Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Can't open access control editor


  • Please log in to reply
12 replies to this topic

#1 RaygunShaun

RaygunShaun

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:10:32 AM

Posted 17 April 2010 - 08:01 PM

Whenever I try to change the security settings on anything in my C: drive, I get "Can't open access control editor. The system cannot find the file specified." I'm trying to install a program, and I apparently do not have permission to save to the Program Files folder.

The problem started shortly after I finally got rid of the major Antispyware Soft virus. In the process, I deleted a rundll.exe file. I'm almost positive this had something to do with it.

I am using Windows Vista Home Premium, Version 6.0.

EDIT: Moved from Vista to Am I Infected forum, more appropriate ~ Hamluis.

Edited by hamluis, 18 April 2010 - 12:46 PM.


BC AdBot (Login to Remove)

 


#2 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:02:32 PM

Posted 18 April 2010 - 09:01 AM

Start > Run > type in cmd

In the black box that comes up type in the following

Run chkdsk /r and see if it fixes it.

Edited by cryptodan, 18 April 2010 - 09:02 AM.


#3 RaygunShaun

RaygunShaun
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:10:32 AM

Posted 18 April 2010 - 12:02 PM

"The type of the file system is NTFS.
Cannot lock current drive.

Chkdsk cannot run because the volume is in use by another process.
Would you like to schedule this volume to be checked the next time the system restarts?"

#4 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:02:32 PM

Posted 18 April 2010 - 12:04 PM

Type in yes. Then reboot.

Edited by cryptodan, 18 April 2010 - 12:05 PM.


#5 RaygunShaun

RaygunShaun
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:10:32 AM

Posted 18 April 2010 - 12:31 PM

Still the same.

#6 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:02:32 PM

Posted 18 April 2010 - 12:34 PM

Are you sure you are clean?

#7 RaygunShaun

RaygunShaun
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:10:32 AM

Posted 18 April 2010 - 12:36 PM

I'm positive.

#8 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:02:32 PM

Posted 18 April 2010 - 12:40 PM

Do you have any previous logs from when you were infected:

If not then I would recommend running the following:

http://www.superantispyware.com

http://www.malwarebytes.org/mbam.php

Post the results here.

#9 RaygunShaun

RaygunShaun
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:10:32 AM

Posted 18 April 2010 - 02:03 PM

Apparently, I did not completely get rid of the virus. I just stopped its pop-ups and other irritations.

I'm currently running scans with MalwareBytes and SAS.

#10 RaygunShaun

RaygunShaun
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:10:32 AM

Posted 18 April 2010 - 03:43 PM

SAS log

MalwareBytes detected nothing.

#11 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:02:32 PM

Posted 18 April 2010 - 04:45 PM

I would just copy and paste that information into the post.

I would now run - http://www.gmer.net/ - root kit detector.

#12 RaygunShaun

RaygunShaun
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:10:32 AM

Posted 18 April 2010 - 05:55 PM

GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-04-18 17:54:18
Windows 6.0.6002 Service Pack 2
Running: gmer.exe; Driver: C:\Users\Family\AppData\Local\Temp\kxryipod.sys


---- System - GMER 1.0.15 ----

SSDT 86AE4AF8 ZwAlertResumeThread
SSDT 86AE49F8 ZwAlertThread
SSDT 86BA19A0 ZwAllocateVirtualMemory
SSDT 86A75850 ZwAlpcConnectPort
SSDT 86BA7FC0 ZwCreateMutant
SSDT 86BA1B30 ZwCreateThread
SSDT 86A7CC10 ZwDebugActiveProcess
SSDT 86B2A9E8 ZwFreeVirtualMemory
SSDT 86A66DD0 ZwImpersonateAnonymousToken
SSDT 86BA6A00 ZwImpersonateThread
SSDT 86B2A8E8 ZwMapViewOfSection
SSDT 869AD8F8 ZwOpenEvent
SSDT 86BA1A70 ZwOpenProcessToken
SSDT 86A66F48 ZwOpenSection
SSDT 86B2A628 ZwOpenThreadToken
SSDT 86588070 ZwResumeThread
SSDT 86B2A548 ZwSetContextThread
SSDT 86B2A718 ZwSetInformationProcess
SSDT 86B2A458 ZwSetInformationThread
SSDT 86586588 ZwSuspendProcess
SSDT 86B2A298 ZwSuspendThread
SSDT \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS ZwTerminateProcess [0x8FD5F320]
SSDT 86B2A378 ZwTerminateThread
SSDT 86B2A808 ZwUnmapViewOfSection
SSDT 86B2AAD8 ZwWriteVirtualMemory

---- Kernel code sections - GMER 1.0.15 ----

.text ntkrnlpa.exe!KeSetEvent + 11D 820B8880 8 Bytes [F8, 4A, AE, 86, F8, 49, AE, ...]
.text ntkrnlpa.exe!KeSetEvent + 131 820B8894 4 Bytes [A0, 19, BA, 86]
.text ntkrnlpa.exe!KeSetEvent + 13D 820B88A0 4 Bytes [50, 58, A7, 86]
.text ntkrnlpa.exe!KeSetEvent + 1F5 820B8958 4 Bytes [C0, 7F, BA, 86] {SAR BYTE [EDI-0x46], 0x86}
.text ntkrnlpa.exe!KeSetEvent + 221 820B8984 4 Bytes [30, 1B, BA, 86]
.text ...

---- User code sections - GMER 1.0.15 ----

.text C:\Program Files\Internet Explorer\iexplore.exe[1164] kernel32.dll!DuplicateConsoleHandle + 196 76AD9104 7 Bytes JMP 05EA0034
.text C:\Program Files\Internet Explorer\iexplore.exe[1164] USER32.dll!CreateWindowExW 767E1305 5 Bytes JMP 6DCBDAC4 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[1164] USER32.dll!DialogBoxParamW 768010B0 5 Bytes JMP 6DBE5505 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[1164] USER32.dll!DialogBoxIndirectParamW 76802EF5 5 Bytes JMP 6DDB473F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[1164] USER32.dll!DialogBoxParamA 76818152 5 Bytes JMP 6DDB46DC C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[1164] USER32.dll!DialogBoxIndirectParamA 7681847D 5 Bytes JMP 6DDB47A2 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[1164] USER32.dll!MessageBoxIndirectA 7682D4D9 5 Bytes JMP 6DDB4671 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[1164] USER32.dll!MessageBoxIndirectW 7682D5D3 5 Bytes JMP 6DDB4606 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[1164] USER32.dll!MessageBoxExA 7682D639 5 Bytes JMP 6DDB45A4 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[1164] USER32.dll!MessageBoxExW 7682D65D 5 Bytes JMP 6DDB4542 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[1164] ole32.dll!OleLoadFromStream 77011E12 5 Bytes JMP 6DDB4AA7 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[1164] ole32.dll!CoGetClassObject 7702FABC 5 Bytes JMP 05EA013F
.text C:\Program Files\Internet Explorer\iexplore.exe[1164] ole32.dll!CoCreateInstanceEx 77049EE9 5 Bytes JMP 05EA00B8
.text C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[4036] kernel32.dll!SetUnhandledExceptionFilter 76ADA84F 5 Bytes JMP 5F7A5335 C:\Program Files\Common Files\Microsoft Shared\office12\mso.dll (2007 Microsoft Office component/Microsoft Corporation)

---- User IAT/EAT - GMER 1.0.15 ----

IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [6113A40D] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [6113A33F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [61139C3F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [6113A37F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [6113A40D] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [6113A33F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [6113A37F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [61139C3F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\USER32.dll [GDI32.dll!GetStockObject] [6113909F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6113A37F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [6113A40D] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6113A33F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [61139C3F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHLWAPI.dll [GDI32.dll!GetStockObject] [6113909F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHLWAPI.dll [USER32.dll!GetSysColor] [61138FE2] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHLWAPI.dll [USER32.dll!DefWindowProcW] [61139856] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHLWAPI.dll [USER32.dll!DefWindowProcA] [61139856] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [6113A40D] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [61139C3F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6113A37F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6113A33F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHELL32.dll [GDI32.dll!GetStockObject] [6113909F] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [61138FA4] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [61138F66] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetSysColorBrush] [611390A5] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHELL32.dll [USER32.dll!GetSysColor] [61138FE2] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHELL32.dll [USER32.dll!DefWindowProcW] [61139856] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe[4388] @ C:\Windows\system32\SHELL32.dll [USER32.dll!AnimateWindow] [611390DD] C:\Program Files\Yahoo!\Messenger\yui.dll
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdiplusShutdown] [74B07817] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipCloneImage] [74B5A86D] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipDrawImageRectI] [74B0BB22] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipSetInterpolationMode] [74AFF695] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdiplusStartup] [74B075E9] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipCreateFromHDC] [74AFE7CA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipCreateBitmapFromStreamICM] [74B38395] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipCreateBitmapFromStream] [74B0DA60] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipGetImageHeight] [74AFFFFA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipGetImageWidth] [74AFFF61] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipDisposeImage] [74AF71CF] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipLoadImageFromFileICM] [74B8CAE2] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipLoadImageFromFile] [74B2C8D8] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipDeleteGraphics] [74AFD968] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipFree] [74AF6853] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipAlloc] [74AF687E] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\explorer.exe[5028] @ C:\Windows\explorer.exe [gdiplus.dll!GdipSetCompositingMode] [74B02AD1] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)

---- Devices - GMER 1.0.15 ----

AttachedDevice \Driver\tdx \Device\Tcp SYMTDI.SYS (Network Dispatch Driver/Symantec Corporation)
AttachedDevice \Driver\tdx \Device\Udp SYMTDI.SYS (Network Dispatch Driver/Symantec Corporation)
AttachedDevice \FileSystem\fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)

---- EOF - GMER 1.0.15 ----

#13 RaygunShaun

RaygunShaun
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:10:32 AM

Posted 19 April 2010 - 04:26 PM

-




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users