Лог утилиты random's system information tool 1.08 (автор: random/random) Run by Ilya at 2011-08-29 14:14:39 Microsoft Windows 7 Максимальная Системный раздел C: размер 15 GB (29%) Свободно 50 GB Total RAM: 2046 MB (78% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 14:14:47, on 29.08.2011 Platform: Windows 7 (WinNT 6.00.3504) MSIE: Internet Explorer v8.00 (8.00.7600.16385) Boot mode: Safe mode with network support Running processes: C:\Windows\Explorer.EXE C:\Windows\system32\ctfmon.exe C:\Program Files\Opera\opera.exe C:\Users\Ilya\Desktop\RSIT.exe C:\Program Files\trend micro\Ilya.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yandex.ru/?clid=208262 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: BittorrentBar_RU Toolbar - {7b6de06c-7013-4a87-957e-d27d7b977d21} - C:\Program Files\BittorrentBar_RU\prxtbBitt.dll O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll O2 - BHO: BittorrentBar_RU - {7b6de06c-7013-4a87-957e-d27d7b977d21} - C:\Program Files\BittorrentBar_RU\prxtbBitt.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O2 - BHO: Визуальные закладки - {C93F72A2-2162-4BBA-A07A-F13663C297A6} - C:\Program Files\Yandex\YandexBarIE\fastdial.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O3 - Toolbar: BittorrentBar_RU Toolbar - {7b6de06c-7013-4a87-957e-d27d7b977d21} - C:\Program Files\BittorrentBar_RU\prxtbBitt.dll O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll O3 - Toolbar: Яндекс.Бар (для uTorrent) - {1208AB5D-4748-49fe-A74A-484AE2FA5D34} - C:\Program Files\Yandex\YandexBarIE\bars\barietorrent\yndbar.dll O3 - Toolbar: Яндекс.Бар - {91397D20-1446-11D4-8AF4-0040CA1127B6} - C:\Program Files\Yandex\YandexBarIE\yndbar.dll O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [IObit Malware Fighter] "C:\Program Files\IObit\IObit Malware Fighter\IMF.exe" /autostart O4 - HKCU\..\Run: [GameCenterMailRu] "C:\Users\Ilya\AppData\Local\Mail.Ru\GameCenter\GameCenter@Mail.Ru.exe" -autostart O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\BitTorrent.exe" O4 - HKCU\..\Run: [uTorrent] "D:\UTorrent\uTorrent.exe" /MINIMIZED O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKCU\..\Run: [Praetorian] C:\Users\Ilya\AppData\Local\Yandex\Updater\praetorian.exe O4 - HKCU\..\Run: [NokiaOviSuite2] C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe -tray O4 - HKCU\..\Run: [Advanced SystemCare 4] "C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe" O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O20 - AppInit_DLLs: C:\Windows\system32\hzcrpdm.dll O23 - Service: Advanced SystemCare Service (AdvancedSystemCareService) - IObit - C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe O23 - Service: IMF Service (IMFservice) - IObit - C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- End of file - 5534 bytes ======Снимок реестра====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}] Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-03-28 176936] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7b6de06c-7013-4a87-957e-d27d7b977d21}] BittorrentBar_RU Toolbar - C:\Program Files\BittorrentBar_RU\prxtbBitt.dll [2011-03-28 176936] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-16 1164680] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C93F72A2-2162-4BBA-A07A-F13663C297A6}] Визуальные закладки - C:\Program Files\Yandex\YandexBarIE\fastdial.dll [2011-06-28 2645832] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-06-29 42272] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {7b6de06c-7013-4a87-957e-d27d7b977d21} - BittorrentBar_RU Toolbar - C:\Program Files\BittorrentBar_RU\prxtbBitt.dll [2011-03-28 176936] {30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-03-28 176936] {1208AB5D-4748-49fe-A74A-484AE2FA5D34} - Яндекс.Бар (для uTorrent) - C:\Program Files\Yandex\YandexBarIE\bars\barietorrent\yndbar.dll [2010-08-20 8888136] {91397D20-1446-11D4-8AF4-0040CA1127B6} - Яндекс.Бар - C:\Program Files\Yandex\YandexBarIE\yndbar.dll [2011-07-07 14875976] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696] "IObit Malware Fighter"=C:\Program Files\IObit\IObit Malware Fighter\IMF.exe [2011-07-20 4393816] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "GameCenterMailRu"=C:\Users\Ilya\AppData\Local\Mail.Ru\GameCenter\GameCenter@Mail.Ru.exe [2011-08-26 3267816] "BitTorrent"=C:\Program Files\BitTorrent\BitTorrent.exe [2011-06-30 4769136] "uTorrent"=D:\UTorrent\uTorrent.exe [2011-08-03 639864] "DAEMON Tools Lite"=D:\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912] "Praetorian"=C:\Users\Ilya\AppData\Local\Yandex\Updater\praetorian.exe [2011-06-28 1460040] "NokiaOviSuite2"=C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe [2011-08-04 966712] "Advanced SystemCare 4"=C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe [2011-08-09 417112] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\Windows\system32\hzcrpdm.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] ======Ассоциации файлов====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* .reg - open - "%1" %* ======Список файлов и папок, созданных за последние 3 месяца====== 2011-08-29 14:14:39 ----D---- C:\rsit 2011-08-29 14:14:39 ----D---- C:\Program Files\trend micro 2011-08-29 12:21:05 ----D---- C:\Users\Ilya\AppData\Roaming\GHISLER 2011-08-29 12:21:05 ----D---- C:\totalcmd 2011-08-29 12:21:05 ----A---- C:\Windows\UC.PIF 2011-08-29 12:21:05 ----A---- C:\Windows\RAR.PIF 2011-08-29 12:21:05 ----A---- C:\Windows\PKZIP.PIF 2011-08-29 12:21:05 ----A---- C:\Windows\PKUNZIP.PIF 2011-08-29 12:21:05 ----A---- C:\Windows\NOCLOSE.PIF 2011-08-29 12:21:05 ----A---- C:\Windows\LHA.PIF 2011-08-29 12:21:05 ----A---- C:\Windows\ARJ.PIF 2011-08-29 11:21:23 ----A---- C:\Windows\ntbtlog.txt 2011-08-28 23:08:41 ----D---- C:\Users\Ilya\AppData\Roaming\GetRightToGo 2011-08-28 22:21:23 ----D---- C:\Program Files\Mozilla Firefox 2011-08-28 22:08:01 ----D---- C:\Program Files\Opera 2011-08-28 21:20:08 ----A---- C:\Windows\system32\hzcrpdm.dll 2011-08-28 21:20:08 ----A---- C:\Windows\system32\C76E.tmp 2011-08-27 01:48:47 ----A---- C:\Windows\system32\SmartDefragBootTime.exe 2011-08-27 01:48:47 ----A---- C:\Windows\system32\drivers\SmartDefragDriver.sys 2011-08-27 01:48:40 ----D---- C:\ProgramData\IObit 2011-08-27 01:47:48 ----D---- C:\Program Files\IObit 2011-08-27 01:44:17 ----D---- C:\Windows\Minidump 2011-08-26 23:44:41 ----D---- C:\ProgramData\PC Suite 2011-08-26 23:44:38 ----D---- C:\Users\Ilya\AppData\Roaming\PC Suite 2011-08-26 23:42:53 ----D---- C:\Program Files\Common Files\Nokia 2011-08-26 23:42:35 ----D---- C:\Program Files\DIFX 2011-08-26 23:42:34 ----A---- C:\Windows\system32\drivers\pccsmcfd.sys 2011-08-26 23:42:32 ----DC---- C:\Windows\system32\DRVSTORE 2011-08-26 23:42:27 ----D---- C:\Program Files\PC Connectivity Solution 2011-08-26 23:42:12 ----A---- C:\Windows\system32\nmwcdcls.dll 2011-08-26 23:41:13 ----D---- C:\ProgramData\NokiaInstallerCache 2011-08-26 23:41:13 ----D---- C:\Program Files\Nokia 2011-08-26 22:09:40 ----A---- C:\Windows\system32\drivers\rockusb27.sys 2011-08-26 21:58:18 ----D---- C:\Windows\system32\Macromed 2011-08-26 21:58:01 ----A---- C:\Windows\system32\msxml4r.dll 2011-08-26 21:58:00 ----A---- C:\Windows\system32\msxml4.dll 2011-08-26 02:17:34 ----A---- C:\Windows\system32\unrar.dll 2011-08-26 01:33:55 ----D---- C:\ProgramData\TEMP 2011-08-25 23:34:41 ----D---- C:\Program Files\Common Files\Wise Installation Wizard 2011-08-25 23:20:57 ----D---- C:\Users\Ilya\AppData\Roaming\DAEMON Tools Lite 2011-08-25 23:20:54 ----D---- C:\ProgramData\DAEMON Tools Lite 2011-08-25 23:20:47 ----D---- C:\Program Files\Installator 2011-08-25 12:07:47 ----D---- C:\Users\Ilya\AppData\Roaming\Hardcore 2011-08-25 03:17:57 ----A---- C:\Windows\system32\rewire.dll 2011-08-25 03:17:31 ----D---- C:\Program Files\Image-Line 2011-08-25 03:17:30 ----D---- C:\Program Files\Outsim 2011-08-24 08:29:45 ----SHD---- C:\ProgramData\DSS 2011-08-24 08:29:45 ----D---- C:\ProgramData\Codemasters 2011-08-24 08:21:44 ----A---- C:\Windows\system32\rapture3d_oal.dll 2011-08-24 08:21:44 ----A---- C:\Windows\system32\mkl_blueripple.dll 2011-08-24 08:21:43 ----D---- C:\Program Files\BRS 2011-08-24 08:21:41 ----D---- C:\Program Files\OpenAL 2011-08-24 08:21:41 ----A---- C:\Windows\system32\wrap_oal.dll 2011-08-24 08:21:41 ----A---- C:\Windows\system32\OpenAL32.dll 2011-08-23 22:07:29 ----A---- C:\Windows\system32\drivers\sptd.sys 2011-08-03 19:03:08 ----D---- C:\ProgramData\Yandex 2011-08-03 19:03:06 ----D---- C:\Users\Ilya\AppData\Roaming\Yandex 2011-08-03 19:03:06 ----D---- C:\Users\Ilya\AppData\Roaming\Mozilla 2011-08-03 19:03:06 ----D---- C:\Program Files\Yandex 2011-08-03 19:01:33 ----D---- C:\Program Files\uTorrent 2011-08-03 18:59:09 ----D---- C:\Users\Ilya\AppData\Roaming\uTorrent 2011-08-02 21:44:38 ----D---- C:\Windows\USB Vibration 2011-08-02 21:44:38 ----A---- C:\Windows\system32\drivers\CmDE10k.sys 2011-08-02 21:44:23 ----D---- C:\Program Files\Common Files\InstallShield 2011-08-02 21:44:21 ----D---- C:\Program Files\USB Vibration 2011-08-02 21:35:39 ----D---- C:\Windows\system32\directx 2011-08-02 20:54:51 ----A---- C:\Windows\system32\XAudio2_6.dll 2011-08-02 20:54:51 ----A---- C:\Windows\system32\XAPOFX1_4.dll 2011-08-02 20:54:51 ----A---- C:\Windows\system32\xactengine3_6.dll 2011-08-02 20:54:51 ----A---- C:\Windows\system32\X3DAudio1_7.dll 2011-08-02 20:54:50 ----A---- C:\Windows\system32\XAudio2_5.dll 2011-08-02 20:54:50 ----A---- C:\Windows\system32\xactengine3_5.dll 2011-08-02 20:54:48 ----A---- C:\Windows\system32\XAudio2_4.dll 2011-08-02 20:54:48 ----A---- C:\Windows\system32\XAPOFX1_3.dll 2011-08-02 20:54:48 ----A---- C:\Windows\system32\xactengine3_4.dll 2011-08-02 20:54:48 ----A---- C:\Windows\system32\X3DAudio1_6.dll 2011-08-02 20:54:48 ----A---- C:\Windows\system32\D3DX9_41.dll 2011-08-02 20:54:48 ----A---- C:\Windows\system32\d3dx10_41.dll 2011-08-02 20:54:48 ----A---- C:\Windows\system32\d3dx10_40.dll 2011-08-02 20:54:48 ----A---- C:\Windows\system32\D3DCompiler_41.dll 2011-08-02 20:54:48 ----A---- C:\Windows\system32\D3DCompiler_40.dll 2011-08-02 20:54:47 ----A---- C:\Windows\system32\XAudio2_3.dll 2011-08-02 20:54:47 ----A---- C:\Windows\system32\XAudio2_2.dll 2011-08-02 20:54:47 ----A---- C:\Windows\system32\XAPOFX1_2.dll 2011-08-02 20:54:47 ----A---- C:\Windows\system32\XAPOFX1_1.dll 2011-08-02 20:54:47 ----A---- C:\Windows\system32\xactengine3_3.dll 2011-08-02 20:54:47 ----A---- C:\Windows\system32\xactengine3_2.dll 2011-08-02 20:54:47 ----A---- C:\Windows\system32\X3DAudio1_5.dll 2011-08-02 20:54:47 ----A---- C:\Windows\system32\D3DX9_40.dll 2011-08-02 20:54:47 ----A---- C:\Windows\system32\d3dx10_39.dll 2011-08-02 20:54:47 ----A---- C:\Windows\system32\D3DCompiler_39.dll 2011-08-02 20:54:46 ----A---- C:\Windows\system32\XAudio2_1.dll 2011-08-02 20:54:46 ----A---- C:\Windows\system32\XAudio2_0.dll 2011-08-02 20:54:46 ----A---- C:\Windows\system32\XAPOFX1_0.dll 2011-08-02 20:54:46 ----A---- C:\Windows\system32\xactengine3_1.dll 2011-08-02 20:54:46 ----A---- C:\Windows\system32\xactengine3_0.dll 2011-08-02 20:54:46 ----A---- C:\Windows\system32\X3DAudio1_4.dll 2011-08-02 20:54:46 ----A---- C:\Windows\system32\X3DAudio1_3.dll 2011-08-02 20:54:46 ----A---- C:\Windows\system32\D3DX9_39.dll 2011-08-02 20:54:46 ----A---- C:\Windows\system32\D3DX9_38.dll 2011-08-02 20:54:46 ----A---- C:\Windows\system32\d3dx10_38.dll 2011-08-02 20:54:46 ----A---- C:\Windows\system32\D3DCompiler_38.dll 2011-08-02 20:54:45 ----A---- C:\Windows\system32\xactengine2_9.dll 2011-08-02 20:54:45 ----A---- C:\Windows\system32\xactengine2_10.dll 2011-08-02 20:54:45 ----A---- C:\Windows\system32\D3DX9_37.dll 2011-08-02 20:54:45 ----A---- C:\Windows\system32\d3dx9_36.dll 2011-08-02 20:54:45 ----A---- C:\Windows\system32\d3dx10_37.dll 2011-08-02 20:54:45 ----A---- C:\Windows\system32\d3dx10_36.dll 2011-08-02 20:54:45 ----A---- C:\Windows\system32\d3dx10_35.dll 2011-08-02 20:54:45 ----A---- C:\Windows\system32\D3DCompiler_37.dll 2011-08-02 20:54:45 ----A---- C:\Windows\system32\D3DCompiler_36.dll 2011-08-02 20:54:45 ----A---- C:\Windows\system32\D3DCompiler_35.dll 2011-08-02 20:54:44 ----A---- C:\Windows\system32\xactengine2_8.dll 2011-08-02 20:54:44 ----A---- C:\Windows\system32\xactengine2_7.dll 2011-08-02 20:54:44 ----A---- C:\Windows\system32\X3DAudio1_2.dll 2011-08-02 20:54:44 ----A---- C:\Windows\system32\d3dx9_35.dll 2011-08-02 20:54:44 ----A---- C:\Windows\system32\d3dx9_34.dll 2011-08-02 20:54:44 ----A---- C:\Windows\system32\d3dx9_33.dll 2011-08-02 20:54:44 ----A---- C:\Windows\system32\d3dx10_34.dll 2011-08-02 20:54:44 ----A---- C:\Windows\system32\d3dx10_33.dll 2011-08-02 20:54:44 ----A---- C:\Windows\system32\D3DCompiler_34.dll 2011-08-02 20:54:44 ----A---- C:\Windows\system32\D3DCompiler_33.dll 2011-08-02 20:54:43 ----A---- C:\Windows\system32\xactengine2_6.dll 2011-08-02 20:54:43 ----A---- C:\Windows\system32\xactengine2_5.dll 2011-08-02 20:54:43 ----A---- C:\Windows\system32\d3dx9_32.dll 2011-08-02 20:54:43 ----A---- C:\Windows\system32\d3dx10.dll 2011-08-02 20:54:42 ----A---- C:\Windows\system32\xinput1_2.dll 2011-08-02 20:54:42 ----A---- C:\Windows\system32\xinput1_1.dll 2011-08-02 20:54:42 ----A---- C:\Windows\system32\xactengine2_4.dll 2011-08-02 20:54:42 ----A---- C:\Windows\system32\xactengine2_3.dll 2011-08-02 20:54:42 ----A---- C:\Windows\system32\xactengine2_2.dll 2011-08-02 20:54:42 ----A---- C:\Windows\system32\xactengine2_1.dll 2011-08-02 20:54:42 ----A---- C:\Windows\system32\x3daudio1_1.dll 2011-08-02 20:54:42 ----A---- C:\Windows\system32\d3dx9_31.dll 2011-08-02 20:54:40 ----A---- C:\Windows\system32\d3dx9_30.dll 2011-08-02 20:54:39 ----A---- C:\Windows\system32\xactengine2_0.dll 2011-08-02 20:54:39 ----A---- C:\Windows\system32\x3daudio1_0.dll 2011-08-02 20:54:39 ----A---- C:\Windows\system32\d3dx9_29.dll 2011-08-02 20:54:39 ----A---- C:\Windows\system32\d3dx9_28.dll 2011-08-02 20:54:39 ----A---- C:\Windows\system32\d3dx9_27.dll 2011-08-02 20:54:39 ----A---- C:\Windows\system32\d3dx9_26.dll 2011-08-02 20:54:39 ----A---- C:\Windows\system32\d3dx9_25.dll 2011-08-02 20:54:38 ----A---- C:\Windows\system32\d3dx9_24.dll 2011-08-01 12:07:38 ----A---- C:\Windows\system32\XAudio2_7.dll 2011-08-01 12:07:38 ----A---- C:\Windows\system32\XAPOFX1_5.dll 2011-08-01 12:07:37 ----A---- C:\Windows\system32\xactengine3_7.dll 2011-08-01 12:07:37 ----A---- C:\Windows\system32\D3DX9_43.dll 2011-08-01 12:07:37 ----A---- C:\Windows\system32\d3dx11_43.dll 2011-08-01 12:07:37 ----A---- C:\Windows\system32\d3dx10_43.dll 2011-08-01 12:07:37 ----A---- C:\Windows\system32\d3dcsx_43.dll 2011-08-01 12:07:37 ----A---- C:\Windows\system32\D3DCompiler_43.dll 2011-07-30 21:31:51 ----D---- C:\Program Files\No-IP 2011-07-29 16:55:21 ----A---- C:\Windows\system32\WgaTray.exe 2011-07-29 16:55:21 ----A---- C:\Windows\system32\WgaLogon.dll 2011-07-29 16:55:21 ----A---- C:\Windows\system32\LegitCheckControl.dll 2011-07-02 00:33:03 ----D---- C:\Users\Ilya\AppData\Roaming\Opera 2011-06-30 11:04:10 ----D---- C:\Program Files\Red Faction Guerrilla 2011-06-30 10:56:47 ----D---- C:\Windows\system32\xlive 2011-06-30 10:56:43 ----D---- C:\Program Files\Microsoft Games for Windows - LIVE 2011-06-30 01:22:41 ----D---- C:\Program Files\Conduit 2011-06-30 01:22:41 ----D---- C:\extensions 2011-06-30 01:22:38 ----D---- C:\Program Files\ConduitEngine 2011-06-30 01:22:38 ----A---- C:\Windows\system32\ConduitEngine.tmp 2011-06-30 01:22:37 ----D---- C:\Program Files\BittorrentBar_RU 2011-06-30 01:22:18 ----D---- C:\Program Files\BitTorrent 2011-06-30 01:21:30 ----D---- C:\Users\Ilya\AppData\Roaming\BitTorrent 2011-06-29 22:41:57 ----D---- C:\Users\Ilya\AppData\Roaming\WinRAR 2011-06-29 22:41:50 ----D---- C:\Program Files\WinRAR 2011-06-29 13:05:18 ----D---- C:\ProgramData\Solidshield 2011-06-29 12:51:55 ----D---- C:\ProgramData\Electronic Arts 2011-06-29 12:51:55 ----D---- C:\ProgramData\EA Core 2011-06-29 12:37:44 ----D---- C:\Program Files\Electronic Arts 2011-06-29 12:37:44 ----A---- C:\Windows\system32\xinput1_3.dll 2011-06-29 12:37:44 ----A---- C:\Windows\system32\D3DX9_42.dll 2011-06-29 12:37:44 ----A---- C:\Windows\system32\d3dx11_42.dll 2011-06-29 12:37:44 ----A---- C:\Windows\system32\d3dx10_42.dll 2011-06-29 12:37:44 ----A---- C:\Windows\system32\d3dcsx_42.dll 2011-06-29 12:37:44 ----A---- C:\Windows\system32\D3DCompiler_42.dll 2011-06-29 09:06:55 ----D---- C:\ProgramData\Sun 2011-06-29 09:06:54 ----D---- C:\Program Files\Common Files\Java 2011-06-29 09:06:41 ----A---- C:\Windows\system32\javaws.exe 2011-06-29 09:06:41 ----A---- C:\Windows\system32\javaw.exe 2011-06-29 09:06:41 ----A---- C:\Windows\system32\java.exe 2011-06-29 09:06:41 ----A---- C:\Windows\system32\deployJava1.dll 2011-06-29 09:06:32 ----D---- C:\Program Files\Java 2011-06-28 23:46:29 ----HD---- C:\Program Files\InstallShield Installation Information 2011-06-28 23:45:15 ----D---- C:\ProgramData\NVIDIA 2011-06-28 23:44:49 ----A---- C:\Windows\system32\nvvsvc.exe 2011-06-28 23:44:49 ----A---- C:\Windows\system32\nvsvcr.dll 2011-06-28 23:44:49 ----A---- C:\Windows\system32\nvsvc.dll 2011-06-28 23:44:49 ----A---- C:\Windows\system32\nvshext.dll 2011-06-28 23:44:49 ----A---- C:\Windows\system32\nvmctray.dll 2011-06-28 23:44:49 ----A---- C:\Windows\system32\nvcpl.dll 2011-06-28 23:44:49 ----A---- C:\Windows\system32\easyupdatusapiu.dll 2011-06-28 23:44:44 ----D---- C:\ProgramData\NVIDIA Corporation 2011-06-28 23:44:27 ----A---- C:\Windows\system32\nvhdap32.dll 2011-06-28 23:44:27 ----A---- C:\Windows\system32\nvhdagenco322040.dll 2011-06-28 23:44:27 ----A---- C:\Windows\system32\drivers\nvhda32v.sys 2011-06-28 23:44:26 ----A---- C:\Windows\system32\OpenCL.dll 2011-06-28 23:44:26 ----A---- C:\Windows\system32\nvwgf2um.dll 2011-06-28 23:44:26 ----A---- C:\Windows\system32\nvoglv32.dll 2011-06-28 23:44:26 ----A---- C:\Windows\system32\nvgenco322090.dll 2011-06-28 23:44:26 ----A---- C:\Windows\system32\nvdispco3220150.dll 2011-06-28 23:44:26 ----A---- C:\Windows\system32\nvd3dum.dll 2011-06-28 23:44:26 ----A---- C:\Windows\system32\nvcuvid.dll 2011-06-28 23:44:26 ----A---- C:\Windows\system32\nvcuvenc.dll 2011-06-28 23:44:26 ----A---- C:\Windows\system32\nvcuda.dll 2011-06-28 23:44:26 ----A---- C:\Windows\system32\nvcompiler.dll 2011-06-28 23:44:26 ----A---- C:\Windows\system32\nvapi.dll 2011-06-28 23:44:26 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys 2011-06-28 23:44:08 ----D---- C:\Program Files\NVIDIA Corporation 2011-06-28 23:43:49 ----D---- C:\NVIDIA 2011-06-28 23:04:16 ----D---- C:\Program Files\Mail.Ru 2011-06-28 22:53:52 ----D---- C:\Users\Ilya\AppData\Roaming\.minecraft 2011-06-28 21:30:21 ----D---- C:\Windows\Panther 2011-06-28 21:30:09 ----RASH---- C:\BOOTSECT.BAK 2011-06-28 21:30:08 ----SHD---- C:\Boot 2011-06-28 21:24:15 ----D---- C:\Users\Ilya\AppData\Roaming\Skype 2011-06-28 21:23:51 ----RD---- C:\Program Files\Skype 2011-06-28 21:23:49 ----SHD---- C:\Windows\Installer 2011-06-28 21:23:48 ----D---- C:\ProgramData\Skype 2011-06-28 21:12:23 ----D---- C:\Users\Ilya\AppData\Roaming\Macromedia 2011-06-28 21:12:22 ----D---- C:\Users\Ilya\AppData\Roaming\Adobe 2011-06-28 20:56:33 ----N---- C:\Windows\system32\MpSigStub.exe 2011-06-28 20:43:55 ----A---- C:\Windows\system32\PerfStringBackup.INI 2011-06-28 20:42:30 ----D---- C:\Users\Ilya\AppData\Roaming\IObit 2011-06-28 20:38:21 ----D---- C:\Windows\SoftwareDistribution 2011-06-28 20:37:20 ----D---- C:\Users\Ilya\AppData\Roaming\Identities 2011-06-28 20:37:10 ----SD---- C:\Users\Ilya\AppData\Roaming\Microsoft 2011-06-28 20:37:10 ----D---- C:\Users\Ilya\AppData\Roaming\Media Center Programs 2011-06-28 20:37:01 ----SHD---- C:\Recovery 2011-06-28 20:37:01 ----SHD---- C:\ProgramData\Шаблоны 2011-06-28 20:37:01 ----SHD---- C:\ProgramData\Рабочий стол 2011-06-28 20:37:01 ----SHD---- C:\ProgramData\Избранное 2011-06-28 20:37:01 ----SHD---- C:\ProgramData\Документы 2011-06-28 20:37:01 ----SHD---- C:\ProgramData\Главное меню 2011-06-28 20:31:26 ----D---- C:\Windows\Prefetch 2011-06-28 20:31:11 ----ASH---- C:\pagefile.sys 2011-06-28 20:31:10 ----SHD---- C:\System Volume Information 2011-06-28 20:31:10 ----ASH---- C:\hiberfil.sys ======Список файлов и папок, измененных за последние 3 месяца====== 2011-08-29 14:14:42 ----D---- C:\Windows\Temp 2011-08-29 14:14:39 ----RD---- C:\Program Files 2011-08-29 14:05:31 ----D---- C:\Windows\System32 2011-08-29 14:05:31 ----D---- C:\Windows\inf 2011-08-29 12:21:05 ----D---- C:\Windows 2011-08-29 04:49:38 ----D---- C:\Windows\system32\config 2011-08-28 23:36:23 ----D---- C:\Windows\system32\LogFiles 2011-08-28 23:35:01 ----D---- C:\Windows\system32\drivers 2011-08-28 23:30:27 ----D---- C:\Windows\system32\drivers\etc 2011-08-28 22:20:10 ----D---- C:\Windows\Tasks 2011-08-28 22:20:10 ----D---- C:\Windows\system32\Tasks 2011-08-28 21:20:11 ----HD---- C:\ProgramData 2011-08-27 01:53:55 ----D---- C:\Windows\Logs 2011-08-27 01:53:54 ----D---- C:\Windows\debug 2011-08-26 23:43:37 ----D---- C:\Windows\winsxs 2011-08-26 23:42:53 ----D---- C:\Program Files\Common Files 2011-08-26 23:42:34 ----D---- C:\Windows\system32\DriverStore 2011-08-26 23:42:34 ----D---- C:\Windows\system32\catroot 2011-08-26 22:13:59 ----D---- C:\Windows\system32\catroot2 2011-08-26 20:17:01 ----D---- C:\Windows\LiveKernelReports 2011-08-26 19:43:53 ----D---- C:\Windows\system32\wdi 2011-08-26 02:15:07 ----RSD---- C:\Windows\assembly 2011-08-25 03:31:37 ----SD---- C:\ProgramData\Microsoft 2011-08-02 20:54:40 ----D---- C:\Windows\Microsoft.NET 2011-07-02 19:52:37 ----D---- C:\Windows\system32\drivers\UMDF 2011-07-02 12:35:05 ----RSD---- C:\Windows\Fonts 2011-06-30 10:56:33 ----D---- C:\Program Files\Common Files\microsoft shared 2011-06-28 23:45:15 ----RD---- C:\Users 2011-06-28 23:44:48 ----D---- C:\Windows\Help 2011-06-28 20:56:24 ----D---- C:\Windows\system32\restore 2011-06-28 20:48:35 ----D---- C:\Windows\system32\CodeIntegrity 2011-06-28 20:43:30 ----D---- C:\Windows\system32\wbem 2011-06-28 20:37:18 ----SHD---- C:\$Recycle.Bin 2011-06-28 20:37:01 ----D---- C:\Program Files\Windows NT 2011-06-28 20:36:36 ----D---- C:\Windows\rescache 2011-06-28 20:33:28 ----D---- C:\Windows\system32\sysprep 2011-06-28 20:31:47 ----D---- C:\Windows\CSC ======Список драйверов (тип запуска: R=Запущен, S=остановлен, 0=Загрузочный, 1=Системный, 2=Автоматически, 3=Вручную, 4=Отключено)====== R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648] R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2011-02-23 16184] R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584] R3 CmDE10k;CmDE10k; C:\Windows\system32\drivers\CmDE10k.SYS [2006-10-31 35017] R3 RTL8167;Драйвер Realtek 8167 NT; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-14 139776] S0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-08-25 443448] S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704] S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720] S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888] S3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2011-05-25 139368] S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816] S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368] S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120] S3 RegFilter;RegFilter; \??\C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\regfilter.sys [2011-03-23 30600] S3 rockusb27;Driver for rockusb27 Device; C:\Windows\system32\DRIVERS\rockusb27.sys [2010-03-29 44072] S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632] S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304] S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224] S3 UrlFilter;UrlFilter; \??\C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\UrlFilter.sys [2011-03-23 19280] S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328] S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736] S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824] S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920] S4 FileMonitor;FileMonitor; \??\C:\Program Files\IObit\IObit Malware Fighter\Drivers\win7_x86\FileMonitor.sys [2011-07-11 18768] ======Список служб (тип запуска: R=Запущена, S=остановлена, 0=Загрузочная, 1=Системная, 2=Автоматически, 3=Вручную, 4=Отключено)====== S2 AdvancedSystemCareService;Advanced SystemCare Service; C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe [2011-08-09 328536] S2 IMFservice;IMF Service; C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [2011-07-20 820568] S2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2011-05-25 615528] S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-05-25 2214504] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-05-20 378472] S2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728] S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992] S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2011-06-08 633856] S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992] S4 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992] -----------------EOF-----------------