Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 93104 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

Registery Problems


  • This topic is locked This topic is locked
8 replies to this topic

#1 tippy2

tippy2

    New Member

  • New Member
  • Pip
  • 4 posts

Posted 13 April 2007 - 09:05 PM

:scratch: The computer is running very slow. When I have run AVG I came up with trojan horses. When I had this problem before (about 5 years ago) I posted to this site my Hi Jack log and the advice I received from this forum cleared the problem immediately. Again I thank you for all of the assistance. The following is the hi jack log for 4/13/07 20:00 hours MST.

Logfile of HijackThis v1.99.1
Scan saved at 7:43:10 PM, on 4/13/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
F:\WINDOWS\System32\smss.exe
F:\WINDOWS\system32\winlogon.exe
F:\WINDOWS\system32\services.exe
F:\WINDOWS\system32\lsass.exe
F:\WINDOWS\system32\svchost.exe
F:\WINDOWS\System32\svchost.exe
F:\WINDOWS\system32\spoolsv.exe
F:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
F:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
F:\PROGRA~1\Grisoft\AVG7\avgemc.exe
F:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
F:\Program Files\Canon\MultiPASS4\MPSERVIC.EXE
F:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe
F:\WINDOWS\system32\svchost.exe
F:\WINDOWS\Explorer.EXE
F:\WINDOWS\System32\svchost.exe
F:\WINDOWS\system32\hkcmd.exe
F:\Program Files\Analog Devices\Core\smax4pnp.exe
F:\WINDOWS\system32\fxredir.exe
F:\PROGRA~1\Grisoft\AVG7\avgcc.exe
F:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
F:\Program Files\Canon\MultiPASS4\MPDBMgr.exe
F:\Program Files\Messenger\msmsgs.exe
F:\WINDOWS\system32\ctfmon.exe
F:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
F:\WINDOWS\system32\wscntfy.exe
F:\WINDOWS\pchealth\helpctr\binaries\HelpCtr.exe
F:\WINDOWS\system32\DllHost.exe
F:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpSvc.exe
F:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpHost.exe
F:\Program Files\Internet Explorer\iexplore.exe
F:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\A592JQLG\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://my.netscape.com/
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - F:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - F:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - F:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll
O2 - BHO: Web assistant - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - F:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - F:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Ask Jeeves Bar - {43D9E6F0-1776-4897-AE14-ECEDECBAFEC0} - F:\WINDOWS\system32\askbarAB.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - F:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll
O3 - Toolbar: (no name) - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - (no file)
O4 - HKLM\..\Run: [IgfxTray] F:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] F:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [SoundMAXPnP] F:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [fxredir] F:\WINDOWS\system32\fxredir.exe
O4 - HKLM\..\Run: [AVG7_CC] F:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [Adobe Photo Downloader] "F:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKCU\..\Run: [MSMSGS] "F:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] F:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [RoboForm] "F:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O4 - HKCU\..\Run: [updateMgr] "F:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
O4 - HKCU\..\Run: [Registry Cleaner] "F:\Program Files\Registry Cleaner Trial\Regclean.exe" -startminimize
O4 - Global Startup: Adobe Reader Speed Launch.lnk = F:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: Ask Jeeves Search - res://F:\WINDOWS\system32\askbarAB.dll/cmd-search-selection
O8 - Extra context menu item: Customize Menu - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Dictionary Search - res://F:\WINDOWS\system32\askbarAB.dll/cmd-search-selection-word
O8 - Extra context menu item: E&xport to Microsoft Excel - res://F:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Fill Forms - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: RoboForm Toolbar - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Save Forms - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - F:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
O16 - DPF: Payday FreeCell by pogo - http://game1.pogo.co...ecell-en_US.cab
O16 - DPF: Payday Freecell Solitaire by pogo - http://game1.pogo.co...cell2-en_US.cab
O16 - DPF: Tri-Peaks by pogo - http://game1.pogo.co...peaks-en_US.cab
O16 - DPF: World Class Solitaire by pogo - http://game1.pogo.co...class-en_US.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://support.cox.c...oad/tgctlcm.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://scan.safety.l...lscbase5059.cab
O16 - DPF: {9522B3FB-7A2B-4646-8AF6-36E7F593073C} (cpbrkpie Control) - http://a19.g.akamai....02/cpbrkpie.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{408BDC78-3C54-4AB0-A9C2-B2B7660320DF}: NameServer = 4.2.2.2,4.2.2.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{9A8D0395-EA31-441B-850A-6724B8E4BDBD}: NameServer = 204.117.214.10,216.163.120.19
O20 - Winlogon Notify: igfxcui - F:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - F:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - F:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - F:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - F:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: MpService - Canon Inc. - F:\Program Files\Canon\MultiPASS4\MPS

Please e-mail me the answer as well as posting it to the forum, as I have a memory problem due to recent illiness. :oops:

    Advertisements

Register to Remove


#2 ken545

ken545

    Forum God

  • Retired Classroom Teacher
  • 23,225 posts
  • Interests:Fighting Malware and cooking some great Italian and TexMex food
  • MVP

Posted 24 April 2007 - 05:05 AM

tippy2 :D

Welcome back to the forum. Sorry, but we don't do email for security purposes. I am looking at a clean log so don't know exactly what issues you are having besides a slow computer. Why don't you run the trial of AVG Anti Spyware and post the report for me to see as it may have some tell tale signs for an infection.

Hijackthis 1.99.1
Its important that Hijackthis is installed in its own permanent folder for backup purposes.
  • Go to where you currently have HJT installed and delete the whole folder.
  • Use the link above or the links in my signature to download HJT 1.99.1 setup to your desktop
  • Double Click on the Setup icon and by defaut it will unzip to C:\Program Files\Hijackthis


It's extremely important that you follow these instructions and save the report for me to see, it shows what and what not was removed along with an extensive report that may lead to other infections that are not showing on your HJT log.


Download and install the 30 day trial of AVG Anti-Spyware 7.5 to your desktop. It's very important that I see the report so make sure you follow the instructions and save the log.
  • Once you have downloaded AVG Anti-Spyware 7.5, locate the icon on the desktop and double-click it to launch the set up program.
  • Once the setup is complete you will need run AVG and update the definition files.
  • On the main screen select the icon Update then select the Update now link.
  • Next select the Start Update button, the update will start and a progress bar will show the updates being installed.
  • Once the update has completed select the Scanner icon at the top of the screen, then select the Settings tab.
  • Once in the Settings screen click on Recommended actions and then select Quarantine <-- Dont forget this
  • Under Reports
  • Select Automatically generate report after every scan
  • Un-Select Only if threats were found
  • Close AVG Anti-Spyware 7.5 <-- Do not run the scan yet.
Boot your computer into Safemode
  • Go to Start> Shut Off your Computer> Restart
  • As the computer starts to boot-up, Tap the F8 KEY somewhat rapidly.
  • This will bring up a menu.
  • Use the Up and Down Arrow Keys to scroll up to SAFEMODE
  • Then press the Enter on your Keyboard
Tutorial if you need it How to boot into Safemode


IMPORTANT: Do not open any other windows or programs while AVG is scanning, it may interfere with the scanning process:
  • Launch AVG Anti-Spyware 7.5 by double-clicking the icon on your desktop.
  • Select the Scanner icon at the top and then the Scan tab then click on Complete System Scan.
  • AVG will now begin the scanning process, be patient this may take a little time.
  • Once the scan is complete do the following:
  • If you have any infections you will prompted, then select Apply all actions
  • Next select the Reports icon at the top.
  • Select the Save report as button in the lower left hand of the screen and save it to a text file on your system
  • make sure to remember where you saved that file, this is important
  • Close AVG Anti-Spyware 7.5
Post the AVG Report and a New HJT log please.

Edited by ken545, 24 April 2007 - 05:08 AM.


 
 
The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
donate.gif
 
Find us on Facebook
Please LIKE and SHARE
 
 
Just a reminder that threads will be closed if no reply in 3 days.

#3 tippy2

tippy2

    New Member

  • New Member
  • Pip
  • 4 posts

Posted 27 April 2007 - 10:02 PM

The following are the results of tests:

---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 8:24:49 PM 4/27/2007

+ Scan result:



F:\WINDOWS\cpbrkpie.ocx -> Adware.Coupons : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@112.2o7[2].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@1800wheelchair.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@2o7[1].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@buildabear.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@cnn.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@coxhsi.112.2o7[2].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@dminsite.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@er4ddrtv.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@leeenterprises.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@microsoftwlmessengermkt.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@paypal.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@penske.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@sanfordcorporation.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@scrippshgtv.112.2o7[2].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@smartmoney.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@webmd.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@wpni.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
F:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@aavalue[1].txt -> TrackingCookie.Aavalue : No action taken.
F:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@lovefreegames.aavalue[1].txt -> TrackingCookie.Aavalue : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@stats.adbrite[2].txt -> TrackingCookie.Adbrite : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ads.addynamix[2].txt -> TrackingCookie.Addynamix : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@rotator.adjuggler[1].txt -> TrackingCookie.Adjuggler : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@rotator.dex.adjuggler[2].txt -> TrackingCookie.Adjuggler : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@thunderbolt.adjuggler[2].txt -> TrackingCookie.Adjuggler : No action taken.
F:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@thunderbolt.adjuggler[2].txt -> TrackingCookie.Adjuggler : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@admarketplace[2].txt -> TrackingCookie.Admarketplace : No action taken.
F:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@admarketplace[1].txt -> TrackingCookie.Admarketplace : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@www.adobe[1].txt -> TrackingCookie.Adobe : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@adrevolver[2].txt -> TrackingCookie.Adrevolver : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@advertising[2].txt -> TrackingCookie.Advertising : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@bfast[1].txt -> TrackingCookie.Bfast : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@bluestreak[2].txt -> TrackingCookie.Bluestreak : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@www.burstbeacon[1].txt -> TrackingCookie.Burstbeacon : No action taken.
F:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@www.burstbeacon[2].txt -> TrackingCookie.Burstbeacon : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@burstnet[1].txt -> TrackingCookie.Burstnet : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@www.burstnet[1].txt -> TrackingCookie.Burstnet : No action taken.
F:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@burstnet[2].txt -> TrackingCookie.Burstnet : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@casalemedia[1].txt -> TrackingCookie.Casalemedia : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@clickbank[2].txt -> TrackingCookie.Clickbank : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ads.cnn[1].txt -> TrackingCookie.Cnn : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@com[1].txt -> TrackingCookie.Com : No action taken.
F:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@com[2].txt -> TrackingCookie.Com : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@twci.coremetrics[1].txt -> TrackingCookie.Coremetrics : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@dealtime[1].txt -> TrackingCookie.Dealtime : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@stat.dealtime[2].txt -> TrackingCookie.Dealtime : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@doubleclick[2].txt -> TrackingCookie.Doubleclick : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wbkikjdjecq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkokoczsbo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfmyqpdjecp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkiuldjmlp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlicpc5afo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlouocpaap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlyuhczkko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmyokd5mkp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjny-1jdzsc.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjny-1sazsk.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjnygnc5oeo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@adopt.euroclick[1].txt -> TrackingCookie.Euroclick : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@cdn.euroclick[1].txt -> TrackingCookie.Euroclick : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@fastclick[2].txt -> TrackingCookie.Fastclick : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ehg-comcast.hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ehg-drleonardshealthcare.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ehg-hillspet.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ehg-legacy.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ehg-mindshare.hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ehg-teococorp.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ehg-verizon.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ehg-wildoats.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ehg-zoomerang.hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@phg.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@counter.hitslink[1].txt -> TrackingCookie.Hitslink : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@hotlog[2].txt -> TrackingCookie.Hotlog : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@searchportal.information[1].txt -> TrackingCookie.Information : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@linksynergy[1].txt -> TrackingCookie.Linksynergy : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@sales.liveperson[2].txt -> TrackingCookie.Liveperson : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@sec1.liveperson[1].txt -> TrackingCookie.Liveperson : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@server.iad.liveperson[2].txt -> TrackingCookie.Liveperson : No action taken.
F:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@sec1.liveperson[2].txt -> TrackingCookie.Liveperson : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@mediaplex[2].txt -> TrackingCookie.Mediaplex : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ie.search.msn[2].txt -> TrackingCookie.Msn : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ssl-hints.netflame[1].txt -> TrackingCookie.Netflame : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@overture[2].txt -> TrackingCookie.Overture : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@perf.overture[1].txt -> TrackingCookie.Overture : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@www.paypal[1].txt -> TrackingCookie.Paypal : No action taken.
F:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@www.paypal[1].txt -> TrackingCookie.Paypal : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ads.pointroll[1].txt -> TrackingCookie.Pointroll : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@pro-market[1].txt -> TrackingCookie.Pro-market : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@qksrv[2].txt -> TrackingCookie.Qksrv : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@questionmarket[1].txt -> TrackingCookie.Questionmarket : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@realmedia[2].txt -> TrackingCookie.Realmedia : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@revenue[2].txt -> TrackingCookie.Revenue : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@revsci[1].txt -> TrackingCookie.Revsci : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@edge.ru4[1].txt -> TrackingCookie.Ru4 : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@serving-sys[1].txt -> TrackingCookie.Serving-sys : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@adopt.specificclick[1].txt -> TrackingCookie.Specificclick : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@specificclick[1].txt -> TrackingCookie.Specificclick : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@statcounter[1].txt -> TrackingCookie.Statcounter : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@anad.tacoda[1].txt -> TrackingCookie.Tacoda : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@anat.tacoda[1].txt -> TrackingCookie.Tacoda : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@tacoda[1].txt -> TrackingCookie.Tacoda : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@toplist[1].txt -> TrackingCookie.Toplist : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@trafficmp[1].txt -> TrackingCookie.Trafficmp : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@valueclick[1].txt -> TrackingCookie.Valueclick : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@webstat[2].txt -> TrackingCookie.Web-stat : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@m.webtrends[1].txt -> TrackingCookie.Webtrends : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@statse.webtrendslive[1].txt -> TrackingCookie.Webtrendslive : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@zedo[1].txt -> TrackingCookie.Zedo : No action taken.


::Report end

HI JACK THIS
Logfile of HijackThis v1.99.1
Scan saved at 9:00:02 PM, on 4/27/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
F:\WINDOWS\System32\smss.exe
F:\WINDOWS\system32\winlogon.exe
F:\WINDOWS\system32\services.exe
F:\WINDOWS\system32\lsass.exe
F:\WINDOWS\system32\svchost.exe
F:\WINDOWS\System32\svchost.exe
F:\WINDOWS\system32\spoolsv.exe
F:\WINDOWS\Explorer.EXE
F:\WINDOWS\system32\hkcmd.exe
F:\Program Files\Analog Devices\Core\smax4pnp.exe
F:\WINDOWS\system32\fxredir.exe
F:\PROGRA~1\Grisoft\AVG7\avgcc.exe
F:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
F:\Documents and Settings\Administrator\Desktop\AVG Anti-Spyware 7.5\avgas.exe
F:\Program Files\Messenger\msmsgs.exe
F:\WINDOWS\system32\ctfmon.exe
F:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
F:\Program Files\Canon\MultiPASS4\MPDBMgr.exe
F:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
F:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
F:\PROGRA~1\Grisoft\AVG7\avgemc.exe
F:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
F:\Program Files\Canon\MultiPASS4\MPSERVIC.EXE
F:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe
F:\WINDOWS\system32\svchost.exe
F:\WINDOWS\System32\svchost.exe
F:\WINDOWS\system32\wscntfy.exe
F:\WINDOWS\system32\NOTEPAD.EXE
F:\Program Files\Internet Explorer\IEXPLORE.EXE
F:\WINDOWS\system32\DllHost.exe
F:\WINDOWS\system32\NOTEPAD.EXE
F:\Program Files\Hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://my.netscape.com/
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - F:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - F:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - F:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll
O2 - BHO: Web assistant - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - F:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - F:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Ask Jeeves Bar - {43D9E6F0-1776-4897-AE14-ECEDECBAFEC0} - F:\WINDOWS\system32\askbarAB.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - F:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll
O3 - Toolbar: (no name) - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - (no file)
O4 - HKLM\..\Run: [IgfxTray] F:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] F:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [SoundMAXPnP] F:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [fxredir] F:\WINDOWS\system32\fxredir.exe
O4 - HKLM\..\Run: [AVG7_CC] F:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [Adobe Photo Downloader] "F:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "F:\Documents and Settings\Administrator\Desktop\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [MSMSGS] "F:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] F:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [RoboForm] "F:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O4 - HKCU\..\Run: [updateMgr] "F:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
O4 - HKCU\..\Run: [Registry Cleaner] "F:\Program Files\Registry Cleaner Trial\Regclean.exe" -startminimize
O4 - Global Startup: Adobe Reader Speed Launch.lnk = F:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: Ask Jeeves Search - res://F:\WINDOWS\system32\askbarAB.dll/cmd-search-selection
O8 - Extra context menu item: Customize Menu - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Dictionary Search - res://F:\WINDOWS\system32\askbarAB.dll/cmd-search-selection-word
O8 - Extra context menu item: E&xport to Microsoft Excel - res://F:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Fill Forms - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: RoboForm Toolbar - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Save Forms - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://F:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - F:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
O16 - DPF: Payday FreeCell by pogo - http://game1.pogo.co...ecell-en_US.cab
O16 - DPF: Payday Freecell Solitaire by pogo - http://game1.pogo.co...cell2-en_US.cab
O16 - DPF: Tri-Peaks by pogo - http://game1.pogo.co...peaks-en_US.cab
O16 - DPF: World Class Solitaire by pogo - http://game1.pogo.co...class-en_US.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://support.cox.c...oad/tgctlcm.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://scan.safety.l...lscbase5059.cab
O16 - DPF: {9522B3FB-7A2B-4646-8AF6-36E7F593073C} (cpbrkpie Control) - http://a19.g.akamai....02/cpbrkpie.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{408BDC78-3C54-4AB0-A9C2-B2B7660320DF}: NameServer = 4.2.2.2,4.2.2.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{9A8D0395-EA31-441B-850A-6724B8E4BDBD}: NameServer = 204.117.214.10,216.163.120.19
O20 - Winlogon Notify: igfxcui - F:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - F:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - F:\Documents and Settings\Administrator\Desktop\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - F:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - F:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - F:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: MpService - Canon Inc. - F:\Program Files\Canon\MultiPASS4\MPSERVIC.EXE

If there is anything else I need to do please tell me.

I also received a message when I went to print the log that there is a problem with the spooler.

Again thank you

#4 ken545

ken545

    Forum God

  • Retired Classroom Teacher
  • 23,225 posts
  • Interests:Fighting Malware and cooking some great Italian and TexMex food
  • MVP

Posted 28 April 2007 - 07:28 AM

Good Morning,

Nothing bad in your AVG report although you didn't follow the directions to remove or quarantine what it found, no problem though because all it found were cookies.

The rest of your log looks fine :thumbup:

As far as the spooler problem, thats related to your Canan Multipass , what I would suggest is to reinstall the software for your printer.

I see AVG Anti Virus installed but I am not looking at a Firewall so I am providing links to some free programs for you to install that will help keep you more secure on the internet, it includes the free Zonealarm firewall so I recommend that you install it.


This forum is for the removal of Viruses and Malware so I won't be able to help you with your printer problem , I am also providing links to windows support forums that can help you in that area.



Windows Tech Support Forums
It's Not Always MalwareSpeedup Windows Windows Tips How did I get infected in the first place ? Read these links and find out how to prevent getting infected again.


Here are some free programs to install, don't leave home without them
  • Spybot Search and Destroy 1.4
    Check for Updates/ Immunize and run a Full System Scan on a regular basis.
  • Ad-Aware SE Personal 1.06
    Check for Updates and run a Full System Scan on a regular basis.
  • Spyware Blaster It will prevent most spyware from ever being installed.
  • Spyware Guard It offers realtime protection from spyware installation attempts.
  • Win Patrol This program will warn you when any changes are being made to your system and give you the option to deny the change.
  • IE-Spyad
    IE-Spyad places over 4000 web sites and domains in the IE Restricted list which will severely impair attempts to infect your system. It basically prevents any downloads (cookies etc) from the sites listed, although you will still be able to connect to the sites.
  • Firefox 2.0 It has more features and is a lot more secure than IE. It is a very easy and painless download and install, it will no way interfere with IE, you can use them both.
  • Zone Alarm Here is a free Firewall from Zone Labs, I wouldn't access the internet without it.
Thanks for stopping by Tom Coyote , I'm glad I was able to help you. :D

 
 
The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
donate.gif
 
Find us on Facebook
Please LIKE and SHARE
 
 
Just a reminder that threads will be closed if no reply in 3 days.

#5 tippy2

tippy2

    New Member

  • New Member
  • Pip
  • 4 posts

Posted 29 April 2007 - 11:10 AM

:D I will implement your instructions today. If for some reason I cannot get the problem solve I will reinstall Windows XP. Thank you for everything. :weee:

#6 ken545

ken545

    Forum God

  • Retired Classroom Teacher
  • 23,225 posts
  • Interests:Fighting Malware and cooking some great Italian and TexMex food
  • MVP

Posted 29 April 2007 - 12:25 PM

tippy2 :D

I hate to see you go through a reinstall of windows. You have this program installed F:\Program Files\Registry Cleaner Trial I am getting mixed results on this program. Keep in mind that anytime you fool around with the registry you risk the chance of crippling your system. I have never trusted any of those registry cleaner programs, there really not needed.

Go to your Add-Remove Programs in the Control Panel and uninstall Registry Cleaner Trial

Open HijackThis > Do a System Scan Only, close your browser and all open windows, the only program or window you should have open is HijackThis, check the following entries and click on Fix Checked.

O4 - HKCU\..\Run: [Registry Cleaner] "F:\Program Files\Registry Cleaner Trial\Regclean.exe" -startminimize

Then reboot your computer and see if your problem goes away. Let me know???

 
 
The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
donate.gif
 
Find us on Facebook
Please LIKE and SHARE
 
 
Just a reminder that threads will be closed if no reply in 3 days.

#7 tippy2

tippy2

    New Member

  • New Member
  • Pip
  • 4 posts

Posted 02 May 2007 - 01:06 PM

Thank you. I would rather do anything than to reinstall. LaVonda (aka tippy2) :weee:

#8 ken545

ken545

    Forum God

  • Retired Classroom Teacher
  • 23,225 posts
  • Interests:Fighting Malware and cooking some great Italian and TexMex food
  • MVP

Posted 02 May 2007 - 04:42 PM

Did that correct your problem??

 
 
The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
donate.gif
 
Find us on Facebook
Please LIKE and SHARE
 
 
Just a reminder that threads will be closed if no reply in 3 days.

#9 ken545

ken545

    Forum God

  • Retired Classroom Teacher
  • 23,225 posts
  • Interests:Fighting Malware and cooking some great Italian and TexMex food
  • MVP

Posted 10 May 2007 - 10:42 AM

This topic is being closed due to lack of response, if you need this topic reopened, please request this by sending an email to us at the following link
(Click for address)
Include your post user name and detail why you need it reopened with a valid link to your post.
Any bad links or emails that are not from the original poster will be deleted without response.
Any emails without the subject "Reopen" will be deleted without being looked at.

If this is not your thread please start a New Topic.


 
 
The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
donate.gif
 
Find us on Facebook
Please LIKE and SHARE
 
 
Just a reminder that threads will be closed if no reply in 3 days.

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users