
- Kod: Zaznacz wszystko
Logfile of HijackThis v1.99.1
Scan saved at 16:18:02, on 2006-08-19
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AntiVirenKit\AVKWCtl.exe
C:\WINDOWS\Explorer.EXE
D:\Program Files\Winamp\winampa.exe
C:\Program Files\Skype\Phone\Skype.exe
I:\trayit\trayit\trayit!.exe
C:\WINDOWS\system32\rundll32.exe
D:\Program Files\Gadu-Gadu\gg.exe
C:\WINDOWS\regedit.exe
C:\Documents and Settings\Tortek\Desktop\HijackThis.exe
R3 - URLSearchHook: (no name) - {990C978F-0F3B-0597-40E6-57C0DB2403C5} - C:\WINDOWS\system32\wcwmcoby.dll
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - d:\Program Files\Adobe\Acrobat 5.0 CE\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll
O2 - BHO: (no name) - {990C978F-0F3B-0597-40E6-57C0DB2403C5} - C:\WINDOWS\system32\wcwmcoby.dll
O2 - BHO: ToolBar888 - {CBCC61FA-0221-4ccc-B409-CEE865CACA3A} - C:\Program Files\ToolBar888\MyToolBar.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - D:\PROGRA~1\FLASHGET\fgiebar.dll
O3 - Toolbar: YourSiteBar - {86227D9C-0EFE-4f8a-AA55-30386A3F5686} - C:\Program Files\YourSiteBar\ysb.dll
O3 - Toolbar: ToolBar888 - {CBCC61FA-0221-4ccc-B409-CEE865CACA3A} - C:\Program Files\ToolBar888\MyToolBar.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [WinampAgent] D:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [Patch] C:\WINDOWS\Patch.exe /nomsg
O4 - HKLM\..\Run: [.nvsvc] C:\WINDOWS\system\smss.exe /w
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_07\bin\jusched.exe
O4 - HKLM\..\Run: [SurfAccuracy] C:\Program Files\SurfAccuracy\SAcc.exe
O4 - HKLM\..\Run: [ReJf5vH] C:\WINDOWS\rqjaw.exe
O4 - HKLM\..\Run: [08063f95.exe] C:\WINDOWS\system32\08063f95.exe
O4 - HKLM\..\RunServices: [NetBus Server Pro] C:\Documents and Settings\Tortek\Desktop\Nbserv.exe
O4 - HKLM\..\RunServices: [WinLoader] cbbfmlohvty.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [AVKBar] "C:\Program Files\AntiVirenKit\AVKBar.exe"
O4 - HKCU\..\Run: [08063f95.exe] C:\Documents and Settings\Tortek\Local Settings\Application Data\08063f95.exe
O4 - HKCU\..\Run: [Oasd] "C:\DOCUME~1\Tortek\MYDOCU~1\SMANTE~1\alg.exe" -vt yazr
O4 - HKCU\..\Run: [Gotfptt] C:\Program Files\Common Files\??pPatch\r?ndll.exe
O4 - HKCU\..\Run: [AQQ] D:\PROGRA~1\Wapster\AQQ\AQQ.exe
O4 - Startup: TrayIt!.lnk = I:\trayit\trayit\trayit!.exe
O4 - Global Startup: hamachi.lnk = D:\Program Files\Hamachi\hamachi.exe
O8 - Extra context menu item: Download All by FlashGet - D:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download using FlashGet - D:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://D:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll
O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - D:\Program Files\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - D:\Program Files\FlashGet\flashget.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://mks.com.pl
O15 - Trusted Zone: http://*.cvr.pl
O15 - Trusted Zone: http://www.getionary.pl
O15 - Trusted Zone: http://www.zoom.idg.pl
O15 - Trusted Zone: http://www.interia.pl
O15 - Trusted Zone: http://www.kalonline.com
O15 - Trusted Zone: http://*.nowe.pl
O15 - Trusted Zone: prefixwww.trojany.pl
O15 - Trusted Zone: www.trojany.pl
O15 - Trusted Zone: http://www.uploading.com
O15 - Trusted Zone: http://www.wojownicy.net
O16 - DPF: {5A09E43F-A0A7-4ABF-AF80-11367CF1DC8F} (MainControl Class) - http://mks.com.pl/skaner/SkanerOnline.cab
O16 - DPF: {74CD40EA-EF77-4BAD-808A-B5982DA73F20} (YazzleActiveX Control) - http://yax-download.yazzle.net/YazzleActiveX.cab?refid=1123
O17 - HKLM\System\CCS\Services\Tcpip\..\{CB7C8056-812C-425C-9E5C-00DAA1D33085}: NameServer = 217.30.129.149,217.30.137.200
O20 - AppInit_DLLs: pushow94.dll
O20 - Winlogon Notify: winiqr32 - C:\WINDOWS\SYSTEM32\winiqr32.dll
O23 - Service: AVK Service (AVKService) - Unknown owner - C:\Program Files\AntiVirenKit\AVKService.exe
O23 - Service: AVK Monitor (AVKWCtl) - Unknown owner - C:\Program Files\AntiVirenKit\AVKWCtl.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: DirectX Service (DirectJaht) - Unknown owner - c:\windows\system32\directx.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Power Manager (PowerManager) - Unknown owner - C:\WINDOWS\svchost.exe (file missing)
O23 - Service: Windows Log - Unknown owner - C:\WINDOWS\system32\nvsvcd.exe