Aiutamici Forum
Benvenuto Ospite Cerca | Topic Attivi | Utenti | | Log In | Registra

Attacco virus Opzioni
jimmy76
Inviato: Saturday, March 12, 2011 10:14:10 PM

Rank: AiutAmico

Iscritto dal : 8/7/2009
Posts: 319
Ragazzi ciao, a quanto pare ho un problema.
Credo di avere un bel pò di virus nel sistema...il tutto è avvenuto da quando ho tolto AVG e inserito microsoft security.
Quando avvio una ricerca su google e clicco sull'argomento che mi interessa vengo portato su siti con indirizzi numerici...questa cosa non mi piace.
Ora sto facendo una scansione con malwarebytes (fino ad ora 19 elementi infetti) programma che avevo tolto perchè sconsigliato insieme all'antivirus accennato sopra.
Qualcuno può aiutarmi per risolvere il problema?
Rimango in attesa.
Grazie

R16 dove sei?? ;O)
Sponsor
Inviato: Saturday, March 12, 2011 10:14:10 PM

 
r16
Inviato: Saturday, March 12, 2011 10:23:38 PM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
Scarica ed installa MalwareBytes:
clicca qui per il download : http://www.aiutamici.com/software?id=80346
Prima di fare la scansione AGGIORNALO. (è molto importante)
Esegui una scansione completa del sistema.
Elimina gli eventuali file infetti trovati.
Posta il log.
jimmy76
Inviato: Saturday, March 12, 2011 10:28:10 PM

Rank: AiutAmico

Iscritto dal : 8/7/2009
Posts: 319
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org

Versione database: 6037

Windows 6.1.7600
Internet Explorer 8.0.7600.16385

12/03/2011 22:28:52
mbam-log-2011-03-12 (22-28-45).txt

Tipo di scansione: Scansione completa (C:\|D:\|)
Elementi esaminati: 213259
Tempo trascorso: 17 minuti, 33 secondi

Processi infetti in memoria: 0
Moduli di memoria infetti: 1
Chiavi di registro infette: 0
Valori di registro infetti: 1
Voci infette nei dati di registro: 0
Cartelle infette: 0
File infetti: 21

Processi infetti in memoria:
(Non sono stati rilevati elementi nocivi)

Moduli di memoria infetti:
c:\Users\alex\AppData\Local\STSGR19.dll (Trojan.Agent.U) -> No action taken.

Chiavi di registro infette:
(Non sono stati rilevati elementi nocivi)

Valori di registro infetti:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Qyiwunozabula (Trojan.Agent.U) -> Value: Qyiwunozabula -> No action taken.

Voci infette nei dati di registro:
(Non sono stati rilevati elementi nocivi)

Cartelle infette:
(Non sono stati rilevati elementi nocivi)

File infetti:
c:\Users\alex\AppData\Local\microsoft\Windows\temporary internet files\Content.IE5\KIOQFI7J\129568[1].exe (Trojan.FakeAlert) -> No action taken.
c:\Users\alex\AppData\Local\Temp\xrcwesanom.exe (Adware.Agent) -> No action taken.
c:\Users\alex\AppData\Local\Temp\ncoawrmexs.exe (Trojan.Hiloti) -> No action taken.
c:\Users\alex\AppData\Local\Temp\setup1664239912.exe (Rootkit.TDSS) -> No action taken.
c:\Users\alex\AppData\Local\Temp\setup2425495664.exe (Rootkit.TDSS) -> No action taken.
c:\Users\alex\AppData\Local\Temp\setup2946359480.exe (Rootkit.TDSS) -> No action taken.
c:\Users\alex\AppData\Local\Temp\setup3606803888.exe (Rootkit.TDSS) -> No action taken.
c:\Users\alex\AppData\Local\Temp\0.469419532908699.exe (Trojan.FakeAlert) -> No action taken.
c:\Users\alex\AppData\Local\Temp\20D8.tmp (Trojan.FakeAlert) -> No action taken.
c:\Users\alex\AppData\Local\Temp\20D9.exe (Trojan.FakeAlert) -> No action taken.
c:\Users\alex\AppData\Local\Temp\20F7.tmp (Trojan.FakeAlert) -> No action taken.
c:\Users\alex\AppData\Local\Temp\20F8.exe (Trojan.FakeAlert) -> No action taken.
c:\Users\alex\AppData\Local\Temp\AE2B.tmp (Trojan.FakeAlert) -> No action taken.
c:\Users\alex\AppData\Local\Temp\AE39.tmp (Rootkit.TDSS) -> No action taken.
c:\Users\alex\AppData\Local\Temp\arosnewxmc.exe (Trojan.Downloader) -> No action taken.
c:\Users\alex\AppData\Local\Temp\e.exe (Trojan.FakeAlert) -> No action taken.
c:\Users\alex\AppData\Local\Temp\eacmsrwnox.exe (Adware.Agent) -> No action taken.
c:\Users\alex\AppData\Local\Temp\ECBF.tmp (Rootkit.TDSS) -> No action taken.
c:\Users\alex\AppData\Local\Windows\winhelp.exe (Spyware.Passwords.XGen) -> No action taken.
c:\programdata\ffdhaja12809\ffdhaja12809.exe (Trojan.FakeAlert) -> No action taken.
c:\Users\alex\AppData\Local\STSGR19.dll (Trojan.Agent.U) -> No action taken.
r16
Inviato: Saturday, March 12, 2011 10:33:34 PM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
Elimina quello che ha trovato Malwarebytes.

Poi fai questa scansione:
Scarica Combofix (usa Internet Explorer)

http://download.bleepingcomputer.com/sUBs/ComboFix.exe

Rinomina combofix prima di salvarlo sul desktop in abc.exe
Per rinominare il file, quando lo scarichi ti chiede dove salvarlo, e ti compare la casella "nome file" ,basta che cambi il nome che ti appare li in abc.exe)
Una volta scaricato il programma, clicca su start\ esegui nel box bianco copia e incolla questo comando, virgolette comprese:
"%userprofile%\desktop\abc.exe" /killall
Premi OK.
Durante la scansione non usare il pc. (nemmeno il mouse)
Posta il log
jimmy76
Inviato: Saturday, March 12, 2011 10:40:38 PM

Rank: AiutAmico

Iscritto dal : 8/7/2009
Posts: 319
Non riesco a scaricarlo...mi si apre questa finistra:



r16
Inviato: Saturday, March 12, 2011 10:46:35 PM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
Scarica TDSSKiller.zip sul desktop:
http://support.kaspersky.com/viruses/solutions?qid=208280684
Estrai i dati in una cartella e fai doppio clik su TDSSKiller.exe
clicca su "Start Scan"
Se trova qualche infezione di default avrai l'opzione "Cure" per cui, clicca su "Continue".
Se un file sospetto viene trovato,l'azione di default sarà skip,clicca su "Continue".
Se nessun riavvio è richiesto clicca su report e salva il contenuto in un file di testo.
Se invece, è richiesto il riavvio, acconsenti.
Il log lo trovi in C:\
Postalo qui.
jimmy76
Inviato: Saturday, March 12, 2011 10:54:25 PM

Rank: AiutAmico

Iscritto dal : 8/7/2009
Posts: 319
Non mi ha dato niente.





2011/03/12 22:51:20.0858 2972 TDSS rootkit removing tool 2.4.21.0 Mar 10 2011 12:26:28
2011/03/12 22:51:22.0859 2972 ================================================================================
2011/03/12 22:51:22.0860 2972 SystemInfo:
2011/03/12 22:51:22.0860 2972
2011/03/12 22:51:22.0860 2972 OS Version: 6.1.7600 ServicePack: 0.0
2011/03/12 22:51:22.0860 2972 Product type: Workstation
2011/03/12 22:51:22.0860 2972 ComputerName: ALEX-PC
2011/03/12 22:51:22.0860 2972 UserName: alex
2011/03/12 22:51:22.0860 2972 Windows directory: C:\Windows
2011/03/12 22:51:22.0860 2972 System windows directory: C:\Windows
2011/03/12 22:51:22.0860 2972 Processor architecture: Intel x86
2011/03/12 22:51:22.0860 2972 Number of processors: 4
2011/03/12 22:51:22.0860 2972 Page size: 0x1000
2011/03/12 22:51:22.0860 2972 Boot type: Normal boot
2011/03/12 22:51:22.0860 2972 ================================================================================
2011/03/12 22:52:20.0138 2972 Initialize success
2011/03/12 22:52:26.0283 4792 ================================================================================
2011/03/12 22:52:26.0283 4792 Scan started
2011/03/12 22:52:26.0283 4792 Mode: Manual;
2011/03/12 22:52:26.0283 4792 ================================================================================
2011/03/12 22:52:26.0855 4792 1394ohci (6d2aca41739bfe8cb86ee8e85f29697d) C:\Windows\system32\DRIVERS\1394ohci.sys
2011/03/12 22:52:26.0886 4792 ACPI (f0e07d144c8685b8774bc32fc8da4df0) C:\Windows\system32\DRIVERS\ACPI.sys
2011/03/12 22:52:26.0905 4792 AcpiPmi (98d81ca942d19f7d9153b095162ac013) C:\Windows\system32\DRIVERS\acpipmi.sys
2011/03/12 22:52:26.0938 4792 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
2011/03/12 22:52:26.0968 4792 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
2011/03/12 22:52:26.0987 4792 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
2011/03/12 22:52:27.0022 4792 AFD (ddc040fdb01ef1712a6b13e52afb104c) C:\Windows\system32\drivers\afd.sys
2011/03/12 22:52:27.0046 4792 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\DRIVERS\agp440.sys
2011/03/12 22:52:27.0063 4792 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
2011/03/12 22:52:27.0092 4792 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\DRIVERS\aliide.sys
2011/03/12 22:52:27.0118 4792 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\DRIVERS\amdagp.sys
2011/03/12 22:52:27.0140 4792 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\DRIVERS\amdide.sys
2011/03/12 22:52:27.0153 4792 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
2011/03/12 22:52:27.0168 4792 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
2011/03/12 22:52:27.0192 4792 amdsata (2101a86c25c154f8314b24ef49d7fbc2) C:\Windows\system32\DRIVERS\amdsata.sys
2011/03/12 22:52:27.0214 4792 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
2011/03/12 22:52:27.0234 4792 amdxata (b81c2b5616f6420a9941ea093a92b150) C:\Windows\system32\DRIVERS\amdxata.sys
2011/03/12 22:52:27.0254 4792 AppID (feb834c02ce1e84b6a38f953ca067706) C:\Windows\system32\drivers\appid.sys
2011/03/12 22:52:27.0285 4792 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
2011/03/12 22:52:27.0310 4792 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
2011/03/12 22:52:27.0338 4792 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
2011/03/12 22:52:27.0356 4792 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\DRIVERS\atapi.sys
2011/03/12 22:52:27.0457 4792 atikmdag (04f09923a393e4e0e8453a8f78361e73) C:\Windows\system32\DRIVERS\atikmdag.sys
2011/03/12 22:52:27.0576 4792 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
2011/03/12 22:52:27.0615 4792 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
2011/03/12 22:52:27.0642 4792 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
2011/03/12 22:52:27.0678 4792 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
2011/03/12 22:52:27.0694 4792 bowser (fcafaef6798d7b51ff029f99a9898961) C:\Windows\system32\DRIVERS\bowser.sys
2011/03/12 22:52:27.0707 4792 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
2011/03/12 22:52:27.0723 4792 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
2011/03/12 22:52:27.0756 4792 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
2011/03/12 22:52:27.0771 4792 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
2011/03/12 22:52:27.0787 4792 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
2011/03/12 22:52:27.0803 4792 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
2011/03/12 22:52:27.0819 4792 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
2011/03/12 22:52:27.0862 4792 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
2011/03/12 22:52:27.0897 4792 cdrom (ba6e70aa0e6091bc39de29477d866a77) C:\Windows\system32\DRIVERS\cdrom.sys
2011/03/12 22:52:27.0927 4792 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
2011/03/12 22:52:27.0951 4792 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
2011/03/12 22:52:27.0995 4792 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
2011/03/12 22:52:28.0014 4792 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\DRIVERS\cmdide.sys
2011/03/12 22:52:28.0039 4792 CNG (1b675691ed940766149c93e8f4488d68) C:\Windows\system32\Drivers\cng.sys
2011/03/12 22:52:28.0059 4792 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
2011/03/12 22:52:28.0081 4792 CompositeBus (f1724ba27e97d627f808fb0ba77a28a6) C:\Windows\system32\DRIVERS\CompositeBus.sys
2011/03/12 22:52:28.0103 4792 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
2011/03/12 22:52:28.0148 4792 DfsC (8e09e52ee2e3ceb199ef3dd99cf9e3fb) C:\Windows\system32\Drivers\dfsc.sys
2011/03/12 22:52:28.0170 4792 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
2011/03/12 22:52:28.0196 4792 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
2011/03/12 22:52:28.0237 4792 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
2011/03/12 22:52:28.0267 4792 DXGKrnl (1679a4669326cb1a67cc95658d273234) C:\Windows\System32\drivers\dxgkrnl.sys
2011/03/12 22:52:28.0335 4792 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
2011/03/12 22:52:28.0423 4792 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
2011/03/12 22:52:28.0456 4792 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\DRIVERS\errdev.sys
2011/03/12 22:52:28.0483 4792 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
2011/03/12 22:52:28.0504 4792 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
2011/03/12 22:52:28.0525 4792 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
2011/03/12 22:52:28.0555 4792 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
2011/03/12 22:52:28.0574 4792 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
2011/03/12 22:52:28.0587 4792 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
2011/03/12 22:52:28.0609 4792 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
2011/03/12 22:52:28.0634 4792 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
2011/03/12 22:52:28.0649 4792 Fs_Rec (a574b4360e438977038aae4bf60d79a2) C:\Windows\system32\drivers\Fs_Rec.sys
2011/03/12 22:52:28.0675 4792 fvevol (dafbd9fe39197495aed6d51f3b85b5d2) C:\Windows\system32\DRIVERS\fvevol.sys
2011/03/12 22:52:28.0705 4792 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
2011/03/12 22:52:28.0724 4792 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
2011/03/12 22:52:28.0758 4792 HdAudAddService (3530cad25deba7dc7de8bb51632cbc5f) C:\Windows\system32\drivers\HdAudio.sys
2011/03/12 22:52:28.0787 4792 HDAudBus (717a2207fd6f13ad3e664c7d5a43c7bf) C:\Windows\system32\DRIVERS\HDAudBus.sys
2011/03/12 22:52:28.0803 4792 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
2011/03/12 22:52:28.0819 4792 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
2011/03/12 22:52:28.0838 4792 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
2011/03/12 22:52:28.0874 4792 HidUsb (25072fb35ac90b25f9e4e3bacf774102) C:\Windows\system32\DRIVERS\hidusb.sys
2011/03/12 22:52:28.0904 4792 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\DRIVERS\HpSAMD.sys
2011/03/12 22:52:28.0934 4792 HTTP (c531c7fd9e8b62021112787c4e2c5a5a) C:\Windows\system32\drivers\HTTP.sys
2011/03/12 22:52:28.0955 4792 hwpolicy (8305f33cde89ad6c7a0763ed0b5a8d42) C:\Windows\system32\drivers\hwpolicy.sys
2011/03/12 22:52:28.0973 4792 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\DRIVERS\i8042prt.sys
2011/03/12 22:52:28.0998 4792 iaStorV (934af4d7c5f457b9f0743f4299b77b67) C:\Windows\system32\DRIVERS\iaStorV.sys
2011/03/12 22:52:29.0020 4792 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
2011/03/12 22:52:29.0050 4792 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\DRIVERS\intelide.sys
2011/03/12 22:52:29.0075 4792 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
2011/03/12 22:52:29.0103 4792 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
2011/03/12 22:52:29.0122 4792 IPMIDRV (e4454b6c37d7ffd5649611f6496308a7) C:\Windows\system32\DRIVERS\IPMIDrv.sys
2011/03/12 22:52:29.0138 4792 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
2011/03/12 22:52:29.0159 4792 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
2011/03/12 22:52:29.0176 4792 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\DRIVERS\isapnp.sys
2011/03/12 22:52:29.0204 4792 iScsiPrt (ed46c223ae46c6866ab77cdc41c404b7) C:\Windows\system32\DRIVERS\msiscsi.sys
2011/03/12 22:52:29.0229 4792 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys
2011/03/12 22:52:29.0254 4792 kbdhid (3d9f0ebf350edcfd6498057301455964) C:\Windows\system32\DRIVERS\kbdhid.sys
2011/03/12 22:52:29.0275 4792 KSecDD (e36a061ec11b373826905b21be10948f) C:\Windows\system32\Drivers\ksecdd.sys
2011/03/12 22:52:29.0301 4792 KSecPkg (365c6154bbbc5377173f1ca7bfb6cc59) C:\Windows\system32\Drivers\ksecpkg.sys
2011/03/12 22:52:29.0339 4792 L1E (f7cdaba15c7e853f0a11af6d77fca990) C:\Windows\system32\DRIVERS\L1E62x86.sys
2011/03/12 22:52:29.0374 4792 lltdio (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
2011/03/12 22:52:29.0412 4792 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
2011/03/12 22:52:29.0433 4792 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
2011/03/12 22:52:29.0456 4792 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
2011/03/12 22:52:29.0489 4792 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
2011/03/12 22:52:29.0516 4792 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
2011/03/12 22:52:29.0539 4792 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
2011/03/12 22:52:29.0565 4792 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
2011/03/12 22:52:29.0602 4792 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
2011/03/12 22:52:29.0632 4792 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
2011/03/12 22:52:29.0656 4792 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys
2011/03/12 22:52:29.0679 4792 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
2011/03/12 22:52:29.0695 4792 mountmgr (921c18727c5920d6c0300736646931c2) C:\Windows\system32\drivers\mountmgr.sys
2011/03/12 22:52:29.0729 4792 MpFilter (7e34bfa1a7b60bba1da03d677f16cd63) C:\Windows\system32\DRIVERS\MpFilter.sys
2011/03/12 22:52:29.0749 4792 mpio (2af5997438c55fb79d33d015c30e1974) C:\Windows\system32\DRIVERS\mpio.sys
2011/03/12 22:52:29.0960 4792 MpKslfe0d8e92 (5f53edfead46fa7adb78eee9ecce8fdf) c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7B1C2B2D-9688-4BD6-B8D1-431C410D9882}\MpKslfe0d8e92.sys
2011/03/12 22:52:29.0973 4792 MpNWMon (f32e2d6a1640a469a9ed4f1929a4a861) C:\Windows\system32\DRIVERS\MpNWMon.sys
2011/03/12 22:52:29.0999 4792 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
2011/03/12 22:52:30.0026 4792 MRxDAV (b1be47008d20e43da3adc37c24cdb89d) C:\Windows\system32\drivers\mrxdav.sys
2011/03/12 22:52:30.0054 4792 mrxsmb (f1b6aa08497ea86ca6ef6f7a08b0bfb8) C:\Windows\system32\DRIVERS\mrxsmb.sys
2011/03/12 22:52:30.0078 4792 mrxsmb10 (5613358b4050f46f5a9832da8050d6e4) C:\Windows\system32\DRIVERS\mrxsmb10.sys
2011/03/12 22:52:30.0093 4792 mrxsmb20 (25c9792778d80feb4c8201e62281bfdf) C:\Windows\system32\DRIVERS\mrxsmb20.sys
2011/03/12 22:52:30.0115 4792 msahci (4326d168944123f38dd3b2d9c37a0b12) C:\Windows\system32\DRIVERS\msahci.sys
2011/03/12 22:52:30.0216 4792 msdsm (455029c7174a2dbb03dba8a0d8bddd9a) C:\Windows\system32\DRIVERS\msdsm.sys
2011/03/12 22:52:30.0271 4792 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
2011/03/12 22:52:30.0291 4792 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
2011/03/12 22:52:30.0315 4792 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\DRIVERS\msisadrv.sys
2011/03/12 22:52:30.0348 4792 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
2011/03/12 22:52:30.0378 4792 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
2011/03/12 22:52:30.0391 4792 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
2011/03/12 22:52:30.0415 4792 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
2011/03/12 22:52:30.0439 4792 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\DRIVERS\mssmbios.sys
2011/03/12 22:52:30.0457 4792 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
2011/03/12 22:52:30.0470 4792 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
2011/03/12 22:52:30.0514 4792 MTsensor (cbe71c122434805cb73ffb6619f60598) C:\Windows\system32\DRIVERS\ASACPI.sys
2011/03/12 22:52:30.0532 4792 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
2011/03/12 22:52:30.0570 4792 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
2011/03/12 22:52:30.0609 4792 NDIS (23759d175a0a9baaf04d05047bc135a8) C:\Windows\system32\drivers\ndis.sys
2011/03/12 22:52:30.0645 4792 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
2011/03/12 22:52:30.0672 4792 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
2011/03/12 22:52:30.0685 4792 Ndisuio (b30ae7f2b6d7e343b0df32e6c08fce75) C:\Windows\system32\DRIVERS\ndisuio.sys
2011/03/12 22:52:30.0710 4792 NdisWan (267c415eadcbe53c9ca873dee39cf3a4) C:\Windows\system32\DRIVERS\ndiswan.sys
2011/03/12 22:52:30.0732 4792 NDProxy (af7e7c63dcef3f8772726f86039d6eb4) C:\Windows\system32\drivers\NDProxy.sys
2011/03/12 22:52:30.0747 4792 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
2011/03/12 22:52:30.0766 4792 NetBT (dd52a733bf4ca5af84562a5e2f963b91) C:\Windows\system32\DRIVERS\netbt.sys
2011/03/12 22:52:30.0820 4792 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
2011/03/12 22:52:30.0846 4792 NisDrv (17e2c08c5ecfbe94a7c67b1c275ee9d9) C:\Windows\system32\DRIVERS\NisDrvWFP.sys
2011/03/12 22:52:30.0882 4792 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
2011/03/12 22:52:30.0903 4792 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
2011/03/12 22:52:30.0944 4792 Ntfs (3795dcd21f740ee799fb7223234215af) C:\Windows\system32\drivers\Ntfs.sys
2011/03/12 22:52:30.0988 4792 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
2011/03/12 22:52:31.0021 4792 nvraid (3f3d04b1d08d43c16ea7963954ec768d) C:\Windows\system32\DRIVERS\nvraid.sys
2011/03/12 22:52:31.0046 4792 nvstor (c99f251a5de63c6f129cf71933aced0f) C:\Windows\system32\DRIVERS\nvstor.sys
2011/03/12 22:52:31.0075 4792 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\DRIVERS\nv_agp.sys
2011/03/12 22:52:31.0096 4792 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\DRIVERS\ohci1394.sys
2011/03/12 22:52:31.0143 4792 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
2011/03/12 22:52:31.0165 4792 partmgr (ff4218952b51de44fe910953a3e686b9) C:\Windows\system32\drivers\partmgr.sys
2011/03/12 22:52:31.0184 4792 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
2011/03/12 22:52:31.0211 4792 pci (c858cb77c577780ecc456a892e7e7d0f) C:\Windows\system32\DRIVERS\pci.sys
2011/03/12 22:52:31.0231 4792 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\DRIVERS\pciide.sys
2011/03/12 22:52:31.0255 4792 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
2011/03/12 22:52:31.0295 4792 PCTAppEvent (f767f3b35c3ecf8a60b2a65beec50ef5) C:\Windows\system32\drivers\PCTAppEvent.sys
2011/03/12 22:52:31.0323 4792 PCTFW-PacketFilter (58db891ca76a2d49e33ba9fa13b86c89) C:\Windows\system32\drivers\pctNdis-PacketFilter.sys
2011/03/12 22:52:31.0347 4792 pctgntdi (b76c829f00b9b534405b4ed5f58b8f52) C:\Windows\System32\drivers\pctgntdi.sys
2011/03/12 22:52:31.0375 4792 pctNdis (3ec79cfb2e0e74aada8b561ed8904577) C:\Windows\system32\DRIVERS\pctNdis.sys
2011/03/12 22:52:31.0386 4792 pctNdisMP (3ec79cfb2e0e74aada8b561ed8904577) C:\Windows\system32\DRIVERS\pctNdis.sys
2011/03/12 22:52:31.0420 4792 pctplfw (78d871114e7cb3115e058d1f85751c7f) C:\Windows\System32\drivers\pctplfw.sys
2011/03/12 22:52:31.0434 4792 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
2011/03/12 22:52:31.0456 4792 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
2011/03/12 22:52:31.0508 4792 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
2011/03/12 22:52:31.0528 4792 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
2011/03/12 22:52:31.0565 4792 Psched (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
2011/03/12 22:52:31.0619 4792 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
2011/03/12 22:52:31.0663 4792 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
2011/03/12 22:52:31.0689 4792 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
2011/03/12 22:52:31.0711 4792 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
2011/03/12 22:52:31.0735 4792 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
2011/03/12 22:52:31.0761 4792 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
2011/03/12 22:52:31.0785 4792 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
2011/03/12 22:52:31.0805 4792 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
2011/03/12 22:52:31.0830 4792 rdbss (835d7e81bf517a3b72384bdcc85e1ce6) C:\Windows\system32\DRIVERS\rdbss.sys
2011/03/12 22:52:31.0853 4792 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
2011/03/12 22:52:31.0873 4792 RDPCDD (1e016846895b15a99f9a176a05029075) C:\Windows\system32\DRIVERS\RDPCDD.sys
2011/03/12 22:52:31.0907 4792 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
2011/03/12 22:52:31.0933 4792 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
2011/03/12 22:52:31.0948 4792 RDPWD (801371ba9782282892d00aadb08ee367) C:\Windows\system32\drivers\RDPWD.sys
2011/03/12 22:52:31.0972 4792 rdyboost (4ea225bf1cf05e158853f30a99ca29a7) C:\Windows\system32\drivers\rdyboost.sys
2011/03/12 22:52:32.0027 4792 rspndr (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
2011/03/12 22:52:32.0061 4792 sbp2port (34ee0c44b724e3e4ce2eff29126de5b5) C:\Windows\system32\DRIVERS\sbp2port.sys
2011/03/12 22:52:32.0086 4792 scfilter (a95c54b2ac3cc9c73fcdf9e51a1d6b51) C:\Windows\system32\DRIVERS\scfilter.sys
2011/03/12 22:52:32.0117 4792 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
2011/03/12 22:52:32.0154 4792 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
2011/03/12 22:52:32.0185 4792 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
2011/03/12 22:52:32.0207 4792 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
2011/03/12 22:52:32.0238 4792 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\DRIVERS\sffdisk.sys
2011/03/12 22:52:32.0254 4792 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\DRIVERS\sffp_mmc.sys
2011/03/12 22:52:32.0271 4792 sffp_sd (4f1e5b0fe7c8050668dbfade8999aefb) C:\Windows\system32\DRIVERS\sffp_sd.sys
2011/03/12 22:52:32.0287 4792 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
2011/03/12 22:52:32.0314 4792 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\DRIVERS\sisagp.sys
2011/03/12 22:52:32.0341 4792 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
2011/03/12 22:52:32.0362 4792 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
2011/03/12 22:52:32.0387 4792 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
2011/03/12 22:52:32.0423 4792 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
2011/03/12 22:52:32.0465 4792 srv (2dbedfb1853f06110ec2aa7f3213c89f) C:\Windows\system32\DRIVERS\srv.sys
2011/03/12 22:52:32.0492 4792 srv2 (db37131d1027c50ea7ee21c8bb4536aa) C:\Windows\system32\DRIVERS\srv2.sys
2011/03/12 22:52:32.0514 4792 srvnet (f5980b74124db9233b33f86fc5ebbb4f) C:\Windows\system32\DRIVERS\srvnet.sys
2011/03/12 22:52:32.0550 4792 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
2011/03/12 22:52:32.0578 4792 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\DRIVERS\swenum.sys
2011/03/12 22:52:32.0644 4792 Tcpip (bb7f39c31c4a4417fd318e7cd184e225) C:\Windows\system32\drivers\tcpip.sys
2011/03/12 22:52:32.0709 4792 TCPIP6 (bb7f39c31c4a4417fd318e7cd184e225) C:\Windows\system32\DRIVERS\tcpip.sys
2011/03/12 22:52:32.0735 4792 tcpipreg (e64444523add154f86567c469bc0b17f) C:\Windows\system32\drivers\tcpipreg.sys
2011/03/12 22:52:32.0757 4792 TDPIPE (1875c1490d99e70e449e3afae9fcbadf) C:\Windows\system32\drivers\tdpipe.sys
2011/03/12 22:52:32.0771 4792 TDTCP (7551e91ea999ee9a8e9c331d5a9c31f3) C:\Windows\system32\drivers\tdtcp.sys
2011/03/12 22:52:32.0795 4792 tdx (cb39e896a2a83702d1737bfd402b3542) C:\Windows\system32\DRIVERS\tdx.sys
2011/03/12 22:52:32.0818 4792 TermDD (c36f41ee20e6999dbf4b0425963268a5) C:\Windows\system32\DRIVERS\termdd.sys
2011/03/12 22:52:32.0874 4792 tssecsrv (98ae6fa07d12cb4ec5cf4a9bfa5f4242) C:\Windows\system32\DRIVERS\tssecsrv.sys
2011/03/12 22:52:32.0905 4792 tunnel (3e461d890a97f9d4c168f5fda36e1d00) C:\Windows\system32\DRIVERS\tunnel.sys
2011/03/12 22:52:32.0929 4792 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
2011/03/12 22:52:32.0951 4792 udfs (09cc3e16f8e5ee7168e01cf8fcbe061a) C:\Windows\system32\DRIVERS\udfs.sys
2011/03/12 22:52:32.0993 4792 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\DRIVERS\uliagpkx.sys
2011/03/12 22:52:33.0015 4792 umbus (049b3a50b3d646baeeee9eec9b0668dc) C:\Windows\system32\DRIVERS\umbus.sys
2011/03/12 22:52:33.0028 4792 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
2011/03/12 22:52:33.0056 4792 usbccgp (8455c4ed038efd09e99327f9d2d48ffa) C:\Windows\system32\DRIVERS\usbccgp.sys
2011/03/12 22:52:33.0074 4792 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\DRIVERS\usbcir.sys
2011/03/12 22:52:33.0095 4792 usbehci (1c333bfd60f2fed2c7ad5daf533cb742) C:\Windows\system32\DRIVERS\usbehci.sys
2011/03/12 22:52:33.0119 4792 usbhub (ee6ef93ccfa94fae8c6ab298273d8ae2) C:\Windows\system32\DRIVERS\usbhub.sys
2011/03/12 22:52:33.0144 4792 usbohci (a6fb7957ea7afb1165991e54ce934b74) C:\Windows\system32\DRIVERS\usbohci.sys
2011/03/12 22:52:33.0166 4792 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
2011/03/12 22:52:33.0190 4792 USBSTOR (d8889d56e0d27e57ed4591837fe71d27) C:\Windows\system32\DRIVERS\USBSTOR.SYS
2011/03/12 22:52:33.0218 4792 usbuhci (78780c3ebce17405b1ccd07a3a8a7d72) C:\Windows\system32\DRIVERS\usbuhci.sys
2011/03/12 22:52:33.0247 4792 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\DRIVERS\vdrvroot.sys
2011/03/12 22:52:33.0265 4792 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
2011/03/12 22:52:33.0287 4792 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
2011/03/12 22:52:33.0305 4792 vhdmp (3be6e1f3a4f1afec8cee0d7883f93583) C:\Windows\system32\DRIVERS\vhdmp.sys
2011/03/12 22:52:33.0330 4792 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\DRIVERS\viaagp.sys
2011/03/12 22:52:33.0347 4792 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
2011/03/12 22:52:33.0393 4792 VIAHdAudAddService (4906e025dd6b322c4bbd6b9e35c9993a) C:\Windows\system32\drivers\viahduaa.sys
2011/03/12 22:52:33.0423 4792 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\DRIVERS\viaide.sys
2011/03/12 22:52:33.0450 4792 volmgr (384e5a2aa49934295171e499f86ba6f3) C:\Windows\system32\DRIVERS\volmgr.sys
2011/03/12 22:52:33.0475 4792 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
2011/03/12 22:52:33.0498 4792 volsnap (58df9d2481a56edde167e51b334d44fd) C:\Windows\system32\DRIVERS\volsnap.sys
2011/03/12 22:52:33.0526 4792 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
2011/03/12 22:52:33.0550 4792 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\System32\drivers\vwifibus.sys
2011/03/12 22:52:33.0580 4792 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
2011/03/12 22:52:33.0601 4792 WANARP (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys
2011/03/12 22:52:33.0613 4792 Wanarpv6 (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys
2011/03/12 22:52:33.0659 4792 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
2011/03/12 22:52:33.0689 4792 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
2011/03/12 22:52:33.0745 4792 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
2011/03/12 22:52:33.0770 4792 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
2011/03/12 22:52:33.0845 4792 WinUsb (30fc6e5448d0cbaaa95280eeef7fedae) C:\Windows\system32\DRIVERS\WinUsb.sys
2011/03/12 22:52:33.0873 4792 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\DRIVERS\wmiacpi.sys
2011/03/12 22:52:33.0918 4792 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
2011/03/12 22:52:33.0952 4792 WudfPf (6f9b6c0c93232cff47d0f72d6db1d21e) C:\Windows\system32\drivers\WudfPf.sys
2011/03/12 22:52:33.0988 4792 WUDFRd (f91ff1e51fca30b3c3981db7d5924252) C:\Windows\system32\DRIVERS\WUDFRd.sys
2011/03/12 22:52:34.0069 4792 ================================================================================
2011/03/12 22:52:34.0069 4792 Scan finished
2011/03/12 22:52:34.0069 4792 ================================================================================
r16
Inviato: Saturday, March 12, 2011 11:01:18 PM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
jimmy76
Inviato: Saturday, March 12, 2011 11:10:36 PM

Rank: AiutAmico

Iscritto dal : 8/7/2009
Posts: 319
Mi da questa finestra qua e non mi salva il log



r16
Inviato: Saturday, March 12, 2011 11:12:45 PM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
Lo hai eseguito come "Amministratore"?
Tasto destro sopra il programma, e scegli: "Esegui come Amministratore"
jimmy76
Inviato: Saturday, March 12, 2011 11:17:17 PM

Rank: AiutAmico

Iscritto dal : 8/7/2009
Posts: 319
Non mi da questa opzione...ho win7...cambia qualcosa?
Cmq se per te va bene puoi verificare da qui



r16
Inviato: Saturday, March 12, 2011 11:21:48 PM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
Cambia sì, ma elimina l'ultima voce 04
Qy...e finisce con "zabula"

Riavvia il pc.
Prova a vedere se funziona Combofix.
jimmy76
Inviato: Saturday, March 12, 2011 11:25:54 PM

Rank: AiutAmico

Iscritto dal : 8/7/2009
Posts: 319
Ci sono riuscito...faccio come mi avevi detto?

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:26:19, on 12/03/2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16722)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.it/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [00PCTFW] "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Qyiwunozabula] rundll32.exe "C:\Users\alex\AppData\Local\STSGR19.dll",Startup
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PC Tools Firewall Plus (PCToolsFirewallPlus) - Unknown owner - C:\Program Files\PC Tools Firewall Plus\FWService.exe

--
End of file - 3806 bytes
r16
Inviato: Saturday, March 12, 2011 11:27:51 PM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
Sì , questa:
O4 - HKCU\..\Run: [Qyiwunozabula] rundll32.exe "C:\Users\alex\AppData\Local\STSGR19.dll",Startup
jimmy76
Inviato: Saturday, March 12, 2011 11:32:16 PM

Rank: AiutAmico

Iscritto dal : 8/7/2009
Posts: 319
niente da fare
r16
Inviato: Saturday, March 12, 2011 11:33:17 PM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
Fai questa scansione:
Scarica e installa la versione Free di SuperAntispyware:
http://www.superantispyware.com/
lo configuri come da immagini :
http://www.zeusnews.it/zz_upload/img/PSV/SAS/7477731.jpg
http://www.zeusnews.it/zz_upload/img/PSV/SAS/9926902.jpg
Esegui una scansione completa.
Posta il log.
r16
Inviato: Saturday, March 12, 2011 11:43:34 PM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
Se si fà molto tardi, e tu vuoi risolvere presto, installa questo antivirus:
http://www.aiutamici.com/software?ID=10908
Fai una scansione completa.
Posta il log.

N.B:
Esegui PRIMA Superantispyware.

Per la protezione del pc:
Antivirus: Avira.
Antispyware:
Superantispyware
AntiMalware:
Malwarebytes.
Lascia attivo il firewall di Windows 7.
jimmy76
Inviato: Sunday, March 13, 2011 12:04:43 AM

Rank: AiutAmico

Iscritto dal : 8/7/2009
Posts: 319
SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 03/13/2011 at 01:31 AM

Application Version : 4.49.1000

Core Rules Database Version : 6576
Trace Rules Database Version: 4388

Scan type : Complete Scan
Total Scan Time : 00:20:45

Memory items scanned : 468
Memory threats detected : 0
Registry items scanned : 8884
Registry threats detected : 0
File items scanned : 33411
File threats detected : 15

Adware.Tracking Cookie
C:\Users\alex\AppData\Roaming\Microsoft\Windows\Cookies\alex@content.yieldmanager[1].txt
C:\Users\alex\AppData\Roaming\Microsoft\Windows\Cookies\alex@ad.yieldmanager[2].txt
ds.serving-sys.com [ C:\Users\alex\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\97YAG7EQ ]
secure-uk.imrworldwide.com [ C:\Users\alex\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\97YAG7EQ ]
secure-us.imrworldwide.com [ C:\Users\alex\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\97YAG7EQ ]
C:\Users\alex\AppData\Roaming\Microsoft\Windows\Cookies\Low\alex@ad.yieldmanager[2].txt
C:\Users\alex\AppData\Roaming\Microsoft\Windows\Cookies\Low\alex@adserver.adtechus[1].txt
C:\Users\alex\AppData\Roaming\Microsoft\Windows\Cookies\Low\alex@atdmt[1].txt
C:\Users\alex\AppData\Roaming\Microsoft\Windows\Cookies\Low\alex@content.yieldmanager[2].txt
C:\Users\alex\AppData\Roaming\Microsoft\Windows\Cookies\Low\alex@content.yieldmanager[3].txt
C:\Users\alex\AppData\Roaming\Microsoft\Windows\Cookies\Low\alex@doubleclick[2].txt
C:\Users\alex\AppData\Roaming\Microsoft\Windows\Cookies\Low\alex@eas.apm.emediate[2].txt
C:\Users\alex\AppData\Roaming\Microsoft\Windows\Cookies\Low\alex@invitemedia[1].txt
C:\Users\alex\AppData\Roaming\Microsoft\Windows\Cookies\Low\alex@kaspersky.122.2o7[1].txt
C:\Users\alex\AppData\Roaming\Microsoft\Windows\Cookies\Low\alex@user.lucidmedia[1].txt
jimmy76
Inviato: Sunday, March 13, 2011 1:06:39 AM

Rank: AiutAmico

Iscritto dal : 8/7/2009
Posts: 319
CHE DIFFERENZA C'E' TRA AVVIA LA SCANSIONE CON IL PROFILO SELEZIONATO E QUELLO CON AVVIO SELEZIONATO COME AMMINISTRATORE?
QUALE DEVO FARE?


Ecco il log:



Avira AntiVir Personal
Data del file di report: domenica 13 marzo 2011 00:28

Ricerca di 2486199 virus e programmi indesiderati.

Il programma funziona come versione completa e illimitata.
I servizi online sono disponibili.

Concesso in licenza a : Avira AntiVir Personal - FREE Antivirus
Numero di serie : 0000149996-ADJIE-0000001
Piattaforma : Windows 7
Versione di Windows : (plain) [6.1.7600]
Modalità di avvio : Booting eseguito regolarmente
Nome utente : alex
Nome computer : ALEX-PC

Informazioni sulla versione:
BUILD.DAT : 10.0.0.58 Bytes 04/02/2011 13:46:00
AVSCAN.EXE : 10.0.3.5 435368 Bytes 04/02/2011 11:09:26
AVSCAN.DLL : 10.0.3.0 54120 Bytes 04/02/2011 11:09:45
LUKE.DLL : 10.0.3.2 104296 Bytes 04/02/2011 11:09:33
LUKERES.DLL : 10.0.0.0 13160 Bytes 16/02/2010 08:15:20
VBASE000.VDF : 7.10.0.0 19875328 Bytes 06/11/2009 08:05:36
VBASE001.VDF : 7.11.0.0 13342208 Bytes 14/12/2010 11:09:41
VBASE002.VDF : 7.11.3.0 1950720 Bytes 09/02/2011 23:19:05
VBASE003.VDF : 7.11.3.1 2048 Bytes 09/02/2011 23:19:06
VBASE004.VDF : 7.11.3.2 2048 Bytes 09/02/2011 23:19:06
VBASE005.VDF : 7.11.3.3 2048 Bytes 09/02/2011 23:19:06
VBASE006.VDF : 7.11.3.4 2048 Bytes 09/02/2011 23:19:06
VBASE007.VDF : 7.11.3.5 2048 Bytes 09/02/2011 23:19:06
VBASE008.VDF : 7.11.3.6 2048 Bytes 09/02/2011 23:19:06
VBASE009.VDF : 7.11.3.7 2048 Bytes 09/02/2011 23:19:06
VBASE010.VDF : 7.11.3.8 2048 Bytes 09/02/2011 23:19:06
VBASE011.VDF : 7.11.3.9 2048 Bytes 09/02/2011 23:19:06
VBASE012.VDF : 7.11.3.10 2048 Bytes 09/02/2011 23:19:06
VBASE013.VDF : 7.11.3.59 157184 Bytes 14/02/2011 23:19:07
VBASE014.VDF : 7.11.3.97 120320 Bytes 16/02/2011 23:19:08
VBASE015.VDF : 7.11.3.148 128000 Bytes 19/02/2011 23:19:08
VBASE016.VDF : 7.11.3.183 140288 Bytes 22/02/2011 23:19:09
VBASE017.VDF : 7.11.3.216 124416 Bytes 24/02/2011 23:19:09
VBASE018.VDF : 7.11.3.251 159232 Bytes 28/02/2011 23:19:10
VBASE019.VDF : 7.11.4.33 148992 Bytes 02/03/2011 23:19:11
VBASE020.VDF : 7.11.4.73 150016 Bytes 06/03/2011 23:19:12
VBASE021.VDF : 7.11.4.108 122880 Bytes 08/03/2011 23:19:12
VBASE022.VDF : 7.11.4.150 133120 Bytes 10/03/2011 23:19:13
VBASE023.VDF : 7.11.4.151 2048 Bytes 10/03/2011 23:19:13
VBASE024.VDF : 7.11.4.152 2048 Bytes 10/03/2011 23:19:13
VBASE025.VDF : 7.11.4.153 2048 Bytes 10/03/2011 23:19:13
VBASE026.VDF : 7.11.4.154 2048 Bytes 10/03/2011 23:19:13
VBASE027.VDF : 7.11.4.155 2048 Bytes 10/03/2011 23:19:13
VBASE028.VDF : 7.11.4.156 2048 Bytes 10/03/2011 23:19:13
VBASE029.VDF : 7.11.4.157 2048 Bytes 10/03/2011 23:19:14
VBASE030.VDF : 7.11.4.158 2048 Bytes 10/03/2011 23:19:14
VBASE031.VDF : 7.11.4.177 80896 Bytes 12/03/2011 23:19:14
Motore : 8.2.4.180
AEVDF.DLL : 8.1.2.1 106868 Bytes 04/02/2011 11:09:22
AESCRIPT.DLL : 8.1.3.56 1261945 Bytes 12/03/2011 23:19:23
AESCN.DLL : 8.1.7.2 127349 Bytes 04/02/2011 11:09:21
AESBX.DLL : 8.1.3.2 254324 Bytes 04/02/2011 11:09:21
AERDL.DLL : 8.1.9.2 635252 Bytes 04/02/2011 11:09:21
AEPACK.DLL : 8.2.4.11 520566 Bytes 12/03/2011 23:19:22
AEOFFICE.DLL : 8.1.1.17 205177 Bytes 12/03/2011 23:19:21
AEHEUR.DLL : 8.1.2.83 3338613 Bytes 12/03/2011 23:19:20
AEHELP.DLL : 8.1.16.1 246134 Bytes 03/02/2011 19:54:42
AEGEN.DLL : 8.1.5.2 397683 Bytes 04/02/2011 11:09:14
AEEMU.DLL : 8.1.3.0 393589 Bytes 04/02/2011 11:09:14
AECORE.DLL : 8.1.19.2 196983 Bytes 04/02/2011 11:09:13
AEBB.DLL : 8.1.1.0 53618 Bytes 04/02/2011 11:09:13
AVWINLL.DLL : 10.0.0.0 19304 Bytes 04/02/2011 11:09:26
AVPREF.DLL : 10.0.0.0 44904 Bytes 04/02/2011 11:09:25
AVREP.DLL : 10.0.0.8 62209 Bytes 17/06/2010 13:28:11
AVREG.DLL : 10.0.3.2 53096 Bytes 04/02/2011 11:09:25
AVSCPLR.DLL : 10.0.3.2 84328 Bytes 04/02/2011 11:09:26
AVARKT.DLL : 10.0.22.6 231784 Bytes 04/02/2011 11:09:23
AVEVTLOG.DLL : 10.0.0.8 203112 Bytes 04/02/2011 11:09:24
SQLITE3.DLL : 3.6.19.0 355688 Bytes 17/06/2010 13:28:20
AVSMTP.DLL : 10.0.0.17 63848 Bytes 04/02/2011 11:09:26
NETNT.DLL : 10.0.0.0 11624 Bytes 17/06/2010 13:28:20
RCIMAGE.DLL : 10.0.0.26 2550120 Bytes 12/02/2010 12:11:56
RCTEXT.DLL : 10.0.58.0 98664 Bytes 04/02/2011 11:09:46

Impostazioni di configurazione per la scansione attuale:
Nome del job................................: Scansione completa del sistema
File di configurazione......................: C:\Program Files\Avira\AntiVir Desktop\sysscan.avp
Report......................................: basso
Azione primaria.............................: interattivo
Azione secondaria...........................: ignora
Scansione dei record master di avvio........: Attivo
Scansiona record di avvio...................: Attivo
Record di avvio.............................: C:, D:, G:,
Scansione dei programmi attivi..............: Attivo
Processo esteso di scansione................: Attivo
Scansiona la registrazione..................: Attivo
Cerca Rootkits..............................: Attivo
Controllo di integrità dei file di sistema..: Non attivo
Modalità di scansione file..................: Tutti i file
Scansione degli archivi.....................: Attivo
Limita la profondità di ricorsione..........: 20
Archivio estensioni Smart...................: Attivo
Macro euristico.............................: Attivo
File euristico..............................: medio

Avvio della scansione: domenica 13 marzo 2011 00:28

È stata avviata la scansione per accertare la presenza di oggetti nascosti.

La scansione dei processi in esecuzione verrà avviata:
Scansione processo 'avscan.exe' - '67' modulo(i) scansionato(i)
Scansione processo 'firefox.exe' - '87' modulo(i) scansionato(i)
Scansione processo 'avcenter.exe' - '113' modulo(i) scansionato(i)
Scansione processo 'avgnt.exe' - '55' modulo(i) scansionato(i)
Scansione processo 'AcroRd32.exe' - '65' modulo(i) scansionato(i)
Scansione processo 'AcroRd32.exe' - '65' modulo(i) scansionato(i)
Scansione processo 'wmplayer.exe' - '114' modulo(i) scansionato(i)
Scansione processo 'NMIndexStoreSvr.exe' - '53' modulo(i) scansionato(i)
Scansione processo 'sidebar.exe' - '98' modulo(i) scansionato(i)
Scansione processo 'NMBgMonitor.exe' - '46' modulo(i) scansionato(i)
Scansione processo 'VDeck.exe' - '50' modulo(i) scansionato(i)
Scansione processo 'Explorer.EXE' - '169' modulo(i) scansionato(i)
Scansione processo 'Dwm.exe' - '31' modulo(i) scansionato(i)
Scansione processo 'taskhost.exe' - '51' modulo(i) scansionato(i)

Avvio della scansione dei record master di avvio:
Record master di avvio dell'Hard Disk 0
[INFO] Nessun virus è stato trovato!
[INFO] Avvia nuovamente la scansione con i diritti di amministratore
Record master di avvio dell'Hard Disk 1
[INFO] Nessun virus è stato trovato!
[INFO] Avvia nuovamente la scansione con i diritti di amministratore

Avvio della scansione dei record di avvio:
Record di avvio 'C:\'
[INFO] Nessun virus è stato trovato!
[INFO] Avvia nuovamente la scansione con i diritti di amministratore
Record di avvio 'D:\'
[INFO] Nessun virus è stato trovato!
[INFO] Avvia nuovamente la scansione con i diritti di amministratore
Record di avvio 'G:\'
[INFO] Nessun virus è stato trovato!

Avvio della scansione dei file eseguibili (registro):
Il registro è stato scansionato ( 348 file ).


Avvio della scansione del file selezionati:

Inizia con la scansione di 'C:\'
Inizia con la scansione di 'D:\' <DATA>
Inizia con la scansione di 'G:\' <New Volume>


Fine della scansione: domenica 13 marzo 2011 01:04
Tempo impiegato: 36:12 Minuto(i)

La scansione è stata completamente eseguita.

15996 Directory scansionate
310468 I file sono stati scansionati
0 Rilevati virus e/o programmi indesiderati
0 I file sono stati classificati come sospetti
0 I file sono stati eliminati
0 I virus o i programmi indesiderati sono stati riparati
0 File spostati in quarantena
0 File rinominati
0 Impossibile scansionare i file
310468 File non infetti
9615 Archivi scansionati
0 Avvisi
0 Note
396694 Oggetti scansionati durante la scansione dei rootkit
0 Sono stati rilevati oggetti nascosti

Utenti presenti in questo topic
Guest


Salta al Forum
Aggiunta nuovi Topic disabilitata in questo forum.
Risposte disabilitate in questo forum.
Eliminazione tuoi Post disabilitata in questo forum.
Modifica dei tuoi post disabilitata in questo forum.
Creazione Sondaggi disabilitata in questo forum.
Voto ai sondaggi disabilitato in questo forum.

Main Forum RSS : RSS

Aiutamici Theme
Powered by Yet Another Forum.net versione 1.9.1.8 (NET v2.0) - 3/29/2008
Copyright © 2003-2008 Yet Another Forum.net. All rights reserved.