Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Vx2 Infections And A File That Isn't There.


  • Please log in to reply

#1
CrispyG4

CrispyG4

    New Member

  • Member
  • Pip
  • 3 posts
Ok, as for the VX2 infection, I've run ad-aware and it's this one DLL it can't remove.. here's the log.

Lavasoft Ad-aware Personal Build 6.181
Logfile created on :Wednesday, September 22, 2004 9:44:50 PM
Created with Ad-aware Personal, free for private use.
Using reference-file :01R339 26.08.2004
______________________________________________________

Ad-aware Settings
=========================
Set : Activate in-depth scan (Recommended)
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep scan registry


9-22-2004 9:44:50 PM - Scan started. (Smart mode)

Listing running processes
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ

#:1 [smss.exe]
FilePath : \SystemRoot\System32\
ThreadCreationTime : 9-21-2004 10:47:50 PM
BasePriority : Normal


#:2 [winlogon.exe]
FilePath : \??\C:\WINDOWS\System32\
ThreadCreationTime : 9-21-2004 10:47:54 PM
BasePriority : High


#:3 [services.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 9-21-2004 10:47:54 PM
BasePriority : Normal
FileSize : 99 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Services and Controller app
InternalName : services.exe
OriginalFilename : services.exe
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 9/23/2004 1:27:44 AM
Last modified : 8/18/2001 12:00:00 PM

#:4 [lsass.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 9-21-2004 10:47:54 PM
BasePriority : Normal
FileSize : 11 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
OriginalFilename : lsass.exe
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 9/23/2004 1:27:44 AM
Last modified : 8/18/2001 12:00:00 PM

#:5 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 9-21-2004 10:47:55 PM
BasePriority : Normal
FileSize : 12 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 9/23/2004 1:27:44 AM
Last modified : 8/18/2001 12:00:00 PM

#:6 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-21-2004 10:47:55 PM
BasePriority : Normal
FileSize : 12 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 9/23/2004 1:27:44 AM
Last modified : 8/18/2001 12:00:00 PM

#:7 [stylexpservice.exe]
FilePath : C:\Program Files\TGTSoft\StyleXP\
ThreadCreationTime : 9-21-2004 10:47:55 PM
BasePriority : Normal
FileSize : 296 KB
FileVersion : 0, 20, 0, 3000
ProductVersion : 0, 20, 0, 3000
Copyright : Copyright 2001
FileDescription : StyleXPService Module
InternalName : StyleXPService
OriginalFilename : StyleXPService.EXE
ProductName : StyleXPService Module
Created on : 11/18/2003 4:04:15 PM
Last accessed : 9/23/2004 1:27:44 AM
Last modified : 11/18/2003 4:04:15 PM

#:8 [spoolsv.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 9-21-2004 10:47:56 PM
BasePriority : Normal
FileSize : 50 KB
FileVersion : 5.1.2600.0 (XPClient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Spooler SubSystem App
InternalName : spoolsv.exe
OriginalFilename : spoolsv.exe
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 9/23/2004 1:27:44 AM
Last modified : 8/18/2001 12:00:00 PM

#:9 [ccevtmgr.exe]
FilePath : C:\Program Files\Common Files\Symantec Shared\
ThreadCreationTime : 9-21-2004 10:47:56 PM
BasePriority : Normal
FileSize : 309 KB
FileVersion : 1.03.4
ProductVersion : 1.03.4
Copyright : Copyright © 2000-2002 Symantec Corporation. All rights reserved.
CompanyName : Symantec Corporation
FileDescription : Event Manager Service
InternalName : ccEvtMgr
OriginalFilename : ccEvtMgr.exe
ProductName : Event Manager
Created on : 1/16/2003 3:25:31 PM
Last accessed : 9/23/2004 1:27:44 AM
Last modified : 11/13/2002 9:44:02 PM

#:10 [rundll32.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-21-2004 10:48:03 PM
BasePriority : Normal
FileSize : 31 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Run a DLL as an App
InternalName : rundll
OriginalFilename : RUNDLL.EXE
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 9/23/2004 1:06:25 AM
Last modified : 8/18/2001 12:00:00 PM

#:11 [ctsvccda.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-21-2004 10:48:06 PM
BasePriority : Normal
FileSize : 43 KB
FileVersion : 1.0.1.0
ProductVersion : 1.0.0.0
Copyright : Copyright © Creative Technology Ltd., 1999. All rights reserved.
CompanyName : Creative Technology Ltd
FileDescription : Creative Service for CDROM Access
InternalName : CTsvcCDAEXE
OriginalFilename : CTsvcCDA.EXE
ProductName : Creative Service for CDROM Access
Created on : 5/24/2002 6:27:45 AM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 12/13/1999 6:01:00 AM

#:12 [mdm.exe]
FilePath : C:\Program Files\Common Files\Microsoft Shared\VS7Debug\
ThreadCreationTime : 9-21-2004 10:48:06 PM
BasePriority : Normal
FileSize : 264 KB
FileVersion : 7.00.9064.9150
ProductVersion : 7.00.9064.9150
Copyright : Copyright © Microsoft Corp. 1997-2000
CompanyName : Microsoft Corporation
FileDescription : Machine Debug Manager
InternalName : mdm.exe
OriginalFilename : mdm.exe
ProductName : Microsoft Development Environment
Created on : 2/23/2001 2:07:30 PM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 2/23/2001 2:07:30 PM

#:13 [navapsvc.exe]
FilePath : C:\Program Files\Norton AntiVirus\
ThreadCreationTime : 9-21-2004 10:48:06 PM
BasePriority : Normal
FileSize : 113 KB
FileVersion : 9.00.1104
ProductVersion : 9.00.1104
Copyright : Copyright © 2000-2002 Symantec Corporation. All rights reserved.
CompanyName : Symantec Corporation
FileDescription : Norton AntiVirus Auto-Protect Service
InternalName : NAVAPSVC
OriginalFilename : NAVAPSVC.EXE
ProductName : Norton AntiVirus
Created on : 8/20/2002 3:35:38 AM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 8/20/2002 3:35:38 AM

#:14 [nisum.exe]
FilePath : C:\Program Files\Norton Personal Firewall\
ThreadCreationTime : 9-21-2004 10:48:06 PM
BasePriority : Normal
FileSize : 85 KB
FileVersion : 4.0.3.104
ProductVersion : 4.0
Copyright : Copyright © 2001 Symantec Corporation
CompanyName : Symantec Corporation
FileDescription : Norton Internet Security Stats
ProductName : Norton Internet Security
Created on : 9/9/2002 7:31:50 PM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 2/18/2002 5:03:36 PM

#:15 [nvsvc32.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-21-2004 10:48:06 PM
BasePriority : Normal
FileSize : 108 KB
FileVersion : 6.14.10.5672
ProductVersion : 6.14.10.5672
Copyright : © NVIDIA Corporation. All rights reserved.
CompanyName : NVIDIA Corporation
FileDescription : NVIDIA Driver Helper Service, Version 56.72
InternalName : NVSVC
OriginalFilename : nvsvc32.exe
ProductName : NVIDIA Driver Helper Service, Version 56.72
Created on : 3/24/2004 2:04:00 PM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 3/24/2004 2:04:00 PM

#:16 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-21-2004 10:48:06 PM
BasePriority : Normal
FileSize : 12 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 9/23/2004 1:27:44 AM
Last modified : 8/18/2001 12:00:00 PM

#:17 [mspmspsv.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-21-2004 10:48:06 PM
BasePriority : Normal
FileSize : 52 KB
FileVersion : 7.00.00.1954
ProductVersion : 7.00.00.1954
Copyright : Copyright © Microsoft Corp. 1981-2000
CompanyName : Microsoft Corporation
FileDescription : WMDM PMSP Service
InternalName : MSPMSPSV.EXE
OriginalFilename : MSPMSPSV.EXE
ProductName : Microsoft ® DRM
Created on : 6/26/2000 12:44:20 PM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 6/26/2000 12:44:20 PM

#:18 [nisserv.exe]
FilePath : C:\Program Files\Norton Personal Firewall\
ThreadCreationTime : 9-21-2004 10:48:06 PM
BasePriority : Normal
FileSize : 61 KB
FileVersion : 4.0.3.104
ProductVersion : 4.0
Copyright : Copyright © 2001 Symantec Corporation
CompanyName : Symantec Corporation
FileDescription : IAMSERV.EXE
ProductName : Norton Internet Security
Created on : 9/9/2002 7:31:50 PM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 2/18/2002 5:03:30 PM

#:19 [explorer.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 9-21-2004 10:48:07 PM
BasePriority : Normal
FileSize : 977 KB
FileVersion : 6.00.2600.0000 (xpclient.010817-1148)
ProductVersion : 6.00.2600.0000
CompanyName : Microsoft Corporation
FileDescription : Windows Explorer
InternalName : explorer
OriginalFilename : EXPLORER.EXE
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 8/18/2001 12:00:00 PM

#:20 [ltmsg.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-21-2004 10:48:13 PM
BasePriority : Normal
FileSize : 38 KB
FileVersion : 3, 0, 0, 2
ProductVersion : 3, 0, 0, 2
Copyright : Copyright
CompanyName : LUCENT TECHNOLOGIES
FileDescription : ltmsg
InternalName : ltmsg
OriginalFilename : ltmsg.exe
ProductName : LUCENT TECHNOLOGIES ltmsg
Created on : 1/1/1980 5:00:00 AM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 4/3/2001 3:38:30 PM

#:21 [damon.exe]
FilePath : C:\Program Files\Dell\Support\Alert\bin\
ThreadCreationTime : 9-21-2004 10:48:13 PM
BasePriority : Normal
FileSize : 276 KB
FileVersion : 1, 0, 0, 1
ProductVersion : 1, 0, 0, 1
Copyright : Copyright © 2001
FileDescription : MessageApp MFC Application
InternalName : MessageApp
OriginalFilename : MessageApp.EXE
ProductName : MessageApp Application
Created on : 4/3/2002 11:06:18 PM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 4/3/2002 11:06:18 PM

#:22 [iamapp.exe]
FilePath : C:\Program Files\Norton Personal Firewall\
ThreadCreationTime : 9-21-2004 10:48:13 PM
BasePriority : Normal
FileSize : 369 KB
FileVersion : 4.0.3.104
ProductVersion : 4.0
Copyright : Copyright © 2001 Symantec Corporation
CompanyName : Symantec Corporation
FileDescription : IAMAPP.EXE
ProductName : Norton Internet Security
Created on : 9/9/2002 7:31:50 PM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 2/18/2002 5:03:08 PM

#:23 [ccapp.exe]
FilePath : C:\Program Files\Common Files\Symantec Shared\
ThreadCreationTime : 9-21-2004 10:48:13 PM
BasePriority : Normal
FileSize : 53 KB
FileVersion : 1.0.9.002
ProductVersion : 1.0.9.002
Copyright : Copyright © 2000-2002 Symantec Corporation. All rights reserved.
CompanyName : Symantec Corporation
FileDescription : Common Client CC App
InternalName : ccApp
OriginalFilename : ccApp.exe
ProductName : Common Client
Created on : 10/25/2003 3:41:34 PM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 10/18/2003 2:36:40 AM

#:24 [qttask.exe]
FilePath : C:\Program Files\QuickTime\
ThreadCreationTime : 9-21-2004 10:48:13 PM
BasePriority : Normal
FileSize : 76 KB
FileVersion : 6.1c
ProductVersion : QuickTime 6.1c
CompanyName : Apple Computer, Inc.
InternalName : QuickTime Task
OriginalFilename : QTTask.exe
ProductName : QuickTime
Created on : 12/18/2002 11:12:42 PM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 4/6/2003 6:16:29 AM

#:25 [mouse32a.exe]
FilePath : C:\Program Files\Tech\Wheel Mouse\5.0\
ThreadCreationTime : 9-21-2004 10:48:14 PM
BasePriority : Normal
FileSize : 349 KB
FileVersion : 8.0.0.0
ProductVersion : 8.0.0.0
Copyright : Copyright 2002 by LEE,WEI-BIN.
Created on : 12/25/2003 7:46:01 PM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 5/24/2002 12:54:02 PM

#:26 [cthelper.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-21-2004 10:48:14 PM
BasePriority : Normal
FileSize : 24 KB
FileVersion : 1, 0, 0, 2
ProductVersion : 1, 0, 0, 2
Copyright : Copyright © 2002
CompanyName : Creative Technology Ltd
FileDescription : CtHelper Application
InternalName : CtHelper
OriginalFilename : CtHelper.EXE
ProductName : CtHelper Application
Created on : 1/31/2004 4:55:20 PM
Last accessed : 9/23/2004 1:27:45 AM
Last modified : 7/2/2002 10:56:00 PM

#:27 [jusched.exe]
FilePath : C:\PROGRA~1\Java\J2RE14~2.2\bin\
ThreadCreationTime : 9-21-2004 10:48:14 PM
BasePriority : Normal
FileSize : 32 KB
Created on : 11/19/2003 10:48:18 PM
Last accessed : 9/23/2004 1:27:46 AM
Last modified : 11/19/2003 10:48:14 PM

#:28 [symproxysvc.exe]
FilePath : C:\Program Files\Norton Personal Firewall\
ThreadCreationTime : 9-21-2004 10:48:14 PM
BasePriority : Normal
FileSize : 53 KB
FileVersion : 4.0.3.104
ProductVersion : 4.0
Copyright : Copyright © 2001 Symantec Corporation
CompanyName : Symantec Corporation
FileDescription : Transparent Proxy Server
ProductName : Norton Internet Security
Created on : 9/9/2002 7:31:51 PM
Last accessed : 9/23/2004 1:27:46 AM
Last modified : 2/18/2002 5:02:46 PM

#:29 [rundll32.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-21-2004 10:48:15 PM
BasePriority : Normal
FileSize : 31 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Run a DLL as an App
InternalName : rundll
OriginalFilename : RUNDLL.EXE
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 9/23/2004 1:06:25 AM
Last modified : 8/18/2001 12:00:00 PM

#:30 [winampa.exe]
FilePath : C:\Program Files\Winamp\
ThreadCreationTime : 9-21-2004 10:48:15 PM
BasePriority : Normal
FileSize : 33 KB
Created on : 12/13/2003 12:50:34 AM
Last accessed : 9/23/2004 1:27:46 AM
Last modified : 12/13/2003 12:50:34 AM

#:31 [jawa32.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 9-21-2004 10:48:16 PM
BasePriority : Normal
FileSize : 184 KB
FileVersion : 5, 0, 0, 1
ProductVersion : 5, 0, 0, 1
Created on : 8/5/2004 7:50:13 AM
Last accessed : 9/23/2004 1:27:46 AM
Last modified : 8/3/2004 7:19:54 PM

#:32 [pcsvc.exe]
FilePath : C:\WINDOWS\system32\pcs\
ThreadCreationTime : 9-21-2004 10:48:17 PM
BasePriority : Normal
FileSize : 35 KB
FileVersion : 2.15.0000
Created on : 5/20/2004 1:43:51 PM
Last accessed : 9/23/2004 1:27:46 AM
Last modified : 6/21/2004 8:08:22 PM

#:33 [msnmsgr.exe]
FilePath : C:\Program Files\MSN Messenger\
ThreadCreationTime : 9-21-2004 10:48:22 PM
BasePriority : Normal
FileSize : 4768 KB
FileVersion : 6.2.0137
ProductVersion : Version 6.2
Copyright : Copyright © Microsoft Corporation 1997-2004
CompanyName : Microsoft Corporation
FileDescription : MSN Messenger
InternalName : msnmsgr
OriginalFilename : msnmsgr.exe
ProductName : MSN Messenger
Created on : 5/28/2004 7:22:04 PM
Last accessed : 9/23/2004 1:27:46 AM
Last modified : 5/28/2004 7:22:04 PM

#:34 [nclaunch.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 9-21-2004 10:48:22 PM
BasePriority : Normal
FileSize : 40 KB
FileVersion : 2, 2, 0, 106
ProductVersion : 2, 2, 0, 106
Copyright : Copyright
CompanyName : Northcode Inc.
FileDescription : NCLaunch
InternalName : NCLaunch
OriginalFilename : NCLaunch.exe
ProductName : Northcode NCLaunch
Created on : 1/25/2004 2:36:26 AM
Last accessed : 9/23/2004 1:27:46 AM
Last modified : 1/25/2004 2:36:26 AM

#:35 [ypager.exe]
FilePath : C:\Program Files\Yahoo!\Messenger\
ThreadCreationTime : 9-21-2004 10:48:24 PM
BasePriority : Normal
FileSize : 2440 KB
Created on : 3/5/2003 11:37:26 PM
Last accessed : 9/23/2004 1:27:46 AM
Last modified : 6/10/2004 6:14:54 PM

#:36 [odbredir.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-21-2004 10:48:25 PM
BasePriority : Normal
FileSize : 96 KB
Created on : 9/8/2004 11:24:20 PM
Last accessed : 9/23/2004 1:27:46 AM
Last modified : 9/8/2004 11:23:46 PM

#:37 [ctfmon.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-21-2004 10:48:31 PM
BasePriority : Normal
FileSize : 13 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : CTF Loader
InternalName : CTFMON
OriginalFilename : CTFMON.EXE
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 9/23/2004 1:27:46 AM
Last modified : 8/18/2001 12:00:00 PM

#:38 [wuauclt.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-21-2004 10:50:01 PM
BasePriority : Normal
FileSize : 145 KB
FileVersion : 5.4.3790.17 built by: lab04_n
ProductVersion : 5.4.3790.17
CompanyName : Microsoft Corporation
FileDescription : Windows Update AutoUpdate Client
InternalName : wuauclt.exe
OriginalFilename : wuauclt.exe
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 9/23/2004 1:27:46 AM
Last modified : 10/9/2003 7:27:04 PM

#:39 [mirc.exe]
FilePath : C:\Documents and Settings\Christian\Desktop\Games for Chris\Christian demo games\mIRC\
ThreadCreationTime : 9-21-2004 11:01:28 PM
BasePriority : Normal
FileSize : 1824 KB
FileVersion : 6.12
ProductVersion : 6.12
Copyright : Copyright
CompanyName : mIRC Co. Ltd.
FileDescription : mIRC
InternalName : mIRC
OriginalFilename : mirc.exe
ProductName : mIRC
Created on : 4/24/2003 5:11:01 AM
Last accessed : 9/23/2004 1:00:48 AM
Last modified : 10/18/2003 8:17:46 PM

#:40 [gdg0ljdr.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-22-2004 9:08:17 AM
BasePriority : Normal
FileSize : 248 KB
FileVersion : 1.00
ProductVersion : 1.00
InternalName : Kern32
OriginalFilename : Kern32.exe
ProductName : Kern32
Created on : 8/19/2004 8:23:41 PM
Last accessed : 9/23/2004 1:27:47 AM
Last modified : 8/20/2004 3:23:06 PM

#:41 [qhpxq.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-22-2004 9:08:17 AM
BasePriority : Normal
FileSize : 248 KB
FileVersion : 1.00
ProductVersion : 1.00
InternalName : Kern32
OriginalFilename : Kern32.exe
ProductName : Kern32
Created on : 8/19/2004 8:23:42 PM
Last accessed : 9/23/2004 1:27:47 AM
Last modified : 8/20/2004 3:23:05 PM

#:42 [steam.exe]
FilePath : C:\Program Files\Steam\
ThreadCreationTime : 9-22-2004 7:53:25 PM
BasePriority : Normal
FileSize : 1180 KB
FileVersion : 1.0.0.0
ProductVersion : 1.0.0.0
CompanyName : Valve Corporation
FileDescription : Steam
OriginalFilename : Steam.exe
ProductName : Steam
Created on : 5/30/2004 11:01:44 PM
Last accessed : 9/23/2004 1:06:59 AM
Last modified : 9/22/2004 7:53:23 PM

#:43 [firefox.exe]
FilePath : C:\Program Files\Mozilla Firefox\
ThreadCreationTime : 9-22-2004 10:01:02 PM
BasePriority : Normal
FileSize : 6592 KB
FileVersion : 0.8
ProductVersion : Personal
Copyright : Mozilla
CompanyName : Mozilla
FileDescription : Firefox
InternalName : Firefox
OriginalFilename : firefox.exe
ProductName : Firefox
Created on : 5/3/2004 1:31:18 AM
Last accessed : 9/23/2004 1:39:44 AM
Last modified : 2/7/2004 4:12:00 PM

#:44 [realsched.exe]
FilePath : C:\Program Files\Common Files\Real\Update_OB\
ThreadCreationTime : 9-22-2004 10:48:20 PM
BasePriority : Normal
FileSize : 172 KB
FileVersion : 0.1.0.2879
ProductVersion : 0.1.0.2879
Copyright : Copyright
CompanyName : RealNetworks, Inc.
FileDescription : RealNetworks Scheduler
InternalName : schedapp
OriginalFilename : realsched.exe
ProductName : RealPlayer (32-bit)
Created on : 7/10/2003 5:59:55 AM
Last accessed : 9/23/2004 1:27:47 AM
Last modified : 2/28/2004 12:51:17 PM

#:45 [ad-aware.exe]
FilePath : C:\Program Files\Lavasoft\Ad-aware 6\
ThreadCreationTime : 9-23-2004 1:27:28 AM
BasePriority : Normal
FileSize : 668 KB
FileVersion : 6.0.1.181
ProductVersion : 6.0.0.0
Copyright : Copyright
CompanyName : Lavasoft Sweden
FileDescription : Ad-aware 6 core application
InternalName : Ad-aware.exe
OriginalFilename : Ad-aware.exe
ProductName : Lavasoft Ad-aware Plus
Created on : 9/13/2003 3:38:37 PM
Last accessed : 9/23/2004 1:27:28 AM
Last modified : 7/13/2003 3:00:20 AM

#:46 [iexplore.exe]
FilePath : C:\Program Files\Internet Explorer\
ThreadCreationTime : 9-23-2004 1:40:28 AM
BasePriority : Normal
FileSize : 89 KB
FileVersion : 6.00.2600.0000 (xpclient.010817-1148)
ProductVersion : 6.00.2600.0000
CompanyName : Microsoft Corporation
FileDescription : Internet Explorer
InternalName : iexplore
OriginalFilename : IEXPLORE.EXE
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 9/23/2004 1:03:59 AM
Last modified : 8/18/2001 12:00:00 PM

#:47 [modemui.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 9-23-2004 1:42:08 AM
BasePriority : Normal
FileSize : 53 KB
Created on : 8/17/2001 1:02:03 AM
Last accessed : 9/23/2004 1:38:05 AM
Last modified : 8/17/2001 1:02:03 AM

Memory scan result :
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ
New objects : 0
Objects found so far: 0


Started registry scan
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ

Registry scan result :
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ
New objects : 0
Objects found so far: 0


Started deep registry scan
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ

Deep registry scan result :
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ
New objects : 0
Objects found so far: 0


ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ

Tracking Cookie Object recognized!
Type : File
Data : terri@0[1].txt
Object : C:\Documents and Settings\Terri\Cookies\

Created on : 9/23/2004 1:40:47 AM
Last accessed : 9/23/2004 1:40:47 AM
Last modified : 9/23/2004 1:40:47 AM



Tracking Cookie Object recognized!
Type : File
Data : [email protected][1].txt
Object : C:\Documents and Settings\Terri\Cookies\

Created on : 9/23/2004 1:45:56 AM
Last accessed : 9/23/2004 1:45:57 AM
Last modified : 9/23/2004 1:45:57 AM



Tracking Cookie Object recognized!
Type : File
Data : terri@fortunecity[2].txt
Object : C:\Documents and Settings\Terri\Cookies\

Created on : 9/23/2004 1:45:58 AM
Last accessed : 9/23/2004 1:45:58 AM
Last modified : 9/23/2004 1:45:58 AM


ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ


Deep scanning and examining files (C:)
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ

VX2 Object recognized!
Type : File
Data : axsldp.dll
Object : C:\WINDOWS\System32\
FileSize : 313 KB
Created on : 9/21/2004 10:48:03 PM
Last accessed : 9/23/2004 1:32:06 AM
Last modified : 8/19/2004 7:30:53 PM




Performing conditional scans..
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ

Conditional scan result:
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ
New objects : 0
Objects found so far: 4


9:49:20 PM Scan complete

Summary of this scan
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ
Total scanning time :00:04:29:500
Objects scanned :57400
Objects identified :4
Objects ignored :0
New objects :4

If you could help me remove THAT one...I'd appreciate it.


As for the file that isn't there...Everytime I run Spybot, it pulls up btiein.dll, which is a Huntbar Adware...but then when I go to search for the file (yes, I have everything visible including system files) it's not there! I've run searches and everything but nothing can find it except for spybot. Is it Spybot messing up or has it found a hidden file? And I've noticed that a lot of other adware will show up when I run spybot, but it says it removes it...then if I close Spybot and run it again, it'll find those same files, which leads me to believe this .dll could be downloading all the advertisement stuff.

And also, just for the [bleep] of it, I'm posting my HijackThis log...maybe you can see something I've missed and should be deleted?

Logfile of HijackThis v1.97.7
Scan saved at 9:57:42 PM, on 9/22/2004
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\System32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\System32\rundll32.exe
C:\WINDOWS\System32\CTsvcCDA.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton Personal Firewall\NISUM.EXE
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Norton Personal Firewall\NISSERV.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\ltmsg.exe
C:\Program Files\Dell\Support\Alert\bin\DAMon.exe
C:\Program Files\Norton Personal Firewall\IAMAPP.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Tech\Wheel Mouse\5.0\MOUSE32A.EXE
C:\WINDOWS\System32\CTHELPER.EXE
C:\PROGRA~1\Java\J2RE14~2.2\bin\jusched.exe
C:\Program Files\Norton Personal Firewall\SymProxySvc.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\jawa32.exe
C:\WINDOWS\system32\pcs\pcsvc.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\WINDOWS\NCLAUNCH.EXe
C:\Program Files\Yahoo!\Messenger\ypager.exe
C:\WINDOWS\System32\odbredir.exe
C:\WINDOWS\System32\ctfmon.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Documents and Settings\Christian\Desktop\Games for Chris\Christian demo games\mIRC\mirc.exe
C:\WINDOWS\System32\Gdg0LJdr.exe
C:\WINDOWS\System32\QhpXQ.exe
C:\Program Files\Steam\Steam.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\System32\modemui.exe
C:\Documents and Settings\Terri\Desktop\HijackThis.exe
C:\Program Files\Internet Explorer\iexplore.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dellnet.com
R3 - URLSearchHook: (no name) - _{8952A998-1E7E-4716-B23D-3DBE03910972 - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [LTWinModem1] ltmsg.exe 9
O4 - HKLM\..\Run: [TCASUTIEXE] TCAUDIAG -off
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [AHQInit] C:\Program Files\Creative\SBLive\Program\AHQInit.exe
O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\navapw32.exe
O4 - HKLM\..\Run: [Dell|Alert] C:\Program Files\Dell\Support\Alert\bin\DAMon.exe
O4 - HKLM\..\Run: [iamapp] C:\Program Files\Norton Personal Firewall\IAMAPP.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [LWBMOUSE] C:\Program Files\Tech\Wheel Mouse\5.0\MOUSE32A.EXE
O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\PROGRA~1\Java\J2RE14~2.2\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Windows Shell Library Loader] load shell32.dll /c /set
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [Jawa32] C:\WINDOWS\jawa32.exe
O4 - HKLM\..\Run: [Pcsv] C:\WINDOWS\system32\pcs\pcsvc.exe
O4 - HKLM\..\Run: [mhsxmvuz] C:\WINDOWS\mhsxmvuz.exe
O4 - HKLM\..\Run: [psnS3qO] occert2.exe
O4 - HKLM\..\Run: [2LRX2W83X2T3MQ] C:\WINDOWS\System32\Bin9f.exe
O4 - HKLM\..\Run: [Sys29] C:\windows\system32\winpjg32.exe
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM95\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [NCLaunch] C:\WINDOWS\NCLAUNCH.EXe
O4 - HKCU\..\Run: [CursorXP] C:\Program Files\CursorXP\CursorXP.exe
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [msmc] C:\WINDOWS\System32\msmc.exe
O4 - HKCU\..\Run: [Jawa32] C:\WINDOWS\jawa32.exe
O4 - HKCU\..\Run: [modemui] C:\WINDOWS\System32\modemui.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - Global Startup: LimeWire 4.0.7.lnk = C:\Program Files\LimeWire\LimeWire 4.0.7\LimeWire.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Yahoo! Messenger (HKLM)
O9 - Extra button: AIM (HKLM)
O9 - Extra button: MoneySide (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Windows Messenger (HKLM)
O16 - DPF: ChatSpace Java Client 2.1.0.91L - http://209.92.150.11...a/cs4msl091.cab
O16 - DPF: ConferenceRoom Java Client - http://chat.privatef...000/java/cr.cab
O16 - DPF: JT's Blocks - http://download.game...ts/y/blt0_x.cab
O16 - DPF: Tornado 21 - http://download.game...s/y/t21t0_x.cab
O16 - DPF: Yahoo! Backgammon - http://download.game...nts/y/at0_x.cab
O16 - DPF: Yahoo! Bingo - http://download.game...nts/y/xt0_x.cab
O16 - DPF: Yahoo! Blackjack - http://download.game...nts/y/jt0_x.cab
O16 - DPF: Yahoo! Canasta - http://download.game...nts/y/yt1_x.cab
O16 - DPF: Yahoo! Chat - http://us.chat1.yimg...t/c381/chat.cab
O16 - DPF: Yahoo! Chess - http://download.game...nts/y/ct0_x.cab
O16 - DPF: Yahoo! Chinese Checkers - http://download.game...ts/y/cct0_x.cab
O16 - DPF: Yahoo! Dice - http://download.game...ts/y/dct0_x.cab
O16 - DPF: Yahoo! Dots - http://download.game...ts/y/dtt1_x.cab
O16 - DPF: Yahoo! Graffiti - http://download.game...ts/y/grt0_x.cab
O16 - DPF: Yahoo! Klondike Solitaire - http://yog55.games.s...og/y/ks11_x.cab
O16 - DPF: Yahoo! Literati - http://download.game...nts/y/tt0_x.cab
O16 - DPF: Yahoo! MahJong Solitaire - http://download.game...s/y/mjst0_x.cab
O16 - DPF: Yahoo! Pool 2 - http://download.game...ts/y/potb_x.cab
O16 - DPF: Yahoo! Pyramids - http://download.game...ts/y/pyt0_x.cab
O16 - DPF: Yahoo! Spades - http://download.game...nts/y/st2_x.cab
O16 - DPF: Yahoo! Spelldown - http://download.game...ts/y/sdt0_x.cab
O16 - DPF: Yahoo! Towers 2.0 - http://download.game...ts/y/ywt0_x.cab
O16 - DPF: Yahoo! Trivia - http://download.game...ts/y/tvt0_x.cab
O16 - DPF: Yahoo! Word Racer - http://download.game...nts/y/wt0_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zon...kr.cab28578.cab
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://www.apple.com...ex/qtplugin.cab
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macr...director/sw.cab
O16 - DPF: {27527D31-447B-11D5-A46E-0001023B4289} (CoGSManager Class) - http://gamingzone.ub...s/GSManager.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://download.yaho...talls/yinst.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akama...meInstaller.exe
O16 - DPF: {48884C41-EFAC-433D-958A-9FADAC41408E} (EGamesPlugin Class) - https://www.e-games....GamesPlugin.cab
O16 - DPF: {4C226336-4032-489F-9674-67E74225979B} (OTXMovie Class) - http://otx.ifilm.com...ia/OTXMedia.dll
O16 - DPF: {65E7DB1D-0101-4100-BD66-C5C78C917F93} - http://www.wildtange...smmp/wtinst.cab
O16 - DPF: {666DDE35-E955-11D0-A707-000000521958} - http://69.56.176.227/webplugin.cab
O16 - DPF: {68BCE50A-DC9B-4519-A118-6FDA19DB450D} (Info Class) - http://www.blizzard....des/cabs/si.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://us.games2.yim...ctl_0_0_0_1.ocx
O16 - DPF: {75D1F3B2-2A21-11D7-97B9-0010DC2A6243} (SecureLogin.SecureControl) - http://secure2.comne...iveSecurity.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zon...StatsClient.cab
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupd...7632.4915162037
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) - http://www.sibelius....tiveXPlugin.cab
O16 - DPF: {AB29A544-D6B4-4E36-A1F8-D3E34FC7B00A} - http://install.wildt...kII/install.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} (YAddBook Class) - http://us.dl1.yimg.c...utocomplete.cab
O16 - DPF: {C02226EB-A5D7-4B1F-BD7E-635E46C2288D} (Toontown Installer ActiveX Control) - http://download.toon...13.5/ttinst.cab
O16 - DPF: {C3EF17D6-2201-11D4-9F0E-00B0D011B1AE} (Communities.com Passport) - http://cartoonorbit..../winorbiter.cab
O16 - DPF: {CAFEEFAC-0014-0001-0000-ABCDEFFEDCBA} (Java Runtime Environment 1.4.1) -
O16 - DPF: {CC05BC12-2AA2-4AC7-AC81-0E40F83B1ADF} (Live365Player Class) - http://www.live365.c...ers/play365.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macr...ash/swflash.cab
O16 - DPF: {E504EE6E-47C6-11D5-B8AB-00D0B78F3D48} (Yahoo! Webcam Viewer Wrapper) - http://chat.yahoo.com/cab/yvwrctl.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zon...ireShowdown.cab
  • 0

Advertisements


#2
admin

admin

    Founder Geek

  • Community Leader
  • 24,639 posts
Download the latest version of Ad-Aware from here (if you already have Ad-Aware installed, make sure that it is the latest version and always go online and update it before you run it).

Download Lavasoft's VX2 Cleaner plug-in here
http://updates.ls-se...lvx2cleaner.exe

How to use Lavasoft's VX2 Cleaner plug-in

- Close Ad-Aware 6 and Ad-Watch (if running)
- Download the free VX2 Cleaner at http://updates.ls-se...lvx2cleaner.exe
- Install the VX2 Cleaner
- Start Ad-Aware 6
- Go to "Plug-ins"
- Select the VX2 Cleaner plug-in and click "Run Plugin"
- If your computer isn't infected, click "Close".


If your computer is infected

- Select "Clean system"
- Reboot your computer
- Scan your computer with Ad-Aware
- Remove any VX2 objects detected
- Reboot your computer again
- Run a second scan to make sure the files have been removed from your computer

Reboot your PC.

If you would please, rescan with HijackThis and post a fresh log in this same topic, and let us know how your system's working. <_<
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP