07.11.2006, 23:07
Złapałem przyjaciela który informuje mnie że moj system jest zainfekowany. Jest tak pomocny ze proponuje usuniecie tychże wirusów! Oczywiscie nie za darmo....
Ktoś pomoże mi go wywalić na zbity pysk ?
Ktoś pomoże mi go wywalić na zbity pysk ?
Cytat: Logfile of HijackThis v1.99.1
Scan saved at 23:06:48, on 2006-11-07
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32Ati2evxx.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
Crogram FilesIcecast2 Win32icecastService.exe
C:WINDOWSsystem32Ati2evxx.exe
C:WINDOWSExplorer.EXE
Crogram FilesiVideoCodecpmsngr.exe
Crogram FilesATI TechnologiesATI.ACEcli.exe
DowerDVDPDVDServ.exe
Crogram FilesDAEMON Toolsdaemon.exe
Crogram FilesKonnektkonnekt.exe
Crogram FilesRay AdamsATI Tray Toolsatitray.exe
Crogram FilesCommon FilesAheadLibNMBgMonitor.exe
Crogram FilesWhatPulseWhatPulse.exe
Crogram FilesSlySoftAnyDVDAnyDVD.exe
Crogram FilesCommon FilesAheadLibNMIndexStoreSvr.exe
Crogram FilesNetMeterNetMeter.exe
Crogram FilesXfireXfire.exe
Crogram FilesATI TechnologiesATI.ACEcli.exe
Crogram FilesATI TechnologiesATI.ACEcli.exe
C:totalcmdTOTALCMD.EXE
Crogram FilesiVideoCodecpmmon.exe
Crogram FilesiVideoCodecisamini.exe
Crogram FilesiVideoCodecisamonitor.exe
Crogram FilesMozilla Firefox 2 Beta 2firefox.exe
COCUME~1MichalUSTAWI~1Temp_tcHijackThis.exe
O2 - BHO: (no name) - {274c0420-ebe0-4f1d-b473-edd1aa9b85dd} - Crogram FilesiVideoCodecisaddon.dll
O4 - HKLM..Run: [ATICCC]"Crogram FilesATI TechnologiesATI.ACEcli.exe" runtime -Delay
O4 - HKLM..Run: [LogonStudio]"Crogram FilesWinCustomizeLogonStudiologonstudio.exe" /RANDOM
O4 - HKLM..Run: [NeroFilterCheck]Crogram FilesCommon FilesAheadLibNeroCheck.exe
O4 - HKLM..Run: [RemoteControl]DowerDVDPDVDServ.exe
O4 - HKLM..Run: [BootSkin Startup Jobs]"CROGRA~1StardockWinCustomizeBootSkinBootSkin.exe" /StartupJobs
O4 - HKLM..Run: [DAEMON Tools]"Crogram FilesDAEMON Toolsdaemon.exe" -lang 1033
O4 - HKCU..Run: [Konnekt]"Crogram FilesKonnektkonnekt.exe" /autostart
O4 - HKCU..Run: [VirtualDiskAutomount]rundll32 "C:totalcmdpluginswfxVirtualDiskVirtualDisk.wfx",MountAfterReboot
O4 - HKCU..Run: [AtiTrayTools]"Crogram FilesRay AdamsATI Tray Toolsatitray.exe"
O4 - HKCU..Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]"Crogram FilesCommon FilesAheadLibNMBgMonitor.exe"
O4 - HKCU..Run: [WhatPulse]Crogram FilesWhatPulseWhatPulse.exe
O4 - HKCU..Run: [AnyDVD]Crogram FilesSlySoftAnyDVDAnyDVD.exe
O4 - HKCU..Run: [Crogram FilesNetMeterNetMeter.exe]Crogram FilesNetMeterNetMeter.exe
O4 - Startup: Xfire.lnk = Crogram FilesXfireXfire.exe
O23 - Service: Adobe LM Service - Adobe Systems - Crogram FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:WINDOWSsystem32Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:WINDOWSsystem32ati2sgag.exe
O23 - Service: Icecast Media Server (Icecast) - Unknown owner - Crogram FilesIcecast2 Win32icecastService.exe" "Crogram FilesIcecast2 Win32 (file missing)
O23 - Service: NBService - Nero AG - D:Ahead NeroNero 7Nero BackItUpNBService.exe
O23 - Service: RadClock - Unknown owner - C:WINDOWSsystem32RadClock.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%WinPcaprpcapd.exe" -d -f "%ProgramFiles%WinPcaprpcapd.ini (file missing)