
Kod: Zaznacz cały
1 1 xns5.exe ip-139.steamhosting.net Close wait ??? 1 min 47 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50808 80 TCP 8:37:27 pm Nike-PC
2 [System Process] sitecheck2.opera.com Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50809 80 TCP 8:37:51 pm Nike-PC
3 [System Process] hosted-by.leaseweb.com Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50810 80 TCP 8:37:51 pm Nike-PC
4 [System Process] sitecheck2.opera.com Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50811 80 TCP 8:37:51 pm Nike-PC
5 [System Process] sitecheck2.opera.com Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50812 80 TCP 8:37:51 pm Nike-PC
6 [System Process] sitecheck2.opera.com Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50813 80 TCP 8:37:51 pm Nike-PC
7 [System Process] 195.42.113.219 Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50814 80 TCP 8:37:51 pm Nike-PC
8 [System Process] pl-web4.pl.mediainter.net Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50815 80 TCP 8:37:51 pm Nike-PC
9 [System Process] interia.hit.gemius.pl Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50816 80 TCP 8:37:51 pm Nike-PC
10 [System Process] s1.m4r2.onet.pl Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50817 80 TCP 8:37:51 pm Nike-PC
11 [System Process] fx-in-f138.1e100.net Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50818 80 TCP 8:37:51 pm Nike-PC
12 [System Process] fx-in-f138.1e100.net Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50819 80 TCP 8:37:51 pm Nike-PC
13 [System Process] pbtng.u.nuggad.net Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50820 80 TCP 8:37:51 pm Nike-PC
14 [System Process] fx-in-f138.1e100.net Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50822 80 TCP 8:37:51 pm Nike-PC
15 [System Process] hub.com.pl Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50823 80 TCP 8:37:51 pm Nike-PC
16 [System Process] onet1.host.hit.gemius.pl Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50824 80 TCP 8:37:51 pm Nike-PC
17 [System Process] hosted-by.leaseweb.com Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50825 80 TCP 8:37:51 pm Nike-PC
18 [System Process] main2.host.hit.gemius.pl Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50828 80 TCP 8:37:51 pm Nike-PC
19 [System Process] onet1.host.hit.gemius.pl Time wait ??? 1 min 22 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50829 80 TCP 8:37:51 pm Nike-PC
20 [System Process] 216.191.247.227 Time wait ??? 1 min 14 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50836 80 TCP 8:37:59 pm Nike-PC
21 [System Process] lbr4.interia.pl Time wait ??? 1 min 14 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50840 80 TCP 8:37:59 pm Nike-PC
22 [System Process] bw-in-f156.1e100.net Time wait ??? 1 min 14 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50841 80 TCP 8:37:59 pm Nike-PC
23 [System Process] pcformat.pl Time wait ??? 1 min 14 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50842 80 TCP 8:37:59 pm Nike-PC
24 [System Process] pcformat.pl Time wait ??? 1 min 14 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50846 80 TCP 8:37:59 pm Nike-PC
25 [System Process] pcformat.pl Time wait ??? 1 min 14 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50848 80 TCP 8:37:59 pm Nike-PC
26 opera.exe pop3.wp.pl Established ??? 1 min 14 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50851 110 TCP 8:37:59 pm Nike-PC
27 [System Process] interia.hit.gemius.pl Time wait ??? 1 min 14 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50856 80 TCP 8:37:59 pm Nike-PC
28 opera.exe pcformat.pl Established ??? 58 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50863 80 TCP 8:38:16 pm Nike-PC
Kod: Zaznacz cały
1 [System Process] sitecheck2.opera.com Time wait ??? 54 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50888 80 TCP 8:43:48 pm Nike-PC
2 [System Process] 195.42.113.219 Time wait ??? 54 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50889 80 TCP 8:43:48 pm Nike-PC
3 [System Process] interia.hit.gemius.pl Time wait ??? 54 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50890 80 TCP 8:43:48 pm Nike-PC
4 [System Process] bw-in-f113.1e100.net Time wait ??? 54 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50891 80 TCP 8:43:48 pm Nike-PC
5 [System Process] bw-in-f113.1e100.net Time wait ??? 54 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50892 80 TCP 8:43:49 pm Nike-PC
6 [System Process] pl-web3.pl.mediainter.net Time wait ??? 54 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50893 80 TCP 8:43:49 pm Nike-PC
7 [System Process] s1.m4r2.onet.pl Time wait ??? 54 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50894 80 TCP 8:43:49 pm Nike-PC
8 [System Process] hub.com.pl Time wait ??? 54 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50895 80 TCP 8:43:49 pm Nike-PC
9 [System Process] pbtng.u.nuggad.net Time wait ??? 54 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50896 80 TCP 8:43:49 pm Nike-PC
10 [System Process] 216.191.247.227 Time wait ??? 54 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50899 80 TCP 8:43:49 pm Nike-PC
11 [System Process] bw-in-f167.1e100.net Time wait ??? 54 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50906 80 TCP 8:43:49 pm Nike-PC
12 [System Process] 204.160.107.126 Time wait ??? 54 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50911 80 TCP 8:43:49 pm Nike-PC
13 opera.exe pop3.wp.pl Established ??? 54 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50916 110 TCP 8:43:49 pm Nike-PC
14 xns5.exe ip-139.steamhosting.net Close wait ??? 45 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50920 80 TCP 8:43:57 pm Nike-PC
15 [System Process] interia.hit.gemius.pl Time wait ??? 45 sec 0 0,00 KB/s 0 0,00 KB/s Unknown 50921 80 TCP 8:43:57 pm Nike-PC
[ Dodano: 2010-02-22, 20:50 ]
Hijack This:
Kod: Zaznacz cały
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:50:37, on 2010-02-22
Platform: Unknown Windows (WinNT 6.01.3004 SP1Đ)
MSIE: Internet Explorer v8.00 (8.00.7100.0000)
Boot mode: Normal
Running processes:
C:\Windows\SysWOW64\rundll32.exe
D:\Programy\Różne\Logitech\SetPoint\x86\SetPoint32.exe
C:\Program Files (x86)\CardDetector\HUAWEI170\CardDetector.exe
C:\Users\Nike\Desktop\Programy\top_netinfo\top_netinfo.exe
C:\Program Files (x86)\X-NetStat Professional\xns5.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe
D:\Programy\Do neta\Opera\opera.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [P17RunE] RunDll32 P17RunE.dll,RunDLLEntry
O4 - HKLM\..\Run: [CardDetectorHUAWEI170] C:\Program Files (x86)\CardDetector\HUAWEI170\CardDetector.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Programy\Różne\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [ALLUpdate] "D:\Programy\Do odtwarzania\ALLPlayer\ALLUpdate.exe" "sleep"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\system32\Macromed\Flash\NPSWF32_FlashUtil.exe -p
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'USŁUGA SIECIOWA')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'USŁUGA SIECIOWA')
O4 - Startup: SetPoint.lnk = ?
O4 - Startup: top_netinfo.lnk = C:\Users\Nike\Desktop\Programy\top_netinfo\top_netinfo.exe
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://F:\Programy\Office\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\OFFICE11\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} (MksSkanerOnline Class) - http://www.mks.com.pl/skaner/SkanerOnline.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{190B71E2-E403-41F6-8817-9EA38E60ACC2}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CCS\Services\Tcpip\..\{a408feee-a6e2-4c4c-84a2-d97c47a39d3c}: NameServer = 79.163.127.70 217.116.100.65
O17 - HKLM\System\CS1\Services\Tcpip\..\{190B71E2-E403-41F6-8817-9EA38E60ACC2}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CS2\Services\Tcpip\..\{190B71E2-E403-41F6-8817-9EA38E60ACC2}: NameServer = 208.67.222.222,208.67.220.220
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWOW64\Skype4COM.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: BlueSoleil Hid Service - Unknown owner - F:\Programy\Różne\BlueSoleil\BTNtService.exe (file missing)
O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
O23 - Service: Dragon Age: Początek - Aktualizator zawartości (DAUpdaterSvc) - BioWare - e:\gry\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\SysWOW64\IoctlSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Start BT in service - Unknown owner - F:\Programy\Różne\BlueSoleil\StartSkysolSvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 7515 bytes