Dodaj do ulubionych

log z hijackthis do sprawdzenia

IP: *.internetdsl.tpnet.pl 08.10.04, 11:56
Logfile of HijackThis v1.98.2
Scan saved at 11:41:35, on 2004-10-08
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\SYSTEM32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\svchost.exe
C:\PROGRA~1\NETWOR~1\ssh\FireDaemon.exe
C:\WINNT\SYSTEM32\cmd.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\PROGRA~1\NETWOR~1\ssh\sshd.exe
C:\Program Files\Kerio\WinRoute Firewall\winroute.exe
C:\PROGRA~1\NETWOR~1\ssh\sshd.exe
C:\WINNT\Explorer.EXE
C:\WINNT\system32\internat.exe
C:\Program Files\Kerio\WinRoute Firewall\WrCtrl.exe
C:\WINNT\system32\RaConfig.exe
D:\Downloads\hijackthis\HijackThis.exe
C:\Program Files\Mozilla Firefox\firefox.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
www.pajacyk.pl/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet
Settings,ProxyServer = w3cache.icm.edu.pl:8080
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program
Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} -
C:\PROGRA~1\FLASHGET\jccatch.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
C:\WINNT\system32\msdxm.ocx
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} -
C:\PROGRA~1\FLASHGET\fgiebar.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [KAVPersonal50] C:\Program Files\Kaspersky Lab\Kaspersky
Anti-Virus Personal\kav.exe /minimize
O4 - HKCU\..\Run: [internat.exe] internat.exe
O4 - HKCU\..\Run: [WrCtrl] C:\Program Files\Kerio\WinRoute Firewall\WrCtrl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
Office\Office\OSA9.EXE
O4 - Global Startup: RaConfig.lnk = C:\WINNT\system32\RaConfig.exe
O8 - Extra context menu item: Ściągnij przy pomocy FlashGet'a - C:\Program
Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Ściągnij wszystko przy pomocy FlashGet'a -
C:\Program Files\FlashGet\jc_all.htm
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} -
C:\PROGRA~1\FLASHGET\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet -
{D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\flashget.exe
O17 -
HKLM\System\CCS\Services\Tcpip\..\{0EEA2A50-0451-4E7D-875E-7BD26F30C1E0}:
NameServer = 217.17.34.50,194.204.152.34
O17 - HKLM\System\CS1\Services\VxD\MSTCP: NameServer = 217.17.34.50
O17 -
HKLM\System\CS1\Services\Tcpip\..\{0EEA2A50-0451-4E7D-875E-7BD26F30C1E0}:
NameServer = 217.17.34.50,194.204.152.34
O17 - HKLM\System\CS2\Services\VxD\MSTCP: NameServer = 217.17.34.50
O17 -
HKLM\System\CS2\Services\Tcpip\..\{0EEA2A50-0451-4E7D-875E-7BD26F30C1E0}:
NameServer = 217.17.34.50,194.204.152.34
O17 - HKLM\System\CCS\Services\VxD\MSTCP: NameServer = 217.17.34.50

Obserwuj wątek
    • netsec Re: log z hijackthis do sprawdzenia 08.10.04, 13:59
      Gość portalu: truskawka napisał(a):

      > Logfile of HijackThis v1.98.2
      > Scan saved at 11:41:35, on 2004-10-08
      > Platform: Windows 2000 SP4 (WinNT 5.00.2195)
      > MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

      O4 - Global Startup: RaConfig.lnk = C:\WINNT\system32\RaConfig.exe
      Masz zaisnatlowany:

      "The RemoteAccess Network Manager, a utility
      designed to give you complete control over a busy multi-node
      system. Dynamically view the status of each node as users
      log on and off, what each user is doing, broadcast messages
      to any combination of nodes and automatically take any
      combination of nodes down for maintenance."

      Jeśli jest to komputer w sieci i administrator specjalnie zainstalował ten
      program to ok, inaczej usuń ten wpis.
      • Gość: truskawka Re: log z hijackthis do sprawdzenia IP: *.internetdsl.tpnet.pl 08.10.04, 20:28
        nie znam zbytnio angielskiego do czego jest ten program The RemoteAccess Network
        Manager?

Nie masz jeszcze konta? Zarejestruj się


Nakarm Pajacyka