
- Kod: Zaznacz wszystko
- Logfile of HijackThis v1.99.1
 Scan saved at 12:03:01, on 2006-06-11
 Platform: Windows XP SP1 (WinNT 5.01.2600)
 MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
 Running processes:
 C:\WINDOWS\System32\smss.exe
 C:\WINDOWS\system32\winlogon.exe
 C:\WINDOWS\system32\services.exe
 C:\WINDOWS\system32\lsass.exe
 C:\WINDOWS\System32\nslsvice.exe
 C:\WINDOWS\system32\svchost.exe
 C:\WINDOWS\System32\svchost.exe
 C:\WINDOWS\system32\spoolsv.exe
 C:\WINDOWS\Explorer.EXE
 C:\WINDOWS\System32\igfxtray.exe
 C:\WINDOWS\System32\hkcmd.exe
 C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
 C:\PROGRA~1\MAGICW~1\MW1HEL~1.EXE
 C:\Program Files\Common Files\Real\Update_OB\realsched.exe
 C:\Program Files\ISTsvc\istsvc.exe
 C:\Program Files\SurfAccuracy\SAcc.exe
 C:\Program Files\Internet Optimizer\optimize.exe
 C:\WINDOWS\wusyknc.exe
 C:\defender23a.exe
 C:\Program Files\outlook\outlook.exe
 C:\Program Files\ipwins\ipwins.exe
 C:\Program Files\AntiVirenKit 2006\AVKTray\AVKTray.exe
 C:\Program Files\Gadu-Gadu\gg.exe
 C:\Program Files\WeatherCast\Weather.exe
 C:\WINDOWS\WNSXS~1\attrib.exe
 C:\WINDOWS\system32\?ystem32\w?auclt.exe
 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\msconfig.exe
 C:\Program Files\Microsoft Office\Office\1045\OLFSNT40.EXE
 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\taskmgr.exe
 C:\Program Files\GreatMemo\GreatMemo.exe
 C:\Program Files\Weather\Weather.exe
 C:\Program Files\TClock\TClock.exe
 C:\Program Files\Common Files\G DATA\AVKProxy\AVKProxy.exe
 C:\Program Files\AntiVirenKit 2006\AVKWCtl.exe
 C:\Program Files\lotus\notes\ntmulti.exe
 C:\Program Files\Network Monitor\netmon.exe
 C:\Program Files\Windows\wWinUpdate.exe
 C:\PROGRA~1\Ericsson\COMMUN~1\MOBILE~1\DbgOut.exe
 C:\Program Files\Internet Explorer\iexplore.exe
 C:\Documents and Settings\patryk\Desktop\antywir\HijackThis.exe
 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://searchbar.findthewebsiteyouneed.com
 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://searchbar.findthewebsiteyouneed.com
 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com
 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.findthewebsiteyouneed.com
 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com
 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://searchbar.findthewebsiteyouneed.com
 R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
 O2 - BHO: Internet Explorer Web Content Catcher - {FFF4E223-7019-4ce7-BE03-D7D3C8CCE884} - C:\Program Files\DNS\Catcher.dll
 O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
 O3 - Toolbar: ToolBar888 - {0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - C:\Program Files\ToolBar888\MyToolBar.dll
 O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
 O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
 O4 - HKLM\..\Run: [BearShare] "C:\Program Files\BearShare\BearShare.exe" /pause
 O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
 O4 - HKLM\..\Run: [CMESys] "C:\Program Files\Common Files\CMEII\CMESys.exe"
 O4 - HKLM\..\Run: [MW1HelperStartUp] C:\PROGRA~1\MAGICW~1\MW1HEL~1.EXE /partner MW1
 O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
 O4 - HKLM\..\Run: [shell32] C:\WINDOWS\System32\wuauclt10.exe
 O4 - HKLM\..\Run: [Client Server Runtime Process] C:\WINDOWS\System32\smmss.exe
 O4 - HKLM\..\Run: [Windows update] C:\WINDOWS\System32\wudupdate.exe
 O4 - HKLM\..\Run: [I downloaded pirated Software from P2P and now I post my Hijack log whining] C:\WINDOWS\System32\FIFA Football 2006 crack.exe
 O4 - HKLM\..\Run: [IST Service] C:\Program Files\ISTsvc\istsvc.exe
 O4 - HKLM\..\Run: [CcFRQN2V] C:\WINDOWS\hkyreyjy.exe
 O4 - HKLM\..\Run: [SurfAccuracy] C:\Program Files\SurfAccuracy\SAcc.exe
 O4 - HKLM\..\Run: [Internet Optimizer] "C:\Program Files\Internet Optimizer\optimize.exe"
 O4 - HKLM\..\Run: [ReJf5vH] C:\WINDOWS\wusyknc.exe
 O4 - HKLM\..\Run: [defender] C:\\defender23a.exe
 O4 - HKLM\..\Run: [keyboard] C:\\keyboard25.exe
 O4 - HKLM\..\Run: [newname] C:\\newname25.exe
 O4 - HKLM\..\Run: [outlook] C:\Program Files\outlook\outlook.exe /auto
 O4 - HKLM\..\Run: [winlog] winlog.exe
 O4 - HKLM\..\Run: [Media Access] C:\Program Files\Media Access\MediaAccK.exe
 O4 - HKLM\..\Run: [System service79] C:\WINDOWS\etb\pokapoka79.exe
 O4 - HKLM\..\Run: [IpWins] C:\Program Files\ipwins\ipwins.exe
 O4 - HKLM\..\Run: [AVKTray] "C:\Program Files\AntiVirenKit 2006\AVKTray\AVKTray.exe"
 O4 - HKLM\..\Run: [p2p networking] p2pnetworking.exe
 O4 - HKLM\..\RunServices: [winlog] winlog.exe
 O4 - HKLM\..\RunServices: [p2p networking] p2pnetworking.exe
 O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray
 O4 - HKCU\..\Run: [WeatherCast] "C:\Program Files\WeatherCast\Weather.exe" /q
 O4 - HKCU\..\Run: [WhenUSave] "C:\Program Files\Save\Save.exe"
 O4 - HKCU\..\Run: [Error Safe] "C:\Program Files\Error Safe Free\ERS.exe" /scan
 O4 - HKCU\..\Run: [zrik] C:\PROGRA~1\COMMON~1\zrik\zrikm.exe
 O4 - HKCU\..\Run: [Esrs] "C:\WINDOWS\WNSXS~1\attrib.exe" -vt yazb
 O4 - HKCU\..\Run: [Fpd] C:\WINDOWS\system32\?ystem32\w?auclt.exe
 O4 - HKCU\..\Run: [TClock.exe] C:\Program Files\TClock\tclock_install.exe
 O4 - HKCU\..\Run: [DNS] C:\Program Files\Common Files\mc-110-12-0000137.exe
 O4 - Startup: GreatMemo.lnk = C:\Program Files\GreatMemo\GreatMemo.exe
 O4 - Startup: Weather.lnk = C:\Program Files\Weather\Weather.exe
 O4 - Global Startup: msconfig.exe
 O4 - Global Startup: Symantec Fax Starter Edition Port.lnk = C:\Program Files\Microsoft Office\Office\1045\OLFSNT40.EXE
 O4 - Global Startup: taskmgr.exe
 O8 - Extra context menu item: &MyToolBar Search - res://C:\Program Files\ToolBar888\MyToolBar.dll/MENUSEARCH.HTM
 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
 O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
 O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
 O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
 O15 - Trusted Zone: http://ny.contentmatch.net (HKLM)
 O16 - DPF: {42F2C9BA-614F-47C0-B3E3-ECFD34EED658} - http://promo.dollarrevenue.com/activex/promocache/3631382D2D2D.exe
 O16 - DPF: {A1426AC5-8CE5-4A00-B71E-011D35709AC6} (Progetto1.int_ver34) - http://advnt01.com/dialer/int_ver34.CAB
 O20 - AppInit_DLLs: C:\WINDOWS\System32\spool32.dll
 O20 - Winlogon Notify: SMDEn - C:\WINDOWS\system32\m682lglo16qc.dll (file missing)
 O23 - Service: AVKProxy - G DATA Software AG - C:\Program Files\Common Files\G DATA\AVKProxy\AVKProxy.exe
 O23 - Service: Straznik AVK (AVKWCtl) - Unknown owner - C:\Program Files\AntiVirenKit 2006\AVKWCtl.exe
 O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\R0xTIEdvcnpvdw\command.exe (file missing)
 O23 - Service: Lotus Notes — pojedyncze logowanie (Lotus Notes Single Logon) - IBM Corp - C:\WINDOWS\System32\nslsvice.exe
 O23 - Service: Multi-user Cleanup Service - IBM Corp - C:\Program Files\lotus\notes\ntmulti.exe
 O23 - Service: Network Monitor - Unknown owner - C:\Program Files\Network Monitor\netmon.exe




 
	
 
	 





 
	


