Лог утилиты random's system information tool 1.09 (автор: random/random) Run by Admin at 2013-08-16 00:57:13 Microsoft Windows XP Professional Service Pack 3 Системный раздел C: размер 72 GB (30%) Свободно 239 GB Total RAM: 3007 MB (56% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 0:57:18, on 16.08.2013 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Sandboxie\SbieSvc.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe C:\Program Files\AVG\AVG2013\avgidsagent.exe C:\Program Files\AVG\AVG2013\avgwdsvc.exe C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Google\Update\GoogleUpdate.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Java\jre7\bin\jqs.exe C:\Program Files\AVG\AVG2013\avgnsx.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe C:\Program Files\Google\Update\1.3.21.153\GoogleCrashHandler.exe C:\Program Files\Acronis\DiskDirector\OSS\reinstall_svc.exe C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe C:\WINDOWS\RTHDCPL.EXE C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\Unlocker\UnlockerAssistant.exe C:\Program Files\VistaDriveIcon\VistaDrv.exe C:\Program Files\uTorrent\uTorrent.exe C:\Documents and Settings\Admin\Application Data\CoSoSys\UFDtoGO\UFDtoGOLaunch.exe C:\Program Files\Sandboxie\SbieCtrl.exe C:\Program Files\Samsung\Samsung PC Studio 7\PcSync2.exe C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe C:\Program Files\LClock\LClock.exe C:\Documents and Settings\Admin\Application Data\CoSoSys\HDDtoGO\HDDtoGOLaunch.exe C:\Program Files\Microsoft ActiveSync\wcescomm.exe C:\Program Files\Adguard\Adguard.exe C:\PROGRA~1\MICROS~4\rapimgr.exe C:\Documents and Settings\Admin\Local Settings\Application Data\Mail.Ru\MailRuUpdater.exe C:\Documents and Settings\Admin\Application Data\desktopy.ru\desktopy.exe C:\Documents and Settings\Admin\Qtrax\Player\Notification.exe C:\Program Files\Samsung\Samsung PC Studio 7\PCSuite.exe C:\Program Files\Yandex\Punto Switcher\punto.exe C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe C:\Program Files\PC Connectivity Solution\ServiceLayer.exe C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe C:\Program Files\Opera\15.0.1147.153\opera.exe C:\Program Files\Opera\15.0.1147.153\opera_crashreporter.exe C:\Program Files\Opera\15.0.1147.153\opera.exe C:\Program Files\Opera\15.0.1147.153\opera.exe C:\Program Files\Opera\15.0.1147.153\opera.exe C:\Program Files\Opera\15.0.1147.153\opera.exe C:\Program Files\Opera\15.0.1147.153\opera.exe C:\Program Files\Microsoft\BingBar\7.2.241.0\SeaPort.exe C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe C:\WINDOWS\explorer.exe C:\Documents and Settings\Admin\Мои документы\IE8-WindowsXP-x86-RUS.exe v:\1f7399479131b16961b4883d1e23a26a\update\iesetup.exe C:\Documents and Settings\Admin\Рабочий стол\avz4\avz4\RSIT (1).exe C:\Program Files\trend micro\Admin.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.glarysoft.com/?src=iehome R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://webalta.ru/search R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://webalta.ru/search R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://webalta.ru/search R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yandex.ru/?win=83&clid=1200402 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://webalta.ru/search R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Ссылки O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll O2 - BHO: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing) O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll O2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: Помощник по входу в Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Html5 geolocation provider - {9BFBA68E-E21B-458E-AE12-FE85E903D2C0} - C:\Documents and Settings\All Users\Application Data\AlterGeo\Update for Html5 geolocation provider\npHtml5loc.dll O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll O2 - BHO: DealPly - {A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} - (no file) O2 - BHO: TBSB05810 - {A7AF277D-1466-4A7B-93AF-B043984A5671} - C:\Program Files\Glarysoft Toolbar\tbcore3.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O2 - BHO: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files\Delta\delta\1.8.22.0\bh\delta.dll O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll O2 - BHO: Визуальные закладки - {D5FEC983-01DB-414a-9456-AF95AC9ED7B5} - C:\Program Files\Yandex\FastDial\fastdial.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll O2 - BHO: WebMoneyAdvisor BHO - {E7D2CB77-6E2D-4C1F-B485-D50506B9FA6B} - C:\Program Files\WebMoney Advisor\2.2.4\wmadvisor.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - V:\NPB Trader\jre\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: Kwyshell MidpX BHO - {EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - C:\Program Files\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O3 - Toolbar: WebMoney Advisor - {405DFEAE-1D2F-4649-BE08-C92313C3E1CE} - C:\Program Files\WebMoney Advisor\2.2.4\wmadvisor.dll O3 - Toolbar: Поиск WebAlta - {fe704bf8-384b-44e1-8cf2-8dbeb3637a8a} - mscoree.dll (file missing) O3 - Toolbar: (no name) - {99079a25-328f-4bd4-be04-00955acaa0a7} - (no file) O3 - Toolbar: (no name) - !{09900DE8-1DCA-443F-9243-26FF581438AF} - (no file) O3 - Toolbar: Glarysoft Toolbar - {32D47EA5-9473-4CAD-805D-9999F15D5AE2} - C:\Program Files\Glarysoft Toolbar\tbcore3.dll O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll O3 - Toolbar: Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files\Delta\delta\1.8.22.0\deltaTlbr.dll O3 - Toolbar: Kwyshell MidpX - {EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - C:\Program Files\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll O3 - Toolbar: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing) O3 - Toolbar: Элементы Яндекса - {91397D20-1446-11D4-8AF4-0040CA1127B6} - C:\Program Files\Yandex\Elements\bartab.dll O4 - HKLM\..\Run: [TrueImageMonitor.exe] "C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe" O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [HFALoader] C:\Program Files\Hamster Soft\Free ZIP Archiver\HamsterArc.exe -loader O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY O4 - HKLM\..\Run: [AlterGeoUpdater] C:\Program Files\AlterGeo\Html5 geolocation provider\html5locsvc.exe O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [Adobe_ID0ENQBO] C:\PROGRA~1\COMMON~1\Adobe\ADOBEV~2\Server\bin\VERSIO~2.EXE O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe" O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe" O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto O4 - HKLM\..\RunOnce: [NoIE4StubProcessing] C:\WINDOWS\system32\reg.exe DELETE "HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components" /v "NoIE4StubProcessing" /f O4 - HKCU\..\Run: [VistaIcon] C:\Program Files\VistaDriveIcon\VistaDrv.exe O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe" /MINIMIZED O4 - HKCU\..\Run: [UFDtoGOLaunch] C:\Documents and Settings\Admin\Application Data\CoSoSys\UFDtoGO\UFDtoGOLaunch.exe O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray O4 - HKCU\..\Run: [LClock] C:\Program Files\LClock\LClock.exe O4 - HKCU\..\Run: [HDDtoGOLaunch] C:\Documents and Settings\Admin\Application Data\CoSoSys\HDDtoGO\HDDtoGOLaunch.exe O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe" O4 - HKCU\..\Run: [Adguard] C:\Program Files\Adguard\Adguard.exe O4 - HKCU\..\Run: [AlterGeoUpdater] C:\Documents and Settings\All Users\Application Data\AlterGeo\Update for Html5 geolocation provider\html5locsvc.exe O4 - HKCU\..\Run: [desktopy] "C:\Documents and Settings\Admin\Application Data\desktopy.ru\desktopy.exe" is_autoruned O4 - HKCU\..\Run: [Xvid] C:\Program Files\Xvid\CheckUpdate.exe O4 - HKCU\..\Run: [QtraxNotification] C:\Documents and Settings\Admin\Qtrax\Player\Notification.exe O4 - HKCU\..\Run: [Praetorian] C:\Documents and Settings\Admin\Local Settings\Application Data\Yandex\Updater\praetorian.exe O4 - HKCU\..\Run: [KSS] "C:\Program Files\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe" /autorun O4 - HKCU\..\Run: [S60 PC Suite Tray] "C:\Program Files\Samsung\Samsung PC Studio 7\PCSuite.exe" -onlytray O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE') O4 - Startup: Punto Switcher.lnk = C:\Program Files\Yandex\Punto Switcher\punto.exe O4 - Startup: _uninst_33990315.lnk = C:\Documents and Settings\Admin\Local Settings\Temp\_uninst_33990315.bat O8 - Extra context menu item: &Экспорт в Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 O8 - Extra context menu item: Link to &MidpX - C:\Program Files\Kwyshell\MidpX\JadInvoker\Extent\jad_wrap.htm O8 - Extra context menu item: Добавить в Анти-Баннер - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ie_banner_deny.htm O8 - Extra context menu item: Добавить к существующему PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Добавить содержимое по ссылке в существующий файл PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Преобразовать в Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Преобразовать содержимое по ссылке в PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O9 - Extra button: Виртуальная клавиатура - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra 'Tools' menuitem: Добавить в избранное мобильного устройства... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL O9 - Extra button: Проверка ссылок - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll O9 - Extra button: Показать или скрыть HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\redirect\redirect.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\redirect\redirect.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\redirect\redirect.dll O17 - HKLM\System\CCS\Services\Tcpip\..\{C3B5049D-DF65-40BB-BFD6-6D9C8C46F46D}: NameServer = 10.0.0.5 8.8.8.8 O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - (no file) O22 - SharedTaskScheduler: Предзагрузчик Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Демон кэша категорий компонентов - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe O23 - Service: Adobe Version Cue CS4 - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgidsagent.exe O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgwdsvc.exe O23 - Service: Kaspersky Anti-Virus Service (AVP) - Kaspersky Lab ZAO - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe O23 - Service: Журнал событий (Eventlog) - Корпорация Майкрософт - C:\WINDOWS\system32\services.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Служба Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Служба Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: ICM_UpdaterService Disp (ICM_UpdaterService) - Unknown owner - C:\Program Files\SAMSUNG\Samsung Networking Wizard\ICM_Service.exe O23 - Service: Служба COM записи компакт-дисков IMAPI (ImapiService) - Корпорация Майкрософт - C:\WINDOWS\system32\imapi.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe O23 - Service: Kaspersky Security Scan Service (KSS) - Kaspersky Lab ZAO - C:\Program Files\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.0.318\McCHSvc.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: Активатор Acronis OS Selector (OS Selector) - Unknown owner - C:\Program Files\Acronis\DiskDirector\OSS\reinstall_svc.exe O23 - Service: Plug and Play (PlugPlay) - Корпорация Майкрософт - C:\WINDOWS\system32\services.exe O23 - Service: Диспетчер сеанса справки для удаленного рабочего стола (RDSessMgr) - Корпорация Майкрософт - C:\WINDOWS\system32\sessmgr.exe O23 - Service: Sandboxie Service (SbieSvc) - SANDBOXIE L.T.D - C:\Program Files\Sandboxie\SbieSvc.exe O23 - Service: Смарт-карты (SCardSvr) - Корпорация Майкрософт - C:\WINDOWS\System32\SCardSvr.exe O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: Журналы и оповещения производительности (SysmonLog) - Корпорация Майкрософт - C:\WINDOWS\system32\smlogsvc.exe O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe O23 - Service: Теневое копирование тома (VSS) - Корпорация Майкрософт - C:\WINDOWS\System32\vssvc.exe O23 - Service: Адаптер производительности WMI (WmiApSrv) - Корпорация Майкрософт - C:\WINDOWS\system32\wbem\wmiapsrv.exe -- End of file - 19315 bytes ======Папка назначеных зданий====== C:\WINDOWS\tasks\Adobe Flash Player Updater.job C:\WINDOWS\tasks\AlterGeoUpdaterS-1-5-18.job C:\WINDOWS\tasks\AmiUpdXp.job C:\WINDOWS\tasks\At1.job C:\WINDOWS\tasks\At2.job C:\WINDOWS\tasks\At3.job C:\WINDOWS\tasks\DealPlyUpdate.job C:\WINDOWS\tasks\GlaryInitialize.job.bak C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job C:\WINDOWS\tasks\Lyrmix Update.job =========Mozilla firefox========= ProfilePath - C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\k7wui19f.default prefs.js - "browser.search.useDBForOrder" - false prefs.js - "browser.startup.homepage" - "http://www.yandex.ru/?win=83&clid=1787308" prefs.js - "browser.search.suggest.enabled" - true prefs.js - "keyword.enabled" - true "{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ "smartwebprinting@hp.com"=C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 "{7BA52691-1876-45ce-9EE6-54BCB3B04BBC}"=C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\coFFPlgn\ "url_advisor@kaspersky.com"=C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com "virtual_keyboard@kaspersky.com"=C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com "content_blocker@kaspersky.com"=C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com "anti_banner@kaspersky.com"=C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com "online_banking@kaspersky.com"=C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 11.8.800.94 Plugin "Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer] "Description"=Adobe Shockwave Player "Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw_1202122.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0] "Description"=Picasa3 plugin "Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.25.2] "Description"=Java™ Deployment Toolkit "Path"=C:\WINDOWS\system32\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@mcafee.com/McAfeeMssPlugin] "Description"=McAfee Mss Plugin "Path"=C:\Program Files\McAfee Security Scan\3.0.318\npMcAfeeMss.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416] "Description"=WLPG Install MIME type "Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5] "Description"=Windows Presentation Foundation plug-in for Mozilla browsers "Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nullsoft.com/winampDetector;version=1] "Description"=Winamp Detector "Path"=C:\Program Files\Winamp Detect\npwachk.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Acrobat] "Description"=Handles PDFs in-place in Firefox "Path"=C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Air\nppdf32.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader] "Description"=Handles PDFs in-place in Firefox "Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll C:\Documents and Settings\Admin\Local Settings\Application Data\Yandex\Firefox\Application\extensions\ quickstores@quickstores.de {972ce4c6-7e08-4474-a285-3208198ce6fd} C:\Documents and Settings\Admin\Local Settings\Application Data\Yandex\Firefox\Application\components\ binary.manifest browsercomps.dll nsIQTScriptablePlugin.xpt C:\Documents and Settings\Admin\Local Settings\Application Data\Yandex\Firefox\Application\plugins\ nppdf32.dll npqtplugin.dll npqtplugin2.dll npqtplugin3.dll npqtplugin4.dll npqtplugin5.dll npqtplugin6.dll QuickTimePlugin.class C:\Documents and Settings\Admin\Local Settings\Application Data\Yandex\Firefox\Application\searchplugins\ glarysearch.xml google.xml mailru.xml ozonru.xml Search_Results.xml wikipedia-ru.xml yandex-slovari.xml yandex.xml C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\k7wui19f.default\extensions\ 5006ccf5914c2@5006ccf5914d8.info ffxtlbr@delta.com ffxtlbr@incredibar.com rambler_toolbar@rambler.ru SkipScreen@SkipScreen smarterwiki@wikiatic.com staged {1018e4d6-728f-4b20-ad56-37578a4de76b} {37964A3C-4EE8-47b1-8321-34DE2C39BA4D} {37964A3C-4EE8-47b1-8321-34DE2C39BA4D}(2) {3d7eb24f-2740-49df-8937-200b1cc08f8a} {55C81E27-A6E2-40AB-B96F-D7107755F451} {6AC85730-7D0F-4de0-B3FA-21142DD85326} {71238372-3743-33ab-8a9f-93722af74c97} {77b819fa-95ad-4f2c-ac7c-486b356188a9} {9669CC8F-B388-42FE-86F4-CB5E7F5A8BDC} {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}(2) {B100D0FF-0001-8CE4-2790-AACE49B8AE35} {e4a8a97b-f2ed-450b-b12d-ee082ba24781} {f999a48b-1950-4d81-9971-79018f807b4b} C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles\k7wui19f.default\searchplugins\ babylon.xml BrowserDefender.xml conduit.xml def-yandex.xml MyStart Search.xml rambler.xml search.xml Search_Results.xml webalta-search.xml yandex.ru-171652.xml yandex.ru-223113.xml yqs-vbff-yandex.xml ======Снимок реестра====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}] HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-05-21 328248] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}] MSS+ Identifier - C:\Program Files\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll [2013-02-05 94112] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10EDB994-47F8-43F7-AE96-F2EA63E9F90F}] QuickStores-Toolbar - C:\WINDOWS\system32\mscoree.dll [2009-11-07 297808] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 63912] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}] Content Blocker Plugin - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2013-06-17 651968] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73455575-E40C-433C-9784-C78DC7761455}] Virtual Keyboard Plugin - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2013-06-17 873664] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-07-31 463272] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Помощник по входу в Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9BFBA68E-E21B-458E-AE12-FE85E903D2C0}] AlterGeoBHO Class - C:\Documents and Settings\All Users\Application Data\AlterGeo\Update for Html5 geolocation provider\npHtml5loc.dll [2013-01-28 359936] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E6D0D23-3D72-4A94-AE1F-2D167624E3D9}] Safe Money Plugin - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll [2013-06-17 431808] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}] DealPly [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A7AF277D-1466-4A7B-93AF-B043984A5671}] TBSB05810 Class - C:\Program Files\Glarysoft Toolbar\tbcore3.dll [2012-07-31 2669408] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}] Adobe PDF Conversion Toolbar Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2012-07-30 349680] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}] delta Helper Object - C:\Program Files\Delta\delta\1.8.22.0\bh\delta.dll [2013-07-23 311536] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}] Bing Bar Helper - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll [2013-07-23 1451680] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D5FEC983-01DB-414a-9456-AF95AC9ED7B5}] Визуальные закладки - C:\Program Files\Yandex\FastDial\fastdial.dll [2013-03-22 1311520] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-07-31 171944] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}] URL Advisor Plugin - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll [2013-06-17 781504] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7D2CB77-6E2D-4C1F-B485-D50506B9FA6B}] WebMoneyAdvisorBHO - C:\Program Files\WebMoney Advisor\2.2.4\wmadvisor.dll [2011-07-20 288224] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}] JQSIEStartDetectorImpl Class - V:\NPB Trader\jre\lib\deploy\jqs\ie\jqs_plugin.dll [2012-10-29 79856] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EBE9E2B5-B526-48BC-AD46-687263EDCB0E}] Kwyshell MidpX - C:\Program Files\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll [2004-12-03 100864] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}] SmartSelect Class - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2012-07-30 349680] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}] HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-05-21 509496] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2012-07-30 349680] {405DFEAE-1D2F-4649-BE08-C92313C3E1CE} - WebMoney Advisor - C:\Program Files\WebMoney Advisor\2.2.4\wmadvisor.dll [2011-07-20 288224] {fe704bf8-384b-44e1-8cf2-8dbeb3637a8a} - Поиск WebAlta - C:\WINDOWS\system32\mscoree.dll [2009-11-07 297808] {99079a25-328f-4bd4-be04-00955acaa0a7} !{09900DE8-1DCA-443F-9243-26FF581438AF} {32D47EA5-9473-4CAD-805D-9999F15D5AE2} - Glarysoft Toolbar - C:\Program Files\Glarysoft Toolbar\tbcore3.dll [2012-07-31 2669408] {8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll [2013-07-23 1451680] {82E1477C-B154-48D3-9891-33D83C26BCD3} - Delta Toolbar - C:\Program Files\Delta\delta\1.8.22.0\deltaTlbr.dll [2013-07-23 300952] {EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - Kwyshell MidpX - C:\Program Files\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll [2004-12-03 100864] {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - QuickStores-Toolbar - C:\WINDOWS\system32\mscoree.dll [2009-11-07 297808] {91397D20-1446-11D4-8AF4-0040CA1127B6} - Элементы Яндекса - C:\Program Files\Yandex\Elements\bartab.dll [2013-07-11 3094368] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "TrueImageMonitor.exe"=C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe [2011-06-06 2637520] "RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-10-28 17331200] "HFALoader"=C:\Program Files\Hamster Soft\Free ZIP Archiver\HamsterArc.exe [2012-03-06 2260480] "AVG_UI"=C:\Program Files\AVG\AVG2013\avgui.exe [2013-07-01 4411440] "AlterGeoUpdater"=C:\Program Files\AlterGeo\Html5 geolocation provider\html5locsvc.exe [2012-02-06 27680] "Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2008-06-19 57344] "Adobe_ID0ENQBO"=C:\PROGRA~1\COMMON~1\Adobe\ADOBEV~2\Server\bin\VERSIO~2.EXE [2008-08-15 378224] "AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712] "Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-05 958576] "Acronis Scheduler2 Service"=C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe [2011-06-06 395192] "Acrobat Assistant 8.0"=C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [2012-07-30 640480] "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816] "UnlockerAssistant"=C:\Program Files\Unlocker\UnlockerAssistant.exe [2010-07-05 17408] "MSConfig"=C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe [2009-12-26 196608] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce] "NoIE4StubProcessing"=C:\WINDOWS\system32\reg.exe [2008-04-15 54784] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "VistaIcon"=C:\Program Files\VistaDriveIcon\VistaDrv.exe [2008-01-02 132096] "uTorrent"=C:\Program Files\uTorrent\uTorrent.exe [2013-05-02 802136] "UFDtoGOLaunch"=C:\Documents and Settings\Admin\Application Data\CoSoSys\UFDtoGO\UFDtoGOLaunch.exe [2010-04-30 176128] "PC Suite Tray"=C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe [2009-11-11 1451520] "LClock"=C:\Program Files\LClock\LClock.exe [2007-12-14 86016] "HDDtoGOLaunch"=C:\Documents and Settings\Admin\Application Data\CoSoSys\HDDtoGO\HDDtoGOLaunch.exe [2012-03-01 176128] "H/PC Connection Agent"=C:\Program Files\Microsoft ActiveSync\wcescomm.exe [2006-11-13 1289000] "Adguard"=C:\Program Files\Adguard\Adguard.exe [2012-12-19 1636488] "AlterGeoUpdater"=C:\Documents and Settings\All Users\Application Data\AlterGeo\Update for Html5 geolocation provider\html5locsvc.exe [2013-01-28 29696] "desktopy"=C:\Documents and Settings\Admin\Application Data\desktopy.ru\desktopy.exe [2013-07-07 798720] "Xvid"=C:\Program Files\Xvid\CheckUpdate.exe [2011-01-18 8192] "QtraxNotification"=C:\Documents and Settings\Admin\Qtrax\Player\Notification.exe [2013-08-03 118568] "Praetorian"=C:\Documents and Settings\Admin\Local Settings\Application Data\Yandex\Updater\praetorian.exe [2012-11-14 1618304] "KSS"=C:\Program Files\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe [2012-12-07 202328] "S60 PC Suite Tray"=C:\Program Files\Samsung\Samsung PC Studio 7\PCSuite.exe [2008-12-06 699392] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GameCenterMailRu] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MailRuUpdater] C:\Documents and Settings\Admin\Local Settings\Application Data\Mail.Ru\MailRuUpdater.exe [2013-06-23 1608736] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PicPick Start] C:\Program Files\PicPick\picpick.exe [2011-12-16 10858496] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Samsung.PCSync] C:\Program Files\Samsung\Samsung PC Studio 7\PcSync2.exe [2009-06-04 1294336] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SandboxieControl] C:\Program Files\Sandboxie\SbieCtrl.exe [2012-12-16 545552] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoftickPPP] C:\Program Files\Softick\PPP\Bin\PPPGate.exe [2009-06-10 1043968] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SyncManPath] C:\Program Files\Yandex\YandexDisk\bin\YandexDisk.exe [2013-06-11 12572448] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Taskhost] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TurboGamesClient] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\USB Antivirus] C:\Program Files\USB Disk Security\USBGuard.exe [2009-12-19 819200] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VkontakteDJ] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent] C:\Program Files\Winamp\winampa.exe [2013-07-24 84576] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\wmagent.exe] C:\Program Files\WebMoney Agent\wmagent.exe [2009-10-19 210400] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Admin^Главное меню^Программы^Автозагрузка^FastStone Capture.lnk] C:\PROGRA~1\FSCAPT~1\FSCAPT~1.EXE [2009-07-11 985600] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Главное меню^Программы^Автозагрузка^HP Digital Imaging Monitor.lnk] C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe [2009-05-21 275768] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Главное меню^Программы^Автозагрузка^intro.exe] [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Главное меню^Программы^Автозагрузка^McAfee Security Scan Plus.lnk] C:\PROGRA~1\MCAFEE~1\309042~1.318\SSSCHE~1.EXE [2013-02-05 272248] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services] "Adobe LM Service"=3 "MSDTC"=3 "StarWindServiceAE"=2 C:\Documents and Settings\Admin\Главное меню\Программы\Автозагрузка Punto Switcher.lnk - C:\Program Files\Yandex\Punto Switcher\punto.exe _uninst_33990315.lnk - C:\Documents and Settings\Admin\Local Settings\Temp\_uninst_33990315.bat [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon] C:\WINDOWS\system32\klogon.dll [2013-06-17 200384] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2008-05-18 133632] UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-15 239616] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SymEFA.sys] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoSimpleNetIDList"=1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"=1 "NoDriveTypeAutoRun"=28 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Disabled:ActiveSync Application" "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Disabled:ActiveSync Connection Manager" "C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Disabled:ActiveSync RAPI Manager" "C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019" "C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe" "C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqcopy2.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqcopy2.exe:*:Enabled:hpqcopy2.exe" "C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe" "C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe" "C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe" "C:\Program Files\Common Files\HP\Digital Imaging\Bin\hpqPhotoCrm.exe"="C:\Program Files\Common Files\HP\Digital Imaging\Bin\hpqPhotoCrm.exe:*:Enabled:hpqphotocrm.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe:*:Enabled:hpqgpc01.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe:*:Enabled:hpqusgm.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe:*:Enabled:hpqusgh.exe" "C:\Program Files\HP\HP Software Update\HPWUCli.exe"="C:\Program Files\HP\HP Software Update\HPWUCli.exe:*:Enabled:hpwucli.exe" "C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe"="C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe:*:Enabled:smartwebprintexe.exe" "C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent" "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe"="C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe:*:Enabled:Adobe CSI CS4" "C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe"="C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe:*:Enabled:Adobe Version Cue CS4 Server" "C:\Program Files\thinkorswim\jre\bin\java.exe"="C:\Program Files\thinkorswim\jre\bin\java.exe:*:Enabled:Java(TM) Platform SE binary" "C:\Program Files\thinkorswim\thinkorswim.exe"="C:\Program Files\thinkorswim\thinkorswim.exe:*:Enabled:thinkorswim desktop application" "C:\Program Files\Shareman\Shareman.exe"="C:\Program Files\Shareman\Shareman.exe:*:Enabled:Shareman" "C:\WINDOWS\explorer.exe"="C:\WINDOWS\explorer.exe:*:Enabled:Проводник" "C:\Program Files\AVG\AVG2013\avgmfapx.exe"="C:\Program Files\AVG\AVG2013\avgmfapx.exe:*:Enabled:Программа установки AVG" "C:\Program Files\Adguard\Adguard.exe"="C:\Program Files\Adguard\Adguard.exe:*:Enabled:Adguard" "C:\Program Files\Adguard\Adguard.Agent.exe"="C:\Program Files\Adguard\Adguard.Agent.exe:*:Enabled:Adguard.Agent" "C:\WINDOWS\system32\muzapp.exe"="C:\WINDOWS\system32\muzapp.exe:*:Enabled:MUZ AOD APP player" "C:\WINDOWS\system32\mmc.exe"="C:\WINDOWS\system32\mmc.exe:*:Enabled:Консоль управления (MMC)" "C:\Program Files\MetaTrader - E-Global Trade & Finance Group\terminal.exe"="C:\Program Files\MetaTrader - E-Global Trade & Finance Group\terminal.exe:*:Enabled:MetaTrader" "C:\Program Files\1C\Activision\DooM 3\Doom3Ded.exe"="C:\Program Files\1C\Activision\DooM 3\Doom3Ded.exe:*:Enabled:DOOM 3" "C:\Program Files\SIGTrader 5\metatester.exe"="C:\Program Files\SIGTrader 5\metatester.exe:*:Enabled:MetaTrader 5 Strategy Tester Agent" "C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp" "C:\Program Files\TeamViewer\Version8\TeamViewer.exe"="C:\Program Files\TeamViewer\Version8\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application" "C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe"="C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service" "C:\Program Files\AVG\AVG2013\avgnsx.exe"="C:\Program Files\AVG\AVG2013\avgnsx.exe:*:Enabled:Online Shield" "C:\Program Files\AVG\AVG2013\avgdiagex.exe"="C:\Program Files\AVG\AVG2013\avgdiagex.exe:*:Enabled:Диагностика AVG 2013" "C:\Program Files\AVG\AVG2013\avgemcx.exe"="C:\Program Files\AVG\AVG2013\avgemcx.exe:*:Enabled:Персональный сканер электронной почты" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager" "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager" "C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application" "C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe" "C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqcopy2.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqcopy2.exe:*:Enabled:hpqcopy2.exe" "C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe" "C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe" "C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe" "C:\Program Files\Common Files\HP\Digital Imaging\Bin\hpqPhotoCrm.exe"="C:\Program Files\Common Files\HP\Digital Imaging\Bin\hpqPhotoCrm.exe:*:Enabled:hpqphotocrm.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe:*:Enabled:hpqgpc01.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe:*:Enabled:hpqusgm.exe" "C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe:*:Enabled:hpqusgh.exe" "C:\Program Files\HP\HP Software Update\HPWUCli.exe"="C:\Program Files\HP\HP Software Update\HPWUCli.exe:*:Enabled:hpwucli.exe" "C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe"="C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe:*:Enabled:smartwebprintexe.exe" "C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "midimapper"=midimap.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msadpcm"=msadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.trspch"=tssoft32.acm "vidc.cvid"=iccvid.dll "vidc.i420"=msh263.drv "vidc.iv31"=ir32_32.dll "vidc.iv32"=ir32_32.dll "vidc.iv41"=ir41_32.ax "vidc.iyuv"=iyuv_32.dll "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvu9"=tsbyuv.dll "vidc.yvyu"=msyuv.dll "wavemapper"=msacm32.drv "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "msacm.msaudio1"=msaud32.acm "msacm.sl_anet"=sl_anet.acm "msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax "vidc.iv50"=ir50_32.dll "msacm.l3acm"=l3codecp.acm "VIDC.WMV3"=wmv9vcm.dll "msacm.vorbis"=vorbis.acm "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "VIDC.XVID"=xvidvfw.dll "VIDC.YV12"=yv12vfw.dll "msacm.ac3acm"=ac3acm.acm "msacm.lameacm"=lameACM.acm "VIDC.FFDS"=ff_vfw.dll ======Ассоциации файлов====== .js - edit - .js - open - "C:\Program Files\Adobe\Adobe Dreamweaver CS4\Dreamweaver.exe","%1" ======Список файлов и папок, созданных за последние 3 месяца====== 2013-08-16 00:50:23 ----D---- C:\WINDOWS\LastGood 2013-08-15 23:06:18 ----D---- C:\Program Files\MetaTrader 4 Nefteprombank 2013-08-15 21:28:52 ----D---- C:\Program Files\trend micro 2013-08-15 21:28:51 ----D---- C:\rsit 2013-08-15 20:53:50 ----A---- C:\WINDOWS\system32\drivers\intelide.sys 2013-08-15 20:53:45 ----A---- C:\WINDOWS\system32\drivers\viaide.sys 2013-08-15 20:53:45 ----A---- C:\WINDOWS\system32\drivers\sym_u3.sys 2013-08-15 20:53:44 ----A---- C:\WINDOWS\system32\drivers\symc8xx.sys 2013-08-15 20:53:42 ----A---- C:\WINDOWS\system32\drivers\ql12160.sys 2013-08-15 20:53:42 ----A---- C:\WINDOWS\system32\drivers\ql1080.sys 2013-08-15 20:53:39 ----A---- C:\WINDOWS\system32\drivers\i2omgmt.sys 2013-08-15 20:53:38 ----A---- C:\WINDOWS\system32\drivers\ultra.sys 2013-08-15 20:53:38 ----A---- C:\WINDOWS\system32\drivers\sermouse.sys 2013-08-15 20:53:38 ----A---- C:\WINDOWS\system32\drivers\ql1280.sys 2013-08-15 20:53:37 ----A---- C:\WINDOWS\system32\drivers\ql10wnt.sys 2013-08-15 20:53:37 ----A---- C:\WINDOWS\system32\drivers\perc2.sys 2013-08-15 20:53:37 ----A---- C:\WINDOWS\system32\drivers\inport.sys 2013-08-15 20:53:31 ----A---- C:\WINDOWS\system32\drivers\symc810.sys 2013-08-15 20:53:28 ----A---- C:\WINDOWS\system32\drivers\dac960nt.sys 2013-08-15 20:53:13 ----A---- C:\WINDOWS\system32\drivers\toside.sys 2013-08-15 20:53:07 ----A---- C:\WINDOWS\system32\drivers\hpn.sys 2013-08-15 20:53:06 ----A---- C:\WINDOWS\system32\drivers\dpti2o.sys 2013-08-15 20:52:58 ----A---- C:\WINDOWS\system32\drivers\sparrow.sys 2013-08-15 20:52:58 ----A---- C:\WINDOWS\system32\drivers\perc2hib.sys 2013-08-15 20:52:36 ----A---- C:\WINDOWS\system32\drivers\mraid35x.sys 2013-08-15 20:51:24 ----A---- C:\WINDOWS\system32\drivers\ql1240.sys 2013-08-15 20:51:23 ----A---- C:\WINDOWS\system32\drivers\ini910u.sys 2013-08-15 20:51:00 ----A---- C:\WINDOWS\system32\drivers\dac2w2k.sys 2013-08-15 20:50:39 ----A---- C:\WINDOWS\system32\drivers\lbrtfdc.sys 2013-08-15 20:50:35 ----A---- C:\WINDOWS\system32\drivers\sym_hi.sys 2013-08-15 20:50:23 ----A---- C:\WINDOWS\system32\drivers\i2omp.sys 2013-08-15 16:30:37 ----A---- C:\WINDOWS\system32\drivers\cmdide.sys 2013-08-15 16:30:36 ----A---- C:\WINDOWS\system32\drivers\cd20xrnt.sys 2013-08-15 16:30:36 ----A---- C:\WINDOWS\system32\drivers\battc.sys 2013-08-15 16:30:35 ----A---- C:\WINDOWS\system32\drivers\changer.sys 2013-08-15 16:30:32 ----A---- C:\WINDOWS\system32\drivers\asc3550.sys 2013-08-15 16:30:30 ----A---- C:\WINDOWS\system32\drivers\amsint.sys 2013-08-15 16:30:20 ----A---- C:\WINDOWS\system32\drivers\aha154x.sys 2013-08-15 16:30:00 ----A---- C:\WINDOWS\system32\drivers\adpu160m.sys 2013-08-15 16:29:07 ----A---- C:\WINDOWS\system32\drivers\aliide.sys 2013-08-15 16:28:32 ----A---- C:\WINDOWS\system32\drivers\abp480n5.sys 2013-08-15 16:28:22 ----A---- C:\WINDOWS\system32\drivers\aic78xx.sys 2013-08-15 16:27:33 ----A---- C:\WINDOWS\system32\drivers\cpqarray.sys 2013-08-15 16:27:01 ----A---- C:\WINDOWS\system32\drivers\aic78u2.sys 2013-08-15 16:25:32 ----A---- C:\WINDOWS\system32\drivers\asc.sys 2013-08-15 16:25:03 ----A---- C:\WINDOWS\system32\drivers\asc3350p.sys 2013-08-15 14:50:34 ----A---- C:\WINDOWS\system32\drivers\klif.sys 2013-08-15 14:50:34 ----A---- C:\WINDOWS\system32\drivers\klflt.sys 2013-08-15 14:42:05 ----D---- C:\Program Files\Kaspersky Lab 2013-08-15 14:40:17 ----A---- C:\WINDOWS\system32\drivers\33990315.sys 2013-08-15 13:24:44 ----D---- C:\WINDOWS\system32\MRT 2013-08-14 21:37:57 ----D---- C:\Documents and Settings\Admin\Application Data\ArtifexMundi 2013-08-10 12:53:07 ----D---- C:\Documents and Settings\All Users\Application Data\Alawar Fridays 2013-08-10 09:00:46 ----D---- C:\Documents and Settings\All Users\Application Data\McAfee Security Scan 2013-08-10 09:00:43 ----D---- C:\Program Files\McAfee Security Scan 2013-08-09 14:45:08 ----D---- C:\Documents and Settings\Admin\Application Data\EleFun Games 2013-08-08 11:31:40 ----D---- C:\Documents and Settings\Admin\Application Data\cerasus.media 2013-08-06 00:04:25 ----D---- C:\Documents and Settings\Admin\Application Data\AlawarEntertainment 2013-08-03 23:32:52 ----D---- C:\Documents and Settings\Admin\Application Data\QuickStoresToolbar 2013-08-03 17:47:27 ----D---- C:\Program Files\VirtualDub 2013-08-03 17:25:32 ----D---- C:\Program Files\TuneUp Utilities 2013 2013-08-03 17:24:44 ----SHD---- C:\Documents and Settings\All Users\Application Data\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} 2013-08-03 17:24:02 ----D---- C:\Program Files\Winamp Detect 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\vxblock.dll 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\pxwma.dll 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\pxwave.dll 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\pxsfs.dll 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\pxmas.dll 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\pxinsi64.exe 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\pxinsa64.exe 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\pxhpinst.exe 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\pxdrv.dll 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\pxcpyi64.exe 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\pxcpya64.exe 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\pxafs.dll 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\px.dll 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\drivers\PxHelp20.sys 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\drivers\cdralw2k.sys 2013-08-03 17:23:46 ----N---- C:\WINDOWS\system32\drivers\cdr4_xp.sys 2013-08-03 17:23:33 ----D---- C:\Program Files\Winamp 2013-08-03 17:23:33 ----D---- C:\Documents and Settings\Admin\Application Data\Winamp 2013-08-03 17:23:33 ----D---- C:\Documents and Settings\Admin\Application Data\OpenCandy 2013-08-03 17:16:20 ----D---- C:\Documents and Settings\Admin\Application Data\Video Converter Packages 2013-08-03 17:16:07 ----D---- C:\Program Files\VideoConverter 2013-08-03 17:15:41 ----D---- C:\Documents and Settings\Admin\Application Data\DSite 2013-08-03 16:31:32 ----D---- C:\Program Files\Xvid 2013-07-31 22:56:53 ----D---- C:\Program Files\Kwyshell 2013-07-31 22:29:40 ----D---- C:\Program Files\Lyrmix 2013-07-31 22:22:12 ----D---- C:\Documents and Settings\Admin\Application Data\systweak 2013-07-31 22:20:28 ----D---- C:\Program Files\Delta 2013-07-31 22:20:23 ----D---- C:\Documents and Settings\Admin\Application Data\BabSolution 2013-07-31 22:20:22 ----D---- C:\Documents and Settings\Admin\Application Data\Delta 2013-07-31 22:19:11 ----D---- C:\Documents and Settings\All Users\Application Data\Babylon 2013-07-31 22:17:15 ----D---- C:\Program Files\DealPlyLive 2013-07-31 22:17:15 ----D---- C:\Documents and Settings\All Users\Application Data\DealPlyLive 2013-07-31 22:17:10 ----D---- C:\Documents and Settings\Admin\Application Data\Dealply 2013-07-31 22:17:07 ----D---- C:\Program Files\DealPly 2013-07-31 22:09:13 ----D---- C:\Program Files\Common Files\Java 2013-07-31 22:08:40 ----A---- C:\WINDOWS\system32\npDeployJava1.dll 2013-07-31 22:08:40 ----A---- C:\WINDOWS\system32\javaws.exe 2013-07-31 22:08:12 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll 2013-07-31 22:08:11 ----A---- C:\WINDOWS\system32\javaw.exe 2013-07-31 22:08:11 ----A---- C:\WINDOWS\system32\java.exe 2013-07-31 21:05:27 ----D---- C:\Program Files\ThinkForex Australia MetaTrader 4 2013-07-12 19:39:08 ----D---- C:\Documents and Settings\Admin\Application Data\Opera Software 2013-07-07 15:05:18 ----D---- C:\Program Files\Comodo 2013-07-07 15:05:16 ----D---- C:\Program Files\desktopy 2013-07-07 15:05:08 ----D---- C:\Documents and Settings\Admin\Application Data\desktopy.ru 2013-06-30 19:48:39 ----D---- C:\Program Files\SIGTrader 5 2013-06-23 21:08:13 ----D---- C:\Program Files\Pinnacle 2013-06-23 21:08:13 ----D---- C:\Documents and Settings\All Users\Application Data\PCTV Systems 2013-06-23 21:08:12 ----D---- C:\Documents and Settings\All Users\Application Data\Pinnacle 2013-06-21 00:06:44 ----D---- C:\Documents and Settings\Admin\Application Data\TMNT 2013-06-20 23:58:12 ----D---- C:\Documents and Settings\Admin\Application Data\TMNT - The Video Game 2013-06-20 23:52:06 ----D---- C:\Program Files\TMNT - The Video Game 2013-06-20 23:39:32 ----D---- C:\Documents and Settings\Admin\Application Data\TMNT - Mutant Melee 2013-06-20 23:33:41 ----D---- C:\Program Files\TMNT - Mutant Melee 2013-06-20 23:27:31 ----D---- C:\Documents and Settings\Admin\Application Data\TMNT 2 - Battle Nexus 2013-06-20 23:25:18 ----D---- C:\Program Files\TMNT 2 - Battle Nexus 2013-06-20 23:05:28 ----D---- C:\Documents and Settings\Admin\Application Data\TMNT 2003 2013-06-20 23:00:16 ----D---- C:\Program Files\TMNT 2003 2013-06-18 20:11:00 ----D---- C:\Documents and Settings\All Users\Application Data\2DBoy 2013-06-17 12:35:16 ----A---- C:\WINDOWS\system32\klogon.dll 2013-06-14 10:03:08 ----D---- C:\Documents and Settings\Admin\Application Data\Gyazo 2013-06-14 10:01:47 ----D---- C:\Program Files\Gyazo 2013-06-10 16:51:45 ----D---- C:\Documents and Settings\Admin\Application Data\Mra 2013-06-06 17:38:20 ----A---- C:\WINDOWS\system32\drivers\kneps.sys ======Список файлов и папок, измененных за последние 3 месяца====== 2013-08-16 00:56:16 ----D---- C:\Program Files\uTorrent 2013-08-16 00:50:45 ----D---- C:\WINDOWS 2013-08-16 00:50:41 ----HD---- C:\WINDOWS\inf 2013-08-16 00:50:40 ----D---- C:\WINDOWS\system32 2013-08-16 00:50:39 ----D---- C:\WINDOWS\system32\CatRoot2 2013-08-16 00:50:39 ----D---- C:\WINDOWS\system32\CatRoot 2013-08-16 00:50:36 ----D---- C:\WINDOWS\Temp 2013-08-16 00:50:36 ----D---- C:\WINDOWS\system32\ru-ru 2013-08-16 00:44:54 ----D---- C:\WINDOWS\Debug 2013-08-16 00:38:48 ----D---- C:\WINDOWS\Prefetch 2013-08-16 00:35:31 ----D---- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab 2013-08-16 00:04:38 ----D---- C:\WINDOWS\Minidump 2013-08-15 23:49:46 ----SHD---- C:\WINDOWS\Installer 2013-08-15 23:49:41 ----HD---- C:\Config.Msi 2013-08-15 23:49:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2013-08-15 23:49:19 ----RSD---- C:\WINDOWS\assembly 2013-08-15 23:49:17 ----D---- C:\WINDOWS\WinSxS 2013-08-15 23:26:41 ----D---- C:\Documents and Settings\Admin\Application Data\Adguard 2013-08-15 23:22:14 ----N---- C:\WINDOWS\SchedLgU.Txt 2013-08-15 23:20:17 ----D---- C:\WINDOWS\Microsoft.NET 2013-08-15 23:06:18 ----RD---- C:\Program Files 2013-08-15 23:05:00 ----D---- C:\WINDOWS\system32\drivers 2013-08-15 22:16:20 ----D---- C:\Documents and Settings\Admin\Application Data\TeamViewer 2013-08-15 21:25:05 ----RASH---- C:\boot.ini 2013-08-15 21:25:05 ----A---- C:\WINDOWS\win.ini 2013-08-15 21:25:05 ----A---- C:\WINDOWS\system.ini 2013-08-15 20:54:04 ----RSHDC---- C:\WINDOWS\system32\dllcache 2013-08-15 20:49:35 ----D---- C:\WINDOWS\system32\drivers\etc 2013-08-15 20:48:02 ----D---- C:\Documents and Settings\Admin\Application Data\SwvUpdater 2013-08-15 15:24:16 ----D---- C:\WINDOWS\pss 2013-08-15 14:51:17 ----SHD---- C:\System Volume Information 2013-08-15 14:29:28 ----D---- C:\Program Files\Internet Explorer 2013-08-15 14:25:49 ----HD---- C:\WINDOWS\$hf_mig$ 2013-08-15 13:24:41 ----N---- C:\WINDOWS\system32\MRT.exe 2013-08-15 08:17:25 ----A---- C:\WINDOWS\system32\dbghelp.dll 2013-08-15 08:17:08 ----D---- C:\Documents and Settings\All Users\Application Data\MFAData 2013-08-14 21:37:39 ----D---- C:\Documents and Settings\All Users\Application Data\AlawarWrapper 2013-08-14 21:29:31 ----D---- C:\Program Files\Alawar 2013-08-14 21:06:02 ----RSD---- C:\WINDOWS\Fonts 2013-08-13 21:22:45 ----D---- C:\Program Files\InstaTrader 2013-08-13 09:41:19 ----HD---- C:\Program Files\InstallShield Installation Information 2013-08-13 09:18:05 ----D---- C:\Documents and Settings\Admin\Application Data\Samsung 2013-08-13 09:17:53 ----D---- C:\Program Files\Samsung 2013-08-13 09:16:09 ----SD---- C:\WINDOWS\Tasks 2013-08-13 09:16:09 ----D---- C:\Program Files\PC Tools Registry Mechanic 2013-08-13 09:16:08 ----D---- C:\Program Files\Common Files\PC Tools 2013-08-13 09:06:33 ----D---- C:\Documents and Settings\Admin\Application Data\fxgen 2013-08-11 14:22:51 ----D---- C:\Documents and Settings\All Users\Application Data\Alawar Stargaze 2013-08-10 09:00:41 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe 2013-08-08 02:59:00 ----D---- C:\Documents and Settings\Admin\Application Data\vlc 2013-08-08 02:38:23 ----A---- C:\WINDOWS\Sandboxie.ini 2013-08-08 02:06:51 ----D---- C:\Program Files\Unlocker 2013-08-06 00:05:53 ----D---- C:\Program Files\Yandex 2013-08-06 00:05:53 ----D---- C:\Documents and Settings\All Users\Application Data\Yandex 2013-08-06 00:05:10 ----D---- C:\Documents and Settings\Admin\Application Data\Yandex 2013-08-04 19:11:01 ----D---- C:\Program Files\Opera 2013-08-04 00:48:25 ----SHD---- C:\Documents and Settings\All Users\Application Data\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F} 2013-08-03 23:36:34 ----D---- C:\Documents and Settings\Admin\Application Data\PhotoScape 2013-08-03 17:49:17 ----D---- C:\WINDOWS\system 2013-08-03 17:25:44 ----D---- C:\Documents and Settings\All Users\Application Data\TuneUp Software 2013-08-03 17:25:44 ----D---- C:\Documents and Settings\Admin\Application Data\TuneUp Software 2013-07-31 22:27:20 ----D---- C:\QUIK 2013-07-31 22:09:13 ----D---- C:\Program Files\Common Files 2013-07-31 22:07:34 ----A---- C:\WINDOWS\system32\deployJava1.dll 2013-07-31 22:07:19 ----D---- C:\Program Files\Java 2013-07-26 08:48:57 ----A---- C:\WINDOWS\system32\wininet.dll 2013-07-26 08:48:57 ----A---- C:\WINDOWS\system32\urlmon.dll 2013-07-26 08:48:57 ----A---- C:\WINDOWS\system32\url.dll 2013-07-26 08:48:57 ----A---- C:\WINDOWS\system32\occache.dll 2013-07-26 08:48:57 ----A---- C:\WINDOWS\system32\mstime.dll 2013-07-26 08:48:57 ----A---- C:\WINDOWS\system32\mshtmled.dll 2013-07-26 08:48:57 ----A---- C:\WINDOWS\system32\mshtml.dll 2013-07-26 08:48:57 ----A---- C:\WINDOWS\system32\msfeedsbs.dll 2013-07-26 08:48:57 ----A---- C:\WINDOWS\system32\msfeeds.dll 2013-07-26 08:48:57 ----A---- C:\WINDOWS\system32\licmgr10.dll 2013-07-26 08:48:57 ----A---- C:\WINDOWS\system32\jsproxy.dll 2013-07-26 08:48:57 ----A---- C:\WINDOWS\system32\iertutil.dll 2013-07-26 08:48:57 ----A---- C:\WINDOWS\system32\iepeers.dll 2013-07-26 08:48:56 ----A---- C:\WINDOWS\system32\ieframe.dll 2013-07-26 08:48:56 ----A---- C:\WINDOWS\system32\iedkcs32.dll 2013-07-25 21:28:18 ----A---- C:\WINDOWS\system32\ie4uinit.exe 2013-07-17 06:46:31 ----A---- C:\WINDOWS\system32\tzchange.exe 2013-07-13 19:10:31 ----D---- C:\Program Files\Microsoft Silverlight 2013-07-13 18:09:31 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help 2013-07-13 18:01:10 ----D---- C:\WINDOWS\ie8updates 2013-07-13 17:49:18 ----D---- C:\WINDOWS\system32\XPSViewer 2013-07-10 16:37:48 ----A---- C:\WINDOWS\system32\usp10.dll 2013-07-07 15:06:23 ----D---- C:\Documents and Settings\Admin\Application Data\HPAppData 2013-07-04 13:34:02 ----A---- C:\WINDOWS\system32\ntoskrnl.exe 2013-07-04 13:34:02 ----A---- C:\WINDOWS\system32\ntkrnlpa.exe 2013-06-25 09:49:20 ----D---- C:\Program Files\Movie Maker 2013-06-23 23:13:29 ----D---- C:\WINDOWS\RegisteredPackages 2013-06-21 00:06:04 ----D---- C:\WINDOWS\system32\DirectX 2013-06-20 23:20:07 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft 2013-06-20 23:19:43 ----D---- C:\Program Files\Microsoft 2013-06-20 23:08:42 ----D---- C:\Temp 2013-06-19 19:03:42 ----D---- C:\Program Files\Common Files\Adobe 2013-06-19 19:02:36 ----D---- C:\Program Files\USB Disk Security 2013-06-19 19:00:14 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP 2013-06-04 13:23:03 ----A---- C:\WINDOWS\system32\qedit.dll 2013-05-28 07:59:28 ----A---- C:\WINDOWS\system32\rpcrt4.dll 2013-05-28 06:35:26 ----A---- C:\WINDOWS\system32\xpsp4res.dll 2013-05-25 12:33:07 ----D---- C:\Program Files\Sniper Ghost Warrior 2013-05-21 17:54:11 ----A---- C:\WINDOWS\ModemLog_SAMSUNG Mobile USB Modem #2.txt 2013-05-21 11:19:48 ----A---- C:\WINDOWS\vbaddin.ini 2013-05-17 16:03:28 ----D---- C:\WINDOWS\Registration ======Список драйверов (тип запуска: R=Запущен, S=остановлен, 0=Загрузочный, 1=Системный, 2=Автоматически, 3=Вручную, 4=Отключено)====== R0 33990315;33990315; C:\WINDOWS\system32\DRIVERS\33990315.sys [2013-08-15 133208] R0 AVGIDSHX;AVGIDSHX; C:\WINDOWS\system32\DRIVERS\avgidshx.sys [2013-07-20 60216] R0 Avglogx;AVG Logging Driver; C:\WINDOWS\system32\DRIVERS\avglogx.sys [2013-07-20 246072] R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx86.sys [2013-07-01 96568] R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx86.sys [2013-07-10 39224] R0 hotcore3;hc3ServiceName; C:\WINDOWS\system32\DRIVERS\hotcore3.sys [2010-05-18 40560] R0 kl1;kl1; C:\WINDOWS\system32\DRIVERS\kl1.sys [2013-05-06 135776] R0 prohlp02;StarForce Protection Helper Driver v2; C:\WINDOWS\System32\drivers\prohlp02.sys [2003-09-06 62656] R0 prosync1;StarForce Protection Synchronization Driver v1; C:\WINDOWS\System32\drivers\prosync1.sys [2003-09-06 6944] R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-05 45648] R0 sfhlp01;StarForce Protection Helper Driver; C:\WINDOWS\System32\drivers\sfhlp01.sys [2003-09-06 4832] R0 snapman;Acronis Snapshots Manager; C:\WINDOWS\system32\DRIVERS\snapman.sys [2013-04-04 169088] R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2011-10-26 691696] R0 timounter;Acronis Backup Archive Explorer; C:\WINDOWS\system32\DRIVERS\timntr.sys [2013-04-04 601408] R0 vididr;Acronis Virtual Disk; C:\WINDOWS\system32\DRIVERS\vididr.sys [2013-04-04 125472] R0 vidsflt53;Acronis Disk Storage Filter (53); C:\WINDOWS\system32\DRIVERS\vsflt53.sys [2013-04-04 83392] R1 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\avgidsdriverx.sys [2013-07-20 208184] R1 AVGIDSShim;AVGIDSShim; C:\WINDOWS\system32\DRIVERS\avgidsshimx.sys [2013-03-01 22328] R1 Avgldx86;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx86.sys [2013-07-20 171320] R1 Avgtdix;AVG TDI Driver; C:\WINDOWS\system32\DRIVERS\avgtdix.sys [2013-03-21 182072] R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2013-08-15 572512] R1 klpd;klpd; C:\WINDOWS\system32\DRIVERS\klpd.sys [2013-04-12 14432] R1 kltdi;kltdi; C:\WINDOWS\system32\DRIVERS\kltdi.sys [2013-05-14 45024] R1 kneps;kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [2013-06-06 145120] R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2003-09-06 51744] R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2006-07-24 5632] R1 WS2IFSL;Среда Windows Socket 2.0 поддержки поставщиков не-IFS служб; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2008-04-15 12032] R2 adfs;adfs; C:\WINDOWS\system32\drivers\adfs.sys [2008-08-14 74720] R2 exFat;exFat; C:\WINDOWS\system32\drivers\exFat.sys [2009-01-28 133632] R2 rspndr;Ответчик обнаружения топологии уровня связи; C:\WINDOWS\system32\DRIVERS\rspndr.sys [2008-10-11 62848] R3 HDAudBus;Драйвер шины Microsoft UAA для High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-15 144384] R3 HidUsb;Драйвер класса HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368] R3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2008-10-28 49920] R3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2008-10-28 16496] R3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2008-10-28 21568] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-10-31 4942336] R3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2013-04-19 36448] R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [2013-05-05 24160] R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2013-05-05 24672] R3 mouhid;Драйвер мыши HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-19 12160] R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-09-27 7655872] R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2009-01-22 120064] R3 SbieDrv;SbieDrv; \??\C:\Program Files\Sandboxie\SbieDrv.sys [] R3 usbccgp;Драйвер универсального родительского устройства USB (Microsoft); C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-15 32128] R3 usbprint;Класс принтеров Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856] R3 usbscan;Драйвер USB-сканера; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104] R3 usbstor;Драйвер запоминающих устройств для USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-15 26368] R3 usbuhci;Драйвер минипорта Microsoft USB универсального хост-контроллера; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608] S1 ccHP;Symantec Hash Provider; \??\C:\WINDOWS\system32\drivers\NIS\1000000.07D\ccHPx86.sys [] S1 intelppm;Драйвер Intel процессора; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-15 40704] S1 kbdhid;Драйвер клавиатуры HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720] S3 ah2mvtck;ah2mvtck; C:\WINDOWS\system32\drivers\ah2mvtck.sys [] S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2008-08-05 1684736] S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2012-09-20 83168] S3 flashusb;flashusb; C:\WINDOWS\system32\DRIVERS\flashusb.sys [2012-06-27 16384] S3 h647906;DragonRise HID7906 AMD64 Driver; C:\WINDOWS\system32\drivers\h647906.sys [] S3 hid7906;DragonRise HID7906 x86 Driver; C:\WINDOWS\system32\drivers\hid7906.sys [2010-06-25 44704] S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2006-01-04 1389056] S3 MUTE2X_SERVICE;MUTE2X_SERVICE; C:\WINDOWS\System32\mute2x.sys [2008-02-05 113920] S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816] S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM); C:\WINDOWS\system32\DRIVERS\ss_bus.sys [2012-06-27 98560] S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter; C:\WINDOWS\system32\DRIVERS\ss_mdfl.sys [2012-06-27 14848] S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers; C:\WINDOWS\system32\DRIVERS\ss_mdm.sys [2012-06-27 123776] S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2012-09-20 181344] S3 ssudserd;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudserd.sys [2012-09-20 181344] S3 teamviewervpn;TeamViewer VPN Adapter; C:\WINDOWS\system32\DRIVERS\teamviewervpn.sys [2012-11-28 25088] S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp.sys [2009-11-30 100048] S3 VBoxNetFlt;VBoxNetFlt Service; C:\WINDOWS\system32\DRIVERS\VBoxNetFlt.sys [] S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2008-05-18 77568] S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-05-18 82944] ======Список служб (тип запуска: R=Запущена, S=остановлена, 0=Загрузочная, 1=Системная, 2=Автоматически, 3=Вручную, 4=Отключено)====== R2 AcrSch2Svc;Acronis Scheduler2 Service; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [2011-06-06 845864] R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG2013\avgidsagent.exe [2013-07-04 4939312] R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG2013\avgwdsvc.exe [2013-07-23 283136] R2 AVP;Kaspersky Anti-Virus Service; C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe [2013-06-17 214512] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 hpqddsvc;Служба HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2008-04-15 14336] R2 HPSLPSVC;HP Network Devices Support; C:\WINDOWS\system32\svchost.exe [2008-04-15 14336] R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2013-07-31 182184] R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-15 14336] R2 OS Selector;Активатор Acronis OS Selector; C:\Program Files\Acronis\DiskDirector\OSS\reinstall_svc.exe [2010-07-01 2153336] R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-15 14336] R2 SbieSvc;Sandboxie Service; C:\Program Files\Sandboxie\SbieSvc.exe [2012-12-16 85776] R2 TeamViewer8;TeamViewer 8; C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe [2013-08-07 4308320] R3 BBUpdate;BBUpdate; C:\Program Files\Microsoft\BingBar\7.2.241.0\SeaPort.exe [2013-07-23 240288] R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-15 14336] R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2009-10-27 657408] R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-04-16 755880] S2 BBSvc;BingBar Service; C:\Program Files\Microsoft\BingBar\7.2.241.0\BBSvc.exe [2013-07-23 193696] S2 gupdate;Служба Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-01-31 116648] S2 ICM_UpdaterService;ICM_UpdaterService Disp; C:\Program Files\SAMSUNG\Samsung Networking Wizard\ICM_Service.exe [2011-03-18 204883] S2 KSS;Kaspersky Security Scan Service; C:\Program Files\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe [2012-12-07 202328] S2 spupdsvc;Windows Service Pack Installer update service; C:\WINDOWS\system32\spupdsvc.exe [2009-01-07 26144] S3 Adobe Version Cue CS4;Adobe Version Cue CS4; C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [2008-08-15 284016] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-10 257416] S3 aspnet_state;Служба состояний ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160] S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-12-03 655624] S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-30 46104] S3 gupdatem;Служба Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-01-31 116648] S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-06-11 136120] S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664] S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.0.318\McCHSvc.exe [2013-02-05 235216] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-04-21 129976] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 WMPNetworkSvc;Служба общих сетевых ресурсов проигрывателя Windows Media; C:\Program Files\Windows Media Player\wmpnetwk.exe [2006-11-03 914944] S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-15 14336] S4 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2011-12-20 72704] S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632] S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] S4 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968] -----------------EOF-----------------