Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Router hacked?


  • Please log in to reply
No replies to this topic

#1 toxicpuke

toxicpuke

  • Members
  • 32 posts
  • OFFLINE
  •  
  • Local time:01:16 PM

Posted 20 January 2011 - 07:28 PM

Hello. I recently had a redirect problem and just reloaded windows. That worked fine for about two days, during that time i got the most up to date firewall and maleware bytes. Shortly after the redirects started to come back so i did some scans and blocked them using my firewall. However thats isnt even completely working and nothing i scan is finding any thing. Could my router be hacked? It always redirects me trough google antics.


DDS (Ver_10-12-12.02) - NTFSx86
Run by Jesse at 19:30:59.92 on Thu 01/20/2011
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3326.2364 [GMT -5:00]

AV: Microsoft Security Essentials *Enabled/Updated* {BCF43643-A118-4432-AEDE-D861FCBCFCDF}
FW: Sygate Personal Firewall *Enabled*

============== Running Processes ===============

C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
c:\Program Files\Microsoft Security Essentials\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\Program Files\Sygate\SPF\smc.exe
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\WINDOWS\Mixer.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\ASUS\Ai Booster\OverClk.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Steam\Steam.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Jesse\Local Settings\Temporary Internet Files\Content.IE5\IJ3RTMJU\dds[1].scr

============== Pseudo HJT Report ===============

BHO: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Steam] "c:\program files\steam\Steam.exe" -silent
uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
mRun: [SoundMAXPnP] c:\program files\analog devices\soundmax\SMax4PNP.exe
mRun: [SoundMAX] "c:\program files\analog devices\soundmax\Smax4.exe" /tray
mRun: [C-Media Mixer] Mixer.exe /startup
mRun: [MSSE] "c:\program files\microsoft security essentials\msseces.exe" -hide -runkey
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [Launch Ai Booster] c:\program files\asus\ai booster\OverClk.exe 1
mRun: [SmcService] c:\progra~1\sygate\spf\smc.exe -startgui
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\window~1.lnk - c:\program files\windows desktop search\WindowsSearch.exe
IE: E&xport to Microsoft Excel - c:\progra~1\micros~4\office11\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~4\office11\REFIEBAR.DLL
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1293515003843
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1293514996500
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
Notify: AtiExtEvent - Ati2evxx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Windows Desktop Search Namespace Manager: {56f9679e-7826-4c84-81f3-532071a8bcc5} - c:\program files\windows desktop search\MSNLNamespaceMgr.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL

============= SERVICES / DRIVERS ===============

R1 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2010-3-25 151216]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2010-2-17 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2010-5-10 67656]
R2 AsusGIO;AsusGIO;c:\program files\asus\ai booster\Asusgio.sys [2010-12-29 52808]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdXP3.sys [2010-12-28 101904]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [2004-8-4 14336]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
S4 vsdatant;vsdatant; [x]

=============== Created Last 30 ================

2011-01-20 13:58:53 26368 -c--a-w- c:\windows\system32\dllcache\usbstor.sys
2011-01-20 13:48:24 6273872 ----a-w- c:\docume~1\alluse~1\applic~1\microsoft\microsoft antimalware\definition updates\{b5482896-6168-45dd-8041-b5d24a91bdaf}\mpengine.dll
2011-01-12 18:45:27 -------- d-----w- c:\docume~1\jesse\applic~1\Windows Search
2011-01-11 23:37:32 -------- d-----w- c:\program files\StarCraft II
2011-01-11 23:37:32 -------- d-----w- c:\program files\common files\Blizzard Entertainment
2011-01-11 23:37:32 -------- d-----w- c:\docume~1\alluse~1\applic~1\Blizzard Entertainment
2011-01-09 23:13:25 -------- d-----w- c:\docume~1\jesse\applic~1\FrostWire
2011-01-08 17:57:05 -------- d-----w- c:\docume~1\jesse\locals~1\applic~1\AskToolbar
2011-01-08 04:35:17 -------- d-----w- c:\program files\Ask.com
2011-01-08 04:35:05 -------- d-----w- c:\program files\FrostWire
2011-01-05 22:30:07 28552 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\mdippr.dll
2011-01-05 22:30:06 28040 ----a-w- c:\windows\system32\mdimon.dll
2011-01-05 22:29:01 -------- d-----w- c:\program files\common files\L&H
2011-01-05 22:28:47 -------- d-----w- c:\program files\Microsoft ActiveSync
2011-01-05 22:27:40 -------- d-----w- c:\windows\SHELLNEW
2010-12-29 21:02:07 -------- d-----w- c:\docume~1\jesse\locals~1\applic~1\My Games
2010-12-29 21:00:58 2297552 ----a-w- c:\windows\system32\d3dx9_26.dll
2010-12-29 21:00:39 -------- d-----w- c:\windows\Logs
2010-12-29 20:53:28 14568 ----a-w- c:\windows\system32\drivers\wg6n.sys
2010-12-29 20:53:28 14568 ----a-w- c:\windows\system32\drivers\wg5n.sys
2010-12-29 20:53:27 14568 ----a-w- c:\windows\system32\drivers\wg4n.sys
2010-12-29 20:53:27 14568 ----a-w- c:\windows\system32\drivers\wg3n.sys
2010-12-29 20:53:26 60496 ----a-w- c:\windows\system32\drivers\Teefer.sys
2010-12-29 20:53:26 21075 ----a-w- c:\windows\system32\drivers\wpsdrvnt.sys
2010-12-29 20:53:20 83096 ----a-w- c:\windows\system32\SSSensor.dll
2010-12-29 20:53:07 -------- d-----w- c:\program files\Sygate
2010-12-29 20:35:17 6273872 ----a-w- c:\docume~1\alluse~1\applic~1\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2010-12-29 05:14:28 -------- d-----w- c:\program files\ASUS
2010-12-29 05:13:40 -------- d-----w- c:\program files\common files\ATI Technologies
2010-12-29 04:55:52 -------- d-----w- c:\docume~1\jesse\applic~1\Malwarebytes
2010-12-29 04:55:47 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-12-29 04:55:46 -------- d-----w- c:\docume~1\alluse~1\applic~1\Malwarebytes
2010-12-29 04:55:42 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-12-29 04:55:42 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-12-29 04:52:24 -------- d-----w- c:\docume~1\jesse\applic~1\SUPERAntiSpyware.com
2010-12-29 04:52:24 -------- d-----w- c:\docume~1\alluse~1\applic~1\SUPERAntiSpyware.com
2010-12-29 04:50:35 -------- d-----w- c:\program files\SUPERAntiSpyware
2010-12-28 22:56:34 -------- d-----w- c:\program files\Steam
2010-12-28 22:15:42 73728 ----a-w- c:\windows\system32\javacpl.cpl
2010-12-28 22:15:42 472808 ----a-w- c:\windows\system32\deployJava1.dll
2010-12-28 20:29:10 -------- d-----w- c:\docume~1\jesse\locals~1\applic~1\ATI
2010-12-28 20:08:25 -------- d-----w- c:\windows\system32\winrm
2010-12-28 20:08:21 -------- dc-h--w- c:\windows\$968930Uinstall_KB968930$
2010-12-28 19:51:34 101904 ----a-w- c:\windows\system32\drivers\AtihdXP3.sys
2010-12-28 19:51:24 0 ----a-w- c:\windows\ativpsrm.bin
2010-12-28 19:41:28 222080 ------w- c:\windows\system32\MpSigStub.exe
2010-12-28 19:34:28 -------- d-----w- c:\program files\common files\Windows Live
2010-12-28 19:33:03 -------- d-----w- c:\program files\Microsoft Security Essentials
2010-12-28 19:27:48 -------- d-----w- c:\windows\system32\XPSViewer
2010-12-28 19:26:50 89088 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
2010-12-28 19:26:44 89088 -c----w- c:\windows\system32\dllcache\filterpipelineprintproc.dll
2010-12-28 19:26:44 597504 -c----w- c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2010-12-28 19:26:44 597504 ------w- c:\windows\system32\spool\prtprocs\w32x86\printfilterpipelinesvc.exe
2010-12-28 19:26:44 117760 ------w- c:\windows\system32\prntvpt.dll
2010-12-28 19:26:43 575488 -c----w- c:\windows\system32\dllcache\xpsshhdr.dll
2010-12-28 19:26:43 575488 ------w- c:\windows\system32\xpsshhdr.dll
2010-12-28 19:26:43 1676288 -c----w- c:\windows\system32\dllcache\xpssvcs.dll
2010-12-28 19:26:43 1676288 ------w- c:\windows\system32\xpssvcs.dll
2010-12-28 19:26:43 -------- d-----w- C:\f7927f927bc35d9946b55fe218847630
2010-12-28 19:24:48 -------- d-----w- c:\docume~1\jesse\locals~1\applic~1\Identities
2010-12-28 19:24:45 -------- d-----w- c:\docume~1\jesse\applic~1\Windows Desktop Search
2010-12-28 19:24:25 -------- d-----w- c:\windows\system32\GroupPolicy
2010-12-28 19:24:25 -------- d-----w- c:\program files\Windows Desktop Search
2010-12-28 19:23:46 98304 -c----w- c:\windows\system32\dllcache\nlhtml.dll
2010-12-28 19:23:46 29696 -c----w- c:\windows\system32\dllcache\mimefilt.dll
2010-12-28 19:23:46 192000 -c----w- c:\windows\system32\dllcache\offfilt.dll
2010-12-28 19:22:53 -------- d-----w- c:\program files\Windows Media Connect 2
2010-12-28 19:22:00 -------- d-----w- c:\windows\system32\LogFiles
2010-12-28 19:21:38 -------- d-----w- c:\program files\HP Wireless Keyboard
2010-12-28 19:21:31 10624 -c--a-w- c:\windows\system32\dllcache\gameenum.sys
2010-12-28 19:21:31 10624 ----a-w- c:\windows\system32\drivers\gameenum.sys
2010-12-28 19:21:10 7680 -c----w- c:\windows\system32\dllcache\iecompat.dll
2010-12-28 18:56:59 40960 -c----w- c:\windows\system32\dllcache\ndproxy.sys
2010-12-28 18:56:28 45568 -c----w- c:\windows\system32\dllcache\wab.exe
2010-12-28 18:54:52 974848 -c----w- c:\windows\system32\dllcache\mfc42.dll
2010-12-28 18:54:52 953856 -c----w- c:\windows\system32\dllcache\mfc40u.dll
2010-12-28 18:53:46 617472 -c----w- c:\windows\system32\dllcache\comctl32.dll
2010-12-28 18:29:41 -------- d-----w- c:\windows\system32\scripting
2010-12-28 18:29:41 -------- d-----w- c:\windows\system32\en
2010-12-28 18:29:41 -------- d-----w- c:\windows\system32\bits
2010-12-28 18:29:41 -------- d-----w- c:\windows\l2schemas
2010-12-28 18:26:54 -------- d-----w- c:\windows\network diagnostic
2010-12-28 18:25:38 -------- d-----w- c:\windows\system32\ReinstallBackups
2010-12-28 10:39:01 -------- d-sh--w- c:\documents and settings\jesse\PrivacIE
2010-12-28 10:37:53 274288 ----a-w- c:\windows\system32\mucltui.dll
2010-12-28 10:37:53 16736 ----a-w- c:\windows\system32\mucltui.dll.mui
2010-12-28 08:16:22 -------- d-sh--w- c:\documents and settings\jesse\IETldCache
2010-12-28 07:35:52 -------- d-----w- c:\windows\ie8updates
2010-12-28 07:35:29 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2010-12-28 07:35:29 602112 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-12-28 07:35:29 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-12-28 07:35:29 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-12-28 07:35:29 1991680 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-12-28 07:35:29 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-12-28 07:35:29 11080704 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-12-28 07:34:29 -------- dc-h--w- c:\windows\ie8
2010-12-28 06:10:47 -------- d-----w- c:\windows\ServicePackFiles
2010-12-28 06:08:22 -------- d-----w- c:\docume~1\jesse\locals~1\applic~1\ApplicationHistory
2010-12-28 06:02:38 357248 -c----w- c:\windows\system32\dllcache\srv.sys
2010-12-28 06:02:18 81920 -c----w- c:\windows\system32\dllcache\fontsub.dll
2010-12-28 06:02:18 119808 -c----w- c:\windows\system32\dllcache\t2embed.dll
2010-12-28 06:02:14 455680 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2010-12-28 06:02:13 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2010-12-28 06:00:22 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2010-12-28 05:55:17 730112 -c----w- c:\windows\system32\dllcache\lsasrv.dll
2010-12-28 05:55:17 714752 -c----w- c:\windows\system32\dllcache\ntdll.dll
2010-12-28 05:55:17 617472 -c----w- c:\windows\system32\dllcache\advapi32.dll
2010-12-28 05:55:17 473600 -c----w- c:\windows\system32\dllcache\fastprox.dll
2010-12-28 05:55:17 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll
2010-12-28 05:55:17 401408 -c----w- c:\windows\system32\dllcache\rpcss.dll
2010-12-28 05:55:17 284160 -c----w- c:\windows\system32\dllcache\pdh.dll
2010-12-28 05:55:17 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe
2010-12-28 05:55:17 110592 -c----w- c:\windows\system32\dllcache\services.exe
2010-12-28 05:55:16 2189952 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2010-12-28 05:55:16 2146304 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2010-12-28 05:55:16 2024448 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2010-12-28 05:53:26 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2010-12-28 05:52:32 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-12-28 05:52:32 272128 ------w- c:\windows\system32\drivers\bthport.sys
2010-12-28 05:52:28 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2010-12-28 05:51:25 5120 ----a-w- c:\windows\system32\xpsp4res.dll
2010-12-28 05:51:25 218112 -c----w- c:\windows\system32\dllcache\wordpad.exe
2010-12-28 05:47:26 -------- d-----w- c:\windows\system32\PreInstall
2010-12-28 05:47:25 26144 ----a-w- c:\windows\system32\spupdsvc.exe
2010-12-28 05:47:24 -------- d--h--w- c:\windows\$hf_mig$
2010-12-28 05:43:49 21728 ----a-w- c:\windows\system32\wucltui.dll.mui
2010-12-28 05:43:49 17632 ----a-w- c:\windows\system32\wuaueng.dll.mui
2010-12-28 05:43:49 15072 ----a-w- c:\windows\system32\wuaucpl.cpl.mui
2010-12-28 05:43:49 -------- d-----w- c:\windows\system32\SoftwareDistribution
2010-12-28 05:43:48 15064 ----a-w- c:\windows\system32\wuapi.dll.mui
2010-12-28 05:42:36 -------- d-sh--w- c:\documents and settings\jesse\UserData
2010-12-28 05:37:15 252544 ----a-w- c:\windows\system32\PROUnstl.exe
2010-12-28 05:33:02 212992 ----a-w- c:\program files\common files\installshield\engine\6\intel 32\ILog.dll
2010-12-28 05:31:21 -------- d-----w- c:\windows\Downloaded Installations
2010-12-28 05:30:25 -------- d-----w- c:\program files\TitanTV
2010-12-28 05:30:00 -------- d-----w- c:\windows\system32\windows media
2010-12-28 05:29:54 -------- d-----w- c:\windows\RegisteredPackages
2010-12-28 05:29:53 -------- d--h--w- c:\windows\msdownld.tmp
2010-12-28 05:29:52 -------- d-----w- c:\program files\Windows Media Components
2010-12-28 05:29:23 -------- d-----w- C:\ATI
2010-12-28 05:27:32 -------- d-----w- c:\windows\system32\URTTemp
2010-12-28 05:04:41 -------- d-s---w- c:\windows\system32\Microsoft

==================== Find3M ====================

2010-11-26 03:57:20 16748544 ----a-w- c:\windows\system32\atioglxx.dll
2010-11-26 03:23:36 471040 ----a-w- c:\windows\system32\atiok3x2.dll
2010-11-26 03:12:42 311296 ----a-w- c:\windows\system32\atiiiexx.dll
2010-11-26 03:07:34 57344 ----a-w- c:\windows\system32\aticalrt.dll
2010-11-26 03:07:24 53248 ----a-w- c:\windows\system32\aticalcl.dll
2010-11-26 03:06:14 4489216 ----a-w- c:\windows\system32\aticaldd.dll
2010-11-26 02:55:42 462848 ----a-w- c:\windows\system32\ATIDEMGX.dll
2010-11-26 02:54:36 302080 ----a-w- c:\windows\system32\ati2dvag.dll
2010-11-26 02:48:02 3984864 ----a-w- c:\windows\system32\ati3duag.dll
2010-11-26 02:34:50 212992 ----a-w- c:\windows\system32\atipdlxx.dll
2010-11-26 02:34:38 155648 ----a-w- c:\windows\system32\Oemdspif.dll
2010-11-26 02:34:28 26112 ----a-w- c:\windows\system32\Ati2mdxx.exe
2010-11-26 02:34:22 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2010-11-26 02:34:10 159744 ----a-w- c:\windows\system32\ati2evxx.dll
2010-11-26 02:32:42 614400 ----a-w- c:\windows\system32\ati2evxx.exe
2010-11-26 02:32:24 2669696 ----a-w- c:\windows\system32\ativvaxx.dll
2010-11-26 02:31:16 53248 ----a-w- c:\windows\system32\ATIDDC.DLL
2010-11-26 02:30:30 143360 ----a-w- c:\windows\system32\atiapfxx.exe
2010-11-26 02:26:38 651264 ----a-w- c:\windows\system32\atikvmag.dll
2010-11-26 02:24:46 196608 ----a-w- c:\windows\system32\atiadlxx.dll
2010-11-26 02:24:22 17408 ----a-w- c:\windows\system32\atitvo32.dll
2010-11-26 02:18:16 765952 ----a-w- c:\windows\system32\ati2cqag.dll
2010-11-26 02:16:32 64512 ----a-w- c:\windows\system32\atimpc32.dll
2010-11-26 02:16:32 64512 ----a-w- c:\windows\system32\amdpcom32.dll
2010-11-18 18:12:44 81920 ----a-w- c:\windows\system32\isign32.dll
2010-11-09 14:52:35 249856 ----a-w- c:\windows\system32\odbc32.dll
2010-11-06 00:26:58 916480 ----a-w- c:\windows\system32\wininet.dll
2010-11-06 00:26:58 43520 ----a-w- c:\windows\system32\licmgr10.dll
2010-11-06 00:26:58 1469440 ------w- c:\windows\system32\inetcpl.cpl
2010-11-03 12:25:54 385024 ----a-w- c:\windows\system32\html.iec
2010-10-28 13:13:22 290048 ----a-w- c:\windows\system32\atmfd.dll
2010-10-26 13:25:00 1853312 ----a-w- c:\windows\system32\win32k.sys

============= FINISH: 19:32:44.54 ===============



Im not doing Gmer because it makes my computer freeze up or other bad things.

Edited by toxicpuke, 20 January 2011 - 07:50 PM.
Moved from Virus, Trojan, Spyware, and Malware Removal Logs ~BP


BC AdBot (Login to Remove)

 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users