Созданные ответы форума
-
АвторСообщения
-
Здравствуйте!
Провела процесс еще раз, надеюсь, что все получилось.
Вот результаты:
Process explorer.exe killed successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{916BAA20-3D33-4B93-A2DF-4AFCD0637BF8}\ not found.
Registry value HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun\MsServer deleted successfully.
Registry key HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{3824e1eb-a4da-11dd-9c88-0011d8b763a8}\ deleted successfully.
Registry key HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{7339106e-7595-11dc-9ba9-0011d8b763a8}\ deleted successfully.
Registry key HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{8bb10b18-ae36-11dc-9be8-0011d8b763a8}\ deleted successfully.
========== FILES ==========
c:RECYCLERS-1-5-21-1482476501-1644491937-682003330-1013 moved successfully.
File/Folder c:msfir80.exe not found.
File/Folder C:Documents and SettingsAll Users.WINDOWSApplication Dataxuplib.dll not found.
========== COMMANDS ==========
File delete failed. C:DOCUME~11LOCALS~1Tempetilqs_JBLOqw1KQGKIAAGvFGED scheduled to be deleted on reboot.
File delete failed. C:DOCUME~11LOCALS~1Temp~DF48E0.tmp scheduled to be deleted on reboot.
User’s Temp folder emptied.
User’s Temporary Internet Files folder emptied.
User’s Internet Explorer cache folder emptied.
Local Service Temp folder emptied.
Local Service Temporary Internet Files folder emptied.
File delete failed. C:WINDOWStemp_avast4_Webshlock.txt scheduled to be deleted on reboot.
File delete failed. C:WINDOWStempPerflib_Perfdata_4ac.dat scheduled to be deleted on reboot.
Windows Temp folder emptied.
File delete failed. C:Documents and Settings1Local SettingsApplication DataMozillaFirefoxProfiles1keqnxws.defaultCache_CACHE_001_ scheduled to be deleted on reboot.
File delete failed. C:Documents and Settings1Local SettingsApplication DataMozillaFirefoxProfiles1keqnxws.defaultCache_CACHE_002_ scheduled to be deleted on reboot.
File delete failed. C:Documents and Settings1Local SettingsApplication DataMozillaFirefoxProfiles1keqnxws.defaultCache_CACHE_003_ scheduled to be deleted on reboot.
File delete failed. C:Documents and Settings1Local SettingsApplication DataMozillaFirefoxProfiles1keqnxws.defaultCache_CACHE_MAP_ scheduled to be deleted on reboot.
File delete failed. C:Documents and Settings1Local SettingsApplication DataMozillaFirefoxProfiles1keqnxws.defaulturlclassifier3.sqlite scheduled to be deleted on reboot.
File delete failed. C:Documents and Settings1Local SettingsApplication DataMozillaFirefoxProfiles1keqnxws.defaultXUL.mfl scheduled to be deleted on reboot.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfullyOTMoveIt3 by OldTimer — Version 1.0.8.0 log created on 01302009_181049
Logfile of random’s system information tool 1.05 (written by random/random)
Run by 1 at 2009-01-30 18:22:27
Microsoft Windows XP Home Edition Service Pack 2
System drive C: has 66 GB (69%) free of 95 GB
Total RAM: 503 MB (37% free)Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:22:37, on 30.01.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: NormalRunning processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
C:Program FilesAlwil SoftwareAvast4ashServ.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesSamsungSmarThruQS.exe
C:WINDOWSsystem32spoolsv.exe
C:PROGRA~1SamsungSmarThruSS.EXE
C:PROGRA~1SamsungSmarThruAGENT32.EXE
C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE
C:Program FilesEsetnod32krn.exe
C:Program FilesAnalog DevicesSoundMAXSMAgent.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32ufdsvc.exe
C:WINDOWSSYSTEM32AFPDSet.exe
C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe
C:Program FilesAlwil SoftwareAvast4ashWebSv.exe
C:WINDOWSsystem32wuauclt.exe
C:Program FilesMozilla Firefox 3.1 Beta 1firefox.exe
C:WINDOWSexplorer.exe
C:Documents and Settings1Рабочий столRSIT.exe
C:Program Filestrend micro1.exeR0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.mail.ru/
R0 — HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Ссылки
O3 — Toolbar: EPSON Web-To-Page — {EE5D279F-081B-4404-994D-C6B60AAEBA6D} — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll
O3 — Toolbar: &Google Toolbar — {2318C2B1-4965-11d4-9B18-009027A5CD4F} — C:Program FilesGoogleGoogle ToolbarGoogleToolbar.dll
O4 — HKLM..Run: [AControl] C:WINDOWSSYSTEM32AControl.exe
O4 — HKLM..Run: [IgfxTray] C:WINDOWSsystem32igfxtray.exe
O4 — HKLM..Run: [HotKeysCmds] C:WINDOWSsystem32hkcmd.exe
O4 — HKLM..Run: [Smapp] C:Program FilesAnalog DevicesSoundMAXSMTray.exe
O4 — HKLM..Run: [GW Port Controller] C:Program FilesSamsungSmarThruPORTCTRL.EXE
O4 — HKLM..Run: [Home Theater SchSvr] «C:Program FilesCommon FilesInterVideoSchSvrSchSvr.exe»
O4 — HKLM..Run: [WINCINEMAMGR] «C:Program FilesInterVideoCommonBinWinCinemaMgr.exe»
O4 — HKLM..Run: [NeroFilterCheck] C:WINDOWSsystem32NeroCheck.exe
O4 — HKLM..Run: [RegClean] «C:Program FilesRegCleanRegClean.exe» -boot
O4 — HKLM..Run: [Pragma5] C:Program FilesTrident SoftwarePragmapragma.exe
O4 — HKLM..Run: [QuickTime Task] «C:Program FilesQuickTimeqttask.exe» -atboottime
O4 — HKLM..Run: [nod32kui] «C:Program FilesEsetnod32kui.exe» /WAITSERVICE
O4 — HKLM..Run: [avast!] C:PROGRA~1ALWILS~1Avast4ashDisp.exe
O4 — HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe
O4 — HKCU..Run: [swg] C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe
O4 — HKCU..Run: [EPSON Stylus CX8300 Series] C:WINDOWSSystem32spoolDRIVERSW32X863E_FATICEP.EXE /FU «C:WINDOWSTEMPE_SB0.tmp» /EF «HKCU»
O4 — HKCU..Run: [googletalk] «C:Program FilesGoogleGoogle Talkgoogletalk.exe» /autostart
O4 — HKCU..Run: [MySpaceIM] C:Program FilesMySpaceIMMySpaceIM.exe
O4 — HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘LOCAL SERVICE’)
O4 — HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘NETWORK SERVICE’)
O4 — HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘SYSTEM’)
O4 — HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘Default user’)
O4 — Global Startup: SmarThru Engine.lnk = C:Program FilesSamsungSmarThruQS.exe
O8 — Extra context menu item: &Экспорт в Microsoft Excel — res://C:PROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000
O9 — Extra button: Справочные материалы — {92780B25-18CC-41C8-B9BE-3C9C571A8263} — C:PROGRA~1MICROS~2OFFICE11REFIEBAR.DLL
O9 — Extra button: Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O9 — Extra ‘Tools’ menuitem: Windows Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O23 — Service: Adobe LM Service — Adobe Systems — C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe
O23 — Service: avast! iAVS4 Control Service (aswUpdSv) — ALWIL Software — C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
O23 — Service: avast! Antivirus — ALWIL Software — C:Program FilesAlwil SoftwareAvast4ashServ.exe
O23 — Service: avast! Mail Scanner — ALWIL Software — C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe
O23 — Service: avast! Web Scanner — ALWIL Software — C:Program FilesAlwil SoftwareAvast4ashWebSv.exe
O23 — Service: Журнал событий (Eventlog) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: Google Updater Service (gusvc) — Google — C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe
O23 — Service: Служба COM записи компакт-дисков IMAPI (ImapiService) — Корпорация Майкрософт — C:WINDOWSsystem32imapi.exe
O23 — Service: NetMeeting Remote Desktop Sharing (mnmsrvc) — Корпорация Майкрософт — C:WINDOWSsystem32mnmsrvc.exe
O23 — Service: NOD32 Kernel Service (NOD32krn) — Eset — C:Program FilesEsetnod32krn.exe
O23 — Service: Plug and Play (PlugPlay) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: PsViatau (PTsup5) — Trident Software — C:Program FilesTrident SoftwarePragmaptsup5.exe
O23 — Service: Диспетчер сеанса справки для удаленного рабочего стола (RDSessMgr) — Корпорация Майкрософт — C:WINDOWSsystem32sessmgr.exe
O23 — Service: Смарт-карты (SCardSvr) — Корпорация Майкрософт — C:WINDOWSSystem32SCardSvr.exe
O23 — Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) — Analog Devices, Inc. — C:Program FilesAnalog DevicesSoundMAXSMAgent.exe
O23 — Service: Журналы и оповещения производительности (SysmonLog) — Корпорация Майкрософт — C:WINDOWSsystem32smlogsvc.exe
O23 — Service: UFD Command Service (UFDSVC) — Generic — C:WINDOWSsystem32ufdsvc.exe
O23 — Service: Теневое копирование тома (VSS) — Корпорация Майкрософт — C:WINDOWSSystem32vssvc.exe
O23 — Service: Адаптер производительности WMI (WmiApSrv) — Корпорация Майкрософт — C:WINDOWSsystem32wbemwmiapsrv.exe—
End of file — 6336 bytes======Scheduled tasks folder======
C:WINDOWStasksRegClean Scheduled Scan.job
======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} — EPSON Web-To-Page — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll [2005-02-21 368640]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} — &Google Toolbar — C:Program FilesGoogleGoogle ToolbarGoogleToolbar.dll [2009-01-09 251504][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«AControl»=C:WINDOWSSYSTEM32AControl.exe [2004-11-22 414208]
«IgfxTray»=C:WINDOWSsystem32igfxtray.exe [2003-07-09 155648]
«HotKeysCmds»=C:WINDOWSsystem32hkcmd.exe [2003-07-09 114688]
«Smapp»=C:Program FilesAnalog DevicesSoundMAXSMTray.exe [2003-05-05 143360]
«GW Port Controller»=C:Program FilesSamsungSmarThruPORTCTRL.EXE [2003-05-19 155648]
«Home Theater SchSvr»=C:Program FilesCommon FilesInterVideoSchSvrSchSvr.exe [2004-10-17 106496]
«WINCINEMAMGR»=C:Program FilesInterVideoCommonBinWinCinemaMgr.exe [2004-10-31 192512]
«NeroFilterCheck»=C:WINDOWSsystem32NeroCheck.exe [2001-07-09 155648]
«RegClean»=C:Program FilesRegCleanRegClean.exe [2008-06-09 10077680]
«Pragma5″=C:Program FilesTrident SoftwarePragmapragma.exe [2007-09-26 380928]
«QuickTime Task»=C:Program FilesQuickTimeqttask.exe [2009-01-16 413696]
«nod32kui»=C:Program FilesEsetnod32kui.exe [2009-01-24 949376]
«avast!»=C:PROGRA~1ALWILS~1Avast4ashDisp.exe [2008-11-26 81000][HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
«CTFMON.EXE»=C:WINDOWSsystem32ctfmon.exe [2004-08-18 15360]
«swg»=C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe [2007-10-29 68856]
«EPSON Stylus CX8300 Series»=C:WINDOWSSystem32spoolDRIVERSW32X863E_FATICEP.EXE [2007-04-12 182272]
«googletalk»=C:Program FilesGoogleGoogle Talkgoogletalk.exe [2007-11-21 3293184]
«MySpaceIM»=C:Program FilesMySpaceIMMySpaceIM.exe [2008-12-12 9555968]C:Documents and SettingsAll Users.WINDOWSГлавное менюПрограммыАвтозагрузка
SmarThru Engine.lnk — C:Program FilesSamsungSmarThruQS.exe[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyigfxcui]
C:WINDOWSsystem32igfxsrvc.dll [2003-07-09 319488][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
«dontdisplaylastusername»=0
«legalnoticecaption»=
«legalnoticetext»=
«shutdownwithoutlogon»=1
«undockwithoutlogon»=1[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«NoDriveTypeAutoRun»=36
«NoDriveAutoRun»=FFFFFFFF[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:Program FilesQIPqip.exe»=»C:Program FilesQIPqip.exe:*:Enabled:Quiet Internet Pager»
«C:WINDOWSsystem32driversetccache05WINClock.exe»=»C:WINDOWSsystem32driversetccache05WINClock.exe:*:Enabled:Internet Relay Chat Client»
«C:Program FilesGoogleGoogle Talkgoogletalk.exe»=»C:Program FilesGoogleGoogle Talkgoogletalk.exe:*:Enabled:Google Talk»
«C:Program FilesMySpaceIMMySpaceIM.exe»=»C:Program FilesMySpaceIMMySpaceIM.exe:*:Enabled:MySpaceIM»[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»======List of files/folders created in the last 1 months======
2009-01-28 20:45:35 —-D—- C:_OTMoveIt
2009-01-28 20:42:53 —-RASHD—- C:autorun.inf
2009-01-26 10:57:13 —-D—- C:Program Filestrend micro
2009-01-26 10:57:03 —-D—- C:rsit
2009-01-26 10:31:18 —-D—- C:Documents and Settings1Application DataMozilla
2009-01-26 10:30:52 —-D—- C:Program FilesMozilla Firefox 3.1 Beta 1
2009-01-25 11:23:40 —-A—- C:WINDOWSsystem32MSVCR71.dll
2009-01-25 11:23:40 —-A—- C:WINDOWSsystem32MSVCP71.dll
2009-01-25 11:23:40 —-A—- C:WINDOWSsystem32MFC71.dll
2009-01-25 11:23:40 —-A—- C:WINDOWSsystem32aswBoot.exe
2009-01-25 11:23:35 —-D—- C:Program FilesAlwil Software
2009-01-25 06:47:34 —-A—- C:WINDOWSsystem32MRT.exe
2009-01-24 19:21:00 —-A—- C:WINDOWSsystem32imon.dll
2009-01-24 19:20:19 —-D—- C:Program FilesESET
2009-01-17 12:24:43 —-D—- C:Documents and Settings1Application DataMySpace
2009-01-17 12:24:42 —-D—- C:Program FilesMySpace
2009-01-15 06:28:11 —-HDC—- C:WINDOWS$NtUninstallKB958687$
2009-01-10 12:07:51 —-D—- C:Documents and Settings1Application DataFashionCrazeRus
2008-12-31 16:43:49 —-D—- C:Documents and Settings1Application DataEleFun Games======List of files/folders modified in the last 1 months======
2009-01-30 18:21:48 —-D—- C:WINDOWSTemp
2009-01-30 18:16:01 —-D—- C:WINDOWSPrefetch
2009-01-30 18:10:50 —-SHD—- C:RECYCLER
2009-01-30 18:05:14 —-A—- C:WINDOWSufdsvclog.txt
2009-01-30 18:05:05 —-D—- C:WINDOWS
2009-01-30 00:30:12 —-A—- C:WINDOWSSchedLgU.Txt
2009-01-29 12:29:08 —-SD—- C:Documents and Settings1Application DataMicrosoft
2009-01-27 16:07:10 —-D—- C:WINDOWSsystem32CatRoot2
2009-01-27 11:44:13 —-HD—- C:WINDOWSinf
2009-01-26 10:57:13 —-RD—- C:Program Files
2009-01-26 09:11:24 —-D—- C:WINDOWSHelp
2009-01-26 09:02:28 —-D—- C:WINDOWSsystem32
2009-01-25 12:50:10 —-A—- C:WINDOWSNeroDigital.ini
2009-01-25 12:49:40 —-D—- C:Program FilesSupercow
2009-01-25 12:46:50 —-D—- C:WINDOWSsystem32config
2009-01-25 11:24:06 —-D—- C:WINDOWSsystem32drivers
2009-01-25 06:47:37 —-D—- C:WINDOWSDebug
2009-01-25 02:40:59 —-D—- C:WINDOWSsystem32CatRoot
2009-01-25 02:39:27 —-D—- C:WINDOWSsystem32CatRoot_bak
2009-01-25 00:42:45 —-A—- C:WINDOWSFORM32.INI
2009-01-24 22:31:48 —-D—- C:Program FilesABBYY FineReader 8.0 Professional Edition
2009-01-24 19:46:03 —-D—- C:Documents and Settings1Application DataRegClean
2009-01-24 11:30:14 —-SD—- C:WINDOWSDownloaded Program Files
2009-01-23 11:11:47 —-D—- C:Documents and SettingsAll Users.WINDOWSApplication DataAdobe
2009-01-23 11:11:47 —-D—- C:Documents and Settings1Application DataAdobe
2009-01-16 23:07:48 —-A—- C:WINDOWSIE4 Error Log.txt
2009-01-16 11:12:48 —-D—- C:Program FilesQuickTime
2009-01-15 06:28:16 —-A—- C:WINDOWSimsins.BAK
2009-01-15 06:28:13 —-RSHDC—- C:WINDOWSsystem32dllcache
2009-01-15 06:27:42 —-HD—- C:WINDOWS$hf_mig$
2009-01-10 12:06:18 —-D—- C:Program FilesGames.Rambler.ru
2009-01-10 11:54:23 —-D—- C:Documents and SettingsAll Users.WINDOWSApplication DataAlawarWrapper
2009-01-09 10:00:13 —-SHD—- C:WINDOWSInstaller
2009-01-09 10:00:13 —-D—- C:Program FilesGoogle
2009-01-09 09:48:18 —-D—- C:Documents and SettingsAll Users.WINDOWSApplication DataGoogle======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:WINDOWSsystem32driversAavmker4.sys [2008-11-26 26944]
R1 aswSP;avast! Self Protection; C:WINDOWSsystem32driversaswSP.sys [2008-11-26 111184]
R1 aswTdi;avast! Network Shield Support; C:WINDOWSsystem32driversaswTdi.sys [2008-11-26 50864]
R1 intelppm;Драйвер Intel процессора; C:WINDOWSsystem32DRIVERSintelppm.sys [2004-08-18 40448]
R1 kbdhid;Драйвер клавиатуры HID; C:WINDOWSsystem32DRIVERSkbdhid.sys [2004-08-18 14848]
R1 nod32drv;nod32drv; C:WINDOWSsystem32driversnod32drv.sys [2009-01-24 15424]
R1 WS2IFSL;Среда Windows Socket 2.0 поддержки поставщиков не-IFS служб; C:WINDOWSSystem32driversws2ifsl.sys [2004-08-18 12032]
R2 AMON;AMON; C:WINDOWSsystem32driversamon.sys [2009-01-24 512096]
R2 Asusio;Asusio; ??C:WINDOWSSYSTEM32Asusio.sys []
R2 aswFsBlk;aswFsBlk; C:WINDOWSsystem32DRIVERSaswFsBlk.sys [2008-11-26 20560]
R2 aswMon2;avast! Standard Shield Support; C:WINDOWSsystem32driversaswMon2.sys [2008-11-26 94032]
R2 DgivEcp;Team MFP Comm Driver; C:WINDOWSSystem32DriversDgivEcp.Sys [2000-10-26 40448]
R2 WF23880;WinFast TV2000/DV2000 WDM Video Capture for ASUS.; C:WINDOWSsystem32driverswf88vcap.sys [2004-09-24 208851]
R2 WF88XBAR;WinFast TV2000/DV2000 WDM Crossbar for ASUS.; C:WINDOWSsystem32driversWF88XBAR.sys [2004-09-24 9284]
R2 WFTUNE;WinFast TV2000/DV2000 WDM Tuner for ASUS.; C:WINDOWSsystem32driversWF88TUNE.sys [2004-09-24 34101]
R3 {6080A529-897E-4629-A488-ABA0C29B635E};Intel(R) Graphics Platform (SoftBIOS) Driver; C:WINDOWSsystem32driversialmsbw.sys [2003-07-22 120062]
R3 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91};Intel(R) Graphics Chipset (KCH) Driver; C:WINDOWSsystem32driversialmkchw.sys [2003-07-22 96858]
R3 aeaudio;aeaudio; C:WINDOWSsystem32driversaeaudio.sys [2002-04-01 4816]
R3 aswRdr;aswRdr; C:WINDOWSsystem32driversaswRdr.sys [2008-11-26 23152]
R3 hidusb;Драйвер класса HID Microsoft; C:WINDOWSsystem32DRIVERShidusb.sys [2004-08-18 9600]
R3 ialm;ialm; C:WINDOWSsystem32DRIVERSialmnt5.sys [2003-07-22 91419]
R3 mouhid;Драйвер мыши HID; C:WINDOWSsystem32DRIVERSmouhid.sys [2001-10-19 12160]
R3 rtl8139;Realtek RTL8139/810x Family Fast Ethernet NIC NT Driver; C:WINDOWSsystem32DRIVERSR8139n51.SYS [2003-07-31 46976]
R3 smwdm;smwdm; C:WINDOWSsystem32driverssmwdm.sys [2003-08-29 578304]
R3 usbccgp;Драйвер универсального родительского устройства USB (Microsoft); C:WINDOWSsystem32DRIVERSusbccgp.sys [2004-08-03 31616]
R3 usbehci;Драйвер минипорта Microsoft USB 2.0 расширенного хост-контроллера; C:WINDOWSsystem32DRIVERSusbehci.sys [2004-08-18 26624]
R3 usbhub;USB2 концентратор; C:WINDOWSsystem32DRIVERSusbhub.sys [2004-08-03 57600]
R3 usbstor;Драйвер запоминающих устройств для USB; C:WINDOWSsystem32DRIVERSUSBSTOR.SYS [2004-08-18 26496]
R3 usbuhci;Драйвер минипорта Microsoft USB универсального хост-контроллера; C:WINDOWSsystem32DRIVERSusbuhci.sys [2004-08-03 20480]
S3 CCDECODE;Closed Caption декодер; C:WINDOWSsystem32DRIVERSCCDECODE.sys [2004-08-03 17024]
S3 MSTEE;Преобразователь потоков Tee/Sink-to-Sink Microsoft; C:WINDOWSsystem32driversMSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI кодек; C:WINDOWSsystem32DRIVERSNABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Microsoft видео или ТВ подключение; C:WINDOWSsystem32DRIVERSNdisIP.sys [2004-08-03 10880]
S3 SLIP;BDA Slip De-Framer; C:WINDOWSsystem32DRIVERSSLIP.sys [2004-08-03 11136]
S3 streamip;BDA IPSink; C:WINDOWSsystem32DRIVERSStreamIP.sys [2004-08-03 15360]
S3 usbaudio;Аудио драйвер USB (WDM); C:WINDOWSsystem32driversusbaudio.sys [2004-08-03 59264]
S3 usbprint;Класс принтеров Microsoft USB; C:WINDOWSsystem32DRIVERSusbprint.sys [2004-08-03 25856]
S3 usbscan;Драйвер USB-сканера; C:WINDOWSsystem32DRIVERSusbscan.sys [2004-08-03 15104]
S3 WSTCODEC;World Standard Teletext кодек; C:WINDOWSsystem32DRIVERSWSTCODEC.SYS [2004-08-03 19328]======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe [2008-11-26 18752]
R2 avast! Antivirus;avast! Antivirus; C:Program FilesAlwil SoftwareAvast4ashServ.exe [2008-11-26 155160]
R2 MDM;Machine Debug Manager; C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE [2003-06-19 322120]
R2 NOD32krn;NOD32 Kernel Service; C:Program FilesEsetnod32krn.exe [2009-01-24 552064]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:Program FilesAnalog DevicesSoundMAXSMAgent.exe [2002-09-20 45056]
R2 UFDSVC;UFD Command Service; C:WINDOWSsystem32ufdsvc.exe [2006-02-15 69632]
R3 avast! Mail Scanner;avast! Mail Scanner; C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe [2008-11-26 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:Program FilesAlwil SoftwareAvast4ashWebSv.exe [2008-11-26 352920]
S2 PTsup5;PsViatau; C:Program FilesTrident SoftwarePragmaptsup5.exe [2007-09-21 73728]
S3 Adobe LM Service;Adobe LM Service; C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe [2007-07-20 69632]
S3 gusvc;Google Updater Service; C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe [2009-01-09 137200]
S3 ose;Office Source Engine; C:Program FilesCommon FilesMicrosoft SharedSource EngineOSE.EXE [2003-07-28 89136]
EOF
Пожалуйста, посмотрите на результат после проведенных операций по Вашим рекомендациям.
========== PROCESSES ==========
Process explorer.exe killed successfully.
Unable to kill process: :reg
Unable to kill process: [-HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{916BAA20-3D33-4B93-A2DF-4AFCD0637BF8}]
Unable to kill process: [HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
Unable to kill process: «MsServer»=-
Unable to kill process: [-HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{3824e1eb-a4da-11dd-9c88-0011d8b763a8}]
Unable to kill process: [-HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{7339106e-7595-11dc-9ba9-0011d8b763a8}]
Unable to kill process: [-HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{8bb10b18-ae36-11dc-9be8-0011d8b763a8}]
Unable to kill process: :files
Unable to kill process: c:RECYCLERS-1-5-21-1482476501-1644491937-682003330-1013
Unable to kill process: c:msfir80.exe
Unable to kill process: C:Documents and SettingsAll Users.WINDOWSApplication Dataxuplib.dll
Unable to kill process: :Commands
Unable to kill process: [emptytemp]
Unable to kill process: [start explorer]
Unable to kill process: [Reboot]OTMoveIt3 by OldTimer — Version 1.0.8.0 log created on 01282009_205943
Logfile of random’s system information tool 1.05 (written by random/random)
Run by 1 at 2009-01-28 20:55:39
Microsoft Windows XP Home Edition Service Pack 2
System drive C: has 66 GB (70%) free of 95 GB
Total RAM: 503 MB (24% free)Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:55:48, on 28.01.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: NormalRunning processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
C:Program FilesAlwil SoftwareAvast4ashServ.exe
C:WINDOWSExplorer.EXE
C:WINDOWSSYSTEM32AControl.exe
C:WINDOWSsystem32igfxtray.exe
C:WINDOWSsystem32hkcmd.exe
C:Program FilesAnalog DevicesSoundMAXSMTray.exe
C:Program FilesSamsungSmarThruPORTCTRL.EXE
C:Program FilesCommon FilesInterVideoSchSvrSchSvr.exe
C:Program FilesInterVideoCommonBinWinCinemaMgr.exe
C:Program FilesTrident SoftwarePragmapragma.exe
C:Program FilesQuickTimeqttask.exe
C:Program FilesEsetnod32kui.exe
C:PROGRA~1ALWILS~1Avast4ashDisp.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe
C:Program FilesGoogleGoogle Talkgoogletalk.exe
C:Program FilesMySpaceIMMySpaceIM.exe
C:Program FilesSamsungSmarThruQS.exe
C:WINDOWSsystem32spoolsv.exe
C:PROGRA~1SamsungSmarThruSS.EXE
C:PROGRA~1SamsungSmarThruAGENT32.EXE
C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE
C:Program FilesEsetnod32krn.exe
C:Program FilesAnalog DevicesSoundMAXSMAgent.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32ufdsvc.exe
C:WINDOWSSYSTEM32AFPDSet.exe
C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe
C:Program FilesAlwil SoftwareAvast4ashWebSv.exe
C:Program FilesMySpaceIMMySpaceIM.exe
C:WINDOWSsystem32wuauclt.exe
C:WINDOWSsystem32wuauclt.exe
C:Program FilesMozilla Firefox 3.1 Beta 1firefox.exe
C:Documents and Settings1Рабочий столRSIT.exe
C:Program Filestrend micro1.exeR0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.mail.ru/
R0 — HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Ссылки
O2 — BHO: AcroIEHlprObj Class — {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} — C:Program FilesAdobeAcrobat 6.0 CEReaderActiveXAcroIEHelper.dll
O2 — BHO: xuplibP — {916BAA20-3D33-4B93-A2DF-4AFCD0637BF8} — C:Documents and SettingsAll Users.WINDOWSApplication Dataxuplib.dll (file missing)
O2 — BHO: Google Toolbar Helper — {AA58ED58-01DD-4d91-8333-CF10577473F7} — C:Program FilesGoogleGoogle ToolbarGoogleToolbar.dll
O2 — BHO: Google Toolbar Notifier BHO — {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} — C:Program FilesGoogleGoogleToolbarNotifier5.0.926.3450swg.dll
O2 — BHO: Google Dictionary Compression sdch — {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} — C:Program FilesGoogleGoogle ToolbarComponentfastsearch_219B3E1547538286.dll
O2 — BHO: EpsonToolBandKicker Class — {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll
O3 — Toolbar: EPSON Web-To-Page — {EE5D279F-081B-4404-994D-C6B60AAEBA6D} — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll
O3 — Toolbar: &Google Toolbar — {2318C2B1-4965-11d4-9B18-009027A5CD4F} — C:Program FilesGoogleGoogle ToolbarGoogleToolbar.dll
O4 — HKLM..Run: [AControl] C:WINDOWSSYSTEM32AControl.exe
O4 — HKLM..Run: [IgfxTray] C:WINDOWSsystem32igfxtray.exe
O4 — HKLM..Run: [HotKeysCmds] C:WINDOWSsystem32hkcmd.exe
O4 — HKLM..Run: [Smapp] C:Program FilesAnalog DevicesSoundMAXSMTray.exe
O4 — HKLM..Run: [GW Port Controller] C:Program FilesSamsungSmarThruPORTCTRL.EXE
O4 — HKLM..Run: [Home Theater SchSvr] «C:Program FilesCommon FilesInterVideoSchSvrSchSvr.exe»
O4 — HKLM..Run: [WINCINEMAMGR] «C:Program FilesInterVideoCommonBinWinCinemaMgr.exe»
O4 — HKLM..Run: [NeroFilterCheck] C:WINDOWSsystem32NeroCheck.exe
O4 — HKLM..Run: [RegClean] «C:Program FilesRegCleanRegClean.exe» -boot
O4 — HKLM..Run: [Pragma5] C:Program FilesTrident SoftwarePragmapragma.exe
O4 — HKLM..Run: [QuickTime Task] «C:Program FilesQuickTimeqttask.exe» -atboottime
O4 — HKLM..Run: [nod32kui] «C:Program FilesEsetnod32kui.exe» /WAITSERVICE
O4 — HKLM..Run: [avast!] C:PROGRA~1ALWILS~1Avast4ashDisp.exe
O4 — HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe
O4 — HKCU..Run: [swg] C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe
O4 — HKCU..Run: [EPSON Stylus CX8300 Series] C:WINDOWSSystem32spoolDRIVERSW32X863E_FATICEP.EXE /FU «C:WINDOWSTEMPE_SB0.tmp» /EF «HKCU»
O4 — HKCU..Run: [MsServer] msfir80.exe
O4 — HKCU..Run: [googletalk] «C:Program FilesGoogleGoogle Talkgoogletalk.exe» /autostart
O4 — HKCU..Run: [MySpaceIM] C:Program FilesMySpaceIMMySpaceIM.exe
O4 — HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘LOCAL SERVICE’)
O4 — HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘NETWORK SERVICE’)
O4 — HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘SYSTEM’)
O4 — HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘Default user’)
O4 — Global Startup: SmarThru Engine.lnk = C:Program FilesSamsungSmarThruQS.exe
O8 — Extra context menu item: &Экспорт в Microsoft Excel — res://C:PROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000
O9 — Extra button: Справочные материалы — {92780B25-18CC-41C8-B9BE-3C9C571A8263} — C:PROGRA~1MICROS~2OFFICE11REFIEBAR.DLL
O9 — Extra button: Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O9 — Extra ‘Tools’ menuitem: Windows Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O23 — Service: Adobe LM Service — Adobe Systems — C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe
O23 — Service: avast! iAVS4 Control Service (aswUpdSv) — ALWIL Software — C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
O23 — Service: avast! Antivirus — ALWIL Software — C:Program FilesAlwil SoftwareAvast4ashServ.exe
O23 — Service: avast! Mail Scanner — ALWIL Software — C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe
O23 — Service: avast! Web Scanner — ALWIL Software — C:Program FilesAlwil SoftwareAvast4ashWebSv.exe
O23 — Service: Журнал событий (Eventlog) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: Google Updater Service (gusvc) — Google — C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe
O23 — Service: Служба COM записи компакт-дисков IMAPI (ImapiService) — Корпорация Майкрософт — C:WINDOWSsystem32imapi.exe
O23 — Service: NetMeeting Remote Desktop Sharing (mnmsrvc) — Корпорация Майкрософт — C:WINDOWSsystem32mnmsrvc.exe
O23 — Service: NOD32 Kernel Service (NOD32krn) — Eset — C:Program FilesEsetnod32krn.exe
O23 — Service: Plug and Play (PlugPlay) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: PsViatau (PTsup5) — Trident Software — C:Program FilesTrident SoftwarePragmaptsup5.exe
O23 — Service: Диспетчер сеанса справки для удаленного рабочего стола (RDSessMgr) — Корпорация Майкрософт — C:WINDOWSsystem32sessmgr.exe
O23 — Service: Смарт-карты (SCardSvr) — Корпорация Майкрософт — C:WINDOWSSystem32SCardSvr.exe
O23 — Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) — Analog Devices, Inc. — C:Program FilesAnalog DevicesSoundMAXSMAgent.exe
O23 — Service: Журналы и оповещения производительности (SysmonLog) — Корпорация Майкрософт — C:WINDOWSsystem32smlogsvc.exe
O23 — Service: UFD Command Service (UFDSVC) — Generic — C:WINDOWSsystem32ufdsvc.exe
O23 — Service: Теневое копирование тома (VSS) — Корпорация Майкрософт — C:WINDOWSSystem32vssvc.exe
O23 — Service: Адаптер производительности WMI (WmiApSrv) — Корпорация Майкрософт — C:WINDOWSsystem32wbemwmiapsrv.exe—
End of file — 7996 bytes======Scheduled tasks folder======
C:WINDOWStasksRegClean Scheduled Scan.job
======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class — C:Program FilesAdobeAcrobat 6.0 CEReaderActiveXAcroIEHelper.dll [2003-11-03 54248][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{916BAA20-3D33-4B93-A2DF-4AFCD0637BF8}]
WV Data Provider — C:Documents and SettingsAll Users.WINDOWSApplication Dataxuplib.dll [][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper — C:Program FilesGoogleGoogle ToolbarGoogleToolbar.dll [2009-01-09 251504][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO — C:Program FilesGoogleGoogleToolbarNotifier5.0.926.3450swg.dll [2009-01-09 657904][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch — C:Program FilesGoogleGoogle ToolbarComponentfastsearch_219B3E1547538286.dll [2009-01-09 522224][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll [2005-02-21 368640][HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} — EPSON Web-To-Page — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll [2005-02-21 368640]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} — &Google Toolbar — C:Program FilesGoogleGoogle ToolbarGoogleToolbar.dll [2009-01-09 251504][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«AControl»=C:WINDOWSSYSTEM32AControl.exe [2004-11-22 414208]
«IgfxTray»=C:WINDOWSsystem32igfxtray.exe [2003-07-09 155648]
«HotKeysCmds»=C:WINDOWSsystem32hkcmd.exe [2003-07-09 114688]
«Smapp»=C:Program FilesAnalog DevicesSoundMAXSMTray.exe [2003-05-05 143360]
«GW Port Controller»=C:Program FilesSamsungSmarThruPORTCTRL.EXE [2003-05-19 155648]
«Home Theater SchSvr»=C:Program FilesCommon FilesInterVideoSchSvrSchSvr.exe [2004-10-17 106496]
«WINCINEMAMGR»=C:Program FilesInterVideoCommonBinWinCinemaMgr.exe [2004-10-31 192512]
«NeroFilterCheck»=C:WINDOWSsystem32NeroCheck.exe [2001-07-09 155648]
«RegClean»=C:Program FilesRegCleanRegClean.exe [2008-06-09 10077680]
«Pragma5″=C:Program FilesTrident SoftwarePragmapragma.exe [2007-09-26 380928]
«QuickTime Task»=C:Program FilesQuickTimeqttask.exe [2009-01-16 413696]
«nod32kui»=C:Program FilesEsetnod32kui.exe [2009-01-24 949376]
«avast!»=C:PROGRA~1ALWILS~1Avast4ashDisp.exe [2008-11-26 81000][HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
«CTFMON.EXE»=C:WINDOWSsystem32ctfmon.exe [2004-08-18 15360]
«swg»=C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe [2007-10-29 68856]
«EPSON Stylus CX8300 Series»=C:WINDOWSSystem32spoolDRIVERSW32X863E_FATICEP.EXE [2007-04-12 182272]
«MsServer»=msfir80.exe []
«googletalk»=C:Program FilesGoogleGoogle Talkgoogletalk.exe [2007-11-21 3293184]
«MySpaceIM»=C:Program FilesMySpaceIMMySpaceIM.exe [2008-12-12 9555968]C:Documents and SettingsAll Users.WINDOWSГлавное менюПрограммыАвтозагрузка
SmarThru Engine.lnk — C:Program FilesSamsungSmarThruQS.exe[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyigfxcui]
C:WINDOWSsystem32igfxsrvc.dll [2003-07-09 319488][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
«dontdisplaylastusername»=0
«legalnoticecaption»=
«legalnoticetext»=
«shutdownwithoutlogon»=1
«undockwithoutlogon»=1[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«NoDriveTypeAutoRun»=36
«NoDriveAutoRun»=FFFFFFFF[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:Program FilesQIPqip.exe»=»C:Program FilesQIPqip.exe:*:Enabled:Quiet Internet Pager»
«C:WINDOWSsystem32driversetccache05WINClock.exe»=»C:WINDOWSsystem32driversetccache05WINClock.exe:*:Enabled:Internet Relay Chat Client»
«C:Program FilesGoogleGoogle Talkgoogletalk.exe»=»C:Program FilesGoogleGoogle Talkgoogletalk.exe:*:Enabled:Google Talk»
«C:Program FilesMySpaceIMMySpaceIM.exe»=»C:Program FilesMySpaceIMMySpaceIM.exe:*:Enabled:MySpaceIM»[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{7339106e-7595-11dc-9ba9-0011d8b763a8}]
shellAutoRuncommand — J:autorun.exe======List of files/folders created in the last 1 months======
2009-01-28 20:45:35 —-D—- C:_OTMoveIt
2009-01-28 20:42:53 —-RASHD—- C:autorun.inf
2009-01-26 10:57:13 —-D—- C:Program Filestrend micro
2009-01-26 10:57:03 —-D—- C:rsit
2009-01-26 10:31:18 —-D—- C:Documents and Settings1Application DataMozilla
2009-01-26 10:30:52 —-D—- C:Program FilesMozilla Firefox 3.1 Beta 1
2009-01-25 11:23:40 —-A—- C:WINDOWSsystem32MSVCR71.dll
2009-01-25 11:23:40 —-A—- C:WINDOWSsystem32MSVCP71.dll
2009-01-25 11:23:40 —-A—- C:WINDOWSsystem32MFC71.dll
2009-01-25 11:23:40 —-A—- C:WINDOWSsystem32aswBoot.exe
2009-01-25 11:23:35 —-D—- C:Program FilesAlwil Software
2009-01-25 06:47:34 —-A—- C:WINDOWSsystem32MRT.exe
2009-01-24 19:21:00 —-A—- C:WINDOWSsystem32imon.dll
2009-01-24 19:20:19 —-D—- C:Program FilesESET
2009-01-17 12:24:43 —-D—- C:Documents and Settings1Application DataMySpace
2009-01-17 12:24:42 —-D—- C:Program FilesMySpace
2009-01-15 06:28:11 —-HDC—- C:WINDOWS$NtUninstallKB958687$
2009-01-10 12:07:51 —-D—- C:Documents and Settings1Application DataFashionCrazeRus
2008-12-31 16:43:49 —-D—- C:Documents and Settings1Application DataEleFun Games
2008-12-30 23:29:44 —-D—- C:Documents and Settings1Application DataMagus======List of files/folders modified in the last 1 months======
2009-01-28 20:55:27 —-D—- C:WINDOWSTemp
2009-01-28 20:52:11 —-A—- C:WINDOWSufdsvclog.txt
2009-01-28 20:52:05 —-D—- C:WINDOWS
2009-01-28 20:47:11 —-D—- C:WINDOWSPrefetch
2009-01-27 22:54:00 —-A—- C:WINDOWSSchedLgU.Txt
2009-01-27 16:07:10 —-D—- C:WINDOWSsystem32CatRoot2
2009-01-27 11:44:13 —-HD—- C:WINDOWSinf
2009-01-26 10:57:13 —-RD—- C:Program Files
2009-01-26 09:11:24 —-D—- C:WINDOWSHelp
2009-01-26 09:02:28 —-D—- C:WINDOWSsystem32
2009-01-25 12:50:10 —-A—- C:WINDOWSNeroDigital.ini
2009-01-25 12:49:40 —-D—- C:Program FilesSupercow
2009-01-25 12:46:50 —-D—- C:WINDOWSsystem32config
2009-01-25 11:24:06 —-D—- C:WINDOWSsystem32drivers
2009-01-25 06:47:37 —-D—- C:WINDOWSDebug
2009-01-25 02:40:59 —-D—- C:WINDOWSsystem32CatRoot
2009-01-25 02:39:27 —-D—- C:WINDOWSsystem32CatRoot_bak
2009-01-25 00:42:45 —-A—- C:WINDOWSFORM32.INI
2009-01-24 22:31:48 —-D—- C:Program FilesABBYY FineReader 8.0 Professional Edition
2009-01-24 19:46:03 —-D—- C:Documents and Settings1Application DataRegClean
2009-01-24 11:30:14 —-SD—- C:WINDOWSDownloaded Program Files
2009-01-23 11:11:47 —-D—- C:Documents and SettingsAll Users.WINDOWSApplication DataAdobe
2009-01-23 11:11:47 —-D—- C:Documents and Settings1Application DataAdobe
2009-01-22 10:35:41 —-SHD—- C:RECYCLER
2009-01-16 23:07:48 —-A—- C:WINDOWSIE4 Error Log.txt
2009-01-16 11:12:48 —-D—- C:Program FilesQuickTime
2009-01-15 06:28:16 —-A—- C:WINDOWSimsins.BAK
2009-01-15 06:28:13 —-RSHDC—- C:WINDOWSsystem32dllcache
2009-01-15 06:27:42 —-HD—- C:WINDOWS$hf_mig$
2009-01-10 12:06:18 —-D—- C:Program FilesGames.Rambler.ru
2009-01-10 11:54:23 —-D—- C:Documents and SettingsAll Users.WINDOWSApplication DataAlawarWrapper
2009-01-09 10:00:13 —-SHD—- C:WINDOWSInstaller
2009-01-09 10:00:13 —-D—- C:Program FilesGoogle
2009-01-09 09:48:18 —-D—- C:Documents and SettingsAll Users.WINDOWSApplication DataGoogle======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:WINDOWSsystem32driversAavmker4.sys [2008-11-26 26944]
R1 aswSP;avast! Self Protection; C:WINDOWSsystem32driversaswSP.sys [2008-11-26 111184]
R1 aswTdi;avast! Network Shield Support; C:WINDOWSsystem32driversaswTdi.sys [2008-11-26 50864]
R1 intelppm;Драйвер Intel процессора; C:WINDOWSsystem32DRIVERSintelppm.sys [2004-08-18 40448]
R1 kbdhid;Драйвер клавиатуры HID; C:WINDOWSsystem32DRIVERSkbdhid.sys [2004-08-18 14848]
R1 nod32drv;nod32drv; C:WINDOWSsystem32driversnod32drv.sys [2009-01-24 15424]
R1 WS2IFSL;Среда Windows Socket 2.0 поддержки поставщиков не-IFS служб; C:WINDOWSSystem32driversws2ifsl.sys [2004-08-18 12032]
R2 AMON;AMON; C:WINDOWSsystem32driversamon.sys [2009-01-24 512096]
R2 Asusio;Asusio; ??C:WINDOWSSYSTEM32Asusio.sys []
R2 aswFsBlk;aswFsBlk; C:WINDOWSsystem32DRIVERSaswFsBlk.sys [2008-11-26 20560]
R2 aswMon2;avast! Standard Shield Support; C:WINDOWSsystem32driversaswMon2.sys [2008-11-26 94032]
R2 DgivEcp;Team MFP Comm Driver; C:WINDOWSSystem32DriversDgivEcp.Sys [2000-10-26 40448]
R2 WF23880;WinFast TV2000/DV2000 WDM Video Capture for ASUS.; C:WINDOWSsystem32driverswf88vcap.sys [2004-09-24 208851]
R2 WF88XBAR;WinFast TV2000/DV2000 WDM Crossbar for ASUS.; C:WINDOWSsystem32driversWF88XBAR.sys [2004-09-24 9284]
R2 WFTUNE;WinFast TV2000/DV2000 WDM Tuner for ASUS.; C:WINDOWSsystem32driversWF88TUNE.sys [2004-09-24 34101]
R3 {6080A529-897E-4629-A488-ABA0C29B635E};Intel(R) Graphics Platform (SoftBIOS) Driver; C:WINDOWSsystem32driversialmsbw.sys [2003-07-22 120062]
R3 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91};Intel(R) Graphics Chipset (KCH) Driver; C:WINDOWSsystem32driversialmkchw.sys [2003-07-22 96858]
R3 aeaudio;aeaudio; C:WINDOWSsystem32driversaeaudio.sys [2002-04-01 4816]
R3 aswRdr;aswRdr; C:WINDOWSsystem32driversaswRdr.sys [2008-11-26 23152]
R3 hidusb;Драйвер класса HID Microsoft; C:WINDOWSsystem32DRIVERShidusb.sys [2004-08-18 9600]
R3 ialm;ialm; C:WINDOWSsystem32DRIVERSialmnt5.sys [2003-07-22 91419]
R3 mouhid;Драйвер мыши HID; C:WINDOWSsystem32DRIVERSmouhid.sys [2001-10-19 12160]
R3 rtl8139;Realtek RTL8139/810x Family Fast Ethernet NIC NT Driver; C:WINDOWSsystem32DRIVERSR8139n51.SYS [2003-07-31 46976]
R3 smwdm;smwdm; C:WINDOWSsystem32driverssmwdm.sys [2003-08-29 578304]
R3 usbccgp;Драйвер универсального родительского устройства USB (Microsoft); C:WINDOWSsystem32DRIVERSusbccgp.sys [2004-08-03 31616]
R3 usbehci;Драйвер минипорта Microsoft USB 2.0 расширенного хост-контроллера; C:WINDOWSsystem32DRIVERSusbehci.sys [2004-08-18 26624]
R3 usbhub;USB2 концентратор; C:WINDOWSsystem32DRIVERSusbhub.sys [2004-08-03 57600]
R3 usbstor;Драйвер запоминающих устройств для USB; C:WINDOWSsystem32DRIVERSUSBSTOR.SYS [2004-08-18 26496]
R3 usbuhci;Драйвер минипорта Microsoft USB универсального хост-контроллера; C:WINDOWSsystem32DRIVERSusbuhci.sys [2004-08-03 20480]
S3 CCDECODE;Closed Caption декодер; C:WINDOWSsystem32DRIVERSCCDECODE.sys [2004-08-03 17024]
S3 MSTEE;Преобразователь потоков Tee/Sink-to-Sink Microsoft; C:WINDOWSsystem32driversMSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI кодек; C:WINDOWSsystem32DRIVERSNABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Microsoft видео или ТВ подключение; C:WINDOWSsystem32DRIVERSNdisIP.sys [2004-08-03 10880]
S3 SLIP;BDA Slip De-Framer; C:WINDOWSsystem32DRIVERSSLIP.sys [2004-08-03 11136]
S3 streamip;BDA IPSink; C:WINDOWSsystem32DRIVERSStreamIP.sys [2004-08-03 15360]
S3 usbaudio;Аудио драйвер USB (WDM); C:WINDOWSsystem32driversusbaudio.sys [2004-08-03 59264]
S3 usbprint;Класс принтеров Microsoft USB; C:WINDOWSsystem32DRIVERSusbprint.sys [2004-08-03 25856]
S3 usbscan;Драйвер USB-сканера; C:WINDOWSsystem32DRIVERSusbscan.sys [2004-08-03 15104]
S3 WSTCODEC;World Standard Teletext кодек; C:WINDOWSsystem32DRIVERSWSTCODEC.SYS [2004-08-03 19328]======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe [2008-11-26 18752]
R2 avast! Antivirus;avast! Antivirus; C:Program FilesAlwil SoftwareAvast4ashServ.exe [2008-11-26 155160]
R2 MDM;Machine Debug Manager; C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE [2003-06-19 322120]
R2 NOD32krn;NOD32 Kernel Service; C:Program FilesEsetnod32krn.exe [2009-01-24 552064]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:Program FilesAnalog DevicesSoundMAXSMAgent.exe [2002-09-20 45056]
R2 UFDSVC;UFD Command Service; C:WINDOWSsystem32ufdsvc.exe [2006-02-15 69632]
R3 avast! Mail Scanner;avast! Mail Scanner; C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe [2008-11-26 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:Program FilesAlwil SoftwareAvast4ashWebSv.exe [2008-11-26 352920]
S2 PTsup5;PsViatau; C:Program FilesTrident SoftwarePragmaptsup5.exe [2007-09-21 73728]
S3 Adobe LM Service;Adobe LM Service; C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe [2007-07-20 69632]
S3 gusvc;Google Updater Service; C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe [2009-01-09 137200]
S3 ose;Office Source Engine; C:Program FilesCommon FilesMicrosoft SharedSource EngineOSE.EXE [2003-07-28 89136]
EOF
Честно признаться я не знаю, все ли проблемы решены, но новостная лента исчезла,
видимо права поговорка: везет дуракам и профанам.
Вот что выдал RSITLogfile of random’s system information tool 1.05 (written by random/random)
Run by 1 at 2009-01-28 08:30:19
Microsoft Windows XP Home Edition Service Pack 2
System drive C: has 66 GB (70%) free of 95 GB
Total RAM: 503 MB (26% free)Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:30:31, on 28.01.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: NormalRunning processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
C:Program FilesAlwil SoftwareAvast4ashServ.exe
C:WINDOWSExplorer.EXE
C:WINDOWSSYSTEM32AControl.exe
C:WINDOWSsystem32igfxtray.exe
C:WINDOWSsystem32hkcmd.exe
C:Program FilesAnalog DevicesSoundMAXSMTray.exe
C:Program FilesSamsungSmarThruPORTCTRL.EXE
C:Program FilesCommon FilesInterVideoSchSvrSchSvr.exe
C:Program FilesInterVideoCommonBinWinCinemaMgr.exe
C:Program FilesTrident SoftwarePragmapragma.exe
C:Program FilesQuickTimeqttask.exe
C:Program FilesEsetnod32kui.exe
C:PROGRA~1ALWILS~1Avast4ashDisp.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe
C:Program FilesGoogleGoogle Talkgoogletalk.exe
C:Program FilesMySpaceIMMySpaceIM.exe
C:Program FilesSamsungSmarThruQS.exe
C:WINDOWSsystem32spoolsv.exe
C:PROGRA~1SamsungSmarThruSS.EXE
C:PROGRA~1SamsungSmarThruAGENT32.EXE
C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE
C:Program FilesEsetnod32krn.exe
C:Program FilesAnalog DevicesSoundMAXSMAgent.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32ufdsvc.exe
C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe
C:WINDOWSSYSTEM32AFPDSet.exe
C:Program FilesAlwil SoftwareAvast4ashWebSv.exe
C:Program FilesMySpaceIMMySpaceIM.exe
C:WINDOWSsystem32wuauclt.exe
C:Program FilesMozilla Firefox 3.1 Beta 1firefox.exe
C:Documents and Settings1Рабочий столRSIT(2).exe
C:Program Filestrend micro1.exeR0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.mail.ru/
R0 — HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Ссылки
O2 — BHO: AcroIEHlprObj Class — {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} — C:Program FilesAdobeAcrobat 6.0 CEReaderActiveXAcroIEHelper.dll
O2 — BHO: xuplibP — {916BAA20-3D33-4B93-A2DF-4AFCD0637BF8} — C:Documents and SettingsAll Users.WINDOWSApplication Dataxuplib.dll (file missing)
O2 — BHO: Google Toolbar Helper — {AA58ED58-01DD-4d91-8333-CF10577473F7} — C:Program FilesGoogleGoogle ToolbarGoogleToolbar.dll
O2 — BHO: Google Toolbar Notifier BHO — {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} — C:Program FilesGoogleGoogleToolbarNotifier5.0.926.3450swg.dll
O2 — BHO: Google Dictionary Compression sdch — {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} — C:Program FilesGoogleGoogle ToolbarComponentfastsearch_219B3E1547538286.dll
O2 — BHO: EpsonToolBandKicker Class — {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll
O3 — Toolbar: EPSON Web-To-Page — {EE5D279F-081B-4404-994D-C6B60AAEBA6D} — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll
O3 — Toolbar: &Google Toolbar — {2318C2B1-4965-11d4-9B18-009027A5CD4F} — C:Program FilesGoogleGoogle ToolbarGoogleToolbar.dll
O4 — HKLM..Run: [AControl] C:WINDOWSSYSTEM32AControl.exe
O4 — HKLM..Run: [IgfxTray] C:WINDOWSsystem32igfxtray.exe
O4 — HKLM..Run: [HotKeysCmds] C:WINDOWSsystem32hkcmd.exe
O4 — HKLM..Run: [Smapp] C:Program FilesAnalog DevicesSoundMAXSMTray.exe
O4 — HKLM..Run: [GW Port Controller] C:Program FilesSamsungSmarThruPORTCTRL.EXE
O4 — HKLM..Run: [Home Theater SchSvr] «C:Program FilesCommon FilesInterVideoSchSvrSchSvr.exe»
O4 — HKLM..Run: [WINCINEMAMGR] «C:Program FilesInterVideoCommonBinWinCinemaMgr.exe»
O4 — HKLM..Run: [NeroFilterCheck] C:WINDOWSsystem32NeroCheck.exe
O4 — HKLM..Run: [RegClean] «C:Program FilesRegCleanRegClean.exe» -boot
O4 — HKLM..Run: [Pragma5] C:Program FilesTrident SoftwarePragmapragma.exe
O4 — HKLM..Run: [QuickTime Task] «C:Program FilesQuickTimeqttask.exe» -atboottime
O4 — HKLM..Run: [nod32kui] «C:Program FilesEsetnod32kui.exe» /WAITSERVICE
O4 — HKLM..Run: [avast!] C:PROGRA~1ALWILS~1Avast4ashDisp.exe
O4 — HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe
O4 — HKCU..Run: [swg] C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe
O4 — HKCU..Run: [EPSON Stylus CX8300 Series] C:WINDOWSSystem32spoolDRIVERSW32X863E_FATICEP.EXE /FU «C:WINDOWSTEMPE_SB0.tmp» /EF «HKCU»
O4 — HKCU..Run: [MsServer] msfir80.exe
O4 — HKCU..Run: [googletalk] «C:Program FilesGoogleGoogle Talkgoogletalk.exe» /autostart
O4 — HKCU..Run: [MySpaceIM] C:Program FilesMySpaceIMMySpaceIM.exe
O4 — HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘LOCAL SERVICE’)
O4 — HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘NETWORK SERVICE’)
O4 — HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘SYSTEM’)
O4 — HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘Default user’)
O4 — Global Startup: SmarThru Engine.lnk = C:Program FilesSamsungSmarThruQS.exe
O8 — Extra context menu item: &Экспорт в Microsoft Excel — res://C:PROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000
O9 — Extra button: Справочные материалы — {92780B25-18CC-41C8-B9BE-3C9C571A8263} — C:PROGRA~1MICROS~2OFFICE11REFIEBAR.DLL
O9 — Extra button: Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O9 — Extra ‘Tools’ menuitem: Windows Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O23 — Service: Adobe LM Service — Adobe Systems — C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe
O23 — Service: avast! iAVS4 Control Service (aswUpdSv) — ALWIL Software — C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
O23 — Service: avast! Antivirus — ALWIL Software — C:Program FilesAlwil SoftwareAvast4ashServ.exe
O23 — Service: avast! Mail Scanner — ALWIL Software — C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe
O23 — Service: avast! Web Scanner — ALWIL Software — C:Program FilesAlwil SoftwareAvast4ashWebSv.exe
O23 — Service: Журнал событий (Eventlog) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: Google Updater Service (gusvc) — Google — C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe
O23 — Service: Служба COM записи компакт-дисков IMAPI (ImapiService) — Корпорация Майкрософт — C:WINDOWSsystem32imapi.exe
O23 — Service: NetMeeting Remote Desktop Sharing (mnmsrvc) — Корпорация Майкрософт — C:WINDOWSsystem32mnmsrvc.exe
O23 — Service: NOD32 Kernel Service (NOD32krn) — Eset — C:Program FilesEsetnod32krn.exe
O23 — Service: Plug and Play (PlugPlay) — Корпорация Майкрософт — C:WINDOWSsystem32services.exe
O23 — Service: PsViatau (PTsup5) — Trident Software — C:Program FilesTrident SoftwarePragmaptsup5.exe
O23 — Service: Диспетчер сеанса справки для удаленного рабочего стола (RDSessMgr) — Корпорация Майкрософт — C:WINDOWSsystem32sessmgr.exe
O23 — Service: Смарт-карты (SCardSvr) — Корпорация Майкрософт — C:WINDOWSSystem32SCardSvr.exe
O23 — Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) — Analog Devices, Inc. — C:Program FilesAnalog DevicesSoundMAXSMAgent.exe
O23 — Service: Журналы и оповещения производительности (SysmonLog) — Корпорация Майкрософт — C:WINDOWSsystem32smlogsvc.exe
O23 — Service: UFD Command Service (UFDSVC) — Generic — C:WINDOWSsystem32ufdsvc.exe
O23 — Service: Теневое копирование тома (VSS) — Корпорация Майкрософт — C:WINDOWSSystem32vssvc.exe
O23 — Service: Адаптер производительности WMI (WmiApSrv) — Корпорация Майкрософт — C:WINDOWSsystem32wbemwmiapsrv.exe—
End of file — 7965 bytes======Scheduled tasks folder======
C:WINDOWStasksRegClean Scheduled Scan.job
======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class — C:Program FilesAdobeAcrobat 6.0 CEReaderActiveXAcroIEHelper.dll [2003-11-03 54248][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{916BAA20-3D33-4B93-A2DF-4AFCD0637BF8}]
WV Data Provider — C:Documents and SettingsAll Users.WINDOWSApplication Dataxuplib.dll [][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper — C:Program FilesGoogleGoogle ToolbarGoogleToolbar.dll [2009-01-09 251504][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO — C:Program FilesGoogleGoogleToolbarNotifier5.0.926.3450swg.dll [2009-01-09 657904][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch — C:Program FilesGoogleGoogle ToolbarComponentfastsearch_219B3E1547538286.dll [2009-01-09 522224][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll [2005-02-21 368640][HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} — EPSON Web-To-Page — C:Program FilesEPSONEPSON Web-To-PageEPSON Web-To-Page.dll [2005-02-21 368640]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} — &Google Toolbar — C:Program FilesGoogleGoogle ToolbarGoogleToolbar.dll [2009-01-09 251504][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«AControl»=C:WINDOWSSYSTEM32AControl.exe [2004-11-22 414208]
«IgfxTray»=C:WINDOWSsystem32igfxtray.exe [2003-07-09 155648]
«HotKeysCmds»=C:WINDOWSsystem32hkcmd.exe [2003-07-09 114688]
«Smapp»=C:Program FilesAnalog DevicesSoundMAXSMTray.exe [2003-05-05 143360]
«GW Port Controller»=C:Program FilesSamsungSmarThruPORTCTRL.EXE [2003-05-19 155648]
«Home Theater SchSvr»=C:Program FilesCommon FilesInterVideoSchSvrSchSvr.exe [2004-10-17 106496]
«WINCINEMAMGR»=C:Program FilesInterVideoCommonBinWinCinemaMgr.exe [2004-10-31 192512]
«NeroFilterCheck»=C:WINDOWSsystem32NeroCheck.exe [2001-07-09 155648]
«RegClean»=C:Program FilesRegCleanRegClean.exe [2008-06-09 10077680]
«Pragma5″=C:Program FilesTrident SoftwarePragmapragma.exe [2007-09-26 380928]
«QuickTime Task»=C:Program FilesQuickTimeqttask.exe [2009-01-16 413696]
«nod32kui»=C:Program FilesEsetnod32kui.exe [2009-01-24 949376]
«avast!»=C:PROGRA~1ALWILS~1Avast4ashDisp.exe [2008-11-26 81000][HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
«CTFMON.EXE»=C:WINDOWSsystem32ctfmon.exe [2004-08-18 15360]
«swg»=C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe [2007-10-29 68856]
«EPSON Stylus CX8300 Series»=C:WINDOWSSystem32spoolDRIVERSW32X863E_FATICEP.EXE [2007-04-12 182272]
«MsServer»=msfir80.exe []
«googletalk»=C:Program FilesGoogleGoogle Talkgoogletalk.exe [2007-11-21 3293184]
«MySpaceIM»=C:Program FilesMySpaceIMMySpaceIM.exe [2008-12-12 9555968]C:Documents and SettingsAll Users.WINDOWSГлавное менюПрограммыАвтозагрузка
SmarThru Engine.lnk — C:Program FilesSamsungSmarThruQS.exe[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyigfxcui]
C:WINDOWSsystem32igfxsrvc.dll [2003-07-09 319488][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
«dontdisplaylastusername»=0
«legalnoticecaption»=
«legalnoticetext»=
«shutdownwithoutlogon»=1
«undockwithoutlogon»=1[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«NoDriveTypeAutoRun»=145[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:Program FilesQIPqip.exe»=»C:Program FilesQIPqip.exe:*:Enabled:Quiet Internet Pager»
«C:WINDOWSsystem32driversetccache05WINClock.exe»=»C:WINDOWSsystem32driversetccache05WINClock.exe:*:Enabled:Internet Relay Chat Client»
«C:Program FilesGoogleGoogle Talkgoogletalk.exe»=»C:Program FilesGoogleGoogle Talkgoogletalk.exe:*:Enabled:Google Talk»
«C:Program FilesMySpaceIMMySpaceIM.exe»=»C:Program FilesMySpaceIMMySpaceIM.exe:*:Enabled:MySpaceIM»[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{3824e1eb-a4da-11dd-9c88-0011d8b763a8}]
shellAutoRuncommand — J:RECYCLERS-1-5-21-1482476501-1644491937-682003330-1013winhelp.exe
shellopencommand — J:RECYCLERS-1-5-21-1482476501-1644491937-682003330-1013winhelp.exe[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{7339106e-7595-11dc-9ba9-0011d8b763a8}]
shellAutoRuncommand — J:autorun.exe[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{8bb10b18-ae36-11dc-9be8-0011d8b763a8}]
shellAutoRuncommand — K:RECYCLERS-1-5-21-1482476501-1644491937-682003330-1013winhelp.exe
shellopencommand — K:RECYCLERS-1-5-21-1482476501-1644491937-682003330-1013winhelp.exe======List of files/folders created in the last 1 months======
2009-01-26 10:57:13 —-D—- C:Program Filestrend micro
2009-01-26 10:57:03 —-D—- C:rsit
2009-01-26 10:31:18 —-D—- C:Documents and Settings1Application DataMozilla
2009-01-26 10:30:52 —-D—- C:Program FilesMozilla Firefox 3.1 Beta 1
2009-01-25 11:23:40 —-A—- C:WINDOWSsystem32MSVCR71.dll
2009-01-25 11:23:40 —-A—- C:WINDOWSsystem32MSVCP71.dll
2009-01-25 11:23:40 —-A—- C:WINDOWSsystem32MFC71.dll
2009-01-25 11:23:40 —-A—- C:WINDOWSsystem32aswBoot.exe
2009-01-25 11:23:35 —-D—- C:Program FilesAlwil Software
2009-01-25 06:47:34 —-A—- C:WINDOWSsystem32MRT.exe
2009-01-24 19:21:00 —-A—- C:WINDOWSsystem32imon.dll
2009-01-24 19:20:19 —-D—- C:Program FilesESET
2009-01-17 12:24:43 —-D—- C:Documents and Settings1Application DataMySpace
2009-01-17 12:24:42 —-D—- C:Program FilesMySpace
2009-01-15 06:28:11 —-HDC—- C:WINDOWS$NtUninstallKB958687$
2009-01-10 12:07:51 —-D—- C:Documents and Settings1Application DataFashionCrazeRus
2008-12-31 16:43:49 —-D—- C:Documents and Settings1Application DataEleFun Games
2008-12-30 23:29:44 —-D—- C:Documents and Settings1Application DataMagus======List of files/folders modified in the last 1 months======
2009-01-28 08:30:26 —-D—- C:WINDOWSPrefetch
2009-01-28 08:29:49 —-D—- C:WINDOWSTemp
2009-01-28 07:53:52 —-A—- C:WINDOWSufdsvclog.txt
2009-01-28 07:53:47 —-D—- C:WINDOWS
2009-01-27 22:54:00 —-A—- C:WINDOWSSchedLgU.Txt
2009-01-27 16:07:10 —-D—- C:WINDOWSsystem32CatRoot2
2009-01-27 11:44:13 —-HD—- C:WINDOWSinf
2009-01-26 10:57:13 —-RD—- C:Program Files
2009-01-26 09:11:24 —-D—- C:WINDOWSHelp
2009-01-26 09:02:28 —-D—- C:WINDOWSsystem32
2009-01-25 12:50:10 —-A—- C:WINDOWSNeroDigital.ini
2009-01-25 12:49:40 —-D—- C:Program FilesSupercow
2009-01-25 12:46:50 —-D—- C:WINDOWSsystem32config
2009-01-25 11:24:06 —-D—- C:WINDOWSsystem32drivers
2009-01-25 06:47:37 —-D—- C:WINDOWSDebug
2009-01-25 02:40:59 —-D—- C:WINDOWSsystem32CatRoot
2009-01-25 02:39:27 —-D—- C:WINDOWSsystem32CatRoot_bak
2009-01-25 00:42:45 —-A—- C:WINDOWSFORM32.INI
2009-01-24 22:31:48 —-D—- C:Program FilesABBYY FineReader 8.0 Professional Edition
2009-01-24 19:46:03 —-D—- C:Documents and Settings1Application DataRegClean
2009-01-24 11:30:14 —-SD—- C:WINDOWSDownloaded Program Files
2009-01-23 11:11:47 —-D—- C:Documents and SettingsAll Users.WINDOWSApplication DataAdobe
2009-01-23 11:11:47 —-D—- C:Documents and Settings1Application DataAdobe
2009-01-22 10:35:41 —-SHD—- C:RECYCLER
2009-01-16 23:07:48 —-A—- C:WINDOWSIE4 Error Log.txt
2009-01-16 11:12:48 —-D—- C:Program FilesQuickTime
2009-01-15 06:28:16 —-A—- C:WINDOWSimsins.BAK
2009-01-15 06:28:13 —-RSHDC—- C:WINDOWSsystem32dllcache
2009-01-15 06:27:42 —-HD—- C:WINDOWS$hf_mig$
2009-01-10 12:06:18 —-D—- C:Program FilesGames.Rambler.ru
2009-01-10 11:54:23 —-D—- C:Documents and SettingsAll Users.WINDOWSApplication DataAlawarWrapper
2009-01-09 10:00:13 —-SHD—- C:WINDOWSInstaller
2009-01-09 10:00:13 —-D—- C:Program FilesGoogle
2009-01-09 09:48:18 —-D—- C:Documents and SettingsAll Users.WINDOWSApplication DataGoogle======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:WINDOWSsystem32driversAavmker4.sys [2008-11-26 26944]
R1 aswSP;avast! Self Protection; C:WINDOWSsystem32driversaswSP.sys [2008-11-26 111184]
R1 aswTdi;avast! Network Shield Support; C:WINDOWSsystem32driversaswTdi.sys [2008-11-26 50864]
R1 intelppm;Драйвер Intel процессора; C:WINDOWSsystem32DRIVERSintelppm.sys [2004-08-18 40448]
R1 kbdhid;Драйвер клавиатуры HID; C:WINDOWSsystem32DRIVERSkbdhid.sys [2004-08-18 14848]
R1 nod32drv;nod32drv; C:WINDOWSsystem32driversnod32drv.sys [2009-01-24 15424]
R1 WS2IFSL;Среда Windows Socket 2.0 поддержки поставщиков не-IFS служб; C:WINDOWSSystem32driversws2ifsl.sys [2004-08-18 12032]
R2 AMON;AMON; C:WINDOWSsystem32driversamon.sys [2009-01-24 512096]
R2 Asusio;Asusio; ??C:WINDOWSSYSTEM32Asusio.sys []
R2 aswFsBlk;aswFsBlk; C:WINDOWSsystem32DRIVERSaswFsBlk.sys [2008-11-26 20560]
R2 aswMon2;avast! Standard Shield Support; C:WINDOWSsystem32driversaswMon2.sys [2008-11-26 94032]
R2 DgivEcp;Team MFP Comm Driver; C:WINDOWSSystem32DriversDgivEcp.Sys [2000-10-26 40448]
R2 WF23880;WinFast TV2000/DV2000 WDM Video Capture for ASUS.; C:WINDOWSsystem32driverswf88vcap.sys [2004-09-24 208851]
R2 WF88XBAR;WinFast TV2000/DV2000 WDM Crossbar for ASUS.; C:WINDOWSsystem32driversWF88XBAR.sys [2004-09-24 9284]
R2 WFTUNE;WinFast TV2000/DV2000 WDM Tuner for ASUS.; C:WINDOWSsystem32driversWF88TUNE.sys [2004-09-24 34101]
R3 {6080A529-897E-4629-A488-ABA0C29B635E};Intel(R) Graphics Platform (SoftBIOS) Driver; C:WINDOWSsystem32driversialmsbw.sys [2003-07-22 120062]
R3 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91};Intel(R) Graphics Chipset (KCH) Driver; C:WINDOWSsystem32driversialmkchw.sys [2003-07-22 96858]
R3 aeaudio;aeaudio; C:WINDOWSsystem32driversaeaudio.sys [2002-04-01 4816]
R3 aswRdr;aswRdr; C:WINDOWSsystem32driversaswRdr.sys [2008-11-26 23152]
R3 hidusb;Драйвер класса HID Microsoft; C:WINDOWSsystem32DRIVERShidusb.sys [2004-08-18 9600]
R3 ialm;ialm; C:WINDOWSsystem32DRIVERSialmnt5.sys [2003-07-22 91419]
R3 mouhid;Драйвер мыши HID; C:WINDOWSsystem32DRIVERSmouhid.sys [2001-10-19 12160]
R3 rtl8139;Realtek RTL8139/810x Family Fast Ethernet NIC NT Driver; C:WINDOWSsystem32DRIVERSR8139n51.SYS [2003-07-31 46976]
R3 smwdm;smwdm; C:WINDOWSsystem32driverssmwdm.sys [2003-08-29 578304]
R3 usbccgp;Драйвер универсального родительского устройства USB (Microsoft); C:WINDOWSsystem32DRIVERSusbccgp.sys [2004-08-03 31616]
R3 usbehci;Драйвер минипорта Microsoft USB 2.0 расширенного хост-контроллера; C:WINDOWSsystem32DRIVERSusbehci.sys [2004-08-18 26624]
R3 usbhub;USB2 концентратор; C:WINDOWSsystem32DRIVERSusbhub.sys [2004-08-03 57600]
R3 usbstor;Драйвер запоминающих устройств для USB; C:WINDOWSsystem32DRIVERSUSBSTOR.SYS [2004-08-18 26496]
R3 usbuhci;Драйвер минипорта Microsoft USB универсального хост-контроллера; C:WINDOWSsystem32DRIVERSusbuhci.sys [2004-08-03 20480]
S3 CCDECODE;Closed Caption декодер; C:WINDOWSsystem32DRIVERSCCDECODE.sys [2004-08-03 17024]
S3 MSTEE;Преобразователь потоков Tee/Sink-to-Sink Microsoft; C:WINDOWSsystem32driversMSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI кодек; C:WINDOWSsystem32DRIVERSNABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Microsoft видео или ТВ подключение; C:WINDOWSsystem32DRIVERSNdisIP.sys [2004-08-03 10880]
S3 SLIP;BDA Slip De-Framer; C:WINDOWSsystem32DRIVERSSLIP.sys [2004-08-03 11136]
S3 streamip;BDA IPSink; C:WINDOWSsystem32DRIVERSStreamIP.sys [2004-08-03 15360]
S3 usbaudio;Аудио драйвер USB (WDM); C:WINDOWSsystem32driversusbaudio.sys [2004-08-03 59264]
S3 usbprint;Класс принтеров Microsoft USB; C:WINDOWSsystem32DRIVERSusbprint.sys [2004-08-03 25856]
S3 usbscan;Драйвер USB-сканера; C:WINDOWSsystem32DRIVERSusbscan.sys [2004-08-03 15104]
S3 WSTCODEC;World Standard Teletext кодек; C:WINDOWSsystem32DRIVERSWSTCODEC.SYS [2004-08-03 19328]======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe [2008-11-26 18752]
R2 avast! Antivirus;avast! Antivirus; C:Program FilesAlwil SoftwareAvast4ashServ.exe [2008-11-26 155160]
R2 MDM;Machine Debug Manager; C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE [2003-06-19 322120]
R2 NOD32krn;NOD32 Kernel Service; C:Program FilesEsetnod32krn.exe [2009-01-24 552064]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:Program FilesAnalog DevicesSoundMAXSMAgent.exe [2002-09-20 45056]
R2 UFDSVC;UFD Command Service; C:WINDOWSsystem32ufdsvc.exe [2006-02-15 69632]
R3 avast! Mail Scanner;avast! Mail Scanner; C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe [2008-11-26 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:Program FilesAlwil SoftwareAvast4ashWebSv.exe [2008-11-26 352920]
S2 PTsup5;PsViatau; C:Program FilesTrident SoftwarePragmaptsup5.exe [2007-09-21 73728]
S3 Adobe LM Service;Adobe LM Service; C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe [2007-07-20 69632]
S3 gusvc;Google Updater Service; C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe [2009-01-09 137200]
S3 ose;Office Source Engine; C:Program FilesCommon FilesMicrosoft SharedSource EngineOSE.EXE [2003-07-28 89136]
EOF
Вам большое спасибо…все телодвижения с компом я делала согласно вашим советам.
От чайника…большое спасибо профи!!!!!!!!!!Мне кажется я поняла…это админу мэйла стало стыдно…и он все исправил…вообще стоит этому поисковику
серьезней относиться к безопасности…ведь это имидж…Либо вы негласно копаетесь в моем компе…сорри…я уже далеко взрослая…поэтому жизнь научила быть не совсем доверчивой…от вас ответа не получила…а новостная лента исчезла…и это после двух суток моих попыток ее убрать…если вы помогли…то низкий вам поклон…а инфо в моем компе фигня…я просто обычный пользователь…
чмок всех форумчан…дай вам бог удачи… -
АвторСообщения