Dodaj do ulubionych

prosze o sprawdzenia loga

IP: *.neoplus.adsl.tpnet.pl 14.07.06, 09:48

mam problem z wyskakującymi okienkami, chociaż znajdą się pewnie i inne
rzeczy..




Logfile of HijackThis v1.99.1
Scan saved at 09:45:24, on 2006-07-14
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe
C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
C:\WINDOWS\System32\mssvcc.exe
C:\Program Files\D4\D4.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Gadu-Gadu\gg.exe
C:\Program Files\CASIO\Photo Loader\Plauto.exe
C:\Program Files\Wanadoo\EspaceWanadoo.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\Program Files\Wanadoo\Watch.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\Karolina\Pulpit\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
szukaj.wp.pl
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
www.tlen.pl
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Neostrada
Plus wita Cie w Internecie
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32
\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32
\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program
Files\Alcatel\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [msconfig38] mssvcc.exe
O4 - HKLM\..\Run: [secures23] mssecure.exe
O4 - HKLM\..\Run: [Local Security Authority Service] C:\WINDOWS\System32
\lssas.exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\NeroCheck.exe
O4 - HKLM\..\Run: [BearShare] "C:\Program
Files\BearShare\BearShare.exe" /pause
O4 - HKLM\..\Run: [Printer] C:\WINDOWS\System32\vmmon32.exe
O4 - HKLM\..\Run: [ODK_Mon] C:\Program Files\Odkurzacz 9.0 Pro\odk_mon.exe
O4 - HKLM\..\Run: [Odkurzacz-MCD] C:\Program Files\Odkurzacz 10.1
Pro\odk_mcd.exe
O4 - HKLM\..\Run: [Dimension4] C:\Program Files\D4\D4.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06
\bin\jusched.exe
O4 - HKLM\..\Run: [Microsoft Directx] directxat.exe
O4 - HKLM\..\Run: [newname] C:\\newname25.exe
O4 - HKLM\..\Run: [defender] C:\\dfndre_5.exe
O4 - HKLM\..\Run: [winsystems25] winsystems.exe
O4 - HKLM\..\Run: [Windows Core Kernel Update] C:\WINDOWS\System32
\win32bootcfg.exe
O4 - HKLM\..\Run: [Microsoft Directxsp] directxbt.exe
O4 - HKLM\..\Run: [Win32 Kernel Update] C:\WINDOWS\System32\win32update.exe
O4 - HKLM\..\Run: [Microsoft Windows Update 32] svchost32.exe
O4 - HKLM\..\Run: [keyboard] C:\\kybrde_5.exe
O4 - HKLM\..\RunServices: [msconfig38] mssvcc.exe
O4 - HKLM\..\RunServices: [secures23] mssecure.exe
O4 - HKLM\..\RunServices: [Run Service Vxdrun] vxddirectx32.exe
O4 - HKLM\..\RunServices: [Printer] C:\WINDOWS\System32\vmmon32.exe
O4 - HKLM\..\RunServices: [Microsoft Directx] directxat.exe
O4 - HKLM\..\RunServices: [winsystems25] winsystems.exe
O4 - HKLM\..\RunServices: [Microsoft Directxsp] directxbt.exe
O4 - HKLM\..\RunServices: [Microsoft Windows Update 32] svchost32.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray
O4 - HKCU\..\Run: [Run Service Vxdrun] vxddirectx32.exe
O4 - HKCU\..\Run: [WhenUSave] "C:\Program Files\Save\Save.exe"
O4 - HKCU\..\Run: [Printer] C:\WINDOWS\System32\vmmon32.exe
O4 - HKCU\..\Run: [Microsoft Directx] directxat.exe
O4 - HKCU\..\Run: [Microsoft Directxsp] directxbt.exe
O4 - HKCU\..\Run: [Microsoft Windows Update 32] svchost32.exe
O4 - HKCU\..\RunServices: [Run Service Vxdrun] vxddirectx32.exe
O4 - HKCU\..\RunServices: [Microsoft Directx] directxat.exe
O4 - HKCU\..\RunServices: [Microsoft Directxsp] directxbt.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program
Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Photo Loader supervisory.lnk = C:\Program
Files\CASIO\Photo Loader\Plauto.exe
O8 - Extra context menu item: E&ksport do programu Microsoft Excel -
res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-
00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -
C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O15 - Trusted Zone: mks.com.pl
O16 - DPF: {5A09E43F-A0A7-4ABF-AF80-11367CF1DC8F} (MainControl Class) -
mks.com.pl/skaner/SkanerOnline.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1150972062537
O17 - HKLM\System\CCS\Services\Tcpip\..\{601C0BC4-9FA9-457F-AFE8-
54CE673508F4}: NameServer = 194.204.152.34 217.98.63.164
O20 - Winlogon Notify: Hints - C:\WINDOWS\system32\i4jq0e15eh.dll
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation -
C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Win32 Kernel Update (Win32Kernel) - Unknown owner -
C:\WINDOWS\win32host.exe (file missing)

Obserwuj wątek
    • Gość: Kolobos Re: prosze o sprawdzenia loga IP: *.warszawa.sdi.tpnet.pl 14.07.06, 11:27
      Z przyklejonego postu:
      usuwanie look2me
      skan ewido
      usuwanie uslug
      zamykanie portow w wwdc

      Do tego masz piracki windows bez aktualizaji wiec nie uzywaj IE, zainstaluj
      Opere lub Firefox. Oraz zainstaluj antyvirus AntyVir PE (znajdziesz na google).

      W menadzerze zadan zakoncz:
      C:\WINDOWS\System32\mssvcc.exe

      W hjt usun:
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Neostrada
      Plus wita Cie w Internecie
      Wszystkie te pliki usun z dysku:
      O4 - HKLM\..\Run: [msconfig38] mssvcc.exe
      O4 - HKLM\..\Run: [secures23] mssecure.exe
      O4 - HKLM\..\Run: [Local Security Authority Service] C:\WINDOWS\System32
      \lssas.exe
      O4 - HKLM\..\Run: [Printer] C:\WINDOWS\System32\vmmon32.exe
      O4 - HKLM\..\Run: [Microsoft Directx] directxat.exe
      O4 - HKLM\..\Run: [newname] C:\\newname25.exe
      O4 - HKLM\..\Run: [defender] C:\\dfndre_5.exe
      O4 - HKLM\..\Run: [winsystems25] winsystems.exe
      O4 - HKLM\..\Run: [Windows Core Kernel Update] C:\WINDOWS\System32
      \win32bootcfg.exe
      O4 - HKLM\..\Run: [Microsoft Directxsp] directxbt.exe
      O4 - HKLM\..\Run: [Win32 Kernel Update] C:\WINDOWS\System32\win32update.exe
      O4 - HKLM\..\Run: [Microsoft Windows Update 32] svchost32.exe
      O4 - HKLM\..\Run: [keyboard] C:\\kybrde_5.exe
      O4 - HKLM\..\RunServices: [msconfig38] mssvcc.exe
      O4 - HKLM\..\RunServices: [secures23] mssecure.exe
      O4 - HKLM\..\RunServices: [Run Service Vxdrun] vxddirectx32.exe
      O4 - HKLM\..\RunServices: [Printer] C:\WINDOWS\System32\vmmon32.exe
      O4 - HKLM\..\RunServices: [Microsoft Directx] directxat.exe
      O4 - HKLM\..\RunServices: [winsystems25] winsystems.exe
      O4 - HKLM\..\RunServices: [Microsoft Directxsp] directxbt.exe
      O4 - HKLM\..\RunServices: [Microsoft Windows Update 32] svchost32.exe
      O4 - HKCU\..\Run: [Run Service Vxdrun] vxddirectx32.exe
      O4 - HKCU\..\Run: [WhenUSave] "C:\Program Files\Save\Save.exe" <- usun katalog
      Save z dysku.
      O4 - HKCU\..\Run: [Printer] C:\WINDOWS\System32\vmmon32.exe
      O4 - HKCU\..\Run: [Microsoft Directx] directxat.exe
      O4 - HKCU\..\Run: [Microsoft Directxsp] directxbt.exe
      O4 - HKCU\..\Run: [Microsoft Windows Update 32] svchost32.exe
      O4 - HKCU\..\RunServices: [Run Service Vxdrun] vxddirectx32.exe
      O4 - HKCU\..\RunServices: [Microsoft Directx] directxat.exe
      O4 - HKCU\..\RunServices: [Microsoft Directxsp] directxbt.exe
      O20 - Winlogon Notify: Hints - C:\WINDOWS\system32\i4jq0e15eh.dll

      Usluga do kasacji:
      O23 - Service: Win32 Kernel Update (Win32Kernel) - Unknown owner -
      C:\WINDOWS\win32host.exe (file missing)


      Jak juz wszystko zrobisz to wklej nowy log.
      • Gość: kaka Re: prosze o sprawdzenia loga IP: *.neoplus.adsl.tpnet.pl 14.07.06, 22:22
        Logfile of HijackThis v1.99.1
        Scan saved at 22:21:48, on 2006-07-14
        Platform: Windows XP (WinNT 5.01.2600)
        MSIE: Internet Explorer v6.00 (6.00.2600.0000)

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\system32\rundll32.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\Program Files\ewido anti-spyware 4.0\guard.exe
        C:\WINDOWS\System32\nvsvc32.exe
        C:\WINDOWS\Explorer.EXE
        C:\WINDOWS\System32\RUNDLL32.EXE
        C:\Program Files\Winamp\winampa.exe
        C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe
        C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
        C:\Program Files\D4\D4.exe
        C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
        C:\Program Files\ewido anti-spyware 4.0\ewido.exe
        C:\Program Files\Gadu-Gadu\gg.exe
        C:\Program Files\CASIO\Photo Loader\Plauto.exe
        C:\Program Files\Wanadoo\EspaceWanadoo.exe
        C:\Program Files\Wanadoo\ComComp.exe
        C:\Program Files\Wanadoo\Watch.exe
        C:\WINDOWS\System32\winsystems.exe
        C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
        C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe
        C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
        C:\Documents and Settings\Karolina\Pulpit\HijackThis.exe

        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
        szukaj.wp.pl
        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
        www.tlen.pl
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
        O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
        C:\WINDOWS\System32\msdxm.ocx
        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32
        \NvCpl.dll,NvStartup
        O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
        O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32
        \NvMcTray.dll,NvTaskbarInit
        O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
        O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program
        Files\Alcatel\SpeedTouch USB\Dragdiag.exe" /icon
        O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
        O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
        O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\NeroCheck.exe
        O4 - HKLM\..\Run: [BearShare] "C:\Program Files\BearShare\BearShare.exe" /pause
        O4 - HKLM\..\Run: [ODK_Mon] C:\Program Files\Odkurzacz 9.0 Pro\odk_mon.exe
        O4 - HKLM\..\Run: [Odkurzacz-MCD] C:\Program Files\Odkurzacz 10.1
        Pro\odk_mcd.exe
        O4 - HKLM\..\Run: [Dimension4] C:\Program Files\D4\D4.exe
        O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06
        \bin\jusched.exe
        O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0
        \ewido.exe" /minimized
        O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition
        Classic\avgnt.exe" /min
        O4 - HKLM\..\RunServices: [msconfig38] mssvcc.exe
        O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
        O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray
        O4 - HKCU\..\Run: [Run Service Vxdrun] vxddirectx32.exe
        O4 - HKCU\..\Run: [WhenUSave] "C:\Program Files\Save\Save.exe"
        O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program
        Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
        O4 - Global Startup: Photo Loader supervisory.lnk = C:\Program
        Files\CASIO\Photo Loader\Plauto.exe
        O8 - Extra context menu item: E&ksport do programu Microsoft Excel -
        res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
        C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
        O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-
        00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
        O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -
        C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
        O15 - Trusted Zone: mks.com.pl
        O16 - DPF: {5A09E43F-A0A7-4ABF-AF80-11367CF1DC8F} (MainControl Class) -
        mks.com.pl/skaner/SkanerOnline.cab
        O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
        update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1150972062537
        O17 - HKLM\System\CCS\Services\Tcpip\..\{601C0BC4-9FA9-457F-AFE8-54CE673508F4}:
        NameServer = 194.204.152.34 217.98.63.164
        O20 - Winlogon Notify: Nls - C:\WINDOWS\system32\lvro0993e.dll
        O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) -
        Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
        O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA
        GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
        O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. -
        C:\Program Files\ewido anti-spyware 4.0\guard.exe
        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation -
        C:\WINDOWS\System32\nvsvc32.exe
        O23 - Service: Win32 Kernel Update (Win32Kernel) - Unknown owner -
        C:\WINDOWS\win32host.exe (file missing)

        • Gość: Kolobos Re: prosze o sprawdzenia loga IP: *.warszawa.sdi.tpnet.pl 14.07.06, 22:32
          Czy ja pisze do Ciebie po chinsku? Dlaczego nie zrobiles/as tego co napisalem?!
          Dalej masz look2me, dalej zostala usluga do kasacji, aplikacja od neostrady do
          wywalenia.

          Zakoncz proces i usun plik:
          C:\WINDOWS\System32\winsystems.exe

          W hjt:
          O4 - HKLM\..\RunServices: [msconfig38] mssvcc.exe <- plik usun z dysku.
          O4 - HKCU\..\Run: [Run Service Vxdrun] vxddirectx32.exe <- i ten
          O4 - HKCU\..\Run: [WhenUSave] "C:\Program Files\Save\Save.exe" <- i katalog
          save.
          O20 - Winlogon Notify: Nls - C:\WINDOWS\system32\lvro0993e.dll <- usun look2me
          tym co masz podane tam gdzie pisalem!
          O23 - Service: Win32 Kernel Update (Win32Kernel) - Unknown owner -
          C:\WINDOWS\win32host.exe (file missing) <- usluga do kasacji tak jak pisalem.
          • Gość: kaka Re: prosze o sprawdzenia loga IP: *.neoplus.adsl.tpnet.pl 15.07.06, 18:07

            tego nie znalazlem: O4 - HKCU\..\Run: [WhenUSave] "C:\Program
            Files\Save\Save.exe"





            Logfile of HijackThis v1.99.1
            Scan saved at 18:04:32, on 2006-07-15
            Platform: Windows XP (WinNT 5.01.2600)
            MSIE: Internet Explorer v6.00 (6.00.2600.0000)

            Running processes:
            C:\WINDOWS\System32\smss.exe
            C:\WINDOWS\system32\winlogon.exe
            C:\WINDOWS\system32\services.exe
            C:\WINDOWS\system32\lsass.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\System32\svchost.exe
            C:\WINDOWS\Explorer.EXE
            C:\WINDOWS\system32\spoolsv.exe
            C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
            C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
            C:\Program Files\ewido anti-spyware 4.0\guard.exe
            C:\WINDOWS\System32\nvsvc32.exe
            C:\WINDOWS\System32\RUNDLL32.EXE
            C:\Program Files\Winamp\winampa.exe
            C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe
            C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
            C:\Program Files\D4\D4.exe
            C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
            C:\Program Files\ewido anti-spyware 4.0\ewido.exe
            C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe
            C:\Program Files\Gadu-Gadu\gg.exe
            C:\Program Files\CASIO\Photo Loader\Plauto.exe
            C:\Program Files\Wanadoo\EspaceWanadoo.exe
            C:\Program Files\Wanadoo\ComComp.exe
            C:\Program Files\Wanadoo\Watch.exe
            C:\Program Files\Internet Explorer\iexplore.exe
            \?\C:\WINDOWS\system32\WBEM\WMIADAP.EXE
            C:\Documents and Settings\Karolina\Pulpit\HijackThis.exe

            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
            szukaj.wp.pl
            R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
            www.tlen.pl
            R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
            O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
            C:\WINDOWS\System32\msdxm.ocx
            O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32
            \NvCpl.dll,NvStartup
            O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
            O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32
            \NvMcTray.dll,NvTaskbarInit
            O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
            O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program
            Files\Alcatel\SpeedTouch USB\Dragdiag.exe" /icon
            O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
            O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
            O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\NeroCheck.exe
            O4 - HKLM\..\Run: [BearShare] "C:\Program Files\BearShare\BearShare.exe" /pause
            O4 - HKLM\..\Run: [ODK_Mon] C:\Program Files\Odkurzacz 9.0 Pro\odk_mon.exe
            O4 - HKLM\..\Run: [Odkurzacz-MCD] C:\Program Files\Odkurzacz 10.1
            Pro\odk_mcd.exe
            O4 - HKLM\..\Run: [Dimension4] C:\Program Files\D4\D4.exe
            O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06
            \bin\jusched.exe
            O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0
            \ewido.exe" /minimized
            O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition
            Classic\avgnt.exe" /min
            O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
            O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray
            O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program
            Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
            O4 - Global Startup: Photo Loader supervisory.lnk = C:\Program
            Files\CASIO\Photo Loader\Plauto.exe
            O8 - Extra context menu item: E&ksport do programu Microsoft Excel -
            res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
            O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
            C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
            O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-
            00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
            O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -
            C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
            O15 - Trusted Zone: mks.com.pl
            O16 - DPF: {5A09E43F-A0A7-4ABF-AF80-11367CF1DC8F} (MainControl Class) -
            mks.com.pl/skaner/SkanerOnline.cab
            O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
            update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1150972062537
            O17 - HKLM\System\CCS\Services\Tcpip\..\{601C0BC4-9FA9-457F-AFE8-54CE673508F4}:
            NameServer = 194.204.152.34 217.98.63.164
            O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) -
            Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
            O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA
            GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
            O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. -
            C:\Program Files\ewido anti-spyware 4.0\guard.exe
            O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation -
            C:\WINDOWS\System32\nvsvc32.exe

            • Gość: Kolobos Re: prosze o sprawdzenia loga IP: *.warszawa.sdi.tpnet.pl 15.07.06, 18:50
              Log juz wyglada ok.

Nie masz jeszcze konta? Zarejestruj się


Nakarm Pajacyka