Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Was Highly Infected


  • This topic is locked This topic is locked
4 replies to this topic

#1 infected mqan

infected mqan

  • Members
  • 148 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:definitely somewhere
  • Local time:04:53 AM

Posted 10 June 2011 - 03:12 PM

Hello... After strenuous efforts to disinfect my PC- it was concluded the best option would be to reformat. This was my first re-format and I just want to make sure my PC is safe and secure.

Before the re-format, my computer was highly infected with trojans, viruses, rootkits, and all types of malware. So I am just worried that some infected files rolled-over or are still in my pc. (What we have done in the other section of the forums can be found: http://www.bleepingcomputer.com/forums/topic401905.html )

Anyways, as instructed I will post my logs:

.
DDS (Ver_2011-06-03.01) - NTFSx86
Internet Explorer: 8.0.6001.18702
Run by Owner at 12:55:31 on 2011-06-10
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.503.158 [GMT -6:00]
.
AV: AntiVir Desktop *Enabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\system32\hkcmd.exe
C:\HP\KBD\KBD.EXE
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\LTMSG.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Owner\My Documents\Downloads\Defogger.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
uSearch Page = hxxp://srch-qus7.hpwis.com/
uDefault_Page_URL = hxxp://qus7.hpwis.com/
uDefault_Search_URL = hxxp://srch-qus7.hpwis.com/
uSearch Bar = hxxp://srch-qus7.hpwis.com/
mSearch Bar = hxxp://srch-qus7.hpwis.com/
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 5.0\reader\activex\AcroIEHelper.ocx
TB: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File
EB: {4528BBE0-4E08-11D5-AD55-00010333D0AD} - No File
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
mRun: [BlockTracker] c:\hp\bin\BlockTracker.exe
mRun: [hpsysdrv] c:\windows\system\hpsysdrv.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [KBD] c:\hp\kbd\KBD.EXE
mRun: [StorageGuard] "c:\program files\veritas software\update manager\sgtray.exe" /r
mRun: [TkBellExe] c:\program files\common files\real\update_ob\realsched.exe -osboot
mRun: [WCOLOREAL] "c:\program files\compaq\coloreal\coloreal.exe"
mRun: [Recguard] c:\windows\sminst\RECGUARD.EXE
mRun: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
mRun: [nwiz] nwiz.exe /installquiet /keeploaded
mRun: [PS2] c:\windows\system32\ps2.exe
mRun: [AlcxMonitor] ALCXMNTR.EXE
mRun: [avgnt] "c:\program files\avira\antivir desktop\avgnt.exe" /min
mRun: [LTMSG] LTMSG.exe 7
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\quicke~1.lnk - c:\program files\quicken\bagent.exe
mPolicies-explorer: <NO NAME> =
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: DirectAnimation Java Classes - file://c:\windows\java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\java\classes\xmldso.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1307658988250
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1307674997859
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/products/plugin/autodl/jinstall-1_4_0_01-win.cab
DPF: {CAFEEFAC-0013-0001-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/1.3.1/jinstall-131_02-win.cab
DPF: {CAFEEFAC-0014-0000-0001-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/autodl/jinstall-1_4_0_01-win.cab
TCP: DhcpNameServer = 192.168.1.254
TCP: Interfaces\{905CBFF2-46C6-45BF-BEB6-8DD90CA19B10} : DhcpNameServer = 192.168.1.254
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
Notify: igfxcui - igfxsrvc.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\owner\application data\mozilla\firefox\profiles\eleh2bd6.default\
FF - plugin: c:\program files\real\realone player\netscape6\nppl3260.dll
FF - plugin: c:\program files\real\realone player\netscape6\nprjplug.dll
FF - plugin: c:\program files\real\realone player\netscape6\nprpjplug.dll
FF - plugin: c:\program files\viewpoint\viewpoint media player\npViewpoint.dll
.
============= SERVICES / DRIVERS ===============
.
R1 avgio;avgio;c:\program files\avira\antivir desktop\avgio.sys [2011-6-9 11608]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2010-2-17 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2010-5-10 67656]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\avira\antivir desktop\sched.exe [2011-6-9 136360]
R2 AntiVirService;Avira AntiVir Guard;c:\program files\avira\antivir desktop\avguard.exe [2011-6-9 269480]
R2 avgntflt;avgntflt;c:\windows\system32\drivers\avgntflt.sys [2011-6-9 61960]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 mrtRate;mrtRate; [x]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
.
=============== Created Last 30 ================
.
2011-06-10 18:08:21 -------- d-----w- c:\documents and settings\owner\application data\SUPERAntiSpyware.com
2011-06-10 18:08:21 -------- d-----w- c:\documents and settings\all users\application data\SUPERAntiSpyware.com
2011-06-10 18:08:01 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-06-10 18:06:28 274288 ----a-w- c:\windows\system32\mucltui.dll
2011-06-10 18:06:28 16736 ----a-w- c:\windows\system32\mucltui.dll.mui
2011-06-10 04:56:31 -------- d-----w- c:\windows\system32\NtmsData
2011-06-10 04:55:57 -------- d-----w- c:\documents and settings\owner\application data\Avira
2011-06-10 03:11:32 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-06-10 03:09:26 -------- d-----w- c:\documents and settings\owner\local settings\application data\Mozilla
2011-06-10 02:10:41 -------- d-----w- c:\windows\system32\XPSViewer
2011-06-10 02:10:10 89088 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
2011-06-10 02:09:58 89088 -c----w- c:\windows\system32\dllcache\filterpipelineprintproc.dll
2011-06-10 02:09:58 597504 -c----w- c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2011-06-10 02:09:58 597504 ------w- c:\windows\system32\spool\prtprocs\w32x86\printfilterpipelinesvc.exe
2011-06-10 02:09:58 575488 -c----w- c:\windows\system32\dllcache\xpsshhdr.dll
2011-06-10 02:09:58 575488 ------w- c:\windows\system32\xpsshhdr.dll
2011-06-10 02:09:58 117760 ------w- c:\windows\system32\prntvpt.dll
2011-06-10 02:09:57 1676288 -c----w- c:\windows\system32\dllcache\xpssvcs.dll
2011-06-10 02:09:57 1676288 ------w- c:\windows\system32\xpssvcs.dll
2011-06-10 02:09:57 -------- d-----w- C:\6b5a891ea12426f1be8ed21f
2011-06-10 02:04:28 7680 -c----w- c:\windows\system32\dllcache\iecompat.dll
2011-06-10 01:20:46 -------- d-----w- c:\documents and settings\owner\application data\Malwarebytes
2011-06-10 01:20:37 39984 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-06-10 01:20:34 -------- d-----w- c:\documents and settings\all users\application data\Malwarebytes
2011-06-10 01:20:31 22712 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-06-10 01:20:31 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-06-10 01:07:38 61960 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2011-06-10 01:07:37 -------- d-----w- c:\program files\Avira
2011-06-10 01:07:37 -------- d-----w- c:\documents and settings\all users\application data\Avira
2011-06-10 00:47:01 40960 -c----w- c:\windows\system32\dllcache\ndproxy.sys
2011-06-10 00:46:40 45568 -c----w- c:\windows\system32\dllcache\wab.exe
2011-06-10 00:46:08 978944 -c----w- c:\windows\system32\dllcache\mfc42.dll
2011-06-10 00:46:08 953856 -c----w- c:\windows\system32\dllcache\mfc40u.dll
2011-06-10 00:45:12 617472 -c----w- c:\windows\system32\dllcache\comctl32.dll
2011-06-10 00:17:50 -------- d-----w- c:\windows\system32\scripting
2011-06-10 00:17:49 -------- d-----w- c:\windows\l2schemas
2011-06-10 00:17:48 -------- d-----w- c:\windows\system32\en
2011-06-10 00:16:09 2279424 ----a-w- c:\windows\system32\drivers\ALCXWDM.SYS
2011-06-10 00:16:09 16121856 ----a-w- c:\windows\system32\ALSNDMGR.CPL
2011-06-10 00:14:23 -------- d-----w- C:\i386
2011-06-10 00:13:42 -------- d-----w- c:\windows\network diagnostic
2011-06-10 00:07:10 -------- d---a-r- C:\Program Files
2011-06-10 00:07:07 -------- d---a-r- c:\documents and settings\all users\Documents
2011-06-10 00:06:43 -------- d---a-r- c:\windows\Offline Web Pages
2011-06-10 00:04:56 6656 -c----w- c:\windows\system32\dllcache\laprxy.dll
2011-06-09 23:49:06 -------- d-sh--w- c:\documents and settings\owner\PrivacIE
2011-06-09 23:47:42 -------- d-sh--w- c:\documents and settings\owner\IETldCache
2011-06-09 23:40:14 -------- d-----w- c:\windows\ie8updates
2011-06-09 23:40:01 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2011-06-09 23:39:59 602112 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2011-06-09 23:39:59 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2011-06-09 23:39:58 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2011-06-09 23:39:58 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2011-06-09 23:39:58 1991680 -c----w- c:\windows\system32\dllcache\iertutil.dll
2011-06-09 23:39:58 11080704 -c----w- c:\windows\system32\dllcache\ieframe.dll
2011-06-09 23:38:41 -------- dc-h--w- c:\windows\ie8
2011-06-09 23:30:50 -------- d-----w- c:\documents and settings\owner\local settings\application data\ApplicationHistory
2011-06-09 23:30:24 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2011-06-09 23:25:24 455936 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2011-06-09 23:25:18 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
2011-06-09 23:25:00 357888 -c----w- c:\windows\system32\dllcache\srv.sys
2011-06-09 23:23:30 81920 -c----w- c:\windows\system32\dllcache\fontsub.dll
2011-06-09 23:23:30 119808 -c----w- c:\windows\system32\dllcache\t2embed.dll
2011-06-09 23:22:57 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2011-06-09 23:19:44 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2011-06-09 23:18:02 2066432 -c----w- c:\windows\system32\dllcache\mstscax.dll
2011-06-09 23:16:17 284160 -c----w- c:\windows\system32\dllcache\pdh.dll
2011-06-09 23:16:16 730112 -c----w- c:\windows\system32\dllcache\lsasrv.dll
2011-06-09 23:16:16 718336 -c----w- c:\windows\system32\dllcache\ntdll.dll
2011-06-09 23:16:16 617472 -c----w- c:\windows\system32\dllcache\advapi32.dll
2011-06-09 23:16:16 473600 -c----w- c:\windows\system32\dllcache\fastprox.dll
2011-06-09 23:16:16 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll
2011-06-09 23:16:16 401408 -c----w- c:\windows\system32\dllcache\rpcss.dll
2011-06-09 23:16:16 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe
2011-06-09 23:16:16 110592 -c----w- c:\windows\system32\dllcache\services.exe
2011-06-09 23:16:15 2192768 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2011-06-09 23:16:15 2148864 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2011-06-09 23:16:14 2027008 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2011-06-09 23:15:55 5120 ----a-w- c:\windows\system32\xpsp4res.dll
2011-06-09 23:15:55 218112 -c----w- c:\windows\system32\dllcache\wordpad.exe
2011-06-09 23:14:54 1172480 -c----w- c:\windows\system32\dllcache\msxml3.dll
2011-06-09 23:14:48 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2011-06-09 23:14:43 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2011-06-09 23:13:36 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2011-06-09 23:13:27 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2011-06-09 23:07:43 -------- d-----w- c:\windows\system32\wbem\AutoRecover
2011-06-09 23:03:52 221184 ----a-w- c:\windows\system32\wmpns.dll
2011-06-09 23:02:48 -------- d-----w- c:\windows\provisioning
2011-06-09 23:02:48 -------- d-----w- c:\windows\peernet
2011-06-09 23:01:17 -------- d-----w- c:\windows\ServicePackFiles
2011-06-09 22:56:09 -------- d-----w- c:\windows\EHome
2011-06-09 22:53:01 11264 ------w- c:\windows\system32\spnpinst.exe
2011-06-09 22:39:37 -------- d-----w- c:\windows\system32\PreInstall
2011-06-09 22:39:35 26144 ----a-w- c:\windows\system32\spupdsvc.exe
2011-06-09 22:39:34 -------- d--h--w- c:\windows\$hf_mig$
2011-06-09 22:38:51 -------- d-----w- c:\windows\system32\bits
2011-06-09 22:38:18 8192 ------w- c:\windows\system32\bitsprx2.dll
2011-06-09 22:38:18 7168 ------w- c:\windows\system32\bitsprx3.dll
2011-06-09 22:38:18 438784 ------w- c:\windows\system32\xpob2res.dll
2011-06-09 22:38:18 354816 ----a-w- c:\windows\system32\winhttp.dll
2011-06-09 22:38:18 18944 ----a-w- c:\windows\system32\qmgrprxy.dll
2011-06-09 22:37:01 21728 ----a-w- c:\windows\system32\wucltui.dll.mui
2011-06-09 22:37:01 17632 ----a-w- c:\windows\system32\wuaueng.dll.mui
2011-06-09 22:37:00 217816 ----a-w- c:\windows\system32\wuaucpl.cpl
2011-06-09 22:37:00 15072 ----a-w- c:\windows\system32\wuaucpl.cpl.mui
2011-06-09 22:37:00 15064 ----a-w- c:\windows\system32\wuapi.dll.mui
2011-06-09 22:30:48 -------- d-sh--w- c:\documents and settings\owner\UserData
2011-06-09 22:27:36 24576 ----a-w- c:\windows\system32\xpsp1hfm.exe
2011-06-09 22:27:34 -------- d-----w- C:\6in1ico
2011-06-09 22:27:29 24576 ----a-w- c:\windows\system32\drivers\kbdclass.sys
2011-06-09 22:27:28 52480 ----a-w- c:\windows\system32\drivers\i8042prt.sys
2011-06-09 22:26:30 40960 ----a-w- c:\windows\AolCInUn.exe
2011-06-09 22:26:14 -------- d-----w- c:\program files\Encarta Online
.
==================== Find3M ====================
.
.
============= FINISH: 12:56:30.28 ===============


GMER 1.0.15.15640 - http://www.gmer.net
Rootkit scan 2011-06-10 14:11:47
Windows 5.1.2600 Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 WDC_WD1200AB-22CBA1 rev.04.07B04
Running: gmer.exe; Driver: C:\DOCUME~1\Owner\LOCALS~1\Temp\ugldqpob.sys


---- System - GMER 1.0.15 ----

SSDT F8D231C6 ZwCreateKey
SSDT F8D231BC ZwCreateThread
SSDT F8D231CB ZwDeleteKey
SSDT F8D231D5 ZwDeleteValueKey
SSDT F8D231DA ZwLoadKey
SSDT F8D231A8 ZwOpenProcess
SSDT F8D231AD ZwOpenThread
SSDT F8D231E4 ZwReplaceKey
SSDT F8D231DF ZwRestoreKey
SSDT F8D231D0 ZwSetValueKey
SSDT \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SASKUTIL.SYS/SUPERAdBlocker.com and SUPERAntiSpyware.com) ZwTerminateProcess [0xEFCCF620]

---- Kernel code sections - GMER 1.0.15 ----

? C:\DOCUME~1\Owner\LOCALS~1\Temp\mbr.sys The system cannot find the file specified. !

---- User code sections - GMER 1.0.15 ----

.text C:\Program Files\Mozilla Firefox\firefox.exe[2172] ntdll.dll!LdrLoadDll 7C91632D 5 Bytes JMP 00401410 C:\Program Files\Mozilla Firefox\firefox.exe (Firefox/Mozilla Corporation)

---- Devices - GMER 1.0.15 ----

AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)

---- EOF - GMER 1.0.15 ----

edit: also, is it safe to re-enable CD-Emulator with DeFogger?

I will wait for further instructions.

Thanks,
Mitch

Attached Files


Edited by infected mqan, 10 June 2011 - 03:14 PM.


BC AdBot (Login to Remove)

 


#2 teacup61

teacup61

    Bleepin' Texan!


  • Malware Response Team
  • 17,075 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Wills Point, Texas
  • Local time:05:53 AM

Posted 11 June 2011 - 12:08 PM

Hello Mitch :)

Everything looks good there. :thumbup2: Go ahead and re enable with DeFogger. Be sure you do all the updating that needs to be done. Java and Adobe are exploitable if they aren't kept up to date, and with the new install, the original versions are WAY behind.

I read your original topic.....looks like you had a bumpy ride there, so you must feel tons better today. :)

tea
Please make a donation so I can keep helping people just like you.
Every little bit helps! :)
You can even use your credit card! Thank you!

Posted Image


Error reading poptart in Drive A: Delete kids y/n?

#3 infected mqan

infected mqan
  • Topic Starter

  • Members
  • 148 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:definitely somewhere
  • Local time:04:53 AM

Posted 11 June 2011 - 02:15 PM

Everything looks good there. :thumbup2:

- Incredible news! Thank you very much !!!!

Go ahead and re enable with DeFogger

- Sure thing.

Be sure you do all the updating that needs to be done. Java and Adobe are exploitable if they aren't kept up to date, and with the new install, the original versions are WAY behind.

- Understood, I appreciate it!

I read your original topic.....looks like you had a bumpy ride there, so you must feel tons better today. :)

- Words can't explain =p


Thanks tea for reviewing my logs !! BC community never fails me!

Much appreciated,
Mitch

Edited by infected mqan, 11 June 2011 - 02:15 PM.


#4 teacup61

teacup61

    Bleepin' Texan!


  • Malware Response Team
  • 17,075 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Wills Point, Texas
  • Local time:05:53 AM

Posted 11 June 2011 - 02:25 PM

You're most welcome. :)

Take care!
tea
Please make a donation so I can keep helping people just like you.
Every little bit helps! :)
You can even use your credit card! Thank you!

Posted Image


Error reading poptart in Drive A: Delete kids y/n?

#5 teacup61

teacup61

    Bleepin' Texan!


  • Malware Response Team
  • 17,075 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Wills Point, Texas
  • Local time:05:53 AM

Posted 07 August 2011 - 12:56 PM

Since this issue appears resolved ... this Topic is closed.

If you need this topic reopened, please request this by sending the moderating team a PM with the address of the thread. This applies only to the original topic starter.

Everyone else please begin a New Topic.
Please make a donation so I can keep helping people just like you.
Every little bit helps! :)
You can even use your credit card! Thank you!

Posted Image


Error reading poptart in Drive A: Delete kids y/n?




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users