Всичко публикувано от generala_18
-
Не мога да вляза в някои сайтове
MBRCheck, version 1.2.3 © 2010, AD Command-line: Windows Version: Windows 7 Ultimate Edition Windows Information: (build 7600), 32-bit Base Board Manufacturer: ASUSTeK Computer INC. BIOS Manufacturer: American Megatrends Inc. System Manufacturer: System manufacturer System Product Name: System Product Name Logical Drives Mask: 0x0000007c Kernel Drivers (total 195): 0x82A45000 \SystemRoot\system32\ntkrnlpa.exe 0x82A0E000 \SystemRoot\system32\halmacpi.dll 0x80BCC000 \SystemRoot\system32\kdcom.dll 0x8420E000 \SystemRoot\system32\mcupdate_AuthenticAMD.dll 0x84219000 \SystemRoot\system32\PSHED.dll 0x8422A000 \SystemRoot\system32\BOOTVID.dll 0x84232000 \SystemRoot\system32\CLFS.SYS 0x84274000 \SystemRoot\system32\CI.dll 0x8431F000 \SystemRoot\system32\drivers\Wdf01000.sys 0x84390000 \SystemRoot\system32\drivers\WDFLDR.SYS 0x8C025000 \SystemRoot\System32\Drivers\speg.sys 0x8C118000 \SystemRoot\System32\Drivers\WMILIB.SYS 0x8C121000 \SystemRoot\System32\Drivers\SCSIPORT.SYS 0x8C147000 \SystemRoot\system32\DRIVERS\ACPI.sys 0x8C18F000 \SystemRoot\system32\DRIVERS\msisadrv.sys 0x8C197000 \SystemRoot\system32\DRIVERS\vdrvroot.sys 0x8C1A2000 \SystemRoot\system32\DRIVERS\pci.sys 0x8C1CC000 \SystemRoot\System32\drivers\partmgr.sys 0x8C1DD000 \SystemRoot\system32\DRIVERS\volmgr.sys 0x8439E000 \SystemRoot\System32\drivers\volmgrx.sys 0x8C1ED000 \SystemRoot\system32\DRIVERS\pciide.sys 0x8C000000 \SystemRoot\system32\DRIVERS\PCIIDEX.SYS 0x8C00E000 \SystemRoot\System32\drivers\mountmgr.sys 0x8C1F4000 \SystemRoot\system32\DRIVERS\atapi.sys 0x8C211000 \SystemRoot\system32\DRIVERS\ataport.SYS 0x8C234000 \SystemRoot\system32\DRIVERS\amdxata.sys 0x8C23D000 \SystemRoot\system32\drivers\fltmgr.sys 0x8C271000 \SystemRoot\system32\drivers\fileinfo.sys 0x8C282000 \SystemRoot\System32\Drivers\PxHelp20.sys 0x8C28E000 \SystemRoot\System32\Drivers\Ntfs.sys 0x8C3BD000 \SystemRoot\System32\Drivers\msrpc.sys 0x8C3E8000 \SystemRoot\System32\Drivers\ksecdd.sys 0x8C421000 \SystemRoot\System32\Drivers\cng.sys 0x8C47E000 \SystemRoot\System32\drivers\pcw.sys 0x8C48C000 \SystemRoot\System32\Drivers\Fs_Rec.sys 0x8C495000 \SystemRoot\system32\drivers\ndis.sys 0x8C54C000 \SystemRoot\system32\drivers\NETIO.SYS 0x8C58A000 \SystemRoot\System32\Drivers\ksecpkg.sys 0x8C625000 \SystemRoot\System32\drivers\tcpip.sys 0x8C76E000 \SystemRoot\System32\drivers\fwpkclnt.sys 0x8C79F000 \SystemRoot\system32\DRIVERS\vmstorfl.sys 0x8C7A8000 \SystemRoot\system32\DRIVERS\volsnap.sys 0x8C7E7000 \SystemRoot\System32\Drivers\spldr.sys 0x8C5AF000 \SystemRoot\System32\drivers\rdyboost.sys 0x8C7EF000 \SystemRoot\System32\Drivers\mup.sys 0x8C837000 \SystemRoot\system32\DRIVERS\kl1.sys 0x8CD59000 \SystemRoot\System32\drivers\hwpolicy.sys 0x8CD61000 \SystemRoot\System32\DRIVERS\fvevol.sys 0x8CD93000 \SystemRoot\system32\DRIVERS\disk.sys 0x8CDA4000 \SystemRoot\system32\DRIVERS\CLASSPNP.SYS 0x8CDC9000 \SystemRoot\System32\Drivers\BtHidBus.sys 0x8C800000 \SystemRoot\system32\DRIVERS\cdrom.sys 0x9181A000 \SystemRoot\system32\DRIVERS\klif.sys 0x9189D000 \SystemRoot\System32\Drivers\Null.SYS 0x918A4000 \SystemRoot\System32\Drivers\Beep.SYS 0x918AB000 \SystemRoot\System32\drivers\vga.sys 0x918B7000 \SystemRoot\System32\drivers\VIDEOPRT.SYS 0x918D8000 \SystemRoot\System32\drivers\watchdog.sys 0x918E5000 \SystemRoot\System32\DRIVERS\RDPCDD.sys 0x918ED000 \SystemRoot\system32\drivers\rdpencdd.sys 0x918F5000 \SystemRoot\system32\drivers\rdprefmp.sys 0x918FD000 \SystemRoot\System32\Drivers\Msfs.SYS 0x91908000 \SystemRoot\System32\Drivers\Npfs.SYS 0x91916000 \SystemRoot\system32\DRIVERS\tdx.sys 0x9192D000 \SystemRoot\system32\DRIVERS\TDI.SYS 0x91938000 \SystemRoot\system32\DRIVERS\kl2.sys 0x9193E000 \SystemRoot\system32\drivers\afd.sys 0x91998000 \SystemRoot\System32\DRIVERS\netbt.sys 0x919CA000 \SystemRoot\system32\DRIVERS\wfplwf.sys 0x919D1000 \SystemRoot\system32\DRIVERS\pacer.sys 0x919F0000 \SystemRoot\system32\DRIVERS\klim6.sys 0x91800000 \SystemRoot\system32\DRIVERS\netbios.sys 0x8C600000 \SystemRoot\system32\DRIVERS\serial.sys 0x8C81F000 \SystemRoot\system32\DRIVERS\wanarp.sys 0x8C5DC000 \SystemRoot\system32\DRIVERS\termdd.sys 0x91017000 \SystemRoot\system32\DRIVERS\rdbss.sys 0x91058000 \SystemRoot\system32\drivers\nsiproxy.sys 0x91062000 \SystemRoot\system32\DRIVERS\mssmbios.sys 0x9106C000 \SystemRoot\System32\drivers\discache.sys 0x91078000 \SystemRoot\system32\drivers\csc.sys 0x910DC000 \SystemRoot\System32\Drivers\dfsc.sys 0x910F4000 \SystemRoot\system32\DRIVERS\blbdrive.sys 0x91102000 \SystemRoot\system32\DRIVERS\tunnel.sys 0x91123000 \SystemRoot\system32\DRIVERS\amdk8.sys 0x91135000 \SystemRoot\system32\DRIVERS\parport.sys 0x9114D000 \SystemRoot\system32\DRIVERS\ASACPI.sys 0x9114F000 \SystemRoot\system32\DRIVERS\i8042prt.sys 0x91167000 \SystemRoot\system32\DRIVERS\kbdclass.sys 0x91174000 \SystemRoot\system32\DRIVERS\serenum.sys 0x9117E000 \SystemRoot\system32\DRIVERS\usbohci.sys 0x91188000 \SystemRoot\system32\DRIVERS\USBPORT.SYS 0x911D3000 \SystemRoot\system32\DRIVERS\usbehci.sys 0x8C400000 \SystemRoot\system32\DRIVERS\HDAudBus.sys 0x91E21000 \SystemRoot\system32\DRIVERS\nvm62x32.sys 0x92C29000 \SystemRoot\system32\DRIVERS\nvlddmkm.sys 0x936A7000 \SystemRoot\system32\DRIVERS\nvBridge.kmd 0x936A9000 \SystemRoot\System32\drivers\dxgkrnl.sys 0x93760000 \SystemRoot\System32\drivers\dxgmms1.sys 0x93799000 \SystemRoot\System32\Drivers\aqml20hz.SYS 0x937D2000 \SystemRoot\System32\Drivers\btnetBus.sys 0x937D8000 \SystemRoot\System32\Drivers\VcommMgr.sys 0x937DF000 \SystemRoot\System32\Drivers\IvtBtBus.sys 0x937E4000 \SystemRoot\system32\DRIVERS\CompositeBus.sys 0x937F1000 \SystemRoot\System32\Drivers\RootMdm.sys 0x92C00000 \SystemRoot\system32\drivers\modem.sys 0x92C0D000 \SystemRoot\system32\DRIVERS\AgileVpn.sys 0x91E76000 \SystemRoot\system32\DRIVERS\rasl2tp.sys 0x91E8E000 \SystemRoot\system32\DRIVERS\ndistapi.sys 0x91E99000 \SystemRoot\system32\DRIVERS\ndiswan.sys 0x91EBB000 \SystemRoot\system32\DRIVERS\raspppoe.sys 0x91ED3000 \SystemRoot\system32\DRIVERS\raspptp.sys 0x91EEA000 \SystemRoot\system32\DRIVERS\rassstp.sys 0x92C1F000 \SystemRoot\system32\DRIVERS\rdpbus.sys 0x91F01000 \SystemRoot\system32\DRIVERS\mouclass.sys 0x937F9000 \SystemRoot\system32\DRIVERS\swenum.sys 0x91F0E000 \SystemRoot\system32\DRIVERS\ks.sys 0x91F42000 \SystemRoot\system32\DRIVERS\umbus.sys 0x91F50000 \SystemRoot\system32\DRIVERS\usbhub.sys 0x91F94000 \SystemRoot\System32\Drivers\NDProxy.SYS 0x91FA5000 \SystemRoot\system32\drivers\HdAudio.sys 0x96A1B000 \SystemRoot\system32\drivers\portcls.sys 0x96A4A000 \SystemRoot\system32\drivers\drmk.sys 0x980F0000 \SystemRoot\System32\win32k.sys 0x96A63000 \SystemRoot\System32\drivers\Dxapi.sys 0x96A6D000 \SystemRoot\System32\Drivers\crashdmp.sys 0x96A7A000 \SystemRoot\System32\Drivers\dump_dumpata.sys 0x96A85000 \SystemRoot\System32\Drivers\dump_atapi.sys 0x96A8E000 \SystemRoot\System32\Drivers\dump_dumpfve.sys 0x96A9F000 \SystemRoot\system32\DRIVERS\hidusb.sys 0x96AAA000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS 0x96ABD000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS 0x96AC4000 \SystemRoot\system32\DRIVERS\USBD.SYS 0x96AC6000 \SystemRoot\system32\DRIVERS\mouhid.sys 0x96AD1000 \SystemRoot\system32\DRIVERS\klmouflt.sys 0x96ADA000 \SystemRoot\system32\DRIVERS\monitor.sys 0x98350000 \SystemRoot\System32\TSDDD.dll 0x98380000 \SystemRoot\System32\cdd.dll 0x96AE5000 \SystemRoot\system32\drivers\luafv.sys 0x96B00000 \SystemRoot\system32\drivers\WudfPf.sys 0x96B1A000 \SystemRoot\system32\DRIVERS\lltdio.sys 0x96B2A000 \SystemRoot\system32\DRIVERS\rspndr.sys 0x96B3D000 \SystemRoot\system32\drivers\HTTP.sys 0x96BC2000 \SystemRoot\system32\DRIVERS\bowser.sys 0x96BDB000 \SystemRoot\System32\drivers\mpsdrv.sys 0x8CDCD000 \SystemRoot\system32\DRIVERS\mrxsmb.sys 0x9E01F000 \SystemRoot\system32\DRIVERS\mrxsmb10.sys 0x9E05A000 \SystemRoot\system32\DRIVERS\mrxsmb20.sys 0x9E075000 \SystemRoot\system32\DRIVERS\parvdm.sys 0x9E07C000 \SystemRoot\system32\drivers\peauth.sys 0x9E113000 \SystemRoot\System32\Drivers\secdrv.SYS 0x9E11D000 \SystemRoot\System32\DRIVERS\srvnet.sys 0x9E13E000 \SystemRoot\System32\drivers\tcpipreg.sys 0x9E14B000 \SystemRoot\System32\DRIVERS\srv2.sys 0x9E19A000 \SystemRoot\System32\DRIVERS\srv.sys 0x9E1EB000 \SystemRoot\system32\DRIVERS\VComm.sys 0x76EC0000 \Windows\System32\ntdll.dll 0x47F50000 \Windows\System32\smss.exe 0x77100000 \Windows\System32\apisetschema.dll 0x000D0000 \Windows\System32\autochk.exe 0x77060000 \Windows\System32\clbcatq.dll 0x77000000 \Windows\System32\difxapi.dll 0x76E70000 \Windows\System32\gdi32.dll 0x76E40000 \Windows\System32\imagehlp.dll 0x76E30000 \Windows\System32\lpk.dll 0x76D60000 \Windows\System32\user32.dll 0x76C80000 \Windows\System32\kernel32.dll 0x76BF0000 \Windows\System32\oleaut32.dll 0x76A90000 \Windows\System32\ole32.dll 0x769E0000 \Windows\System32\msvcrt.dll 0x769A0000 \Windows\System32\ws2_32.dll 0x76990000 \Windows\System32\normaliz.dll 0x768F0000 \Windows\System32\usp10.dll 0x76890000 \Windows\System32\shlwapi.dll 0x76790000 \Windows\System32\wininet.dll 0x766C0000 \Windows\System32\msctf.dll 0x76520000 \Windows\System32\setupapi.dll 0x76500000 \Windows\System32\sechost.dll 0x764B0000 \Windows\System32\Wldap32.dll 0x75860000 \Windows\System32\shell32.dll 0x75720000 \Windows\System32\urlmon.dll 0x75520000 \Windows\System32\iertutil.dll 0x75480000 \Windows\System32\advapi32.dll 0x75460000 \Windows\System32\imm32.dll 0x75450000 \Windows\System32\nsi.dll 0x753A0000 \Windows\System32\rpcrt4.dll 0x75320000 \Windows\System32\comdlg32.dll 0x75310000 \Windows\System32\psapi.dll 0x752E0000 \Windows\System32\cfgmgr32.dll 0x75250000 \Windows\System32\comctl32.dll 0x75200000 \Windows\System32\KernelBase.dll 0x751D0000 \Windows\System32\wintrust.dll 0x750B0000 \Windows\System32\crypt32.dll 0x75090000 \Windows\System32\devobj.dll 0x75080000 \Windows\System32\msasn1.dll 0x10000000 \Program Files\DAEMON Tools Lite\Engine.dll Processes (total 55): 0 System Idle Process 4 System 340 C:\Windows\System32\smss.exe 432 csrss.exe 492 C:\Windows\System32\wininit.exe 504 csrss.exe 548 C:\Windows\System32\services.exe 564 C:\Windows\System32\lsass.exe 572 C:\Windows\System32\lsm.exe 628 C:\Windows\System32\winlogon.exe 720 C:\Windows\System32\svchost.exe 780 C:\Windows\System32\nvvsvc.exe 820 C:\Windows\System32\svchost.exe 880 C:\Windows\System32\svchost.exe 960 C:\Windows\System32\svchost.exe 1012 C:\Windows\System32\svchost.exe 1168 C:\Windows\System32\svchost.exe 1272 C:\Windows\System32\nvvsvc.exe 1288 C:\Windows\System32\svchost.exe 1480 C:\Windows\System32\spoolsv.exe 1500 C:\Windows\System32\taskhost.exe 1592 C:\Windows\System32\svchost.exe 1636 C:\Windows\System32\dwm.exe 1656 C:\Windows\explorer.exe 1776 C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe 1864 C:\Program Files\Common Files\Java\Java Update\jusched.exe 1880 C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe 1912 C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe 1932 C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe 1940 C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe 1992 C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe 2024 C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe 668 C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 1740 C:\Windows\System32\svchost.exe 440 C:\Program Files\TeamViewer\Version4\TeamViewer_Service.exe 2528 C:\Program Files\uTorrent\uTorrent.exe 2580 C:\Program Files\Windows Sidebar\sidebar.exe 2864 C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe 3028 C:\Windows\System32\svchost.exe 3416 C:\Program Files\PC Connectivity Solution\ServiceLayer.exe 3772 C:\Windows\System32\SearchIndexer.exe 3840 C:\Program Files\Windows Media Player\wmpnetwk.exe 3960 C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe 3992 C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe 4020 C:\Program Files\PC Connectivity Solution\Transports\NclIVTBTSrv.exe 1860 C:\Windows\System32\svchost.exe 3564 C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe 3836 C:\Windows\System32\svchost.exe 3432 WmiPrvSE.exe 5120 C:\Windows\System32\svchost.exe 1368 C:\Program Files\Mozilla Firefox\firefox.exe 5532 C:\Program Files\Mozilla Firefox\plugin-container.exe 3612 C:\Users\SPLOTY\Desktop\MBRCheck.exe 4664 C:\Windows\System32\conhost.exe 4956 C:\Windows\System32\dllhost.exe \\.\C: --> \\.\PhysicalDrive0 at offset 0x00000000`00007e00 (NTFS) \\.\D: --> \\.\PhysicalDrive0 at offset 0x00000008`c0833200 (NTFS) PhysicalDrive0 Model Number: ST3320613AS, Rev: CC2F Size Device Name MBR Status -------------------------------------------- 298 GB \\.\PhysicalDrive0 Windows 7 MBR code detected SHA1: 4379A3D43019B46FA357F7DD6A53B45A3CA8FB79 Done!
-
Не мога да вляза в някои сайтове
OTL logfile created on: 8.4.2011 г. 16:39:32 - Run 2 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\SPLOTY\Desktop Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000402 | Country: България | Language: BGR | Date Format: d.M.yyyy 'г.' 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 57,00% Memory free 6,00 Gb Paging File | 5,00 Gb Available in Paging File | 75,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 35,01 Gb Total Space | 9,42 Gb Free Space | 26,92% Space Free | Partition Type: NTFS Drive D: | 263,07 Gb Total Space | 112,75 Gb Free Space | 42,86% Space Free | Partition Type: NTFS Computer Name: SPLOTY-PC | User Name: SPLOTY | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - [2011.04.08 08:28:14 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\SPLOTY\Desktop\OTL.exe PRC - [2011.04.07 19:24:42 | 000,365,336 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe PRC - [2011.04.07 18:49:06 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2011.03.30 14:30:41 | 000,399,736 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files\uTorrent\uTorrent.exe PRC - [2010.10.05 21:26:46 | 000,129,720 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtblfs.exe PRC - [2010.09.02 11:26:02 | 000,672,632 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe PRC - [2010.07.27 15:27:00 | 000,280,960 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe PRC - [2010.07.20 12:45:24 | 001,531,904 | ---- | M] (Nokia) -- C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe PRC - [2010.07.09 17:09:52 | 000,248,936 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe PRC - [2010.06.22 15:22:52 | 000,138,752 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe PRC - [2010.06.14 16:07:14 | 000,615,936 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe PRC - [2010.06.07 14:51:24 | 000,141,312 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclIVTBTSrv.exe PRC - [2009.10.27 11:15:02 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe PRC - [2009.07.14 04:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2009.07.14 04:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2009.06.16 11:48:36 | 000,185,640 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version4\TeamViewer_Service.exe PRC - [2009.02.27 18:04:38 | 000,850,432 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe PRC - [2009.02.27 18:04:34 | 000,278,016 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe PRC - [2009.02.27 17:42:20 | 000,098,407 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe PRC - [2009.02.27 17:40:48 | 000,143,467 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe ========== Modules (SafeList) ========== MOD - [2011.04.08 08:28:14 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\SPLOTY\Desktop\OTL.exe MOD - [2009.07.14 04:03:50 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll ========== Win32 Services (SafeList) ========== SRV - [2011.04.07 19:24:42 | 000,365,336 | ---- | M] (Kaspersky Lab ZAO) [Auto | Running] -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe -- (AVP) SRV - [2010.07.09 17:09:52 | 000,248,936 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service) SRV - [2010.06.14 16:07:14 | 000,615,936 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2009.07.14 04:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009.07.14 04:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc) SRV - [2009.07.14 04:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend) SRV - [2009.06.16 11:48:36 | 000,185,640 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version4\TeamViewer_Service.exe -- (TeamViewer4) SRV - [2009.02.27 18:04:38 | 000,850,432 | ---- | M] () [Auto | Running] -- C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe -- (BlueSoleilCS) SRV - [2009.02.27 17:42:20 | 000,098,407 | ---- | M] () [On_Demand | Running] -- C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe -- (BsHelpCS) SRV - [2009.02.27 17:40:48 | 000,143,467 | ---- | M] () [Auto | Running] -- C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe -- (BsMobileCS) ========== Driver Services (SafeList) ========== DRV - [2011.04.07 18:40:13 | 000,488,536 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\Windows\System32\drivers\klif.sys -- (KLIF) DRV - [2010.11.14 14:22:02 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd) DRV - [2010.07.09 20:37:00 | 011,008,040 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm) DRV - [2010.06.09 17:43:52 | 000,011,352 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\System32\drivers\kl2.sys -- (kl2) DRV - [2010.06.09 17:43:50 | 000,132,184 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\kl1.sys -- (KL1) DRV - [2010.04.22 19:07:34 | 000,022,104 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\System32\drivers\klim6.sys -- (KLIM6) DRV - [2010.02.26 15:32:58 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2010.02.26 15:32:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2010.02.26 15:32:44 | 000,022,528 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2010.02.26 15:32:44 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009.11.02 20:27:16 | 000,019,984 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\klmouflt.sys -- (klmouflt) DRV - [2009.07.14 04:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vmbus.sys -- (vmbus) DRV - [2009.07.14 04:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\vmstorfl.sys -- (storflt) DRV - [2009.07.14 04:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\storvsc.sys -- (storvsc) DRV - [2009.07.14 02:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vms3cap.sys -- (s3cap) DRV - [2009.07.14 02:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\VMBusHID.sys -- (VMBusHID) DRV - [2009.07.14 01:02:52 | 000,347,264 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvm62x32.sys -- (NVENETFD) DRV - [2009.01.08 03:20:04 | 000,031,880 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VCommMgr.sys -- (VcommMgr) DRV - [2009.01.08 00:39:36 | 000,020,744 | ---- | M] (IVT Corporation.) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\BtHidBus.sys -- (BtHidBus) DRV - [2009.01.03 17:40:12 | 000,039,304 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btcusb.sys -- (Btcsrusb) DRV - [2008.12.07 13:44:54 | 000,030,088 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\btnetBus.sys -- (btnetBUs) DRV - [2008.08.26 11:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008.07.02 15:58:48 | 000,026,248 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\IvtBtBus.sys -- (IvtBtBUs) DRV - [2008.01.21 20:27:50 | 000,014,856 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VComm.sys -- (VComm) DRV - [2006.11.22 14:41:18 | 000,022,416 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- C:\Program Files\IVT Corporation\BlueSoleil\Device\Win2k\BTNetFilter.sys -- (BTNetFilter) DRV - [2004.08.13 10:56:20 | 000,005,810 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ASACPI.sys -- (MTsensor) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-606850627-2370920901-347468065-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://flvtubesearch.co/?tmp=toolbar_FlvTube_homepage&prt=flvtubetb04ie&clid=d44b5c80779f48c8a67e2387a5eb74a7 IE - HKU\S-1-5-21-606850627-2370920901-347468065-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = bg IE - HKU\S-1-5-21-606850627-2370920901-347468065-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 20 07 C5 2A C8 85 CB 01 [binary data] IE - HKU\S-1-5-21-606850627-2370920901-347468065-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.search.defaultengine: "Yahoo-FlvTube" FF - prefs.js..browser.search.defaultenginename: "Yahoo-FlvTube" FF - prefs.js..browser.search.order.1: "Yahoo-FlvTube" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.search.selectedEngineURL: "http://flvtubesearch.co/?tmp=toolbar_FLVTube_results&prt=flvtubetb01ff&clid=d44b5c80779f48c8a67e2387a5eb74a7&subid=5045_lm6&Keywords={searchTerms}" FF - prefs.js..browser.startup.homepage: "http://www.hattrick.org/Default.aspx?ReturnUrl=%2fMyHattrick%2fdefault.aspx" FF - prefs.js..extensions.enabledItems: {9d1f059c-cada-4111-9696-41a62d64e3ba}:0.6.2 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 FF - prefs.js..extensions.enabledItems: [email protected]:4.3 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 FF - prefs.js..extensions.enabledItems: [email protected]:1.3.3 FF - prefs.js..extensions.enabledItems: {c8f71e5b-88f8-42a7-98bb-e4c506161de9}:0.4 FF - prefs.js..keyword.URL: "http://start.facemoods.com/results.php?f=5&a=tweak&q=" FF - HKLM\software\mozilla\Firefox\Extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\ [2010.12.10 19:30:15 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.04.07 18:49:14 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.04.07 18:49:14 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Thunderbird\Extensions\\[email protected]: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird FF - HKLM\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2010.12.10 19:30:15 | 000,000,000 | ---D | M] [2010.11.14 14:17:41 | 000,000,000 | ---D | M] (No name found) -- C:\Users\SPLOTY\AppData\Roaming\mozilla\Extensions [2011.04.07 18:36:08 | 000,000,000 | ---D | M] (No name found) -- C:\Users\SPLOTY\AppData\Roaming\mozilla\Firefox\Profiles\ox1z7ldj.default\extensions [2011.03.29 21:32:36 | 000,000,000 | ---D | M] (FoxTrick) -- C:\Users\SPLOTY\AppData\Roaming\mozilla\Firefox\Profiles\ox1z7ldj.default\extensions\{9d1f059c-cada-4111-9696-41a62d64e3ba} [2010.11.14 14:18:04 | 000,000,000 | ---D | M] (AmbientFox) -- C:\Users\SPLOTY\AppData\Roaming\mozilla\Firefox\Profiles\ox1z7ldj.default\extensions\{c8f71e5b-88f8-42a7-98bb-e4c506161de9} [2010.11.14 14:18:08 | 000,000,000 | ---D | M] (Bulgarian Dictionary) -- C:\Users\SPLOTY\AppData\Roaming\mozilla\Firefox\Profiles\ox1z7ldj.default\extensions\[email protected] [2011.04.06 00:01:20 | 000,000,000 | ---D | M] (Beef Taco (Targeted Advertising Cookie Opt-Out)) -- C:\Users\SPLOTY\AppData\Roaming\mozilla\Firefox\Profiles\ox1z7ldj.default\extensions\[email protected] [2011.04.08 12:56:11 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\extensions [2010.11.15 21:31:26 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [2011.02.10 09:02:06 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [2011.04.08 12:56:11 | 000,000,000 | ---D | M] (Anti-Banner) -- C:\Program Files\mozilla firefox\extensions\[email protected] [2011.04.08 08:23:04 | 000,000,000 | ---D | M] (Kaspersky URL Advisor) -- C:\Program Files\mozilla firefox\extensions\[email protected] File not found (No name found) -- [2011.04.07 18:49:05 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2010.11.12 19:53:06 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2011.04.07 18:49:07 | 000,001,083 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\911bg.xml [2011.04.07 18:49:07 | 000,002,442 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\diribg.xml [2010.10.18 15:14:12 | 000,002,037 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fcmdSrchtweak.xml [2010.11.24 19:14:19 | 000,004,948 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\flvtube.xml [2011.04.07 18:49:07 | 000,001,515 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pe-bg.xml [2011.04.07 18:49:07 | 000,001,857 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\portalbgdict.xml [2011.04.07 18:49:07 | 000,001,220 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-bg.xml O1 HOSTS File: ([2011.04.07 17:13:47 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\ievkbd.dll (Kaspersky Lab ZAO) O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO) O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe (Kaspersky Lab ZAO) O4 - HKLM..\Run: [btTray] C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe () O4 - HKLM..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe (Nokia) O4 - HKU\S-1-5-21-606850627-2370920901-347468065-1000..\Run: [NokiaOviSuite2] C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe (Nokia) O4 - HKU\S-1-5-21-606850627-2370920901-347468065-1000..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-606850627-2370920901-347468065-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-606850627-2370920901-347468065-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\ie_banner_deny.htm () O8 - Extra context menu item: Send by Bluetooth - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm () O8 - Extra context menu item: Send via &Message... - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm () O9 - Extra Button: &Virtual Keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO) O9 - Extra Button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23) O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\System32\skype4com.dll (Skype Technologies) O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll) - C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll (Kaspersky Lab ZAO) O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll) - C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll (Kaspersky Lab ZAO) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (systempropertiesperformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - Winlogon\Notify\klogon: DllName - C:\Windows\system32\klogon.dll - C:\Windows\System32\klogon.dll (Kaspersky Lab ZAO) O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009.06.11 00:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ========== Files/Folders - Created Within 30 Days ========== [2011.04.08 12:58:18 | 000,000,000 | ---D | C] -- C:\Program Files\ESET [2011.04.08 12:57:27 | 002,322,184 | ---- | C] (ESET) -- C:\Users\SPLOTY\Desktop\esetsmartinstaller_enu.exe [2011.04.08 08:45:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security 2011 [2011.04.08 08:28:10 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Users\SPLOTY\Desktop\OTL.exe [2011.04.07 18:40:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab [2011.04.07 18:40:23 | 000,000,000 | ---D | C] -- C:\Program Files\Kaspersky Lab [2011.04.07 18:40:13 | 000,488,536 | ---- | C] (Kaspersky Lab) -- C:\Windows\System32\drivers\klif.sys [2011.04.07 18:16:38 | 000,050,688 | ---- | C] (Atribune.org) -- C:\Users\SPLOTY\Desktop\ATF-Cleaner.exe [2011.04.07 17:15:06 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN [2011.04.07 17:15:05 | 000,000,000 | ---D | C] -- C:\Windows\temp [2011.04.07 17:09:27 | 000,161,792 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe [2011.04.07 17:09:27 | 000,136,704 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe [2011.04.07 17:09:27 | 000,031,232 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe [2011.04.07 17:09:22 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT [2011.04.07 17:09:09 | 000,000,000 | ---D | C] -- C:\Qoobox [2011.04.07 17:08:55 | 000,212,480 | ---- | C] (SteelWerX) -- C:\Windows\SWXCACLS.exe [2011.04.07 17:08:52 | 000,000,000 | ---D | C] -- C:\32788R22FWJFW [2011.04.01 12:28:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Electronic Arts [2011.04.01 12:28:10 | 000,000,000 | ---D | C] -- C:\ProgramData\EA Core [2011.03.30 18:21:00 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dcsx_42.dll [2011.03.30 18:21:00 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_42.dll [2011.03.30 18:21:00 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_42.dll [2011.03.30 18:21:00 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx11_42.dll [2011.03.24 19:20:07 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrent [2011.03.24 19:19:51 | 000,000,000 | ---D | C] -- C:\Users\SPLOTY\AppData\Roaming\uTorrent [2011.03.23 12:23:07 | 000,000,000 | ---D | C] -- C:\Users\SPLOTY\Documents\FIFA 10 [2011.03.23 12:21:47 | 000,000,000 | ---D | C] -- C:\Users\SPLOTY\AppData\Roaming\Leadertech [2011.03.23 11:44:08 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_37.dll [2011.03.23 11:44:08 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_35.dll [2011.03.23 11:44:07 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_34.dll [2011.03.23 11:44:07 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_33.dll [2011.03.23 11:44:07 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_32.dll [2011.03.23 11:44:07 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_31.dll [2011.03.23 11:44:03 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_30.dll [2011.03.23 11:44:03 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_29.dll [2011.03.23 11:44:02 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_25.dll [2011.03.23 11:44:02 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_28.dll [2011.03.23 11:44:02 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_27.dll [2011.03.23 11:44:02 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_26.dll [2011.03.23 11:44:02 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_24.dll [2011.03.15 19:33:33 | 000,000,000 | ---D | C] -- C:\Program Files\Stalker Зов Припяти [2011.03.14 20:54:30 | 000,000,000 | ---D | C] -- C:\Users\SPLOTY\Documents\My Games [2011.03.14 20:54:28 | 000,000,000 | ---D | C] -- C:\Users\SPLOTY\AppData\Local\Darksiders [2011.03.14 19:44:15 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\stalke~1.- [2011.03.14 19:38:21 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_42.dll ========== Files - Modified Within 30 Days ========== [2011.04.08 14:05:45 | 000,000,056 | -HS- | M] () -- C:\Windows\KLIF.spi [2011.04.08 13:03:19 | 000,016,944 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011.04.08 13:03:19 | 000,016,944 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011.04.08 13:00:39 | 000,606,992 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2011.04.08 13:00:39 | 000,103,370 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2011.04.08 12:57:28 | 002,322,184 | ---- | M] (ESET) -- C:\Users\SPLOTY\Desktop\esetsmartinstaller_enu.exe [2011.04.08 12:56:24 | 000,005,984 | ---- | M] () -- C:\Windows\System32\LOCALSERVICE.INI [2011.04.08 12:56:05 | 000,001,036 | ---- | M] () -- C:\Windows\System32\bscs.ini [2011.04.08 12:55:58 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011.04.08 12:55:56 | 2616,594,432 | -HS- | M] () -- C:\hiberfil.sys [2011.04.08 08:28:14 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\SPLOTY\Desktop\OTL.exe [2011.04.07 19:24:42 | 000,115,267 | ---- | M] () -- C:\Windows\System32\drivers\klin.dat [2011.04.07 19:24:42 | 000,097,859 | ---- | M] () -- C:\Windows\System32\drivers\klick.dat [2011.04.07 19:02:35 | 000,002,475 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk [2011.04.07 18:50:07 | 000,001,994 | ---- | M] () -- C:\Users\SPLOTY\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk [2011.04.07 18:40:13 | 000,488,536 | ---- | M] (Kaspersky Lab) -- C:\Windows\System32\drivers\klif.sys [2011.04.07 18:16:39 | 000,050,688 | ---- | M] (Atribune.org) -- C:\Users\SPLOTY\Desktop\ATF-Cleaner.exe [2011.04.07 17:13:47 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts [2011.04.07 17:04:39 | 004,315,750 | R--- | M] () -- C:\Users\SPLOTY\Desktop\Tool.exe.exe [2011.04.07 14:27:00 | 000,001,067 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2011.04.07 08:17:21 | 000,625,664 | ---- | M] () -- C:\Users\SPLOTY\Desktop\dds.scr [2011.03.24 19:20:07 | 000,000,937 | ---- | M] () -- C:\Users\SPLOTY\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk [2011.03.24 19:20:07 | 000,000,913 | ---- | M] () -- C:\Users\Public\Desktop\µTorrent.lnk [2011.03.23 12:22:52 | 000,000,585 | ---- | M] () -- C:\Users\SPLOTY\Desktop\FIFA10.lnk [2011.03.22 12:08:41 | 000,015,748 | ---- | M] () -- C:\Users\SPLOTY\Documents\2011-01-31.hrf [2011.03.15 19:38:21 | 000,408,940 | ---- | M] () -- C:\Windows\Stalker Зов Припяти- _Зима_ Uninstaller.exe [2011.03.15 19:38:08 | 000,001,057 | ---- | M] () -- C:\Users\SPLOTY\Desktop\Stalker-COP.lnk [2011.03.14 20:52:58 | 000,006,594 | ---- | M] () -- C:\Users\Public\Documents\stalke~1.ltx ========== Files Created - No Company Name ========== [2011.04.08 14:05:45 | 000,000,056 | -HS- | C] () -- C:\Windows\KLIF.spi [2011.04.07 18:49:16 | 000,001,104 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk [2011.04.07 18:41:28 | 000,115,267 | ---- | C] () -- C:\Windows\System32\drivers\klin.dat [2011.04.07 18:41:28 | 000,097,859 | ---- | C] () -- C:\Windows\System32\drivers\klick.dat [2011.04.07 17:09:27 | 000,256,512 | ---- | C] () -- C:\Windows\PEV.exe [2011.04.07 17:09:27 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe [2011.04.07 17:09:27 | 000,089,088 | ---- | C] () -- C:\Windows\MBR.exe [2011.04.07 17:09:27 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe [2011.04.07 17:09:27 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe [2011.04.07 17:04:07 | 004,315,750 | R--- | C] () -- C:\Users\SPLOTY\Desktop\Tool.exe.exe [2011.04.07 08:17:14 | 000,625,664 | ---- | C] () -- C:\Users\SPLOTY\Desktop\dds.scr [2011.03.24 19:20:07 | 000,000,937 | ---- | C] () -- C:\Users\SPLOTY\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk [2011.03.24 19:20:07 | 000,000,913 | ---- | C] () -- C:\Users\Public\Desktop\µTorrent.lnk [2011.03.23 12:22:35 | 000,000,585 | ---- | C] () -- C:\Users\SPLOTY\Desktop\FIFA10.lnk [2011.03.15 19:38:08 | 000,001,057 | ---- | C] () -- C:\Users\SPLOTY\Desktop\Stalker-COP.lnk [2011.03.15 19:38:07 | 000,408,940 | ---- | C] () -- C:\Windows\Stalker Зов Припяти- _Зима_ Uninstaller.exe [2011.03.14 20:52:58 | 000,006,594 | ---- | C] () -- C:\Users\Public\Documents\stalke~1.ltx [2011.02.10 20:01:14 | 000,002,237 | ---- | C] () -- C:\Windows\System32\SHORTCUT.INI [2011.02.10 20:01:09 | 000,000,264 | ---- | C] () -- C:\Windows\System32\REMOTEDEVICE.INI [2011.02.10 19:58:37 | 000,005,984 | ---- | C] () -- C:\Windows\System32\LOCALSERVICE.INI [2011.02.10 19:58:37 | 000,000,101 | ---- | C] () -- C:\Windows\System32\LOCALDEVICE.INI [2011.02.10 19:58:06 | 000,000,000 | ---- | C] () -- C:\Windows\System32\BSPRINT.INI [2010.11.24 22:52:27 | 000,007,598 | ---- | C] () -- C:\Users\SPLOTY\AppData\Local\Resmon.ResmonCfg [2010.11.14 15:28:50 | 000,000,056 | -H-- | C] () -- C:\Windows\System32\ezsidmv.dat [2010.11.14 14:17:39 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat [2010.11.14 14:15:59 | 000,165,376 | ---- | C] () -- C:\Windows\System32\unrar.dll [2010.11.14 14:15:59 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini [2010.11.14 14:15:58 | 000,790,528 | ---- | C] () -- C:\Windows\System32\xvidcore.dll [2010.11.14 14:15:58 | 000,134,144 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll [2010.11.14 14:15:58 | 000,108,032 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll [2009.09.09 19:01:40 | 000,027,675 | ---- | C] () -- C:\Windows\System32\drivers\klopp.dat [2009.07.14 07:57:37 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2009.07.14 07:33:53 | 000,266,808 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT [2009.07.14 05:05:48 | 000,606,992 | ---- | C] () -- C:\Windows\System32\perfh009.dat [2009.07.14 05:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat [2009.07.14 05:05:48 | 000,103,370 | ---- | C] () -- C:\Windows\System32\perfc009.dat [2009.07.14 05:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat [2009.07.14 05:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT [2009.07.14 05:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat [2009.07.14 03:19:49 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe [2009.07.14 02:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2009.07.14 02:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll [2009.07.14 02:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll [2009.06.11 00:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat [2009.02.27 18:04:46 | 000,001,036 | ---- | C] () -- C:\Windows\System32\bscs.ini [2009.02.27 17:45:16 | 000,405,589 | ---- | C] () -- C:\Windows\System32\BsUI.dll [2009.02.27 17:44:50 | 000,278,647 | ---- | C] () -- C:\Windows\System32\outlookAddin.dll [2009.02.27 17:44:28 | 000,053,248 | ---- | C] () -- C:\Windows\System32\HtmPrintHelper.dll [2009.02.27 17:44:10 | 000,622,693 | ---- | C] () -- C:\Windows\System32\BSShell.dll [2009.02.27 17:41:38 | 000,098,403 | ---- | C] () -- C:\Windows\System32\Bs2Res.dll [2009.02.27 17:41:02 | 000,122,976 | ---- | C] () -- C:\Windows\System32\BsMobileSDK.dll [2009.02.27 17:40:50 | 000,028,672 | ---- | C] () -- C:\Windows\System32\BsMobileCSps.dll [2008.12.07 13:44:54 | 000,030,088 | ---- | C] () -- C:\Windows\System32\drivers\btnetBus.sys [2008.10.22 16:30:30 | 000,081,920 | ---- | C] () -- C:\Windows\System32\BsVistaCommon.dll [2008.03.07 14:54:22 | 017,907,824 | ---- | C] () -- C:\Windows\System32\BsLangInDepRes.dll [2004.08.13 10:56:20 | 000,005,810 | ---- | C] () -- C:\Windows\System32\drivers\ASACPI.sys ========== LOP Check ========== [2011.02.17 22:40:42 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\Big Fish Games [2010.11.16 13:39:44 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\DAEMON Tools Lite [2010.11.14 18:58:22 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\ESET [2011.03.23 12:21:47 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\Leadertech [2010.12.10 19:31:42 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\Nokia [2011.02.09 22:59:37 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\OpenCandy [2010.12.10 19:32:55 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\PC Suite [2011.02.09 23:00:00 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\Software Informer [2010.11.29 22:56:57 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\Super-Cow [2010.11.16 18:34:55 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\Systweak [2011.01.18 21:38:32 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\TeamViewer [2010.11.14 14:16:14 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\Thinstall [2010.11.14 15:23:49 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\URSoft [2011.04.08 16:44:02 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\uTorrent [2011.02.17 22:39:15 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\WhiteBirdsProductions [2011.03.23 08:39:48 | 000,032,586 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT ========== Purity Check ========== ========== Alternate Data Streams ========== @Alternate Data Stream - 160 bytes -> C:\ProgramData\TEMP:1CE11B51 @Alternate Data Stream - 105 bytes -> C:\ProgramData\TEMP:E07230CC < End of report > OTL Extras logfile created on: 8.4.2011 г. 16:39:32 - Run 2 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\SPLOTY\Desktop Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000402 | Country: България | Language: BGR | Date Format: d.M.yyyy 'г.' 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 57,00% Memory free 6,00 Gb Paging File | 5,00 Gb Available in Paging File | 75,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 35,01 Gb Total Space | 9,42 Gb Free Space | 26,92% Space Free | Partition Type: NTFS Drive D: | 263,07 Gb Total Space | 112,75 Gb Free Space | 42,86% Space Free | Partition Type: NTFS Computer Name: SPLOTY-PC | User Name: SPLOTY | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-606850627-2370920901-347468065-1000\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) ========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\Winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\Winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files\Winamp\Winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] ========== System Restore Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 ========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{11202615-E557-4ECF-9B86-F59C81E52909}" = FIFA 10 "{26A24AE4-039D-4CA4-87B4-2F83216022FF}" = Java 6 Update 23 "{379B1C2A-8BDA-4CA4-A4A6-21CAB75B6266}_is1" = Call of Duty - Black Ops "{45DF6D99-666D-41FA-8D62-0E183B6240F3}" = PC Connectivity Solution "{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{5A67D2EA-FB70-4033-A6F3-606AD85B2015}_is1" = Driver Sweeper, версия 2.7.5 "{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}" = Skype™ 3.8 "{6033673D-2530-4587-8AD0-EB059FC263F9}" = Crysis® 2 "{66F1F013-008F-4875-B283-5A814B820347}" = Kaspersky Anti-Virus 2011 "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{749A1EDD-16C2-4C63-B013-D38F0F953973}" = OviMPlatform "{8112C6B3-91E1-4560-8AB9-876DADFA37C5}" = Ovi Desktop Sync Engine "{8A809006-C25A-4A3A-9DAB-94659BCDB107}" = NVIDIA PhysX "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{AC76BA86-7AD7-1033-7B44-AA0000000001}" = Adobe Reader X (10.0.1) "{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86 "{B8B4446F-87E1-4423-A47A-16832C24A199}" = Nokia Ovi Suite "{C0A871F9-D580-4404-9A69-A02CF3078C87}" = Bluesoleil 6.4.249.0 "{EE5B5B24-EEFC-4C8B-BF8B-256D705BAD89}" = Nokia Ovi Suite Software Updater "{F1FDAA01-988C-423F-AC12-0D8F333943FD}" = Nokia Connectivity Cable Driver "504244733D18C8F63FF584AEB290E3904E791693" = Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0) "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "BitComet" = BitComet 0.70 "Drawn Dark Flight Regular V1.1 1.1.0" = Drawn Dark Flight Regular V1.1 1.1.0 "ESET Online Scanner" = ESET Online Scanner v3 "Hattrick Organizer" = Hattrick Organizer (remove only) "InstallWIX_{66F1F013-008F-4875-B283-5A814B820347}" = Kaspersky Internet Security 2011 "KLiteCodecPack_is1" = K-Lite Mega Codec Pack 6.2.0 "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Mozilla Firefox 4.0 (x86 bg)" = Mozilla Firefox 4.0 (x86 bg) "Nokia Ovi Suite" = Nokia Ovi Suite "NVIDIA Display Control Panel" = NVIDIA Display Control Panel "NVIDIA Drivers" = NVIDIA Drivers "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "ProPilkki2" = ProPilkki2 "RegClean Pro_is1" = RegClean Pro "Revolt" = Revolt "Software Informer_is1" = Software Informer 1.0 BETA "Sophos-AntiRootkit" = Sophos Anti-Rootkit 1.5.4 "Stalker Зов Припяти- "Зима"" = Stalker Зов Припяти- "Зима" "Supercow_is1" = Supercow "TeamViewer 4" = TeamViewer 4 "The KMPlayer" = The KMPlayer (remove only) "uTorrent" = µTorrent "Winamp" = Winamp (remove only) "WinRAR archiver" = WinRAR archiver "YU2010_is1" = Your Uninstaller! 2010 ========== Last 10 Event Log Errors ========== [ Application Events ] Error - 28.2.2011 г. 06:33:12 | Computer Name = SPLOTY-PC | Source = OviSuite | ID = 1 Description = 28/02/2011 12:33:12 (OviSuite) - ERROR - MessagesPlugin, Thread GUI, Line 834, .\Application\ItemsView.cpp, CItemsView::getMessageModel(): m_pMsgFilter is NULL. Could not get message model. Error - 28.2.2011 г. 06:33:12 | Computer Name = SPLOTY-PC | Source = OviSuite | ID = 1 Description = 28/02/2011 12:33:12 (OviSuite) - ERROR - MessagesPlugin, Thread GUI, Line 834, .\Application\ItemsView.cpp, CItemsView::getMessageModel(): m_pMsgFilter is NULL. Could not get message model. Error - 28.2.2011 г. 06:33:12 | Computer Name = SPLOTY-PC | Source = OviSuite | ID = 1 Description = 28/02/2011 12:33:12 (OviSuite) - ERROR - MessagesPlugin, Thread GUI, Line 834, .\Application\ItemsView.cpp, CItemsView::getMessageModel(): m_pMsgFilter is NULL. Could not get message model. Error - 28.2.2011 г. 06:33:12 | Computer Name = SPLOTY-PC | Source = OviSuite | ID = 1 Description = 28/02/2011 12:33:12 (OviSuite) - ERROR - MessagesPlugin, Thread GUI, Line 834, .\Application\ItemsView.cpp, CItemsView::getMessageModel(): m_pMsgFilter is NULL. Could not get message model. Error - 28.2.2011 г. 06:33:13 | Computer Name = SPLOTY-PC | Source = OviSuite | ID = 1 Description = 28/02/2011 12:33:13 (OviSuite) - ERROR - CommonWidgets, Thread GUI, Line 491, .\Application\CommonNavigationPane2\CommonNavigationPane.cpp, CCommonNavigationPane::getSelectedIndexes(): Selection model is NULL! Error - 28.2.2011 г. 06:33:14 | Computer Name = SPLOTY-PC | Source = OviSuite | ID = 1 Description = 28/02/2011 12:33:14 (OviSuite) - ERROR - CommonWidgets, Thread GUI, Line 491, .\Application\CommonNavigationPane2\CommonNavigationPane.cpp, CCommonNavigationPane::getSelectedIndexes(): Selection model is NULL! Error - 28.2.2011 г. 06:33:18 | Computer Name = SPLOTY-PC | Source = OviSuite | ID = 1 Description = 28/02/2011 12:33:18 (OviSuite) - ERROR - PhotosPlugin, Thread GUI, Line 274, .\Application\NavigationPaneView.cpp, CNavigationPaneView::getObservationIndex(): Could not found the model pointer Error - 28.2.2011 г. 06:33:18 | Computer Name = SPLOTY-PC | Source = OviSuite | ID = 1 Description = 28/02/2011 12:33:18 (OviSuite) - ERROR - CommonWidgets, Thread GUI, Line 192, .\Application\CommonHomeWidget\StackHomeAnimation.cpp, StackHomeAnimation::updateAnimation(): Pixmap count needs to be at least 1 Error - 28.2.2011 г. 11:29:03 | Computer Name = SPLOTY-PC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80U.DLL". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 28.2.2011 г. 11:29:04 | Computer Name = SPLOTY-PC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80U.DLL". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. [ System Events ] Error - 14.3.2011 г. 14:29:28 | Computer Name = SPLOTY-PC | Source = EventLog | ID = 6008 Description = The previous system shutdown at 20:27:59 ч. on ?14.?3.?2011 ?г. was unexpected. Error - 15.3.2011 г. 07:32:12 | Computer Name = SPLOTY-PC | Source = Service Control Manager | ID = 7011 Description = Изтекъл период на изчакване (30000 милисекунди) при изчакване на отговор за транзакция от услуга Netman. Error - 16.3.2011 г. 13:48:03 | Computer Name = SPLOTY-PC | Source = Service Control Manager | ID = 7011 Description = Изтекъл период на изчакване (30000 милисекунди) при изчакване на отговор за транзакция от услуга lmhosts. Error - 4.4.2011 г. 15:23:14 | Computer Name = SPLOTY-PC | Source = volsnap | ID = 393252 Description = The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. Error - 5.4.2011 г. 05:07:49 | Computer Name = SPLOTY-PC | Source = VDS Basic Provider | ID = 33554433 Description = Error - 5.4.2011 г. 05:07:49 | Computer Name = SPLOTY-PC | Source = VDS Basic Provider | ID = 33554433 Description = Error - 7.4.2011 г. 10:10:18 | Computer Name = SPLOTY-PC | Source = Service Control Manager | ID = 7030 Description = Услуга PEVSystemStart е маркирана като интерактивна услуга. Обаче системата е конфигурирана да не допуска интерактивни услуги. Тази услуга може да не функционира правилно. Error - 7.4.2011 г. 10:12:05 | Computer Name = SPLOTY-PC | Source = Service Control Manager | ID = 7030 Description = Услуга PEVSystemStart е маркирана като интерактивна услуга. Обаче системата е конфигурирана да не допуска интерактивни услуги. Тази услуга може да не функционира правилно. Error - 7.4.2011 г. 10:13:49 | Computer Name = SPLOTY-PC | Source = Service Control Manager | ID = 7030 Description = Услуга PEVSystemStart е маркирана като интерактивна услуга. Обаче системата е конфигурирана да не допуска интерактивни услуги. Тази услуга може да не функционира правилно. Error - 7.4.2011 г. 15:01:41 | Computer Name = SPLOTY-PC | Source = volsnap | ID = 393252 Description = The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. < End of report >
-
Не мога да вляза в някои сайтове
ESETSmartInstaller@High as downloader log: all ok # version=7 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6425 # api_version=3.0.2 # EOSSerial=c068f042f3e5a547b2b1466bd7c85747 # end=finished # remove_checked=true # archives_checked=true # unwanted_checked=true # unsafe_checked=true # antistealth_checked=true # utc_time=2011-04-08 11:58:21 # local_time=2011-04-08 02:58:21 ) # country="Bulgaria" # lang=1033 # osver=6.1.7600 NT # compatibility_mode=1280 16777215 100 0 66469 66469 0 0 # compatibility_mode=5893 16776573 100 94 12506519 53888483 0 0 # compatibility_mode=8192 67108863 100 0 594 594 0 0 # scanned=121353 # found=0 # cleaned=0 # scan_time=6609
-
Не мога да вляза в някои сайтове
OTL logfile created on: 8.4.2011 г. 08:29:46 - Run 1 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\SPLOTY\Desktop Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000402 | Country: България | Language: BGR | Date Format: d.M.yyyy 'г.' 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 66,00% Memory free 6,00 Gb Paging File | 5,00 Gb Available in Paging File | 81,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 35,01 Gb Total Space | 9,59 Gb Free Space | 27,38% Space Free | Partition Type: NTFS Drive D: | 263,07 Gb Total Space | 112,74 Gb Free Space | 42,86% Space Free | Partition Type: NTFS Computer Name: SPLOTY-PC | User Name: SPLOTY | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - [2011.04.08 08:28:14 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\SPLOTY\Desktop\OTL.exe PRC - [2011.04.07 19:24:42 | 000,365,336 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe PRC - [2011.04.07 18:49:06 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2011.03.30 14:30:41 | 000,399,736 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files\uTorrent\uTorrent.exe PRC - [2010.09.02 11:26:02 | 000,672,632 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe PRC - [2010.07.27 15:27:00 | 000,280,960 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe PRC - [2010.07.20 12:45:24 | 001,531,904 | ---- | M] (Nokia) -- C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe PRC - [2010.07.09 17:09:52 | 000,248,936 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe PRC - [2010.06.22 15:22:52 | 000,138,752 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe PRC - [2010.06.14 16:07:14 | 000,615,936 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe PRC - [2010.06.07 14:51:24 | 000,141,312 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclIVTBTSrv.exe PRC - [2009.10.27 11:15:02 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe PRC - [2009.07.14 04:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2009.07.14 04:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2009.06.16 11:48:36 | 000,185,640 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version4\TeamViewer_Service.exe PRC - [2009.02.27 18:04:38 | 000,850,432 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe PRC - [2009.02.27 18:04:34 | 000,278,016 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe PRC - [2009.02.27 17:42:20 | 000,098,407 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe PRC - [2009.02.27 17:40:48 | 000,143,467 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe ========== Modules (SafeList) ========== MOD - [2011.04.08 08:28:14 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\SPLOTY\Desktop\OTL.exe MOD - [2009.07.14 04:03:50 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll ========== Win32 Services (SafeList) ========== SRV - [2011.04.07 19:24:42 | 000,365,336 | ---- | M] (Kaspersky Lab ZAO) [Auto | Running] -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe -- (AVP) SRV - [2010.07.09 17:09:52 | 000,248,936 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service) SRV - [2010.06.14 16:07:14 | 000,615,936 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2009.07.14 04:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009.07.14 04:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc) SRV - [2009.07.14 04:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend) SRV - [2009.06.16 11:48:36 | 000,185,640 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version4\TeamViewer_Service.exe -- (TeamViewer4) SRV - [2009.02.27 18:04:38 | 000,850,432 | ---- | M] () [Auto | Running] -- C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe -- (BlueSoleilCS) SRV - [2009.02.27 17:42:20 | 000,098,407 | ---- | M] () [On_Demand | Running] -- C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe -- (BsHelpCS) SRV - [2009.02.27 17:40:48 | 000,143,467 | ---- | M] () [Auto | Running] -- C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe -- (BsMobileCS) ========== Driver Services (SafeList) ========== DRV - [2011.04.07 18:40:13 | 000,488,536 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\Windows\System32\drivers\klif.sys -- (KLIF) DRV - [2010.11.14 14:22:02 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd) DRV - [2010.07.09 20:37:00 | 011,008,040 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm) DRV - [2010.06.09 17:43:52 | 000,011,352 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\System32\drivers\kl2.sys -- (kl2) DRV - [2010.06.09 17:43:50 | 000,132,184 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\kl1.sys -- (KL1) DRV - [2010.04.22 19:07:34 | 000,022,104 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\System32\drivers\klim6.sys -- (KLIM6) DRV - [2010.02.26 15:32:58 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2010.02.26 15:32:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2010.02.26 15:32:44 | 000,022,528 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2010.02.26 15:32:44 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009.11.02 20:27:16 | 000,019,984 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\klmouflt.sys -- (klmouflt) DRV - [2009.07.14 04:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vmbus.sys -- (vmbus) DRV - [2009.07.14 04:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\vmstorfl.sys -- (storflt) DRV - [2009.07.14 04:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\storvsc.sys -- (storvsc) DRV - [2009.07.14 02:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vms3cap.sys -- (s3cap) DRV - [2009.07.14 02:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\VMBusHID.sys -- (VMBusHID) DRV - [2009.07.14 01:02:52 | 000,347,264 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvm62x32.sys -- (NVENETFD) DRV - [2009.01.08 03:20:04 | 000,031,880 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VCommMgr.sys -- (VcommMgr) DRV - [2009.01.08 00:39:36 | 000,020,744 | ---- | M] (IVT Corporation.) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\BtHidBus.sys -- (BtHidBus) DRV - [2009.01.03 17:40:12 | 000,039,304 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btcusb.sys -- (Btcsrusb) DRV - [2008.12.07 13:44:54 | 000,030,088 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\btnetBus.sys -- (btnetBUs) DRV - [2008.08.26 11:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008.07.02 15:58:48 | 000,026,248 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\IvtBtBus.sys -- (IvtBtBUs) DRV - [2008.01.21 20:27:50 | 000,014,856 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VComm.sys -- (VComm) DRV - [2006.11.22 14:41:18 | 000,022,416 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- C:\Program Files\IVT Corporation\BlueSoleil\Device\Win2k\BTNetFilter.sys -- (BTNetFilter) DRV - [2004.08.13 10:56:20 | 000,005,810 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ASACPI.sys -- (MTsensor) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-606850627-2370920901-347468065-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://flvtubesearch.co/?tmp=toolbar_FlvTube_homepage&prt=flvtubetb04ie&clid=d44b5c80779f48c8a67e2387a5eb74a7 IE - HKU\S-1-5-21-606850627-2370920901-347468065-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = bg IE - HKU\S-1-5-21-606850627-2370920901-347468065-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 20 07 C5 2A C8 85 CB 01 [binary data] IE - HKU\S-1-5-21-606850627-2370920901-347468065-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.search.defaultengine: "Yahoo-FlvTube" FF - prefs.js..browser.search.defaultenginename: "Yahoo-FlvTube" FF - prefs.js..browser.search.order.1: "Yahoo-FlvTube" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.search.selectedEngineURL: "http://flvtubesearch.co/?tmp=toolbar_FLVTube_results&prt=flvtubetb01ff&clid=d44b5c80779f48c8a67e2387a5eb74a7&subid=5045_lm6&Keywords={searchTerms}" FF - prefs.js..browser.startup.homepage: "http://www.hattrick.org/Default.aspx?ReturnUrl=%2fMyHattrick%2fdefault.aspx" FF - prefs.js..extensions.enabledItems: {9d1f059c-cada-4111-9696-41a62d64e3ba}:0.6.2 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 FF - prefs.js..extensions.enabledItems: [email protected]:4.3 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 FF - prefs.js..extensions.enabledItems: [email protected]:1.3.3 FF - prefs.js..extensions.enabledItems: {c8f71e5b-88f8-42a7-98bb-e4c506161de9}:0.4 FF - prefs.js..keyword.URL: "http://start.facemoods.com/results.php?f=5&a=tweak&q=" FF - HKLM\software\mozilla\Firefox\Extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\ [2010.12.10 19:30:15 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.04.07 18:49:14 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.04.07 18:49:14 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Thunderbird\Extensions\\[email protected]: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird FF - HKLM\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2010.12.10 19:30:15 | 000,000,000 | ---D | M] [2010.11.14 14:17:41 | 000,000,000 | ---D | M] (No name found) -- C:\Users\SPLOTY\AppData\Roaming\mozilla\Extensions [2011.04.07 18:36:08 | 000,000,000 | ---D | M] (No name found) -- C:\Users\SPLOTY\AppData\Roaming\mozilla\Firefox\Profiles\ox1z7ldj.default\extensions [2011.03.29 21:32:36 | 000,000,000 | ---D | M] (FoxTrick) -- C:\Users\SPLOTY\AppData\Roaming\mozilla\Firefox\Profiles\ox1z7ldj.default\extensions\{9d1f059c-cada-4111-9696-41a62d64e3ba} [2010.11.14 14:18:04 | 000,000,000 | ---D | M] (AmbientFox) -- C:\Users\SPLOTY\AppData\Roaming\mozilla\Firefox\Profiles\ox1z7ldj.default\extensions\{c8f71e5b-88f8-42a7-98bb-e4c506161de9} [2010.11.14 14:18:08 | 000,000,000 | ---D | M] (Bulgarian Dictionary) -- C:\Users\SPLOTY\AppData\Roaming\mozilla\Firefox\Profiles\ox1z7ldj.default\extensions\[email protected] [2011.04.06 00:01:20 | 000,000,000 | ---D | M] (Beef Taco (Targeted Advertising Cookie Opt-Out)) -- C:\Users\SPLOTY\AppData\Roaming\mozilla\Firefox\Profiles\ox1z7ldj.default\extensions\[email protected] [2011.04.08 08:23:02 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\extensions [2010.11.15 21:31:26 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [2011.02.10 09:02:06 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [2011.04.08 08:23:04 | 000,000,000 | ---D | M] (Kaspersky URL Advisor) -- C:\Program Files\mozilla firefox\extensions\[email protected] File not found (No name found) -- [2011.04.07 18:49:05 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2010.11.12 19:53:06 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2011.04.07 18:49:07 | 000,001,083 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\911bg.xml [2011.04.07 18:49:07 | 000,002,442 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\diribg.xml [2010.10.18 15:14:12 | 000,002,037 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fcmdSrchtweak.xml [2010.11.24 19:14:19 | 000,004,948 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\flvtube.xml [2011.04.07 18:49:07 | 000,001,515 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pe-bg.xml [2011.04.07 18:49:07 | 000,001,857 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\portalbgdict.xml [2011.04.07 18:49:07 | 000,001,220 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-bg.xml O1 HOSTS File: ([2011.04.07 17:13:47 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\ievkbd.dll (Kaspersky Lab ZAO) O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO) O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe (Kaspersky Lab ZAO) O4 - HKLM..\Run: [btTray] C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe () O4 - HKLM..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe (Nokia) O4 - HKU\S-1-5-21-606850627-2370920901-347468065-1000..\Run: [NokiaOviSuite2] C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe (Nokia) O4 - HKU\S-1-5-21-606850627-2370920901-347468065-1000..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-606850627-2370920901-347468065-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-606850627-2370920901-347468065-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: Send by Bluetooth - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm () O8 - Extra context menu item: Send via &Message... - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm () O9 - Extra Button: &Virtual Keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO) O9 - Extra Button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23) O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\System32\skype4com.dll (Skype Technologies) O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll) - C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll (Kaspersky Lab ZAO) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (systempropertiesperformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - Winlogon\Notify\klogon: DllName - C:\Windows\system32\klogon.dll - C:\Windows\System32\klogon.dll (Kaspersky Lab ZAO) O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009.06.11 00:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ========== Files/Folders - Created Within 30 Days ========== [2011.04.08 08:28:10 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Users\SPLOTY\Desktop\OTL.exe [2011.04.07 18:41:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus 2011 [2011.04.07 18:40:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab [2011.04.07 18:40:23 | 000,000,000 | ---D | C] -- C:\Program Files\Kaspersky Lab [2011.04.07 18:40:13 | 000,488,536 | ---- | C] (Kaspersky Lab) -- C:\Windows\System32\drivers\klif.sys [2011.04.07 18:16:38 | 000,050,688 | ---- | C] (Atribune.org) -- C:\Users\SPLOTY\Desktop\ATF-Cleaner.exe [2011.04.07 17:15:06 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN [2011.04.07 17:15:05 | 000,000,000 | ---D | C] -- C:\Windows\temp [2011.04.07 17:09:27 | 000,161,792 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe [2011.04.07 17:09:27 | 000,136,704 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe [2011.04.07 17:09:27 | 000,031,232 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe [2011.04.07 17:09:22 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT [2011.04.07 17:09:09 | 000,000,000 | ---D | C] -- C:\Qoobox [2011.04.07 17:08:55 | 000,212,480 | ---- | C] (SteelWerX) -- C:\Windows\SWXCACLS.exe [2011.04.07 17:08:52 | 000,000,000 | ---D | C] -- C:\32788R22FWJFW [2011.04.01 12:28:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Electronic Arts [2011.04.01 12:28:10 | 000,000,000 | ---D | C] -- C:\ProgramData\EA Core [2011.03.30 18:21:00 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dcsx_42.dll [2011.03.30 18:21:00 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_42.dll [2011.03.30 18:21:00 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_42.dll [2011.03.30 18:21:00 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx11_42.dll [2011.03.24 19:20:07 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrent [2011.03.24 19:19:51 | 000,000,000 | ---D | C] -- C:\Users\SPLOTY\AppData\Roaming\uTorrent [2011.03.23 12:23:07 | 000,000,000 | ---D | C] -- C:\Users\SPLOTY\Documents\FIFA 10 [2011.03.23 12:21:47 | 000,000,000 | ---D | C] -- C:\Users\SPLOTY\AppData\Roaming\Leadertech [2011.03.23 11:44:08 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_37.dll [2011.03.23 11:44:08 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_35.dll [2011.03.23 11:44:07 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_34.dll [2011.03.23 11:44:07 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_33.dll [2011.03.23 11:44:07 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_32.dll [2011.03.23 11:44:07 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_31.dll [2011.03.23 11:44:03 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_30.dll [2011.03.23 11:44:03 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_29.dll [2011.03.23 11:44:02 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_25.dll [2011.03.23 11:44:02 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_28.dll [2011.03.23 11:44:02 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_27.dll [2011.03.23 11:44:02 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_26.dll [2011.03.23 11:44:02 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_24.dll [2011.03.15 19:33:33 | 000,000,000 | ---D | C] -- C:\Program Files\Stalker Зов Припяти [2011.03.14 20:54:30 | 000,000,000 | ---D | C] -- C:\Users\SPLOTY\Documents\My Games [2011.03.14 20:54:28 | 000,000,000 | ---D | C] -- C:\Users\SPLOTY\AppData\Local\Darksiders [2011.03.14 19:44:15 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\stalke~1.- [2011.03.14 19:38:21 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_42.dll ========== Files - Modified Within 30 Days ========== [2011.04.08 08:30:07 | 000,016,944 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011.04.08 08:30:07 | 000,016,944 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011.04.08 08:28:14 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\SPLOTY\Desktop\OTL.exe [2011.04.08 08:27:27 | 000,606,992 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2011.04.08 08:27:27 | 000,103,370 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2011.04.08 08:23:23 | 000,005,984 | ---- | M] () -- C:\Windows\System32\LOCALSERVICE.INI [2011.04.08 08:22:35 | 000,001,036 | ---- | M] () -- C:\Windows\System32\bscs.ini [2011.04.08 08:22:18 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011.04.08 08:22:09 | 2616,594,432 | -HS- | M] () -- C:\hiberfil.sys [2011.04.07 19:24:42 | 000,115,267 | ---- | M] () -- C:\Windows\System32\drivers\klin.dat [2011.04.07 19:24:42 | 000,097,859 | ---- | M] () -- C:\Windows\System32\drivers\klick.dat [2011.04.07 19:02:35 | 000,002,475 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk [2011.04.07 18:50:07 | 000,001,994 | ---- | M] () -- C:\Users\SPLOTY\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk [2011.04.07 18:40:13 | 000,488,536 | ---- | M] (Kaspersky Lab) -- C:\Windows\System32\drivers\klif.sys [2011.04.07 18:16:39 | 000,050,688 | ---- | M] (Atribune.org) -- C:\Users\SPLOTY\Desktop\ATF-Cleaner.exe [2011.04.07 17:13:47 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts [2011.04.07 17:04:39 | 004,315,750 | R--- | M] () -- C:\Users\SPLOTY\Desktop\Tool.exe.exe [2011.04.07 14:27:00 | 000,001,067 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2011.04.07 08:17:21 | 000,625,664 | ---- | M] () -- C:\Users\SPLOTY\Desktop\dds.scr [2011.03.24 19:20:07 | 000,000,937 | ---- | M] () -- C:\Users\SPLOTY\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk [2011.03.24 19:20:07 | 000,000,913 | ---- | M] () -- C:\Users\Public\Desktop\µTorrent.lnk [2011.03.23 12:22:52 | 000,000,585 | ---- | M] () -- C:\Users\SPLOTY\Desktop\FIFA10.lnk [2011.03.22 12:08:41 | 000,015,748 | ---- | M] () -- C:\Users\SPLOTY\Documents\2011-01-31.hrf [2011.03.15 19:38:21 | 000,408,940 | ---- | M] () -- C:\Windows\Stalker Зов Припяти- _Зима_ Uninstaller.exe [2011.03.15 19:38:08 | 000,001,057 | ---- | M] () -- C:\Users\SPLOTY\Desktop\Stalker-COP.lnk [2011.03.14 20:52:58 | 000,006,594 | ---- | M] () -- C:\Users\Public\Documents\stalke~1.ltx ========== Files Created - No Company Name ========== [2011.04.07 18:49:16 | 000,001,104 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk [2011.04.07 18:41:28 | 000,115,267 | ---- | C] () -- C:\Windows\System32\drivers\klin.dat [2011.04.07 18:41:28 | 000,097,859 | ---- | C] () -- C:\Windows\System32\drivers\klick.dat [2011.04.07 17:09:27 | 000,256,512 | ---- | C] () -- C:\Windows\PEV.exe [2011.04.07 17:09:27 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe [2011.04.07 17:09:27 | 000,089,088 | ---- | C] () -- C:\Windows\MBR.exe [2011.04.07 17:09:27 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe [2011.04.07 17:09:27 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe [2011.04.07 17:04:07 | 004,315,750 | R--- | C] () -- C:\Users\SPLOTY\Desktop\Tool.exe.exe [2011.04.07 08:17:14 | 000,625,664 | ---- | C] () -- C:\Users\SPLOTY\Desktop\dds.scr [2011.03.24 19:20:07 | 000,000,937 | ---- | C] () -- C:\Users\SPLOTY\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk [2011.03.24 19:20:07 | 000,000,913 | ---- | C] () -- C:\Users\Public\Desktop\µTorrent.lnk [2011.03.23 12:22:35 | 000,000,585 | ---- | C] () -- C:\Users\SPLOTY\Desktop\FIFA10.lnk [2011.03.15 19:38:08 | 000,001,057 | ---- | C] () -- C:\Users\SPLOTY\Desktop\Stalker-COP.lnk [2011.03.15 19:38:07 | 000,408,940 | ---- | C] () -- C:\Windows\Stalker Зов Припяти- _Зима_ Uninstaller.exe [2011.03.14 20:52:58 | 000,006,594 | ---- | C] () -- C:\Users\Public\Documents\stalke~1.ltx [2011.02.10 20:01:14 | 000,002,237 | ---- | C] () -- C:\Windows\System32\SHORTCUT.INI [2011.02.10 20:01:09 | 000,000,264 | ---- | C] () -- C:\Windows\System32\REMOTEDEVICE.INI [2011.02.10 19:58:37 | 000,005,984 | ---- | C] () -- C:\Windows\System32\LOCALSERVICE.INI [2011.02.10 19:58:37 | 000,000,101 | ---- | C] () -- C:\Windows\System32\LOCALDEVICE.INI [2011.02.10 19:58:06 | 000,000,000 | ---- | C] () -- C:\Windows\System32\BSPRINT.INI [2010.11.24 22:52:27 | 000,007,598 | ---- | C] () -- C:\Users\SPLOTY\AppData\Local\Resmon.ResmonCfg [2010.11.14 15:28:50 | 000,000,056 | -H-- | C] () -- C:\Windows\System32\ezsidmv.dat [2010.11.14 14:17:39 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat [2010.11.14 14:15:59 | 000,165,376 | ---- | C] () -- C:\Windows\System32\unrar.dll [2010.11.14 14:15:59 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini [2010.11.14 14:15:58 | 000,790,528 | ---- | C] () -- C:\Windows\System32\xvidcore.dll [2010.11.14 14:15:58 | 000,134,144 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll [2010.11.14 14:15:58 | 000,108,032 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll [2009.09.09 19:01:40 | 000,027,675 | ---- | C] () -- C:\Windows\System32\drivers\klopp.dat [2009.07.14 07:57:37 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2009.07.14 07:33:53 | 000,266,808 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT [2009.07.14 05:05:48 | 000,606,992 | ---- | C] () -- C:\Windows\System32\perfh009.dat [2009.07.14 05:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat [2009.07.14 05:05:48 | 000,103,370 | ---- | C] () -- C:\Windows\System32\perfc009.dat [2009.07.14 05:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat [2009.07.14 05:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT [2009.07.14 05:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat [2009.07.14 03:19:49 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe [2009.07.14 02:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2009.07.14 02:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll [2009.07.14 02:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll [2009.06.11 00:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat [2009.02.27 18:04:46 | 000,001,036 | ---- | C] () -- C:\Windows\System32\bscs.ini [2009.02.27 17:45:16 | 000,405,589 | ---- | C] () -- C:\Windows\System32\BsUI.dll [2009.02.27 17:44:50 | 000,278,647 | ---- | C] () -- C:\Windows\System32\outlookAddin.dll [2009.02.27 17:44:28 | 000,053,248 | ---- | C] () -- C:\Windows\System32\HtmPrintHelper.dll [2009.02.27 17:44:10 | 000,622,693 | ---- | C] () -- C:\Windows\System32\BSShell.dll [2009.02.27 17:41:38 | 000,098,403 | ---- | C] () -- C:\Windows\System32\Bs2Res.dll [2009.02.27 17:41:02 | 000,122,976 | ---- | C] () -- C:\Windows\System32\BsMobileSDK.dll [2009.02.27 17:40:50 | 000,028,672 | ---- | C] () -- C:\Windows\System32\BsMobileCSps.dll [2008.12.07 13:44:54 | 000,030,088 | ---- | C] () -- C:\Windows\System32\drivers\btnetBus.sys [2008.10.22 16:30:30 | 000,081,920 | ---- | C] () -- C:\Windows\System32\BsVistaCommon.dll [2008.03.07 14:54:22 | 017,907,824 | ---- | C] () -- C:\Windows\System32\BsLangInDepRes.dll [2004.08.13 10:56:20 | 000,005,810 | ---- | C] () -- C:\Windows\System32\drivers\ASACPI.sys ========== LOP Check ========== [2011.02.17 22:40:42 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\Big Fish Games [2010.11.16 13:39:44 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\DAEMON Tools Lite [2010.11.14 18:58:22 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\ESET [2011.03.23 12:21:47 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\Leadertech [2010.12.10 19:31:42 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\Nokia [2011.02.09 22:59:37 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\OpenCandy [2010.12.10 19:32:55 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\PC Suite [2011.02.09 23:00:00 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\Software Informer [2010.11.29 22:56:57 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\Super-Cow [2010.11.16 18:34:55 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\Systweak [2011.01.18 21:38:32 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\TeamViewer [2010.11.14 14:16:14 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\Thinstall [2010.11.14 15:23:49 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\URSoft [2011.04.08 08:33:35 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\uTorrent [2011.02.17 22:39:15 | 000,000,000 | ---D | M] -- C:\Users\SPLOTY\AppData\Roaming\WhiteBirdsProductions [2011.03.23 08:39:48 | 000,032,586 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT ========== Purity Check ========== ========== Alternate Data Streams ========== @Alternate Data Stream - 160 bytes -> C:\ProgramData\TEMP:1CE11B51 @Alternate Data Stream - 105 bytes -> C:\ProgramData\TEMP:E07230CC < End of report > OTL Extras logfile created on: 8.4.2011 г. 08:29:46 - Run 1 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\SPLOTY\Desktop Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000402 | Country: България | Language: BGR | Date Format: d.M.yyyy 'г.' 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 66,00% Memory free 6,00 Gb Paging File | 5,00 Gb Available in Paging File | 81,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 35,01 Gb Total Space | 9,59 Gb Free Space | 27,38% Space Free | Partition Type: NTFS Drive D: | 263,07 Gb Total Space | 112,74 Gb Free Space | 42,86% Space Free | Partition Type: NTFS Computer Name: SPLOTY-PC | User Name: SPLOTY | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-606850627-2370920901-347468065-1000\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) ========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\Winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\Winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files\Winamp\Winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] ========== System Restore Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{11202615-E557-4ECF-9B86-F59C81E52909}" = FIFA 10 "{26A24AE4-039D-4CA4-87B4-2F83216022FF}" = Java 6 Update 23 "{379B1C2A-8BDA-4CA4-A4A6-21CAB75B6266}_is1" = Call of Duty - Black Ops "{45DF6D99-666D-41FA-8D62-0E183B6240F3}" = PC Connectivity Solution "{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{5A67D2EA-FB70-4033-A6F3-606AD85B2015}_is1" = Driver Sweeper, версия 2.7.5 "{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}" = Skype™ 3.8 "{6033673D-2530-4587-8AD0-EB059FC263F9}" = Crysis® 2 "{66F1F013-008F-4875-B283-5A814B820347}" = Kaspersky Anti-Virus 2011 "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{749A1EDD-16C2-4C63-B013-D38F0F953973}" = OviMPlatform "{8112C6B3-91E1-4560-8AB9-876DADFA37C5}" = Ovi Desktop Sync Engine "{8A809006-C25A-4A3A-9DAB-94659BCDB107}" = NVIDIA PhysX "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{AC76BA86-7AD7-1033-7B44-AA0000000001}" = Adobe Reader X (10.0.1) "{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86 "{B8B4446F-87E1-4423-A47A-16832C24A199}" = Nokia Ovi Suite "{C0A871F9-D580-4404-9A69-A02CF3078C87}" = Bluesoleil 6.4.249.0 "{EE5B5B24-EEFC-4C8B-BF8B-256D705BAD89}" = Nokia Ovi Suite Software Updater "{F1FDAA01-988C-423F-AC12-0D8F333943FD}" = Nokia Connectivity Cable Driver "504244733D18C8F63FF584AEB290E3904E791693" = Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0) "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "BitComet" = BitComet 0.70 "Drawn Dark Flight Regular V1.1 1.1.0" = Drawn Dark Flight Regular V1.1 1.1.0 "Hattrick Organizer" = Hattrick Organizer (remove only) "InstallWIX_{66F1F013-008F-4875-B283-5A814B820347}" = Kaspersky Anti-Virus 2011 "KLiteCodecPack_is1" = K-Lite Mega Codec Pack 6.2.0 "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Mozilla Firefox 4.0 (x86 bg)" = Mozilla Firefox 4.0 (x86 bg) "Nokia Ovi Suite" = Nokia Ovi Suite "NVIDIA Display Control Panel" = NVIDIA Display Control Panel "NVIDIA Drivers" = NVIDIA Drivers "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "ProPilkki2" = ProPilkki2 "RegClean Pro_is1" = RegClean Pro "Revolt" = Revolt "Software Informer_is1" = Software Informer 1.0 BETA "Sophos-AntiRootkit" = Sophos Anti-Rootkit 1.5.4 "Stalker Зов Припяти- "Зима"" = Stalker Зов Припяти- "Зима" "Supercow_is1" = Supercow "TeamViewer 4" = TeamViewer 4 "The KMPlayer" = The KMPlayer (remove only) "uTorrent" = µTorrent "Winamp" = Winamp (remove only) "WinRAR archiver" = WinRAR archiver "YU2010_is1" = Your Uninstaller! 2010 ========== Last 10 Event Log Errors ========== [ Application Events ] Error - 28.2.2011 г. 11:29:12 | Computer Name = SPLOTY-PC | Source = OviSuite | ID = 1 Description = 28/02/2011 17:29:12 (OviSuite) - ERROR - CommonWidgets, Thread GUI, Line 491, .\Application\CommonNavigationPane2\CommonNavigationPane.cpp, CCommonNavigationPane::getSelectedIndexes(): Selection model is NULL! Error - 28.2.2011 г. 11:29:14 | Computer Name = SPLOTY-PC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80U.DLL". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 28.2.2011 г. 11:29:14 | Computer Name = SPLOTY-PC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80U.DLL". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 28.2.2011 г. 11:29:14 | Computer Name = SPLOTY-PC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80U.DLL". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 28.2.2011 г. 11:29:14 | Computer Name = SPLOTY-PC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80U.DLL". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 28.2.2011 г. 11:29:14 | Computer Name = SPLOTY-PC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80U.DLL". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 28.2.2011 г. 11:29:14 | Computer Name = SPLOTY-PC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80U.DLL". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 28.2.2011 г. 11:29:14 | Computer Name = SPLOTY-PC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80U.DLL". Dependent Assembly Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 28.2.2011 г. 11:29:16 | Computer Name = SPLOTY-PC | Source = OviSuite | ID = 1 Description = 28/02/2011 17:29:16 (OviSuite) - ERROR - PhotosPlugin, Thread GUI, Line 274, .\Application\NavigationPaneView.cpp, CNavigationPaneView::getObservationIndex(): Could not found the model pointer Error - 28.2.2011 г. 11:29:16 | Computer Name = SPLOTY-PC | Source = OviSuite | ID = 1 Description = 28/02/2011 17:29:16 (OviSuite) - ERROR - CommonWidgets, Thread GUI, Line 192, .\Application\CommonHomeWidget\StackHomeAnimation.cpp, StackHomeAnimation::updateAnimation(): Pixmap count needs to be at least 1 [ System Events ] Error - 14.3.2011 г. 14:29:28 | Computer Name = SPLOTY-PC | Source = EventLog | ID = 6008 Description = The previous system shutdown at 20:27:59 ч. on ?14.?3.?2011 ?г. was unexpected. Error - 15.3.2011 г. 07:32:12 | Computer Name = SPLOTY-PC | Source = Service Control Manager | ID = 7011 Description = Изтекъл период на изчакване (30000 милисекунди) при изчакване на отговор за транзакция от услуга Netman. Error - 16.3.2011 г. 13:48:03 | Computer Name = SPLOTY-PC | Source = Service Control Manager | ID = 7011 Description = Изтекъл период на изчакване (30000 милисекунди) при изчакване на отговор за транзакция от услуга lmhosts. Error - 4.4.2011 г. 15:23:14 | Computer Name = SPLOTY-PC | Source = volsnap | ID = 393252 Description = The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. Error - 5.4.2011 г. 05:07:49 | Computer Name = SPLOTY-PC | Source = VDS Basic Provider | ID = 33554433 Description = Error - 5.4.2011 г. 05:07:49 | Computer Name = SPLOTY-PC | Source = VDS Basic Provider | ID = 33554433 Description = Error - 7.4.2011 г. 10:10:18 | Computer Name = SPLOTY-PC | Source = Service Control Manager | ID = 7030 Description = Услуга PEVSystemStart е маркирана като интерактивна услуга. Обаче системата е конфигурирана да не допуска интерактивни услуги. Тази услуга може да не функционира правилно. Error - 7.4.2011 г. 10:12:05 | Computer Name = SPLOTY-PC | Source = Service Control Manager | ID = 7030 Description = Услуга PEVSystemStart е маркирана като интерактивна услуга. Обаче системата е конфигурирана да не допуска интерактивни услуги. Тази услуга може да не функционира правилно. Error - 7.4.2011 г. 10:13:49 | Computer Name = SPLOTY-PC | Source = Service Control Manager | ID = 7030 Description = Услуга PEVSystemStart е маркирана като интерактивна услуга. Обаче системата е конфигурирана да не допуска интерактивни услуги. Тази услуга може да не функционира правилно. Error - 7.4.2011 г. 15:01:41 | Computer Name = SPLOTY-PC | Source = volsnap | ID = 393252 Description = The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. < End of report >
-
Не мога да вляза в някои сайтове
Пробвах,но продължава проблема
-
Не мога да вляза в някои сайтове
Не усещам още съществена разлика,но сякаш е по-бърз. А за горе посочения проблем вече през internet explorer влизам в тези сайтове,но с мозилата си остана проблема. В кой раздел да попитам за него?
-
Не мога да вляза в някои сайтове
ComboFix 11-04-06.03 - SPLOTY 04.2011 г. 17:10:27.1.2 - x86 Microsoft Windows 7 Ultimate 6.1.7600.0.1251.359.1033.18.3327.2305 [GMT 3:00] Running from: c:\users\SPLOTY\Desktop\Tool.exe.exe SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Created a new restore point . . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\windows\system32\MSMASK32.OCX . . ((((((((((((((((((((((((( Files Created from 2011-03-07 to 2011-04-07 ))))))))))))))))))))))))))))))) . . 2011-04-07 14:13 . 2011-04-07 14:13 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-04-01 09:28 . 2011-04-01 09:28 -------- d-----w- c:\programdata\Electronic Arts 2011-04-01 09:28 . 2011-04-01 09:28 -------- d-----w- c:\programdata\EA Core 2011-03-30 15:21 . 2009-09-04 14:29 453456 ----a-w- c:\windows\system32\d3dx10_42.dll 2011-03-30 15:21 . 2009-09-04 14:29 235344 ----a-w- c:\windows\system32\d3dx11_42.dll 2011-03-30 15:21 . 2009-09-04 14:29 5501792 ----a-w- c:\windows\system32\d3dcsx_42.dll 2011-03-30 15:21 . 2009-09-04 14:29 1974616 ----a-w- c:\windows\system32\D3DCompiler_42.dll 2011-03-24 16:20 . 2011-03-30 14:47 -------- d-----w- c:\program files\uTorrent 2011-03-24 16:19 . 2011-04-07 14:10 -------- d-----w- c:\users\SPLOTY\AppData\Roaming\uTorrent 2011-03-23 09:21 . 2011-03-23 09:21 -------- d-----w- c:\users\SPLOTY\AppData\Roaming\Leadertech 2011-03-15 16:38 . 2011-03-15 16:38 408940 ----a-w- c:\windows\Stalker Зов Припяти- _Зима_ Uninstaller.exe 2011-03-15 16:33 . 2011-03-15 16:36 -------- d-----w- c:\program files\Stalker Зов Припяти 2011-03-14 17:54 . 2011-03-14 17:59 -------- d-----w- c:\users\SPLOTY\AppData\Local\Darksiders 2011-03-14 16:38 . 2009-09-30 11:08 1892184 ----a-w- c:\windows\system32\d3dx9_42.dll . . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-03-15 16:38 . 2011-03-15 16:38 408940 ----a-w- c:\windows\Stalker Зов Припяти- _Зима_ Uninstaller.exe . . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NokiaOviSuite2"="c:\program files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe" [2010-09-02 672632] "uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2011-03-30 399736] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NokiaMServer"="c:\program files\Common Files\Nokia\MPlatform\NokiaMServer" [X] "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2011-01-30 35736] "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-11-10 932288] "BtTray"="c:\program files\IVT Corporation\BlueSoleil\BtTray.exe" [2009-02-27 278016] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . R3 BTCOM;Bluetooth Serial port driver;c:\windows\system32\DRIVERS\btcomport.sys [x] R3 BTCOMBUS;Bluetooth Serial Port Bus Service;c:\windows\system32\Drivers\btcombus.sys [x] R3 MEMSWEEP2;MEMSWEEP2;c:\windows\system32\190B.tmp [x] S0 BtHidBus;Bluetooth HID Bus Service;c:\windows\System32\Drivers\BtHidBus.sys [2009-01-07 20744] S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-11-14 691696] S2 BsMobileCS;BsMobileCS;c:\program files\IVT Corporation\BlueSoleil\BsMobileCS.exe [2009-02-27 143467] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2010-07-09 248936] S2 TeamViewer4;TeamViewer 4;c:\program files\TeamViewer\Version4\TeamViewer_Service.exe [2009-06-16 185640] S3 btnetBUs;Bluetooth PAN Bus Service;c:\windows\system32\Drivers\btnetBus.sys [2008-12-07 30088] S3 IvtBtBUs;IVT Bluetooth Bus Service;c:\windows\system32\Drivers\IvtBtBus.sys [2008-07-02 26248] . . . ------- Supplementary Scan ------- . uStart Page = hxxp://flvtubesearch.co/?tmp=toolbar_FlvTube_homepage&prt=flvtubetb04ie&clid=d44b5c80779f48c8a67e2387a5eb74a7 IE: Send by Bluetooth - c:\program files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm IE: Send to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm IE: Send via &Message... - c:\program files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm FF - ProfilePath - c:\users\SPLOTY\AppData\Roaming\Mozilla\Firefox\Profiles\ox1z7ldj.default\ FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - hxxp://www.hattrick.org/Default.aspx?ReturnUrl=%2fMyHattrick%2fdefault.aspx FF - prefs.js: keyword.URL - hxxp://start.facemoods.com/results.php?f=5&a=tweak&q= FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} FF - Ext: Bulgarian Dictionary: [email protected] - %profile%\extensions\[email protected] FF - Ext: FoxTrick: {9d1f059c-cada-4111-9696-41a62d64e3ba} - %profile%\extensions\{9d1f059c-cada-4111-9696-41a62d64e3ba} FF - Ext: AmbientFox: {c8f71e5b-88f8-42a7-98bb-e4c506161de9} - %profile%\extensions\{c8f71e5b-88f8-42a7-98bb-e4c506161de9} FF - Ext: Beef Taco (Targeted Advertising Cookie Opt-Out): [email protected] - %profile%\extensions\[email protected] . - - - - ORPHANS REMOVED - - - - . HKCU-Run-fsm - (no file) . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MEMSWEEP2] "ImagePath"="\??\c:\windows\system32\190B.tmp" . --------------------- LOCKED REGISTRY KEYS --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10m_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10m_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Completion time: 2011-04-07 17:15:03 ComboFix-quarantined-files.txt 2011-04-07 14:15 . Pre-Run: 5 869 469 696 bytes free Post-Run: 9 730 629 632 bytes free . - - End Of File - - 20CFDADE0A59B2FBF81968091331F711
-
Не мога да вляза в някои сайтове
Malwarebytes' Anti-Malware 1.50.1.1100 www.malwarebytes.org Версия на базата от данни: 6297 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 7.4.2011 г. 14:33:03 mbam-log-2011-04-07 (14-33-03).txt Тип сканиране: Бързо сканиране Сканирани обекти: 142061 Изминало време: 4 минута(и), 2 секунда(и) Заразени процеси в паметта: 0 Заразени модули в паметта: 0 Заразени ключове в регистратурата: 5 Заразени стойности в регистратурата: 3 Заразени информационни обекти в регистратурата: 0 Заразени папки: 0 Заразени файлове: 5 Заразени процеси в паметта: (Не бяха открити зловредни обекти) Заразени модули в паметта: (Не бяха открити зловредни обекти) Заразени ключове в регистратурата: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{851552F5-B878-4B03-904F-2AD6A4CC8994} (PUP.Zwangi) -> Not selected for removal. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{851552F5-B878-4B03-904F-2AD6A4CC8994} (PUP.Zwangi) -> Not selected for removal. HKEY_CURRENT_USER\SOFTWARE\JP595IR86O (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Z30KYPG3WS (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\ (Hijack.Zones) -> Quarantined and deleted successfully. Заразени стойности в регистратурата: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{851552F5-B878-4B03-904F-2AD6A4CC8994} (PUP.Zwangi) -> Value: {851552F5-B878-4B03-904F-2AD6A4CC8994} -> Not selected for removal. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{851552F5-B878-4B03-904F-2AD6A4CC8994} (PUP.Zwangi) -> Value: {851552F5-B878-4B03-904F-2AD6A4CC8994} -> Not selected for removal. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\JP595IR86O (Trojan.FakeAlert) -> Value: JP595IR86O -> Quarantined and deleted successfully. Заразени информационни обекти в регистратурата: (Не бяха открити зловредни обекти) Заразени папки: (Не бяха открити зловредни обекти) Заразени файлове: c:\Users\SPLOTY\AppData\Local\Temp\Chc.exe (Rootkit.Agent) -> Quarantined and deleted successfully. c:\Users\SPLOTY\AppData\Local\Temp\Chf.exe (Rootkit.Agent) -> Quarantined and deleted successfully. c:\Users\SPLOTY\AppData\Local\Temp\Chg.exe (Rootkit.Agent) -> Quarantined and deleted successfully. c:\Windows\Czewia.exe (Rootkit.Agent) -> Quarantined and deleted successfully. c:\program files\mozilla firefox\searchplugins\flvtube.xml (PUP.Zwangi) -> Not selected for removal. ДДС . DDS (Ver_11-03-05.01) - NTFSx86 Run by SPLOTY at 14:34:38,73 on зҐвў 07.04.2011 Ј. Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_23 Microsoft Windows 7 Ultimate 6.1.7600.0.1251.359.1033.18.3327.2368 [GMT 3:00] . SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ============== Running Processes =============== . C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\nvvsvc.exe C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\nvvsvc.exe C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe C:\Windows\system32\taskhost.exe C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe C:\Windows\system32\userinit.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files\TeamViewer\Version4\TeamViewer_Service.exe C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe C:\Program Files\Adobe\Reader 10.0\Reader\reader_sl.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe C:\Program Files\uTorrent\uTorrent.exe C:\Program Files\PC Connectivity Solution\ServiceLayer.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe C:\Program Files\PC Connectivity Solution\Transports\NclIVTBTSrv.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Users\SPLOTY\Desktop\dds.scr C:\Windows\system32\conhost.exe C:\Windows\system32\wbem\wmiprvse.exe . ============== Pseudo HJT Report =============== . uStart Page = hxxp://flvtubesearch.co/?tmp=toolbar_FlvTube_homepage&prt=flvtubetb04ie&clid=d44b5c80779f48c8a67e2387a5eb74a7 mSearchAssistant = hxxp://start.facemoods.com/?a=tweak&s={searchTerms}&f=4 BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll TB: {851552F5-B878-4B03-904F-2AD6A4CC8994} - No File uRun: [<NO NAME>] uRun: [NokiaOviSuite2] c:\program files\nokia\nokia ovi suite\NokiaOviSuite.exe -tray uRun: [fsm] uRun: [uTorrent] "c:\program files\utorrent\uTorrent.exe" mRun: [sunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe" mRun: [NokiaMServer] c:\program files\common files\nokia\mplatform\NokiaMServer /watchfiles startup mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 10.0\reader\Reader_sl.exe" mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe" mRun: [btTray] "c:\program files\ivt corporation\bluesoleil\BtTray.exe" mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0) mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3) mPolicies-system: EnableLUA = 0 (0x0) mPolicies-system: EnableUIADesktopToggle = 0 (0x0) mPolicies-system: PromptOnSecureDesktop = 0 (0x0) IE: Send by Bluetooth - c:\program files\ivt corporation\bluesoleil\transsend\ie\tsinfo.htm IE: Send to &Bluetooth Device... - c:\program files\widcomm\bluetooth software\btsendto_ie_ctx.htm IE: Send via &Message... - c:\program files\ivt corporation\bluesoleil\transsend\ie\tssms.htm DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\windows\system32\skype4com.dll . ================= FIREFOX =================== . FF - ProfilePath - c:\users\sploty\appdata\roaming\mozilla\firefox\profiles\ox1z7ldj.default\ FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - hxxp://www.hattrick.org/Default.aspx?ReturnUrl=%2fMyHattrick%2fdefault.aspx FF - prefs.js: keyword.URL - hxxp://start.facemoods.com/results.php?f=5&a=tweak&q= FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll FF - plugin: c:\program files\nvidia corporation\3d vision\npnv3dv.dll FF - plugin: c:\program files\nvidia corporation\3d vision\npnv3dvstreaming.dll FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} FF - Ext: Bulgarian Dictionary: [email protected] - %profile%\extensions\[email protected] FF - Ext: FoxTrick: {9d1f059c-cada-4111-9696-41a62d64e3ba} - %profile%\extensions\{9d1f059c-cada-4111-9696-41a62d64e3ba} FF - Ext: AmbientFox: {c8f71e5b-88f8-42a7-98bb-e4c506161de9} - %profile%\extensions\{c8f71e5b-88f8-42a7-98bb-e4c506161de9} FF - Ext: Beef Taco (Targeted Advertising Cookie Opt-Out): [email protected] - %profile%\extensions\[email protected] . ============= SERVICES / DRIVERS =============== . R0 BtHidBus;Bluetooth HID Bus Service;c:\windows\system32\drivers\BtHidBus.sys [2009-1-8 20744] R2 BsMobileCS;BsMobileCS;c:\program files\ivt corporation\bluesoleil\BsMobileCS.exe [2009-2-27 143467] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\nvidia corporation\3d vision\nvSCPAPISvr.exe [2010-7-9 248936] R2 TeamViewer4;TeamViewer 4;c:\program files\teamviewer\version4\TeamViewer_Service.exe [2009-6-16 185640] R3 btnetBUs;Bluetooth PAN Bus Service;c:\windows\system32\drivers\btnetBus.sys [2008-12-7 30088] R3 IvtBtBUs;IVT Bluetooth Bus Service;c:\windows\system32\drivers\IvtBtBus.sys [2008-7-2 26248] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888] . =============== Created Last 30 ================ . 2011-04-01 09:28:10 -------- d-----w- c:\progra~2\Electronic Arts 2011-04-01 09:28:10 -------- d-----w- c:\progra~2\EA Core 2011-03-30 15:21:00 5501792 ----a-w- c:\windows\system32\d3dcsx_42.dll 2011-03-30 15:21:00 453456 ----a-w- c:\windows\system32\d3dx10_42.dll 2011-03-30 15:21:00 235344 ----a-w- c:\windows\system32\d3dx11_42.dll 2011-03-30 15:21:00 1974616 ----a-w- c:\windows\system32\D3DCompiler_42.dll 2011-03-24 16:20:07 -------- d-----w- c:\program files\uTorrent 2011-03-24 16:19:51 -------- d-----w- c:\users\sploty\appdata\roaming\uTorrent 2011-03-15 16:38:07 408940 ----a-w- c:\windows\Stalker Зов Припяти- _Зима_ Uninstaller.exe 2011-03-15 16:33:33 -------- d-----w- c:\program files\Stalker Зов Припяти 2011-03-14 17:54:28 -------- d-----w- c:\users\sploty\appdata\local\Darksiders 2011-03-14 16:38:21 1892184 ----a-w- c:\windows\system32\d3dx9_42.dll . ==================== Find3M ==================== . . ============= FINISH: 14:35:12,73 =============== . UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT . DDS (Ver_11-03-05.01) . Microsoft Windows 7 Ultimate Boot Device: \Device\HarddiskVolume1 Install Date: 14.11.2010 г. 13:05:07 System Uptime: 7.4.2011 г. 14:34:05 (0 hours ago) . Motherboard: ASUSTeK Computer INC. | | M4N78 SE Processor: AMD Athlon 64 X2 Dual Core Processor 5200+ | AM2 | 2700/200mhz . ==== Disk Partitions ========================= . C: is FIXED (NTFS) - 35 GiB total, 5,392 GiB free. D: is FIXED (NTFS) - 263 GiB total, 112,938 GiB free. E: is CDROM () F: is CDROM () G: is CDROM () . ==== Disabled Device Manager Items ============= . Class GUID: Description: Coprocessor Device ID: PCI\VEN_10DE&DEV_0753&SUBSYS_82F21043&REV_A2\3&267A616A&0&0B Manufacturer: Name: Coprocessor PNP Device ID: PCI\VEN_10DE&DEV_0753&SUBSYS_82F21043&REV_A2\3&267A616A&0&0B Service: . Class GUID: Description: IVT_Virtual_0000 Device ID: {F12D3CF8-B11D-457E-8641-BE2AF2D6D204}\IVTBTPAN\1&21CCD16&0&0000 Manufacturer: Name: IVT_Virtual_0000 PNP Device ID: {F12D3CF8-B11D-457E-8641-BE2AF2D6D204}\IVTBTPAN\1&21CCD16&0&0000 Service: . ==== System Restore Points =================== . RP75: 4.4.2011 г. 22:32:32 - Scheduled Checkpoint RP76: 5.4.2011 г. 12:07:56 - Операция за възстановяване . ==== Installed Programs ====================== . µTorrent Adobe AIR Adobe Flash Player 10 ActiveX Adobe Flash Player 10 Plugin Adobe Reader X (10.0.1) BitComet 0.70 Bluesoleil 6.4.249.0 Call of Duty - Black Ops Crysis® 2 Drawn Dark Flight Regular V1.1 1.1.0 Driver Sweeper, версия 2.7.5 FIFA 10 Hattrick Organizer (remove only) Java Auto Updater Java 6 Update 23 K-Lite Mega Codec Pack 6.2.0 Malwarebytes' Anti-Malware Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Mozilla Firefox (3.6.16) MSVC80_x86_v2 MSVC90_x86 Nokia Connectivity Cable Driver Nokia Ovi Suite Nokia Ovi Suite Software Updater NVIDIA Display Control Panel NVIDIA Drivers NVIDIA PhysX NVIDIA Stereoscopic 3D Driver Ovi Desktop Sync Engine OviMPlatform PC Connectivity Solution ProPilkki2 RegClean Pro Revolt Skype™ 3.8 Software Informer 1.0 BETA Sophos Anti-Rootkit 1.5.4 Stalker Зов Припяти- "Зима" Supercow TeamViewer 4 The KMPlayer (remove only) Winamp (remove only) Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0) WinRAR archiver Your Uninstaller! 2010 . ==== Event Viewer Messages From Past Week ======== . 5.4.2011 г. 12:07:49, Error: VDS Basic Provider [1] - Unexpected failure. Error code: 490@01010004 5.4.2011 г. 12:07:49, Error: VDS Basic Provider [1] - Unexpected failure. Error code: 490@01010004 4.4.2011 г. 22:23:14, Error: volsnap [36] - The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. . ==== End Of File ===========================
-
Не мога да вляза в някои сайтове
Някой беше ми отговорил,но нямах време да отида,където беше ми посочил. Но сега влизам и отговора го няма.
-
Не мога да вляза в някои сайтове
Това е DDS.txt . DDS (Ver_11-03-05.01) - NTFSx86 Run by SPLOTY at 8:18:52,60 on зҐвў 07.04.2011 Ј. Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_23 Microsoft Windows 7 Ultimate 6.1.7600.0.1251.359.1033.18.3327.2261 [GMT 3:00] . AV: ESET NOD32 Antivirus 4.0 *Enabled/Updated* {CB0F8167-5331-BA19-698E-64816B6801A5} SP: ESET NOD32 Antivirus 4.0 *Enabled/Updated* {706E6083-750B-B597-533E-5FF310EF4B18} SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ============== Running Processes =============== . C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\nvvsvc.exe C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\nvvsvc.exe C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe C:\Windows\system32\taskhost.exe C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe C:\Windows\system32\Dwm.exe C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe C:\Windows\Explorer.EXE C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files\TeamViewer\Version4\TeamViewer_Service.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe C:\Program Files\uTorrent\uTorrent.exe C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Program Files\PC Connectivity Solution\ServiceLayer.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe C:\Program Files\PC Connectivity Solution\Transports\NclIVTBTSrv.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Windows\System32\svchost.exe -k secsvcs C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Mozilla Firefox\plugin-container.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\explorer.exe C:\Windows\system32\taskhost.exe C:\Users\SPLOTY\Desktop\dds.scr C:\Windows\system32\conhost.exe C:\Windows\system32\wbem\wmiprvse.exe . ============== Pseudo HJT Report =============== . uStart Page = hxxp://flvtubesearch.co/?tmp=toolbar_FlvTube_homepage&prt=flvtubetb04ie&clid=d44b5c80779f48c8a67e2387a5eb74a7 mSearchAssistant = hxxp://start.facemoods.com/?a=tweak&s={searchTerms}&f=4 BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll TB: {851552F5-B878-4B03-904F-2AD6A4CC8994} - No File uRun: [<NO NAME>] uRun: [NokiaOviSuite2] c:\program files\nokia\nokia ovi suite\NokiaOviSuite.exe -tray uRun: [JP595IR86O] c:\users\sploty\appdata\local\temp\Chd.exe uRun: [fsm] uRun: [uTorrent] "c:\program files\utorrent\uTorrent.exe" mRun: [sunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe" mRun: [egui] "c:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice mRun: [NokiaMServer] c:\program files\common files\nokia\mplatform\NokiaMServer /watchfiles startup mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 10.0\reader\Reader_sl.exe" mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe" mRun: [btTray] "c:\program files\ivt corporation\bluesoleil\BtTray.exe" mRun: [TNOD UP] "c:\program files\tnod user & password finder\TNODUP.exe" /i mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0) mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3) mPolicies-system: EnableLUA = 0 (0x0) mPolicies-system: EnableUIADesktopToggle = 0 (0x0) mPolicies-system: PromptOnSecureDesktop = 0 (0x0) IE: Send by Bluetooth - c:\program files\ivt corporation\bluesoleil\transsend\ie\tsinfo.htm IE: Send to &Bluetooth Device... - c:\program files\widcomm\bluetooth software\btsendto_ie_ctx.htm IE: Send via &Message... - c:\program files\ivt corporation\bluesoleil\transsend\ie\tssms.htm DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\windows\system32\skype4com.dll . ================= FIREFOX =================== . FF - ProfilePath - c:\users\sploty\appdata\roaming\mozilla\firefox\profiles\ox1z7ldj.default\ FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - hxxp://www.hattrick.org/Default.aspx?ReturnUrl=%2fMyHattrick%2fdefault.aspx FF - prefs.js: keyword.URL - hxxp://start.facemoods.com/results.php?f=5&a=tweak&q= FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll FF - plugin: c:\program files\nvidia corporation\3d vision\npnv3dv.dll FF - plugin: c:\program files\nvidia corporation\3d vision\npnv3dvstreaming.dll FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} FF - Ext: Bulgarian Dictionary: [email protected] - %profile%\extensions\[email protected] FF - Ext: FoxTrick: {9d1f059c-cada-4111-9696-41a62d64e3ba} - %profile%\extensions\{9d1f059c-cada-4111-9696-41a62d64e3ba} FF - Ext: AmbientFox: {c8f71e5b-88f8-42a7-98bb-e4c506161de9} - %profile%\extensions\{c8f71e5b-88f8-42a7-98bb-e4c506161de9} FF - Ext: Beef Taco (Targeted Advertising Cookie Opt-Out): [email protected] - %profile%\extensions\[email protected] . ============= SERVICES / DRIVERS =============== . R0 BtHidBus;Bluetooth HID Bus Service;c:\windows\system32\drivers\BtHidBus.sys [2009-1-8 20744] R2 BsMobileCS;BsMobileCS;c:\program files\ivt corporation\bluesoleil\BsMobileCS.exe [2009-2-27 143467] R2 ekrn;ESET Service;c:\program files\eset\eset nod32 antivirus\ekrn.exe [2009-5-12 731840] R2 epfwwfpr;epfwwfpr;c:\windows\system32\drivers\epfwwfpr.sys [2009-5-12 93312] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\nvidia corporation\3d vision\nvSCPAPISvr.exe [2010-7-9 248936] R2 TeamViewer4;TeamViewer 4;c:\program files\teamviewer\version4\TeamViewer_Service.exe [2009-6-16 185640] R3 btnetBUs;Bluetooth PAN Bus Service;c:\windows\system32\drivers\btnetBus.sys [2008-12-7 30088] R3 IvtBtBUs;IVT Bluetooth Bus Service;c:\windows\system32\drivers\IvtBtBus.sys [2008-7-2 26248] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888] . =============== Created Last 30 ================ . 2011-04-01 09:28:10 -------- d-----w- c:\progra~2\Electronic Arts 2011-04-01 09:28:10 -------- d-----w- c:\progra~2\EA Core 2011-03-30 15:21:00 5501792 ----a-w- c:\windows\system32\d3dcsx_42.dll 2011-03-30 15:21:00 453456 ----a-w- c:\windows\system32\d3dx10_42.dll 2011-03-30 15:21:00 235344 ----a-w- c:\windows\system32\d3dx11_42.dll 2011-03-30 15:21:00 1974616 ----a-w- c:\windows\system32\D3DCompiler_42.dll 2011-03-30 06:18:32 -------- d-----w- c:\program files\TNod User & Password Finder 2011-03-24 16:20:07 -------- d-----w- c:\program files\uTorrent 2011-03-24 16:19:51 -------- d-----w- c:\users\sploty\appdata\roaming\uTorrent 2011-03-15 16:38:07 408940 ----a-w- c:\windows\Stalker Зов Припяти- _Зима_ Uninstaller.exe 2011-03-15 16:33:33 -------- d-----w- c:\program files\Stalker Зов Припяти 2011-03-14 17:54:28 -------- d-----w- c:\users\sploty\appdata\local\Darksiders 2011-03-14 16:38:21 1892184 ----a-w- c:\windows\system32\d3dx9_42.dll . ==================== Find3M ==================== . . ============= FINISH: 8:19:22,23 =============== От тук е Attach.txt . UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT . DDS (Ver_11-03-05.01) . Microsoft Windows 7 Ultimate Boot Device: \Device\HarddiskVolume1 Install Date: 14.11.2010 г. 13:05:07 System Uptime: 7.4.2011 г. 08:10:14 (0 hours ago) . Motherboard: ASUSTeK Computer INC. | | M4N78 SE Processor: AMD Athlon 64 X2 Dual Core Processor 5200+ | AM2 | 2700/200mhz . ==== Disk Partitions ========================= . C: is FIXED (NTFS) - 35 GiB total, 5,391 GiB free. D: is FIXED (NTFS) - 263 GiB total, 112,938 GiB free. E: is CDROM () F: is CDROM () G: is CDROM () . ==== Disabled Device Manager Items ============= . Class GUID: Description: Coprocessor Device ID: PCI\VEN_10DE&DEV_0753&SUBSYS_82F21043&REV_A2\3&267A616A&0&0B Manufacturer: Name: Coprocessor PNP Device ID: PCI\VEN_10DE&DEV_0753&SUBSYS_82F21043&REV_A2\3&267A616A&0&0B Service: . Class GUID: Description: IVT_Virtual_0000 Device ID: {F12D3CF8-B11D-457E-8641-BE2AF2D6D204}\IVTBTPAN\1&21CCD16&0&0000 Manufacturer: Name: IVT_Virtual_0000 PNP Device ID: {F12D3CF8-B11D-457E-8641-BE2AF2D6D204}\IVTBTPAN\1&21CCD16&0&0000 Service: . ==== System Restore Points =================== . RP75: 4.4.2011 г. 22:32:32 - Scheduled Checkpoint RP76: 5.4.2011 г. 12:07:56 - Операция за възстановяване . ==== Installed Programs ====================== . µTorrent Adobe AIR Adobe Flash Player 10 ActiveX Adobe Flash Player 10 Plugin Adobe Reader X (10.0.1) BitComet 0.70 Bluesoleil 6.4.249.0 Call of Duty - Black Ops Crysis® 2 Drawn Dark Flight Regular V1.1 1.1.0 Driver Sweeper, версия 2.7.5 ESET NOD32 Antivirus FIFA 10 Hattrick Organizer (remove only) Java Auto Updater Java 6 Update 23 K-Lite Mega Codec Pack 6.2.0 Malwarebytes' Anti-Malware Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Mozilla Firefox (3.6.16) MSVC80_x86_v2 MSVC90_x86 Nokia Connectivity Cable Driver Nokia Ovi Suite Nokia Ovi Suite Software Updater NVIDIA Display Control Panel NVIDIA Drivers NVIDIA PhysX NVIDIA Stereoscopic 3D Driver Ovi Desktop Sync Engine OviMPlatform PC Connectivity Solution ProPilkki2 RegClean Pro Revolt Skype™ 3.8 Software Informer 1.0 BETA Sophos Anti-Rootkit 1.5.4 Stalker Зов Припяти- "Зима" Supercow TeamViewer 4 The KMPlayer (remove only) TNod User & Password Finder Winamp (remove only) Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0) WinRAR archiver Your Uninstaller! 2010 . ==== Event Viewer Messages From Past Week ======== . 5.4.2011 г. 12:07:49, Error: VDS Basic Provider [1] - Unexpected failure. Error code: 490@01010004 5.4.2011 г. 12:07:49, Error: VDS Basic Provider [1] - Unexpected failure. Error code: 490@01010004 4.4.2011 г. 22:23:14, Error: volsnap [36] - The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. . ==== End Of File ===========================
-
Не мога да вляза в някои сайтове
От 2 дни ми се случва да искам да вляза в някой сайт и когато зареждам сайта с Mozila-ta от долу в дясно ми изписва свързване с ad.yieldmanager.com или изчакване ib.adnxs.com.... и не мога да заредя сайта. Как мога да си оправя Mozilata?
-
вирус ли е
С компютъра е всичко добре,но като стартирам Мозилата и по-точно няколко интернет адреса ми забавя много докато ги отвори. Това от интернета ли ми е?
-
вирус ли е
Пуснах да се дефрагментира диска. След 2-3 дни ще пиша как е
-
вирус ли е
Оправих Firefoxа, а след сканирането ми показа на всичко 0 обаче май е било на бързо сканиране
-
вирус ли е
Ами за сега не мога още да разбера дали бави sfcdetails.txt
-
вирус ли е
ето го 3.txt
-
вирус ли е
Направих стъпка 1 като не съм отбелязъл отметките от горния пост,защото не знам да ли пак трябваше да ги отбелязвам ето така: 1.txt 2.txt
-
вирус ли е
Стъпка 1 Стъпка 2 обаче нямам на програмата едната отметка и я пуснах без нея ето снимка да видите коя е отметката Extras.Txt OTL.Txt checkup.txt
-
вирус ли е
ето ги DDS.txt Attach.txt mbam-log-2010-11-16 (18-39-39).txt
-
вирус ли е
като стартирам компютър ми излизаше sshnas21.dll,после си инсталирах Systweak Regclean Pro v6.1 сканирах го и му дадох да ги поправи.Рестартирах компютъра и не ми искаше sshnas21.dll,но нещо много бавише.За това инсталирах Malwarebytes Anti-Malware 1.46 и следвах стъпка 3 от тази тема Моят сайт и ето какво ми излезе: 16.11.2010 г. 18:39:39 mbam-log-2010-11-16 (18-39-39).txt Тип сканиране: Пълно сканиране (C:\|D:\|) Сканирани обекти: 192061 Изминало време: 18 минута(и), 4 секунда(и) Заразени процеси в паметта: 0 Заразени модули в паметта: 0 Заразени ключове в регистратурата: 2 Заразени стойности в регистратурата: 0 Заразени информационни обекти в регистратурата: 0 Заразени папки: 0 Заразени файлове: 5 Заразени процеси в паметта: (Не бяха открити зловредни обекти) Заразени модули в паметта: (Не бяха открити зловредни обекти) Заразени ключове в регистратурата: HKEY_CURRENT_USER\SOFTWARE\C8H1KKCTZV (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Handle (Malware.Trace) -> Quarantined and deleted successfully. Заразени стойности в регистратурата: (Не бяха открити зловредни обекти) Заразени информационни обекти в регистратурата: (Не бяха открити зловредни обекти) Заразени папки: (Не бяха открити зловредни обекти) Заразени файлове: C:\Users\SPLOTY\AppData\Local\Temp\Chc.exe (Trojan.FraudPack) -> Quarantined and deleted successfully. C:\Users\SPLOTY\AppData\Local\Temp\Che.exe (Trojan.FraudPack) -> Quarantined and deleted successfully. C:\Windows\Czewia.exe (Trojan.FraudPack) -> Quarantined and deleted successfully. D:\PROGRAMI\Internet Download Manager 5.14 Build 5 + Portable\Crack\IDMan.exe (Malware.NSPack) -> Quarantined and deleted successfully. C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job (Trojan.Downloader) -> Quarantined and deleted successfully.
Разглеждащи това в момента 0
- Няма регистрирани потребители разглеждащи тази страница.