GMER 1.0.15.15641 -
http://www.gmer.netRootkit scan 2012-02-07 15:30:00
Windows 5.1.2600 Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 FUJITSU_MHV2100BH_PL rev.00000029
Running: 4vi5131v.exe; Driver: C:\DOCUME~1\Bill\LOCALS~1\Temp\pwrdyfog.sys
---- System - GMER 1.0.15 ----
SSDT 89033720 ZwCreateKey
SSDT 88EE54A0 ZwCreateMutant
SSDT 89032520 ZwCreateProcess
SSDT 89032820 ZwCreateProcessEx
SSDT 88EE5860 ZwCreateSymbolicLinkObject
SSDT 89034FC0 ZwCreateThread
SSDT 89033D20 ZwDeleteKey
SSDT 89034620 ZwDeleteValueKey
SSDT 88EE5A40 ZwDuplicateObject
SSDT 88EE51A0 ZwLoadDriver
SSDT 89032B20 ZwOpenProcess
SSDT 89034C00 ZwOpenSection
SSDT 89032E20 ZwOpenThread
SSDT 89034020 ZwRenameKey
SSDT 89034320 ZwRestoreKey
SSDT 88EE5680 ZwSetSystemInformation
SSDT 89033A20 ZwSetValueKey
SSDT \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SASKUTIL.SYS/SUPERAdBlocker.com and SUPERAntiSpyware.com) ZwTerminateProcess [0xA84C0640]
SSDT 89033420 ZwTerminateThread
SSDT 89034DE0 ZwWriteVirtualMemory
Code \??\C:\DOCUME~1\Bill\LOCALS~1\Temp\catchme.sys pIofCallDriver
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Udfs \UdfsCdRom DLAIFS_M.SYS (Drive Letter Access Component/Sonic Solutions)
Device \FileSystem\meiudf \MeiUDF_Disk DLAIFS_M.SYS (Drive Letter Access Component/Sonic Solutions)
Device \FileSystem\meiudf \MeiUDF_CdRom DLAIFS_M.SYS (Drive Letter Access Component/Sonic Solutions)
Device \FileSystem\Udfs \UdfsDisk DLAIFS_M.SYS (Drive Letter Access Component/Sonic Solutions)
AttachedDevice \Driver\Tcpip \Device\Ip tmtdi.sys (Trend Micro TDI Driver (i386-fre)/Trend Micro Inc.)
AttachedDevice \Driver\Tcpip \Device\Tcp tmtdi.sys (Trend Micro TDI Driver (i386-fre)/Trend Micro Inc.)
AttachedDevice \Driver\Tcpip \Device\Udp tmtdi.sys (Trend Micro TDI Driver (i386-fre)/Trend Micro Inc.)
AttachedDevice \Driver\Tcpip \Device\RawIp tmtdi.sys (Trend Micro TDI Driver (i386-fre)/Trend Micro Inc.)
Device \FileSystem\Cdfs \Cdfs DLAIFS_M.SYS (Drive Letter Access Component/Sonic Solutions)
---- EOF - GMER 1.0.15 ----
don't use aol or view point