Созданные ответы форума
- 
		АвторСообщения
- 
		
			
				
Logfile of random’s system information tool 1.06 (written by random/random) 
 Run by Дом at 2009-10-19 12:02:23
 Microsoft® Windows Vista™ Ultimate Service Pack 2
 System drive C: has 21 GB (34%) free of 60 GB
 Total RAM: 2047 MB (66% free)Logfile of Trend Micro HijackThis v2.0.2 
 Scan saved at 12:02:24, on 19.10.2009
 Platform: Windows Vista SP2 (WinNT 6.00.1906)
 MSIE: Internet Explorer v8.00 (8.00.6001.18828)
 Boot mode: NormalRunning processes: 
 C:Windowssystem32taskeng.exe
 C:Windowssystem32Dwm.exe
 C:WindowsExplorer.EXE
 C:Program FilesWindows DefenderMSASCui.exe
 C:WindowsRtHDVCpl.exe
 C:Program FilesAlwil SoftwareAvast4ashDisp.exe
 C:Program FilesNeroNero 7Nero BackItUpNBKeyScan.exe
 C:WindowsSystem32rundll32.exe
 C:Program FilesMail.RuAgentmagent.exe
 C:Program FilesWindows Sidebarsidebar.exe
 C:Program FilesVDOToolTBPANEL.exe
 C:Windowsehomeehtray.exe
 C:Program FilesCommon FilesAheadLibNMBgMonitor.exe
 C:Windowsehomeehmsas.exe
 C:Program FilesCommon FilesAheadLibNMIndexStoreSvr.exe
 C:Windowssystem32wbemunsecapp.exe
 C:Program FilesInternet Exploreriexplore.exe
 C:Program FilesInternet Exploreriexplore.exe
 C:Windowssystem32MacromedFlashFlashUtil10c.exe
 C:Windowssystem32SearchFilterHost.exe
 C:UsersДомDesktopRSIT.exe
 C:Program Filestrend microДом.exeR1 — HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.rambler.ru/ie8 
 R1 — HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://search.qip.ru
 R1 — HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://search.qip.ru/ie
 R1 — HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
 R0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.yandex.ru/?clid=40316
 R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
 R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
 R0 — HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 — HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = http://search.qip.ru/ie
 R0 — HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant =
 R0 — HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
 R1 — HKCUSoftwareMicrosoftInternet ExplorerSearchURL,(Default) = Root: HKCU; Subkey: SoftwareMicrosoftInternet ExplorerSearchUrl; ValueType: string; ValueName: ‘; ValueData: ‘; Flags: createvalueifdoesntexist noerror; Tasks: AddSearchQip
 R1 — HKCUSoftwareMicrosoftInternet ExplorerMain,Window Title = Windows Internet Explorer предоставлен: Rambler
 R0 — HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName =
 R3 — URLSearchHook: QIPBHO Class — {95289393-33EA-4F8D-B952-483415B9C955} — C:UsersсергейAppDataRoamingMicrosoftInternet Explorerqipsearchbar.dll
 R3 — URLSearchHook: Rambler-Ассистент — {468CD8A9-7C25-45FA-969E-3D925C689DC4} — C:Program FilesRambler AssistantramblertoolbarU5950.dll
 R3 — URLSearchHook: Спутник@Mail.Ru — {09900DE8-1DCA-443F-9243-26FF581438AF} — c:program filesmail.rusputnikMailRuSputnik.dll
 R3 — URLSearchHook: (no name) — {83821C2B-32A8-4DD7-B6D4-44309A78E668} — C:Program FilesMail.RuAgentMradllnewmrasearch.dll
 R3 — URLSearchHook: (no name) — {9CB65206-89C4-402c-BA80-02D8C59F9B1D} — (no file)
 R3 — URLSearchHook: (no name) — — (no file)
 O1 — Hosts: ::1 localhost
 O2 — BHO: MultiShop v2.0 — {39AA6D29-4236-4F25-A36A-3410EF5283D9} — C:PROGRA~1PIVIMM~1MULTIS~1.DLL
 O2 — BHO: Smart-Shopper — {4A7C84E2-E95C-43C6-8DD3-03ABCD0EB60E} — C:Program FilesSmart-ShopperBin2.5.1Smrt-Shpr.dll
 O2 — BHO: Search Helper — {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} — C:Program FilesMicrosoftSearch Enhancement PackSearch HelperSEPsearchhelperie.dll
 O2 — BHO: Спутник@Mail.Ru — {8984B388-A5BB-4DF7-B274-77B879E179DB} — c:program filesmail.rusputnikMailRuSputnik.dll
 O2 — BHO: Помощник по входу в Windows Live — {9030D464-4C02-4ABF-8ECC-5164760863C6} — C:Program FilesCommon FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll
 O2 — BHO: QIPBHO — {95289393-33EA-4F8D-B952-483415B9C955} — C:UsersсергейAppDataRoamingMicrosoftInternet Explorerqipsearchbar.dll
 O2 — BHO: Ask Toolbar BHO — {D4027C7F-154A-4066-A1AD-4243D8127440} — C:Program FilesAsk.comGenericAskToolbar.dll
 O2 — BHO: Windows Live Toolbar Helper — {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} — C:Program FilesWindows LiveToolbarwltcore.dll
 O2 — BHO: XBTBPos00 — {FCBCCB87-9224-4B8D-B117-F56D924BEB18} — C:Program FilesPivim Multibarpivim.dll
 O3 — Toolbar: Rambler-Ассистент — {468CD8A9-7C25-45FA-969E-3D925C689DC4} — C:Program FilesRambler AssistantramblertoolbarU5950.dll
 O3 — Toolbar: Яндекс.Бар — {91397D20-1446-11D4-8AF4-0040CA1127B6} — C:Program FilesYandexYandexBarIEyndbar.dll
 O3 — Toolbar: Pivim Multibar — {1BB22D38-A411-4B13-A746-C2A4F4EC7344} — C:Program FilesPivim Multibarpivim.dll
 O3 — Toolbar: Ask && Record Toolbar — {D4027C7F-154A-4066-A1AD-4243D8127440} — C:Program FilesAsk.comGenericAskToolbar.dll
 O3 — Toolbar: &Windows Live Toolbar — {21FA44EF-376D-4D53-9B0F-8A89D3229068} — C:Program FilesWindows LiveToolbarwltcore.dll
 O3 — Toolbar: Спутник@Mail.Ru — {09900DE8-1DCA-443F-9243-26FF581438AF} — c:program filesmail.rusputnikMailRuSputnik.dll
 O4 — HKLM..Run: [Windows Defender] %ProgramFiles%Windows DefenderMSASCui.exe -hide
 O4 — HKLM..Run: [RtHDVCpl] RtHDVCpl.exe
 O4 — HKLM..Run: [avast!] C:PROGRA~1ALWILS~1Avast4ashDisp.exe
 O4 — HKLM..Run: [NeroFilterCheck] C:Program FilesCommon FilesAheadLibNeroCheck.exe
 O4 — HKLM..Run: [NBKeyScan] «C:Program FilesNeroNero 7Nero BackItUpNBKeyScan.exe»
 O4 — HKLM..Run: [Adobe Photo Downloader] «C:Program FilesAdobePhotoshop Album Starter Edition3.0Appsapdproxy.exe»
 O4 — HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:Windowssystem32NvCpl.dll,NvStartup
 O4 — HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:Windowssystem32NvMcTray.dll,NvTaskbarInit
 O4 — HKLM..Run: [MAgent] C:Program FilesMail.RuAgentMAgent.exe -LM
 O4 — HKCU..Run: [Sidebar] C:Program FilesWindows Sidebarsidebar.exe /autoRun
 O4 — HKCU..Run: [TBPanel] C:Program FilesVDOToolTBPanel.exe /A
 O4 — HKCU..Run: [ehTray.exe] C:WindowsehomeehTray.exe
 O4 — HKCU..Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] «C:Program FilesCommon FilesAheadLibNMBgMonitor.exe»
 O4 — HKCU..Run: [EA Core] C:Program FilesElectronic ArtsEADMCore.exe -silent
 O4 — HKUSS-1-5-19..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /detectMem (User ‘LOCAL SERVICE’)
 O4 — HKUSS-1-5-19..Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User ‘LOCAL SERVICE’)
 O4 — HKUSS-1-5-20..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /detectMem (User ‘NETWORK SERVICE’)
 O4 — HKUSS-1-5-18..Run: [Nokia.PCSync] C:Program FilesNokiaNokia PC Suite 6PcSync2.exe /NoDialog (User ‘SYSTEM’)
 O4 — HKUS.DEFAULT..Run: [Nokia.PCSync] C:Program FilesNokiaNokia PC Suite 6PcSync2.exe /NoDialog (User ‘Default user’)
 O8 — Extra context menu item: Добавить в Rambler-Закладки — res://C:Program FilesRambler AssistantramblertoolbarU5950.dll/zakladki.htm
 O8 — Extra context menu item: Найти с помощью Рамблера — res://C:Program FilesRambler AssistantramblertoolbarU5950.dll/search.htm
 O8 — Extra context menu item: Перевести с помощью словарей Рамблера — res://C:Program FilesRambler AssistantramblertoolbarU5950.dll/dic.htm
 O9 — Extra button: Отправка в блог — {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} — C:Program FilesWindows LiveWriterWriterBrowserExtension.dll
 O9 — Extra ‘Tools’ menuitem: &Отправка в блог Windows Live Writer — {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} — C:Program FilesWindows LiveWriterWriterBrowserExtension.dll
 O9 — Extra button: MultiShop v2.0 — {39AA6D29-4236-4F25-A36A-3410EF5283D9} — C:PROGRA~1PIVIMM~1MULTIS~1.DLL
 O9 — Extra ‘Tools’ menuitem: MultiShop v2.0 — {39AA6D29-4236-4F25-A36A-3410EF5283D9} — C:PROGRA~1PIVIMM~1MULTIS~1.DLL
 O9 — Extra button: SmartShopper — Compare product prices — {3CC3D8FE-F0E0-4dd1-A69A-8C56BCC7BEBF} — C:Program FilesSmart-ShopperBin2.5.1Smrt-Shpr.dll
 O9 — Extra button: SmartShopper — Compare travel rates — {3CC3D8FE-F0E0-4dd1-A69A-8C56BCC7BEC0} — C:Program FilesSmart-ShopperBin2.5.1Smrt-Shpr.dll
 O9 — Extra button: Mail.Ru Агент — {7558B7E5-7B26-4201-BEDB-00D5FF534523} — C:Program FilesMail.RuAgentmagent.exe
 O9 — Extra ‘Tools’ menuitem: Mail.Ru Агент — {7558B7E5-7B26-4201-BEDB-00D5FF534523} — C:Program FilesMail.RuAgentmagent.exe
 O13 — Gopher Prefix:
 O16 — DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} — http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
 O16 — DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) — http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
 O17 — HKLMSystemCCSServicesTcpip..{DE3B7B9B-768A-478C-9382-14F767D3FA9A}: NameServer = 85.234.32.35,85.234.33.23
 O20 — AppInit_DLLs: C:Windowssystem32vksaver.dll
 O22 — SharedTaskScheduler: Windows DreamScene — {E31004D1-A431-41B8-826F-E902F9D95C81} — C:WindowsSystem32DreamScene.dll
 O23 — Service: avast! iAVS4 Control Service (aswUpdSv) — ALWIL Software — C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
 O23 — Service: avast! Antivirus — ALWIL Software — C:Program FilesAlwil SoftwareAvast4ashServ.exe
 O23 — Service: avast! Mail Scanner — ALWIL Software — C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe
 O23 — Service: avast! Web Scanner — ALWIL Software — C:Program FilesAlwil SoftwareAvast4ashWebSv.exe
 O23 — Service: @dfsrres.dll,-101 (DFSR) — Корпорация Майкрософт — C:Windowssystem32DFSR.exe
 O23 — Service: InstallDriver Table Manager (IDriverT) — Macrovision Corporation — C:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe
 O23 — Service: NBService — Nero AG — C:Program FilesNeroNero 7Nero BackItUpNBService.exe
 O23 — Service: NMIndexingService — Nero AG — C:Program FilesCommon FilesAheadLibNMIndexingService.exe
 O23 — Service: NVIDIA Display Driver Service (nvsvc) — NVIDIA Corporation — C:Windowssystem32nvvsvc.exe
 O23 — Service: PLFlash DeviceIoControl Service — Prolific Technology Inc. — C:Windowssystem32IoctlSvc.exe— 
 End of file — 10461 bytes======Scheduled tasks folder====== C:WindowstasksUser_Feed_Synchronization-{3400BD12-D287-4914-9EDE-081AA5AF2EF1}.job 
 C:WindowstasksUser_Feed_Synchronization-{AEEB45C7-246E-4B5F-9F85-DB26044028BC}.job======Registry dump====== [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{39AA6D29-4236-4F25-A36A-3410EF5283D9}] 
 MultiShop v2.0 — C:PROGRA~1PIVIMM~1MULTIS~1.DLL [2009-09-08 893440][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{4A7C84E2-E95C-43C6-8DD3-03ABCD0EB60E}] 
 Smart-Shopper — C:Program FilesSmart-ShopperBin2.5.1Smrt-Shpr.dll [2008-10-07 1172952][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}] 
 Search Helper — C:Program FilesMicrosoftSearch Enhancement PackSearch HelperSEPsearchhelperie.dll [2009-05-19 137600][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{8984B388-A5BB-4DF7-B274-77B879E179DB}] 
 MailRuBHO Class — c:program filesmail.rusputnikMailRuSputnik.dll [2009-10-15 826032][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{9030D464-4C02-4ABF-8ECC-5164760863C6}] 
 Помощник по входу в Windows Live — C:Program FilesCommon FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll [2009-01-22 408448][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{95289393-33EA-4F8D-B952-483415B9C955}] 
 QIPBHO Class — C:UsersсергейAppDataRoamingMicrosoftInternet Explorerqipsearchbar.dll [2009-02-12 119808][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{D4027C7F-154A-4066-A1AD-4243D8127440}] 
 Ask && Record Toolbar — C:Program FilesAsk.comGenericAskToolbar.dll [2009-06-04 1144712][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}] 
 Windows Live Toolbar Helper — C:Program FilesWindows LiveToolbarwltcore.dll [2009-02-06 1068904][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{FCBCCB87-9224-4B8D-B117-F56D924BEB18}] 
 XBTBPos00 Class — C:Program FilesPivim Multibarpivim.dll [2009-07-09 2175488][HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar] 
 {468CD8A9-7C25-45FA-969E-3D925C689DC4} — Rambler-Ассистент — C:Program FilesRambler AssistantramblertoolbarU5950.dll [2008-12-09 845296]
 {91397D20-1446-11D4-8AF4-0040CA1127B6} — Яндекс.Бар — C:Program FilesYandexYandexBarIEyndbar.dll [2009-07-24 5586208]
 {1BB22D38-A411-4B13-A746-C2A4F4EC7344} — Pivim Multibar — C:Program FilesPivim Multibarpivim.dll [2009-07-09 2175488]
 {D4027C7F-154A-4066-A1AD-4243D8127440} — Ask && Record Toolbar — C:Program FilesAsk.comGenericAskToolbar.dll [2009-06-04 1144712]
 {21FA44EF-376D-4D53-9B0F-8A89D3229068} — &Windows Live Toolbar — C:Program FilesWindows LiveToolbarwltcore.dll [2009-02-06 1068904]
 {09900DE8-1DCA-443F-9243-26FF581438AF} — Спутник@Mail.Ru — c:program filesmail.rusputnikMailRuSputnik.dll [2009-10-15 826032][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun] 
 «Windows Defender»=C:Program FilesWindows DefenderMSASCui.exe [2008-01-21 1008184]
 «RtHDVCpl»=C:WindowsRtHDVCpl.exe [2007-07-06 4669440]
 «avast!»=C:PROGRA~1ALWILS~1Avast4ashDisp.exe [2009-09-15 81000]
 «NeroFilterCheck»=C:Program FilesCommon FilesAheadLibNeroCheck.exe [2008-05-28 570664]
 «NBKeyScan»=C:Program FilesNeroNero 7Nero BackItUpNBKeyScan.exe [2008-04-08 1647912]
 «Adobe Photo Downloader»=C:Program FilesAdobePhotoshop Album Starter Edition3.0Appsapdproxy.exe []
 «NvCplDaemon»=C:Windowssystem32NvCpl.dll [2009-03-28 13687328]
 «NvMediaCenter»=C:Windowssystem32NvMcTray.dll [2009-03-28 92704]
 «MAgent»=C:Program FilesMail.RuAgentMAgent.exe [2009-10-15 7975608][HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun] 
 «Sidebar»=C:Program FilesWindows Sidebarsidebar.exe [2009-04-11 1233920]
 «TBPanel»=C:Program FilesVDOToolTBPanel.exe [2008-07-03 2157096]
 «ehTray.exe»=C:WindowsehomeehTray.exe [2008-01-21 125952]
 «BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}»=C:Program FilesCommon FilesAheadLibNMBgMonitor.exe [2008-01-22 152872]
 «EA Core»=C:Program FilesElectronic ArtsEADMCore.exe -silent [][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWindows] 
 «AppInit_DLLS»=»C:Windowssystem32vksaver.dll»[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionexplorerSharedTaskScheduler] 
 Windows DreamScene — {E31004D1-A431-41B8-826F-E902F9D95C81} — C:WindowsSystem32DreamScene.dll [2007-07-20 233888][HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkWudfPf] [HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkWudfRd] [HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkWudfSvc] [HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkWudfUsbccidDriver] [HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem] 
 «dontdisplaylastusername»=0
 «legalnoticecaption»=
 «legalnoticetext»=
 «shutdownwithoutlogon»=1
 «undockwithoutlogon»=1
 «EnableUIADesktopToggle»=0[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer] 
 «BindDirectlyToPropertySetStorage»=[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist] [HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist] [HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{eda55e0e-8ccb-11de-821d-806e6f6e6963}] 
 shellAutoRuncommand — E:AutoRunCD.exe======File associations====== .js — edit — C:WindowsSystem32Notepad.exe %1 
 .js — open — C:WindowsSystem32WScript.exe «%1» %*======List of files/folders created in the last 1 months====== 2009-10-16 17:21:59 —-DC—- C:ProgramData{0151C9FC-719D-4459-B1E2-4685CC6E62A8} 
 2009-10-16 16:47:41 —-A—- C:Windowssystem32CmdLineExt.dll
 2009-10-16 16:31:30 —-D—- C:ProgramDataElectronic Arts
 2009-10-16 16:19:47 —-A—- C:WindowsNeroDigital.ini
 2009-10-16 16:18:57 —-A—- C:Windowsntbtlog.txt
 2009-10-16 15:45:04 —-D—- C:Program FilesuTorrent
 2009-10-15 14:56:34 —-D—- C:UsersДомAppDataRoamingMra
 2009-10-15 14:56:10 —-D—- C:Program FilesMail.Ru
 2009-10-14 15:48:52 —-A—- C:Windowssystem32msv1_0.dll
 2009-10-14 15:48:45 —-A—- C:Windowssystem32ntoskrnl.exe
 2009-10-14 15:48:44 —-A—- C:Windowssystem32ntkrnlpa.exe
 2009-10-14 15:48:25 —-A—- C:Windowssystem32mshtml.dll
 2009-10-14 15:48:24 —-A—- C:Windowssystem32ieframe.dll
 2009-10-14 15:48:23 —-A—- C:Windowssystem32wininet.dll
 2009-10-14 15:48:23 —-A—- C:Windowssystem32urlmon.dll
 2009-10-14 15:48:23 —-A—- C:Windowssystem32occache.dll
 2009-10-14 15:48:23 —-A—- C:Windowssystem32msfeeds.dll
 2009-10-14 15:48:23 —-A—- C:Windowssystem32iertutil.dll
 2009-10-14 15:48:23 —-A—- C:Windowssystem32iedkcs32.dll
 2009-10-14 15:48:22 —-A—- C:Windowssystem32msfeedssync.exe
 2009-10-14 15:48:22 —-A—- C:Windowssystem32msfeedsbs.dll
 2009-10-14 15:48:22 —-A—- C:Windowssystem32jsproxy.dll
 2009-10-14 15:48:22 —-A—- C:Windowssystem32ieUnatt.exe
 2009-10-14 15:48:22 —-A—- C:Windowssystem32ieui.dll
 2009-10-14 15:48:22 —-A—- C:Windowssystem32iesysprep.dll
 2009-10-14 15:48:22 —-A—- C:Windowssystem32iesetup.dll
 2009-10-14 15:48:22 —-A—- C:Windowssystem32iernonce.dll
 2009-10-14 15:48:22 —-A—- C:Windowssystem32iepeers.dll
 2009-10-14 15:48:22 —-A—- C:Windowssystem32ie4uinit.exe
 2009-10-14 15:48:03 —-A—- C:Windowssystem32msasn1.dll
 2009-10-14 15:48:02 —-A—- C:Windowssystem32WMSPDMOD.DLL
 2009-10-12 21:34:07 —-D—- C:UsersДомAppDataRoaminguTorrent
 2009-10-11 22:16:55 —-D—- C:OutputFolder
 2009-10-11 22:15:05 —-D—- C:Program FilesUltra Mobile 3GP Video Converter
 2009-10-11 22:15:05 —-A—- C:Windowssystem32AVERM.dll
 2009-10-11 22:15:05 —-A—- C:Windowssystem32AVEQT.dll
 2009-10-08 21:23:14 —-D—- C:Program FilesMicrosoft Silverlight
 2009-10-08 21:23:04 —-DC—- C:Windowssystem32DRVSTORE
 2009-10-08 21:22:34 —-D—- C:Program FilesMicrosoft Sync Framework
 2009-10-08 21:21:47 —-D—- C:Program FilesMicrosoft SQL Server Compact Edition
 2009-10-08 21:20:58 —-D—- C:Program FilesMicrosoft
 2009-10-08 21:20:43 —-D—- C:Program FilesWindows Live SkyDrive
 2009-10-08 21:20:37 —-D—- C:Program FilesWindows Live
 2009-10-08 21:20:23 —-D—- C:WindowsPCHEALTH
 2009-10-08 21:03:31 —-D—- C:Program FilesCommon FilesWindows Live
 2009-10-08 21:02:59 —-A—- C:Windowssystem32DreamScene.dll
 2009-10-08 21:02:56 —-A—- C:Windowssystem32D3DX9_39.dll
 2009-10-08 21:02:39 —-D—- C:Program FilesBitLocker
 2009-10-08 21:02:13 —-A—- C:Windowssystem32SecureKeyBackupCPL.dll
 2009-10-08 21:00:47 —-A—- C:Windowssystem32gpprefcl.dll
 2009-10-08 20:59:46 —-D—- C:Windowssystem32WindowsPowerShell
 2009-10-08 16:26:59 —-A—- C:WindowsApplian FLV Player Uninstall Log.txt
 2009-10-08 16:13:38 —-D—- C:Program FilesAsk.com
 2009-10-08 16:08:55 —-D—- C:Program FilesQIP Infium
 2009-10-06 14:39:17 —-A—- C:Windowssystem32wups2.dll
 2009-10-06 14:39:17 —-A—- C:Windowssystem32wucltux.dll
 2009-10-06 14:39:17 —-A—- C:Windowssystem32wuaueng.dll
 2009-10-06 14:39:17 —-A—- C:Windowssystem32wuauclt.exe
 2009-10-06 14:39:07 —-A—- C:Windowssystem32wups.dll
 2009-10-06 14:39:07 —-A—- C:Windowssystem32wudriver.dll
 2009-10-06 14:39:07 —-A—- C:Windowssystem32wuapi.dll
 2009-10-06 14:39:02 —-A—- C:Windowssystem32wuwebv.dll
 2009-10-06 14:39:02 —-A—- C:Windowssystem32wuapp.exe
 2009-10-03 20:05:28 —-N—- C:Windowssystem32MpSigStub.exe======List of files/folders modified in the last 1 months====== 2009-10-19 12:02:23 —-D—- C:Program Filestrend micro 
 2009-10-19 12:02:21 —-D—- C:WindowsPrefetch
 2009-10-19 12:02:19 —-D—- C:WindowsTemp
 2009-10-19 11:59:58 —-D—- C:WindowsSystem32
 2009-10-19 11:59:58 —-D—- C:Windowsinf
 2009-10-19 11:59:58 —-A—- C:Windowssystem32PerfStringBackup.INI
 2009-10-16 21:45:42 —-SHD—- C:System Volume Information
 2009-10-16 21:15:51 —-SHD—- C:WindowsInstaller
 2009-10-16 21:15:47 —-RD—- C:Program Files
 2009-10-16 21:14:18 —-HD—- C:Program FilesInstallShield Installation Information
 2009-10-16 21:02:55 —-D—- C:Windowssystem32Tasks
 2009-10-16 20:49:07 —-HD—- C:ProgramData
 2009-10-16 16:59:03 —-D—- C:Windowssystem32catroot2
 2009-10-16 16:30:59 —-D—- C:Program FilesCommon FilesInstallShield
 2009-10-16 16:19:47 —-D—- C:Windows
 2009-10-16 15:53:43 —-D—- C:Windowssystem32drivers
 2009-10-16 15:30:00 —-D—- C:WindowsTasks
 2009-10-14 18:21:08 —-D—- C:Windowssystem32WDI
 2009-10-14 16:44:04 —-D—- C:Windowswinsxs
 2009-10-14 16:41:17 —-D—- C:WindowsMicrosoft.NET
 2009-10-14 16:41:10 —-RSD—- C:Windowsassembly
 2009-10-14 16:33:58 —-D—- C:Windowssystem32catroot
 2009-10-14 16:31:50 —-D—- C:Windowsehome
 2009-10-14 16:31:50 —-D—- C:Program FilesWindows Mail
 2009-10-14 16:31:49 —-D—- C:Windowssystem32migration
 2009-10-14 16:31:49 —-D—- C:Program FilesInternet Explorer
 2009-10-11 15:09:51 —-D—- C:UsersДомAppDataRoamingAhead
 2009-10-09 23:04:33 —-D—- C:PerfLogs
 2009-10-09 22:59:09 —-SD—- C:ProgramDataMicrosoft
 2009-10-08 21:57:29 —-D—- C:Windowsrescache
 2009-10-08 21:42:39 —-D—- C:ProgramDataNVIDIA
 2009-10-08 21:39:32 —-D—- C:WindowsWeb
 2009-10-08 21:39:32 —-D—- C:Windowssystem32ru-RU
 2009-10-08 21:39:32 —-D—- C:Windowssystem32en-US
 2009-10-08 21:39:11 —-SD—- C:UsersДомAppDataRoamingMicrosoft
 2009-10-08 21:20:48 —-D—- C:Program FilesCommon Filesmicrosoft shared
 2009-10-08 21:03:31 —-D—- C:Program FilesCommon Files
 2009-10-08 21:02:53 —-D—- C:Program FilesMicrosoft Games
 2009-10-08 21:02:02 —-D—- C:Windowssystem32zh-TW
 2009-10-08 21:02:02 —-D—- C:Windowssystem32zh-CN
 2009-10-08 21:02:02 —-D—- C:Windowssystem32uk-UA
 2009-10-08 21:02:02 —-D—- C:Windowssystem32tr-TR
 2009-10-08 21:02:02 —-D—- C:Windowssystem32th-TH
 2009-10-08 21:02:02 —-D—- C:Windowssystem32sv-SE
 2009-10-08 21:02:02 —-D—- C:Windowssystem32sr-Latn-CS
 2009-10-08 21:02:02 —-D—- C:Windowssystem32sl-SI
 2009-10-08 21:02:02 —-D—- C:Windowssystem32sk-SK
 2009-10-08 21:02:02 —-D—- C:Windowssystem32ro-RO
 2009-10-08 21:02:02 —-D—- C:Windowssystem32pt-PT
 2009-10-08 21:02:02 —-D—- C:Windowssystem32pt-BR
 2009-10-08 21:02:02 —-D—- C:Windowssystem32pl-PL
 2009-10-08 21:02:02 —-D—- C:Windowssystem32nl-NL
 2009-10-08 21:02:02 —-D—- C:Windowssystem32nb-NO
 2009-10-08 21:02:02 —-D—- C:Windowssystem32lv-LV
 2009-10-08 21:02:02 —-D—- C:Windowssystem32lt-LT
 2009-10-08 21:02:02 —-D—- C:Windowssystem32ko-KR
 2009-10-08 21:02:02 —-D—- C:Windowssystem32ja-JP
 2009-10-08 21:02:02 —-D—- C:Windowssystem32it-IT
 2009-10-08 21:02:02 —-D—- C:Windowssystem32hu-HU
 2009-10-08 21:02:02 —-D—- C:Windowssystem32hr-HR
 2009-10-08 21:02:02 —-D—- C:Windowssystem32he-IL
 2009-10-08 21:02:02 —-D—- C:Windowssystem32fr-FR
 2009-10-08 21:02:02 —-D—- C:Windowssystem32fi-FI
 2009-10-08 21:02:02 —-D—- C:Windowssystem32et-EE
 2009-10-08 21:02:02 —-D—- C:Windowssystem32es-ES
 2009-10-08 21:02:02 —-D—- C:Windowssystem32el-GR
 2009-10-08 21:02:02 —-D—- C:Windowssystem32de-DE
 2009-10-08 21:02:02 —-D—- C:Windowssystem32da-DK
 2009-10-08 21:02:02 —-D—- C:Windowssystem32cs-CZ
 2009-10-08 21:02:02 —-D—- C:Windowssystem32bg-BG
 2009-10-08 21:02:02 —-D—- C:Windowssystem32ar-SA
 2009-10-08 21:00:52 —-D—- C:Windowssystem32wbem
 2009-10-08 20:59:25 —-RSD—- C:WindowsMedia
 2009-10-08 17:36:07 —-D—- C:Program FilesAskTBar
 2009-10-08 16:25:46 —-A—- C:Ask & Record Toolbar Setup Log.txt
 2009-10-06 14:39:43 —-D—- C:WindowsPolicyDefinitions
 2009-10-02 22:01:57 —-A—- C:Windowssystem32mrt.exe======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 aswRdr;aswRdr; C:Windowssystem32driversaswRdr.sys [2009-09-15 23152] 
 R1 aswSP;avast! Self Protection; C:Windowssystem32driversaswSP.sys [2009-09-15 114768]
 R1 aswTdi;avast! Network Shield Support; C:Windowssystem32driversaswTdi.sys [2009-09-15 52368]
 R1 CSC;Offline Files Driver; C:Windowssystem32driverscsc.sys [2009-04-11 351744]
 R2 aswFsBlk;aswFsBlk; C:Windowssystem32DRIVERSaswFsBlk.sys [2009-09-15 20560]
 R2 aswMonFlt;aswMonFlt; C:Windowssystem32DRIVERSaswMonFlt.sys [2009-09-15 53328]
 R2 TBPanel;TBPanel; C:Windowssystem32driversTBPanel.sys [2007-03-16 12256]
 R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:Windowssystem32driversRTKVHDA.sys [2007-07-10 1792792]
 R3 nvlddmkm;nvlddmkm; C:Windowssystem32DRIVERSnvlddmkm.sys [2009-03-28 7738816]
 R3 RTL8169;Realtek 8169 NT Driver; C:Windowssystem32DRIVERSRtlh86.sys [2007-06-25 84480]
 R3 WUDFRd;WUDFRd; C:Windowssystem32DRIVERSWUDFRd.sys [2008-01-21 83328]
 S3 Cardex;Cardex; ??C:Windowssystem32driversTBPANEL.SYS [2007-03-16 12256]
 S3 drmkaud;Звуковой дешифратор DRM ядра системы; C:Windowssystem32driversdrmkaud.sys [2008-01-21 5632]
 S3 fssfltr;FssFltr; C:Windowssystem32DRIVERSfssfltr.sys [2009-08-05 54632]
 S3 HdAudAddService;Драйвер функции UAA для службы High Definition Audio (Microsoft), версия 1.1; C:Windowssystem32driversHdAudio.sys [2009-04-11 236544]
 S3 MSKSSRV;Представитель служб потоков Microsoft; C:Windowssystem32driversMSKSSRV.sys [2008-01-21 8192]
 S3 MSPCLOCK;Посредник синхронизации потоков Microsoft; C:Windowssystem32driversMSPCLOCK.sys [2008-01-21 5888]
 S3 MSPQM;Представитель диспетчера качества потоков Microsoft; C:Windowssystem32driversMSPQM.sys [2008-01-21 5504]
 S3 MSTEE;Преобразователь потоков Tee/Sink-to-Sink Microsoft; C:Windowssystem32driversMSTEE.sys [2008-01-21 6016]
 S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:Windowssystem32driversnmwcdnsu.sys []
 S3 nmwcdnsuc;Nokia USB Flashing Generic; C:Windowssystem32driversnmwcdnsuc.sys []
 S3 upperdev;upperdev; C:Windowssystem32DRIVERSusbser_lowerflt.sys []
 S3 WpdUsb;WpdUsb; C:Windowssystem32DRIVERSwpdusb.sys [2008-01-21 39936]
 S4 ErrDev;Microsoft Hardware Error Device Driver; C:Windowssystem32driverserrdev.sys [2009-04-11 6656]
 S4 MegaSR;MegaSR; C:Windowssystem32driversmegasr.sys [2008-01-21 386616]
 S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:Windowssystem32driverswmiacpi.sys [2008-01-21 11264]======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 aswUpdSv;avast! iAVS4 Control Service; C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe [2009-09-15 18752] 
 R2 avast! Antivirus;avast! Antivirus; C:Program FilesAlwil SoftwareAvast4ashServ.exe [2009-09-15 138680]
 R2 CscService;@%systemroot%system32cscsvc.dll,-200; C:WindowsSystem32svchost.exe [2008-01-21 21504]
 R2 nvsvc;NVIDIA Display Driver Service; C:Windowssystem32nvvsvc.exe [2009-03-28 207392]
 R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:Windowssystem32IoctlSvc.exe [2006-12-19 81920]
 R2 SeaPort;SeaPort; C:Program FilesMicrosoftSearch Enhancement PackSeaPortSeaPort.exe [2009-05-19 240512]
 R3 avast! Mail Scanner;avast! Mail Scanner; C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe [2009-09-15 254040]
 R3 avast! Web Scanner;avast! Web Scanner; C:Program FilesAlwil SoftwareAvast4ashWebSv.exe [2009-09-15 352920]
 R3 NMIndexingService;NMIndexingService; C:Program FilesCommon FilesAheadLibNMIndexingService.exe [2008-01-22 275752]
 S3 AppMgmt;@appmgmts.dll,-3250; C:Windowssystem32svchost.exe [2008-01-21 21504]
 S3 Fax;@%systemroot%system32fxsresm.dll,-118; C:Windowssystem32fxssvc.exe [2008-01-21 523776]
 S3 fsssvc;Служба семейной безопасности Windows Live; C:Program FilesWindows LiveFamily Safetyfsssvc.exe [2009-08-05 704864]
 S3 IDriverT;InstallDriver Table Manager; C:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe [2005-04-04 69632]
 S3 NBService;NBService; C:Program FilesNeroNero 7Nero BackItUpNBService.exe [2008-04-08 800040]
 S3 UmRdpService;@%SystemRoot%system32umrdp.dll,-1000; C:WindowsSystem32svchost.exe [2008-01-21 21504]
 S3 wbengine;@%systemroot%system32wbengine.exe,-104; C:Windowssystem32wbengine.exe [2009-04-11 918528]
 EOF
 
- 
		АвторСообщения

 
                        
                         
                        
                         
                        
                         
                        
                         
                        
                        