1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
22.
23.
24.
25.
26.
27.
28.
29.
30.
31.
32.
33.
34.
35.
36.
37.
38.
39.
40.
41.
42.
43.
44.
45.
46.
47.
48.
49.
50.
51.
52.
53.
54.
55.
56.
57.
58.
59.
60.
61.
62.
63.
64.
65.
66.
67.
68.
69.
70.
71.
72.
73.
74.
75.
76.
77.
78.
79.
80.
81.
82.
83.
84.
85.
86.
87.
88.
89.
90.
91.
92.
93.
94.
95.
96.
97.
98.
99.
100.
101.
102.
103.
104.
105.
106.
107.
108.
109.
110.
111.
112.
113.
114.
115. | Proszę o sprawdzenie loga, bo jestem w tym całkowicie zielony
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:16:25, on 2010-07-30
Platform: Windows XP Dodatek SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\\WINDOWS\\System32\\smss.exe
C:\\WINDOWS\\system32\\winlogon.exe
C:\\WINDOWS\\system32\\services.exe
C:\\WINDOWS\\system32\\lsass.exe
C:\\WINDOWS\\system32\\svchost.exe
C:\\WINDOWS\\System32\\svchost.exe
C:\\Program Files\\Alwil Software\\Avast5\\AvastSvc.exe
C:\\WINDOWS\\Explorer.EXE
C:\\WINDOWS\\system32\\RUNDLL32.EXE
C:\\PROGRA~1\\ALWILS~1\\Avast5\\avastUI.exe
C:\\Program Files\\DeviceVM\\Browser Configuration Utility\\BCU.exe
C:\\WINDOWS\\RTHDCPL.EXE
C:\\Program Files\\Acronis\\TrueImageHome\\TrueImageMonitor.exe
C:\\Program Files\\Acronis\\TrueImageHome\\TimounterMonitor.exe
C:\\Program Files\\Common Files\\Acronis\\Schedule2\\schedhlp.exe
C:\\Program Files\\ClocX\\ClocX.exe
C:\\Program Files\\WinFast\\WFDTV\\DTVSchdl.exe
C:\\WINDOWS\\system32\\ctfmon.exe
C:\\Program Files\\Rainlendar2\\Rainlendar2.exe
E:\\3_PROGRAMY STARTOWE Gigabyte WINDOWS XP\\TV_Watcher_1.10\\TV_Watcher.exe
C:\\Program Files\\Messenger\\msmsgs.exe
C:\\Program Files\\WinFast\\WFDTV\\WFWIZ.exe
C:\\Program Files\\IncrediMail\\bin\\ImApp.exe
C:\\WINDOWS\\system32\\spoolsv.exe
C:\\Program Files\\Emsisoft Anti-Malware\\a2service.exe
C:\\Program Files\\Common Files\\ArcSoft\\Connection Service\\Bin\\ACService.exe
C:\\Program Files\\Common Files\\Acronis\\Schedule2\\schedul2.exe
C:\\Program Files\\DeviceVM\\Browser Configuration Utility\\BCUService.exe
C:\\Program Files\\IVT Corporation\\BlueSoleil\\BTNtService.exe
C:\\Program Files\\Gigabyte\\EasySaver\\ESSVR.EXE
C:\\Program Files\\Java\\jre6\\bin\\jqs.exe
C:\\WINDOWS\\System32\\nvsvc32.exe
C:\\WINDOWS\\System32\\svchost.exe
C:\\Program Files\\Common Files\\Acronis\\Fomatik\\TrueImageTryStartService.exe
C:\\Program Files\\TuneUp Utilities 2010\\TuneUpUtilitiesService32.exe
C:\\Program Files\\Common Files\\Ulead Systems\\DVD\\ULCDRSvr.exe
C:\\Program Files\\TuneUp Utilities 2010\\TuneUpUtilitiesApp32.exe
C:\\WINDOWS\\System32\\wbem\\wmiapsrv.exe
C:\\WINDOWS\\system32\\wscntfy.exe
C:\\Program Files\\Mozilla Firefox\\firefox.exe
C:\\Program Files\\Winamp\\winamp.exe
C:\\totalcmd\\TOTALCMD.EXE
C:\\Program Files\\Mozilla Firefox\\plugin-container.exe
C:\\Program Files\\Adam\\Trend Micro\\HiJackThis\\HiJackThis.exe
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Toolbar,LinksFolderName = Łącza
R3 - URLSearchHook: SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\\Program Files\\DeviceVM\\Browser Configuration Utility\\AddressBarSearch.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\\Program Files\\Adobe\\Acrobat 6.0 CE\\Reader\\ActiveX\\AcroIEHelper.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\\Program Files\\Java\\jre6\\bin\\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\\Program Files\\Java\\jre6\\lib\\deploy\\jqs\\ie\\jqs_plugin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\\Program Files\\Yahoo!\\Companion\\Installs\\cpn\\yt.dll
O4 - HKLM\\..\\Run: [NvCplDaemon] RUNDLL32.EXE C:\\WINDOWS\\System32\\NvCpl.dll,NvStartup
O4 - HKLM\\..\\Run: [nwiz] nwiz.exe /install
O4 - HKLM\\..\\Run: [NvMediaCenter] RUNDLL32.EXE C:\\WINDOWS\\System32\\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\\..\\Run: [avast5] C:\\PROGRA~1\\ALWILS~1\\Avast5\\avastUI.exe /nogui
O4 - HKLM\\..\\Run: [BCU] \"C:\\Program Files\\DeviceVM\\Browser Configuration Utility\\BCU.exe\"
O4 - HKLM\\..\\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\\..\\Run: [TrueImageMonitor.exe] C:\\Program Files\\Acronis\\TrueImageHome\\TrueImageMonitor.exe
O4 - HKLM\\..\\Run: [AcronisTimounterMonitor] C:\\Program Files\\Acronis\\TrueImageHome\\TimounterMonitor.exe
O4 - HKLM\\..\\Run: [Acronis Scheduler2 Service] \"C:\\Program Files\\Common Files\\Acronis\\Schedule2\\schedhlp.exe\"
O4 - HKLM\\..\\Run: [NeroFilterCheck] C:\\WINDOWS\\system32\\NeroCheck.exe
O4 - HKLM\\..\\Run: [ClocX] C:\\Program Files\\ClocX\\ClocX.exe
O4 - HKLM\\..\\Run: [WinFastDTV] C:\\Program Files\\WinFast\\WFDTV\\DTVSchdl.exe
O4 - HKLM\\..\\Run: [ArcSoft Connection Service] C:\\Program Files\\Common Files\\ArcSoft\\Connection Service\\Bin\\ACDaemon.exe
O4 - HKLM\\..\\Run: [TrojanScanner] C:\\Program Files\\Trojan Remover\\Trjscan.exe /boot
O4 - HKLM\\..\\Run: [a-squared] \"C:\\Program Files\\Emsisoft Anti-Malware\\a2guard.exe\"
O4 - HKCU\\..\\Run: [CTFMON.EXE] C:\\WINDOWS\\system32\\ctfmon.exe
O4 - HKCU\\..\\Run: [Rainlendar2] C:\\Program Files\\Rainlendar2\\Rainlendar2.exe
O4 - HKCU\\..\\Run: [TV Watcher] \"E:\\3_PROGRAMY STARTOWE Gigabyte WINDOWS XP\\TV_Watcher_1.10\\TV_Watcher.exe\" /a
O4 - HKCU\\..\\Run: [IncrediMail] C:\\Program Files\\IncrediMail\\bin\\IncMail.exe /c
O4 - HKCU\\..\\Run: [MSMSGS] \"C:\\Program Files\\Messenger\\msmsgs.exe\" /background
O4 - HKCU\\..\\Run: [WinFast Schedule] C:\\Program Files\\WinFast\\WFDTV\\WFWIZ.exe
O4 - HKUS\\S-1-5-19\\..\\Run: [CTFMON.EXE] C:\\WINDOWS\\System32\\CTFMON.EXE (User \'USŁUGA LOKALNA\')
O4 - HKUS\\S-1-5-20\\..\\Run: [CTFMON.EXE] C:\\WINDOWS\\System32\\CTFMON.EXE (User \'USŁUGA SIECIOWA\')
O4 - HKUS\\S-1-5-18\\..\\Run: [CTFMON.EXE] C:\\WINDOWS\\System32\\CTFMON.EXE (User \'SYSTEM\')
O4 - HKUS\\.DEFAULT\\..\\Run: [CTFMON.EXE] C:\\WINDOWS\\System32\\CTFMON.EXE (User \'Default user\')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\\WINDOWS\\system32\\GPhotos.scr/200
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\\PROGRA~1\\MICROS~2\\Office10\\EXCEL.EXE/3000
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\\WINDOWS\\Network Diagnostic\\xpnetdiag.exe
O9 - Extra \'Tools\' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\\WINDOWS\\Network Diagnostic\\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\\Program Files\\Messenger\\msmsgs.exe
O9 - Extra \'Tools\' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\\Program Files\\Messenger\\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\\PROGRA~1\\COMMON~1\\Skype\\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Moduł wstępnego ładowania interfejsu Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\\WINDOWS\\System32\\browseui.dll
O22 - SharedTaskScheduler: Demon buforu kategorii składników - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\\WINDOWS\\System32\\browseui.dll
O23 - Service: Emsisoft Anti-Malware 5.0 - Service (a2AntiMalware) - Emsi Software GmbH - C:\\Program Files\\Emsisoft Anti-Malware\\a2service.exe
O23 - Service: a-squared Free Service (a2free) - Unknown owner - C:\\PROGRAM FILES\\A-SQUARED FREE\\a2service.exe (file missing)
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\\Program Files\\Common Files\\ArcSoft\\Connection Service\\Bin\\ACService.exe
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\\Program Files\\Common Files\\Acronis\\Schedule2\\schedul2.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\\Program Files\\Alwil Software\\Avast5\\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\\Program Files\\Alwil Software\\Avast5\\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\\Program Files\\Alwil Software\\Avast5\\AvastSvc.exe
O23 - Service: Browser Configuration Utility Service (BCUService) - DeviceVM, Inc. - C:\\Program Files\\DeviceVM\\Browser Configuration Utility\\BCUService.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\\Program Files\\IVT Corporation\\BlueSoleil\\BTNtService.exe
O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - C:\\Program Files\\Gigabyte\\EasySaver\\ESSVR.EXE
O23 - Service: Google Updater Service (gusvc) - Google - C:\\Program Files\\Google\\Common\\Google Updater\\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\\Program Files\\Java\\jre6\\bin\\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\\WINDOWS\\System32\\nvsvc32.exe
O23 - Service: Acronis Try And Decide Service (TryAndDecideService) - Unknown owner - C:\\Program Files\\Common Files\\Acronis\\Fomatik\\TrueImageTryStartService.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\\Program Files\\TuneUp Utilities 2010\\TuneUpDefragService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\\Program Files\\TuneUp Utilities 2010\\TuneUpUtilitiesService32.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\\Program Files\\Common Files\\Ulead Systems\\DVD\\ULCDRSvr.exe
--
End of file - 8561 bytes
|