Удаление вирусов и троянов. Защита компьютера. › Помощь в удалении вирусов, троянов, рекламы и других зловредов › Срочно нужна помощь2!!!
- This topic has 4 ответа, 2 участника, and was last updated 13 years, 10 months назад by ADREAN.
-
АвторСообщения
-
24 января, 2011 в 8:37 дп #18949
Было открыто сообщение по почте с прикрепленным файлом,понимаю что зря,но увы:))Что делать!?После этого открытия не просматриваются ни одна фотография на компе!?При включении компа выскакивает блокнот:ќля возврата файлов посетите http://oplata.iblogger.org/
.Теперь все файлы с фото заблокированы!!!!Антивирусник ничего не находит!Обращался на сайт Доктор Веб.но пока они отдали мою проблему на вирусный мониторинг!Прикрепляю файлы результата сканирования RSIT:
Run by Hom at 2011-01-24 11:24:45
Microsoft Windows XP Professional Service Pack 3
System drive C: has 45 GB (45%) free of 101 GB
Total RAM: 2047 MB (67% free)Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:24:50, on 24.01.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: NormalRunning processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32Ati2evxx.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32Ati2evxx.exe
C:Program FilesAlwil SoftwareAvast5AvastSvc.exe
C:WINDOWSsystem32spoolsv.exe
C:Program FilesUniblueRegistryBoosterrbmonitor.exe
C:WINDOWSRTHDCPL.EXE
C:Program FilesAlwil SoftwareAvast5avastUI.exe
C:Program FilesMail.RuAgentMAgent.exe
C:WINDOWSsystem32ctfmon.exe
C:WINDOWSsystem32NOTEPAD.EXE
C:WINDOWSsystem32dgdersvc.exe
C:WINDOWSsystem32FsUsbExService.Exe
C:Program FilesJavajre6binjqs.exe
C:WINDOWSsystem32svchost.exe
C:Program Files3D-RelaxNatural Beauty TrialtrioService.exe
C:WINDOWSsystem32wbemwmiapsrv.exe
C:WINDOWSexplorer.exe
C:Program FilesMozilla Firefoxfirefox.exe
C:Program FilesMozilla Firefoxplugin-container.exe
C:Documents and SettingsHomМои документыЗагрузкиRSIT.exe
C:Program Filestrend microHom.exeR1 — HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://qip.ru
R1 — HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://search.qip.ru
R1 — HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://search.qip.ru/ie
R1 — HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://search.qip.ru
R0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = about:blank
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 — HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = about:blank
R1 — HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = http://search.qip.ru/ie
R0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Local Page =
R0 — HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Ссылки
R3 — URLSearchHook: (no name) — {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} — (no file)
R3 — URLSearchHook: Спутник@Mail.Ru — {09900DE8-1DCA-443F-9243-26FF581438AF} — C:Program FilesMail.RuSputnikMailRuSputnik.dll
R3 — URLSearchHook: DVDVideoSoftTB Toolbar — {872b5b88-9db5-4310-bdd0-ac189557e5f5} — C:Program FilesDVDVideoSoftTBtbDVD0.dll
F2 — REG:system.ini: UserInit=c:windowssystem32userinit.exe,c:windowssystem321c72edb0.exe,
O2 — BHO: Yahoo! Toolbar Helper — {02478D38-C3F9-4EFB-9B51-7695ECA05670} — C:Program FilesYahoo!CompanionInstallscpn0yt.dll
O2 — BHO: AcroIEHelperStub — {18DF081C-E8AD-4283-A596-FA578C2EBDC3} — C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelperShim.dll
O2 — BHO: Conduit Engine — {30F9B915-B755-4826-820B-08FBA6BD249D} — C:Program FilesConduitEngineConduitEngine.dll
O2 — BHO: Increase performance and video formats for your HTML5—
End of file — 11699 bytes======Scheduled tasks folder======
C:WINDOWStasksGoogleUpdateTaskMachineCore.job
C:WINDOWStasksGoogleUpdateTaskMachineUA.job
C:WINDOWStasksOGALogon.job
C:WINDOWStasksPCConfidential.job
C:WINDOWStasksRegistryBooster.job
C:WINDOWStasksUser_Feed_Synchronization-{0EE42DE0-F835-4283-91F9-2427C9FB9196}.job======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
Yahoo! Toolbar Helper — C:Program FilesYahoo!CompanionInstallscpn0yt.dll [2006-10-26 440384][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper — C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelperShim.dll [2010-09-22 75200][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine — C:Program FilesConduitEngineConduitEngine.dll [2010-10-18 3908192][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{52CFF9E4-5FCD-460E-B476-7953788CA004}]
Бар знакомств 2 — C:Documents and SettingsHomApplication DataMambamambabar2iemambabar2_ie.dll [2010-09-13 2780328][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{593DDEC6-7468-4cdd-90E1-42DADAA222E9}]
DivX HiQ — C:Program FilesDivXDivX Plus Web Playernpdivx32.dll [2010-12-09 3123072][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
DVDVideoSoftTB Toolbar — C:Program FilesDVDVideoSoftTBtbDVD0.dll [2010-10-18 3908192][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{8984B388-A5BB-4DF7-B274-77B879E179DB}]
MailRuBHO Class — C:Program FilesMail.RuSputnikMailRuSputnik.dll [2010-11-25 1243320][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper — C:Program FilesGoogleGoogle ToolbarGoogleToolbar_32.dll [2011-01-07 297648][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO — C:Program FilesGoogleGoogleToolbarNotifier5.6.5805.1910swg.dll [2010-10-24 843832][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{C93F72A2-2162-4BBA-A07A-F13663C297A6}]
Визуальные Закладки — C:Program FilesYandexYandexBarIEfastdial.dll [2010-12-27 1785144][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper — C:Program FilesJavajre6binjp2ssv.dll [2010-11-24 41760][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class — C:Program FilesJavajre6libdeployjqsiejqs_plugin.dll [2010-11-24 79648][HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} — Yahoo! Toolbar — C:Program FilesYahoo!CompanionInstallscpn0yt.dll [2006-10-26 440384]
{6E6E744E-4D20-4ce3-9A7A-26DFFFE22F68} —
{91397D20-1446-11D4-8AF4-0040CA1127B6} — Яндекс.Бар — C:Program FilesYandexYandexBarIEyndbar.dll [2010-12-27 11900216]
{52CFF9E4-5FCD-460E-B476-7953788CA004} — Бар знакомств 2 — C:Documents and SettingsHomApplication DataMambamambabar2iemambabar2_ie.dll [2010-09-13 2780328]
{09900DE8-1DCA-443F-9243-26FF581438AF} — Спутник@Mail.Ru — C:Program FilesMail.RuSputnikMailRuSputnik.dll [2010-11-25 1243320]
{10EDB994-47F8-43F7-AE96-F2EA63E9F90F}
{2318C2B1-4965-11d4-9B18-009027A5CD4F} — Google Toolbar — C:Program FilesGoogleGoogle ToolbarGoogleToolbar_32.dll [2011-01-07 297648]
{872b5b88-9db5-4310-bdd0-ac189557e5f5} — DVDVideoSoftTB Toolbar — C:Program FilesDVDVideoSoftTBtbDVD0.dll [2010-10-18 3908192][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«RTHDCPL»=C:WINDOWSRTHDCPL.EXE [2010-02-22 18791456]
«avast5″=C:Program FilesAlwil SoftwareAvast5avastUI.exe [2011-01-13 3396624]
«MAgent»=C:Program FilesMail.RuAgentMAgent.exe [2010-11-25 12319424]
«KernelFaultCheck»=C:WINDOWSsystem32dumprep 0 -k [][HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
«ctfmon.exe»=C:WINDOWSsystem32ctfmon.exe [2009-08-09 37376]
«swg»=C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe [2010-03-26 39408][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregB Register C:]
[][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregctfmon.exe]
C:WINDOWSsystem32ctfmon.exe [2009-08-09 37376][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregswg]
C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe [2010-03-26 39408][HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupreguTorrent]
C:Program FilesuTorrentuTorrent.exe [2010-12-22 395640]C:Documents and SettingsHomГлавное менюПрограммыАвтозагрузка
inf.txt[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyAtiExtEvent]
C:WINDOWSsystem32Ati2evxx.dll [2009-11-04 155648][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionShellServiceObjectDelayLoad]
WPDShServiceObj — {AAA288BA-9A4C-45B0-95D7-94D524869DB5} — C:WINDOWSsystem32wpdshserviceobj.dll [2007-06-18 133632][HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalPEVSystemStart]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalprocexp90.Sys]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalWdf01000.sys]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkPEVSystemStart]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkprocexp90.Sys]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkWdf01000.sys]
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
«dontdisplaylastusername»=0
«legalnoticecaption»=
«legalnoticetext»=
«shutdownwithoutlogon»=1
«undockwithoutlogon»=1
«DisableTaskMgr»=0
«NoDispCPL»=0[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«NoDriveTypeAutoRun»=323
«NoDriveAutoRun»=67108863[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«HonorAutoRunSetting»=1
«NoDriveAutoRun»=67108863
«NoDriveTypeAutoRun»=323[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»
«C:Program FilesuTorrentuTorrent.exe»=»C:Program FilesuTorrentuTorrent.exe:*:Enabled:µTorrent»
«C:Program FilesSkypePlugin ManagerskypePM.exe»=»C:Program FilesSkypePlugin ManagerskypePM.exe:*:Enabled:Skype Extras Manager»
«C:WINDOWSsystem32sessmgr.exe»=»C:WINDOWSsystem32sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019»
«C:Program FilesSamsungSamsung New PC Studionpsasvr.exe»=»C:Program FilesSamsungSamsung New PC Studionpsasvr.exe:*:Enabled:KTF MUSIC AoD Server»
«C:Program FilesSamsungSamsung New PC Studionpsvsvr.exe»=»C:Program FilesSamsungSamsung New PC Studionpsvsvr.exe:*:Enabled:KTF MUSIC VoD Server»
«C:Program FilesRedStarPokerRedStar.exe»=»C:Program FilesRedStarPokerRedStar.exe:*:Enabled:Red Star Poker»
«C:Program FilesMail.RuAgentmagent.exe»=»C:Program FilesMail.RuAgentmagent.exe:*:Enabled:Mail.Ru Агент»
«C:WINDOWSsystem32muzapp.exe»=»C:WINDOWSsystem32muzapp.exe:*:Enabled:MUZ AOD APP player»
«C:Program FilesMail.RuSputnikSputnikFlashPlayer.exe»=»C:Program FilesMail.RuSputnikSputnikFlashPlayer.exe:*:Enabled:Sputnik@Mail.Ru flash player»
«C:Program FilesMail.RuSputnikSputnikHelper.exe»=»C:Program FilesMail.RuSputnikSputnikHelper.exe:*:Enabled:Sputnik@Mail.Ru helper object»
«C:Program FilesRed Star Poker 2.0PokerClient.exe»=»C:Program FilesRed Star Poker 2.0PokerClient.exe:*:Enabled:Red Star Poker 2.0»
«C:Program FilesSkypePhoneSkype.exe»=»C:Program FilesSkypePhoneSkype.exe:*:Enabled:Skype»[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»======List of files/folders created in the last 1 months======
2011-01-24 11:24:45 —-D—- C:rsit
2011-01-21 11:13:19 —-D—- C:Program FilesTrend Micro
2011-01-21 10:57:37 —-A—- C:Boot.bak
2011-01-21 10:57:34 —-RASHD—- C:cmdcons
2011-01-21 10:56:01 —-SD—- C:ComboFix
2011-01-21 07:34:03 —-A—- C:WINDOWSntbtlog.txt
2011-01-20 11:31:07 —-D—- C:Program FilesAdobe Systems,inc
2011-01-12 11:29:54 —-D—- C:Program FilesPinnacle
2011-01-12 11:29:11 —-D—- C:Documents and SettingsAll UsersApplication DataPinnacle
2011-01-12 11:06:12 —-A—- C:WINDOWSeSellerateEngine.dll
2011-01-12 11:06:03 —-A—- C:WINDOWSsystem32Unicows.dll
2011-01-12 07:56:31 —-D—- C:Documents and SettingsHomApplication DataNetscape
2011-01-12 07:56:25 —-D—- C:Program FilesPhotodex
2011-01-12 07:53:20 —-D—- C:Documents and SettingsHomApplication DataPhotodex
2011-01-12 07:48:56 —-HDC—- C:WINDOWS$NtUninstallKB2419632$
2011-01-11 22:02:00 —-D—- C:Documents and SettingsHomApplication DataLocal
2011-01-11 18:30:55 —-D—- C:Program FilesConduitEngine
2011-01-11 18:30:55 —-A—- C:WINDOWSsystem32ConduitEngine.tmp
2011-01-11 18:30:32 —-D—- C:Documents and SettingsHomApplication DataPriceGong
2011-01-11 18:30:16 —-D—- C:Program FilesDVDVideoSoftTB
2011-01-11 18:30:07 —-D—- C:Documents and SettingsHomApplication DataDVDVideoSoft
2011-01-11 18:30:05 —-D—- C:Program FilesDVDVideoSoft
2011-01-11 18:30:05 —-D—- C:Program FilesCommon FilesDVDVideoSoft
2011-01-11 18:26:26 —-D—- C:Program FilesQuickTime
2011-01-11 18:26:25 —-D—- C:Program FilesImTOO
2011-01-11 14:26:15 —-A—- C:WINDOWSsystem32javaws.exe
2011-01-11 14:26:15 —-A—- C:WINDOWSsystem32javaw.exe
2011-01-11 14:26:15 —-A—- C:WINDOWSsystem32java.exe
2011-01-07 09:12:19 —-D—- C:Documents and SettingsHomApplication DataPacificPoker
2011-01-07 09:12:02 —-D—- C:Program FilesPacificPoker
2011-01-07 05:31:57 —-A—- C:WINDOWSsystem32ksp713x.dll
2011-01-07 05:29:55 —-A—- C:WINDOWSsystem32driversAtihdXP3.sys
2011-01-07 05:04:44 —-HDC—- C:Documents and SettingsAll UsersApplication Data{DE8EABB5-1C85-4410-A68D-79BD8A4518F4}
2011-01-07 05:04:43 —-D—- C:Program FilesUniblue======List of files/folders modified in the last 1 months======
2011-01-24 11:24:49 —-D—- C:WINDOWSPrefetch
2011-01-24 11:21:04 —-D—- C:WINDOWStemp
2011-01-24 10:30:00 —-A—- C:WINDOWSSchedLgU.Txt
2011-01-23 20:05:42 —-D—- C:Documents and SettingsHomApplication DataMicrogaming
2011-01-23 20:05:08 —-D—- C:Program FilesPokerStars.NET
2011-01-23 20:04:26 —-D—- C:Program FilesRedStarPoker
2011-01-21 17:03:50 —-D—- C:WINDOWS
2011-01-21 16:54:57 —-D—- C:WINDOWSsystem32
2011-01-21 16:54:03 —-D—- C:WINDOWSsystem32drivers
2011-01-21 11:43:41 —-D—- C:WINDOWSsystem32CatRoot2
2011-01-21 11:13:19 —-D—- C:Program Files
2011-01-21 11:01:18 —-SHD—- C:System Volume Information
2011-01-21 11:01:18 —-D—- C:WINDOWSsystem32Restore
2011-01-21 11:01:04 —-D—- C:WINDOWSMinidump
2011-01-21 10:59:10 —-D—- C:WINDOWSAppPatch
2011-01-21 10:59:09 —-D—- C:Program FilesCommon Files
2011-01-21 10:57:37 —-RASH—- C:boot.ini
2011-01-21 10:56:17 —-D—- C:Qoobox
2011-01-21 10:56:12 —-D—- C:WINDOWSERDNT
2011-01-19 07:33:02 —-D—- C:Documents and SettingsHomApplication DataMedia Player Classic
2011-01-13 11:47:32 —-A—- C:WINDOWSsystem32aswBoot.exe
2011-01-13 11:16:29 —-D—- C:Program FilesMozilla Firefox
2011-01-12 14:53:11 —-D—- C:WINDOWSDebug
2011-01-12 14:43:43 —-SHD—- C:WINDOWSInstaller
2011-01-12 14:43:27 —-SHD—- C:Config.Msi
2011-01-12 14:43:15 —-D—- C:WINDOWSWinSxS
2011-01-12 14:43:14 —-RSD—- C:WINDOWSFonts
2011-01-12 11:06:03 —-HD—- C:WINDOWSinf
2011-01-12 07:56:31 —-D—- C:Documents and SettingsHomApplication DataMozilla
2011-01-12 07:49:05 —-A—- C:WINDOWSsystem32MRT.exe
2011-01-12 07:48:58 —-D—- C:WINDOWSsystem32dllcache
2011-01-12 07:48:53 —-HD—- C:WINDOWS$hf_mig$
2011-01-12 01:19:04 —-D—- C:WINDOWSsystem32ReinstallBackups
2011-01-12 01:18:14 —-A—- C:WINDOWSsystem32RtNicProp32.dll
2011-01-11 22:02:38 —-D—- C:Documents and SettingsAll UsersApplication DataDivX
2011-01-11 22:02:01 —-D—- C:Program FilesDivX
2011-01-11 18:30:17 —-D—- C:Program FilesConduit
2011-01-11 14:25:59 —-D—- C:Program FilesJava
2011-01-10 06:25:05 —-D—- C:Documents and SettingsHomApplication DatauTorrent
2011-01-09 17:22:18 —-D—- C:Documents and SettingsHomApplication DataYandex
2011-01-07 05:49:12 —-A—- C:WINDOWSsystem32PerfStringBackup.INI
2011-01-07 05:42:58 —-D—- C:WINDOWSsystem32config
2011-01-07 05:11:26 —-D—- C:Documents and SettingsHomApplication DataUniblue
2011-01-07 05:04:52 —-SD—- C:WINDOWSTasks
2011-01-05 17:44:33 —-D—- C:Documents and SettingsHomApplication DataSkype
2011-01-05 17:17:20 —-D—- C:Documents and SettingsHomApplication DataskypePM
2010-12-28 13:34:06 —-D—- C:Program FilesRed Star Poker 2.0
2010-12-26 21:51:11 —-HDC—- C:WINDOWS$NtUninstallKB2467659$
2010-12-26 21:51:11 —-HDC—- C:WINDOWS$NtUninstallKB2436673$
2010-12-26 21:51:11 —-HDC—- C:WINDOWS$NtUninstallKB2423089$======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:WINDOWSSystem32DriversPxHelp20.sys [2010-07-12 45648]
R0 WudfPf;Windows Driver Foundation — User-mode Driver Framework Platform Driver; C:WINDOWSsystem32DRIVERSWudfPf.sys [2008-01-18 77696]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:WINDOWSsystem32driversAavmker4.sys [2011-01-13 29392]
R1 aswRdr;aswRdr; C:WINDOWSsystem32driversaswRdr.sys [2011-01-13 23632]
R1 aswSP;aswSP; C:WINDOWSsystem32driversaswSP.sys [2011-01-13 294608]
R1 aswTdi;avast! Network Shield Support; C:WINDOWSsystem32driversaswTdi.sys [2011-01-13 47440]
R1 intelppm;Драйвер Intel процессора; C:WINDOWSsystem32DRIVERSintelppm.sys [2008-04-15 40704]
R2 aswFsBlk;aswFsBlk; C:WINDOWSsystem32driversaswFsBlk.sys [2011-01-13 17744]
R2 aswMon2;avast! Standard Shield Support; C:WINDOWSsystem32driversaswMon2.sys [2011-01-13 100176]
R2 exFat;exFat; C:WINDOWSsystem32driversexFat.sys [2009-01-28 133632]
R2 NwlnkIpx;NWLink IPX/SPX/NetBIOS-совместимый транспортный протокол; C:WINDOWSsystem32DRIVERSnwlnkipx.sys [2008-04-15 88320]
R2 NwlnkNb;NWLink NetBIOS; C:WINDOWSsystem32DRIVERSnwlnknb.sys [2008-04-15 63232]
R2 NwlnkSpx;Протокол NWLink SPX/SPXII; C:WINDOWSsystem32DRIVERSnwlnkspx.sys [2008-04-15 55936]
R2 rspndr;Ответчик обнаружения топологии уровня связи; C:WINDOWSsystem32DRIVERSrspndr.sys [2008-10-11 62848]
R3 ati2mtag;ati2mtag; C:WINDOWSsystem32DRIVERSati2mtag.sys [2009-11-04 4423168]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:WINDOWSsystem32driversAtihdXP3.sys [2011-01-07 101904]
R3 dgderdrv;dgderdrv; C:WINDOWSSystem32driversdgderdrv.sys [2010-10-25 18120]
R3 FsUsbExDisk;FsUsbExDisk; ??C:WINDOWSsystem32FsUsbExDisk.SYS []
R3 HDAudBus;Драйвер шины Microsoft UAA для High Definition Audio; C:WINDOWSsystem32DRIVERSHDAudBus.sys [2008-04-15 144384]
R3 hidusb;Драйвер класса HID Microsoft; C:WINDOWSsystem32DRIVERShidusb.sys [2008-04-15 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:WINDOWSsystem32driversRtkHDAud.sys [2010-02-22 5862432]
R3 mouhid;Драйвер мыши HID; C:WINDOWSsystem32DRIVERSmouhid.sys [2008-04-15 12160]
R3 NWRDR;NetWare Rdr; C:WINDOWSsystem32DRIVERSnwrdr.sys [2008-04-15 163584]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:WINDOWSsystem32DRIVERSRtenicxp.sys [2011-01-12 225232]
R3 SAA713x;Behold TV WDM Capture (SAA713x); C:WINDOWSsystem32DRIVERSsaa713x.sys [2011-01-07 186512]
R3 usbuhci;Драйвер минипорта Microsoft USB универсального хост-контроллера; C:WINDOWSsystem32DRIVERSusbuhci.sys [2008-04-14 20608]
S2 713xTVCard;SAA7133 TV Card; C:WINDOWSsystem32DRIVERSSAA713x.sys [2011-01-07 186512]
S3 Ambfilt;Ambfilt; C:WINDOWSsystem32driversAmbfilt.sys [2009-11-18 1691480]
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:WINDOWSsystem32driversAtiHdmi.sys [2010-01-28 95232]
S3 catchme;catchme; ??C:DOCUME~1HomLOCALS~1Tempcatchme.sys []
S3 CCDECODE;Closed Caption декодер; C:WINDOWSsystem32DRIVERSCCDECODE.sys [2008-04-14 17024]
S3 Monfilt;Monfilt; C:WINDOWSsystem32driversMonfilt.sys [2009-11-18 1395800]
S3 MSTEE;Преобразователь потоков Tee/Sink-to-Sink Microsoft; C:WINDOWSsystem32driversMSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI кодек; C:WINDOWSsystem32DRIVERSNABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft видео или ТВ подключение; C:WINDOWSsystem32DRIVERSNdisIP.sys [2008-04-14 10880]
S3 nmwcd;Nokia USB Phone Parent; C:WINDOWSsystem32driversccdcmb.sys [2008-05-02 17536]
S3 nmwcdc;Nokia USB Generic; C:WINDOWSsystem32driversccdcmbo.sys [2008-05-02 20864]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:WINDOWSsystem32DRIVERSpccsmcfd.sys [2008-08-26 18816]
S3 RTHDMIAzAudService;Service for HDMI; C:WINDOWSsystem32driversRtKHDMI.sys [2009-09-25 4241792]
S3 SLIP;BDA Slip De-Framer; C:WINDOWSsystem32DRIVERSSLIP.sys [2008-04-14 11136]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:WINDOWSsystem32DRIVERSss_bbus.sys [2010-04-27 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:WINDOWSsystem32DRIVERSss_bmdfl.sys [2010-04-27 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:WINDOWSsystem32DRIVERSss_bmdm.sys [2010-04-27 123648]
S3 sscebus;SAMSUNG USB Composite Device V2 driver (WDM); C:WINDOWSsystem32DRIVERSsscebus.sys [2010-04-27 98560]
S3 sscemdfl;SAMSUNG Mobile Modem V2 Filter; C:WINDOWSsystem32DRIVERSsscemdfl.sys [2010-04-27 14848]
S3 sscemdm;SAMSUNG Mobile Modem V2 Drivers; C:WINDOWSsystem32DRIVERSsscemdm.sys [2010-04-27 123648]
S3 streamip;BDA IPSink; C:WINDOWSsystem32DRIVERSStreamIP.sys [2008-04-14 15232]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; ??C:Program FilesTuneUp Utilities 2010TuneUpUtilitiesDriver32.sys []
S3 usbprint;Класс принтеров Microsoft USB; C:WINDOWSsystem32DRIVERSusbprint.sys [2008-04-13 25856]
S3 USBSTOR;Драйвер запоминающих устройств для USB; C:WINDOWSsystem32DRIVERSUSBSTOR.SYS [2008-04-13 26368]
S3 Wdf01000;Wdf01000; C:WINDOWSsystem32DRIVERSWdf01000.sys [2008-03-27 503008]
S3 WpdUsb;WpdUsb; C:WINDOWSsystem32DRIVERSwpdusb.sys [2007-06-18 38528]
S3 WSTCODEC;World Standard Teletext кодек; C:WINDOWSsystem32DRIVERSWSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation — User-mode Driver Framework Reflector; C:WINDOWSsystem32DRIVERSwudfrd.sys [2008-01-18 83328]
S4 dwshd;dwshd; C:WINDOWSSystem32driversdwshd.sys []
S4 sptd;sptd; C:WINDOWSSystem32Driverssptd.sys [2009-09-16 721904]
S4 WS2IFSL;Среда Windows Socket 2.0 поддержки поставщиков не-IFS служб; C:WINDOWSSystem32driversws2ifsl.sys [2008-04-15 12032]======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:WINDOWSsystem32Ati2evxx.exe [2009-11-04 602112]
R2 avast! Antivirus;avast! Antivirus; C:Program FilesAlwil SoftwareAvast5AvastSvc.exe [2011-01-13 40384]
R2 dgdersvc;Device Error Recovery Service; C:WINDOWSsystem32dgdersvc.exe [2010-10-25 95568]
R2 FsUsbExService;FsUsbExService; C:WINDOWSsystem32FsUsbExService.Exe [2010-07-29 238952]
R2 JavaQuickStarterService;Java Quick Starter; C:Program FilesJavajre6binjqs.exe [2010-11-12 153376]
R2 NWCWorkstation;Клиент для сетей NetWare; C:WINDOWSsystem32svchost.exe [2008-04-15 14336]
R2 trioService;trioService; C:Program Files3D-RelaxNatural Beauty TrialtrioService.exe [2007-02-22 69632]
R2 WudfSvc;Windows Driver Foundation — User-mode Driver Framework; C:WINDOWSsystem32svchost.exe [2008-04-15 14336]
S2 ATI Smart;ATI Smart; C:WINDOWSsystem32ati2sgag.exe [2009-01-13 593920]
S2 gupdate1ca3a1cdc24a14;Служба Google Update (gupdate1ca3a1cdc24a14); C:Program FilesGoogleUpdateGoogleUpdate.exe [2009-09-20 133104]
S2 jwlshm;Shell Time; C:WINDOWSsystem32svchost.exe [2008-04-15 14336]
S3 aspnet_state;Служба состояний ASP.NET; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:WINDOWSMicrosoft.NETFrameworkv3.0WPFPresentationFontCache.exe [2008-07-29 46104]
S3 getPlusHelper;getPlus(R) Helper; C:WINDOWSSystem32svchost.exe [2008-04-15 14336]
S3 gusvc;Google Software Updater; C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe [2010-03-26 182768]
S3 idsvc;Windows CardSpace; C:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication Foundationinfocard.exe [2008-07-29 881664]
S3 KiesAllShare;SAMSUNG KiesAllShare Service; C:Program FilesSamsungKiesWiselinkProWiselinkPro.exe [2010-05-04 9241088]
S3 ose;Office Source Engine; C:Program FilesCommon FilesMicrosoft SharedSource EngineOSE.EXE [2003-07-28 89136]
S3 ServiceLayer;ServiceLayer; C:Program FilesPC Connectivity SolutionServiceLayer.exe [2008-11-11 620544]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service; C:Program FilesTuneUp Utilities 2010TuneUpDefragService.exe [2010-11-01 435016]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:Program FilesWindows Media Playerwmpnetwk.exe [2006-10-18 913408]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication FoundationSMSvcHost.exe [2008-07-29 132096]
S4 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:Program FilesTuneUp Utilities 2010TuneUpUtilitiesService32.exe [2010-06-14 1051976]
S4 UxTuneUp;TuneUp Theme Extension; C:WINDOWSSystem32svchost.exe [2008-04-15 14336]
EOF
и ЕЩЕ:=====Uninstall list======—>rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:WINDOWSINFPCHealth.inf
µTorrent—>»C:Program FilesuTorrentuTorrent.exe» /UNINSTALL
3GP Video Converter 3—>C:Program FilesImTOO3GP Video Converter 3Uninstall.exe
888poker—>C:PROGRA~1PACIFI~1UNWISE.EXE C:PROGRA~1PACIFI~1INSTALL.LOG
Acrobat.com—>msiexec /qb /x {6D8D64BE-F500-55B6-705D-DFD08AFE0624}
Acrobat.com—>MsiExec.exe /I{6D8D64BE-F500-55B6-705D-DFD08AFE0624}
Adobe AIR—>c:Program FilesCommon FilesAdobe AIRVersions1.0ResourcesAdobe AIR Updater.exe -arp:uninstall
Adobe AIR—>MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
Adobe Download Manager—>»C:WINDOWSsystem32rundll32.exe» «C:Program FilesNOSbingetPlus_Helper.dll»,Uninstall /Get1
Adobe Flash Player 10 ActiveX—>C:WINDOWSsystem32MacromedFlashFlashUtil10l_ActiveX.exe -maintain activex
Adobe Flash Player 10 Plugin—>C:WINDOWSsystem32MacromedFlashFlashUtil10l_Plugin.exe -maintain plugin
Adobe Reader 9.4.1—>MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A94000000001}
ATI AVIVO Codecs—>MsiExec.exe /I{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}
ATI Catalyst Registration—>MsiExec.exe /X{72736F5F-520D-472A-88CC-7B02872FD34E}
ATI Display Driver—>rundll32 C:WINDOWSsystem32atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
ATI Parental Control & Encoder—>MsiExec.exe /I{36CDA33B-909B-4719-97D1-C4B99309BDC7}
avast! Free Antivirus—>C:Program FilesAlwil SoftwareAvast5aswRunDll.exe «C:Program FilesAlwil SoftwareAvast5Setupsetiface.dll» RunSetup
bwin Poker—>»C:bwinPokerunins000.exe»
Catalyst Control Center — Branding—>MsiExec.exe /I{8D7133DE-27D2-47E5-B248-4180278D32AA}
CCleaner—>»C:Program FilesCCleaneruninst.exe»
CD_DRV_93—>»C:WINDOWSunins000.exe»
DivX Codec 3.1alpha release—>C:WINDOWSsystem32rundll32.exe setupapi,InstallHinfSection Remove_DivX 132 C:WINDOWSINFDivX.inf
DivX Plus DirectShow Filters—>C:Documents and SettingsAll UsersApplication DataDivXDivX7DivX Plus DirectShow FiltersDivXDSFiltersUninstall.exe /DSFILTERS
DivX Setup—>C:Documents and SettingsAll UsersApplication DataDivXSetupDivXSetup.exe /uninstall /bundleGroupId divx.com
DriverMax 4—>»C:Program FilesInnovative SolutionsDriverMaxunins000.exe»
DVDVideoSoftTB Toolbar—>C:PROGRA~1DVDVID~2UNWISE.EXE /U C:PROGRA~1DVDVID~2INSTALL.LOG
EuroPoker—>»C:Europokerunins000.exe»
Flash Video Decoder — Digital Access—>\.globalrootsystemrootsystem32usеrinit.exe /uninstall
Free 3GP Video Converter version 3.7.18—>»C:Program FilesDVDVideoSoftFree 3GP Video Converterunins000.exe»
Google Chrome—>»C:Program FilesGoogleChromeApplication8.0.552.237Installersetup.exe» —uninstall —system-level
Google Toolbar for Internet Explorer—>»C:Program FilesGoogleGoogle ToolbarComponentGoogleToolbarManager_4079369A224CB572.exe» /uninstall
Google Toolbar for Internet Explorer—>MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Update Helper—>MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
High Pulse—>MsiExec.exe /X{AC05AC51-5E65-448C-B555-CF956768B76C}
HijackThis 2.0.2—>»C:Program FilesTrend MicroHijackThisHijackThis.exe» /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)—>C:WINDOWSsystem32msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=»»
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)—>C:WINDOWSsystem32msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=»»
IE browser securing module—>c:Program FilesI-Torinet-warezuninstall.bat
Java(TM) 6 Update 23—>MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216015FF}
Kies—>»C:Program FilesInstallShield Installation Information{D6CD26FD-CD7F-4C86-96A3-EEBFABE5FE47}Setup.exe» -runfromtemp -l0x0419 -removeonly
Kies—>MsiExec.exe /X{D6CD26FD-CD7F-4C86-96A3-EEBFABE5FE47}
K-Lite Mega Codec Pack 4.9.0—>»C:Program FilesK-Lite Codec Packunins000.exe»
Mail.Ru Агент 5.7 (сборка 3789, для всех пользователей)—>C:Program FilesMail.RuAgentmagentsetup.exe -uninstalllm
Mail.Ru Спутник 2.3.0.301—>»C:Program FilesMail.RuSputnikmailrusputnik.exe» uninstall
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack — RUS—>MsiExec.exe /I{736D8DEB-66C6-3655-9D59-DF6493A81F77}
Microsoft .NET Framework 2.0 Service Pack 2—>MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack — RUS—>MsiExec.exe /I{6CF6A814-CE65-39FC-BBBC-6CB340A4028B}
Microsoft .NET Framework 3.0 Service Pack 2—>MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 Language Pack SP1 — rus—>MsiExec.exe /I{2744791F-4E7C-32F5-AB40-AEC6A6C86DBF}
Microsoft .NET Framework 3.5 SP1—>C:WINDOWSMicrosoft.NETFrameworkv3.5Microsoft .NET Framework 3.5 SP1setup.exe
Microsoft .NET Framework 3.5 SP1—>MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Office — профессиональный выпуск версии 2003—>MsiExec.exe /I{90110419-6000-11D3-8CFE-0150048383C9}
Microsoft SQL Server 2008 Native Client—>MsiExec.exe /I{D9D937B0-E842-4130-9588-B948E876904A}
Microsoft SQL Server Compact 3.5 SP1 English—>MsiExec.exe /I{20753F0A-D82A-4D65-9DB6-5319570C75DB}
Microsoft Sync Framework Runtime v1.0 (x86)—>MsiExec.exe /I{D8602289-3787-4706-B8CB-94E2AA64F94B}
Microsoft Sync Framework Services v1.0 (x86)—>MsiExec.exe /I{8888DC40-A8D1-49F2-9669-27CAF5AB2AE4}
Microsoft Sync Services for ADO.NET v2.0 (x86)—>MsiExec.exe /I{974ADB21-3024-4B3B-9BE8-8A3D3481D1DA}
Microsoft Visual C++ 2005 ATL Update kb973923 — x86 8.0.50727.4053—>MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable—>MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 ATL Update kb973924 — x86 9.0.30729.4148—>MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
Microsoft Visual C++ 2008 Redistributable — x86 9.0.21022—>MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable — x86 9.0.30729.17—>MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable — x86 9.0.30729.4148—>MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft WSE 3.0 Runtime—>MsiExec.exe /X{E3E71D07-CD27-46CB-8448-16D4FB29AA13}
Mozilla Firefox (3.6.13)—>C:Program FilesMozilla Firefoxuninstallhelper.exe
MSVC80_x86_v2—>MsiExec.exe /I{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}
MSVC80_x86—>MsiExec.exe /I{212748BB-0DA5-46DE-82A1-403736DC9F27}
MSXML 4.0 SP3 Parser (KB973685)—>MsiExec.exe /I{859DFA95-E4A6-48CD-B88E-A3E483E89B44}
MSXML 4.0 SP3 Parser—>MsiExec.exe /I{196467F1-C11F-4F76-858B-5812ADC83B94}
MSXML 6.0 Parser (KB933579)—>MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
Nokia Connectivity Cable Driver—>RUNDLL32.EXE nsesetup.dll,DoNTUninst
OGA Notifier 2.0.0048.0—>MsiExec.exe /I{B2544A03-10D0-4E5E-BA69-0362FFC20D18}
PC Connectivity Solution—>MsiExec.exe /I{34610DE0-3C13-42CA-8E32-01FFA38AB6E8}
PokerStars.net—>»C:Program FilesPokerStars.NETPokerStarsUninstall.exe» /u:PokerStars.net
REALTEK GbE & FE Ethernet PCI-E NIC Driver—>C:Program FilesInstallShield Installation Information{C9BED750-1211-4480-B1A5-718A3BE15525}setup.exe -runfromtemp -removeonly
Realtek HDMI Audio Driver for ATI—>RtaUpd.exe -k -m -nrg2709
Realtek High Definition Audio Driver—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime1150Intel32Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}Setup.exe» -l0x19 -removeonly
Red Star Poker—>C:Program FilesRed Star Poker 2.0uninstall.exe
Samsung New PC Studio—>»C:Program FilesInstallShield Installation Information{F193FC0E-9E18-40FC-A974-509A1BDD240A}setup.exe» -runfromtemp -l0x0419 -removeonly
Samsung New PC Studio—>MsiExec.exe /X{F193FC0E-9E18-40FC-A974-509A1BDD240A}
SAMSUNG USB Driver for Mobile Phones—>C:Program FilesSamsungUSB DriversUninstall.exe
Security Update for CAPICOM (KB931906)—>MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)—>MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)—>C:WINDOWSsystem32msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A8894F19-59C8-38D2-8A75-36C0CCE56A5B} /qb+ REBOOTPROMPT=»»
Skype Toolbars—>MsiExec.exe /I{CD95D125-2992-4858-B3EF-5F6FB52FBAD6}
Skype™ 5.0—>MsiExec.exe /X{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}
The Lord of the Rings FREE Trial —>MsiExec.exe /X{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}
TuneUp Utilities—>C:Program FilesTuneUp Utilities 2010TUInstallHelper.exe —Trigger-Uninstall
Unibet—>C:MicrogamingPokerunibetpokerMPPinstall.exe -uninstall
Uniblue DriverScanner—>»C:Program FilesUniblueDriverScannerunins000.exe»
Uniblue RegistryBooster—>»C:Documents and SettingsAll UsersApplication Data{DE8EABB5-1C85-4410-A68D-79BD8A4518F4}rbia.exe» REMOVE=TRUE MODIFY=FALSE
Uniblue RegistryBooster—>C:Documents and SettingsAll UsersApplication Data{DE8EABB5-1C85-4410-A68D-79BD8A4518F4}rbia.exe
Uniblue SpeedUpMyPC—>»C:Program FilesUniblueSpeedUpMyPCunins000.exe»
Uninstall 1.0.0.1—>»C:Program FilesCommon FilesDVDVideoSoftunins000.exe»
Unlocker 1.9.0—>C:Program FilesUnlockeruninst.exe
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)—>C:WINDOWSsystem32msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=»»
VC80CRTRedist — 8.0.50727.4053—>MsiExec.exe /I{5EE7D259-D137-4438-9A5F-42F432EC0421}
VideoMate T , M , P Series Driver—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime 701Intel32Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{41E340F0-0BD6-4A87-AF29-E9E584471756}Setup.exe» -l0x9
Web Deployment Tool Release Candidate 1—>MsiExec.exe /I{C1DBECBB-6A81-483C-9D27-D9F121D12EBC}
Yahoo! Toolbar—>C:PROGRA~1Yahoo!Commonunyt.exe
Архиватор WinRAR—>C:Program FilesWinRARuninstall.exe
Бар Знакомств 2.4.5—>C:Documents and SettingsHomApplication DataMambamambabar2ieuninst.exe
Дополнительные апплеты—>»C:WINDOWSsystem32CPLDAPUunins000.exe»
Обновление безопасности для Windows Internet Explorer 8 (KB2183461)—>»C:WINDOWSie8updatesKB2183461-IE8spuninstspuninst.exe»
Обновление безопасности для Windows Internet Explorer 8 (KB2360131)—>»C:WINDOWSie8updatesKB2360131-IE8spuninstspuninst.exe»
Обновление безопасности для Windows Internet Explorer 8 (KB2416400)—>»C:WINDOWSie8updatesKB2416400-IE8spuninstspuninst.exe»
Обновление безопасности для Windows Internet Explorer 8 (KB971961)—>»C:WINDOWSie8updatesKB971961-IE8spuninstspuninst.exe»
Обновление безопасности для Windows Internet Explorer 8 (KB974455)—>»C:WINDOWSie8updatesKB974455-IE8spuninstspuninst.exe»
Обновление безопасности для Windows Internet Explorer 8 (KB976325)—>»C:WINDOWSie8updatesKB976325-IE8spuninstspuninst.exe»
Обновление безопасности для Windows Internet Explorer 8 (KB978207)—>»C:WINDOWSie8updatesKB978207-IE8spuninstspuninst.exe»
Обновление безопасности для Windows Internet Explorer 8 (KB981332)—>»C:WINDOWSie8updatesKB981332-IE8spuninstspuninst.exe»
Обновление безопасности для Windows Internet Explorer 8 (KB982381)—>»C:WINDOWSie8updatesKB982381-IE8spuninstspuninst.exe»
Обновление безопасности для Windows XP (KB2419632)—>»C:WINDOWS$NtUninstallKB2419632$spuninstspuninst.exe»
Обновление для Windows Internet Explorer 8 (KB975364)—>»C:WINDOWSie8updatesKB975364-IE8spuninstspuninst.exe»
Обновление для Windows Internet Explorer 8 (KB976662)—>»C:WINDOWSie8updatesKB976662-IE8spuninstspuninst.exe»
Обновление для Windows Internet Explorer 8 (KB976749)—>»C:WINDOWSie8updatesKB976749-IE8spuninstspuninst.exe»
Обновление для Windows Internet Explorer 8 (KB980182)—>»C:WINDOWSie8updatesKB980182-IE8spuninstspuninst.exe»
Пакет драйверов Windows — Nokia pccsmcfd (08/22/2008 7.0.0.0)—>C:PROGRA~1DIFX270581355A767BF1dpinst.exe /u C:WINDOWSsystem32DRVSTOREpccsmcfd_A3B3916E5D8138F59EE218321B27B044D3B18294pccsmcfd.inf
Советник по переходу на Windows 7—>MsiExec.exe /I{CCC4A20C-EF2C-46c1-BC63-76637A145D95}
Языковой пакет Microsoft .NET Framework 3.5 SP1 — RUS—>C:WINDOWSMicrosoft.NETFrameworkv3.5Microsoft .NET Framework 3.5 Language Pack SP1 — russetup.exe
Яндекс.Бар 5.2 для Internet Explorer—>MsiExec.exe /X{1CA490A3-42E3-41B5-88FF-636C094CA342}======Security center information======
AV: avast! Antivirus
AS: Spy Emergency (disabled)======System event log======
Computer Name: ADRIAN
Event Code: 6005
Message: Запущена служба журнала событий.Record Number: 62149
Source Name: EventLog
Time Written: 20110115152342.000000+180
Event Type: информация
User:Computer Name: ADRIAN
Event Code: 6009
Message: Microsoft (R) Windows 2000 (R) 5.01. 2600 Service Pack 3 Multiprocessor Free.Record Number: 62148
Source Name: EventLog
Time Written: 20110115152342.000000+180
Event Type: информация
User:Computer Name: ADRIAN
Event Code: 6006
Message: Служба журнала событий остановлена.Record Number: 62147
Source Name: EventLog
Time Written: 20110115114719.000000+180
Event Type: информация
User:Computer Name: ADRIAN
Event Code: 7036
Message: Служба «Ati HotKey Poller» перешла в состояние Остановлена.Record Number: 62146
Source Name: Service Control Manager
Time Written: 20110115114713.000000+180
Event Type: информация
User:Computer Name: ADRIAN
Event Code: 4201
Message: Система обнаружила, что сетевой адаптер DEVICETCPIP_{F9E220EA-91C0-4345-A2ED-FCA961CA105F} был подключен к сети,
и инициировала нормальную работу через этот сетевой адаптер.Record Number: 62145
Source Name: Tcpip
Time Written: 20110115113813.000000+180
Event Type: информация
User:=====Application event log=====
Computer Name: ADRIAN
Event Code: 0
Message:
Record Number: 10976
Source Name: gupdate1ca3a1cdc24a14
Time Written: 20100810161241.000000+240
Event Type: информация
User:Computer Name: ADRIAN
Event Code: 0
Message:
Record Number: 10975
Source Name: gusvc
Time Written: 20100810161232.000000+240
Event Type: информация
User:Computer Name: ADRIAN
Event Code: 4096
Message:
Record Number: 10974
Source Name: Avira AntiVir
Time Written: 20100810161218.000000+240
Event Type: информация
User: NT AUTHORITYSYSTEMComputer Name: ADRIAN
Event Code: 1800
Message: Служба центра обеспечения безопасности Windows запущена.24 января, 2011 в 12:50 пп #32093Здравствуйте.
такой лог сделайте и приложите25 января, 2011 в 6:49 дп #32094@Helper wrote:
Здравствуйте.
такой лог сделайте и приложитеЯ Комбофиксом пробовал с самого начала ,но не помогло
27 января, 2011 в 8:03 пп #32095А где сам лог?
28 января, 2011 в 12:19 пп #32096Не получается сделать лог файл Комбофикса,прога перезагружает систему и все на этом!
-
АвторСообщения
- Тема ‘Срочно нужна помощь2!!!’ закрыта для новых сообщений.