Удаление вирусов и троянов. Защита компьютера. › Помощь в удалении вирусов, троянов, рекламы и других зловредов › Хэлп Люди !!!!!
- This topic has 5 ответов, 2 участника, and was last updated 13 years, 8 months назад by Аноним.
-
АвторСообщения
-
25 марта, 2011 в 6:18 пп #18997АнонимГость
- Темы:532
- Сообщений:1553
- ☆☆☆☆☆
Logfile of random’s system information tool 1.08 (written by random/random)
Run by пк at 2011-03-25 20:16:27
Microsoft Windows 7 Домашняя расширенная
System drive C: has 432 GB (72%) free of 598 GB
Total RAM: 2999 MB (60% free)Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:16:31, on 25.03.2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16722)
Boot mode: NormalRunning processes:
C:Program Files (x86)EgisTecMyWinLocker 3x86mwlDaemon.exe
C:Users7349~1AppDataLocalTemp8F73.tmpdrm
C:Program Files (x86)SkypePhoneSkype.exe
C:Program Files (x86)uTorrentuTorrent.exe
C:Program Files (x86)BearShare ApplicationsBearShareBearShare.exe
C:UsersпкAppDataLocalvghdbinvghd.exe
C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorIcon.exe
C:Program Files (x86)EgisTec Egis Software UpdateEgisUpdate.exe
C:Program Files (x86)NewTech InfosystemsAcer Backup ManagerBackupManagerTray.exe
C:Program Files (x86)Launch ManagerLManager.exe
C:Program Files (x86)Winampwinampa.exe
C:Program Files (x86)Launch ManagerLMworker.exe
C:UsersпкAppDataLocalvghdbinVirtuaGirl_Downloader.exe
C:Program Files (x86)Mail.RuGuardGuardMailRu.exe
C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrdatamngrUI.exe
C:UsersпкAppDataLocalGoogleChromeApplicationchrome.exe
C:UsersпкAppDataLocalGoogleChromeApplicationchrome.exe
C:UsersпкAppDataLocalGoogleChromeApplicationchrome.exe
C:UsersпкAppDataLocalGoogleChromeApplicationchrome.exe
C:WindowsSysWOW64NOTEPAD.EXE
C:Program Files (x86)Mozilla Firefoxfirefox.exe
C:Program Files (x86)Mozilla Firefoxplugin-container.exe
C:UsersпкAppDataLocalGoogleChromeApplicationchrome.exe
C:UsersпкDownloadsRSIT.exe
C:Program Files (x86)trend microпк.exeR1 — HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0422&m=aspire_5741g&r=27360910j315l0474z115t55l2k428
R1 — HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.mail.ru/cnt/7828
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0422&m=aspire_5741g&r=27360910j315l0474z115t55l2k428
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 — HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0422&m=aspire_5741g&r=27360910j315l0474z115t55l2k428
R0 — HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant =
R0 — HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R0 — HKLMSoftwareMicrosoftInternet ExplorerMain,Local Page = C:WindowsSysWOW64blank.htm
R0 — HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName =
R3 — URLSearchHook: Спутник@Mail.Ru — {09900DE8-1DCA-443F-9243-26FF581438AF} — C:Program Files (x86)Mail.RuSputnikMailRuSputnik.dll
F2 — REG:system.ini: UserInit=userinit.exe
O1 — Hosts: 137.10.10.12 shopnon.com
O1 — Hosts: 46.161.29.83 http://www.haitai-sspipefitting.com
O1 — Hosts: 46.161.29.83 http://www.y-knife.ru
O1 — Hosts: 137.10.10.12 europatrans.ru
O1 — Hosts: 137.10.10.12 http://www.fgmobil.ru
O1 — Hosts: 46.161.29.83 xsyq.ru
O1 — Hosts: 137.10.10.12 garant-elista.ru
O1 — Hosts: 46.161.29.83 http://www.worldlychords.com
O1 — Hosts: 137.10.10.12 http://www.exact-error.ru
O1 — Hosts: 46.161.29.83 http://www.top7money.com
O1 — Hosts: 46.161.29.83 tonyawatkinshomes.com
O1 — Hosts: 46.161.29.83 http://www.zadachi-po-fizike.ru
O1 — Hosts: 46.161.29.83 odnoklassniki.ru
O1 — Hosts: 46.161.29.83 http://www.vpamky.ru
O1 — Hosts: 46.161.29.83 http://www.virustotal.com
O1 — Hosts: 46.161.29.83 xknife.ru
O1 — Hosts: 177.24.66.12 http://www.zoloteruno.kiev.ua
O1 — Hosts: 137.10.10.12 genealogists.ru
O1 — Hosts: 137.10.10.12 flybed.ru
O1 — Hosts: 46.161.29.83 vupahcxk.ru
O1 — Hosts: 46.161.29.83 wdxhu.ru
O1 — Hosts: 137.10.10.12 http://www.ergotone.ru
O1 — Hosts: 46.161.29.83 yvgcuz.ru
O1 — Hosts: 46.161.29.83 http://www.a1help.ru
O1 — Hosts: 137.10.10.12 kaboom.ry
O1 — Hosts: 46.161.29.83 http://www.yaperm.ru
O1 — Hosts: 137.10.10.12 selectingimage.com
O1 — Hosts: 137.10.10.12 frt-sme.ru frtime.ru
O1 — Hosts: 46.161.29.83 http://www.mostlylogos.com
O1 — Hosts: 137.10.10.12 http://www.fbk-group.ru
O1 — Hosts: 46.161.29.83 ucpcknwf.ru
O1 — Hosts: 59.53.222.124 http://www.volnastudio.ru
O1 — Hosts: 46.161.29.83 tvkfj.ru
O1 — Hosts: 46.161.29.83 http://www.ts-cons.ru
O1 — Hosts: 137.10.10.12 http://www.nakur.ru
O1 — Hosts: 46.161.29.83 voxtribe.com
O1 — Hosts: 137.10.10.12 http://www.sirius-socks.cn
O1 — Hosts: 46.161.29.83 yapoxydela.ru
O1 — Hosts: 137.10.10.12 electrolux-spk.ru
O1 — Hosts: 1.1.1.1 http://www.ping.ru
O1 — Hosts: 137.10.10.12 floroman.ru
O1 — Hosts: 137.10.10.12 http://www.sidebar.angelfire.com
O1 — Hosts: 137.10.10.12 exact-error.ru
O1 — Hosts: 137.10.10.12 http://www.securitytutorial07.com
O1 — Hosts: 137.10.10.12 http://www.voffka.com
O1 — Hosts: 137.10.10.12 er-limited.ru
O1 — Hosts: 137.10.10.12 http://www.shjmcmlsthr.com
O1 — Hosts: 137.10.10.12 http://www.elite-love.ru
O1 — Hosts: 137.10.10.12 http://www.incore.ru
O1 — Hosts: 46.161.29.83 http://www.ytvs.ru
O1 — Hosts: 137.10.10.12 football-factory.ru
O1 — Hosts: 137.10.10.12 darylesingletary.net
O1 — Hosts: 137.10.10.12 exotic-limo-kld.ru
O1 — Hosts: 137.10.10.12 http://www.silivrirehberim.com
O1 — Hosts: 46.161.29.83 http://www.weijkrfl.ru
O1 — Hosts: 137.10.10.12 footballmyweb.ru
O1 — Hosts: 137.10.10.12 esigaretarussia.ru
O1 — Hosts: 137.10.10.12 lesvos-realestate.com
O1 — Hosts: 137.10.10.12 shareadspace.com
O1 — Hosts: 46.161.29.83 http://www.thesuffering.ru
O1 — Hosts: 137.10.10.12 kinopoisk.ru
O1 — Hosts: 137.10.10.12 mirtesen.ru
O1 — Hosts: 59.53.222.124 ljpoisk.ru
O1 — Hosts: 46.161.29.83 http://www.webautomdpro.com
O1 — Hosts: 46.161.29.83 http://www.megaclicks4you.com
O1 — Hosts: 46.161.29.83 tshwane.ru
O1 — Hosts: 46.161.29.83 wjrw.ru
O1 — Hosts: 137.10.10.12 http://www.sensicacciaepesca.com
O1 — Hosts: 46.161.29.83 nudegirlsvideo.com
O1 — Hosts: 137.10.10.12 elsistem.ru
O1 — Hosts: 137.10.10.12 jcrylequotes.com
O1 — Hosts: 137.10.10.12 http://www.f-partners.ru
O1 — Hosts: 137.10.10.12 http://www.shannondreamlabradors.de
O1 — Hosts: 137.10.10.12 http://www.shareazasite.com
O1 — Hosts: 137.10.10.12 http://www.segodnya.us
O1 — Hosts: 137.10.10.12 http://www.sexyhotvideo.com
O1 — Hosts: 46.161.29.83 springfield-steakhouse.net
O1 — Hosts: 137.10.10.12 http://www.sezhongse8.net
O1 — Hosts: 137.10.10.12 anon2.ru
O1 — Hosts: 137.10.10.12 http://www.sexmambass.ru
O1 — Hosts: 46.161.29.83 http://www.haka-kids.com
O1 — Hosts: 137.10.10.12 http://www.gdstroi.ru
O1 — Hosts: 137.10.10.12 free-fast-proxy.ru
O1 — Hosts: 46.161.29.83 http://www.takmighuy.ru
O1 — Hosts: 137.10.10.12 http://www.shop-here-now.com
O1 — Hosts: 46.161.29.83 webkonsul.ru
O1 — Hosts: 137.10.10.12 findnumber.ru
O1 — Hosts: 137.10.10.12 http://www.flashmayka.ru
O1 — Hosts: 177.24.66.12 3dprint.com.ua
O1 — Hosts: 46.161.29.83 http://www.vmexiky.ru
O1 — Hosts: 46.161.29.83 turdogames.ru
O1 — Hosts: 137.10.10.12 gayspot.ru
O1 — Hosts: 46.161.29.83 http://www.zlzejut.ru
O1 — Hosts: 137.10.10.12 http://www.gayspot.ru
O1 — Hosts: 137.10.10.12 evrocran.ru
O1 — Hosts: 46.161.29.83 greymovies.com
O1 — Hosts: 46.161.29.83 http://www.televizzzor.ru
O1 — Hosts: 137.10.10.12 http://www.serving-sys.com
O1 — Hosts: 137.10.10.12 fitformula.ru
O1 — Hosts: 137.10.10.12 http://www.sele.fileave.com
O1 — Hosts: 137.10.10.12 sexmosaic.com
O2 — BHO: MediaBar — {0974BA1E-64EC-11DE-B2A5-E43756D89593} — C:PROGRA~2BEARSH~1MediaBarToolBarBearshareMediabarDx.dll
O2 — BHO: AcroIEHelperStub — {18DF081C-E8AD-4283-A596-FA578C2EBDC3} — C:Program Files (x86)Common FilesAdobeAcrobatActiveXAcroIEHelperShim.dll
O2 — BHO: McAfee Phishing Filter — {27B4851A-3207-45A2-B947-BE8AFE6163AB} — c:progra~1mcafeemskmskapbho.dll
O2 — BHO: Conduit Engine — {30F9B915-B755-4826-820B-08FBA6BD249D} — C:Program Files (x86)ConduitEngineConduitEngine.dll
O2 — BHO: UrlHelper Class — {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} — C:PROGRA~2BEARSH~1MediaBarDatamngrIEBHO.dll
O2 — BHO: scriptproxy — {7DB2D5A0-7241-4E79-B68D-6309F01C5231} — C:Program Files (x86)Common FilesMcAfeeSystemCoreScriptSn.20110123164416.dll
O2 — BHO: Спутник@Mail.Ru — {8984B388-A5BB-4DF7-B274-77B879E179DB} — C:Program Files (x86)Mail.RuSputnikMailRuSputnik.dll
O2 — BHO: Помощник по входу с помощью идентификатора Windows Live ID — {9030D464-4C02-4ABF-8ECC-5164760863C6} — C:Program Files (x86)Common FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll
O2 — BHO: Windows Live Messenger Companion Helper — {9FDDE16B-836F-4806-AB1F-1455CBEFF289} — C:Program Files (x86)Windows LiveCompanioncompanioncore.dll
O2 — BHO: Google Toolbar Helper — {AA58ED58-01DD-4d91-8333-CF10577473F7} — C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_32.dll
O2 — BHO: Google Toolbar Notifier BHO — {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} — C:Program Files (x86)GoogleGoogleToolbarNotifier5.6.6209.1142swg.dll
O2 — BHO: McAfee SiteAdvisor BHO — {B164E929-A1B6-4A06-B104-2CD0E90A88FF} — c:PROGRA~2mcafeeSITEAD~1mcieplg.dll
O2 — BHO: uTorrentBar Toolbar — {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} — C:Program Files (x86)uTorrentBartbuTor.dll
O2 — BHO: Bing Bar Helper — {d2ce3e00-f94a-4740-988e-03dc2f38c34f} — «C:Program Files (x86)MicrosoftBingBarBingExt.dll» (file missing)
O2 — BHO: Ask Toolbar BHO — {FE063DB1-4EC0-403e-8DD8-394C54984B2C} — C:Program Files (x86)AskTBarbar1.binASKTBAR.DLL
O3 — Toolbar: McAfee SiteAdvisor Toolbar — {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} — c:PROGRA~2mcafeeSITEAD~1mcieplg.dll
O3 — Toolbar: Яндекс.Бар — {91397D20-1446-11D4-8AF4-0040CA1127B6} — C:Program Files (x86)YandexYandexBarIEyndbar.dll
O3 — Toolbar: Яндекс.Бар (для НевоСофт) — {17679b4f-3bcc-644b-8f28-a47597fbb905} — C:Program Files (x86)YandexYandexBarIEbarsbarienevosoftyndbar.dll
O3 — Toolbar: uTorrentBar Toolbar — {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} — C:Program Files (x86)uTorrentBartbuTor.dll
O3 — Toolbar: Conduit Engine — {30F9B915-B755-4826-820B-08FBA6BD249D} — C:Program Files (x86)ConduitEngineConduitEngine.dll
O3 — Toolbar: MediaBar — {0974BA1E-64EC-11DE-B2A5-E43756D89593} — C:PROGRA~2BEARSH~1MediaBarToolBarBearshareMediabarDx.dll
O3 — Toolbar: @msdxmLC.dll,-1@1033,&Radio — {8E718888-423F-11D2-876E-00A0C9082467} — C:Program Files (x86)No1 Video Convertermsdxm.ocx
O3 — Toolbar: Bing Bar — {8dcb7100-df86-4384-8842-8fa844297b3f} — «C:Program Files (x86)MicrosoftBingBarBingExt.dll» (file missing)
O3 — Toolbar: Спутник@Mail.Ru — {09900DE8-1DCA-443F-9243-26FF581438AF} — C:Program Files (x86)Mail.RuSputnikMailRuSputnik.dll
O3 — Toolbar: Ask Toolbar — {FE063DB9-4EC0-403e-8DD8-394C54984B2C} — C:Program Files (x86)AskTBarbar1.binASKTBAR.DLL
O3 — Toolbar: Google Toolbar — {2318C2B1-4965-11d4-9B18-009027A5CD4F} — C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_32.dll
O4 — HKLM..Run: [IAStorIcon] C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorIcon.exe
O4 — HKLM..Run: [EgisTecLiveUpdate] «C:Program Files (x86)EgisTec Egis Software UpdateEgisUpdate.exe»
O4 — HKLM..Run: [Adobe Reader Speed Launcher] «C:Program Files (x86)AdobeReader 9.0ReaderReader_sl.exe»
O4 — HKLM..Run: [BackupManagerTray] «C:Program Files (x86)NewTech InfosystemsAcer Backup ManagerBackupManagerTray.exe» -h -k
O4 — HKLM..Run: [NortonOnlineBackupReminder] «C:Program Files (x86)SymantecNorton Online BackupActivationNobuActivation.exe» UNATTENDED
O4 — HKLM..Run: [LManager] C:Program Files (x86)Launch ManagerLManager.exe
O4 — HKLM..Run: [WinampAgent] «C:Program Files (x86)Winampwinampa.exe»
O4 — HKLM..Run: [VKSaverUpdater] C:Program Files (x86)VKSaverVKSaverUpdater.exe
O4 — HKLM..Run: [Guard.Mail.ru.gui] «C:Program Files (x86)Mail.RuGuardGuardMailRu.exe» /gui
O4 — HKLM..Run: [mcui_exe] «C:Program FilesMcAfee.comAgentmcagent.exe» /runkey
O4 — HKLM..Run: [DATAMNGR] C:PROGRA~2BEARSH~1MediaBarDatamngrDATAMN~1.EXE
O4 — HKCU..Run: [Mobile Partner] «C:Program Files (x86)OGO!MobileOGO!Mobile.exe»
O4 — HKCU..Run: [drm.exe] «C:UsersпкAppDataRoamingdrmdrm.exe»
O4 — HKCU..Run: [Google Update] «C:UsersпкAppDataLocalGoogleUpdateGoogleUpdate.exe» /c
O4 — HKCU..Run: [Skype] «C:Program Files (x86)SkypePhoneSkype.exe» /nosplash /minimized
O4 — HKCU..Run: [uTorrent] «C:Program Files (x86)uTorrentuTorrent.exe»
O4 — HKCU..Run: [BearShare] «C:Program Files (x86)BearShare ApplicationsBearShareBearShare.exe» —lightmode
O4 — HKCU..Run: [swg] «C:Program Files (x86)GoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe»
O4 — HKUSS-1-5-19..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /autoRun (User ‘LOCAL SERVICE’)
O4 — HKUSS-1-5-19..RunOnce: [mctadmin] C:WindowsSystem32mctadmin.exe (User ‘LOCAL SERVICE’)
O4 — HKUSS-1-5-20..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /autoRun (User ‘NETWORK SERVICE’)
O4 — HKUSS-1-5-20..RunOnce: [mctadmin] C:WindowsSystem32mctadmin.exe (User ‘NETWORK SERVICE’)
O4 — Startup: DesktopVideoPlayer.lnk = ?
O4 — Global Startup: Київстар. Мобільний Інтернет.lnk = ?
O8 — Extra context menu item: E&xport to Microsoft Excel — res://C:PROGRA~2MICROS~1Office12EXCEL.EXE/3000
O8 — Extra context menu item: Google ВикиКомментарии… — res://C:Program Files (x86)GoogleGoogle ToolbarComponentGoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O9 — Extra button: @C:Program Files (x86)Windows LiveCompanioncompanionlang.dll,-600 — {0000036B-C524-4050-81A0-243669A86B9F} — C:Program Files (x86)Windows LiveCompanioncompanioncore.dll
O9 — Extra button: @C:Program Files (x86)Windows LiveWriterWindowsLiveWriterShortcuts.dll,-1004 — {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} — C:Program Files (x86)Windows LiveWriterWriterBrowserExtension.dll
O9 — Extra ‘Tools’ menuitem: @C:Program Files (x86)Windows LiveWriterWindowsLiveWriterShortcuts.dll,-1003 — {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} — C:Program Files (x86)Windows LiveWriterWriterBrowserExtension.dll
O9 — Extra button: Send to OneNote — {2670000A-7350-4f3c-8081-5663EE0C6C49} — C:PROGRA~2MICROS~1Office12ONBttnIE.dll
O9 — Extra ‘Tools’ menuitem: S&end to OneNote — {2670000A-7350-4f3c-8081-5663EE0C6C49} — C:PROGRA~2MICROS~1Office12ONBttnIE.dll
O9 — Extra button: PokerStars — {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} — C:Program Files (x86)PokerStarsPokerStarsUpdate.exe
O9 — Extra button: Research — {92780B25-18CC-41C8-B9BE-3C9C571A8263} — C:PROGRA~2MICROS~1Office12REFIEBAR.DLL
O10 — Unknown file in Winsock LSP: c:program files (x86)common filesmicrosoft sharedwindows livewlidnsp.dll
O10 — Unknown file in Winsock LSP: c:program files (x86)common filesmicrosoft sharedwindows livewlidnsp.dll
O18 — Protocol: dssrequest — {5513F07E-936B-4E52-9B00-067394E91CC5} — c:PROGRA~2mcafeeSITEAD~1mcieplg.dll
O18 — Protocol: sacore — {5513F07E-936B-4E52-9B00-067394E91CC5} — c:PROGRA~2mcafeeSITEAD~1mcieplg.dll
O18 — Protocol: wlpg — {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} — C:Program Files (x86)Windows LivePhoto GalleryAlbumDownloadProtocolHandler.dll
O20 — AppInit_DLLs: C:PROGRA~2BEARSH~1MediaBarDatamngrdatamngr.dll C:PROGRA~2BEARSH~1MediaBarDatamngrIEBHO.dll C:Windowssystem32vksaver.dll
O23 — Service: @%SystemRoot%system32Alg.exe,-112 (ALG) — Unknown owner — C:WindowsSystem32alg.exe (file missing)
O23 — Service: Dritek WMI Service (DsiWMIService) — Dritek System Inc. — C:Program Files (x86)Launch Managerdsiwmis.exe
O23 — Service: @%SystemRoot%system32efssvc.dll,-100 (EFS) — Unknown owner — C:WindowsSystem32lsass.exe (file missing)
O23 — Service: Acer ePower Service (ePowerSvc) — Acer Incorporated — C:Program FilesAcerAcer ePower ManagementePowerSvc.exe
O23 — Service: @%systemroot%system32fxsresm.dll,-118 (Fax) — Unknown owner — C:Windowssystem32fxssvc.exe (file missing)
O23 — Service: GRegService (Greg_Service) — Acer Incorporated — C:Program Files (x86)AcerRegistrationGregHSRW.exe
O23 — Service: Guard.Mail.ru — Unknown owner — C:Program Files (x86)Mail.RuGuardGuardMailRu.exe
O23 — Service: Служба оновлення Google Update (gupdate) (gupdate) — Google Inc. — C:Program Files (x86)GoogleUpdateGoogleUpdate.exe
O23 — Service: Google Software Updater (gusvc) — Google — C:Program Files (x86)GoogleCommonGoogle UpdaterGoogleUpdaterService.exe
O23 — Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) — Intel Corporation — C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorDataMgrSvc.exe
O23 — Service: @keyiso.dll,-100 (KeyIso) — Unknown owner — C:Windowssystem32lsass.exe (file missing)
O23 — Service: Intel(R) Management and Security Application Local Management Service (LMS) — Intel Corporation — C:Program Files (x86)IntelIntel(R) Management Engine ComponentsLMSLMS.exe
O23 — Service: McAfee SiteAdvisor Service — McAfee, Inc. — C:Program Files (x86)McAfeeSiteAdvisorMcSACore.exe
O23 — Service: McAfee Служба Personal Firewall (McMPFSvc) — McAfee, Inc. — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe
O23 — Service: McAfee Services (mcmscsvc) — McAfee, Inc. — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe
O23 — Service: McAfee VirusScan Announcer (McNaiAnn) — McAfee, Inc. — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe
O23 — Service: McAfee Network Agent (McNASvc) — McAfee, Inc. — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe
O23 — Service: McAfee Scanner (McODS) — McAfee, Inc. — C:Program FilesMcAfeeVirusScanmcods.exe
O23 — Service: McAfee Proxy Service (McProxy) — McAfee, Inc. — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe
O23 — Service: McShield — McAfee, Inc. — C:Program FilesCommon FilesMcAfeeSystemCore\mcshield.exe
O23 — Service: McAfee Firewall Core Service (mfefire) — McAfee, Inc. — C:Program FilesCommon FilesMcAfeeSystemCore\mfefire.exe
O23 — Service: McAfee Validation Trust Protection Service (mfevtp) — Unknown owner — C:Windowssystem32mfevtps.exe (file missing)
O23 — Service: @comres.dll,-2797 (MSDTC) — Unknown owner — C:WindowsSystem32msdtc.exe (file missing)
O23 — Service: McAfee Anti-Spam Service (MSK80Service) — McAfee, Inc. — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe
O23 — Service: MyWinLocker Service (MWLService) — Egis Technology Inc. — C:Program Files (x86)EgisTecMyWinLocker 3×86\MWLService.exe
O23 — Service: Nero BackItUp Scheduler 4.0 — Nero AG — C:Program Files (x86)Common FilesNeroNero BackItUp 4NBService.exe
O23 — Service: @%SystemRoot%System32netlogon.dll,-102 (Netlogon) — Unknown owner — C:Windowssystem32lsass.exe (file missing)
O23 — Service: NTI IScheduleSvc — NewTech Infosystems, Inc. — C:Program Files (x86)NewTech InfosystemsAcer Backup ManagerIScheduleSvc.exe
O23 — Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) — NewTech InfoSystems, Inc. — C:Program Files (x86)NewTech InfosystemsNTI Backup Now 5BackupSvc.exe
O23 — Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) — NewTech Infosystems, Inc. — C:Program Files (x86)NewTech InfosystemsNTI Backup Now 5SchedulerSvc.exe
O23 — Service: NVIDIA Display Driver Service (nvsvc) — Unknown owner — C:Windowssystem32nvvsvc.exe (file missing)
O23 — Service: PnkBstrA — Unknown owner — C:Windowssystem32PnkBstrA.exe
O23 — Service: PnkBstrB — Unknown owner — C:Windowssystem32PnkBstrB.exe
O23 — Service: @%systemroot%system32psbase.dll,-300 (ProtectedStorage) — Unknown owner — C:Windowssystem32lsass.exe (file missing)
O23 — Service: @%systemroot%system32Locator.exe,-2 (RpcLocator) — Unknown owner — C:Windowssystem32locator.exe (file missing)
O23 — Service: @%SystemRoot%system32samsrv.dll,-1 (SamSs) — Unknown owner — C:Windowssystem32lsass.exe (file missing)
O23 — Service: @%SystemRoot%system32snmptrap.exe,-3 (SNMPTRAP) — Unknown owner — C:WindowsSystem32snmptrap.exe (file missing)
O23 — Service: @%systemroot%system32spoolsv.exe,-1 (Spooler) — Unknown owner — C:WindowsSystem32spoolsv.exe (file missing)
O23 — Service: @%SystemRoot%system32sppsvc.exe,-101 (sppsvc) — Unknown owner — C:Windowssystem32sppsvc.exe (file missing)
O23 — Service: @%SystemRoot%system32ui0detect.exe,-101 (UI0Detect) — Unknown owner — C:Windowssystem32UI0Detect.exe (file missing)
O23 — Service: Intel(R) Management & Security Application User Notification Service (UNS) — Intel Corporation — C:Program Files (x86)IntelIntel(R) Management Engine ComponentsUNSUNS.exe
O23 — Service: Updater Service — Acer — C:Program FilesAcerAcer UpdaterUpdaterService.exe
O23 — Service: @%SystemRoot%system32vaultsvc.dll,-1003 (VaultSvc) — Unknown owner — C:Windowssystem32lsass.exe (file missing)
O23 — Service: @%SystemRoot%system32vds.exe,-100 (vds) — Unknown owner — C:WindowsSystem32vds.exe (file missing)
O23 — Service: @%systemroot%system32vssvc.exe,-102 (VSS) — Unknown owner — C:Windowssystem32vssvc.exe (file missing)
O23 — Service: @%SystemRoot%system32WatWatUX.exe,-601 (WatAdminSvc) — Unknown owner — C:Windowssystem32WatWatAdminSvc.exe (file missing)
O23 — Service: @%systemroot%system32wbengine.exe,-104 (wbengine) — Unknown owner — C:Windowssystem32wbengine.exe (file missing)
O23 — Service: @%Systemroot%system32wbemwmiapsrv.exe,-110 (wmiApSrv) — Unknown owner — C:Windowssystem32wbemWmiApSrv.exe (file missing)
O23 — Service: @%PROGRAMFILES%Windows Media Playerwmpnetwk.exe,-101 (WMPNetworkSvc) — Unknown owner — C:Program Files (x86)Windows Media Playerwmpnetwk.exe (file missing)—
End of file — 21793 bytes======Scheduled tasks folder======
C:WindowstasksGoogleUpdateTaskMachineCore.job
C:WindowstasksGoogleUpdateTaskMachineUA.job
C:WindowstasksGoogleUpdateTaskUserS-1-5-21-2330317786-3252475658-1247472922-1000Core.job
C:WindowstasksGoogleUpdateTaskUserS-1-5-21-2330317786-3252475658-1247472922-1000UA.job======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{0974BA1E-64EC-11DE-B2A5-E43756D89593}]
MediaBar — C:PROGRA~2BEARSH~1MediaBarToolBarBearshareMediabarDx.dll [2009-12-20 87480][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper — C:Program Files (x86)Common FilesAdobeAcrobatActiveXAcroIEHelperShim.dll [2009-02-27 75128][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{27B4851A-3207-45A2-B947-BE8AFE6163AB}]
McAfee Phishing Filter — c:progra~1mcafeemskmskapbho.dll [2010-11-25 238056][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine — C:Program Files (x86)ConduitEngineConduitEngine.dll [2010-12-09 3911776][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{74322BF9-DF26-493f-B0DA-6D2FC5E6429E}]
UrlHelper Class — C:PROGRA~2BEARSH~1MediaBarDatamngrIEBHO.dll [2011-01-06 721840][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy — C:Program Files (x86)Common FilesMcAfeeSystemCoreScriptSn.20110123164416.dll [2010-10-13 73288][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{8984B388-A5BB-4DF7-B274-77B879E179DB}]
MailRuBHO Class — C:Program Files (x86)Mail.RuSputnikMailRuSputnik.dll [2011-03-16 1549520][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Помощник по входу с помощью идентификатора Windows Live ID — C:Program Files (x86)Common FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll [2010-09-21 439168][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper — C:Program Files (x86)Windows LiveCompanioncompanioncore.dll [2010-09-23 393600][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper — C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_32.dll [2011-03-24 298160][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO — C:Program Files (x86)GoogleGoogleToolbarNotifier5.6.6209.1142swg.dll [2011-03-24 848952][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO — c:PROGRA~2mcafeeSITEAD~1mcieplg.dll [2011-03-09 251928][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
uTorrentBar Toolbar — C:Program Files (x86)uTorrentBartbuTor.dll [2010-12-09 3911776][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper — C:Program Files (x86)MicrosoftBingBarBingExt.dll [2011-02-28 1089288][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{FE063DB1-4EC0-403e-8DD8-394C54984B2C}]
Ask Toolbar BHO — C:Program Files (x86)AskTBarbar1.binASKTBAR.DLL [2011-03-16 245760][HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} — McAfee SiteAdvisor Toolbar — c:PROGRA~2mcafeeSITEAD~1mcieplg.dll [2011-03-09 251928]
{91397D20-1446-11D4-8AF4-0040CA1127B6} — Яндекс.Бар — C:Program Files (x86)YandexYandexBarIEyndbar.dll [2010-10-07 10971976]
{17679b4f-3bcc-644b-8f28-a47597fbb905} — Яндекс.Бар (для НевоСофт) — C:Program Files (x86)YandexYandexBarIEbarsbarienevosoftyndbar.dll [2009-11-10 5610760]
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} — uTorrentBar Toolbar — C:Program Files (x86)uTorrentBartbuTor.dll [2010-12-09 3911776]
{30F9B915-B755-4826-820B-08FBA6BD249D} — Conduit Engine — C:Program Files (x86)ConduitEngineConduitEngine.dll [2010-12-09 3911776]
{0974BA1E-64EC-11DE-B2A5-E43756D89593} — MediaBar — C:PROGRA~2BEARSH~1MediaBarToolBarBearshareMediabarDx.dll [2009-12-20 87480]
{8E718888-423F-11D2-876E-00A0C9082467} — @msdxmLC.dll,-1@1033,&Radio — C:Program Files (x86)No1 Video Convertermsdxm.ocx [2000-04-20 844048]
{8dcb7100-df86-4384-8842-8fa844297b3f} — Bing Bar — C:Program Files (x86)MicrosoftBingBarBingExt.dll [2011-02-28 1089288]
{09900DE8-1DCA-443F-9243-26FF581438AF} — Спутник@Mail.Ru — C:Program Files (x86)Mail.RuSputnikMailRuSputnik.dll [2011-03-16 1549520]
{FE063DB9-4EC0-403e-8DD8-394C54984B2C} — Ask Toolbar — C:Program Files (x86)AskTBarbar1.binASKTBAR.DLL [2011-03-16 245760]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} — Google Toolbar — C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_32.dll [2011-03-24 298160][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«IAStorIcon»=C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorIcon.exe [2009-12-24 284696]
«EgisTecLiveUpdate»=C:Program Files (x86)EgisTec Egis Software UpdateEgisUpdate.exe [2009-08-04 199464]
«Adobe Reader Speed Launcher»=C:Program Files (x86)AdobeReader 9.0ReaderReader_sl.exe [2009-02-28 35696]
«BackupManagerTray»=C:Program Files (x86)NewTech InfosystemsAcer Backup ManagerBackupManagerTray.exe [2010-01-13 265984]
«NortonOnlineBackupReminder»=C:Program Files (x86)SymantecNorton Online BackupActivationNobuActivation.exe [2009-07-25 588648]
«LManager»=C:Program Files (x86)Launch ManagerLManager.exe [2010-01-22 1287760]
«WinampAgent»=C:Program Files (x86)Winampwinampa.exe [2010-07-12 74752]
«VKSaverUpdater»=C:Program Files (x86)VKSaverVKSaverUpdater.exe [2010-03-06 56832]
«Guard.Mail.ru.gui»=C:Program Files (x86)Mail.RuGuardGuardMailRu.exe [2011-01-18 1041088]
«mcui_exe»=C:Program FilesMcAfee.comAgentmcagent.exe [2010-11-22 1484856]
«DATAMNGR»=C:PROGRA~2BEARSH~1MediaBarDatamngrDATAMN~1.EXE [2011-01-06 1114552][HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
«Mobile Partner»=C:Program Files (x86)OGO!MobileOGO!Mobile.exe [2010-11-27 114688]
«drm.exe»=C:UsersпкAppDataRoamingdrmdrm.exe [2010-10-27 681280]
«Google Update»=C:UsersпкAppDataLocalGoogleUpdateGoogleUpdate.exe [2010-11-26 136176]
«Skype»=C:Program Files (x86)SkypePhoneSkype.exe [2011-01-03 15028104]
«uTorrent»=C:Program Files (x86)uTorrentuTorrent.exe [2011-01-19 396152]
«BearShare»=C:Program Files (x86)BearShare ApplicationsBearShareBearShare.exe [2011-01-06 21845944]
«swg»=C:Program Files (x86)GoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe [2010-01-16 39408]C:ProgramDataMicrosoftWindowsStart MenuProgramsStartup
Київстар. Мобільний Інтернет.lnk — C:Program Files (x86)Київстар. Мобільний ІнтернетKyivstar Mobile Internet.exeC:UsersпкAppDataRoamingMicrosoftWindowsStart MenuProgramsStartup
DesktopVideoPlayer.lnk — C:UsersпкAppDataLocalvghdbinvghd.exe[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWindows]
«AppInit_DLLs»=»C:PROGRA~2BEARSH~1MediaBarDatamngrdatamngr.dll C:PROGRA~2BEARSH~1MediaBarDatamngrIEBHO.dll C:Windowssystem32vksaver.dll»[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionShellServiceObjectDelayLoad]
WebCheck — {E6FB5E20-DE35-11CF-9C87-00AA005127ED}[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsecurityproviders]
«SecurityProviders»=credssp.dll[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalmcmscsvc]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalMCODS]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkAFD]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkMcMPFSvc]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkmcmscsvc]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkMCODS]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkmfefire]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkmfefirek]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkmfefirek.sys]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkmfehidk]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkmfehidk.sys]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkmfevtp]
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
«ConsentPromptBehaviorAdmin»=5
«ConsentPromptBehaviorUser»=3
«EnableUIADesktopToggle»=0
«dontdisplaylastusername»=0
«legalnoticecaption»=
«legalnoticetext»=
«shutdownwithoutlogon»=1
«undockwithoutlogon»=1[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«NoActiveDesktop»=1
«NoActiveDesktopChanges»=1
«ForceActiveDesktopOn»=0[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
======File associations======
.js — edit — C:WindowsSystem32Notepad.exe %1
.js — open — C:WindowsSystem32WScript.exe «%1» %*======List of files/folders created in the last 1 months======
2011-03-25 18:27:59 —-D—- C:ProgramData3B203
2011-03-25 18:06:44 —-D—- C:rsit
2011-03-25 18:06:44 —-D—- C:Program Files (x86)trend micro
2011-03-24 22:14:44 —-D—- C:Program Files (x86)popop
2011-03-16 13:09:55 —-D—- C:ProgramDataNtiDvdCopy
2011-03-16 11:44:14 —-D—- C:UsersпкAppDataRoamingNero
2011-03-16 11:42:34 —-D—- C:Program Files (x86)AskTBar
2011-03-16 11:42:05 —-D—- C:Program Files (x86)Nero
2011-03-16 11:41:57 —-D—- C:ProgramDataNero
2011-03-16 11:41:57 —-D—- C:Program Files (x86)Common FilesNero
2011-03-12 23:18:25 —-D—- C:Perl
2011-03-09 09:39:17 —-D—- C:Program Files (x86)Microsoft
2011-03-09 01:17:59 —-A—- C:WindowsSysWOW64DWrite.dll
2011-03-09 01:17:59 —-A—- C:WindowsSysWOW64d2d1.dll
2011-03-09 01:17:56 —-A—- C:WindowsSysWOW64EncDec.dll
2011-03-09 01:17:56 —-A—- C:WindowsSysWOW64CPFilters.dll
2011-03-09 01:17:55 —-A—- C:WindowsSysWOW64sbe.dll
2011-03-09 01:17:38 —-A—- C:WindowsSysWOW64mstscax.dll
2011-03-09 01:17:38 —-A—- C:WindowsSysWOW64mstsc.exe======List of files/folders modified in the last 1 months======
2011-03-25 20:16:28 —-D—- C:WindowsTemp
2011-03-25 20:08:19 —-D—- C:WindowsPrefetch
2011-03-25 20:08:04 —-D—- C:UsersпкAppDataRoaminguTorrent
2011-03-25 20:03:42 —-D—- C:UsersпкAppDataRoamingSkype
2011-03-25 18:27:59 —-HD—- C:ProgramData
2011-03-25 18:27:14 —-A—- C:WindowsSysWOW64log.txt
2011-03-25 18:06:44 —-D—- C:Program Files (x86)
2011-03-25 17:56:26 —-D—- C:WindowsSystem32
2011-03-25 17:47:14 —-D—- C:UsersпкAppDataRoamingdrm
2011-03-25 14:38:17 —-D—- C:UsersпкAppDataRoamingWinamp
2011-03-25 12:39:47 —-SHD—- C:System Volume Information
2011-03-24 10:14:14 —-SHD—- C:WindowsInstaller
2011-03-22 13:27:35 —-D—- C:Windowsinf
2011-03-17 03:12:00 —-D—- C:Windowswinsxs
2011-03-17 03:01:03 —-SHD—- C:Config.Msi
2011-03-17 00:05:25 —-D—- C:WindowsSysWOW64
2011-03-16 11:41:57 —-D—- C:Program Files (x86)Common Files
2011-03-16 11:41:55 —-D—- C:Program Files (x86)Common Filesmicrosoft shared
2011-03-16 02:28:13 —-D—- C:Program Files (x86)VKSaver
2011-03-09 09:40:10 —-D—- C:Windowsdebug
2011-03-09 09:39:35 —-SD—- C:ProgramDataMicrosoft
2011-03-06 22:36:05 —-D—- C:Program Files (x86)Full Tilt Poker======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:Windowssystem32DRIVERSiaStor.sys []
R0 mfehidk;McAfee Inc. mfehidk; C:Windowssystem32driversmfehidk.sys []
R0 rdyboost;ReadyBoost; C:WindowsSystem32driversrdyboost.sys []
R1 mfenlfk;McAfee NDIS Light Filter; C:Windowssystem32DRIVERSmfenlfk.sys []
R1 mfewfpk;McAfee Inc. mfewfpk; C:Windowssystem32driversmfewfpk.sys []
R1 mwlPSDFilter;mwlPSDFilter; C:Windowssystem32DRIVERSmwlPSDFilter.sys []
R1 mwlPSDNServ;mwlPSDNServ; C:Windowssystem32DRIVERSmwlPSDNServ.sys []
R1 mwlPSDVDisk;mwlPSDVDisk; C:Windowssystem32DRIVERSmwlPSDVDisk.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:Windowssystem32DRIVERSvwififlt.sys []
R3 BCM43XX;Драйвер сетевого адаптера Broadcom 802.11; C:Windowssystem32DRIVERSbcmwl664.sys []
R3 cfwids;McAfee Inc. cfwids; C:Windowssystem32driverscfwids.sys []
R3 HECIx64;Intel(R) Management Engine Interface; C:Windowssystem32DRIVERSHECIx64.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:Windowssystem32driversRTKVHD64.sys []
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet — NDIS 6.0; C:Windowssystem32DRIVERSk57nd60a.sys []
R3 mfeapfk;McAfee Inc. mfeapfk; C:Windowssystem32driversmfeapfk.sys []
R3 mfeavfk;McAfee Inc. mfeavfk; C:Windowssystem32driversmfeavfk.sys []
R3 mfefirek;McAfee Inc. mfefirek; C:Windowssystem32driversmfefirek.sys []
R3 NTIDrvr;NTIDrvr; ??C:Windowssystem32driversNTIDrvr.sys []
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:Windowssystem32driversnvhda64v.sys []
R3 SynTP;Synaptics TouchPad Driver; C:Windowssystem32DRIVERSSynTP.sys []
R3 UBHelper;UBHelper; ??C:Windowssystem32driversUBHelper.sys []
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:Windowssystem32DRIVERSvwifimp.sys []
S3 athr;Atheros Extensible Wireless LAN device driver; C:Windowssystem32DRIVERSathrx.sys []
S3 fssfltr;FssFltr; C:Windowssystem32DRIVERSfssfltr.sys []
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:Windowssystem32DRIVERSewusbmdm.sys []
S3 hwusbdev;Huawei DataCard USB PNP Device; C:Windowssystem32DRIVERSewusbdev.sys []
S3 mfeavfk01;McAfee Inc.; C:WindowsSysWOW64driversmfeavfk01.sys []
S3 mferkdet;McAfee Inc. mferkdet; C:Windowssystem32driversmferkdet.sys []
S3 pciide;pciide; C:Windowssystem32DRIVERSpciide.sys []
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:WindowsSystem32DriversRtsUStor.sys []
S3 RTHDMIAzAudService;Service for HDMI; C:Windowssystem32driversRtHDMIVX.sys []
S3 usbscan;Драйвер USB-сканера; C:Windowssystem32DRIVERSusbscan.sys []
S3 WinUsb;WinUsb; C:Windowssystem32DRIVERSWinUsb.sys []======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 DsiWMIService;Dritek WMI Service; C:Program Files (x86)Launch Managerdsiwmis.exe [2010-01-22 310352]
R2 ePowerSvc;Acer ePower Service; C:Program FilesAcerAcer ePower ManagementePowerSvc.exe [2010-01-18 842784]
R2 Greg_Service;GRegService; C:Program Files (x86)AcerRegistrationGregHSRW.exe [2009-08-28 1150496]
R2 Guard.Mail.ru;Guard.Mail.ru; C:Program Files (x86)Mail.RuGuardGuardMailRu.exe [2011-01-18 1041088]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorDataMgrSvc.exe [2009-12-24 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:Program Files (x86)IntelIntel(R) Management Engine ComponentsLMSLMS.exe [2009-12-09 268824]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:Program Files (x86)McAfeeSiteAdvisorMcSACore.exe [2011-02-16 101048]
R2 McMPFSvc;McAfee Служба Personal Firewall; C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe [2010-03-10 355440]
R2 mcmscsvc;McAfee Services; C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe [2010-03-10 355440]
R2 McNaiAnn;McAfee VirusScan Announcer; C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe [2010-03-10 355440]
R2 McNASvc;McAfee Network Agent; C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe [2010-03-10 355440]
R2 McProxy;McAfee Proxy Service; C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe [2010-03-10 355440]
R2 McShield;McShield; C:Program FilesCommon FilesMcAfeeSystemCore\mcshield.exe [2010-10-13 200056]
R2 mfefire;McAfee Firewall Core Service; C:Program FilesCommon FilesMcAfeeSystemCore\mfefire.exe [2010-10-13 245352]
R2 mfevtp;McAfee Validation Trust Protection Service; C:Windowssystem32mfevtps.exe []
R2 MSK80Service;McAfee Anti-Spam Service; C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe [2010-03-10 355440]
R2 MWLService;MyWinLocker Service; C:Program Files (x86)EgisTecMyWinLocker 3×86\MWLService.exe [2009-09-10 305448]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:Program Files (x86)Common FilesNeroNero BackItUp 4NBService.exe [2009-07-20 935208]
R2 NTI IScheduleSvc;NTI IScheduleSvc; C:Program Files (x86)NewTech InfosystemsAcer Backup ManagerIScheduleSvc.exe [2010-01-07 255744]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service; C:Program Files (x86)NewTech InfosystemsNTI Backup Now 5SchedulerSvc.exe [2008-09-24 144632]
R2 nvsvc;NVIDIA Display Driver Service; C:Windowssystem32nvvsvc.exe []
R2 PnkBstrA;PnkBstrA; C:Windowssystem32PnkBstrA.exe [2010-09-18 66872]
R2 PnkBstrB;PnkBstrB; C:Windowssystem32PnkBstrB.exe [2010-09-18 107832]
R2 SeaPort;SeaPort; C:Program Files (x86)MicrosoftBingBarSeaPort.EXE [2011-02-25 249648]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:Program Files (x86)IntelIntel(R) Management Engine ComponentsUNSUNS.exe [2009-12-09 2320920]
R2 Updater Service;Updater Service; C:Program FilesAcerAcer UpdaterUpdaterService.exe [2009-07-04 240160]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDSVC.EXE [2010-09-21 2286976]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:WindowsMicrosoft.NETFrameworkv4.0.30319mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:WindowsMicrosoft.NETFramework64v4.0.30319mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Служба оновлення Google Update (gupdate); C:Program Files (x86)GoogleUpdateGoogleUpdate.exe [2010-11-25 135664]
S3 BBSvc;Bing Bar Update Service; C:Program Files (x86)MicrosoftBingBarBBSvc.EXE [2011-02-28 183560]
S3 fsssvc;Windows Live Family Safety Service; C:Program Files (x86)Windows LiveFamily Safetyfsssvc.exe [2010-09-23 1493352]
S3 gusvc;Google Software Updater; C:Program Files (x86)GoogleCommonGoogle UpdaterGoogleUpdaterService.exe [2010-01-16 182768]
S3 McODS;McAfee Scanner; C:Program FilesMcAfeeVirusScanmcods.exe [2010-10-07 509416]
S3 NTIBackupSvc;NTI Backup Now 5 Backup Service; C:Program Files (x86)NewTech InfosystemsNTI Backup Now 5BackupSvc.exe [2008-09-24 50424]
S3 odserv;Microsoft Office Diagnostics Service; C:Program Files (x86)Common FilesMicrosoft SharedOFFICE12ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:Program Files (x86)Common FilesMicrosoft SharedSource EngineOSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%system32WatWatUX.exe,-601; C:Windowssystem32WatWatAdminSvc.exe []
S4 wlcrasvc;Windows Live Mesh remote connections service; C:Program FilesWindows LiveMeshwlcrasvc.exe [2010-09-22 57184]
EOF
25 марта, 2011 в 7:17 пп #32196АнонимГость- Темы:532
- Сообщений:1553
- ☆☆☆☆☆
======Uninstall list======
—>»C:Program FilesCreativeSBAudigy2ProgramCtzapxx.EXE» /W /U /S
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{1494984B-9AC5-4F16-B61A-C21D5EFCC1C4}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{1494984B-9AC5-4F16-B61A-C21D5EFCC1C4}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{169F8893-C1C5-4847-972C-EA1E008112AC}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{169F8893-C1C5-4847-972C-EA1E008112AC}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{1888DAFD-C634-4BC4-865C-3455E24F6177}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{1888DAFD-C634-4BC4-865C-3455E24F6177}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{236FADD8-58FD-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{236FADD8-58FD-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{266F8C74-5DC6-4405-B79B-4EB82B2FC684}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{266F8C74-5DC6-4405-B79B-4EB82B2FC684}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{435E969D-867E-4364-8E74-3DC8A69C5BDB}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{435E969D-867E-4364-8E74-3DC8A69C5BDB}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{5210ED6D-52A9-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{5210ED6D-52A9-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{5CDC05F7-83E4-4611-AD3C-A6EB2100332A}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{5CDC05F7-83E4-4611-AD3C-A6EB2100332A}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{5CDDF96A-BC34-4D72-9ABA-E1FFF0C39977}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{67AEFC4C-69E4-11D7-85F4-00E018013273}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{67AEFC4C-69E4-11D7-85F4-00E018013273}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{7201B853-5833-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{7201B853-5833-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{7A900EAB-DA37-4554-AF19-9C337476D05D}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{7A900EAB-DA37-4554-AF19-9C337476D05D}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{869D88A5-BD6C-4E39-8536-D95259EAD7E8}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{869D88A5-BD6C-4E39-8536-D95259EAD7E8}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{87499F38-FD69-4A2B-B41A-BAB8DE9B94FE}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{881A74B3-3D17-4842-B9AF-0761C6E6C4B5}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{881A74B3-3D17-4842-B9AF-0761C6E6C4B5}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{9154ED7C-926E-49CC-B677-0CF3C5267457}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{9154ED7C-926E-49CC-B677-0CF3C5267457}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{A1185190-514F-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{A1185190-514F-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{AC157741-3285-4D6A-B934-9174587A3493}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{AC157741-3285-4D6A-B934-9174587A3493}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{B5BAAFAE-3561-463D-8E3F-91761A57ADB8}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{B5BAAFAE-3561-463D-8E3F-91761A57ADB8}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{C6866B7D-ACFD-4C49-B77B-3B2F8CF54B96}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{C6866B7D-ACFD-4C49-B77B-3B2F8CF54B96}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{DEBD7BF3-5856-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{DEBD7BF3-5856-11D6-A285-00A0CC51B2FE}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{EE6699B3-E5AD-4E59-8F2B-207DF630670C}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{EE6699B3-E5AD-4E59-8F2B-207DF630670C}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{FB2292C6-1F0A-11D7-AB2D-0090271A23A2}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{FB2292C6-1F0A-11D7-AB2D-0090271A23A2}setup.exe» -l0x9 /remove
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{FD549B7B-3532-4160-80D4-3E3DD39A9AE5}setup.exe» -l0x9
—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{FD549B7B-3532-4160-80D4-3E3DD39A9AE5}setup.exe» -l0x9 /remove
—>rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:WINDOWSINFPCHealth.inf
µTorrent—>»C:Program FilesuTorrentuTorrent.exe» /UNINSTALL
Adobe AIR—>c:Program FilesCommon FilesAdobe AIRVersions1.0ResourcesAdobe AIR Updater.exe -arp:uninstall
Adobe AIR—>MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
Adobe Flash Player 10 ActiveX—>C:WINDOWSsystem32MacromedFlashFlashUtil10h_ActiveX.exe -maintain activex
Adobe Flash Player 10 Plugin—>C:WINDOWSsystem32MacromedFlashFlashUtil10l_Plugin.exe -maintain plugin
Adobe Photoshop CS—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime701Intel32Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{EFB21DE7-8C19-4A88-BB28-A766E16493BC}setup.exe» -l0x9
Adobe Photoshop CS5—>C:Program FilesCommon FilesAdobeOOBEPDAppcorePDApp.exe —appletID=»DWA_UI» —appletVersion=»1.0″ —mode=»Uninstall» —mediaSignature=»{15FEDA5F-141C-4127-8D7E-B962D1742728}»
Adobe Reader 9.4.1 — Russian—>MsiExec.exe /I{AC76BA86-7AD7-1049-7B44-A94000000001}
ASUS Probe V2.23.03—>C:WINDOWSuninst.exe -f»C:Program FilesASUSProbeDeIsL1.isu» -c»C:Program FilesASUSProbeprobunis.dll»
avast! Internet Security—>C:Program FilesAlwil SoftwareAvast5aswRunDll.exe «C:Program FilesAlwil SoftwareAvast5Setupsetiface.dll» RunSetup
Counter-Strike Source—>»D:Counter-Strike Sourceunins000.exe»
Creative MediaSource—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{56F3E1FF-54FE-4384-A153-6CCABA097814}SETUP.EXE» -l0x9 /remove
Creative System Information—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{87499F38-FD69-4A2B-B41A-BAB8DE9B94FE}setup.exe» -l0x9 /remove
DEVIL MAY CRY 4—>MsiExec.exe /I{D4E5A687-797D-44B1-8F96-4FD7A24166A9}
FreeGiftVk 3.929 3.929—>C:Program FilesdetroaFreeGiftVk 3.929Uninstall.exe
Guard.Mail.ru—>»C:Program FilesMail.RuGuardGuardMailRu.exe» /uninstall
Java(TM) 6 Update 22—>MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216020FF}
Mail.Ru Агент 5.7 (сборка 3790, для всех пользователей)—>C:Program FilesMail.RuAgentmagentsetup.exe -uninstalllm
Mail.Ru Спутник 2.3.0.104—>c:program filesmail.rusputnikSputnikInstaller.exe -uninstall
Marvell Miniport Driver—>MsiExec.exe /X{C950420B-4182-49EA-850A-A6A2ABF06C6B}
Microsoft Office — профессиональный выпуск версии 2003—>MsiExec.exe /I{90110419-6000-11D3-8CFE-0150048383C9}
Microsoft Visual C++ 2008 Redistributable — x86 9.0.30729.4148—>MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft_VC80_ATL_x86—>MsiExec.exe /I{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}
Microsoft_VC80_CRT_x86—>MsiExec.exe /I{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}
Microsoft_VC80_MFC_x86—>MsiExec.exe /I{D1A19B02-817E-4296-A45B-07853FD74D57}
Microsoft_VC80_MFCLOC_x86—>MsiExec.exe /I{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}
Microsoft_VC90_ATL_x86—>MsiExec.exe /I{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}
Microsoft_VC90_CRT_x86—>MsiExec.exe /I{08D2E121-7F6A-43EB-97FD-629B44903403}
Microsoft_VC90_MFC_x86—>MsiExec.exe /I{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}
Mozilla Firefox (3.6.6)—>C:Program FilesMozilla Firefoxuninstallhelper.exe
NVIDIA Drivers—>C:WINDOWSsystem32nvuninst.exe UninstallGUI
PDF Settings CS5—>MsiExec.exe /I{A78FE97A-C0C8-49CE-89D0-EDD524A17392}
Photo To Color Sketch 6.97—>»D:программы для графити!Photo To Color Sketchunins000.exe»
Sound Blaster Audigy 2—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{CECB9B3D-E681-4458-85F8-8D182941AF1D}SETUP.EXE» -l0x9
The KMPlayer (remove only)—>»C:Program FilesThe KMPlayeruninstall.exe»
Themes WiemXP! 2009—>C:WINDOWSResourcesThemesUninstall.exe
Windows Imaging Component—>»C:WINDOWS$NtUninstallWIC$spuninstspuninst.exe»
Windows Media Format 11 runtime—>»C:Program FilesWindows Media Playerwmsetsdk.exe» /UninstallAll
Архиватор WinRAR—>C:Program FilesWinRARuninstall.exe
Готика—>C:PROGRA~1COMMON~1INSTAL~1Driver7INTEL3~1IDriver.exe /M{4F24451B-3A37-4A9D-A3DF-AB0760B713AE}
Пакет обеспечения совместимости для выпуска 2007 системы Microsoft Office—>MsiExec.exe /X{90120000-0020-0419-0000-0000000FF1CE}
Проигрыватель Windows Media 11—>»C:Program FilesWindows Media PlayerSetup_wm.exe» /Uninstall======Hosts File======
91.217.249.46 zdorovye43.ru
127.0.0.1 http://www.ejevikin.ru
91.217.249.46 http://www.whisperer.ru
127.0.0.1 http://www.gamemodel.ru
127.0.0.1 http://www.frivey.ru
91.217.249.46 waitabit.ru
127.0.0.1 ekrem.ru
127.0.0.1 http://www.sex-holding.net
127.0.0.1 http://www.ekomasterbyt.ru
127.0.0.1 http://www.expedex.ru======Security center information======
AV: avast! Internet Security
FW: avast! Internet Security======System event log======
Computer Name: PHILKA
Event Code: 7035
Message: Служба «Служба шлюза уровня приложения» успешно отправила управляющий элемент «запустить».Record Number: 1554
Source Name: Service Control Manager
Time Written: 20020101164557.000000+180
Event Type: информация
User: NT AUTHORITYSYSTEMComputer Name: PHILKA
Event Code: 7036
Message: Служба «Служба обнаружения SSDP» перешла в состояние Работает.Record Number: 1553
Source Name: Service Control Manager
Time Written: 20020101164557.000000+180
Event Type: информация
User:Computer Name: PHILKA
Event Code: 7035
Message: Служба «Адаптер производительности WMI» успешно отправила управляющий элемент «запустить».Record Number: 1552
Source Name: Service Control Manager
Time Written: 20020101164557.000000+180
Event Type: информация
User: PHILKAАдминистраторComputer Name: PHILKA
Event Code: 7036
Message: Служба «Адаптер производительности WMI» перешла в состояние Работает.Record Number: 1551
Source Name: Service Control Manager
Time Written: 20020101164557.000000+180
Event Type: информация
User:Computer Name: PHILKA
Event Code: 7035
Message: Служба «Служба обнаружения SSDP» успешно отправила управляющий элемент «запустить».Record Number: 1550
Source Name: Service Control Manager
Time Written: 20020101164557.000000+180
Event Type: информация
User: NT AUTHORITYSYSTEM=====Application event log=====
Computer Name: PHILKA
Event Code: 1517
Message: Реестр пользователя PHILKAАдминистратор был сохранен в то время, как приложение или служба продолжали использовать его во время выхода из системы. Используемая реестром пользователя память не была освобождена. Реестр будет выгружен, когда он не будет использоваться.Возможная причина — службы, выполняемые от имени пользователя. Попробуйте изменить настройку служб и задать их выполнение с учетными записями LocalService или NetworkService.
Record Number: 5
Source Name: Userenv
Time Written: 20101112213019.000000+180
Event Type: предупреждение
User: NT AUTHORITYSYSTEMComputer Name: PHILKA
Event Code: 4099
Message: Ошибка при открытии службы.Record Number: 4
Source Name: WmiAdapter
Time Written: 20101112193741.000000+180
Event Type: ошибка
User: PHILKAАдминистраторComputer Name: PHILKA
Event Code: 105
Message: The service was started.Record Number: 3
Source Name: WMDM PMSP Service
Time Written: 20101112193739.000000+180
Event Type: информация
User:Computer Name: PHILKA
Event Code: 105
Message: The service was started.Record Number: 2
Source Name: Creative Service for CDROM Access
Time Written: 20101112193734.000000+180
Event Type: информация
User:Computer Name: PHILKA
Event Code: 1001
Message: Checking file system on C:
The type of the file system is NTFS.One of your disks needs to be checked for consistency. You
may cancel the disk check, but it is strongly recommended
that you continue.
Windows will now check the disk.
The file reference 0x5e0000000046c8 of index entry settings.sol of index $I30
with parent 0x4186 is not the same as 0x610000000046c8.
Deleting index entry settings.sol in index $I30 of file 16774.
Cleaning up minor inconsistencies on the drive.
CHKDSK is recovering lost files.
Recovering orphaned file HTTD9.tmp (18120) into directory file 3268.
Cleaning up 89 unused index entries from index $SII of file 0x9.
Cleaning up 89 unused index entries from index $SDH of file 0x9.
Cleaning up 89 unused security descriptors.
CHKDSK discovered free space marked as allocated in the
master file table (MFT) bitmap.
CHKDSK discovered free space marked as allocated in the volume bitmap.
Windows has made corrections to the file system.31985383 KB total disk space.
7931956 KB in 28439 files.
8740 KB in 2945 indexes.
0 KB in bad sectors.
108587 KB in use by the system.
65536 KB occupied by the log file.
23936100 KB available on disk.4096 bytes in each allocation unit.
7996345 total allocation units on disk.
5984025 allocation units available on disk.Internal Info:
70 a2 00 00 a3 7a 00 00 d7 a4 00 00 00 00 00 00 p….z……….
6f 00 00 00 02 00 00 00 1c 01 00 00 00 00 00 00 o……………
62 6b 94 02 00 00 00 00 b6 71 0d 11 00 00 00 00 bk…….q……
06 ff 6a 03 00 00 00 00 00 00 00 00 00 00 00 00 ..j………….
00 00 00 00 00 00 00 00 98 db c3 1d 00 00 00 00 …………….
f0 d9 fb 8e 00 00 00 00 f0 37 07 00 17 6f 00 00 ………7…o..
00 00 00 00 00 d0 20 e4 01 00 00 00 81 0b 00 00 …… ………Windows has finished checking your disk.
Please wait while your computer restarts.Record Number: 1
Source Name: Winlogon
Time Written: 20101112193725.000000+180
Event Type: информация
User:======Environment variables======
«ComSpec»=%SystemRoot%system32cmd.exe
«Path»=%SystemRoot%system32;%SystemRoot%;%SystemRoot%System32Wbem
«windir»=%SystemRoot%
«FP_NO_HOST_CHECK»=NO
«OS»=Windows_NT
«PROCESSOR_ARCHITECTURE»=x86
«PROCESSOR_LEVEL»=15
«PROCESSOR_IDENTIFIER»=x86 Family 15 Model 2 Stepping 5, GenuineIntel
«PROCESSOR_REVISION»=0205
«NUMBER_OF_PROCESSORS»=2
«PATHEXT»=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
«TEMP»=%SystemDrive%Temp
«TMP»=%SystemDrive%Temp
«SAFEBOOT_OPTION»=NETWORK
EOF
26 марта, 2011 в 3:41 пп #32197Здравствуйте, добро пожаловать на Spyware-ru форум.
Подробно опишите ваши проблемы. Кроме этого скачайте сканер OTL кликнув по этой ссылке и сохраните файл на вашем рабочем столе.
* Дважды кликните по скачанному файлу.
* Поставьте галочку в пункте «Scan All Users».
* Кликните по кнопке «Run Scan».
* Когда программа закончит работу, будут показаны два лога (OTListIt.txt и Extra.txt).Вставьте оба OTL лога в ваш ответ. Каждый лог в отдельное сообщение.
27 марта, 2011 в 9:23 дп #32198АнонимГость- Темы:532
- Сообщений:1553
- ☆☆☆☆☆
OTL logfile created on: 27.03.2011 12:14:10 — Run 1
OTL by OldTimer — Version 3.2.22.3 Folder = C:UsersпкDownloads
64bit- Home Premium Edition (Version = 6.1.7600) — Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000419 | Country: Украина | Language: UKR | Date Format: dd.MM.yyyy3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 63,00% Memory free
6,00 Gb Paging File | 4,00 Gb Available in Paging File | 71,00% Paging File free
Paging file location(s): ?:pagefile.sys [binary data]%SystemDrive% = C: | %SystemRoot% = C:Windows | %ProgramFiles% = C:Program Files (x86)
Drive C: | 584,07 Gb Total Space | 379,89 Gb Free Space | 65,04% Space Free | Partition Type: NTFSComputer Name: ПК-ПК | User Name: пк | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days========== Processes (SafeList) ==========
PRC — [2011.03.27 12:13:18 | 000,580,608 | —- | M] (OldTimer Tools) — C:UsersпкDownloadsOTL (1).exe
PRC — [2011.03.27 12:05:00 | 000,672,064 | —- | M] () — C:Users7349~1AppDataLocalTempA1AB.tmpdrm
PRC — [2011.03.26 14:26:24 | 000,399,736 | —- | M] (BitTorrent, Inc.) — C:Program Files (x86)uTorrentuTorrent.exe
PRC — [2011.03.04 19:01:01 | 001,143,944 | —- | M] (SPAMfighter ApS) — C:Program Files (x86)FightersFighterSuiteService.exe
PRC — [2011.03.04 19:00:41 | 000,214,664 | —- | M] (SPAMfighter ApS) — C:Program Files (x86)FightersSPAMfightersfus.exe
PRC — [2011.03.04 19:00:36 | 000,843,400 | —- | M] (SPAMfighter ApS) — C:Program Files (x86)FightersSPAMfightersfagent.exe
PRC — [2011.02.25 11:46:22 | 000,249,648 | —- | M] (Microsoft Corporation) — C:Program Files (x86)MicrosoftBingBarSeaPort.EXE
PRC — [2011.02.17 15:05:36 | 000,748,032 | —- | M] (Totem Entertainment) — C:UsersпкAppDataLocalvghdbinvghd.exe
PRC — [2011.01.31 17:29:10 | 000,167,936 | —- | M] (Totem Entertainment) — C:UsersпкAppDataLocalvghdbinVirtuaGirl_Downloader.exe
PRC — [2011.01.19 00:51:10 | 001,041,088 | —- | M] () — C:Program Files (x86)Mail.RuGuardGuardMailRu.exe
PRC — [2011.01.06 19:54:54 | 021,845,944 | —- | M] (MusicLab, LLC) — C:Program Files (x86)BearShare ApplicationsBearShareBearShare.exe
PRC — [2011.01.06 17:06:22 | 001,114,552 | —- | M] (MusicLab, LLC) — C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrdatamngrUI.exe
PRC — [2010.09.19 00:04:13 | 000,107,832 | —- | M] () — C:WindowsSysWOW64PnkBstrB.exe
PRC — [2010.09.19 00:04:04 | 000,066,872 | —- | M] () — C:WindowsSysWOW64PnkBstrA.exe
PRC — [2010.07.12 19:32:48 | 000,074,752 | —- | M] (Nullsoft, Inc.) — C:Program Files (x86)Winampwinampa.exe
PRC — [2010.06.28 20:20:36 | 000,075,048 | —- | M] (cyberlink) — C:Program Files (x86)CyberLinkShared filesbrs.exe
PRC — [2010.02.03 00:08:56 | 000,087,336 | —- | M] (CyberLink Corp.) — C:Program Files (x86)CyberLinkPowerDVD10PDVD10Serv.exe
PRC — [2010.01.22 11:10:50 | 001,287,760 | —- | M] (Dritek System Inc.) — C:Program Files (x86)Launch ManagerLManager.exe
PRC — [2010.01.22 11:10:50 | 000,310,352 | —- | M] (Dritek System Inc.) — C:Program Files (x86)Launch Managerdsiwmis.exe
PRC — [2010.01.22 11:10:50 | 000,268,368 | —- | M] (Dritek System Inc.) — C:Program Files (x86)Launch ManagerLMworker.exe
PRC — [2010.01.13 05:25:10 | 000,265,984 | —- | M] (NewTech Infosystems, Inc.) — C:Program Files (x86)NewTech InfosystemsAcer Backup ManagerBackupManagerTray.exe
PRC — [2010.01.07 04:50:02 | 000,255,744 | —- | M] (NewTech Infosystems, Inc.) — C:Program Files (x86)NewTech InfosystemsAcer Backup ManagerIScheduleSvc.exe
PRC — [2009.12.24 04:39:04 | 000,013,336 | —- | M] (Intel Corporation) — C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorDataMgrSvc.exe
PRC — [2009.12.24 04:39:02 | 000,284,696 | —- | M] (Intel Corporation) — C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorIcon.exe
PRC — [2009.12.09 11:48:26 | 002,320,920 | —- | M] (Intel Corporation) — C:Program Files (x86)IntelIntel(R) Management Engine ComponentsUNSUNS.exe
PRC — [2009.12.09 11:48:24 | 000,268,824 | —- | M] (Intel Corporation) — C:Program Files (x86)IntelIntel(R) Management Engine ComponentsLMSLMS.exe
PRC — [2009.09.10 16:42:46 | 000,305,448 | —- | M] (Egis Technology Inc.) — C:Program Files (x86)EgisTecMyWinLocker 3x86MWLService.exe
PRC — [2009.09.10 16:42:30 | 000,349,480 | —- | M] (Egis Technology Inc.) — C:Program Files (x86)EgisTecMyWinLocker 3x86mwlDaemon.exe
PRC — [2009.08.28 12:38:58 | 001,150,496 | —- | M] (Acer Incorporated) — C:Program Files (x86)AcerRegistrationGregHSRW.exe
PRC — [2009.08.04 08:09:34 | 000,199,464 | —- | M] (Egis Technology Inc.) — C:Program Files (x86)EgisTec Egis Software UpdateEgisUpdate.exe
PRC — [2009.07.20 12:51:52 | 000,935,208 | —- | M] (Nero AG) — C:Program Files (x86)Common FilesNeroNero BackItUp 4NBService.exe
PRC — [2009.07.04 05:47:12 | 000,240,160 | —- | M] (Acer) — C:Program FilesAcerAcer UpdaterUpdaterService.exe========== Modules (SafeList) ==========
MOD — [2011.03.27 12:13:18 | 000,580,608 | —- | M] (OldTimer Tools) — C:UsersпкDownloadsOTL (1).exe
MOD — [2011.03.09 17:54:14 | 000,018,176 | —- | M] (McAfee, Inc.) — c:Program Files (x86)McAfeeSiteAdvisorsahook.dll
MOD — [2010.08.21 08:21:32 | 001,680,896 | —- | M] (Microsoft Corporation) — C:Windowswinsxsx86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bdcomctl32.dll
MOD — [2010.06.10 19:13:50 | 000,046,592 | —- | M] (AudioVkontakte.Ru) — C:WindowsSysWOW64vksaver.dll========== Win32 Services (SafeList) ==========
SRV:64bit: — [2010.10.13 23:28:54 | 000,245,352 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program FilesCommon FilesMcAfeeSystemCoremfefire.exe — (mfefire)
SRV:64bit: — [2010.10.13 23:28:54 | 000,200,056 | —- | M] () [Unknown | Running] — C:Program FilesCommon FilesMcAfeeSystemCore\mcshield.exe — (McShield)
SRV:64bit: — [2010.10.13 23:28:54 | 000,149,032 | —- | M] (McAfee, Inc.) [Unknown | Running] — C:WindowsSysNativemfevtps.exe — (mfevtp)
SRV:64bit: — [2010.10.07 21:34:28 | 000,509,416 | —- | M] (McAfee, Inc.) [On_Demand | Stopped] — C:Program FilesMcAfeeVirusScanmcods.exe — (McODS)
SRV:64bit: — [2010.09.22 19:10:10 | 000,057,184 | —- | M] (Microsoft Corporation) [Disabled | Stopped] — C:Program FilesWindows LiveMeshwlcrasvc.exe — (wlcrasvc)
SRV:64bit: — [2010.03.10 11:14:44 | 000,355,440 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe — (MSK80Service)
SRV:64bit: — [2010.03.10 11:14:44 | 000,355,440 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe — (McProxy)
SRV:64bit: — [2010.03.10 11:14:44 | 000,355,440 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe — (McNASvc)
SRV:64bit: — [2010.03.10 11:14:44 | 000,355,440 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe — (McNaiAnn)
SRV:64bit: — [2010.03.10 11:14:44 | 000,355,440 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe — (mcmscsvc)
SRV:64bit: — [2010.03.10 11:14:44 | 000,355,440 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe — (McMPFSvc)
SRV:64bit: — [2010.01.18 19:55:46 | 000,842,784 | —- | M] (Acer Incorporated) [Auto | Running] — C:Program FilesAcerAcer ePower ManagementePowerSvc.exe — (ePowerSvc)
SRV:64bit: — [2009.07.14 04:41:27 | 001,011,712 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] — C:Program FilesWindows DefenderMpSvc.dll — (WinDefend)
SRV:64bit: — [2009.07.04 05:47:12 | 000,240,160 | —- | M] (Acer) [Auto | Running] — C:Program FilesAcerAcer UpdaterUpdaterService.exe — (Updater Service)
SRV — [2011.03.04 19:01:01 | 001,143,944 | —- | M] (SPAMfighter ApS) [Auto | Running] — C:Program Files (x86)FightersFighterSuiteService.exe — (Suite Service)
SRV — [2011.03.04 19:00:41 | 000,214,664 | —- | M] (SPAMfighter ApS) [Auto | Running] — C:Program Files (x86)FightersSPAMfightersfus.exe — (SPAMfighter Update Service)
SRV — [2011.02.28 19:44:14 | 000,183,560 | —- | M] (Microsoft Corporation.) [On_Demand | Stopped] — C:Program Files (x86)MicrosoftBingBarBBSvc.EXE — (BBSvc)
SRV — [2011.02.25 11:46:22 | 000,249,648 | —- | M] (Microsoft Corporation) [Auto | Running] — C:Program Files (x86)MicrosoftBingBarSeaPort.EXE — (SeaPort)
SRV — [2011.02.16 16:49:08 | 000,101,048 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program Files (x86)McAfeeSiteAdvisorMcSACore.exe — (McAfee SiteAdvisor Service)
SRV — [2011.01.19 00:51:10 | 001,041,088 | —- | M] () [Auto | Running] — C:Program Files (x86)Mail.RuGuardGuardMailRu.exe — (Guard.Mail.ru)
SRV — [2010.09.19 00:04:13 | 000,107,832 | —- | M] () [Auto | Running] — C:WindowsSysWOW64PnkBstrB.exe — (PnkBstrB)
SRV — [2010.09.19 00:04:04 | 000,066,872 | —- | M] () [Auto | Running] — C:WindowsSysWOW64PnkBstrA.exe — (PnkBstrA)
SRV — [2010.03.18 14:16:28 | 000,130,384 | —- | M] (Microsoft Corporation) [Auto | Stopped] — C:WindowsMicrosoft.NETFrameworkv4.0.30319mscorsvw.exe — (clr_optimization_v4.0.30319_32)
SRV — [2010.01.22 11:10:50 | 000,310,352 | —- | M] (Dritek System Inc.) [Auto | Running] — C:Program Files (x86)Launch Managerdsiwmis.exe — (DsiWMIService)
SRV — [2010.01.07 04:50:02 | 000,255,744 | —- | M] (NewTech Infosystems, Inc.) [Auto | Running] — C:Program Files (x86)NewTech InfosystemsAcer Backup ManagerIScheduleSvc.exe — (NTI IScheduleSvc)
SRV — [2009.12.24 04:39:04 | 000,013,336 | —- | M] (Intel Corporation) [Auto | Running] — C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorDataMgrSvc.exe — (IAStorDataMgrSvc) Intel(R)
SRV — [2009.12.09 11:48:26 | 002,320,920 | —- | M] (Intel Corporation) [Auto | Running] — C:Program Files (x86)IntelIntel(R) Management Engine ComponentsUNSUNS.exe — (UNS) Intel(R)
SRV — [2009.12.09 11:48:24 | 000,268,824 | —- | M] (Intel Corporation) [Auto | Running] — C:Program Files (x86)IntelIntel(R) Management Engine ComponentsLMSLMS.exe — (LMS) Intel(R)
SRV — [2009.09.10 16:42:46 | 000,305,448 | —- | M] () [Auto | Running] — C:Program Files (x86)EgisTecMyWinLocker 3×86\MWLService.exe — (MWLService)
SRV — [2009.08.28 12:38:58 | 001,150,496 | —- | M] (Acer Incorporated) [Auto | Running] — C:Program Files (x86)AcerRegistrationGregHSRW.exe — (Greg_Service)
SRV — [2009.07.20 12:51:52 | 000,935,208 | —- | M] (Nero AG) [Auto | Running] — C:Program Files (x86)Common FilesNeroNero BackItUp 4NBService.exe — (Nero BackItUp Scheduler 4.0)
SRV — [2009.07.14 04:16:20 | 000,010,752 | —- | M] (Корпорация Майкрософт) [On_Demand | Stopped] — C:WindowsSysWOW64wpcsvc.dll — (WPCSvc)
SRV — [2009.06.11 00:23:09 | 000,066,384 | —- | M] (Microsoft Corporation) [Disabled | Stopped] — C:WindowsMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe — (clr_optimization_v2.0.50727_32)========== Driver Services (SafeList) ==========
DRV:64bit: — [2010.10.13 23:28:54 | 000,529,128 | —- | M] (McAfee, Inc.) [Kernel | Boot | Running] — C:WindowsSysNativedriversmfehidk.sys — (mfehidk)
DRV:64bit: — [2010.10.13 23:28:54 | 000,441,328 | —- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversmfefirek.sys — (mfefirek)
DRV:64bit: — [2010.10.13 23:28:54 | 000,283,360 | —- | M] (McAfee, Inc.) [Kernel | System | Running] — C:WindowsSysNativedriversmfewfpk.sys — (mfewfpk)
DRV:64bit: — [2010.10.13 23:28:54 | 000,190,136 | —- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversmfeavfk.sys — (mfeavfk)
DRV:64bit: — [2010.10.13 23:28:54 | 000,121,248 | —- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversmfeapfk.sys — (mfeapfk)
DRV:64bit: — [2010.10.13 23:28:54 | 000,094,864 | —- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversmferkdet.sys — (mferkdet)
DRV:64bit: — [2010.10.13 23:28:54 | 000,075,032 | —- | M] (McAfee, Inc.) [Kernel | System | Running] — C:WindowsSysNativedriversmfenlfk.sys — (mfenlfk)
DRV:64bit: — [2010.10.13 23:28:54 | 000,062,800 | —- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriverscfwids.sys — (cfwids)
DRV:64bit: — [2010.09.23 01:36:48 | 000,048,488 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversfssfltr.sys — (fssfltr)
DRV:64bit: — [2009.12.17 21:42:08 | 000,538,136 | —- | M] (Intel Corporation) [Kernel | Boot | Running] — C:WindowsSysNativedriversiaStor.sys — (iaStor)
DRV:64bit: — [2009.12.11 11:25:06 | 000,232,992 | —- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversRtsUStor.sys — (RSUSBSTOR)
DRV:64bit: — [2009.12.10 14:25:10 | 000,301,104 | —- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversSynTP.sys — (SynTP)
DRV:64bit: — [2009.12.09 08:18:34 | 002,978,296 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversBCMWL664.SYS — (BCM43XX)
DRV:64bit: — [2009.12.07 20:53:26 | 000,117,504 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversewusbmdm.sys — (hwdatacard)
DRV:64bit: — [2009.12.02 10:01:24 | 000,213,280 | —- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversRtHDMIVX.sys — (RTHDMIAzAudService)
DRV:64bit: — [2009.11.12 04:44:30 | 000,084,584 | —- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversnvhda64v.sys — (NVHDA)
DRV:64bit: — [2009.11.06 07:56:06 | 001,550,848 | —- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversathrx.sys — (athr)
DRV:64bit: — [2009.10.16 14:32:24 | 000,321,064 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversk57nd60a.sys — (k57nd60a) Broadcom NetLink (TM)
DRV:64bit: — [2009.10.12 16:23:22 | 000,114,304 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversewusbdev.sys — (hwusbdev)
DRV:64bit: — [2009.09.17 07:54:54 | 000,056,344 | —- | M] (Intel Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversHECIx64.sys — (HECIx64) Intel(R)
DRV:64bit: — [2009.07.14 04:52:21 | 000,106,576 | —- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversamdsata.sys — (amdsata)
DRV:64bit: — [2009.07.14 04:52:21 | 000,028,752 | —- | M] (Advanced Micro Devices) [Kernel | Boot | Running] — C:WindowsSysNativedriversamdxata.sys — (amdxata)
DRV:64bit: — [2009.07.14 04:52:20 | 000,194,128 | —- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversamdsbs.sys — (amdsbs)
DRV:64bit: — [2009.07.14 04:48:04 | 000,065,600 | —- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriverslsi_sas2.sys — (LSI_SAS2)
DRV:64bit: — [2009.07.14 04:47:48 | 000,077,888 | —- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversHpSAMD.sys — (HpSAMD)
DRV:64bit: — [2009.07.14 04:45:55 | 000,024,656 | —- | M] (Promise Technology) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversstexstor.sys — (stexstor)
DRV:64bit: — [2009.06.10 23:38:56 | 000,000,308 | —- | M] () [File_System | On_Demand | Running] — C:WindowsSysNativewbemntfs.mof — (Ntfs)
DRV:64bit: — [2009.06.10 23:34:33 | 003,286,016 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversevbda.sys — (ebdrv)
DRV:64bit: — [2009.06.10 23:34:28 | 000,468,480 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversbxvbda.sys — (b06bdrv)
DRV:64bit: — [2009.06.10 23:34:23 | 000,270,848 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversb57nd60a.sys — (b57nd60a)
DRV:64bit: — [2009.06.10 23:31:59 | 000,031,232 | —- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedrivershcw85cir.sys — (hcw85cir)
DRV:64bit: — [2009.06.02 14:15:30 | 000,060,464 | —- | M] (Egis Technology Inc.) [Kernel | System | Running] — C:WindowsSysNativedriversmwlPSDVDisk.sys — (mwlPSDVDisk)
DRV:64bit: — [2009.06.02 14:15:30 | 000,022,576 | —- | M] (Egis Technology Inc.) [File_System | System | Running] — C:WindowsSysNativedriversmwlPSDFilter.sys — (mwlPSDFilter)
DRV:64bit: — [2009.06.02 14:15:30 | 000,020,016 | —- | M] (Egis Technology Inc.) [Kernel | System | Running] — C:WindowsSysNativedriversmwlPSDNserv.sys — (mwlPSDNServ)
DRV:64bit: — [2009.05.06 03:46:08 | 000,018,432 | —- | M] (NewTech Infosystems, Inc.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversNTIDrvr.sys — (NTIDrvr)
DRV:64bit: — [2009.05.06 03:46:08 | 000,016,896 | —- | M] (NewTech Infosystems Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversUBHelper.sys — (UBHelper)
DRV — [2010.06.28 22:50:22 | 000,146,928 | —- | M] (CyberLink Corp.) [2011/03/27 04:19:59] [Kernel | Auto | Running] — C:Program Files (x86)CyberLinkPowerDVD10NavFilter00.fcl — ({1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC})========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: — HKLMSOFTWAREMicrosoftInternet ExplorerMain,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0422&m=aspire_5741g&r=27360910j315l0474z115t55l2k428
IE:64bit: — HKLMSOFTWAREMicrosoftInternet ExplorerMain,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0422&m=aspire_5741g&r=27360910j315l0474z115t55l2k428
IE — HKLMSOFTWAREMicrosoftInternet ExplorerMain,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0422&m=aspire_5741g&r=27360910j315l0474z115t55l2k428
IE — HKLMSOFTWAREMicrosoftInternet ExplorerMain,Local Page = C:WindowsSysWOW64blank.htm
IE — HKLMSOFTWAREMicrosoftInternet ExplorerMain,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0422&m=aspire_5741g&r=27360910j315l0474z115t55l2k428
IE — HKLM..URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} — C:Program Files (x86)uTorrentBartbuTor.dll (Conduit Ltd.)IE — HKU.DEFAULTSoftwareMicrosoftWindowsCurrentVersionInternet Settings: «ProxyEnable» = 0
IE — HKUS-1-5-18SoftwareMicrosoftWindowsCurrentVersionInternet Settings: «ProxyEnable» = 0
IE — HKUS-1-5-21-2330317786-3252475658-1247472922-1000SOFTWAREMicrosoftInternet ExplorerMain,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0422&m=aspire_5741g&r=27360910j315l0474z115t55l2k428
IE — HKUS-1-5-21-2330317786-3252475658-1247472922-1000SOFTWAREMicrosoftInternet ExplorerMain,Secondary Start Pages = [Binary data over 100 bytes]
IE — HKUS-1-5-21-2330317786-3252475658-1247472922-1000SOFTWAREMicrosoftInternet ExplorerMain,Start Page = http://www.mail.ru/cnt/7828
IE — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..URLSearchHook: {09900DE8-1DCA-443F-9243-26FF581438AF} — C:Program Files (x86)Mail.RuSputnikMailRuSputnik.dll (@Mail.Ru)
IE — HKUS-1-5-21-2330317786-3252475658-1247472922-1000SoftwareMicrosoftWindowsCurrentVersionInternet Settings: «ProxyEnable» = 0========== FireFox ==========
FF — prefs.js..browser.search.defaultenginename: «BearShare Web Search»
FF — prefs.js..browser.search.defaultthis.engineName: » «
FF — prefs.js..browser.search.defaulturl: «http://search.conduit.com/ResultsExt.aspx?ctid=CT2786678&SearchSource=3&q={searchTerms}»
FF — prefs.js..browser.search.order.1: «BearShare Web Search»
FF — prefs.js..browser.search.useDBForOrder: true
FF — prefs.js..browser.startup.homepage: «http://search.bearshare.com/»
FF — prefs.js..extensions.enabledItems: yasearch@yandex.ru:5.2.1
FF — prefs.js..extensions.enabledItems: {37964A3C-4EE8-47b1-8321-34DE2C39BA4D}:2.4.0.48
FF — prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3.1
FF — prefs.js..extensions.enabledItems: engine@conduit.com:3.2.5.2
FF — prefs.js..extensions.enabledItems: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}:3.2.5.2
FF — prefs.js..extensions.enabledItems: {1FD91A9C-410C-4090-BBCC-55D3450EF433}:1.0
FF — prefs.js..extensions.enabledItems: {E84D42CA-64EB-11DE-A65F-8C3656D89593}:3.1
FF — prefs.js..keyword.URL: «http://search.bearshare.com/web?src=ffb&systemid=2&q=»FF — HKLMsoftwaremozillaFirefoxExtensions\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:Program Files (x86)McAfeeSiteAdvisor [2011.03.25 14:14:55 | 000,000,000 | —D | M]
FF — HKLMsoftwaremozillaMozilla Firefox 3.6.13extensions\Components: C:Program Files (x86)Mozilla Firefoxcomponents [2011.01.23 17:44:16 | 000,000,000 | —D | M]
FF — HKLMsoftwaremozillaMozilla Firefox 3.6.13extensions\Plugins: C:Program Files (x86)Mozilla Firefoxplugins [2010.12.14 00:36:15 | 000,000,000 | —D | M][2011.01.31 20:34:41 | 000,000,000 | —D | M] (No name found) — C:UsersпкAppDataRoamingmozillaExtensions
[2011.03.26 14:23:02 | 000,000,000 | —D | M] (No name found) — C:UsersпкAppDataRoamingmozillaFirefoxProfilesnahd6ha2.defaultextensions
[2011.03.16 03:27:55 | 000,000,000 | —D | M] (Спутник @Mail.Ru) — C:UsersпкAppDataRoamingmozillaFirefoxProfilesnahd6ha2.defaultextensions{37964A3C-4EE8-47b1-8321-34DE2C39BA4D}
[2011.01.20 00:38:33 | 000,000,000 | —D | M] (uTorrentBar Community Toolbar) — C:UsersпкAppDataRoamingmozillaFirefoxProfilesnahd6ha2.defaultextensions{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
[2011.01.31 20:34:40 | 000,000,000 | —D | M] (MediaBar) — C:UsersпкAppDataRoamingmozillaFirefoxProfilesnahd6ha2.defaultextensions{E84D42CA-64EB-11DE-A65F-8C3656D89593}
[2011.01.20 00:38:33 | 000,000,000 | —D | M] (Conduit Engine) — C:UsersпкAppDataRoamingmozillaFirefoxProfilesnahd6ha2.defaultextensionsengine@conduit.com
[2010.12.19 16:59:01 | 000,000,000 | —D | M] (Яндекс.Бар) — C:UsersпкAppDataRoamingmozillaFirefoxProfilesnahd6ha2.defaultextensionsyasearch@yandex.ru
[2010.09.14 15:48:25 | 000,002,506 | —- | M] () — C:UsersпкAppDataRoamingMozillaFirefoxProfilesnahd6ha2.defaultsearchpluginsBearShareWebSearch.xml
[2011.01.20 00:38:33 | 000,000,863 | —- | M] () — C:UsersпкAppDataRoamingMozillaFirefoxProfilesnahd6ha2.defaultsearchpluginsconduit.xml
[2011.03.16 14:57:35 | 000,001,533 | —- | M] () — C:UsersпкAppDataRoamingMozillaFirefoxProfilesnahd6ha2.defaultsearchpluginsmailru—.xml
[2011.01.31 20:34:41 | 000,000,000 | —D | M] (No name found) — C:Program Files (x86)Mozilla Firefoxextensions
[2010.11.26 22:30:58 | 000,000,000 | —D | M] (Яндекс.Бар) — C:Program Files (x86)Mozilla Firefoxextensionsyasearch@yandex.ru
[2011.01.31 20:34:41 | 000,000,000 | —D | M] (DataMngr) — C:PROGRAM FILES (X86)BEARSHARE APPLICATIONSMEDIABARDATAMNGRFIREFOXEXTENSION
[2011.03.25 14:14:55 | 000,000,000 | —D | M] (McAfee SiteAdvisor) — C:PROGRAM FILES (X86)MCAFEESITEADVISOR
File not found (No name found) — C:USERSРЇРЄAPPDATAROAMINGMOZILLAFIREFOXPROFILESNAHD6HA2.DEFAULTEXTENSIONS{37964A3C-4EE8-47B1-8321-34DE2C39BA4D}
File not found (No name found) — C:USERSРЇРЄAPPDATAROAMINGMOZILLAFIREFOXPROFILESNAHD6HA2.DEFAULTEXTENSIONS{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}
File not found (No name found) — C:USERSРЇРЄAPPDATAROAMINGMOZILLAFIREFOXPROFILESNAHD6HA2.DEFAULTEXTENSIONS{E84D42CA-64EB-11DE-A65F-8C3656D89593}
File not found (No name found) — C:USERSРЇРЄAPPDATAROAMINGMOZILLAFIREFOXPROFILESNAHD6HA2.DEFAULTEXTENSIONSENGINE@CONDUIT.COM
File not found (No name found) — C:USERSРЇРЄAPPDATAROAMINGMOZILLAFIREFOXPROFILESNAHD6HA2.DEFAULTEXTENSIONSYASEARCH@YANDEX.RU
[2010.10.13 23:28:54 | 000,024,376 | —- | M] (McAfee, Inc.) — C:Program Files (x86)Mozilla FirefoxcomponentsScriptff.dll
[2010.09.14 15:48:25 | 000,002,506 | —- | M] () — C:Program Files (x86)Mozilla FirefoxsearchpluginsBearShareWebSearch.xml
[2010.12.14 00:36:15 | 000,005,568 | —- | M] () — C:Program Files (x86)Mozilla Firefoxsearchpluginsozonru.xml
[2010.10.27 08:25:03 | 000,001,122 | —- | M] () — C:Program Files (x86)Mozilla Firefoxsearchpluginspriceru.xml
[2010.10.27 08:25:03 | 000,001,945 | —- | M] () — C:Program Files (x86)Mozilla Firefoxsearchpluginstorgmailru.xml
[2010.10.27 08:25:03 | 000,001,304 | —- | M] () — C:Program Files (x86)Mozilla Firefoxsearchpluginswikipedia-ru.xml
[2010.10.27 08:25:03 | 000,001,384 | —- | M] () — C:Program Files (x86)Mozilla Firefoxsearchpluginsyandex-slovari.xml
[2010.10.27 08:25:03 | 000,001,495 | —- | M] () — C:Program Files (x86)Mozilla Firefoxsearchpluginsyandex.xmlO1 HOSTS File: ([2011.03.22 04:35:24 | 000,123,144 | -H— | M]) — C:WindowsSysNativedriversetchosts
O1 — Hosts: 137.10.10.12 shopnon.com
O1 — Hosts: 46.161.29.83 http://www.haitai-sspipefitting.com
O1 — Hosts: 46.161.29.83 http://www.y-knife.ru
O1 — Hosts: 137.10.10.12 europatrans.ru
O1 — Hosts: 137.10.10.12 http://www.fgmobil.ru
O1 — Hosts: 46.161.29.83 xsyq.ru
O1 — Hosts: 137.10.10.12 garant-elista.ru
O1 — Hosts: 46.161.29.83 http://www.worldlychords.com
O1 — Hosts: 137.10.10.12 http://www.exact-error.ru
O1 — Hosts: 46.161.29.83 http://www.top7money.com
O1 — Hosts: 46.161.29.83 tonyawatkinshomes.com
O1 — Hosts: 46.161.29.83 http://www.zadachi-po-fizike.ru
O1 — Hosts: 46.161.29.83 odnoklassniki.ru
O1 — Hosts: 46.161.29.83 http://www.vpamky.ru
O1 — Hosts: 46.161.29.83 http://www.virustotal.com
O1 — Hosts: 46.161.29.83 xknife.ru
O1 — Hosts: 177.24.66.12 http://www.zoloteruno.kiev.ua
O1 — Hosts: 137.10.10.12 genealogists.ru
O1 — Hosts: 137.10.10.12 flybed.ru
O1 — Hosts: 46.161.29.83 vupahcxk.ru
O1 — Hosts: 46.161.29.83 wdxhu.ru
O1 — Hosts: 137.10.10.12 http://www.ergotone.ru
O1 — Hosts: 46.161.29.83 yvgcuz.ru
O1 — Hosts: 46.161.29.83 http://www.a1help.ru
O1 — Hosts: 137.10.10.12 kaboom.ry
O1 — Hosts: 3480 more lines…
O2:64bit: — BHO: (McAfee Phishing Filter) — {27B4851A-3207-45A2-B947-BE8AFE6163AB} — c:Program FilesMcAfeeMSKmskapbho64.dll ()
O2:64bit: — BHO: (UrlHelper Class) — {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} — C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrx64IEBHO.dll (MusicLab, LLC)
O2:64bit: — BHO: (scriptproxy) — {7DB2D5A0-7241-4E79-B68D-6309F01C5231} — C:Program FilesCommon FilesMcAfeeSystemCoreScriptSn.20110123164416.dll (McAfee, Inc.)
O2:64bit: — BHO: (MailRuBHO Class) — {8984B388-A5BB-4DF7-B274-77B879E179DB} — C:Program Files (x86)Mail.RuSputnikMailRuSputnik_x64.dll (@Mail.Ru)
O2:64bit: — BHO: (Google Toolbar Helper) — {AA58ED58-01DD-4d91-8333-CF10577473F7} — C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_64.dll (Google Inc.)
O2:64bit: — BHO: (Google Toolbar Notifier BHO) — {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} — C:Program FilesGoogleGoogleToolbarNotifier5.6.6209.1142swg64.dll (Google Inc.)
O2:64bit: — BHO: (McAfee SiteAdvisor BHO) — {B164E929-A1B6-4A06-B104-2CD0E90A88FF} — c:Program Files (x86)McAfeeSiteAdvisorx64McIEPlg.dll (McAfee, Inc.)
O2 — BHO: (MediaBar) — {0974BA1E-64EC-11DE-B2A5-E43756D89593} — C:Program Files (x86)BearShare ApplicationsMediaBarToolBarBearshareMediabarDx.dll ()
O2 — BHO: (McAfee Phishing Filter) — {27B4851A-3207-45A2-B947-BE8AFE6163AB} — c:Program FilesMcAfeeMSKmskapbho.dll ()
O2 — BHO: (Conduit Engine) — {30F9B915-B755-4826-820B-08FBA6BD249D} — C:Program Files (x86)ConduitEngineConduitEngine.dll (Conduit Ltd.)
O2 — BHO: (UrlHelper Class) — {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} — C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrIEBHO.dll (MusicLab, LLC)
O2 — BHO: (scriptproxy) — {7DB2D5A0-7241-4E79-B68D-6309F01C5231} — C:Program Files (x86)Common FilesMcAfeeSystemCoreScriptSn.20110123164416.dll (McAfee, Inc.)
O2 — BHO: (MailRuBHO Class) — {8984B388-A5BB-4DF7-B274-77B879E179DB} — C:Program Files (x86)Mail.RuSputnikMailRuSputnik.dll (@Mail.Ru)
O2 — BHO: (Google Toolbar Notifier BHO) — {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} — C:Program Files (x86)GoogleGoogleToolbarNotifier5.6.6209.1142swg.dll (Google Inc.)
O2 — BHO: (McAfee SiteAdvisor BHO) — {B164E929-A1B6-4A06-B104-2CD0E90A88FF} — c:Program Files (x86)McAfeeSiteAdvisorMcIEPlg.dll (McAfee, Inc.)
O2 — BHO: (uTorrentBar Toolbar) — {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} — C:Program Files (x86)uTorrentBartbuTor.dll (Conduit Ltd.)
O2 — BHO: (Bing Bar Helper) — {d2ce3e00-f94a-4740-988e-03dc2f38c34f} — C:Program Files (x86)MicrosoftBingBarBingExt.dll (Корпорация Майкрософт.)
O2 — BHO: (Ask Toolbar BHO) — {FE063DB1-4EC0-403e-8DD8-394C54984B2C} — C:Program Files (x86)AskTBarbar1.binASKTBAR.DLL (Ask.com)
O3:64bit: — HKLM..Toolbar: (Спутник@Mail.Ru) — {09900DE8-1DCA-443F-9243-26FF581438AF} — C:Program Files (x86)Mail.RuSputnikMailRuSputnik_x64.dll (@Mail.Ru)
O3:64bit: — HKLM..Toolbar: (McAfee SiteAdvisor Toolbar) — {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} — c:Program Files (x86)McAfeeSiteAdvisorx64McIEPlg.dll (McAfee, Inc.)
O3:64bit: — HKLM..Toolbar: (Google Toolbar) — {2318C2B1-4965-11d4-9B18-009027A5CD4F} — C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_64.dll (Google Inc.)
O3:64bit: — HKLM..Toolbar: (no name) — 10 — No CLSID value found.
O3:64bit: — HKLM..Toolbar: (no name) — Locked — No CLSID value found.
O3 — HKLM..Toolbar: (MediaBar) — {0974BA1E-64EC-11DE-B2A5-E43756D89593} — C:Program Files (x86)BearShare ApplicationsMediaBarToolBarBearshareMediabarDx.dll ()
O3 — HKLM..Toolbar: (Спутник@Mail.Ru) — {09900DE8-1DCA-443F-9243-26FF581438AF} — C:Program Files (x86)Mail.RuSputnikMailRuSputnik.dll (@Mail.Ru)
O3 — HKLM..Toolbar: (McAfee SiteAdvisor Toolbar) — {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} — c:Program Files (x86)McAfeeSiteAdvisorMcIEPlg.dll (McAfee, Inc.)
O3 — HKLM..Toolbar: (Яндекс.Бар (для НевоСофт)) — {17679b4f-3bcc-644b-8f28-a47597fbb905} — C:Program Files (x86)YandexYandexBarIEbarsbarienevosoftyndbar.dll (ООО «ЯНДЕКС»)
O3 — HKLM..Toolbar: (Conduit Engine) — {30F9B915-B755-4826-820B-08FBA6BD249D} — C:Program Files (x86)ConduitEngineConduitEngine.dll (Conduit Ltd.)
O3 — HKLM..Toolbar: (Bing Bar) — {8dcb7100-df86-4384-8842-8fa844297b3f} — C:Program Files (x86)MicrosoftBingBarBingExt.dll (Корпорация Майкрософт.)
O3 — HKLM..Toolbar: (@msdxmLC.dll,-1@1033,&Radio) — {8E718888-423F-11D2-876E-00A0C9082467} — C:Program Files (x86)No1 Video Convertermsdxm.ocx (Microsoft Corporation)
O3 — HKLM..Toolbar: (Яндекс.Бар) — {91397D20-1446-11D4-8AF4-0040CA1127B6} — C:Program Files (x86)YandexYandexBarIEyndbar.dll (ООО «ЯНДЕКС»)
O3 — HKLM..Toolbar: (uTorrentBar Toolbar) — {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} — C:Program Files (x86)uTorrentBartbuTor.dll (Conduit Ltd.)
O3 — HKLM..Toolbar: (Ask Toolbar) — {FE063DB9-4EC0-403e-8DD8-394C54984B2C} — C:Program Files (x86)AskTBarbar1.binASKTBAR.DLL (Ask.com)
O3 — HKLM..Toolbar: (no name) — 10 — Reg Error: Value error. File not found
O3 — HKLM..Toolbar: (no name) — Locked — No CLSID value found.
O3 — HKU.DEFAULT..ToolbarWebBrowser: (Яндекс.Бар (для НевоСофт)) — {17679b4f-3bcc-644b-8f28-a47597fbb905} — C:Program Files (x86)YandexYandexBarIEbarsbarienevosoftyndbar.dll (ООО «ЯНДЕКС»)
O3 — HKU.DEFAULT..ToolbarWebBrowser: (Яндекс.Бар) — {91397D20-1446-11D4-8AF4-0040CA1127B6} — C:Program Files (x86)YandexYandexBarIEyndbar.dll (ООО «ЯНДЕКС»)
O3 — HKUS-1-5-18..ToolbarWebBrowser: (Яндекс.Бар (для НевоСофт)) — {17679b4f-3bcc-644b-8f28-a47597fbb905} — C:Program Files (x86)YandexYandexBarIEbarsbarienevosoftyndbar.dll (ООО «ЯНДЕКС»)
O3 — HKUS-1-5-18..ToolbarWebBrowser: (Яндекс.Бар) — {91397D20-1446-11D4-8AF4-0040CA1127B6} — C:Program Files (x86)YandexYandexBarIEyndbar.dll (ООО «ЯНДЕКС»)
O3 — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..ToolbarWebBrowser: (Яндекс.Бар (для НевоСофт)) — {17679b4f-3bcc-644b-8f28-a47597fbb905} — C:Program Files (x86)YandexYandexBarIEbarsbarienevosoftyndbar.dll (ООО «ЯНДЕКС»)
O3:64bit: — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..ToolbarWebBrowser: (Google Toolbar) — {2318C2B1-4965-11D4-9B18-009027A5CD4F} — C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_64.dll (Google Inc.)
O3 — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..ToolbarWebBrowser: (Яндекс.Бар) — {91397D20-1446-11D4-8AF4-0040CA1127B6} — C:Program Files (x86)YandexYandexBarIEyndbar.dll (ООО «ЯНДЕКС»)
O4:64bit: — HKLM..Run: [Acer ePower Management] C:Program FilesAcerAcer ePower ManagementePowerTray.exe (Acer Incorporated)
O4:64bit: — HKLM..Run: [mwlDaemon] C:Program Files (x86)EgisTecMyWinLocker 3x86mwlDaemon.exe (Egis Technology Inc.)
O4:64bit: — HKLM..Run: [NvCplDaemon] C:WindowsSysNativeNvCpl.dll (NVIDIA Corporation)
O4:64bit: — HKLM..Run: [RtHDVCpl] C:Program FilesRealtekAudioHDARAVCpl64.exe (Realtek Semiconductor)
O4 — HKLM..Run: [BackupManagerTray] C:Program Files (x86)NewTech InfosystemsAcer Backup ManagerBackupManagerTray.exe (NewTech Infosystems, Inc.)
O4 — HKLM..Run: [BDRegion] C:Program Files (x86)CyberLinkShared filesbrs.exe (cyberlink)
O4 — HKLM..Run: [DATAMNGR] C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrdatamngrUI.exe (MusicLab, LLC)
O4 — HKLM..Run: [EgisTecLiveUpdate] C:Program Files (x86)EgisTec Egis Software UpdateEgisUpdate.exe (Egis Technology Inc.)
O4 — HKLM..Run: [Guard.Mail.ru.gui] C:Program Files (x86)Mail.RuGuardGuardMailRu.exe ()
O4 — HKLM..Run: [IAStorIcon] C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorIcon.exe (Intel Corporation)
O4 — HKLM..Run: [LManager] C:Program Files (x86)Launch ManagerLManager.exe (Dritek System Inc.)
O4 — HKLM..Run: [mcui_exe] C:Program FilesMcAfee.comAgentmcagent.exe (McAfee, Inc.)
O4 — HKLM..Run: [NortonOnlineBackupReminder] C:Program Files (x86)SymantecNorton Online BackupActivationNobuActivation.exe (Symantec Corporation)
O4 — HKLM..Run: [RemoteControl10] C:Program Files (x86)CyberLinkPowerDVD10PDVD10Serv.exe (CyberLink Corp.)
O4 — HKLM..Run: [sfagent] C:Program Files (x86)FightersSPAMfightersfagent.exe (SPAMfighter ApS)
O4 — HKLM..Run: [VKSaverUpdater] C:Program Files (x86)VKSaverVKSaverUpdater.exe (AudioVkontakte.Ru)
O4 — HKLM..Run: [WinampAgent] C:Program Files (x86)Winampwinampa.exe (Nullsoft, Inc.)
O4 — HKUS-1-5-19..Run: [Sidebar] C:Program Files (x86)Windows SidebarSidebar.exe (Microsoft Corporation)
O4 — HKUS-1-5-20..Run: [Sidebar] C:Program Files (x86)Windows SidebarSidebar.exe (Microsoft Corporation)
O4 — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..Run: [BearShare] C:Program Files (x86)BearShare ApplicationsBearShareBearShare.exe (MusicLab, LLC)
O4 — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..Run: [drm.exe] C:UsersпкAppDataRoamingdrmdrm.exe ()
O4 — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..Run: [Mobile Partner] C:Program Files (x86)OGO!MobileOGO!Mobile.exe ()
O4 — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..Run: [uTorrent] C:Program Files (x86)uTorrentuTorrent.exe (BitTorrent, Inc.)
O4 — HKUS-1-5-19..RunOnce: [mctadmin] File not found
O4 — HKUS-1-5-20..RunOnce: [mctadmin] File not found
O4 — Startup: C:UsersпкAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupDesktopVideoPlayer.lnk = C:UsersпкAppDataLocalvghdbinvghd.exe (Totem Entertainment)
O6 — HKLMSoftwarePoliciesMicrosoftInternet ExplorerLow Rights present
O6 — HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoActiveDesktop = 1
O6 — HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoActiveDesktopChanges = 1
O6 — HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesSystem: ConsentPromptBehaviorAdmin = 5
O6 — HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesSystem: ConsentPromptBehaviorUser = 3
O9 — Extra Button: PokerStars — {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} — C:Program Files (x86)PokerStarsPokerStarsUpdate.exe (PokerStars)
O13 — gopher Prefix: missing
O13 — gopher Prefix: missing
O17 — HKLMSystemCCSServicesTcpipParameters: DhcpNameServer = 77.120.130.20
O18:64bit: — ProtocolHandlerdssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} — c:Program Files (x86)McAfeeSiteAdvisorx64McIEPlg.dll (McAfee, Inc.)
O18:64bit: — ProtocolHandlerlivecall {828030A1-22C1-4009-854F-8E305202313F} — Reg Error: Key error. File not found
O18:64bit: — ProtocolHandlerms-help {314111c7-a502-11d2-bbca-00c04f8ec294} — Reg Error: Key error. File not found
O18:64bit: — ProtocolHandlerms-itss {0A9007C0-4076-11D3-8789-0000F8105754} — Reg Error: Key error. File not found
O18:64bit: — ProtocolHandlermsnim {828030A1-22C1-4009-854F-8E305202313F} — Reg Error: Key error. File not found
O18:64bit: — ProtocolHandlersacore {5513F07E-936B-4E52-9B00-067394E91CC5} — c:Program Files (x86)McAfeeSiteAdvisorx64McIEPlg.dll (McAfee, Inc.)
O18:64bit: — ProtocolHandlervnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} — Reg Error: Key error. File not found
O18:64bit: — ProtocolHandlerwlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} — Reg Error: Key error. File not found
O18:64bit: — ProtocolHandlerwlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} — Reg Error: Key error. File not found
O18 — ProtocolHandlerdssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} — c:Program Files (x86)McAfeeSiteAdvisorMcIEPlg.dll (McAfee, Inc.)
O18 — ProtocolHandlersacore {5513F07E-936B-4E52-9B00-067394E91CC5} — c:Program Files (x86)McAfeeSiteAdvisorMcIEPlg.dll (McAfee, Inc.)
O18 — ProtocolHandlervnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} — C:Program Files (x86)No1 Video Convertermsdxm.ocx (Microsoft Corporation)
O20:64bit: — AppInit_DLLs: (C:PROGRA~2BEARSH~1MediaBarDatamngrx64datamngr.dll) — C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrx64datamngr.dll (MusicLab, LLC)
O20:64bit: — AppInit_DLLs: (C:PROGRA~2BEARSH~1MediaBarDatamngrx64IEBHO.dll) — C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrx64IEBHO.dll (MusicLab, LLC)
O20 — AppInit_DLLs: (C:PROGRA~2BEARSH~1MediaBarDatamngrdatamngr.dll) — C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrdatamngr.dll (MusicLab, LLC)
O20 — AppInit_DLLs: (C:PROGRA~2BEARSH~1MediaBarDatamngrIEBHO.dll) — C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrIEBHO.dll (MusicLab, LLC)
O20 — AppInit_DLLs: (C:Windowssystem32vksaver.dll) — C:WindowsSysWOW64vksaver.dll (AudioVkontakte.Ru)
O20:64bit: — HKLM Winlogon: Shell — (explorer.exe) — C:Windowsexplorer.exe (Microsoft Corporation)
O20:64bit: — HKLM Winlogon: VMApplet — (SystemPropertiesPerformance.exe) — C:WindowsSysNativeSystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: — HKLM Winlogon: VMApplet — (/pagefile) — File not found
O20 — HKLM Winlogon: Shell — (explorer.exe) — C:WindowsSysWow64explorer.exe (Microsoft Corporation)
O20 — HKLM Winlogon: VMApplet — (/pagefile) — File not found
O21:64bit: — SSODL: WebCheck — {E6FB5E20-DE35-11CF-9C87-00AA005127ED} — CLSID or File not found.
O21 — SSODL: WebCheck — {E6FB5E20-DE35-11CF-9C87-00AA005127ED} — CLSID or File not found.
O32 — HKLM CDRom: AutoRun — 1
O33 — MountPoints2{361885bc-fb34-11df-b8ae-705ab641ec57}Shell — «» = AutoRun
O33 — MountPoints2{361885bc-fb34-11df-b8ae-705ab641ec57}ShellAutoRuncommand — «» = E:AutoRun.exe
O33 — MountPoints2{72d33301-f6fb-11df-bea8-f07bcb2120f7}Shell — «» = AutoRun
O33 — MountPoints2{72d33301-f6fb-11df-bea8-f07bcb2120f7}ShellAutoRuncommand — «» = E:AutoRun.exe
O33 — MountPoints2{72d3330f-f6fb-11df-bea8-f07bcb2120f7}Shell — «» = AutoRun
O33 — MountPoints2{72d3330f-f6fb-11df-bea8-f07bcb2120f7}ShellAutoRuncommand — «» = E:AutoRun.exe
O33 — MountPoints2{ae2bd7a3-fa07-11df-ae19-f07bcb2120f7}Shell — «» = AutoRun
O33 — MountPoints2{ae2bd7a3-fa07-11df-ae19-f07bcb2120f7}ShellAutoRuncommand — «» = E:AutoRun.exe
O33 — MountPoints2{ae2bd7b1-fa07-11df-ae19-f07bcb2120f7}Shell — «» = AutoRun
O33 — MountPoints2{ae2bd7b1-fa07-11df-ae19-f07bcb2120f7}ShellAutoRuncommand — «» = E:AutoRun.exe
O33 — MountPoints2{d16a7d44-fa2f-11df-b48b-705ab641ec57}Shell — «» = AutoRun
O33 — MountPoints2{d16a7d44-fa2f-11df-b48b-705ab641ec57}ShellAutoRuncommand — «» = E:AutoRun.exe
O33 — MountPoints2EShell — «» = AutoRun
O33 — MountPoints2EShellAutoRuncommand — «» = E:AutoRun.exe
O34 — HKLM BootExecute: (autocheck autochk *) — File not found
O35:64bit: — HKLM..comfile [open] — «%1» %*
O35:64bit: — HKLM..exefile [open] — «%1» %*
O35 — HKLM..comfile [open] — «%1» %*
O35 — HKLM..exefile [open] — «%1» %*
O37:64bit: — HKLM…com [@ = comfile] — «%1» %*
O37:64bit: — HKLM…exe [@ = exefile] — «%1» %*
O37 — HKLM…com [@ = comfile] — «%1» %*
O37 — HKLM…exe [@ = exefile] — «%1» %*========== Files/Folders — Created Within 30 Days ==========
[2011.03.27 12:06:01 | 000,000,000 | —D | C] — C:ProgramData1160
[2011.03.27 12:05:26 | 000,000,000 | —D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsMcAfee
[2011.03.27 11:58:08 | 000,000,000 | —D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsFighters
[2011.03.27 11:58:08 | 000,000,000 | —D | C] — C:Program Files (x86)Fighters
[2011.03.27 11:58:00 | 000,000,000 | —D | C] — C:ProgramDataFighters
[2011.03.27 11:57:41 | 000,000,000 | -H-D | C] — C:ProgramData{C63260C3-92B8-484F-8B6B-02C69C5AAA41}
[2011.03.27 11:54:57 | 000,000,000 | —D | C] — C:UsersпкAppDataRoamingFighters
[2011.03.27 04:19:57 | 000,000,000 | R—D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsCyberLink PowerDVD 10
[2011.03.27 01:10:54 | 000,000,000 | —D | C] — C:ProgramData{8790345A-AF70-4319-B9E7-AAA25C6DCD42}
[2011.03.25 19:06:44 | 000,000,000 | —D | C] — C:Program Files (x86)trend micro
[2011.03.25 19:06:44 | 000,000,000 | —D | C] — C:rsit
[2011.03.24 23:14:44 | 000,000,000 | —D | C] — C:Program Files (x86)popop
[2011.03.22 15:08:13 | 000,000,000 | —D | C] — C:UsersпкDesktopВидео уроки по фотошопу
[2011.03.20 12:38:36 | 000,000,000 | —D | C] — C:UsersпкDesktopсборник .м
[2011.03.16 14:09:55 | 000,000,000 | —D | C] — C:ProgramDataNtiDvdCopy
[2011.03.16 12:44:14 | 000,000,000 | —D | C] — C:UsersпкAppDataRoamingNero
[2011.03.16 12:42:34 | 000,000,000 | —D | C] — C:Program Files (x86)AskTBar
[2011.03.16 12:42:18 | 000,000,000 | —D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsNero
[2011.03.16 12:42:05 | 000,000,000 | —D | C] — C:Program Files (x86)Nero
[2011.03.16 12:41:57 | 000,000,000 | —D | C] — C:ProgramDataNero
[2011.03.16 12:41:57 | 000,000,000 | —D | C] — C:Program Files (x86)Common FilesNero
[2011.03.14 20:14:55 | 000,000,000 | —D | C] — C:Usersпкмузон-car
[2011.03.14 01:10:20 | 000,000,000 | —D | C] — C:UsersпкDesktopБОУЛИНГ
[2011.03.13 02:15:25 | 000,000,000 | —D | C] — C:UsersпкAppDataLocalActiveState
[2011.03.13 00:18:43 | 000,000,000 | —D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsActivePerl 5.10.0 Build 1004
[2011.03.13 00:18:25 | 000,000,000 | —D | C] — C:Perl
[2011.03.09 10:39:17 | 000,000,000 | —D | C] — C:Program Files (x86)Microsoft
[2011.03.09 02:17:59 | 001,540,608 | —- | C] (Microsoft Corporation) — C:WindowsSysNativeDWrite.dll
[2011.03.09 02:17:59 | 001,074,176 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64DWrite.dll
[2011.03.09 02:17:59 | 000,902,656 | —- | C] (Microsoft Corporation) — C:WindowsSysNatived2d1.dll
[2011.03.09 02:17:59 | 000,739,840 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64d2d1.dll
[2011.03.09 02:17:56 | 000,961,024 | —- | C] (Microsoft Corporation) — C:WindowsSysNativeCPFilters.dll
[2011.03.09 02:17:56 | 000,723,968 | —- | C] (Microsoft Corporation) — C:WindowsSysNativeEncDec.dll
[2011.03.09 02:17:56 | 000,642,048 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64CPFilters.dll
[2011.03.09 02:17:56 | 000,534,528 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64EncDec.dll
[2011.03.09 02:17:55 | 001,118,720 | —- | C] (Microsoft Corporation) — C:WindowsSysNativesbe.dll
[2011.03.09 02:17:55 | 000,850,432 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64sbe.dll
[2011.03.09 02:17:55 | 000,259,072 | —- | C] (Microsoft Corporation) — C:WindowsSysNativempg2splt.ax
[2011.03.09 02:17:55 | 000,199,680 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64mpg2splt.ax
[2011.03.09 02:17:38 | 003,138,048 | —- | C] (Microsoft Corporation) — C:WindowsSysNativemstscax.dll
[2011.03.09 02:17:38 | 002,690,560 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64mstscax.dll
[2011.03.09 02:17:38 | 001,097,216 | —- | C] (Microsoft Corporation) — C:WindowsSysNativemstsc.exe
[2011.03.09 02:17:38 | 001,034,240 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64mstsc.exe
[2011.03.02 19:36:08 | 000,000,000 | —D | C] — C:UsersпкDesktopРАДМИР
[2011.02.27 20:08:16 | 000,000,000 | —D | C] — C:UsersпкAppDataLocalvghd
[2011.02.27 15:47:03 | 000,000,000 | —D | C] — C:UsersпкDesktop23февраля
[2010.01.16 06:34:32 | 000,036,136 | —- | C] (Oberon Media) — C:ProgramDataFullRemove.exe
[2 C:WindowsSysWow64*.tmp files -> C:WindowsSysWow64*.tmp -> ]
[1 C:Windows*.tmp files -> C:Windows*.tmp -> ]========== Files — Modified Within 30 Days ==========
[2011.03.27 12:12:31 | 000,009,696 | -H— | M] () — C:WindowsSysNative7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.03.27 12:12:31 | 000,009,696 | -H— | M] () — C:WindowsSysNative7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.03.27 12:12:02 | 001,533,604 | —- | M] () — C:WindowsSysNativePerfStringBackup.INI
[2011.03.27 12:12:02 | 000,675,958 | —- | M] () — C:WindowsSysNativeperfh019.dat
[2011.03.27 12:12:02 | 000,616,008 | —- | M] () — C:WindowsSysNativeperfh009.dat
[2011.03.27 12:12:02 | 000,132,516 | —- | M] () — C:WindowsSysNativeperfc019.dat
[2011.03.27 12:12:02 | 000,106,388 | —- | M] () — C:WindowsSysNativeperfc009.dat
[2011.03.27 12:05:26 | 000,001,832 | —- | M] () — C:UsersPublicDesktopMcAfee Internet Security Suite.lnk
[2011.03.27 12:05:10 | 000,000,007 | —- | M] () — C:Windowstreeskp.sys
[2011.03.27 12:05:10 | 000,000,007 | —- | M] () — C:Windowssbacknt.bin
[2011.03.27 12:05:09 | 000,001,128 | —- | M] () — C:UsersпкDesktopИгры от Невософт.lnk
[2011.03.27 12:05:00 | 001,133,568 | -H— | M] () — C:UsersпкAppDataRoamingbase.db
[2011.03.27 12:04:53 | 000,001,028 | —- | M] () — C:WindowstasksGoogleUpdateTaskMachineCore.job
[2011.03.27 12:04:35 | 000,067,584 | —S- | M] () — C:Windowsbootstat.dat
[2011.03.27 12:04:29 | 2358,333,440 | -HS- | M] () — C:hiberfil.sys
[2011.03.27 11:51:56 | 000,000,000 | —- | M] () — C:WindowsSysNativeHOSTNAME.EXE
[2011.03.27 11:51:00 | 000,001,032 | —- | M] () — C:WindowstasksGoogleUpdateTaskMachineUA.job
[2011.03.27 11:43:17 | 000,000,942 | —- | M] () — C:WindowstasksGoogleUpdateTaskUserS-1-5-21-2330317786-3252475658-1247472922-1000UA.job
[2011.03.27 04:19:57 | 000,002,085 | —- | M] () — C:UsersPublicDesktopCyberLink PowerDVD 10.lnk
[2011.03.27 04:12:36 | 000,505,128 | —- | M] (Microsoft Corporation) — C:WindowsSysWow64msvcp71.dll
[2011.03.27 04:12:36 | 000,353,576 | —- | M] (Microsoft Corporation) — C:WindowsSysWow64msvcr71.dll
[2011.03.27 04:12:36 | 000,029,480 | —- | M] (Microsoft Corporation) — C:WindowsSysWow64msxml3a.dll
[2011.03.26 21:28:00 | 000,000,890 | —- | M] () — C:WindowstasksGoogleUpdateTaskUserS-1-5-21-2330317786-3252475658-1247472922-1000Core.job
[2011.03.26 18:30:11 | 000,002,352 | —- | M] () — C:UsersпкDesktopGoogle Chrome.lnk
[2011.03.25 20:05:51 | 000,339,991 | —- | M] () — C:UsersпкDesktopRSIT (1).exe
[2011.03.24 15:36:42 | 000,092,255 | —- | M] () — C:UsersпкDesktopx_05630ceb.jpg
[2011.03.23 23:18:14 | 000,002,802 | —- | M] () — C:UsersпкAppDataRoamingwklnhst.dat
[2011.03.23 23:18:01 | 000,015,360 | —- | M] () — C:UsersпкDesktopЯПОНСКАЯ ДИЕТА.wps
[2011.03.22 04:35:24 | 000,123,144 | -H— | M] () — C:WindowsSysNativedriversetchosts
[2011.03.17 14:10:10 | 000,780,309 | —- | M] () — C:UsersпкDesktopw_3b2166ef.jpg
[2011.03.16 14:09:40 | 000,001,024 | RH— | M] () — C:UsersPublicDocumentsNTIMP3.dll
[2011.03.16 12:42:18 | 000,002,700 | —- | M] () — C:UsersпкApplication DataMicrosoftInternet ExplorerQuick LaunchNero StartSmart Essentials.lnk
[2011.03.16 12:42:18 | 000,002,676 | —- | M] () — C:UsersPublicDesktopNero StartSmart Essentials.lnk
[2011.03.15 12:51:35 | 000,041,092 | —- | M] () — C:UsersпкDesktopshang_tsung.gif
[2011.03.13 02:25:11 | 000,026,051 | -HS- | M] () — C:UsersпкFolder.jpg
[2011.03.13 02:25:11 | 000,004,450 | -HS- | M] () — C:UsersпкAlbumArtSmall.jpg
[2011.02.27 20:08:18 | 000,001,061 | —- | M] () — C:UsersпкAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupDesktopVideoPlayer.lnk
[2 C:WindowsSysWow64*.tmp files -> C:WindowsSysWow64*.tmp -> ]
[1 C:Windows*.tmp files -> C:Windows*.tmp -> ]========== Files Created — No Company Name ==========
[2011.03.27 04:19:57 | 000,002,085 | —- | C] () — C:UsersPublicDesktopCyberLink PowerDVD 10.lnk
[2011.03.25 20:05:51 | 000,339,991 | —- | C] () — C:UsersпкDesktopRSIT (1).exe
[2011.03.24 15:36:47 | 000,092,255 | —- | C] () — C:UsersпкDesktopx_05630ceb.jpg
[2011.03.23 23:18:01 | 000,015,360 | —- | C] () — C:UsersпкDesktopЯПОНСКАЯ ДИЕТА.wps
[2011.03.17 14:11:01 | 000,780,309 | —- | C] () — C:UsersпкDesktopw_3b2166ef.jpg
[2011.03.16 12:42:18 | 000,002,700 | —- | C] () — C:UsersпкApplication DataMicrosoftInternet ExplorerQuick LaunchNero StartSmart Essentials.lnk
[2011.03.16 12:42:18 | 000,002,676 | —- | C] () — C:UsersPublicDesktopNero StartSmart Essentials.lnk
[2011.03.15 12:51:39 | 000,041,092 | —- | C] () — C:UsersпкDesktopshang_tsung.gif
[2011.03.13 02:25:11 | 000,026,051 | -HS- | C] () — C:UsersпкFolder.jpg
[2011.03.13 02:25:11 | 000,004,450 | -HS- | C] () — C:UsersпкAlbumArtSmall.jpg
[2011.02.17 22:43:28 | 000,003,584 | —- | C] () — C:UsersпкAppDataLocalDCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.02.17 22:40:53 | 000,000,067 | —- | C] () — C:Windows#1 Video Converter.INI
[2011.01.28 00:10:36 | 000,000,007 | —- | C] () — C:Windowstreeskp.sys
[2011.01.28 00:10:36 | 000,000,007 | —- | C] () — C:Windowssbacknt.bin
[2010.12.08 02:54:52 | 001,133,568 | -H— | C] () — C:UsersпкAppDataRoamingbase.db
[2010.11.26 20:36:32 | 002,612,224 | —- | C] () — C:Windowsphclick.dll
[2010.11.26 20:36:32 | 002,289,152 | —- | C] () — C:WindowsPhoto Click.exe
[2010.11.26 20:36:32 | 000,668,576 | —- | C] () — C:Windowsunins000.exe
[2010.11.26 20:36:32 | 000,004,246 | —- | C] () — C:Windowsunins000.dat
[2010.11.24 20:38:17 | 000,000,056 | -H— | C] () — C:ProgramDataezsidmv.dat
[2010.09.29 23:44:22 | 000,002,802 | —- | C] () — C:UsersпкAppDataRoamingwklnhst.dat
[2010.09.19 23:05:19 | 000,000,020 | —- | C] () — C:WindowsNMCAutorunXP.ini
[2010.09.19 00:04:05 | 000,107,832 | —- | C] () — C:WindowsSysWow64PnkBstrB.exe
[2010.09.19 00:04:04 | 002,250,024 | —- | C] () — C:WindowsSysWow64pb.exe
[2010.09.19 00:04:04 | 000,066,872 | —- | C] () — C:WindowsSysWow64PnkBstrA.exe
[2009.07.14 08:38:36 | 000,067,584 | —S- | C] () — C:Windowsbootstat.dat
[2009.07.14 05:35:51 | 000,000,741 | —- | C] () — C:WindowsSysWow64NOISE.DAT
[2009.07.14 05:34:42 | 000,215,943 | —- | C] () — C:WindowsSysWow64dssec.dat
[2009.07.14 03:10:29 | 000,043,131 | —- | C] () — C:Windowsmib.bin
[2009.07.14 02:42:10 | 000,064,000 | —- | C] () — C:WindowsSysWow64BWContextHandler.dll
[2009.07.14 00:03:59 | 000,364,544 | —- | C] () — C:WindowsSysWow64msjetoledb40.dll
[2009.06.11 00:26:10 | 000,673,088 | —- | C] () — C:WindowsSysWow64mlang.dat========== Alternate Data Streams ==========
@Alternate Data Stream — 400 bytes -> C:UsersпкAppDataLocaldesktop.ini:07a19238af92db80fe9045ca73c7a84e
@Alternate Data Stream — 158 bytes -> C:ProgramDataTemp:AB689DEA
@Alternate Data Stream — 144 bytes -> C:ProgramDataTemp:4D066AD2
@Alternate Data Stream — 133 bytes -> C:ProgramDataTemp:93DE1838
@Alternate Data Stream — 130 bytes -> C:ProgramDataTemp:E1F04E8D
@Alternate Data Stream — 130 bytes -> C:ProgramDataTemp:4CF61E54
@Alternate Data Stream — 128 bytes -> C:ProgramDataTemp:ABE89FFE
@Alternate Data Stream — 125 bytes -> C:ProgramDataTemp:E3C56885
@Alternate Data Stream — 121 bytes -> C:ProgramDataTemp:0B9176C027 марта, 2011 в 9:23 дп #32199АнонимГость- Темы:532
- Сообщений:1553
- ☆☆☆☆☆
OTL logfile created on: 27.03.2011 12:14:10 — Run 1
OTL by OldTimer — Version 3.2.22.3 Folder = C:UsersпкDownloads
64bit- Home Premium Edition (Version = 6.1.7600) — Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000419 | Country: Украина | Language: UKR | Date Format: dd.MM.yyyy3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 63,00% Memory free
6,00 Gb Paging File | 4,00 Gb Available in Paging File | 71,00% Paging File free
Paging file location(s): ?:pagefile.sys [binary data]%SystemDrive% = C: | %SystemRoot% = C:Windows | %ProgramFiles% = C:Program Files (x86)
Drive C: | 584,07 Gb Total Space | 379,89 Gb Free Space | 65,04% Space Free | Partition Type: NTFSComputer Name: ПК-ПК | User Name: пк | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days========== Processes (SafeList) ==========
PRC — [2011.03.27 12:13:18 | 000,580,608 | —- | M] (OldTimer Tools) — C:UsersпкDownloadsOTL (1).exe
PRC — [2011.03.27 12:05:00 | 000,672,064 | —- | M] () — C:Users7349~1AppDataLocalTempA1AB.tmpdrm
PRC — [2011.03.26 14:26:24 | 000,399,736 | —- | M] (BitTorrent, Inc.) — C:Program Files (x86)uTorrentuTorrent.exe
PRC — [2011.03.04 19:01:01 | 001,143,944 | —- | M] (SPAMfighter ApS) — C:Program Files (x86)FightersFighterSuiteService.exe
PRC — [2011.03.04 19:00:41 | 000,214,664 | —- | M] (SPAMfighter ApS) — C:Program Files (x86)FightersSPAMfightersfus.exe
PRC — [2011.03.04 19:00:36 | 000,843,400 | —- | M] (SPAMfighter ApS) — C:Program Files (x86)FightersSPAMfightersfagent.exe
PRC — [2011.02.25 11:46:22 | 000,249,648 | —- | M] (Microsoft Corporation) — C:Program Files (x86)MicrosoftBingBarSeaPort.EXE
PRC — [2011.02.17 15:05:36 | 000,748,032 | —- | M] (Totem Entertainment) — C:UsersпкAppDataLocalvghdbinvghd.exe
PRC — [2011.01.31 17:29:10 | 000,167,936 | —- | M] (Totem Entertainment) — C:UsersпкAppDataLocalvghdbinVirtuaGirl_Downloader.exe
PRC — [2011.01.19 00:51:10 | 001,041,088 | —- | M] () — C:Program Files (x86)Mail.RuGuardGuardMailRu.exe
PRC — [2011.01.06 19:54:54 | 021,845,944 | —- | M] (MusicLab, LLC) — C:Program Files (x86)BearShare ApplicationsBearShareBearShare.exe
PRC — [2011.01.06 17:06:22 | 001,114,552 | —- | M] (MusicLab, LLC) — C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrdatamngrUI.exe
PRC — [2010.09.19 00:04:13 | 000,107,832 | —- | M] () — C:WindowsSysWOW64PnkBstrB.exe
PRC — [2010.09.19 00:04:04 | 000,066,872 | —- | M] () — C:WindowsSysWOW64PnkBstrA.exe
PRC — [2010.07.12 19:32:48 | 000,074,752 | —- | M] (Nullsoft, Inc.) — C:Program Files (x86)Winampwinampa.exe
PRC — [2010.06.28 20:20:36 | 000,075,048 | —- | M] (cyberlink) — C:Program Files (x86)CyberLinkShared filesbrs.exe
PRC — [2010.02.03 00:08:56 | 000,087,336 | —- | M] (CyberLink Corp.) — C:Program Files (x86)CyberLinkPowerDVD10PDVD10Serv.exe
PRC — [2010.01.22 11:10:50 | 001,287,760 | —- | M] (Dritek System Inc.) — C:Program Files (x86)Launch ManagerLManager.exe
PRC — [2010.01.22 11:10:50 | 000,310,352 | —- | M] (Dritek System Inc.) — C:Program Files (x86)Launch Managerdsiwmis.exe
PRC — [2010.01.22 11:10:50 | 000,268,368 | —- | M] (Dritek System Inc.) — C:Program Files (x86)Launch ManagerLMworker.exe
PRC — [2010.01.13 05:25:10 | 000,265,984 | —- | M] (NewTech Infosystems, Inc.) — C:Program Files (x86)NewTech InfosystemsAcer Backup ManagerBackupManagerTray.exe
PRC — [2010.01.07 04:50:02 | 000,255,744 | —- | M] (NewTech Infosystems, Inc.) — C:Program Files (x86)NewTech InfosystemsAcer Backup ManagerIScheduleSvc.exe
PRC — [2009.12.24 04:39:04 | 000,013,336 | —- | M] (Intel Corporation) — C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorDataMgrSvc.exe
PRC — [2009.12.24 04:39:02 | 000,284,696 | —- | M] (Intel Corporation) — C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorIcon.exe
PRC — [2009.12.09 11:48:26 | 002,320,920 | —- | M] (Intel Corporation) — C:Program Files (x86)IntelIntel(R) Management Engine ComponentsUNSUNS.exe
PRC — [2009.12.09 11:48:24 | 000,268,824 | —- | M] (Intel Corporation) — C:Program Files (x86)IntelIntel(R) Management Engine ComponentsLMSLMS.exe
PRC — [2009.09.10 16:42:46 | 000,305,448 | —- | M] (Egis Technology Inc.) — C:Program Files (x86)EgisTecMyWinLocker 3x86MWLService.exe
PRC — [2009.09.10 16:42:30 | 000,349,480 | —- | M] (Egis Technology Inc.) — C:Program Files (x86)EgisTecMyWinLocker 3x86mwlDaemon.exe
PRC — [2009.08.28 12:38:58 | 001,150,496 | —- | M] (Acer Incorporated) — C:Program Files (x86)AcerRegistrationGregHSRW.exe
PRC — [2009.08.04 08:09:34 | 000,199,464 | —- | M] (Egis Technology Inc.) — C:Program Files (x86)EgisTec Egis Software UpdateEgisUpdate.exe
PRC — [2009.07.20 12:51:52 | 000,935,208 | —- | M] (Nero AG) — C:Program Files (x86)Common FilesNeroNero BackItUp 4NBService.exe
PRC — [2009.07.04 05:47:12 | 000,240,160 | —- | M] (Acer) — C:Program FilesAcerAcer UpdaterUpdaterService.exe========== Modules (SafeList) ==========
MOD — [2011.03.27 12:13:18 | 000,580,608 | —- | M] (OldTimer Tools) — C:UsersпкDownloadsOTL (1).exe
MOD — [2011.03.09 17:54:14 | 000,018,176 | —- | M] (McAfee, Inc.) — c:Program Files (x86)McAfeeSiteAdvisorsahook.dll
MOD — [2010.08.21 08:21:32 | 001,680,896 | —- | M] (Microsoft Corporation) — C:Windowswinsxsx86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bdcomctl32.dll
MOD — [2010.06.10 19:13:50 | 000,046,592 | —- | M] (AudioVkontakte.Ru) — C:WindowsSysWOW64vksaver.dll========== Win32 Services (SafeList) ==========
SRV:64bit: — [2010.10.13 23:28:54 | 000,245,352 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program FilesCommon FilesMcAfeeSystemCoremfefire.exe — (mfefire)
SRV:64bit: — [2010.10.13 23:28:54 | 000,200,056 | —- | M] () [Unknown | Running] — C:Program FilesCommon FilesMcAfeeSystemCore\mcshield.exe — (McShield)
SRV:64bit: — [2010.10.13 23:28:54 | 000,149,032 | —- | M] (McAfee, Inc.) [Unknown | Running] — C:WindowsSysNativemfevtps.exe — (mfevtp)
SRV:64bit: — [2010.10.07 21:34:28 | 000,509,416 | —- | M] (McAfee, Inc.) [On_Demand | Stopped] — C:Program FilesMcAfeeVirusScanmcods.exe — (McODS)
SRV:64bit: — [2010.09.22 19:10:10 | 000,057,184 | —- | M] (Microsoft Corporation) [Disabled | Stopped] — C:Program FilesWindows LiveMeshwlcrasvc.exe — (wlcrasvc)
SRV:64bit: — [2010.03.10 11:14:44 | 000,355,440 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe — (MSK80Service)
SRV:64bit: — [2010.03.10 11:14:44 | 000,355,440 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe — (McProxy)
SRV:64bit: — [2010.03.10 11:14:44 | 000,355,440 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe — (McNASvc)
SRV:64bit: — [2010.03.10 11:14:44 | 000,355,440 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe — (McNaiAnn)
SRV:64bit: — [2010.03.10 11:14:44 | 000,355,440 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe — (mcmscsvc)
SRV:64bit: — [2010.03.10 11:14:44 | 000,355,440 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program FilesCommon FilesMcAfeeMcSvcHostMcSvHost.exe — (McMPFSvc)
SRV:64bit: — [2010.01.18 19:55:46 | 000,842,784 | —- | M] (Acer Incorporated) [Auto | Running] — C:Program FilesAcerAcer ePower ManagementePowerSvc.exe — (ePowerSvc)
SRV:64bit: — [2009.07.14 04:41:27 | 001,011,712 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] — C:Program FilesWindows DefenderMpSvc.dll — (WinDefend)
SRV:64bit: — [2009.07.04 05:47:12 | 000,240,160 | —- | M] (Acer) [Auto | Running] — C:Program FilesAcerAcer UpdaterUpdaterService.exe — (Updater Service)
SRV — [2011.03.04 19:01:01 | 001,143,944 | —- | M] (SPAMfighter ApS) [Auto | Running] — C:Program Files (x86)FightersFighterSuiteService.exe — (Suite Service)
SRV — [2011.03.04 19:00:41 | 000,214,664 | —- | M] (SPAMfighter ApS) [Auto | Running] — C:Program Files (x86)FightersSPAMfightersfus.exe — (SPAMfighter Update Service)
SRV — [2011.02.28 19:44:14 | 000,183,560 | —- | M] (Microsoft Corporation.) [On_Demand | Stopped] — C:Program Files (x86)MicrosoftBingBarBBSvc.EXE — (BBSvc)
SRV — [2011.02.25 11:46:22 | 000,249,648 | —- | M] (Microsoft Corporation) [Auto | Running] — C:Program Files (x86)MicrosoftBingBarSeaPort.EXE — (SeaPort)
SRV — [2011.02.16 16:49:08 | 000,101,048 | —- | M] (McAfee, Inc.) [Auto | Running] — C:Program Files (x86)McAfeeSiteAdvisorMcSACore.exe — (McAfee SiteAdvisor Service)
SRV — [2011.01.19 00:51:10 | 001,041,088 | —- | M] () [Auto | Running] — C:Program Files (x86)Mail.RuGuardGuardMailRu.exe — (Guard.Mail.ru)
SRV — [2010.09.19 00:04:13 | 000,107,832 | —- | M] () [Auto | Running] — C:WindowsSysWOW64PnkBstrB.exe — (PnkBstrB)
SRV — [2010.09.19 00:04:04 | 000,066,872 | —- | M] () [Auto | Running] — C:WindowsSysWOW64PnkBstrA.exe — (PnkBstrA)
SRV — [2010.03.18 14:16:28 | 000,130,384 | —- | M] (Microsoft Corporation) [Auto | Stopped] — C:WindowsMicrosoft.NETFrameworkv4.0.30319mscorsvw.exe — (clr_optimization_v4.0.30319_32)
SRV — [2010.01.22 11:10:50 | 000,310,352 | —- | M] (Dritek System Inc.) [Auto | Running] — C:Program Files (x86)Launch Managerdsiwmis.exe — (DsiWMIService)
SRV — [2010.01.07 04:50:02 | 000,255,744 | —- | M] (NewTech Infosystems, Inc.) [Auto | Running] — C:Program Files (x86)NewTech InfosystemsAcer Backup ManagerIScheduleSvc.exe — (NTI IScheduleSvc)
SRV — [2009.12.24 04:39:04 | 000,013,336 | —- | M] (Intel Corporation) [Auto | Running] — C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorDataMgrSvc.exe — (IAStorDataMgrSvc) Intel(R)
SRV — [2009.12.09 11:48:26 | 002,320,920 | —- | M] (Intel Corporation) [Auto | Running] — C:Program Files (x86)IntelIntel(R) Management Engine ComponentsUNSUNS.exe — (UNS) Intel(R)
SRV — [2009.12.09 11:48:24 | 000,268,824 | —- | M] (Intel Corporation) [Auto | Running] — C:Program Files (x86)IntelIntel(R) Management Engine ComponentsLMSLMS.exe — (LMS) Intel(R)
SRV — [2009.09.10 16:42:46 | 000,305,448 | —- | M] () [Auto | Running] — C:Program Files (x86)EgisTecMyWinLocker 3×86\MWLService.exe — (MWLService)
SRV — [2009.08.28 12:38:58 | 001,150,496 | —- | M] (Acer Incorporated) [Auto | Running] — C:Program Files (x86)AcerRegistrationGregHSRW.exe — (Greg_Service)
SRV — [2009.07.20 12:51:52 | 000,935,208 | —- | M] (Nero AG) [Auto | Running] — C:Program Files (x86)Common FilesNeroNero BackItUp 4NBService.exe — (Nero BackItUp Scheduler 4.0)
SRV — [2009.07.14 04:16:20 | 000,010,752 | —- | M] (Корпорация Майкрософт) [On_Demand | Stopped] — C:WindowsSysWOW64wpcsvc.dll — (WPCSvc)
SRV — [2009.06.11 00:23:09 | 000,066,384 | —- | M] (Microsoft Corporation) [Disabled | Stopped] — C:WindowsMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe — (clr_optimization_v2.0.50727_32)========== Driver Services (SafeList) ==========
DRV:64bit: — [2010.10.13 23:28:54 | 000,529,128 | —- | M] (McAfee, Inc.) [Kernel | Boot | Running] — C:WindowsSysNativedriversmfehidk.sys — (mfehidk)
DRV:64bit: — [2010.10.13 23:28:54 | 000,441,328 | —- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversmfefirek.sys — (mfefirek)
DRV:64bit: — [2010.10.13 23:28:54 | 000,283,360 | —- | M] (McAfee, Inc.) [Kernel | System | Running] — C:WindowsSysNativedriversmfewfpk.sys — (mfewfpk)
DRV:64bit: — [2010.10.13 23:28:54 | 000,190,136 | —- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversmfeavfk.sys — (mfeavfk)
DRV:64bit: — [2010.10.13 23:28:54 | 000,121,248 | —- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversmfeapfk.sys — (mfeapfk)
DRV:64bit: — [2010.10.13 23:28:54 | 000,094,864 | —- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversmferkdet.sys — (mferkdet)
DRV:64bit: — [2010.10.13 23:28:54 | 000,075,032 | —- | M] (McAfee, Inc.) [Kernel | System | Running] — C:WindowsSysNativedriversmfenlfk.sys — (mfenlfk)
DRV:64bit: — [2010.10.13 23:28:54 | 000,062,800 | —- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriverscfwids.sys — (cfwids)
DRV:64bit: — [2010.09.23 01:36:48 | 000,048,488 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversfssfltr.sys — (fssfltr)
DRV:64bit: — [2009.12.17 21:42:08 | 000,538,136 | —- | M] (Intel Corporation) [Kernel | Boot | Running] — C:WindowsSysNativedriversiaStor.sys — (iaStor)
DRV:64bit: — [2009.12.11 11:25:06 | 000,232,992 | —- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversRtsUStor.sys — (RSUSBSTOR)
DRV:64bit: — [2009.12.10 14:25:10 | 000,301,104 | —- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversSynTP.sys — (SynTP)
DRV:64bit: — [2009.12.09 08:18:34 | 002,978,296 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversBCMWL664.SYS — (BCM43XX)
DRV:64bit: — [2009.12.07 20:53:26 | 000,117,504 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversewusbmdm.sys — (hwdatacard)
DRV:64bit: — [2009.12.02 10:01:24 | 000,213,280 | —- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversRtHDMIVX.sys — (RTHDMIAzAudService)
DRV:64bit: — [2009.11.12 04:44:30 | 000,084,584 | —- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversnvhda64v.sys — (NVHDA)
DRV:64bit: — [2009.11.06 07:56:06 | 001,550,848 | —- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversathrx.sys — (athr)
DRV:64bit: — [2009.10.16 14:32:24 | 000,321,064 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversk57nd60a.sys — (k57nd60a) Broadcom NetLink (TM)
DRV:64bit: — [2009.10.12 16:23:22 | 000,114,304 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversewusbdev.sys — (hwusbdev)
DRV:64bit: — [2009.09.17 07:54:54 | 000,056,344 | —- | M] (Intel Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversHECIx64.sys — (HECIx64) Intel(R)
DRV:64bit: — [2009.07.14 04:52:21 | 000,106,576 | —- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversamdsata.sys — (amdsata)
DRV:64bit: — [2009.07.14 04:52:21 | 000,028,752 | —- | M] (Advanced Micro Devices) [Kernel | Boot | Running] — C:WindowsSysNativedriversamdxata.sys — (amdxata)
DRV:64bit: — [2009.07.14 04:52:20 | 000,194,128 | —- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversamdsbs.sys — (amdsbs)
DRV:64bit: — [2009.07.14 04:48:04 | 000,065,600 | —- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriverslsi_sas2.sys — (LSI_SAS2)
DRV:64bit: — [2009.07.14 04:47:48 | 000,077,888 | —- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversHpSAMD.sys — (HpSAMD)
DRV:64bit: — [2009.07.14 04:45:55 | 000,024,656 | —- | M] (Promise Technology) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversstexstor.sys — (stexstor)
DRV:64bit: — [2009.06.10 23:38:56 | 000,000,308 | —- | M] () [File_System | On_Demand | Running] — C:WindowsSysNativewbemntfs.mof — (Ntfs)
DRV:64bit: — [2009.06.10 23:34:33 | 003,286,016 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversevbda.sys — (ebdrv)
DRV:64bit: — [2009.06.10 23:34:28 | 000,468,480 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversbxvbda.sys — (b06bdrv)
DRV:64bit: — [2009.06.10 23:34:23 | 000,270,848 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversb57nd60a.sys — (b57nd60a)
DRV:64bit: — [2009.06.10 23:31:59 | 000,031,232 | —- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedrivershcw85cir.sys — (hcw85cir)
DRV:64bit: — [2009.06.02 14:15:30 | 000,060,464 | —- | M] (Egis Technology Inc.) [Kernel | System | Running] — C:WindowsSysNativedriversmwlPSDVDisk.sys — (mwlPSDVDisk)
DRV:64bit: — [2009.06.02 14:15:30 | 000,022,576 | —- | M] (Egis Technology Inc.) [File_System | System | Running] — C:WindowsSysNativedriversmwlPSDFilter.sys — (mwlPSDFilter)
DRV:64bit: — [2009.06.02 14:15:30 | 000,020,016 | —- | M] (Egis Technology Inc.) [Kernel | System | Running] — C:WindowsSysNativedriversmwlPSDNserv.sys — (mwlPSDNServ)
DRV:64bit: — [2009.05.06 03:46:08 | 000,018,432 | —- | M] (NewTech Infosystems, Inc.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversNTIDrvr.sys — (NTIDrvr)
DRV:64bit: — [2009.05.06 03:46:08 | 000,016,896 | —- | M] (NewTech Infosystems Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversUBHelper.sys — (UBHelper)
DRV — [2010.06.28 22:50:22 | 000,146,928 | —- | M] (CyberLink Corp.) [2011/03/27 04:19:59] [Kernel | Auto | Running] — C:Program Files (x86)CyberLinkPowerDVD10NavFilter00.fcl — ({1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC})========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: — HKLMSOFTWAREMicrosoftInternet ExplorerMain,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0422&m=aspire_5741g&r=27360910j315l0474z115t55l2k428
IE:64bit: — HKLMSOFTWAREMicrosoftInternet ExplorerMain,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0422&m=aspire_5741g&r=27360910j315l0474z115t55l2k428
IE — HKLMSOFTWAREMicrosoftInternet ExplorerMain,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0422&m=aspire_5741g&r=27360910j315l0474z115t55l2k428
IE — HKLMSOFTWAREMicrosoftInternet ExplorerMain,Local Page = C:WindowsSysWOW64blank.htm
IE — HKLMSOFTWAREMicrosoftInternet ExplorerMain,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0422&m=aspire_5741g&r=27360910j315l0474z115t55l2k428
IE — HKLM..URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} — C:Program Files (x86)uTorrentBartbuTor.dll (Conduit Ltd.)IE — HKU.DEFAULTSoftwareMicrosoftWindowsCurrentVersionInternet Settings: «ProxyEnable» = 0
IE — HKUS-1-5-18SoftwareMicrosoftWindowsCurrentVersionInternet Settings: «ProxyEnable» = 0
IE — HKUS-1-5-21-2330317786-3252475658-1247472922-1000SOFTWAREMicrosoftInternet ExplorerMain,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0422&m=aspire_5741g&r=27360910j315l0474z115t55l2k428
IE — HKUS-1-5-21-2330317786-3252475658-1247472922-1000SOFTWAREMicrosoftInternet ExplorerMain,Secondary Start Pages = [Binary data over 100 bytes]
IE — HKUS-1-5-21-2330317786-3252475658-1247472922-1000SOFTWAREMicrosoftInternet ExplorerMain,Start Page = http://www.mail.ru/cnt/7828
IE — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..URLSearchHook: {09900DE8-1DCA-443F-9243-26FF581438AF} — C:Program Files (x86)Mail.RuSputnikMailRuSputnik.dll (@Mail.Ru)
IE — HKUS-1-5-21-2330317786-3252475658-1247472922-1000SoftwareMicrosoftWindowsCurrentVersionInternet Settings: «ProxyEnable» = 0========== FireFox ==========
FF — prefs.js..browser.search.defaultenginename: «BearShare Web Search»
FF — prefs.js..browser.search.defaultthis.engineName: » «
FF — prefs.js..browser.search.defaulturl: «http://search.conduit.com/ResultsExt.aspx?ctid=CT2786678&SearchSource=3&q={searchTerms}»
FF — prefs.js..browser.search.order.1: «BearShare Web Search»
FF — prefs.js..browser.search.useDBForOrder: true
FF — prefs.js..browser.startup.homepage: «http://search.bearshare.com/»
FF — prefs.js..extensions.enabledItems: yasearch@yandex.ru:5.2.1
FF — prefs.js..extensions.enabledItems: {37964A3C-4EE8-47b1-8321-34DE2C39BA4D}:2.4.0.48
FF — prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3.1
FF — prefs.js..extensions.enabledItems: engine@conduit.com:3.2.5.2
FF — prefs.js..extensions.enabledItems: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}:3.2.5.2
FF — prefs.js..extensions.enabledItems: {1FD91A9C-410C-4090-BBCC-55D3450EF433}:1.0
FF — prefs.js..extensions.enabledItems: {E84D42CA-64EB-11DE-A65F-8C3656D89593}:3.1
FF — prefs.js..keyword.URL: «http://search.bearshare.com/web?src=ffb&systemid=2&q=»FF — HKLMsoftwaremozillaFirefoxExtensions\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:Program Files (x86)McAfeeSiteAdvisor [2011.03.25 14:14:55 | 000,000,000 | —D | M]
FF — HKLMsoftwaremozillaMozilla Firefox 3.6.13extensions\Components: C:Program Files (x86)Mozilla Firefoxcomponents [2011.01.23 17:44:16 | 000,000,000 | —D | M]
FF — HKLMsoftwaremozillaMozilla Firefox 3.6.13extensions\Plugins: C:Program Files (x86)Mozilla Firefoxplugins [2010.12.14 00:36:15 | 000,000,000 | —D | M][2011.01.31 20:34:41 | 000,000,000 | —D | M] (No name found) — C:UsersпкAppDataRoamingmozillaExtensions
[2011.03.26 14:23:02 | 000,000,000 | —D | M] (No name found) — C:UsersпкAppDataRoamingmozillaFirefoxProfilesnahd6ha2.defaultextensions
[2011.03.16 03:27:55 | 000,000,000 | —D | M] (Спутник @Mail.Ru) — C:UsersпкAppDataRoamingmozillaFirefoxProfilesnahd6ha2.defaultextensions{37964A3C-4EE8-47b1-8321-34DE2C39BA4D}
[2011.01.20 00:38:33 | 000,000,000 | —D | M] (uTorrentBar Community Toolbar) — C:UsersпкAppDataRoamingmozillaFirefoxProfilesnahd6ha2.defaultextensions{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
[2011.01.31 20:34:40 | 000,000,000 | —D | M] (MediaBar) — C:UsersпкAppDataRoamingmozillaFirefoxProfilesnahd6ha2.defaultextensions{E84D42CA-64EB-11DE-A65F-8C3656D89593}
[2011.01.20 00:38:33 | 000,000,000 | —D | M] (Conduit Engine) — C:UsersпкAppDataRoamingmozillaFirefoxProfilesnahd6ha2.defaultextensionsengine@conduit.com
[2010.12.19 16:59:01 | 000,000,000 | —D | M] (Яндекс.Бар) — C:UsersпкAppDataRoamingmozillaFirefoxProfilesnahd6ha2.defaultextensionsyasearch@yandex.ru
[2010.09.14 15:48:25 | 000,002,506 | —- | M] () — C:UsersпкAppDataRoamingMozillaFirefoxProfilesnahd6ha2.defaultsearchpluginsBearShareWebSearch.xml
[2011.01.20 00:38:33 | 000,000,863 | —- | M] () — C:UsersпкAppDataRoamingMozillaFirefoxProfilesnahd6ha2.defaultsearchpluginsconduit.xml
[2011.03.16 14:57:35 | 000,001,533 | —- | M] () — C:UsersпкAppDataRoamingMozillaFirefoxProfilesnahd6ha2.defaultsearchpluginsmailru—.xml
[2011.01.31 20:34:41 | 000,000,000 | —D | M] (No name found) — C:Program Files (x86)Mozilla Firefoxextensions
[2010.11.26 22:30:58 | 000,000,000 | —D | M] (Яндекс.Бар) — C:Program Files (x86)Mozilla Firefoxextensionsyasearch@yandex.ru
[2011.01.31 20:34:41 | 000,000,000 | —D | M] (DataMngr) — C:PROGRAM FILES (X86)BEARSHARE APPLICATIONSMEDIABARDATAMNGRFIREFOXEXTENSION
[2011.03.25 14:14:55 | 000,000,000 | —D | M] (McAfee SiteAdvisor) — C:PROGRAM FILES (X86)MCAFEESITEADVISOR
File not found (No name found) — C:USERSРЇРЄAPPDATAROAMINGMOZILLAFIREFOXPROFILESNAHD6HA2.DEFAULTEXTENSIONS{37964A3C-4EE8-47B1-8321-34DE2C39BA4D}
File not found (No name found) — C:USERSРЇРЄAPPDATAROAMINGMOZILLAFIREFOXPROFILESNAHD6HA2.DEFAULTEXTENSIONS{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}
File not found (No name found) — C:USERSРЇРЄAPPDATAROAMINGMOZILLAFIREFOXPROFILESNAHD6HA2.DEFAULTEXTENSIONS{E84D42CA-64EB-11DE-A65F-8C3656D89593}
File not found (No name found) — C:USERSРЇРЄAPPDATAROAMINGMOZILLAFIREFOXPROFILESNAHD6HA2.DEFAULTEXTENSIONSENGINE@CONDUIT.COM
File not found (No name found) — C:USERSРЇРЄAPPDATAROAMINGMOZILLAFIREFOXPROFILESNAHD6HA2.DEFAULTEXTENSIONSYASEARCH@YANDEX.RU
[2010.10.13 23:28:54 | 000,024,376 | —- | M] (McAfee, Inc.) — C:Program Files (x86)Mozilla FirefoxcomponentsScriptff.dll
[2010.09.14 15:48:25 | 000,002,506 | —- | M] () — C:Program Files (x86)Mozilla FirefoxsearchpluginsBearShareWebSearch.xml
[2010.12.14 00:36:15 | 000,005,568 | —- | M] () — C:Program Files (x86)Mozilla Firefoxsearchpluginsozonru.xml
[2010.10.27 08:25:03 | 000,001,122 | —- | M] () — C:Program Files (x86)Mozilla Firefoxsearchpluginspriceru.xml
[2010.10.27 08:25:03 | 000,001,945 | —- | M] () — C:Program Files (x86)Mozilla Firefoxsearchpluginstorgmailru.xml
[2010.10.27 08:25:03 | 000,001,304 | —- | M] () — C:Program Files (x86)Mozilla Firefoxsearchpluginswikipedia-ru.xml
[2010.10.27 08:25:03 | 000,001,384 | —- | M] () — C:Program Files (x86)Mozilla Firefoxsearchpluginsyandex-slovari.xml
[2010.10.27 08:25:03 | 000,001,495 | —- | M] () — C:Program Files (x86)Mozilla Firefoxsearchpluginsyandex.xmlO1 HOSTS File: ([2011.03.22 04:35:24 | 000,123,144 | -H— | M]) — C:WindowsSysNativedriversetchosts
O1 — Hosts: 137.10.10.12 shopnon.com
O1 — Hosts: 46.161.29.83 http://www.haitai-sspipefitting.com
O1 — Hosts: 46.161.29.83 http://www.y-knife.ru
O1 — Hosts: 137.10.10.12 europatrans.ru
O1 — Hosts: 137.10.10.12 http://www.fgmobil.ru
O1 — Hosts: 46.161.29.83 xsyq.ru
O1 — Hosts: 137.10.10.12 garant-elista.ru
O1 — Hosts: 46.161.29.83 http://www.worldlychords.com
O1 — Hosts: 137.10.10.12 http://www.exact-error.ru
O1 — Hosts: 46.161.29.83 http://www.top7money.com
O1 — Hosts: 46.161.29.83 tonyawatkinshomes.com
O1 — Hosts: 46.161.29.83 http://www.zadachi-po-fizike.ru
O1 — Hosts: 46.161.29.83 odnoklassniki.ru
O1 — Hosts: 46.161.29.83 http://www.vpamky.ru
O1 — Hosts: 46.161.29.83 http://www.virustotal.com
O1 — Hosts: 46.161.29.83 xknife.ru
O1 — Hosts: 177.24.66.12 http://www.zoloteruno.kiev.ua
O1 — Hosts: 137.10.10.12 genealogists.ru
O1 — Hosts: 137.10.10.12 flybed.ru
O1 — Hosts: 46.161.29.83 vupahcxk.ru
O1 — Hosts: 46.161.29.83 wdxhu.ru
O1 — Hosts: 137.10.10.12 http://www.ergotone.ru
O1 — Hosts: 46.161.29.83 yvgcuz.ru
O1 — Hosts: 46.161.29.83 http://www.a1help.ru
O1 — Hosts: 137.10.10.12 kaboom.ry
O1 — Hosts: 3480 more lines…
O2:64bit: — BHO: (McAfee Phishing Filter) — {27B4851A-3207-45A2-B947-BE8AFE6163AB} — c:Program FilesMcAfeeMSKmskapbho64.dll ()
O2:64bit: — BHO: (UrlHelper Class) — {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} — C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrx64IEBHO.dll (MusicLab, LLC)
O2:64bit: — BHO: (scriptproxy) — {7DB2D5A0-7241-4E79-B68D-6309F01C5231} — C:Program FilesCommon FilesMcAfeeSystemCoreScriptSn.20110123164416.dll (McAfee, Inc.)
O2:64bit: — BHO: (MailRuBHO Class) — {8984B388-A5BB-4DF7-B274-77B879E179DB} — C:Program Files (x86)Mail.RuSputnikMailRuSputnik_x64.dll (@Mail.Ru)
O2:64bit: — BHO: (Google Toolbar Helper) — {AA58ED58-01DD-4d91-8333-CF10577473F7} — C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_64.dll (Google Inc.)
O2:64bit: — BHO: (Google Toolbar Notifier BHO) — {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} — C:Program FilesGoogleGoogleToolbarNotifier5.6.6209.1142swg64.dll (Google Inc.)
O2:64bit: — BHO: (McAfee SiteAdvisor BHO) — {B164E929-A1B6-4A06-B104-2CD0E90A88FF} — c:Program Files (x86)McAfeeSiteAdvisorx64McIEPlg.dll (McAfee, Inc.)
O2 — BHO: (MediaBar) — {0974BA1E-64EC-11DE-B2A5-E43756D89593} — C:Program Files (x86)BearShare ApplicationsMediaBarToolBarBearshareMediabarDx.dll ()
O2 — BHO: (McAfee Phishing Filter) — {27B4851A-3207-45A2-B947-BE8AFE6163AB} — c:Program FilesMcAfeeMSKmskapbho.dll ()
O2 — BHO: (Conduit Engine) — {30F9B915-B755-4826-820B-08FBA6BD249D} — C:Program Files (x86)ConduitEngineConduitEngine.dll (Conduit Ltd.)
O2 — BHO: (UrlHelper Class) — {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} — C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrIEBHO.dll (MusicLab, LLC)
O2 — BHO: (scriptproxy) — {7DB2D5A0-7241-4E79-B68D-6309F01C5231} — C:Program Files (x86)Common FilesMcAfeeSystemCoreScriptSn.20110123164416.dll (McAfee, Inc.)
O2 — BHO: (MailRuBHO Class) — {8984B388-A5BB-4DF7-B274-77B879E179DB} — C:Program Files (x86)Mail.RuSputnikMailRuSputnik.dll (@Mail.Ru)
O2 — BHO: (Google Toolbar Notifier BHO) — {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} — C:Program Files (x86)GoogleGoogleToolbarNotifier5.6.6209.1142swg.dll (Google Inc.)
O2 — BHO: (McAfee SiteAdvisor BHO) — {B164E929-A1B6-4A06-B104-2CD0E90A88FF} — c:Program Files (x86)McAfeeSiteAdvisorMcIEPlg.dll (McAfee, Inc.)
O2 — BHO: (uTorrentBar Toolbar) — {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} — C:Program Files (x86)uTorrentBartbuTor.dll (Conduit Ltd.)
O2 — BHO: (Bing Bar Helper) — {d2ce3e00-f94a-4740-988e-03dc2f38c34f} — C:Program Files (x86)MicrosoftBingBarBingExt.dll (Корпорация Майкрософт.)
O2 — BHO: (Ask Toolbar BHO) — {FE063DB1-4EC0-403e-8DD8-394C54984B2C} — C:Program Files (x86)AskTBarbar1.binASKTBAR.DLL (Ask.com)
O3:64bit: — HKLM..Toolbar: (Спутник@Mail.Ru) — {09900DE8-1DCA-443F-9243-26FF581438AF} — C:Program Files (x86)Mail.RuSputnikMailRuSputnik_x64.dll (@Mail.Ru)
O3:64bit: — HKLM..Toolbar: (McAfee SiteAdvisor Toolbar) — {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} — c:Program Files (x86)McAfeeSiteAdvisorx64McIEPlg.dll (McAfee, Inc.)
O3:64bit: — HKLM..Toolbar: (Google Toolbar) — {2318C2B1-4965-11d4-9B18-009027A5CD4F} — C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_64.dll (Google Inc.)
O3:64bit: — HKLM..Toolbar: (no name) — 10 — No CLSID value found.
O3:64bit: — HKLM..Toolbar: (no name) — Locked — No CLSID value found.
O3 — HKLM..Toolbar: (MediaBar) — {0974BA1E-64EC-11DE-B2A5-E43756D89593} — C:Program Files (x86)BearShare ApplicationsMediaBarToolBarBearshareMediabarDx.dll ()
O3 — HKLM..Toolbar: (Спутник@Mail.Ru) — {09900DE8-1DCA-443F-9243-26FF581438AF} — C:Program Files (x86)Mail.RuSputnikMailRuSputnik.dll (@Mail.Ru)
O3 — HKLM..Toolbar: (McAfee SiteAdvisor Toolbar) — {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} — c:Program Files (x86)McAfeeSiteAdvisorMcIEPlg.dll (McAfee, Inc.)
O3 — HKLM..Toolbar: (Яндекс.Бар (для НевоСофт)) — {17679b4f-3bcc-644b-8f28-a47597fbb905} — C:Program Files (x86)YandexYandexBarIEbarsbarienevosoftyndbar.dll (ООО «ЯНДЕКС»)
O3 — HKLM..Toolbar: (Conduit Engine) — {30F9B915-B755-4826-820B-08FBA6BD249D} — C:Program Files (x86)ConduitEngineConduitEngine.dll (Conduit Ltd.)
O3 — HKLM..Toolbar: (Bing Bar) — {8dcb7100-df86-4384-8842-8fa844297b3f} — C:Program Files (x86)MicrosoftBingBarBingExt.dll (Корпорация Майкрософт.)
O3 — HKLM..Toolbar: (@msdxmLC.dll,-1@1033,&Radio) — {8E718888-423F-11D2-876E-00A0C9082467} — C:Program Files (x86)No1 Video Convertermsdxm.ocx (Microsoft Corporation)
O3 — HKLM..Toolbar: (Яндекс.Бар) — {91397D20-1446-11D4-8AF4-0040CA1127B6} — C:Program Files (x86)YandexYandexBarIEyndbar.dll (ООО «ЯНДЕКС»)
O3 — HKLM..Toolbar: (uTorrentBar Toolbar) — {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} — C:Program Files (x86)uTorrentBartbuTor.dll (Conduit Ltd.)
O3 — HKLM..Toolbar: (Ask Toolbar) — {FE063DB9-4EC0-403e-8DD8-394C54984B2C} — C:Program Files (x86)AskTBarbar1.binASKTBAR.DLL (Ask.com)
O3 — HKLM..Toolbar: (no name) — 10 — Reg Error: Value error. File not found
O3 — HKLM..Toolbar: (no name) — Locked — No CLSID value found.
O3 — HKU.DEFAULT..ToolbarWebBrowser: (Яндекс.Бар (для НевоСофт)) — {17679b4f-3bcc-644b-8f28-a47597fbb905} — C:Program Files (x86)YandexYandexBarIEbarsbarienevosoftyndbar.dll (ООО «ЯНДЕКС»)
O3 — HKU.DEFAULT..ToolbarWebBrowser: (Яндекс.Бар) — {91397D20-1446-11D4-8AF4-0040CA1127B6} — C:Program Files (x86)YandexYandexBarIEyndbar.dll (ООО «ЯНДЕКС»)
O3 — HKUS-1-5-18..ToolbarWebBrowser: (Яндекс.Бар (для НевоСофт)) — {17679b4f-3bcc-644b-8f28-a47597fbb905} — C:Program Files (x86)YandexYandexBarIEbarsbarienevosoftyndbar.dll (ООО «ЯНДЕКС»)
O3 — HKUS-1-5-18..ToolbarWebBrowser: (Яндекс.Бар) — {91397D20-1446-11D4-8AF4-0040CA1127B6} — C:Program Files (x86)YandexYandexBarIEyndbar.dll (ООО «ЯНДЕКС»)
O3 — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..ToolbarWebBrowser: (Яндекс.Бар (для НевоСофт)) — {17679b4f-3bcc-644b-8f28-a47597fbb905} — C:Program Files (x86)YandexYandexBarIEbarsbarienevosoftyndbar.dll (ООО «ЯНДЕКС»)
O3:64bit: — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..ToolbarWebBrowser: (Google Toolbar) — {2318C2B1-4965-11D4-9B18-009027A5CD4F} — C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_64.dll (Google Inc.)
O3 — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..ToolbarWebBrowser: (Яндекс.Бар) — {91397D20-1446-11D4-8AF4-0040CA1127B6} — C:Program Files (x86)YandexYandexBarIEyndbar.dll (ООО «ЯНДЕКС»)
O4:64bit: — HKLM..Run: [Acer ePower Management] C:Program FilesAcerAcer ePower ManagementePowerTray.exe (Acer Incorporated)
O4:64bit: — HKLM..Run: [mwlDaemon] C:Program Files (x86)EgisTecMyWinLocker 3x86mwlDaemon.exe (Egis Technology Inc.)
O4:64bit: — HKLM..Run: [NvCplDaemon] C:WindowsSysNativeNvCpl.dll (NVIDIA Corporation)
O4:64bit: — HKLM..Run: [RtHDVCpl] C:Program FilesRealtekAudioHDARAVCpl64.exe (Realtek Semiconductor)
O4 — HKLM..Run: [BackupManagerTray] C:Program Files (x86)NewTech InfosystemsAcer Backup ManagerBackupManagerTray.exe (NewTech Infosystems, Inc.)
O4 — HKLM..Run: [BDRegion] C:Program Files (x86)CyberLinkShared filesbrs.exe (cyberlink)
O4 — HKLM..Run: [DATAMNGR] C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrdatamngrUI.exe (MusicLab, LLC)
O4 — HKLM..Run: [EgisTecLiveUpdate] C:Program Files (x86)EgisTec Egis Software UpdateEgisUpdate.exe (Egis Technology Inc.)
O4 — HKLM..Run: [Guard.Mail.ru.gui] C:Program Files (x86)Mail.RuGuardGuardMailRu.exe ()
O4 — HKLM..Run: [IAStorIcon] C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorIcon.exe (Intel Corporation)
O4 — HKLM..Run: [LManager] C:Program Files (x86)Launch ManagerLManager.exe (Dritek System Inc.)
O4 — HKLM..Run: [mcui_exe] C:Program FilesMcAfee.comAgentmcagent.exe (McAfee, Inc.)
O4 — HKLM..Run: [NortonOnlineBackupReminder] C:Program Files (x86)SymantecNorton Online BackupActivationNobuActivation.exe (Symantec Corporation)
O4 — HKLM..Run: [RemoteControl10] C:Program Files (x86)CyberLinkPowerDVD10PDVD10Serv.exe (CyberLink Corp.)
O4 — HKLM..Run: [sfagent] C:Program Files (x86)FightersSPAMfightersfagent.exe (SPAMfighter ApS)
O4 — HKLM..Run: [VKSaverUpdater] C:Program Files (x86)VKSaverVKSaverUpdater.exe (AudioVkontakte.Ru)
O4 — HKLM..Run: [WinampAgent] C:Program Files (x86)Winampwinampa.exe (Nullsoft, Inc.)
O4 — HKUS-1-5-19..Run: [Sidebar] C:Program Files (x86)Windows SidebarSidebar.exe (Microsoft Corporation)
O4 — HKUS-1-5-20..Run: [Sidebar] C:Program Files (x86)Windows SidebarSidebar.exe (Microsoft Corporation)
O4 — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..Run: [BearShare] C:Program Files (x86)BearShare ApplicationsBearShareBearShare.exe (MusicLab, LLC)
O4 — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..Run: [drm.exe] C:UsersпкAppDataRoamingdrmdrm.exe ()
O4 — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..Run: [Mobile Partner] C:Program Files (x86)OGO!MobileOGO!Mobile.exe ()
O4 — HKUS-1-5-21-2330317786-3252475658-1247472922-1000..Run: [uTorrent] C:Program Files (x86)uTorrentuTorrent.exe (BitTorrent, Inc.)
O4 — HKUS-1-5-19..RunOnce: [mctadmin] File not found
O4 — HKUS-1-5-20..RunOnce: [mctadmin] File not found
O4 — Startup: C:UsersпкAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupDesktopVideoPlayer.lnk = C:UsersпкAppDataLocalvghdbinvghd.exe (Totem Entertainment)
O6 — HKLMSoftwarePoliciesMicrosoftInternet ExplorerLow Rights present
O6 — HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoActiveDesktop = 1
O6 — HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoActiveDesktopChanges = 1
O6 — HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesSystem: ConsentPromptBehaviorAdmin = 5
O6 — HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesSystem: ConsentPromptBehaviorUser = 3
O9 — Extra Button: PokerStars — {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} — C:Program Files (x86)PokerStarsPokerStarsUpdate.exe (PokerStars)
O13 — gopher Prefix: missing
O13 — gopher Prefix: missing
O17 — HKLMSystemCCSServicesTcpipParameters: DhcpNameServer = 77.120.130.20
O18:64bit: — ProtocolHandlerdssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} — c:Program Files (x86)McAfeeSiteAdvisorx64McIEPlg.dll (McAfee, Inc.)
O18:64bit: — ProtocolHandlerlivecall {828030A1-22C1-4009-854F-8E305202313F} — Reg Error: Key error. File not found
O18:64bit: — ProtocolHandlerms-help {314111c7-a502-11d2-bbca-00c04f8ec294} — Reg Error: Key error. File not found
O18:64bit: — ProtocolHandlerms-itss {0A9007C0-4076-11D3-8789-0000F8105754} — Reg Error: Key error. File not found
O18:64bit: — ProtocolHandlermsnim {828030A1-22C1-4009-854F-8E305202313F} — Reg Error: Key error. File not found
O18:64bit: — ProtocolHandlersacore {5513F07E-936B-4E52-9B00-067394E91CC5} — c:Program Files (x86)McAfeeSiteAdvisorx64McIEPlg.dll (McAfee, Inc.)
O18:64bit: — ProtocolHandlervnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} — Reg Error: Key error. File not found
O18:64bit: — ProtocolHandlerwlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} — Reg Error: Key error. File not found
O18:64bit: — ProtocolHandlerwlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} — Reg Error: Key error. File not found
O18 — ProtocolHandlerdssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} — c:Program Files (x86)McAfeeSiteAdvisorMcIEPlg.dll (McAfee, Inc.)
O18 — ProtocolHandlersacore {5513F07E-936B-4E52-9B00-067394E91CC5} — c:Program Files (x86)McAfeeSiteAdvisorMcIEPlg.dll (McAfee, Inc.)
O18 — ProtocolHandlervnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} — C:Program Files (x86)No1 Video Convertermsdxm.ocx (Microsoft Corporation)
O20:64bit: — AppInit_DLLs: (C:PROGRA~2BEARSH~1MediaBarDatamngrx64datamngr.dll) — C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrx64datamngr.dll (MusicLab, LLC)
O20:64bit: — AppInit_DLLs: (C:PROGRA~2BEARSH~1MediaBarDatamngrx64IEBHO.dll) — C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrx64IEBHO.dll (MusicLab, LLC)
O20 — AppInit_DLLs: (C:PROGRA~2BEARSH~1MediaBarDatamngrdatamngr.dll) — C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrdatamngr.dll (MusicLab, LLC)
O20 — AppInit_DLLs: (C:PROGRA~2BEARSH~1MediaBarDatamngrIEBHO.dll) — C:Program Files (x86)BearShare ApplicationsMediaBarDatamngrIEBHO.dll (MusicLab, LLC)
O20 — AppInit_DLLs: (C:Windowssystem32vksaver.dll) — C:WindowsSysWOW64vksaver.dll (AudioVkontakte.Ru)
O20:64bit: — HKLM Winlogon: Shell — (explorer.exe) — C:Windowsexplorer.exe (Microsoft Corporation)
O20:64bit: — HKLM Winlogon: VMApplet — (SystemPropertiesPerformance.exe) — C:WindowsSysNativeSystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: — HKLM Winlogon: VMApplet — (/pagefile) — File not found
O20 — HKLM Winlogon: Shell — (explorer.exe) — C:WindowsSysWow64explorer.exe (Microsoft Corporation)
O20 — HKLM Winlogon: VMApplet — (/pagefile) — File not found
O21:64bit: — SSODL: WebCheck — {E6FB5E20-DE35-11CF-9C87-00AA005127ED} — CLSID or File not found.
O21 — SSODL: WebCheck — {E6FB5E20-DE35-11CF-9C87-00AA005127ED} — CLSID or File not found.
O32 — HKLM CDRom: AutoRun — 1
O33 — MountPoints2{361885bc-fb34-11df-b8ae-705ab641ec57}Shell — «» = AutoRun
O33 — MountPoints2{361885bc-fb34-11df-b8ae-705ab641ec57}ShellAutoRuncommand — «» = E:AutoRun.exe
O33 — MountPoints2{72d33301-f6fb-11df-bea8-f07bcb2120f7}Shell — «» = AutoRun
O33 — MountPoints2{72d33301-f6fb-11df-bea8-f07bcb2120f7}ShellAutoRuncommand — «» = E:AutoRun.exe
O33 — MountPoints2{72d3330f-f6fb-11df-bea8-f07bcb2120f7}Shell — «» = AutoRun
O33 — MountPoints2{72d3330f-f6fb-11df-bea8-f07bcb2120f7}ShellAutoRuncommand — «» = E:AutoRun.exe
O33 — MountPoints2{ae2bd7a3-fa07-11df-ae19-f07bcb2120f7}Shell — «» = AutoRun
O33 — MountPoints2{ae2bd7a3-fa07-11df-ae19-f07bcb2120f7}ShellAutoRuncommand — «» = E:AutoRun.exe
O33 — MountPoints2{ae2bd7b1-fa07-11df-ae19-f07bcb2120f7}Shell — «» = AutoRun
O33 — MountPoints2{ae2bd7b1-fa07-11df-ae19-f07bcb2120f7}ShellAutoRuncommand — «» = E:AutoRun.exe
O33 — MountPoints2{d16a7d44-fa2f-11df-b48b-705ab641ec57}Shell — «» = AutoRun
O33 — MountPoints2{d16a7d44-fa2f-11df-b48b-705ab641ec57}ShellAutoRuncommand — «» = E:AutoRun.exe
O33 — MountPoints2EShell — «» = AutoRun
O33 — MountPoints2EShellAutoRuncommand — «» = E:AutoRun.exe
O34 — HKLM BootExecute: (autocheck autochk *) — File not found
O35:64bit: — HKLM..comfile [open] — «%1» %*
O35:64bit: — HKLM..exefile [open] — «%1» %*
O35 — HKLM..comfile [open] — «%1» %*
O35 — HKLM..exefile [open] — «%1» %*
O37:64bit: — HKLM…com [@ = comfile] — «%1» %*
O37:64bit: — HKLM…exe [@ = exefile] — «%1» %*
O37 — HKLM…com [@ = comfile] — «%1» %*
O37 — HKLM…exe [@ = exefile] — «%1» %*========== Files/Folders — Created Within 30 Days ==========
[2011.03.27 12:06:01 | 000,000,000 | —D | C] — C:ProgramData1160
[2011.03.27 12:05:26 | 000,000,000 | —D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsMcAfee
[2011.03.27 11:58:08 | 000,000,000 | —D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsFighters
[2011.03.27 11:58:08 | 000,000,000 | —D | C] — C:Program Files (x86)Fighters
[2011.03.27 11:58:00 | 000,000,000 | —D | C] — C:ProgramDataFighters
[2011.03.27 11:57:41 | 000,000,000 | -H-D | C] — C:ProgramData{C63260C3-92B8-484F-8B6B-02C69C5AAA41}
[2011.03.27 11:54:57 | 000,000,000 | —D | C] — C:UsersпкAppDataRoamingFighters
[2011.03.27 04:19:57 | 000,000,000 | R—D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsCyberLink PowerDVD 10
[2011.03.27 01:10:54 | 000,000,000 | —D | C] — C:ProgramData{8790345A-AF70-4319-B9E7-AAA25C6DCD42}
[2011.03.25 19:06:44 | 000,000,000 | —D | C] — C:Program Files (x86)trend micro
[2011.03.25 19:06:44 | 000,000,000 | —D | C] — C:rsit
[2011.03.24 23:14:44 | 000,000,000 | —D | C] — C:Program Files (x86)popop
[2011.03.22 15:08:13 | 000,000,000 | —D | C] — C:UsersпкDesktopВидео уроки по фотошопу
[2011.03.20 12:38:36 | 000,000,000 | —D | C] — C:UsersпкDesktopсборник .м
[2011.03.16 14:09:55 | 000,000,000 | —D | C] — C:ProgramDataNtiDvdCopy
[2011.03.16 12:44:14 | 000,000,000 | —D | C] — C:UsersпкAppDataRoamingNero
[2011.03.16 12:42:34 | 000,000,000 | —D | C] — C:Program Files (x86)AskTBar
[2011.03.16 12:42:18 | 000,000,000 | —D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsNero
[2011.03.16 12:42:05 | 000,000,000 | —D | C] — C:Program Files (x86)Nero
[2011.03.16 12:41:57 | 000,000,000 | —D | C] — C:ProgramDataNero
[2011.03.16 12:41:57 | 000,000,000 | —D | C] — C:Program Files (x86)Common FilesNero
[2011.03.14 20:14:55 | 000,000,000 | —D | C] — C:Usersпкмузон-car
[2011.03.14 01:10:20 | 000,000,000 | —D | C] — C:UsersпкDesktopБОУЛИНГ
[2011.03.13 02:15:25 | 000,000,000 | —D | C] — C:UsersпкAppDataLocalActiveState
[2011.03.13 00:18:43 | 000,000,000 | —D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsActivePerl 5.10.0 Build 1004
[2011.03.13 00:18:25 | 000,000,000 | —D | C] — C:Perl
[2011.03.09 10:39:17 | 000,000,000 | —D | C] — C:Program Files (x86)Microsoft
[2011.03.09 02:17:59 | 001,540,608 | —- | C] (Microsoft Corporation) — C:WindowsSysNativeDWrite.dll
[2011.03.09 02:17:59 | 001,074,176 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64DWrite.dll
[2011.03.09 02:17:59 | 000,902,656 | —- | C] (Microsoft Corporation) — C:WindowsSysNatived2d1.dll
[2011.03.09 02:17:59 | 000,739,840 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64d2d1.dll
[2011.03.09 02:17:56 | 000,961,024 | —- | C] (Microsoft Corporation) — C:WindowsSysNativeCPFilters.dll
[2011.03.09 02:17:56 | 000,723,968 | —- | C] (Microsoft Corporation) — C:WindowsSysNativeEncDec.dll
[2011.03.09 02:17:56 | 000,642,048 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64CPFilters.dll
[2011.03.09 02:17:56 | 000,534,528 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64EncDec.dll
[2011.03.09 02:17:55 | 001,118,720 | —- | C] (Microsoft Corporation) — C:WindowsSysNativesbe.dll
[2011.03.09 02:17:55 | 000,850,432 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64sbe.dll
[2011.03.09 02:17:55 | 000,259,072 | —- | C] (Microsoft Corporation) — C:WindowsSysNativempg2splt.ax
[2011.03.09 02:17:55 | 000,199,680 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64mpg2splt.ax
[2011.03.09 02:17:38 | 003,138,048 | —- | C] (Microsoft Corporation) — C:WindowsSysNativemstscax.dll
[2011.03.09 02:17:38 | 002,690,560 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64mstscax.dll
[2011.03.09 02:17:38 | 001,097,216 | —- | C] (Microsoft Corporation) — C:WindowsSysNativemstsc.exe
[2011.03.09 02:17:38 | 001,034,240 | —- | C] (Microsoft Corporation) — C:WindowsSysWow64mstsc.exe
[2011.03.02 19:36:08 | 000,000,000 | —D | C] — C:UsersпкDesktopРАДМИР
[2011.02.27 20:08:16 | 000,000,000 | —D | C] — C:UsersпкAppDataLocalvghd
[2011.02.27 15:47:03 | 000,000,000 | —D | C] — C:UsersпкDesktop23февраля
[2010.01.16 06:34:32 | 000,036,136 | —- | C] (Oberon Media) — C:ProgramDataFullRemove.exe
[2 C:WindowsSysWow64*.tmp files -> C:WindowsSysWow64*.tmp -> ]
[1 C:Windows*.tmp files -> C:Windows*.tmp -> ]========== Files — Modified Within 30 Days ==========
[2011.03.27 12:12:31 | 000,009,696 | -H— | M] () — C:WindowsSysNative7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.03.27 12:12:31 | 000,009,696 | -H— | M] () — C:WindowsSysNative7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.03.27 12:12:02 | 001,533,604 | —- | M] () — C:WindowsSysNativePerfStringBackup.INI
[2011.03.27 12:12:02 | 000,675,958 | —- | M] () — C:WindowsSysNativeperfh019.dat
[2011.03.27 12:12:02 | 000,616,008 | —- | M] () — C:WindowsSysNativeperfh009.dat
[2011.03.27 12:12:02 | 000,132,516 | —- | M] () — C:WindowsSysNativeperfc019.dat
[2011.03.27 12:12:02 | 000,106,388 | —- | M] () — C:WindowsSysNativeperfc009.dat
[2011.03.27 12:05:26 | 000,001,832 | —- | M] () — C:UsersPublicDesktopMcAfee Internet Security Suite.lnk
[2011.03.27 12:05:10 | 000,000,007 | —- | M] () — C:Windowstreeskp.sys
[2011.03.27 12:05:10 | 000,000,007 | —- | M] () — C:Windowssbacknt.bin
[2011.03.27 12:05:09 | 000,001,128 | —- | M] () — C:UsersпкDesktopИгры от Невософт.lnk
[2011.03.27 12:05:00 | 001,133,568 | -H— | M] () — C:UsersпкAppDataRoamingbase.db
[2011.03.27 12:04:53 | 000,001,028 | —- | M] () — C:WindowstasksGoogleUpdateTaskMachineCore.job
[2011.03.27 12:04:35 | 000,067,584 | —S- | M] () — C:Windowsbootstat.dat
[2011.03.27 12:04:29 | 2358,333,440 | -HS- | M] () — C:hiberfil.sys
[2011.03.27 11:51:56 | 000,000,000 | —- | M] () — C:WindowsSysNativeHOSTNAME.EXE
[2011.03.27 11:51:00 | 000,001,032 | —- | M] () — C:WindowstasksGoogleUpdateTaskMachineUA.job
[2011.03.27 11:43:17 | 000,000,942 | —- | M] () — C:WindowstasksGoogleUpdateTaskUserS-1-5-21-2330317786-3252475658-1247472922-1000UA.job
[2011.03.27 04:19:57 | 000,002,085 | —- | M] () — C:UsersPublicDesktopCyberLink PowerDVD 10.lnk
[2011.03.27 04:12:36 | 000,505,128 | —- | M] (Microsoft Corporation) — C:WindowsSysWow64msvcp71.dll
[2011.03.27 04:12:36 | 000,353,576 | —- | M] (Microsoft Corporation) — C:WindowsSysWow64msvcr71.dll
[2011.03.27 04:12:36 | 000,029,480 | —- | M] (Microsoft Corporation) — C:WindowsSysWow64msxml3a.dll
[2011.03.26 21:28:00 | 000,000,890 | —- | M] () — C:WindowstasksGoogleUpdateTaskUserS-1-5-21-2330317786-3252475658-1247472922-1000Core.job
[2011.03.26 18:30:11 | 000,002,352 | —- | M] () — C:UsersпкDesktopGoogle Chrome.lnk
[2011.03.25 20:05:51 | 000,339,991 | —- | M] () — C:UsersпкDesktopRSIT (1).exe
[2011.03.24 15:36:42 | 000,092,255 | —- | M] () — C:UsersпкDesktopx_05630ceb.jpg
[2011.03.23 23:18:14 | 000,002,802 | —- | M] () — C:UsersпкAppDataRoamingwklnhst.dat
[2011.03.23 23:18:01 | 000,015,360 | —- | M] () — C:UsersпкDesktopЯПОНСКАЯ ДИЕТА.wps
[2011.03.22 04:35:24 | 000,123,144 | -H— | M] () — C:WindowsSysNativedriversetchosts
[2011.03.17 14:10:10 | 000,780,309 | —- | M] () — C:UsersпкDesktopw_3b2166ef.jpg
[2011.03.16 14:09:40 | 000,001,024 | RH— | M] () — C:UsersPublicDocumentsNTIMP3.dll
[2011.03.16 12:42:18 | 000,002,700 | —- | M] () — C:UsersпкApplication DataMicrosoftInternet ExplorerQuick LaunchNero StartSmart Essentials.lnk
[2011.03.16 12:42:18 | 000,002,676 | —- | M] () — C:UsersPublicDesktopNero StartSmart Essentials.lnk
[2011.03.15 12:51:35 | 000,041,092 | —- | M] () — C:UsersпкDesktopshang_tsung.gif
[2011.03.13 02:25:11 | 000,026,051 | -HS- | M] () — C:UsersпкFolder.jpg
[2011.03.13 02:25:11 | 000,004,450 | -HS- | M] () — C:UsersпкAlbumArtSmall.jpg
[2011.02.27 20:08:18 | 000,001,061 | —- | M] () — C:UsersпкAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupDesktopVideoPlayer.lnk
[2 C:WindowsSysWow64*.tmp files -> C:WindowsSysWow64*.tmp -> ]
[1 C:Windows*.tmp files -> C:Windows*.tmp -> ]========== Files Created — No Company Name ==========
[2011.03.27 04:19:57 | 000,002,085 | —- | C] () — C:UsersPublicDesktopCyberLink PowerDVD 10.lnk
[2011.03.25 20:05:51 | 000,339,991 | —- | C] () — C:UsersпкDesktopRSIT (1).exe
[2011.03.24 15:36:47 | 000,092,255 | —- | C] () — C:UsersпкDesktopx_05630ceb.jpg
[2011.03.23 23:18:01 | 000,015,360 | —- | C] () — C:UsersпкDesktopЯПОНСКАЯ ДИЕТА.wps
[2011.03.17 14:11:01 | 000,780,309 | —- | C] () — C:UsersпкDesktopw_3b2166ef.jpg
[2011.03.16 12:42:18 | 000,002,700 | —- | C] () — C:UsersпкApplication DataMicrosoftInternet ExplorerQuick LaunchNero StartSmart Essentials.lnk
[2011.03.16 12:42:18 | 000,002,676 | —- | C] () — C:UsersPublicDesktopNero StartSmart Essentials.lnk
[2011.03.15 12:51:39 | 000,041,092 | —- | C] () — C:UsersпкDesktopshang_tsung.gif
[2011.03.13 02:25:11 | 000,026,051 | -HS- | C] () — C:UsersпкFolder.jpg
[2011.03.13 02:25:11 | 000,004,450 | -HS- | C] () — C:UsersпкAlbumArtSmall.jpg
[2011.02.17 22:43:28 | 000,003,584 | —- | C] () — C:UsersпкAppDataLocalDCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.02.17 22:40:53 | 000,000,067 | —- | C] () — C:Windows#1 Video Converter.INI
[2011.01.28 00:10:36 | 000,000,007 | —- | C] () — C:Windowstreeskp.sys
[2011.01.28 00:10:36 | 000,000,007 | —- | C] () — C:Windowssbacknt.bin
[2010.12.08 02:54:52 | 001,133,568 | -H— | C] () — C:UsersпкAppDataRoamingbase.db
[2010.11.26 20:36:32 | 002,612,224 | —- | C] () — C:Windowsphclick.dll
[2010.11.26 20:36:32 | 002,289,152 | —- | C] () — C:WindowsPhoto Click.exe
[2010.11.26 20:36:32 | 000,668,576 | —- | C] () — C:Windowsunins000.exe
[2010.11.26 20:36:32 | 000,004,246 | —- | C] () — C:Windowsunins000.dat
[2010.11.24 20:38:17 | 000,000,056 | -H— | C] () — C:ProgramDataezsidmv.dat
[2010.09.29 23:44:22 | 000,002,802 | —- | C] () — C:UsersпкAppDataRoamingwklnhst.dat
[2010.09.19 23:05:19 | 000,000,020 | —- | C] () — C:WindowsNMCAutorunXP.ini
[2010.09.19 00:04:05 | 000,107,832 | —- | C] () — C:WindowsSysWow64PnkBstrB.exe
[2010.09.19 00:04:04 | 002,250,024 | —- | C] () — C:WindowsSysWow64pb.exe
[2010.09.19 00:04:04 | 000,066,872 | —- | C] () — C:WindowsSysWow64PnkBstrA.exe
[2009.07.14 08:38:36 | 000,067,584 | —S- | C] () — C:Windowsbootstat.dat
[2009.07.14 05:35:51 | 000,000,741 | —- | C] () — C:WindowsSysWow64NOISE.DAT
[2009.07.14 05:34:42 | 000,215,943 | —- | C] () — C:WindowsSysWow64dssec.dat
[2009.07.14 03:10:29 | 000,043,131 | —- | C] () — C:Windowsmib.bin
[2009.07.14 02:42:10 | 000,064,000 | —- | C] () — C:WindowsSysWow64BWContextHandler.dll
[2009.07.14 00:03:59 | 000,364,544 | —- | C] () — C:WindowsSysWow64msjetoledb40.dll
[2009.06.11 00:26:10 | 000,673,088 | —- | C] () — C:WindowsSysWow64mlang.dat========== Alternate Data Streams ==========
@Alternate Data Stream — 400 bytes -> C:UsersпкAppDataLocaldesktop.ini:07a19238af92db80fe9045ca73c7a84e
@Alternate Data Stream — 158 bytes -> C:ProgramDataTemp:AB689DEA
@Alternate Data Stream — 144 bytes -> C:ProgramDataTemp:4D066AD2
@Alternate Data Stream — 133 bytes -> C:ProgramDataTemp:93DE1838
@Alternate Data Stream — 130 bytes -> C:ProgramDataTemp:E1F04E8D
@Alternate Data Stream — 130 bytes -> C:ProgramDataTemp:4CF61E54
@Alternate Data Stream — 128 bytes -> C:ProgramDataTemp:ABE89FFE
@Alternate Data Stream — 125 bytes -> C:ProgramDataTemp:E3C56885
@Alternate Data Stream — 121 bytes -> C:ProgramDataTemp:0B9176C027 марта, 2011 в 9:24 дп #32200АнонимГость- Темы:532
- Сообщений:1553
- ☆☆☆☆☆
OTL Extras logfile created on: 27.03.2011 12:14:10 — Run 1
OTL by OldTimer — Version 3.2.22.3 Folder = C:UsersпкDownloads
64bit- Home Premium Edition (Version = 6.1.7600) — Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000419 | Country: Украина | Language: UKR | Date Format: dd.MM.yyyy3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 63,00% Memory free
6,00 Gb Paging File | 4,00 Gb Available in Paging File | 71,00% Paging File free
Paging file location(s): ?:pagefile.sys [binary data]%SystemDrive% = C: | %SystemRoot% = C:Windows | %ProgramFiles% = C:Program Files (x86)
Drive C: | 584,07 Gb Total Space | 379,89 Gb Free Space | 65,04% Space Free | Partition Type: NTFSComputer Name: ПК-ПК | User Name: пк | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINESOFTWAREClasses]
.url[@ = InternetShortcut] — C:WindowsSysNativerundll32.exe (Microsoft Corporation)[HKEY_LOCAL_MACHINESOFTWAREClasses]
.cpl [@ = cplfile] — C:WindowsSysWow64control.exe (Microsoft Corporation)[HKEY_USERSS-1-5-21-2330317786-3252475658-1247472922-1000SOFTWAREClasses]
.html [@ = ChromeHTML] — Reg Error: Key error. File not found========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINESOFTWAREClassesshell[command]command]
batfile [open] — «%1» %* File not found
cmdfile [open] — «%1» %* File not found
comfile [open] — «%1» %* File not found
exefile [open] — «%1» %* File not found
helpfile [open] — Reg Error: Key error.
inffile [install] — %SystemRoot%System32InfDefaultInstall.exe «%1» (Microsoft Corporation)
InternetShortcut [open] — «C:WindowsSystem32rundll32.exe» «C:WindowsSystem32ieframe.dll»,OpenURL %l (Microsoft Corporation)
InternetShortcut [print] — «C:WindowsSystem32rundll32.exe» «C:WindowsSystem32mshtml.dll»,PrintHTML «%1» (Microsoft Corporation)
piffile [open] — «%1» %* File not found
regfile [merge] — Reg Error: Key error.
scrfile [config] — «%1» File not found
scrfile [install] — rundll32.exe desk.cpl,InstallScreenSaver %l File not found
scrfile [open] — «%1» /S File not found
txtfile [edit] — Reg Error: Key error.
Unknown [openas] — %SystemRoot%system32rundll32.exe %SystemRoot%system32shell32.dll,OpenAs_RunDLL %1 File not found
Directory [cmd] — cmd.exe /s /k pushd «%V» (Microsoft Corporation)
Directory [find] — %SystemRoot%Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] — «C:Program Files (x86)Winampwinamp.exe» /BOOKMARK «%1» (Nullsoft, Inc.)
Directory [Winamp.Enqueue] — «C:Program Files (x86)Winampwinamp.exe» /ADD «%1» (Nullsoft, Inc.)
Directory [Winamp.Play] — «C:Program Files (x86)Winampwinamp.exe» «%1» (Nullsoft, Inc.)
Folder [open] — %SystemRoot%Explorer.exe (Microsoft Corporation)
Folder [explore] — Reg Error: Value error.
Drive [find] — %SystemRoot%Explorer.exe (Microsoft Corporation)[HKEY_LOCAL_MACHINESOFTWAREClassesshell[command]command]
batfile [open] — «%1» %*
cmdfile [open] — «%1» %*
comfile [open] — «%1» %*
cplfile [cplopen] — %SystemRoot%System32control.exe «%1»,%* (Microsoft Corporation)
exefile [open] — «%1» %*
helpfile [open] — Reg Error: Key error.
inffile [install] — %SystemRoot%System32InfDefaultInstall.exe «%1» (Microsoft Corporation)
piffile [open] — «%1» %*
regfile [merge] — Reg Error: Key error.
scrfile [config] — «%1»
scrfile [install] — rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] — «%1» /S
txtfile [edit] — Reg Error: Key error.
Unknown [openas] — %SystemRoot%system32rundll32.exe %SystemRoot%system32shell32.dll,OpenAs_RunDLL %1
Directory [cmd] — cmd.exe /s /k pushd «%V» (Microsoft Corporation)
Directory [find] — %SystemRoot%Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] — «C:Program Files (x86)Winampwinamp.exe» /BOOKMARK «%1» (Nullsoft, Inc.)
Directory [Winamp.Enqueue] — «C:Program Files (x86)Winampwinamp.exe» /ADD «%1» (Nullsoft, Inc.)
Directory [Winamp.Play] — «C:Program Files (x86)Winampwinamp.exe» «%1» (Nullsoft, Inc.)
Folder [open] — %SystemRoot%Explorer.exe (Microsoft Corporation)
Folder [explore] — Reg Error: Value error.
Drive [find] — %SystemRoot%Explorer.exe (Microsoft Corporation)========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity Center]
«cval» = 164bit: [HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterMonitoring]
64bit: [HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterSvc]
«VistaSp1» = 28 4D B2 76 41 04 CA 01 [binary data]
«AntiVirusOverride» = 0
«AntiSpywareOverride» = 0
«FirewallOverride» = 064bit: [HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterSvcVol]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity Center]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity CenterSvc]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSharedAccessParametersFirewallPolicyDomainProfile]
«DisableNotifications» = 0
«EnableFirewall» = 1[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSharedAccessParametersFirewallPolicyStandardProfile]
«DisableNotifications» = 0
«EnableFirewall» = 1[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesSharedAccessParametersFirewallPolicyPublicProfile]
«DisableNotifications» = 0
«EnableFirewall» = 1========== Authorized Applications List ==========
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstall]
«{0F696557-180C-4813-A754-5D43969B0691}» = Windows Live Family Safety
«{17A4FD95-A507-43F1-BC92-D8572AF8340A}» = Windows Live Remote Service Resources
«{1B8ABA62-74F0-47ED-B18C-A43128E591B8}» = Windows Live ID Sign-in Assistant
«{446E8399-F26A-35F5-B140-A7C0DFE33A7A}» = Microsoft .NET Framework 4 Client Profile RUS Language Pack
«{46A5FBE9-ADB3-4493-A1CC-B4CFFD24D26A}» = Windows Live Family Safety
«{5EB6F3CB-46F4-451F-A028-7F6D8D35D7D0}» = Windows Live Language Selector
«{90120000-002A-0000-1000-0000000FF1CE}» = Microsoft Office Office 64-bit Components 2007
«{90120000-002A-0409-1000-0000000FF1CE}» = Microsoft Office Shared 64-bit MUI (English) 2007
«{90120000-002A-0419-1000-0000000FF1CE}» = Microsoft Office Shared 64-bit MUI (Russian) 2007
«{90120000-0116-0409-1000-0000000FF1CE}» = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
«{95120000-00B9-0409-1000-0000000FF1CE}» = Microsoft Application Error Reporting
«{A84DB02B-9C2B-4272-9D2D-A80E00A56513}» = Broadcom Gigabit NetLink Controller
«{C504EC13-E122-4939-BD6E-EE5A3BAA5FEC}» = Windows Live Remote Client Resources
«{DA54F80E-261C-41A2-A855-549A144F2F59}» = Windows Live MIME IFilter
«{DF6D988A-EEA0-4277-AAB8-158E086E439B}» = Windows Live Remote Client
«{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}» = Windows Live Remote Service
«{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}» = Microsoft .NET Framework 4 Client Profile
«Microsoft .NET Framework 4 Client Profile» = Microsoft .NET Framework 4 Client Profile
«Microsoft .NET Framework 4 Client Profile RUS Language Pack» = Языковой пакет клиентского профиля Microsoft.NET Framework 4 — RUS
«NVIDIA Drivers» = NVIDIA Drivers
«SynTPDeinstKey» = Synaptics Pointing Device Driver[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstall]
» FarCry — War Zone_is1″ = FarCry — War Zone
» FarCry — От заката до рассвета_is1″ = FarCry — От заката до рассвета
«{039480EE-6933-4845-88B8-77FD0C3D059D}» = Windows Live Mesh
«{0B0F231F-CE6A-483D-AA23-77B364F75917}» = Windows Live Installer
«{12EFA1A4-AC3B-443C-8143-237EDE760403}» = NTI Backup Now Standard
«{15D967B5-A4BE-42AE-9E84-64CD062B25AA}» = eSobi v2
«{16276c62-b2ca-4a33-9e4e-02091c58b198}» = Nero 9 Essentials
«{168E7302-890A-4138-9109-A225ACAF7AD1}» = Windows Live Photo Common
«{18455581-E099-4BA8-BC6B-F34B2F06600C}» = Google Toolbar for Internet Explorer
«{1D0AB230-E7BC-41CB-A50C-F282273E897B}» = SPAMfighter Client
«{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}» = Junk Mail filter update
«{200FEC62-3C34-4D60-9CE8-EC372E01C08F}» = Windows Live SOXE Definitions
«{2318C2B1-4965-11d4-9B18-009027A5CD4F}» = Google Toolbar for Internet Explorer
«{2413930C-8309-47A6-BC61-5EF27A4222BC}» = NTI Media Maker 8
«{287ECFA4-719A-2143-A09B-D6A12DE54E40}» = Acrobat.com
«{33360F81-3065-48B1-9A86-B6242500CED6}» = Яндекс.Бар 4.2 для Internet Explorer (НевоСофт)
«{3336F667-9049-4D46-98B6-4C743EEBC5B1}» = Windows Live Photo Gallery
«{3705D53F-BB01-4BEE-8585-289E71CAC4B4}» = Компаньон Messenger
«{3AC51E93-70C3-42B5-B95D-F41347DC972B}_is1» = Napoleon — Total War
«{3DB0448D-AD82-4923-B305-D001E521A964}» = Acer ePower Management
«{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}» = Intel(R) Rapid Storage Technology
«{3FEA6CD1-EA13-4CE7-A74E-A74A4A0A7B5C}» = FIFA 11
«{40EF92EA-B347-442D-AC94-03F21965F2EF}» = Windows Live Sync
«{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}» = Windows Live PIMT Platform
«{4D43D635-6FDA-4fa5-AA9B-23CF73D058EA}» = Nero StartSmart OEM
«{51F026FA-5146-4232-A8BA-1364740BD053}» = Acer Crystal Eye webcam
«{56C049BE-79E9-4502-BEA7-9754A3E60F9B}» = neroxml
«{5F624839-947D-46EA-BD63-FD847C1AC6F1}» = BearShare
«{65153EA5-8B6E-43B6-857B-C6E4FC25798A}» = Intel(R) Management Engine Components
«{682B3E4F-696A-42DE-A41C-4C07EA1678B4}» = Windows Live SOXE
«{68301905-2DEA-41CE-A4D4-E8B443B099BA}» = MyWinLocker
«{6986737B-F286-40D1-87AF-938339DCF6AB}» = Windows Live Messenger
«{7299052b-02a4-4627-81f2-1818da5d550d}» = Microsoft Visual C++ 2005 Redistributable
«{72B776E5-4530-4C4B-9453-751DF87D9D93}» = Backup Manager Basic
«{7465A996-0FCA-4D2D-A52C-F833B0829B5B}» = Windows Live Movie Maker
«{770657D0-A123-3C07-8E44-1C83EC895118}» = Microsoft Visual C++ 2005 ATL Update kb973923 — x86 8.0.50727.4053
«{7748ac8c-18e3-43bb-959b-088faea16fb2}» = Nero StartSmart
«{77F69CA1-E53D-4D77-8BA3-FA07606CC851}» = Фотоальбом Windows Live
«{77F8A71E-3515-4832-B8B2-2F1EDBD2E0F1}» = Bing Bar
«{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}» = Windows Live Messenger Companion Core
«{78DE815E-660B-463C-8125-80DCA699B08E}_is1» = PhotoBEST 2.55
«{7F811A54-5A09-4579-90E1-C93498E230D9}» = Acer eRecovery Management
«{7FF11E53-C002-4F40-8D68-6BE751E5DD62}» = Windows Live Writer Resources
«{82A27957-45D5-41BC-8593-60249895727B}» = ActivePerl 5.10.0 Build 1004
«{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110209593}» = Chicken Invaders 2
«{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110551697}» = Granny In Paradise
«{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112662477}» = Merriam Websters Spell Jam
«{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11273477}» = Amazonia
«{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112920767}» = Alice Greenfingers
«{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113786380}» = Heroes of Hellas
«{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}» = Dream Day First Home
«{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115053100}» = Dairy Dash
«{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}» = Farm Frenzy 2
«{87CC8013-56D1-43E1-A0A5-AD406B4EBA95}» = Opera 10.63
«{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}» = Microsoft Silverlight
«{8C6D6116-B724-4810-8F2D-D047E6B7D68E}» = Mesh Runtime
«{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}» = MSVCRT
«{8ed9688e-4f79-4308-91ca-f1c37ca142b4}_is1» = Acer GameZone Console
«{90120000-0015-0419-0000-0000000FF1CE}» = Microsoft Office Access MUI (Russian) 2007
«{90120000-0015-0419-0000-0000000FF1CE}_OMUI.ru-ru_{DCB382C1-7F1B-42B2-9D47-EDC4262E832F}» = Microsoft Office 2007 Service Pack 2 (SP2)
«{90120000-0016-0409-0000-0000000FF1CE}» = Microsoft Office Excel MUI (English) 2007
«{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}» = 2007 Microsoft Office Suite Service Pack 2 (SP2)
«{90120000-0016-0419-0000-0000000FF1CE}» = Microsoft Office Excel MUI (Russian) 2007
«{90120000-0016-0419-0000-0000000FF1CE}_OMUI.ru-ru_{DCB382C1-7F1B-42B2-9D47-EDC4262E832F}» = Microsoft Office 2007 Service Pack 2 (SP2)
«{90120000-0017-0419-0000-0000000FF1CE}» = Microsoft Office SharePoint Designer MUI (Russian) 2007
«{90120000-0017-0419-0000-0000000FF1CE}_OMUI.ru-ru_{0B549FB9-3BA8-424D-AE73-613EAEEB22E2}» = Microsoft Office SharePoint Designer 2007 Service Pack 2 (SP2)
«{90120000-0018-0409-0000-0000000FF1CE}» = Microsoft Office PowerPoint MUI (English) 2007
«{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}» = 2007 Microsoft Office Suite Service Pack 2 (SP2)
«{90120000-0018-0419-0000-0000000FF1CE}» = Microsoft Office PowerPoint MUI (Russian) 2007
«{90120000-0018-0419-0000-0000000FF1CE}_OMUI.ru-ru_{DCB382C1-7F1B-42B2-9D47-EDC4262E832F}» = Microsoft Office 2007 Service Pack 2 (SP2)
«{90120000-0019-0419-0000-0000000FF1CE}» = Microsoft Office Publisher MUI (Russian) 2007
«{90120000-0019-0419-0000-0000000FF1CE}_OMUI.ru-ru_{DCB382C1-7F1B-42B2-9D47-EDC4262E832F}» = Microsoft Office 2007 Service Pack 2 (SP2)
«{90120000-001A-0419-0000-0000000FF1CE}» = Microsoft Office Outlook MUI (Russian) 2007
«{90120000-001A-0419-0000-0000000FF1CE}_OMUI.ru-ru_{DCB382C1-7F1B-42B2-9D47-EDC4262E832F}» = Microsoft Office 2007 Service Pack 2 (SP2)
«{90120000-001B-0409-0000-0000000FF1CE}» = Microsoft Office Word MUI (English) 2007
«{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}» = 2007 Microsoft Office Suite Service Pack 2 (SP2)
«{90120000-001B-0419-0000-0000000FF1CE}» = Microsoft Office Word MUI (Russian) 2007
«{90120000-001B-0419-0000-0000000FF1CE}_OMUI.ru-ru_{DCB382C1-7F1B-42B2-9D47-EDC4262E832F}» = Microsoft Office 2007 Service Pack 2 (SP2)
«{90120000-001F-0407-0000-0000000FF1CE}» = Microsoft Office Proof (German) 2007
«{90120000-001F-0407-0000-0000000FF1CE}_OMUI.ru-ru_{A0516415-ED61-419A-981D-93596DA74165}» = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
«{90120000-001F-0409-0000-0000000FF1CE}» = Microsoft Office Proof (English) 2007
«{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}» = 2007 Microsoft Office Suite Service Pack 2 (SP2)
«{90120000-001F-040C-0000-0000000FF1CE}» = Microsoft Office Proof (French) 2007
«{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}» = 2007 Microsoft Office Suite Service Pack 2 (SP2)
«{90120000-001F-0419-0000-0000000FF1CE}» = Microsoft Office Proof (Russian) 2007
«{90120000-001F-0419-0000-0000000FF1CE}_OMUI.ru-ru_{57A92C5E-E76A-49CC-9EC2-A7B6CE1255EA}» = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
«{90120000-001F-0422-0000-0000000FF1CE}» = Microsoft Office Proof (Ukrainian) 2007
«{90120000-001F-0422-0000-0000000FF1CE}_OMUI.ru-ru_{6F177D09-F21D-4F50-9436-353972D1D232}» = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
«{90120000-001F-0C0A-0000-0000000FF1CE}» = Microsoft Office Proof (Spanish) 2007
«{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}» = 2007 Microsoft Office Suite Service Pack 2 (SP2)
«{90120000-0020-0419-0000-0000000FF1CE}» = Пакет обеспечения совместимости для выпуска 2007 системы Microsoft Office
«{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{E64BA721-2310-4B55-BE5A-2925F9706192}» = 2007 Microsoft Office Suite Service Pack 2 (SP2)
«{90120000-002A-0409-1000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}» = 2007 Microsoft Office Suite Service Pack 2 (SP2)
«{90120000-002A-0419-1000-0000000FF1CE}_OMUI.ru-ru_{37317C49-30C4-412C-B0B9-D95090F330D8}» = Microsoft Office 2007 Service Pack 2 (SP2)
«{90120000-002C-0409-0000-0000000FF1CE}» = Microsoft Office Proofing (English) 2007
«{90120000-002C-0419-0000-0000000FF1CE}» = Microsoft Office Proofing (Russian) 2007
«{90120000-0044-0419-0000-0000000FF1CE}» = Microsoft Office InfoPath MUI (Russian) 2007
«{90120000-0044-0419-0000-0000000FF1CE}_OMUI.ru-ru_{DCB382C1-7F1B-42B2-9D47-EDC4262E832F}» = Microsoft Office 2007 Service Pack 2 (SP2)
«{90120000-006E-0409-0000-0000000FF1CE}» = Microsoft Office Shared MUI (English) 2007
«{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}» = 2007 Microsoft Office Suite Service Pack 2 (SP2)
«{90120000-006E-0419-0000-0000000FF1CE}» = Microsoft Office Shared MUI (Russian) 2007
«{90120000-006E-0419-0000-0000000FF1CE}_OMUI.ru-ru_{37317C49-30C4-412C-B0B9-D95090F330D8}» = Microsoft Office 2007 Service Pack 2 (SP2)
«{90120000-00A1-0409-0000-0000000FF1CE}» = Microsoft Office OneNote MUI (English) 2007
«{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}» = 2007 Microsoft Office Suite Service Pack 2 (SP2)
«{90120000-00A1-0419-0000-0000000FF1CE}» = Microsoft Office OneNote MUI (Russian) 2007
«{90120000-00A1-0419-0000-0000000FF1CE}_OMUI.ru-ru_{DCB382C1-7F1B-42B2-9D47-EDC4262E832F}» = Microsoft Office 2007 Service Pack 2 (SP2)
«{90120000-00BA-0419-0000-0000000FF1CE}» = Microsoft Office Groove MUI (Russian) 2007
«{90120000-00BA-0419-0000-0000000FF1CE}_OMUI.ru-ru_{DCB382C1-7F1B-42B2-9D47-EDC4262E832F}» = Microsoft Office 2007 Service Pack 2 (SP2)
«{90120000-0100-0419-0000-0000000FF1CE}» = Microsoft Office O MUI (Russian) 2007
«{90120000-0100-0419-0000-0000000FF1CE}_OMUI.ru-ru_{DCB382C1-7F1B-42B2-9D47-EDC4262E832F}» = Microsoft Office 2007 Service Pack 2 (SP2)
«{90120000-0101-0419-0000-0000000FF1CE}» = Microsoft Office X MUI (Russian) 2007
«{90120000-0101-0419-0000-0000000FF1CE}_OMUI.ru-ru_{DCB382C1-7F1B-42B2-9D47-EDC4262E832F}» = Microsoft Office 2007 Service Pack 2 (SP2)
«{90120000-0115-0409-0000-0000000FF1CE}» = Microsoft Office Shared Setup Metadata MUI (English) 2007
«{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}» = 2007 Microsoft Office Suite Service Pack 2 (SP2)
«{90120000-0116-0409-1000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}» = 2007 Microsoft Office Suite Service Pack 2 (SP2)
«{91120000-002F-0000-0000-0000000FF1CE}» = Microsoft Office Home and Student 2007
«{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}» = 2007 Microsoft Office Suite Service Pack 2 (SP2)
«{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}» = Security Update for Microsoft Office system 2007 (972581)
«{92EA4134-10D1-418A-91E1-5A0453131A38}» = Windows Live Movie Maker
«{93492218-15C0-4719-B898-05FC5769F2E6}» = Microsoft Works
«{93D34EE3-99B3-4DB1-8B0A-0A657466F90D}» = Київстар. Мобільний Інтернет
«{95120000-00AF-0419-0000-0000000FF1CE}» = Microsoft Office PowerPoint Viewer 2007 (Russian)
«{96AE7E41-E34E-47D0-AC07-1091A8127911}» = Realtek USB 2.0 Card Reader
«{9B202815-09F6-4D0F-96F8-24A42277B9B8}» = Яндекс.Бар 5.1 для Internet Explorer
«{9D56775A-93F3-44A3-8092-840E3826DE30}» = Windows Live Mail
«{A2BCA9F1-566C-4805-97D1-7FDC93386723}» = Adobe AIR
«{A726AE06-AAA3-43D1-87E3-70F510314F04}» = Windows Live Writer
«{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}» = CyberLink PowerDVD 9
«{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}» = Google Update Helper
«{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}» = Windows Live Photo Common
«{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}» = Windows Live Writer
«{AC76BA86-7AD7-FFFF-7B44-A91000000001}» = Adobe Reader 9.1 MUI
«{b2ec4a38-b545-4a00-8214-13fe0e915e6d}» = Advertising Center
«{B63F0CE3-CCD0-490A-9A9C-E1A3B3A17137}» = Почта Windows Live
«{BCB0D6F7-7EAB-4009-A6F2-8E0E7F317773}» = Элемент управления Windows Live Mesh ActiveX для удаленных подключений
«{bd5ca0da-71ad-43da-b19e-6eee0c9adc9a}» = Nero ControlCenter
«{C57BCDE1-7CB9-467D-B3BA-7E119916CDC1}» = Norton Online Backup
«{CDC39BF2-9697-4959-B893-A2EE05EF6ACB}» = Windows Live Writer
«{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}» = Windows Live UX Platform
«{D0B44725-3666-492D-BEF6-587A14BD9BD9}» = MSVCRT_amd64
«{D1DFB81E-1F92-4DBB-AD7F-CD861876BC77}_is1» = VKLife 1.9.1
«{D45240D3-B6B3-4FF9-B243-54ECE3E10066}» = Windows Live Communications Platform
«{D4C9692E-4EFA-4DA0-8B7F-9439466D9E31}» = Full Tilt Poker
«{D8DAB025-C2CE-4821-8117-494E95ADA031}» = Windows Live UX Platform Language Pack
«{dba84796-8503-4ff0-af57-1747dd9a166d}» = Nero Online Upgrade
«{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}» = CyberLink PowerDVD 10
«{DECDCB7C-58CC-4865-91AF-627F9798FE48}» = Windows Live Mesh
«{E09C4DB7-630C-4F06-A631-8EA7239923AF}» = D3DX10
«{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}» = Microsoft Office Suite Activation Assistant
«{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}» = Skype™ 5.1
«{E83DC314-C926-4214-AD58-147691D6FE9F}» = Основные компоненты Windows Live
«{e8a80433-302b-4ff1-815d-fcc8eac482ff}» = Nero Installer
«{EB4DF488-AAEF-406F-A341-CB2AAA315B90}» = Windows Live Messenger
«{EE171732-BEB4-4576-887D-CB62727F01CA}» = Acer Updater
«{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}» = Microsoft SQL Server 2005 Compact Edition [ENU]
«{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}» = Realtek High Definition Audio Driver
«{F2835483-37F2-4123-B4FE-0E77D58447F2}» = Far Cry 2
«{F333A33D-125C-32A2-8DCE-5C5D14231E27}» = Visual C++ 2008 x86 Runtime — (v9.0.30729)
«{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01» = Visual C++ 2008 x86 Runtime — v9.0.30729.01
«{F8A9085D-4C7A-41a9-8A77-C8998A96C421}» = Intel(R) Control Center
«Acer Registration» = Acer Registration
«Acer Screensaver» = Acer ScreenSaver
«Acer Welcome Center» = Welcome Center
«Adobe AIR» = Adobe AIR
«Adobe Flash Player ActiveX» = Adobe Flash Player 10 ActiveX
«Adobe Flash Player Plugin» = Adobe Flash Player 10 Plugin
«AskTBar Uninstall» = Ask Toolbar
«BearShare» = BearShare
«BearShare 2 MediaBar» = MediaBar
«conduitEngine» = Conduit Engine
«Counter-Strike 1.6 Kiev_is1» = Counter-Strike 1.6 Kiev
«Counter-Strike 1.6 Russian Mod_is1» = Counter-Strike 1.6 Russian Mod
«Counter-Strike Source — Северная Осетия_is1» = Counter-Strike Source — Северная Осетия
«Far Cry 2_is1» = Far Cry 2
«FIFA 10 Ukrainian Premier League_is1» = FIFA 10 Ukrainian Premier League
«FIFA 11_is1» = FIFA 11
«FIFA 2005_is1» = FIFA 2005
«Football Manager 2010_is1» = Football Manager 2010
«FreeGiftVk 3.966 3.966» = FreeGiftVk 3.966 3.966
«Guard.Mail.ru» = Guard.Mail.ru
«Helicon Filter 5_is1» = Helicon Filter 5.0.15
«HOMESTUDENTR» = Microsoft Office Home and Student 2007
«Identity Card» = Identity Card
«InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}» = NTI Backup Now 5
«InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}» = eSobi v2
«InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}» = NTI Media Maker 8
«InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}» = Acer Backup Manager
«InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}» = CyberLink PowerDVD 9
«InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}» = CyberLink PowerDVD 10
«LManager» = Launch Manager
«MailRuSputnik» = Mail.Ru Спутник 2.4.0.171
«Mozilla Firefox (3.6.13)» = Mozilla Firefox (3.6.13)
«MP3 Stream Editor_is1» = MP3 Stream Editor 3.4.4.1969
«MSC» = McAfee Internet Security Suite
«OGO!Mobile» = OGO!Mobile
«OMUI.ru-ru» = Microsoft Office Language Pack 2007 — Russian/русский
«OpenAL» = OpenAL
«PES 2010 — Ukrainian Premier League_is1» = PES 2010 — Ukrainian Premier League
«PES 2011_is1» = PES 2011
«Photo Click_is1» = Photo Click 1.27
«PokerStars» = PokerStars
«PunkBusterSvc» = PunkBuster Services
«Rome — Total War_is1» = Rome — Total War
«SPAMfighter» = SPAMfighter
«Universal Extractor_is1» = Universal Extractor 1.5
«uTorrent» = µTorrent
«uTorrentBar Toolbar» = uTorrentBar Toolbar
«Veetle TV» = Veetle TV 0.9.18
«vghd» = VirtuaGirl
«VKMusic 4_is1» = VKMusic 4
«VKSaver» = VKSaver
«Winamp» = Winamp
«WinLiveSuite» = Основные компоненты Windows Live
«WinRAR archiver» = Архиватор WinRAR
«Оптимизатор фотографий JPEG для WEB 1.0» = Оптимизатор фотографий JPEG для WEB 1.0
«Снежок. Обеденный переполох» = Снежок. Обеденный переполох========== HKEY_USERS Uninstall List ==========
[HKEY_USERSS-1-5-21-2330317786-3252475658-1247472922-1000SOFTWAREMicrosoftWindowsCurrentVersionUninstall]
«Google Chrome» = Google Chrome
«VirtuaGirl_is1» = VirtuaGirl, версия 1.0.5.2
«Winamp Detect» = Подключаемый модуль Winamp Detector
«Игры от Невософт» = Игры от Невософт========== Last 10 Event Log Errors ==========
[ Application Events ]
Error — 05.03.2011 15:06:59 | Computer Name = пк-ПК | Source = Windows Search Service | ID = 3058
Description =Error — 05.03.2011 15:06:59 | Computer Name = пк-ПК | Source = Windows Search Service | ID = 7010
Description =Error — 05.03.2011 15:16:20 | Computer Name = пк-ПК | Source = Windows Search Service | ID = 3029
Description =Error — 05.03.2011 15:16:20 | Computer Name = пк-ПК | Source = Windows Search Service | ID = 3028
Description =Error — 05.03.2011 15:16:20 | Computer Name = пк-ПК | Source = Windows Search Service | ID = 3058
Description =Error — 05.03.2011 15:16:20 | Computer Name = пк-ПК | Source = Windows Search Service | ID = 7010
Description =Error — 05.03.2011 15:38:50 | Computer Name = пк-ПК | Source = Windows Search Service | ID = 3029
Description =Error — 05.03.2011 15:38:50 | Computer Name = пк-ПК | Source = Windows Search Service | ID = 3028
Description =Error — 05.03.2011 15:38:50 | Computer Name = пк-ПК | Source = Windows Search Service | ID = 3058
Description =Error — 05.03.2011 15:38:50 | Computer Name = пк-ПК | Source = Windows Search Service | ID = 7010
Description =[ Media Center Events ]
Error — 10.03.2011 5:04:07 | Computer Name = пк-ПК | Source = MCUpdate | ID = 0
Description = 11:03:46 — Не удалось загрузить MCEClientUX (ошибка: Невозможно соединиться
с удаленным сервером)Error — 10.03.2011 6:06:18 | Computer Name = пк-ПК | Source = MCUpdate | ID = 0
Description = 12:06:17 — Не удалось загрузить MCEClientUX (ошибка: Invalid security
token.)Error — 12.03.2011 6:32:50 | Computer Name = пк-ПК | Source = MCUpdate | ID = 0
Description = 12:32:50 — Не удалось загрузить Directory (ошибка: Невозможно соединиться
с удаленным сервером)Error — 14.03.2011 6:55:01 | Computer Name = пк-ПК | Source = MCUpdate | ID = 0
Description = 12:55:01 — Не удалось загрузить Directory (ошибка: Invalid security
token.)Error — 15.03.2011 0:44:34 | Computer Name = пк-ПК | Source = MCUpdate | ID = 0
Description = 6:44:34 — Ошибка подключения к Интернету. 6:44:34 — Не удалось
установить связь с сервером..Error — 16.03.2011 5:24:45 | Computer Name = пк-ПК | Source = MCUpdate | ID = 0
Description = 11:24:24 — Не удалось загрузить MCEClientUX (ошибка: Невозможно соединиться
с удаленным сервером)Error — 17.03.2011 5:17:54 | Computer Name = пк-ПК | Source = MCUpdate | ID = 0
Description = 11:17:51 — Ошибка подключения к Интернету. 11:17:51 — Не удалось
установить связь с сервером..Error — 17.03.2011 6:20:05 | Computer Name = пк-ПК | Source = MCUpdate | ID = 0
Description = 12:19:43 — Не удалось загрузить ClientUpdate (ошибка: Невозможно соединиться
с удаленным сервером)Error — 17.03.2011 6:20:30 | Computer Name = пк-ПК | Source = MCUpdate | ID = 0
Description = 12:20:26 — Не удалось загрузить MCEClientUX (ошибка: Невозможно соединиться
с удаленным сервером)Error — 17.03.2011 7:55:48 | Computer Name = пк-ПК | Source = MCUpdate | ID = 0
Description = 13:55:30 — Не удалось загрузить MCEClientUX (ошибка: Невозможно соединиться
с удаленным сервером)[ System Events ]
Error — 09.02.2011 16:04:50 | Computer Name = пк-ПК | Source = Service Control Manager | ID = 7034
Description = Служба «Windows Search» неожиданно прервана. Это произошло (раз):
62.Error — 09.02.2011 16:07:24 | Computer Name = пк-ПК | Source = Service Control Manager | ID = 7023
Description = Служба «Windows Search» завершена из-за ошибки %%2Error — 09.02.2011 16:07:24 | Computer Name = пк-ПК | Source = Service Control Manager | ID = 7034
Description = Служба «Windows Search» неожиданно прервана. Это произошло (раз):
63.Error — 09.02.2011 16:34:56 | Computer Name = пк-ПК | Source = Service Control Manager | ID = 7023
Description = Служба «Windows Search» завершена из-за ошибки %%2Error — 09.02.2011 16:34:56 | Computer Name = пк-ПК | Source = Service Control Manager | ID = 7034
Description = Служба «Windows Search» неожиданно прервана. Это произошло (раз):
64.Error — 09.02.2011 17:41:13 | Computer Name = пк-ПК | Source = Service Control Manager | ID = 7023
Description = Служба «Windows Search» завершена из-за ошибки %%2Error — 09.02.2011 17:41:13 | Computer Name = пк-ПК | Source = Service Control Manager | ID = 7034
Description = Служба «Windows Search» неожиданно прервана. Это произошло (раз):
65.Error — 09.02.2011 18:07:24 | Computer Name = пк-ПК | Source = Service Control Manager | ID = 7023
Description = Служба «Windows Search» завершена из-за ошибки %%2Error — 09.02.2011 18:07:24 | Computer Name = пк-ПК | Source = Service Control Manager | ID = 7034
Description = Служба «Windows Search» неожиданно прервана. Это произошло (раз):
66.Error — 09.02.2011 19:05:07 | Computer Name = пк-ПК | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Ошибка установки: не удается установить следующее обновление из-за
ошибки 0x80073712: Обновление для системы безопасности Windows 7 для систем на
базе процессоров x64 (KB2423089). -
АвторСообщения
- Тема ‘Хэлп Люди !!!!!’ закрыта для новых сообщений.