Logfile of HijackThis v1.99.1
Scan saved at 21:39:43, on 2007-06-03
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSExplorer.EXE
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSSystem32RUNDLL32.EXE
C:Program FilesHewlett-PackardOrderReminderOrderReminder.exe
D:Program FilesDrWebspiderml.exe
D:Program FilesDrWebDRWEBSCD.EXE
D:PROGRA~1DrWebspidernt.exe
D:Program FilesWinampwinampa.exe
C:Program FilesD-Link AirPlusAirPlus.exe
C:WINDOWSSystem32
vsvc32.exe
D:PROGRA~1DrWebSpiderNT.exe
C:WINDOWSSystem32svchost.exe
D:Program FilesWapsterAQQAQQ.exe
C:Program FilesMozilla Firefoxfirefox.exe
C:Documents and SettingsAdminUstawienia lokalneTempKatalog tymczasowy 1 dla hijackthis.zipHijackThis.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,SearchAssistant = http://search.bearshare.com/sidebar.html?src=ssb
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://search.bearshare.com/sidebar.html?src=ssb
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://search.bearshare.com/sidebar.html?src=ssb
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://google.bearshare.com/pl/
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = http://search.bearshare.com/sidebar.html?src=ssb
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Local Page =
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Łącza
R3 - Default URLSearchHook is missing
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesAdobeAcrobat 5.0ReaderActiveXAcroIEHelper.ocx
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:Program FilesJavajre1.5.0_06inssv.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINDOWSSystem32msdxm.ocx
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSSystem32NvCpl.dll,NvStartup
O4 - HKLM..Run: [nwiz] nwiz.exe /install
O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSSystem32NvMcTray.dll,NvTaskbarInit
O4 - HKLM..Run: [OrderReminder] C:Program FilesHewlett-PackardOrderReminderOrderReminder.exe
O4 - HKLM..Run: [SpIDerMail] "D:Program FilesDrWebspiderml.exe"
O4 - HKLM..Run: [DrWebScheduler] "D:Program FilesDrWebDRWEBSCD.EXE"
O4 - HKLM..Run: [SpIDerNT] D:PROGRA~1DrWebspidernt.exe /agent
O4 - HKLM..Run: [WinampAgent] D:Program FilesWinampwinampa.exe
O4 - HKLM..Run: [KernelFaultCheck] %systemroot%system32dumprep 0 -k
O4 - HKLM..Run: [Ashampoo FireWall PRO] "D:Program FilesAshampooAshampoo FireWall PROFireWall.exe" -TRAY
O4 - HKCU..Run: [CyberDefender Early Detection Center] "E:Program FilesCyberDefenderAntiSpywarecdas80.exe" /minimize
O4 - HKCU..Run: [EdHTML] D:Program FilesBinboyEdHTMLv5.0EdHTML.exe /none
O4 - HKCU..Run: [Skype] "C:Program FilesSkypePhoneSkype.exe" /nosplash /minimized
O4 - HKCU..Run: [ares] "D:Program FilesAresAres.exe" -h
O4 - Global Startup: D-Link AirPlus.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = E:Program FilesMicrosoft OfficeOfficeOSA9.EXE
O8 - Extra context menu item: Pobierz z &BitSpirit - C:Program FilesBitSpiritsurl.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.5.0_06inssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.5.0_06inssv.dll
O10 - Unknown file in Winsock LSP: c:windowssystem32drwebsp.dll
O10 - Unknown file in Winsock LSP: c:windowssystem32drwebsp.dll
O10 - Unknown file in Winsock LSP: c:windowssystem32drwebsp.dll
O10 - Unknown file in Winsock LSP: c:windowssystem32drwebsp.dll
O12 - Plugin for .spop: C:Program FilesInternet ExplorerPluginsNPDocBox.dll
O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - D:Program FilesAreschatServer.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:WINDOWSSystem32
vsvc32.exe
O23 - Service: SpIDer Guard for Windows NT (spidernt) - Doctor Web, Ltd. - D:PROGRA~1DrWebSpiderNT.exe
[code][/code]
Z gory dziekuje