [nwiz] nwiz.exe /install
O4 — HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit
O4 — HKLM..Run: [servises] C:WINDOWSsystem32servises.exe
O4 — HKLM..Run: [DrWebScheduler] «C:Program FilesDrWeb for Windowsdrwebscd.exe»
O4 — HKLM..Run: [egui] «C:Program FilesESETESET NOD32 Antivirusegui.exe» /hide /waitservice
O4 — HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe
O4 — HKCU..Run: [amva] C:WINDOWSsystem32amvo.exe
O4 — HKCU..Run: [uTorrent] «C:Program FilesuTorrentuTorrent.exe»
O4 — HKCU..Run: [servises] C:WINDOWSsystem32servises.exe
O4 — HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘LOCAL SERVICE’)
O4 — HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘NETWORK SERVICE’)
O4 — HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘SYSTEM’)
O4 — HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘Default user’)
O4 — Global Startup: BlueSoleil.lnk = ?
O4 — Global Startup: Microsoft Office.lnk = C:Program FilesMicrosoft OfficeOffice10OSA.EXE
O6 — HKCUSoftwarePoliciesMicrosoftInternet ExplorerControl Panel present
O8 — Extra context menu item: &Экспорт в Microsoft Excel — res://C:PROGRA~1MICROS~2Office10EXCEL.EXE/3000
O9 — Extra button: (no name) — {53F6FCCD-9E22-4d71-86EA-6E43136192AB} — (no file)
O9 — Extra button: (no name) — {925DAB62-F9AC-4221-806A-057BFB1014AA} — (no file)
O9 — Extra button: (no name) — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra button: Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O9 — Extra ‘Tools’ menuitem: Windows Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O17 — HKLMSystemCCSServicesTcpip..{25024B0E-CD1E-47CC-B32F-5B9F39994616}: NameServer = 212.120.160.130 212.120.173.34
O23 — Service: BlueSoleil Hid Service — Unknown owner — C:Program FilesIVT CorporationBlueSoleilBTNtService.exe
O23 — Service: ESET HTTP Server (EhttpSrv) — ESET — C:Program FilesESETESET NOD32 AntivirusEHttpSrv.exe
O23 — Service: ESET Service (ekrn) — ESET — C:Program FilesESETESET NOD32 Antivirusekrn.exe
O23 — Service: Журнал событий (Eventlog) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: InstallDriver Table Manager (IDriverT) — Macrovision Corporation — C:Program FilesCommon FilesInstallShieldDriver1150Intel 32IDriverT.exe
O23 — Service: Служба COM записи компакт-дисков IMAPI (ImapiService) — Корпорация Майкрософт — C:WINDOWSsystem32imapi.exe
O23 — Service: NetMeeting Remote Desktop Sharing (mnmsrvc) — Корпорация Майкрософт — C:WINDOWSsystem32mnmsrvc.exe
O23 — Service: NVIDIA Display Driver Service (NVSvc) — NVIDIA Corporation — C:WINDOWSsystem32nvsvc32.exe
O23 — Service: Plug and Play (PlugPlay) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: Диспетчер сеанса справки для удаленного рабочего стола (RDSessMgr) — Корпорация Майкрософт — C:WINDOWSsystem32sessmgr.exe
O23 — Service: Смарт-карты (SCardSvr) — Корпорация Майкрософт — C:WINDOWSSystem32SCardSvr.exe
O23 — Service: Журналы и оповещения производительности (SysmonLog) — Корпорация Майкрософт — C:WINDOWSsystem32smlogsvc.exe
O23 — Service: Теневое копирование тома (VSS) — Корпорация Майкрософт — C:WINDOWSSystem32vssvc.exe
O23 — Service: Адаптер производительности WMI (WmiApSrv) — Корпорация Майкрософт — C:WINDOWSsystem32wbemwmiapsrv.exe—
End of file — 6657 bytes======Scheduled tasks folder======
C:WINDOWStasksPCConfidential.job
C:WINDOWStasksSys Check.job
C:WINDOWStasksUser_Feed_Synchronization-{35EBB7AA-472E-4A9E-A409-A1B3452724BC}.job======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{88888888-8888-8888-8888-888888888888}]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{9D64F819-9380-8473-DAB2-702FCB3D7A3E}]
MS Media Module — C:Documents and SettingsUserApplication Datamsmedia.dll [][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{dfbeb35b-444d-4f25-8d7d-eb2683c206ec}]
MyPlayCityRU Toolbar — C:Program FilesMyPlayCityRUtbMyPl.dll [][HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{91397D20-1446-11D4-8AF4-0040CA1127B6} — Яндекс.Бар — C:Program FilesYandexYandexBarIEyndbar.dll [2009-07-24 5586208]
{dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — MyPlayCityRU Toolbar — C:Program FilesMyPlayCityRUtbMyPl.dll [][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«SoundMan»=C:WINDOWSSOUNDMAN.EXE [2004-05-14 67072]
«RemoteControl»=C:Program FilesCyberLinkPowerDVDPDVDServ.exe [2003-10-31 32768]
«NvCplDaemon»=C:WINDOWSsystem32NvCpl.dll [2004-01-29 2899968]
«nwiz»=nwiz.exe /install []
«NvMediaCenter»=C:WINDOWSsystem32NvMcTray.dll [2004-01-29 46080]
«servises»=C:WINDOWSsystem32servises.exe []
«DrWebScheduler»=C:Program FilesDrWeb for Windowsdrwebscd.exe []
«egui»=C:Program FilesESETESET NOD32 Antivirusegui.exe [2009-09-29 2054360][HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
«CTFMON.EXE»=C:WINDOWSsystem32ctfmon.exe [2008-04-14 15360]
«amva»=C:WINDOWSsystem32amvo.exe []
«uTorrent»=C:Program FilesuTorrentuTorrent.exe [2009-10-06 289072]
«servises»=C:WINDOWSsystem32servises.exe []C:Documents and SettingsAll UsersГлавное менюПрограммыАвтозагрузка
BlueSoleil.lnk — C:Program FilesIVT CorporationBlueSoleilBlueSoleil.exe
Microsoft Office.lnk — C:Program FilesMicrosoft OfficeOffice10OSA.EXE[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«HonorAutoRunSetting»=[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:Program FilesIVT CorporationBlueSoleilBlueSoleil.exe»=»C:Program FilesIVT CorporationBlueSoleilBlueSoleil.exe:*:Enabled:BlueSoleil»
«C:Program FilesGroove GamesCombat 121SystemCombat.exe»=»C:Program FilesGroove GamesCombat 121SystemCombat.exe:*:Enabled:Combat»
«C:Program FilesLeft 4 Deadhl2.exe»=»C:Program FilesLeft 4 Deadhl2.exe:*:Disabled:hl2»
«C:Program FilesuTorrentuTorrent.exe»=»C:Program FilesuTorrentuTorrent.exe:*:Enabled:µTorrent»
«C:Program FilesEA GAMESNeed for Speed Most Wantedspeed.exe»=»C:Program FilesEA GAMESNeed for Speed Most Wantedspeed.exe:*:Disabled:speed»
«C:Program FilesESETESET NOD32 Antivirusegui.exe»=»C:Program FilesESETESET NOD32 Antivirusegui.exe:*:Enabled:ESET NOD32 Antivirus»
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»
«C:Program FilesSharemanShareman.exe»=»C:Program FilesSharemanShareman.exe:*:Enabled:Shareman»[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»======List of files/folders created in the last 1 months======
2009-12-29 13:20:32 —-DC—- C:rsit
2009-12-29 13:20:32 —-D—- C:Program Filestrend micro
2009-12-29 08:15:52 —-D—- C:Documents and SettingsUserApplication DataAdobe
2009-12-28 11:35:16 —-DC—- C:View7
2009-12-28 11:14:28 —-DC—- C:новые платья
2009-12-28 11:05:57 —-D—- C:Program FilesConduit
2009-12-28 11:05:56 —-D—- C:Program FilesMyPlayCityRU
2009-12-24 16:56:07 —-DC—- C:билайн
2009-12-22 12:29:28 —-D—- C:Documents and SettingsAll UsersApplication DataSugarGames
2009-12-20 09:33:44 —-D—- C:Program FilesOverlord
2009-12-17 19:26:38 —-HDC—- C:WINDOWS$NtUninstallKB970430$
2009-12-17 19:26:23 —-HDC—- C:WINDOWS$NtUninstallKB974318$
2009-12-17 19:26:09 —-HDC—- C:WINDOWS$NtUninstallKB973904$
2009-12-17 19:25:57 —-HDC—- C:WINDOWS$NtUninstallKB974392$
2009-12-17 19:25:28 —-HDC—- C:WINDOWS$NtUninstallKB971737$
2009-12-07 15:36:00 —-A—- C:WINDOWSsystem32XAudio2_0.dll
2009-12-07 15:36:00 —-A—- C:WINDOWSsystem32X3DAudio1_3.dll
2009-12-07 15:35:59 —-A—- C:WINDOWSsystem32d3dx10_37.dll
2009-12-07 15:35:59 —-A—- C:WINDOWSsystem32D3DCompiler_37.dll
2009-12-07 15:35:58 —-A—- C:WINDOWSsystem32D3DX9_37.dll
2009-12-07 15:08:08 —-D—- C:Program FilesLEGO Star Wars — The Complete Saga
2009-12-03 20:20:51 —-HDC—- C:WINDOWS$NtUninstallKB951978$
2009-12-03 20:18:53 —-HDC—- C:WINDOWS$NtUninstallKB961118$
2009-12-03 20:18:02 —-HDC—- C:WINDOWS$NtUninstallKB956744$
2009-12-03 20:15:31 —-HDC—- C:WINDOWS$NtUninstallKB973540_WM9$
2009-12-03 19:37:14 —-D—- C:WINDOWSRegisteredPackages
2009-12-03 19:35:55 —-A—- C:WINDOWSsystem32psisdecd.dll
2009-12-03 19:35:48 —-A—- C:WINDOWSsystem32dxdllreg.exe
2009-12-02 14:52:58 —-D—- C:WINDOWSPrefetch
2009-12-02 14:48:29 —-HDC—- C:WINDOWS$NtUninstallKB975467$
2009-12-02 14:48:11 —-HDC—- C:WINDOWS$NtUninstallKB975025$
2009-12-02 14:47:56 —-HDC—- C:WINDOWS$NtUninstallKB974571$
2009-12-02 14:47:38 —-HDC—- C:WINDOWS$NtUninstallKB974112$
2009-12-02 14:47:24 —-HDC—- C:WINDOWS$NtUninstallKB973869$
2009-12-02 14:47:08 —-HDC—- C:WINDOWS$NtUninstallKB973815$
2009-12-02 14:46:54 —-HDC—- C:WINDOWS$NtUninstallKB973687$
2009-12-02 14:46:36 —-HDC—- C:WINDOWS$NtUninstallKB973507$
2009-12-02 14:46:22 —-HDC—- C:WINDOWS$NtUninstallKB973354$
2009-12-02 14:46:04 —-HDC—- C:WINDOWS$NtUninstallKB971657$
2009-12-02 14:45:50 —-HDC—- C:WINDOWS$NtUninstallKB971633$
2009-12-02 14:45:35 —-HDC—- C:WINDOWS$NtUninstallKB971557$
2009-12-02 14:45:18 —-HDC—- C:WINDOWS$NtUninstallKB971486$
2009-12-02 14:45:02 —-HDC—- C:WINDOWS$NtUninstallKB970238$
2009-12-02 14:44:47 —-HDC—- C:WINDOWS$NtUninstallKB969947$
2009-12-02 14:44:33 —-HDC—- C:WINDOWS$NtUninstallKB969059$
2009-12-02 14:44:17 —-HDC—- C:WINDOWS$NtUninstallKB968389$
2009-12-02 14:44:01 —-HDC—- C:WINDOWS$NtUninstallKB967715$
2009-12-02 14:43:46 —-HDC—- C:WINDOWS$NtUninstallKB961501$
2009-12-02 14:43:32 —-HDC—- C:WINDOWS$NtUninstallKB961371-v2$
2009-12-02 14:43:16 —-HDC—- C:WINDOWS$NtUninstallKB960859$
2009-12-02 14:43:02 —-HDC—- C:WINDOWS$NtUninstallKB960803$
2009-12-02 14:42:49 —-HDC—- C:WINDOWS$NtUninstallKB960225$
2009-12-02 14:42:34 —-HDC—- C:WINDOWS$NtUninstallKB959426$
2009-12-02 14:42:19 —-HDC—- C:WINDOWS$NtUninstallKB958687$
2009-12-02 14:42:05 —-HDC—- C:WINDOWS$NtUninstallKB958644$
2009-12-02 14:41:49 —-HDC—- C:WINDOWS$NtUninstallKB957097$
2009-12-02 14:41:36 —-HDC—- C:WINDOWS$NtUninstallKB956844$
2009-12-02 14:41:22 —-HDC—- C:WINDOWS$NtUninstallKB956803$
2009-12-02 14:41:07 —-HDC—- C:WINDOWS$NtUninstallKB956802$
2009-12-02 14:40:42 —-HDC—- C:WINDOWS$NtUninstallKB956572$
2009-12-02 14:40:24 —-HDC—- C:WINDOWS$NtUninstallKB973687_1$
2009-12-02 14:40:10 —-HDC—- C:WINDOWS$NtUninstallKB955069$
2009-12-02 14:39:56 —-HDC—- C:WINDOWS$NtUninstallKB952954$
2009-12-02 14:39:42 —-HDC—- C:WINDOWS$NtUninstallKB952287$
2009-12-02 14:39:23 —-HDC—- C:WINDOWS$NtUninstallKB952004$
2009-12-02 14:39:04 —-HDC—- C:WINDOWS$NtUninstallKB951748$
2009-12-02 14:38:51 —-HDC—- C:WINDOWS$NtUninstallKB951376-v2$
2009-12-02 14:38:37 —-HDC—- C:WINDOWS$NtUninstallKB951066$
2009-12-02 14:38:22 —-HDC—- C:WINDOWS$NtUninstallKB950974$
2009-12-02 14:38:07 —-HDC—- C:WINDOWS$NtUninstallKB950762$
2009-12-02 14:37:53 —-HDC—- C:WINDOWS$NtUninstallKB946648$
2009-12-02 14:37:36 —-HDC—- C:WINDOWS$NtUninstallKB923561$
2009-12-02 14:30:33 —-D—- C:WINDOWSsystem32ru
2009-12-02 14:30:33 —-D—- C:WINDOWSl2schemas
2009-12-02 14:30:31 —-D—- C:WINDOWSsystem32bits
2009-12-02 14:18:26 —-D—- C:WINDOWSnetwork diagnostic
2009-12-02 14:09:09 —-HDC—- C:WINDOWS$NtServicePackUninstall$
2009-12-02 13:08:42 —-DC—- C:f8d1cecae4c6a4f287
2009-12-02 12:57:23 —-A—- C:WINDOWSsystem32rmoc3260.dll
2009-12-02 12:57:23 —-A—- C:WINDOWSsystem32pndx5032.dll
2009-12-02 12:57:23 —-A—- C:WINDOWSsystem32pndx5016.dll
2009-12-02 12:57:23 —-A—- C:WINDOWSsystem32pncrt.dll
2009-12-02 12:57:16 —-A—- C:WINDOWSavisplitter.ini
2009-12-02 12:57:06 —-A—- C:WINDOWSsystem32yv12vfw.dll
2009-12-02 12:57:06 —-A—- C:WINDOWSsystem32xvidvfw.dll
2009-12-02 12:57:06 —-A—- C:WINDOWSsystem32xvidcore.dll
2009-12-02 12:57:00 —-A—- C:WINDOWSsystem32qt-dx331.dll
2009-12-02 12:57:00 —-A—- C:WINDOWSsystem32dpl100.dll
2009-12-02 12:56:48 —-A—- C:WINDOWSsystem32divx.dll
2009-12-02 12:56:44 —-A—- C:WINDOWSsystem32ff_vfw.dll.manifest
2009-12-02 12:56:43 —-A—- C:WINDOWSsystem32ff_vfw.dll
2009-12-02 12:56:40 —-D—- C:Program FilesK-Lite Codec Pack
2009-12-02 08:25:35 —-N—- C:WINDOWSsystem32spmsg.dll
2009-11-30 20:07:53 —-HDC—- C:WINDOWS$NtUninstallKB951376-v2_0$
2009-11-30 20:07:44 —-HDC—- C:WINDOWS$NtUninstallKB952954_0$
2009-11-30 20:07:35 —-HDC—- C:WINDOWS$NtUninstallKB959426_0$
2009-11-30 20:07:26 —-HDC—- C:WINDOWS$NtUninstallKB946648_0$
2009-11-30 20:07:17 —-HDC—- C:WINDOWS$NtUninstallKB956803_0$
2009-11-30 20:07:06 —-HDC—- C:WINDOWS$NtUninstallKB960859_0$
2009-11-30 20:06:55 —-HDC—- C:WINDOWS$NtUninstallKB958869$
2009-11-30 20:06:45 —-HDC—- C:WINDOWS$NtUninstallKB954155_WM9$
2009-11-30 20:06:24 —-HDC—- C:WINDOWS$NtUninstallKB976098-v2$
2009-11-30 20:06:14 —-HDC—- C:WINDOWS$NtUninstallKB969059_0$
2009-11-30 20:06:00 —-HDC—- C:WINDOWS$NtUninstallKB961371-v2_0$
2009-11-30 20:05:44 —-HDC—- C:WINDOWS$NtUninstallKB950974_0$
2009-11-30 20:05:33 —-HDC—- C:WINDOWS$NtUninstallKB971657_0$
2009-11-30 20:05:21 —-HDC—- C:WINDOWS$NtUninstallKB971557_0$
2009-11-30 20:05:09 —-HDC—- C:WINDOWS$NtUninstallKB960225_0$
2009-11-30 20:04:56 —-HDC—- C:WINDOWS$NtUninstallKB974112_0$
2009-11-30 20:04:47 —-D—- C:Program FilesMicrosoft CAPICOM 2.1.0.2
2009-11-30 20:04:17 —-HDC—- C:WINDOWS$NtUninstallKB956572_0$
2009-11-30 20:03:55 —-HDC—- C:WINDOWS$NtUninstallKB956844_0$
2009-11-30 20:03:43 —-HDC—- C:WINDOWS$NtUninstallKB961501_0$
2009-11-30 20:02:52 —-HDC—- C:WINDOWS$NtUninstallKB968816_WM9$
2009-11-30 20:02:26 —-HDC—- C:WINDOWS$NtUninstallKB971633_0$
2009-11-30 20:02:02 —-HDC—- C:WINDOWS$NtUninstallKB925720$
2009-11-30 20:01:40 —-HDC—- C:WINDOWS$NtUninstallKB952069_WM9$
2009-11-30 20:01:14 —-HDC—- C:WINDOWS$NtUninstallKB973869_0$
2009-11-30 20:00:49 —-HDC—- C:WINDOWS$NtUninstallKB975025_0$
2009-11-30 20:00:18 —-HDC—- C:WINDOWS$NtUninstallKB973540_WM9L$
2009-11-30 19:59:49 —-HDC—- C:WINDOWS$NtUninstallKB952004_0$
2009-11-30 19:59:25 —-HDC—- C:WINDOWS$NtUninstallKB974571_0$
2009-11-30 19:58:59 —-HDC—- C:WINDOWS$NtUninstallKB973507_0$
2009-11-30 19:58:35 —-HDC—- C:WINDOWS$NtUninstallKB973687_0$
2009-11-30 19:58:04 —-HDC—- C:WINDOWS$NtUninstallKB950762_0$
2009-11-30 19:57:37 —-HDC—- C:WINDOWS$NtUninstallKB957097_0$
2009-11-30 19:57:07 —-HDC—- C:WINDOWS$NtUninstallKB958687_0$
2009-11-30 19:56:38 —-HDC—- C:WINDOWS$NtUninstallKB952287_0$
2009-11-30 19:56:11 —-HDC—- C:WINDOWS$NtUninstallKB973354_0$
2009-11-30 19:55:35 —-HDC—- C:WINDOWS$NtUninstallKB967715_0$
2009-11-30 19:51:06 —-HDC—- C:WINDOWS$NtUninstallKB951066_0$
2009-11-30 19:50:13 —-HDC—- C:WINDOWS$NtUninstallKB951748_0$
2009-11-30 19:49:50 —-HDC—- C:WINDOWS$NtUninstallKB970238_0$
2009-11-30 19:49:36 —-HDC—- C:WINDOWS$NtUninstallKB885884$
2009-11-30 19:49:00 —-HDC—- C:WINDOWS$NtUninstallKB971486_0$
2009-11-30 19:48:28 —-D—- C:WINDOWSServicePackFiles
2009-11-30 19:48:25 —-HDC—- C:WINDOWS$NtUninstallKB958470$
2009-11-30 19:47:59 —-HDC—- C:WINDOWS$NtUninstallKB960803_0$
2009-11-30 19:47:34 —-HDC—- C:WINDOWS$NtUninstallKB973815_0$
2009-11-30 19:46:49 —-HDC—- C:WINDOWS$NtUninstallKB973525$
2009-11-30 19:46:17 —-HDC—- C:WINDOWS$NtUninstallKB971032$
2009-11-30 19:45:50 —-HDC—- C:WINDOWS$NtUninstallKB958644_0$
2009-11-30 19:45:27 —-HDC—- C:WINDOWS$NtUninstallKB955069_0$
2009-11-30 19:45:03 —-HDC—- C:WINDOWS$NtUninstallKB956802_0$
2009-11-30 19:44:14 —-D—- C:Program FilesMSXML 4.0
2009-11-30 19:43:36 —-HDC—- C:WINDOWS$NtUninstallKB923561_0$
2009-11-30 19:43:10 —-HDC—- C:WINDOWS$NtUninstallKB975467_0$
2009-11-30 19:42:44 —-HDC—- C:WINDOWS$NtUninstallKB968389_0$
2009-11-30 19:42:06 —-HDC—- C:WINDOWS$NtUninstallKB969947_0$
2009-11-30 14:58:24 —-N—- C:WINDOWSsystem32tzchange.exe
2009-11-30 12:52:46 —-D—- C:WINDOWSie8updates
2009-11-30 12:52:01 —-HD—- C:WINDOWSmsdownld.tmp
2009-11-30 12:51:34 —-D—- C:WINDOWSWBEM
2009-11-30 12:50:03 —-HDC—- C:WINDOWSie8
2009-11-30 12:40:56 —-A—- C:WINDOWSsystem32mucltui.dll.mui
2009-11-30 12:40:56 —-A—- C:WINDOWSsystem32mucltui.dll
2009-11-30 12:18:11 —-HDC—- C:WINDOWS$NtUninstallKB884020$
2009-11-30 10:45:27 —-A—- C:WINDOWSsystem32MRT.exe
2009-11-30 10:45:02 —-HDC—- C:WINDOWS$NtUninstallKB932823-v3$
2009-11-30 08:10:15 —-DC—- C:нод 30,11,2009======List of files/folders modified in the last 1 months======
2009-12-29 13:20:33 —-D—- C:WINDOWSTemp
2009-12-29 13:20:32 —-RD—- C:Program Files
2009-12-29 13:17:35 —-A—- C:WINDOWSSchedLgU.Txt
2009-12-29 13:17:24 —-D—- C:Documents and SettingsUserApplication DatauTorrent
2009-12-29 12:47:58 —-A—- C:WINDOWSsetuplog.txt
2009-12-28 21:23:35 —-D—- C:WINDOWSsystem32CatRoot2
2009-12-28 20:00:58 —-D—- C:Documents and SettingsUserApplication DataAce
2009-12-28 19:49:27 —-D—- C:WINDOWS
2009-12-28 19:32:30 —-SD—- C:Documents and SettingsUserApplication DataMicrosoft
2009-12-28 11:05:54 —-D—- C:WINDOWSsystem32
2009-12-28 10:25:45 —-DC—- C:есет
2009-12-28 10:19:59 —-SD—- C:WINDOWSTasks
2009-12-24 17:51:10 —-D—- C:Program FilesMyPlayCity.ru
2009-12-22 12:15:21 —-D—- C:Program FilesShareman
2009-12-19 18:10:37 —-SHD—- C:WINDOWSInstaller
2009-12-18 15:39:39 —-HD—- C:WINDOWSinf
2009-12-18 15:39:26 —-RSHDC—- C:WINDOWSsystem32dllcache
2009-12-18 15:39:22 —-D—- C:Program FilesInternet Explorer
2009-12-18 15:38:40 —-HD—- C:WINDOWS$hf_mig$
2009-12-18 05:27:47 —-A—- C:WINDOWSsystem32PerfStringBackup.INI
2009-12-17 19:26:45 —-A—- C:WINDOWSimsins.BAK
2009-12-17 19:26:41 —-D—- C:WINDOWSsystem32drivers
2009-12-16 13:32:22 —-HD—- C:Program FilesInstallShield Installation Information
2009-12-16 13:15:47 —-D—- C:Program Files1C
2009-12-07 15:36:02 —-D—- C:WINDOWSsystem32DirectX
2009-12-07 13:45:52 —-D—- C:WINDOWSMicrosoft.NET
2009-12-07 13:45:21 —-RSD—- C:WINDOWSassembly
2009-12-05 19:41:36 —-DC—- C:макияж
2009-12-05 19:35:28 —-DC—- C:выкорйки
2009-12-05 17:20:43 —-DC—- C:редактор одежды,фен-шуй, гороскоп
2009-12-05 17:20:43 —-DC—- C:выкройка
2009-12-05 17:10:22 —-DC—- C:игры, программы из инета
2009-12-04 21:31:17 —-D—- C:Program FilesCommon FilesMicrosoft Shared
2009-12-04 15:04:07 —-D—- C:Program FilesCommon Files
2009-12-04 15:03:56 —-D—- C:WINDOWSWinSxS
2009-12-03 20:21:44 —-D—- C:WINDOWSsystem32CatRoot
2009-12-03 20:13:52 —-A—- C:WINDOWSwin.ini
2009-12-02 14:54:23 —-AC—- C:WINDOWSOEWABLog.txt
2009-12-02 14:52:30 —-D—- C:WINDOWSsystem32wbem
2009-12-02 14:52:30 —-D—- C:WINDOWSsystem32Setup
2009-12-02 14:52:30 —-D—- C:WINDOWSAppPatch
2009-12-02 14:52:28 —-RSD—- C:WINDOWSFonts
2009-12-02 14:46:23 —-D—- C:Program FilesOutlook Express
2009-12-02 14:43:09 —-D—- C:WINDOWSsecurity
2009-12-02 14:37:55 —-D—- C:Program FilesMessenger
2009-12-02 14:31:46 —-D—- C:Program FilesWindows Media Player
2009-12-02 14:31:43 —-D—- C:WINDOWSHelp
2009-12-02 14:31:12 —-D—- C:WINDOWSehome
2009-12-02 14:31:06 —-D—- C:WINDOWSsystem32inetsrv
2009-12-02 14:31:05 —-D—- C:WINDOWSime
2009-12-02 14:30:38 —-D—- C:WINDOWSsystem32ru-RU
2009-12-02 14:30:37 —-D—- C:WINDOWSsystem32usmt
2009-12-02 14:30:31 —-D—- C:WINDOWSPeerNet
2009-12-02 14:30:31 —-D—- C:Program FilesMovie Maker
2009-12-02 14:22:12 —-D—- C:WINDOWSsystem32Restore
2009-12-02 14:22:11 —-D—- C:WINDOWSsystem32npp
2009-12-02 14:22:09 —-D—- C:WINDOWSmsagent
2009-12-02 14:22:07 —-D—- C:WINDOWSsrchasst
2009-12-02 14:22:06 —-D—- C:Program FilesNetMeeting
2009-12-02 14:22:03 —-D—- C:WINDOWSsystem32Com
2009-12-02 14:21:56 —-D—- C:Program FilesWindows NT
2009-12-02 14:21:51 —-D—- C:Program FilesCommon FilesSystem
2009-12-02 14:21:12 —-D—- C:WINDOWSsystem32oobe
2009-12-02 14:21:08 —-D—- C:WINDOWSsystem
2009-12-02 14:14:29 —-D—- C:WINDOWSsystem32ReinstallBackups
2009-12-02 13:09:58 —-D—- C:WINDOWSsystem32XPSViewer
2009-12-02 13:09:53 —-D—- C:WINDOWSsystem32en-us
2009-11-30 16:55:01 —-D—- C:WINDOWSDebug
2009-11-30 12:52:07 —-D—- C:Documents and SettingsUserApplication DataYandex
2009-11-30 12:51:41 —-D—- C:WINDOWSsystem32config
2009-11-30 12:51:23 —-D—- C:WINDOWSMedia
2009-11-30 12:40:19 —-D—- C:WINDOWSSoftwareDistribution======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ehdrv;ehdrv; C:WINDOWSsystem32DRIVERSehdrv.sys [2009-09-29 108792]
R1 epfwtdir;epfwtdir; C:WINDOWSsystem32DRIVERSepfwtdir.sys [2009-09-29 96408]
R1 intelppm;Драйвер Intel процессора; C:WINDOWSsystem32DRIVERSintelppm.sys [2008-04-14 40704]
R1 WS2IFSL;Среда Windows Socket 2.0 поддержки поставщиков не-IFS служб; C:WINDOWSSystem32driversws2ifsl.sys [2001-10-20 12032]
R2 eamon;eamon; C:WINDOWSsystem32DRIVERSeamon.sys [2009-09-29 116008]
R2 GenPort;GenPort; C:WINDOWSsystem32driversGenPort.sys [1998-05-01 4832]
R2 HidUsb;Microsoft HID Class Driver; C:WINDOWSsystem32DRIVERShidusb.sys [2008-04-13 10368]
R2 MapMem;MapMem; C:WINDOWSsystem32driversMapMem.sys [1998-05-01 6816]
R2 mdmxsdk;mdmxsdk; C:WINDOWSsystem32DRIVERSmdmxsdk.sys [2004-08-04 11868]
R2 NTRemap;NTRemap; C:WINDOWSsystem32driversNTRemap.sys [1998-05-01 6336]
R3 ALCXSENS;Service for WDM 3D Audio Driver; C:WINDOWSsystem32driversALCXSENS.SYS [2004-02-24 400384]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:WINDOWSsystem32driversALCXWDM.SYS [2004-05-14 622172]
R3 BlueletAudio;Bluetooth Audio Service; C:WINDOWSsystem32DRIVERSblueletaudio.sys [2005-05-31 20480]
R3 BTHidEnum;Bluetooth HID Enumerator; C:WINDOWSsystem32DRIVERSvbtenum.sys [2005-04-30 11860]
R3 mouhid;Драйвер мыши HID; C:WINDOWSsystem32DRIVERSmouhid.sys [2001-10-19 12160]
R3 nv;nv; C:WINDOWSsystem32DRIVERSnv4_mini.sys [2004-01-29 1880320]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:WINDOWSSystem32DriversRootMdm.sys [2001-10-20 5888]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet адаптер, драйвер для NT; C:WINDOWSsystem32DRIVERSRTL8139.SYS [2004-08-03 20992]
R3 usbaudio;Аудио драйвер USB (WDM); C:WINDOWSsystem32driversusbaudio.sys [2008-04-13 60032]
R3 usbccgp;Драйвер универсального родительского устройства USB (Microsoft); C:WINDOWSsystem32DRIVERSusbccgp.sys [2008-04-13 32128]
R3 usbehci;Драйвер минипорта Microsoft USB 2.0 расширенного хост-контроллера; C:WINDOWSsystem32DRIVERSusbehci.sys [2008-04-13 30208]
R3 usbhub;USB2 концентратор; C:WINDOWSsystem32DRIVERSusbhub.sys [2008-04-13 59520]
R3 usbuhci;Драйвер минипорта Microsoft USB универсального хост-контроллера; C:WINDOWSsystem32DRIVERSusbuhci.sys [2008-04-13 20608]
R3 VComm;Virtual Serial port driver; C:WINDOWSsystem32DRIVERSVComm.sys [2004-10-19 61312]
R3 VcommMgr;Bluetooth VComm Manager Service; C:WINDOWSSystem32DriversVcommMgr.sys [2005-03-25 82148]
S3 BT;Bluetooth PAN Network Adapter; C:WINDOWSsystem32DRIVERSbtnetdrv.sys [2005-04-30 10804]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:WINDOWSSystem32Driversbtcusb.sys [2005-05-31 23000]
S3 BTNetFilter;Bluetooth Network Filter; ??C:WINDOWSsystem32driversBTNetFilter.sys []
S3 CCDECODE;Closed Caption декодер; C:WINDOWSsystem32DRIVERSCCDECODE.sys [2008-04-13 17024]
S3 dtscsi;dtscsi; C:WINDOWSSystem32Driversdtscsi.sys [2008-03-15 223128]
S3 FT3893;FT3893 Filter; C:WINDOWSsystem32DRIVERSFT3893.sys [2006-08-17 30667]
S3 HSF_DP;HSF_DP; C:WINDOWSsystem32DRIVERSHSFDPSP2.sys [2004-08-04 1041536]
S3 HSFHWBS2;HSFHWBS2; C:WINDOWSsystem32DRIVERSHSFBS2S2.sys [2004-08-04 220032]
S3 MSTEE;Преобразователь потоков Tee/Sink-to-Sink Microsoft; C:WINDOWSsystem32driversMSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI кодек; C:WINDOWSsystem32DRIVERSNABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft видео или ТВ подключение; C:WINDOWSsystem32DRIVERSNdisIP.sys [2008-04-13 10880]
S3 SLIP;BDA Slip De-Framer; C:WINDOWSsystem32DRIVERSSLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:WINDOWSsystem32DRIVERSStreamIP.sys [2008-04-13 15232]
S3 usbprint;Класс принтеров Microsoft USB; C:WINDOWSsystem32DRIVERSusbprint.sys [2008-04-13 25856]
S3 usbscan;Драйвер USB-сканера; C:WINDOWSsystem32DRIVERSusbscan.sys [2008-04-13 15104]
S3 USBSTOR;Драйвер запоминающих устройств для USB; C:WINDOWSsystem32DRIVERSUSBSTOR.SYS [2008-04-13 26368]
S3 usbvideo;USB-видеоустройство (WDM); C:WINDOWSSystem32Driversusbvideo.sys [2008-04-13 121984]
S3 winachsf;winachsf; C:WINDOWSsystem32DRIVERSHSFCXTS2.sys [2004-08-04 685056]
S3 WSTCODEC;World Standard Teletext кодек; C:WINDOWSsystem32DRIVERSWSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation — User-mode Driver Framework Platform Driver; C:WINDOWSsystem32DRIVERSWudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation — User-mode Driver Framework Reflector; C:WINDOWSsystem32DRIVERSwudfrd.sys [2006-09-28 82944]======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BlueSoleil Hid Service;BlueSoleil Hid Service; C:Program FilesIVT CorporationBlueSoleilBTNtService.exe [2005-04-06 110592]
R2 ekrn;ESET Service; C:Program FilesESETESET NOD32 Antivirusekrn.exe [2009-09-29 735960]
R2 NVSvc;NVIDIA Display Driver Service; C:WINDOWSsystem32nvsvc32.exe [2004-01-29 77824]
S3 aspnet_state;Служба состояний ASP.NET; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:Program FilesESETESET NOD32 AntivirusEHttpSrv.exe [2009-09-29 20680]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:WINDOWSMicrosoft.NETFrameworkv3.0WPFPresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:Program FilesCommon FilesInstallShieldDriver1150Intel 32IDriverT.exe [2005-11-14 69632]
S3 idsvc;Windows CardSpace; C:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication Foundationinfocard.exe [2008-07-29 881664]
S3 WudfSvc;Windows Driver Foundation — User-mode Driver Framework; C:WINDOWSsystem32svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Служба общего доступа к портам Net.Tcp; C:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication FoundationSMSvcHost.exe [2008-07-29 132096]
EOF
30 декабря, 2009 в 6:27 пп #27651Здравствуйте, добро пожаловать на Spyware-ru форум.
Скачайте OTM by OldTimer кликнув по этой ссылке.
Запустите OTM и в большое поле ввода (заголовок этого поля выделен желтым цветом) скопируйте следующий текст.:reg
[-HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{88888888-8888-8888-8888-888888888888}]
[-HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{9D64F819-9380-8473-DAB2-702FCB3D7A3E}]
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
"servises"=-
[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
"amva"=-
"servises"=
:files
C:WINDOWStasksPCConfidential.job
C:WINDOWStasksSys Check.job
:Commands
[emptytemp]
[Reboot]Проверьте вставленный скрипт, если слева перед директивами появились пробелы, то удалите их, скрипт должен выглядеть так же как в сообщении. Кликните по кнопке MoveIt!. В процессе работы возможна перезагрузка компьютера.
По-завершении работы программы должен будет показан лог. Если лог не будет показан, то его можно найти в папке C:_OTMMovedFiles.Вставьте в ваше ответное сообщение содержимое этого лога. И приложите свежий RSIT лог.
31 декабря, 2009 в 5:20 дп #27652Аноним
Гость- Темы:532
- Сообщений:1553
- ☆☆☆☆☆
Сделала как было вами написано, вот результат, помогите пожалуйста!!!
All processes killed
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{88888888-8888-8888-8888-888888888888} deleted successfully.
Registry key HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{88888888-8888-8888-8888-888888888888} not found.
Registry key HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{9D64F819-9380-8473-DAB2-702FCB3D7A3E} deleted successfully.
Registry key HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{9D64F819-9380-8473-DAB2-702FCB3D7A3E} deleted successfully.
Registry value HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun\servises deleted successfully.
Registry value HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun\amva deleted successfully.
HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun\»servises»| /E : value set successfully!
========== FILES ==========
C:WINDOWStasksPCConfidential.job moved successfully.
C:WINDOWStasksSys Check.job moved successfully.
========== COMMANDS ==========[EMPTYTEMP]
Logfile of random’s system information tool 1.06 (written by random/random)
Run by User at 2009-12-31 08:17:35
Microsoft Windows XP Professional Service Pack 3
System drive C: has 4 GB (5%) free of 76 GB
Total RAM: 511 MB (43% free)Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:17:48, on 31.12.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: NormalRunning processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:Program FilesIVT CorporationBlueSoleilBTNtService.exe
C:Program FilesESETESET NOD32 Antivirusekrn.exe
C:WINDOWSsystem32nvsvc32.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32wuauclt.exe
C:WINDOWSExplorer.EXE
C:WINDOWSnotepad.exe
C:WINDOWSSOUNDMAN.EXE
C:Program FilesCyberLinkPowerDVDPDVDServ.exe
C:Program FilesESETESET NOD32 Antivirusegui.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesuTorrentuTorrent.exe
C:Program FilesIVT CorporationBlueSoleilBlueSoleil.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesInternet Exploreriexplore.exe
C:Documents and SettingsUserРабочий столRSIT.exe
C:Program Filestrend microUser.exeR1 — HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.yandex.ru/?clid=48084
R0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.yandex.ru/
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 — HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 — HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = about:blank
R0 — HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Ссылки
R3 — URLSearchHook: MyPlayCityRU Toolbar — {dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — C:Program FilesMyPlayCityRUtbMyPl.dll (file missing)
O2 — BHO: MyPlayCityRU Toolbar — {dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — C:Program FilesMyPlayCityRUtbMyPl.dll (file missing)
O3 — Toolbar: Яндекс.Бар — {91397D20-1446-11D4-8AF4-0040CA1127B6} — C:Program FilesYandexYandexBarIEyndbar.dll
O3 — Toolbar: MyPlayCityRU Toolbar — {dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — C:Program FilesMyPlayCityRUtbMyPl.dll (file missing)
O4 — HKLM..Run: [SoundMan] SOUNDMAN.EXE
O4 — HKLM..Run: [RemoteControl] «C:Program FilesCyberLinkPowerDVDPDVDServ.exe»
O4 — HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup
O4 — HKLM..Run: [nwiz] nwiz.exe /install
O4 — HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit
O4 — HKLM..Run: [DrWebScheduler] «C:Program FilesDrWeb for Windowsdrwebscd.exe»
O4 — HKLM..Run: [egui] «C:Program FilesESETESET NOD32 Antivirusegui.exe» /hide /waitservice
O4 — HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe
O4 — HKCU..Run: [uTorrent] «C:Program FilesuTorrentuTorrent.exe»
O4 — HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘LOCAL SERVICE’)
O4 — HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘NETWORK SERVICE’)
O4 — HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘SYSTEM’)
O4 — HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘Default user’)
O4 — Global Startup: BlueSoleil.lnk = ?
O4 — Global Startup: Microsoft Office.lnk = C:Program FilesMicrosoft OfficeOffice10OSA.EXE
O6 — HKCUSoftwarePoliciesMicrosoftInternet ExplorerControl Panel present
O8 — Extra context menu item: &Экспорт в Microsoft Excel — res://C:PROGRA~1MICROS~2Office10EXCEL.EXE/3000
O9 — Extra button: (no name) — {53F6FCCD-9E22-4d71-86EA-6E43136192AB} — (no file)
O9 — Extra button: (no name) — {925DAB62-F9AC-4221-806A-057BFB1014AA} — (no file)
O9 — Extra button: (no name) — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra button: Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O9 — Extra ‘Tools’ menuitem: Windows Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O17 — HKLMSystemCCSServicesTcpip..{25024B0E-CD1E-47CC-B32F-5B9F39994616}: NameServer = 212.120.160.130 212.120.173.34
O23 — Service: BlueSoleil Hid Service — Unknown owner — C:Program FilesIVT CorporationBlueSoleilBTNtService.exe
O23 — Service: ESET HTTP Server (EhttpSrv) — ESET — C:Program FilesESETESET NOD32 AntivirusEHttpSrv.exe
O23 — Service: ESET Service (ekrn) — ESET — C:Program FilesESETESET NOD32 Antivirusekrn.exe
O23 — Service: Журнал событий (Eventlog) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: InstallDriver Table Manager (IDriverT) — Macrovision Corporation — C:Program FilesCommon FilesInstallShieldDriver1150Intel 32IDriverT.exe
O23 — Service: Служба COM записи компакт-дисков IMAPI (ImapiService) — Корпорация Майкрософт — C:WINDOWSsystem32imapi.exe
O23 — Service: NetMeeting Remote Desktop Sharing (mnmsrvc) — Корпорация Майкрософт — C:WINDOWSsystem32mnmsrvc.exe
O23 — Service: NVIDIA Display Driver Service (NVSvc) — NVIDIA Corporation — C:WINDOWSsystem32nvsvc32.exe
O23 — Service: Plug and Play (PlugPlay) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: Диспетчер сеанса справки для удаленного рабочего стола (RDSessMgr) — Корпорация Майкрософт — C:WINDOWSsystem32sessmgr.exe
O23 — Service: Смарт-карты (SCardSvr) — Корпорация Майкрософт — C:WINDOWSSystem32SCardSvr.exe
O23 — Service: Журналы и оповещения производительности (SysmonLog) — Корпорация Майкрософт — C:WINDOWSsystem32smlogsvc.exe
O23 — Service: Теневое копирование тома (VSS) — Корпорация Майкрософт — C:WINDOWSSystem32vssvc.exe
O23 — Service: Адаптер производительности WMI (WmiApSrv) — Корпорация Майкрософт — C:WINDOWSsystem32wbemwmiapsrv.exe—
End of file — 6416 bytes======Scheduled tasks folder======
C:WINDOWStasksUser_Feed_Synchronization-{35EBB7AA-472E-4A9E-A409-A1B3452724BC}.job
======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{dfbeb35b-444d-4f25-8d7d-eb2683c206ec}]
MyPlayCityRU Toolbar — C:Program FilesMyPlayCityRUtbMyPl.dll [][HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{91397D20-1446-11D4-8AF4-0040CA1127B6} — Яндекс.Бар — C:Program FilesYandexYandexBarIEyndbar.dll [2009-07-24 5586208]
{dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — MyPlayCityRU Toolbar — C:Program FilesMyPlayCityRUtbMyPl.dll [][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«SoundMan»=C:WINDOWSSOUNDMAN.EXE [2004-05-14 67072]
«RemoteControl»=C:Program FilesCyberLinkPowerDVDPDVDServ.exe [2003-10-31 32768]
«NvCplDaemon»=C:WINDOWSsystem32NvCpl.dll [2004-01-29 2899968]
«nwiz»=nwiz.exe /install []
«NvMediaCenter»=C:WINDOWSsystem32NvMcTray.dll [2004-01-29 46080]
«DrWebScheduler»=C:Program FilesDrWeb for Windowsdrwebscd.exe []
«egui»=C:Program FilesESETESET NOD32 Antivirusegui.exe [2009-09-29 2054360][HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
«CTFMON.EXE»=C:WINDOWSsystem32ctfmon.exe [2008-04-14 15360]
«uTorrent»=C:Program FilesuTorrentuTorrent.exe [2009-10-06 289072]
«servises»= []C:Documents and SettingsAll UsersГлавное менюПрограммыАвтозагрузка
BlueSoleil.lnk — C:Program FilesIVT CorporationBlueSoleilBlueSoleil.exe
Microsoft Office.lnk — C:Program FilesMicrosoft OfficeOffice10OSA.EXE[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«HonorAutoRunSetting»=[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:Program FilesIVT CorporationBlueSoleilBlueSoleil.exe»=»C:Program FilesIVT CorporationBlueSoleilBlueSoleil.exe:*:Enabled:BlueSoleil»
«C:Program FilesGroove GamesCombat 121SystemCombat.exe»=»C:Program FilesGroove GamesCombat 121SystemCombat.exe:*:Enabled:Combat»
«C:Program FilesLeft 4 Deadhl2.exe»=»C:Program FilesLeft 4 Deadhl2.exe:*:Disabled:hl2»
«C:Program FilesuTorrentuTorrent.exe»=»C:Program FilesuTorrentuTorrent.exe:*:Enabled:µTorrent»
«C:Program FilesEA GAMESNeed for Speed Most Wantedspeed.exe»=»C:Program FilesEA GAMESNeed for Speed Most Wantedspeed.exe:*:Disabled:speed»
«C:Program FilesESETESET NOD32 Antivirusegui.exe»=»C:Program FilesESETESET NOD32 Antivirusegui.exe:*:Enabled:ESET NOD32 Antivirus»
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»
«C:Program FilesSharemanShareman.exe»=»C:Program FilesSharemanShareman.exe:*:Enabled:Shareman»[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»======List of files/folders created in the last 1 months======
2009-12-31 08:10:13 —-DC—- C:_OTM
2009-12-29 18:09:16 —-D—- C:WINDOWSDownloaded Program Files
2009-12-29 13:20:32 —-DC—- C:rsit
2009-12-29 13:20:32 —-D—- C:Program Filestrend micro
2009-12-29 08:15:52 —-D—- C:Documents and SettingsUserApplication DataAdobe
2009-12-28 11:35:16 —-DC—- C:View7
2009-12-28 11:14:28 —-DC—- C:новые платья
2009-12-28 11:05:57 —-D—- C:Program FilesConduit
2009-12-28 11:05:56 —-D—- C:Program FilesMyPlayCityRU
2009-12-24 16:56:07 —-DC—- C:билайн
2009-12-22 12:29:28 —-D—- C:Documents and SettingsAll UsersApplication DataSugarGames
2009-12-20 09:33:44 —-D—- C:Program FilesOverlord
2009-12-17 19:26:38 —-HDC—- C:WINDOWS$NtUninstallKB970430$
2009-12-17 19:26:23 —-HDC—- C:WINDOWS$NtUninstallKB974318$
2009-12-17 19:26:09 —-HDC—- C:WINDOWS$NtUninstallKB973904$
2009-12-17 19:25:57 —-HDC—- C:WINDOWS$NtUninstallKB974392$
2009-12-17 19:25:28 —-HDC—- C:WINDOWS$NtUninstallKB971737$
2009-12-07 15:36:00 —-A—- C:WINDOWSsystem32XAudio2_0.dll
2009-12-07 15:36:00 —-A—- C:WINDOWSsystem32X3DAudio1_3.dll
2009-12-07 15:35:59 —-A—- C:WINDOWSsystem32d3dx10_37.dll
2009-12-07 15:35:59 —-A—- C:WINDOWSsystem32D3DCompiler_37.dll
2009-12-07 15:35:58 —-A—- C:WINDOWSsystem32D3DX9_37.dll
2009-12-07 15:08:08 —-D—- C:Program FilesLEGO Star Wars — The Complete Saga
2009-12-03 20:20:51 —-HDC—- C:WINDOWS$NtUninstallKB951978$
2009-12-03 20:18:53 —-HDC—- C:WINDOWS$NtUninstallKB961118$
2009-12-03 20:18:02 —-HDC—- C:WINDOWS$NtUninstallKB956744$
2009-12-03 20:15:31 —-HDC—- C:WINDOWS$NtUninstallKB973540_WM9$
2009-12-03 19:37:14 —-D—- C:WINDOWSRegisteredPackages
2009-12-03 19:35:55 —-A—- C:WINDOWSsystem32psisdecd.dll
2009-12-03 19:35:48 —-A—- C:WINDOWSsystem32dxdllreg.exe
2009-12-02 14:52:58 —-D—- C:WINDOWSPrefetch
2009-12-02 14:48:29 —-HDC—- C:WINDOWS$NtUninstallKB975467$
2009-12-02 14:48:11 —-HDC—- C:WINDOWS$NtUninstallKB975025$
2009-12-02 14:47:56 —-HDC—- C:WINDOWS$NtUninstallKB974571$
2009-12-02 14:47:38 —-HDC—- C:WINDOWS$NtUninstallKB974112$
2009-12-02 14:47:24 —-HDC—- C:WINDOWS$NtUninstallKB973869$
2009-12-02 14:47:08 —-HDC—- C:WINDOWS$NtUninstallKB973815$
2009-12-02 14:46:54 —-HDC—- C:WINDOWS$NtUninstallKB973687$
2009-12-02 14:46:36 —-HDC—- C:WINDOWS$NtUninstallKB973507$
2009-12-02 14:46:22 —-HDC—- C:WINDOWS$NtUninstallKB973354$
2009-12-02 14:46:04 —-HDC—- C:WINDOWS$NtUninstallKB971657$
2009-12-02 14:45:50 —-HDC—- C:WINDOWS$NtUninstallKB971633$
2009-12-02 14:45:35 —-HDC—- C:WINDOWS$NtUninstallKB971557$
2009-12-02 14:45:18 —-HDC—- C:WINDOWS$NtUninstallKB971486$
2009-12-02 14:45:02 —-HDC—- C:WINDOWS$NtUninstallKB970238$
2009-12-02 14:44:47 —-HDC—- C:WINDOWS$NtUninstallKB969947$
2009-12-02 14:44:33 —-HDC—- C:WINDOWS$NtUninstallKB969059$
2009-12-02 14:44:17 —-HDC—- C:WINDOWS$NtUninstallKB968389$
2009-12-02 14:44:01 —-HDC—- C:WINDOWS$NtUninstallKB967715$
2009-12-02 14:43:46 —-HDC—- C:WINDOWS$NtUninstallKB961501$
2009-12-02 14:43:32 —-HDC—- C:WINDOWS$NtUninstallKB961371-v2$
2009-12-02 14:43:16 —-HDC—- C:WINDOWS$NtUninstallKB960859$
2009-12-02 14:43:02 —-HDC—- C:WINDOWS$NtUninstallKB960803$
2009-12-02 14:42:49 —-HDC—- C:WINDOWS$NtUninstallKB960225$
2009-12-02 14:42:34 —-HDC—- C:WINDOWS$NtUninstallKB959426$
2009-12-02 14:42:19 —-HDC—- C:WINDOWS$NtUninstallKB958687$
2009-12-02 14:42:05 —-HDC—- C:WINDOWS$NtUninstallKB958644$
2009-12-02 14:41:49 —-HDC—- C:WINDOWS$NtUninstallKB957097$
2009-12-02 14:41:36 —-HDC—- C:WINDOWS$NtUninstallKB956844$
2009-12-02 14:41:22 —-HDC—- C:WINDOWS$NtUninstallKB956803$
2009-12-02 14:41:07 —-HDC—- C:WINDOWS$NtUninstallKB956802$
2009-12-02 14:40:42 —-HDC—- C:WINDOWS$NtUninstallKB956572$
2009-12-02 14:40:24 —-HDC—- C:WINDOWS$NtUninstallKB973687_1$
2009-12-02 14:40:10 —-HDC—- C:WINDOWS$NtUninstallKB955069$
2009-12-02 14:39:56 —-HDC—- C:WINDOWS$NtUninstallKB952954$
2009-12-02 14:39:42 —-HDC—- C:WINDOWS$NtUninstallKB952287$
2009-12-02 14:39:23 —-HDC—- C:WINDOWS$NtUninstallKB952004$
2009-12-02 14:39:04 —-HDC—- C:WINDOWS$NtUninstallKB951748$
2009-12-02 14:38:51 —-HDC—- C:WINDOWS$NtUninstallKB951376-v2$
2009-12-02 14:38:37 —-HDC—- C:WINDOWS$NtUninstallKB951066$
2009-12-02 14:38:22 —-HDC—- C:WINDOWS$NtUninstallKB950974$
2009-12-02 14:38:07 —-HDC—- C:WINDOWS$NtUninstallKB950762$
2009-12-02 14:37:53 —-HDC—- C:WINDOWS$NtUninstallKB946648$
2009-12-02 14:37:36 —-HDC—- C:WINDOWS$NtUninstallKB923561$
2009-12-02 14:30:33 —-D—- C:WINDOWSsystem32ru
2009-12-02 14:30:33 —-D—- C:WINDOWSl2schemas
2009-12-02 14:30:31 —-D—- C:WINDOWSsystem32bits
2009-12-02 14:18:26 —-D—- C:WINDOWSnetwork diagnostic
2009-12-02 14:09:09 —-HDC—- C:WINDOWS$NtServicePackUninstall$
2009-12-02 13:08:42 —-DC—- C:f8d1cecae4c6a4f287
2009-12-02 12:57:23 —-A—- C:WINDOWSsystem32rmoc3260.dll
2009-12-02 12:57:23 —-A—- C:WINDOWSsystem32pndx5032.dll
2009-12-02 12:57:23 —-A—- C:WINDOWSsystem32pndx5016.dll
2009-12-02 12:57:23 —-A—- C:WINDOWSsystem32pncrt.dll
2009-12-02 12:57:16 —-A—- C:WINDOWSavisplitter.ini
2009-12-02 12:57:06 —-A—- C:WINDOWSsystem32yv12vfw.dll
2009-12-02 12:57:06 —-A—- C:WINDOWSsystem32xvidvfw.dll
2009-12-02 12:57:06 —-A—- C:WINDOWSsystem32xvidcore.dll
2009-12-02 12:57:00 —-A—- C:WINDOWSsystem32qt-dx331.dll
2009-12-02 12:57:00 —-A—- C:WINDOWSsystem32dpl100.dll
2009-12-02 12:56:48 —-A—- C:WINDOWSsystem32divx.dll
2009-12-02 12:56:44 —-A—- C:WINDOWSsystem32ff_vfw.dll.manifest
2009-12-02 12:56:43 —-A—- C:WINDOWSsystem32ff_vfw.dll
2009-12-02 12:56:40 —-D—- C:Program FilesK-Lite Codec Pack
2009-12-02 08:25:35 —-N—- C:WINDOWSsystem32spmsg.dll======List of files/folders modified in the last 1 months======
2009-12-31 08:17:38 —-D—- C:WINDOWSTemp
2009-12-31 08:11:42 —-D—- C:WINDOWSsystem32
2009-12-31 08:11:42 —-D—- C:WINDOWS
2009-12-31 08:10:17 —-SD—- C:WINDOWSTasks
2009-12-31 08:06:05 —-A—- C:WINDOWSSchedLgU.Txt
2009-12-31 08:05:55 —-D—- C:Documents and SettingsUserApplication DatauTorrent
2009-12-31 07:51:28 —-DC—- C:есет
2009-12-30 13:21:31 —-D—- C:Program FilesShareman
2009-12-30 12:42:42 —-D—- C:WINDOWSsystem32CatRoot2
2009-12-30 12:00:06 —-A—- C:WINDOWSsetuplog.txt
2009-12-29 13:20:32 —-RD—- C:Program Files
2009-12-28 20:00:58 —-D—- C:Documents and SettingsUserApplication DataAce
2009-12-28 19:32:30 —-SD—- C:Documents and SettingsUserApplication DataMicrosoft
2009-12-24 17:51:10 —-D—- C:Program FilesMyPlayCity.ru
2009-12-19 18:10:37 —-SHD—- C:WINDOWSInstaller
2009-12-18 15:39:39 —-HD—- C:WINDOWSinf
2009-12-18 15:39:26 —-RSHDC—- C:WINDOWSsystem32dllcache
2009-12-18 15:39:22 —-D—- C:Program FilesInternet Explorer
2009-12-18 15:38:40 —-HD—- C:WINDOWS$hf_mig$
2009-12-18 05:27:47 —-A—- C:WINDOWSsystem32PerfStringBackup.INI
2009-12-17 19:26:45 —-A—- C:WINDOWSimsins.BAK
2009-12-17 19:26:41 —-D—- C:WINDOWSsystem32drivers
2009-12-16 13:32:22 —-HD—- C:Program FilesInstallShield Installation Information
2009-12-16 13:15:47 —-D—- C:Program Files1C
2009-12-07 15:36:02 —-D—- C:WINDOWSsystem32DirectX
2009-12-07 13:45:52 —-D—- C:WINDOWSMicrosoft.NET
2009-12-07 13:45:21 —-RSD—- C:WINDOWSassembly
2009-12-05 19:41:36 —-DC—- C:макияж
2009-12-05 19:35:28 —-DC—- C:выкорйки
2009-12-05 17:20:43 —-DC—- C:редактор одежды,фен-шуй, гороскоп
2009-12-05 17:20:43 —-DC—- C:выкройка
2009-12-05 17:10:22 —-DC—- C:игры, программы из инета
2009-12-04 21:31:17 —-D—- C:Program FilesCommon FilesMicrosoft Shared
2009-12-04 15:04:07 —-D—- C:Program FilesCommon Files
2009-12-04 15:03:56 —-D—- C:WINDOWSWinSxS
2009-12-03 20:21:44 —-D—- C:WINDOWSsystem32CatRoot
2009-12-03 20:13:52 —-A—- C:WINDOWSwin.ini
2009-12-02 14:54:23 —-AC—- C:WINDOWSOEWABLog.txt
2009-12-02 14:52:30 —-D—- C:WINDOWSsystem32wbem
2009-12-02 14:52:30 —-D—- C:WINDOWSsystem32Setup
2009-12-02 14:52:30 —-D—- C:WINDOWSAppPatch
2009-12-02 14:52:28 —-RSD—- C:WINDOWSFonts
2009-12-02 14:46:23 —-D—- C:Program FilesOutlook Express
2009-12-02 14:43:09 —-D—- C:WINDOWSsecurity
2009-12-02 14:37:55 —-D—- C:Program FilesMessenger
2009-12-02 14:31:46 —-D—- C:Program FilesWindows Media Player
2009-12-02 14:31:43 —-D—- C:WINDOWSHelp
2009-12-02 14:31:12 —-D—- C:WINDOWSehome
2009-12-02 14:31:06 —-D—- C:WINDOWSsystem32inetsrv
2009-12-02 14:31:05 —-D—- C:WINDOWSime
2009-12-02 14:30:38 —-D—- C:WINDOWSsystem32ru-RU
2009-12-02 14:30:37 —-D—- C:WINDOWSsystem32usmt
2009-12-02 14:30:31 —-D—- C:WINDOWSPeerNet
2009-12-02 14:30:31 —-D—- C:Program FilesMovie Maker
2009-12-02 14:22:52 —-D—- C:WINDOWSServicePackFiles
2009-12-02 14:22:12 —-D—- C:WINDOWSsystem32Restore
2009-12-02 14:22:11 —-D—- C:WINDOWSsystem32npp
2009-12-02 14:22:09 —-D—- C:WINDOWSmsagent
2009-12-02 14:22:07 —-D—- C:WINDOWSsrchasst
2009-12-02 14:22:06 —-D—- C:Program FilesNetMeeting
2009-12-02 14:22:03 —-D—- C:WINDOWSsystem32Com
2009-12-02 14:21:56 —-D—- C:Program FilesWindows NT
2009-12-02 14:21:51 —-D—- C:Program FilesCommon FilesSystem
2009-12-02 14:21:12 —-D—- C:WINDOWSsystem32oobe
2009-12-02 14:21:08 —-D—- C:WINDOWSsystem
2009-12-02 14:14:29 —-D—- C:WINDOWSsystem32ReinstallBackups
2009-12-02 13:09:58 —-D—- C:WINDOWSsystem32XPSViewer
2009-12-02 13:09:53 —-D—- C:WINDOWSsystem32en-us
2009-12-01 23:06:19 —-A—- C:WINDOWSsystem32MRT.exe======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ehdrv;ehdrv; C:WINDOWSsystem32DRIVERSehdrv.sys [2009-09-29 108792]
R1 epfwtdir;epfwtdir; C:WINDOWSsystem32DRIVERSepfwtdir.sys [2009-09-29 96408]
R1 intelppm;Драйвер Intel процессора; C:WINDOWSsystem32DRIVERSintelppm.sys [2008-04-14 40704]
R1 WS2IFSL;Среда Windows Socket 2.0 поддержки поставщиков не-IFS служб; C:WINDOWSSystem32driversws2ifsl.sys [2001-10-20 12032]
R2 eamon;eamon; C:WINDOWSsystem32DRIVERSeamon.sys [2009-09-29 116008]
R2 GenPort;GenPort; C:WINDOWSsystem32driversGenPort.sys [1998-05-01 4832]
R2 HidUsb;Microsoft HID Class Driver; C:WINDOWSsystem32DRIVERShidusb.sys [2008-04-13 10368]
R2 MapMem;MapMem; C:WINDOWSsystem32driversMapMem.sys [1998-05-01 6816]
R2 mdmxsdk;mdmxsdk; C:WINDOWSsystem32DRIVERSmdmxsdk.sys [2004-08-04 11868]
R2 NTRemap;NTRemap; C:WINDOWSsystem32driversNTRemap.sys [1998-05-01 6336]
R3 ALCXSENS;Service for WDM 3D Audio Driver; C:WINDOWSsystem32driversALCXSENS.SYS [2004-02-24 400384]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:WINDOWSsystem32driversALCXWDM.SYS [2004-05-14 622172]
R3 BlueletAudio;Bluetooth Audio Service; C:WINDOWSsystem32DRIVERSblueletaudio.sys [2005-05-31 20480]
R3 BTHidEnum;Bluetooth HID Enumerator; C:WINDOWSsystem32DRIVERSvbtenum.sys [2005-04-30 11860]
R3 mouhid;Драйвер мыши HID; C:WINDOWSsystem32DRIVERSmouhid.sys [2001-10-19 12160]
R3 nv;nv; C:WINDOWSsystem32DRIVERSnv4_mini.sys [2004-01-29 1880320]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:WINDOWSSystem32DriversRootMdm.sys [2001-10-20 5888]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet адаптер, драйвер для NT; C:WINDOWSsystem32DRIVERSRTL8139.SYS [2004-08-03 20992]
R3 usbaudio;Аудио драйвер USB (WDM); C:WINDOWSsystem32driversusbaudio.sys [2008-04-13 60032]
R3 usbccgp;Драйвер универсального родительского устройства USB (Microsoft); C:WINDOWSsystem32DRIVERSusbccgp.sys [2008-04-13 32128]
R3 usbehci;Драйвер минипорта Microsoft USB 2.0 расширенного хост-контроллера; C:WINDOWSsystem32DRIVERSusbehci.sys [2008-04-13 30208]
R3 usbhub;USB2 концентратор; C:WINDOWSsystem32DRIVERSusbhub.sys [2008-04-13 59520]
R3 usbprint;Класс принтеров Microsoft USB; C:WINDOWSsystem32DRIVERSusbprint.sys [2008-04-13 25856]
R3 usbuhci;Драйвер минипорта Microsoft USB универсального хост-контроллера; C:WINDOWSsystem32DRIVERSusbuhci.sys [2008-04-13 20608]
R3 VComm;Virtual Serial port driver; C:WINDOWSsystem32DRIVERSVComm.sys [2004-10-19 61312]
R3 VcommMgr;Bluetooth VComm Manager Service; C:WINDOWSSystem32DriversVcommMgr.sys [2005-03-25 82148]
S3 BT;Bluetooth PAN Network Adapter; C:WINDOWSsystem32DRIVERSbtnetdrv.sys [2005-04-30 10804]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:WINDOWSSystem32Driversbtcusb.sys [2005-05-31 23000]
S3 BTNetFilter;Bluetooth Network Filter; ??C:WINDOWSsystem32driversBTNetFilter.sys []
S3 CCDECODE;Closed Caption декодер; C:WINDOWSsystem32DRIVERSCCDECODE.sys [2008-04-13 17024]
S3 dtscsi;dtscsi; C:WINDOWSSystem32Driversdtscsi.sys [2008-03-15 223128]
S3 FT3893;FT3893 Filter; C:WINDOWSsystem32DRIVERSFT3893.sys [2006-08-17 30667]
S3 HSF_DP;HSF_DP; C:WINDOWSsystem32DRIVERSHSFDPSP2.sys [2004-08-04 1041536]
S3 HSFHWBS2;HSFHWBS2; C:WINDOWSsystem32DRIVERSHSFBS2S2.sys [2004-08-04 220032]
S3 MSTEE;Преобразователь потоков Tee/Sink-to-Sink Microsoft; C:WINDOWSsystem32driversMSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI кодек; C:WINDOWSsystem32DRIVERSNABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft видео или ТВ подключение; C:WINDOWSsystem32DRIVERSNdisIP.sys [2008-04-13 10880]
S3 SLIP;BDA Slip De-Framer; C:WINDOWSsystem32DRIVERSSLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:WINDOWSsystem32DRIVERSStreamIP.sys [2008-04-13 15232]
S3 usbscan;Драйвер USB-сканера; C:WINDOWSsystem32DRIVERSusbscan.sys [2008-04-13 15104]
S3 USBSTOR;Драйвер запоминающих устройств для USB; C:WINDOWSsystem32DRIVERSUSBSTOR.SYS [2008-04-13 26368]
S3 usbvideo;USB-видеоустройство (WDM); C:WINDOWSSystem32Driversusbvideo.sys [2008-04-13 121984]
S3 winachsf;winachsf; C:WINDOWSsystem32DRIVERSHSFCXTS2.sys [2004-08-04 685056]
S3 WSTCODEC;World Standard Teletext кодек; C:WINDOWSsystem32DRIVERSWSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation — User-mode Driver Framework Platform Driver; C:WINDOWSsystem32DRIVERSWudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation — User-mode Driver Framework Reflector; C:WINDOWSsystem32DRIVERSwudfrd.sys [2006-09-28 82944]======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BlueSoleil Hid Service;BlueSoleil Hid Service; C:Program FilesIVT CorporationBlueSoleilBTNtService.exe [2005-04-06 110592]
R2 ekrn;ESET Service; C:Program FilesESETESET NOD32 Antivirusekrn.exe [2009-09-29 735960]
R2 NVSvc;NVIDIA Display Driver Service; C:WINDOWSsystem32nvsvc32.exe [2004-01-29 77824]
S3 aspnet_state;Служба состояний ASP.NET; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:Program FilesESETESET NOD32 AntivirusEHttpSrv.exe [2009-09-29 20680]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:WINDOWSMicrosoft.NETFrameworkv3.0WPFPresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:Program FilesCommon FilesInstallShieldDriver1150Intel 32IDriverT.exe [2005-11-14 69632]
S3 idsvc;Windows CardSpace; C:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication Foundationinfocard.exe [2008-07-29 881664]
S3 WudfSvc;Windows Driver Foundation — User-mode Driver Framework; C:WINDOWSsystem32svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Служба общего доступа к портам Net.Tcp; C:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication FoundationSMSvcHost.exe [2008-07-29 132096]
EOF
User: All Users9 января, 2010 в 8:47 пп #27653Аноним
Гость- Темы:532
- Сообщений:1553
- ☆☆☆☆☆
Привет!!! Из интернета при автоматическом обновлении (его требует антивирус ecet) скачалась проверка подлинности WINDOWS. ОКАЗАЛОСЬ, ЧТО НЕ ПОДЛИННАЯ, АКТИВАЦИИ НЕТ, ВЫХОДИЛО ПРИ ЗАГРУЗКЕ ОКНО ПРОЙТИ АКТИВАЦИЮ. пОТОМ ВООБЩЕ ПЕРЕСТАЛА ЗАГРУЖАТЬСЯ, ПЕРЕУСТАНОВИЛИ, НО БРАНДМАУЭРА НЕТ (ВИДИМО НЕ ПОСТАВИЛИ ГАЛОЧКУ ЕГО УСТАНОВИТЬ). тЕПЕРЬ МЕНЯ ОДОЛЕЛИ ВИРУСЫ!!! РАНЬШЕ ТРИ РАЗА ЗА МЕСЯЦ , А ТЕПЕРЬ КАЖДЫЙ ДЕНЬ НЕ ПО ОДНОМУ (ЕСЕТ ВЫВОДИТ СООБЩЕНИЯ — ТРОЯНСКИЕ ПРОГРАММЫ ) С КАКОГО САЙТА МОЖНО УСТАНОВИТЬ БРАНДМАУЭР, НЕ ОПАСАЯСЬ ВИРУСОВ. пОМОГИТЕ ПОЖАЛУЙСТА!!!
10 января, 2010 в 3:56 пп #27654Попробуйте следующее:
Откройте контрольную панель
Кликните по иконке Брандмауэр Windows.
Выберите пункт Включить, затем кликните по кнопке OK. -
АвторСообщения
- Для ответа в этой теме необходимо авторизоваться.
