
- Kod: Zaznacz wszystko
Logfile of HijackThis v1.99.1
Scan saved at 11:29:24, on 2006-10-22
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\rundll32.exe
E:\Half-Life 2\steam\Steam.exe
C:\Documents and Settings\Adrian\Pulpit\hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.bearshare.com/pl
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
R3 - URLSearchHook: (no name) - {9148ACBC-412E-1DD5-2215-697490D678B4} - C:\WINDOWS\System32\deq.dll
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: (no name) - {084576EB-6299-CAC5-5A88-0ADC2A36DF72} - C:\WINDOWS\System32\fihkejl.dll
O2 - BHO: (no name) - {9148ACBC-412E-1DD5-2215-697490D678B4} - C:\WINDOWS\System32\deq.dll
O2 - BHO: PrintViewBHO Class - {D4E0C464-30CE-4075-9A10-71FD106C2847} - C:\PROGRA~1\PRINTV~1\PRINTH~1.DLL
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKCU\..\Run: [AtiTrayTools] "C:\Program Files\Ray Adams\ATI Tray Tools\atitray.exe"
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://E:\Programy\office\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\Programy\office\OFFICE11\REFIEBAR.DLL
O17 - HKLM\System\CCS\Services\Tcpip\..\{3FA3CBE0-92A7-42A1-A81D-48A126D31D6F}: NameServer = 10.0.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{3FA3CBE0-92A7-42A1-A81D-48A126D31D6F}: NameServer = 10.0.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{3FA3CBE0-92A7-42A1-A81D-48A126D31D6F}: NameServer = 10.0.1.1
O20 - Winlogon Notify: winkku32 - C:\WINDOWS\SYSTEM32\winkku32.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
sadze ze nalezy usunac przede wszystkim winkku32.dll ale jak to zrobic??