
Proszę o pomoc jakąś bo nie wiem co jest nie tak

luck0114 napisał(a):Sam FireFox zużywa ponad 70 000 K
Logfile of HijackThis v1.99.1
Scan saved at 21:39:16, on 2007-06-10
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
D:\Program Files\Alwil Software\Avast4\ashServ.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\system32\nvsvc32.exe
D:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
D:\Program Files\Alwil Software\Avast4\ashWebSv.exe
D:\WINDOWS\Explorer.EXE
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Winamp\winampa.exe
D:\WINDOWS\system32\RunDll32.exe
D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\DAEMON Tools\daemon.exe
D:\WINDOWS\system32\ctfmon.exe
D:\PROGRA~1\Mozilla Firefox\firefox.exe
C:\Program Files\Gadu-Gadu\gg.exe
E:\PROGRAMY\Programy - logi systemu\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE D:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [WinampAgent] c:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [avast!] D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [DAEMON Tools] "c:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray
O4 - Startup: Adobe Gamma.lnk = D:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = D:\Program Files\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O20 - Winlogon Notify: WgaLogon - D:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Adobe LM Service - Adobe Systems - D:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - D:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - D:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - D:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - D:\WINDOWS\system32\nvsvc32.exe
"ťukasz" - 2007-06-10 21:40:36 Dodatek Service Pack 2 NTFS
ComboFix 07-06-3B - Running from: "E:\PROGRAMY\Programy - logi systemu\"
((((((((((((((((((((((((( Files Created from 2007-05-10 to 2007-06-10 )))))))))))))))))))))))))))))))
2007-06-10 21:02 <DIR> d-------- D:\DOCUME~1\UKASZ~1\DANEAP~1\Lavasoft
2007-06-10 20:51 <DIR> d-------- D:\DOCUME~1\UKASZ~1\Gadu-Gadu
2007-06-10 20:28 <DIR> d-------- D:\Program Files\Common Files\Adobe Systems Shared
2007-06-10 20:28 <DIR> d-------- D:\DOCUME~1\UKASZ~1\DANEAP~1\Microsoft Web Folders
2007-06-10 20:21 1,310,720 --a------ D:\DOCUME~1\UKASZ~1\ntuser.dat
2007-06-10 17:18 <DIR> d-------- D:\DOCUME~1\UKASZ~1\DANEAP~1\Gadu-Gadu
2007-06-10 14:57 <DIR> d-------- D:\WINDOWS\ShellNew
2007-06-09 22:34 <DIR> d-------- D:\WINDOWS\system32\LogFiles
2007-06-09 14:05 <DIR> d-------- D:\DOCUME~1\ALLUSE~1\DANEAP~1\Adobe Systems
2007-06-09 00:59 1,165 --a------ D:\WINDOWS\mozver.dat
2007-06-08 23:12 9,600 --a------ D:\WINDOWS\system32\drivers\hidusb.sys
2007-06-08 23:10 223,128 --a------ D:\WINDOWS\system32\drivers\dtscsi.sys
2007-06-08 23:08 96,256 --a------ D:\WINDOWS\system32\drivers\sptd9789.sys
2007-06-08 23:08 642,560 --a------ D:\WINDOWS\system32\drivers\sptd.sys
2007-06-08 20:52 <DIR> d-------- D:\Program Files\MarBit
2007-06-08 19:34 98,304 --a------ D:\WINDOWS\system32\CmdLineExt.dll
2007-06-08 19:33 <DIR> d--hs---- D:\RECYCLER
2007-06-08 19:32 <DIR> d--h----- D:\Program Files\InstallShield Installation Information
2007-06-08 19:22 3,072 --a------ D:\WINDOWS\system32\drivers\audstub.sys
2007-06-08 19:21 77,312 --a------ D:\WINDOWS\system32\usbui.dll
2007-06-08 19:21 58,624 --a------ D:\WINDOWS\system32\drivers\redbook.sys
2007-06-08 19:21 5,504 --a------ D:\WINDOWS\system32\drivers\intelide.sys
2007-06-08 19:21 20,992 --a------ D:\WINDOWS\system32\drivers\RTL8139.sys
2007-06-08 19:21 10,624 --a------ D:\WINDOWS\system32\drivers\gameenum.sys
2007-06-08 19:20 9,936 --a------ D:\WINDOWS\system\LZEXPAND.DLL
2007-06-08 19:20 9,168 --a------ D:\WINDOWS\system\VER.DLL
2007-06-08 19:20 85,532 --a------ D:\WINDOWS\system32\dgsetup.dll
2007-06-08 19:20 83,456 --a------ D:\WINDOWS\system\OLECLI.DLL
2007-06-08 19:20 8,704 --a------ D:\WINDOWS\system32\batt.dll
2007-06-08 19:20 8,192 -ra------ D:\WINDOWS\system32\kbdhept.dll
2007-06-08 19:20 70,144 --a------ D:\WINDOWS\NOTEPAD.EXE
2007-06-08 19:20 70,096 --a------ D:\WINDOWS\system\AVICAP.DLL
2007-06-08 19:20 7,168 --a------ D:\WINDOWS\system32\kbdcz.dll
2007-06-08 19:20 69,552 --a------ D:\WINDOWS\system\MMSYSTEM.DLL
2007-06-08 19:20 6,656 -ra------ D:\WINDOWS\system32\kbdhela3.dll
2007-06-08 19:20 6,656 --a------ D:\WINDOWS\system32\kbdycl.dll
2007-06-08 19:20 6,656 --a------ D:\WINDOWS\system32\kbdsl1.dll
2007-06-08 19:20 6,656 --a------ D:\WINDOWS\system32\kbdsl.dll
2007-06-08 19:20 6,656 --a------ D:\WINDOWS\system32\kbdhu.dll
2007-06-08 19:20 6,656 --a------ D:\WINDOWS\system32\kbdcz2.dll
2007-06-08 19:20 6,656 --a------ D:\WINDOWS\system32\kbdcz1.dll
2007-06-08 19:20 6,656 --a------ D:\WINDOWS\system32\kbdcr.dll
2007-06-08 19:20 6,656 --a------ D:\WINDOWS\system32\KBDAL.DLL
2007-06-08 19:20 6,144 -ra------ D:\WINDOWS\system32\kbdtuq.dll
2007-06-08 19:20 6,144 -ra------ D:\WINDOWS\system32\kbdtuf.dll
2007-06-08 19:20 6,144 -ra------ D:\WINDOWS\system32\kbdlv1.dll
2007-06-08 19:20 6,144 -ra------ D:\WINDOWS\system32\kbdlv.dll
2007-06-08 19:20 6,144 -ra------ D:\WINDOWS\system32\kbdhela2.dll
2007-06-08 19:20 6,144 -ra------ D:\WINDOWS\system32\kbdgkl.dll
2007-06-08 19:20 6,144 -ra------ D:\WINDOWS\system32\kbdest.dll
2007-06-08 19:20 5,632 -ra------ D:\WINDOWS\system32\kbdmon.dll
2007-06-08 19:20 5,632 -ra------ D:\WINDOWS\system32\kbdlt1.dll
2007-06-08 19:20 5,632 -ra------ D:\WINDOWS\system32\kbdlt.dll
2007-06-08 19:20 5,632 -ra------ D:\WINDOWS\system32\kbdkyr.dll
2007-06-08 19:20 5,632 -ra------ D:\WINDOWS\system32\kbdhe319.dll
2007-06-08 19:20 5,632 -ra------ D:\WINDOWS\system32\kbdhe220.dll
2007-06-08 19:20 5,632 -ra------ D:\WINDOWS\system32\kbdhe.dll
2007-06-08 19:20 5,632 -ra------ D:\WINDOWS\system32\kbdazel.dll
2007-06-08 19:20 5,632 --a------ D:\WINDOWS\system32\kbdro.dll
2007-06-08 19:20 5,632 --a------ D:\WINDOWS\system32\kbdhu1.dll
2007-06-08 19:20 5,120 --a------ D:\WINDOWS\system\SHELL.DLL
2007-06-08 19:20 33,376 --a------ D:\WINDOWS\system\COMMDLG.DLL
2007-06-08 19:20 24,661 --a------ D:\WINDOWS\system32\spxcoins.dll
2007-06-08 19:20 24,064 --a------ D:\WINDOWS\system\OLESVR.DLL
2007-06-08 19:20 19,200 --a------ D:\WINDOWS\system\TAPI.DLL
2007-06-08 19:20 176,157 --a------ D:\WINDOWS\system32\dgrpsetu.dll
2007-06-08 19:20 15,360 --a------ D:\WINDOWS\TASKMAN.EXE
2007-06-08 19:20 13,312 --a------ D:\WINDOWS\system32\irclass.dll
2007-06-08 19:20 127,008 --a------ D:\WINDOWS\system\MSVIDEO.DLL
2007-06-08 19:20 11,264 --a------ D:\WINDOWS\system32\drivers\irenum.sys
2007-06-08 19:20 109,488 --a------ D:\WINDOWS\system\AVIFILE.DLL
2007-06-08 19:20 103,424 --a------ D:\WINDOWS\system32\EqnClass.Dll
2007-06-08 19:20 <DIR> dr------- D:\Program Files
2007-06-08 19:20 <DIR> d--hs---- D:\WINDOWS\Installer
2007-06-08 19:20 <DIR> d-------- D:\Program Files\Common Files\SpeechEngines
2007-06-08 19:20 <DIR> d-------- D:\Program Files\Common Files\ODBC
2007-06-08 19:19 75,776 --a------ D:\WINDOWS\system32\storprop.dll
2007-06-08 19:19 <DIR> dr-h----- D:\DOCUME~1\DEFAUL~1\Ustawienia lokalne
2007-06-08 19:19 <DIR> dr-h----- D:\DOCUME~1\DEFAUL~1\Dane aplikacji
2007-06-08 19:19 <DIR> dr-h----- D:\DOCUME~1\ALLUSE~1\Dane aplikacji
2007-06-08 19:19 <DIR> dr------- D:\DOCUME~1\DEFAUL~1\Menu Start
2007-06-08 19:19 <DIR> dr------- D:\DOCUME~1\ALLUSE~1\Menu Start
2007-06-08 19:19 <DIR> dr------- D:\DOCUME~1\ALLUSE~1\Dokumenty
2007-06-08 19:19 <DIR> d--hs---- D:\System Volume Information
2007-06-08 19:19 <DIR> d--h----- D:\DOCUME~1\DEFAUL~1\Szablony
2007-06-08 19:19 <DIR> d--h----- D:\DOCUME~1\ALLUSE~1\Szablony
2007-06-08 19:19 <DIR> d-------- D:\WINDOWS\system32\CatRoot2
2007-06-08 19:19 <DIR> d-------- D:\WINDOWS\system32\CatRoot
2007-06-08 19:19 <DIR> d-------- D:\Documents and Settings
2007-06-08 19:19 <DIR> d-------- D:\DOCUME~1\DEFAUL~1\Ulubione
2007-06-08 19:19 <DIR> d-------- D:\DOCUME~1\DEFAUL~1\Pulpit
2007-06-08 19:19 <DIR> d-------- D:\DOCUME~1\DEFAUL~1\Moje dokumenty
2007-06-08 19:19 <DIR> d-------- D:\DOCUME~1\ALLUSE~1\Ulubione
2007-06-08 19:19 <DIR> d-------- D:\DOCUME~1\ALLUSE~1\Pulpit
2007-06-08 19:12 <DIR> dr-hsc--- D:\WINDOWS\system32\dllcache
2007-06-08 19:12 <DIR> dr--s---- D:\WINDOWS\Fonts
2007-06-08 19:12 <DIR> dr------- D:\WINDOWS\Web
2007-06-08 19:12 <DIR> d--h----- D:\WINDOWS\inf
2007-06-08 19:12 <DIR> d-------- D:\WINDOWS\WinSxS
2007-06-08 19:12 <DIR> d-------- D:\WINDOWS\twain_32
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-06-08 17:04:07 49,712 ----a-w D:\WINDOWS\system32\perfc015.dat
2007-06-08 17:04:07 355,830 ----a-w D:\WINDOWS\system32\perfh015.dat
2007-06-08 15:27:35 -------- d-----w D:\Program Files\Usługi online
2007-04-18 16:14:32 2,854,400 ----a-w D:\WINDOWS\system32\msi.dll
2007-03-17 13:45:36 293,376 ----a-w D:\WINDOWS\system32\winsrv.dll
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"nwiz"="nwiz.exe" [2006-10-22 12:22 D:\WINDOWS\system32\nwiz.exe]
"WinampAgent"="c:\Program Files\Winamp\winampa.exe" [2004-12-20 20:41]
"Cmaudio"="cmicnfg.cpl" []
"avast!"="D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-04-30 17:42]
"DAEMON Tools"="c:\Program Files\DAEMON Tools\daemon.exe" [2005-12-10 16:57]
"UnlockerAssistant"="C:\Program Files\Unlocker\UnlockerAssistant.exe" [2006-09-07 19:19]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="D:\WINDOWS\system32\ctfmon.exe" [2004-08-04 14:00]
"Gadu-Gadu"="C:\Program Files\Gadu-Gadu\gg.exe" [2007-05-10 16:36]
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost *netsvcs*
*Newly Created Service* - UNLOCKERDRIVER5
**************************************************************************
catchme 0.3.692 W2K/XP/Vista - userland rootkit detector by Gmer, http://www.gmer.net
Rootkit scan 2007-06-10 21:41:59
Windows 5.1.2600 Dodatek Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
Completion time: 2007-06-10 21:43:06
--- E O F ---
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 15 gości