
tutaj podaje logi z HijackThis:
Logfile of HijackThis v1.99.1
Scan saved at 14:43:34, on 2007-06-16
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\system32\spoolsv.exe
E:\WINDOWS\Explorer.EXE
E:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
E:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
E:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
E:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
E:\Program Files\Video ActiveX Access\imsmain.exe
E:\Program Files\Video ActiveX Access\imsmn.exe
E:\Program Files\Video ActiveX Access\iesmn.exe
E:\Program Files\Video ActiveX Access\iesmin.exe
E:\WINDOWS\system32\emnon3re.exe
E:\WINDOWS\system32\RunDll32.exe
E:\Program Files\WinFast\WFTVFM\WFWIZ.exe
E:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
E:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
E:\Program Files\Winamp\winampa.exe
E:\Program Files\SurfAccuracy\SAcc.exe
E:\PROGRA~1\NEOSTR~1\CnxMon.exe
E:\PROGRA~1\NEOSTR~1\TaskbarIcon.exe
E:\Program Files\Common Files\Real\Update_OB\realsched.exe
E:\WINDOWS\agsnjtim.exe
E:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
E:\WINDOWS\system32\ctfmon.exe
E:\WINDOWS\System32\?hkntfs.exe
E:\Documents and Settings\beata\Pulpit\Skype.exe
E:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Wapster\Aqq\AQQ.exe
E:\Program Files\uTorrent\utorrent.exe
E:\Program Files\Soulseek\slsk.exe
E:\Program Files\Winamp\winamp.exe
E:\PROGRA~1\NEOSTR~1\NeostradaTP.exe
E:\PROGRA~1\NEOSTR~1\ComComp.exe
E:\PROGRA~1\NEOSTR~1\Watch.exe
E:\Program Files\Internet Explorer\iexplore.exe
E:\Program Files\Internet Explorer\iexplore.exe
E:\Program Files\Internet Explorer\iexplore.exe
E:\Program Files\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://szukaj.wp.pl
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.neostrada.pl
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://securityresponse.symantec.com/avcenter/fix_homepage
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Neostrada TP
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
R3 - Default URLSearchHook is missing
O2 - BHO: BHObj Class - {00000010-6F7D-442C-93E3-4A4827C2E4C8} - E:\WINDOWS\nem220.dll (file missing)
O2 - BHO: (no name) - {03745330-B485-9A01-A569-9D1CF09BB0C3} - E:\WINDOWS\system32\bais.dll (file missing)
O2 - BHO: (no name) - {04710730-B5D7-CF06-A569-9D1CF09BB6C6} - E:\WINDOWS\system32\eud.dll (file missing)
O2 - BHO: (no name) - {047A0335-B482-9651-A569-9D1CF09AE6CB} - E:\WINDOWS\system32\jgg.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {13B631C4-D077-A5A9-0693-F24A35DEF4C9} - E:\WINDOWS\system32\ldqak.dll (file missing)
O2 - BHO: (no name) - {202a961f-23ae-42b1-9505-ffe3c818d717} - E:\Program Files\iCodecPack\isaddon.dll (file missing)
O2 - BHO: (no name) - {34B333A9-8418-FD99-3D20-F96A67DDDD9F} - E:\WINDOWS\System32\pgjxb.dll (file missing)
O2 - BHO: (no name) - {374AC6ED-2E5F-0B85-2BB1-0095C8F5899B} - E:\WINDOWS\system32\mezvuu.dll (file missing)
O2 - BHO: (no name) - {3EA5A64F-41A3-6125-88DB-66637768D2C8} - E:\WINDOWS\system32\wsxaxpf.dll (file missing)
O2 - BHO: (no name) - {4D35F332-45D4-3059-A7A9-6143B564F79B} - E:\WINDOWS\system32\usvld.dll (file missing)
O2 - BHO: (no name) - {52205C39-B2D0-9A0B-A569-9D1CF09AE0C2} - E:\WINDOWS\system32\ltxvqhon.dll (file missing)
O2 - BHO: RXResultTracker Class - {59879FA4-4790-461c-A1CC-4EC4DE4CA483} - E:\Program Files\RXToolBar\sfcont.dll (file missing)
O2 - BHO: (no name) - {5DE6392C-CAA2-AD75-C90D-F8342038F9FE} - E:\WINDOWS\System32\aqfwhg.dll (file missing)
O2 - BHO: (no name) - {5F270739-B2D2-CF03-A569-9D1CF09BB3C6} - E:\WINDOWS\system32\sntiusyh.dll (file missing)
O2 - BHO: (no name) - {605B39DB-DB6B-A4E9-1BB2-A0BFDA898296} - E:\WINDOWS\system32\vdnbciak.dll (file missing)
O2 - BHO: (no name) - {626BDB5F-288F-4957-EE7F-1F2AA097C1FA} - E:\WINDOWS\system32\wga.dll (file missing)
O2 - BHO: (no name) - {63F7A74D-1BFB-3228-88DB-666377688398} - E:\WINDOWS\system32\obsu.dll (file missing)
O2 - BHO: (no name) - {646ED04E-2998-4A12-A44B-4C3FA176CAF5} - E:\WINDOWS\system32\fdzdih.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - E:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {78F49AE8-3769-58ED-0441-0C9B3A2A8DAD} - E:\WINDOWS\System32\bwqw.dll (file missing)
O2 - BHO: (no name) - {7A3DDE1C-6AF9-4A2A-8F9B-42D1EC3A9D9B} - E:\WINDOWS\system32\iydguwjl.dll (file missing)
O2 - BHO: (no name) - {7B6CDE1D-6CAE-1979-8F9B-42D1EC3A90C8} - E:\WINDOWS\system32\upyzest.dll (file missing)
O2 - BHO: (no name) - {7F3CDE48-3AAE-4A7E-8F9B-42D1EC3A9C9C} - E:\WINDOWS\system32\jiwyz.dll (file missing)
O2 - BHO: BHObj Class - {8F4E5661-F99E-4B3E-8D85-0EA71C0748E4} - E:\WINDOWS\wsem303.dll (file missing)
O2 - BHO: (no name) - {940D1E4A-A3A9-DA20-D90E-8BADDAE121C5} - E:\WINDOWS\system32\edrksziv.dll
O2 - BHO: (no name) - {962E3CE9-9630-A9ED-5774-AFC1ECD430F6} - E:\WINDOWS\System32\ilfbtr.dll (file missing)
O2 - BHO: (no name) - {9849E68C-5A6B-75BA-1DF2-74E29F7076C6} - E:\WINDOWS\system32\ktffpx.dll (file missing)
O2 - BHO: (no name) - {A1202E4A-8E9A-EF14-F43E-BB80EAD10CF5} - E:\WINDOWS\system32\edrksziv.dll
O2 - BHO: BAHelper Class - {A3FDD654-A057-4971-9844-4ED8E67DBBB8} - E:\Program Files\SideFind\sfbho.dll (file missing)
O2 - BHO: (no name) - {A6030CE1-BB07-9CD4-7A40-97ECADE41DC6} - E:\WINDOWS\System32\ilfbtr.dll (file missing)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - e:\program files\google\googletoolbar3.dll
O2 - BHO: (no name) - {B04A2C4B-D6C2-E04F-F39E-E105D2424EFD} - E:\WINDOWS\system32\esz.dll (file missing)
O2 - BHO: (no name) - {B2697A6C-CB8D-E75E-F1DC-B6DEBDB359CB} - E:\WINDOWS\system32\vrne.dll (file missing)
O2 - BHO: (no name) - {B6055036-BED0-9352-F0BC-902C836D0CC9} - E:\WINDOWS\system32\tlfdb.dll (file missing)
O2 - BHO: (no name) - {B8C5186E-EC37-4889-9C2E-F73649FFB7BB} - E:\Program Files\Video ActiveX Access\iesplg.dll
O2 - BHO: (no name) - {B9DC92AA-7D19-5D93-6BE5-5580093855C7} - E:\WINDOWS\system32\rusewsx.dll (file missing)
O2 - BHO: (no name) - {BCDEC6A8-774F-5DC2-6BE5-558009390197} - E:\WINDOWS\system32\fhtnce.dll (file missing)
O2 - BHO: (no name) - {C1726BB9-9E6B-FEE9-5774-AFC1ECD430F6} - E:\WINDOWS\System32\ilfbtr.dll (file missing)
O2 - BHO: (no name) - {C223A32E-489B-6C4C-BFC8-37B6AA942DC0} - E:\WINDOWS\system32\rgrum.dll (file missing)
O2 - BHO: (no name) - {C4C721FB-C54B-EEC8-3C80-E37B468F7ECD} - E:\WINDOWS\System32\mnljw.dll (file missing)
O2 - BHO: (no name) - {C56718C7-B143-DD97-7816-D936F1353DA5} - E:\WINDOWS\system32\aeqlgj.dll (file missing)
O2 - BHO: (no name) - {C919B48C-5D63-75BE-1DF2-74E29F7076C6} - E:\WINDOWS\system32\fvede.dll (file missing)
O2 - BHO: (no name) - {CA349C81-7538-0EE1-1872-5C10E02070CE} - E:\WINDOWS\system32\swpe.dll (file missing)
O2 - BHO: (no name) - {DA9804ED-E90B-9F88-7804-CB89190B31C8} - E:\WINDOWS\system32\jrd.dll (file missing)
O2 - BHO: (no name) - {E733FA1F-0BC2-3E19-F67E-6FBDA9E116AA} - E:\WINDOWS\system32\yxrw.dll (file missing)
O2 - BHO: (no name) - {E9DBC2AD-2F19-5FC3-6BE5-5580093F509C} - E:\WINDOWS\system32\yhq.dll (file missing)
O2 - BHO: (no name) - {F1EA11FB-E878-DBFC-11B0-D35676BF53FD} - E:\WINDOWS\System32\mnljw.dll (file missing)
O2 - BHO: (no name) - {FE7D3D5B-81EE-FA68-CB4F-FFBAAA3F1D93} - E:\WINDOWS\system32\dohe.dll (file missing)
O3 - Toolbar: UCmore XP - The Search Accelerator - {44BE0690-5429-47f0-85BB-3FFD8020233E} - E:\Program Files\TheSearchAccelerator\UCMTSAIE.dll
O3 - Toolbar: ISTbar - {5F1ABCDB-A875-46c1-8345-B72A4567E486} - E:\PROGRA~1\ISTbar\istbar.dll (file missing)
O3 - Toolbar: Protection Bar - {DF4E7A0C-E233-4906-B4C1-A404356541FF} - E:\Program Files\Video ActiveX Access\iesbpl.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - e:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [Windows Logon Application] E:\WINDOWS\System32\winIogon.exe
O4 - HKLM\..\Run: [BullsEye Network] E:\Program Files\BullsEye Network\bin\bargains.exe
O4 - HKLM\..\Run: [emnon3re] E:\WINDOWS\system32\emnon3re.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [WinFast Schedule] E:\Program Files\WinFast\WFTVFM\WFWIZ.exe
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "E:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [SunJavaUpdateSched] "E:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] E:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [SurfAccuracy] E:\Program Files\SurfAccuracy\SAcc.exe
O4 - HKLM\..\Run: [WooCnxMon] E:\PROGRA~1\NEOSTR~1\CnxMon.exe
O4 - HKLM\..\Run: [WOOWATCH] E:\PROGRA~1\NEOSTR~1\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] E:\PROGRA~1\NEOSTR~1\TaskbarIcon.exe
O4 - HKLM\..\Run: [NeroCheck] E:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [TkBellExe] "E:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [ReJf5vH] E:\WINDOWS\agsnjtim.exe
O4 - HKLM\..\Run: [AVG7_CC] E:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Kqwy] E:\WINDOWS\System32\?hkntfs.exe
O4 - HKCU\..\Run: [Skype] "E:\Documents and Settings\beata\Pulpit\Skype.exe" /nosplash /minimized
O4 - Global Startup: Microsoft Office.lnk = E:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = E:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://E:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: SideFind - {10E42047-DEB9-4535-A118-B3F6EC39B807} - E:\Program Files\SideFind\sidefind.dll (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} (SupportSoft SmartIssue) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} (SupportSoft Script Runner Class) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
O16 - DPF: {5DA9D8E0-5A57-11CF-9E36-00C0930198C0} (Pegasus ImagN' 32-bit (Windowed) ActiveX Control v4.00) - http://83.16.99.210/LNetCam.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,1,0,4749/mcfscan.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{865A186C-7E90-4538-ADD7-CEEC562C26EF}: NameServer = 194.204.159.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{A3158F5F-91AF-4574-98AD-71D3F6F22E0C}: NameServer = 194.204.152.34 217.98.63.164
O18 - Filter: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - E:\Program Files\RXToolBar\sfcont.dll
O20 - AppInit_DLLs: tracert.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - E:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - E:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - E:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: Google Updater Service (gusvc) - Google - E:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Hardware Clock Driver (hwclock) - Unknown owner - E:\WINDOWS\System32\hwclock.exe (file missing)
O23 - Service: Symantec Core LC - Symantec Corporation - E:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: ZESOFT - Unknown owner - E:\WINDOWS\zeta.exe (file missing)