Лог утилиты random's system information tool 1.09 (автор: random/random) Run by сергей at 2011-09-22 21:15:33 Microsoft Windows XP Professional Service Pack 3 Системный раздел D: размер 20 GB (42%) Свободно 46 GB Total RAM: 1535 MB (67% free) HijackThis download failed ======Папка назначеных зданий====== D:\WINDOWS\tasks\AppleSoftwareUpdate.job D:\WINDOWS\tasks\Driver Fetch.job D:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job D:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job D:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job D:\WINDOWS\tasks\User_Feed_Synchronization-{74F7417D-56E1-4183-9448-A75F9B2D3482}.job ======Снимок реестра====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] AcroIEHlprObj Class - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}] Conduit Engine - D:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}] Canon Easy-WebPrint EX BHO - D:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-11-08 202144] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - D:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-08-20 305328] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] Skype Browser Helper - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-07-11 3821568] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] Google Toolbar Notifier BHO - D:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll [2011-05-20 1007160] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}] McAfee SiteAdvisor BHO - d:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll [2011-08-11 258120] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B930BA63-9E5A-11D3-A288-0000E80E2EDE}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C93F72A2-2162-4BBA-A07A-F13663C297A6}] Визуальные закладки - D:\Program Files\Yandex\YandexBarIE\fastdial.dll [2011-07-27 2644280] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] Ask Toolbar - D:\Program Files\Ask.com\GenericAskToolbar.dll [2010-02-04 1197448] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}] BS Player Toolbar - D:\Program Files\BS_Player\prxtbBS_0.dll [2011-01-17 175912] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - Easy-WebPrint - D:\Program Files\Canon\Easy-WebPrint\Toolband.dll [2004-08-26 405504] {D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - D:\Program Files\Ask.com\GenericAskToolbar.dll [2010-02-04 1197448] {91397D20-1446-11D4-8AF4-0040CA1127B6} - Яндекс.Бар - D:\Program Files\Yandex\YandexBarIE\yndbar.dll [2011-07-27 14879544] {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - D:\Program Files\BS_Player\prxtbBS_0.dll [2011-01-17 175912] {468CD8A9-7C25-45FA-969E-3D925C689DC4} - Rambler-Ассистент - D:\Program Files\Rambler Assistant\ramblertoolbarU5950.dll [2008-12-09 845296] {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - D:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-11-08 1619352] {30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - D:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - D:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-08-20 305328] {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - d:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll [2011-08-11 258120] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "WheelMouse"=D:\Program Files\A4Tech\Mouse\Amoumain.exe [2006-03-19 167936] "ATICCC"=D:\Program Files\ATI Technologies\ATI.ACE\cli.exe [2006-01-02 45056] "avgnt"=D:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2011-04-06 281768] "SoundMan"=D:\WINDOWS\SOUNDMAN.EXE [2007-04-16 577536] "OSSelectorReinstall"=D:\Program Files\Common Files\Acronis\Acronis Disk Director\oss_reinstall.exe [2007-03-26 2227256] "QuickTime Task"=D:\Program Files\QuickTime\qttask.exe [2010-11-29 421888] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"=D:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360] "uTorrent"=D:\Program Files\uTorrent\uTorrent.exe [2010-11-15 328056] "H/PC Connection Agent"=C:\wcescomm.exe [2005-11-15 1200128] "Tutor.exe"=D:\Program Files\ABBYY Lingvo x3\Tutor.exe [2010-09-07 1324296] "Praetorian"=D:\Documents and Settings\сергей\Local Settings\Application Data\Yandex\Updater\praetorian.exe [2011-06-17 1460024] "Rambler Update"=D:\Documents and Settings\сергей\Local Settings\Application Data\Rambler\RamblerUpdater\RUpdate.exe [2011-07-01 533592] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AMP Agent] D:\Program Files\Common Files\ARS Company\Agent\Agent.exe [2002-02-28 37888] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS SmartDoctor] C:\Program Files\ASUS\SmartDoctor\SmartDoctor.exe [2006-04-18 1073152] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter] D:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2010-03-25 2516296] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenuEx] D:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE [2010-04-02 1185112] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite] D:\Program Files\DAEMON Tools Lite\daemon.exe [2008-04-01 486856] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\H/PC Connection Agent] C:\wcescomm.exe [2005-11-15 1200128] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Intense Registry Service] IntEdReg.exe /CHECK [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper] D:\Program Files\iTunes\iTunesHelper.exe [2011-01-25 421160] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Lingvo Launcher] D:\Program Files\ABBYY Lingvo x3\LvAgent.exe [2010-09-07 1774856] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LingvoTraining] C:\Program Files\Tutor.exe [2005-09-01 1282048] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsXSLT] D:\WINDOWS\system32\msxslt3.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck] D:\WINDOWS\system32\NeroCheck.exe [2006-01-12 155648] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OM_Monitor] G:\Program Files\Monitor.exe [2006-05-16 57344] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OpwareSE2] D:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe [2003-05-08 49152] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PinnacleDriverCheck] D:\WINDOWS\system32\PSDrvCheck.exe [2004-03-10 406016] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Praetorian] D:\Documents and Settings\сергей\Local Settings\Application Data\Yandex\Updater\praetorian.exe [2011-06-17 1460024] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] D:\Program Files\QuickTime\qttask.exe [2010-11-29 421888] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl] G:\Program Files\PDVDServ.exe [2004-11-02 32768] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg] D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2010-07-07 39408] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Teleport Pro Scheduler] H:\Программы\Teleport Pro\prosched.exe /a [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Tutor.exe] D:\Program Files\ABBYY Lingvo x3\Tutor.exe [2010-09-07 1324296] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent] D:\Program Files\Winamp\Winampa.exe [2001-04-30 10752] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Documents and Settings^All Users^Главное меню^Программы^Автозагрузка^Ускоренный запуск Adobe Reader.lnk] D:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE [2004-12-14 29696] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Documents and Settings^сергей^Главное меню^Программы^Автозагрузка^Adobe Gamma.lnk] D:\PROGRA~1\COMMON~1\Adobe\CALIBR~1\ADOBEG~1.EXE [2005-03-16 113664] D:\Documents and Settings\All Users\Главное меню\Программы\Автозагрузка McAfee Security Scan Plus.lnk - D:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent] D:\WINDOWS\system32\Ati2evxx.dll [2006-03-17 61440] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon] D:\WINDOWS\system32\WgaLogon.dll [2009-02-12 190976] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - D:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa] "authentication packages"=msv1_0 nwprovau [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, mrqlcyci.dll, mkdvvylo.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=0xFF000000 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"=1 "NoToolbarCustomize"=0 "NoBandCustomize"=0 "NoDriveTypeAutoRun"=255 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\rapimgr.exe"="C:\rapimgr.exe:*:Enabled:ActiveSync RAPI Manager" "D:\Program Files\uTorrent\uTorrent.exe"="D:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent" "D:\Program Files\Opera AC\opera.exe"="D:\Program Files\Opera AC\opera.exe:*:Enabled:Opera Internet Browser" "D:\Program Files\Skype\Phone\Skype.exe"="D:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype. Take a deep breath " [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "midimapper"=midimap.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msadpcm"=msadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.trspch"=tssoft32.acm "vidc.cvid"=iccvid.dll "VIDC.I420"=vdrcodec.dll "vidc.iv31"=ir32_32.dll "vidc.iv32"=ir32_32.dll "vidc.iv41"=ir41_32.ax "VIDC.IYUV"=iyuv_32.dll "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVU9"=tsbyuv.dll "VIDC.YVYU"=msyuv.dll "wavemapper"=msacm32.drv "msacm.msg723"=msg723.acm "vidc.M263"=msh263.drv "vidc.M261"=msh261.drv "msacm.msaudio1"=msaud32.acm "msacm.sl_anet"=sl_anet.acm "msacm.iac2"=D:\WINDOWS\system32\iac25_32.ax "vidc.iv50"=ir50_32.dll "msacm.l3acm"=D:\WINDOWS\system32\l3codeca.acm "msacm.divxa32"=msaud32_divx.acm "VIDC.ACDV"=ACDV.dll "MSVideo8"=VfWWDM32.dll "vidc.XVID"=xvidvfw.dll "vidc.asv2"=asusasv2.dll "msacm.l3codecp"=l3codecp.acm "wave1"=serwvdrv.dll "vidc.DIVX"=DivX.dll "VIDC.MJPG"=pvmjpg21.dll "VIDC.PIM1"=pclepim1.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv ======Список файлов и папок, созданных за последние 3 месяца====== 2011-09-22 21:15:33 ----D---- D:\rsit 2011-09-22 17:24:39 ----D---- D:\Program Files\Trend Micro 2011-09-21 22:05:43 ----A---- D:\WINDOWS\system32\CapabilityTable.exe 2011-09-21 21:01:18 ----D---- D:\Program Files\VS Revo Group 2011-09-18 20:07:05 ----HD---- D:\WINDOWS\system32\GroupPolicy 2011-09-16 17:35:47 ----HDC---- D:\WINDOWS\$NtUninstallKB2616676$ 2011-09-16 17:30:42 ----HDC---- D:\WINDOWS\$NtUninstallKB2570947$ 2011-09-14 19:35:24 ----D---- D:\Program Files\Common Files\McAfee 2011-09-14 19:34:47 ----D---- D:\Program Files\McAfee 2011-09-13 00:25:43 ----D---- D:\Program Files\Spybot - Search & Destroy 2011-09-13 00:25:43 ----D---- D:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy 2011-09-12 23:26:59 ----D---- D:\Documents and Settings\сергей\Application Data\Malwarebytes 2011-09-12 23:26:51 ----D---- D:\Documents and Settings\All Users\Application Data\Malwarebytes 2011-09-12 23:26:48 ----A---- D:\WINDOWS\system32\drivers\mbam.sys 2011-09-12 23:26:47 ----D---- D:\Program Files\Malwarebytes' Anti-Malware 2011-09-08 13:23:23 ----HDC---- D:\WINDOWS\$NtUninstallKB2607712$ 2011-09-04 14:23:12 ----D---- D:\Program Files\McAfee Security Scan 2011-09-04 14:23:12 ----D---- D:\Documents and Settings\All Users\Application Data\McAfee Security Scan 2011-09-04 14:19:57 ----D---- D:\Config.Msi 2011-09-03 21:34:51 ----D---- D:\Documents and Settings\сергей\Application Data\rambler_holdem 2011-08-29 14:08:13 ----D---- D:\Program Files\Opera AC 2011-08-28 19:57:44 ----D---- D:\Documents and Settings\All Users\Application Data\McAfee 2011-08-24 19:13:24 ----HDC---- D:\WINDOWS\$NtUninstallKB2570791$ 2011-08-15 16:28:30 ----HDC---- D:\WINDOWS\$NtUninstallKB2567680$ 2011-08-15 16:28:24 ----HDC---- D:\WINDOWS\$NtUninstallKB2536276-v2$ 2011-08-15 16:28:18 ----HDC---- D:\WINDOWS\$NtUninstallKB2570222$ 2011-08-15 16:23:42 ----HDC---- D:\WINDOWS\$NtUninstallKB2566454$ 2011-08-15 16:23:17 ----HDC---- D:\WINDOWS\$NtUninstallKB2562937$ 2011-07-13 19:22:54 ----HDC---- D:\WINDOWS\$NtUninstallKB2507938$ 2011-07-13 19:19:21 ----HDC---- D:\WINDOWS\$NtUninstallKB2555917$ 2011-07-02 18:51:57 ----HD---- D:\Documents and Settings\All Users\Application Data\CanonIJScan 2011-06-30 20:11:16 ----HDC---- D:\WINDOWS\$NtUninstallKB2541763$ ======Список файлов и папок, измененных за последние 3 месяца====== 2060-08-18 17:02:22 ----C---- D:\WINDOWS\system32\Cc3250mt.dll 2060-08-18 16:40:44 ----C---- D:\WINDOWS\system32\Cp3245mt.dll 2060-08-18 16:40:44 ----C---- D:\WINDOWS\system32\Borlndmm.dll 2011-09-22 21:14:11 ----D---- D:\WINDOWS\Prefetch 2011-09-22 21:13:55 ----D---- D:\Documents and Settings\сергей\Application Data\uTorrent 2011-09-22 21:06:28 ----D---- D:\WINDOWS\Temp 2011-09-22 20:45:24 ----D---- D:\WINDOWS\system32\CatRoot2 2011-09-22 20:42:42 ----A---- D:\WINDOWS\SchedLgU.Txt 2011-09-22 20:40:47 ----D---- D:\Documents and Settings\сергей\Application Data\Skype 2011-09-22 17:32:36 ----D---- D:\WINDOWS\system32\drivers 2011-09-22 17:24:39 ----SHD---- D:\WINDOWS\Installer 2011-09-22 17:24:39 ----D---- D:\Program Files 2011-09-22 17:18:15 ----SHD---- D:\System Volume Information 2011-09-22 07:29:48 ----D---- D:\Documents and Settings\All Users\Application Data\Avira 2011-09-22 02:11:58 ----D---- D:\WINDOWS\system32\NtmsData 2011-09-22 00:57:21 ----D---- D:\WINDOWS\Registration 2011-09-22 00:38:19 ----D---- D:\WINDOWS\network diagnostic 2011-09-22 00:23:20 ----D---- D:\WINDOWS\system32 2011-09-22 00:23:20 ----A---- D:\WINDOWS\system32\PerfStringBackup.INI 2011-09-22 00:22:11 ----D---- D:\WINDOWS\security 2011-09-22 00:21:23 ----HD---- D:\WINDOWS\inf 2011-09-22 00:00:39 ----AC---- D:\WINDOWS\winamp.ini 2011-09-21 22:08:17 ----D---- D:\WINDOWS 2011-09-21 22:05:34 ----D---- D:\WINDOWS\system32\ReinstallBackups 2011-09-21 21:06:59 ----D---- D:\WINDOWS\Help 2011-09-21 21:06:59 ----D---- D:\Program Files\DriverGuide DriverScan 2011-09-21 21:06:59 ----D---- D:\Program Files\AdorageI-GfxDatas 2011-09-20 13:52:39 ----D---- D:\Documents and Settings\сергей\Application Data\ICQ 2011-09-19 22:20:14 ----D---- D:\Program Files\ABBYY Lingvo x3 2011-09-19 21:08:37 ----D---- D:\WINDOWS\Debug 2011-09-18 21:42:13 ----D---- D:\WINDOWS\system32\drivers\etc 2011-09-17 14:22:49 ----A---- D:\WINDOWS\NeroDigital.ini 2011-09-16 17:35:49 ----RSHDC---- D:\WINDOWS\system32\dllcache 2011-09-16 17:30:59 ----A---- D:\WINDOWS\system32\MRT.exe 2011-09-16 17:29:23 ----HD---- D:\WINDOWS\$hf_mig$ 2011-09-15 23:07:23 ----D---- D:\Program Files\Google 2011-09-14 19:35:24 ----D---- D:\Program Files\Common Files 2011-09-13 00:02:22 ----HDC---- D:\WINDOWS\$NtUninstallKB2183461$ 2011-09-11 11:52:02 ----D---- D:\Program Files\ICQ7.5 2011-09-09 11:12:07 ----A---- D:\WINDOWS\system32\crypt32.dll 2011-09-04 14:23:11 ----RD---- D:\Program Files\Skype 2011-09-04 14:23:09 ----D---- D:\Documents and Settings\All Users\Application Data\Skype 2011-09-04 14:23:07 ----D---- D:\Program Files\Game Explorer 2011-09-04 14:23:06 ----D---- D:\Program Files\Internet Explorer 2011-09-04 14:22:46 ----D---- D:\WINDOWS\WinSxS 2011-08-29 14:08:27 ----D---- D:\Documents and Settings\сергей\Application Data\Opera 2011-08-29 12:14:19 ----D---- D:\WINDOWS\system32\CatRoot 2011-08-15 17:22:27 ----D---- D:\WINDOWS\Microsoft.NET 2011-08-15 17:22:24 ----RSD---- D:\WINDOWS\assembly 2011-08-15 16:23:58 ----D---- D:\WINDOWS\ie8updates 2011-07-25 17:08:54 ----A---- D:\WINDOWS\system32\mshtml.dll 2011-07-08 15:49:22 ----N---- D:\WINDOWS\system32\tzchange.exe 2011-07-02 18:51:57 ----D---- D:\Documents and Settings\сергей\Application Data\Canon 2011-07-01 20:22:08 ----D---- D:\Program Files\Microsoft Office 2011-06-26 17:24:15 ----D---- D:\Documents and Settings\сергей\Application Data\skypePM 2011-06-23 20:30:57 ----A---- D:\WINDOWS\system32\wininet.dll 2011-06-23 20:30:57 ----A---- D:\WINDOWS\system32\urlmon.dll 2011-06-23 20:30:56 ----N---- D:\WINDOWS\system32\occache.dll 2011-06-23 20:30:56 ----N---- D:\WINDOWS\system32\mstime.dll 2011-06-23 20:30:56 ----N---- D:\WINDOWS\system32\jsproxy.dll 2011-06-23 20:30:56 ----A---- D:\WINDOWS\system32\url.dll 2011-06-23 20:30:56 ----A---- D:\WINDOWS\system32\mshtmled.dll 2011-06-23 20:30:56 ----A---- D:\WINDOWS\system32\msfeedsbs.dll 2011-06-23 20:30:56 ----A---- D:\WINDOWS\system32\msfeeds.dll 2011-06-23 20:30:56 ----A---- D:\WINDOWS\system32\licmgr10.dll 2011-06-23 20:30:56 ----A---- D:\WINDOWS\system32\iertutil.dll 2011-06-23 20:30:56 ----A---- D:\WINDOWS\system32\iepeers.dll 2011-06-23 20:30:55 ----N---- D:\WINDOWS\system32\iedkcs32.dll 2011-06-23 20:30:55 ----A---- D:\WINDOWS\system32\ieframe.dll 2011-06-23 14:05:37 ----N---- D:\WINDOWS\system32\ie4uinit.exe ======Список драйверов (тип запуска: R=Запущен, S=остановлен, 0=Загрузочный, 1=Системный, 2=Автоматически, 3=Вручную, 4=Отключено)====== R0 giveio;giveio; D:\WINDOWS\system32\giveio.sys [1996-04-03 5248] R0 nvata;nvata; D:\WINDOWS\system32\DRIVERS\nvata.sys [2005-08-18 93568] R0 ohci1394;OHCI-совместимый IEEE 1394 хост-контроллер; D:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696] R0 PxHelp20;PxHelp20; D:\WINDOWS\System32\Drivers\PxHelp20.sys [2006-10-18 36624] R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); D:\WINDOWS\System32\drivers\sfdrv01.sys [2005-08-10 50688] R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); D:\WINDOWS\System32\drivers\sfhlp02.sys [2005-05-16 6656] R0 sfsync03;StarForce Protection Synchronization Driver (version 3.x); D:\WINDOWS\System32\drivers\sfsync03.sys [2005-08-16 33792] R0 snapman;Acronis Snapshots Manager; D:\WINDOWS\system32\DRIVERS\snapman.sys [2011-05-25 114048] R0 speedfan;speedfan; D:\WINDOWS\system32\speedfan.sys [2006-09-24 5248] R0 sptd;sptd; D:\WINDOWS\System32\Drivers\sptd.sys [2010-04-27 717296] R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; D:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568] R1 AmdK8;Драйвер AMD процессора; D:\WINDOWS\system32\DRIVERS\AmdK8.sys [2005-03-09 43008] R1 Amfilter;A4Tech Mouse Filter Driver; D:\WINDOWS\system32\DRIVERS\Amfilter.sys [2006-01-11 8704] R1 asuskbnt;Enhanced Display Driver Helper Service; D:\WINDOWS\system32\drivers\atkkbnt.sys [2005-10-18 11008] R1 avgio;avgio; \??\D:\Program Files\Avira\AntiVir Desktop\avgio.sys [] R1 avipbb;avipbb; D:\WINDOWS\system32\DRIVERS\avipbb.sys [2011-09-03 138192] R1 cdrbsdrv;cdrbsdrv; D:\WINDOWS\system32\drivers\cdrbsdrv.sys [2004-03-08 13567] R1 PCLEPCI;PCLEPCI; \??\D:\WINDOWS\system32\drivers\pclepci.sys [] R1 ssmdrv;ssmdrv; D:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2010-06-17 28520] R1 Tcpip6;Драйвер протокола IPv6 (Microsoft); D:\WINDOWS\system32\DRIVERS\tcpip6.sys [2010-02-11 226880] R2 atksgt;atksgt; D:\WINDOWS\system32\DRIVERS\atksgt.sys [2009-08-28 279712] R2 avgntflt;avgntflt; D:\WINDOWS\system32\DRIVERS\avgntflt.sys [2011-09-03 66616] R2 EIO;EIO; \??\D:\WINDOWS\system32\drivers\EIO.sys [] R2 lirsgt;lirsgt; D:\WINDOWS\system32\DRIVERS\lirsgt.sys [2009-08-28 25888] R2 mdmxsdk;mdmxsdk; D:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2004-03-17 13059] R2 NwlnkIpx;NWLink IPX/SPX/NetBIOS-совместимый транспортный протокол; D:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2008-04-13 88320] R2 NwlnkNb;NWLink NetBIOS; D:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2003-08-18 63232] R2 NwlnkSpx;Протокол NWLink SPX/SPXII; D:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2003-08-18 55936] R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); D:\WINDOWS\system32\drivers\ALCXWDM.SYS [2008-09-24 4122368] R3 Amusbprt;A4Tech HID-compliant Mouse Driver; D:\WINDOWS\system32\DRIVERS\Amusbprt.sys [2006-01-11 13312] R3 ASAPIW2K;ASAPIW2K; D:\WINDOWS\system32\drivers\ASAPIW2k.sys [2005-02-23 11264] R3 ati2mtag;ati2mtag; D:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2006-03-17 1520640] R3 BENDER;Pinnacle DV/AV Capture; D:\WINDOWS\system32\drivers\bender.sys [2005-08-22 200320] R3 GEARAspiWDM;GEAR ASPI Filter Driver; D:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600] R3 hidusb;Драйвер класса HID Microsoft; D:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368] R3 HSF_DP;HSF_DP; D:\WINDOWS\system32\DRIVERS\HSF_DP.sys [2004-09-29 1036928] R3 HSFHWBS2;HSFHWBS2; D:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys [2004-09-29 219136] R3 MarvinBus;Pinnacle Marvin Bus; D:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2005-06-02 171008] R3 MODEMCSA;Устройство фильтрации потока Unimodem; D:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128] R3 NVENETFD;NVIDIA nForce Networking Controller Driver; D:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2005-04-05 33536] R3 nvnetbus;NVIDIA Network Bus Enumerator; D:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2005-04-05 12928] R3 pfc;Padus ASPI Shell; D:\WINDOWS\system32\drivers\pfc.sys [2004-04-01 10368] R3 tunmp;Драйвер адаптера минипорта Microsoft Tun; D:\WINDOWS\system32\DRIVERS\tunmp.sys [2008-04-13 12288] R3 winachsf;winachsf; D:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2004-09-29 702592] S1 asusgsb;ASUS Virtual Video Capture Device Driver; D:\WINDOWS\system32\drivers\asusgsb32.sys [] S3 Arp1394;Протокол клиента 1394 ARP; D:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800] S3 awiypb6h;awiypb6h; D:\WINDOWS\system32\drivers\awiypb6h.sys [] S3 CCDECODE;Closed Caption декодер; D:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024] S3 DM9102;DAVICOM 9102(A) PCI Fast Ethernet Based NT драйвер; D:\WINDOWS\system32\DRIVERS\DM9PCI5.SYS [2001-08-17 29696] S3 EZUSB;Usb Driver; D:\WINDOWS\System32\Drivers\ezusb.sys [2002-09-16 12307] S3 mouhid;Драйвер мыши HID; D:\WINDOWS\system32\DRIVERS\mouhid.sys [2003-08-18 12160] S3 MSTEE;Преобразователь потоков Tee/Sink-to-Sink Microsoft; D:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504] S3 NABTSFEC;NABTS/FEC VBI кодек; D:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248] S3 NdisIP;Microsoft видео или ТВ подключение; D:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880] S3 NIC1394;Сетевой драйвер 1394; D:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824] S3 nm;Драйвер сетевого монитора; D:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-13 40320] S3 NWRDR;NetWare Rdr; D:\WINDOWS\system32\DRIVERS\nwrdr.sys [2008-04-13 163584] S3 SLIP;BDA Slip De-Framer; D:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136] S3 streamip;BDA IPSink; D:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232] S3 USBAAPL;Apple Mobile USB Driver; D:\WINDOWS\System32\Drivers\usbaapl.sys [2010-12-14 41984] S3 usbccgp;Драйвер универсального родительского устройства USB (Microsoft); D:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128] S3 usbprint;Класс принтеров Microsoft USB; D:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856] S3 usbscan;Драйвер USB-сканера; D:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104] S3 USBSTOR;Драйвер запоминающих устройств для USB; D:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368] S3 Video3D;ASUS Video3D Service; D:\WINDOWS\System32\Drivers\Video3D32.sys [] S3 wceusbsh;Windows CE USB Serial Host Driver; D:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2005-06-14 104576] S3 WpdUsb;WpdUsb; D:\WINDOWS\System32\Drivers\wpdusb.sys [2006-10-18 38528] S3 WSTCODEC;World Standard Teletext кодек; D:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200] S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; D:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944] ======Список служб (тип запуска: R=Запущена, S=остановлена, 0=Загрузочная, 1=Системная, 2=Автоматически, 3=Вручную, 4=Отключено)====== R2 6to4;Служба поддержки IPv6; D:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R2 ABBYY.Licensing.Lingvo.Desktop.14.0;Сервис лицензирования ABBYY Lingvo x3; D:\Program Files\Common Files\ABBYY\Lingvo\14.0\Licensing\NetworkLicenseServer.exe [2010-05-07 816392] R2 AntiVirSchedulerService;Avira AntiVir Планировщик; D:\Program Files\Avira\AntiVir Desktop\sched.exe [2011-04-06 136360] R2 AntiVirService;Avira AntiVir Guard; D:\Program Files\Avira\AntiVir Desktop\avguard.exe [2011-09-03 269480] R2 Apple Mobile Device;Apple Mobile Device; D:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2011-01-05 37664] R2 Ati HotKey Poller;Ati HotKey Poller; D:\WINDOWS\system32\Ati2evxx.exe [2006-03-17 405504] R2 ATKKeyboardService;ATK Keyboard Service; D:\WINDOWS\ATKKBService.exe [2006-04-10 241664] R2 Bonjour Service;Служба Bonjour; D:\Program Files\Bonjour\mDNSResponder.exe [2010-10-07 345376] R2 LightScribeService;LightScribeService Direct Disc Labeling Service; D:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-04-24 73728] R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; d:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe [2011-08-10 94880] R2 MSSQL$PINNACLESYS;MSSQL$PINNACLESYS; G:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe [2008-12-18 9158656] R2 PinnacleSys.MediaServer;Pinnacle Systems Media Service; D:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe [2006-01-19 49152] R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; D:\WINDOWS\system32\svchost.exe [2008-04-14 14336] S2 gupdate;Служба Google Update (gupdate); D:\Program Files\Google\Update\GoogleUpdate.exe [2010-07-07 135664] S2 NWCWorkstation;Клиент для сетей NetWare; D:\WINDOWS\system32\svchost.exe [2008-04-14 14336] S3 Adobe LM Service;Adobe LM Service; D:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2010-04-13 72704] S3 aspnet_state;ASP.NET State Service; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632] S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; D:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104] S3 gupdatem;Служба Google Update (gupdatem); D:\Program Files\Google\Update\GoogleUpdate.exe [2010-07-07 135664] S3 gusvc;Google Software Updater; D:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-07-07 182768] S3 IDriverT;InstallDriver Table Manager; D:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632] S3 idsvc;Windows CardSpace; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664] S3 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; D:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2010-04-05 116104] S3 iPod Service;Сервис iPod; D:\Program Files\iPod\bin\iPodService.exe [2011-01-25 820008] S3 McComponentHostService;McAfee Security Scan Component Host Service; D:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232] S3 MSCSPTISRV;MSCSPTISRV; D:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [2006-12-14 45056] S3 MSSQLServerADHelper;MSSQLServerADHelper; D:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2005-05-03 73728] S3 ose;Office Source Engine; D:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136] S3 PACSPTISVR;PACSPTISVR; D:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [2006-12-14 57344] S3 SonicStage Back-End Service;SonicStage Back-End Service; D:\Program Files\Common Files\Sony Shared\AVLib\SsBeSvc.exe [2007-02-05 112184] S3 SPTISRV;Sony SPTI Service; D:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [2006-12-14 69632] S3 SQLAgent$PINNACLESYS;SQLAgent$PINNACLESYS; G:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlagent.EXE [2005-05-03 323584] S3 SSScsiSV;SonicStage SCSI Service; D:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe [2007-02-05 75320] S3 WMPNetworkSvc;Служба общих сетевых ресурсов проигрывателя Windows Media; D:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 914944] S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096] -----------------EOF-----------------