Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

ESET cannot update; Rkill logs blank; what the hey?


  • Please log in to reply
21 replies to this topic

#1 Straythe

Straythe

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:34 AM

Posted 09 August 2011 - 11:04 AM

Hello valiant response team. I'm not sure what's going on with my machine, so here goes:

- ESET online scanner fails to run from executable; error message is "Can not get update. Is proxy configured?" This was the first problem I noticed while attempting a routine scan. It's the same after downloading a new ESET copy, AND after switching from (shared public) wireless to my direct dial-up account. No way is there a proxy on my dial-up.

- Rkill (brand new version) behaves oddly. On running it, three error boxes stack up with red X's and text of "Installation failed". After that, the Rkill black command-line box comes up, shows "Terminating known malware processes" as normal; but the log shows only "Processes terminated:" with zero entries, not even the entry for Rkill itself.

- ESET and Rkill behave just as above in safe mode.

- Old version of Rkill (before I realized it HAD new versions, oops) terminated two versions of windows\system32\rundll32.exe, nvsvc32.exe, and windows\rthdcpl.exe along with its own rkill.pif.

- MBAM, SAS, Avast, and GMER scans show nothing. Zero bad things.

- hosts file had a stack of Adobe-related entries in it, so I replaced it with a default, clean hosts file. Still no change in ESET or Rkill problems.

- I'm running Tor's associated Firefox (again, public wireless, yay).


Maybe there's nothing to worry about, but I'd feel a lot better if ESET would run. Any ideas?
***"When you surround an enemy, leave an outlet free [...] to make him believe there is a road to safety, and thus prevent his fighting with the courage of despair." Sun Tzu ***

BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,078 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:34 AM

Posted 09 August 2011 - 11:28 AM

See if this is the issue.
Please click Start > Run, type inetcpl.cpl in the runbox and press enter.
Click the Connections tab and click the LAN settings option.
Verify if "Use a proxy..." is checked, if so, UNcheck it and click OK/OK to exit.




Download Security Check from HERE, and save it to your Desktop.

* Double-click SecurityCheck.exe
* Follow the onscreen instructions inside of the black box.
* A Notepad document should open automatically called checkup.txt; please post the contents of that document.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 Straythe

Straythe
  • Topic Starter

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:34 AM

Posted 09 August 2011 - 11:57 AM

Under Connections - LAN settings - "Use a proxy..." was NOT checked.


SecurityCheck log follows:


==============
Results of screen317's Security Check version 0.99.7
Windows XP Service Pack 2
Out of date service pack!!
Internet Explorer 6 Out of date!
``````````````````````````````
Antivirus/Firewall Check:

Windows Firewall Enabled!
avast! Free Antivirus
Antivirus up to date!
```````````````````````````````
Anti-malware/Other Utilities Check:

Malwarebytes' Anti-Malware
CCleaner
Java™ 6 Update 24
Java™ 6 Update 2
Java™ 6 Update 3
Java™ 6 Update 7
Out of date Java installed!
Adobe Flash Player 10.3.181.34
Adobe Reader 7.0
Out of date Adobe Reader installed!
````````````````````````````````
Process Check:
objlist.exe by Laurent

Alwil Software Avast5 AvastSvc.exe
ALWILS~1 Avast5 avastUI.exe
``````````End of Log````````````
==========
***"When you surround an enemy, leave an outlet free [...] to make him believe there is a road to safety, and thus prevent his fighting with the courage of despair." Sun Tzu ***

#4 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,078 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:34 AM

Posted 09 August 2011 - 01:04 PM

Let's try another ,then we'll fix the updates.

Kaspersky Virus Removal

Please click HERE to download Kaspersky Virus Removal Tool.

  • Double click on the file you just downloaded and let it install.
  • It will install to your desktop (be patient; it may take a while).
  • Accept license agreement and click "Start" button.
  • Click on Settings button Posted Image
    • In Scan scope leave pre-checked items as they're and also checkmark My Computer
    • In Actions checkmark Select action: (disinfect; delete if disinfection fails) instead of preselected Prompt on detection
  • Click on Automatic Scan tab and then click on Start scanning button.
  • Before it is done it may prompt for action regardless of the setting so choose delete if prompted.
  • When the scan is done NO log will be produced.
  • Click on Report button Posted Image then on Automatic Scan report tab.
  • Right click anywhere within right pane, click Select All then right click again and click Copy.
  • This will copy the items that it found to the clipboard you can then open notepad (go to start then run then type in notepad) and choose paste to paste the contents into Notepad.
  • You can save this on the desktop.
  • Post the contents of the document in your next reply.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 Straythe

Straythe
  • Topic Starter

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:34 AM

Posted 09 August 2011 - 01:15 PM

Understood, but the download alone is going to take a couple of hours. With luck, I'll report later tonight (in 8 hours or so.) Thanks.
***"When you surround an enemy, leave an outlet free [...] to make him believe there is a road to safety, and thus prevent his fighting with the courage of despair." Sun Tzu ***

#6 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,078 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:34 AM

Posted 09 August 2011 - 01:23 PM

This may be quicker, if you want it.
Please run the F-Secure Online Scanner
Follow the Instruction here for installation.
Accept the License Agreement.
Once the ActiveX installs,Click Full System Scan
Once the download completes, the scan will begin automatically.
The scan will take some time to finish, so please be patient.
When the scan completes, click the Automatic cleaning (recommended) button.
Click the Show Report button and Copy&Paste the entire report in your next reply.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#7 Straythe

Straythe
  • Topic Starter

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:34 AM

Posted 09 August 2011 - 06:50 PM

Well, this is interesting.

Kaspersky online scan failed to download; at the very end of the two-hour file download, it failed with "File could not be saved because source file could not be read"

F-Secure online scan couldn't run without updating Java first; when I attempted the Java update, it failed with "Error - Unable to download update for installation." Hm.

So - while I was out, I went to a library computer and downloaded Kaspersky's executable, Java installer, JavaRa removal tool, and for good measure, SAS portable to a jump drive.

I just moved the complete Kaspersky .exe to my desktop off this jump drive, tried to run it, and was interrupted by multiple red X error boxes running over top of its installer, just as happened with Rkill. (The license agreement did come up a few minutes later but I turned it off - I'd already closed the installer to stop it looping.)

I have not yet tried to use the Java installer, JavaRa, or SAS Portable, but I have the stick right here in my hot little claws. Also, I haven't tried any of this in safe mode yet. Next?
***"When you surround an enemy, leave an outlet free [...] to make him believe there is a road to safety, and thus prevent his fighting with the courage of despair." Sun Tzu ***

#8 malea11

malea11

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:34 PM

Posted 09 August 2011 - 08:50 PM

I have a similar problem and have seen many different variations of this type of virus. I have been successful with some but this one has really buried itself deep.

http://www.bleepingcomputer.com/forums/topic413645.html/page__p__2365855__fromsearch__1#entry2365855

#9 Straythe

Straythe
  • Topic Starter

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:34 AM

Posted 09 August 2011 - 09:08 PM

malea11: Thanks. I did see your topic but I don't want to clutter it up with posts before a real team member gets a hold of it.

My machine doesn't have the redirects like you describe. However, I looked in my Local Settings\Temp folder just now (hidden files and extensions ARE visible) and while I didn't see a filename like you described, I did see this in the log from Kaspersky's attempted install:


-------
Kaspersky AVPTool installer log
Inf: Parent full path: C:\Documents and Settings\<name>\Desktop\setup_11.0.0.1245.x01_2011_08_10_01_16.exe
Inf: Issuer name: Kaspersky Lab
Inf: Main window is created.
Inf: No installation is found.
Inf: Target dir is C:\DOCUME~1\<name>\LOCALS~1\Temp\8558531
Inf: No service 87749859
Err: Wrong regexf search
Inf: No service 2099763drv
Inf: Installing 2099763drv
Inf: Running 2099763drv
Inf: No service 87749859
Inf: Installing 87749859
Inf: Running 87749859
Inf: CheckHomeInstallation - no suitable log file.
Inf: Folder C:\DOCUME~1\<name>\LOCALS~1\Temp\RarSFX0 is on.
Inf: Folder C:\DOCUME~1\<name>\LOCALS~1\Temp\8558531 is on.
Inf: Renaming settings from C:\DOCUME~1\<name>\LOCALS~1\Temp\8558531\ppp_kat.xml to C:\DOCUME~1\<name>\LOCALS~1\Temp\8558531\2099763.xml
Inf: Format string: 0
Inf: Preparing to reboot...
Inf: Installation is finished
Inf: Folder C:\DOCUME~1\<name>\LOCALS~1\Temp\8558531 is off.
Inf: Product start success.
Inf: Product is running
Inf: Main window is destroyed.
Inf: Performing uninstall...
Inf: Service 87749859 status: 11
Inf: Uninstall success.
Inf: Finished successfully.

---------------

Looks familiar, doesn't it?



Edited to add: There's a mention of something similar in this user's thread.

http://www.bleepingcomputer.com/forums/topic413492.html

The computer seems to be running better, but I do still have a few issues;

a) when I run rkill, three windows pop up, all saying 'installation failed' but rkill runs anyway


Edited by Straythe, 09 August 2011 - 09:12 PM.

***"When you surround an enemy, leave an outlet free [...] to make him believe there is a road to safety, and thus prevent his fighting with the courage of despair." Sun Tzu ***

#10 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,078 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:34 AM

Posted 09 August 2011 - 09:16 PM

OK, i am concerned we may have this new malware,L@@K
Please download the TDSS Rootkit Removing Tool (TDSSKiller.exe) and save it to your Desktop. <-Important!!!
Be sure to download TDSSKiller.exe (v2.5.9.0) from Kaspersky's website and not TDSSKiller.zip which appears to be an older version 2.3.2.2 of the tool.
  • Double-click on TDSSKiller.exe to run the tool for known TDSS variants.
    Vista/Windows 7 users right-click and select Run As Administrator.
  • If TDSSKiller does not run, try renaming it.
  • To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to How to change the file extension.
  • Click the Start Scan button.
  • Do not use the computer during the scan
  • If the scan completes with nothing found, click Close to exit.
  • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
  • Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
  • A log file named TDSSKiller_version_date_time_log.txt (i.e. TDSSKiller.2.4.0.0_27.07.2010_09.o7.26_log.txt) will be created and saved to the root directory (usually Local Disk C:).
  • Copy and paste the contents of that file in your next reply.


If TDSSKiller does not run, try renaming it. To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to these[/color] instructions. [color=green]In some cases it may be necessary to redownload TDSSKiller and randomly rename it before downloading and saving to the computer.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#11 Straythe

Straythe
  • Topic Starter

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:34 AM

Posted 09 August 2011 - 09:39 PM

Ran TDSSKiller (renamed) with no problems. No malicious files; one suspicious file skipped. (That tool is FAST.)



-------------Log of TDSSKiller:


2011/08/09 21:32:07.0062 0676 TDSS rootkit removing tool 2.5.14.0 Aug 5 2011 16:09:29
2011/08/09 21:32:07.0093 0676 ================================================================================
2011/08/09 21:32:07.0093 0676 SystemInfo:
2011/08/09 21:32:07.0093 0676
2011/08/09 21:32:07.0093 0676 OS Version: 5.1.2600 ServicePack: 2.0
2011/08/09 21:32:07.0093 0676 Product type: Workstation
2011/08/09 21:32:07.0093 0676 ComputerName: <name>
2011/08/09 21:32:07.0093 0676 UserName: <name>
2011/08/09 21:32:07.0093 0676 Windows directory: C:\WINDOWS
2011/08/09 21:32:07.0093 0676 System windows directory: C:\WINDOWS
2011/08/09 21:32:07.0093 0676 Processor architecture: Intel x86
2011/08/09 21:32:07.0093 0676 Number of processors: 2
2011/08/09 21:32:07.0093 0676 Page size: 0x1000
2011/08/09 21:32:07.0093 0676 Boot type: Normal boot
2011/08/09 21:32:07.0093 0676 ================================================================================
2011/08/09 21:32:08.0312 0676 Initialize success
2011/08/09 21:32:11.0171 1512 ================================================================================
2011/08/09 21:32:11.0171 1512 Scan started
2011/08/09 21:32:11.0171 1512 Mode: Manual;
2011/08/09 21:32:11.0171 1512 ================================================================================
2011/08/09 21:32:12.0328 1512 Aavmker4 (dfcdd5936cad0138775d5a105d4c7716) C:\WINDOWS\system32\drivers\Aavmker4.sys
2011/08/09 21:32:12.0656 1512 ACPI (a10c7534f7223f4a73a948967d00e69b) C:\WINDOWS\system32\DRIVERS\ACPI.sys
2011/08/09 21:32:12.0703 1512 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
2011/08/09 21:32:13.0078 1512 aec (841f385c6cfaf66b58fbd898722bb4f0) C:\WINDOWS\system32\drivers\aec.sys
2011/08/09 21:32:13.0265 1512 AegisP (2f7f3e8da380325866e566f5d5ec23d5) C:\WINDOWS\system32\DRIVERS\AegisP.sys
2011/08/09 21:32:13.0531 1512 AFD (55e6e1c51b6d30e54335750955453702) C:\WINDOWS\System32\drivers\afd.sys
2011/08/09 21:32:14.0203 1512 Arp1394 (f0d692b0bffb46e30eb3cea168bbc49f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
2011/08/09 21:32:14.0671 1512 aswFsBlk (861cb512e4e850e87dd2316f88d69330) C:\WINDOWS\system32\drivers\aswFsBlk.sys
2011/08/09 21:32:14.0750 1512 aswMon2 (7857e0b4c817f69ff463eea2c63e56f9) C:\WINDOWS\system32\drivers\aswMon2.sys
2011/08/09 21:32:14.0843 1512 aswRdr (8db043bf96bb6d334e5b4888e709e1c7) C:\WINDOWS\system32\drivers\aswRdr.sys
2011/08/09 21:32:14.0953 1512 aswSnx (17230708a2028cd995656df455f2e303) C:\WINDOWS\system32\drivers\aswSnx.sys
2011/08/09 21:32:15.0062 1512 aswSP (dbedd9d43b00630966ef05d2d8d04cee) C:\WINDOWS\system32\drivers\aswSP.sys
2011/08/09 21:32:15.0265 1512 aswTdi (984cfce2168286c2511695c2f9621475) C:\WINDOWS\system32\drivers\aswTdi.sys
2011/08/09 21:32:15.0343 1512 AsyncMac (02000abf34af4c218c35d257024807d6) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
2011/08/09 21:32:15.0468 1512 atapi (cdfe4411a69c224bd1d11b2da92dac51) C:\WINDOWS\system32\DRIVERS\atapi.sys
2011/08/09 21:32:15.0656 1512 Atmarpc (ec88da854ab7d7752ec8be11a741bb7f) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
2011/08/09 21:32:15.0750 1512 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
2011/08/09 21:32:15.0796 1512 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
2011/08/09 21:32:15.0890 1512 Bridge (e4e6a0922e3d983728c9ad4e8d466954) C:\WINDOWS\system32\DRIVERS\bridge.sys
2011/08/09 21:32:15.0906 1512 BridgeMP (e4e6a0922e3d983728c9ad4e8d466954) C:\WINDOWS\system32\DRIVERS\bridge.sys
2011/08/09 21:32:15.0984 1512 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
2011/08/09 21:32:16.0125 1512 CCDECODE (6163ed60b684bab19d3352ab22fc48b2) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
2011/08/09 21:32:16.0281 1512 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
2011/08/09 21:32:16.0359 1512 Cdfs (cd7d5152df32b47f4e36f710b35aae02) C:\WINDOWS\system32\drivers\Cdfs.sys
2011/08/09 21:32:16.0421 1512 Cdrom (af9c19b3100fe010496b1a27181fbf72) C:\WINDOWS\system32\DRIVERS\cdrom.sys
2011/08/09 21:32:16.0640 1512 CmBatt (4266be808f85826aedf3c64c1e240203) C:\WINDOWS\system32\DRIVERS\CmBatt.sys
2011/08/09 21:32:16.0843 1512 Compbatt (df1b1a24bf52d0ebc01ed4ece8979f50) C:\WINDOWS\system32\DRIVERS\compbatt.sys
2011/08/09 21:32:17.0281 1512 Disk (00ca44e4534865f8a3b64f7c0984bff0) C:\WINDOWS\system32\DRIVERS\disk.sys
2011/08/09 21:32:17.0390 1512 dmboot (c0fbb516e06e243f0cf31f597e7ebf7d) C:\WINDOWS\system32\drivers\dmboot.sys
2011/08/09 21:32:17.0562 1512 dmio (f5e7b358a732d09f4bcf2824b88b9e28) C:\WINDOWS\system32\drivers\dmio.sys
2011/08/09 21:32:17.0578 1512 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
2011/08/09 21:32:17.0734 1512 DMusic (a6f881284ac1150e37d9ae47ff601267) C:\WINDOWS\system32\drivers\DMusic.sys
2011/08/09 21:32:17.0968 1512 drmkaud (1ed4dbbae9f5d558dbba4cc450e3eb2e) C:\WINDOWS\system32\drivers\drmkaud.sys
2011/08/09 21:32:18.0078 1512 ElbyCDIO (178cc9403816c082d22a1d47fa1f9c85) C:\WINDOWS\system32\Drivers\ElbyCDIO.sys
2011/08/09 21:32:18.0156 1512 Fastfat (3117f595e9615e04f05a54fc15a03b20) C:\WINDOWS\system32\drivers\Fastfat.sys
2011/08/09 21:32:18.0234 1512 Fdc (ced2e8396a8838e59d8fd529c680e02c) C:\WINDOWS\system32\drivers\Fdc.sys
2011/08/09 21:32:18.0250 1512 Fips (e153ab8a11de5452bcf5ac7652dbf3ed) C:\WINDOWS\system32\drivers\Fips.sys
2011/08/09 21:32:18.0312 1512 Flpydisk (0dd1de43115b93f4d85e889d7a86f548) C:\WINDOWS\system32\drivers\Flpydisk.sys
2011/08/09 21:32:18.0421 1512 FltMgr (157754f0df355a9e0a6f54721914f9c6) C:\WINDOWS\system32\DRIVERS\fltMgr.sys
2011/08/09 21:32:18.0515 1512 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
2011/08/09 21:32:18.0562 1512 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
2011/08/09 21:32:18.0625 1512 Gpc (c0f1d4a21de5a415df8170616703debf) C:\WINDOWS\system32\DRIVERS\msgpc.sys
2011/08/09 21:32:18.0734 1512 hamachi (833051c6c6c42117191935f734cfbd97) C:\WINDOWS\system32\DRIVERS\hamachi.sys
2011/08/09 21:32:18.0875 1512 HDAudBus (3fcc124b6e08ee0e9351f717dd136939) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
2011/08/09 21:32:19.0015 1512 HidUsb (1de6783b918f540149aa69943bdfeba8) C:\WINDOWS\system32\DRIVERS\hidusb.sys
2011/08/09 21:32:19.0281 1512 HTTP (c19b522a9ae0bbc3293397f3055e80a1) C:\WINDOWS\system32\Drivers\HTTP.sys
2011/08/09 21:32:19.0625 1512 i8042prt (5502b58eef7486ee6f93f3f164dcb808) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
2011/08/09 21:32:19.0703 1512 Imapi (f8aa320c6a0409c0380e5d8a99d76ec6) C:\WINDOWS\system32\DRIVERS\imapi.sys
2011/08/09 21:32:20.0156 1512 IntcAzAudAddService (12f4d2aa29745dc2a403ff42e75cf7fa) C:\WINDOWS\system32\drivers\RtkHDAud.sys
2011/08/09 21:32:20.0468 1512 intelppm (279fb78702454dff2bb445f238c048d2) C:\WINDOWS\system32\DRIVERS\intelppm.sys
2011/08/09 21:32:20.0562 1512 Ip6Fw (4448006b6bc60e6c027932cfc38d6855) C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
2011/08/09 21:32:20.0593 1512 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
2011/08/09 21:32:20.0671 1512 IpInIp (e1ec7f5da720b640cd8fb8424f1b14bb) C:\WINDOWS\system32\DRIVERS\ipinip.sys
2011/08/09 21:32:20.0750 1512 IpNat (b5a8e215ac29d24d60b4d1250ef05ace) C:\WINDOWS\system32\DRIVERS\ipnat.sys
2011/08/09 21:32:20.0828 1512 IPSec (64537aa5c003a6afeee1df819062d0d1) C:\WINDOWS\system32\DRIVERS\ipsec.sys
2011/08/09 21:32:20.0984 1512 ipswuio (ee8cc26924a6f07972bbf04487ebd552) C:\WINDOWS\system32\DRIVERS\ipswuio.sys
2011/08/09 21:32:21.0125 1512 IRENUM (50708daa1b1cbb7d6ac1cf8f56a24410) C:\WINDOWS\system32\DRIVERS\irenum.sys
2011/08/09 21:32:21.0265 1512 isapnp (e504f706ccb699c2596e9a3da1596e87) C:\WINDOWS\system32\DRIVERS\isapnp.sys
2011/08/09 21:32:21.0343 1512 Jukebox3 (6c24d3878f44c271d94ea6cab1acd739) C:\WINDOWS\system32\DRIVERS\ctpdusb.sys
2011/08/09 21:32:21.0437 1512 Kbdclass (ebdee8a2ee5393890a1acee971c4c246) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
2011/08/09 21:32:21.0484 1512 kbdhid (e182fa8e49e8ee41b4adc53093f3c7e6) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
2011/08/09 21:32:21.0640 1512 kmixer (d93cad07c5683db066b0b2d2d3790ead) C:\WINDOWS\system32\drivers\kmixer.sys
2011/08/09 21:32:21.0781 1512 KSecDD (1be7cc2535d760ae4d481576eb789f24) C:\WINDOWS\system32\drivers\KSecDD.sys
2011/08/09 21:32:23.0250 1512 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
2011/08/09 21:32:23.0343 1512 Modem (6fc6f9d7acc36dca9b914565a3aeda05) C:\WINDOWS\system32\drivers\Modem.sys
2011/08/09 21:32:23.0453 1512 MODEMCSA (1992e0d143b09653ab0f9c5e04b0fd65) C:\WINDOWS\system32\drivers\MODEMCSA.sys
2011/08/09 21:32:23.0546 1512 Mouclass (34e1f0031153e491910e12551400192c) C:\WINDOWS\system32\DRIVERS\mouclass.sys
2011/08/09 21:32:23.0625 1512 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
2011/08/09 21:32:23.0687 1512 MountMgr (65653f3b4477f3c63e68a9659f85ee2e) C:\WINDOWS\system32\drivers\MountMgr.sys
2011/08/09 21:32:23.0859 1512 MRxDAV (46edcc8f2db2f322c24f48785cb46366) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
2011/08/09 21:32:23.0937 1512 MRxSmb (6f2d483b97b395544e59749c47963c6a) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
2011/08/09 21:32:24.0109 1512 Msfs (561b3a4333ca2dbdba28b5b956822519) C:\WINDOWS\system32\drivers\Msfs.sys
2011/08/09 21:32:24.0218 1512 MSKSSRV (ae431a8dd3c1d0d0610cdbac16057ad0) C:\WINDOWS\system32\drivers\MSKSSRV.sys
2011/08/09 21:32:24.0328 1512 MSPCLOCK (13e75fef9dfeb08eeded9d0246e1f448) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
2011/08/09 21:32:24.0437 1512 MSPQM (1988a33ff19242576c3d0ef9ce785da7) C:\WINDOWS\system32\drivers\MSPQM.sys
2011/08/09 21:32:24.0515 1512 mssmbios (469541f8bfd2b32659d5d463a6714bce) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
2011/08/09 21:32:24.0656 1512 MSTEE (bf13612142995096ab084f2db7f40f77) C:\WINDOWS\system32\drivers\MSTEE.sys
2011/08/09 21:32:24.0750 1512 MTsensor (e333010a50bf603acc350f6019e9ce02) C:\WINDOWS\system32\DRIVERS\ATKACPI.sys
2011/08/09 21:32:24.0812 1512 Mup (82035e0f41c2dd05ae41d27fe6cf7de1) C:\WINDOWS\system32\drivers\Mup.sys
2011/08/09 21:32:25.0000 1512 NABTSFEC (5c8dc6429c43dc6177c1fa5b76290d1a) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
2011/08/09 21:32:25.0093 1512 NDIS (558635d3af1c7546d26067d5d9b6959e) C:\WINDOWS\system32\drivers\NDIS.sys
2011/08/09 21:32:25.0218 1512 NdisIP (520ce427a8b298f54112857bcf6bde15) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
2011/08/09 21:32:25.0250 1512 NdisTapi (08d43bbdacdf23f34d79e44ed35c1b4c) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
2011/08/09 21:32:25.0328 1512 Ndisuio (34d6cd56409da9a7ed573e1c90a308bf) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
2011/08/09 21:32:25.0390 1512 NdisWan (0b90e255a9490166ab368cd55a529893) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
2011/08/09 21:32:25.0421 1512 NDProxy (59fc3fb44d2669bc144fd87826bb571f) C:\WINDOWS\system32\drivers\NDProxy.sys
2011/08/09 21:32:25.0546 1512 NetBIOS (3a2aca8fc1d7786902ca434998d7ceb4) C:\WINDOWS\system32\DRIVERS\netbios.sys
2011/08/09 21:32:25.0609 1512 NetBT (0c80e410cd2f47134407ee7dd19cc86b) C:\WINDOWS\system32\DRIVERS\netbt.sys
2011/08/09 21:32:25.0812 1512 NETw3x32 (e2f396f71a793a04839dbb6af304a026) C:\WINDOWS\system32\DRIVERS\NETw3x32.sys
2011/08/09 21:32:25.0968 1512 NIC1394 (5c5c53db4fef16cf87b9911c7e8c6fbc) C:\WINDOWS\system32\DRIVERS\nic1394.sys
2011/08/09 21:32:26.0062 1512 Npfs (4f601bcb8f64ea3ac0994f98fed03f8e) C:\WINDOWS\system32\drivers\Npfs.sys
2011/08/09 21:32:26.0187 1512 Ntfs (b78be402c3f63dd55521f73876951cdd) C:\WINDOWS\system32\drivers\Ntfs.sys
2011/08/09 21:32:26.0343 1512 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
2011/08/09 21:32:26.0656 1512 nv (d42fb8615e810901779294f5627364fe) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
2011/08/09 21:32:27.0015 1512 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
2011/08/09 21:32:27.0046 1512 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
2011/08/09 21:32:27.0171 1512 ohci1394 (0951db8e5823ea366b0e408d71e1ba2a) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
2011/08/09 21:32:27.0265 1512 Parport (29744eb4ce659dfe3b4122deb45bc478) C:\WINDOWS\system32\drivers\Parport.sys
2011/08/09 21:32:27.0296 1512 PartMgr (3334430c29dc338092f79c38ef7b4cd0) C:\WINDOWS\system32\drivers\PartMgr.sys
2011/08/09 21:32:27.0328 1512 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
2011/08/09 21:32:27.0437 1512 PCI (8086d9979234b603ad5bc2f5d890b234) C:\WINDOWS\system32\DRIVERS\pci.sys
2011/08/09 21:32:27.0656 1512 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
2011/08/09 21:32:27.0750 1512 Pcmcia (82a087207decec8456fbe8537947d579) C:\WINDOWS\system32\drivers\Pcmcia.sys
2011/08/09 21:32:28.0609 1512 PCTINDIS5 (a31c8ce8d17b4ee912479c8a2aba23f7) C:\WINDOWS\system32\PCTINDIS5.SYS
2011/08/09 21:32:29.0484 1512 PptpMiniport (1c5cc65aac0783c344f16353e60b72ac) C:\WINDOWS\system32\DRIVERS\raspptp.sys
2011/08/09 21:32:29.0546 1512 PSched (48671f327553dcf1d27f6197f622a668) C:\WINDOWS\system32\DRIVERS\psched.sys
2011/08/09 21:32:29.0578 1512 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
2011/08/09 21:32:29.0703 1512 PxHelp20 (1962166e0ceb740704f30fa55ad3d509) C:\WINDOWS\system32\Drivers\PxHelp20.sys
2011/08/09 21:32:30.0375 1512 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
2011/08/09 21:32:30.0437 1512 Rasl2tp (98faeb4a4dcf812ba1c6fca4aa3e115c) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
2011/08/09 21:32:30.0515 1512 RasPppoe (7306eeed8895454cbed4669be9f79faa) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
2011/08/09 21:32:30.0546 1512 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
2011/08/09 21:32:30.0625 1512 Rdbss (29d66245adba878fff574cd66abd2884) C:\WINDOWS\system32\DRIVERS\rdbss.sys
2011/08/09 21:32:30.0671 1512 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
2011/08/09 21:32:30.0781 1512 rdpdr (a2cae2c60bc37e0751ef9dda7ceaf4ad) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
2011/08/09 21:32:30.0921 1512 RDPWD (d4f5643d7714ef499ae9527fdcd50894) C:\WINDOWS\system32\drivers\RDPWD.sys
2011/08/09 21:32:31.0062 1512 redbook (b31b4588e4086d8d84adbf9845c2402b) C:\WINDOWS\system32\DRIVERS\redbook.sys
2011/08/09 21:32:31.0187 1512 rimmptsk (7a6648b61661b1421ffab762e391e33f) C:\WINDOWS\system32\DRIVERS\rimmptsk.sys
2011/08/09 21:32:31.0328 1512 rimsptsk (8f7012d1b6a71ee9c23ce93dcdbf9f4b) C:\WINDOWS\system32\DRIVERS\rimsptsk.sys
2011/08/09 21:32:31.0437 1512 RimVSerPort (12a2fd77e334b223531f1e2918480d49) C:\WINDOWS\system32\DRIVERS\RimSerial.sys
2011/08/09 21:32:31.0484 1512 ROOTMODEM (d8b0b4ade32574b2d9c5cc34dc0dbbe7) C:\WINDOWS\system32\Drivers\RootMdm.sys
2011/08/09 21:32:31.0640 1512 RT73 (6ea04a4370609e5e1eaeee898a2ab6ac) C:\WINDOWS\system32\DRIVERS\Rt73.sys
2011/08/09 21:32:31.0765 1512 RTL8023xp (d6e1b1bd04fad422af17fc4b810cb9af) C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys
2011/08/09 21:32:32.0031 1512 SASDIFSV (a3281aec37e0720a2bc28034c2df2a56) C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
2011/08/09 21:32:32.0125 1512 SASKUTIL (61db0d0756a99506207fd724e3692b25) C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
2011/08/09 21:32:32.0234 1512 sdbus (02fc71b020ec8700ee8a46c58bc6f276) C:\WINDOWS\system32\DRIVERS\sdbus.sys
2011/08/09 21:32:32.0328 1512 Secdrv (d26e26ea516450af9d072635c60387f4) C:\WINDOWS\system32\DRIVERS\secdrv.sys
2011/08/09 21:32:32.0421 1512 Serial (cd9404d115a00d249f70a371b46d5a26) C:\WINDOWS\system32\drivers\Serial.sys
2011/08/09 21:32:32.0546 1512 Sfloppy (0d13b6df6e9e101013a7afb0ce629fe0) C:\WINDOWS\system32\drivers\Sfloppy.sys
2011/08/09 21:32:32.0812 1512 SLIP (5caeed86821fa2c6139e32e9e05ccdc9) C:\WINDOWS\system32\DRIVERS\SLIP.sys
2011/08/09 21:32:33.0000 1512 smserial (84a9af2b348b691453acbab37c8bfb27) C:\WINDOWS\system32\DRIVERS\smserial.sys
2011/08/09 21:32:33.0218 1512 SONYPVU1 (a1eceeaa5c5e74b2499eb51d38185b84) C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS
2011/08/09 21:32:33.0468 1512 splitter (8e186b8f23295d1e42c573b82b80d548) C:\WINDOWS\system32\drivers\splitter.sys
2011/08/09 21:32:33.0609 1512 sptd (71e276f6d189413266ea22171806597b) C:\WINDOWS\system32\Drivers\sptd.sys
2011/08/09 21:32:33.0609 1512 Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: 71e276f6d189413266ea22171806597b
2011/08/09 21:32:33.0609 1512 sptd - detected LockedFile.Multi.Generic (1)
2011/08/09 21:32:33.0703 1512 sr (e41b6d037d6cd08461470af04500dc24) C:\WINDOWS\system32\DRIVERS\sr.sys
2011/08/09 21:32:33.0781 1512 Srv (ab9c79ed12d65e800aaad3d72a04792f) C:\WINDOWS\system32\DRIVERS\srv.sys
2011/08/09 21:32:34.0015 1512 StillCam (a9573045baa16eab9b1085205b82f1ed) C:\WINDOWS\system32\DRIVERS\serscan.sys
2011/08/09 21:32:34.0156 1512 streamip (284c57df5dc7abca656bc2b96a667afb) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
2011/08/09 21:32:34.0234 1512 swenum (03c1bae4766e2450219d20b993d6e046) C:\WINDOWS\system32\DRIVERS\swenum.sys
2011/08/09 21:32:34.0375 1512 swmidi (94abc808fc4b6d7d2bbf42b85e25bb4d) C:\WINDOWS\system32\drivers\swmidi.sys
2011/08/09 21:32:35.0031 1512 SynMini (84a07bafdef13532e7ba10d8c55eacd3) C:\WINDOWS\system32\Drivers\SynMini.sys
2011/08/09 21:32:35.0234 1512 SynScan (260a9e1973baf9135be5d7d65027b55a) C:\WINDOWS\system32\Drivers\SynScan.sys
2011/08/09 21:32:35.0390 1512 SynTP (69bf2dd9b1099d1aa3e7cf14b4b842cd) C:\WINDOWS\system32\DRIVERS\SynTP.sys
2011/08/09 21:32:35.0531 1512 sysaudio (650ad082d46bac0e64c9c0e0928492fd) C:\WINDOWS\system32\drivers\sysaudio.sys
2011/08/09 21:32:35.0656 1512 Tcpip (2a5554fc5b1e04e131230e3ce035c3f9) C:\WINDOWS\system32\DRIVERS\tcpip.sys
2011/08/09 21:32:35.0906 1512 TDPIPE (38d437cf2d98965f239b0abcd66dcb0f) C:\WINDOWS\system32\drivers\TDPIPE.sys
2011/08/09 21:32:36.0000 1512 TDTCP (ed0580af02502d00ad8c4c066b156be9) C:\WINDOWS\system32\drivers\TDTCP.sys
2011/08/09 21:32:36.0125 1512 TermDD (a540a99c281d933f3d69d55e48727f47) C:\WINDOWS\system32\DRIVERS\termdd.sys
2011/08/09 21:32:36.0359 1512 Udfs (12f70256f140cd7d52c58c7048fde657) C:\WINDOWS\system32\drivers\Udfs.sys
2011/08/09 21:32:36.0578 1512 Update (aff2e5045961bbc0a602bb6f95eb1345) C:\WINDOWS\system32\DRIVERS\update.sys
2011/08/09 21:32:36.0656 1512 usbccgp (bffd9f120cc63bcbaa3d840f3eef9f79) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
2011/08/09 21:32:36.0765 1512 usbehci (b0d7020386c7187ef9c5a9643f289cd3) C:\WINDOWS\system32\DRIVERS\usbehci.sys
2011/08/09 21:32:36.0937 1512 usbhub (c72f40947f92cea56a8fb532edf025f1) C:\WINDOWS\system32\DRIVERS\usbhub.sys
2011/08/09 21:32:37.0062 1512 usbprint (a42369b7cd8886cd7c70f33da6fcbcf5) C:\WINDOWS\system32\DRIVERS\usbprint.sys
2011/08/09 21:32:37.0171 1512 usbscan (a6bc71402f4f7dd5b77fd7f4a8ddba85) C:\WINDOWS\system32\DRIVERS\usbscan.sys
2011/08/09 21:32:37.0218 1512 USBSTOR (6cd7b22193718f1d17a47a1cd6d37e75) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
2011/08/09 21:32:37.0359 1512 usbuhci (ff6e4fdeb82dc228efa490336409c6bd) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
2011/08/09 21:32:37.0468 1512 VClone (1cdaa48cb2f7744b8d25650e050766a5) C:\WINDOWS\system32\DRIVERS\VClone.sys
2011/08/09 21:32:37.0593 1512 VgaSave (8a60edd72b4ea5aea8202daf0e427925) C:\WINDOWS\System32\drivers\vga.sys
2011/08/09 21:32:37.0765 1512 VolSnap (ee4660083deba849ff6c485d944b379b) C:\WINDOWS\system32\drivers\VolSnap.sys
2011/08/09 21:32:37.0875 1512 wacommousefilter (427a8bc96f16c40df81c2d2f4edd32dd) C:\WINDOWS\system32\DRIVERS\wacommousefilter.sys
2011/08/09 21:32:37.0968 1512 wacomvhid (73e6f16a1f187d71fb26af308551e54a) C:\WINDOWS\system32\DRIVERS\wacomvhid.sys
2011/08/09 21:32:38.0078 1512 WacomVKHid (889459833432b161cb99cfdf84a1a9bb) C:\WINDOWS\system32\DRIVERS\WacomVKHid.sys
2011/08/09 21:32:38.0156 1512 Wanarp (984ef0b9788abf89974cfed4bfbaacbc) C:\WINDOWS\system32\DRIVERS\wanarp.sys
2011/08/09 21:32:38.0406 1512 wdmaud (2797f33ebf50466020c430ee4f037933) C:\WINDOWS\system32\drivers\wdmaud.sys
2011/08/09 21:32:38.0609 1512 WpdUsb (1385e5aa9c9821790d33a9563b8d2dd0) C:\WINDOWS\system32\Drivers\wpdusb.sys
2011/08/09 21:32:38.0703 1512 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
2011/08/09 21:32:38.0843 1512 WSTCODEC (d5842484f05e12121c511aa93f6439ec) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
2011/08/09 21:32:38.0906 1512 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0
2011/08/09 21:32:39.0046 1512 Boot (0x1200) (3a79111f98019b3d65b3f874062232b1) \Device\Harddisk0\DR0\Partition0
2011/08/09 21:32:39.0093 1512 Boot (0x1200) (b42a9732e4c683eb1200b41ac9c4bdb5) \Device\Harddisk0\DR0\Partition1
2011/08/09 21:32:39.0093 1512 ================================================================================
2011/08/09 21:32:39.0093 1512 Scan finished
2011/08/09 21:32:39.0093 1512 ================================================================================
2011/08/09 21:32:39.0125 3212 Detected object count: 1
2011/08/09 21:32:39.0125 3212 Actual detected object count: 1
2011/08/09 21:32:49.0765 3212 LockedFile.Multi.Generic(sptd) - User select action: Skip


----------------End of log
***"When you surround an enemy, leave an outlet free [...] to make him believe there is a road to safety, and thus prevent his fighting with the courage of despair." Sun Tzu ***

#12 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,078 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:34 AM

Posted 10 August 2011 - 01:55 PM

What is your Antvirus tool?

Please download exeHelper to your desktop.
Double-click on exeHelper.com to run the fix.
A black window should pop up, press any key to close once the fix is completed.
Post the contents of exehelperlog.txt (Will be created in the directory where you ran exeHelper.com, and should open at the end of the scan)
><><><><>>
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#13 Straythe

Straythe
  • Topic Starter

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:34 AM

Posted 10 August 2011 - 02:02 PM

Antivirus is avast! free edition.

exeHelper log:

--------------
exeHelper by Raktor
Build 20100414
Run at 14:00:22 on 08/10/11
Now searching...
Checking for numerical processes...
Checking for sysguard processes...
Checking for bad processes...
Checking for bad files...
Checking for bad registry entries...
Resetting filetype association for .exe
Resetting filetype association for .com
Resetting userinit and shell values...
Resetting policies...
--Finished--
***"When you surround an enemy, leave an outlet free [...] to make him believe there is a road to safety, and thus prevent his fighting with the courage of despair." Sun Tzu ***

#14 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,078 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:34 AM

Posted 10 August 2011 - 02:35 PM

SSorry,, try ESET now...
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#15 Straythe

Straythe
  • Topic Starter

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:34 AM

Posted 10 August 2011 - 02:55 PM

Same ESET error - "Can not get update. Is proxy configured?" I downloaded a renamed copy of the .exe even.
***"When you surround an enemy, leave an outlet free [...] to make him believe there is a road to safety, and thus prevent his fighting with the courage of despair." Sun Tzu ***




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users