• Инструкции
    • Как использовать
      • Программы
    • Как удалить
      • Шпионское и рекламное ПО (adware и spyware)
      • Поддельное антиспайваре
      • Руткиты
      • Трояны
      • Кейлоггеры
  • Скачать программы
  • Вопросы и Ответы
  • Форумы

SPYWARE-RU.COM

Меню
  • Инструкции
    • Как использовать
      • Программы
    • Как удалить
      • Шпионское и рекламное ПО (adware и spyware)
      • Поддельное антиспайваре
      • Руткиты
      • Трояны
      • Кейлоггеры
  • Скачать программы
  • Вопросы и Ответы
  • Форумы
В начало › Посмотрите лог
Adguard
 

Посмотрите лог

Удаление вирусов и троянов. Защита компьютера. › Помощь в удалении вирусов, троянов, рекламы и других зловредов › Посмотрите лог

  • This topic has 2 ответа, 2 участника, and was last updated 16 years, 3 months назад by Admin.
Просмотр 3 сообщений - с 1 по 3 (из 3 всего)
  • Автор
    Сообщения
  • 28 января, 2009 в 6:21 пп #16207
    Grek
    Participant
    • Темы:2
    • Сообщений:4
    • ☆

    Здраствуйте!

    Проблема в следующем: выпадает сообщение о том, что комп перезагрузится через одну минуту (и идёт отсчет). И в этом же сообщений что-то написано про isass.exe

    Поспешил и поставил сначала combofix… лог в первом моём посте..
    После нашёл вот это топ «Как вылечить компьютер, первые шаги. ПРОЧИТАЙТЕ!!!»

    Прочитал и просканил, вот лог и nfo

    Logfile of random’s system information tool 1.05 (written by random/random)
    Run by pp at 2009-01-28 21:11:08
    Microsoft Windows XP Professional Service Pack 1
    System drive C: has 18 GB (46%) free of 38 GB
    Total RAM: 511 MB (45% free)

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 21:11:25, on 28.01.2009
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
    Boot mode: Normal

    Running processes:
    C:WINDOWSSystem32smss.exe
    C:WINDOWSsystem32winlogon.exe
    C:WINDOWSsystem32services.exe
    C:WINDOWSsystem32lsass.exe
    C:WINDOWSSystem32Ati2evxx.exe
    C:WINDOWSsystem32svchost.exe
    C:WINDOWSSystem32svchost.exe
    C:WINDOWSsystem32Ati2evxx.exe
    C:WINDOWSsystem32spoolsv.exe
    C:WINDOWSSystem32CTsvcCDA.exe
    C:Program FilesEsetnod32krn.exe
    C:WINDOWSExplorer.EXE
    C:WINDOWSSystem32MsPMSPSv.exe
    C:Program FilesAd MuncherAdMunch.exe
    C:Program FilesDAEMON Toolsdaemon.exe
    C:Program FilesCreativeSBAudigy2Surround MixerCTSysVol.exe
    C:WINDOWSSystem32wuauclt.exe
    C:WINDOWSSystem32CMMON32.EXE
    C:Program Filesinternet exploreriexplore.exe
    C:Documents and SettingsppРабочий столsergRSIT.exe
    C:Program Filestrend micropp.exe

    R0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://active.mns.ru/
    R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Local Page =
    R0 — HKLMSoftwareMicrosoftInternet ExplorerMain,Local Page =
    R0 — HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Ссылки
    O3 — Toolbar: &Радио — {8E718888-423F-11D2-876E-00A0C9082467} — C:WINDOWSSystem32msdxm.ocx
    O4 — HKLM..Run: [SBDrvDet] C:Program FilesCreativeSB Drive DetSBDrvDet.exe /r
    O4 — HKLM..Run: [nod32kui] «C:Program FilesEsetnod32kui.exe» /WAITSERVICE
    O4 — HKLM..Run: [Ad Muncher] C:Program FilesAd MuncherAdMunch.exe /bt
    O4 — HKLM..Run: [DAEMON Tools] «C:Program FilesDAEMON Toolsdaemon.exe» -lang 1049
    O4 — HKLM..Run: [MAgent] C:Program FilesMail.RuAgentMAgent.exe -LM
    O4 — HKLM..Run: [CTSysVol] C:Program FilesCreativeSBAudigy2Surround MixerCTSysVol.exe /r
    O4 — HKLM..Run: [CTDVDDET] C:Program FilesCreativeSBAudigy2DVDAudioCTDVDDet.EXE
    O4 — HKLM..Run: [CTHelper] CTHELPER.EXE
    O4 — HKLM..Run: [UpdReg] C:WINDOWSUpdReg.EXE
    O4 — HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSSystem32CTFMON.EXE (User ‘SYSTEM’)
    O4 — HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSSystem32CTFMON.EXE (User ‘Default user’)
    O8 — Extra context menu item: Block frame with Ad Muncher — http://www.admuncher.com/request_will_be_intercepted_by/Ad_Muncher/browserextensions.pl?exbrowser=ie&exversion=0.4&pass=E3B46J7T&id=menu_ie_frame
    O8 — Extra context menu item: Block image with Ad Muncher — http://www.admuncher.com/request_will_be_intercepted_by/Ad_Muncher/browserextensions.pl?exbrowser=ie&exversion=0.4&pass=E3B46J7T&id=menu_ie_image
    O8 — Extra context menu item: Block link with Ad Muncher — http://www.admuncher.com/request_will_be_intercepted_by/Ad_Muncher/browserextensions.pl?exbrowser=ie&exversion=0.4&pass=E3B46J7T&id=menu_ie_link
    O8 — Extra context menu item: Don’t filter page with Ad Muncher — http://www.admuncher.com/request_will_be_intercepted_by/Ad_Muncher/browserextensions.pl?exbrowser=ie&exversion=0.4&pass=E3B46J7T&id=menu_ie_exclude
    O8 — Extra context menu item: Report page to the Ad Muncher developers — http://www.admuncher.com/request_will_be_intercepted_by/Ad_Muncher/browserextensions.pl?exbrowser=ie&exversion=0.4&pass=E3B46J7T&id=menu_ie_report
    O9 — Extra button: Mail.Ru Агент — {7558B7E5-7B26-4201-BEDB-00D5FF534523} — C:Program FilesMail.RuAgentmagent.exe
    O9 — Extra ‘Tools’ menuitem: Mail.Ru Агент — {7558B7E5-7B26-4201-BEDB-00D5FF534523} — C:Program FilesMail.RuAgentmagent.exe
    O9 — Extra button: Related — {c95fe080-8f5d-11d2-a20b-00aa003c157a} — C:WINDOWSwebrelated.htm
    O9 — Extra ‘Tools’ menuitem: Show &Related Links — {c95fe080-8f5d-11d2-a20b-00aa003c157a} — C:WINDOWSwebrelated.htm
    O16 — DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) — http://go.microsoft.com/fwlink/?linkid=39204
    O16 — DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) — http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1233155106221
    O16 — DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) — http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1233155070770
    O17 — HKLMSystemCCSServicesTcpip..{2E05A69A-E964-4EBB-B258-579F55E54807}: NameServer = 80.70.224.4 80.70.224.2
    O17 — HKLMSystemCCSServicesTcpip..{70BE2B90-E27D-484D-B7FA-A04E7A005C7D}: NameServer = 80.70.224.2,80.70.224.4
    O17 — HKLMSystemCS2ServicesTcpip..{2E05A69A-E964-4EBB-B258-579F55E54807}: NameServer = 80.70.224.4 80.70.224.2
    O20 — Winlogon Notify: reset5 — C:WINDOWSSYSTEM32reset5.dll
    O23 — Service: Ati HotKey Poller — ATI Technologies Inc. — C:WINDOWSSystem32Ati2evxx.exe
    O23 — Service: ATI Smart — Unknown owner — C:WINDOWSsystem32ati2sgag.exe
    O23 — Service: Creative Service for CDROM Access — Creative Technology Ltd — C:WINDOWSSystem32CTsvcCDA.exe
    O23 — Service: Журнал событий (Eventlog) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
    O23 — Service: Служба COM записи компакт-дисков IMAPI (ImapiService) — Корпорация Майкрософт — C:WINDOWSsystem32imapi.exe
    O23 — Service: NetMeeting Remote Desktop Sharing (mnmsrvc) — Корпорация Майкрософт — C:WINDOWSSystem32mnmsrvc.exe
    O23 — Service: Служба сетевого DDE (NetDDE) — Корпорация Майкрософт — C:WINDOWSsystem32netdde.exe
    O23 — Service: Диспетчер сетевого DDE (NetDDEdsdm) — Корпорация Майкрософт — C:WINDOWSsystem32netdde.exe
    O23 — Service: NOD32 Kernel Service (NOD32krn) — Eset — C:Program FilesEsetnod32krn.exe
    O23 — Service: Plug and Play (PlugPlay) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
    O23 — Service: Диспетчер сеанса справки для удаленного рабочего стола (RDSessMgr) — Корпорация Майкрософт — C:WINDOWSsystem32sessmgr.exe
    O23 — Service: Reset 5 — Unknown owner — C:WINDOWSsystem32srvany.exe
    O23 — Service: Модуль поддержки смарт-карт (SCardDrv) — Корпорация Майкрософт — C:WINDOWSSystem32SCardSvr.exe
    O23 — Service: Смарт-карты (SCardSvr) — Корпорация Майкрософт — C:WINDOWSSystem32SCardSvr.exe
    O23 — Service: Service Controler — Корпорация Майкрософт — (no file)
    O23 — Service: Service Controler Installer — Корпорация Майкрософт — (no file)
    O23 — Service: Журналы и оповещения производительности (SysmonLog) — Корпорация Майкрософт — C:WINDOWSsystem32smlogsvc.exe
    O23 — Service: Теневое копирование тома (VSS) — Корпорация Майкрософт — C:WINDOWSSystem32vssvc.exe
    O23 — Service: Адаптер производительности WMI (WmiApSrv) — Корпорация Майкрософт — C:WINDOWSSystem32wbemwmiapsrv.exe

    —
    End of file — 7031 bytes

    ======Registry dump======

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
    {8E718888-423F-11D2-876E-00A0C9082467} — &Радио — C:WINDOWSSystem32msdxm.ocx [2002-09-24 843804]

    [HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
    «SBDrvDet»=C:Program FilesCreativeSB Drive DetSBDrvDet.exe [2002-12-03 45056]
    «nod32kui»=C:Program FilesEsetnod32kui.exe [2009-01-05 949376]
    «Ad Muncher»=C:Program FilesAd MuncherAdMunch.exe [2007-01-18 751616]
    «DAEMON Tools»=C:Program FilesDAEMON Toolsdaemon.exe [2005-12-10 133016]
    «MAgent»=C:Program FilesMail.RuAgentMAgent.exe [2009-01-23 5603000]
    «CTSysVol»=C:Program FilesCreativeSBAudigy2Surround MixerCTSysVol.exe [2003-09-17 57344]
    «CTDVDDET»=C:Program FilesCreativeSBAudigy2DVDAudioCTDVDDet.EXE [2003-06-18 45056]
    «CTHelper»=C:WINDOWSsystem32CTHELPER.EXE [2004-03-19 24576]
    «UpdReg»=C:WINDOWSUpdReg.EXE [2000-05-11 90112]

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyAtiExtEvent]
    C:WINDOWSsystem32Ati2evxx.dll [2008-09-24 143360]

    [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyreset5]
    C:WINDOWSsystem32reset5.dll [2002-09-09 17408]

    [HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkUploadMgr]

    [HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
    «dontdisplaylastusername»=0
    «legalnoticecaption»=
    «legalnoticetext»=
    «shutdownwithoutlogon»=1
    «undockwithoutlogon»=1

    [HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
    «NoDriveTypeAutoRun»=323
    «NoDriveAutoRun»=67108863
    «NoDrives»=0

    [HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
    «NoDriveAutoRun»=
    «NoDriveTypeAutoRun»=
    «NoDrives»=

    [HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]

    [HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]

    ======List of files/folders created in the last 1 months======

    2009-01-28 21:11:08 —-D—- C:rsit
    2009-01-28 21:11:08 —-D—- C:Program Filestrend micro
    2009-01-28 21:08:25 —-D—- C:ComboFix
    2009-01-28 21:05:34 —-A—- C:WINDOWSSystem32CF10490.exe
    2009-01-28 20:12:47 —-D—- C:WINDOWStemp
    2009-01-28 20:12:45 —-A—- C:ComboFix.txt
    2009-01-28 19:22:25 —-D—- C:WINDOWSERDNT
    2009-01-28 19:21:00 —-HDC—- C:WINDOWS$NtUninstallKB899587$
    2009-01-28 19:16:14 —-HDC—- C:WINDOWS$NtUninstallKB924191$
    2009-01-28 19:15:38 —-HDC—- C:WINDOWS$NtUninstallKB922819$
    2009-01-28 19:14:49 —-HDC—- C:WINDOWS$NtUninstallKB885835$
    2009-01-28 19:14:17 —-HDC—- C:WINDOWS$NtUninstallKB885836$
    2009-01-28 19:13:47 —-HDC—- C:WINDOWS$NtUninstallKB923414$
    2009-01-28 19:13:21 —-HDC—- C:WINDOWS$NtUninstallKB921883$
    2009-01-28 19:12:54 —-HDC—- C:WINDOWS$NtUninstallKB911927$
    2009-01-28 19:12:28 —-HDC—- C:WINDOWS$NtUninstallKB922616$
    2009-01-28 19:11:58 —-HDC—- C:WINDOWS$NtUninstallKB901017$
    2009-01-28 19:11:30 —-D—- C:Documents and SettingsAll UsersApplication DataWindows Genuine Advantage
    2009-01-28 19:11:19 —-HDC—- C:WINDOWS$NtUninstallKB899591$
    2009-01-28 19:10:47 —-HDC—- C:WINDOWS$NtUninstallKB920685$
    2009-01-28 19:09:52 —-HDC—- C:WINDOWS$NtUninstallKB896424$
    2009-01-28 19:09:10 —-HDC—- C:WINDOWS$NtUninstallKB893756$
    2009-01-28 19:05:20 —-HDC—- C:WINDOWS$NtUninstallKB911280$
    2009-01-28 19:03:49 —-HDC—- C:WINDOWS$NtUninstallKB911562$
    2009-01-28 19:03:15 —-HDC—- C:WINDOWS$NtUninstallKB896423$
    2009-01-28 19:02:39 —-HDC—- C:WINDOWS$NtUninstallKB873339$
    2009-01-28 19:01:40 —-HDC—- C:WINDOWS$NtUninstallKB924496$
    2009-01-28 19:01:14 —-HDC—- C:WINDOWS$NtUninstallKB925486-IE6SP1-20060918.120000$
    2009-01-28 19:00:37 —-HDC—- C:WINDOWS$NtUninstallKB921398$
    2009-01-28 18:13:43 —-D—- C:WINDOWSSystem32bits
    2009-01-28 18:12:06 —-HDC—- C:WINDOWS$NtUninstallKB842773$
    2009-01-28 18:11:33 —-HDC—- C:WINDOWS$MSI31Uninstall_KB893803v2$
    2009-01-28 18:10:23 —-D—- C:WINDOWSSystem32PreInstall
    2009-01-28 18:10:20 —-N—- C:WINDOWSSystem32spmsg.dll
    2009-01-28 18:10:17 —-A—- C:WINDOWSSystem32spupdsvc.exe
    2009-01-28 18:10:16 —-HDC—- C:WINDOWS$NtUninstallKB898461$
    2009-01-28 18:10:15 —-HD—- C:WINDOWS$hf_mig$
    2009-01-28 18:09:31 —-A—- C:WINDOWSSystem32winhttp.dll
    2009-01-28 18:09:30 —-N—- C:WINDOWSSystem32bitsprx3.dll
    2009-01-28 18:09:30 —-N—- C:WINDOWSSystem32bitsprx2.dll
    2009-01-28 18:09:30 —-A—- C:WINDOWSSystem32qmgrprxy.dll
    2009-01-28 18:06:38 —-A—- C:WINDOWSSystem32mucltui.dll.mui
    2009-01-28 18:06:38 —-A—- C:WINDOWSSystem32mucltui.dll
    2009-01-28 18:05:41 —-D—- C:WINDOWSSystem32SoftwareDistribution
    2009-01-28 18:05:41 —-A—- C:WINDOWSSystem32wups2.dll
    2009-01-28 18:05:41 —-A—- C:WINDOWSSystem32wucltui.dll.mui
    2009-01-28 18:05:39 —-A—- C:WINDOWSSystem32wuaueng.dll.mui
    2009-01-28 18:05:37 —-A—- C:WINDOWSSystem32wuapi.dll.mui
    2009-01-28 18:05:00 —-D—- C:WINDOWSSoftwareDistribution
    2009-01-28 18:04:55 —-A—- C:WINDOWSSystem32wups.dll
    2009-01-28 18:04:55 —-A—- C:WINDOWSSystem32wucltui.dll
    2009-01-28 18:04:55 —-A—- C:WINDOWSSystem32wuaueng1.dll
    2009-01-28 18:04:55 —-A—- C:WINDOWSSystem32wuapi.dll
    2009-01-28 18:04:54 —-A—- C:WINDOWSSystem32wuauclt1.exe
    2009-01-27 19:10:43 —-D—- C:Program FilesMyXOFT
    2009-01-27 18:15:51 —-A—- C:z8g5q3d3n2s9.exe
    2009-01-27 00:54:29 —-A—- C:WINDOWSSystem32SCtri.exe
    2009-01-27 00:11:17 —-A—- C:WINDOWSScUnin.exe
    2009-01-27 00:10:02 —-D—- C:Program FilesStarcraft
    2009-01-26 23:56:42 —-D—- C:Program FilesGarena
    2009-01-26 23:56:24 —-D—- C:Documents and SettingsppApplication DataInstallShield
    2009-01-24 05:36:07 —-A—- C:WINDOWSSystem32unrar.dll
    2009-01-24 05:35:34 —-A—- C:WINDOWSSystem32yv12vfw.dll
    2009-01-24 05:35:33 —-A—- C:WINDOWSSystem32xvidvfw.dll
    2009-01-24 05:35:33 —-A—- C:WINDOWSSystem32xvidcore.dll
    2009-01-24 05:35:32 —-A—- C:WINDOWSSystem32qt-dx331.dll
    2009-01-24 05:35:32 —-A—- C:WINDOWSSystem32dpl100.dll
    2009-01-24 05:35:18 —-A—- C:WINDOWSSystem32divx.dll
    2009-01-24 05:35:14 —-A—- C:WINDOWSSystem32ff_vfw.dll.manifest
    2009-01-24 05:35:14 —-A—- C:WINDOWSSystem32ff_vfw.dll
    2009-01-24 05:35:10 —-D—- C:Program FilesK-Lite Codec Pack
    2009-01-23 20:09:06 —-A—- C:WINDOWSSystem32SbCtri.exe
    2009-01-23 18:00:25 —-N—- C:WINDOWS{00000002-00000000-00000006-00001102-00000008-10011102}.BAK
    2009-01-23 17:55:28 —-N—- C:WINDOWSUpdreg.EXE
    2009-01-23 17:55:03 —-N—- C:WINDOWSSystem32SFCVRT32.DLL
    2009-01-23 17:55:03 —-N—- C:WINDOWSCTRES.DLL
    2009-01-23 17:55:03 —-N—- C:WINDOWSCTCCW.DLL
    2009-01-23 17:55:03 —-N—- C:WINDOWSAC3API.INI
    2009-01-23 17:55:02 —-N—- C:WINDOWSSystem32INETWH32.DLL
    2009-01-23 17:55:02 —-N—- C:WINDOWSSystem32CTWFLT32.DLL
    2009-01-23 17:55:01 —-N—- C:WINDOWSSystem32CTL3D.DLL
    2009-01-23 17:54:59 —-D—- C:WINDOWSSystem32Defaults
    2009-01-23 17:53:19 —-A—- C:WINDOWSSystem32e10kxwdm.ini
    2009-01-23 17:53:19 —-A—- C:WINDOWSSystem32ctzapxx.ini
    2009-01-23 17:53:19 —-A—- C:WINDOWSINRES.DLL
    2009-01-23 17:53:05 —-A—- C:WINDOWSSystem32ctdvinst.dll
    2009-01-23 17:53:04 —-A—- C:WINDOWSSystem32ctcoinst.dll
    2009-01-23 17:53:02 —-A—- C:WINDOWSCTDCRES.DLL
    2009-01-23 17:53:01 —-A—- C:WINDOWSSystem32sfman32.dll
    2009-01-23 17:53:01 —-A—- C:WINDOWSSystem32REGPLIB.EXE
    2009-01-23 17:53:01 —-A—- C:WINDOWSSystem32PIAPROXY.DLL
    2009-01-23 17:53:01 —-A—- C:WINDOWSREADREG.EXE
    2009-01-23 17:53:01 —-A—- C:WINDOWSPSCONV.EXE
    2009-01-23 17:53:00 —-A—- C:WINDOWSSystem32KILLAPPS.EXE
    2009-01-23 17:53:00 —-A—- C:WINDOWSSystem32KILL.INI
    2009-01-23 17:53:00 —-A—- C:WINDOWSSystem32ENSDEF.INI
    2009-01-23 17:53:00 —-A—- C:WINDOWSSystem32ENSDEF.EXE
    2009-01-23 17:53:00 —-A—- C:WINDOWSSystem32EAXAC3.DLL
    2009-01-23 17:53:00 —-A—- C:WINDOWSMIDIDEF.EXE
    2009-01-23 17:53:00 —-A—- C:WINDOWSDEVREG.DLL
    2009-01-23 17:52:59 —-A—- C:WINDOWSSystem32CTTHXCAL.DLL
    2009-01-23 17:52:59 —-A—- C:WINDOWSSystem32CTSPKHLP.DLL
    2009-01-23 17:52:59 —-A—- C:WINDOWSSystem32CTSCAL.DLL
    2009-01-23 17:52:58 —-A—- C:WINDOWSSystem32ctsblfx.dll
    2009-01-23 17:52:58 —-A—- C:WINDOWSSystem32CTOSUSER.DLL
    2009-01-23 17:52:58 —-A—- C:WINDOWSSystem32CTMMEP.DLL
    2009-01-23 17:52:58 —-A—- C:WINDOWSSystem32CTHELPER.EXE
    2009-01-23 17:52:58 —-A—- C:WINDOWSSystem32CTEMUPIA.DLL
    2009-01-23 17:52:53 —-A—- C:WINDOWSSystem32CTDPROXY.DLL
    2009-01-23 17:52:53 —-A—- C:WINDOWSSystem32CTDCIFCE.DLL
    2009-01-23 17:52:53 —-A—- C:WINDOWSSystem32CTDC0001.DLL
    2009-01-23 17:52:52 —-A—- C:WINDOWSSystem32CTDC0000.DLL
    2009-01-23 17:52:52 —-A—- C:WINDOWSSystem32ctaudfx.dll
    2009-01-23 17:52:52 —-A—- C:WINDOWSSystem32CTASIO.DLL
    2009-01-23 17:52:52 —-A—- C:WINDOWSSystem32CTAGENT.DLL
    2009-01-23 17:52:51 —-A—- C:WINDOWSSystem32commonfx.dll
    2009-01-23 17:52:50 —-A—- C:WINDOWSSystem32a3d.dll
    2009-01-23 17:50:48 —-A—- C:WINDOWSSystem32ctdvda32.dll
    2009-01-23 17:46:58 —-A—- C:WINDOWSSystem32CTDetres.dll
    2009-01-23 17:46:53 —-N—- C:WINDOWSSystem32CTSVCCTL.EXE
    2009-01-23 17:46:52 —-N—- C:WINDOWSSystem32CTSVCCDA.EXE
    2009-01-23 17:46:43 —-N—- C:WINDOWSSystem32CTMEDENG.DLL
    2009-01-23 17:46:42 —-A—- C:WINDOWSSystem32CTMERes.DLL
    2009-01-23 01:16:19 —-D—- C:Documents and SettingsppApplication DataMra
    2009-01-23 01:15:31 —-D—- C:Program FilesMail.Ru
    2009-01-22 19:43:19 —-A—- C:f2q2q4j8g1t8.exe
    2009-01-20 02:08:43 —-D—- C:Program FilesOCCT
    2009-01-16 20:42:31 —-D—- C:Program FilesBuka
    2009-01-16 20:24:26 —-D—- C:Games
    2009-01-14 16:51:31 —-D—- C:Program FilesAd Muncher
    2009-01-14 03:41:23 —-D—- C:Program FilesFlylinkDC++
    2009-01-07 17:20:24 —-A—- C:WINDOWSSystem32LegitCheckControl.DLL
    2009-01-06 03:24:51 —-D—- C:Documents and SettingsppApplication DataMedia Player Classic
    2009-01-06 03:23:45 —-A—- C:WINDOWSSystem32msvcr71.dll
    2009-01-05 21:45:16 —-D—- C:Program FilesSoulseek
    2009-01-05 19:53:07 —-AD—- C:Documents and SettingsAll UsersApplication DataTEMP
    2009-01-05 19:52:29 —-A—- C:WINDOWSSystem32ztvunrar36.dll
    2009-01-05 19:52:29 —-A—- C:WINDOWSSystem32ztvunace26.dll
    2009-01-05 19:52:29 —-A—- C:WINDOWSSystem32ztvcabinet.dll
    2009-01-05 19:52:29 —-A—- C:WINDOWSSystem32UNRAR3.dll
    2009-01-05 19:52:29 —-A—- C:WINDOWSSystem32unacev2.dll
    2009-01-05 19:51:55 —-D—- C:Program FilesTrojan Remover
    2009-01-05 19:51:55 —-D—- C:Documents and SettingsppApplication DataSimply Super Software
    2009-01-05 19:51:55 —-D—- C:Documents and SettingsAll UsersApplication DataSimply Super Software
    2009-01-05 19:09:30 —-D—- C:Program FilesVITSOFT
    2009-01-05 17:35:51 —-D—- C:WINDOWSMinidump
    2009-01-05 15:32:26 —-D—- C:Program FilesDAMN NFO Viewer
    2009-01-05 15:27:49 —-D—- C:Program FilesTotal Commander XP
    2009-01-05 15:17:30 —-A—- C:WINDOWSSystem32imon.dll
    2009-01-05 15:15:56 —-D—- C:Program FilesESET
    2009-01-04 22:15:56 —-D—- C:Documents and SettingsppApplication DataWinRAR
    2009-01-04 22:15:41 —-D—- C:Program FilesDAEMON Tools
    2009-01-04 22:10:44 —-D—- C:Downloads
    2009-01-04 22:09:40 —-D—- C:Program FilesWinRAR
    2009-01-03 23:11:27 —-D—- C:Documents and SettingsppApplication DataMacromedia
    2009-01-03 23:11:26 —-D—- C:Documents and SettingsppApplication DataAdobe
    2009-01-03 01:22:29 —-N—- C:WINDOWSSystem32vxblock.dll
    2009-01-03 01:22:29 —-N—- C:WINDOWSSystem32pxwave.dll
    2009-01-03 01:22:29 —-N—- C:WINDOWSSystem32pxmas.dll
    2009-01-03 01:22:29 —-N—- C:WINDOWSSystem32pxhpinst.exe
    2009-01-03 01:22:29 —-N—- C:WINDOWSSystem32pxdrv.dll
    2009-01-03 01:22:29 —-N—- C:WINDOWSSystem32px.dll
    2009-01-03 01:22:09 —-D—- C:Program FilesWinamp
    2009-01-03 01:22:09 —-A—- C:WINDOWSwinamp.ini
    2009-01-02 17:34:32 —-SH—- C:boot.ini
    2009-01-02 17:28:56 —-RSHDC—- C:WINDOWSSystem32dllcache
    2009-01-02 17:28:56 —-RSD—- C:WINDOWSFonts
    2009-01-02 17:28:56 —-RD—- C:WINDOWSWeb
    2009-01-02 17:28:56 —-HD—- C:WINDOWSinf
    2009-01-02 17:28:56 —-D—- C:WINDOWSWinSxS
    2009-01-02 17:28:56 —-D—- C:WINDOWStwain_32
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32wins
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32wbem
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32usmt
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32spool
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32ShellExt
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32Setup
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32ras
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32oobe
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32npp
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32mui
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32inetsrv
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32IME
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32icsxml
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32ias
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32export
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32drivers
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32dhcp
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem32config
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem323com_dmi
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem323076
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem322052
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem321054
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem321049
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem321042
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem321041
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem321037
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem321033
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem321031
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem321028
    2009-01-02 17:28:56 —-D—- C:WINDOWSSystem321025
    2009-01-02 17:28:56 —-D—- C:WINDOWSsystem32
    2009-01-02 17:28:56 —-D—- C:WINDOWSsystem
    2009-01-02 17:28:56 —-D—- C:WINDOWSsecurity
    2009-01-02 17:28:56 —-D—- C:WINDOWSResources
    2009-01-02 17:28:56 —-D—- C:WINDOWSrepair
    2009-01-02 17:28:56 —-D—- C:WINDOWSmui
    2009-01-02 17:28:56 —-D—- C:WINDOWSmsapps
    2009-01-02 17:28:56 —-D—- C:WINDOWSmsagent
    2009-01-02 17:28:56 —-D—- C:WINDOWSMedia
    2009-01-02 17:28:56 —-D—- C:WINDOWSjava
    2009-01-02 17:28:56 —-D—- C:WINDOWSime
    2009-01-02 17:28:56 —-D—- C:WINDOWSHelp
    2009-01-02 17:28:56 —-D—- C:WINDOWSDriver Cache
    2009-01-02 17:28:56 —-D—- C:WINDOWSDebug
    2009-01-02 17:28:56 —-D—- C:WINDOWSCursors
    2009-01-02 17:28:56 —-D—- C:WINDOWSConnection Wizard
    2009-01-02 17:28:56 —-D—- C:WINDOWSConfig
    2009-01-02 17:28:56 —-D—- C:WINDOWSAppPatch
    2009-01-02 17:28:56 —-D—- C:WINDOWSaddins
    2009-01-02 17:28:56 —-D—- C:WINDOWS
    2009-01-02 15:49:42 —-A—- C:WINDOWSntbtlog.txt
    2009-01-02 15:48:25 —-N—- C:WINDOWSCtregrun.exe
    2009-01-02 15:46:50 —-N—- C:WINDOWSSystem32MFCUIA32.DLL
    2009-01-02 15:46:50 —-N—- C:WINDOWSSystem32MFCANS32.DLL
    2009-01-02 15:45:54 —-D—- C:Documents and SettingsppApplication DataCreative
    2009-01-02 15:45:37 —-D—- C:WINDOWSSystem32Data
    2009-01-02 15:45:21 —-A—- C:WINDOWSSystem32SFMS32.DLL
    2009-01-02 15:45:20 —-A—- C:WINDOWSSystem32OPENAL32.DLL
    2009-01-02 15:45:11 —-A—- C:WINDOWSSystem32AC3API.DLL
    2009-01-02 15:43:30 —-A—- C:WINDOWSSBWIN.INI
    2009-01-02 15:43:26 —-A—- C:WINDOWSSystem32wmvdmoe2.dll
    2009-01-02 15:43:26 —-A—- C:WINDOWSSystem32wmspdmoe.dll
    2009-01-02 15:43:26 —-A—- C:WINDOWSSystem32wmspdmod.dll
    2009-01-02 15:43:26 —-A—- C:WINDOWSSystem32wmsdmoe2.dll
    2009-01-02 15:43:26 —-A—- C:WINDOWSSystem32qasf.dll
    2009-01-02 15:43:25 —-A—- C:WINDOWSSystem32wmadmoe.dll
    2009-01-02 15:43:25 —-A—- C:WINDOWSSystem32logagent.exe
    2009-01-02 15:43:25 —-A—- C:WINDOWSSystem32laprxy.dll
    2009-01-02 15:43:24 —-A—- C:WINDOWSSystem32mpg4dmod.dll
    2009-01-02 15:43:24 —-A—- C:WINDOWSSystem32mp4sdmod.dll
    2009-01-02 15:43:24 —-A—- C:WINDOWSSystem32mp43dmod.dll
    2009-01-02 15:43:23 —-A—- C:WINDOWSSystem32wmvdmod.dll
    2009-01-02 15:43:23 —-A—- C:WINDOWSSystem32wmsdmod.dll
    2009-01-02 15:43:22 —-A—- C:WINDOWSSystem32wmadmod.dll
    2009-01-02 15:43:21 —-A—- C:WINDOWSSystem32wmnetmgr.dll
    2009-01-02 15:43:20 —-A—- C:WINDOWSSystem32wmvcore.dll
    2009-01-02 15:43:20 —-A—- C:WINDOWSSystem32wmidx.dll
    2009-01-02 15:43:19 —-A—- C:WINDOWSSystem32wmasf.dll
    2009-01-02 15:43:17 —-A—- C:WINDOWSSystem32msnetobj.dll
    2009-01-02 15:43:17 —-A—- C:WINDOWSSystem32blackbox.dll
    2009-01-02 15:43:16 —-A—- C:WINDOWSSystem32drmv2clt.dll
    2009-01-02 15:43:15 —-A—- C:WINDOWSSystem32drmstor.dll
    2009-01-02 15:43:15 —-A—- C:WINDOWSSystem32drmclien.dll
    2009-01-02 15:41:29 —-D—- C:Program FilesCreative
    2009-01-02 15:38:51 —-A—- C:WINDOWSwininit.ini
    2009-01-02 15:25:56 —-D—- C:Program FilesCounter-strike
    2009-01-02 15:20:41 —-A—- C:WINDOWSSystem32XAudio2_2.dll
    2009-01-02 15:20:41 —-A—- C:WINDOWSSystem32XAPOFX1_1.dll
    2009-01-02 15:20:40 —-A—- C:WINDOWSSystem32xactengine3_2.dll
    2009-01-02 15:20:39 —-A—- C:WINDOWSSystem32d3dx10_39.dll
    2009-01-02 15:20:39 —-A—- C:WINDOWSSystem32D3DCompiler_39.dll
    2009-01-02 15:20:37 —-A—- C:WINDOWSSystem32D3DX9_39.dll
    2009-01-02 15:20:36 —-A—- C:WINDOWSSystem32XAudio2_1.dll
    2009-01-02 15:20:36 —-A—- C:WINDOWSSystem32XAPOFX1_0.dll
    2009-01-02 15:20:34 —-A—- C:WINDOWSSystem32xactengine3_1.dll
    2009-01-02 15:20:33 —-A—- C:WINDOWSSystem32X3DAudio1_4.dll
    2009-01-02 15:20:32 —-A—- C:WINDOWSSystem32d3dx10_38.dll
    2009-01-02 15:20:32 —-A—- C:WINDOWSSystem32D3DCompiler_38.dll
    2009-01-02 15:20:31 —-A—- C:WINDOWSSystem32D3DX9_38.dll
    2009-01-02 15:20:29 —-A—- C:WINDOWSSystem32XAudio2_0.dll
    2009-01-02 15:20:28 —-A—- C:WINDOWSSystem32xactengine3_0.dll
    2009-01-02 15:20:27 —-A—- C:WINDOWSSystem32X3DAudio1_3.dll
    2009-01-02 15:20:26 —-A—- C:WINDOWSSystem32d3dx10_37.dll
    2009-01-02 15:20:26 —-A—- C:WINDOWSSystem32D3DCompiler_37.dll
    2009-01-02 15:20:25 —-A—- C:WINDOWSSystem32D3DX9_37.dll
    2009-01-02 15:20:24 —-A—- C:WINDOWSSystem32xactengine2_10.dll
    2009-01-02 15:20:21 —-A—- C:WINDOWSSystem32d3dx10_36.dll
    2009-01-02 15:20:21 —-A—- C:WINDOWSSystem32D3DCompiler_36.dll
    2009-01-02 15:20:20 —-A—- C:WINDOWSSystem32d3dx9_36.dll
    2009-01-02 15:20:19 —-A—- C:WINDOWSSystem32xactengine2_9.dll
    2009-01-02 15:20:17 —-A—- C:WINDOWSSystem32d3dx10_35.dll
    2009-01-02 15:20:17 —-A—- C:WINDOWSSystem32D3DCompiler_35.dll
    2009-01-02 15:20:16 —-A—- C:WINDOWSSystem32d3dx9_35.dll
    2009-01-02 15:20:15 —-A—- C:WINDOWSSystem32xactengine2_8.dll
    2009-01-02 15:20:15 —-A—- C:WINDOWSSystem32X3DAudio1_2.dll
    2009-01-02 15:20:14 —-A—- C:WINDOWSSystem32d3dx10_34.dll
    2009-01-02 15:20:14 —-A—- C:WINDOWSSystem32D3DCompiler_34.dll
    2009-01-02 15:20:12 —-A—- C:WINDOWSSystem32d3dx9_34.dll
    2009-01-02 15:19:56 —-A—- C:WINDOWSSystem32xinput1_3.dll
    2009-01-02 15:19:54 —-A—- C:WINDOWSSystem32xactengine2_7.dll
    2009-01-02 15:19:53 —-A—- C:WINDOWSSystem32d3dx10_33.dll
    2009-01-02 15:19:53 —-A—- C:WINDOWSSystem32D3DCompiler_33.dll
    2009-01-02 15:19:52 —-A—- C:WINDOWSSystem32d3dx9_33.dll
    2009-01-02 15:19:51 —-A—- C:WINDOWSSystem32xactengine2_6.dll
    2009-01-02 15:19:51 —-A—- C:WINDOWSSystem32xactengine2_5.dll
    2009-01-02 15:19:50 —-A—- C:WINDOWSSystem32xactengine2_4.dll
    2009-01-02 15:19:50 —-A—- C:WINDOWSSystem32x3daudio1_1.dll
    2009-01-02 15:19:50 —-A—- C:WINDOWSSystem32d3dx9_32.dll
    2009-01-02 15:19:50 —-A—- C:WINDOWSSystem32d3dx9_31.dll
    2009-01-02 15:19:49 —-A—- C:WINDOWSSystem32xinput1_2.dll
    2009-01-02 15:19:49 —-A—- C:WINDOWSSystem32xactengine2_3.dll
    2009-01-02 15:19:49 —-A—- C:WINDOWSSystem32xactengine2_2.dll
    2009-01-02 15:19:48 —-A—- C:WINDOWSSystem32xinput1_1.dll
    2009-01-02 15:19:48 —-A—- C:WINDOWSSystem32xactengine2_1.dll
    2009-01-02 15:19:48 —-A—- C:WINDOWSSystem32d3dx9_30.dll
    2009-01-02 15:19:47 —-A—- C:WINDOWSSystem32xactengine2_0.dll
    2009-01-02 15:19:47 —-A—- C:WINDOWSSystem32x3daudio1_0.dll
    2009-01-02 15:19:47 —-A—- C:WINDOWSSystem32d3dx9_29.dll
    2009-01-02 15:19:46 —-A—- C:WINDOWSSystem32d3dx9_28.dll
    2009-01-02 15:19:45 —-A—- C:WINDOWSSystem32xinput9_1_0.dll
    2009-01-02 15:19:45 —-A—- C:WINDOWSSystem32d3dx9_27.dll
    2009-01-02 15:19:44 —-A—- C:WINDOWSSystem32d3dx9_26.dll
    2009-01-02 15:19:43 —-A—- C:WINDOWSSystem32d3dx9_25.dll
    2009-01-02 15:19:43 —-A—- C:WINDOWSSystem32d3dx9_24.dll
    2009-01-02 15:18:56 —-D—- C:WINDOWSRegisteredPackages
    2009-01-02 15:17:42 —-A—- C:WINDOWSSystem32wstdecod.dll
    2009-01-02 15:17:41 —-A—- C:WINDOWSSystem32psisdecd.dll
    2009-01-02 15:17:41 —-A—- C:WINDOWSSystem32msyuv.dll
    2009-01-02 15:17:41 —-A—- C:WINDOWSSystem32msvidctl.dll
    2009-01-02 15:17:40 —-A—- C:WINDOWSSystem32qedwipes.dll
    2009-01-02 15:17:40 —-A—- C:WINDOWSSystem32qedit.dll
    2009-01-02 15:17:40 —-A—- C:WINDOWSSystem32mswebdvd.dll
    2009-01-02 15:17:40 —-A—- C:WINDOWSSystem32msdmo.dll
    2009-01-02 15:17:40 —-A—- C:WINDOWSSystem32ksuser.dll
    2009-01-02 15:17:39 —-A—- C:WINDOWSSystem32quartz.dll
    2009-01-02 15:17:39 —-A—- C:WINDOWSSystem32qdvd.dll
    2009-01-02 15:17:39 —-A—- C:WINDOWSSystem32qdv.dll
    2009-01-02 15:17:39 —-A—- C:WINDOWSSystem32qcap.dll
    2009-01-02 15:17:39 —-A—- C:WINDOWSSystem32mciqtz32.dll
    2009-01-02 15:17:39 —-A—- C:WINDOWSSystem32encapi.dll
    2009-01-02 15:17:39 —-A—- C:WINDOWSSystem32devenum.dll
    2009-01-02 15:17:39 —-A—- C:WINDOWSSystem32amstream.dll
    2009-01-02 15:17:38 —-A—- C:WINDOWSSystem32dswave.dll
    2009-01-02 15:17:38 —-A—- C:WINDOWSSystem32dmusic.dll
    2009-01-02 15:17:38 —-A—- C:WINDOWSSystem32dmsynth.dll
    2009-01-02 15:17:38 —-A—- C:WINDOWSSystem32dmstyle.dll
    2009-01-02 15:17:38 —-A—- C:WINDOWSSystem32dmscript.dll
    2009-01-02 15:17:38 —-A—- C:WINDOWSSystem32dmloader.dll
    2009-01-02 15:17:38 —-A—- C:WINDOWSSystem32dmime.dll
    2009-01-02 15:17:38 —-A—- C:WINDOWSSystem32dmcompos.dll
    2009-01-02 15:17:38 —-A—- C:WINDOWSSystem32dmband.dll
    2009-01-02 15:17:38 —-A—- C:WINDOWSSystem32d3d9.dll
    2009-01-02 15:17:38 —-A—- C:WINDOWSSystem32d3d8.dll
    2009-01-02 15:17:37 —-A—- C:WINDOWSSystem32dxdiagn.dll
    2009-01-02 15:17:37 —-A—- C:WINDOWSSystem32dxdiag.exe
    2009-01-02 15:17:35 —-A—- C:WINDOWSSystem32dxdllreg.exe
    2009-01-02 15:17:35 —-A—- C:WINDOWSSystem32dsdmoprp.dll
    2009-01-02 15:17:35 —-A—- C:WINDOWSSystem32dsdmo.dll
    2009-01-02 15:17:35 —-A—- C:WINDOWSSystem32dpvvox.dll
    2009-01-02 15:17:35 —-A—- C:WINDOWSSystem32dpvsetup.exe
    2009-01-02 15:17:35 —-A—- C:WINDOWSSystem32dpvoice.dll
    2009-01-02 15:17:35 —-A—- C:WINDOWSSystem32dpvacm.dll
    2009-01-02 15:17:34 —-A—- C:WINDOWSSystem32dx8vb.dll
    2009-01-02 15:17:34 —-A—- C:WINDOWSSystem32dpnsvr.exe
    2009-01-02 15:17:34 —-A—- C:WINDOWSSystem32dpnlobby.dll
    2009-01-02 15:17:34 —-A—- C:WINDOWSSystem32dpnhupnp.dll
    2009-01-02 15:17:34 —-A—- C:WINDOWSSystem32dpnhpast.dll
    2009-01-02 15:17:34 —-A—- C:WINDOWSSystem32dpnet.dll
    2009-01-02 15:17:34 —-A—- C:WINDOWSSystem32dpnaddr.dll
    2009-01-02 15:17:34 —-A—- C:WINDOWSSystem32d3d8thk.dll
    2009-01-02 15:17:33 —-A—- C:WINDOWSSystem32dx7vb.dll
    2009-01-02 15:17:33 —-A—- C:WINDOWSSystem32dsound3d.dll
    2009-01-02 15:17:33 —-A—- C:WINDOWSSystem32dsound.dll
    2009-01-02 15:17:33 —-A—- C:WINDOWSSystem32dpwsockx.dll
    2009-01-02 15:17:33 —-A—- C:WINDOWSSystem32dpmodemx.dll
    2009-01-02 15:17:33 —-A—- C:WINDOWSSystem32dplayx.dll
    2009-01-02 15:17:33 —-A—- C:WINDOWSSystem32dplaysvr.exe
    2009-01-02 15:17:33 —-A—- C:WINDOWSSystem32ddrawex.dll
    2009-01-02 15:17:33 —-A—- C:WINDOWSSystem32ddraw.dll
    2009-01-02 15:17:33 —-A—- C:WINDOWSSystem32d3dim700.dll
    2009-01-02 15:17:05 —-D—- C:WINDOWSLogs
    2009-01-02 15:16:17 —-D—- C:dirrr
    2009-01-02 15:06:43 —-A—- C:WINDOWScfgedit.INI
    2009-01-02 15:01:00 —-SD—- C:WINDOWSSystem32Microsoft
    2009-01-02 15:00:41 —-N—- C:WINDOWSSystem32ati2sgag.exe
    2009-01-02 15:00:10 —-HD—- C:Program FilesInstallShield Installation Information
    2009-01-02 15:00:10 —-D—- C:Program FilesATI Technologies
    2009-01-02 14:59:29 —-D—- C:Program FilesCommon FilesInstallShield
    2009-01-02 14:59:03 —-D—- C:ATI
    2009-01-02 14:57:36 —-SHD—- C:WINDOWSInstaller
    2009-01-02 14:57:32 —-D—- C:Documents and SettingsppApplication DataIdentities
    2009-01-02 14:57:24 —-HD—- C:Program FilesUninstall Information
    2009-01-02 14:57:18 —-SD—- C:Documents and SettingsppApplication DataMicrosoft
    2009-01-02 14:57:18 —-ASH—- C:Documents and SettingsppApplication Datadesktop.ini
    2009-01-02 14:56:24 —-SHD—- C:System Volume Information
    2009-01-02 14:56:23 —-D—- C:WINDOWSPrefetch
    2009-01-02 14:56:23 —-A—- C:WINDOWSSchedLgU.Txt
    2009-01-02 14:51:45 —-D—- C:WINDOWSSystem32xircom
    2009-01-02 14:51:45 —-D—- C:Program Filesxerox
    2009-01-02 14:51:45 —-D—- C:Program Filesmicrosoft frontpage
    2009-01-02 14:50:52 —-A—- C:WINDOWScontrol.ini
    2009-01-02 14:50:52 —-A—- C:AUTOEXEC.BAT
    2009-01-02 14:50:42 —-A—- C:WINDOWSOEWABLog.txt
    2009-01-02 14:50:31 —-A—- C:WINDOWSSystem32mapi32.dll
    2009-01-02 14:49:06 —-RD—- C:WINDOWSOffline Web Pages
    2009-01-02 14:49:05 —-SD—- C:WINDOWSDownloaded Program Files
    2009-01-02 14:49:05 —-RAH—- C:WINDOWSSystem32logonui.exe.manifest
    2009-01-02 14:48:55 —-RAH—- C:WINDOWSSystem32cdplayer.exe.manifest
    2009-01-02 14:48:23 —-D—- C:WINDOWSSystem32DirectX
    2009-01-02 14:47:35 —-A—- C:WINDOWSSystem32safrslv.dll
    2009-01-02 14:47:35 —-A—- C:WINDOWSSystem32safrdm.dll
    2009-01-02 14:47:35 —-A—- C:WINDOWSSystem32safrcdlg.dll
    2009-01-02 14:47:35 —-A—- C:WINDOWSSystem32racpldlg.dll
    2009-01-02 14:47:35 —-A—- C:WINDOWSSystem32atrace.dll
    2009-01-02 14:47:30 —-A—- C:WINDOWSSystem32desktop.ini
    2009-01-02 14:47:30 —-A—- C:WINDOWSdesktop.ini
    2009-01-02 14:47:18 —-A—- C:WINDOWSSystem32nmevtmsg.dll
    2009-01-02 14:47:18 —-A—- C:WINDOWSSystem32mnmsrvc.exe
    2009-01-02 14:47:18 —-A—- C:WINDOWSSystem32isrdbg32.dll
    2009-01-02 14:47:16 —-A—- C:WINDOWSSystem32acctres.dll
    2009-01-02 14:47:15 —-D—- C:Program FilesCommon FilesServices
    2009-01-02 14:47:14 —-A—- C:WINDOWSSystem32inetres.dll
    2009-01-02 14:47:07 —-SD—- C:WINDOWSTasks
    2009-01-02 14:47:07 —-A—- C:WINDOWSSystem32icwphbk.dll
    2009-01-02 14:47:07 —-A—- C:WINDOWSSystem32icwdial.dll
    2009-01-02 14:47:06 —-A—- C:WINDOWSSystem32isign32.dll
    2009-01-02 14:47:06 —-A—- C:WINDOWSSystem32inetcfg.dll
    2009-01-02 14:47:06 —-A—- C:WINDOWSSystem32icfgnt5.dll
    2009-01-02 14:47:02 —-D—- C:Program FilesCommon FilesMSSoap
    2009-01-02 14:46:53 —-D—- C:WINDOWSsrchasst
    2009-01-02 14:46:52 —-D—- C:WINDOWSSystem32Macromed
    2009-01-02 14:46:50 —-A—- C:WINDOWSSystem32qmgr.dll
    2009-01-02 14:46:49 —-D—- C:Program FilesMovie Maker
    2009-01-02 14:46:41 —-D—- C:WINDOWSPCHealth
    2009-01-02 14:46:40 —-D—- C:WINDOWSSystem32Restore
    2009-01-02 14:46:40 —-A—- C:WINDOWSSystem32srsvc.dll
    2009-01-02 14:46:40 —-A—- C:WINDOWSSystem32srrstr.dll
    2009-01-02 14:46:40 —-A—- C:WINDOWSSystem32srclient.dll
    2009-01-02 14:46:39 —-A—- C:WINDOWSSystem32mnmdd.dll
    2009-01-02 14:46:39 —-A—- C:WINDOWSSystem32ils.dll
    2009-01-02 14:46:38 —-A—- C:WINDOWSSystem32nmmkcert.dll
    2009-01-02 14:46:38 —-A—- C:WINDOWSSystem32msconf.dll
    2009-01-02 14:46:34 —-D—- C:Program FilesNetMeeting
    2009-01-02 14:46:34 —-A—- C:WINDOWSSystem32msoert2.dll
    2009-01-02 14:46:33 —-A—- C:WINDOWSSystem32msoeacct.dll
    2009-01-02 14:46:32 —-A—- C:WINDOWSSystem32inetcomm.dll
    2009-01-02 14:46:31 —-D—- C:Program FilesOutlook Express
    2009-01-02 14:46:31 —-A—- C:WINDOWSSystem32schedsvc.dll
    2009-01-02 14:46:30 —-A—- C:WINDOWSSystem32mstinit.exe
    2009-01-02 14:46:30 —-A—- C:WINDOWSSystem32mstask.dll
    2009-01-02 14:46:20 —-D—- C:Program FilesCommon FilesSystem
    2009-01-02 14:46:19 —-D—- C:Program FilesInternet Explorer
    2009-01-02 14:45:18 —-D—- C:Program FilesComPlus Applications
    2009-01-02 14:45:15 —-A—- C:WINDOWSvbaddin.ini
    2009-01-02 14:45:15 —-A—- C:WINDOWSvb.ini
    2009-01-02 14:45:10 —-D—- C:WINDOWSRegistration
    2009-01-02 14:45:01 —-HD—- C:Program FilesWindowsUpdate
    2009-01-02 14:45:01 —-D—- C:Program FilesOnline Services
    2009-01-02 14:45:00 —-D—- C:Program FilesWindows Media Player
    2009-01-02 14:44:50 —-D—- C:Program FilesMessenger
    2009-01-02 14:44:41 —-D—- C:Program FilesMSN Gaming Zone
    2009-01-02 14:44:41 —-A—- C:WINDOWSSystem32write.exe
    2009-01-02 14:44:27 —-A—- C:WINDOWSSystem32accwiz.exe
    2009-01-02 14:44:26 —-A—- C:WINDOWSSystem32sndvol32.exe
    2009-01-02 14:44:26 —-A—- C:WINDOWSSystem32sndrec32.exe
    2009-01-02 14:44:25 —-A—- C:WINDOWSSystem32hticons.dll
    2009-01-02 14:44:25 —-A—- C:WINDOWSSystem32avwav.dll
    2009-01-02 14:44:25 —-A—- C:WINDOWSSystem32avtapi.dll
    2009-01-02 14:44:25 —-A—- C:WINDOWSSystem32avmeter.dll
    2009-01-02 14:44:23 —-A—- C:WINDOWSSystem32winchat.exe
    2009-01-02 14:44:12 —-A—- C:WINDOWSSystem32getuname.dll
    2009-01-02 14:44:12 —-A—- C:WINDOWSSystem32charmap.exe
    2009-01-02 14:44:11 —-A—- C:WINDOWSSystem32sol.exe
    2009-01-02 14:44:11 —-A—- C:WINDOWSSystem32calc.exe
    2009-01-02 14:44:10 —-A—- C:WINDOWSSystem32winmine.exe
    2009-01-02 14:44:10 —-A—- C:WINDOWSSystem32mshearts.exe
    2009-01-02 14:44:10 —-A—- C:WINDOWSSystem32freecell.exe
    2009-01-02 14:44:09 —-A—- C:WINDOWSSystem32usrlogon.cmd
    2009-01-02 14:44:09 —-A—- C:WINDOWSSystem32tskill.exe
    2009-01-02 14:44:09 —-A—- C:WINDOWSSystem32reset.exe
    2009-01-02 14:44:09 —-A—- C:WINDOWSSystem32rdshost.exe
    2009-01-02 14:44:08 —-A—- C:WINDOWSSystem32tsshutdn.exe
    2009-01-02 14:44:08 —-A—- C:WINDOWSSystem32tslabels.ini
    2009-01-02 14:44:08 —-A—- C:WINDOWSSystem32tsdiscon.exe
    2009-01-02 14:44:08 —-A—- C:WINDOWSSystem32tscon.exe
    2009-01-02 14:44:08 —-A—- C:WINDOWSSystem32shadow.exe
    2009-01-02 14:44:08 —-A—- C:WINDOWSSystem32rwinsta.exe
    2009-01-02 14:44:08 —-A—- C:WINDOWSSystem32regini.exe
    2009-01-02 14:44:08 —-A—- C:WINDOWSSystem32rdpcfgex.dll
    2009-01-02 14:44:07 —-A—- C:WINDOWSSystem32qwinsta.exe
    2009-01-02 14:44:07 —-A—- C:WINDOWSSystem32qprocess.exe
    2009-01-02 14:44:07 —-A—- C:WINDOWSSystem32qappsrv.exe
    2009-01-02 14:44:07 —-A—- C:WINDOWSSystem32msg.exe
    2009-01-02 14:44:07 —-A—- C:WINDOWSSystem32logoff.exe
    2009-01-02 14:44:06 —-A—- C:WINDOWSSystem32mtxoci.dll
    2009-01-02 14:44:06 —-A—- C:WINDOWSSystem32msdtcuiu.dll
    2009-01-02 14:44:06 —-A—- C:WINDOWSSystem32msdtctm.dll
    2009-01-02 14:44:06 —-A—- C:WINDOWSSystem32cdmodem.dll
    2009-01-02 14:44:05 —-A—- C:WINDOWSSystem32xolehlp.dll
    2009-01-02 14:44:05 —-A—- C:WINDOWSSystem32msdtcprf.ini
    2009-01-02 14:44:05 —-A—- C:WINDOWSSystem32msdtclog.dll
    2009-01-02 14:44:05 —-A—- C:WINDOWSSystem32msdtc.exe
    2009-01-02 14:44:03 —-A—- C:WINDOWSSystem32dcomcnfg.exe
    2009-01-02 14:44:02 —-A—- C:WINDOWSSystem32stclient.dll
    2009-01-02 14:44:02 —-A—- C:WINDOWSSystem32mtxlegih.dll
    2009-01-02 14:44:02 —-A—- C:WINDOWSSystem32mtxex.dll
    2009-01-02 14:44:02 —-A—- C:WINDOWSSystem32mtxdm.dll
    2009-01-02 14:44:02 —-A—- C:WINDOWSSystem32comrepl.dll
    2009-01-02 14:44:02 —-A—- C:WINDOWSSystem32comaddin.dll
    2009-01-02 14:44:02 —-A—- C:WINDOWSSystem32colbact.dll
    2009-01-02 14:44:01 —-A—- C:WINDOWSSystem32comuid.dll
    2009-01-02 14:44:01 —-A—- C:WINDOWSSystem32clbcatex.dll
    2009-01-02 14:44:01 —-A—- C:WINDOWSSystem32catsrvps.dll
    2009-01-02 14:44:01 —-A—- C:WINDOWSSystem32catsrv.dll
    2009-01-02 14:44:00 —-A—- C:WINDOWSSystem32comsnap.dll
    2009-01-02 14:44:00 —-A—- C:WINDOWSSystem32clbcatq.dll
    2009-01-02 14:43:47 —-A—- C:WINDOWSSystem32wmimgmt.msc
    2009-01-02 14:43:47 —-A—- C:WINDOWSSystem32servdeps.dll
    2009-01-02 14:43:47 —-A—- C:WINDOWSSystem32mmfutil.dll
    2009-01-02 14:43:46 —-A—- C:WINDOWSSystem32cmprops.dll
    2009-01-02 14:43:37 —-D—- C:Program FilesWindows NT
    2009-01-02 14:43:37 —-D—- C:Program FilesMSN
    2009-01-02 14:43:37 —-A—- C:WINDOWSSystem32mplay32.exe
    2009-01-02 14:43:36 —-A—- C:WINDOWSSystem32mspaint.exe
    2009-01-02 14:43:36 —-A—- C:WINDOWSSystem32clipbrd.exe
    2009-01-02 14:43:35 —-A—- C:WINDOWSSystem32wuauserv.dll
    2009-01-02 14:43:35 —-A—- C:WINDOWSSystem32wuaueng.dll
    2009-01-02 14:43:35 —-A—- C:WINDOWSSystem32wuauclt.exe
    2009-01-02 14:43:35 —-A—- C:WINDOWSSystem32spider.exe
    2009-01-02 14:43:34 —-A—- C:WINDOWSSystem32tscfgwmi.dll
    2009-01-02 14:43:33 —-A—- C:WINDOWSSystem32sessmgr.exe
    2009-01-02 14:43:33 —-A—- C:WINDOWSSystem32remotepg.dll
    2009-01-02 14:43:33 —-A—- C:WINDOWSSystem32rdsaddin.exe
    2009-01-02 14:43:33 —-A—- C:WINDOWSSystem32mstscax.dll
    2009-01-02 14:43:33 —-A—- C:WINDOWSSystem32mstsc.exe
    2009-01-02 14:43:32 —-A—- C:WINDOWSSystem32tscupgrd.exe
    2009-01-02 14:43:32 —-A—- C:WINDOWSSystem32termsrv.dll
    2009-01-02 14:43:32 —-A—- C:WINDOWSSystem32rdpwsx.dll
    2009-01-02 14:43:32 —-A—- C:WINDOWSSystem32rdpsnd.dll
    2009-01-02 14:43:32 —-A—- C:WINDOWSSystem32rdpclip.exe
    2009-01-02 14:43:32 —-A—- C:WINDOWSSystem32rdchost.dll
    2009-01-02 14:43:32 —-A—- C:WINDOWSSystem32icaapi.dll
    2009-01-02 14:43:29 —-D—- C:WINDOWSSystem32MsDtc
    2009-01-02 14:43:29 —-D—- C:WINDOWSSystem32Com
    2009-01-02 14:43:29 —-A—- C:WINDOWSSystem32msdtcprx.dll
    2009-01-02 14:43:29 —-A—- C:WINDOWSSystem32cfgbkend.dll
    2009-01-02 14:43:28 —-A—- C:WINDOWSSystem32comsvcs.dll
    2009-01-02 14:43:28 —-A—- C:WINDOWSSystem32catsrvut.dll
    2009-01-02 14:43:24 —-A—- C:WINDOWSSystem32licwmi.dll
    2009-01-02 14:42:12 —-A—- C:WINDOWSSystem32h323log.txt
    2009-01-02 14:39:04 —-A—- C:WINDOWSSystem32usbui.dll
    2009-01-02 14:37:26 —-A—- C:WINDOWSimsins.BAK
    2009-01-02 14:37:21 —-A—- C:WINDOWSSystem32PerfStringBackup.INI
    2009-01-02 14:37:20 —-D—- C:Program FilesCommon FilesODBC
    2009-01-02 14:37:20 —-A—- C:WINDOWSODBCINST.INI
    2009-01-02 14:37:14 —-D—- C:Program FilesCommon FilesSpeechEngines
    2009-01-02 14:37:13 —-RD—- C:Program Files
    2009-01-02 14:37:13 —-D—- C:Program FilesCommon FilesMicrosoft Shared
    2009-01-02 14:37:13 —-D—- C:Program FilesCommon Files
    2009-01-02 14:37:10 —-RA—- C:WINDOWSSystem32kbdtuq.dll
    2009-01-02 14:37:10 —-RA—- C:WINDOWSSystem32kbdtuf.dll
    2009-01-02 14:37:10 —-RA—- C:WINDOWSSystem32kbdazel.dll
    2009-01-02 14:37:08 —-RA—- C:WINDOWSSystem32kbdhept.dll
    2009-01-02 14:37:08 —-RA—- C:WINDOWSSystem32kbdhela3.dll
    2009-01-02 14:37:08 —-RA—- C:WINDOWSSystem32kbdhela2.dll
    2009-01-02 14:37:08 —-RA—- C:WINDOWSSystem32kbdhe319.dll
    2009-01-02 14:37:08 —-RA—- C:WINDOWSSystem32kbdhe220.dll
    2009-01-02 14:37:08 —-RA—- C:WINDOWSSystem32kbdhe.dll
    2009-01-02 14:37:08 —-RA—- C:WINDOWSSystem32kbdgkl.dll
    2009-01-02 14:37:06 —-RA—- C:WINDOWSSystem32kbdlv1.dll
    2009-01-02 14:37:06 —-RA—- C:WINDOWSSystem32kbdlv.dll
    2009-01-02 14:37:06 —-RA—- C:WINDOWSSystem32kbdlt1.dll
    2009-01-02 14:37:06 —-RA—- C:WINDOWSSystem32kbdlt.dll
    2009-01-02 14:37:06 —-RA—- C:WINDOWSSystem32kbdest.dll
    2009-01-02 14:37:05 —-RA—- C:WINDOWSSystem32kbdsl1.dll
    2009-01-02 14:37:05 —-RA—- C:WINDOWSSystem32kbdsl.dll
    2009-01-02 14:37:05 —-RA—- C:WINDOWSSystem32kbdro.dll
    2009-01-02 14:37:05 —-RA—- C:WINDOWSSystem32kbdpl.dll
    2009-01-02 14:37:04 —-RA—- C:WINDOWSSystem32kbdycl.dll
    2009-01-02 14:37:04 —-RA—- C:WINDOWSSystem32kbdpl1.dll
    2009-01-02 14:37:04 —-RA—- C:WINDOWSSystem32kbdhu1.dll
    2009-01-02 14:37:04 —-RA—- C:WINDOWSSystem32kbdhu.dll
    2009-01-02 14:37:04 —-RA—- C:WINDOWSSystem32kbdcz2.dll
    2009-01-02 14:37:04 —-RA—- C:WINDOWSSystem32kbdcz1.dll
    2009-01-02 14:37:04 —-RA—- C:WINDOWSSystem32kbdcz.dll
    2009-01-02 14:37:04 —-RA—- C:WINDOWSSystem32kbdcr.dll
    2009-01-02 14:37:04 —-RA—- C:WINDOWSSystem32KBDAL.DLL
    2009-01-02 14:37:00 —-A—- C:WINDOWSSystem32kbdycc.dll
    2009-01-02 14:37:00 —-A—- C:WINDOWSSystem32kbduzb.dll
    2009-01-02 14:37:00 —-A—- C:WINDOWSSystem32kbdur.dll
    2009-01-02 14:37:00 —-A—- C:WINDOWSSystem32kbdtat.dll
    2009-01-02 14:37:00 —-A—- C:WINDOWSSystem32kbdmon.dll
    2009-01-02 14:37:00 —-A—- C:WINDOWSSystem32kbdkyr.dll
    2009-01-02 14:37:00 —-A—- C:WINDOWSSystem32kbdkaz.dll
    2009-01-02 14:37:00 —-A—- C:WINDOWSSystem32kbdbu.dll
    2009-01-02 14:37:00 —-A—- C:WINDOWSSystem32kbdblr.dll
    2009-01-02 14:37:00 —-A—- C:WINDOWSSystem32kbdaze.dll
    2009-01-02 14:36:58 —-A—- C:WINDOWSSystem32spxcoins.dll
    2009-01-02 14:36:58 —-A—- C:WINDOWSSystem32irclass.dll
    2009-01-02 14:36:58 —-A—- C:WINDOWSSystem32EqnClass.Dll
    2009-01-02 14:36:58 —-A—- C:WINDOWSSystem32dgsetup.dll
    2009-01-02 14:36:58 —-A—- C:WINDOWSSystem32dgrpsetu.dll
    2009-01-02 14:36:55 —-N—- C:WINDOWSSystem32CONFIG.TMP
    2009-01-02 14:36:55 —-A—- C:WINDOWSTASKMAN.EXE
    2009-01-02 14:36:55 —-A—- C:WINDOWSSystem32batt.dll
    2009-01-02 14:36:55 —-A—- C:WINDOWSNOTEPAD.EXE
    2009-01-02 14:36:54 —-A—- C:WINDOWSSystem32storprop.dll
    2009-01-02 14:36:42 —-ASH—- C:Documents and SettingsAll UsersApplication Datadesktop.ini
    2009-01-02 14:36:37 —-RA—- C:WINDOWSSETA.tmp
    2009-01-02 14:36:32 —-RA—- C:WINDOWSSET3.tmp
    2009-01-02 14:36:25 —-D—- C:WINDOWSSystem32CatRoot2
    2009-01-02 14:36:25 —-D—- C:WINDOWSSystem32CatRoot
    2009-01-02 14:36:19 —-SD—- C:Documents and SettingsAll UsersApplication DataMicrosoft
    2009-01-02 14:36:02 —-A—- C:WINDOWSsetuplog.txt
    2009-01-02 14:35:55 —-D—- C:Documents and Settings

    ======List of files/folders modified in the last 1 months======

    2009-01-28 20:11:00 —-A—- C:WINDOWSsystem.ini
    2009-01-05 17:23:31 —-A—- C:WINDOWSSystem32sfc_os.dll
    2009-01-02 14:50:52 —-A—- C:WINDOWSwin.ini

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R1 nod32drv;nod32drv; C:WINDOWSsystem32driversnod32drv.sys [2009-01-05 15424]
    R1 P3;Драйвер Intel PentiumIII процессора; C:WINDOWSSystem32DRIVERSp3.sys [2002-09-24 40320]
    R2 AMON;AMON; C:WINDOWSsystem32driversamon.sys [2009-01-05 512096]
    R2 PfModNT;PfModNT; ??C:WINDOWSSystem32driversPfModNT.sys []
    R3 ati2mtag;ati2mtag; C:WINDOWSSystem32DRIVERSati2mtag.sys [2008-09-24 3331072]
    R3 ctac32k;Creative AC3 Software Decoder; C:WINDOWSSystem32driversctac32k.sys [2004-04-06 646128]
    R3 ctaud2k;Creative Audio Driver (WDM); C:WINDOWSsystem32driversctaud2k.sys [2004-04-29 374000]
    R3 ctprxy2k;Creative Proxy Driver; C:WINDOWSSystem32driversctprxy2k.sys [2004-03-16 6096]
    R3 ctsfm2k;Creative SoundFont Management Device Driver; C:WINDOWSSystem32driversctsfm2k.sys [2004-03-16 130384]
    R3 dtscsi;dtscsi; C:WINDOWSSystem32Driversdtscsi.sys [2009-01-16 223128]
    R3 E100B;Intel PRO адаптер, драйвер; C:WINDOWSSystem32DRIVERSe100b325.sys [2001-10-19 117760]
    R3 emupia;E-mu Plug-in Architecture Driver; C:WINDOWSSystem32driversemupia2k.sys [2004-03-16 147088]
    R3 ha10kx2k;Creative Hardware Abstract Layer Driver; C:WINDOWSSystem32driversha10kx2k.sys [2004-06-16 952144]
    R3 hap17v2k;Creative P17V HAL Driver; C:WINDOWSSystem32drivershap17v2k.sys [2004-05-03 147696]
    R3 hidusb;Драйвер класса HID Microsoft; C:WINDOWSSystem32DRIVERShidusb.sys [2001-10-20 9600]
    R3 mouhid;Драйвер мыши HID; C:WINDOWSSystem32DRIVERSmouhid.sys [2001-10-20 12160]
    R3 ms_mpu401;Драйвер UART Microsoft MPU-401 MIDI; C:WINDOWSsystem32driversmsmpu401.sys [2001-08-17 2944]
    R3 ossrv;Creative OS Services Driver; C:WINDOWSsystem32driversctoss2k.sys [2004-03-16 178736]
    R3 usbehci;Драйвер минипорта Microsoft USB 2.0 расширенного хост-контроллера; C:WINDOWSSystem32DRIVERSusbehci.sys [2002-08-29 19328]
    R3 usbhub;USB2 концентратор; C:WINDOWSSystem32DRIVERSusbhub.sys [2002-08-29 51968]
    R3 usbohci;Драйвер минипорта Microsoft USB открытого хост-контроллера; C:WINDOWSSystem32DRIVERSusbohci.sys [2002-08-29 15744]
    R3 usbuhci;Драйвер минипорта Microsoft USB универсального хост-контроллера; C:WINDOWSSystem32DRIVERSusbuhci.sys [2002-08-29 19328]
    R3 WS2IFSL;Среда Windows Socket 2.0 поддержки поставщиков не-IFS служб; C:WINDOWSSystem32driversws2ifsl.sys [2001-10-20 12032]
    S3 catchme;catchme; ??C:ComboFixcatchme.sys []
    S3 ctdvda2k;Creative DVD-Audio Device Driver; C:WINDOWSSystem32driversctdvda2k.sys [2004-03-15 337056]
    S3 GarenaPEngine;GarenaPEngine; ??C:DOCUME~1ppLOCALS~1TempBWN10.tmp []
    S3 hap16v2k;Creative P16V HAL Driver; C:WINDOWSSystem32drivershap16v2k.sys [2004-05-03 150160]
    S3 USBSTOR;Драйвер запоминающих устройств для USB; C:WINDOWSSystem32DRIVERSUSBSTOR.SYS [2002-08-29 21760]

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 Ati HotKey Poller;Ati HotKey Poller; C:WINDOWSSystem32Ati2evxx.exe [2008-09-24 581632]
    R2 Creative Service for CDROM Access;Creative Service for CDROM Access; C:WINDOWSSystem32CTsvcCDA.exe [1999-12-13 44032]
    R2 NOD32krn;NOD32 Kernel Service; C:Program FilesEsetnod32krn.exe [2009-01-05 552064]
    R2 WMDM PMSP Service;WMDM PMSP Service; C:WINDOWSSystem32MsPMSPSv.exe [2000-06-26 53520]
    S2 ATI Smart;ATI Smart; C:WINDOWSsystem32ati2sgag.exe [2008-09-23 593920]
    S2 Reset 5;Reset 5; C:WINDOWSsystem32srvany.exe [2002-05-03 7168]


    EOF


    28 января, 2009 в 6:22 пп #21564
    Grek
    Participant
    • Темы:2
    • Сообщений:4
    • ☆

    info.txt logfile of random’s system information tool 1.05 2009-01-28 21:11:30

    ======Uninstall list======

    —>»C:Program FilesCreativeSBAudigy2ProgramCtzapxx.EXE» /W /U /S
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{1494984B-9AC5-4F16-B61A-C21D5EFCC1C4}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{1494984B-9AC5-4F16-B61A-C21D5EFCC1C4}setup.exe» -l0x9 /remove
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{169F8893-C1C5-4847-972C-EA1E008112AC}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{169F8893-C1C5-4847-972C-EA1E008112AC}setup.exe» -l0x9 /remove
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{236FADD8-58FD-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{236FADD8-58FD-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9 /remove
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{266F8C74-5DC6-4405-B79B-4EB82B2FC684}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{266F8C74-5DC6-4405-B79B-4EB82B2FC684}setup.exe» -l0x9 /remove
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{435E969D-867E-4364-8E74-3DC8A69C5BDB}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{435E969D-867E-4364-8E74-3DC8A69C5BDB}setup.exe» -l0x9 /remove
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{5210ED6D-52A9-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{5210ED6D-52A9-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9 /remove
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{5CDDF96A-BC34-4D72-9ABA-E1FFF0C39977}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{7201B853-5833-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{7201B853-5833-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9 /remove
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{7A900EAB-DA37-4554-AF19-9C337476D05D}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{7A900EAB-DA37-4554-AF19-9C337476D05D}setup.exe» -l0x9 /remove
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{87499F38-FD69-4A2B-B41A-BAB8DE9B94FE}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{9154ED7C-926E-49CC-B677-0CF3C5267457}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{9154ED7C-926E-49CC-B677-0CF3C5267457}setup.exe» -l0x9 /remove
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{A1185190-514F-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{A1185190-514F-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9 /remove
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{AC157741-3285-4D6A-B934-9174587A3493}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{AC157741-3285-4D6A-B934-9174587A3493}setup.exe» -l0x9 /remove
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{C6866B7D-ACFD-4C49-B77B-3B2F8CF54B96}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{C6866B7D-ACFD-4C49-B77B-3B2F8CF54B96}setup.exe» -l0x9 /remove
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{DEBD7BF3-5856-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{DEBD7BF3-5856-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9 /remove
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{FB2292C6-1F0A-11D7-AB2D-0090271A23A2}setup.exe» -l0x9
    —>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{FB2292C6-1F0A-11D7-AB2D-0090271A23A2}setup.exe» -l0x9 /remove
    —>rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:WINDOWSINFPCHealth.inf
    Ad Muncher—>C:Program FilesAd MuncherAM-Install.exe /die
    Adobe Flash Player 10 ActiveX—>C:WINDOWSSystem32MacromedFlashuninstall_activeX.exe
    ATI — Software Uninstall Utility—>C:Program FilesATI TechnologiesUninstallAllAtiCimUn.exe
    ATI Display Driver—>rundll32 C:WINDOWSSystem32atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
    Back2Life—>V:Total Commander XPAddOnBack2LifeBack2Life.exe /uninstall
    Counter Strike 1.6 V34—>»C:Program FilesCounter-strikeuninstall.exe»
    Creative MediaSource—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{56F3E1FF-54FE-4384-A153-6CCABA097814}SETUP.EXE» -l0x9 /remove
    Creative System Information—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{87499F38-FD69-4A2B-B41A-BAB8DE9B94FE}setup.exe» -l0x9 /remove
    DSS DJ 5.5—>»C:Program FilesMyXOFTDSS DJunins000.exe»
    FlylinkDC++ r(365)—>»C:Program FilesFlylinkDC++unins000.exe»
    Garena—>C:Program FilesInstallShield Installation Information{89C89156-A70F-4C6D-9CAE-2EA71F1396FE}setup.exe -runfromtemp -l0x0019 -removeonly
    HijackThis 2.0.2—>»C:Program Filestrend microHijackThis.exe» /uninstall
    K-Lite Codec Pack 3.6.5 Full—>»C:Program FilesK-Lite Codec Packunins000.exe»
    Mail.Ru Агент 5.3 (сборка 2560, для всех пользователей)—>C:Program FilesMail.RuAgentmagentsetup.exe -uninstalllm
    Microsoft Connection Manager—>C:WINDOWSSystem32cmstp.exe /x C:WINDOWSSystem32instcm.inf
    OCCT Perestroika 2.0.1—>»C:Program FilesOCCTunins000.exe»
    SoulSeek Client 156c—>»C:Program FilesSoulseekuninstall.exe»
    Sound Blaster Audigy 2—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{CECB9B3D-E681-4458-85F8-8D182941AF1D}SETUP.EXE» -l0x9
    Starcraft—>C:WINDOWSSCunin.exe C:WINDOWSSCunin.dat
    Total Commander 6.51 eXtended Pack—>»C:Program FilesTotal Commander XPunins000.exe»
    Trojan Remover 6.7.5—>»C:Program FilesTrojan Removerunins000.exe»
    Vit Registry Fix 9.1 (remove only)—>C:Program FilesVITSOFTVit Registry FixUninstall.exe
    Winamp (remove only)—>»C:Program FilesWinampUninstWA.exe»
    Windows Installer 3.1 (KB893803)—>»C:WINDOWS$MSI31Uninstall_KB893803v2$spuninstspuninst.exe»
    Антивирусная система NOD32—>C:Program FilesEsetSetupsetup.exe /UNINSTALL
    Архиватор WinRAR—>C:Program FilesWinRARuninstall.exe
    Герои Меча и Магии III: Полное собрание—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesBuka3DOГерои Меча и Магии III Полное собраниеSetupsetup.exe» -l0x19
    Обновление безопасности для Windows XP (KB893756)—>»C:WINDOWS$NtUninstallKB893756$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB896423)—>»C:WINDOWS$NtUninstallKB896423$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB896424)—>»C:WINDOWS$NtUninstallKB896424$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB899587)—>»C:WINDOWS$NtUninstallKB899587$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB899591)—>»C:WINDOWS$NtUninstallKB899591$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB901017)—>»C:WINDOWS$NtUninstallKB901017$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB911562)—>»C:WINDOWS$NtUninstallKB911562$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB911927)—>»C:WINDOWS$NtUninstallKB911927$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB920685)—>»C:WINDOWS$NtUninstallKB920685$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB921398)—>»C:WINDOWS$NtUninstallKB921398$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB921883)—>»C:WINDOWS$NtUninstallKB921883$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB922616)—>»C:WINDOWS$NtUninstallKB922616$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB922819)—>»C:WINDOWS$NtUninstallKB922819$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB923414)—>»C:WINDOWS$NtUninstallKB923414$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB924191)—>»C:WINDOWS$NtUninstallKB924191$spuninstspuninst.exe»
    Обновление безопасности для Windows XP (KB924496)—>»C:WINDOWS$NtUninstallKB924496$spuninstspuninst.exe»
    Обновление для Windows XP (KB898461)—>»C:WINDOWS$NtUninstallKB898461$spuninstspuninst.exe»
    Обновление для Windows XP (KB911280)—>»C:WINDOWS$NtUninstallKB911280$spuninstspuninst.exe»
    Пакет исправлений для Windows XP — KB842773—>C:WINDOWS$NtUninstallKB842773$spuninstspuninst.exe
    Пакет исправлений для Windows XP — KB873339—>C:WINDOWS$NtUninstallKB873339$spuninstspuninst.exe
    Пакет исправлений для Windows XP — KB885835—>C:WINDOWS$NtUninstallKB885835$spuninstspuninst.exe
    Пакет исправлений для Windows XP — KB885836—>C:WINDOWS$NtUninstallKB885836$spuninstspuninst.exe
    Пакет исправлений для Windows XP — KB925486—>»C:WINDOWS$NtUninstallKB925486-IE6SP1-20060918.120000$spuninstspuninst.exe»

    System event log

    Computer Name: KENT-6XWSQ78FWS
    Event Code: 7036
    Message: Служба «Службы терминалов» перешла в состояние Работает.

    Record Number: 2967
    Source Name: Service Control Manager
    Time Written: 20090119193340.000000+180
    Event Type: информация
    User:

    Computer Name: KENT-6XWSQ78FWS
    Event Code: 26
    Message: Всплывающее окно приложения: : SystemRootSystem32ativvaxx.dll failed to load

    Record Number: 2966
    Source Name: Application Popup
    Time Written: 20090119193242.000000+180
    Event Type: информация
    User:

    Computer Name: KENT-6XWSQ78FWS
    Event Code: 6005
    Message: Запущена служба журнала событий.

    Record Number: 2965
    Source Name: EventLog
    Time Written: 20090119193213.000000+180
    Event Type: информация
    User:

    Computer Name: KENT-6XWSQ78FWS
    Event Code: 6009
    Message: Microsoft (R) Windows 2000 (R) 5.01. 2600 Service Pack 1 Uniprocessor Free.

    Record Number: 2964
    Source Name: EventLog
    Time Written: 20090119193213.000000+180
    Event Type: информация
    User:

    Computer Name: KENT-6XWSQ78FWS
    Event Code: 26
    Message: Всплывающее окно приложения: : SystemRootSystem32ativvaxx.dll failed to load

    Record Number: 2963
    Source Name: Application Popup
    Time Written: 20090119193041.000000+180
    Event Type: информация
    User:

    Application event log

    Computer Name: KENT-6XWSQ78FWS
    Event Code: 105
    Message: The service was started.

    Record Number: 138
    Source Name: ATI Smart
    Time Written: 20090105173315.000000+180
    Event Type: информация
    User:

    Computer Name: KENT-6XWSQ78FWS
    Event Code: 1004
    Message: Ошибка приложения lsass.exe, версия 5.1.2600.1106, модуль unknown, версия 0.0.0.0, адрес 0x00000000.

    Record Number: 137
    Source Name: Application Error
    Time Written: 20090105172704.000000+180
    Event Type: ошибка
    User:

    Computer Name: KENT-6XWSQ78FWS
    Event Code: 105
    Message: The service was started.

    Record Number: 136
    Source Name: Creative Service for CDROM Access
    Time Written: 20090105172656.000000+180
    Event Type: информация
    User:

    Computer Name: KENT-6XWSQ78FWS
    Event Code: 105
    Message: The service was started.

    Record Number: 135
    Source Name: ATI Smart
    Time Written: 20090105172656.000000+180
    Event Type: информация
    User:

    Computer Name: KENT-6XWSQ78FWS
    Event Code: 1015
    Message: Критический системный процесс, C:WINDOWSsystem32lsass.exe, завершился ошибкой с кодом состояния c0000005.
    Необходимо перезагрузить этот компьютер.

    Record Number: 134
    Source Name: Winlogon
    Time Written: 20090105172519.000000+180
    Event Type: ошибка
    User:

    ======Environment variables======

    «ComSpec»=%SystemRoot%system32cmd.exe
    «Path»=%SystemRoot%system32;%SystemRoot%;%SystemRoot%System32Wbem
    «windir»=%SystemRoot%
    «OS»=Windows_NT
    «PROCESSOR_ARCHITECTURE»=x86
    «PROCESSOR_LEVEL»=6
    «PROCESSOR_IDENTIFIER»=x86 Family 6 Model 11 Stepping 1, GenuineIntel
    «PROCESSOR_REVISION»=0b01
    «NUMBER_OF_PROCESSORS»=1
    «PATHEXT»=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
    «TEMP»=%SystemRoot%TEMP
    «TMP»=%SystemRoot%TEMP


    EOF


    30 января, 2009 в 8:47 дп #21565
    Admin
    Keymaster
    • Темы:40
    • Сообщений:5676
    • ☆☆☆☆☆

    Здравствуйте, добро пожаловать на Spyware-ru форум.
    Пожалуйста скачайте свежую версию Combofix, сохраните файл на вашем рабочем столе и запустите.
    Получившийся лог вставьте в ваше следующее сообщение.

  • Автор
    Сообщения
Просмотр 3 сообщений - с 1 по 3 (из 3 всего)
  • Для ответа в этой теме необходимо авторизоваться.
Войти

Добро пожаловать

На нашем сайте размещены инструкции и программы, которые помогут вам абсолютно бесплатно и самостоятельно удалить навязчивую рекламу, вирусы и трояны.

Поиск

Последние темы

  • Странность в Malwebytes опубликовано Artem225
    5 years, 6 months назад
  • SUSPICIOUS.FakedMBR.1 что делать, помогите!!! опубликовано White
    5 years, 6 months назад
  • Помогите пожалуйста вирус замучил. опубликовано dimazons1233211
    5 years, 9 months назад
  • Замучила реклама опубликовано Данила Беспятов
    5 years, 9 months назад
  • Замучила реклама опубликовано Марк
    5 years, 7 months назад
  • Вирус S1.video.ru.net опубликовано ludovik
    6 years назад
  • Чертов Safe Finder!!!! опубликовано kosta savo
    5 years, 8 months назад
  • ESET блокирует неизвестный сайт , вход на который не осуществлялся. опубликовано trollhamaren
    6 years, 1 month назад

СПАЙВАРЕ РУ

  • О Спайваре Ру
  • Контакты
  • Реклама на сайте
  • Политика конфиденциальности
  • Правила использования

Нужна помощь?

Задайте свой вопрос прямо сейчас кликнув по следующей ссылке Задать вопрос.

Или обратитесь на наш форум, где команда Spyware-ru поможет вам. Узнайте, как попросить о помощи здесь.

Ссылки

  • Инструкции
  • Скачать программы
  • Помощь в удалении вирусов
  • Как вылечить компьютер
Copyright © 2008 - 2024 Spyware-RU.com (en)