Созданные ответы форума
-
АвторСообщения
-
И еще с файла log:
Logfile of random’s system information tool 1.06 (written by random/random)
Run by Катя at 2009-05-09 14:44:26
Microsoft Windows XP Professional Service Pack 2
System drive L: has 28 GB (61%) free of 46 GB
Total RAM: 511 MB (41% free)HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{2F364306-AA45-47B5-9F9D-39A8B94E7EF7}]
FGCatchUrl — C:Program FilesFlashGetjccatch.dll [2007-05-16 94308][HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} — Google Toolbar — L:Program FilesGoogleGoogle ToolbarGoogleToolbar.dll [2009-05-09 259696][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«SoundMan»=L:WINDOWSSOUNDMAN.EXE [2003-10-08 57344]
«avgnt»=L:Program FilesAviraAntiVir PersonalEdition Classicavgnt.exe [2007-08-31 249896]
«RecSche»=L:Program FilesTVRRecSche.exe [2003-11-12 466944]
«NeroFilterCheck»=L:WINDOWSsystem32NeroCheck.exe [2001-07-09 155648]
«SSBkgdUpdate»=L:Program FilesCommon FilesScansoft SharedSSBkgdUpdateSSBkgdupdate.exe [2006-09-28 185896]
«OpwareSE4″=L:Program FilesScanSoftOmniPageSE4.0OpwareSE4.exe [2006-10-11 75304]
«FineReader7NewsReaderPro»=L:Program FilesABBYY FineReader 7.0 Professional EditionAbbyyNewsReader.exe [2003-08-05 278528]
«ScanSoft OmniPage SE 4.0-reminder»=L:Program FilesScanSoftOmniPageSE4.0EregEreg.exe [2006-09-26 1410600]
«Flashget»=C:Program FilesFlashGetflashget.exe [2007-05-16 1974345][HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
«CTFMON.EXE»=L:WINDOWSsystem32ctfmon.exe [2004-08-17 15360]
«MSMSGS»=L:Program FilesMessengermsmsgs.exe [2004-08-17 1667584]
«PC Suite Tray»=L:Program FilesNokiaNokia PC Suite 7PCSuite.exe [2008-12-03 1205760]
«swg»=L:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe [2009-03-26 39408]L:Documents and SettingsAll UsersГлавное менюПрограммыАвтозагрузка
Microsoft Office.lnk — L:Program FilesMicrosoft OfficeOffice10OSA.EXE
Монитор виртуального принтера.lnk — L:Program FilesBiPrintBiPrint.exe[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalWdf01000.sys]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkWdf01000.sys]
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
«dontdisplaylastusername»=0
«legalnoticecaption»=
«legalnoticetext»=
«shutdownwithoutlogon»=1
«undockwithoutlogon»=1[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«NoDriveTypeAutoRun»=323
«NoDriveAutoRun»=67108863
«NoDrives»=0[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«HonorAutoRunSetting»=
«NoDriveAutoRun»=
«NoDriveTypeAutoRun»=
«NoDrives»=[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:Program FilesFlashGetflashget.exe»=»C:Program FilesFlashGetflashget.exe:*:Enabled:FlashGet»
«L:Program FilesФарМаdosbox.exe»=»L:Program FilesФарМаdosbox.exe:*:Disabled:dosbox»[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{633dac0f-2847-11de-adfb-e214fc286793}]
shellAutoRuncommand — L:WINDOWSsystem32RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL regsvr.exe
shellOpencommand — M:regsvr.exe[HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionexplorermountpoints2{ae5a511a-300d-11de-ae10-ee25a72b88a7}]
shell1command — M:Recycled.exe
shell2command — M:Recycled.exe
shellAutoRuncommand — L:WINDOWSsystem32RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Recycled.exe======List of files/folders created in the last 1 months======
2009-05-09 14:44:27 —-D—- L:Program Filestrend micro
2009-05-09 14:44:26 —-D—- L:rsit
2009-05-09 13:29:04 —-D—- L:WINDOWStemp
2009-05-09 13:29:03 —-A—- L:ComboFix.txt
2009-05-09 13:22:42 —-A—- L:WINDOWSzip.exe
2009-05-09 13:22:42 —-A—- L:WINDOWSvFind.exe
2009-05-09 13:22:42 —-A—- L:WINDOWSSWXCACLS.exe
2009-05-09 13:22:42 —-A—- L:WINDOWSSWSC.exe
2009-05-09 13:22:42 —-A—- L:WINDOWSSWREG.exe
2009-05-09 13:22:42 —-A—- L:WINDOWSsed.exe
2009-05-09 13:22:42 —-A—- L:WINDOWSNIRCMD.exe
2009-05-09 13:22:42 —-A—- L:WINDOWSgrep.exe
2009-05-09 13:22:28 —-D—- L:WINDOWSERDNT
2009-05-09 13:22:02 —-D—- L:Qoobox
2009-05-06 18:36:39 —-A—- L:Documents and SettingsКатяApplication Databpfeed.dll
2009-05-06 03:26:48 —-D—- L:Program FilesФарМа
2009-05-05 08:58:19 —-A—- L:WINDOWSwinamp.ini
2009-05-04 20:38:36 —-D—- L:Program FilesIntel
2009-04-23 17:55:24 —-D—- L:WINDOWSOPTIONS
2009-04-19 01:08:38 —-HDC—- L:WINDOWS$NtUninstallKB956572$
2009-04-16 19:28:54 —-HDC—- L:WINDOWS$NtUninstallKB961373$
2009-04-16 19:28:37 —-HDC—- L:WINDOWS$NtUninstallKB923561$
2009-04-16 03:00:28 —-HDC—- L:WINDOWS$NtUninstallKB959426$
2009-04-16 03:00:16 —-HDC—- L:WINDOWS$NtUninstallKB952004$
2009-04-16 03:00:01 —-HDC—- L:WINDOWS$NtUninstallKB960803$
2009-04-14 00:55:23 —-A—- L:WINDOWSCSTBox.INI
2009-04-11 23:04:40 —-D—- L:Program FilesAlawar.ru
2009-04-11 23:02:18 —-A—- L:WINDOWSIsUn0419.exe
2009-04-11 22:14:00 —-RHD—- L:Documents and SettingsКатяApplication DataSecuROM
2009-04-11 22:13:58 —-A—- L:WINDOWSsystem32CmdLineExt.dll
2009-04-11 22:13:08 —-A—- L:WINDOWSsystem32xactengine2_5.dll
2009-04-11 22:12:58 —-A—- L:WINDOWSsystem32d3dx9_32.dll
2009-04-11 22:12:44 —-A—- L:WINDOWSsystem32xactengine2_4.dll
2009-04-11 22:12:44 —-A—- L:WINDOWSsystem32x3daudio1_1.dll
2009-04-11 22:12:34 —-A—- L:WINDOWSsystem32xinput1_3.dll
2009-04-11 22:12:24 —-A—- L:WINDOWSsystem32d3dx9_31.dll
2009-04-11 22:12:10 —-A—- L:WINDOWSsystem32xactengine2_3.dll
2009-04-11 22:12:00 —-A—- L:WINDOWSsystem32xinput1_2.dll
2009-04-11 22:11:44 —-A—- L:WINDOWSsystem32xactengine2_2.dll
2009-04-11 22:11:34 —-A—- L:WINDOWSsystem32xinput1_1.dll
2009-04-11 22:11:13 —-A—- L:WINDOWSsystem32xactengine2_1.dll
2009-04-11 22:09:39 —-A—- L:WINDOWSsystem32d3dx9_30.dll
2009-04-11 22:09:19 —-A—- L:WINDOWSsystem32xactengine2_0.dll
2009-04-11 22:09:19 —-A—- L:WINDOWSsystem32x3daudio1_0.dll
2009-04-11 22:09:04 —-A—- L:WINDOWSsystem32d3dx9_29.dll
2009-04-11 22:08:48 —-A—- L:WINDOWSsystem32d3dx9_28.dll
2009-04-11 22:08:32 —-A—- L:WINDOWSsystem32xinput9_1_0.dll
2009-04-11 22:08:16 —-A—- L:WINDOWSsystem32d3dx9_27.dll
2009-04-11 22:08:01 —-A—- L:WINDOWSsystem32d3dx9_26.dll
2009-04-11 22:07:45 —-A—- L:WINDOWSsystem32d3dx9_25.dll
2009-04-11 22:06:22 —-A—- L:WINDOWSsystem32d3dx9_24.dll
2009-04-11 11:54:39 —-D—- L:Documents and SettingsКатяApplication DataPTV Game
2009-04-11 11:36:16 —-D—- L:Documents and SettingsКатяApplication DataAlawar
2009-04-11 11:35:57 —-D—- L:Program FilesAlawar======List of files/folders modified in the last 1 months======
2009-05-09 14:44:27 —-RD—- L:Program Files
2009-05-09 14:41:25 —-D—- L:WINDOWSPrefetch
2009-05-09 14:36:03 —-A—- L:WINDOWSModemLog_Conexant External PnP, V.92,V.90,Voice,Speakerphone.txt
2009-05-09 13:41:01 —-D—- L:Program FilesMozilla Firefox
2009-05-09 13:38:27 —-A—- L:WINDOWSSchedLgU.Txt
2009-05-09 13:29:05 —-D—- L:WINDOWSsystem32
2009-05-09 13:29:04 —-D—- L:WINDOWS
2009-05-09 13:27:44 —-A—- L:WINDOWSsystem.ini
2009-05-09 13:26:32 —-D—- L:WINDOWSsystem32drivers
2009-05-09 13:26:32 —-D—- L:WINDOWSAppPatch
2009-05-09 13:26:28 —-D—- L:Program FilesCommon Files
2009-05-09 13:24:57 —-D—- L:WINDOWSsystem32CatRoot2
2009-05-08 21:58:04 —-A—- L:WINDOWSNeroDigital.ini
2009-05-08 21:52:10 —-A—- L:WINDOWSwin.ini
2009-05-06 00:04:37 —-D—- L:Documents and SettingsКатяApplication DataPC Suite
2009-05-06 00:04:07 —-HD—- L:WINDOWSinf
2009-05-04 22:19:28 —-A—- L:WINDOWSsystem32PerfStringBackup.INI
2009-05-04 22:18:45 —-SHD—- L:WINDOWSInstaller
2009-05-04 22:18:24 —-RSHDC—- L:WINDOWSsystem32dllcache
2009-05-04 20:56:31 —-D—- L:WINDOWSsystem32ReinstallBackups
2009-05-04 20:56:28 —-HD—- L:Program FilesInstallShield Installation Information
2009-04-19 10:35:27 —-D—- L:WINDOWSsystem32wbem
2009-04-19 01:10:42 —-D—- L:WINDOWSsystem32ru-ru
2009-04-19 01:10:41 —-D—- L:Program FilesInternet Explorer
2009-04-19 01:09:07 —-A—- L:WINDOWSimsins.BAK
2009-04-19 01:08:22 —-HD—- L:WINDOWS$hf_mig$
2009-04-15 20:10:11 —-D—- L:Documents and SettingsКатяApplication DataNokia
2009-04-14 20:27:09 —-D—- L:WINDOWSsystem32CatRoot_bak
2009-04-14 20:27:09 —-D—- L:WINDOWSsystem32CatRoot
2009-04-11 22:13:56 —-SD—- L:Documents and SettingsAll UsersApplication DataMicrosoft
2009-04-11 22:11:12 —-RSD—- L:WINDOWSassembly
2009-04-11 22:04:37 —-D—- L:WINDOWSsystem32DirectX======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 avgio;avgio; ??L:Program FilesAviraAntiVir PersonalEdition Classicavgio.sys []
R1 avipbb;avipbb; L:WINDOWSsystem32DRIVERSavipbb.sys [2007-09-07 62016]
R1 intelppm;Драйвер Intel процессора; L:WINDOWSsystem32DRIVERSintelppm.sys [2004-08-17 40448]
R1 PQNTDrv;PQNTDrv; L:WINDOWSsystem32driversPQNTDrv.sys [2002-09-16 4228]
R1 ssmdrv;ssmdrv; L:WINDOWSsystem32DRIVERSssmdrv.sys [2007-03-01 28352]
R3 ALCXSENS;Service for WDM 3D Audio Driver; L:WINDOWSsystem32driversALCXSENS.SYS [2003-10-04 391552]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); L:WINDOWSsystem32driversALCXWDM.SYS [2003-10-09 475788]
R3 avgntflt;avgntflt; ??L:Program FilesAviraAntiVir PersonalEdition Classicavgntflt.sys []
R3 E100B;Intel(R) PRO Network Connection Driver; L:WINDOWSsystem32DRIVERSe100b325.sys [2006-10-31 165760]
R3 HidUsb;Драйвер класса HID Microsoft; L:WINDOWSsystem32DRIVERShidusb.sys [2001-08-17 9600]
R3 LVCap138;TV Card Capture Driver; L:WINDOWSsystem32DRIVERSlvcap138.sys [2003-11-11 299264]
R3 lvtuner;TV Card WDM TV Tuner; L:WINDOWSsystem32DRIVERSlvtuner.sys [2003-11-11 15872]
R3 MODEMCSA;Устройство фильтрации потока Unimodem; L:WINDOWSsystem32driversMODEMCSA.sys [2001-08-17 16128]
R3 mouhid;Драйвер мыши HID; L:WINDOWSsystem32DRIVERSmouhid.sys [2001-10-19 12160]
R3 nv;nv; L:WINDOWSsystem32DRIVERSnv4_mini.sys [2004-08-04 1897408]
R3 usbehci;Драйвер минипорта Microsoft USB 2.0 расширенного хост-контроллера; L:WINDOWSsystem32DRIVERSusbehci.sys [2004-08-03 26624]
R3 usbhub;USB2 концентратор; L:WINDOWSsystem32DRIVERSusbhub.sys [2004-08-03 57600]
R3 usbscan;Драйвер USB-сканера; L:WINDOWSsystem32DRIVERSusbscan.sys [2004-08-03 15104]
R3 usbstor;Драйвер запоминающих устройств для USB; L:WINDOWSsystem32DRIVERSUSBSTOR.SYS [2004-08-03 26496]
R3 usbuhci;Драйвер минипорта Microsoft USB универсального хост-контроллера; L:WINDOWSsystem32DRIVERSusbuhci.sys [2004-08-03 20480]
S3 catchme;catchme; ??L:DOCUME~17655~1LOCALS~1Tempcatchme.sys []
S3 CCDECODE;Closed Caption декодер; L:WINDOWSsystem32DRIVERSCCDECODE.sys [2004-08-04 17024]
S3 MSTEE;Преобразователь потоков Tee/Sink-to-Sink Microsoft; L:WINDOWSsystem32driversMSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI кодек; L:WINDOWSsystem32DRIVERSNABTSFEC.sys [2004-08-04 85376]
S3 NdisIP;Microsoft видео или ТВ подключение; L:WINDOWSsystem32DRIVERSNdisIP.sys [2004-08-04 10880]
S3 nmwcd;Nokia USB Phone Parent; L:WINDOWSsystem32driversccdcmb.sys [2008-09-15 17664]
S3 nmwcdc;Nokia USB Generic; L:WINDOWSsystem32driversccdcmbo.sys [2008-09-15 22016]
S3 pccsmcfd;PCCS Mode Change Filter Driver; L:WINDOWSsystem32DRIVERSpccsmcfd.sys [2008-08-26 18816]
S3 SLIP;BDA Slip De-Framer; L:WINDOWSsystem32DRIVERSSLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; L:WINDOWSsystem32DRIVERSStreamIP.sys [2004-08-04 15360]
S3 upperdev;upperdev; L:WINDOWSsystem32DRIVERSusbser_lowerflt.sys [2008-09-15 8064]
S3 usbprint;Класс принтеров Microsoft USB; L:WINDOWSsystem32DRIVERSusbprint.sys [2004-08-04 25856]
S3 usbser;USB Modem Driver; L:WINDOWSsystem32driversusbser.sys [2004-08-04 25600]
S3 UsbserFilt;UsbserFilt; L:WINDOWSsystem32DRIVERSusbser_lowerfltj.sys [2008-09-15 8064]
S3 Wdf01000;Kernel Mode Driver Frameworks service; L:WINDOWSSystem32Driverswdf01000.sys [2008-03-27 503008]
S3 WSTCODEC;World Standard Teletext кодек; L:WINDOWSsystem32DRIVERSWSTCODEC.SYS [2004-08-04 19328]======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirScheduler;AntiVir PersonalEdition Classic Scheduler; L:Program FilesAviraAntiVir PersonalEdition Classicsched.exe [2007-08-28 63016]
R2 AntiVirService;AntiVir PersonalEdition Classic Guard; L:Program FilesAviraAntiVir PersonalEdition Classicavguard.exe [2007-08-28 210984]
R2 LvHidSvc;Remote HID Service; L:WINDOWSsystem32lvhidsvc.exe [2003-10-31 32256]
R3 ServiceLayer;ServiceLayer; L:Program FilesPC Connectivity SolutionServiceLayer.exe [2008-11-11 620544]
S02000000 OMSCAN;OMSCAN; Sys []
S3 aspnet_state;ASP.NET State Service; L:WINDOWSMicrosoft.NETFrameworkv2.0.50727aspnet_state.exe [2005-09-23 29896]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; L:WINDOWSMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe [2005-09-23 66240]
S3 gusvc;Google Updater Service; L:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe []
EOF
-
АвторСообщения