Удаление вирусов и троянов. Защита компьютера. › Помощь в удалении вирусов, троянов, рекламы и других зловредов › помогите, всплывающие окна
- This topic has 1 ответ, 2 участника, and was last updated 12 years, 8 months назад by Helper.
-
АвторСообщения
-
30 декабря, 2011 в 6:09 пп #19043
помогите пожалуста, всплывающие окна,постоянные прблеммы с Explrer, интернет висит и выбрасивает.
Заранее благодарю, С Новым годом.
Logfile of random’s system information tool 1.09 (written by random/random)
Run by User at 2011-12-30 20:07:19
Microsoft Windows XP Professional Service Pack 3
System drive C: has 2 GB (5%) free of 50 GB
Total RAM: 2046 MB (29% free)Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:07:32, on 30.12.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: NormalRunning processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32nvsvc32.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSExplorer.EXE
C:WINDOWSRTHDCPL.EXE
C:Program FilesESETESET NOD32 Antivirusegui.exe
C:Program FilesAsk.comUpdaterUpdater.exe
C:Program FilesHPHP Software UpdateHPWuSchd2.exe
C:Program FilesCommon FilesJavaJava Updatejusched.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesRocketDockRocketDock.exe
C:Program FilesWindows LiveMessengermsnmsgr.exe
C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe
C:Program FilesuTorrentuTorrent.exe
C:Program FilesDAEMON Tools LiteDTLite.exe
C:Program FilesESETESET NOD32 Antivirusekrn.exe
C:Documents and SettingsAll UsersApplication DataGameXNGameXNGO.exe
C:Program FilesHPDigital Imagingbinhpqtra08.exe
C:WINDOWSsystem32svchost.exe
C:Program FilesJavajre6binjqs.exe
C:Program FilesMcAfee Security Scan2.0.181SSScheduler.exe
C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32PnkBstrA.exe
C:WINDOWSsystem32svchost.exe
C:NexonNEXON_EU_DownloaderNEXON_EU_Downloader_Engine.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesHPDigital ImagingbinhpqSTE08.exe
C:Program FilesHPDigital Imagingbinhpqbam08.exe
C:Program FilesHPDigital Imagingbinhpqgpc01.exe
C:WINDOWSSystem32mshta.exe
C:WINDOWSSystem32mshta.exe
C:WINDOWSSystem32mshta.exe
C:WINDOWSSystem32mshta.exe
C:WINDOWSSystem32mshta.exe
C:WINDOWSSystem32mshta.exe
C:Program FilesHPDigital ImagingSmart Web Printinghpswp_clipbook.exe
C:WINDOWSSystem32mshta.exe
C:WINDOWSSystem32mshta.exe
C:WINDOWSSystem32mshta.exe
C:WINDOWSSystem32mshta.exe
C:WINDOWSSystem32mshta.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesInternet Exploreriexplore.exe
C:WINDOWSSystem32mshta.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesInternet Exploreriexplore.exe
C:Documents and SettingsUserMy DocumentsRSIT.exe
C:Program Filestrend microUser.exeR0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.google.co.il/
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 — HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R3 — URLSearchHook: UrlSearchHook Class — {00000000-6E41-4FD3-8538-502F5495E5FC} — C:Program FilesAsk.comGenericAskToolbar.dll
R3 — URLSearchHook: YouTube Downloader Toolbar — {F3FEE66E-E034-436a-86E4-9690573BEE8A} — (no file)
R3 — URLSearchHook: MyAshampoo Toolbar — {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} — C:Program FilesMyAshampooprxtbMyA2.dll
R3 — URLSearchHook: Free Lunch Design Toolbar — {57cc715d-37ca-44e4-9ec2-8c2cbddb25ec} — C:Program FilesFree_Lunch_DesignprxtbFree.dll
R3 — URLSearchHook: fbfun Toolbar — {487f53ca-dddf-4a6d-809b-fef91f86c1d2} — C:Program Filesfbfunprxtbfbf0.dll
R3 — URLSearchHook: Nana10 Toolbar — {e3e7c520-7571-4107-b480-83b6e41d42dd} — C:Program FilesNana10prxtbNana.dll
O2 — BHO: HP Print Enhancer — {0347C33E-8762-4905-BF09-768834316C61} — C:Program FilesHPDigital ImagingSmart Web Printinghpswp_printenhancer.dll
O2 — BHO: Adobe PDF Link Helper — {18DF081C-E8AD-4283-A596-FA578C2EBDC3} — C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelperShim.dll
O2 — BHO: fbfun — {487f53ca-dddf-4a6d-809b-fef91f86c1d2} — C:Program Filesfbfunprxtbfbf0.dll
O2 — BHO: Free Lunch Design — {57cc715d-37ca-44e4-9ec2-8c2cbddb25ec} — C:Program FilesFree_Lunch_DesignprxtbFree.dll
O2 — BHO: (no name) — {5C255C8A-E604-49b4-9D64-90988571CECB} — (no file)
O2 — BHO: ???? ?????? ?? Windows Live — {9030D464-4C02-4ABF-8ECC-5164760863C6} — C:Program FilesCommon FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll
O2 — BHO: MyAshampoo — {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} — C:Program FilesMyAshampooprxtbMyA2.dll
O2 — BHO: Google Toolbar Helper — {AA58ED58-01DD-4d91-8333-CF10577473F7} — C:Program FilesGoogleGoogle ToolbarGoogleToolbar_32.dll
O2 — BHO: Skype add-on for Internet Explorer — {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} — C:Program FilesSkypeToolbarsInternet Explorerskypeieplugin.dll
O2 — BHO: Google Toolbar Notifier BHO — {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} — C:Program FilesGoogleGoogleToolbarNotifier5.7.7018.1622swg.dll
O2 — BHO: Ask Toolbar BHO — {D4027C7F-154A-4066-A1AD-4243D8127440} — C:Program FilesAsk.comGenericAskToolbar.dll
O2 — BHO: Java(tm) Plug-In 2 SSV Helper — {DBC80044-A445-435b-BC74-9C25C1C588A9} — C:Program FilesJavajre6binjp2ssv.dll
O2 — BHO: Nana10 — {e3e7c520-7571-4107-b480-83b6e41d42dd} — C:Program FilesNana10prxtbNana.dll
O2 — BHO: JQSIEStartDetectorImpl — {E7E6F031-17CE-4C07-BC86-EABFE594F69C} — C:Program FilesJavajre6libdeployjqsiejqs_plugin.dll
O2 — BHO: YouTube Downloader Toolbar — {F3FEE66E-E034-436a-86E4-9690573BEE8A} — (no file)
O2 — BHO: HP Smart BHO Class — {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} — C:Program FilesHPDigital ImagingSmart Web Printinghpswp_BHO.dll
O3 — Toolbar: MyAshampoo Toolbar — {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} — C:Program FilesMyAshampooprxtbMyA2.dll
O3 — Toolbar: Free Lunch Design Toolbar — {57cc715d-37ca-44e4-9ec2-8c2cbddb25ec} — C:Program FilesFree_Lunch_DesignprxtbFree.dll
O3 — Toolbar: Яндекс.Бар — {91397D20-1446-11D4-8AF4-0040CA1127B6} — C:Program FilesYandexYandexBarIEyndbar.dll
O3 — Toolbar: fbfun Toolbar — {487f53ca-dddf-4a6d-809b-fef91f86c1d2} — C:Program Filesfbfunprxtbfbf0.dll
O3 — Toolbar: DAEMON Tools Toolbar — {32099AAC-C132-4136-9E9A-4E364A424E17} — C:Program FilesDAEMON Tools ToolbarDTToolbar.dll
O3 — Toolbar: Ask Toolbar — {D4027C7F-154A-4066-A1AD-4243D8127440} — C:Program FilesAsk.comGenericAskToolbar.dll
O3 — Toolbar: YouTube Downloader Toolbar — {F3FEE66E-E034-436a-86E4-9690573BEE8A} — (no file)
O3 — Toolbar: Google Toolbar — {2318C2B1-4965-11d4-9B18-009027A5CD4F} — C:Program FilesGoogleGoogle ToolbarGoogleToolbar_32.dll
O3 — Toolbar: Nana10 Toolbar — {e3e7c520-7571-4107-b480-83b6e41d42dd} — C:Program FilesNana10prxtbNana.dll
O4 — HKLM..Run: [NeroFilterCheck] C:Program FilesCommon FilesAheadLibNeroCheck.exe
O4 — HKLM..Run: [RTHDCPL] RTHDCPL.EXE
O4 — HKLM..Run: [Alcmtr] ALCMTR.EXE
O4 — HKLM..Run: [egui] «C:Program FilesESETESET NOD32 Antivirusegui.exe» /hide /waitservice
O4 — HKLM..Run: [nwiz] nwiz.exe /installquiet
O4 — HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit
O4 — HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup
O4 — HKLM..Run: [Adobe Reader Speed Launcher] «E:Program FilesReaderReader_sl.exe»
O4 — HKLM..Run: [ApnUpdater] «C:Program FilesAsk.comUpdaterUpdater.exe»
O4 — HKLM..Run: [HP Software Update] C:Program FilesHPHP Software UpdateHPWuSchd2.exe
O4 — HKLM..Run: [SunJavaUpdateSched] «C:Program FilesCommon FilesJavaJava Updatejusched.exe»
O4 — HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe
O4 — HKCU..Run: [RocketDock] «C:Program FilesRocketDockRocketDock.exe»
O4 — HKCU..Run: [msnmsgr] «C:Program FilesWindows LiveMessengermsnmsgr.exe» /background
O4 — HKCU..Run: [Skype] «C:Program FilesSkypePhoneSkype.exe» /nosplash /minimized
O4 — HKCU..Run: [swg] «C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe»
O4 — HKCU..Run: [uTorrent] «C:Program FilesuTorrentuTorrent.exe» /MINIMIZED
O4 — HKCU..Run: [DAEMON Tools Lite] «C:Program FilesDAEMON Tools LiteDTLite.exe» -autorun
O4 — HKCU..Run: [KPeerNexonEU] C:NexonNEXON_EU_DownloadernxEULauncher.exe
O4 — HKCU..Run: [GameXN (update)] «C:Documents and SettingsAll UsersApplication DataGameXNGameXNGO.exe» /u
O4 — HKCU..Run: [GameXN (news)] «C:Documents and SettingsAll UsersApplication DataGameXNGameXNGO.exe» /n
O4 — HKCU..Run: [GameXN] «C:Documents and SettingsAll UsersApplication DataGameXNGameXNGO.exe» /silent
O4 — HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘LOCAL SERVICE’)
O4 — HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘NETWORK SERVICE’)
O4 — HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘SYSTEM’)
O4 — HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘Default user’)
O4 — Startup: Adobe Gamma.lnk = C:Program FilesCommon FilesAdobeCalibrationAdobe Gamma Loader.exe
O4 — Global Startup: HP Digital Imaging Monitor.lnk = C:Program FilesHPDigital Imagingbinhpqtra08.exe
O4 — Global Startup: McAfee Security Scan Plus.lnk = ?
O8 — Extra context menu item: Google Sidewiki… — res://C:Program FilesGoogleGoogle ToolbarComponentGoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
O9 — Extra button: Skype add-on for Internet Explorer — {898EA8C8-E7FF-479B-8935-AEC46303B9E5} — C:Program FilesSkypeToolbarsInternet Explorerskypeieplugin.dll
O9 — Extra ‘Tools’ menuitem: Skype add-on for Internet Explorer — {898EA8C8-E7FF-479B-8935-AEC46303B9E5} — C:Program FilesSkypeToolbarsInternet Explorerskypeieplugin.dll
O9 — Extra button: (no name) — {8DAE90AD-4583-4977-9DD4-4360F7A45C74} — (no file)
O9 — Extra button: Research — {92780B25-18CC-41C8-B9BE-3C9C571A8263} — C:PROGRA~1MICROS~2Office12REFIEBAR.DLL
O9 — Extra button: Показать или скрыть HP Smart Web Printing — {DDE87865-83C5-48c4-8357-2F5B1AA84522} — C:Program FilesHPDigital ImagingSmart Web Printinghpswp_BHO.dll
O9 — Extra button: (no name) — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra button: Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O9 — Extra ‘Tools’ menuitem: Windows Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O16 — DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) — http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1213775071671
O16 — DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) — http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 — DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} — http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 — Protocol: skype-ie-addon-data — {91774881-D725-4E58-B298-07617B9B86A8} — C:Program FilesSkypeToolbarsInternet Explorerskypeieplugin.dll
O18 — Protocol: skype4com — {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} — C:PROGRA~1COMMON~1SkypeSKYPE4~1.DLL
O22 — SharedTaskScheduler: Browseui preloader — {438755C2-A8BA-11D1-B96B-00A0C90312E1} — C:WINDOWSsystem32browseui.dll
O22 — SharedTaskScheduler: Component Categories cache daemon — {8C7461EF-2B13-11d2-BE35-3078302C2030} — C:WINDOWSsystem32browseui.dll
O23 — Service: Adobe LM Service — Adobe Systems — C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe
O23 — Service: ESET HTTP Server (EhttpSrv) — ESET — C:Program FilesESETESET NOD32 AntivirusEHttpSrv.exe
O23 — Service: ESET Service (ekrn) — ESET — C:Program FilesESETESET NOD32 Antivirusekrn.exe
O23 — Service: Служба Google Update (gupdate) (gupdate) — Google Inc. — C:Program FilesGoogleUpdateGoogleUpdate.exe
O23 — Service: ????? ????? Google (gupdatem) (gupdatem) — Google Inc. — C:Program FilesGoogleUpdateGoogleUpdate.exe
O23 — Service: Google Software Updater (gusvc) — Google — C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe
O23 — Service: InstallDriver Table Manager (IDriverT) — Macrovision Corporation — C:Program FilesCommon FilesInstallShieldDriver1050Intel 32IDriverT.exe
O23 — Service: Java Quick Starter (JavaQuickStarterService) — Sun Microsystems, Inc. — C:Program FilesJavajre6binjqs.exe
O23 — Service: McAfee Security Scan Component Host Service (McComponentHostService) — McAfee, Inc. — C:Program FilesMcAfee Security Scan2.0.181McCHSvc.exe
O23 — Service: NBService — Nero AG — C:Program FilesNeroNero 7Nero BackItUpNBService.exe
O23 — Service: NMIndexingService — Nero AG — C:Program FilesCommon FilesAheadLibNMIndexingService.exe
O23 — Service: NVIDIA Display Driver Service (nvsvc) — NVIDIA Corporation — C:WINDOWSsystem32nvsvc32.exe
O23 — Service: PnkBstrA — Unknown owner — C:WINDOWSsystem32PnkBstrA.exe—
End of file — 13357 bytes======Scheduled tasks folder======
C:WINDOWStasksAt1.job
C:WINDOWStasksAt10.job
C:WINDOWStasksAt11.job
C:WINDOWStasksAt12.job
C:WINDOWStasksAt13.job
C:WINDOWStasksAt14.job
C:WINDOWStasksAt15.job
C:WINDOWStasksAt16.job
C:WINDOWStasksAt17.job
C:WINDOWStasksAt18.job
C:WINDOWStasksAt19.job
C:WINDOWStasksAt2.job
C:WINDOWStasksAt20.job
C:WINDOWStasksAt21.job
C:WINDOWStasksAt22.job
C:WINDOWStasksAt23.job
C:WINDOWStasksAt24.job
C:WINDOWStasksAt3.job
C:WINDOWStasksAt4.job
C:WINDOWStasksAt5.job
C:WINDOWStasksAt6.job
C:WINDOWStasksAt7.job
C:WINDOWStasksAt8.job
C:WINDOWStasksAt9.job
C:WINDOWStasksGoogleUpdateTaskMachineCore.job
C:WINDOWStasksGoogleUpdateTaskMachineUA.job
C:WINDOWStasksOGALogon.job
C:WINDOWStasksScheduled Update for Ask Toolbar.job
C:WINDOWStasksUser_Feed_Synchronization-{B47D3027-00B0-42AA-97AA-255F20046AB4}.job
C:WINDOWStasks{22116563-108C-42c0-A7CE-60161B75E508}.job
C:WINDOWStasks{62C40AA6-4406-467a-A5A5-DFDF1B559B7A}.job
C:WINDOWStasks{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job=========Mozilla firefox=========
ProfilePath — C:Documents and SettingsUserApplication DataMozillaFirefoxProfilesk5ybgngr.default
prefs.js — «browser.startup.homepage» — «http://search.conduit.com/?ctid=CT2670199&SearchSource=13»
prefs.js — «extensions.enabledItems» — «yasearch@yandex.ru:5.0.3, DTToolbar@toolbarnet.com:1.1.2.0185, dmbarff@westbyte.com:1.5.0, dmpluginff@westbyte.com:1.4, dmremote@westbyte.com:1.2, wtxpcom@mybrowserbar.com:4.3, youtubedownloader@mybrowserbar.com:4.3, {20a82645-c095-46ed-80e3-08825760534b}:1.1, smartwebprinting@hp.com:4.5, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17″
prefs.js — «keyword.URL» — «http://search.yahoo.com/search?ei=utf-8&fr=greentree_ff1&type=937811&p=»«{20a82645-c095-46ed-80e3-08825760534b}»=C:WINDOWSMicrosoft.NETFrameworkv3.5Windows Presentation FoundationDotNetAssistantExtension
«smartwebprinting@hp.com»=C:Program FilesHPDigital ImagingSmart Web PrintingMozillaAddOn3
«jqs@sun.com»=C:Program FilesJavajre6libdeployjqsff[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@adobe.com/FlashPlayer]
«Description»=Adobe® Flash® Player 10
«Path»=C:WINDOWSsystem32MacromedFlashNPSWF32.dll[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@java.com/JavaPlugin]
«Description»=Oracle® Next Generation Java™ Plug-In
«Path»=C:Program FilesJavajre6binnew_pluginnpjp2.dll[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@microsoft.com/WPF,version=3.5]
«Description»=Windows Presentation Foundation plug-in for Mozilla browsers
«Path»=C:WINDOWSMicrosoft.NETFrameworkv3.5Windows Presentation FoundationNPWPF.dll[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@ngm.nexoneu.com/NxGame]
«Description»=Nexon Game Controller 1.0.0.1
«Path»=C:Documents and SettingsAll UsersApplication DataNexonEUNGMnpNxGameeu.dll[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@real.com/nppl3260;version=6.0.12.449]
«Description»=RealPlayer(tm) LiveConnect-Enabled Plug-In
«Path»=C:Program FilesK-Lite Codec PackRealbrowserpluginsnppl3260.dll[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@real.com/nprpjplug;version=6.0.12.448]
«Description»=6.0.12.448
«Path»=C:Program FilesK-Lite Codec PackRealbrowserpluginsnprpjplug.dll[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@real.com/nsJSRealPlayerPlugin;version=]
«Description»=
«Path»=[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@tools.google.com/Google Update;version=3]
«Description»=Google Update
«Path»=C:Program FilesGoogleUpdate1.3.21.79npGoogleUpdate3.dll[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@tools.google.com/Google Update;version=9]
«Description»=Google Update
«Path»=C:Program FilesGoogleUpdate1.3.21.79npGoogleUpdate3.dllC:Program FilesMozilla Firefoxextensions
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}C:Program FilesMozilla Firefoxcomponents
binary.manifest
browsercomps.dllC:Program FilesMozilla Firefoxplugins
np-mswmp.dll
npdeployJava1.dll
nppdf32.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txtC:Program FilesMozilla Firefoxsearchplugins
google.xml
morfix-dic.xml
wikipedia-he.xml
yahoo.xmlC:Documents and SettingsUserApplication DataMozillaFirefoxProfilesk5ybgngr.defaultextensions
DTToolbar@toolbarnet.com
yasearch@yandex.ru
{20a82645-c095-46ed-80e3-08825760534b}
{57cc715d-37ca-44e4-9ec2-8c2cbddb25ec}
{a5ae8924-4036-420f-b7f6-a47e4b8f692e}
{e3e7c520-7571-4107-b480-83b6e41d42dd}C:Documents and SettingsUserApplication DataMozillaFirefoxProfilesk5ybgngr.defaultsearchplugins
conduit.xml
daemon-search.xml
ybqs-yandex.xml======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer — C:Program FilesHPDigital ImagingSmart Web Printinghpswp_printenhancer.dll [2009-05-21 328248][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper — C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelperShim.dll [2009-02-27 75128][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{487f53ca-dddf-4a6d-809b-fef91f86c1d2}]
fbfun Toolbar — C:Program Filesfbfunprxtbfbf0.dll [2011-01-17 175912][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{57cc715d-37ca-44e4-9ec2-8c2cbddb25ec}]
Free Lunch Design Toolbar — C:Program FilesFree_Lunch_DesignprxtbFree.dll [2011-05-09 176936][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{9030D464-4C02-4ABF-8ECC-5164760863C6}]
עוזר הכניסה של Windows Live — C:Program FilesCommon FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll [2009-01-22 408448][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{a1e75a0e-4397-4ba8-bb50-e19fb66890f4}]
MyAshampoo Toolbar — C:Program FilesMyAshampooprxtbMyA2.dll [2011-01-17 175912][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper — C:Program FilesGoogleGoogle ToolbarGoogleToolbar_32.dll [2011-12-21 342192][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer — C:Program FilesSkypeToolbarsInternet Explorerskypeieplugin.dll [2010-02-08 804136][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO — C:Program FilesGoogleGoogleToolbarNotifier5.7.7018.1622swg.dll [2011-11-30 1003576][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar — C:Program FilesAsk.comGenericAskToolbar.dll [2011-12-14 1514152][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper — C:Program FilesJavajre6binjp2ssv.dll [2011-11-17 42272][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{e3e7c520-7571-4107-b480-83b6e41d42dd}]
Nana10 Toolbar — C:Program FilesNana10prxtbNana.dll [2011-05-09 176936][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class — C:Program FilesJavajre6libdeployjqsiejqs_plugin.dll [2011-11-17 79648][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{F3FEE66E-E034-436a-86E4-9690573BEE8A}]
YouTube Downloader Toolbar[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class — C:Program FilesHPDigital ImagingSmart Web Printinghpswp_BHO.dll [2009-05-21 509496][HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{a1e75a0e-4397-4ba8-bb50-e19fb66890f4} — MyAshampoo Toolbar — C:Program FilesMyAshampooprxtbMyA2.dll [2011-01-17 175912]
{57cc715d-37ca-44e4-9ec2-8c2cbddb25ec} — Free Lunch Design Toolbar — C:Program FilesFree_Lunch_DesignprxtbFree.dll [2011-05-09 176936]
{91397D20-1446-11D4-8AF4-0040CA1127B6} — Яндекс.Бар — C:Program FilesYandexYandexBarIEyndbar.dll [2010-06-01 10336584]
{487f53ca-dddf-4a6d-809b-fef91f86c1d2} — fbfun Toolbar — C:Program Filesfbfunprxtbfbf0.dll [2011-01-17 175912]
{32099AAC-C132-4136-9E9A-4E364A424E17} — DAEMON Tools Toolbar — C:Program FilesDAEMON Tools ToolbarDTToolbar.dll [2010-03-25 968000]
{D4027C7F-154A-4066-A1AD-4243D8127440} — Ask Toolbar — C:Program FilesAsk.comGenericAskToolbar.dll [2011-12-14 1514152]
{F3FEE66E-E034-436a-86E4-9690573BEE8A} —
{2318C2B1-4965-11d4-9B18-009027A5CD4F} — Google Toolbar — C:Program FilesGoogleGoogle ToolbarGoogleToolbar_32.dll [2011-12-21 342192]
{e3e7c520-7571-4107-b480-83b6e41d42dd} — Nana10 Toolbar — C:Program FilesNana10prxtbNana.dll [2011-05-09 176936][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«NeroFilterCheck»=C:Program FilesCommon FilesAheadLibNeroCheck.exe [2007-03-01 153136]
«RTHDCPL»=C:WINDOWSRTHDCPL.EXE [2009-01-13 18084864]
«Alcmtr»=C:WINDOWSALCMTR.EXE [2008-06-19 57344]
«egui»=C:Program FilesESETESET NOD32 Antivirusegui.exe [2009-11-16 2054360]
«nwiz»=nwiz.exe /installquiet []
«NvMediaCenter»=C:WINDOWSsystem32NvMcTray.dll [2009-11-20 110184]
«NvCplDaemon»=C:WINDOWSsystem32NvCpl.dll [2009-11-20 12669544]
«Adobe Reader Speed Launcher»=E:Program FilesReaderReader_sl.exe [2009-02-27 35696]
«»= []
«ApnUpdater»=C:Program FilesAsk.comUpdaterUpdater.exe [2011-12-14 1398440]
«HP Software Update»=C:Program FilesHPHP Software UpdateHPWuSchd2.exe [2011-05-10 49208]
«SunJavaUpdateSched»=C:Program FilesCommon FilesJavaJava Updatejusched.exe [2011-06-09 254696][HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
«CTFMON.EXE»=C:WINDOWSsystem32ctfmon.exe [2008-04-14 15360]
«RocketDock»=C:Program FilesRocketDockRocketDock.exe [2007-09-02 495616]
«msnmsgr»=C:Program FilesWindows LiveMessengermsnmsgr.exe [2010-04-16 3872080]
«Skype»=C:Program FilesSkypePhoneSkype.exe [2010-09-02 13351304]
«swg»=C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe [2010-02-12 39408]
«uTorrent»=C:Program FilesuTorrentuTorrent.exe [2011-11-08 641400]
«DAEMON Tools Lite»=C:Program FilesDAEMON Tools LiteDTLite.exe [2010-04-01 357696]
«KPeerNexonEU»=C:NexonNEXON_EU_DownloadernxEULauncher.exe [2011-03-25 438272]
«GameXN (update)»=C:Documents and SettingsAll UsersApplication DataGameXNGameXNGO.exe [2011-08-31 347008]
«GameXN (news)»=C:Documents and SettingsAll UsersApplication DataGameXNGameXNGO.exe [2011-08-31 347008]
«GameXN»=C:Documents and SettingsAll UsersApplication DataGameXNGameXNGO.exe [2011-08-31 347008][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregAdobe Reader Speed Launcher]
C:Program FilesAdobeReader 9.0ReaderReader_sl.exe [2009-02-27 35696][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregBDRegion]
C:Program FilesCyberlinkShared Filesbrs.exe [2009-11-19 75048][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregDAEMON Tools Lite]
C:Program FilesDAEMON Tools LiteDTLite.exe [2010-04-01 357696][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregRemoteControl9]
C:Program FilesCyberLinkPowerDVD9PDVD9Serv.exe [2009-11-29 87336][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregWinampAgent]
C:Program FilesWinampwinampa.exe []C:Documents and SettingsAll UsersStart MenuProgramsStartup
HP Digital Imaging Monitor.lnk — C:Program FilesHPDigital Imagingbinhpqtra08.exe
McAfee Security Scan Plus.lnk — C:Program FilesMcAfee Security Scan2.0.181SSScheduler.exeC:Documents and SettingsUserStart MenuProgramsStartup
Adobe Gamma.lnk — C:Program FilesCommon FilesAdobeCalibrationAdobe Gamma Loader.exe[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyWgaLogon]
C:WINDOWSsystem32WgaLogon.dll [2009-03-10 239496][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionShellServiceObjectDelayLoad]
WPDShServiceObj — {AAA288BA-9A4C-45B0-95D7-94D524869DB5} — C:WINDOWSsystem32WPDShServiceObj.dll [2006-10-18 133632][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
«dontdisplaylastusername»=0
«legalnoticecaption»=
«legalnoticetext»=
«shutdownwithoutlogon»=1
«undockwithoutlogon»=1[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«NoDriveTypeAutoRun»=145[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«HonorAutoRunSetting»=1[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:Program FilesMicrosoft OfficeOffice12OUTLOOK.EXE»=»C:Program FilesMicrosoft OfficeOffice12OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook»
«C:Program FilesCyberLinkPowerDVD9PowerDVD9.exe»=»C:Program FilesCyberLinkPowerDVD9PowerDVD9.exe:*:Enabled:CyberLink PowerDVD 9.0»
«C:Program FilesSkypePlugin ManagerskypePM.exe»=»C:Program FilesSkypePlugin ManagerskypePM.exe:*:Enabled:Skype Extras Manager»
«C:Program FilesuTorrentuTorrent.exe»=»C:Program FilesuTorrentuTorrent.exe:*:Enabled:µTorrent»
«C:WINDOWSsystem32PnkBstrA.exe»=»C:WINDOWSsystem32PnkBstrA.exe:*:Enabled:PnkBstrA»
«C:WINDOWSsystem32PnkBstrB.exe»=»C:WINDOWSsystem32PnkBstrB.exe:*:Enabled:PnkBstrB»
«E:STARKRAFT3StarCraft IIStarCraft II.exe»=»E:STARKRAFT3StarCraft IIStarCraft II.exe:*:Enabled:Blizzard Launcher»
«E:STARKRAFT3StarCraft IIVersionsBase15405SC2.exe»=»E:STARKRAFT3StarCraft IIVersionsBase15405SC2.exe:*:Enabled:StarCraft II»
«E:Program FilesProgramsRM.exe»=»E:Program FilesProgramsRM.exe:*:Enabled:Render Manager»
«E:Program FilesProgramsStudio.exe»=»E:Program FilesProgramsStudio.exe:*:Enabled:Studio»
«E:Program FilesProgramsumi.exe»=»E:Program FilesProgramsumi.exe:*:Enabled:umi»
«C:Program FilesHPDigital Imagingbinhpqtra08.exe»=»C:Program FilesHPDigital Imagingbinhpqtra08.exe:*:Enabled:hpqtra08.exe»
«C:Program FilesHPDigital Imagingbinhpqste08.exe»=»C:Program FilesHPDigital Imagingbinhpqste08.exe:*:Enabled:hpqste08.exe»
«C:Program FilesHPDigital Imagingbinhpofxm08.exe»=»C:Program FilesHPDigital Imagingbinhpofxm08.exe:*:Enabled:hpofxm08.exe»
«C:Program FilesHPDigital Imagingbinhposfx08.exe»=»C:Program FilesHPDigital Imagingbinhposfx08.exe:*:Enabled:hposfx08.exe»
«C:Program FilesHPDigital Imagingbinhposid01.exe»=»C:Program FilesHPDigital Imagingbinhposid01.exe:*:Enabled:hposid01.exe»
«C:Program FilesHPDigital Imagingbinhpqkygrp.exe»=»C:Program FilesHPDigital Imagingbinhpqkygrp.exe:*:Enabled:hpqkygrp.exe»
«C:Program FilesHPDigital ImagingbinhpfcCopy.exe»=»C:Program FilesHPDigital ImagingbinhpfcCopy.exe:*:Enabled:hpfccopy.exe»
«C:Program FilesHPDigital Imagingbinhpzwiz01.exe»=»C:Program FilesHPDigital Imagingbinhpzwiz01.exe:*:Enabled:hpzwiz01.exe»
«C:Program FilesHPDigital Imagingbinhpoews01.exe»=»C:Program FilesHPDigital Imagingbinhpoews01.exe:*:Enabled:hpoews01.exe»
«C:Program FilesHPDigital Imagingbinhpiscnapp.exe»=»C:Program FilesHPDigital Imagingbinhpiscnapp.exe:*:Enabled:hpiscnapp.exe»
«C:Program FilesHPDigital Imagingbinhpofxs08.exe»=»C:Program FilesHPDigital Imagingbinhpofxs08.exe:*:Enabled:hpofxs08.exe»
«C:Program FilesHPDigital Imagingbinhpqfxt08.exe»=»C:Program FilesHPDigital Imagingbinhpqfxt08.exe:*:Enabled:hpqfxt08.exe»
«C:Program FilesHPDigital Imagingbinhpqgplgtupl.exe»=»C:Program FilesHPDigital Imagingbinhpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe»
«C:Program FilesHPDigital Imagingbinhpqgpc01.exe»=»C:Program FilesHPDigital Imagingbinhpqgpc01.exe:*:Enabled:hpqgpc01.exe»
«C:Program FilesHPDigital Imagingbinhpqusgm.exe»=»C:Program FilesHPDigital Imagingbinhpqusgm.exe:*:Enabled:hpqusgm.exe»
«C:Program FilesHPDigital Imagingbinhpqusgh.exe»=»C:Program FilesHPDigital Imagingbinhpqusgh.exe:*:Enabled:hpqusgh.exe»
«C:Program FilesHPHP Software UpdateHPWUCli.exe»=»C:Program FilesHPHP Software UpdateHPWUCli.exe:*:Enabled:hpwucli.exe»
«C:Program FilesHPDigital Imagingsmart web printingSmartWebPrintExe.exe»=»C:Program FilesHPDigital Imagingsmart web printingSmartWebPrintExe.exe:*:Enabled:smartwebprintexe.exe»
«C:Program FilesWindows LiveMessengermsnmsgr.exe»=»C:Program FilesWindows LiveMessengermsnmsgr.exe:*:Enabled:Windows Live Messenger»
«C:NexonNEXON_EU_DownloaderNEXON_EU_Downloader_Engine.exe»=»C:NexonNEXON_EU_DownloaderNEXON_EU_Downloader_Engine.exe:*:Enabled:NEXON_EU_Downloader_Engine»
«C:Documents and SettingsAll UsersApplication DataNexonEUNGMNGM.exe»=»C:Documents and SettingsAll UsersApplication DataNexonEUNGMNGM.exe:*:Enabled:Nexon Game Manager»
«C:NexonCombat Arms EUCombatArms.exe»=»C:NexonCombat Arms EUCombatArms.exe:*Enabled:CombatArms.exe»
«C:NexonCombat Arms EUEngine.exe»=»C:NexonCombat Arms EUEngine.exe:*Enabled:Engine.exe»
«C:Program FilesSkypePhoneSkype.exe»=»C:Program FilesSkypePhoneSkype.exe:*:Enabled:Skype»[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:Program FilesCyberLinkPowerDVD9PowerDVD9.exe»=»C:Program FilesCyberLinkPowerDVD9PowerDVD9.exe:*:Enabled:CyberLink PowerDVD 9.0»
«C:Program FilesHPDigital Imagingbinhpqtra08.exe»=»C:Program FilesHPDigital Imagingbinhpqtra08.exe:*:Enabled:hpqtra08.exe»
«C:Program FilesHPDigital Imagingbinhpqste08.exe»=»C:Program FilesHPDigital Imagingbinhpqste08.exe:*:Enabled:hpqste08.exe»
«C:Program FilesHPDigital Imagingbinhpofxm08.exe»=»C:Program FilesHPDigital Imagingbinhpofxm08.exe:*:Enabled:hpofxm08.exe»
«C:Program FilesHPDigital Imagingbinhposfx08.exe»=»C:Program FilesHPDigital Imagingbinhposfx08.exe:*:Enabled:hposfx08.exe»
«C:Program FilesHPDigital Imagingbinhposid01.exe»=»C:Program FilesHPDigital Imagingbinhposid01.exe:*:Enabled:hposid01.exe»
«C:Program FilesHPDigital Imagingbinhpqkygrp.exe»=»C:Program FilesHPDigital Imagingbinhpqkygrp.exe:*:Enabled:hpqkygrp.exe»
«C:Program FilesHPDigital ImagingbinhpfcCopy.exe»=»C:Program FilesHPDigital ImagingbinhpfcCopy.exe:*:Enabled:hpfccopy.exe»
«C:Program FilesHPDigital Imagingbinhpzwiz01.exe»=»C:Program FilesHPDigital Imagingbinhpzwiz01.exe:*:Enabled:hpzwiz01.exe»
«C:Program FilesHPDigital Imagingbinhpoews01.exe»=»C:Program FilesHPDigital Imagingbinhpoews01.exe:*:Enabled:hpoews01.exe»
«C:Program FilesHPDigital Imagingbinhpiscnapp.exe»=»C:Program FilesHPDigital Imagingbinhpiscnapp.exe:*:Enabled:hpiscnapp.exe»
«C:Program FilesHPDigital Imagingbinhpofxs08.exe»=»C:Program FilesHPDigital Imagingbinhpofxs08.exe:*:Enabled:hpofxs08.exe»
«C:Program FilesHPDigital Imagingbinhpqfxt08.exe»=»C:Program FilesHPDigital Imagingbinhpqfxt08.exe:*:Enabled:hpqfxt08.exe»
«C:Program FilesHPDigital Imagingbinhpqgplgtupl.exe»=»C:Program FilesHPDigital Imagingbinhpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe»
«C:Program FilesHPDigital Imagingbinhpqgpc01.exe»=»C:Program FilesHPDigital Imagingbinhpqgpc01.exe:*:Enabled:hpqgpc01.exe»
«C:Program FilesHPDigital Imagingbinhpqusgm.exe»=»C:Program FilesHPDigital Imagingbinhpqusgm.exe:*:Enabled:hpqusgm.exe»
«C:Program FilesHPDigital Imagingbinhpqusgh.exe»=»C:Program FilesHPDigital Imagingbinhpqusgh.exe:*:Enabled:hpqusgh.exe»
«C:Program FilesHPHP Software UpdateHPWUCli.exe»=»C:Program FilesHPHP Software UpdateHPWUCli.exe:*:Enabled:hpwucli.exe»
«C:Program FilesHPDigital Imagingsmart web printingSmartWebPrintExe.exe»=»C:Program FilesHPDigital Imagingsmart web printingSmartWebPrintExe.exe:*:Enabled:smartwebprintexe.exe»
«C:Program FilesWindows LiveMessengermsnmsgr.exe»=»C:Program FilesWindows LiveMessengermsnmsgr.exe:*:Enabled:Windows Live Messenger»
«C:NexonCombat Arms EUCombatArms.exe»=»C:NexonCombat Arms EUCombatArms.exe:*Enabled:CombatArms.exe»
«C:NexonCombat Arms EUEngine.exe»=»C:NexonCombat Arms EUEngine.exe:*Enabled:Engine.exe»[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionDrivers32]
«midimapper»=midimap.dll
«msacm.imaadpcm»=imaadp32.acm
«msacm.msadpcm»=msadp32.acm
«msacm.msg711″=msg711.acm
«msacm.msgsm610″=msgsm32.acm
«msacm.trspch»=tssoft32.acm
«vidc.cvid»=iccvid.dll
«VIDC.I420″=msh263.drv
«vidc.iv31″=ir32_32.dll
«vidc.iv32″=ir32_32.dll
«vidc.iv41″=ir41_32.ax
«VIDC.IYUV»=iyuv_32.dll
«vidc.mrle»=msrle32.dll
«vidc.msvc»=msvidc32.dll
«VIDC.UYVY»=msyuv.dll
«VIDC.YUY2″=msyuv.dll
«VIDC.YVU9″=tsbyuv.dll
«VIDC.YVYU»=msyuv.dll
«wavemapper»=msacm32.drv
«msacm.msg723″=msg723.acm
«vidc.M263″=msh263.drv
«vidc.M261″=msh261.drv
«msacm.msaudio1″=msaud32.acm
«msacm.sl_anet»=sl_anet.acm
«msacm.iac2″=C:WINDOWSsystem32iac25_32.ax
«vidc.iv50″=ir50_32.dll
«msacm.l3acm»=C:WINDOWSsystem32l3codeca.acm
«wave»=wdmaud.drv
«midi»=wdmaud.drv
«mixer»=wdmaud.drv
«aux»=wdmaud.drv
«VIDC.DIVX»=divx.dll
«VIDC.XVID»=xvidvfw.dll
«VIDC.YV12″=yv12vfw.dll
«msacm.ac3acm»=ac3acm.acm
«msacm.lameacm»=lameACM.acm
«VIDC.FFDS»=ff_vfw.dll
«VIDC.ACDV»=ACDV.dll
«MSVideo8″=VfWWDM32.dll
«msacm.siren»=sirenacm.dll
«vidc.VP60″=C:WINDOWSsystem32vp6vfw.dll
«vidc.VP61″=C:WINDOWSsystem32vp6vfw.dll
«vidc.mjpg»=pvmjpg30.dll
«wave1″=wdmaud.drv
«midi1″=wdmaud.drv
«mixer1″=wdmaud.drv
«aux1″=wdmaud.drv
«wave2″=wdmaud.drv
«midi2″=wdmaud.drv
«mixer2″=wdmaud.drv
«aux2″=wdmaud.drv======List of files/folders created in the last 1 month======
2011-12-30 20:07:19 —-D—- C:rsit
2011-12-30 20:07:19 —-D—- C:Program Filestrend micro
2011-12-25 19:07:12 —-D—- C:Program FilesNana10
2011-12-25 19:07:08 —-A—- C:icytower15_install.exe======List of files/folders modified in the last 1 month======
2011-12-30 20:07:32 —-D—- C:WINDOWSTemp
2011-12-30 20:07:26 —-D—- C:WINDOWSPrefetch
2011-12-30 20:07:19 —-RD—- C:Program Files
2011-12-30 20:00:52 —-D—- C:Documents and SettingsUserApplication DatauTorrent
2011-12-30 19:59:05 —-D—- C:Documents and SettingsAll UsersApplication DataGameXN
2011-12-30 19:38:20 —-D—- C:Documents and SettingsUserApplication DataHPAppData
2011-12-30 16:06:00 —-A—- C:WINDOWSSchedLgU.Txt
2011-12-30 11:58:55 —-D—- C:Program FilesMyAshampoo
2011-12-30 07:43:06 —-D—- C:WINDOWSsystem32
2011-12-30 07:43:06 —-A—- C:WINDOWSsystem32PerfStringBackup.INI
2011-12-30 07:40:21 —-D—- C:Documents and SettingsUserApplication DataSkype
2011-12-30 07:39:23 —-D—- C:Documents and SettingsUserApplication DataskypePM
2011-12-30 07:39:04 —-D—- C:Documents and SettingsUserApplication Datago
2011-12-29 18:01:30 —-SHD—- C:WINDOWSInstaller
2011-12-29 18:01:29 —-D—- C:Program FilesAsk.com
2011-12-29 18:01:28 —-SD—- C:WINDOWSTasks
2011-12-29 18:01:09 —-SHD—- C:Config.Msi
2011-12-26 15:55:27 —-D—- C:WINDOWS
2011-12-26 15:55:06 —-D—- C:WINDOWSsystem32LogFiles
2011-12-25 22:06:39 —-D—- C:WINDOWSDebug
2011-12-25 19:16:01 —-D—- C:Documents and SettingsUserApplication DataPriceGong
2011-12-25 19:08:59 —-D—- C:Program FilesFree_Lunch_Design
2011-12-25 19:08:52 —-D—- C:games
2011-12-19 17:05:37 —-D—- C:Program FilesMozilla Firefox
2011-12-19 14:41:33 —-D—- C:Documents and SettingsUserApplication DataHpUpdate
2011-12-19 11:58:00 —-D—- C:Program Filesfbfun
2011-12-19 09:15:00 —-A—- C:WINDOWSNeroDigital.ini
2011-12-15 03:04:57 —-D—- C:Documents and SettingsAll UsersApplication DataMicrosoft Help
2011-12-15 03:04:41 —-HD—- C:WINDOWSinf
2011-12-15 03:04:40 —-RSHDC—- C:WINDOWSsystem32dllcache
2011-12-15 03:04:27 —-D—- C:Program FilesInternet Explorer
2011-12-15 03:04:18 —-D—- C:WINDOWSie8updates
2011-12-15 03:04:16 —-HD—- C:WINDOWS$hf_mig$
2011-12-15 03:02:51 —-A—- C:WINDOWSsystem32MRT.exe
2011-12-14 23:03:45 —-D—- C:WINDOWSsystem32CatRoot2======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ohci1394;VIA OHCI Compliant IEEE 1394 Host Controller; C:WINDOWSsystem32DRIVERSohci1394.sys [2008-04-14 61696]
R0 PxHelp20;PxHelp20; C:WINDOWSSystem32DriversPxHelp20.sys [2007-03-08 43528]
R0 sptd;sptd; C:WINDOWSSystem32Driverssptd.sys [2009-12-28 691696]
R0 WudfPf;Windows Driver Foundation — User-mode Driver Framework Platform Driver; C:WINDOWSsystem32DRIVERSWudfPf.sys [2006-09-28 77568]
R1 ehdrv;ehdrv; C:WINDOWSsystem32DRIVERSehdrv.sys [2009-11-16 108792]
R1 epfwtdir;epfwtdir; C:WINDOWSsystem32DRIVERSepfwtdir.sys [2009-11-16 96408]
R1 intelppm;Intel Processor Driver; C:WINDOWSsystem32DRIVERSintelppm.sys [2008-04-14 36352]
R1 kbdhid;Keyboard HID Driver; C:WINDOWSsystem32DRIVERSkbdhid.sys [2008-04-13 14592]
R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2009/12/28 13:46:00]; ??C:Program FilesCyberLinkPowerDVD9NavFilter 00.fcl []
R2 eamon;eamon; C:WINDOWSsystem32DRIVERSeamon.sys [2009-11-16 116520]
R3 Arp1394;1394 ARP Client Protocol; C:WINDOWSsystem32DRIVERSarp1394.sys [2008-04-14 60800]
R3 GEARAspiWDM;GEARAspiWDM; C:WINDOWSSystem32DriversGEARAspiWDM.sys [2006-09-19 15664]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:WINDOWSsystem32DRIVERSHDAudBus.sys [2008-04-14 144384]
R3 HidUsb;Microsoft HID Class Driver; C:WINDOWSsystem32DRIVERShidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:WINDOWSsystem32driversRtkHDAud.sys [2009-01-20 5027840]
R3 MarvinBus;Pinnacle Marvin Bus; C:WINDOWSsystem32DRIVERSMarvinBus.sys [2005-09-23 171520]
R3 mouhid;Mouse HID Driver; C:WINDOWSsystem32DRIVERSmouhid.sys [2001-08-17 12160]
R3 NIC1394;1394 Net Driver; C:WINDOWSsystem32DRIVERSnic1394.sys [2008-04-14 61824]
R3 nv;nv; C:WINDOWSsystem32DRIVERSnv4_mini.sys [2009-11-21 10235968]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:WINDOWSsystem32DRIVERSRtenicxp.sys [2009-03-27 130816]
R3 usbaudio;USB Audio Driver (WDM); C:WINDOWSsystem32driversusbaudio.sys [2008-04-14 60032]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:WINDOWSsystem32DRIVERSusbccgp.sys [2008-04-14 32128]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:WINDOWSsystem32DRIVERSusbuhci.sys [2008-04-14 20608]
S3 61883;61883 Unit Device; C:WINDOWSsystem32DRIVERS61883.sys [2008-04-14 48128]
S3 agwxenzt;agwxenzt; C:WINDOWSsystem32driversagwxenzt.sys []
S3 Avc;AVC Device; C:WINDOWSsystem32DRIVERSavc.sys [2008-04-14 38912]
S3 CCDECODE;Closed Caption Decoder; C:WINDOWSsystem32DRIVERSCCDECODE.sys [2008-04-14 17024]
S3 EagleXNt;EagleXNt; ??C:WINDOWSsystem32driversEagleXNt.sys []
S3 gdrv;gdrv; ??C:WINDOWSgdrv.sys []
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:WINDOWSsystem32DRIVERSHPZid412.sys [2009-05-18 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:WINDOWSsystem32DRIVERSHPZipr12.sys [2009-05-18 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:WINDOWSsystem32DRIVERSHPZius12.sys [2009-05-18 21568]
S3 MSDV;Microsoft DV Camera and VCR; C:WINDOWSsystem32DRIVERSmsdv.sys [2008-04-14 51200]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:WINDOWSsystem32driversMSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:WINDOWSsystem32DRIVERSNABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:WINDOWSsystem32DRIVERSNdisIP.sys [2008-04-14 10880]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:WINDOWSsystem32DRIVERSRTL8139.SYS [2008-04-13 20992]
S3 SLIP;BDA Slip De-Framer; C:WINDOWSsystem32DRIVERSSLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:WINDOWSsystem32DRIVERSStreamIP.sys [2008-04-14 15232]
S3 usbprint;Microsoft USB PRINTER Class; C:WINDOWSsystem32DRIVERSusbprint.sys [2008-04-14 25856]
S3 usbscan;USB Scanner Driver; C:WINDOWSsystem32DRIVERSusbscan.sys [2008-04-14 15104]
S3 USBSTOR;USB Mass Storage Driver; C:WINDOWSsystem32DRIVERSUSBSTOR.SYS [2008-04-13 26368]
S3 usbvideo;USB Video Device (WDM); C:WINDOWSSystem32Driversusbvideo.sys [2008-04-14 121984]
S3 WpdUsb;WpdUsb; C:WINDOWSsystem32DRIVERSwpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;World Standard Teletext Codec; C:WINDOWSsystem32DRIVERSWSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation — User-mode Driver Framework Reflector; C:WINDOWSsystem32DRIVERSwudfrd.sys [2006-09-28 82944]======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ekrn;ESET Service; C:Program FilesESETESET NOD32 Antivirusekrn.exe [2009-11-16 735960]
R2 hpqddsvc;HP CUE DeviceDiscovery Service; C:WINDOWSsystem32svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:Program FilesJavajre6binjqs.exe [2011-11-17 153376]
R2 MDM;Machine Debug Manager; C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE [2006-10-26 335872]
R2 Net Driver HPZ12;Net Driver HPZ12; C:WINDOWSSystem32svchost.exe [2008-04-14 14336]
R2 nvsvc;NVIDIA Display Driver Service; C:WINDOWSsystem32nvsvc32.exe [2009-11-20 154216]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:WINDOWSSystem32svchost.exe [2008-04-14 14336]
R2 PnkBstrA;PnkBstrA; C:WINDOWSsystem32PnkBstrA.exe [2010-06-20 66872]
R2 WudfSvc;Windows Driver Foundation — User-mode Driver Framework; C:WINDOWSsystem32svchost.exe [2008-04-14 14336]
R3 hpqcxs08;hpqcxs08; C:WINDOWSsystem32svchost.exe [2008-04-14 14336]
S2 gupdate;Служба Google Update (gupdate); C:Program FilesGoogleUpdateGoogleUpdate.exe [2010-02-12 135664]
S2 SSHNAS;SSHNAS; C:WINDOWSsystem32svchost.exe [2008-04-14 14336]
S3 Adobe LM Service;Adobe LM Service; C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe [2010-10-25 72704]
S3 aspnet_state;ASP.NET State Service; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:Program FilesESETESET NOD32 AntivirusEHttpSrv.exe [2009-11-16 20680]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:WINDOWSMicrosoft.NETFrameworkv3.0WPFPresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;שירות עדכון Google (gupdatem); C:Program FilesGoogleUpdateGoogleUpdate.exe [2010-02-12 135664]
S3 gusvc;Google Software Updater; C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe [2010-02-12 182768]
S3 IDriverT;InstallDriver Table Manager; C:Program FilesCommon FilesInstallShieldDriver1050Intel 32IDriverT.exe [2004-10-22 73728]
S3 idsvc;Windows CardSpace; C:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication Foundationinfocard.exe [2008-07-29 881664]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:Program FilesMcAfee Security Scan2.0.181McCHSvc.exe [2010-01-15 227232]
S3 NBService;NBService; C:Program FilesNeroNero 7Nero BackItUpNBService.exe [2007-06-29 800040]
S3 NMIndexingService;NMIndexingService; C:Program FilesCommon FilesAheadLibNMIndexingService.exe [2007-06-27 279848]
S3 odserv;Microsoft Office Diagnostics Service; C:Program FilesCommon FilesMicrosoft SharedOFFICE12ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:Program FilesCommon FilesMicrosoft SharedSource EngineOSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:Program FilesWindows Media PlayerWMPNetwk.exe [2006-10-18 913408]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication FoundationSMSvcHost.exe [2008-07-29 132096]
EOF
28 марта, 2012 в 7:01 дп #32622Здравствуйте!Добро пожаловать на форум!Прошу прощения, меня очень долго не было, по некоторым обстоятельствам.
Нужно сделать лог Combofix(просто кликните сюда) -
АвторСообщения
- Тема ‘помогите, всплывающие окна’ закрыта для новых сообщений.