Созданные ответы форума
-
АвторСообщения
-
9 ноября, 2009 в 3:21 пп в ответ на: Выскакивает рекламный баннер сексшопа! Помогите пожалуйста! #26824
Run by Dima at 2009-11-09 16:52:34
Microsoft Windows XP Professional Service Pack 3
System drive C: has 8 GB (42%) free of 20 GB
Total RAM: 766 MB (36% free)Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:55:19, on 09.11.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: NormalRunning processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesCommon FilesSymantec SharedccSvcHst.exe
C:WINDOWSExplorer.EXE
C:Program FilesCommon FilesSymantec SharedAppCoreAppSvc32.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSRTHDCPL.EXE
C:WINDOWSsystem32RUNDLL32.EXE
C:Program FilesCommon FilesSymantec SharedccApp.exe
C:Program FilesTrident SoftwarePragmapragma.exe
C:Program FilesScanSoftOmniPageSE4OpwareSE4.exe
C:Program FilesJavajre6binjusched.exe
C:Program FilesCommon FilesSymantec SharedccSvcHst.exe
C:Program FilesInternet keyboard driverHotkey.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesCommon FilesNeroLibNMBgMonitor.exe
C:Program FilesCanonIJPLMIJPLMSVC.EXE
E:ДокументиДімаDownload Masterdmaster.exe
C:Program FilesJavajre6binjqs.exe
E:ДокументиДімаuTorrent.exe
C:Program FilesSkypePhoneSkype.exe
C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE
C:Program FilesInterVideoCommonBinWinCinemaMgr.exe
C:WINDOWSsystem32nvsvc32.exe
C:WINDOWSsystem32svchost.exe
C:Program FilesSymantecLiveUpdateALUSchedulerSvc.exe
C:Program FilesCanonCALCALMAIN.exe
C:Program FilesCommon FilesNeroLibNMIndexingService.exe
C:WINDOWSsystem32wbemwmiapsrv.exe
C:Program FilesCommon FilesNeroLibNMIndexStoreSvr.exe
C:Program FilesCommon FilesSymantec SharedCCPD-LCsymlcsvc.exe
E:ПрогиFinalUninstallerJFM.exe
E:ДокументиДімаfirefox.exe
C:Documents and SettingsDimaМои документыЗагрузкиRSIT.exe
C:Program Filestrend microDima.exeR0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.yandex.ru/?clid=50062
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 — HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 — HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName =
R3 — URLSearchHook: MyPlayCityRU Toolbar — {dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — C:Program FilesMyPlayCityRUtbMyPl.dll
R3 — URLSearchHook: Rocket Torrents Toolbar — {bf2664d8-ac71-45fe-bcd5-fa446c6cf4f1} — C:Program FilesRocket_TorrentstbRock.dll
O2 — BHO: (no name) — {1E8A6170-7264-4D0F-BEAE-D42A53123C75} — C:Program FilesCommon FilesSymantec SharedcoSharedBrowser1.5NppBho.dll
O3 — Toolbar: Show Norton Toolbar — {90222687-F593-4738-B738-FBEE9C7B26DF} — C:Program FilesCommon FilesSymantec SharedcoSharedBrowser1.5UIBHO.dll
O3 — Toolbar: MyPlayCityRU Toolbar — {dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — C:Program FilesMyPlayCityRUtbMyPl.dll
O3 — Toolbar: (no name) — {D4027C7F-154A-4066-A1AD-4243D8127440} — (no file)
O3 — Toolbar: Rocket Torrents Toolbar — {bf2664d8-ac71-45fe-bcd5-fa446c6cf4f1} — C:Program FilesRocket_TorrentstbRock.dll
O4 — HKLM..Run: [RTHDCPL] RTHDCPL.EXE
O4 — HKLM..Run: [Alcmtr] ALCMTR.EXE
O4 — HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup
O4 — HKLM..Run: [nwiz] nwiz.exe /install
O4 — HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit
O4 — HKLM..Run: [ccApp] «C:Program FilesCommon FilesSymantec SharedccApp.exe»
O4 — HKLM..Run: [osCheck] «C:Program FilesNorton Internet SecurityosCheck.exe»
O4 — HKLM..Run: [NeroFilterCheck] C:Program FilesCommon FilesNeroLibNeroCheck.exe
O4 — HKLM..Run: [NBKeyScan] «C:Program FilesNeroNero8Nero BackItUpNBKeyScan.exe»
O4 — HKLM..Run: [Pragma5] C:Program FilesTrident SoftwarePragmapragma.exe
O4 — HKLM..Run: [SSBkgdUpdate] «C:Program FilesCommon FilesScansoft SharedSSBkgdUpdateSSBkgdupdate.exe» -Embedding -boot
O4 — HKLM..Run: [OpwareSE4] «C:Program FilesScanSoftOmniPageSE4OpwareSE4.exe»
O4 — HKLM..Run: [Symantec PIF AlertEng] «C:Program FilesCommon FilesSymantec SharedPIF{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}PIFSvc.exe» /a /m «C:Program FilesCommon FilesSymantec SharedPIF{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}AlertEng.dll»
O4 — HKLM..Run: [SunJavaUpdateSched] «C:Program FilesJavajre6binjusched.exe»
O4 — HKLM..Run: [Hotkey] C:Program FilesInternet keyboard driverHotkey.exe
O4 — HKLM..Run: [OutpostMonitor] «C:PROGRA~1AgnitumOutpost Firewall Proop_mon.exe» /tray /noservice
O4 — HKLM..Run: [OutpostFeedBack] «C:Program FilesAgnitumOutpost Firewall Profeedback.exe» /dump:os_startup
O4 — HKLM..Run: [FU_JFM] E:ПрогиFinalUninstallerJFM.exe
O4 — HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘LOCAL SERVICE’)
O4 — HKUSS-1-5-19..RunOnce: [] (User ‘LOCAL SERVICE’)
O4 — HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘NETWORK SERVICE’)
O4 — HKUSS-1-5-20..RunOnce: [] (User ‘NETWORK SERVICE’)
O4 — HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘SYSTEM’)
O4 — HKUSS-1-5-18..RunOnce: [] (User ‘SYSTEM’)
O4 — HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘Default user’)
O4 — HKUS.DEFAULT..RunOnce: [] (User ‘Default user’)
O4 — Global Startup: InterVideo WinCinema Manager.lnk = C:Program FilesInterVideoCommonBinWinCinemaMgr.exe
O8 — Extra context menu item: &Экспорт в Microsoft Excel — res://C:PROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000
O9 — Extra button: Быстрая настройка Outpost Firewall Pro — {44627E97-789B-40d4-B5C2-58BD171129A1} — C:Program FilesAgnitumOutpost Firewall Proie_bar.dll
O9 — Extra button: (no name) — {8DAE90AD-4583-4977-9DD4-4360F7A45C74} — (no file)
O9 — Extra button: Справочные материалы — {92780B25-18CC-41C8-B9BE-3C9C571A8263} — C:PROGRA~1MICROS~2OFFICE11REFIEBAR.DLL
O9 — Extra button: (no name) — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra button: Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O9 — Extra ‘Tools’ menuitem: Windows Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O16 — DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) — http://download.divx.com/player/DivXBrowserPlugin.cab
O18 — Protocol: skype4com — {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} — C:PROGRA~1COMMON~1SkypeSkype4COM.dll
O18 — Protocol: solores — {8FA1F4E9-444B-48BF-98CD-B8ECA88E6BA5} — (no file)
O20 — AppInit_DLLs: c:progra~1agnitumoutpost firewall prowl_hook.dll wbsys.dll
O23 — Service: Agnitum Client Security Service (acssrv) — Agnitum Ltd. — C:PROGRA~1AgnitumOutpost Firewall Proacs.exe
O23 — Service: Canon Camera Access Library 8 (CCALib8) — Canon Inc. — C:Program FilesCanonCALCALMAIN.exe
O23 — Service: Symantec Event Manager (ccEvtMgr) — Symantec Corporation — C:Program FilesCommon FilesSymantec SharedccSvcHst.exe
O23 — Service: Symantec Settings Manager (ccSetMgr) — Symantec Corporation — C:Program FilesCommon FilesSymantec SharedccSvcHst.exe
O23 — Service: Symantec Lic NetConnect service (CLTNetCnService) — Symantec Corporation — C:Program FilesCommon FilesSymantec SharedccSvcHst.exe
O23 — Service: COM Host (comHost) — Symantec Corporation — C:Program FilesCommon FilesSymantec SharedVAScannercomHost.exe
O23 — Service: Журнал событий (Eventlog) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: Служба оновлення Google Update (gupdate1ca59a322e4bc3c) (gupdate1ca59a322e4bc3c) — Unknown owner — C:Program FilesGoogleUpdateGoogleUpdate.exe (file missing)
O23 — Service: InstallDriver Table Manager (IDriverT) — Macrovision Corporation — C:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe
O23 — Service: PIXMA Extended Survey Program (IJPLMSVC) — Unknown owner — C:Program FilesCanonIJPLMIJPLMSVC.EXE
O23 — Service: Служба COM записи компакт-дисков IMAPI (ImapiService) — Корпорация Майкрософт — C:WINDOWSsystem32imapi.exe
O23 — Service: Symantec IS Password Validation (ISPwdSvc) — Symantec Corporation — C:Program FilesNorton Internet SecurityisPwdSvc.exe
O23 — Service: Java Quick Starter (JavaQuickStarterService) — Sun Microsystems, Inc. — C:Program FilesJavajre6binjqs.exe
O23 — Service: LiveUpdate — Symantec Corporation — C:PROGRA~1SymantecLIVEUP~1LUCOMS~1.EXE
O23 — Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) — Symantec Corporation — C:Program FilesCommon FilesSymantec SharedccSvcHst.exe
O23 — Service: LiveUpdate Notice Service — Symantec Corporation — C:Program FilesCommon FilesSymantec SharedPIF{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}PIFSvc.exe
O23 — Service: NMIndexingService — Nero AG — C:Program FilesCommon FilesNeroLibNMIndexingService.exe
O23 — Service: NVIDIA Display Driver Service (NVSvc) — NVIDIA Corporation — C:WINDOWSsystem32nvsvc32.exe
O23 — Service: Plug and Play (PlugPlay) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: PsViatau (PTsup5) — Trident Software — C:Program FilesTrident SoftwarePragmaptsup5.exe
O23 — Service: Диспетчер сеанса справки для удаленного рабочего стола (RDSessMgr) — Корпорация Майкрософт — C:WINDOWSsystem32sessmgr.exe
O23 — Service: Смарт-карты (SCardSvr) — Корпорация Майкрософт — C:WINDOWSSystem32SCardSvr.exe
O23 — Service: Symantec Core LC — Unknown owner — C:Program FilesCommon FilesSymantec SharedCCPD-LCsymlcsvc.exe
O23 — Service: Symantec AppCore Service (SymAppCore) — Symantec Corporation — C:Program FilesCommon FilesSymantec SharedAppCoreAppSvc32.exe
O23 — Service: Журналы и оповещения производительности (SysmonLog) — Корпорация Майкрософт — C:WINDOWSsystem32smlogsvc.exe
O23 — Service: TuneUp Drive Defrag Service (TuneUp.Defrag) — TuneUp Software — C:WINDOWSSystem32TuneUpDefragService.exe
O23 — Service: Теневое копирование тома (VSS) — Корпорация Майкрософт — C:WINDOWSSystem32vssvc.exe
O23 — Service: Адаптер производительности WMI (WmiApSrv) — Корпорация Майкрософт — C:WINDOWSsystem32wbemwmiapsrv.exe
O23 — Service: Планировщик автоматического запуска LiveUpdate — Symantec Corporation — C:Program FilesSymantecLiveUpdateALUSchedulerSvc.exe—
End of file — 10937 bytes======Scheduled tasks folder======
C:WINDOWStasksGoogleUpdateTaskMachineCore.job
C:WINDOWStasksGoogleUpdateTaskMachineUA.job
C:WINDOWStasksNorton Internet Security — Выполнить полный осмотр системы — Dima.job
C:WINDOWStasksScheduled Update for Ask Toolbar.job
C:WINDOWStasksUser_Feed_Synchronization-{BA71D8E9-F212-48DB-B910-B33348A644AE}.job======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{1E8A6170-7264-4D0F-BEAE-D42A53123C75}]
C:Program FilesCommon FilesSymantec SharedcoSharedBrowser1.5NppBho.dll [2007-01-12 96936][HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{90222687-F593-4738-B738-FBEE9C7B26DF} — Show Norton Toolbar — C:Program FilesCommon FilesSymantec SharedcoSharedBrowser1.5UIBHO.dll [2007-01-12 607888]
{dfbeb35b-444d-4f25-8d7d-eb2683c206ec} — MyPlayCityRU Toolbar — C:Program FilesMyPlayCityRUtbMyPl.dll [2009-01-20 1881112]
{D4027C7F-154A-4066-A1AD-4243D8127440}
{bf2664d8-ac71-45fe-bcd5-fa446c6cf4f1} — Rocket Torrents Toolbar — C:Program FilesRocket_TorrentstbRock.dll [2009-07-15 2224152][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«RTHDCPL»=C:WINDOWSRTHDCPL.EXE [2008-03-26 16859136]
«Alcmtr»=C:WINDOWSALCMTR.EXE [2005-05-03 69632]
«NvCplDaemon»=C:WINDOWSsystem32NvCpl.dll [2007-06-28 8466432]
«nwiz»=nwiz.exe /install []
«NvMediaCenter»=C:WINDOWSsystem32NvMcTray.dll [2007-06-28 81920]
«ccApp»=C:Program FilesCommon FilesSymantec SharedccApp.exe [2007-01-09 115816]
«osCheck»=C:Program FilesNorton Internet SecurityosCheck.exe [2007-01-14 771704]
«NeroFilterCheck»=C:Program FilesCommon FilesNeroLibNeroCheck.exe [2007-03-01 153136]
«NBKeyScan»=C:Program FilesNeroNero8Nero BackItUpNBKeyScan.exe [2007-09-20 1836328]
«Pragma5″=C:Program FilesTrident SoftwarePragmapragma.exe [2007-06-11 380928]
«SSBkgdUpdate»=C:Program FilesCommon FilesScansoft SharedSSBkgdUpdateSSBkgdupdate.exe [2006-10-25 210472]
«OpwareSE4″=C:Program FilesScanSoftOmniPageSE4OpwareSE4.exe [2007-02-04 79400]
«Symantec PIF AlertEng»=C:Program FilesCommon FilesSymantec SharedPIF{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}PIFSvc.exe [2008-01-29 583048]
«SunJavaUpdateSched»=C:Program FilesJavajre6binjusched.exe [2009-10-11 149280]
«Hotkey»=C:Program FilesInternet keyboard driverHotkey.exe [2008-01-11 221184]
«OutpostMonitor»=C:PROGRA~1AgnitumOutpost Firewall Proop_mon.exe [2009-09-23 1270080]
«OutpostFeedBack»=C:Program FilesAgnitumOutpost Firewall Profeedback.exe [2009-09-23 436552]
«FU_JFM»=E:ПрогиFinalUninstallerJFM.exe [2009-08-18 790336]C:Documents and SettingsAll UsersГлавное менюПрограммыАвтозагрузка
InterVideo WinCinema Manager.lnk — C:Program FilesInterVideoCommonBinWinCinemaMgr.exe[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWindows]
«AppInit_DLLS»=»c:progra~1agnitumoutpost firewall prowl_hook.dll wbsys.dll»[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyWBSrv]
E:Прогиwindow blindsWindowBlindsWindowBlinds+Rus+CrackWindowBlindswbsrv.dll [2007-09-23 229376][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyWgaLogon]
C:WINDOWSsystem32WgaLogon.dll [2007-03-15 183808][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionShellServiceObjectDelayLoad]
0aMCPClient — {F5DF91F9-15E9-416B-A7C3-7519B11ECBFC}
WPDShServiceObj — {AAA288BA-9A4C-45B0-95D7-94D524869DB5} — C:WINDOWSsystem32WPDShServiceObj.dll [2006-05-09 52224][HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
«DisableTaskMgr»=0[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
«dontdisplaylastusername»=0
«legalnoticecaption»=
«legalnoticetext»=
«shutdownwithoutlogon»=1
«undockwithoutlogon»=1
«DisableStatusMessages»=0
«DisableTaskMgr»=0[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«NoDriveTypeAutoRun»=149
«MemCheckBoxInRunDlg»=1
«ForceClassicControlPanel»=1[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«HonorAutoRunSetting»=[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«D:GAMESPro Evolution Soccer 2009 — Украинская Премьер-лигаpes2009.exe»=»D:GAMESPro Evolution Soccer 2009 — Украинская Премьер-лигаpes2009.exe:*:Enabled:Pro Evolution Soccer 2009»
«E:GAMESPro Evolution Soccer 2009 — Украинская Премьер-лигаpes2009.exe»=»E:GAMESPro Evolution Soccer 2009 — Украинская Премьер-лигаpes2009.exe:*:Enabled:Pro Evolution Soccer 2009»
«C:Program FilesOpera 10.10 Labsopera.exe»=»C:Program FilesOpera 10.10 Labsopera.exe:*:Enabled:Opera Internet Browser»
«E:ДокументиДімаuTorrent.exe»=»E:ДокументиДімаuTorrent.exe:*:Enabled:µTorrent»
«C:Program FilesSkypePhoneSkype.exe»=»C:Program FilesSkypePhoneSkype.exe:*:Enabled:Skype»[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{4759bae0-5276-11de-8b4c-00183707aa4b}]
shellAutoRuncommand — G:CONFIGS-1-5-21-1482476501-1644491937-682003330-1013ConfDriver.exe
shellopencommand — G:CONFIGS-1-5-21-1482476501-1644491937-682003330-1013ConfDriver.exe[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{80a49e41-bb0b-11de-8c22-00183707aa4b}]
shellAutoRuncommand — CSettingscl.exe
shellopencommand — CSettingscl.exe[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{cd3d09b2-621f-11de-8b6a-00183707aa4b}]
shellAutoRuncommand — G:CONFIGS-1-5-21-1482476501-1644491937-682003330-1013ConfDriver.exe
shellopencommand — G:CONFIGS-1-5-21-1482476501-1644491937-682003330-1013ConfDriver.exe======List of files/folders created in the last 1 months======
2009-11-09 16:52:41 —-D—- C:Program Filestrend micro
2009-11-09 16:52:34 —-D—- C:rsit
2009-11-08 21:12:09 —-D—- C:Downloads
2009-11-08 19:19:00 —-D—- C:WINDOWSsystem32Filt
2009-11-08 19:19:00 —-D—- C:Program FilesAgnitum
2009-11-08 19:17:49 —-D—- C:Documents and SettingsAll UsersApplication DataAgnitum
2009-11-08 18:50:27 —-D—- C:Documents and SettingsDimaApplication DataSkype
2009-11-08 18:50:09 —-D—- C:Program FilesSkype
2009-11-08 18:50:09 —-D—- C:Program FilesCommon FilesSkype
2009-11-08 18:47:08 —-D—- C:Documents and SettingsAll UsersApplication DataSkype
2009-11-08 18:46:43 —-D—- C:Program FilesInternet keyboard driver
2009-11-08 18:43:58 —-A—- C:WINDOWSsystem32javaws.exe
2009-11-08 18:43:58 —-A—- C:WINDOWSsystem32javaw.exe
2009-11-08 18:43:58 —-A—- C:WINDOWSsystem32java.exe
2009-11-07 22:22:42 —-D—- C:Program FilesCommon Filesstardock
2009-11-07 22:22:42 —-A—- C:WINDOWSsystem32msxml3a.dll
2009-11-07 22:21:54 —-D—- C:Documents and SettingsDimaApplication DataStardock
2009-11-07 22:20:49 —-D—- C:Documents and SettingsAll UsersApplication DataStardock
2009-11-07 21:53:31 —-D—- C:Documents and SettingsDimaApplication DataFieryAds
2009-11-07 21:53:28 —-D—- C:Documents and SettingsDimaApplication DataCMedia
2009-11-07 13:35:53 —-HDC—- C:Documents and SettingsAll UsersApplication Data{CCD0104E-95C0-4C73-A3E3-42C3D2072E43}
2009-11-07 10:34:07 —-D—- C:Documents and SettingsDimaApplication DataAstro Gemini Software
2009-11-06 22:37:10 —-D—- C:WINDOWSDownloaded Installations
2009-10-31 11:39:15 —-A—- C:WINDOWSsystem32deploytk.dll
2009-10-30 22:53:42 —-D—- C:Program FilesCommon FilesDivX Shared
2009-10-30 22:41:28 —-D—- C:Program FilesJava
2009-10-30 22:41:26 —-D—- C:Program FilesCommon FilesJava
2009-10-30 22:41:10 —-D—- C:Documents and SettingsDimaApplication DataSun
2009-10-30 22:38:41 —-D—- C:Documents and SettingsDimaApplication DataRocketTorrents
2009-10-30 22:38:32 —-D—- C:Program FilesRocket_Torrents
2009-10-30 17:38:46 —-D—- C:Documents and SettingsDimaApplication DataMount&Blade
2009-10-29 21:24:35 —-N—- C:WINDOWSWB.ini
2009-10-27 17:01:26 —-D—- C:Program FilesManaged DirectX (0901)
2009-10-27 16:27:46 —-D—- C:Program FilesCommon FilesLogitech
2009-10-26 18:54:12 —-A—- C:WINDOWSunins000.exe
2009-10-25 19:37:16 —-D—- C:Documents and SettingsDimaApplication Dataтанчики
2009-10-25 19:37:11 —-D—- C:Documents and SettingsAll UsersApplication DataEgoset
2009-10-25 17:16:00 —-D—- C:WINDOWSCache
2009-10-25 13:49:39 —-A—- C:WINDOWS_MSRSTRT.EXE
2009-10-25 13:37:26 —-N—- C:WINDOWSsystem32wbsys.dll
2009-10-25 08:39:52 —-A—- C:WINDOWSsystem32TuneUpDefragService.exe
2009-10-25 08:39:51 —-D—- C:Documents and SettingsDimaApplication DataTuneUp Software
2009-10-25 08:35:49 —-D—- C:WINDOWSglobal
2009-10-24 18:06:44 —-D—- C:Documents and SettingsDimaApplication DatauTorrent
2009-10-24 11:48:34 —-D—- C:Documents and SettingsDimaApplication DataMeridian93
2009-10-23 19:19:49 —-D—- C:Documents and SettingsDimaApplication DataDownload Master
2009-10-23 18:09:42 —-D—- C:Documents and SettingsAll UsersApplication DataFarmFrenzy3
2009-10-21 20:41:54 —-D—- C:Documents and SettingsDimaApplication DataThinking Minds Budiling Bytes
2009-10-21 20:34:31 —-D—- C:Program FilesCommon FilesXstream
2009-10-21 13:34:02 —-D—- C:Documents and SettingsAll UsersApplication DataHipSoft
2009-10-20 21:35:16 —-D—- C:Documents and SettingsDimaApplication DataAwem
2009-10-20 21:34:04 —-D—- C:Documents and SettingsDimaApplication DataYandex
2009-10-18 11:01:45 —-HDC—- C:WINDOWSie8
2009-10-17 14:22:09 —-D—- C:Program FilesGarena
2009-10-17 14:05:36 —-D—- C:Documents and SettingsDimaApplication DataMozilla
2009-10-17 14:05:16 —-D—- C:Program FilesMozilla Firefox
2009-10-17 08:08:18 —-A—- C:WINDOWSsystem32MRT.exe
2009-10-15 19:43:23 —-D—- C:Documents and SettingsAll UsersApplication DataAlawarWrapper
2009-10-15 17:53:49 —-A—- C:memory.txt
2009-10-14 22:25:15 —-D—- C:WINDOWSie8updates
2009-10-14 14:07:11 —-N—- C:WINDOWSsystem32spmsg.dll
2009-10-14 14:07:11 —-D—- C:WINDOWSsystem32PreInstall
2009-10-14 14:07:09 —-HD—- C:WINDOWS$hf_mig$
2009-10-14 13:46:33 —-D—- C:Documents and SettingsDimaApplication DataMacromedia
2009-10-14 13:46:32 —-D—- C:Documents and SettingsDimaApplication DataAdobe
2009-10-14 09:18:02 —-D—- C:WINDOWSsystem32SoftwareDistribution======List of files/folders modified in the last 1 months======
2009-11-09 16:52:48 —-D—- C:WINDOWSTemp
2009-11-09 16:52:48 —-D—- C:Program FilesCommon FilesSymantec Shared
2009-11-09 16:52:41 —-RD—- C:Program Files
2009-11-09 16:52:19 —-D—- C:WINDOWSPrefetch
2009-11-09 16:15:09 —-SHD—- C:WINDOWSInstaller
2009-11-09 16:12:10 —-D—- C:Documents and SettingsDimaApplication DataOpera
2009-11-09 16:06:36 —-D—- C:Documents and SettingsAll UsersApplication DataSymantec
2009-11-09 14:15:04 —-D—- C:WINDOWSsecurity
2009-11-09 14:15:04 —-D—- C:WINDOWSrepair
2009-11-09 14:15:04 —-D—- C:WINDOWSLogs
2009-11-09 14:15:04 —-D—- C:WINDOWS
2009-11-09 14:15:04 —-D—- C:Program FilesMyPlayCityRU
2009-11-09 11:07:20 —-D—- C:WINDOWSsystem32CatRoot2
2009-11-08 22:27:00 —-N—- C:WINDOWSSchedLgU.Txt
2009-11-08 22:27:00 —-D—- C:WINDOWSsystem32config
2009-11-08 19:20:30 —-D—- C:WINDOWSsystem32drivers
2009-11-08 19:20:27 —-HD—- C:WINDOWSinf
2009-11-08 19:19:13 —-D—- C:WINDOWSWinSxS
2009-11-08 19:19:00 —-D—- C:WINDOWSsystem32
2009-11-08 18:50:09 —-D—- C:Program FilesCommon Files
2009-11-08 15:23:10 —-D—- C:WINDOWSMinidump
2009-11-08 15:23:10 —-D—- C:WINDOWSDebug
2009-11-08 12:26:50 —-RSD—- C:WINDOWSassembly
2009-11-07 22:22:14 —-D—- C:WINDOWSMicrosoft.NET
2009-11-07 00:06:58 —-A—- C:WINDOWSwin.ini
2009-11-06 16:10:18 —-RSHDC—- C:WINDOWSsystem32dllcache
2009-11-04 19:49:59 —-A—- C:WINDOWSNeroDigital.ini
2009-11-02 18:21:55 —-D—- C:WINDOWSSoftwareDistribution
2009-11-02 18:20:37 —-D—- C:WINDOWSsystem32appmgmt
2009-10-30 23:03:44 —-SD—- C:WINDOWSTasks
2009-10-30 22:56:19 —-SD—- C:WINDOWSDownloaded Program Files
2009-10-29 11:29:29 —-HD—- C:Program FilesInstallShield Installation Information
2009-10-25 08:28:14 —-A—- C:WINDOWSsystem32PerfStringBackup.INI
2009-10-22 15:34:52 —-D—- C:WINDOWSsystem32CatRoot
2009-10-20 21:49:57 —-D—- C:WINDOWSsystem32XPSViewer
2009-10-20 21:49:55 —-D—- C:WINDOWSsystem32en-us
2009-10-20 21:49:52 —-RSD—- C:WINDOWSFonts
2009-10-18 11:04:33 —-D—- C:WINDOWSsystem32ru-ru
2009-10-18 11:04:33 —-D—- C:WINDOWSHelp
2009-10-18 11:04:33 —-D—- C:Program FilesInternet Explorer
2009-10-18 11:02:16 —-D—- C:WINDOWSWBEM
2009-10-18 11:02:08 —-D—- C:WINDOWSMedia
2009-10-15 13:47:25 —-D—- C:WINDOWSsystem32wbem
2009-10-14 22:25:44 —-D—- C:Program FilesMessenger
2009-10-14 16:38:05 —-D—- C:WINDOWSAppPatch
2009-10-14 15:37:00 —-D—- C:Program FilesOutlook Express
2009-10-14 13:58:20 —-D—- C:Program FilesNorton Internet Security
2009-10-14 13:55:50 —-D—- C:Program FilesSymantec
2009-10-14 13:55:49 —-A—- C:WINDOWSsystem32S32EVNT1.DLL
2009-10-14 09:20:35 —-SD—- C:Documents and SettingsDimaApplication DataMicrosoft
2009-10-12 12:36:41 —-D—- C:Documents and SettingsAll UsersApplication DataElectronic Arts======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AmdK8;Драйвер AMD процессора; C:WINDOWSsystem32DRIVERSAmdK8.sys [2006-07-01 43520]
R1 eeCtrl;Symantec Eraser Control driver; ??C:Program FilesCommon FilesSymantec SharedEENGINEeeCtrl.sys []
R1 oreans32;oreans32; ??C:WINDOWSsystem32driversoreans32.sys []
R1 SandBox;SandBox; ??C:WINDOWSsystem32driversSandBox.sys []
R1 SPBBCDrv;SPBBCDrv; ??C:Program FilesCommon FilesSymantec SharedSPBBCSPBBCDrv.sys []
R1 SRTSP;SRTSP; C:WINDOWSSystem32DriversSRTSP.SYS [2007-11-30 279088]
R1 SRTSPX;SRTSPX; C:WINDOWSSystem32DriversSRTSPX.SYS [2007-11-30 43696]
R1 SYMTDI;SYMTDI; C:WINDOWSSystem32DriversSYMTDI.SYS [2009-08-03 188080]
R3 afw;Agnitum firewall driver; C:WINDOWSsystem32DRIVERSafw.sys [2009-02-18 31128]
R3 afwcore;afwcore; C:WINDOWSsystem32driversafwcore.sys [2009-09-14 256792]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; ??C:Program FilesCommon FilesSymantec SharedEENGINEEraserUtilRebootDrv.sys []
R3 HDAudBus;Драйвер шины Microsoft UAA для High Definition Audio; C:WINDOWSsystem32DRIVERSHDAudBus.sys [2008-03-06 144384]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:WINDOWSsystem32driversRtkHDAud.sys [2008-03-26 4713472]
R3 NAVENG;NAVENG; ??C:PROGRA~1COMMON~1SYMANT~1VIRUSD~120091108.002NAVENG.SYS []
R3 NAVEX15;NAVEX15; ??C:PROGRA~1COMMON~1SYMANT~1VIRUSD~120091108.002NAVEX15.SYS []
R3 nv;nv; C:WINDOWSsystem32DRIVERSnv4_mini.sys [2007-06-28 6807328]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet адаптер, драйвер для NT; C:WINDOWSsystem32DRIVERSRTL8139.SYS [2008-03-06 20992]
R3 SYMDNS;SYMDNS; C:WINDOWSSystem32DriversSYMDNS.SYS [2009-08-03 12720]
R3 SymEvent;SymEvent; ??C:WINDOWSsystem32DriversSYMEVENT.SYS []
R3 SYMFW;SYMFW; C:WINDOWSSystem32DriversSYMFW.SYS [2009-08-03 145968]
R3 SYMIDS;SYMIDS; C:WINDOWSSystem32DriversSYMIDS.SYS [2009-08-03 39856]
R3 SYMIDSCO;SYMIDSCO; ??C:PROGRA~1COMMON~1SYMANT~1SymcDataidsdefs20091105.001SymIDSCo.sys []
R3 SYMNDIS;SYMNDIS; C:WINDOWSSystem32DriversSYMNDIS.SYS [2009-08-03 35120]
R3 SYMREDRV;SYMREDRV; C:WINDOWSSystem32DriversSYMREDRV.SYS [2009-08-03 26416]
R3 usbehci;Драйвер минипорта Microsoft USB 2.0 расширенного хост-контроллера; C:WINDOWSsystem32DRIVERSusbehci.sys [2008-03-06 30208]
R3 usbhub;USB2 концентратор; C:WINDOWSsystem32DRIVERSusbhub.sys [2008-03-06 59520]
R3 usbohci;Драйвер минипорта Microsoft USB открытого хост-контроллера; C:WINDOWSsystem32DRIVERSusbohci.sys [2008-03-06 17152]
S3 ASWFilt;ASWFilt; ??C:WINDOWSsystem32FiltASWFilt.dll []
S3 HidUsb;Драйвер класса HID Microsoft; C:WINDOWSsystem32DRIVERShidusb.sys [2008-03-06 10368]
S3 SRTSPL;SRTSPL; C:WINDOWSSystem32DriversSRTSPL.SYS [2007-11-30 317616]
S3 usbccgp;Драйвер универсального родительского устройства USB (Microsoft); C:WINDOWSsystem32DRIVERSusbccgp.sys [2008-03-06 32128]
S3 usbprint;Класс принтеров Microsoft USB; C:WINDOWSsystem32DRIVERSusbprint.sys [2008-03-06 25856]
S3 usbscan;Драйвер USB-сканера; C:WINDOWSsystem32DRIVERSusbscan.sys [2008-03-06 15104]
S3 USBSTOR;Драйвер запоминающих устройств для USB; C:WINDOWSsystem32DRIVERSUSBSTOR.SYS [2008-03-06 26368]
S3 WudfPf;Windows Driver Foundation — User-mode Driver Framework Platform Driver; C:WINDOWSsystem32DRIVERSWudfPf.sys [2006-04-11 82944]
S3 WudfRd;Windows Driver Foundation — User-mode Driver Framework Reflector; C:WINDOWSsystem32DRIVERSwudfrd.sys [2006-04-11 87808]
S4 IntelIde;IntelIde; C:WINDOWSsystem32driversIntelIde.sys []======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 acssrv;Agnitum Client Security Service; C:PROGRA~1AgnitumOutpost Firewall Proacs.exe [2009-09-23 1338560]
R2 CCALib8;Canon Camera Access Library 8; C:Program FilesCanonCALCALMAIN.exe [2007-01-31 96370]
R2 ccEvtMgr;Symantec Event Manager; C:Program FilesCommon FilesSymantec SharedccSvcHst.exe [2007-01-09 108648]
R2 ccSetMgr;Symantec Settings Manager; C:Program FilesCommon FilesSymantec SharedccSvcHst.exe [2007-01-09 108648]
R2 CLTNetCnService;Symantec Lic NetConnect service; C:Program FilesCommon FilesSymantec SharedccSvcHst.exe [2007-01-09 108648]
R2 IJPLMSVC;PIXMA Extended Survey Program; C:Program FilesCanonIJPLMIJPLMSVC.EXE [2006-11-10 99936]
R2 JavaQuickStarterService;Java Quick Starter; C:Program FilesJavajre6binjqs.exe [2009-10-11 153376]
R2 LiveUpdate Notice Ex;LiveUpdate Notice Service Ex; C:Program FilesCommon FilesSymantec SharedccSvcHst.exe [2007-01-09 108648]
R2 MDM;Machine Debug Manager; C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE [2003-06-19 322120]
R2 NVSvc;NVIDIA Display Driver Service; C:WINDOWSsystem32nvsvc32.exe [2007-06-28 155716]
R2 SymAppCore;Symantec AppCore Service; C:Program FilesCommon FilesSymantec SharedAppCoreAppSvc32.exe [2007-01-05 47712]
R2 Планировщик автоматического запуска LiveUpdate;Планировщик автоматического запуска LiveUpdate; C:Program FilesSymantecLiveUpdateALUSchedulerSvc.exe [2007-01-31 554616]
R3 NMIndexingService;NMIndexingService; C:Program FilesCommon FilesNeroLibNMIndexingService.exe [2007-10-23 382248]
R3 Symantec Core LC;Symantec Core LC; C:Program FilesCommon FilesSymantec SharedCCPD-LCsymlcsvc.exe [2009-10-14 1251720]
S2 gupdate1ca59a322e4bc3c;Служба оновлення Google Update (gupdate1ca59a322e4bc3c); C:Program FilesGoogleUpdateGoogleUpdate.exe /svc []
S2 LiveUpdate Notice Service;LiveUpdate Notice Service; C:Program FilesCommon FilesSymantec SharedPIF{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}PIFSvc.exe [2008-01-29 583048]
S2 PTsup5;PsViatau; C:Program FilesTrident SoftwarePragmaptsup5.exe [2007-06-01 57344]
S3 aspnet_state;Служба состояний ASP.NET; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe [2008-07-25 69632]
S3 comHost;COM Host; C:Program FilesCommon FilesSymantec SharedVAScannercomHost.exe [2007-01-12 49248]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:WINDOWSMicrosoft.NETFrameworkv3.0WPFPresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication Foundationinfocard.exe [2008-07-29 881664]
S3 ISPwdSvc;Symantec IS Password Validation; C:Program FilesNorton Internet SecurityisPwdSvc.exe [2007-01-14 80504]
S3 LiveUpdate;LiveUpdate; C:PROGRA~1SymantecLIVEUP~1LUCOMS~1.EXE [2007-01-31 2918008]
S3 ose;Office Source Engine; C:Program FilesCommon FilesMicrosoft SharedSource EngineOSE.EXE [2003-07-28 89136]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service; C:WINDOWSSystem32TuneUpDefragService.exe [2009-10-25 360192]
S3 WMPNetworkSvc;Служба общих сетевых ресурсов проигрывателя Windows Media; C:Program FilesWindows Media PlayerWMPNetwk.exe [2006-05-17 824832]
S3 WudfSvc;Windows Driver Foundation — User-mode Driver Framework; C:WINDOWSsystem32svchost.exe [2008-03-07 14336]
S4 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:Program FilesNeroNero8Nero BackItUpNBService.exe [2007-09-20 853288]
S4 NetTcpPortSharing;Служба общего доступа к портам Net.Tcp; C:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication FoundationSMSvcHost.exe [2008-07-29 132096]
EOF
-
АвторСообщения

