Go Back   Tech Support Forum > Security Center > Virus/Trojan/Spyware Help

Computer lags at gameplay - suspicious activity

This is a discussion on Computer lags at gameplay - suspicious activity within the Virus/Trojan/Spyware Help forums, part of the Tech Support Forum category. first of all thanks for helping me with my problem.. , Lately my computer is freezing for a few seconds


Reply
 
Thread Tools Search this Thread
Old 03-27-2011, 11:20 AM   #1
Registered Member
 
Join Date: Mar 2011
Posts: 5
OS: Windows 7 - SP1 64x



first of all thanks for helping me with my problem.. ,
Lately my computer is freezing for a few seconds while playing games
but they DO NOT freeze for no reason, they only freeze when i hold a key down ( ex. "W" to move forward, game just freezes for 10-15 sec. until i release the key ) someone suggested me to go to --> power options and use high performance power plan, but it doesn't help too much, it just takes a little bit longer for the lags to start, I've recently scanned my computer with AVAST and Malwarebytes' and i have found a few things

AVAST found something named A6000038.exe ( no clue what that is )
and Malwarebytes' found 5 infected files named " Bandoo.exe "
here is the log file :


.
DDS (Ver_11-03-05.01) - NTFS_AMD64
Run by WarezTD at 19:24:49.03 on Sun 03/27/2011
Internet Explorer: 8.0.7601.17514
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.1.1033.18.2046.612 [GMT 2:00]
.
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: IObit Security 360 *Disabled/Outdated* {FAE2835A-B90A-9E7A-85DA-82DBDA7C1E3A}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\system32\atieclxx.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe
C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\IObit\Smart Defrag 2\SmartDefrag.exe
C:\Program Files (x86)\IObit\IObit Security 360\IS360srv.exe
F:\WareTD\Programs\BalaPerfectDisk11\PDAgent.exe
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
F:\WarezTD\Programs\IDM604\IDMan.exe
F:\WarezTD\Programs\Steam\Steam.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe
C:\Windows\expmon.exe
C:\Program Files (x86)\IObit\IObit Security 360\is360tray.exe
F:\WarezTD\Programs\Malwarebytes\mbamgui.exe
C:\Windows\system32\SearchIndexer.exe
F:\WareTD\Programs\BalaPerfectDisk11\PDEngine.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
F:\WareTD\Programs\BalaPerfectDisk11\PDAgentS1.exe
F:\WarezTD\Programs\IDM604\IEMonitor.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
F:\WarezTD\Programs\Malwarebytes\mbamservice.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
F:\WarezTD\Programs\Utorreennt\uTorrent.exe
C:\Users\WarezTD\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\WarezTD\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\WarezTD\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\WarezTD\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\WarezTD\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\WarezTD\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\WarezTD\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\WarezTD\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\WarezTD\Downloads\dds (1).scr
C:\Windows\system32\conhost.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.co.il/
uURLSearchHooks: SearchHook Class: {bc86e1ab-eda5-4059-938f-ce307b0c6f0a} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll
mWinlogon: Userinit=userinit.exe,
BHO: IDMIEHlprObj Class: {0055c089-8582-441b-a0bf-17b458c2a3a8} - F:\WarezTD\Programs\IDM604\IDMIECC.dll
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: {99079a25-328f-4bd4-be04-00955acaa0a7} - No File
BHO: FlashGetBHO: {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Users\WarezTD\AppData\Roaming\FlashGetBHO\FlashGetBHO3.dll
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
TB: {99079a25-328f-4bd4-be04-00955acaa0a7} - No File
uRun: [Google Update] "C:\Users\WarezTD\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [uTorrent] "F:\WarezTD\Programs\Utorreennt\uTorrent.exe"
uRun: [IDMan] F:\WarezTD\Programs\IDM604\IDMan.exe /onboot
uRun: [Steam] "F:\WarezTD\Programs\Steam\steam.exe" -silent
mRun: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
mRun: [BCU] "C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [ATICustomerCare] "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
mRun: [expmon] C:\Windows\expmon.exe
mRun: [IObit Security 360] C:\Program Files (x86)\IObit\IObit Security 360\IS360tray.exe
mRun: [Malwarebytes' Anti-Malware] F:\WarezTD\Programs\Malwarebytes\mbamgui.exe /starttray
mRun: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
IE: Download All By FlashGet3 - C:\Users\WarezTD\AppData\Roaming\FlashGetBHO\GetAllUrl.htm
IE: Download all links with IDM - F:\WarezTD\Programs\IDM604\IEGetAll.htm
IE: Download By FlashGet3 - C:\Users\WarezTD\AppData\Roaming\FlashGetBHO\GetUrl.htm
IE: Download FLV video content with IDM - F:\WarezTD\Programs\IDM604\IEGetVL.htm
IE: Download with IDM - F:\WarezTD\Programs\IDM604\IEExt.htm
IE: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
Trusted Zone: kuaiche.com\software
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
AppInit_DLLs: c:\progra~2\bandoo\bndhook.dll
BHO-X64: IDMIEHlprObj Class: {0055C089-8582-441B-A0BF-17B458C2A3A8} - F:\WarezTD\Programs\IDM604\IDMIECC64.dll
BHO-X64: IDM Helper - No File
BHO-X64: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
TB-X64: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
mRun-x64: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
mRun-x64: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
AppInit_DLLs-X64: C:\PROGRA~2\WIA6EB~1\Datamngr\x64\datamngr.dll C:\PROGRA~2\WIA6EB~1\Datamngr\x64\IEBHO.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\WarezTD\AppData\Roaming\Mozilla\Firefox\Profiles\c7qxl5e3.default\
FF - prefs.js: browser.search.selectedEngine - Web Search
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - prefs.js: keyword.URL - hxxp://www.searchqu.com/web?src=ffb&systemid=101&q=
FF - component: C:\Users\WarezTD\AppData\Roaming\IDM\idmmzcc3\components\idmmzcc.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.13\npGoogleOneClick8.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\4.0.60129.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
FF - plugin: C:\ProgramData\NexonUS\NGM\npNxGameUS.dll
FF - plugin: C:\Users\WarezTD\AppData\Local\Google\Update\1.2.183.13\npGoogleOneClick8.dll
FF - plugin: C:\Users\WarezTD\AppData\Roaming\Mozilla\Firefox\Profiles\c7qxl5e3.default\extensions\battlefieldplay4free@ea.com\plugins\npBP4FUpdater.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
============= SERVICES / DRIVERS ===============
.
R0 SmartDefragDriver;SmartDefragDriver;C:\Windows\System32\drivers\SmartDefragDriver.sys [2011-3-25 18232]
R1 aswSnx;aswSnx;C:\Windows\System32\drivers\aswSnx.sys [2011-3-14 505176]
R1 aswSP;aswSP;C:\Windows\System32\drivers\aswSP.sys [2011-3-14 280408]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\System32\drivers\dtsoftbus01.sys [2011-1-24 254528]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2011-1-27 203776]
R2 AMD FUEL Service;AMD FUEL Service;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-1-26 354304]
R2 AMD Reservation Manager;AMD Reservation Manager;C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [2010-6-17 194496]
R2 aswFsBlk;aswFsBlk;C:\Windows\System32\drivers\aswFsBlk.sys [2011-3-14 22360]
R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2011-3-14 64344]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-3-14 42184]
R2 BCUService;Browser Configuration Utility Service;C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe [2011-3-14 219360]
R2 ES lite Service;ES lite Service for program management.;C:\Program Files (x86)\Gigabyte\EasySaver\essvr.exe [2011-3-14 68136]
R2 IDMWFP;IDMWFP;C:\Windows\System32\drivers\idmwfp.sys [2010-12-21 141912]
R2 IS360service;IS360service;C:\Program Files (x86)\IObit\IObit Security 360\is360srv.exe [2011-3-25 312152]
R2 MBAMService;MBAMService;F:\WarezTD\Programs\Malwarebytes\mbamservice.exe [2011-3-26 363344]
R3 amdiox64;AMD IO Driver;C:\Windows\System32\drivers\amdiox64.sys [2011-3-14 46136]
R3 amdkmdag;amdkmdag;C:\Windows\System32\drivers\atikmdag.sys [2011-1-27 9085952]
R3 amdkmdap;amdkmdap;C:\Windows\System32\drivers\atikmpag.sys [2011-1-27 299520]
R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2011-3-26 24152]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2011-3-14 236544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S3 dmvsc;dmvsc;C:\Windows\System32\drivers\dmvsc.sys [2010-11-21 71168]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-21 20992]
S3 SwitchBoard;SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
S3 Synth3dVsc;Microsoft Virtual 3D Video Transport Driver;C:\Windows\System32\drivers\Synth3dVsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver;C:\Windows\System32\drivers\terminpt.sys [2010-11-21 34816]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2010-11-21 59392]
S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%;C:\Windows\System32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 tsusbhub;Remote Deskotop USB Hub;C:\Windows\System32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-3-26 1255736]
.
=============== Created Last 30 ================
.
2011-03-26 19:10:33 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\AnvSoft
2011-03-26 14:27:07 -------- d-----w- C:\PROGRA~3\regid.1986-12.com.adobe
2011-03-26 14:17:36 -------- d-----w- C:\Users\WarezTD\AppData\Local\Adobe
2011-03-26 10:17:39 867064 ----a-w- C:\Windows\System32\drivers\sptd.sys
2011-03-26 10:16:27 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\PunkBuster
2011-03-26 09:30:57 38224 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
2011-03-26 09:27:24 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\Malwarebytes
2011-03-26 09:27:02 -------- d-----w- C:\PROGRA~3\Malwarebytes
2011-03-26 09:27:00 24152 ----a-w- C:\Windows\System32\drivers\mbam.sys
2011-03-26 08:48:44 -------- d-----w- C:\Windows\SysWow64\Wat
2011-03-26 08:48:44 -------- d-----w- C:\Windows\System32\Wat
2011-03-26 05:56:49 -------- d-----w- C:\Users\WarezTD\AppData\Local\{1F07F8B0-0BFF-426D-B10E-4F8E63681AF4}
2011-03-26 05:56:26 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\Bandoo
2011-03-26 05:56:15 682 ----a-w- C:\Users\WarezTD\AppData\Local\GLF8510.tmp
2011-03-26 05:56:14 1524112 ----a-w- C:\Windows\SysWow64\bandoolmx.dll
2011-03-26 05:49:05 -------- d-sh--w- C:\Windows\exprep
2011-03-26 05:34:11 711632 ----a-w- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
2011-03-26 05:32:40 8199504 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
2011-03-25 19:54:24 32136 ----a-w- C:\Windows\System32\SmartDefragBootTime.exe
2011-03-25 19:54:24 18232 ----a-w- C:\Windows\System32\drivers\SmartDefragDriver.sys
2011-03-25 19:53:49 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\IObit
2011-03-25 19:53:49 -------- d-----w- C:\Program Files (x86)\IObit
2011-03-25 19:53:11 -------- d-----w- C:\PROGRA~3\IObit
2011-03-25 17:41:28 189480 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr
2011-03-25 17:41:26 -------- d-----w- C:\Users\WarezTD\AppData\Local\PunkBuster
2011-03-25 17:18:12 -------- d-----w- C:\Users\WarezTD\AppData\Local\LAG
2011-03-25 17:18:12 -------- d-----w- C:\PROGRA~3\LAG
2011-03-25 17:17:40 -------- d-----w- C:\Windows\SysWow64\AGEIA
2011-03-25 17:17:35 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2011-03-25 14:24:33 -------- d-----w- C:\Users\WarezTD\AppData\Local\PMB Files
2011-03-25 14:24:31 -------- d-----w- C:\PROGRA~3\PMB Files
2011-03-25 14:23:40 -------- d-----w- C:\Program Files (x86)\Pando Networks
2011-03-25 11:09:54 -------- d-----w- C:\Users\WarezTD\AppData\Local\{70FE0D73-588D-436F-8823-CEF498684940}
2011-03-25 11:09:40 -------- d-----w- C:\Users\WarezTD\Tracing
2011-03-25 11:07:48 -------- d-----w- C:\Windows\PCHEALTH
2011-03-25 11:04:14 -------- d-----w- C:\Users\WarezTD\AppData\Local\Windows Live
2011-03-25 11:04:12 -------- d-----w- C:\Program Files (x86)\Common Files\Windows Live
2011-03-25 11:01:32 3360624 ----a-w- C:\Windows\SysWow64\pbsvc.exe
2011-03-24 05:58:00 97792 ----a-w- C:\Windows\expmon.exe
2011-03-24 05:58:00 16896 ----a-w- C:\Windows\sxexp32.dll
2011-03-24 05:58:00 1486336 ----a-w- C:\Windows\sxgui32.dll
2011-03-24 05:58:00 1213440 ----a-w- C:\Windows\sfxlib32.dll
2011-03-23 16:29:08 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\Moyea
2011-03-23 13:53:59 189248 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe
2011-03-23 13:53:48 75136 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe
2011-03-20 19:28:17 -------- d-----w- C:\Users\WarezTD\AppData\Local\AA3DeployClient
2011-03-20 19:28:17 -------- d-----w- C:\PROGRA~3\AA3DeployClient
2011-03-20 19:27:23 -------- d-----w- C:\Users\WarezTD\AppData\Local\Apps
2011-03-20 19:27:22 -------- d-----w- C:\Users\WarezTD\AppData\Local\Deployment
2011-03-18 13:49:36 -------- d-----w- C:\Users\WarezTD\AppData\Local\Redlynx
2011-03-18 13:49:32 419840 ----a-w- C:\Windows\System32\wrap_oal.dll
2011-03-18 13:49:32 413696 ----a-w- C:\Windows\SysWow64\wrap_oal.dll
2011-03-18 13:49:32 133632 ----a-w- C:\Windows\System32\OpenAL32.dll
2011-03-18 13:49:32 110592 ----a-w- C:\Windows\SysWow64\OpenAL32.dll
2011-03-18 13:49:32 -------- d-----w- C:\Program Files (x86)\OpenAL
2011-03-18 11:49:54 -------- d-----w- C:\Program Files (x86)\Common Files\Steam
2011-03-16 19:58:48 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\Nexon
2011-03-16 19:02:46 -------- d-----w- C:\Users\WarezTD\AppData\Local\SoulMS
2011-03-16 18:59:21 -------- d-----w- C:\PROGRA~3\NexonUS
2011-03-16 18:32:00 77656 ----a-w- C:\Windows\System32\XAPOFX1_5.dll
2011-03-16 18:32:00 74072 ----a-w- C:\Windows\SysWow64\XAPOFX1_5.dll
2011-03-16 18:32:00 527192 ----a-w- C:\Windows\SysWow64\XAudio2_7.dll
2011-03-16 18:32:00 518488 ----a-w- C:\Windows\System32\XAudio2_7.dll
2011-03-16 18:32:00 2526056 ----a-w- C:\Windows\System32\D3DCompiler_43.dll
2011-03-16 18:32:00 239960 ----a-w- C:\Windows\SysWow64\xactengine3_7.dll
2011-03-16 18:32:00 2106216 ----a-w- C:\Windows\SysWow64\D3DCompiler_43.dll
2011-03-16 18:32:00 176984 ----a-w- C:\Windows\System32\xactengine3_7.dll
2011-03-15 12:14:42 -------- d-----w- C:\PROGRA~3\KONAMI
2011-03-15 12:12:22 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\DAEMON Tools Lite
2011-03-15 05:01:16 86016 ----a-w- C:\Windows\SysWow64\frapsvid.dll
2011-03-15 05:01:14 84992 ----a-w- C:\Windows\System32\frapsv64.dll
2011-03-14 15:53:06 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\IDM
2011-03-14 15:53:04 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\DMCache
2011-03-14 15:32:35 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\FlashGet
2011-03-14 15:32:35 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\BITS
2011-03-14 15:32:31 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\FlashGetBHO
2011-03-14 15:08:46 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\uTorrent
2011-03-14 14:51:01 -------- d-----w- C:\Users\WarezTD\AppData\Local\AMD
2011-03-14 14:50:59 -------- d-----w- C:\PROGRA~3\AMD
2011-03-14 14:50:50 -------- d-----w- C:\Users\WarezTD\AppData\Local\ATI
2011-03-14 14:50:30 25640 ----a-w- C:\Windows\gdrv.sys
2011-03-14 14:50:17 0 ----a-w- C:\Windows\ativpsrm.bin
2011-03-14 14:49:05 -------- d-----w- C:\Program Files\Common Files\ATI Technologies
2011-03-14 14:49:05 -------- d-----w- C:\Program Files (x86)\Common Files\ATI Technologies
2011-03-14 14:49:01 -------- d-----w- C:\Program Files (x86)\ATI Stream
2011-03-14 14:48:54 -------- d-----w- C:\Program Files (x86)\ATI
2011-03-14 14:48:37 46136 ----a-w- C:\Windows\System32\drivers\amdiox64.sys
2011-03-14 14:48:06 -------- d-----w- C:\Program Files (x86)\ATI Technologies
2011-03-14 14:47:09 -------- d-----w- C:\ATI
2011-03-14 13:21:54 -------- d-----w- C:\Program Files\ATI Technologies
2011-03-14 13:21:52 -------- d-----w- C:\Program Files\ATI
2011-03-14 13:16:52 -------- d-----w- C:\PROGRA~3\Norton
2011-03-14 13:16:46 -------- d-----w- C:\Program Files (x86)\NortonInstaller
2011-03-14 13:16:46 -------- d-----w- C:\PROGRA~3\NortonInstaller
2011-03-14 13:16:07 97792 ----a-w- C:\Windows\System32\RTNUninst64.dll
2011-03-14 13:16:07 67584 ----a-w- C:\Windows\System32\RtNicProp64.dll
2011-03-14 13:15:56 236544 ----a-w- C:\Windows\System32\drivers\Rt64win7.sys
2011-03-14 13:12:57 -------- d--h--w- C:\Program Files (x86)\DeviceVM
2011-03-14 13:12:32 -------- d-----w- C:\Program Files (x86)\Gigabyte
2011-03-14 13:12:14 753664 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iKernel.dll
2011-03-14 13:12:14 69714 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\ctor.dll
2011-03-14 13:12:14 63488 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\ISBEW64.exe
2011-03-14 13:12:14 5632 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\DotNetInstaller.exe
2011-03-14 13:12:14 331908 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\setup.dll
2011-03-14 13:12:14 32768 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\Objectps.dll
2011-03-14 13:12:14 274432 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iscript.dll
2011-03-14 13:12:14 200836 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iGdi.dll
2011-03-14 13:12:14 184320 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iuser.dll
2011-03-14 12:52:40 -------- d-----w- C:\Users\WarezTD\AppData\Roaming\Rovio
2011-03-14 12:49:32 -------- d-----w- C:\Program Files (x86)\fruit-ninja.co.cc
2011-03-14 06:26:19 -------- d-sh--w- C:\Boot
2011-03-14 06:26:09 -------- d-----w- C:\Windows\System32\OEM
2011-03-14 05:20:34 505176 ----a-w- C:\Windows\System32\drivers\aswSnx.sys
2011-03-14 05:20:33 64344 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
2011-03-14 05:20:27 40648 ----a-w- C:\Windows\avastSS.scr
2011-03-14 05:20:25 -------- d-----w- C:\Program Files\AVAST Software
2011-03-14 05:20:25 -------- d-----w- C:\PROGRA~3\AVAST Software
2011-03-14 05:13:50 -------- d-----w- C:\Users\WarezTD\AppData\Local\Mozilla
2011-03-13 20:31:48 -------- d-sh--w- C:\Recovery
.
==================== Find3M ====================
.
2011-02-02 16:11:20 270720 ------w- C:\Windows\System32\MpSigStub.exe
2011-01-26 23:37:20 9085952 ----a-w- C:\Windows\System32\drivers\atikmdag.sys
2011-01-26 23:22:18 22295040 ----a-w- C:\Windows\System32\atio6axx.dll
2011-01-26 23:00:44 143360 ----a-w- C:\Windows\System32\atiapfxx.exe
2011-01-26 23:00:30 596480 ----a-w- C:\Windows\SysWow64\aticfx32.dll
2011-01-26 22:59:46 17204736 ----a-w- C:\Windows\SysWow64\atioglxx.dll
2011-01-26 22:59:10 708608 ----a-w- C:\Windows\System32\aticfx64.dll
2011-01-26 22:56:30 462848 ----a-w- C:\Windows\System32\ATIDEMGX.dll
2011-01-26 22:56:14 479232 ----a-w- C:\Windows\System32\atieclxx.exe
2011-01-26 22:55:36 203776 ----a-w- C:\Windows\System32\atiesrxx.exe
2011-01-26 22:54:20 120320 ----a-w- C:\Windows\System32\atitmm64.dll
2011-01-26 22:54:00 423424 ----a-w- C:\Windows\System32\atipdl64.dll
2011-01-26 22:53:54 356352 ----a-w- C:\Windows\SysWow64\atipdlxx.dll
2011-01-26 22:53:42 278528 ----a-w- C:\Windows\SysWow64\Oemdspif.dll
2011-01-26 22:53:36 16384 ----a-w- C:\Windows\System32\atimuixx.dll
2011-01-26 22:53:32 59392 ----a-w- C:\Windows\System32\atiedu64.dll
2011-01-26 22:53:26 43520 ----a-w- C:\Windows\SysWow64\ati2edxx.dll
2011-01-26 22:49:44 4105728 ----a-w- C:\Windows\SysWow64\atidxx32.dll
2011-01-26 22:40:02 4847616 ----a-w- C:\Windows\System32\atidxx64.dll
2011-01-26 22:32:46 1208320 ----a-w- C:\Windows\System32\atiumd6v.dll
2011-01-26 22:32:12 1912832 ----a-w- C:\Windows\SysWow64\atiumdmv.dll
2011-01-26 22:32:00 3222016 ----a-w- C:\Windows\System32\atiumd6a.dll
2011-01-26 22:28:52 4170752 ----a-w- C:\Windows\SysWow64\atiumdag.dll
2011-01-26 22:27:52 51200 ----a-w- C:\Windows\System32\aticalrt64.dll
2011-01-26 22:27:50 46080 ----a-w- C:\Windows\SysWow64\aticalrt.dll
2011-01-26 22:27:42 44544 ----a-w- C:\Windows\System32\aticalcl64.dll
2011-01-26 22:27:40 44032 ----a-w- C:\Windows\SysWow64\aticalcl.dll
2011-01-26 22:27:30 6982144 ----a-w- C:\Windows\System32\aticaldd64.dll
2011-01-26 22:25:50 5580800 ----a-w- C:\Windows\SysWow64\aticaldd.dll
2011-01-26 22:24:18 3463680 ----a-w- C:\Windows\SysWow64\atiumdva.dll
2011-01-26 22:21:58 5316096 ----a-w- C:\Windows\System32\atiumd64.dll
2011-01-26 22:20:46 58880 ----a-w- C:\Windows\System32\coinst.dll
2011-01-26 22:14:14 354304 ----a-w- C:\Windows\System32\atiadlxx.dll
2011-01-26 22:14:08 249856 ----a-w- C:\Windows\SysWow64\atiadlxy.dll
2011-01-26 22:13:56 14848 ----a-w- C:\Windows\System32\atig6pxx.dll
2011-01-26 22:13:52 12800 ----a-w- C:\Windows\SysWow64\atiglpxx.dll
2011-01-26 22:13:52 12800 ----a-w- C:\Windows\System32\atiglpxx.dll
2011-01-26 22:13:50 39936 ----a-w- C:\Windows\System32\atig6txx.dll
2011-01-26 22:13:42 32768 ----a-w- C:\Windows\SysWow64\atigktxx.dll
2011-01-26 22:13:32 299520 ----a-w- C:\Windows\System32\drivers\atikmpag.sys
2011-01-26 22:12:46 39936 ----a-w- C:\Windows\System32\atiuxp64.dll
2011-01-26 22:12:40 30720 ----a-w- C:\Windows\SysWow64\atiuxpag.dll
2011-01-26 22:12:32 38400 ----a-w- C:\Windows\System32\atiu9p64.dll
2011-01-26 22:12:24 28672 ----a-w- C:\Windows\SysWow64\atiu9pag.dll
2011-01-26 22:11:46 53248 ----a-w- C:\Windows\System32\drivers\ati2erec.dll
2011-01-26 22:08:46 53760 ----a-w- C:\Windows\System32\atimpc64.dll
2011-01-26 22:08:46 53760 ----a-w- C:\Windows\System32\amdpcom64.dll
2011-01-26 22:08:40 52736 ----a-w- C:\Windows\SysWow64\atimpc32.dll
2011-01-26 22:08:40 52736 ----a-w- C:\Windows\SysWow64\amdpcom32.dll
2011-01-24 15:04:14 34665472 ----a-w- C:\Windows\SysWow64\imageres.dll
2011-01-24 15:00:01 34665472 ----a-w- C:\Windows\System32\imageres.dll
2011-01-24 12:24:17 332288 ----a-w- C:\Windows\System32\uxtheme.dll
2011-01-24 12:24:15 2851840 ----a-w- C:\Windows\System32\themeui.dll
2011-01-24 12:24:12 44544 ----a-w- C:\Windows\System32\themeservice.dll
2011-01-24 12:17:55 254528 ----a-w- C:\Windows\System32\drivers\dtsoftbus01.sys
2011-01-24 12:08:57 521448 ----a-w- C:\Windows\System32\deployJava1.dll
2011-01-07 12:17:52 475648 ----a-w- C:\Windows\System32\XpsGdiConverter.dll
2011-01-07 12:17:52 1465344 ----a-w- C:\Windows\System32\XpsPrint.dll
2011-01-07 12:14:11 46080 ----a-w- C:\Windows\System32\atmlib.dll
2011-01-07 09:51:01 1638912 ----a-w- C:\Windows\System32\mshtml.tlb
2011-01-07 09:20:44 366592 ----a-w- C:\Windows\System32\atmfd.dll
2011-01-07 07:46:34 870912 ----a-w- C:\Windows\SysWow64\XpsPrint.dll
2011-01-07 07:46:34 288256 ----a-w- C:\Windows\SysWow64\XpsGdiConverter.dll
2011-01-07 07:45:57 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll
2011-01-07 06:01:22 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2011-01-07 05:43:36 294400 ----a-w- C:\Windows\SysWow64\atmfd.dll
2011-01-05 10:34:00 612864 ----a-w- C:\Windows\System32\vbscript.dll
2011-01-05 06:56:24 3129344 ----a-w- C:\Windows\System32\win32k.sys
2011-01-05 05:55:55 428032 ----a-w- C:\Windows\SysWow64\vbscript.dll
.
============= FINISH: 19:25:22.23 ===============
Attached Files
File Type: zip ark.zip (3.1 KB, 1 views)

__________________
WarezTD is offline   Reply With Quote
Old 03-28-2011, 09:53 AM   #2
Registered Member
 
Join Date: Mar 2011
Posts: 5
OS: Windows 7 - SP1 64x



REALLY, Why are you removing my posts i just want to get an answer because this problem is just getting worse.. >.>
__________________
WarezTD is offline   Reply With Quote
Reply

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Similar Threads
Thread Thread Starter Forum Replies Last Post
computer connecting to two networks (one unidentified)?
Recently I had a problem where my desktop computer running Windows Vista could not make a wireless connection to the internet. I have a cable modem connected by Ethernet cable to a wireless router, and all other computers and devices in the house (e.g. laptop & iPod) were able to connect to my...
lkadlec Networking Support 48 02-11-2011 12:41 AM
Malware on Computer from a year ago...
A year ago, my computer got some kind of virus, so I turned it off thinking, "I'll deal with it later..." and now a year later I still haven't. It's just been sitting in a corner in my room as I've been scared to death of turning it back on. Asking for help here for my brother's computer (thanks...
Piper Resolved HJT Threads 7 02-05-2011 01:28 PM
Brother's computer had a rootkit, was reformatted, and now it isn't working properly
I did not know whether to post this Virus/Trojan/Spyware Help or in Windows XP Support. I apologize if this is in the wrong place. This is not a problem with my own computer, but with my brother's. He and his family are staying with us for a while and I guess their computer got a rootkit. They...
Piper Resolved HJT Threads 35 01-31-2011 02:09 PM
Power Supply Information and Selection
:smile: CHOOSING AND UNDERSTANDING A POWER SUPPLY UNIT The power supply unit in today’s modern computer assumes a role probably more critical than any other single component in your system even when compared to the CPU and motherboard. Therefore, there are multiple factors that must...
Tumbleweed36 RAM and Power Supply Support 0 07-09-2006 03:41 PM

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is on
Smilies are on
[IMG] code is on
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


Post a Question


» Site Navigation
 > FAQ
  > 10.0.0.2


All times are GMT -7. The time now is 07:20 AM.


Copyright 2001 - 2014, Tech Support Forum

Windows 7 - Windows XP - Windows Vista - Trojan Removal - Spyware Removal - Virus Removal - Networking - Security - Top Web Hosts