Удаление вирусов и троянов. Защита компьютера. › Помощь в удалении вирусов, троянов, рекламы и других зловредов › Троян-Downloader,FakeAlert,Agent,Droper,Renos; Malware.Trace
- This topic has 3 ответа, 2 участника, and was last updated 14 years, 3 months назад by Helper.
-
АвторСообщения
-
31 июля, 2010 в 4:50 дп #18495
Здравствуйте!
Компьютор заражён трояном.Пытался избавиться от него с помощью вашей программы MalwareBytes Anti-malware (бессплатной версии).Он находит «заразу».Удаляет и просит перегрузить,чтобы удалить защищенные вредоносные файлы.Все это проделываю,но при загрузке появляютя новые.Замечено,если отлючить подключение к интернету,затем просканировать при помощи Malware и удалить вирусные файлы,то при повторном сканировании программа вирусов не видит.Но стоит включить подключение к инету,те плодятся вновь.Нужна ваша пошаговая помощь,потому как сам не отношу себя к продвинутым юзерам.На компе стоит антивирус Microsoft Security Essentails.Он тоже только блокирует трояна и удаляет вновь народившиеся вредоносы ентого,но избавиться от него не в силах.
Пытался выслать два RSTI лога,но превысил лимит символов.Буду отправлять отдельно.
Далее распечатка RSIT-а , 1-я инфа:info.txt logfile of random’s system information tool 1.08 2010-07-31 05:14:22
======Uninstall list======
—>»C:Program FilesViaVoiceBinvunUK.exe» ProdRunControl Dc En_UK ‘IBM ViaVoice™ Command and Control Runtime’ C:WINDOWSIsUninst.exe -f»C:Program FilesViaVoiceRtCmnd_UK.isu»
—>C:Program FilesInstallShield Installation Information{8F7AC250-4D7D-431D-AC4E-94FB78EA3F8B}Setup.exe -runfromtemp -l0x0009 -uninst -removeonly
—>rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:WINDOWSINFPCHealth.inf
32 Bit HP CIO Components Installer—>MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}
ABBYY Lingvo 12 English Edition—>MsiExec.exe /I{A1200000-0001-0000-0000-074957833700}
Acrobat.com—>MsiExec.exe /X{287ECFA4-719A-2143-A09B-D6A12DE54E40}
Adobe AIR—>c:Program FilesCommon FilesAdobe AIRVersions1.0ResourcesAdobe AIR Updater.exe -arp:uninstall
Adobe AIR—>MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
Adobe Flash Player 10 ActiveX—>C:WINDOWSsystem32MacromedFlashuninstall_activeX.exe
Adobe Flash Player 10 Plugin—>C:WINDOWSsystem32MacromedFlashFlashUtil10h_Plugin.exe -maintain plugin
Adobe Reader 9.3.3—>MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A93000000001}
ALPS Touch Pad Driver—>C:Program FilesApoint2KUninstap.exe ADDREMOVE
Amazon Links—>C:Program FilesInstallShield Installation Information{224821ED-CADA-4A8A-AC8D-3734CC0F0931}setup.exe -runfromtemp -l0x0009 -removeonly
Apple Application Support—>MsiExec.exe /I{3FA365DF-2D68-45ED-8F83-8C8A33E65143}
Apple Mobile Device Support—>MsiExec.exe /I{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}
Apple Software Update—>MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Ashampoo Burning Studio 6 FREE—>»C:Program FilesAshampooAshampoo Burning Studio 6 FREEunins000.exe»
Atheros Client Utility—>C:Program FilesInstallShield Installation Information{16E8BF9A-B419-4A44-A020-30F8CFB84B9D}setup.exe -runfromtemp -l0x0009
Atheros Driver Installation Program—>C:Program FilesInstallShield Installation Information{C3A32068-8AB1-4327-BB16-BED9C6219DC7}setup.exe -runfromtemp -l0x0009
Bluetooth Stack for Windows by Toshiba—>MsiExec.exe /X{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}
Bonjour—>MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
Camera Assistant Software for Toshiba—>C:Program FilesInstallShield Installation Information{37C866E4-AA67-4725-9E95-A39968DD7960}setup.exe -runfromtemp -l0x0009
CCleaner—>»C:Program FilesCCleaneruninst.exe»
Compatibility Pack for the 2007 Office system—>MsiExec.exe /X{90120000-0020-0409-0000-0000000FF1CE}
Data Access Objects (DAO) 3.5—>C:WINDOWSIsUninst.exe -f»C:Program FilesCommon FilesMicrosoft SharedDAOUninst.isu»
FlashGet 3.3—>C:Program FilesFlashGet NetworkFlashGet 3uninst.exe
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)—>C:WINDOWSsystem32msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=»»
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)—>C:WINDOWSsystem32msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=»»
Hotfix for Windows Media Format 11 SDK (KB929399)—>»C:WINDOWS$NtUninstallKB929399$spuninstspuninst.exe»
Hotfix for Windows Media Player 11 (KB939683)—>»C:WINDOWS$NtUninstallKB939683$spuninstspuninst.exe»
Hotfix for Windows XP (KB952287)—>»C:WINDOWS$NtUninstallKB952287$spuninstspuninst.exe»
Hotfix for Windows XP (KB953955)—>»C:WINDOWS$NtUninstallKB953955$spuninstspuninst.exe»
Hotfix for Windows XP (KB961118)—>»C:WINDOWS$NtUninstallKB961118$spuninstspuninst.exe»
Hotfix for Windows XP (KB976098-v2)—>»C:WINDOWS$NtUninstallKB976098-v2$spuninstspuninst.exe»
Hotfix for Windows XP (KB979306)—>»C:WINDOWS$NtUninstallKB979306$spuninstspuninst.exe»
Hotfix for Windows XP (KB981793)—>»C:WINDOWS$NtUninstallKB981793$spuninstspuninst.exe»
HP Customer Participation Program 9.0—>C:Program FilesHPDigital ImagingExtCapUninstallhpzscr01.exe -datfile hpqhsc01.dat
HP Imaging Device Functions 9.0—>C:Program FilesHPDigital ImagingDeviceManagementhpzscr01.exe -datfile hpqbud01.dat
HP OCR Software 9.0—>C:Program FilesHPDigital ImagingOCRhpzscr01.exe -datfile hpqbud11.dat
HP Photosmart All-In-One Software 9.0—>C:Program FilesHPDigital Imaging{D64BC2CF-0F12-47d7-B412-B4F3FD684253}setuphpzscr01.exe -datfile hposcr21.dat
HP Photosmart Essential 2.01—>C:Program FilesHPDigital ImagingPhotoSmartEssentialhpzscr01.exe -datfile hpqbud13.dat
HP Solution Center 9.0—>C:Program FilesHPDigital ImagingeSupporthpzscr01.exe -datfile hpqbud05.dat
HP Update—>MsiExec.exe /X{AB40272D-92AB-4F30-B36B-22EDE16F8FE5}
HPSSupply—>MsiExec.exe /X{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}
IBM ViaVoice Command and Control Runtime 7.0 — UK English—>»C:Program FilesViaVoiceBinvunUK.exe» ProdRunControl Dc En_UK ‘IBM ViaVoice™ Command and Control Runtime’ C:WINDOWSIsUninst.exe -f»C:Program FilesViaVoiceRtCmnd_UK.isu»
Intel(R) Graphics Media Accelerator Driver—>C:WINDOWSsystem32igxpun.exe -uninstall
Intel® Matrix Storage Manager—>C:Program FilesIntelIntel Matrix Storage ManagerUninstallimsmudlg.exe -uninstall
iTunes—>MsiExec.exe /I{A6FDF86A-F541-4E7B-AEA0-8849A2A700D5}
Java(TM) 6 Update 11—>MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
K-Lite Mega Codec Pack 5.5.1—>»C:Program FilesK-Lite Codec Packunins000.exe»
L&H TTS3000 Russian—>RunDll32 advpack.dll,LaunchINFSection C:WINDOWSINFLHTTSRUR.inf, Uninstall
Lernout & Hauspie TruVoice American English TTS Engine—>RunDll32 advpack.dll,LaunchINFSection C:WINDOWSINFtv_enua.inf, Uninstall
Mail.Ru Àãåíò 5.6 (ñáîðêà 3278, äëÿ âñåõ ïîëüçîâàòåëåé)—>C:Program FilesMail.RuAgentmagentsetup.exe -uninstalllm
Mail.Ru Ñïóòíèê 2.2.0.94—>c:program filesmail.rusputnikSputnikInstaller.exe -uninstall
Malwarebytes’ Anti-Malware—>»C:Program FilesMalwarebytes’ Anti-Malwareunins000.exe»
McAfee Security Scan Plus—>»C:Program FilesMcAfee Security Scanuninstall.exe»
Microsoft .NET Framework 2.0 Service Pack 2—>MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2—>MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1—>C:WINDOWSMicrosoft.NETFrameworkv3.5Microsoft .NET Framework 3.5 SP1setup.exe
Microsoft .NET Framework 3.5 SP1—>MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Antimalware Service RU-RU Language Pack—>MsiExec.exe /X{FA8BA2B5-EB0E-428B-AAB2-2D608D959B18}
Microsoft Antimalware—>MsiExec.exe /X{E62A1F01-07B7-4541-A835-EE5B0BF064C2}
Microsoft Compression Client Pack 1.0 for Windows XP—>»C:WINDOWS$NtUninstallMSCompPackV1$spuninstspuninst.exe»
Microsoft Internationalized Domain Names Mitigation APIs—>»C:WINDOWS$NtServicePackUninstallIDNMitigationAPIs$spuninstspuninst.exe»
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5—>»C:WINDOWS$NtUninstallWdf01005$spuninstspuninst.exe»
Microsoft National Language Support Downlevel APIs—>»C:WINDOWS$NtServicePackUninstallNLSDownlevelMapping$spuninstspuninst.exe»
Microsoft Office 2007 Service Pack 2 (SP2)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
Microsoft Office Access MUI (Russian) 2007—>MsiExec.exe /X{90120000-0015-0419-0000-0000000FF1CE}
Microsoft Office Enterprise 2007—>»C:Program FilesCommon FilesMicrosoft SharedOFFICE12Office Setup Controllersetup.exe» /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007—>MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (Russian) 2007—>MsiExec.exe /X{90120000-0016-0419-0000-0000000FF1CE}
Microsoft Office Groove MUI (Russian) 2007—>MsiExec.exe /X{90120000-00BA-0419-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (Russian) 2007—>MsiExec.exe /X{90120000-0044-0419-0000-0000000FF1CE}
Microsoft Office OneNote MUI (Russian) 2007—>MsiExec.exe /X{90120000-00A1-0419-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Russian) 2007—>MsiExec.exe /X{90120000-001A-0419-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Russian) 2007—>MsiExec.exe /X{90120000-0018-0419-0000-0000000FF1CE}
Microsoft Office PowerPoint Viewer 2007 (English)—>MsiExec.exe /X{95120000-00AF-0409-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007—>MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007—>MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Russian) 2007—>MsiExec.exe /X{90120000-001F-0419-0000-0000000FF1CE}
Microsoft Office Proof (Ukrainian) 2007—>MsiExec.exe /X{90120000-001F-0422-0000-0000000FF1CE}
Microsoft Office Proofing (Russian) 2007—>MsiExec.exe /X{90120000-002C-0419-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)—>msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)—>msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
Microsoft Office Publisher MUI (Russian) 2007—>MsiExec.exe /X{90120000-0019-0419-0000-0000000FF1CE}
Microsoft Office Shared MUI (Russian) 2007—>MsiExec.exe /X{90120000-006E-0419-0000-0000000FF1CE}
Microsoft Office Word MUI (Russian) 2007—>MsiExec.exe /X{90120000-001B-0419-0000-0000000FF1CE}
Microsoft Security Essentials—>C:Program FilesMicrosoft Security Essentialssetup.exe /x
Microsoft Security Essentials—>MsiExec.exe /I{EF98A02A-1748-4762-9B7D-5ED1600520D5}
Microsoft User-Mode Driver Framework Feature Pack 1.5—>»C:WINDOWS$NtUninstallWudf01005$spuninstspuninst.exe»
Microsoft Visual C++ 2005 ATL Update kb973923 — x86 8.0.50727.4053—>MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable—>MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Works—>MsiExec.exe /I{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}
Mozilla Firefox (3.6.3)—>C:Program FilesMozilla Firefoxuninstallhelper.exe
MSXML 4.0 SP2 (KB954430)—>MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)—>MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
MSXML 6.0 Parser—>MsiExec.exe /I{A43BF6A5-D5F0-4AAA-BF41-65995063EC44}
Nokia Connectivity Cable Driver—>MsiExec.exe /X{4F1DCA42-2030-437C-A94E-736692A499C1}
Nokia Download!—>MsiExec.exe /X{65A14D7B-6CEA-4E79-9311-D1ED8BF5C1C9}
Nokia Flashing Cable Driver—>MsiExec.exe /X{A4E0CA0F-1903-440A-9B98-FEA6CB049999}
Nokia Map Loader—>MsiExec.exe /I{03528A01-7E5E-4C5F-94DF-1D8012E969EF}
Nokia NSeries Application Installer 6.84.2112—>msiexec /qn /x {39C1989E-E086-4AB7-BB19-8AB97006DE77}
Nokia NSeries Application Installer—>MsiExec.exe /I{39C1989E-E086-4AB7-BB19-8AB97006DE77}
Nokia NSeries Content Copier 6.84.2112—>msiexec /qn /x {D6EA782B-EE50-4916-AD66-3CCD50A850A8}
Nokia NSeries Content Copier—>MsiExec.exe /X{D6EA782B-EE50-4916-AD66-3CCD50A850A8}
Nokia NSeries One Touch Access 6.84.2112—>msiexec /qn /x {8A60F05F-7DD5-4F50-86A1-C1227E049C8C}
Nokia NSeries One Touch Access—>MsiExec.exe /I{8A60F05F-7DD5-4F50-86A1-C1227E049C8C}
Nokia Nseries PC Suite—>MsiExec.exe /I{67F03BDC-0DBA-4B80-BFE6-A203863ABBC6}
Nokia NSeries System Utilities 6.84.2112—>msiexec /qn /x {2CBE25E7-BB9A-4FD3-BED2-496110D50BA9}
Nokia NSeries System Utilities—>MsiExec.exe /X{2CBE25E7-BB9A-4FD3-BED2-496110D50BA9}
Nokia Nseries Video Manager—>MsiExec.exe /X{2D21ECE3-8EC1-4315-AE4E-1970FB3AF17A}
Nokia Photos—>MsiExec.exe /I{A2F7A1E8-0162-413E-948C-05D34331C265}
Nokia Software Updater—>MsiExec.exe /X{2FA28330-2028-4033-BD10-425C87EB4D54}
PC Connectivity Solution—>MsiExec.exe /I{97007EE6-18FB-444D-B636-FBD8BB802350}
QuickTime—>MsiExec.exe /I{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}
REALTEK GbE & FE Ethernet PCI-E NIC Driver—>C:Program FilesInstallShield Installation Information{C9BED750-1211-4480-B1A5-718A3BE15525}setup.exe -runfromtemp -removeonly
Realtek High Definition Audio Driver—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime1150Intel32Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}Setup.exe» -l0x9 -removeonly
REWARD InterN@tive—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1engine6INTEL3~1Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{F1A029E7-0C8C-4170-8308-D25F54FAB617}setup.exe» -l0x19 -uninst
Security Update for 2007 Microsoft Office System (KB969559)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
Security Update for 2007 Microsoft Office System (KB976321)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7F207DCA-3399-40CB-A968-6E5991B1421A}
Security Update for 2007 Microsoft Office System (KB982312)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B0EC5722-241F-4CDA-83B4-AA5846B6F9F4}
Security Update for 2007 Microsoft Office System (KB982331)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {E8766951-2B6C-4022-86E8-80D2D1762B76}
Security Update for CAPICOM (KB931906)—>MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)—>MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft Office Access 2007 (KB979440)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {1142CCEC-ACA9-484B-BA90-C3A5CA1988C5}
Security Update for Microsoft Office Access 2007 (KB979440)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5A4E43D5-858F-49BD-BA72-8F30E1793060}
Security Update for Microsoft Office Excel 2007 (KB982308)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C3F9A0DC-A5D1-4BB6-870E-2953E5A2487B}
Security Update for Microsoft Office InfoPath 2007 (KB979441)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {1109D0B3-EFA3-4553-AAED-4C3E9AD130E8}
Security Update for Microsoft Office InfoPath 2007 (KB979441)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}
Security Update for Microsoft Office Outlook 2007 (KB980376)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {48113C06-9BA2-4D54-A731-D1D2C5B3144A}
Security Update for Microsoft Office PowerPoint 2007 (KB982158)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F5B70033-E79C-4569-90BF-BC9B4E4F3F46}
Security Update for Microsoft Office Publisher 2007 (KB982124)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {289FA8BC-6A8E-4341-B194-EB26B49E9F5D}
Security Update for Microsoft Office system 2007 (972581)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
Security Update for Microsoft Office system 2007 (KB969613)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
Security Update for Microsoft Office system 2007 (KB974234)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
Security Update for Microsoft Office Word 2007 (KB982135)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0112C750-A06F-4F92-9C40-E5C1EA9A70EB}
Security Update for Windows Internet Explorer 7 (KB938127-v2)—>»C:WINDOWSie7updatesKB938127-v2-IE7spuninstspuninst.exe»
Security Update for Windows Internet Explorer 7 (KB978207)—>»C:WINDOWSie7updatesKB978207-IE7spuninstspuninst.exe»
Security Update for Windows Internet Explorer 8 (KB971961)—>»C:WINDOWSie8updatesKB971961-IE8spuninstspuninst.exe»
Security Update for Windows Internet Explorer 8 (KB978207)—>»C:WINDOWSie8updatesKB978207-IE8spuninstspuninst.exe»
Security Update for Windows Internet Explorer 8 (KB981332)—>»C:WINDOWSie8updatesKB981332-IE8spuninstspuninst.exe»
Security Update for Windows Internet Explorer 8 (KB982381)—>»C:WINDOWSie8updatesKB982381-IE8spuninstspuninst.exe»
Security Update for Windows Media Player (KB952069)—>»C:WINDOWS$NtUninstallKB952069_WM9$spuninstspuninst.exe»
Security Update for Windows Media Player (KB954155)—>»C:WINDOWS$NtUninstallKB954155_WM9$spuninstspuninst.exe»
Security Update for Windows Media Player (KB968816)—>»C:WINDOWS$NtUninstallKB968816_WM9$spuninstspuninst.exe»
Security Update for Windows Media Player (KB973540)—>»C:WINDOWS$NtUninstallKB973540_WM9$spuninstspuninst.exe»
Security Update for Windows Media Player (KB978695)—>»C:WINDOWS$NtUninstallKB978695_WM9$spuninstspuninst.exe»
Security Update for Windows Media Player 10 (KB936782)—>»C:WINDOWS$NtUninstallKB936782_WMP10$spuninstspuninst.exe»
Security Update for Windows Media Player 11 (KB954154)—>»C:WINDOWS$NtUninstallKB954154_WM11$spuninstspuninst.exe»
Security Update for Windows XP (KB2229593)—>»C:WINDOWS$NtUninstallKB2229593$spuninstspuninst.exe»
Security Update for Windows XP (KB923561)—>»C:WINDOWS$NtUninstallKB923561$spuninstspuninst.exe»
Security Update for Windows XP (KB938464)—>»C:WINDOWS$NtUninstallKB938464$spuninstspuninst.exe»
Security Update for Windows XP (KB941569)—>»C:WINDOWS$NtUninstallKB941569$spuninstspuninst.exe»
Security Update for Windows XP (KB946648)—>»C:WINDOWS$NtUninstallKB946648$spuninstspuninst.exe»
Security Update for Windows XP (KB950762)—>»C:WINDOWS$NtUninstallKB950762$spuninstspuninst.exe»
Security Update for Windows XP (KB950974)—>»C:WINDOWS$NtUninstallKB950974$spuninstspuninst.exe»
Security Update for Windows XP (KB951066)—>»C:WINDOWS$NtUninstallKB951066$spuninstspuninst.exe»
Security Update for Windows XP (KB951376)—>»C:WINDOWS$NtUninstallKB951376$spuninstspuninst.exe»
Security Update for Windows XP (KB951376-v2)—>»C:WINDOWS$NtUninstallKB951376-v2$spuninstspuninst.exe»
Security Update for Windows XP (KB951698)—>»C:WINDOWS$NtUninstallKB951698$spuninstspuninst.exe»
Security Update for Windows XP (KB951748)—>»C:WINDOWS$NtUninstallKB951748$spuninstspuninst.exe»
Security Update for Windows XP (KB952004)—>»C:WINDOWS$NtUninstallKB952004$spuninstspuninst.exe»
Security Update for Windows XP (KB952954)—>»C:WINDOWS$NtUninstallKB952954$spuninstspuninst.exe»
Security Update for Windows XP (KB953155)—>»C:WINDOWS$NtUninstallKB953155$spuninstspuninst.exe»
Security Update for Windows XP (KB954211)—>»C:WINDOWS$NtUninstallKB954211$spuninstspuninst.exe»
Security Update for Windows XP (KB954459)—>»C:WINDOWS$NtUninstallKB954459$spuninstspuninst.exe»
Security Update for Windows XP (KB954600)—>»C:WINDOWS$NtUninstallKB954600$spuninstspuninst.exe»
Security Update for Windows XP (KB955069)—>»C:WINDOWS$NtUninstallKB955069$spuninstspuninst.exe»
Security Update for Windows XP (KB956391)—>»C:WINDOWS$NtUninstallKB956391$spuninstspuninst.exe»
Security Update for Windows XP (KB956572)—>»C:WINDOWS$NtUninstallKB956572$spuninstspuninst.exe»
Security Update for Windows XP (KB956744)—>»C:WINDOWS$NtUninstallKB956744$spuninstspuninst.exe»
Security Update for Windows XP (KB956802)—>»C:WINDOWS$NtUninstallKB956802$spuninstspuninst.exe»
Security Update for Windows XP (KB956803)—>»C:WINDOWS$NtUninstallKB956803$spuninstspuninst.exe»
Security Update for Windows XP (KB956841)—>»C:WINDOWS$NtUninstallKB956841$spuninstspuninst.exe»
Security Update for Windows XP (KB956844)—>»C:WINDOWS$NtUninstallKB956844$spuninstspuninst.exe»
Security Update for Windows XP (KB957097)—>»C:WINDOWS$NtUninstallKB957097$spuninstspuninst.exe»
Security Update for Windows XP (KB958215)—>»C:WINDOWS$NtUninstallKB958215$spuninstspuninst.exe»
Security Update for Windows XP (KB958644)—>»C:WINDOWS$NtUninstallKB958644$spuninstspuninst.exe»
Security Update for Windows XP (KB958687)—>»C:WINDOWS$NtUninstallKB958687$spuninstspuninst.exe»
Security Update for Windows XP (KB958869)—>»C:WINDOWS$NtUninstallKB958869$spuninstspuninst.exe»
Security Update for Windows XP (KB959426)—>»C:WINDOWS$NtUninstallKB959426$spuninstspuninst.exe»
Security Update for Windows XP (KB960225)—>»C:WINDOWS$NtUninstallKB960225$spuninstspuninst.exe»
Security Update for Windows XP (KB960714)—>»C:WINDOWS$NtUninstallKB960714$spuninstspuninst.exe»
Security Update for Windows XP (KB960803)—>»C:WINDOWS$NtUninstallKB960803$spuninstspuninst.exe»
Security Update for Windows XP (KB960859)—>»C:WINDOWS$NtUninstallKB960859$spuninstspuninst.exe»
Security Update for Windows XP (KB961501)—>»C:WINDOWS$NtUninstallKB961501$spuninstspuninst.exe»
Security Update for Windows XP (KB969059)—>»C:WINDOWS$NtUninstallKB969059$spuninstspuninst.exe»
Security Update for Windows XP (KB969947)—>»C:WINDOWS$NtUninstallKB969947$spuninstspuninst.exe»
Security Update for Windows XP (KB970238)—>»C:WINDOWS$NtUninstallKB970238$spuninstspuninst.exe»
Security Update for Windows XP (KB970430)—>»C:WINDOWS$NtUninstallKB970430$spuninstspuninst.exe»
Security Update for Windows XP (KB971468)—>»C:WINDOWS$NtUninstallKB971468$spuninstspuninst.exe»
Security Update for Windows XP (KB971486)—>»C:WINDOWS$NtUninstallKB971486$spuninstspuninst.exe»
Security Update for Windows XP (KB971557)—>»C:WINDOWS$NtUninstallKB971557$spuninstspuninst.exe»
Security Update for Windows XP (KB971633)—>»C:WINDOWS$NtUninstallKB971633$spuninstspuninst.exe»
Security Update for Windows XP (KB971657)—>»C:WINDOWS$NtUninstallKB971657$spuninstspuninst.exe»
Security Update for Windows XP (KB971961)—>»C:WINDOWS$NtUninstallKB971961$spuninstspuninst.exe»
Security Update for Windows XP (KB972270)—>»C:WINDOWS$NtUninstallKB972270$spuninstspuninst.exe»
Security Update for Windows XP (KB973354)—>»C:WINDOWS$NtUninstallKB973354$spuninstspuninst.exe»
Security Update for Windows XP (KB973507)—>»C:WINDOWS$NtUninstallKB973507$spuninstspuninst.exe»
Security Update for Windows XP (KB973525)—>»C:WINDOWS$NtUninstallKB973525$spuninstspuninst.exe»
Security Update for Windows XP (KB973869)—>»C:WINDOWS$NtUninstallKB973869$spuninstspuninst.exe»
Security Update for Windows XP (KB973904)—>»C:WINDOWS$NtUninstallKB973904$spuninstspuninst.exe»
Security Update for Windows XP (KB974112)—>»C:WINDOWS$NtUninstallKB974112$spuninstspuninst.exe»
Security Update for Windows XP (KB974318)—>»C:WINDOWS$NtUninstallKB974318$spuninstspuninst.exe»
Security Update for Windows XP (KB974392)—>»C:WINDOWS$NtUninstallKB974392$spuninstspuninst.exe»
Security Update for Windows XP (KB974571)—>»C:WINDOWS$NtUninstallKB974571$spuninstspuninst.exe»
Security Update for Windows XP (KB975025)—>»C:WINDOWS$NtUninstallKB975025$spuninstspuninst.exe»
Security Update for Windows XP (KB975467)—>»C:WINDOWS$NtUninstallKB975467$spuninstspuninst.exe»
Security Update for Windows XP (KB975560)—>»C:WINDOWS$NtUninstallKB975560$spuninstspuninst.exe»
Security Update for Windows XP (KB975561)—>»C:WINDOWS$NtUninstallKB975561$spuninstspuninst.exe»
Security Update for Windows XP (KB975562)—>»C:WINDOWS$NtUninstallKB975562$spuninstspuninst.exe»
Security Update for Windows XP (KB975713)—>»C:WINDOWS$NtUninstallKB975713$spuninstspuninst.exe»
Security Update for Windows XP (KB977165-v2)—>»C:WINDOWS$NtUninstallKB977165-v2$spuninstspuninst.exe»
Security Update for Windows XP (KB977816)—>»C:WINDOWS$NtUninstallKB977816$spuninstspuninst.exe»
Security Update for Windows XP (KB977914)—>»C:WINDOWS$NtUninstallKB977914$spuninstspuninst.exe»
Security Update for Windows XP (KB978037)—>»C:WINDOWS$NtUninstallKB978037$spuninstspuninst.exe»
Security Update for Windows XP (KB978251)—>»C:WINDOWS$NtUninstallKB978251$spuninstspuninst.exe»
Security Update for Windows XP (KB978262)—>»C:WINDOWS$NtUninstallKB978262$spuninstspuninst.exe»
Security Update for Windows XP (KB978338)—>»C:WINDOWS$NtUninstallKB978338$spuninstspuninst.exe»
Security Update for Windows XP (KB978542)—>»C:WINDOWS$NtUninstallKB978542$spuninstspuninst.exe»
Security Update for Windows XP (KB978601)—>»C:WINDOWS$NtUninstallKB978601$spuninstspuninst.exe»
Security Update for Windows XP (KB978706)—>»C:WINDOWS$NtUninstallKB978706$spuninstspuninst.exe»
Security Update for Windows XP (KB979309)—>»C:WINDOWS$NtUninstallKB979309$spuninstspuninst.exe»
Security Update for Windows XP (KB979482)—>»C:WINDOWS$NtUninstallKB979482$spuninstspuninst.exe»
Security Update for Windows XP (KB979559)—>»C:WINDOWS$NtUninstallKB979559$spuninstspuninst.exe»
Security Update for Windows XP (KB979683)—>»C:WINDOWS$NtUninstallKB979683$spuninstspuninst.exe»
Security Update for Windows XP (KB980195)—>»C:WINDOWS$NtUninstallKB980195$spuninstspuninst.exe»
Security Update for Windows XP (KB980218)—>»C:WINDOWS$NtUninstallKB980218$spuninstspuninst.exe»
Security Update for Windows XP (KB980232)—>»C:WINDOWS$NtUninstallKB980232$spuninstspuninst.exe»
Skype Launcher—>C:Program FilesInstallShield Installation Information{BF5A20B4-55F7-49B8-9302-FAC7C459AF3D}setup.exe -runfromtemp -l0x0009 -removeonly
TOSHIBA Accessibility—>C:PROGRA~1COMMON~1INSTAL~1Driver7INTEL3~1IDriver.exe /M{3A57482F-BEBC-47E4-ADA1-6302403C7E50} /l1033
Toshiba Application and Driver Installer—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime10 0Intel32Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{970472D0-F5F9-4158-A6E3-1AE49EFEF2D3}setup.exe» -l0x9 -removeonly
TOSHIBA ConfigFree—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime 701Intel32Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{BDD83DC9-BEE9-4654-A5DA-CC46C250088D}setup.exe» -l0x9 UNINSTALL
TOSHIBA Direct Disc Writer—>MsiExec.exe /X{400830CA-F056-4BBE-80A3-9DF9CA4FB889}
TOSHIBA Fn-esse—>C:WINDOWSUNFnesse.EXE Fn-esse.UNI
TOSHIBA Hardware Setup—>C:PROGRA~1COMMON~1INSTAL~1Driver7INTEL3~1IDriver.exe /M{5279374D-87FE-4879-9385-F17278EBB9D3} /l1033
TOSHIBA HDD Protection—>MsiExec.exe /X{94A90C69-71C1-470A-88F5-AA47ECC96B40}
TOSHIBA Hotkey Utility—>C:PROGRA~1COMMON~1INSTAL~1Driver7INTEL3~1IDriver.exe /M{7900D3A6-A9E8-4954-ACCB-AB15867978BF} /l1033
TOSHIBA PC Diagnostic Tool—>C:Program FilesInstallShield Installation Information{2C38F661-26B7-445D-B87D-B53FE2D3BD42}setup.exe -runfromtemp -l0x0409
TOSHIBA Power Saver—>C:PROGRA~1COMMON~1INSTAL~1Driver7INTEL3~1IDriver.exe /M{A38D57D1-5F29-4691-B3DD-FE4B3A7B3AFE} /l1033
Toshiba Quality Application—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime10 0Intel32Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{E69992ED-A7F6-406C-9280-1C156417BC49}setup.exe» -l0x9 -removeonly
TOSHIBA Recovery Disc Creator—>MsiExec.exe /X{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}
Toshiba Registration—>MsiExec.exe /I{C53D16CC-E56F-47B8-906E-70AAF8EABB4F}
Toshiba Resources Page—>C:Program FilesInstallShield Installation Information{21526716-DFD8-4B90-86D9-EF9F47057B3E}setup.exe -runfromtemp -l0x0009 -removeonly
TOSHIBA SD Memory Utilities—>MsiExec.exe /X{EBFF48F5-3CFA-436F-8FD5-94FB01D3A0A7}
TOSHIBA Software Upgrades—>RunDll32 C:PROGRA~1COMMON~1INSTAL~1PROFES~1RunTime1050Intel32Ctor.dll,LaunchSetup «C:Program FilesInstallShield Installation Information{425A2BC2-AA64-4107-9C29-484245BBEA05}setup.exe» -l0x9 -removeonly
TOSHIBA USB Sleep and Charge Utility—>C:Program FilesInstallShield Installation Information{E487EE7D-EAAA-4E2A-9116-E3B477D8A74F}setup.exe -runfromtemp -l0x0009 -removeonly
TOSHIBA Zooming Utility—>C:PROGRA~1COMMON~1INSTAL~1Driver7INTEL3~1IDriver.exe /M{02EED746-8C5A-43C8-BB3D-D29C8B363A4D} /l1033
TouchPad On/Off Utility—>C:PROGRA~1COMMON~1INSTAL~1Driver7INTEL3~1IDriver.exe /M{80977342-27E8-4FF7-8B6A-D8D89461DA7F} /l1033
Update for 2007 Microsoft Office System (KB967642)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)—>C:WINDOWSsystem32msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=»»
Update for Microsoft Office OneNote 2007 (KB980729)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {329050A9-EF80-40F9-B633-74508F54C1FF}
Update for Outlook 2007 Junk Email Filter (kb2202131)—>msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A67392E8-282B-4BEF-8020-EF3DD664DE7B}
Update for Windows Internet Explorer 8 (KB976662)—>»C:WINDOWSie8updatesKB976662-IE8spuninstspuninst.exe»
Update for Windows Internet Explorer 8 (KB980182)—>»C:WINDOWSie8updatesKB980182-IE8spuninstspuninst.exe»
Update for Windows XP (KB898461)—>»C:WINDOWS$NtUninstallKB898461$spuninstspuninst.exe»
Update for Windows XP (KB951618-v2)—>»C:WINDOWS$NtUninstallKB951618-v2$spuninstspuninst.exe»
Update for Windows XP (KB951978)—>»C:WINDOWS$NtUninstallKB951978$spuninstspuninst.exe»
Update for Windows XP (KB955759)—>»C:WINDOWS$NtUninstallKB955759$spuninstspuninst.exe»
Update for Windows XP (KB955839)—>»C:WINDOWS$NtUninstallKB955839$spuninstspuninst.exe»
Update for Windows XP (KB967715)—>»C:WINDOWS$NtUninstallKB967715$spuninstspuninst.exe»
Update for Windows XP (KB968389)—>»C:WINDOWS$NtUninstallKB968389$spuninstspuninst.exe»
Update for Windows XP (KB971737)—>»C:WINDOWS$NtUninstallKB971737$spuninstspuninst.exe»
Update for Windows XP (KB973687)—>»C:WINDOWS$NtUninstallKB973687$spuninstspuninst.exe»
Update for Windows XP (KB973815)—>»C:WINDOWS$NtUninstallKB973815$spuninstspuninst.exe»
USB2.0 Card Reader Software—>»C:Program FilesInstallShield Installation Information{96AE7E41-E34E-47D0-AC07-1091A8127911}setup.exe» -runfromtemp -l0x0009 -removeonly
Winamp—>»C:Program FilesWinampUninstWA.exe»
Windows Driver Package — Chicony (cecnuvc) Image (03/26/2009 6.4.64.0326)—>C:PROGRA~1DIFX270581355A767BF1DPInst.exe /u C:WINDOWSsystem32DRVSTOREcecuvc_8415BD2F74A1F923BCFA39EEFAC09A09A090F80Ececuvc.inf
Windows Internet Explorer 7—>»C:WINDOWSie7spuninstspuninst.exe»
Windows Internet Explorer 8—>»C:WINDOWSie8spuninstspuninst.exe»
Windows Media Format 11 runtime—>»C:Program FilesWindows Media Playerwmsetsdk.exe» /UninstallAll
Windows Media Format 11 runtime—>»C:WINDOWS$NtUninstallWMFDist11$spuninstspuninst.exe»
Windows Media Player 10 Hotfix — KB894476—>»C:WINDOWS$NtUninstallKB894476$spuninstspuninst.exe»
Windows Media Player 11—>»C:Program FilesWindows Media PlayerSetup_wm.exe» /Uninstall
Windows Media Player 11—>»C:WINDOWS$NtUninstallwmp11$spuninstspuninst.exe»
X-Translator Discovery ERRE—>MsiExec.exe /I{F6F323AF-0123-474E-AFE0-F3F26556162C}
Àðõèâàòîð WinRAR—>C:Program FilesWinRARuninstall.exe
Ïàêåò äðàéâåðîâ Windows — Nokia pccsmcfd (10/12/2007 6.85.4.0)—>C:PROGRA~1DIFX270581355A767BF1dpinst.exe /u C:WINDOWSsystem32DRVSTOREpccsmcfd_4A1E30386F4D0DEC8F5DF262CFBD8845EEBAB175pccsmcfd.inf======Security center information======
AV: Microsoft Security Essentials
======System event log======
Computer Name: TOSHIBA-USER
Event Code: 6009
Message: Microsoft (R) Windows 2000 (R) 5.01. 2600 Service Pack 3 Multiprocessor Free.Record Number: 8947
Source Name: EventLog
Time Written: 20100627170311.000000+060
Event Type: èíôîðìàöèÿ
User:Computer Name: TOSHIBA-USER
Event Code: 6006
Message: Ñëóæáà æóðíàëà ñîáûòèé îñòàíîâëåíà.Record Number: 8946
Source Name: EventLog
Time Written: 20100627115130.000000+060
Event Type: èíôîðìàöèÿ
User:Computer Name: TOSHIBA-USER
Event Code: 7036
Message: Ñëóæáà «pinger» ïåðåøëà â ñîñòîÿíèå Îñòàíîâëåíà.Record Number: 8945
Source Name: Service Control Manager
Time Written: 20100627115027.000000+060
Event Type: èíôîðìàöèÿ
User:Computer Name: TOSHIBA-USER
Event Code: 2001
Message: Microsoft Antimalware has encountered an error trying to update signatures.New Signature Version:
Previous Signature Version: 1.85.487.0
Update Source: Microsoft Malware Protection Center
Update Stage: Search
Signature Type: AntiSpyware
Update Type: Full
User: NT AUTHORITYNETWORK SERVICE
Current Engine Version:
Previous Engine Version: 1.1.5902.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved
Record Number: 8944
Source Name: Microsoft Antimalware
Time Written: 20100627064728.000000+060
Event Type: îøèáêà
User:Computer Name: TOSHIBA-USER
Event Code: 2001
Message: Microsoft Antimalware has encountered an error trying to update signatures.New Signature Version:
Previous Signature Version: 1.85.487.0
Update Source: Microsoft Malware Protection Center
Update Stage: Search
Signature Type: AntiVirus
Update Type: Full
User: NT AUTHORITYNETWORK SERVICE
Current Engine Version:
Previous Engine Version: 1.1.5902.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved
Record Number: 8943
Source Name: Microsoft Antimalware
Time Written: 20100627064728.000000+060
Event Type: îøèáêà
User:=====Application event log=====
Computer Name: TOSHIBA-USER
Event Code: 102
Message: wuaueng.dll (3928) SUS20ClientDataStore: ßäðî áàçû äàííûõ çàïóñòèëî íîâûé ýêçåìïëÿð (0).Record Number: 5
Source Name: ESENT
Time Written: 20100122011750.000000+000
Event Type: èíôîðìàöèÿ
User:Computer Name: TOSHIBA-USER
Event Code: 100
Message: wuauclt (3928) ßäðî áàçû äàííûõ 5.01.2600.5512 çàïóùåíî.Record Number: 4
Source Name: ESENT
Time Written: 20100122011750.000000+000
Event Type: èíôîðìàöèÿ
User:Computer Name: TOSHIBA-USER
Event Code: 101
Message: wuauclt (276) ßäðî áàçû äàííûõ îñòàíîâëåíî.Record Number: 3
Source Name: ESENT
Time Written: 20100122011658.000000+000
Event Type: èíôîðìàöèÿ
User:Computer Name: TOSHIBA-USER
Event Code: 103
Message: wuaueng.dll (276) SUS20ClientDataStore: ßäðî áàçû äàííûõ îñòàíîâèëî ðàáîòó ýêçåìïëÿðà (0).Record Number: 2
Source Name: ESENT
Time Written: 20100122011658.000000+000
Event Type: èíôîðìàöèÿ
User:Computer Name: TOSHIBA-USER
Event Code: 11728
Message: Product: WebFldrs XP — Configuration completed successfully.Record Number: 1
Source Name: MsiInstaller
Time Written: 20100122011437.000000+000
Event Type: èíôîðìàöèÿ
User: TOSHIBA-USERUser======Environment variables======
«ComSpec»=%SystemRoot%system32cmd.exe
«Path»=C:Program FilesNokiaPC Connectivity Solution;%SystemRoot%system32;%SystemRoot%;%SystemRoot%System32Wbem;C:Program FilesToshibaBluetooth Toshiba Stacksys;C:Program FilesQuickTimeQTSystem
«windir»=%SystemRoot%
«FP_NO_HOST_CHECK»=NO
«OS»=Windows_NT
«PROCESSOR_ARCHITECTURE»=x86
«PROCESSOR_LEVEL»=6
«PROCESSOR_IDENTIFIER»=x86 Family 6 Model 28 Stepping 2, GenuineIntel
«PROCESSOR_REVISION»=1c02
«NUMBER_OF_PROCESSORS»=2
«PATHEXT»=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
«TEMP»=%SystemRoot%TEMP
«TMP»=%SystemRoot%TEMP
«CLASSPATH»=.;C:Program FilesJavajre6libextQTJava.zip
«QTJAVA»=C:Program FilesJavajre6libextQTJava.zip
EOF
31 июля, 2010 в 5:01 дп #30379И второй лог сканера RSIT :
Logfile of random’s system information tool 1.08 (written by random/random)
Run by User at 2010-07-31 05:08:18
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 19 GB (13%) free of 145 GB
Total RAM: 1014 MB (39% free)Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 5:14:18, on 31.07.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: NormalRunning processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
c:Program FilesMicrosoft Security EssentialsMsMpEng.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSsystem32acs.exe
C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe
C:Program FilesBonjourmDNSResponder.exe
C:Program FilesTOSHIBAConfigFreeCFSvcs.exe
C:WINDOWSsystem32svchost.exe
C:Program FilesJavajre6binjqs.exe
C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGmdm.exe
C:WINDOWSSystem32svchost.exe
C:TOSHIBAIVPISMpinger.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32svchost.exe
c:TOSHIBAIVPswupdateswupdtmr.exe
C:WINDOWSsystem32ThpSrv.exe
C:WINDOWSsystem32TODDSrv.exe
C:Program FilesToshibaBluetooth Toshiba StackTosBtSrv.exe
C:WINDOWSExplorer.EXE
C:Program FilesApoint2KApoint.exe
C:Program FilesAtherosACU.exe
C:Program FilesCamera Assistant Software for Toshibatraybar.exe
C:Program FilesTOSHIBATouchPadTPTray.exe
C:WINDOWSsystem32thpsrv.exe
C:WINDOWSsystem32igfxtray.exe
C:WINDOWSsystem32hkcmd.exe
C:WINDOWSsystem32igfxpers.exe
C:WINDOWSRTHDCPL.EXE
C:Program FilesTOSHIBAConfigFreeNDSTray.exe
C:Program FilesTOSHIBAE-KEYCeEKey.exe
C:WINDOWSsystem32igfxsrvc.exe
C:WINDOWSsystem32TDispVol.exe
C:Program FilesApoint2KApntex.exe
C:WINDOWSsystem32ZoomingHook.exe
C:Program FilesTOSHIBATOSHIBA Zooming UtilitySmoothView.exe
C:WINDOWSsystem32TPSMain.exe
C:Program FilesTOSHIBATOSHIBA Direct Disc Writerddwmon.exe
C:Program FilesWinampwinampa.exe
C:WINDOWSsystem32TPSBattM.exe
C:Program FilesMicrosoft OfficeOffice12GrooveMonitor.exe
C:Program FilesMicrosoft Security Essentialsmsseces.exe
C:Program FilesHPHP Software UpdateHPWuSchd2.exe
C:Program FilesMail.RuAgentMAgent.exe
C:Program FilesCommon FilesNokiaMPlatformNokiaMServer.exe
C:Program FilesABBYY Lingvo 12Lvagent.exe
C:Program FilesiTunesiTunesHelper.exe
C:Program FilesTOSHIBAConfigFreeCFSServ.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesToshibaBluetooth Toshiba StackTosBtMng.exe
C:Program FilesHPDigital Imagingbinhpqtra08.exe
C:DOCUME~1UserLOCALS~1Tempbrdva.exe
C:Program FilesMcAfee Security Scan2.0.181SSScheduler.exe
C:Program FilesToshibaBluetooth Toshiba StackTosA2dp.exe
C:Program FilesToshibaBluetooth Toshiba StackTosBtHid.exe
C:Program FilesiPodbiniPodService.exe
C:Program FilesToshibaBluetooth Toshiba StackTosBtHsp.exe
C:Program FilesToshibaBluetooth Toshiba StackTosAVRC.exe
C:Program FilesToshibaBluetooth Toshiba StacktosOBEX.exe
C:Program FilesToshibaBluetooth Toshiba StackTosBtBty.exe
C:Program FilesToshibaBluetooth Toshiba StacktosBtProc.exe
C:Program FilesHPDigital ImagingbinhpqSTE08.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesABBYY Lingvo 12Lingvo.exe
C:Documents and SettingsUserMy DocumentsÏðîãèscanerRSIT.exe
C:Program Filestrend microUser.exe
C:DOCUME~1UserLOCALS~1TempKs8.exeR0 — HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://mail.ru/
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 — HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 — HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 — HKCUSoftwareMicrosoftInternet Connection Wizard,ShellNext = http://renewalcenter.symantec.com/storefront/user/home.jsp?NOS=Yosq4wBIehoOxFIhHiChBC3wc%2FzDrsnYVACC50d3kABChg3rhABDtWmwhDjK%2BxKDxSr3SgJNAh%2FC4WWJQMK6C2D7Q&SASSERVER=lcsitemain.symantec.com&TRANSID=%2F10097711%2FALHl6s0EBB408901E8680&GUID=57990D9C6F111DFA6710026223318BE&SSLT=4096&oslang=iso:RUS&oslocale=iso:RUS&vendid=0&vendtag=&epid={57990d9c-06f1-11df-a671-0026223318be}
R1 — HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = *.local
R3 — URLSearchHook: Ñïóòíèê@Mail.Ru — {09900DE8-1DCA-443F-9243-26FF581438AF} — c:program filesmail.rusputnikMailRuSputnik.dll
O2 — BHO: AcroIEHelperStub — {18DF081C-E8AD-4283-A596-FA578C2EBDC3} — C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelperShim.dll
O2 — BHO: Groove GFS Browser Helper — {72853161-30C5-4D22-B7F9-0BBC1D38A37E} — C:Program FilesMicrosoft OfficeOffice12GrooveShellExtensions.dll
O2 — BHO: Java(tm) Plug-In SSV Helper — {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} — C:Program FilesJavajre6binssv.dll
O2 — BHO: Ñïóòíèê@Mail.Ru — {8984B388-A5BB-4DF7-B274-77B879E179DB} — c:program filesmail.rusputnikMailRuSputnik.dll
O2 — BHO: Java(tm) Plug-In 2 SSV Helper — {DBC80044-A445-435b-BC74-9C25C1C588A9} — C:Program FilesJavajre6binjp2ssv.dll
O2 — BHO: JQSIEStartDetectorImpl — {E7E6F031-17CE-4C07-BC86-EABFE594F69C} — C:Program FilesJavajre6libdeployjqsiejqs_plugin.dll
O3 — Toolbar: Ñïóòíèê@Mail.Ru — {09900DE8-1DCA-443F-9243-26FF581438AF} — c:program filesmail.rusputnikMailRuSputnik.dll
O3 — Toolbar: PROMT — {FF284F5C-7CF9-4682-8701-D467C1DBB99F} — C:Program FilesPRMT78PRMTIEprmtie.dll
O4 — HKLM..Run: [Apoint] C:Program FilesApoint2KApoint.exe
O4 — HKLM..Run: [ACU] «C:Program FilesAtherosACU.exe» -nogui
O4 — HKLM..Run: [Camera Assistant Software] «C:Program FilesCamera Assistant Software for Toshibatraybar.exe» /start
O4 — HKLM..Run: [ITSecMng] %ProgramFiles%TOSHIBABluetooth Toshiba StackItSecMng.exe /START
O4 — HKLM..Run: [TPNF] C:Program FilesTOSHIBATouchPadTPTray.exe
O4 — HKLM..Run: [ThpSrv] C:WINDOWSsystem32thpsrv /logon
O4 — HKLM..Run: [IgfxTray] C:WINDOWSsystem32igfxtray.exe
O4 — HKLM..Run: [HotKeysCmds] C:WINDOWSsystem32hkcmd.exe
O4 — HKLM..Run: [Persistence] C:WINDOWSsystem32igfxpers.exe
O4 — HKLM..Run: [RTHDCPL] RTHDCPL.EXE
O4 — HKLM..Run: [NDSTray.exe] NDSTray.exe
O4 — HKLM..Run: [CeEKEY] C:Program FilesTOSHIBAE-KEYCeEKey.exe
O4 — HKLM..Run: [TDispVol] TDispVol.exe
O4 — HKLM..Run: [HWSetup] C:Program FilesTOSHIBATOSHIBA AppletHWSetup.exe hwSetUP
O4 — HKLM..Run: [ZoomingHook] ZoomingHook.exe
O4 — HKLM..Run: [SmoothView] C:Program FilesTOSHIBATOSHIBA Zooming UtilitySmoothView.exe
O4 — HKLM..Run: [TAccessibility] C:Program FilesTOSHIBAAccessibilityTAccessibility.exe Instant
O4 — HKLM..Run: [TPSMain] TPSMain.exe
O4 — HKLM..Run: [DDWMon] C:Program FilesTOSHIBATOSHIBA Direct Disc Writer\ddwmon.exe
O4 — HKLM..Run: [TUSBSleepChargeSrv] %ProgramFiles%TOSHIBATOSHIBA USB Sleep and Charge UtilityTUSBSleepChargeSrv.exe
O4 — HKLM..Run: [Pinger] c:toshibaivpismpinger.exe /run
O4 — HKLM..Run: [IMJPMIG8.1] «C:WINDOWSIMEimjp8_1IMJPMIG.EXE» /Spoil /RemAdvDef /Migration32
O4 — HKLM..Run: [MSPY2002] C:WINDOWSsystem32IMEPINTLGNTImScInst.exe /SYNC
O4 — HKLM..Run: [PHIME2002ASync] C:WINDOWSsystem32IMETINTLGNTTINTSETP.EXE /SYNC
O4 — HKLM..Run: [PHIME2002A] C:WINDOWSsystem32IMETINTLGNTTINTSETP.EXE /IMEName
O4 — HKLM..Run: [WinampAgent] «C:Program FilesWinampwinampa.exe»
O4 — HKLM..Run: [GrooveMonitor] «C:Program FilesMicrosoft OfficeOffice12GrooveMonitor.exe»
O4 — HKLM..Run: [MSSE] «c:Program FilesMicrosoft Security Essentialsmsseces.exe» -hide -runkey
O4 — HKLM..Run: [HP Software Update] C:Program FilesHPHP Software UpdateHPWuSchd2.exe
O4 — HKLM..Run: [MAgent] C:Program FilesMail.RuAgentMAgent.exe -LM
O4 — HKLM..Run: [NokiaMServer] C:Program FilesCommon FilesNokiaMPlatformNokiaMServer /watchfiles
O4 — HKLM..Run: [Lingvo Launcher] «C:Program FilesABBYY Lingvo 12Lvagent.exe» /STARTUP
O4 — HKLM..Run: [QuickTime Task] «C:Program FilesQuickTimeqttask.exe» -atboottime
O4 — HKLM..Run: [iTunesHelper] «C:Program FilesiTunesiTunesHelper.exe»
O4 — HKLM..Run: [Adobe Reader Speed Launcher] «C:Program FilesAdobeReader 9.0ReaderReader_sl.exe»
O4 — HKLM..Run: [Adobe ARM] «C:Program FilesCommon FilesAdobeARM1.0AdobeARM.exe»
O4 — HKLM..Run: [Driver Control Manager v2.4] C:DOCUME~1UserLOCALS~1Tempbrjedan.exe
O4 — HKLM..Run: [Driver Control Manager v2.5] C:DOCUME~1UserLOCALS~1Tempbrdva.exe
O4 — HKLM..Run: [CFSServ.exe] CFSServ.exe -NoClient
O4 — HKLM..Run: [Malwarebytes Anti-Malware (reboot)] «C:Program FilesMalwarebytes’ Anti-Malwarembam.exe» /runcleanupscript
O4 — HKCU..Run: [Driver Control Manager v2.4] C:DOCUME~1UserLOCALS~1Tempbrjedan.exe
O4 — HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe
O4 — HKCU..Run: [Driver Control Manager v2.5] C:DOCUME~1UserLOCALS~1Tempbrdva.exe
O4 — HKCU..Run: [INCG9WP8HQ] C:DOCUME~1UserLOCALS~1TempKs8.exe
O4 — HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘SYSTEM’)
O4 — HKUSS-1-5-18..Run: [DWQueuedReporting] «C:PROGRA~1COMMON~1MICROS~1DWdwtrig20.exe» -t (User ‘SYSTEM’)
O4 — HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ‘Default user’)
O4 — Global Startup: Bluetooth Manager.lnk = ?
O4 — Global Startup: HP Digital Imaging Monitor.lnk = C:Program FilesHPDigital Imagingbinhpqtra08.exe
O4 — Global Startup: McAfee Security Scan Plus.lnk = ?
O4 — Global Startup: Nokia Nseries PC Suite.lnk = C:Program FilesNokiaNNPCSRunLauncher.exe
O8 — Extra context menu item: &Ïåðåâåñòè ñ ïîìîùüþ ABBYY Lingvo… — res://C:Program FilesABBYY Lingvo 12Lingvo.exe/3000
O8 — Extra context menu item: &Ýêñïîðò â Microsoft Excel — res://C:PROGRA~1MICROS~3Office12EXCEL.EXE/3000
O8 — Extra context menu item: Download all by FlashGet3 — C:Documents and SettingsUserApplication DataFlashGetBHOGetAllUrl.htm
O8 — Extra context menu item: Download by FlashGet3 — C:Documents and SettingsUserApplication DataFlashGetBHOGetUrl.htm
O8 — Extra context menu item: Google ÂèêèÊîììåíòàðèè… — res://C:Program FilesGoogleGoogle ToolbarComponentGoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 — Extra button: Îòïðàâèòü â OneNote — {2670000A-7350-4f3c-8081-5663EE0C6C49} — C:PROGRA~1MICROS~3Office12ONBttnIE.dll
O9 — Extra ‘Tools’ menuitem: &Îòïðàâèòü â OneNote — {2670000A-7350-4f3c-8081-5663EE0C6C49} — C:PROGRA~1MICROS~3Office12ONBttnIE.dll
O9 — Extra button: Mail.Ru Àãåíò — {7558B7E5-7B26-4201-BEDB-00D5FF534523} — C:Program FilesMail.RuAgentmagent.exe
O9 — Extra ‘Tools’ menuitem: Mail.Ru Àãåíò — {7558B7E5-7B26-4201-BEDB-00D5FF534523} — C:Program FilesMail.RuAgentmagent.exe
O9 — Extra button: (no name) — {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} — C:Program FilesPRMT78PRMTIEprmtie5.htm
O9 — Extra ‘Tools’ menuitem: Ïåðåâåñòè — {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} — C:Program FilesPRMT78PRMTIEprmtie5.htm
O9 — Extra button: (no name) — {7A2EFD41-E6B3-11D2-89E3-00E0292EE575} — C:Program FilesPRMT78PRMTIEoptions.htm
O9 — Extra ‘Tools’ menuitem: Íàñòðîéêà ïàðàìåòðîâ ïåðåâîäà — {7A2EFD41-E6B3-11D2-89E3-00E0292EE575} — C:Program FilesPRMT78PRMTIEoptions.htm
O9 — Extra button: Research — {92780B25-18CC-41C8-B9BE-3C9C571A8263} — C:PROGRA~1MICROS~3Office12REFIEBAR.DLL
O9 — Extra button: (no name) — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 — {e2e2dd38-d088-4134-82b7-f2ba38496583} — C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 — Extra button: Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O9 — Extra ‘Tools’ menuitem: Windows Messenger — {FB5F1910-F110-11d2-BB9E-00C04F795683} — C:Program FilesMessengermsmsgs.exe
O15 — Trusted Zone: http://software.kuaiche.com
O16 — DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) — http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1264224230656
O16 — DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} — http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 — Protocol: grooveLocalGWS — {88FED34C-F0CA-4636-A375-3CB6248B04CD} — C:Program FilesMicrosoft OfficeOffice12GrooveSystemServices.dll
O22 — SharedTaskScheduler: Browseui preloader — {438755C2-A8BA-11D1-B96B-00A0C90312E1} — C:WINDOWSsystem32browseui.dll
O22 — SharedTaskScheduler: Component Categories cache daemon — {8C7461EF-2B13-11d2-BE35-3078302C2030} — C:WINDOWSsystem32browseui.dll
O23 — Service: Atheros Configuration Service (ACS) — Atheros — C:WINDOWSsystem32acs.exe
O23 — Service: Apple Mobile Device — Apple Inc. — C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe
O23 — Service: Bonjour Service — Apple Inc. — C:Program FilesBonjourmDNSResponder.exe
O23 — Service: ConfigFree Service (CFSvcs) — TOSHIBA CORPORATION — C:Program FilesTOSHIBAConfigFreeCFSvcs.exe
O23 — Service: InstallDriver Table Manager (IDriverT) — Macrovision Corporation — C:Program FilesCommon FilesInstallShieldDriver1150Intel 32IDriverT.exe
O23 — Service: Ñåðâèñ iPod (iPod Service) — Apple Inc. — C:Program FilesiPodbiniPodService.exe
O23 — Service: Java Quick Starter (JavaQuickStarterService) — Sun Microsystems, Inc. — C:Program FilesJavajre6binjqs.exe
O23 — Service: McAfee Security Scan Component Host Service (McComponentHostService) — McAfee, Inc. — C:Program FilesMcAfee Security Scan2.0.181McCHSvc.exe
O23 — Service: pinger — Unknown owner — C:TOSHIBAIVPISMpinger.exe
O23 — Service: ServiceLayer — Nokia. — C:Program FilesNokiaPC Connectivity SolutionServiceLayer.exe
O23 — Service: Swupdtmr — Unknown owner — c:TOSHIBAIVPswupdateswupdtmr.exe
O23 — Service: TOSHIBA HDD Protection (Thpsrv) — TOSHIBA Corporation — C:WINDOWSsystem32ThpSrv.exe
O23 — Service: TOSHIBA Optical Disc Drive Service (TODDSrv) — TOSHIBA Corporation — C:WINDOWSsystem32TODDSrv.exe
O23 — Service: TOSHIBA Bluetooth Service — TOSHIBA CORPORATION — C:Program FilesToshibaBluetooth Toshiba StackTosBtSrv.exe—
End of file — 14526 bytes======Scheduled tasks folder======
C:WINDOWStasksAppleSoftwareUpdate.job
C:WINDOWStasksMP Scheduled Scan.job
C:WINDOWStasksUser_Feed_Synchronization-{CF0FFDB1-1CAD-4533-81A3-6DC92CC421B0}.job
C:WINDOWStasks{22116563-108C-42c0-A7CE-60161B75E508}.job======Registry dump======
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper — C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelperShim.dll [2010-06-19 75200][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper — C:Program FilesMicrosoft OfficeOffice12GrooveShellExtensions.dll [2009-02-13 2217848][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper — C:Program FilesJavajre6binssv.dll [2009-04-06 320920][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{8984B388-A5BB-4DF7-B274-77B879E179DB}]
MailRuBHO Class — c:program filesmail.rusputnikMailRuSputnik.dll [2010-01-23 1029296][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper — C:Program FilesJavajre6binjp2ssv.dll [2009-04-06 34816][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class — C:Program FilesJavajre6libdeployjqsiejqs_plugin.dll [2009-04-06 73728][HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
{09900DE8-1DCA-443F-9243-26FF581438AF} — Ñïóòíèê@Mail.Ru — c:program filesmail.rusputnikMailRuSputnik.dll [2010-01-23 1029296]
{FF284F5C-7CF9-4682-8701-D467C1DBB99F} — PROMT — C:Program FilesPRMT78PRMTIEprmtie.dll [2007-07-19 454656][HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
«Apoint»=C:Program FilesApoint2KApoint.exe [2007-12-16 184320]
«ACU»=C:Program FilesAtherosACU.exe [2009-03-06 479320]
«Camera Assistant Software»=C:Program FilesCamera Assistant Software for Toshibatraybar.exe [2009-03-26 417792]
«ITSecMng»=C:Program FilesTOSHIBABluetooth Toshiba StackItSecMng.exe [2008-12-20 83336]
«TPNF»=C:Program FilesTOSHIBATouchPadTPTray.exe [2009-04-03 73728]
«ThpSrv»=C:WINDOWSsystem32thpsrv /logon []
«IgfxTray»=C:WINDOWSsystem32igfxtray.exe [2009-02-17 141848]
«HotKeysCmds»=C:WINDOWSsystem32hkcmd.exe [2009-02-17 166424]
«Persistence»=C:WINDOWSsystem32igfxpers.exe [2009-02-17 137752]
«RTHDCPL»=C:WINDOWSRTHDCPL.EXE [2009-03-13 17531392]
«NDSTray.exe»=NDSTray.exe []
«CeEKEY»=C:Program FilesTOSHIBAE-KEYCeEKey.exe [2009-03-18 827392]
«TDispVol»=C:WINDOWSsystem32TDispVol.exe [2009-04-02 210232]
«HWSetup»=C:Program FilesTOSHIBATOSHIBA AppletHWSetup.exe [2004-05-01 28672]
«ZoomingHook»=C:WINDOWSsystem32ZoomingHook.exe [2005-06-06 24576]
«SmoothView»=C:Program FilesTOSHIBATOSHIBA Zooming UtilitySmoothView.exe [2007-04-10 159744]
«TAccessibility»=C:Program FilesTOSHIBAAccessibilityTAccessibility.exe [2009-02-25 110592]
«TPSMain»=C:WINDOWSsystem32TPSMain.exe [2009-03-17 283960]
«DDWMon»=C:Program FilesTOSHIBATOSHIBA Direct Disc Writer\ddwmon.exe [2007-04-14 311296]
«TUSBSleepChargeSrv»=C:Program FilesTOSHIBATOSHIBA USB Sleep and Charge UtilityTUSBSleepChargeSrv.exe [2009-03-17 252288]
«Pinger»=c:toshibaivpismpinger.exe [2007-01-26 136816]
«IMJPMIG8.1″=C:WINDOWSIMEimjp8_1IMJPMIG.EXE [2008-04-14 208952]
«MSPY2002″=C:WINDOWSsystem32IMEPINTLGNTImScInst.exe [2008-04-14 59392]
«PHIME2002ASync»=C:WINDOWSsystem32IMETINTLGNTTINTSETP.EXE [2008-04-14 455168]
«PHIME2002A»=C:WINDOWSsystem32IMETINTLGNTTINTSETP.EXE [2008-04-14 455168]
«WinampAgent»=C:Program FilesWinampwinampa.exe [2010-01-13 37888]
«GrooveMonitor»=C:Program FilesMicrosoft OfficeOffice12GrooveMonitor.exe [2008-10-25 31072]
«MSSE»=c:Program FilesMicrosoft Security Essentialsmsseces.exe [2010-06-01 1093208]
«HP Software Update»=C:Program FilesHPHP Software UpdateHPWuSchd2.exe [2007-03-12 49152]
«MAgent»=C:Program FilesMail.RuAgentMAgent.exe [2010-01-23 8746680]
«NokiaMServer»=C:Program FilesCommon FilesNokiaMPlatformNokiaMServer /watchfiles []
«»= []
«Lingvo Launcher»=C:Program FilesABBYY Lingvo 12Lvagent.exe [2007-07-06 193824]
«QuickTime Task»=C:Program FilesQuickTimeqttask.exe [2009-11-11 417792]
«iTunesHelper»=C:Program FilesiTunesiTunesHelper.exe [2009-11-13 141600]
«Adobe Reader Speed Launcher»=C:Program FilesAdobeReader 9.0ReaderReader_sl.exe [2010-06-20 35760]
«Adobe ARM»=C:Program FilesCommon FilesAdobeARM1.0AdobeARM.exe [2010-06-09 976832]
«Driver Control Manager v2.4″=C:DOCUME~1UserLOCALS~1Tempbrjedan.exe []
«Driver Control Manager v2.5″=C:DOCUME~1UserLOCALS~1Tempbrdva.exe [2010-07-30 104961]
«CFSServ.exe»=CFSServ.exe -NoClient []
«Malwarebytes Anti-Malware (reboot)»=C:Program FilesMalwarebytes’ Anti-Malwarembam.exe [2010-04-29 1090952][HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
«Driver Control Manager v2.4″=C:DOCUME~1UserLOCALS~1Tempbrjedan.exe []
«ctfmon.exe»=C:WINDOWSsystem32ctfmon.exe [2008-04-14 15360]
«Driver Control Manager v2.5″=C:DOCUME~1UserLOCALS~1Tempbrdva.exe [2010-07-30 104961]
«INCG9WP8HQ»=C:DOCUME~1UserLOCALS~1TempKs8.exe [2010-07-31 169984]C:Documents and SettingsAll UsersStart MenuProgramsStartup
Bluetooth Manager.lnk — C:Program FilesToshibaBluetooth Toshiba StackTosBtMng.exe
HP Digital Imaging Monitor.lnk — C:Program FilesHPDigital Imagingbinhpqtra08.exe
McAfee Security Scan Plus.lnk — C:Program FilesMcAfee Security Scan2.0.181SSScheduler.exe
Nokia Nseries PC Suite.lnk — C:Program FilesNokiaNNPCSRunLauncher.exe[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyigfxcui]
C:WINDOWSsystem32igfxdev.dll [2008-02-15 208896][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyWgaLogon]
C:WINDOWSsystem32WgaLogon.dll [2008-08-12 241704][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionShellServiceObjectDelayLoad]
WPDShServiceObj — {AAA288BA-9A4C-45B0-95D7-94D524869DB5} — C:WINDOWSsystem32WPDShServiceObj.dll [2006-10-19 133632][HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerShellExecuteHooks]
«{B5A7F190-DDA6-4420-B3BA-52453494E6CD}»=C:Program FilesMicrosoft OfficeOffice12GrooveShellExtensions.dll [2009-02-13 2217848][HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalMsMpSvc]
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkMsMpSvc]
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
«dontdisplaylastusername»=0
«legalnoticecaption»=
«legalnoticetext»=
«shutdownwithoutlogon»=1
«undockwithoutlogon»=1[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«NoDriveTypeAutoRun»=145[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
«HonorAutoRunSetting»=1[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»
«C:TOSHIBAivpNetIntNetint.exe»=»C:TOSHIBAivpNetIntNetint.exe:*:Enabled:NIE — Toshiba Software Upgrade Engine»
«C:TOSHIBAIvpISMpinger.exe»=»C:TOSHIBAIVPISMpinger.exe:*:Enabled:Toshiba Software Upgrades Pinger»
«C:Program FilesMicrosoft OfficeOffice12OUTLOOK.EXE»=»C:Program FilesMicrosoft OfficeOffice12OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook»
«C:Program FilesMicrosoft OfficeOffice12GROOVE.EXE»=»C:Program FilesMicrosoft OfficeOffice12GROOVE.EXE:*:Enabled:Microsoft Office Groove»
«C:Program FilesMicrosoft OfficeOffice12ONENOTE.EXE»=»C:Program FilesMicrosoft OfficeOffice12ONENOTE.EXE:*:Enabled:Microsoft Office OneNote»
«C:Program FilesHPDigital Imagingbinhpqtra08.exe»=»C:Program FilesHPDigital Imagingbinhpqtra08.exe:*:Enabled:hpqtra08.exe»
«C:Program FilesHPDigital Imagingbinhpqste08.exe»=»C:Program FilesHPDigital Imagingbinhpqste08.exe:*:Enabled:hpqste08.exe»
«C:Program FilesHPDigital Imagingbinhpofxm08.exe»=»C:Program FilesHPDigital Imagingbinhpofxm08.exe:*:Enabled:hpofxm08.exe»
«C:Program FilesHPDigital Imagingbinhposfx08.exe»=»C:Program FilesHPDigital Imagingbinhposfx08.exe:*:Enabled:hposfx08.exe»
«C:Program FilesHPDigital Imagingbinhposid01.exe»=»C:Program FilesHPDigital Imagingbinhposid01.exe:*:Enabled:hposid01.exe»
«C:Program FilesHPDigital Imagingbinhpqscnvw.exe»=»C:Program FilesHPDigital Imagingbinhpqscnvw.exe:*:Enabled:hpqscnvw.exe»
«C:Program FilesHPDigital Imagingbinhpqkygrp.exe»=»C:Program FilesHPDigital Imagingbinhpqkygrp.exe:*:Enabled:hpqkygrp.exe»
«C:Program FilesHPDigital Imagingbinhpzwiz01.exe»=»C:Program FilesHPDigital Imagingbinhpzwiz01.exe:*:Enabled:hpzwiz01.exe»
«C:Program FilesHPDigital Imagingbinhpoews01.exe»=»C:Program FilesHPDigital Imagingbinhpoews01.exe:*:Enabled:hpoews01.exe»
«C:Program FilesHPDigital Imagingbinhpqnrs08.exe»=»C:Program FilesHPDigital Imagingbinhpqnrs08.exe:*:Enabled:hpqnrs08.exe»
«C:Program FilesFlashGet NetworkFlashGet 3FlashGet3.exe»=»C:Program FilesFlashGet NetworkFlashGet 3FlashGet3.exe:*:Enabled:Flashget3»
«C:Program FilesBonjourmDNSResponder.exe»=»C:Program FilesBonjourmDNSResponder.exe:*:Enabled:Bonjour»
«C:Program FilesiTunesiTunes.exe»=»C:Program FilesiTunesiTunes.exe:*:Enabled:iTunes»
«C:Program FilesMail.RuAgentmagent.exe»=»C:Program FilesMail.RuAgentmagent.exe:*:Enabled:Mail.Ru Àãåíò»
«C:Documents and SettingsUserApplication DataFlashgetSetupfgmini.exe»=»C:Documents and SettingsUserApplication DataFlashgetSetupfgmini.exe:*:Enabled:fg_ol_silent»[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]
«%windir%Network Diagnosticxpnetdiag.exe»=»%windir%Network Diagnosticxpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000»
«%windir%system32sessmgr.exe»=»%windir%system32sessmgr.exe:*:enabled:@xpsp2res.dll,-22019»======List of files/folders created in the last 1 months======
2010-07-31 05:08:19 —-D—- C:Program Filestrend micro
2010-07-31 05:08:18 —-D—- C:rsit
2010-07-31 04:25:29 —-A—- C:WINDOWSsystem32driversvtljg.sys
2010-07-30 04:21:14 —-D—- C:Program FilesCCleaner
2010-07-30 02:53:01 —-D—- C:Documents and SettingsUserApplication DataMalwarebytes
2010-07-30 02:52:44 —-A—- C:WINDOWSsystem32driversmbamswissarmy.sys
2010-07-30 02:52:41 —-D—- C:Documents and SettingsAll UsersApplication DataMalwarebytes
2010-07-30 02:52:40 —-D—- C:Program FilesMalwarebytes’ Anti-Malware
2010-07-30 02:52:40 —-A—- C:WINDOWSsystem32driversmbam.sys
2010-07-26 12:05:50 —-RSH—- C:Documents and SettingsUserApplication Dataooyi.exe
2010-07-15 03:07:34 —-HDC—- C:WINDOWS$NtUninstallKB2229593$
2010-07-03 06:29:36 —-D—- C:Documents and SettingsUserApplication DataAshampoo
2010-07-03 06:28:26 —-D—- C:Documents and SettingsAll UsersApplication Dataashampoo
2010-07-03 06:28:04 —-D—- C:Program FilesAshampoo======List of files/folders modified in the last 1 months======
2060-08-19 04:02:22 —-N—- C:WINDOWSsystem32Cc3250mt.dll
2060-08-19 03:40:44 —-N—- C:WINDOWSsystem32Cp3245mt.dll
2060-08-19 03:40:44 —-N—- C:WINDOWSsystem32Borlndmm.dll
2010-07-31 05:14:03 —-SD—- C:WINDOWSTasks
2010-07-31 05:14:00 —-D—- C:WINDOWSPrefetch
2010-07-31 05:08:19 —-RD—- C:Program Files
2010-07-31 05:04:04 —-D—- C:WINDOWSTemp
2010-07-31 04:33:33 —-D—- C:WINDOWSsystem32CatRoot2
2010-07-31 04:25:29 —-D—- C:WINDOWSsystem32drivers
2010-07-31 04:25:24 —-D—- C:WINDOWS
2010-07-31 03:55:49 —-D—- C:WINDOWSWinSxS
2010-07-31 03:55:15 —-A—- C:WINDOWSSchedLgU.Txt
2010-07-31 02:55:12 —-RSD—- C:WINDOWSassembly
2010-07-30 18:50:33 —-HDC—- C:WINDOWS$NtUninstallKB950762$
2010-07-30 18:50:33 —-D—- C:WINDOWSsystem32
2010-07-30 18:50:33 —-D—- C:WINDOWSLhsp
2010-07-30 04:27:01 —-D—- C:Documents and SettingsUserApplication DataMedia Player Classic
2010-07-30 04:26:40 —-D—- C:WINDOWSDebug
2010-07-30 03:50:44 —-HDC—- C:WINDOWS$NtUninstallKB936782_WMP10$
2010-07-29 05:49:43 —-D—- C:Program FilesMozilla Firefox
2010-07-20 17:07:27 —-D—- C:Documents and SettingsUserApplication DataWinamp
2010-07-20 17:06:19 —-HD—- C:WINDOWSinf
2010-07-15 03:07:36 —-RSHDC—- C:WINDOWSsystem32dllcache
2010-07-15 03:07:26 —-HD—- C:WINDOWS$hf_mig$
2010-07-15 03:03:59 —-SHD—- C:WINDOWSInstaller
2010-07-15 03:03:58 —-HD—- C:Config.Msi
2010-07-15 03:03:57 —-D—- C:Documents and SettingsAll UsersApplication DataMicrosoft Help
2010-07-02 20:39:05 —-A—- C:WINDOWSsystem32MRT.exe
2010-07-01 11:26:32 —-D—- C:WINDOWSsystem32FxsTmp
2010-07-01 05:46:43 —-D—- C:Program FilesMicrosoft Security Essentials======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:WINDOWSsystem32driversiaStor.sys [2009-02-12 329752]
R0 PxHelp20;PxHelp20; C:WINDOWSSystem32DriversPxHelp20.sys [2009-04-28 44944]
R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:WINDOWSSystem32driverssfdrv01.sys [2005-08-10 50688]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:WINDOWSSystem32driverssfhlp02.sys [2005-05-16 6656]
R0 sfsync03;StarForce Protection Synchronization Driver (version 3.x); C:WINDOWSSystem32driverssfsync03.sys [2005-08-16 33792]
R0 Thpdrv;TOSHIBA HDD Protection Driver; C:WINDOWSsystem32DRIVERSthpdrv.sys [2008-08-21 28536]
R0 Thpevm;TOSHIBA HDD Protection — Shock Sensor Driver; C:WINDOWSsystem32DRIVERSThpevm.SYS [2007-09-04 6528]
R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:WINDOWSsystem32DRIVERSTVALZ_O.SYS [2009-03-12 23512]
R0 WudfPf;Windows Driver Foundation — User-mode Driver Framework Platform Driver; C:WINDOWSsystem32DRIVERSWudfPf.sys [2006-09-16 76544]
R1 intelppm;Intel Processor Driver; C:WINDOWSsystem32DRIVERSintelppm.sys [2008-04-14 36352]
R1 MpFilter;Microsoft Malware Protection Driver; C:WINDOWSsystem32DRIVERSMpFilter.sys [2010-03-25 151216]
R1 Tosrfcom;Bluetooth RFCOMM; C:WINDOWSSystem32Driverstosrfcom.sys [2008-08-22 64000]
R1 TPwSav;TPwSav; ??C:WINDOWSsystem32driversTPwSav.sys []
R2 Netdevio;TOSHIBA Network Device Usermode I/O Protocol; C:WINDOWSsystem32DRIVERSnetdevio.sys [2003-01-29 12032]
R2 tdudf;TOSHIBA UDF File System Driver; C:WINDOWSsystem32DRIVERStdudf.sys [2007-03-26 105856]
R2 trudf;TOSHIBA DVD-RAM UDF File System Driver; C:WINDOWSsystem32DRIVERStrudf.sys [2007-02-19 134016]
R3 ApfiltrService;Alps Pointing-device Filter Driver; C:WINDOWSsystem32DRIVERSApfiltr.sys [2008-02-07 166448]
R3 AR5416;Atheros AR5008 Wireless Network Adapter Service; C:WINDOWSsystem32DRIVERSathw.sys [2009-02-14 1503840]
R3 cecnuvc;Chicony USB 2.0 Camera VD; C:WINDOWSSystem32Driverscec_uvc.sys [2009-03-26 48176]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:WINDOWSsystem32DRIVERSHDAudBus.sys [2008-04-14 144384]
R3 ialm;ialm; C:WINDOWSsystem32DRIVERSigxpmp32.sys [2008-02-15 5854752]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:WINDOWSsystem32driversRtkHDAud.sys [2009-03-13 5051904]
R3 mouhid;Mouse HID Driver; C:WINDOWSsystem32DRIVERSmouhid.sys [2001-08-17 12160]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:WINDOWSsystem32DRIVERSRtenicxp.sys [2009-01-23 120064]
R3 toshidpt;Bluetooth HID Port; C:WINDOWSsystem32driversToshidpt.sys [2005-07-12 3712]
R3 tosporte;Bluetooth COM Port; C:WINDOWSsystem32DRIVERStosporte.sys [2008-03-25 41472]
R3 tosrfbd;Bluetooth RFBUS; C:WINDOWSsystem32DRIVERStosrfbd.sys [2008-10-07 137984]
R3 tosrfbnp;Bluetooth RFBNEP; C:WINDOWSSystem32Driverstosrfbnp.sys [2007-11-29 36608]
R3 tosrfec;Bluetooth ACPI; C:WINDOWSsystem32DRIVERStosrfec.sys [2006-10-24 9216]
R3 Tosrfhid;Bluetooth RFHID; C:WINDOWSsystem32DRIVERSTosrfhid.sys [2008-08-28 74240]
R3 tosrfnds;Bluetooth Personal Area Network; C:WINDOWSsystem32DRIVERStosrfnds.sys [2005-01-07 18612]
R3 Tosrfusb;Bluetooth USB Controller; C:WINDOWSsystem32DRIVERStosrfusb.sys [2009-01-15 42880]
R3 USBSTOR;USB Mass Storage Driver; C:WINDOWSsystem32DRIVERSUSBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:WINDOWSsystem32DRIVERSusbuhci.sys [2008-04-14 20608]
R3 UVCFTR;UVCFTR; C:WINDOWSSystem32DriversUVCFTR_S.SYS [2009-03-26 17960]
R3 Wdf01000;Wdf01000; C:WINDOWSsystem32DRIVERSWdf01000.sys [2006-11-02 492000]
R3 WSIMD;wsimd Service; C:WINDOWSsystem32DRIVERSwsimd.sys [2009-01-31 58208]
S0 rhhsnn;rhhsnn; C:WINDOWSSystem32driversvtljg.sys [2010-07-31 54016]
S3 Ambfilt;Ambfilt; C:WINDOWSsystem32driversAmbfilt.sys [2008-08-06 1684736]
S3 CCDECODE;Closed Caption Decoder; C:WINDOWSsystem32DRIVERSCCDECODE.sys [2008-04-14 17024]
S3 GEARAspiWDM;GEAR ASPI Filter Driver; C:WINDOWSsystem32DRIVERSGEARAspiWDM.sys [2009-05-18 26600]
S3 HidUsb;Microsoft HID Class Driver; C:WINDOWSsystem32DRIVERShidusb.sys [2008-04-14 10368]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:WINDOWSsystem32DRIVERSHPZid412.sys [2007-03-08 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:WINDOWSsystem32DRIVERSHPZipr12.sys [2007-03-08 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:WINDOWSsystem32DRIVERSHPZius12.sys [2007-03-08 21568]
S3 Monfilt;Monfilt; C:WINDOWSsystem32driversMonfilt.sys [2006-01-04 1389056]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:WINDOWSsystem32driversMSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:WINDOWSsystem32DRIVERSNABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:WINDOWSsystem32DRIVERSNdisIP.sys [2008-04-14 10880]
S3 nmwcd;Nokia USB Phone Parent; C:WINDOWSsystem32driversccdcmb.sys [2007-11-29 16896]
S3 nmwcdc;Nokia USB Generic; C:WINDOWSsystem32driversccdcmbo.sys [2007-11-29 19328]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:WINDOWSsystem32DRIVERSpccsmcfd.sys [2007-09-17 21632]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:WINDOWSSystem32DriversRtsUStor.sys [2009-03-12 164864]
S3 RtsUIR;Realtek IR Driver; C:WINDOWSsystem32DRIVERSRts516xIR.sys []
S3 SLIP;BDA Slip De-Framer; C:WINDOWSsystem32DRIVERSSLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:WINDOWSsystem32DRIVERSStreamIP.sys [2008-04-14 15232]
S3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:WINDOWSsystem32DRIVERStdcmdpst.sys [2007-02-23 16128]
S3 TosRfSnd;Bluetooth Audio; C:WINDOWSsystem32driverstosrfsnd.sys [2008-12-12 54272]
S3 upperdev;upperdev; C:WINDOWSsystem32DRIVERSusbser_lowerflt.sys [2007-11-29 8064]
S3 USBAAPL;Apple Mobile USB Driver; C:WINDOWSSystem32Driversusbaapl.sys [2009-08-29 40448]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:WINDOWSsystem32DRIVERSusbccgp.sys [2008-04-14 32128]
S3 USBCCID;Realtek Smartcard Reader Driver; C:WINDOWSsystem32DRIVERSRtsUCcid.sys []
S3 usbprint;Microsoft USB PRINTER Class; C:WINDOWSsystem32DRIVERSusbprint.sys [2008-04-14 25856]
S3 usbscan;USB Scanner Driver; C:WINDOWSsystem32DRIVERSusbscan.sys [2008-04-14 15104]
S3 usbser;Nokia USB Serial Port; C:WINDOWSsystem32DRIVERSusbser.sys [2008-04-14 26112]
S3 UsbserFilt;UsbserFilt; C:WINDOWSsystem32DRIVERSusbser_lowerfltj.sys [2007-11-29 8064]
S3 usbvideo;USB Video Device (WDM); C:WINDOWSSystem32Driversusbvideo.sys [2008-04-14 121984]
S3 WSTCODEC;World Standard Teletext Codec; C:WINDOWSsystem32DRIVERSWSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation — User-mode Driver Framework Reflector; C:WINDOWSsystem32DRIVERSwudfrd.sys [2006-09-16 82688]======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ACS;Atheros Configuration Service; C:WINDOWSsystem32acs.exe [2009-03-06 495700]
R2 Apple Mobile Device;Apple Mobile Device; C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe [2009-08-29 144672]
R2 Bonjour Service;Bonjour Service; C:Program FilesBonjourmDNSResponder.exe [2008-12-12 238888]
R2 CFSvcs;ConfigFree Service; C:Program FilesTOSHIBAConfigFreeCFSvcs.exe [2005-01-18 40960]
R2 hpqddsvc;Ñëóæáà HP CUE DeviceDiscovery; C:WINDOWSsystem32svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:Program FilesJavajre6binjqs.exe [2009-04-06 152984]
R2 MDM;Machine Debug Manager; C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGmdm.exe [2006-10-26 335872]
R2 MsMpSvc;Microsoft Antimalware Service; c:Program FilesMicrosoft Security EssentialsMsMpEng.exe [2010-03-25 17904]
R2 Net Driver HPZ12;Net Driver HPZ12; C:WINDOWSSystem32svchost.exe [2008-04-14 14336]
R2 pinger;pinger; C:TOSHIBAIVPISMpinger.exe [2007-01-26 136816]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:WINDOWSSystem32svchost.exe [2008-04-14 14336]
R2 Swupdtmr;Swupdtmr; c:TOSHIBAIVPswupdateswupdtmr.exe [2008-05-21 111984]
R2 Thpsrv;TOSHIBA HDD Protection; C:WINDOWSsystem32ThpSrv.exe [2008-08-22 523320]
R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:WINDOWSsystem32TODDSrv.exe [2007-11-22 129632]
R2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:Program FilesToshibaBluetooth Toshiba StackTosBtSrv.exe [2008-10-11 132456]
R2 WudfSvc;Windows Driver Foundation — User-mode Driver Framework; C:WINDOWSsystem32svchost.exe [2008-04-14 14336]
R3 hpqcxs08;hpqcxs08; C:WINDOWSsystem32svchost.exe [2008-04-14 14336]
R3 iPod Service;Ñåðâèñ iPod; C:Program FilesiPodbiniPodService.exe [2009-11-13 545568]
S2 Fax;Fax; C:WINDOWSsystem32fxssvc.exe [2008-04-14 267776]
S3 aspnet_state;ASP.NET State Service; C:WINDOWSMicrosoft.NETFrameworkv2.0.50727aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:WINDOWSMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:WINDOWSMicrosoft.NETFrameworkv3.0WPFPresentationFontCache.exe [2008-07-30 46104]
S3 IDriverT;InstallDriver Table Manager; C:Program FilesCommon FilesInstallShieldDriver1150Intel 32IDriverT.exe [2005-11-14 69632]
S3 idsvc;Windows CardSpace; c:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication Foundationinfocard.exe [2008-07-30 881664]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:Program FilesMcAfee Security Scan2.0.181McCHSvc.exe [2010-01-15 227232]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:Program FilesMicrosoft OfficeOffice12GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:Program FilesCommon FilesMicrosoft SharedOFFICE12ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:Program FilesCommon FilesMicrosoft SharedSource EngineOSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:Program FilesNokiaPC Connectivity SolutionServiceLayer.exe [2008-02-20 354816]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:Program FilesWindows Media PlayerWMPNetwk.exe [2006-10-19 913408]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:WINDOWSMicrosoft.NETFrameworkv3.0Windows Communication FoundationSMSvcHost.exe [2008-07-30 132096]
EOF
31 июля, 2010 в 9:10 дп #30380Еще забыл добавить один штрих.Видимо когда вирус успевает спокойно расспаковываеться,начинают открываться окна в интернет-эксплорере,причем самопроизвольно, с какими-то сайтами,типа заработать в лоторею,а бывает завлекуха на знакомства.Все это ппроисходит при подключенном инете.С Мозилы Файерфокс,которой я пользуюсь обычно,такого не выскакивает.Надеюсь эта подробность даст более полную картину происходящнго.
2 августа, 2010 в 8:45 дп #30381Здравствуйте!
Вирусы есть, но нужен доп. лог.
C:WINDOWSsystem32driversvtljg.sys
Проверьте на http://www.virustotal.com/ru и выложите ссылку на результаты.
Сделайте лог Combofix для дополнительной проверки, не забудьте отключить интернет, выгрузить всё ПО и не нажимать клавиши мыши. -
АвторСообщения
- Для ответа в этой теме необходимо авторизоваться.