05.08.2006, 12:39
Kod:
Logfile of HijackThis v1.99.2 (BETA)
Scan saved at 13:36:41, on 2006-08-05
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
Logged on as JAREK to HOUSE (user is Admin)
MSIE: Internet Explorer v7.00 (7.00.5450.0004)
Spybot S&D version: 1.4
Ad-Aware version: 6.2.0.236
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSExplorer.EXE
C:Program FilesAntiVir PersonalEdition Premiumsched.exe
C:Program FilesAntiVir PersonalEdition Premiumavguard.exe
C:WINDOWSsystem32nvsvc32.exe
C:WINDOWSsystem32svchost.exe
C:Program FilesJeticoJetico Personal Firewallfwsrv.exe
C:Program FilesAntiVir PersonalEdition Premiumavgnt.exe
C:PROGRA~1BILLPS~1WINPAT~1winpatrol.exe
C:Program FilesKonnektkonnekt.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesWinampwinamp.exe
C:Documents and SettingsJarekPulpitHijackThis.exe
C:Program FilesMozilla Firefoxfirefox.exe
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://google.pl
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=54729
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=55245&clcid={SUB_CLCID}
R1 - HKCUSoftwareMicrosoftInternet Connection Wizard,ShellNext = http://users.iptelecom.net.ua/~codecs/
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Ĺącza
O2 - BHO: IeCatch5 Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:PROGRA~1FlashGetjccatch.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:Program FilesJavajre1.5.0_06binssv.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:PROGRA~1FlashGetfgiebar.dll
O4 - HKLM..Run: [SiSUSBRG] C:WINDOWSSiSUSBrg.exe
O4 - HKLM..Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup
O4 - HKLM..Run: [nwiz] nwiz.exe /install
O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit
O4 - HKLM..Run: [JeticoPFStartup] "C:Program FilesJeticoJetico Personal Firewallfwsrv.exe"
O4 - HKLM..Run: [avgnt] "C:Program FilesAntiVir PersonalEdition Premiumavgnt.exe" /min
O4 - HKLM..Run: [WinPatrol] C:PROGRA~1BILLPS~1WINPAT~1winpatrol.exe
O4 - HKCU..Run: [Konnekt] "C:Program FilesKonnektkonnekt.exe" /autostart
O4 - HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ''USĹUGA LOKALNA'')
O4 - HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ''USĹUGA SIECIOWA'')
O4 - HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ''SYSTEM'')
O4 - HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User ''Default user'')
O6 - HKCUSoftwarePoliciesMicrosoftInternet ExplorerControl Panel present
O8 - Extra context menu item: Otwórz obraz w programie &Microsoft PhotoDraw - res://C:PROGRA~1MICROS~2Office1045phdintl.dll/phdContext.htm
O8 - Extra context menu item: Ĺciągnij przy pomocy FlashGet''a - C:Program FilesFlashGetjc_link.htm
O8 - Extra context menu item: Ĺciągnij wszystko przy pomocy FlashGet''a - C:Program FilesFlashGetjc_all.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.5.0_06binssv.dll
O9 - Extra ''Tools'' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.5.0_06binssv.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%Network Diagnosticxpnetdiag.exe (file missing)
O9 - Extra ''Tools'' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%Network Diagnosticxpnetdiag.exe (file missing)
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1154467023250
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1154637632703
O17 - HKLMSystemCCSServicesTcpip..{05628A62-8CE1-4AEB-AA67-AEEE3D3A8034}: NameServer = 213.199.225.14
O17 - HKLMSystemCS1ServicesTcpip..{05628A62-8CE1-4AEB-AA67-AEEE3D3A8034}: NameServer = 213.199.225.14
O17 - HKLMSystemCS2ServicesTcpip..{05628A62-8CE1-4AEB-AA67-AEEE3D3A8034}: NameServer = 213.199.225.14
O22 - SharedTaskScheduler: Moduł wstępnego ładowania interfejsu Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:WINDOWSsystem32browseui.dll
O22 - SharedTaskScheduler: Demon buforu kategorii składników - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:WINDOWSsystem32browseui.dll
O22 - SharedTaskScheduler: IE Component Categories cache daemon - {553858A7-4922-4e7e-B1C1-97140C1C16EF} - C:WINDOWSsystem32ieframe.dll
O23 - Service: AntiVir PersonalEdition Premium Scheduler (AntiVirScheduler) - Avira GmbH - C:Program FilesAntiVir PersonalEdition Premiumsched.exe
O23 - Service: AntiVir PersonalEdition Premium Guard (AntiVirService) - AVIRA GmbH - C:Program FilesAntiVir PersonalEdition Premiumavguard.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:WINDOWSsystem32nvsvc32.exe
--
End of file - 5811 bytes
Mam jakieś dziwne wpisy... Co to jest :?: