Moj log czy ktos mi moze pomoc co mam zrobic zeby usunac ten syf?
Logfile of HijackThis v1.99.0
Scan saved at 00:43:25, on 2005-02-08
Platform: Windows 2000 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\System32\telcmd.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\hicom.exe
C:\WINNT\System32\hiden.exe
C:\WINNT\System32\ieexec.exe
C:\WINNT\System32\internat.exe
C:\Documents and Settings\ErokAi\Dane aplikacji\pceb.exe
C:\WINNT\System32\w?auclt.exe
C:\Program Files\Realtek\Rtl8180\RtlWake.exe
C:\WINNT\system32\rundll32.exe
C:\Program Files\Winamp\winamp.exe
C:\WINNT\explorer.exe
C:\Program Files\Gadu-Gadu\gg.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\ErokAi\Pulpit\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.allwebsearcher.com/1211.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.allwebsearcher.com/1211.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = http://www.allwebsearcher.com/1211.htm
F2 - REG:system.ini: Shell=explorer.exe C:\WINNT\system32_tmp0234.exe
O1 - Hosts: 69.20.16.183 auto.search.msn.com
O1 - Hosts: 69.20.16.183 search.netscape.com
O1 - Hosts: 69.20.16.183 ieautosearch
O1 - Hosts: 69.20.16.183 ieautosearch
O2 - BHO: (no name) - {0A36C849-23D2-0D5A-8E0F-2C27C2E1BEB3} - C:\WINNT\System32\liklym.dll
O4 - HKLM…\Run: [synchronization Manager] mobsync.exe /logon
O4 - HKLM…\Run: [Windows AdStatus] C:\Program Files\Windows AdStatus\WinStat.exe
O4 - HKLM…\Run: [mTvwx] C:\WINNT\System32\nipnmz.exe
O4 - HKLM…\Run: [startup] C:\WINNT\System32\winlogon32.exe
O4 - HKLM…\Run: [hiden.exe] hiden.exe
O4 - HKLM…\Run: [desktop] C:\WINNT\System32\desktop.exe
O4 - HKLM…\Run: [regcheck] C:\WINNT\system32_tmp0234.exe
O4 - HKLM…\Run: [ieexec.exe] ieexec.exe
O4 - HKLM…\RunServices: [desktop] C:\WINNT\System32\desktop.exe
O4 - HKLM…\RunServices: [mTvwx] C:\WINNT\System32\nipnmz.exe
O4 - HKCU…\Run: [internat.exe] internat.exe
O4 - HKCU…\Run: [Nbsr] C:\Documents and Settings\ErokAi\Dane aplikacji\pceb.exe
O4 - HKCU…\Run: [Dptqaid] C:\WINNT\System32\w?auclt.exe
O4 - Global Startup: RtlWake.lnk = C:\Program Files\Realtek\Rtl8180\RtlWake.exe
O4 - Global Startup: GStartup.lnk = C:\Program Files\Common Files\GMT\GMT.exe
O4 - Global Startup: PrecisionTime.lnk = C:\Program Files\PrecisionTime\PrecisionTime.exe
O4 - Global Startup: Date Manager.lnk = C:\Program Files\Date Manager\DateManager.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Program Files\ICQToolbar\toolbaru.dll/SEARCH.HTML
O10 - Unknown file in Winsock LSP: c:\winnt\system32\aklsp.dll
O10 - Unknown file in Winsock LSP: c:\winnt\system32\aklsp.dll
O10 - Unknown file in Winsock LSP: c:\winnt\system32\aklsp.dll
O10 - Unknown file in Winsock LSP: c:\winnt\system32\aklsp.dll
O23 - Service: Usługa administracyjna Menedżera dysków logicznych - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: Manageer Network Connections - Unknown - C:\WINNT\System32\telcmd.exe
O23 - Service: Working Network Connections - Unknown - C:\WINNT\System32\hicom.exe
Asterisk :twisted: