11 Wrz 2006, 00:12
Logfile of HijackThis v1.99.1
Scan saved at 00:09:27, on 2006-09-11
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSSystem32Ati2evxx.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSsystem32Ati2evxx.exe
C:WINDOWSExplorer.EXE
C:Program FilesATI TechnologiesATI Control Panelatiptaxx.exe
C:Program FilesVIAudioiSBADeckADeck.exe
C:Program FilesMessengermsmsgs.exe
C:Program FilesAlcohol SoftAlcohol 120StarWindStarWindService.exe
C:WINDOWSsystem32wscntfy.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesSpyCatcher 2006SpyCatcher.exe
C:Documents and SettingsLewusPulpitHijackThis.exe
C:Program FilesSpyCatcher 2006Scheduler daemon.exe
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.google.pl/
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Łącza
O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:Program FilesSpyCatcher 2006SCActiveBlock.dll
O2 - BHO: IECatcher Class - {B930BA63-9E5A-11D3-A288-0000E80E2EDE} - C:Program FilesMass DownloaderMDHELPER.DLL (file missing)
O4 - HKLM..Run: [ATIPTA] C:Program FilesATI TechnologiesATI Control Panelatiptaxx.exe
O4 - HKLM..Run: [AudioDeck] C:Program FilesVIAudioiSBADeckADeck.exe 1
O4 - HKLM..Run: [SpyCatcher Reminder] "C:Program FilesSpyCatcher 2006SpyCatcher.exe" reminder
O4 - HKCU..Run: [Gadu-Gadu] "C:Program FilesGadu-Gadugg.exe" /tray
O4 - HKCU..Run: [MSMSGS] "C:Program FilesMessengermsmsgs.exe" /background
O4 - Global Startup: SpyCatcher Protector.lnk = C:Program FilesSpyCatcher 2006Protector.exe
O8 - Extra context menu item: &Block this popup - C:Program FilesF-SecureAnti-Spywarelockpopups.htm
O9 - Extra button: IE Shield - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:Program FilesF-SecureAnti-Spywareieshield.dll (file missing)
O9 - Extra 'Tools' menuitem: IE Shield... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:Program FilesF-SecureAnti-Spywareieshield.dll (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe
O20 - AppInit_DLLs: interceptor.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:WINDOWSSystem32Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:WINDOWSsystem32ati2sgag.exe
O23 - Service: F-Secure Automatic Update (BackWeb Plug-in - 7681197) - Unknown owner - C:PROGRA~1F-SecureBackWeb7681197ProgramSERVIC~1.EXE (file missing)
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - Unknown owner - C:Program FilesF-SecureAnti-Virusfsgk32st.exe (file missing)
O23 - Service: F-Secure Network Request Broker - Unknown owner - C:Program FilesF-SecureCommonFNRB32.EXE (file missing)
O23 - Service: fsbwsys - Unknown owner - C:Program FilesF-SecureBackWeb7681197programfsbwsys.exe (file missing)
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - Unknown owner - C:Program FilesF-SecureFWESProgramfsdfwd.exe (file missing)
O23 - Service: F-Secure Management Agent (FSMA) - Unknown owner - C:Program FilesF-SecureCommonFSMA32.EXE (file missing)
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:Program FilesAlcohol SoftAlcohol 120StarWindStarWindService.exe
O23 - Service: SysEnforce - Unknown owner - C:PROGRA~1TRISNA~1SSISYSENF~1.EXE (file missing)11 Wrz 2006, 00:38
Dark Master napisał(a):Witam!!!
C:Program FilesSpyCatcher 2006SpyCatcher.exe
C:Program FilesSpyCatcher 2006Scheduler daemon.exe
O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:Program FilesSpyCatcher 2006SCActiveBlock.dll
O4 - HKLM..Run: [SpyCatcher Reminder] "C:Program FilesSpyCatcher 2006SpyCatcher.exe" reminder
O4 - Global Startup: SpyCatcher Protector.lnk = C:Program FilesSpyCatcher 2006Protector.exe
 
 O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe
O20 - AppInit_DLLs: interceptor.dll
 Fixujesz w trybie awaryjnym(F8 podczs startu systemu). Inaczej nie da efektu. Usun plik interceptor.dll
 Fixujesz w trybie awaryjnym(F8 podczs startu systemu). Inaczej nie da efektu. Usun plik interceptor.dll
			
		11 Wrz 2006, 00:45
 {HKLM...CLSID} = "SpywareBlock Class"
 {HKLM...CLSID} = "SpywareBlock Class"
 {HKLM...CLSID} = "IECatcher Class"
 {HKLM...CLSID} = "IECatcher Class"
 {HKLM...CLSID} = "Rozszerzenie CPL kadrowania wyświetlania"
 {HKLM...CLSID} = "Rozszerzenie CPL kadrowania wyświetlania"
 {HKLM...CLSID} = "HyperTerminal Icon Ext"
 {HKLM...CLSID} = "HyperTerminal Icon Ext"
 {HKLM...CLSID} = "7-Zip Shell Extension"
 {HKLM...CLSID} = "7-Zip Shell Extension"
 {HKLM...CLSID} = "AlcoholShellEx"
 {HKLM...CLSID} = "AlcoholShellEx"
 {HKLM...CLSID} = "avast"
 {HKLM...CLSID} = "avast"
 {HKLM...CLSID} = "7-Zip Shell Extension"
 {HKLM...CLSID} = "7-Zip Shell Extension"
 {HKLM...CLSID} = "avast"
 {HKLM...CLSID} = "avast"
 {HKLM...CLSID} = "7-Zip Shell Extension"
 {HKLM...CLSID} = "7-Zip Shell Extension"
 {HKLM...CLSID} = "avast"
 {HKLM...CLSID} = "avast"
 {HKLM...CLSID} = "F-Secure IE Shield COM button"
 {HKLM...CLSID} = "F-Secure IE Shield COM button"
11 Wrz 2006, 00:52
 ) usuń co pisałem i daj jeszce raz loga z Hijacka.
) usuń co pisałem i daj jeszce raz loga z Hijacka.
			
		11 Wrz 2006, 15:15
11 Wrz 2006, 15:56
O4 - HKLM..Run: [SpywareTerminator] "C:Program FilesSpyware TerminatorSpywareTerminatorShield.exe"
 Widzę, że muszę doradzić program bo tak to ta zabawa się nigdy nie skończy.
 Widzę, że muszę doradzić program bo tak to ta zabawa się nigdy nie skończy.11 Wrz 2006, 16:33
11 Wrz 2006, 16:36
