Gość: mamdość
IP: *.neoplus.adsl.tpnet.pl
13.07.06, 00:46
Chyba CWS ale shreder twierdzi że jest OK. Dodatkowo niejakie Pipas ciągle
wyłazi /ten problem już był na forum ale z wątku nie wynika jak to się
skończyło/
log
Logfile of HijackThis v1.99.1
Scan saved at 00:39:54, on 2006-07-13
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
H:\WINDOWS\System32\smss.exe
H:\WINDOWS\system32\csrss.exe
H:\WINDOWS\system32\winlogon.exe
H:\WINDOWS\system32\services.exe
H:\WINDOWS\system32\lsass.exe
H:\WINDOWS\system32\svchost.exe
H:\WINDOWS\System32\svchost.exe
H:\WINDOWS\System32\svchost.exe
H:\WINDOWS\System32\svchost.exe
H:\WINDOWS\system32\spoolsv.exe
H:\Program Files\M-Audio Ozone\Install\Ozinst.exe
H:\WINDOWS\System32\wdfmgr.exe
H:\WINDOWS\system32\ZoneLabs\vsmon.exe
H:\WINDOWS\Explorer.EXE
H:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
H:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
H:\Program Files\MSN Toolbar Suite\DS\02.00.0001.1203\en-us\bin\msnlAdmin.exe
H:\WINDOWS\System32\devldr32.exe
H:\Program Files\MSN Toolbar Suite\DS\02.00.0001.1203\en-us\bin\msnindex.exe
H:\Program Files\MSN Toolbar Suite\DS\02.00.0001.1203\en-us\bin\MSNGather.exe
H:\Program Files\Internet Explorer\IEXPLORE.EXE
H:\Program Files\WinRAR\WinRAR.exe
H:\DOCUME~1\TOMO!\USTAWI~1\Temp\Rar$EX00.187\HijackThis.exe
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
www.google.pl/
O4 - HKLM\..\Run: [Zone Labs Client] H:\Program Files\Zone
Labs\ZoneAlarm\zlclient.exe
O4 - HKCU\..\Run: [Gadu-Gadu] "H:\Program Files\Gadu-Gadu\gg.exe" /tray
O4 - Global Startup: Adobe Gamma Loader.lnk = H:\Program Files\Common
Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: DSLMON.lnk = H:\Program Files\SAGEM\SAGEM F@st 800-840
\dslmon.exe
O4 - Global Startup: MSN Desktop Search.lnk = H:\Program Files\MSN Toolbar
Suite\DS\02.00.0001.1203\en-us\bin\msnlAdmin.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1111830621749
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer
Class) - acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} -
www.trendmicro.com/spyware-scan/as4web.cab
O16 - DPF: {E7544C6C-CFD6-43EA-B4E9-360CEE20BDF7} (MainControl Class) -
www.mks.com.pl/skaner/SkanerOnline.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{8C1E68FC-BD5C-4DE0-AFDD-
230A77270E37}: NameServer = 85.255.113.150 85.255.112.106
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation -
H:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Ozone Installer (OzoneInstallerService) - Nemesis - H:\Program
Files\M-Audio Ozone\Install\Ozinst.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC -
H:\WINDOWS\system32\ZoneLabs\vsmon.exe
Dzięki z góry za rady i pozdrawiam
Jacek