Jump to content

3934230198:1231650837.exe Cant Stop!


Hizzle G
 Share

Recommended Posts

.

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.

IF REQUESTED, ZIP IT UP & ATTACH IT

.

DDS (Ver_2011-06-23.01)

.

Microsoft Windows XP Professional

Boot Device: \Device\HarddiskVolume1

Install Date: 8/11/2010 8:52:22 PM

System Uptime: 8/17/2011 5:08:34 PM (0 hours ago)

.

Motherboard: Dell Inc. | | 0XD720

Processor: Genuine Intel® CPU T2400 @ 1.83GHz | Microprocessor | 1828/166mhz

.

==== Disk Partitions =========================

.

C: is FIXED (NTFS) - 75 GiB total, 46.392 GiB free.

D: is CDROM ()

.

==== Disabled Device Manager Items =============

.

Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}

Description: 1394 Net Adapter

Device ID: V1394\NIC1394\1EE56521334FC000

Manufacturer: Microsoft

Name: 1394 Net Adapter

PNP Device ID: V1394\NIC1394\1EE56521334FC000

Service: NIC1394

.

==== System Restore Points ===================

.

RP260: 8/14/2011 5:19:02 PM - Installed HiJackThis

RP261: 8/14/2011 7:17:29 PM - Removed Delta Force Black Hawk Down

RP262: 8/14/2011 7:20:06 PM - Installed Delta Force Black Hawk Down

RP263: 8/16/2011 5:30:32 PM - System Checkpoint

RP264: 8/16/2011 9:34:17 PM - Removed HiJackThis

RP265: 8/16/2011 9:35:17 PM - Removed PunkBuster for Joint Operations: Typhoon Rising

RP266: 8/16/2011 9:35:56 PM - Configured RICOH Media Driver ver.2.07.01.00

RP267: 8/16/2011 9:36:36 PM - NMEA Port

RP268: 8/16/2011 9:36:57 PM - Removed Sprint SmartView.

.

==== Installed Programs ======================

.

Adobe Flash Player 10 ActiveX

Adobe Flash Player 10 Plugin

Adobe Reader 9.4.5

America's Army 3

Apple Application Support

Apple Mobile Device Support

Apple Software Update

ATI - Software Uninstall Utility

ATI Catalyst Control Center

ATI Display Driver

BitLord 1.2

Bluetooth HID Switch Service

Bluetooth Stack for Windows by Toshiba

Bonjour

Broadcom 440x 10/100 Integrated Controller

Broadcom Management Programs

Conexant HDA D110 MDC V.92 Modem

Curse Client

Delta Force Black Hawk Down

Delta Force Xtreme 2

Digital Line Detect

DriverUpdate

EASEUS Partition Master 8.0.1 Home Edition

FLV Player 2.0 (build 25)

FYZip 1.00

Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)

Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)

Hotfix for Windows XP (KB2443685)

Hotfix for Windows XP (KB952287)

Hotfix for Windows XP (KB954550-v5)

Hotfix for Windows XP (KB961118)

Hotfix for Windows XP (KB981793)

HP Deskjet 1000 J110 series Basic Device Software

HP Deskjet 1000 J110 series Help

Image to PDF Converter Free 3.0

Info Center 1.0.0.5

InstallVC90Support

Intel PROSet Wireless

Intel® Processor ID Utility

Intel® PROSet/Wireless WiFi Software

Internet Cell Boost

iTunes

J2SE Runtime Environment 5.0 Update 16

Java Auto Updater

Java 6 Update 26

League of Legends

Microsoft .NET Framework 1.1

Microsoft .NET Framework 1.1 Security Update (KB2416447)

Microsoft .NET Framework 2.0 Service Pack 2

Microsoft .NET Framework 3.0 Service Pack 2

Microsoft .NET Framework 3.5 SP1

Microsoft .NET Framework 4 Client Profile

Microsoft Base Smart Card Cryptographic Service Provider Package

Microsoft Silverlight

Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022

MobileMe Control Panel

Mozilla Firefox 5.0 (x86 en-US)

mProSafe

MSXML 6 Service Pack 2 (KB973686)

mWlsSafe

Pando Media Booster

PC Matic 1.1.0.41

PC Pitstop Download Nitro 1.2

PC Pitstop Exterminate2 2.0

PC Pitstop SuperShield 1.0.0.18

PDF Converter XP 1.03

QuickSet

QuickTime

Safari

Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)

Security Update for Windows Internet Explorer 8 (KB2497640)

Security Update for Windows Internet Explorer 8 (KB2510531)

Security Update for Windows Internet Explorer 8 (KB2530548)

Security Update for Windows Internet Explorer 8 (KB2544521)

Security Update for Windows Internet Explorer 8 (KB2559049)

Security Update for Windows Internet Explorer 8 (KB982381)

Security Update for Windows Media Player (KB2378111)

Security Update for Windows Media Player (KB954155)

Security Update for Windows Media Player (KB973540)

Security Update for Windows Media Player (KB975558)

Security Update for Windows Media Player (KB978695)

Security Update for Windows XP (KB2079403)

Security Update for Windows XP (KB2115168)

Security Update for Windows XP (KB2121546)

Security Update for Windows XP (KB2229593)

Security Update for Windows XP (KB2296011)

Security Update for Windows XP (KB2347290)

Security Update for Windows XP (KB2360937)

Security Update for Windows XP (KB2387149)

Security Update for Windows XP (KB2393802)

Security Update for Windows XP (KB2412687)

Security Update for Windows XP (KB2419632)

Security Update for Windows XP (KB2423089)

Security Update for Windows XP (KB2440591)

Security Update for Windows XP (KB2443105)

Security Update for Windows XP (KB2476490)

Security Update for Windows XP (KB2476687)

Security Update for Windows XP (KB2478960)

Security Update for Windows XP (KB2478971)

Security Update for Windows XP (KB2479943)

Security Update for Windows XP (KB2481109)

Security Update for Windows XP (KB2483185)

Security Update for Windows XP (KB2485663)

Security Update for Windows XP (KB2503658)

Security Update for Windows XP (KB2503665)

Security Update for Windows XP (KB2506212)

Security Update for Windows XP (KB2506223)

Security Update for Windows XP (KB2507618)

Security Update for Windows XP (KB2507938)

Security Update for Windows XP (KB2508272)

Security Update for Windows XP (KB2508429)

Security Update for Windows XP (KB2509553)

Security Update for Windows XP (KB2511455)

Security Update for Windows XP (KB2524375)

Security Update for Windows XP (KB2535512)

Security Update for Windows XP (KB2536276-v2)

Security Update for Windows XP (KB2536276)

Security Update for Windows XP (KB2544893)

Security Update for Windows XP (KB2555917)

Security Update for Windows XP (KB2562937)

Security Update for Windows XP (KB2566454)

Security Update for Windows XP (KB2567680)

Security Update for Windows XP (KB2570222)

Security Update for Windows XP (KB923561)

Security Update for Windows XP (KB946648)

Security Update for Windows XP (KB950762)

Security Update for Windows XP (KB950974)

Security Update for Windows XP (KB951376-v2)

Security Update for Windows XP (KB951748)

Security Update for Windows XP (KB952004)

Security Update for Windows XP (KB952954)

Security Update for Windows XP (KB955069)

Security Update for Windows XP (KB956572)

Security Update for Windows XP (KB956744)

Security Update for Windows XP (KB956802)

Security Update for Windows XP (KB956803)

Security Update for Windows XP (KB956844)

Security Update for Windows XP (KB958644)

Security Update for Windows XP (KB958869)

Security Update for Windows XP (KB959426)

Security Update for Windows XP (KB960225)

Security Update for Windows XP (KB960803)

Security Update for Windows XP (KB960859)

Security Update for Windows XP (KB961501)

Security Update for Windows XP (KB969059)

Security Update for Windows XP (KB970238)

Security Update for Windows XP (KB970430)

Security Update for Windows XP (KB971468)

Security Update for Windows XP (KB971657)

Security Update for Windows XP (KB972270)

Security Update for Windows XP (KB973507)

Security Update for Windows XP (KB973869)

Security Update for Windows XP (KB973904)

Security Update for Windows XP (KB974112)

Security Update for Windows XP (KB974318)

Security Update for Windows XP (KB974392)

Security Update for Windows XP (KB974571)

Security Update for Windows XP (KB975025)

Security Update for Windows XP (KB975467)

Security Update for Windows XP (KB975560)

Security Update for Windows XP (KB975561)

Security Update for Windows XP (KB975562)

Security Update for Windows XP (KB975713)

Security Update for Windows XP (KB977816)

Security Update for Windows XP (KB977914)

Security Update for Windows XP (KB978037)

Security Update for Windows XP (KB978338)

Security Update for Windows XP (KB978542)

Security Update for Windows XP (KB978601)

Security Update for Windows XP (KB978706)

Security Update for Windows XP (KB979309)

Security Update for Windows XP (KB979482)

Security Update for Windows XP (KB979559)

Security Update for Windows XP (KB979683)

Security Update for Windows XP (KB979687)

Security Update for Windows XP (KB980195)

Security Update for Windows XP (KB980218)

Security Update for Windows XP (KB980232)

Security Update for Windows XP (KB980436)

Security Update for Windows XP (KB981322)

Security Update for Windows XP (KB981997)

Security Update for Windows XP (KB982132)

Security Update for Windows XP (KB982381)

Security Update for Windows XP (KB982665)

SigmaTel Audio

Spybot - Search & Destroy

Steam

Synaptics Pointing Device Driver

System Requirements Lab for Intel

Update for Microsoft .NET Framework 3.5 SP1 (KB963707)

Update for Windows Internet Explorer 8 (KB2447568)

Update for Windows XP (KB2345886)

Update for Windows XP (KB2467659)

Update for Windows XP (KB2492386)

Update for Windows XP (KB2541763)

Update for Windows XP (KB951978)

Update for Windows XP (KB955759)

Update for Windows XP (KB967715)

Update for Windows XP (KB968389)

Update for Windows XP (KB971029)

Update for Windows XP (KB971737)

Update for Windows XP (KB973687)

Update for Windows XP (KB973815)

Ventrilo Client

WebFldrs XP

Windows Driver Package - Intel USB (08/05/2009 9.1.1.1016)

Windows Genuine Advantage Notifications (KB905474)

Windows Imaging Component

Windows Internet Explorer 8

Windows Media Format 11 runtime

Windows Media Player 11

Windows XP Service Pack 3

Xfire (remove only)

Yahoo! BrowserPlus 2.9.8

.

==== Event Viewer Messages From Past Week ========

.

8/15/2011 7:12:47 PM, error: Service Control Manager [7000] - The Ashampoo Anti-Malware WSC Service service failed to start due to the following error: The system cannot find the file specified.

8/15/2011 7:12:47 PM, error: Service Control Manager [7000] - The Ashampoo Anti-Malware Service service failed to start due to the following error: The system cannot find the file specified.

8/15/2011 5:47:19 AM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: APPDRV Fips intelppm kl1 KLIF sbaphd Tosrfcom

8/15/2011 5:35:13 AM, error: SideBySide [59] - Resolve Partial Assembly failed for Microsoft.VC80.MFCLOC. Reference error message: The referenced assembly is not installed on your system. .

8/15/2011 5:35:13 AM, error: SideBySide [59] - Generate Activation Context failed for C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\MFC80.DLL. Reference error message: The operation completed successfully. .

8/15/2011 5:35:13 AM, error: SideBySide [32] - Dependent Assembly Microsoft.VC80.MFCLOC could not be found and Last Error was The referenced assembly is not installed on your system.

8/15/2011 5:35:05 AM, error: Dhcp [1002] - The IP address lease 192.168.50.3 for the Network Card with network address 0015C510416D has been denied by the DHCP server 192.168.50.1 (The DHCP Server sent a DHCPNACK message).

8/15/2011 5:00:19 AM, error: Service Control Manager [7023] - The Network Location Awareness (NLA) service terminated with the following error: The specified procedure could not be found.

8/14/2011 7:07:41 PM, error: ipnathlp [30013] - The DHCP allocator has disabled itself on IP address 192.168.50.3, since the IP address is outside the 192.168.0.0/255.255.255.0 scope from which addresses are being allocated to DHCP clients. To enable the DHCP allocator on this IP address, please change the scope to include the IP address, or change the IP address to fall within the scope.

8/14/2011 6:58:59 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

8/14/2011 6:57:50 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service StiSvc with arguments "" in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811}

8/14/2011 6:16:18 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AFD APPDRV Fips intelppm IPSec kl1 KLIF MRxSmb NetBIOS NetBT RasAcd Rdbss sbaphd Tcpip tcpipBM Tosrfcom vsdatant WS2IFSL

8/14/2011 6:16:18 PM, error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the AFD service which failed to start because of the following error: A device attached to the system is not functioning.

8/14/2011 6:16:18 PM, error: Service Control Manager [7001] - The IPSEC Services service depends on the IPSEC driver service which failed to start because of the following error: A device attached to the system is not functioning.

8/14/2011 6:16:18 PM, error: Service Control Manager [7001] - The DNS Client service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.

8/14/2011 6:16:18 PM, error: Service Control Manager [7001] - The DHCP Client service depends on the NetBios over Tcpip service which failed to start because of the following error: A device attached to the system is not functioning.

8/14/2011 6:16:18 PM, error: Service Control Manager [7001] - The Bonjour Service service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.

8/14/2011 6:16:18 PM, error: Service Control Manager [7001] - The Apple Mobile Device service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.

8/14/2011 6:16:01 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service netman with arguments "" in order to run the server: {BA126AE5-2166-11D1-B1D0-00805FC1270E}

8/14/2011 5:05:33 PM, error: Service Control Manager [7034] - The MBAMService service terminated unexpectedly. It has done this 1 time(s).

8/14/2011 4:48:33 PM, error: Service Control Manager [7034] - The Updater Service for StartNow Toolbar service terminated unexpectedly. It has done this 1 time(s).

8/14/2011 4:45:12 PM, error: Service Control Manager [7031] - The Apple Mobile Device service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.

8/14/2011 4:45:06 PM, error: Service Control Manager [7034] - The PnkBstrB service terminated unexpectedly. It has done this 1 time(s).

8/14/2011 4:45:05 PM, error: Service Control Manager [7034] - The PnkBstrA service terminated unexpectedly. It has done this 1 time(s).

8/13/2011 9:49:37 AM, error: Service Control Manager [7031] - The Apple Mobile Device service terminated unexpectedly. It has done this 3 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.

8/13/2011 7:35:06 AM, error: Service Control Manager [7031] - The Apple Mobile Device service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.

8/12/2011 9:55:06 PM, error: Service Control Manager [7034] - The iPod Service service terminated unexpectedly. It has done this 1 time(s).

8/12/2011 9:54:49 PM, error: Service Control Manager [7034] - The PCPitstop Realtime service terminated unexpectedly. It has done this 1 time(s).

8/10/2011 5:28:34 PM, error: Service Control Manager [7011] - Timeout (30000 milliseconds) waiting for a transaction response from the EvtEng service.

.

==== End Of File ===========================

 

 

 

 

 

.

DDS (Ver_2011-06-23.01) - NTFSx86

Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_26

Run by chuck at 17:22:43 on 2011-08-17

Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2046.1401 [GMT -5:00]

.

AV: Ashampoo Anti-MalWare *Disabled/Updated* {91BDFB4E-BA7E-4ABC-9472-A79BA394CA4B}

.

============== Running Processes ===============

.

C:\WINDOWS\3934230198:1231650837.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost -k DcomLaunch

svchost.exe

C:\WINDOWS\System32\svchost.exe -k netsvcs

C:\Program Files\Intel\WiFi\bin\EvtEng.exe

C:\Program Files\Intel\WiFi\bin\S24EvMon.exe

C:\Program Files\Intel\WiFi\bin\WLKeeper.exe

svchost.exe

svchost.exe

C:\WINDOWS\system32\spoolsv.exe

svchost.exe

C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

C:\Program Files\Bonjour\mDNSResponder.exe

svchost.exe

C:\Program Files\Java\jre6\bin\jqs.exe

C:\Program Files\PCPitstop\PC MaticRT\PCPitstopRTService.exe

C:\Program Files\PCPitstop\PCPitstopScheduleService.exe

C:\WINDOWS\system32\wscript.exe

C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe

C:\WINDOWS\system32\svchost.exe -k imgsvc

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\wscntfy.exe

C:\WINDOWS\System32\svchost.exe -k HTTPFilter

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10.exe

C:\Program Files\PCPitstop\PC MaticRT\PCMaticRT.exe

C:\Program Files\PCPitstop\Info Center\InfoCenter.exe

C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe

C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe

C:\Program Files\SigmaTel\C-Major Audio\WDM\stsystra.exe

C:\Program Files\Common Files\Java\Java Update\jusched.exe

C:\Program Files\PCPitstop\Download Nitro\pcpitstop-nitro.exe

C:\Program Files\Pando Networks\Media Booster\PMB.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\WINDOWS\system32\wbem\unsecapp.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Mozilla Firefox\plugin-container.exe

.

============== Pseudo HJT Report ===============

.

uInternet Settings,ProxyOverride = *.local

BHO: IDM integration (IDMIEHlprObj Class): {0055c089-8582-441b-a0bf-17b458c2a3a8} - c:\program files\internet download manager\IDMIECC.dll

BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll

BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll

BHO: StartNow Toolbar Helper: {6e13d095-45c3-4271-9475-f3b48227dd9f} - c:\program files\startnow toolbar\Toolbar32.dll

BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll

BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

TB: StartNow Toolbar: {5911488e-9d1e-40ec-8cbb-06b231cc153f} - c:\program files\startnow toolbar\Toolbar32.dll

TB: {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File

uRun: [Download Nitro] "c:\program files\pcpitstop\download nitro\pcpitstop-nitro.exe" -autorun

uRun: [Pando Media Booster] c:\program files\pando networks\media booster\PMB.exe

uRun: [spybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe

uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe

mRun: [synTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe

mRun: [ATICCC] "c:\program files\ati technologies\ati.ace\cli.exe" runtime -Delay

mRun: [HPDJ Taskbar Utility] c:\windows\system32\spool\drivers\w32x86\3\hpztsb10.exe

mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"

mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"

mRun: [PC MaticRT] c:\program files\pcpitstop\pc maticrt\PCMaticRT.exe

mRun: [info Center] c:\program files\pcpitstop\info center\InfoCenter.exe

mRun: [intelZeroConfig] "c:\program files\intel\wifi\bin\ZCfgSvc.exe"

mRun: [intelWireless] "c:\program files\common files\intel\wirelesscommon\iFrmewrk.exe" /tf Intel Wireless Tray

mRun: [sigmatelSysTrayApp] %ProgramFiles%\SigmaTel\C-Major Audio\WDM\stsystra.exe

mRun: [AppleSyncNotifier] c:\program files\common files\apple\mobile device support\AppleSyncNotifier.exe

mRun: [sunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"

mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime

mRun: [iTunesHelper] "g:\itunes\iTunesHelper.exe"

mRun: [Anti Trojan Elite] c:\program files\hizz\TJEnder.exe :NO

mRun: [Ashampoo Anti-Malware Guard] "c:\program files\ashampoo\ashampoo anti-malware\AAMW_Guard.exe"

IE: Download with IDM - c:\program files\internet download manager\IEExt.htm

IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe

IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe

IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll

LSP: mswsock.dll

DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} - hxxp://utilities.pcpitstop.com/Nirvana/controls/pcmatic.cab

DPF: {33564D57-0000-0010-8000-00AA00389B71} - hxxp://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB

DPF: {6824D897-F7E1-4E41-B84B-B1D3FA4BF1BD} - hxxp://utilities.pcpitstop.com/Exterminate2/pcpitstopAntiVirus.dll

DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab

DPF: {CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_16-windows-i586.cab

DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab

DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab

TCP: DhcpNameServer = 10.0.3.246 10.0.1.9

TCP: Interfaces\{A5D8330A-A3AE-4EFB-94E0-51E14156E985} : DhcpNameServer = 10.0.3.246 10.0.1.9

Notify: AtiExtEvent - Ati2evxx.dll

SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll

.

================= FIREFOX ===================

.

FF - ProfilePath - c:\documents and settings\chuck\application data\mozilla\firefox\profiles\9xgi0p4o.default\

FF - prefs.js: browser.startup.homepage - www.yahoo.com

FF - plugin: c:\documents and settings\chuck\local settings\application data\yahoo!\browserplus\2.9.8\plugins\npybrowserplus_2.9.8.dll

FF - plugin: c:\program files\adobe\reader 9.0\reader\air\nppdf32.dll

FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll

FF - plugin: c:\program files\microsoft silverlight\4.0.51204.0\npctrlui.dll

FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll

FF - plugin: c:\program files\mozilla firefox\plugins\nphssb.dll

FF - plugin: c:\program files\pando networks\media booster\npPandoWebPlugin.dll

.

---- FIREFOX POLICIES ----

FF - user.js: yahoo.ytff.general.dontshowhpoffer - true

============= SERVICES / DRIVERS ===============

.

R1 sbaphd;sbaphd;c:\windows\system32\drivers\sbaphd.sys [2011-3-3 21464]

R2 PCPitstop Realtime;PCPitstop Realtime;c:\program files\pcpitstop\pc maticrt\PCPitstopRTService.exe [2011-5-20 382104]

R2 PCPitstop Scheduling;PCPitstop Scheduling;c:\program files\pcpitstop\PCPitstopScheduleService.exe [2011-5-22 79360]

R2 sbapifs;sbapifs;c:\windows\system32\drivers\sbapifs.sys [2011-3-3 69976]

R3 NETwLx32; Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows XP 32 Bit;c:\windows\system32\drivers\NETwLx32.sys [2011-5-24 6609920]

S2 AAMW_WSC_Service_XP;Ashampoo Anti-Malware WSC Service;c:\program files\ashampoo\ashampoo anti-malware\aamw_wsc_service_xp.exe --> c:\program files\ashampoo\ashampoo anti-malware\AAMW_WSC_Service_XP.exe [?]

S2 AAMWService;Ashampoo Anti-Malware Service;c:\program files\ashampoo\ashampoo anti-malware\aamw_service.exe --> c:\program files\ashampoo\ashampoo anti-malware\AAMW_Service.exe [?]

S2 ATE_PROCMON;ATE_PROCMON;\??\c:\program files\anti trojan elite\atepmon.sys --> c:\program files\anti trojan elite\ATEPMon.sys [?]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]

S2 Updater Service for StartNow Toolbar;Updater Service for StartNow Toolbar;c:\program files\startnow toolbar\toolbarupdaterservice.exe --> c:\program files\startnow toolbar\ToolbarUpdaterService.exe [?]

S3 cpudrv;cpudrv;c:\program files\systemrequirementslab\cpudrv.sys [2009-12-18 11336]

S3 epmntdrv;epmntdrv;c:\windows\system32\epmntdrv.sys [2011-5-4 13192]

S3 EuGdiDrv;EuGdiDrv;c:\windows\system32\EuGdiDrv.sys [2011-5-4 8456]

S3 RkHit;RkHit;\??\c:\windows\system32\drivers\rkhit.sys --> c:\windows\system32\drivers\RKHit.sys [?]

S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]

.

=============== Created Last 30 ================

.

2011-08-17 02:40:16 -------- d-----w- c:\windows\Internet Logs

2011-08-16 21:40:43 -------- d-----w- C:\!KillBox

2011-08-15 23:32:16 -------- d-----w- c:\program files\Kapha Anti-Malware

2011-08-15 22:32:30 -------- d-----w- c:\documents and settings\chuck\local settings\application data\Ashampoo

2011-08-15 22:31:51 -------- d-----w- c:\program files\hizz

2011-08-14 22:33:39 -------- d-----w- c:\program files\Spybot - Search & Destroy

2011-08-14 22:19:03 -------- d-----w- c:\program files\Trend Micro

2011-08-14 22:08:17 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2011-08-14 22:02:04 -------- d-----w- c:\documents and settings\chuck\application data\Malwarebytes

2011-08-14 22:01:57 -------- d-----w- c:\documents and settings\all users.windows\application data\Malwarebytes

2011-08-14 16:00:31 -------- d-----w- c:\program files\Anti Trojan Elite

2011-08-12 11:16:20 -------- d-----w- c:\program files\FYZip

2011-08-12 11:16:12 -------- d-----w- c:\program files\StartNow Toolbar

2011-08-11 23:52:14 -------- d-----w- c:\program files\Run-Time

2011-08-11 03:04:00 -------- d-----w- c:\program files\iPod

2011-08-11 02:55:56 -------- d-----w- c:\program files\Bonjour

2011-08-01 02:47:55 -------- d-----w- c:\documents and settings\chuck\application data\Oberon Media

2011-08-01 02:46:40 -------- d-----w- c:\program files\Yahoo! Games

2011-07-30 23:52:16 -------- d-----w- c:\documents and settings\chuck\riotsGamesLogs

2011-07-30 16:37:14 988032 ----a-w- c:\windows\system32\drivers\HSF_DPV.sys

2011-07-30 16:37:14 731136 ----a-w- c:\windows\system32\drivers\HSF_CNXT.sys

2011-07-30 16:37:14 212992 ----a-w- c:\windows\system32\UCI32M19.dll

2011-07-30 16:37:14 209536 ----a-w- c:\windows\system32\drivers\HSFHWAZL.sys

.

==================== Find3M ====================

.

2011-07-15 13:29:31 456320 ----a-w- c:\windows\system32\drivers\mrxsmb.sys

2011-07-14 22:27:11 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

2011-07-12 16:20:54 83816 ----a-w- c:\windows\system32\dns-sd.exe

2011-07-12 16:20:54 73064 ----a-w- c:\windows\system32\dnssd.dll

2011-07-12 16:20:54 50536 ----a-w- c:\windows\system32\jdns_sd.dll

2011-07-12 16:20:54 178536 ----a-w- c:\windows\system32\dnssdX.dll

2011-07-08 14:02:00 10496 ----a-w- c:\windows\system32\drivers\ndistapi.sys

2011-07-05 23:37:00 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx

2011-07-05 23:37:00 69632 ----a-w- c:\windows\system32\QuickTime.qts

2011-06-24 14:10:36 139656 ----a-w- c:\windows\system32\drivers\rdpwd.sys

2011-06-23 18:36:30 916480 ----a-w- c:\windows\system32\wininet.dll

2011-06-23 18:36:30 43520 ------w- c:\windows\system32\licmgr10.dll

2011-06-23 18:36:30 1469440 ------w- c:\windows\system32\inetcpl.cpl

2011-06-23 12:05:13 385024 ------w- c:\windows\system32\html.iec

2011-06-20 17:44:52 293376 ----a-w- c:\windows\system32\winsrv.dll

2011-06-02 14:02:05 1858944 ----a-w- c:\windows\system32\win32k.sys

2011-05-30 22:19:48 5964800 ----a-w- c:\windows\system32\SETB3.tmp

2011-05-25 02:51:16 189480 ----a-w- c:\windows\system32\PnkBstrB.xtr

2011-05-24 21:53:00 138056 ----a-w- c:\documents and settings\chuck\application data\PnkBstrK.sys

.

============= FINISH: 17:23:35.07 ===============

 

_______________________________________________________________________

Link to comment
Share on other sites

  • Replies 119
  • Created
  • Last Reply

Top Posters In This Topic

Yep. There is the darn ADS file:

C:\WINDOWS\3934230198:1231650837.exe

 

...and another entry in the Pseudo HJT Report indicative of ZeroAccess Rootkit:

LSP: mswsock.dll

 

 

Please do the following:

 

Restart the computer in Safe Mode with Networking.

 

Now, download ComboFix:

http://download.bleepingcomputer.com/sUBs/ComboFix.exe

 

Rename it in the Save prompt to: thecat.com

Save it to the ->> C:\ drive <<-

 

Double-click on thecat.com and follow the prompts.

 

If you have problems running this tool, stop and post back.

 

When CF (thecat.com) finishes, it produces a report.

 

Please provide the ComboFix.txt in your reply.

 

 

Also, do you have another computer?

Edited by Aaflac
Link to comment
Share on other sites

Some info when running ComboFix:

 

1.Do not mouse-click the ComboFix (thecat.com) window while it is running.

This action may cause it to stall.

 

2. ComboFix may reset a number of Internet Explorer's settings, including making IE the default browser.

 

3. CF disconnects your machine from the internet. However, the connection is automatically restored before CF completes its run.

 

4. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.

Link to comment
Share on other sites

Hang in there, Hizzle G.

 

The DDS report gave some information...

 

Try the following:

 

Download GMER:

http://www.gmer.net/gmer.zip

 

Right-click, and select: Extract all…

Extract the contents of the zipped file to the Desktop.

 

Double click GMER.exe

If a warning about Rootkit activity appears, and asks to run a full scan, click on NO

 

Instead, use the following settings for the scan:

In the right panel, there are several boxes checked.

Ensure the following are UNCHECKED:

IAT/EAT

Drives/Partition other than Systemdrive (typically C:\)

Show All

 

Then, click the Scan button and wait for the program to finish.

Once done, click on the [save..] button, and in the File name area, type in ark.txt.

 

Save to your Desktop

 

Please post in your reply.

Link to comment
Share on other sites

Looking for a patched driver...

 

 

Click here and download OldTimer's OTL

Save to the Desktop.

Double-click OTL.exe to open the scan display.

 

At the top click "Scan All Users"

Next, click "Run Scan".

Make no other changes at this time.

 

When the scan completes, it opens two notepad windows:

OTL.Txt and Extras.Txt.

These are also saved in the same location as OTL.exe.

 

Please post the contents of the two reports in your reply.

Link to comment
Share on other sites

Running from: win32kdiag

 

Log file at : C:\Documents and Settings\chuck\Desktop\Win32kDiag.txt

 

Removing all found mount points.

 

Attempting to reset file permissions.

 

WARNING: Could not get backup privileges!

 

Searching 'C:\WINDOWS'...

 

 

 

Found symbolic link : C:\WINDOWS\$NtUninstallKB13955$

 

Found symlink destination : \Device\svchost.exe\setup

 

Removing symbolic link : C:\WINDOWS\$NtUninstallKB13955$

 

Cannot access: C:\WINDOWS\assembly\GAC_MSIL\Desktop.ini

 

Attempting to restore permissions of : C:\WINDOWS\assembly\GAC_MSIL\Desktop.ini

 

 

 

Finished!

Link to comment
Share on other sites

Good.

 

Do exactly as follows, and nothing else. Please do not delete or change anything in the Registry!! The consequences are not good…

 

Please open the Registry (as you already did) and navigate it as follows:

 

Click the [+] on the left of each of the following:

HKEY_LOCAL_MACHINE

System

ControlSet001

Services

 

Under Services, see if you find folders for:

AFD

IPSEC

NETBT

MRxSmb

 

Open each of the folders above.

Then, for each one, go to File (at the top)

Select: Export

 

In the Export Registry File prompt:

Save in: Desktop

File name: AFD

Save as type: Text Files (*.txt)

Click: Save

 

Do the same for the rest.

 

Please post the info in your reply.

 

 

Do not rush. I am going off for tonight. My brains are fried!

 

See you tomorrow.

 

Thanks for hanging in there.

Link to comment
Share on other sites

Hizzle G,

 

If you have not followed the steps in Post #44 (above), please hold off.

 

Try the following instead:

 

 

First Phase:

 

Please download Step1.exe

 

Save it to your desktop and run it by double-clicking it just once

 

It makes a log (Result.txt) found on the Desktop.

 

>>Please post result.txt in your reply.

 

~~~~

 

Second phase:

 

Next, go to Start > Run, copy/paste the following in the Run box, and click OK:

 

cmd /c dir /a/s c:\windows\system32\drivers\*.sys >log.txt & log.txt

 

A file (log.txt) opens on the Desktop.

 

>>Also post log.txt in your reply.

 

What we are trying to do is find an altered file in:

c:\windows\system32\drivers\????.sys

 

We do not know which one it is, therefore the ????

 

We already have the ADS file (with all the numbers), but this needs to be a one/two punch where action is taken on both files.

 

Post back when you get the info.

Edited by Aaflac
Link to comment
Share on other sites

md c:\tempdir0

copy "C:\Windows\System32\Drivers\ACPI.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\AFD.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\APPDRV.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\atapi.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\ati2mtag.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\audstub.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\bcm4sbxp.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Cdrom.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\CmBatt.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Compbatt.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Disk.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\dmio.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\dmload.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\FltMgr.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Ftdisk.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\GEARAspiWDM.sys" c:\tempdir0

copy "C:\Windows\System32\DRIVERS\msgpc.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\HDAudBus.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\HidUsb.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\HSFHWAZL.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\HSF_DPV.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\HTTP.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\i8042prt.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Imapi.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\intelppm.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\IpNat.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\IPSec.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\isapnp.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Kbdclass.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\kbdhid.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\kmixer.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\mdmxsdk.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Mouclass.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\mouhid.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\MRxDAV.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\MRxSmb.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\mssmbios.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\NdisTapi.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Ndisuio.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\NdisWan.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\NetBIOS.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\NetBT.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\NETwLx32.sys" c:\tempdir0

copy "C:\Windows\System32\DRIVERS\NWADIenum.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\ohci1394.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\PCI.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\PCIIde.sys" c:\tempdir0

copy "C:\Windows\System32\DRIVERS\raspptp.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\PSched.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Ptilink.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\RasAcd.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Rasl2tp.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\RasPppoe.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Raspti.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Rdbss.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\RDPCDD.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\rdpdr.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\redbook.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\rimmptsk.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\rimsptsk.sys" c:\tempdir0

copy "C:\Windows\System32\DRIVERS\RimSerial.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\risdptsk.sys" c:\tempdir0

copy "C:\Windows\System32\DRIVERS\rixdptsk.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\RootMdm.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\s24trans.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\sbaphd.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\sbapifs.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\sr.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Srv.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\STHDA.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\swenum.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\SynTP.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\sysaudio.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Tcpip.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\TermDD.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\tosporte.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Tosrfcom.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Update.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\usbccgp.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\usbehci.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\usbhub.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\usbprint.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\usbscan.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\usbuhci.sys" c:\tempdir0

copy "C:\Windows\System32\drivers\vga.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Wanarp.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\wdmaud.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\ACPI.sys" c:\tempdir0

copy "C:\Windows\System32\DRIVERS\HSF_CNXT.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\AFD.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\WmiAcpi.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\WS2IFSL.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\APPDRV.sys" c:\tempdir0

 

attrib -h - s -r C:\WINDOWS\1231650837.exe

ren C:\WINDOWS\1231650837.exe bad.badmd c:\tempdir0

copy "C:\Windows\System32\Drivers\FltMgr.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Ftdisk.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\GEARAspiWDM.sys" c:\tempdir0

copy "C:\Windows\System32\DRIVERS\msgpc.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\HDAudBus.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\HidUsb.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\HSFHWAZL.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\HSF_DPV.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\HTTP.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\i8042prt.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Imapi.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\intelppm.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\IpNat.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\IPSec.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\isapnp.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Kbdclass.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\kbdhid.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\kmixer.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\mdmxsdk.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Mouclass.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\mouhid.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\MRxDAV.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\MRxSmb.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\mssmbios.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\NdisTapi.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Ndisuio.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\NdisWan.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\NetBIOS.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\NetBT.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\NETwLx32.sys" c:\tempdir0

copy "C:\Windows\System32\DRIVERS\NWADIenum.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\ohci1394.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\PCI.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\PCIIde.sys" c:\tempdir0

copy "C:\Windows\System32\DRIVERS\raspptp.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\PSched.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Ptilink.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\RasAcd.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Rasl2tp.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\RasPppoe.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Raspti.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Rdbss.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\RDPCDD.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\rdpdr.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\redbook.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\rimmptsk.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\rimsptsk.sys" c:\tempdir0

copy "C:\Windows\System32\DRIVERS\RimSerial.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\risdptsk.sys" c:\tempdir0

copy "C:\Windows\System32\DRIVERS\rixdptsk.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\RootMdm.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\s24trans.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\sbaphd.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\sbapifs.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\sr.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Srv.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\STHDA.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\swenum.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\SynTP.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\sysaudio.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Tcpip.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\TermDD.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\tosporte.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Tosrfcom.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Update.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\usbccgp.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\usbehci.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\usbhub.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\usbprint.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\usbscan.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\usbuhci.sys" c:\tempdir0

copy "C:\Windows\System32\drivers\vga.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\Wanarp.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\wdmaud.sys" c:\tempdir0

copy "C:\Windows\System32\DRIVERS\HSF_CNXT.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\WmiAcpi.sys" c:\tempdir0

copy "C:\Windows\System32\Drivers\WS2IFSL.sys" c:\tempdir0

 

attrib -h - s -r C:\WINDOWS\1231650837.exe

ren C:\WINDOWS\1231650837.exe bad.bad

Link to comment
Share on other sites

Volume in drive C has no label.

Volume Serial Number is 840B-CFCE

 

Directory of c:\windows\system32\drivers

 

04/13/2008 01:46 PM 53,376 1394bus.sys

04/13/2008 01:36 PM 187,776 acpi.sys

02/28/2006 07:00 AM 11,648 acpiec.sys

04/13/2008 11:39 AM 142,592 aec.sys

02/16/2011 08:22 AM 138,496 afd.sys

04/13/2008 01:36 PM 42,368 agp440.sys

04/13/2008 01:36 PM 44,928 agpcpq.sys

04/13/2008 01:36 PM 42,752 alim1541.sys

04/13/2008 01:36 PM 43,008 amdagp.sys

04/13/2008 01:31 PM 37,376 amdk6.sys

04/13/2008 01:31 PM 37,760 amdk7.sys

08/12/2005 05:50 PM 16,128 APPDRV.SYS

04/13/2008 01:51 PM 60,800 arp1394.sys

04/13/2008 01:57 PM 14,336 asyncmac.sys

04/13/2008 01:40 PM 96,512 atapi.sys

08/03/2004 10:29 PM 56,623 ati1btxx.sys

08/03/2004 10:29 PM 11,615 ati1mdxx.sys

08/03/2004 10:29 PM 12,047 ati1pdxx.sys

08/03/2004 10:29 PM 30,671 ati1raxx.sys

08/03/2004 10:29 PM 63,663 ati1rvxx.sys

08/03/2004 10:29 PM 26,367 ati1snxx.sys

08/03/2004 10:29 PM 21,343 ati1ttxx.sys

08/03/2004 10:29 PM 36,463 ati1tuxx.sys

08/03/2004 10:29 PM 29,455 ati1xbxx.sys

08/03/2004 10:29 PM 34,735 ati1xsxx.sys

08/03/2004 10:29 PM 327,040 ati2mtaa.sys

05/23/2006 10:06 PM 1,578,496 ati2mtag.sys

08/03/2004 10:29 PM 57,856 atinbtxx.sys

08/03/2004 10:29 PM 13,824 atinmdxx.sys

08/03/2004 10:29 PM 14,336 atinpdxx.sys

08/03/2004 10:29 PM 52,224 atinraxx.sys

08/03/2004 10:29 PM 104,960 atinrvxx.sys

08/03/2004 10:29 PM 28,672 atinsnxx.sys

08/03/2004 10:29 PM 13,824 atinttxx.sys

08/03/2004 10:29 PM 73,216 atintuxx.sys

08/03/2004 10:29 PM 31,744 atinxbxx.sys

08/03/2004 10:29 PM 63,488 atinxsxx.sys

04/13/2008 01:51 PM 59,904 atmarpc.sys

02/28/2006 07:00 AM 31,360 atmepvc.sys

04/13/2008 01:51 PM 55,808 atmlane.sys

02/28/2006 07:00 AM 352,256 atmuni.sys

08/17/2001 08:59 AM 3,072 audstub.sys

04/13/2008 01:36 PM 14,208 battc.sys

08/10/2010 12:52 AM 45,568 bcm4sbxp.sys

08/09/2010 09:59 PM 86,867 BCOREUSB.sys

02/28/2006 07:00 AM 4,224 beep.sys

04/13/2008 01:53 PM 71,552 bridge.sys

04/13/2008 01:46 PM 17,024 bthenum.sys

04/13/2008 01:46 PM 37,888 bthmodem.sys

04/13/2008 01:51 PM 101,120 bthpan.sys

06/13/2008 06:05 AM 272,128 bthport.sys

04/13/2008 01:46 PM 36,480 bthprint.sys

04/13/2008 01:46 PM 18,944 bthusb.sys

02/28/2006 07:00 AM 13,952 cbidf2k.sys

02/28/2006 07:00 AM 18,688 cdaudio.sys

04/13/2008 02:14 PM 63,744 cdfs.sys

04/13/2008 01:40 PM 62,976 cdrom.sys

02/28/2006 07:00 AM 262,528 cinemst2.sys

04/13/2008 02:16 PM 49,536 classpnp.sys

04/13/2008 01:36 PM 13,952 cmbatt.sys

04/13/2008 01:36 PM 10,240 compbatt.sys

02/28/2006 07:00 AM 11,776 cpqdap01.sys

04/13/2008 01:31 PM 36,736 crusoe.sys

04/13/2008 01:40 PM 36,352 disk.sys

04/13/2008 01:40 PM 14,208 diskdump.sys

04/13/2008 01:44 PM 799,744 dmboot.sys

04/13/2008 01:44 PM 153,344 dmio.sys

02/28/2006 07:00 AM 5,888 dmload.sys

04/13/2008 01:45 PM 52,864 dmusic.sys

04/13/2008 01:45 PM 60,160 drmk.sys

04/13/2008 01:45 PM 2,944 drmkaud.sys

02/28/2006 07:00 AM 10,496 dxapi.sys

04/13/2008 01:38 PM 71,168 dxg.sys

02/28/2006 07:00 AM 3,328 dxgthk.sys

08/17/2001 08:46 AM 6,400 enum1394.sys

04/13/2008 02:14 PM 143,744 fastfat.sys

04/13/2008 01:40 PM 27,392 fdc.sys

04/13/2008 01:33 PM 44,544 fips.sys

04/13/2008 01:40 PM 20,480 flpydisk.sys

04/13/2008 01:32 PM 129,792 fltmgr.sys

02/28/2006 07:00 AM 12,160 fsvga.sys

02/28/2006 07:00 AM 7,936 fs_rec.sys

02/28/2006 07:00 AM 125,056 ftdisk.sys

04/13/2008 01:36 PM 46,464 gagp30kx.sys

05/18/2009 02:17 PM 26,600 GEARAspiWDM.sys

04/13/2008 11:36 AM 144,384 hdaudbus.sys

08/12/2004 05:45 PM 113,664 Hdaudio.sys

04/13/2008 01:46 PM 25,600 hidbth.sys

04/13/2008 01:45 PM 36,864 hidclass.sys

04/13/2008 01:45 PM 19,200 hidir.sys

04/13/2008 01:45 PM 24,960 hidparse.sys

04/13/2008 01:45 PM 10,368 hidusb.sys

08/03/2004 10:41 PM 220,032 hsfbs2s2.sys

08/03/2004 10:41 PM 685,056 hsfcxts2.sys

08/03/2004 10:41 PM 1,041,536 hsfdpsp2.sys

12/31/1999 07:00 PM 209,536 HSFHWAZL.sys

12/31/1999 07:00 PM 731,136 HSF_CNXT.sys

12/31/1999 07:00 PM 988,032 HSF_DPV.sys

08/09/2010 09:58 PM 192,512 HSXHWAZL.sys

08/09/2010 09:58 PM 669,696 HSX_CNXT.sys

08/09/2010 09:58 PM 936,960 HSX_DPV.sys

10/20/2009 11:20 AM 265,728 http.sys

04/13/2008 02:18 PM 52,480 i8042prt.sys

04/13/2008 01:40 PM 42,112 imapi.sys

04/13/2008 01:31 PM 36,352 intelppm.sys

04/13/2008 01:53 PM 36,608 ip6fw.sys

02/28/2006 07:00 AM 32,896 ipfltdrv.sys

04/13/2008 01:57 PM 20,864 ipinip.sys

04/13/2008 01:57 PM 152,832 ipnat.sys

04/13/2008 02:19 PM 75,264 ipsec.sys

04/13/2008 01:45 PM 46,592 irbus.sys

04/13/2008 01:54 PM 11,264 irenum.sys

04/13/2008 01:36 PM 37,248 isapnp.sys

04/13/2008 01:39 PM 24,576 kbdclass.sys

04/13/2008 01:39 PM 14,592 kbdhid.sys

04/13/2008 01:45 PM 172,416 kmixer.sys

04/13/2008 02:16 PM 141,056 ks.sys

06/24/2009 06:18 AM 92,928 ksecdd.sys

02/28/2006 07:00 AM 7,680 mcd.sys

12/31/1999 07:00 PM 12,672 mdmxsdk.sys

04/13/2008 01:36 PM 63,744 mf.sys

02/28/2006 07:00 AM 4,224 mnmdd.sys

04/13/2008 02:00 PM 30,080 modem.sys

04/13/2008 01:39 PM 23,040 mouclass.sys

08/17/2001 01:48 PM 12,160 mouhid.sys

04/13/2008 01:39 PM 42,368 mountmgr.sys

04/13/2008 01:39 PM 92,544 mqac.sys

04/13/2008 01:32 PM 180,608 mrxdav.sys

07/15/2011 08:29 AM 456,320 mrxsmb.sys

04/13/2008 01:32 PM 19,072 msfs.sys

04/13/2008 01:56 PM 35,072 msgpc.sys

04/13/2008 01:39 PM 7,552 mskssrv.sys

04/13/2008 01:39 PM 5,376 mspclock.sys

04/13/2008 01:39 PM 4,992 mspqm.sys

04/13/2008 01:36 PM 15,488 mssmbios.sys

08/03/2004 10:41 PM 126,686 mtlmnt5.sys

08/03/2004 10:41 PM 1,309,184 mtlstrm.sys

08/03/2004 10:29 PM 452,736 mtxparhm.sys

04/21/2011 08:37 AM 105,472 mup.sys

04/13/2008 01:43 PM 12,672 mutohpen.sys

04/13/2008 02:20 PM 182,656 ndis.sys

07/08/2011 09:02 AM 10,496 ndistapi.sys

04/13/2008 01:55 PM 14,592 ndisuio.sys

04/13/2008 02:20 PM 91,520 ndiswan.sys

11/02/2010 10:17 AM 40,960 ndproxy.sys

04/13/2008 01:56 PM 34,688 netbios.sys

04/13/2008 02:21 PM 162,816 netbt.sys

08/10/2010 03:31 AM 2,236,032 NETw4x32.sys

10/07/2010 04:11 AM 6,609,920 NETwLx32.sys

04/13/2008 01:51 PM 61,824 nic1394.sys

02/28/2006 07:00 AM 12,032 nikedrv.sys

04/13/2008 01:53 PM 40,320 nmnt.sys

04/13/2008 01:32 PM 30,848 npfs.sys

04/13/2008 02:15 PM 574,976 ntfs.sys

08/03/2004 10:41 PM 180,360 ntmtlfax.sys

02/28/2006 07:00 AM 2,944 null.sys

08/03/2004 10:29 PM 1,897,408 nv4_mini.sys

12/15/2010 03:38 PM 229,376 NWADIenum.sys

02/28/2006 07:00 AM 12,416 nwlnkflt.sys

02/28/2006 07:00 AM 32,512 nwlnkfwd.sys

04/13/2008 01:56 PM 88,320 nwlnkipx.sys

02/28/2006 07:00 AM 63,232 nwlnknb.sys

02/28/2006 07:00 AM 55,936 nwlnkspx.sys

04/13/2008 01:34 PM 163,584 nwrdr.sys

04/13/2008 01:46 PM 61,696 ohci1394.sys

02/28/2006 07:00 AM 3,456 oprghdlr.sys

04/13/2008 01:31 PM 42,752 p3.sys

04/13/2008 01:40 PM 80,128 parport.sys

04/13/2008 01:40 PM 19,712 partmgr.sys

02/28/2006 07:00 AM 6,784 parvdm.sys

04/13/2008 01:36 PM 68,224 pci.sys

08/17/2001 01:51 PM 3,328 pciide.sys

04/13/2008 01:40 PM 24,960 pciidex.sys

04/13/2008 01:36 PM 120,192 pcmcia.sys

04/13/2008 02:19 PM 146,048 portcls.sys

04/13/2008 01:31 PM 35,840 processr.sys

04/13/2008 01:56 PM 69,120 psched.sys

02/28/2006 07:00 AM 17,792 ptilink.sys

02/28/2006 07:00 AM 8,832 rasacd.sys

04/13/2008 02:19 PM 51,328 rasl2tp.sys

04/13/2008 01:57 PM 41,472 raspppoe.sys

04/13/2008 02:19 PM 48,384 raspptp.sys

02/28/2006 07:00 AM 16,512 raspti.sys

02/28/2006 07:00 AM 34,432 rawwan.sys

04/13/2008 02:28 PM 175,744 rdbss.sys

02/28/2006 07:00 AM 4,224 rdpcdd.sys

04/13/2008 01:32 PM 196,224 rdpdr.sys

06/24/2011 09:10 AM 139,656 rdpwd.sys

08/03/2004 10:41 PM 13,776 recagent.sys

04/13/2008 01:40 PM 57,600 redbook.sys

04/13/2008 01:46 PM 59,136 rfcomm.sys

06/25/2009 04:58 PM 48,128 rimmptsk.sys

01/18/2007 11:24 AM 26,496 RimSerial.sys

07/12/2005 07:00 PM 51,328 rimsptsk.sys

02/28/2006 07:00 AM 12,032 rio8drv.sys

02/28/2006 07:00 AM 12,032 riodrv.sys

07/14/2005 12:14 PM 27,904 risdptsk.sys

07/14/2005 05:28 PM 307,968 rixdptsk.sys

05/08/2008 09:02 AM 203,136 rmcast.sys

04/13/2008 01:56 PM 30,592 rndismp.sys

04/13/2008 01:56 PM 30,592 rndismpx.sys

02/28/2006 07:00 AM 5,888 rootmdm.sys

05/19/2010 09:15 PM 13,952 s24trans.sys

08/03/2004 10:29 PM 166,912 s3gnbm.sys

06/14/2010 03:04 PM 21,464 sbaphd.sys

06/14/2010 03:04 PM 69,976 sbapifs.sys

04/13/2008 01:40 PM 96,384 scsiport.sys

04/13/2008 01:36 PM 79,232 sdbus.sys

04/13/2008 11:39 AM 20,480 secdrv.sys

04/13/2008 01:40 PM 15,744 serenum.sys

04/13/2008 02:15 PM 64,512 serial.sys

04/13/2008 01:40 PM 11,904 sffdisk.sys

04/13/2008 01:40 PM 10,240 sffp_mmc.sys

04/13/2008 01:40 PM 11,008 sffp_sd.sys

04/13/2008 01:40 PM 11,392 sfloppy.sys

04/13/2008 01:36 PM 40,960 sisagp.sys

08/03/2004 10:41 PM 129,535 slnt7554.sys

08/03/2004 10:41 PM 404,990 slntamr.sys

08/03/2004 10:41 PM 95,424 slnthal.sys

08/03/2004 10:41 PM 13,240 slwdmsup.sys

04/13/2008 01:36 PM 5,888 smbali.sys

02/28/2006 07:00 AM 14,592 smclib.sys

04/13/2008 01:46 PM 25,344 sonydcam.sys

04/13/2008 01:45 PM 6,272 splitter.sys

04/13/2008 01:36 PM 73,472 sr.sys

02/17/2011 08:18 AM 357,888 srv.sys

12/31/1999 07:00 PM 1,229,949 sthda.sys

04/13/2008 01:45 PM 49,408 stream.sys

04/13/2008 01:39 PM 4,352 swenum.sys

04/13/2008 01:45 PM 56,576 swmidi.sys

06/08/2010 04:36 PM 37,248 swmsflt.sys

06/08/2010 04:36 PM 157,440 swmx00.sys

06/08/2010 04:36 PM 203,008 SWNC5E00.sys

08/09/2010 10:01 PM 191,872 SynTP.sys

04/13/2008 02:15 PM 60,800 sysaudio.sys

04/13/2008 01:40 PM 14,976 tape.sys

06/20/2008 06:51 AM 361,600 tcpip.sys

02/11/2010 07:02 AM 226,880 tcpip6.sys

04/13/2008 02:00 PM 19,072 tdi.sys

04/13/2008 07:13 PM 12,040 tdpipe.sys

04/13/2008 07:13 PM 21,896 tdtcp.sys

04/13/2008 07:13 PM 40,840 termdd.sys

08/09/2010 10:00 PM 21,120 tosbtsd2.sys

08/09/2010 10:00 PM 48,640 tosdbt.sys

02/28/2006 07:00 AM 51,712 tosdvd.sys

08/09/2010 10:00 PM 3,712 toshidpt.sys

08/09/2010 10:00 PM 47,104 tosporte.sys

08/09/2010 10:00 PM 108,928 tosrfbd.sys

08/09/2010 10:00 PM 36,480 tosrfbnp.sys

08/09/2010 10:00 PM 64,896 tosrfcom.sys

08/09/2010 10:00 PM 8,573 tosrfec.sys

08/09/2010 10:00 PM 62,848 tosrfhid.sys

08/09/2010 10:00 PM 25,420 tosrflan.sys

08/09/2010 10:00 PM 18,612 tosrfnds.sys

08/09/2010 10:00 PM 160,672 tosrfpcc.sys

08/09/2010 10:00 PM 50,048 tosrfsnd.sys

08/09/2010 10:00 PM 39,936 tosrfusb.sys

08/09/2010 10:00 PM 16,320 tostrans.sys

02/28/2006 07:00 AM 21,376 tsbvcap.sys

04/13/2008 01:56 PM 12,288 tunmp.sys

04/13/2008 01:36 PM 44,672 uagp35.sys

04/13/2008 01:32 PM 66,048 udfs.sys

04/13/2008 01:39 PM 384,768 update.sys

04/13/2008 01:56 PM 12,800 usb8023.sys

04/13/2008 01:56 PM 12,800 usb8023x.sys

05/10/2011 08:06 AM 42,496 usbaapl.sys

04/13/2008 01:45 PM 60,032 USBAUDIO.sys

04/13/2008 01:45 PM 25,600 usbcamd.sys

04/13/2008 01:45 PM 25,728 usbcamd2.sys

04/13/2008 01:45 PM 32,128 usbccgp.sys

02/28/2006 07:00 AM 4,736 usbd.sys

04/13/2008 01:45 PM 30,208 usbehci.sys

04/13/2008 01:45 PM 59,520 usbhub.sys

04/13/2008 01:45 PM 15,872 usbintel.sys

04/13/2008 01:45 PM 143,872 usbport.sys

04/13/2008 01:47 PM 25,856 usbprint.sys

04/13/2008 01:45 PM 15,104 usbscan.sys

04/13/2008 01:45 PM 26,368 usbstor.sys

04/13/2008 01:45 PM 20,608 usbuhci.sys

04/13/2008 01:46 PM 121,984 usbvideo.sys

02/28/2006 07:00 AM 58,112 vdmindvd.sys

04/13/2008 01:44 PM 20,992 vga.sys

04/13/2008 01:36 PM 42,240 viaagp.sys

04/13/2008 01:44 PM 81,664 videoprt.sys

04/13/2008 01:41 PM 52,352 volsnap.sys

04/13/2008 01:43 PM 14,208 wacompen.sys

08/03/2004 10:29 PM 11,807 wadv07nt.sys

08/03/2004 10:29 PM 11,295 wadv08nt.sys

08/03/2004 10:29 PM 11,871 wadv09nt.sys

08/03/2004 10:29 PM 11,935 wadv11nt.sys

04/13/2008 01:57 PM 34,560 wanarp.sys

08/03/2004 10:29 PM 22,271 watv06nt.sys

08/03/2004 10:29 PM 25,471 watv10nt.sys

04/13/2008 02:17 PM 83,072 wdmaud.sys

04/13/2008 01:36 PM 8,832 wmiacpi.sys

02/28/2006 07:00 AM 4,352 wmilib.sys

01/30/2009 05:20 PM 38,528 wpdusb.sys

02/28/2006 07:00 AM 12,032 ws2ifsl.sys

09/28/2006 06:55 PM 77,568 WudfPf.sys

09/28/2006 07:00 PM 82,944 WudfRd.sys

300 File(s) 39,789,168 bytes

 

Total Files Listed:

300 File(s) 39,789,168 bytes

0 Dir(s) 50,016,137,216 bytes free

Link to comment
Share on other sites

Allright!!! Good job, Hizzle G!!

 

Thanks for the info.

 

Will probably not get back with you until much later this evening.

I am consulting with an expert in Europe, and have to contend with the time difference.

 

It is Friday, August 19, at 1:04AM where he is at. That is a 7 hour difference.

 

Please do not use the computer if it is possible.

Edited by Aaflac
Link to comment
Share on other sites

Glad to help, Hizzle G.

 

Want to see this issue resolved as much as you do.

I really do understand the frustration involved with these infections.

Some of them feel like a 'Catch 22'.

 

Will stay up later tonight to coincide with his hours.

Then, will go to the Cracker Barrel and have some 'Red-eye' gravy and biscuits for a crack of dawn breakfast!! :P

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share


×
×
  • Create New...