Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Google redirect/ Win32/Olmarik.TDL4.trojan


  • This topic is locked This topic is locked
2 replies to this topic

#1 ancient3

ancient3

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:07:51 PM

Posted 09 October 2011 - 05:25 PM

Hi Guys...please help...

I had the windows system restore virus and got rid of it by using rkill and mbam, also had to use unhide.exe to get all my files to show.
(would at some point like to know how I can re-hide all the files that should be hidden)

Now when I run eset it detects the trojan in operaing memory but states can not remove.
I have ran tdss but it does not detect anything.
Also to mention combofix was run /I apologise in adavance but it was run before I read the rules...or I would not have.
Am running windows 7 pro 64bit.

Have ran DDS and here is the txt log:- ( have also attachted the attach file zipped )

.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 8.0.7601.17514
Run by Sunny at 22:59:07 on 2011-10-09
Microsoft Windows 7 Professional 6.1.7601.1.1252.44.1033.18.3933.2823 [GMT 1:00]
.
AV: ESET NOD32 Antivirus 4.0 *Disabled/Updated* {CB0F8167-5331-BA19-698E-64816B6801A5}
SP: ESET NOD32 Antivirus 4.0 *Disabled/Updated* {706E6083-750B-B597-533E-5FF310EF4B18}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
C:\Windows\system32\HPSIsvc.exe
C:\Windows\System32\rpcnetp.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files (x86)\TOSHIBA\Toshiba DetectAC Utility\DetectAC.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\WUDFHost.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\system32\REGSVR32.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.co.uk/
uInternet Settings,ProxyOverride = *.local
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File
TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
uRun: [KiesHelper] C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe /s
uRun: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [Toshiba DetectAC Utility] "C:\Program Files (x86)\TOSHIBA\Toshiba DetectAC Utility\DetectAC.exe"
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/3.0.1.0/GarminAxControl.CAB
DPF: {C1FDEE68-98D5-4F42-A4DD-D0BECF5077EB} - hxxp://tools.ebayimg.com/eps/wl/activex/eBay_Enhanced_Picture_Control_v1-0-31-0.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.2.1
TCP: Interfaces\{35806294-00CF-4644-8F6C-7C7305B10A68} : DhcpNameServer = 192.168.2.1
TCP: Interfaces\{35806294-00CF-4644-8F6C-7C7305B10A68}\2656C6B696E6E293464626 : DhcpNameServer = 192.168.2.1
TCP: Interfaces\{35806294-00CF-4644-8F6C-7C7305B10A68}\3375962756C6563737D2D4F64656D6D263564366 : DhcpNameServer = 192.168.1.1 192.168.1.1
TCP: Interfaces\{35806294-00CF-4644-8F6C-7C7305B10A68}\354716277616475623 : DhcpNameServer = 192.168.0.1
TCP: Interfaces\{35806294-00CF-4644-8F6C-7C7305B10A68}\35B4959353433433 : DhcpNameServer = 192.168.0.1
TCP: Interfaces\{35806294-00CF-4644-8F6C-7C7305B10A68}\3747162776164756 : DhcpNameServer = 192.168.2.1
TCP: Interfaces\{35806294-00CF-4644-8F6C-7C7305B10A68}\D4F62696C656023547162776164756 : DhcpNameServer = 192.168.1.1 192.168.1.1
TCP: Interfaces\{40884757-3B92-4563-9114-A06C43490489} : DhcpNameServer = 192.168.1.1 192.168.1.1
TCP: Interfaces\{7B4900C4-25F9-4D47-AE23-1B37EBC8CE83} : DhcpNameServer = 192.168.2.1
mASetup: {2D46B6DC-2207-486B-B523-A557E6D54B47} - C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File
TB-X64: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun-x64: [Toshiba DetectAC Utility] "C:\Program Files (x86)\TOSHIBA\Toshiba DetectAC Utility\DetectAC.exe"
mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
.
============= SERVICES / DRIVERS ===============
.
R0 Thpevm;TOSHIBA HDD Protection - Shock Sensor Driver;C:\Windows\system32\DRIVERS\Thpevm.SYS --> C:\Windows\system32\DRIVERS\Thpevm.SYS [?]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
R2 ekrn;ESET Service;C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2009-9-11 735960]
R2 epfwwfpr;epfwwfpr;C:\Windows\system32\DRIVERS\epfwwfpr.sys --> C:\Windows\system32\DRIVERS\epfwwfpr.sys [?]
R2 HPSIService;HP SI Service;C:\Windows\system32\HPSIsvc.exe --> C:\Windows\system32\HPSIsvc.exe [?]
R2 OS Selector;Acronis OS Selector activator;C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe [2010-9-30 2139536]
R3 IntcHdmiAddService;Intel® High Definition Audio HDMI;C:\Windows\system32\drivers\IntcHdmi.sys --> C:\Windows\system32\drivers\IntcHdmi.sys [?]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\system32\DRIVERS\L1C62x64.sys --> C:\Windows\system32\DRIVERS\L1C62x64.sys [?]
R3 PGEffect;Pangu effect driver;C:\Windows\system32\DRIVERS\pgeffect.sys --> C:\Windows\system32\DRIVERS\pgeffect.sys [?]
R3 QIOMem;Generic IO & Memory Access;C:\Windows\system32\DRIVERS\QIOMem.sys --> C:\Windows\system32\DRIVERS\QIOMem.sys [?]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\system32\Drivers\RtsUStor.sys --> C:\Windows\system32\Drivers\RtsUStor.sys [?]
R3 rtl8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver;C:\Windows\system32\DRIVERS\rtl8192se.sys --> C:\Windows\system32\DRIVERS\rtl8192se.sys [?]
R3 seehcri;Sony Ericsson seehcri Device Driver;C:\Windows\system32\DRIVERS\seehcri.sys --> C:\Windows\system32\DRIVERS\seehcri.sys [?]
RUnknown rpcnetp;rpcnetp; [x]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-8-21 136176]
S3 ewusbnet;HUAWEI USB-NDIS miniport;C:\Windows\system32\DRIVERS\ewusbnet.sys --> C:\Windows\system32\DRIVERS\ewusbnet.sys [?]
S3 ggflt;SEMC USB Flash Driver Filter;C:\Windows\system32\DRIVERS\ggflt.sys --> C:\Windows\system32\DRIVERS\ggflt.sys [?]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-8-21 136176]
S3 hwusbdev;Huawei DataCard USB PNP Device;C:\Windows\system32\DRIVERS\ewusbdev.sys --> C:\Windows\system32\DRIVERS\ewusbdev.sys [?]
S3 mvusbews;USB EWS Device;C:\Windows\system32\Drivers\mvusbews.sys --> C:\Windows\system32\Drivers\mvusbews.sys [?]
S3 Netaapl;Apple Mobile Device Ethernet Service;C:\Windows\system32\DRIVERS\netaapl64.sys --> C:\Windows\system32\DRIVERS\netaapl64.sys [?]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);C:\Windows\system32\DRIVERS\ssadbus.sys --> C:\Windows\system32\DRIVERS\ssadbus.sys [?]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);C:\Windows\system32\DRIVERS\ssadmdfl.sys --> C:\Windows\system32\DRIVERS\ssadmdfl.sys [?]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers;C:\Windows\system32\DRIVERS\ssadmdm.sys --> C:\Windows\system32\DRIVERS\ssadmdm.sys [?]
S3 StorSvc;Storage Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 20992]
S3 TMachInfo;TMachInfo;C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2010-2-20 51512]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]
.
=============== Created Last 30 ================
.
2011-10-09 19:41:28 17920 ----a-w- C:\Windows\SysWow64\rpcnetp.exe
2011-10-08 21:44:00 -------- d-----w- C:\ProgramData\Kaspersky Lab
2011-10-08 20:27:44 98816 ----a-w- C:\Windows\sed.exe
2011-10-08 20:27:44 518144 ----a-w- C:\Windows\SWREG.exe
2011-10-08 20:27:44 256000 ----a-w- C:\Windows\PEV.exe
2011-10-08 20:27:44 208896 ----a-w- C:\Windows\MBR.exe
2011-10-08 07:46:07 -------- d-----w- C:\Windows\System32\SPReview
2011-10-08 07:45:47 -------- d-----w- C:\Windows\System32\EventProviders
2011-10-07 23:17:02 48976 ----a-w- C:\Windows\System32\netfxperf.dll
2011-10-07 23:17:02 1942856 ----a-w- C:\Windows\System32\dfshim.dll
2011-10-07 23:14:59 982912 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2011-10-07 23:13:59 287744 ----a-w- C:\Program Files\Internet Explorer\jsprofilerui.dll
2011-10-07 23:12:59 98304 ----a-w- C:\Windows\SysWow64\nslookup.exe
2011-10-07 23:11:46 189952 ----a-w- C:\Windows\SysWow64\sqmapi.dll
2011-10-07 23:11:25 606208 ----a-w- C:\Windows\SysWow64\wbem\fastprox.dll
2011-10-07 23:11:25 363008 ----a-w- C:\Windows\SysWow64\wbemcomn.dll
2011-10-07 23:11:25 189952 ----a-w- C:\Program Files (x86)\Windows Portable Devices\sqmapi.dll
2011-10-07 23:08:26 244736 ----a-w- C:\Program Files\Windows Portable Devices\sqmapi.dll
2011-10-07 23:08:25 529408 ----a-w- C:\Windows\System32\wbemcomn.dll
2011-10-07 23:08:12 244736 ----a-w- C:\Windows\System32\sqmapi.dll
2011-10-07 22:38:12 1659776 ----a-w- C:\Windows\System32\drivers\ntfs.sys
2011-10-07 22:38:11 2565632 ----a-w- C:\Windows\System32\esent.dll
2011-10-07 22:38:11 1699328 ----a-w- C:\Windows\SysWow64\esent.dll
2011-10-07 22:38:10 166272 ----a-w- C:\Windows\System32\drivers\nvstor.sys
2011-10-07 22:38:09 148352 ----a-w- C:\Windows\System32\drivers\nvraid.sys
2011-10-07 22:38:09 107904 ----a-w- C:\Windows\System32\drivers\amdsata.sys
2011-10-07 22:38:07 96768 ----a-w- C:\Windows\System32\fsutil.exe
2011-10-07 22:38:07 74240 ----a-w- C:\Windows\SysWow64\fsutil.exe
2011-10-07 22:38:07 410496 ----a-w- C:\Windows\System32\drivers\iaStorV.sys
2011-10-07 22:38:07 27008 ----a-w- C:\Windows\System32\drivers\amdxata.sys
2011-10-07 22:38:07 189824 ----a-w- C:\Windows\System32\drivers\storport.sys
2011-10-07 22:37:48 52736 ----a-w- C:\Windows\System32\drivers\usbehci.sys
2011-10-07 22:37:47 343040 ----a-w- C:\Windows\System32\drivers\usbhub.sys
2011-10-07 22:37:47 325120 ----a-w- C:\Windows\System32\drivers\usbport.sys
2011-10-07 22:37:46 98816 ----a-w- C:\Windows\System32\drivers\usbccgp.sys
2011-10-07 22:37:46 7936 ----a-w- C:\Windows\System32\drivers\usbd.sys
2011-10-07 22:37:46 30720 ----a-w- C:\Windows\System32\drivers\usbuhci.sys
2011-10-07 22:37:46 25600 ----a-w- C:\Windows\System32\drivers\usbohci.sys
2011-10-07 21:14:44 142336 ----a-w- C:\Windows\System32\poqexec.exe
2011-10-07 21:12:48 1395712 ----a-w- C:\Windows\System32\mfc42.dll
2011-10-07 21:12:48 1359872 ----a-w- C:\Windows\System32\mfc42u.dll
2011-10-07 21:12:47 1137664 ----a-w- C:\Windows\SysWow64\mfc42.dll
2011-10-07 21:12:46 1164288 ----a-w- C:\Windows\SysWow64\mfc42u.dll
2011-10-07 21:12:34 613376 ----a-w- C:\Windows\System32\vbscript.dll
2011-10-07 21:12:33 428032 ----a-w- C:\Windows\SysWow64\vbscript.dll
2011-10-07 21:12:18 467456 ----a-w- C:\Windows\System32\drivers\srv.sys
2011-10-07 21:12:18 410112 ----a-w- C:\Windows\System32\drivers\srv2.sys
2011-10-07 21:12:18 168448 ----a-w- C:\Windows\System32\drivers\srvnet.sys
2011-10-07 21:08:31 404480 ----a-w- C:\Windows\System32\umpnpmgr.dll
2011-10-07 21:08:31 207872 ----a-w- C:\Windows\System32\cfgmgr32.dll
2011-10-07 21:08:31 145920 ----a-w- C:\Windows\SysWow64\cfgmgr32.dll
2011-10-07 21:08:30 64512 ----a-w- C:\Windows\SysWow64\devobj.dll
2011-10-07 21:08:30 44544 ----a-w- C:\Windows\SysWow64\devrtl.dll
2011-10-07 21:08:30 252928 ----a-w- C:\Windows\SysWow64\drvinst.exe
2011-10-07 21:04:10 976896 ----a-w- C:\Windows\System32\inetcomm.dll
2011-10-07 21:04:08 741376 ----a-w- C:\Windows\SysWow64\inetcomm.dll
2011-10-07 21:02:19 5561216 ----a-w- C:\Windows\System32\ntoskrnl.exe
2011-10-07 21:02:07 3912576 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2011-10-07 21:01:56 3967872 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2011-10-06 22:12:17 -------- d-----w- C:\Users\Sunny\AppData\Local\Secunia PSI
2011-10-06 22:12:08 -------- d-----w- C:\Program Files (x86)\Secunia
.
==================== Find3M ====================
.
2011-10-09 21:34:09 17920 ----a-w- C:\Windows\SysWow64\rpcnetp.dll
2011-10-09 19:41:28 17920 ----a-w- C:\Windows\System32\rpcnetp.exe
2011-10-09 19:36:41 44544 ----a-w- C:\Windows\SysWow64\agremove.exe
2011-10-08 07:55:11 175616 ----a-w- C:\Windows\System32\msclmd.dll
2011-10-08 07:55:11 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll
2011-09-28 20:06:39 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-08-29 09:48:39 525544 ----a-w- C:\Windows\System32\deployJava1.dll
2011-07-22 05:22:26 1638912 ----a-w- C:\Windows\System32\mshtml.tlb
2011-07-22 04:54:18 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2011-07-16 05:41:50 362496 ----a-w- C:\Windows\System32\wow64win.dll
2011-07-16 05:41:49 243200 ----a-w- C:\Windows\System32\wow64.dll
2011-07-16 05:41:49 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2011-07-16 05:39:10 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2011-07-16 05:37:12 421888 ----a-w- C:\Windows\System32\KernelBase.dll
2011-07-16 04:29:19 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2011-07-16 04:26:00 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2011-07-16 04:25:37 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2011-07-16 04:24:23 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2011-07-16 04:24:22 272384 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2011-07-16 02:21:44 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2011-07-16 02:21:41 2048 ----a-w- C:\Windows\SysWow64\user.exe
2011-07-16 02:17:19 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2011-07-16 02:17:19 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-16 02:17:19 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2011-07-16 02:17:19 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
.
============= FINISH: 23:06:23.89 ===============

Attached Files


Edited by ancient3, 09 October 2011 - 05:32 PM.


BC AdBot (Login to Remove)

 


#2 ancient3

ancient3
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:07:51 PM

Posted 12 October 2011 - 12:28 PM

This has now been solved...please close the thread.

#3 Budapest

Budapest

    Bleepin' Cynic


  • Moderator
  • 23,573 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:51 AM

Posted 12 October 2011 - 05:22 PM

It appears that this issue is resolved, therefore I am closing the topic. If that is not the case and you need or wish to continue with this topic, please send me or any Moderator a Personal Message (PM) that you would like this topic re-opened.
The power of accurate observation is commonly called cynicism by those who haven't got it.

—George Bernard Shaw




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users