Все перезалил лог и залил quarantine.zip в папку D_Master'a на ггв Тока вот O2 - BHO: ofalibP - {9606FB98-3AAE-42F5-8969-8ED7ADC267E9} - (no file) O9 - Extra button: (no name) - DctMapping - (no file) Таких строк не нашел. Были вот такие R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS.0\system32\NvCpl.dll,NvStartup O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS.0\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\RunOnce: [ZZZZ2_FirstLogonSetting] %SystemRoot%\System32\rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS.0\INF\custom.inf,NewUserFirstLogonInstall,0 (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [IE7_011] regsvr32 /s /n /i:u shell32 (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [VistaIcon] C:\Program Files\VistaDriveIcon\VistaDrv.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [ZZZZ2_FirstLogonSetting] %SystemRoot%\System32\rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS.0\INF\custom.inf,NewUserFirstLogonInstall,0 (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\RunOnce: [IE7_011] regsvr32 /s /n /i:u shell32 (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [IE7_011] regsvr32 /s /n /i:u shell32 (User 'Default user') O17 - HKLM\System\CCS\Services\Tcpip\..\{F4842045-4B4D-4CE9-A5E2-9157A71B9732}: NameServer = 87.103.161.61 62.33.133.2 O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe O23 - Service: C@=0; A>1KB89 (Eventlog) - >@?>@0F8O 09:@>A>DB - C:\WINDOWS.0\system32\services.exe O23 - Service: HDD Information Service (HDDSvc) - AltrixSoft (http://www.altrixsoft.com/) - C:\WINDOWS.0\system32\HDDSvc.exe O23 - Service: !;C610 COM 70?8A8 :><?0:B-48A:>2 IMAPI (ImapiService) - >@?>@0F8O 09:@>A>DB - C:\WINDOWS.0\system32\imapi.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS.0\system32\nvsvc32.exe O23 - Service: Plug and Play (PlugPlay) - >@?>@0F8O 09:@>A>DB - C:\WINDOWS.0\system32\services.exe O23 - Service: 8A?5BG5@ A50=A0 A?@02:8 4;O C40;5==>3> @01>G53> AB>;0 (RDSessMgr) - >@?>@0F8O 09:@>A>DB - C:\WINDOWS.0\system32\sessmgr.exe O23 - Service: !<0@B-:0@BK (SCardSvr) - >@?>@0F8O 09:@>A>DB - C:\WINDOWS.0\System32\SCardSvr.exeR0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =