Лог утилиты random's system information tool 1.08 (автор: random/random) Run by Наталья at 2012-01-30 12:51:52 Microsoft Windows XP Professional Service Pack 3 Системный раздел C: размер 19 GB (31%) Свободно 60 GB Total RAM: 1023 MB (32% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 12:52:06, on 30.01.2012 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Alwil Software\Avast5\afwServ.exe C:\Program Files\Alwil Software\Avast5\AvastSvc.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Alwil Software\Avast5\avastUI.exe C:\Program Files\Mail.Ru\Agent\magent.exe C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe C:\Program Files\Cyberlink\Shared Files\brs.exe C:\Program Files\Common Files\ACD Systems\EN\DevDetect.exe C:\Program Files\VistaDriveIcon\VistaDrv.exe C:\Program Files\LClock\lclock.exe C:\Program Files\Download Master\dmaster.exe C:\Program Files\RAM Boost Master\RAMBoostMaster.exe C:\Program Files\CursorXP\CursorXP.exe C:\Program Files\Yandex\Punto Switcher\punto.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Mail.Ru\Guard\GuardMailRu.exe C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Mozilla Firefox\plugin-container.exe C:\Program Files\Mozilla Firefox\plugin-container.exe C:\Program Files\KMPlayer\KMPlayer.exe C:\Program Files\totalcmd_IT\TOTALCMD.EXE \?\C:\WINDOWS\system32\WBEM\WMIADAP.EXE e:\Восстановление системы!!\avz4\avz.exe e:\Восстановление системы!!\RSIT.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\trend micro\Наталья.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://topdownloads.ru/games/catalog R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://topdownloads.ru/games/catalog R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Ссылки R3 - URLSearchHook: Спутник@Mail.Ru - {09900DE8-1DCA-443F-9243-26FF581438AF} - c:\program files\mail.ru\sputnik\MailRuSputnik.dll O1 - Hosts: 31.214.170.235 odnoklassniki.ru O1 - Hosts: 31.214.170.235 www.facebook.com O1 - Hosts: 31.214.170.235 www.twitter.com O1 - Hosts: 31.214.170.235 vkontakte.ru O1 - Hosts: 31.214.170.235 ru-ru.facebook.com O1 - Hosts: 31.214.170.235 www.odnoklassniki.ru O1 - Hosts: 31.214.170.235 vk.com O1 - Hosts: 31.214.170.235 www.vkontakte.ru O1 - Hosts: 31.214.170.235 www.vk.com O1 - Hosts: 31.214.170.235 facebook.com O1 - Hosts: 31.214.170.235 twitter.com O2 - BHO: Спутник@Mail.Ru - {8984B388-A5BB-4DF7-B274-77B879E179DB} - c:\program files\mail.ru\sputnik\MailRuSputnik.dll O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll O2 - BHO: IE 4.x-6.x BHO for Download Master - {9961627E-4059-41B4-8E0E-A7D6B3854ADF} - C:\PROGRA~1\DOWNLO~1\dmiehlp.dll O2 - BHO: AlterGeo Magic Scanner - {9BFBA68E-E21B-458E-AE12-FE85E903D2C1} - C:\Program Files\AlterGeo\AlterGeo Magic Scanner\3.3.2.779\AlterGeo.BrowserPlugin.dll O2 - BHO: Визуальные закладки - {C93F72A2-2162-4BBA-A07A-F13663C297A6} - C:\Program Files\Yandex\YandexBarIE\fastdial.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll O3 - Toolbar: Спутник@Mail.Ru - {09900DE8-1DCA-443F-9243-26FF581438AF} - c:\program files\mail.ru\sputnik\MailRuSputnik.dll O3 - Toolbar: Яндекс.Бар - {91397D20-1446-11D4-8AF4-0040CA1127B6} - C:\Program Files\Yandex\YandexBarIE\yndbar.dll O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui O4 - HKLM\..\Run: [MAgent] C:\Program Files\Mail.Ru\Agent\magent.exe -LM O4 - HKLM\..\Run: [RemoteControl9] "C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe" O4 - HKLM\..\Run: [BDRegion] C:\Program Files\Cyberlink\Shared Files\brs.exe O4 - HKLM\..\Run: [Device Detector] DevDetect.exe -autorun O4 - HKLM\..\Run: [LogonStudio] "C:\Program Files\WinCustomize\LogonStudio\logonstudio.exe" /RANDOM O4 - HKCU\..\Run: [VistaIcon] C:\Program Files\VistaDriveIcon\VistaDrv.exe O4 - HKCU\..\Run: [LClock] C:\Program Files\LClock\lclock.exe O4 - HKCU\..\Run: [Download Master] C:\Program Files\Download Master\dmaster.exe -autorun O4 - HKCU\..\Run: [Total Commander 32 bit] C:\Program Files\totalcmd_IT\TOTALCMD.EXE O4 - HKCU\..\Run: [RAM Boost Master] C:\Program Files\RAM Boost Master\RAMBoostMaster.exe /autorun O4 - HKCU\..\Run: [CursorXP] "C:\Program Files\CursorXP\CursorXP.exe" -s O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [VistaIcon] C:\Program Files\VistaDriveIcon\VistaDrv.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [ZZZZ1_FirstLogonSetting] %SystemRoot%\System32\rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\custom.inf,OnceFirstLogonInstall,0 (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [ZZZZ1_FirstLogonSetting] %SystemRoot%\System32\rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\custom.inf,OnceFirstLogonInstall,0 (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [VistaIcon] C:\Program Files\VistaDriveIcon\VistaDrv.exe (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [ZZZZ2_FirstLogonSetting] %SystemRoot%\System32\rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\custom.inf,NewUserFirstLogonInstall,0 (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [VistaIcon] C:\Program Files\VistaDriveIcon\VistaDrv.exe (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [ZZZZ2_FirstLogonSetting] %SystemRoot%\System32\rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\custom.inf,NewUserFirstLogonInstall,0 (User 'Default user') O4 - Startup: AdobeUpdater.lnk = C:\WINDOWS\system32\cmd.exe O4 - Startup: Punto Switcher.lnk = C:\Program Files\Yandex\Punto Switcher\punto.exe O8 - Extra context menu item: &Экспорт в Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Закачать ВСЕ при помощи Download Master - C:\Program Files\Download Master\dmieall.htm O8 - Extra context menu item: Закачать при помощи Download Master - C:\Program Files\Download Master\dmie.htm O8 - Extra context menu item: Передать на удаленную закачку DM - C:\Program Files\Download Master\remdown.htm O9 - Extra button: Mail.Ru Агент - {7558B7E5-7B26-4201-BEDB-00D5FF534523} - C:\Program Files\Mail.Ru\Agent\magent.exe O9 - Extra 'Tools' menuitem: Mail.Ru Агент - {7558B7E5-7B26-4201-BEDB-00D5FF534523} - C:\Program Files\Mail.Ru\Agent\magent.exe O9 - Extra button: Download Master - {8DAE90AD-4583-4977-9DD4-4360F7A45C74} - C:\Program Files\Download Master\dmaster.exe O9 - Extra 'Tools' menuitem: &Download Master - {8DAE90AD-4583-4977-9DD4-4360F7A45C74} - C:\Program Files\Download Master\dmaster.exe O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O17 - HKLM\System\CCS\Services\Tcpip\..\{EF373A67-96BE-41EE-A7F3-A2A935790247}: NameServer = 91.144.144.3 91.144.146.3 O22 - SharedTaskScheduler: Предзагрузчик Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Демон кэша категорий компонентов - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\Alwil Software\Avast5\afwServ.exe O23 - Service: Журнал событий (Eventlog) - Корпорация Майкрософт - C:\WINDOWS\system32\services.exe O23 - Service: Guard.Mail.ru - Unknown owner - C:\Program Files\Mail.Ru\Guard\GuardMailRu.exe O23 - Service: Служба Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Служба Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Служба COM записи компакт-дисков IMAPI (ImapiService) - Корпорация Майкрософт - C:\WINDOWS\system32\imapi.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Plug and Play (PlugPlay) - Корпорация Майкрософт - C:\WINDOWS\system32\services.exe O23 - Service: Диспетчер сеанса справки для удаленного рабочего стола (RDSessMgr) - Корпорация Майкрософт - C:\WINDOWS\system32\sessmgr.exe O23 - Service: Смарт-карты (SCardSvr) - Корпорация Майкрософт - C:\WINDOWS\System32\SCardSvr.exe O23 - Service: Журналы и оповещения производительности (SysmonLog) - Корпорация Майкрософт - C:\WINDOWS\system32\smlogsvc.exe O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe O23 - Service: Теневое копирование тома (VSS) - Корпорация Майкрософт - C:\WINDOWS\System32\vssvc.exe O23 - Service: Адаптер производительности WMI (WmiApSrv) - Корпорация Майкрософт - C:\WINDOWS\system32\wbem\wmiapsrv.exe -- End of file - 10802 bytes ======Папка назначеных зданий====== C:\WINDOWS\tasks\AppleSoftwareUpdate.job C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job ======Снимок реестра====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8984B388-A5BB-4DF7-B274-77B879E179DB}] MailRuBHO Class - c:\program files\mail.ru\sputnik\MailRuSputnik.dll [2012-01-18 1588824] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}] avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2011-11-28 809040] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9961627E-4059-41B4-8E0E-A7D6B3854ADF}] IE 4.x-6.x BHO for Download Master - C:\PROGRA~1\DOWNLO~1\dmiehlp.dll [2011-10-14 165440] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9BFBA68E-E21B-458E-AE12-FE85E903D2C1}] AlterGeoBHO Class - C:\Program Files\AlterGeo\AlterGeo Magic Scanner\3.3.2.779\AlterGeo.BrowserPlugin.dll [2011-06-08 282656] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C93F72A2-2162-4BBA-A07A-F13663C297A6}] Визуальные закладки - C:\Program Files\Yandex\YandexBarIE\fastdial.dll [2011-12-13 2767160] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2012-01-18 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}] JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2012-01-18 79648] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2011-11-28 809040] {09900DE8-1DCA-443F-9243-26FF581438AF} - Спутник@Mail.Ru - c:\program files\mail.ru\sputnik\MailRuSputnik.dll [2012-01-18 1588824] {91397D20-1446-11D4-8AF4-0040CA1127B6} - Яндекс.Бар - C:\Program Files\Yandex\YandexBarIE\yndbar.dll [2011-12-13 8856376] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2008-08-19 77824] "NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2010-03-16 110696] "NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2010-03-16 13670504] "avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2011-11-28 3744552] "MAgent"=C:\Program Files\Mail.Ru\Agent\magent.exe [2012-01-18 14900288] "RemoteControl9"=C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe [2009-10-06 87336] "BDRegion"=C:\Program Files\Cyberlink\Shared Files\brs.exe [2009-09-01 75048] "Device Detector"=DevDetect.exe -autorun [] "LogonStudio"=C:\Program Files\WinCustomize\LogonStudio\logonstudio.exe [2002-09-03 987187] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "VistaIcon"=C:\Program Files\VistaDriveIcon\VistaDrv.exe [2008-01-02 132096] "LClock"=C:\Program Files\LClock\lclock.exe [2007-12-14 86016] "Download Master"=C:\Program Files\Download Master\dmaster.exe [2011-12-22 4185664] "Total Commander 32 bit"=C:\Program Files\totalcmd_IT\TOTALCMD.EXE [2011-02-01 3707808] "RAM Boost Master"=C:\Program Files\RAM Boost Master\RAMBoostMaster.exe [2009-01-19 4559872] "CursorXP"=C:\Program Files\CursorXP\CursorXP.exe [2003-03-01 125440] C:\Documents and Settings\Наталья\Главное меню\Программы\Автозагрузка AdobeUpdater.lnk - C:\WINDOWS\system32\cmd.exe Punto Switcher.lnk - C:\Program Files\Yandex\Punto Switcher\punto.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2010-06-28 133632] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableLUA"=0 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 "NoSharedDocuments"=1 "NoSMConfigurePrograms"=1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Program Files\CyberLink\PowerDVD9\PowerDVD9.exe"="C:\Program Files\CyberLink\PowerDVD9\PowerDVD9.exe:*:Enabled:CyberLink PowerDVD 9.0" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Program Files\CyberLink\PowerDVD9\PowerDVD9.exe"="C:\Program Files\CyberLink\PowerDVD9\PowerDVD9.exe:*:Enabled:CyberLink PowerDVD 9.0" ======Список файлов и папок, созданных за последние 3 месяца====== 2012-01-30 12:43:27 ----D---- C:\WINDOWS\LastGood 2012-01-30 11:17:53 ----D---- C:\Program Files\trend micro 2012-01-30 11:17:48 ----D---- C:\rsit 2012-01-29 22:53:36 ----D---- C:\Documents and Settings\Наталья\Application Data\AMS Software 2012-01-29 22:53:28 ----A---- C:\WINDOWS\ФотоШОУ Uninstaller.exe 2012-01-29 22:53:00 ----D---- C:\Program Files\ФотоШОУ 2012-01-29 18:52:36 ----A---- C:\WINDOWS\LogonStudio.ini 2012-01-29 17:50:56 ----A---- C:\WINDOWS\system32\JPGUtils.dll 2012-01-29 17:50:55 ----D---- C:\Program Files\WinCustomize 2012-01-29 17:50:14 ----D---- C:\Program Files\Common Files\Stardock 2012-01-29 17:50:13 ----D---- C:\Program Files\Stardock 2012-01-29 17:50:13 ----A---- C:\WINDOWS\system32\drivers\vidstub.sys 2012-01-29 17:49:50 ----D---- C:\Program Files\CursorXP 2012-01-26 22:49:20 ----D---- C:\Program Files\Mozilla Firefox 2012-01-26 16:06:08 ----D---- C:\WINDOWS\Sun 2012-01-26 16:06:02 ----D---- C:\Documents and Settings\Наталья\Application Data\Sun 2012-01-26 00:28:42 ----D---- C:\Program Files\RAM Boost Master 2012-01-26 00:08:18 ----D---- C:\Documents and Settings\All Users\Application Data\ACD Systems 2012-01-26 00:08:08 ----D---- C:\Program Files\ACD Systems 2012-01-26 00:00:26 ----D---- C:\Documents and Settings\Наталья\Application Data\CyberLink 2012-01-25 23:58:57 ----D---- C:\Documents and Settings\All Users\Application Data\CyberLink 2012-01-25 23:58:38 ----D---- C:\Program Files\Common Files\CyberLink 2012-01-25 23:58:37 ----D---- C:\Program Files\InstallShield Installation Information 2012-01-25 23:57:36 ----D---- C:\Program Files\CyberLink 2012-01-25 23:56:59 ----A---- C:\WINDOWS\system32\msxml3a.dll 2012-01-25 23:54:50 ----D---- C:\Documents and Settings\All Users\Application Data\Temp 2012-01-25 23:45:20 ----D---- C:\Program Files\CCleaner 2012-01-25 23:43:30 ----D---- C:\Program Files\Google 2012-01-25 14:59:13 ----A---- C:\WINDOWS\system32\MRT.exe 2012-01-24 00:29:03 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$ 2012-01-23 16:48:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$ 2012-01-23 16:48:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$ 2012-01-23 16:47:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2483614$ 2012-01-23 16:47:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$ 2012-01-23 16:47:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$ 2012-01-23 16:44:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$ 2012-01-23 16:44:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$ 2012-01-23 16:44:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$ 2012-01-23 16:42:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$ 2012-01-23 16:42:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2639417$ 2012-01-23 16:42:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$ 2012-01-23 16:42:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$ 2012-01-23 16:42:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$ 2012-01-23 16:42:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$ 2012-01-23 16:42:03 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$ 2012-01-23 16:41:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2641690$ 2012-01-23 16:41:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$ 2012-01-23 16:41:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$ 2012-01-23 16:41:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$ 2012-01-23 16:41:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$ 2012-01-23 16:41:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$ 2012-01-23 16:41:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$ 2012-01-23 16:40:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$ 2012-01-23 16:40:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$ 2012-01-23 16:40:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$ 2012-01-23 16:40:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$ 2012-01-23 16:40:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$ 2012-01-23 16:03:12 ----D---- C:\Documents and Settings\Наталья\Application Data\FastStone 2012-01-23 14:31:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$ 2012-01-23 14:29:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2570222$ 2012-01-23 14:28:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$ 2012-01-23 14:24:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2412687$ 2012-01-23 14:23:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$ 2012-01-23 14:23:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$ 2012-01-23 14:16:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2633952$ 2012-01-23 14:11:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$ 2012-01-23 14:04:37 ----D---- C:\WINDOWS\ie8updates 2012-01-23 14:02:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$ 2012-01-23 14:02:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$ 2012-01-23 14:01:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$ 2012-01-23 14:01:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2633171$ 2012-01-23 14:00:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$ 2012-01-23 13:52:10 ----HD---- C:\WINDOWS\$hf_mig$ 2012-01-23 13:46:37 ----D---- C:\WINDOWS\system32\appmgmt 2012-01-23 13:33:55 ----HD---- C:\WINDOWS\Icons 2012-01-23 13:21:32 ----A---- C:\WINDOWS\system32\TUKernel.exe 2012-01-21 20:50:35 ----D---- C:\Documents and Settings\Наталья\Application Data\Luntik 2012-01-21 20:05:01 ----A---- C:\WINDOWS\system32\uxtuneup.dll 2012-01-21 20:02:33 ----D---- C:\Documents and Settings\All Users\Application Data\CrystalIdea Software 2012-01-21 20:01:55 ----A---- C:\WINDOWS\system32\TURegOpt.exe 2012-01-21 20:01:32 ----D---- C:\Documents and Settings\Наталья\Application Data\TuneUp Software 2012-01-21 20:01:19 ----D---- C:\Program Files\TuneUp Utilities 2011 2012-01-21 20:01:13 ----D---- C:\Documents and Settings\All Users\Application Data\TuneUp Software 2012-01-21 20:00:26 ----SHD---- C:\Documents and Settings\All Users\Application Data\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16} 2012-01-21 19:46:14 ----D---- C:\Documents and Settings\Наталья\Application Data\ACD Systems 2012-01-21 19:44:19 ----D---- C:\Program Files\Common Files\ACD Systems 2012-01-21 12:02:52 ----D---- C:\users 2012-01-21 10:35:09 ----D---- C:\Program Files\S.T.A.L.K.E.R Одержимый Зоной 2012-01-21 10:31:15 ----D---- C:\Documents and Settings\Наталья\Application Data\Apple Computer 2012-01-20 19:33:30 ----D---- C:\Program Files\QuickTime 2012-01-20 19:33:30 ----D---- C:\Documents and Settings\All Users\Application Data\Apple Computer 2012-01-20 19:32:50 ----D---- C:\Program Files\Common Files\Apple 2012-01-20 19:32:17 ----D---- C:\Program Files\Apple Software Update 2012-01-20 19:32:17 ----D---- C:\Documents and Settings\All Users\Application Data\Apple 2012-01-19 16:55:23 ----D---- C:\Documents and Settings\Наталья\Application Data\танчики 2012-01-19 15:20:49 ----D---- C:\Documents and Settings\Наталья\Application Data\Shareman 2012-01-19 15:20:45 ----D---- C:\Program Files\Shareman 2012-01-19 14:53:41 ----D---- C:\Program Files\GamesTopDownloads 2012-01-19 14:38:01 ----D---- C:\Downloads 2012-01-19 14:31:21 ----D---- C:\Program Files\Uninstall Tool 2012-01-19 14:30:39 ----A---- C:\WINDOWS\WPI_Log_2012.01.19_13.30.39.txt 2012-01-19 14:29:47 ----A---- C:\WINDOWS\NeroDigital.ini 2012-01-19 12:40:17 ----D---- C:\WINDOWS\system32\Samsung_USB_Drivers 2012-01-19 12:39:48 ----D---- C:\Documents and Settings\Наталья\Application Data\Opera 2012-01-19 12:38:00 ----D---- C:\Program Files\Carambis 2012-01-18 23:09:49 ----D---- C:\Documents and Settings\All Users\Application Data\Yandex 2012-01-18 23:09:47 ----D---- C:\Program Files\Yandex 2012-01-18 23:09:46 ----D---- C:\Documents and Settings\Наталья\Application Data\Yandex 2012-01-18 22:50:58 ----D---- C:\Program Files\AlterGeo 2012-01-18 22:50:21 ----D---- C:\Program Files\Mail.Ru 2012-01-18 22:50:21 ----D---- C:\Documents and Settings\Наталья\Application Data\Mra 2012-01-18 22:21:21 ----D---- C:\Documents and Settings\Наталья\Application Data\Winamp 2012-01-18 22:21:07 ----D---- C:\Documents and Settings\Наталья\Application Data\Mozilla 2012-01-18 22:17:48 ----D---- C:\Program Files\Winamp 2012-01-18 20:03:28 ----A---- C:\WINDOWS\system32\h323log.txt 2012-01-18 20:03:01 ----A---- C:\WINDOWS\system32\drivers\splitter.sys 2012-01-18 20:03:00 ----A---- C:\WINDOWS\system32\drivers\aec.sys 2012-01-18 20:02:59 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys 2012-01-18 20:02:57 ----A---- C:\WINDOWS\system32\drivers\DMusic.sys 2012-01-18 20:02:56 ----A---- C:\WINDOWS\system32\drivers\MSKSSRV.sys 2012-01-18 20:02:55 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys 2012-01-18 20:02:53 ----A---- C:\WINDOWS\system32\drivers\MSPQM.sys 2012-01-18 20:02:52 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys 2012-01-18 20:02:51 ----A---- C:\WINDOWS\system32\drivers\MSPCLOCK.sys 2012-01-18 20:02:49 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys 2012-01-18 20:02:48 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys 2012-01-18 20:02:44 ----A---- C:\WINDOWS\system32\drivers\audstub.sys 2012-01-18 20:02:28 ----D---- C:\WINDOWS\system32\RTCOM 2012-01-18 20:02:26 ----A---- C:\WINDOWS\system32\ksuser.dll 2012-01-18 20:02:26 ----A---- C:\WINDOWS\system32\drivers\portcls.sys 2012-01-18 20:02:25 ----A---- C:\WINDOWS\system32\drivers\drmk.sys 2012-01-18 20:02:04 ----A---- C:\WINDOWS\system32\drivers\redbook.sys 2012-01-18 20:01:22 ----A---- C:\WINDOWS\system32\drivers\enum1394.sys 2012-01-18 20:00:58 ----D---- C:\Program Files\NVIDIA Corporation 2012-01-18 20:00:32 ----A---- C:\WINDOWS\system32\usbui.dll 2012-01-18 19:57:41 ----SHD---- C:\WINDOWS\Installer 2012-01-18 19:57:41 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2012-01-18 19:57:40 ----D---- C:\Program Files\Common Files\ODBC 2012-01-18 19:57:40 ----A---- C:\WINDOWS\ODBCINST.INI 2012-01-18 19:57:37 ----D---- C:\Program Files\Common Files\SpeechEngines 2012-01-18 19:57:36 ----RD---- C:\Program Files 2012-01-18 19:57:36 ----D---- C:\Program Files\Common Files\Microsoft Shared 2012-01-18 19:57:36 ----D---- C:\Program Files\Common Files 2012-01-18 19:57:33 ----RA---- C:\WINDOWS\system32\kbdazel.dll 2012-01-18 19:57:32 ----RA---- C:\WINDOWS\system32\kbdtuq.dll 2012-01-18 19:57:32 ----RA---- C:\WINDOWS\system32\kbdtuf.dll 2012-01-18 19:57:30 ----RA---- C:\WINDOWS\system32\kbdhept.dll 2012-01-18 19:57:30 ----RA---- C:\WINDOWS\system32\kbdhela3.dll 2012-01-18 19:57:30 ----RA---- C:\WINDOWS\system32\kbdhela2.dll 2012-01-18 19:57:30 ----RA---- C:\WINDOWS\system32\kbdhe319.dll 2012-01-18 19:57:30 ----RA---- C:\WINDOWS\system32\kbdhe220.dll 2012-01-18 19:57:30 ----RA---- C:\WINDOWS\system32\kbdhe.dll 2012-01-18 19:57:30 ----RA---- C:\WINDOWS\system32\kbdgkl.dll 2012-01-18 19:57:29 ----RA---- C:\WINDOWS\system32\kbdlv1.dll 2012-01-18 19:57:29 ----RA---- C:\WINDOWS\system32\kbdlv.dll 2012-01-18 19:57:29 ----RA---- C:\WINDOWS\system32\kbdlt1.dll 2012-01-18 19:57:29 ----RA---- C:\WINDOWS\system32\kbdlt.dll 2012-01-18 19:57:28 ----RA---- C:\WINDOWS\system32\kbdest.dll 2012-01-18 19:57:27 ----RA---- C:\WINDOWS\system32\kbdycl.dll 2012-01-18 19:57:27 ----RA---- C:\WINDOWS\system32\kbdsl1.dll 2012-01-18 19:57:27 ----RA---- C:\WINDOWS\system32\kbdsl.dll 2012-01-18 19:57:27 ----RA---- C:\WINDOWS\system32\kbdro.dll 2012-01-18 19:57:27 ----RA---- C:\WINDOWS\system32\kbdpl1.dll 2012-01-18 19:57:27 ----RA---- C:\WINDOWS\system32\kbdpl.dll 2012-01-18 19:57:27 ----RA---- C:\WINDOWS\system32\kbdhu1.dll 2012-01-18 19:57:27 ----RA---- C:\WINDOWS\system32\kbdhu.dll 2012-01-18 19:57:27 ----RA---- C:\WINDOWS\system32\kbdcz2.dll 2012-01-18 19:57:27 ----RA---- C:\WINDOWS\system32\kbdcz1.dll 2012-01-18 19:57:27 ----RA---- C:\WINDOWS\system32\kbdcz.dll 2012-01-18 19:57:27 ----RA---- C:\WINDOWS\system32\kbdcr.dll 2012-01-18 19:57:27 ----RA---- C:\WINDOWS\system32\KBDAL.DLL 2012-01-18 19:57:23 ----A---- C:\WINDOWS\system32\kbdycc.dll 2012-01-18 19:57:23 ----A---- C:\WINDOWS\system32\kbduzb.dll 2012-01-18 19:57:23 ----A---- C:\WINDOWS\system32\kbdur.dll 2012-01-18 19:57:23 ----A---- C:\WINDOWS\system32\kbdtat.dll 2012-01-18 19:57:23 ----A---- C:\WINDOWS\system32\kbdmon.dll 2012-01-18 19:57:23 ----A---- C:\WINDOWS\system32\kbdkyr.dll 2012-01-18 19:57:23 ----A---- C:\WINDOWS\system32\kbdkaz.dll 2012-01-18 19:57:23 ----A---- C:\WINDOWS\system32\kbdbu.dll 2012-01-18 19:57:23 ----A---- C:\WINDOWS\system32\kbdblr.dll 2012-01-18 19:57:23 ----A---- C:\WINDOWS\system32\kbdaze.dll 2012-01-18 19:57:21 ----A---- C:\WINDOWS\system32\spxcoins.dll 2012-01-18 19:57:21 ----A---- C:\WINDOWS\system32\irclass.dll 2012-01-18 19:57:21 ----A---- C:\WINDOWS\system32\EqnClass.Dll 2012-01-18 19:57:21 ----A---- C:\WINDOWS\system32\dgsetup.dll 2012-01-18 19:57:21 ----A---- C:\WINDOWS\system32\dgrpsetu.dll 2012-01-18 19:57:19 ----A---- C:\WINDOWS\TASKMAN.EXE 2012-01-18 19:57:18 ----N---- C:\WINDOWS\system32\CONFIG.TMP 2012-01-18 19:57:18 ----A---- C:\WINDOWS\system32\drivers\irenum.sys 2012-01-18 19:57:18 ----A---- C:\WINDOWS\system32\batt.dll 2012-01-18 19:57:18 ----A---- C:\WINDOWS\notepadorig.exe 2012-01-18 19:57:18 ----A---- C:\WINDOWS\notepad.exe 2012-01-18 19:57:17 ----A---- C:\WINDOWS\system32\storprop.dll 2012-01-18 19:57:09 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini 2012-01-18 19:56:59 ----RA---- C:\WINDOWS\SET8.tmp 2012-01-18 19:56:56 ----RA---- C:\WINDOWS\SET4.tmp 2012-01-18 19:56:54 ----RA---- C:\WINDOWS\SET3.tmp 2012-01-18 19:56:49 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft 2012-01-18 19:55:02 ----A---- C:\WINDOWS\system32\OpenCL.dll 2012-01-18 19:55:02 ----A---- C:\WINDOWS\system32\drivers\nv4_mini.sys 2012-01-18 19:55:01 ----A---- C:\WINDOWS\system32\nvoglnt.dll 2012-01-18 19:55:01 ----A---- C:\WINDOWS\system32\nvcuvid.dll 2012-01-18 19:55:01 ----A---- C:\WINDOWS\system32\nvcuvenc.dll 2012-01-18 19:55:00 ----A---- C:\WINDOWS\system32\nvcuda.dll 2012-01-18 19:55:00 ----A---- C:\WINDOWS\system32\nvcompiler.dll 2012-01-18 19:55:00 ----A---- C:\WINDOWS\system32\nvcodins.dll 2012-01-18 19:55:00 ----A---- C:\WINDOWS\system32\nvcod.dll 2012-01-18 19:55:00 ----A---- C:\WINDOWS\system32\nvapi.dll 2012-01-18 19:54:59 ----A---- C:\WINDOWS\system32\nv4_disp.dll 2012-01-18 19:51:21 ----A---- C:\WINDOWS\system32\drivers\RtkHDAud.sys 2012-01-18 19:51:16 ----A---- C:\WINDOWS\SOUNDMAN.EXE 2012-01-18 19:51:15 ----A---- C:\WINDOWS\RtlUpd.exe 2012-01-18 19:51:15 ----A---- C:\WINDOWS\RTLCPL.EXE 2012-01-18 19:51:13 ----A---- C:\WINDOWS\RTHDCPL.EXE 2012-01-18 19:51:13 ----A---- C:\WINDOWS\MicCal.exe 2012-01-18 19:51:09 ----A---- C:\WINDOWS\ALCWZRD.EXE 2012-01-18 19:51:09 ----A---- C:\WINDOWS\ALCMTR.EXE 2012-01-18 19:48:24 ----A---- C:\WINDOWS\system32\drivers\Rtnicxp.sys 2012-01-18 19:48:22 ----A---- C:\WINDOWS\system32\RtNicProp32.dll 2012-01-18 19:47:43 ----D---- C:\WINDOWS\system32\CatRoot2 2012-01-18 19:47:43 ----D---- C:\WINDOWS\system32\CatRoot 2012-01-18 19:47:29 ----D---- C:\Documents and Settings 2012-01-18 19:47:28 ----SHD---- C:\System Volume Information 2012-01-18 19:46:28 ----RSH---- C:\boot.ini 2012-01-18 19:40:38 ----RSHDC---- C:\WINDOWS\system32\dllcache 2012-01-18 19:40:38 ----RSD---- C:\WINDOWS\Fonts 2012-01-18 19:40:38 ----RD---- C:\WINDOWS\Web 2012-01-18 19:40:38 ----HD---- C:\WINDOWS\inf 2012-01-18 19:40:38 ----D---- C:\WINDOWS\WinSxS 2012-01-18 19:40:38 ----D---- C:\WINDOWS\twain_32 2012-01-18 19:40:38 ----D---- C:\WINDOWS\Temp 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\wins 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\wbem 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\usmt 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\spool 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\ShellExt 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\Setup 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\ru-ru 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\ru 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\ras 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\oobe 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\npp 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\mui 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\inetsrv 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\IME 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\icsxml 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\ias 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\export 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\drivers\UMDF 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\drivers\etc 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\drivers\disdn 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\drivers 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\dhcp 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\config 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\3com_dmi 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\3076 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\2052 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\1054 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\1049 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\1042 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\1041 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\1037 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\1033 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\1031 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\1028 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32\1025 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system32 2012-01-18 19:40:38 ----D---- C:\WINDOWS\system 2012-01-18 19:40:38 ----D---- C:\WINDOWS\security 2012-01-18 19:40:38 ----D---- C:\WINDOWS\Resources 2012-01-18 19:40:38 ----D---- C:\WINDOWS\repair 2012-01-18 19:40:38 ----D---- C:\WINDOWS\Provisioning 2012-01-18 19:40:38 ----D---- C:\WINDOWS\PeerNet 2012-01-18 19:40:38 ----D---- C:\WINDOWS\pchealth 2012-01-18 19:40:38 ----D---- C:\WINDOWS\Network Diagnostic 2012-01-18 19:40:38 ----D---- C:\WINDOWS\mui 2012-01-18 19:40:38 ----D---- C:\WINDOWS\msapps 2012-01-18 19:40:38 ----D---- C:\WINDOWS\msagent 2012-01-18 19:40:38 ----D---- C:\WINDOWS\Media 2012-01-18 19:40:38 ----D---- C:\WINDOWS\L2Schemas 2012-01-18 19:40:38 ----D---- C:\WINDOWS\java 2012-01-18 19:40:38 ----D---- C:\WINDOWS\ime 2012-01-18 19:40:38 ----D---- C:\WINDOWS\Help 2012-01-18 19:40:38 ----D---- C:\WINDOWS\ehome 2012-01-18 19:40:38 ----D---- C:\WINDOWS\Driver Cache 2012-01-18 19:40:38 ----D---- C:\WINDOWS\Debug 2012-01-18 19:40:38 ----D---- C:\WINDOWS\Cursors 2012-01-18 19:40:38 ----D---- C:\WINDOWS\Connection Wizard 2012-01-18 19:40:38 ----D---- C:\WINDOWS\Config 2012-01-18 19:40:38 ----D---- C:\WINDOWS\AppPatch 2012-01-18 19:40:38 ----D---- C:\WINDOWS\addins 2012-01-18 19:40:38 ----D---- C:\WINDOWS 2012-01-18 19:40:38 ----ASH---- C:\pagefile.sys 2012-01-18 18:44:31 ----D---- C:\Program Files\uTorrent 2012-01-18 18:44:31 ----D---- C:\Documents and Settings\Наталья\Application Data\uTorrent 2012-01-18 18:44:29 ----D---- C:\Documents and Settings\Наталья\Application Data\Skype 2012-01-18 18:44:09 ----D---- C:\Documents and Settings\All Users\Application Data\regid.1986-12.com.adobe 2012-01-18 18:42:50 ----D---- C:\Documents and Settings\All Users\Application Data\AlawarWrapper 2012-01-18 18:42:32 ----D---- C:\Documents and Settings\Наталья\Application Data\The Bat! 2012-01-18 18:42:30 ----D---- C:\Program Files\Alawar 2012-01-18 18:42:20 ----D---- C:\Program Files\RocketDock 2012-01-18 18:41:49 ----D---- C:\Program Files\Windows Sidebar 2012-01-18 18:41:36 ----D---- C:\Program Files\LClock 2012-01-18 18:40:15 ----A---- C:\WINDOWS\system32\drivers\sptd.sys 2012-01-18 18:40:08 ----D---- C:\Documents and Settings\Наталья\Application Data\DAEMON Tools Lite 2012-01-18 18:39:51 ----D---- C:\Program Files\DAEMON Tools Lite 2012-01-18 18:39:51 ----D---- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite 2012-01-18 18:39:18 ----D---- C:\Program Files\Common Files\EZB Systems 2012-01-18 18:39:10 ----D---- C:\Program Files\UltraISO 2012-01-18 18:39:09 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe 2012-01-18 18:38:34 ----D---- C:\Program Files\Common Files\Adobe 2012-01-18 18:38:34 ----D---- C:\Documents and Settings\Наталья\Application Data\WinRAR 2012-01-18 17:46:10 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys 2012-01-18 17:46:10 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys 2012-01-18 17:46:08 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys 2012-01-18 17:46:06 ----A---- C:\WINDOWS\system32\drivers\aswFW.sys 2012-01-18 17:45:46 ----A---- C:\WINDOWS\system32\drivers\aswNdis2.sys 2012-01-18 17:45:45 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys 2012-01-18 17:45:44 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys 2012-01-18 17:45:42 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys 2012-01-18 17:45:42 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys 2012-01-18 17:45:42 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys 2012-01-18 17:45:19 ----A---- C:\WINDOWS\system32\drivers\aswNdis.sys 2012-01-18 17:45:18 ----A---- C:\WINDOWS\system32\aswBoot.exe 2012-01-18 17:45:11 ----D---- C:\Program Files\Alwil Software 2012-01-18 17:45:11 ----D---- C:\Documents and Settings\All Users\Application Data\Alwil Software 2012-01-18 17:43:25 ----D---- C:\WINDOWS\system32\URTTemp 2012-01-18 17:42:00 ----D---- C:\Program Files\totalcmd_IT 2012-01-18 17:40:06 ----D---- C:\Program Files\Smart Install Maker 2012-01-18 17:39:57 ----D---- C:\Program Files\Everest 2012-01-18 17:38:34 ----N---- C:\WINDOWS\system32\drivers\imagesrv.sys 2012-01-18 17:38:34 ----N---- C:\WINDOWS\system32\drivers\imagedrv.sys 2012-01-18 17:38:06 ----N---- C:\WINDOWS\system32\TwnLib4.dll 2012-01-18 17:38:06 ----A---- C:\WINDOWS\system32\TwnLib20.dll 2012-01-18 17:38:05 ----N---- C:\WINDOWS\system32\ImagXRA7.dll 2012-01-18 17:38:05 ----N---- C:\WINDOWS\system32\ImagXR7.dll 2012-01-18 17:38:05 ----N---- C:\WINDOWS\system32\ImagXpr7.dll 2012-01-18 17:38:05 ----N---- C:\WINDOWS\system32\ImagX7.dll 2012-01-18 17:38:04 ----A---- C:\WINDOWS\system32\NeroCheck.exe 2012-01-18 17:38:03 ----D---- C:\Program Files\Common Files\Ahead 2012-01-18 17:38:01 ----D---- C:\Program Files\Ahead 2012-01-18 17:37:20 ----A---- C:\WINDOWS\system32\MODIFYPE.EXE 2012-01-18 17:37:20 ----A---- C:\WINDOWS\system32\CABTOOLS.VBS 2012-01-18 17:37:20 ----A---- C:\WINDOWS\system32\CABOUT.VBS 2012-01-18 17:37:20 ----A---- C:\WINDOWS\system32\CABIN.VBS 2012-01-18 17:37:20 ----A---- C:\WINDOWS\system32\CABARC.EXE 2012-01-18 17:37:17 ----D---- C:\Program Files\7-Zip 2012-01-18 17:37:12 ----D---- C:\Program Files\WinRAR 2012-01-18 17:37:04 ----D---- C:\Program Files\FastStone Image Viewer 2012-01-18 17:36:23 ----A---- C:\WINDOWS\UC.PIF 2012-01-18 17:36:23 ----A---- C:\WINDOWS\RAR.PIF 2012-01-18 17:36:23 ----A---- C:\WINDOWS\PKZIP.PIF 2012-01-18 17:36:23 ----A---- C:\WINDOWS\PKUNZIP.PIF 2012-01-18 17:36:23 ----A---- C:\WINDOWS\NOCLOSE.PIF 2012-01-18 17:36:23 ----A---- C:\WINDOWS\LHA.PIF 2012-01-18 17:36:23 ----A---- C:\WINDOWS\ARJ.PIF 2012-01-18 17:35:21 ----D---- C:\Program Files\Photoshop 2012-01-18 17:35:10 ----D---- C:\Program Files\FsCapture 2012-01-18 17:34:57 ----D---- C:\Documents and Settings\Наталья\Application Data\Download Master 2012-01-18 17:34:56 ----D---- C:\Program Files\Download Master 2012-01-18 17:34:29 ----D---- C:\Program Files\KMPlayer 2012-01-18 17:30:46 ----D---- C:\Program Files\Microsoft Visual Studio 2012-01-18 17:29:56 ----A---- C:\WINDOWS\WPI_Log_2012.01.18_16.29.56.txt 2012-01-18 17:27:10 ----D---- C:\WINDOWS\SHELLNEW 2012-01-18 17:25:27 ----D---- C:\Program Files\Microsoft Works 2012-01-18 17:25:20 ----D---- C:\Program Files\Common Files\DESIGNER 2012-01-18 17:23:39 ----D---- C:\Program Files\Microsoft Office 2012-01-18 17:23:39 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help 2012-01-18 17:23:22 ----RHD---- C:\MSOCache 2012-01-18 17:22:48 ----SHD---- C:\RECYCLER 2012-01-18 17:22:45 ----D---- C:\WINDOWS\system32\AkelFiles 2012-01-18 17:22:45 ----A---- C:\WINDOWS\system32\akelpad.ini 2012-01-18 17:22:40 ----A---- C:\WINDOWS\WPI_Log_2012.01.18_16.22.40.txt 2012-01-18 17:22:35 ----D---- C:\Documents and Settings\Наталья\Application Data\Macromedia 2012-01-18 17:19:26 ----A---- C:\WINDOWS\system32\Reg2Inf.exe 2012-01-18 17:19:20 ----A---- C:\WINDOWS\system32\oeminfo.ini 2012-01-18 17:19:12 ----D---- C:\WINDOWS\system32\Lang 2012-01-18 17:19:12 ----A---- C:\WINDOWS\system32\OEMINFO.CMD 2012-01-18 17:19:12 ----A---- C:\WINDOWS\system32\hidcon.exe 2012-01-18 17:18:55 ----A---- C:\WINDOWS\system32\wmpns.dll 2012-01-18 17:18:51 ----HD---- C:\Program Files\Uninstall Information 2012-01-18 17:18:29 ----ASH---- C:\hiberfil.sys 2012-01-18 17:18:16 ----D---- C:\Documents and Settings\Наталья\Application Data\Adobe 2012-01-18 17:16:59 ----D---- C:\WINDOWS\Prefetch 2012-01-18 17:16:58 ----A---- C:\WINDOWS\SchedLgU.Txt 2012-01-18 17:13:51 ----D---- C:\Documents and Settings\Наталья\Application Data\Identities 2012-01-18 17:12:53 ----D---- C:\WINDOWS\system32\xircom 2012-01-18 17:12:53 ----D---- C:\Program Files\msn gaming zone 2012-01-18 17:12:36 ----D---- C:\Program Files\VistaDriveIcon 2012-01-18 17:12:22 ----A---- C:\WINDOWS\innounp.exe 2012-01-18 17:12:18 ----SD---- C:\WINDOWS\system32\Microsoft 2012-01-18 17:12:14 ----A---- C:\WINDOWS\system32\javaws.exe 2012-01-18 17:12:14 ----A---- C:\WINDOWS\system32\javaw.exe 2012-01-18 17:12:14 ----A---- C:\WINDOWS\system32\java.exe 2012-01-18 17:12:14 ----A---- C:\WINDOWS\system32\deployJava1.dll 2012-01-18 17:12:06 ----D---- C:\Program Files\Java 2012-01-18 17:11:40 ----RSD---- C:\WINDOWS\assembly 2012-01-18 17:11:38 ----D---- C:\WINDOWS\Microsoft.NET 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\zlib1.dll 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\wrap_oal.dll 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\Vbrun300.dll 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\vbrun200.dll 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\vbrun100.dll 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\Vb40032.dll 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\Vb40016.dll 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\ssleay32.dll 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\OpenAL32.dll 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\msvcrt10.dll 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\msvcr71.dll 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\msvcr70.dll 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\msvcp71.dll 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\MSVCP70.DLL 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\msvci70.dll 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\MSSTKPRP.DLL 2012-01-18 17:10:54 ----A---- C:\WINDOWS\system32\msstdfmt.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\MFC71u.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\MFC71KOR.DLL 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\MFC71JPN.DLL 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\MFC71ITA.DLL 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\MFC71FRA.DLL 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\MFC71ESP.DLL 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\MFC71ENU.DLL 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\MFC71DEU.DLL 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\MFC71CHT.DLL 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\MFC71CHS.DLL 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\MFC71.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\mfc70u.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\mfc70kor.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\mfc70jpn.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\mfc70ita.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\mfc70fra.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\mfc70esp.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\mfc70enu.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\mfc70deu.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\mfc70cht.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\mfc70chs.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\mfc70.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\libeay32.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\atl71.dll 2012-01-18 17:10:53 ----A---- C:\WINDOWS\system32\atl70.dll 2012-01-18 17:10:18 ----RASH---- C:\MSDOS.SYS 2012-01-18 17:10:18 ----RASH---- C:\IO.SYS 2012-01-18 17:10:18 ----A---- C:\WINDOWS\control.ini 2012-01-18 17:10:18 ----A---- C:\CONFIG.SYS 2012-01-18 17:10:18 ----A---- C:\AUTOEXEC.BAT 2012-01-18 17:09:57 ----A---- C:\WINDOWS\system32\mapi32.dll 2012-01-18 17:08:48 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest 2012-01-18 17:08:42 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest 2012-01-18 17:08:36 ----HD---- C:\Program Files\WindowsUpdate 2012-01-18 17:08:33 ----D---- C:\Program Files\Online Services 2012-01-18 17:08:21 ----A---- C:\WINDOWS\system32\atrace.dll 2012-01-18 17:08:20 ----A---- C:\WINDOWS\system32\desktop.ini 2012-01-18 17:08:20 ----A---- C:\WINDOWS\desktop.ini 2012-01-18 17:08:10 ----A---- C:\WINDOWS\system32\acctres.dll 2012-01-18 17:08:09 ----D---- C:\Program Files\Common Files\Services 2012-01-18 17:08:07 ----SD---- C:\WINDOWS\Tasks 2012-01-18 17:08:07 ----A---- C:\WINDOWS\system32\icfgnt5.dll 2012-01-18 17:08:05 ----D---- C:\Program Files\Common Files\MSSoap 2012-01-18 17:08:01 ----D---- C:\WINDOWS\srchasst 2012-01-18 17:08:00 ----D---- C:\WINDOWS\system32\Macromed 2012-01-18 17:07:58 ----A---- C:\WINDOWS\system32\wuweb.dll 2012-01-18 17:07:58 ----A---- C:\WINDOWS\system32\wucltui.dll 2012-01-18 17:07:58 ----A---- C:\WINDOWS\system32\wuauserv.dll 2012-01-18 17:07:58 ----A---- C:\WINDOWS\system32\wuaueng1.dll 2012-01-18 17:07:57 ----A---- C:\WINDOWS\system32\wups.dll 2012-01-18 17:07:57 ----A---- C:\WINDOWS\system32\wuaueng.dll 2012-01-18 17:07:57 ----A---- C:\WINDOWS\system32\wuauclt1.exe 2012-01-18 17:07:57 ----A---- C:\WINDOWS\system32\wuauclt.exe 2012-01-18 17:07:56 ----A---- C:\WINDOWS\system32\wuapi.dll 2012-01-18 17:07:56 ----A---- C:\WINDOWS\system32\qmgrprxy.dll 2012-01-18 17:07:56 ----A---- C:\WINDOWS\system32\qmgr.dll 2012-01-18 17:07:56 ----A---- C:\WINDOWS\system32\bitsprx4.dll 2012-01-18 17:07:56 ----A---- C:\WINDOWS\system32\bitsprx3.dll 2012-01-18 17:07:56 ----A---- C:\WINDOWS\system32\bitsprx2.dll 2012-01-18 17:07:52 ----D---- C:\Program Files\Movie Maker 2012-01-18 17:07:33 ----A---- C:\WINDOWS\system32\safrslv.dll 2012-01-18 17:07:33 ----A---- C:\WINDOWS\system32\safrdm.dll 2012-01-18 17:07:33 ----A---- C:\WINDOWS\system32\safrcdlg.dll 2012-01-18 17:07:33 ----A---- C:\WINDOWS\system32\racpldlg.dll 2012-01-18 17:07:29 ----A---- C:\WINDOWS\system32\fltMc.exe 2012-01-18 17:07:29 ----A---- C:\WINDOWS\system32\fltlib.dll 2012-01-18 17:07:29 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys 2012-01-18 17:07:28 ----D---- C:\WINDOWS\system32\Restore 2012-01-18 17:07:28 ----A---- C:\WINDOWS\system32\srsvc.dll 2012-01-18 17:07:28 ----A---- C:\WINDOWS\system32\srrstr.dll 2012-01-18 17:07:28 ----A---- C:\WINDOWS\system32\srclient.dll 2012-01-18 17:07:28 ----A---- C:\WINDOWS\system32\drivers\sr.sys 2012-01-18 17:07:27 ----A---- C:\WINDOWS\system32\msoert2.dll 2012-01-18 17:07:27 ----A---- C:\WINDOWS\system32\msoeacct.dll 2012-01-18 17:07:25 ----A---- C:\WINDOWS\system32\inetres.dll 2012-01-18 17:07:25 ----A---- C:\WINDOWS\system32\inetcomm.dll 2012-01-18 17:07:23 ----D---- C:\Program Files\Outlook Express 2012-01-18 17:07:23 ----A---- C:\WINDOWS\system32\schedsvc.dll 2012-01-18 17:07:22 ----A---- C:\WINDOWS\system32\mstinit.exe 2012-01-18 17:07:22 ----A---- C:\WINDOWS\system32\mstask.dll 2012-01-18 17:07:22 ----A---- C:\WINDOWS\system32\icwphbk.dll 2012-01-18 17:07:22 ----A---- C:\WINDOWS\system32\icwdial.dll 2012-01-18 17:07:21 ----A---- C:\WINDOWS\system32\isign32.dll 2012-01-18 17:07:21 ----A---- C:\WINDOWS\system32\inetcfg.dll 2012-01-18 17:07:15 ----D---- C:\Program Files\Common Files\System 2012-01-18 17:06:27 ----D---- C:\Program Files\ComPlus Applications 2012-01-18 17:06:25 ----A---- C:\WINDOWS\vbaddin.ini 2012-01-18 17:06:25 ----A---- C:\WINDOWS\vb.ini 2012-01-18 17:06:20 ----D---- C:\WINDOWS\Registration 2012-01-18 17:06:05 ----D---- C:\Program Files\Windows Media Player 2012-01-18 17:06:05 ----D---- C:\Program Files\Windows Media Connect 2 2012-01-18 17:06:01 ----A---- C:\WINDOWS\system32\winfxdocobj.exe 2012-01-18 17:06:01 ----A---- C:\WINDOWS\system32\msfeedssync.exe 2012-01-18 17:06:01 ----A---- C:\WINDOWS\system32\msfeedsbs.dll 2012-01-18 17:06:00 ----A---- C:\WINDOWS\system32\ieframe.dll.mui 2012-01-18 17:06:00 ----A---- C:\WINDOWS\system32\advpack.dll.mui 2012-01-18 17:05:57 ----RD---- C:\WINDOWS\Offline Web Pages 2012-01-18 17:05:57 ----D---- C:\WINDOWS\wbem 2012-01-18 17:05:57 ----D---- C:\Program Files\Internet Explorer 2012-01-18 17:05:56 ----SD---- C:\WINDOWS\Downloaded Program Files 2012-01-18 17:05:55 ----D---- C:\WINDOWS\system32\PreInstall 2012-01-18 17:05:55 ----D---- C:\WINDOWS\SoftwareDistribution 2012-01-18 17:05:55 ----A---- C:\WINDOWS\system32\muweb.dll 2012-01-18 17:05:55 ----A---- C:\WINDOWS\system32\mucltui.dll.mui 2012-01-18 17:05:55 ----A---- C:\WINDOWS\system32\mucltui.dll 2012-01-18 17:05:55 ----A---- C:\WINDOWS\system32\gpprefcl.dll 2012-01-18 17:05:22 ----A---- C:\WINDOWS\system32\usrlogon.cmd 2012-01-18 17:05:22 ----A---- C:\WINDOWS\system32\tsshutdn.exe 2012-01-18 17:05:22 ----A---- C:\WINDOWS\system32\tslabels.ini 2012-01-18 17:05:22 ----A---- C:\WINDOWS\system32\tskill.exe 2012-01-18 17:05:22 ----A---- C:\WINDOWS\system32\tsdiscon.exe 2012-01-18 17:05:22 ----A---- C:\WINDOWS\system32\tscon.exe 2012-01-18 17:05:22 ----A---- C:\WINDOWS\system32\shadow.exe 2012-01-18 17:05:22 ----A---- C:\WINDOWS\system32\reset.exe 2012-01-18 17:05:21 ----A---- C:\WINDOWS\system32\rwinsta.exe 2012-01-18 17:05:21 ----A---- C:\WINDOWS\system32\regini.exe 2012-01-18 17:05:21 ----A---- C:\WINDOWS\system32\rdpcfgex.dll 2012-01-18 17:05:21 ----A---- C:\WINDOWS\system32\qwinsta.exe 2012-01-18 17:05:21 ----A---- C:\WINDOWS\system32\qappsrv.exe 2012-01-18 17:05:21 ----A---- C:\WINDOWS\system32\msg.exe 2012-01-18 17:05:21 ----A---- C:\WINDOWS\system32\logoff.exe 2012-01-18 17:05:21 ----A---- C:\WINDOWS\system32\cdmodem.dll 2012-01-18 17:05:20 ----A---- C:\WINDOWS\system32\msdtcprf.ini 2012-01-18 17:05:14 ----A---- C:\WINDOWS\system32\wmimgmt.msc 2012-01-18 17:05:12 ----D---- C:\Program Files\Windows NT 2012-01-18 17:05:10 ----A---- C:\WINDOWS\system32\tscfgwmi.dll 2012-01-18 17:05:10 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys 2012-01-18 17:05:10 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys 2012-01-18 17:05:10 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys 2012-01-18 17:05:09 ----A---- C:\WINDOWS\system32\tsgqec.dll 2012-01-18 17:05:09 ----A---- C:\WINDOWS\system32\rhttpaa.dll 2012-01-18 17:05:09 ----A---- C:\WINDOWS\system32\aaclient.dll 2012-01-18 17:05:08 ----A---- C:\WINDOWS\system32\sessmgr.exe 2012-01-18 17:05:08 ----A---- C:\WINDOWS\system32\remotepg.dll 2012-01-18 17:05:08 ----A---- C:\WINDOWS\system32\rdshost.exe 2012-01-18 17:05:08 ----A---- C:\WINDOWS\system32\rdsaddin.exe 2012-01-18 17:05:08 ----A---- C:\WINDOWS\system32\mstscax.dll 2012-01-18 17:05:08 ----A---- C:\WINDOWS\system32\mstsc.exe 2012-01-18 17:05:07 ----D---- C:\WINDOWS\system32\MsDtc 2012-01-18 17:05:07 ----A---- C:\WINDOWS\system32\termsrv.dll 2012-01-18 17:05:07 ----A---- C:\WINDOWS\system32\rdpwsx.dll 2012-01-18 17:05:07 ----A---- C:\WINDOWS\system32\rdpsnd.dll 2012-01-18 17:05:07 ----A---- C:\WINDOWS\system32\rdpclip.exe 2012-01-18 17:05:07 ----A---- C:\WINDOWS\system32\rdchost.dll 2012-01-18 17:05:07 ----A---- C:\WINDOWS\system32\qprocess.exe 2012-01-18 17:05:07 ----A---- C:\WINDOWS\system32\msdtcuiu.dll 2012-01-18 17:05:07 ----A---- C:\WINDOWS\system32\icaapi.dll 2012-01-18 17:05:07 ----A---- C:\WINDOWS\system32\cfgbkend.dll 2012-01-18 17:05:06 ----A---- C:\WINDOWS\system32\xolehlp.dll 2012-01-18 17:05:06 ----A---- C:\WINDOWS\system32\mtxoci.dll 2012-01-18 17:05:06 ----A---- C:\WINDOWS\system32\msdtctm.dll 2012-01-18 17:05:06 ----A---- C:\WINDOWS\system32\msdtcprx.dll 2012-01-18 17:05:06 ----A---- C:\WINDOWS\system32\msdtclog.dll 2012-01-18 17:05:06 ----A---- C:\WINDOWS\system32\msdtc.exe 2012-01-18 17:05:05 ----D---- C:\WINDOWS\system32\Com 2012-01-18 17:05:05 ----A---- C:\WINDOWS\system32\mtxlegih.dll 2012-01-18 17:05:05 ----A---- C:\WINDOWS\system32\mtxex.dll 2012-01-18 17:05:05 ----A---- C:\WINDOWS\system32\mtxdm.dll 2012-01-18 17:05:05 ----A---- C:\WINDOWS\system32\dcomcnfg.exe 2012-01-18 17:05:05 ----A---- C:\WINDOWS\system32\comrepl.dll 2012-01-18 17:05:05 ----A---- C:\WINDOWS\system32\comaddin.dll 2012-01-18 17:05:05 ----A---- C:\WINDOWS\system32\colbact.dll 2012-01-18 17:05:04 ----A---- C:\WINDOWS\system32\stclient.dll 2012-01-18 17:05:04 ----A---- C:\WINDOWS\system32\clbcatex.dll 2012-01-18 17:05:04 ----A---- C:\WINDOWS\system32\catsrvut.dll 2012-01-18 17:05:04 ----A---- C:\WINDOWS\system32\catsrvps.dll 2012-01-18 17:05:04 ----A---- C:\WINDOWS\system32\catsrv.dll 2012-01-18 17:05:03 ----A---- C:\WINDOWS\system32\comuid.dll 2012-01-18 17:05:03 ----A---- C:\WINDOWS\system32\comsvcs.dll 2012-01-18 17:05:03 ----A---- C:\WINDOWS\system32\comsnap.dll 2012-01-18 17:05:03 ----A---- C:\WINDOWS\system32\clbcatq.dll 2012-01-18 17:04:56 ----A---- C:\WINDOWS\system32\servdeps.dll 2012-01-18 17:04:56 ----A---- C:\WINDOWS\system32\mmfutil.dll 2012-01-18 17:04:56 ----A---- C:\WINDOWS\system32\licwmi.dll 2012-01-18 17:04:55 ----A---- C:\WINDOWS\system32\cmprops.dll 2012-01-18 17:04:51 ----A---- C:\WINDOWS\system32\drivers\termdd.sys 2012-01-18 17:04:51 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys 2012-01-18 17:01:54 ----SD---- C:\Documents and Settings\Наталья\Application Data\Microsoft 2012-01-18 17:01:54 ----ASH---- C:\Documents and Settings\Наталья\Application Data\desktop.ini 2012-01-18 16:48:33 ----D---- C:\WINDOWS\system32\XPSViewer 2012-01-18 16:48:33 ----D---- C:\WINDOWS\system32\en-US 2012-01-18 16:48:32 ----D---- C:\Program Files\MSBuild 2012-01-18 16:48:28 ----D---- C:\Program Files\Reference Assemblies 2012-01-18 16:48:00 ----N---- C:\WINDOWS\system32\spmsg.dll 2012-01-18 16:48:00 ----A---- C:\WINDOWS\system32\spupdsvc.exe ======Список файлов и папок, измененных за последние 3 месяца====== 2012-01-29 18:04:45 ----A---- C:\WINDOWS\system32\uxtheme.dll 2012-01-18 19:57:35 ----A---- C:\WINDOWS\system.ini 2012-01-18 17:37:11 ----A---- C:\WINDOWS\win.ini 2012-01-18 17:09:35 ----ASH---- C:\WINDOWS\fonts\desktop.ini 2011-11-26 01:56:38 ----A---- C:\WINDOWS\system32\winsrv.dll 2011-11-20 10:12:43 ----A---- C:\WINDOWS\system32\packager.exe 2011-11-16 18:20:57 ----A---- C:\WINDOWS\system32\winhttp.dll 2011-11-16 18:20:57 ----A---- C:\WINDOWS\system32\schannel.dll 2011-11-08 17:46:16 ----A---- C:\WINDOWS\system32\tzchange.exe 2011-11-04 23:12:51 ----A---- C:\WINDOWS\system32\wininet.dll 2011-11-04 23:12:51 ----A---- C:\WINDOWS\system32\urlmon.dll 2011-11-04 23:12:51 ----A---- C:\WINDOWS\system32\url.dll 2011-11-04 23:12:51 ----A---- C:\WINDOWS\system32\occache.dll 2011-11-04 23:12:51 ----A---- C:\WINDOWS\system32\mstime.dll 2011-11-04 23:12:51 ----A---- C:\WINDOWS\system32\mshtmled.dll 2011-11-04 23:12:51 ----A---- C:\WINDOWS\system32\mshtml.dll 2011-11-04 23:12:50 ----A---- C:\WINDOWS\system32\msfeeds.dll 2011-11-04 23:12:50 ----A---- C:\WINDOWS\system32\licmgr10.dll 2011-11-04 23:12:50 ----A---- C:\WINDOWS\system32\jsproxy.dll 2011-11-04 23:12:50 ----A---- C:\WINDOWS\system32\iertutil.dll 2011-11-04 23:12:50 ----A---- C:\WINDOWS\system32\iepeers.dll 2011-11-04 23:12:50 ----A---- C:\WINDOWS\system32\ieframe.dll 2011-11-04 23:12:50 ----A---- C:\WINDOWS\system32\iedkcs32.dll 2011-11-03 19:29:12 ----A---- C:\WINDOWS\system32\quartz.dll 2011-11-03 19:29:12 ----A---- C:\WINDOWS\system32\qdvd.dll 2011-11-01 20:05:39 ----A---- C:\WINDOWS\system32\ole32.dll ======Список драйверов (тип запуска: R=Запущен, S=остановлен, 0=Загрузочный, 1=Системный, 2=Автоматически, 3=Вручную, 4=Отключено)====== R0 aswNdis;avast! Firewall NDIS Filter Service; C:\WINDOWS\system32\DRIVERS\aswNdis.sys [2010-09-07 12112] R0 aswNdis2;avast! Firewall Core Firewall Service; C:\WINDOWS\system32\drivers\aswNdis2.sys [2011-11-28 195416] R0 ohci1394;Texas Instruments OHCI-совместимый IEEE 1394 хост-контроллер; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-15 61696] R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2012-01-18 691696] R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2010-06-28 77568] R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2011-11-28 30808] R1 aswFW;avast! TDI Firewall driver; C:\WINDOWS\system32\drivers\aswFW.sys [2011-11-28 111320] R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2011-11-28 34392] R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2011-11-28 435032] R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2011-11-28 314456] R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2011-11-28 52952] R1 intelppm;Драйвер Intel процессора; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-15 40704] R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2012/01/25 23:58:55]; \??\C:\Program Files\CyberLink\PowerDVD9\000.fcl [] R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2011-11-28 20568] R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2011-11-28 111320] R2 exFat;exFat; C:\WINDOWS\system32\drivers\exFat.sys [2009-01-28 133632] R2 rspndr;Ответчик обнаружения топологии уровня связи; C:\WINDOWS\system32\DRIVERS\rspndr.sys [2008-10-11 62848] R3 Arp1394;Протокол клиента 1394 ARP; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2010-10-27 60800] R3 HDAudBus;Драйвер шины Microsoft UAA для High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-15 144384] R3 hidusb;Драйвер класса HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-15 10368] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-06-16 5095936] R3 mouhid;Драйвер мыши HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2010-10-27 12160] R3 NIC1394;Сетевой драйвер 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2010-10-27 61824] R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2010-03-16 10232352] R3 RTL8023xp;Realtek 10/100/1000 PCI NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2009-03-25 130432] R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys [] R3 usbstor;Драйвер запоминающих устройств для USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-15 26368] R3 usbuhci;Драйвер минипорта Microsoft USB универсального хост-контроллера; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-15 20608] S0 BootScreen;BootScreen; C:\WINDOWS\System32\drivers\vidstub.sys [2004-01-07 7680] S3 ajw67d03;ajw67d03; C:\WINDOWS\system32\drivers\ajw67d03.sys [] S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2010-06-28 38528] S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2010-06-28 82944] ======Список служб (тип запуска: R=Запущена, S=остановлена, 0=Загрузочная, 1=Системная, 2=Автоматически, 3=Вручную, 4=Отключено)====== R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2011-11-28 44768] R2 avast! Firewall;avast! Firewall; C:\Program Files\Alwil Software\Avast5\afwServ.exe [2011-11-28 127192] R2 Guard.Mail.ru;Guard.Mail.ru; C:\Program Files\Mail.Ru\Guard\GuardMailRu.exe [2012-01-18 1717336] R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2010-03-16 154216] R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe [2011-06-14 1524544] R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-15 14336] R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-15 14336] S2 gupdate;Служба Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-25 136176] S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632] S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104] S3 gupdatem;Служба Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-25 136176] S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 WMPNetworkSvc;Служба общих сетевых ресурсов проигрывателя Windows Media; C:\Program Files\Windows Media Player\wmpnetwk.exe [2009-02-04 914944] S4 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2012-01-18 153376] S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096] -----------------EOF-----------------