Otwieraja mi sie jakies strony i jestem po wirusie i mysle, ze zostaly jeszcze jakies syfy :/
Log:
Logfile of HijackThis v1.99.1
Scan saved at 10:06:41, on 05-11-13
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32rundll32.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSexplorer.exe
Crogram FilesAVPersonalAVWUPSRV.EXE
C:WINDOWSRGF3aWQcommand.exe
Crogram FilesCommon FilesPanda SoftwarePavShldpavprsrv.exe
Crogram FilesPanda SoftwarePanda Titanium Antivirus 2004pavsrv51.exe
Crogram FilesPanda SoftwarePanda Titanium Antivirus 2004PsImSvc.exe
Crogram FilesPanda SoftwarePanda Titanium Antivirus 2004AVENGINE.EXE
Crogram FilesInternet ExplorerIEXPLORE.EXE
Crogram FilesGadu-Gadugg.exe
C:WINDOWSSystem32wuauclt.exe
Crogram FilesAVPersonalAVWIN.EXE
Cocuments and SettingsDawid.DAWIDPulpitHijackThisHijackThis.exe
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.tibia.pl/
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Łącza
R3 - Default URLSearchHook is missing
F2 - REG:system.ini: Shell=explorer.exe
O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - Crogram FilesTechSmithSnagIt 7SnagItIEAddin.dll
O4 - HKCU..Run: [Gadu-Gadu] "Crogram FilesGadu-Gadugg.exe" /tray
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Crogram FilesJavaj2re1.4.2_06binnpjpi142_06.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Crogram FilesJavaj2re1.4.2_06binnpjpi142_06.dll
O10 - Unknown file in Winsock LSP: c:windowssystem32drwebsp.dll
O10 - Unknown file in Winsock LSP: c:windowssystem32drwebsp.dll
O10 - Unknown file in Winsock LSP: c:windowssystem32drwebsp.dll
O10 - Unknown file in Winsock LSP: c:windowssystem32drwebsp.dll
O20 - Winlogon Notify: Applets - C:WINDOWSsystem32mv4ol9h31.dll
O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - Crogram FilesAVPersonalAVWUPSRV.EXE
Log:
Logfile of HijackThis v1.99.1
Scan saved at 10:06:41, on 05-11-13
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32rundll32.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSexplorer.exe
Crogram FilesAVPersonalAVWUPSRV.EXE
C:WINDOWSRGF3aWQcommand.exe
Crogram FilesCommon FilesPanda SoftwarePavShldpavprsrv.exe
Crogram FilesPanda SoftwarePanda Titanium Antivirus 2004pavsrv51.exe
Crogram FilesPanda SoftwarePanda Titanium Antivirus 2004PsImSvc.exe
Crogram FilesPanda SoftwarePanda Titanium Antivirus 2004AVENGINE.EXE
Crogram FilesInternet ExplorerIEXPLORE.EXE
Crogram FilesGadu-Gadugg.exe
C:WINDOWSSystem32wuauclt.exe
Crogram FilesAVPersonalAVWIN.EXE
Cocuments and SettingsDawid.DAWIDPulpitHijackThisHijackThis.exe
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.tibia.pl/
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Łącza
R3 - Default URLSearchHook is missing
F2 - REG:system.ini: Shell=explorer.exe
O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - Crogram FilesTechSmithSnagIt 7SnagItIEAddin.dll
O4 - HKCU..Run: [Gadu-Gadu] "Crogram FilesGadu-Gadugg.exe" /tray
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Crogram FilesJavaj2re1.4.2_06binnpjpi142_06.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Crogram FilesJavaj2re1.4.2_06binnpjpi142_06.dll
O10 - Unknown file in Winsock LSP: c:windowssystem32drwebsp.dll
O10 - Unknown file in Winsock LSP: c:windowssystem32drwebsp.dll
O10 - Unknown file in Winsock LSP: c:windowssystem32drwebsp.dll
O10 - Unknown file in Winsock LSP: c:windowssystem32drwebsp.dll
O20 - Winlogon Notify: Applets - C:WINDOWSsystem32mv4ol9h31.dll
O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - Crogram FilesAVPersonalAVWUPSRV.EXE