Proszę o sprawdzenie loga !!

IP: *.neoplus.adsl.tpnet.pl 23.04.05, 01:33
Logfile of HijackThis v1.99.1
Scan saved at 01:28:16, on 2005-04-23
Platform: Windows XP Dodatek SP. 1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Trend Micro\PC-cillin 2002\Tmntsrv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Trend Micro\PC-cillin 2002\PCCPFW.exe
C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe
C:\Program Files\Trend Micro\PC-cillin 2002\Pop3trap.exe
C:\Program Files\Trend Micro\PC-cillin 2002\pccguide.exe
C:\Program Files\Trend Micro\PC-cillin 2002\PCCClient.exe
C:\WINDOWS\System32\RunDll32.exe
C:\Program Files\Elaborate Bytes\CloneCD\CloneCDTray.exe
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\WINDOWS\System32\rundll32.exe
C:\WINDOWS\System32\paytime.exe
C:\Program Files\Gadu-Gadu\gg.exe
C:\WINDOWS\System32\paytime.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\Sony Corporation\Picture Package\Picture Package
Menu\SonyTray.exe
C:\Program Files\Sony Corporation\Picture Package\Picture Package
Applications\Residence.exe
C:\Program Files\Ulead Systems\Ulead Photo Express 3.0 SE\CalCheck.exe
C:\Program Files\Mustek 1200 UB Plus\Driver\WATCH.exe
E:\program files\WinZip\WZQKPICK.EXE
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\WebSiteViewer\124495.dlr
C:\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL =
my.search/sp.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
81.222.131.49/index.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
google.icq.com/search/search_frame.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
google.icq.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
81.222.131.49/index.php
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
81.222.131.49/index.php
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
uk.red.clientapps.yahoo.com/customize/ie/defaults/su/ymsgr6/uk/*http://www.yahoo.co.uk
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
uk.red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr6/uk/*http://uk.docs.yahoo.com/info/bt_side.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
uk.red.clientapps.yahoo.com/customize/ie/defaults/sp/ymsgr6/uk/*http://www.yahoo.co.uk
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
81.222.131.49/index.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
my.search/sp.php
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
uk.red.clientapps.yahoo.com/customize/ie/defaults/su/ymsgr6/uk/*http://www.yahoo.co.uk
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
81.222.131.49/index.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP =
searchmyrequest.com/hp.php
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
81.222.131.49/index.php
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} -
C:\Program Files\ICQToolbar\toolbaru.dll
F1 - win.ini: run=C:\WINDOWS\..\PROGRA~1\COMMON~1\MICROS~1\MSInfo\msinfo.exe
O1 - Hosts: 127.0.0.3 n-glx.s-redirect.com
O1 - Hosts: 127.0.0.3 x.full-tgp.net
O1 - Hosts: 127.0.0.3 counter.sexmaniack.com
O1 - Hosts: 127.0.0.3 autoescrowpay.com
O1 - Hosts: 127.0.0.3 www.autoescrowpay.com
O1 - Hosts: 127.0.0.3 www.awmdabest.com
O1 - Hosts: 127.0.0.3 www.sexfiles.nu
O1 - Hosts: 127.0.0.3 awmdabest.com
O1 - Hosts: 127.0.0.3 sexfiles.nu
O1 - Hosts: 127.0.0.3 allforadult.com
O1 - Hosts: 127.0.0.3 www.allforadult.com
O1 - Hosts: 127.0.0.3 www.iframe.biz
O1 - Hosts: 127.0.0.3 iframe.biz
O1 - Hosts: 127.0.0.3 www.newiframe.biz
O1 - Hosts: 127.0.0.3 newiframe.biz
O1 - Hosts: 127.0.0.3 www.vesbiz.biz
O1 - Hosts: 127.0.0.3 vesbiz.biz
O1 - Hosts: 127.0.0.3 www.pi..to.biz
O1 - Hosts: 127.0.0.3 pi..to.biz
O1 - Hosts: 127.0.0.3 www.aaasexypics.com
O1 - Hosts: 127.0.0.3 aaasexypics.com
O1 - Hosts: 127.0.0.3 www.virgin-tgp.net
O1 - Hosts: 127.0.0.3 virgin-tgp.net
O1 - Hosts: 127.0.0.3 www.awmcash.biz
O1 - Hosts: 127.0.0.3 awmcash.biz
O1 - Hosts: 127.0.0.3 buldog-stats.com
O1 - Hosts: 127.0.0.3 www.buldog-stats.com
O1 - Hosts: 127.0.0.3 fregat.drocherway.com
O1 - Hosts: 127.0.0.3 slutmania.biz
O1 - Hosts: 127.0.0.3 www.slutmania.biz
O1 - Hosts: 127.0.0.3 toolbarpartner.com
O1 - Hosts: 127.0.0.3 www.toolbarpartner.com
O1 - Hosts: 127.0.0.3 www.megapornix.com
O1 - Hosts: 127.0.0.3 megapornix.com
O1 - Hosts: 127.0.0.3 www.sp2fucked.biz
O1 - Hosts: 127.0.0.3 sp2fucked.biz
O1 - Hosts: 127.0.0.3 greg-tut.com
O1 - Hosts: 127.0.0.3 www.greg-tut.com
O1 - Hosts: 127.0.0.3 nylonsexy.com
O1 - Hosts: 127.0.0.3 www.nylonsexy.com
O1 - Hosts: 127.0.0.3 vparivalka.com
O1 - Hosts: 127.0.0.3 www.vparivalka.com
O1 - Hosts: 127.0.0.3 iframeprofit.com
O1 - Hosts: 127.0.0.3 www.iframeprofit.com
O1 - Hosts: 127.0.0.3 topsearch10.com
O1 - Hosts: 127.0.0.3 www.topsearch10.com
O1 - Hosts: 127.0.0.3 statscash.biz
O1 - Hosts: 127.0.0.3 www.statscash.biz
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} -
C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\ycomp5_3_12_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -
D:\Reader\ActiveX\AcroIEHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} -
C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\ycomp5_3_12_0.dll
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} -
C:\Program Files\ICQToolbar\toolbaru.dll
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common
Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program
Files\Alcatel\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [Pop3trap.exe] "C:\Program Files\Tre
    • Gość: Marysia druga częśc bo chyba nie weszło IP: *.neoplus.adsl.tpnet.pl 23.04.05, 01:39
      O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
      O4 - HKLM\..\Run: [Pop3trap.exe] "C:\Program Files\Trend Micro\PC-cillin 2002
      \Pop3trap.exe"
      O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\PC-cillin 2002
      \pccguide.exe"
      O4 - HKLM\..\Run: [PCCClient.exe] "C:\Program Files\Trend Micro\PC-cillin 2002
      \PCCClient.exe"
      O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
      O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32
      \NvCpl.dll,NvStartup
      O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
      O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
      O4 - HKLM\..\Run: [CloneCDTray] C:\Program Files\Elaborate
      Bytes\CloneCD\CloneCDTray.exe
      O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_05
      \bin\jusched.exe
      O4 - HKLM\..\Run: [ICQ Lite] C:\Program Files\ICQLite\ICQLite.exe -minimize
      O4 - HKLM\..\Run: [PayTime] C:\WINDOWS\System32\paytime.exe
      O4 - HKCU\..\Run: [editpad] C:\WINDOWS\editpad.exe
      O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray
      O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -
      quiet
      O4 - HKCU\..\Run: [PayTime] C:\WINDOWS\System32\paytime.exe
      O4 - HKCU\..\RunOnce: [ICQ Lite] C:\Program Files\ICQLite\ICQLite.exe -trayboot
      O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840
      \dslmon.exe
      O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
      Office\Office10\OSA.EXE
      O4 - Global Startup: Picture Package Menu.lnk = C:\Program Files\Sony
      Corporation\Picture Package\Picture Package Menu\SonyTray.exe
      O4 - Global Startup: Picture Package VCD Maker.lnk = C:\Program Files\Sony
      Corporation\Picture Package\Picture Package Applications\Residence.exe
      O4 - Global Startup: Ulead Photo Express 3.0 SE Calendar Checker.lnk =
      C:\Program Files\Ulead Systems\Ulead Photo Express 3.0 SE\CalCheck.exe
      O4 - Global Startup: Watch.lnk = C:\Program Files\Mustek 1200 UB
      Plus\Driver\WATCH.exe
      O4 - Global Startup: WinZip Quick Pick.lnk = E:\program
      files\WinZip\WZQKPICK.EXE
      O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Program
      Files\ICQToolbar\toolbaru.dll/SEARCH.HTML
      O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!
      \Common/ycsrch.htm
      O8 - Extra context menu item: E&ksport do programu Microsoft Excel -
      res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
      O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program
      Files\Yahoo!\Common/ycdict.htm
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
      C:\WINDOWS\System32\msjava.dll
      O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-
      00401C608501} - C:\WINDOWS\System32\msjava.dll
      O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} -
      C:\Program Files\Yahoo!\Messenger\yhexbmes0527.dll
      O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-
      00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0527.dll
      O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -
      C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
      O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} -
      C:\Program Files\ICQLite\ICQLite.exe
      O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} -
      C:\Program Files\ICQLite\ICQLite.exe
      O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} -
      C:\Program Files\Messenger\MSMSGS.EXE
      O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-
      00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
      O10 - Unknown file in Winsock LSP: c:\windows\system32\lspak.dll
      O10 - Unknown file in Winsock LSP: c:\windows\system32\lspak.dll
      O10 - Unknown file in Winsock LSP: c:\windows\system32\lspak.dll
      O10 - Unknown file in Winsock LSP: c:\windows\system32\lspak.dll
      O12 - Plugin for .mid: C:\Program Files\Internet
      Explorer\PLUGINS\npqtplugin2.dll
      O12 - Plugin for .mov: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin.dll
      O12 - Plugin for .mp3: C:\Program Files\Internet
      Explorer\PLUGINS\npqtplugin3.dll
      O12 - Plugin for .pdf: C:\Program Files\Internet Explorer\PLUGINS\nppdf32.dll
      O12 - Plugin for .png: C:\Program Files\Internet
      Explorer\PLUGINS\npqtplugin4.dll
      O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
      O12 - Plugin for ¸ćc: C:\Program Files\Internet
      Explorer\PLUGINS\npqtplugin3.dll
      O12 - Plugin for ¸ć†: C:\Program Files\Internet
      Explorer\PLUGINS\npqtplugin3.dll
      O12 - Plugin for ôĺ: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin3.dll
      O16 - DPF: {10000000-1000-0000-1000-000000000000} - file://C:\Program
      Files\Internet Explorer\mhlxbkge.exe
      O16 - DPF: {2A32B14F-4D29-4EA3-AC54-E9B19F436CE7} (Scanner Class) -
      www.windowsecurity.com/trojanscan/TDECntrl.CAB
      O16 - DPF: {87067F04-DE4C-4688-BC3C-4FCF39D609E7} -
      download.websearch.com/Dnl/T_50183/QDow_AS2.cab
      O16 - DPF: {AB8638BB-79E8-4E9D-ABF2-8F33054E3941} (Guesser Class) -
      czat.onet.pl/client/kalambury/NetPunGame.dll
      O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} (YAddBook Class) -
      us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/autocomplete.cab
      O16 - DPF: {DDFFA75A-E81D-4454-89FC-B9FD0631E726} -
      www.bundleware.com/activeX/BM2/BM2.cab
      O17 - HKLM\System\CCS\Services\Tcpip\..\{A5AFB6A8-FB0E-41CF-9315-8A07E5ADBA66}:
      NameServer = 194.204.152.34 217.98.63.164
      O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\System32
      \DRIVERS\CDANTSRV.EXE
      O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation -
      C:\WINDOWS\System32\nvsvc32.exe
      O23 - Service: PC-cillin PersonalFirewall (PCCPFW) - Trend Micro Inc. -
      C:\Program Files\Trend Micro\PC-cillin 2002\PCCPFW.exe
      O23 - Service: Trend NT Realtime Service (Tmntsrv) - Trend Micro Inc. -
      C:\Program Files\Trend Micro\PC-cillin 2002\Tmntsrv.exe
      • Gość: Marysia Skad tyle swińskich porno dialerów? IP: *.neoplus.adsl.tpnet.pl 23.04.05, 01:43
        Pomocy .Przed chwila weszłam na jakąś strone i taki tego rezultat .dodatkowo
        problem ze strona startową teraz mam to usunac tak?Powiedzcie co i jak?
        Dzięki
        • Gość: barracuda7110 Re: Skad tyle swińskich porno dialerów? IP: *.dsl.telepac.pt 23.04.05, 06:30
          Używasz tandetnej przeglądarki.
    • Gość: barracuda7110 Re: Proszę o sprawdzenie loga !! IP: *.dsl.telepac.pt 23.04.05, 06:29
      Wywaliłbym to:
      R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL =
      my.search/sp.php
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
      81.222.131.49/index.php
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
      google.icq.com/search/search_frame.php
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
      google.icq.com
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
      81.222.131.49/index.php
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
      81.222.131.49/index.php
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
      uk.red.clientapps.yahoo.com/customize/ie/defaults/su/ymsgr6/uk/*www.yahoo.co.uk
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
      uk.red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr6/uk/*uk.docs.yahoo.com/info/bt_side.html
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
      uk.red.clientapps.yahoo.com/customize/ie/defaults/sp/ymsgr6/uk/*www.yahoo.co.uk
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
      81.222.131.49/index.php
      R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
      my.search/sp.php
      R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
      uk.red.clientapps.yahoo.com/customize/ie/defaults/su/ymsgr6/uk/*www.yahoo.co.uk
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
      81.222.131.49/index.php
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP =
      searchmyrequest.com/hp.php
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
      81.222.131.49/index.php
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
      R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} -
      C:\Program Files\ICQToolbar\toolbaru.dll
      F1 - win.ini: run=C:\WINDOWS\..\PROGRA~1\COMMON~1\MICROS~1\MSInfo\msinfo.exe
      O1 - Hosts: 127.0.0.3 n-glx.s-redirect.com
      O1 - Hosts: 127.0.0.3 x.full-tgp.net
      O1 - Hosts: 127.0.0.3 counter.sexmaniack.com
      O1 - Hosts: 127.0.0.3 autoescrowpay.com
      O1 - Hosts: 127.0.0.3 www.autoescrowpay.com
      O1 - Hosts: 127.0.0.3 www.awmdabest.com
      O1 - Hosts: 127.0.0.3 www.sexfiles.nu
      O1 - Hosts: 127.0.0.3 awmdabest.com
      O1 - Hosts: 127.0.0.3 sexfiles.nu
      O1 - Hosts: 127.0.0.3 allforadult.com
      O1 - Hosts: 127.0.0.3 www.allforadult.com
      O1 - Hosts: 127.0.0.3 www.iframe.biz
      O1 - Hosts: 127.0.0.3 iframe.biz
      O1 - Hosts: 127.0.0.3 www.newiframe.biz
      O1 - Hosts: 127.0.0.3 newiframe.biz
      O1 - Hosts: 127.0.0.3 www.vesbiz.biz
      O1 - Hosts: 127.0.0.3 vesbiz.biz
      O1 - Hosts: 127.0.0.3 www.pi..to.biz
      O1 - Hosts: 127.0.0.3 pi..to.biz
      O1 - Hosts: 127.0.0.3 www.aaasexypics.com
      O1 - Hosts: 127.0.0.3 aaasexypics.com
      O1 - Hosts: 127.0.0.3 www.virgin-tgp.net
      O1 - Hosts: 127.0.0.3 virgin-tgp.net
      O1 - Hosts: 127.0.0.3 www.awmcash.biz
      O1 - Hosts: 127.0.0.3 awmcash.biz
      O1 - Hosts: 127.0.0.3 buldog-stats.com
      O1 - Hosts: 127.0.0.3 www.buldog-stats.com
      O1 - Hosts: 127.0.0.3 fregat.drocherway.com
      O1 - Hosts: 127.0.0.3 slutmania.biz
      O1 - Hosts: 127.0.0.3 www.slutmania.biz
      O1 - Hosts: 127.0.0.3 toolbarpartner.com
      O1 - Hosts: 127.0.0.3 www.toolbarpartner.com
      O1 - Hosts: 127.0.0.3 www.megapornix.com
      O1 - Hosts: 127.0.0.3 megapornix.com
      O1 - Hosts: 127.0.0.3 www.sp2fucked.biz
      O1 - Hosts: 127.0.0.3 sp2fucked.biz
      O1 - Hosts: 127.0.0.3 greg-tut.com
      O1 - Hosts: 127.0.0.3 www.greg-tut.com
      O1 - Hosts: 127.0.0.3 nylonsexy.com
      O1 - Hosts: 127.0.0.3 www.nylonsexy.com
      O1 - Hosts: 127.0.0.3 vparivalka.com
      O1 - Hosts: 127.0.0.3 www.vparivalka.com
      O1 - Hosts: 127.0.0.3 iframeprofit.com
      O1 - Hosts: 127.0.0.3 www.iframeprofit.com
      O1 - Hosts: 127.0.0.3 topsearch10.com
      O1 - Hosts: 127.0.0.3 www.topsearch10.com
      O1 - Hosts: 127.0.0.3 statscash.biz
      O1 - Hosts: 127.0.0.3 www.statscash.bi

      Pozatym mam zawsze ciężki ubaw widząc ludzi męczących się z ie jak są bezpieczne
      alternatywy (firefox, opera).
      • Gość: Kolobos Re: Proszę o sprawdzenie loga !! IP: *.warszawa.sdi.tpnet.pl 23.04.05, 09:02
        Sam mam IE i jakos sie nie mecze tylko uzywam.Nigdy mi sie nic nie
        zainstalowalo i z niczym nie mialem problemu.
        Wiec jak widzisz nie mozna za wszystko winic przegladarke tylko uzytkownika bo
        jaki uzytkownik taki system.
        • Gość: Marysia Re: Proszę o sprawdzenie loga !! IP: *.neoplus.adsl.tpnet.pl 23.04.05, 12:46
          Niestety tego nie moge niczym usunąć i dialera też nie.Może jakś alternatywa?

          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
          81.222.131.49/index.php
          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
          81.222.131.49/index.php
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
          81.222.131.49/index.php
          R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
          81.222.131.49/index.php
          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
          81.222.131.49/index.php
          R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
          81.222.131.49/index.php
          • Gość: Kolobos Re: Proszę o sprawdzenie loga !! IP: *.warszawa.sdi.tpnet.pl 23.04.05, 15:24
            Wklej nowy log z hijackthis.
            • Gość: Marysia Już wszystko,ok! IP: *.neoplus.adsl.tpnet.pl 24.04.05, 15:26
              Zainstalowałam sobie spy sweeper -wyczyścił mi wszystko .Nie mam już
              dialera ,tej strony startowej i pozbyłam się przy okazji 2 trojanów.Polecam ten
              program.Dzieki papa
        • Gość: barracuda7110 Re: Proszę o sprawdzenie loga !! IP: *.dsl.telepac.pt 24.04.05, 22:25
          Hmm używasz przestarzałego wynalazku, który nigdy nie był dobry. Może jednak
          nieświadomym użytkownikom polecać coś do obsługi czego nie potrzeba posiadać
          wiedzy z dziedziny magii? Też kiedyś korzystałem tylko z ie ale odkąd na próbę
          zainstalowałem firefoksa nie wróciłem do programu ms.
Pełna wersja