Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Google results redirect, Spybot won't open. Backdoor.Tidserv?


  • This topic is locked This topic is locked
2 replies to this topic

#1 uberglitzen

uberglitzen

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:07:18 AM

Posted 29 April 2009 - 02:36 PM

I caught a bit of malware yesterday.

I did a VirusScan right away and got two entries - "Backdoor.Tidserv" with filename "tmp29D3.tmp and "W32.Tidserv.G" with filename tempo-1927625375.tmp.

After removing these files via Symantec Antivirus, I did a reboot to find that my Internet (all http and https connections) had completely stopped working. I was able to connect to a VPN connection and download email from an Exchange server, but still unable to access anything via http/https. After some troubleshooting, I realized that this problem was caused by the DNS server addresses my TCP/IP settings being set to "85.255.0.0"

Several hours later, I noticed that when I click on Google search results, I am redirected to other websites (often ads for antimalware/antispyware) such as Genieknows.com, Smartbizsearch.com, Exacttarget.com, and 11picks.com. I am also unable to open Spybot.

My DDS/HJT log is below and attach.txt file is attached. Thanks in advance for your help.

======================================


DDS (Ver_09-03-16.01) - NTFSx86
Run by *** at 14:21:04.68 on Wed 04/29/2009
Internet Explorer: 7.0.5730.11 BrowserJavaVersion: 1.6.0_12
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.3062.2006 [GMT -5:00]

AV: Symantec AntiVirus Corporate Edition *On-access scanning enabled* (Updated)
FW: Integrity Agent Firewall *enabled*

============== Running Processes ===============

C:\WINNT\system32\ibmpmsvc.exe
C:\WINNT\system32\svchost -k DcomLaunch
svchost.exe
C:\WINNT\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Connected\AgentSrv.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
svchost.exe
C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\iPass\iPassConnect 3\iPCAgent.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Canon\MultiPASS4\MPSERVIC.EXE
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Instant\mysql\bin\mysqld.exe
C:\Program Files\Funk Software\Proxy Host\phsvc.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINNT\Explorer.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINNT\system32\ctfmon.exe
C:\Program Files\Taskbar Shuffle\taskbarshuffle.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Sprint\Sierra Wireless\Sprint PCS Connection Manager\SPCSUtilityService.exe
C:\WINNT\system32\svchost.exe -k imgsvc
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\iPass\iPassConnect 3\downloader\ipccheck.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\Pidgin\pidgin.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Canon\MultiPASS4\MPDBMgr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Orbitdownloader\orbitdm.exe
C:\Program Files\Orbitdownloader\orbitnet.exe
C:\Program Files\Microsoft Office\OFFICE11\POWERPNT.EXE
C:\Program Files\CheckPoint\Integrity Client\iclient.exe
C:\WINNT\system32\ZoneLabs\vsmon.exe
C:\Documents and Settings\***\Desktop\dds.scr

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.google.com
uSearch Page = hxxp://www.google.com
uSearch Bar = hxxp://www.google.com/ie
mDefault_Page_URL = hxxp://www.google.com
mStart Page = hxxp://www.google.com
uInternet Settings,ProxyOverride = <local>;*.local
uSearchURL,(Default) = hxxp://www.google.com/search/?q=%s
mSearchAssistant = hxxp://www.google.com/ie
BHO: Octh Class: {000123b4-9b42-4900-b3f7-f4b073efc214} - c:\program files\orbitdownloader\orbitcth.dll
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 6.0\acrobat\activex\AcroIEHelper.dll
BHO: dsWebAllowBHO Class: {2f85d76c-0569-466f-a488-493e6bd0e955} - c:\program files\windows desktop search\dsWebAllow.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\program files\spybot\SDHelper.dll
BHO: AcroIEToolbarHelper Class: {ae7cd045-e861-484f-8273-0445ee161910} - c:\program files\adobe\acrobat 6.0\acrobat\AcroIEFavClient.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: Google Gears Helper: {e0fefe40-fbf9-42ae-ba58-794ca7e3fb53} - c:\program files\google\google gears\internet explorer\0.5.16.0\gears.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\program files\adobe\acrobat 6.0\acrobat\AcroIEFavClient.dll
TB: Grab Pro: {c55bbcd6-41ad-48ad-9953-3609c48eacc7} - c:\program files\orbitdownloader\GrabPro.dll
EB: Adobe PDF: {182ec0be-5110-49c8-a062-beb1d02a220b} - c:\program files\adobe\acrobat 6.0\acrobat\AcroIEFavClient.dll
uRun: [ctfmon.exe] c:\winnt\system32\ctfmon.exe
uRun: [Taskbar Shuffle] c:\program files\taskbar shuffle\taskbarshuffle.exe
uRun: [ISUSPM] "c:\program files\common files\installshield\updateservice\ISUSPM.exe" -scheduler
uRun: [cdloader] "c:\documents and settings\***\application data\mjusbsp\cdloader2.exe" MAGICJACK
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
dRun: [CTFMON.EXE] c:\winnt\system32\CTFMON.EXE
dRun: [Communicator] "c:\program files\microsoft office communicator\Communicator.exe"
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adobeg~1.lnk - c:\program files\common files\adobe\calibration\Adobe Gamma Loader.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\connec~1.lnk - c:\program files\connected\CBSysTray.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\orbit.lnk - c:\program files\orbitdownloader\orbitdm.exe
uPolicies-explorer: NoStrCmpLogical = 1 (0x1)
mPolicies-explorer: NoMSAppLogo5ChannelNotify = 1 (0x1)
mPolicies-explorer: NoWindowsUpdate = 1 (0x1)
mPolicies-explorer: NoStrCmpLogical = 1 (0x1)
mPolicies-system: RunLogonScriptSync = 0 (0x0)
mPolicies-system: SynchronousUserGroupPolicy = 0 (0x0)
IE: &Download by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/201
IE: &Grab video by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/204
IE: Add to Google Photos Screensa&ver - c:\winnt\system32\GPhotos.scr/200
IE: Do&wnload selected by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/203
IE: Down&load all by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/202
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: {c95fe080-8f5d-11d2-a20b-00aa003c157a}
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - {0B4350D1-055F-47A3-B112-5F2F2B0D6F08} - c:\program files\google\google gears\internet explorer\0.5.16.0\gears.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot\SDHelper.dll
Trusted Zone: alacra.com\secure
Trusted Zone: amadeus.com
Trusted Zone: factiva.com
Trusted Zone: gdcdmzmp02
Trusted Zone: gdcmp02
Trusted Zone: rdmap.com\carlsberg
Trusted Zone: factiva.com
Trusted Zone: rdmap.com\carlsberg
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/C/0/C/C0CBBA88-A6F2-48D9-9B0E-1719D1177202/LegitCheckControl.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1225553741359
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_12-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_06-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_12-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_12-windows-i586.cab
DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} -
TCP: NameServer = 85.255.0.0,85.255.0.0
TCP: {71D865B0-304A-4E9F-94E8-3E8AE7EA7405} = 85.255.0.0,85.255.0.0
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Notify: igfxcui - igfxdev.dll
Notify: NavLogon - c:\winnt\system32\NavLogon.dll
Notify: psfus - c:\winnt\system32\psqlpwd.dll
Notify: tpfnf2 - c:\program files\lenovo\hotkey\notifyf2.dll
Notify: tphotkey - c:\program files\lenovo\hotkey\tphklock.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\winnt\system32\WPDShServiceObj.dll
SEH: Windows Desktop Search Namespace Manager: {56f9679e-7826-4c84-81f3-532071a8bcc5} - c:\program files\windows desktop search\MSNLNamespaceMgr.dll
SEH: Internet Shortcut: {fbf23b40-e3f0-101b-8488-00aa003e56f8} - c:\winnt\system32\ieframe.dll
LSA: Notification Packages = scecli psqlpwd

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\***~1\applic~1\mozilla\firefox\profiles\t92djsyl.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com
FF - component: c:\documents and settings\***\application data\mozilla\firefox\profiles\t92djsyl.default\extensions\{6ac85730-7d0f-4de0-b3fa-21142dd85326}\platform\winnt\components\ColorZilla.dll
FF - component: c:\program files\google\google gears\firefox\components\gears.dll
FF - component: c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
FF - plugin: c:\documents and settings\***\application data\mozilla\firefox\profiles\t92djsyl.default\extensions\logmeinclient@logmein.com\plugins\npRACtrl.dll
FF - plugin: c:\documents and settings\***\application data\mozilla\firefox\profiles\t92djsyl.default\extensions\moveplayer@movenetworks.com\platform\winnt_x86-msvc\plugins\npmnqmp071101000055.dll
FF - plugin: c:\program files\google\picasa3\npPicasa3.dll
FF - plugin: c:\program files\google\update\1.2.131.11\npGoogleOneClick5.dll
FF - plugin: c:\program files\google\update\1.2.141.5\npGoogleOneClick7.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npatgpc.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npeRoom7.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npmusicn.dll
FF - plugin: c:\program files\photosynth\npPhotosynthMozilla.dll

============= SERVICES / DRIVERS ===============

R0 a320raid;a320raid;c:\winnt\system32\drivers\a320raid.sys [2007-8-14 258939]
R0 Shockprf;Shockprf;c:\winnt\system32\drivers\ApsX86.sys [2007-9-28 103472]
R0 TPDIGIMN;TPDIGIMN;c:\winnt\system32\drivers\ApsHM86.sys [2007-9-28 19504]
R1 SAVRT;SAVRT;c:\program files\symantec antivirus\savrt.sys [2006-9-6 337592]
R1 SAVRTPEL;SAVRTPEL;c:\program files\symantec antivirus\Savrtpel.sys [2006-9-6 54968]
R1 TPPWRIF;TPPWRIF;c:\winnt\system32\drivers\TPPWRIF.SYS [2008-9-12 4442]
R1 vsdatant;vsdatant;c:\winnt\system32\vsdatant.sys [2006-8-4 382512]
R2 ccEvtMgr;Symantec Event Manager;c:\program files\common files\symantec shared\ccEvtMgr.exe [2006-11-21 192104]
R2 ccSetMgr;Symantec Settings Manager;c:\program files\common files\symantec shared\ccSetMgr.exe [2006-11-21 169576]
R2 iPCAgent;iPCAgent;c:\program files\ipass\ipassconnect 3\iPCAgent.exe [2008-9-12 90112]
R2 smihlp;SMI Helper Driver (smihlp);c:\program files\common files\thinkvantage fingerprint software\drivers\smihlp.sys [2008-6-24 12560]
R2 Symantec AntiVirus;Symantec AntiVirus;c:\program files\symantec antivirus\Rtvscan.exe [2007-3-14 1816768]
R2 vsmon;TrueVector Internet Monitor;c:\winnt\system32\zonelabs\vsmon.exe -service --> c:\winnt\system32\zonelabs\vsmon.exe -service [?]
R2 WNTHW;WNTHW;c:\winnt\system32\drivers\WNTHW.SYS [2007-11-19 9176]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2009-2-26 101936]
R3 NAVENG;NAVENG;c:\progra~1\common~1\symant~1\virusd~1\20090428.003\naveng.sys [2009-4-29 89104]
R3 NAVEX15;NAVEX15;c:\progra~1\common~1\symant~1\virusd~1\20090428.003\navex15.sys [2009-4-29 876144]
R3 ProxyHostInputFilter;Proxy Host Input Filter;c:\winnt\system32\drivers\ph32ifil.sys [2007-1-16 14600]
R3 Tp4Track;PS/2 TrackPoint Driver;c:\winnt\system32\drivers\tp4track.sys [2008-2-13 22568]
S2 gupdate1c92ad7f84ce964;Google Update Service (gupdate1c92ad7f84ce964);c:\program files\google\update\GoogleUpdate.exe [2008-10-10 133104]
S2 tp4serv;tp4serv;c:\program files\lenovo\trackpoint\tp4servinst.exe [2008-3-11 35616]
S3 ggflt;SEMC USB Flash Driver Filter;c:\winnt\system32\drivers\ggflt.sys [2008-12-4 10976]
S3 GoogleDesktopManager-092308-165331;Google Desktop Manager 5.8.809.23506;c:\program files\google\google desktop search\GoogleDesktop.exe [2008-11-13 30192]
S3 s0016bus;Sony Ericsson Device 0016 driver (WDM);c:\winnt\system32\drivers\s0016bus.sys [2008-12-4 89256]
S3 s0016mdfl;Sony Ericsson Device 0016 USB WMC Modem Filter;c:\winnt\system32\drivers\s0016mdfl.sys [2008-12-4 15016]
S3 s0016mdm;Sony Ericsson Device 0016 USB WMC Modem Driver;c:\winnt\system32\drivers\s0016mdm.sys [2008-12-4 120744]
S3 s0016mgmt;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM);c:\winnt\system32\drivers\s0016mgmt.sys [2008-12-4 114216]
S3 s0016nd5;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS);c:\winnt\system32\drivers\s0016nd5.sys [2008-12-4 25512]
S3 s0016obex;Sony Ericsson Device 0016 USB WMC OBEX Interface;c:\winnt\system32\drivers\s0016obex.sys [2008-12-4 110632]
S3 s0016unic;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM);c:\winnt\system32\drivers\s0016unic.sys [2008-12-4 115752]
S3 vsinstdv;vsinstdv;\??\c:\docume~1\***\locals~1\temp\{d6e88299-45c1-4794-a6b9-4226c3f77a47}\vsinstdv.sys --> c:\docume~1\***\locals~1\temp\{d6e88299-45c1-4794-a6b9-4226c3f77a47}\vsinstdv.sys [?]
S4 SavRoam;SAVRoam;c:\program files\symantec antivirus\SavRoam.exe [2007-3-14 116416]

=============== Created Last 30 ================

2009-04-29 13:59 161,792 a------- c:\winnt\SWREG.exe
2009-04-29 13:59 98,816 a------- c:\winnt\sed.exe
2009-04-29 13:59 <DIR> --d----- C:\ComboFix
2009-04-29 13:59 388,608 a------- c:\winnt\system32\CF5677.exe
2009-04-29 13:39 <DIR> --d----- c:\program files\Trend Micro
2009-04-29 08:37 0 a------- c:\winnt\VPC32.INI
2009-04-29 08:36 <DIR> --d----- c:\program files\Spybot
2009-04-29 08:36 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Spybot - Search & Destroy
2009-04-28 20:32 10 a------- c:\winnt\system32\kr_done1
2009-04-28 20:32 359 ---shr-- C:\autorun.inf
2009-04-28 20:29 7,794 a------- c:\winnt\vp171b-2.cat
2009-04-28 20:29 7,786 a------- c:\winnt\g90f-3.cat
2009-04-28 20:29 7,782 a------- c:\winnt\q51-9.cat
2009-04-28 20:29 1,224 a------- c:\winnt\VP171b-2.inf
2009-04-28 20:29 1,204 a------- c:\winnt\Q51-9.inf
2009-04-28 20:29 1,164 a------- c:\winnt\G90f-3.inf
2009-04-28 20:29 512 a------- c:\winnt\VP171b-2.icm
2009-04-28 20:29 512 a------- c:\winnt\Q51-9.icm
2009-04-28 20:29 512 a------- c:\winnt\G90f-3.icm
2009-04-19 09:41 <DIR> --d----- c:\winnt\pss
2009-04-18 20:39 <DIR> --d----- c:\program files\Network Stumbler
2009-04-10 13:58 <DIR> --d----- c:\program files\Git
2009-04-07 14:04 <DIR> --d----- c:\program files\iPod
2009-04-07 14:04 <DIR> --d----- c:\program files\iTunes
2009-04-07 14:04 <DIR> --d----- c:\docume~1\alluse~1\applic~1\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
2009-04-07 13:58 1,900,544 a------- c:\winnt\system32\usbaaplrc.dll
2009-04-05 15:44 <DIR> --d----- c:\docume~1\***\applic~1\Bullzip
2009-04-05 15:44 103,424 a------- c:\winnt\system32\bzDCT.dll
2009-04-05 15:44 <DIR> --d----- c:\program files\Bullzip
2009-04-03 20:33 <DIR> --d----- c:\program files\ImageMagick-6.4.8-Q8

==================== Find3M ====================

2009-04-27 20:31 256 a------- c:\documents and settings\***\pool.bin
2009-03-26 15:23 36,864 a------- c:\winnt\system32\drivers\usbaapl.sys
2009-03-19 16:32 23,400 a------- c:\winnt\system32\drivers\GEARAspiWDM.sys
2009-03-03 07:33 237,568 a------- c:\winnt\system32\rmc_rtspdl.dll
2009-03-03 07:33 156,672 a------- c:\winnt\system32\rmc_fixasf.exe
2009-03-03 07:32 323,584 a------- c:\winnt\system32\AUDIOGENIE2.DLL
2009-02-24 10:27 830 a---h--- C:\os604495.bin
2009-02-14 19:41 410,984 a------- c:\winnt\system32\deploytk.dll
2008-11-09 21:08 0 ----h--- c:\program files\AppUpdate.log

============= FINISH: 14:21:24.74 ===============

Attached Files



BC AdBot (Login to Remove)

 


#2 uberglitzen

uberglitzen
  • Topic Starter

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:07:18 AM

Posted 30 April 2009 - 07:32 AM

Just wanted to let others know that the problem was the Gxvxserv trojan which is a rootkit trojan (not sure if I'm saying that correctly) and is difficult to detect.

I first detected it using GMER (download here) and then was able to remove it using UnHackMe (more info here)

Instructions for using UnHackMe to remove rootkit malware available here

One thing that was very helpful in solving this for me when I was not able to use a clean computer was to copy and paste the google search result address into the address bar, since this malware seems to only redirect Google and Yahoo search results.

Anyway, hope others find this helpful.

#3 KoanYorel

KoanYorel

    Bleepin' Conundrum


  • Members
  • 19,461 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:65 miles due East of the &quot;Logic Free Zone&quot;, in Md, USA
  • Local time:08:18 AM

Posted 01 May 2009 - 05:06 AM

Thanks for informing us.

This Topic is closed.

Should you need it reopened, please contact a Forum Moderator. Include the address of this thread in your request.

If you have a new issue, please start a New Topic.

This applies only to the original poster. Everyone else please begin a New Topic.

R,
K
The only easy day was yesterday.

...some do, some don't; some will, some won't (WR)




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users