Welcome Guest ( Log In | Click here to Register a free account now! )
Welcome to Bleeping Computer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.
Read this topic before posting a log.
DO NOT post a ComboFix log unless requested to.
Only members of the HijackThis Team or Moderators are allowed to help people with logs. Anyone else should refrain from posting to another user's log.
When posting a log please put the type of infection you have in the topic title. IE: Winfixer, Virtumonde, WinTools, WebSearch, Home Search Assistant, etc.
Do not bump your topic. We try to resolve logs on a first come/first served basis. By bumping your log you will be pushed back in line due to the new date of your bump.
Jun 10 2009, 12:30 PM
Post
#1
|
|
|
New Member ![]() Group: Members Posts: 4 Joined: 10-June 09 Member No.: 340,699 |
I got it from a video link from Facebook Thanks for any help.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT DDS (Ver_09-05-14.01) Microsoft Windows XP Home Edition Boot Device: \Device\HarddiskVolume1 Install Date: 12/18/2006 5:15:16 AM System Uptime: 6/10/2009 10:46:29 AM (1 hours ago) Motherboard: ASUSTek Computer INC. | | Gamila Processor: Intel® Celeron® CPU 2.93GHz | PGA 478 | 2933/133mhz ==== Disk Partitions ========================= C: is FIXED (NTFS) - 149 GiB total, 137.008 GiB free. E: is Removable F: is Removable G: is Removable H: is CDROM () I: is Removable J: is Removable ==== Disabled Device Manager Items ============= Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318} Description: Realtek RTL8139/810x Family Fast Ethernet NIC Device ID: PCI\VEN_10EC&DEV_8139&SUBSYS_2A01103C&REV_10\4&1A671D0C&0&68F0 Manufacturer: Realtek Semiconductor Corp. Name: Realtek RTL8139/810x Family Fast Ethernet NIC PNP Device ID: PCI\VEN_10EC&DEV_8139&SUBSYS_2A01103C&REV_10\4&1A671D0C&0&68F0 Service: RTL8023xp ==== System Restore Points =================== RP272: 3/13/2009 3:10:50 AM - System Checkpoint RP273: 3/14/2009 8:09:16 AM - System Checkpoint RP274: 3/15/2009 9:56:01 AM - System Checkpoint RP275: 3/16/2009 10:20:03 AM - System Checkpoint RP276: 3/17/2009 3:00:16 AM - Software Distribution Service 3.0 RP277: 3/18/2009 3:56:01 AM - System Checkpoint RP278: 3/19/2009 4:56:01 AM - System Checkpoint RP279: 3/20/2009 5:56:01 AM - System Checkpoint RP280: 3/21/2009 6:56:04 AM - System Checkpoint RP281: 3/22/2009 7:56:04 AM - System Checkpoint RP282: 3/23/2009 9:51:14 AM - System Checkpoint RP283: 3/24/2009 10:00:18 AM - System Checkpoint RP284: 3/24/2009 7:21:15 PM - Removed QuickTime RP285: 3/24/2009 8:29:32 PM - Software Distribution Service 3.0 RP286: 3/25/2009 3:00:14 AM - Software Distribution Service 3.0 RP287: 3/26/2009 3:00:17 AM - Software Distribution Service 3.0 RP288: 3/27/2009 3:49:47 AM - System Checkpoint RP289: 3/28/2009 4:49:47 AM - System Checkpoint RP290: 3/29/2009 5:49:47 AM - System Checkpoint RP291: 3/30/2009 6:49:47 AM - System Checkpoint RP292: 3/31/2009 7:49:48 AM - System Checkpoint RP293: 4/1/2009 9:16:56 AM - System Checkpoint RP294: 4/2/2009 9:49:47 AM - System Checkpoint RP295: 4/3/2009 9:49:53 AM - System Checkpoint RP296: 4/4/2009 11:05:27 AM - System Checkpoint RP297: 4/5/2009 11:49:53 AM - System Checkpoint RP298: 4/6/2009 12:49:53 PM - System Checkpoint RP299: 4/7/2009 1:49:54 PM - System Checkpoint RP300: 4/8/2009 2:49:53 PM - System Checkpoint RP301: 4/9/2009 4:00:26 PM - System Checkpoint RP302: 4/10/2009 4:49:57 PM - System Checkpoint RP303: 4/11/2009 5:04:32 PM - System Checkpoint RP304: 4/12/2009 5:47:55 PM - System Checkpoint RP305: 4/13/2009 5:49:59 PM - System Checkpoint RP306: 4/14/2009 6:51:03 PM - System Checkpoint RP307: 4/15/2009 7:49:57 PM - System Checkpoint RP308: 4/16/2009 3:00:29 AM - Software Distribution Service 3.0 RP309: 4/17/2009 3:14:32 AM - System Checkpoint RP310: 4/18/2009 3:14:36 AM - System Checkpoint RP311: 4/19/2009 4:14:36 AM - System Checkpoint RP312: 4/20/2009 5:14:36 AM - System Checkpoint RP313: 4/21/2009 6:14:36 AM - System Checkpoint RP314: 4/22/2009 7:14:36 AM - System Checkpoint RP315: 4/23/2009 8:26:36 AM - System Checkpoint RP316: 4/24/2009 8:43:25 AM - System Checkpoint RP317: 4/25/2009 9:14:42 AM - System Checkpoint RP318: 4/26/2009 10:14:43 AM - System Checkpoint RP319: 4/27/2009 11:14:42 AM - System Checkpoint RP320: 4/28/2009 12:14:42 PM - System Checkpoint RP321: 4/29/2009 3:00:24 AM - Software Distribution Service 3.0 RP322: 4/30/2009 3:14:43 AM - System Checkpoint RP323: 5/1/2009 4:14:42 AM - System Checkpoint RP324: 5/2/2009 5:14:42 AM - System Checkpoint RP325: 5/3/2009 6:14:42 AM - System Checkpoint RP326: 5/4/2009 7:14:42 AM - System Checkpoint RP327: 5/5/2009 8:14:44 AM - System Checkpoint RP328: 5/5/2009 1:22:49 PM - Removed Adobe Reader 9. RP329: 5/5/2009 1:23:15 PM - Installed Adobe Reader 9.1. RP330: 5/6/2009 2:14:49 PM - System Checkpoint RP331: 5/7/2009 3:14:49 PM - System Checkpoint RP332: 5/8/2009 3:15:52 PM - System Checkpoint RP333: 5/9/2009 4:14:47 PM - System Checkpoint RP334: 5/10/2009 5:14:47 PM - System Checkpoint RP335: 5/11/2009 6:14:49 PM - System Checkpoint RP336: 5/12/2009 6:14:53 PM - System Checkpoint RP337: 5/13/2009 3:00:28 AM - Software Distribution Service 3.0 RP338: 5/14/2009 3:14:53 AM - System Checkpoint RP339: 5/15/2009 4:14:56 AM - System Checkpoint RP340: 5/16/2009 5:14:56 AM - System Checkpoint RP341: 5/17/2009 6:14:55 AM - System Checkpoint RP342: 5/18/2009 7:14:53 AM - System Checkpoint RP343: 5/19/2009 8:14:55 AM - System Checkpoint RP344: 5/20/2009 9:29:55 AM - System Checkpoint RP345: 5/20/2009 7:49:16 PM - Installed Java 6 Update 13 RP346: 5/20/2009 7:49:46 PM - Installed MSN Toolbar Setup RP347: 5/21/2009 8:15:00 PM - System Checkpoint RP348: 5/22/2009 9:15:02 PM - System Checkpoint RP349: 5/23/2009 10:15:01 PM - System Checkpoint RP350: 5/24/2009 11:15:00 PM - System Checkpoint RP351: 5/26/2009 12:15:00 AM - System Checkpoint RP352: 5/27/2009 1:15:02 AM - System Checkpoint RP353: 5/27/2009 3:00:15 AM - Software Distribution Service 3.0 RP354: 5/28/2009 3:15:02 AM - System Checkpoint RP355: 5/29/2009 4:15:03 AM - System Checkpoint RP356: 5/30/2009 5:15:03 AM - System Checkpoint RP357: 5/31/2009 6:15:03 AM - System Checkpoint RP358: 6/1/2009 7:17:18 AM - System Checkpoint RP359: 6/2/2009 8:15:04 AM - System Checkpoint RP360: 6/2/2009 2:26:25 PM - Removed MSN Toolbar RP361: 6/2/2009 2:26:40 PM - Removed Microsoft Search Enhancement Pack RP362: 6/2/2009 2:26:47 PM - Removed Microsoft Default Manager RP363: 6/3/2009 3:15:07 PM - System Checkpoint RP364: 6/4/2009 4:20:31 PM - System Checkpoint RP365: 6/5/2009 5:15:06 PM - System Checkpoint RP366: 6/6/2009 6:15:04 PM - System Checkpoint RP367: 6/7/2009 6:22:04 PM - System Checkpoint RP368: 6/8/2009 7:15:07 PM - System Checkpoint RP369: 6/9/2009 10:33:54 AM - Software Distribution Service 3.0 RP370: 6/9/2009 11:02:24 AM - Cleaned registry with Windows Live OneCare safety scanner RP371: 6/9/2009 11:38:12 AM - Microsoft OneCare Protection Checkpoint RP372: 6/10/2009 10:24:22 AM - Installed Java 6 Update 14 RP373: 6/10/2009 11:18:33 AM - Software Distribution Service 3.0 ==== Installed Programs ====================== Absolute Poker Acrobat.com Adobe AIR Adobe Flash Player ActiveX Adobe Reader 9.1.1 Agere Systems PCI Soft Modem Apple Mobile Device Support Apple Software Update Bonjour Compatibility Pack for the 2007 Office system EPSON Printer Software EPSON Scan EPSON Stylus CX7400 Series Scanner Driver Update GTOneCare Hotfix for Windows XP (KB952287) Intel® Extreme Graphics Driver iTunes Java 6 Update 14 Microsoft .NET Framework 2.0 Microsoft Application Error Reporting Microsoft Internationalized Domain Names Mitigation APIs Microsoft National Language Support Downlevel APIs Microsoft Office Professional Edition 2003 Microsoft Protection Service Microsoft Windows Live OneCare Resources v2.5.2900.24 Microsoft Windows OneCare Live AntiSpyware and AntiVirus Microsoft Windows OneCare Live v2.5.2900.24 Microsoft Windows OneCare Live v2.5.2900.24 Idcrl Install Mozilla Sunbird (0.9) NVIDIA Drivers PANTECH PC USB Modem Software PANTECH UM175 Driver PX Engine QuickTime Security Update for Windows Internet Explorer 7 (KB938127-v2) Security Update for Windows Internet Explorer 7 (KB956390) Security Update for Windows Internet Explorer 7 (KB961260) Security Update for Windows Internet Explorer 7 (KB963027) Security Update for Windows Media Player (KB911564) Security Update for Windows Media Player (KB952069) Security Update for Windows Media Player 6.4 (KB925398) Security Update for Windows Media Player 9 (KB917734) Security Update for Windows Media Player 9 (KB936782) Security Update for Windows XP (KB923561) Security Update for Windows XP (KB923689) Security Update for Windows XP (KB923789) Security Update for Windows XP (KB938464-v2) Security Update for Windows XP (KB938464) Security Update for Windows XP (KB941569) Security Update for Windows XP (KB946648) Security Update for Windows XP (KB950759) Security Update for Windows XP (KB950760) Security Update for Windows XP (KB950762) Security Update for Windows XP (KB950974) Security Update for Windows XP (KB951066) Security Update for Windows XP (KB951376-v2) Security Update for Windows XP (KB951698) Security Update for Windows XP (KB951748) Security Update for Windows XP (KB952004) Security Update for Windows XP (KB952954) Security Update for Windows XP (KB953838) Security Update for Windows XP (KB953839) Security Update for Windows XP (KB954211) Security Update for Windows XP (KB954459) Security Update for Windows XP (KB954600) Security Update for Windows XP (KB955069) Security Update for Windows XP (KB956390) Security Update for Windows XP (KB956391) Security Update for Windows XP (KB956572) Security Update for Windows XP (KB956802) Security Update for Windows XP (KB956803) Security Update for Windows XP (KB956841) Security Update for Windows XP (KB957095) Security Update for Windows XP (KB957097) Security Update for Windows XP (KB958215) Security Update for Windows XP (KB958644) Security Update for Windows XP (KB958687) Security Update for Windows XP (KB958690) Security Update for Windows XP (KB959426) Security Update for Windows XP (KB960225) Security Update for Windows XP (KB960714) Security Update for Windows XP (KB960715) Security Update for Windows XP (KB960803) Security Update for Windows XP (KB961373) Update for Windows Internet Explorer 8 (KB971180) Update for Windows XP (KB951072-v2) Update for Windows XP (KB951978) Update for Windows XP (KB955839) Update for Windows XP (KB967715) VZAccess Manager WebFldrs XP Windows Genuine Advantage Notifications (KB905474) Windows Genuine Advantage Validation Tool (KB892130) Windows Internet Explorer 8 Windows Live OneCare Windows Live OneCare safety scanner Windows XP Service Pack 3 ==== Event Viewer Messages From Past Week ======== 6/4/2009 12:26:22 PM, error: PlugPlayManager [12] - The device 'PANTECH UM175 WWAN Driver #3' (USB\VID_106c&PID_3714&MI_03\6&154cfd13&0&8515) disappeared from the system without first being prepared for removal. ==== End Of File =========================== DDS (Ver_09-05-14.01) - NTFSx86 Run by Owner at 11:19:52.34 on Wed 06/10/2009 Internet Explorer: 8.0.6001.18702 Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.503.93 [GMT -6:00] AV: Windows Live OneCare *On-access scanning enabled* (Updated) {427ADFC3-B354-4A51-BE34-A9D4218E45C4} FW: Windows Live OneCare Firewall *enabled* {A3899D22-27E6-4A7E-AE4E-2C106646DAAB} ============== Running Processes =============== C:\WINDOWS\system32\svchost -k DcomLaunch svchost.exe C:\Program Files\Microsoft Windows OneCare Live\Antivirus\MsMpEng.exe C:\WINDOWS\System32\svchost.exe -k netsvcs svchost.exe svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe svchost.exe C:\WINDOWS\system32\agrsmsvc.exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Microsoft Windows OneCare Live\OcHealthMon.exe C:\WINDOWS\system32\svchost.exe -k podmena C:\WINDOWS\system32\svchost.exe -k imgsvc C:\Program Files\Microsoft Windows OneCare Live\Firewall\msfwsvc.exe C:\Program Files\Microsoft Windows OneCare Live\winss.exe C:\WINDOWS\system32\igfxtray.exe C:\WINDOWS\ALCXMNTR.EXE C:\WINDOWS\AGRSMMSG.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Microsoft Windows OneCare Live\winssnotify.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICDA.EXE C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\Verizon Wireless\VZAccess Manager\VZAccess Manager.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\WINDOWS\system32\rundll32.exe C:\Program Files\Microsoft Windows OneCare Live\WinSSUI.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\SoftwareDistribution\Download\Install\dotnetfx35_x86.exe c:\0d90398480a9c1235d1416cea3ea\dotnetfx35setup.exe c:\ed0d4975f3a5baa4324b36c506f7\setup.exe C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe C:\WINDOWS\system32\msiexec.exe C:\Documents and Settings\Owner\Desktop\dds.scr ============== Pseudo HJT Report =============== uStart Page = hxxp://www.google.com/ uSearch Bar = uWindow Title = Windows Internet Explorer provided by Comcast mWindow Title = Windows Internet Explorer provided by Comcast BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll TB: {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - No File TB: {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File uRun: [EPSON Stylus CX7400 Series] c:\windows\system32\spool\drivers\w32x86\3\e_faticda.exe /fu "c:\windows\temp\E_S67.tmp" /EF "HKCU" uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background mRun: [IgfxTray] c:\windows\system32\igfxtray.exe mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe mRun: [AlcxMonitor] ALCXMNTR.EXE mRun: [AGRSMMSG] AGRSMMSG.exe mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe" mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe" mRun: [OneCareUI] "c:\program files\microsoft windows onecare live\winssnotify.exe" mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe" IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000 IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} - hxxp://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/C/0/C/C0CBBA88-A6F2-48D9-9B0E-1719D1177202/LegitCheckControl.cab DPF: {200B3EE9-7242-4EFD-B1E4-D97EE825BA53} - hxxp://h20270.www2.hp.com/ediags/gmn/install/hpobjinstaller_gmn.cab DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} - hxxp://www1.snapfish.com/SnapfishActivia.cab DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} - hxxp://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase5483.cab DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1166490846906 DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab DPF: {AB86CE53-AC9F-449F-9399-D8ABCA09EC09} - hxxps://h17000.www1.hp.com/ewfrf-JAVA/Secure/HPGetDownloadManager.ocx DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab TCP: {29B15F6F-4BAF-4843-B0D2-F23A94265554} = 66.174.92.14 66.174.95.44 Notify: igfxcui - igfxsrvc.dll ============= SERVICES / DRIVERS =============== R1 podmenadrv;podmenadrv;c:\program files\podmena\podmena.sys [2009-6-9 9472] R2 OcHealthMon;Windows Live OneCare Health Monitor;c:\program files\microsoft windows onecare live\OcHealthMon.exe [2009-3-22 24936] R2 podmena;podmena;c:\windows\system32\svchost.exe -k podmena [2004-8-4 14336] R3 PTDUBus;PANTECH UM175 Composite Device Driver ;c:\windows\system32\drivers\PTDUBus.sys [2008-9-8 29824] R3 PTDUMdm;PANTECH UM175 Drivers;c:\windows\system32\drivers\PTDUMdm.sys [2008-9-8 41344] R3 PTDUVsp;PANTECH UM175 Diagnostic Port;c:\windows\system32\drivers\PTDUVsp.sys [2008-9-8 39936] R3 PTDUWWAN;PANTECH UM175 WWAN Driver;c:\windows\system32\drivers\PTDUWWAN.sys [2008-9-8 59776] S3 PTDMBus;PANTECH USB Modem Composite Device Driver ;c:\windows\system32\drivers\PTDMBus.sys [2008-7-20 29952] S3 PTDMMdm;PANTECH USB Modem Drivers ;c:\windows\system32\drivers\PTDMMdm.sys [2008-7-20 41856] S3 PTDMVsp;PANTECH USB Modem Serial Port ;c:\windows\system32\drivers\PTDMVsp.sys [2008-7-20 39936] S3 PTDMWWAN;PANTECH USB Modem WWAN Driver;c:\windows\system32\drivers\PTDMWWAN.sys [2008-7-20 59520] =============== Created Last 30 ================ 2009-06-10 11:18 <DIR> --d----- C:\ed0d4975f3a5baa4324b36c506f7 2009-06-10 11:18 <DIR> --d----- C:\0d90398480a9c1235d1416cea3ea 2009-06-09 11:23 91,328 a------- c:\windows\system32\drivers\msfwdrv.sys 2009-06-09 11:23 116,416 a------- c:\windows\system32\drivers\msfwhlpr.sys 2009-06-09 11:22 53,168 a------- c:\windows\system32\drivers\MpFilter.sys 2009-06-09 11:03 <DIR> --d----- c:\program files\Microsoft Windows OneCare Live 2009-06-09 10:45 2,146 ----h--- c:\windows\f5087.dat 2009-06-09 10:41 <DIR> --dsh--- c:\documents and settings\owner\IECompatCache 2009-06-09 10:40 <DIR> --dsh--- c:\documents and settings\owner\PrivacIE 2009-06-09 10:39 <DIR> --dsh--- c:\documents and settings\owner\IETldCache 2009-06-09 10:38 <DIR> --d----- c:\windows\ie8updates 2009-06-09 10:37 102,912 -c------ c:\windows\system32\dllcache\iecompat.dll 2009-06-09 10:35 <DIR> -cd-h--- c:\windows\ie8 2009-06-09 09:39 1 a------- c:\windows\dk39fi4fe.dat 2009-06-09 08:46 <DIR> --d----- c:\program files\podmena 2009-06-09 08:46 1 a------- c:\windows\9g2234wesdf3dfgjf23 2009-06-09 08:46 2 ----h--- c:\windows\ro122458.dat 2009-06-09 08:46 2 ----h--- c:\windows\ro122390.dat 2009-06-09 08:46 1 ----h--- c:\windows\msmark2.dat 2009-06-09 08:46 1 ----h--- c:\windows\f23567.dat 2009-06-09 08:46 2 ----h--- c:\windows\ro122366.dat 2009-05-20 19:53 <DIR> --d----- c:\program files\Microsoft ==================== Find3M ==================== 2009-05-21 11:33 410,984 a------- c:\windows\system32\deploytk.dll 2006-12-18 18:51 1,187,360 ac------ c:\program files\sp26761.exe ============= FINISH: 11:20:42.29 ===============
Attached File(s)
|
|
|
|
seanrisatti my search engines queries get sent to I-X find sites Jun 10 2009, 12:30 PM
thcbytes Hi and welcome to the HijackThis Logs and Virus/... Jun 10 2009, 01:24 PM
seanrisatti Logfile of random's system information tool 1.... Jun 10 2009, 02:07 PM
thcbytes Hi again,
Your infection prevented part of the dow... Jun 10 2009, 02:22 PM
seanrisatti Thanks so much for your help!
OTL logfile cr... Jun 10 2009, 06:36 PM
thcbytes Let's begin,
:exclame: P2P Warning :exclame:... Jun 10 2009, 07:21 PM
seanrisatti everything seems to be working well now- thank you... Jun 11 2009, 09:29 AM
thcbytes Hi,
I need to take a look at those logs!
Altho... Jun 11 2009, 09:51 AM
thcbytes Hello again,
Are you still there?
I need to take a... Jun 14 2009, 06:45 PM
kahdah Due to lack of feedback, this topic has been close... Jun 19 2009, 07:56 AM![]() ![]() |
| Lo-Fi Version | Time is now: 21st November 2009 - 03:46 AM |