Jump to content

print spooler not running / not staying on


Recommended Posts

I'm having a problem with my print spooler not staying on. I ran Malwarebytes about a week ago to get rid of a problem I had picked up with a false "Security Tool" pop-up and that worked fine I thought, but now I can't print, even with CutePDF. The spooler never stays on, even after manually turning it on. Sometimes it will indicate it's on, but when I open the Spooler Properties box it's off. I've tried everything, I think, from various boards, I've uninstalled my printer and drivers(HP C4280), but I can't uninstall CutePDF because the print spooler isn't running. I came across an old MWB thread from 12/4/2010, and since it happened after I cleared up the malware, I thought I'd try here. I don't think the spooler is missing, but maybe you have some other ideas? Below is the HJT log and System Look log.

If anyone can help me figure this out it would be hugely appreciated.

Thanks.

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 12:51:46 PM, on 8/14/2011

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\PROGRA~1\AVG\AVG10\avgchsvx.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\ZoneLabs\vsmon.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

C:\Program Files\AVG\AVG10\avgwdsvc.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\Program Files\Java\jre6\bin\jqs.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe

C:\Program Files\Kyocera Mita\FileUtility\SFUSVC.exe

C:\Program Files\AVG\AVG10\avgnsx.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

C:\Program Files\Kyocera Mita\FileUtility\nsCatCom.exe

C:\WINDOWS\System32\MsPMSPSv.exe

C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\wscntfy.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\Logi_MwX.Exe

C:\Program Files\ZoneAlarm\zlclient.exe

C:\Program Files\Microsoft Security Client\msseces.exe

C:\Program Files\AVG\AVG10\avgtray.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe

C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

C:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe

C:\Program Files\CheckPoint\ZAForceField\ForceField.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe

C:\PROGRA~1\AVG\AVG10\avgrsx.exe

C:\Program Files\AVG\AVG10\avgcsrvx.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://ws.townwoodhome.com/mrjvqhfvfvqrlgf/ndb/

R3 - URLSearchHook: ZoneAlarm Security Toolbar - {91da5e8a-3318-4f8c-b67e-5964de3ab546} - C:\Program Files\ZoneAlarm_Security\prxtbZone.dll

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll

O2 - BHO: ZoneAlarm Security - {91da5e8a-3318-4f8c-b67e-5964de3ab546} - C:\Program Files\ZoneAlarm_Security\prxtbZone.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll

O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O3 - Toolbar: ZoneAlarm Security Toolbar - {91da5e8a-3318-4f8c-b67e-5964de3ab546} - C:\Program Files\ZoneAlarm_Security\prxtbZone.dll

O3 - Toolbar: ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll

O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe

O4 - HKLM\..\Run: [startCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\ZoneAlarm\zlclient.exe"

O4 - HKLM\..\Run: [iSW] "C:\Program Files\CheckPoint\ZAForceField\ForceField.exe" /icon="hidden"

O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKUS\S-1-5-21-796845957-1292428093-682003330-1006\..\Run: [search Protection] C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe (User 'QBDataServiceUser17')

O4 - HKUS\S-1-5-21-796845957-1292428093-682003330-1009\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'TEMP')

O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "c:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "c:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')

O4 - S-1-5-21-796845957-1292428093-682003330-1009 Startup: Dropbox.lnk = C:\Documents and Settings\TEMP\Application Data\Dropbox\bin\Dropbox.exe (User 'TEMP')

O4 - S-1-5-21-796845957-1292428093-682003330-1009 User Startup: Dropbox.lnk = C:\Documents and Settings\TEMP\Application Data\Dropbox\bin\Dropbox.exe (User 'TEMP')

O4 - Global Startup: QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe

O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {0067DBFC-A752-458C-AE6E-B9C7E63D4824} (Device Detection) - http://www.logitech.com/devicedetector/plugins/LogitechDeviceDetection32.cab

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll

O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll

O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe

O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\avgwdsvc.exe

O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe

O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: ZoneAlarm Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

O23 - Service: Lavasoft Ad-Aware Service - Lavasoft Limited - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe

O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

O23 - Service: QuickBooks Database Manager Service (QBCFMonitorService) - Intuit - C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe

O23 - Service: Intuit QuickBooks FCS (QBFCService) - Intuit Inc. - C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe

O23 - Service: QuickBooksDB17 - iAnywhere Solutions, Inc. - C:\PROGRA~1\Intuit\QUICKB~1\QBDBMgrN.exe

O23 - Service: SFUSVC - KYOCERA MITA CORPORATION - C:\Program Files\Kyocera Mita\FileUtility\SFUSVC.exe

O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

--

End of file - 11122 bytes

SystemLook 30.07.11 by jpshortstuff

Log created at 12:57 on 14/08/2011 by David

Administrator - Elevation successful

========== filefind ==========

Searching for "spoolsv.exe"

C:\WINDOWS\$hf_mig$\KB2347290\SP3QFE\spoolsv.exe --a--c- 58880 bytes [13:19 17/08/2010] [13:19 17/08/2010] 258DD5D4283FD9F9A7166BE9AE45CE73

C:\WINDOWS\$hf_mig$\KB896423\SP2QFE\spoolsv.exe --a--c- 57856 bytes [00:17 11/06/2005] [00:17 11/06/2005] AD3D9D191AEA7B5445FE1D82FFBB4788

C:\WINDOWS\ServicePackFiles\i386\spoolsv.exe -----c- 57856 bytes [14:25 27/09/2004] [00:12 14/04/2008] D8E14A61ACC1D4A6CD0D38AEBAC7FA3B

C:\WINDOWS\system32\spoolsv.exe --a---- 58880 bytes [12:00 31/03/2003] [22:29 13/08/2011] 60784F891563FB1B767F70117FC2428F

C:\WINDOWS\system32\dllcache\spoolsv.exe --a--c- 58880 bytes [12:00 31/03/2003] [22:29 13/08/2011] 60784F891563FB1B767F70117FC2428F

-= EOF =-

hijackthis_8-14.log

SystemLook_8-14-11.txt

Link to post
Share on other sites

Thanks so much for your help.

Here's the MBAM Log:

Malwarebytes' Anti-Malware 1.51.1.1800

www.malwarebytes.org

Database version: 7490

Windows 5.1.2600 Service Pack 3

Internet Explorer 8.0.6001.18702

8/17/2011 3:42:37 PM

mbam-log-2011-08-17 (15-42-37).txt

Scan type: Quick scan

Objects scanned: 224825

Time elapsed: 15 minute(s), 3 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 0

Registry Values Infected: 0

Registry Data Items Infected: 0

Folders Infected: 0

Files Infected: 0

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

(No malicious items detected)

Registry Values Infected:

(No malicious items detected)

Registry Data Items Infected:

(No malicious items detected)

Folders Infected:

(No malicious items detected)

Files Infected:

(No malicious items detected)

Here is the other one:

.

DDS (Ver_2011-06-23.01) - NTFSx86

Internet Explorer: 8.0.6001.18702

Run by David at 15:57:18 on 2011-08-17

Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1535.383 [GMT -6:00]

.

AV: AVG Anti-Virus Free Edition 2011 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}

AV: Lavasoft Ad-Watch Live! Anti-Virus *Enabled/Updated* {A1C4F2E0-7FDE-4917-AFAE-013EFC3EDE33}

AV: Microsoft Security Essentials *Enabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}

AV: Microsoft Security Essentials *Disabled/Updated* {BCF43643-A118-4432-AEDE-D861FCBCFCDF}

FW: ZoneAlarm Firewall *Enabled*

.

============== Running Processes ===============

.

C:\PROGRA~1\AVG\AVG10\avgchsvx.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost -k DcomLaunch

svchost.exe

c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe

C:\WINDOWS\System32\svchost.exe -k netsvcs

svchost.exe

svchost.exe

C:\WINDOWS\system32\ZoneLabs\vsmon.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe

C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe

C:\WINDOWS\system32\spoolsv.exe

svchost.exe

C:\WINDOWS\System32\svchost.exe -k Akamai

C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

C:\Program Files\AVG\AVG10\avgwdsvc.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\Program Files\Java\jre6\bin\jqs.exe

C:\WINDOWS\System32\svchost.exe -k HPZ12

C:\WINDOWS\System32\svchost.exe -k HPZ12

C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe

C:\Program Files\Kyocera Mita\FileUtility\SFUSVC.exe

C:\WINDOWS\System32\svchost.exe -k imgsvc

C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

C:\Program Files\Kyocera Mita\FileUtility\nsCatCom.exe

C:\Program Files\AVG\AVG10\avgnsx.exe

C:\WINDOWS\System32\MsPMSPSv.exe

C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe

C:\WINDOWS\System32\svchost.exe -k HTTPFilter

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\wscntfy.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\Logi_MwX.Exe

C:\Program Files\ZoneAlarm\zlclient.exe

C:\Program Files\Microsoft Security Client\msseces.exe

C:\Program Files\AVG\AVG10\avgtray.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe

C:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe

C:\Program Files\CheckPoint\ZAForceField\ForceField.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe

C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe

C:\PROGRA~1\AVG\AVG10\avgrsx.exe

C:\Program Files\AVG\AVG10\avgcsrvx.exe

C:\WINDOWS\system32\NOTEPAD.EXE

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Mozilla Firefox\plugin-container.exe

C:\WINDOWS\system32\NOTEPAD.EXE

.

============== Pseudo HJT Report ===============

.

mSearch Bar = hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html

uInternet Connection Wizard,ShellNext = hxxp://ws.townwoodhome.com/mrjvqhfvfvqrlgf/ndb/

uURLSearchHooks: ZoneAlarm Security Toolbar: {91da5e8a-3318-4f8c-b67e-5964de3ab546} - c:\program files\zonealarm_security\prxtbZone.dll

BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll

BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg10\avgssie.dll

BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll

BHO: ZoneAlarm Security Engine Registrar: {8a4a36c2-0535-4d2c-bd3d-496cb7eed6e3} - c:\program files\checkpoint\zaforcefield\trustchecker\bin\TrustCheckerIEPlugin.dll

BHO: ZoneAlarm Security Toolbar: {91da5e8a-3318-4f8c-b67e-5964de3ab546} - c:\program files\zonealarm_security\prxtbZone.dll

BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll

BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.2.4204.1700\swg.dll

BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - c:\program files\google\google toolbar\component\fastsearch_B7C5AC242193BB3E.dll

BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll

BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll

TB: ZoneAlarm Security Toolbar: {91da5e8a-3318-4f8c-b67e-5964de3ab546} - c:\program files\zonealarm_security\prxtbZone.dll

TB: ZoneAlarm Security Engine: {ee2ac4e5-b0b0-4ec6-88a9-bca1a32ab107} - c:\program files\checkpoint\zaforcefield\trustchecker\bin\TrustCheckerIEPlugin.dll

EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File

uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe

uRun: [spybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe

mRun: [Logitech Utility] Logi_MwX.Exe

mRun: [startCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun

mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime

mRun: [ZoneAlarm Client] "c:\program files\zonealarm\zlclient.exe"

mRun: [iSW] "c:\program files\checkpoint\zaforcefield\ForceField.exe" /icon="hidden"

mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey

mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"

mRun: [AVG_TRAY] c:\program files\avg\avg10\avgtray.exe

dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t

StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\quickb~1.lnk - c:\program files\common files\intuit\quickbooks\qbupdate\qbupdate.exe

IE: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx

IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe

IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe

IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL

IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll

DPF: {0067DBFC-A752-458C-AE6E-B9C7E63D4824} - hxxp://www.logitech.com/devicedetector/plugins/LogitechDeviceDetection32.cab

DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab

DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

TCP: DhcpNameServer = 68.87.85.102 68.87.69.150

TCP: Interfaces\{A15000CC-BE4A-4792-A93B-13C025A52A3E} : DhcpNameServer = 68.87.85.102 68.87.69.150

Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg10\avgpp.dll

Notify: AtiExtEvent - Ati2evxx.dll

Hosts: 127.0.0.1 www.spywareinfo.com

.

================= FIREFOX ===================

.

FF - ProfilePath - c:\documents and settings\david\application data\mozilla\firefox\profiles\kw2k1uu5.default\

FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll

FF - plugin: c:\program files\checkpoint\zaforcefield\trustchecker\bin\npFFApi.dll

FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll

FF - plugin: c:\program files\google\update\1.3.21.65\npGoogleUpdate3.dll

FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll

FF - plugin: c:\program files\microsoft silverlight\4.0.60310.0\npctrlui.dll

FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll

.

============= SERVICES / DRIVERS ===============

.

R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [2011-2-22 22992]

R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2011-3-16 32592]

R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2010-8-17 64288]

R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2011-1-7 248656]

R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2011-3-1 34896]

R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2011-4-5 297168]

R1 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2010-10-24 165264]

R1 MpKsl1a027d9e;MpKsl1a027d9e;c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{257e7ce3-fe9b-4f82-aa03-697fa36e73a7}\MpKsl1a027d9e.sys [2011-8-17 28752]

R1 vsdatant;vsdatant;c:\windows\system32\vsdatant.sys [2011-5-19 532224]

R2 Akamai;Akamai NetSession Interface;c:\windows\system32\svchost.exe -k Akamai [2003-3-31 14336]

R2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg10\identity protection\agent\bin\AVGIDSAgent.exe [2011-4-18 7398752]

R2 avgwd;AVG WatchDog;c:\program files\avg\avg10\avgwdsvc.exe [2011-2-8 269520]

R2 ISWKL;ZoneAlarm Toolbar ISWKL;c:\program files\checkpoint\zaforcefield\ISWKL.sys [2011-2-15 26872]

R2 IswSvc;ZoneAlarm Toolbar IswSvc;c:\program files\checkpoint\zaforcefield\ISWSVC.exe [2011-2-15 488952]

R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\AAWService.exe [2010-8-12 2151640]

R2 QuickBooksDB17;QuickBooksDB17;c:\progra~1\intuit\quickb~1\qbdbmgrn.exe -hvquickbooksdb17 --> c:\progra~1\intuit\quickb~1\QBDBMgrN.exe -hvQuickBooksDB17 [?]

R2 Symantec Core LC;Symantec Core LC;c:\program files\common files\symantec shared\ccpd-lc\symlcsvc.exe [2006-4-24 1174152]

R2 vsmon;TrueVector Internet Monitor;c:\windows\system32\zonelabs\vsmon.exe -service --> c:\windows\system32\zonelabs\vsmon.exe -service [?]

R3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\AVGIDSDriver.sys [2011-4-14 134480]

R3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\AVGIDSFilter.sys [2011-2-10 24144]

R3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\AVGIDSShim.sys [2011-2-10 27216]

R3 Lavasoft Kernexplorer;Lavasoft helper driver;c:\program files\lavasoft\ad-aware\kernexplorer.sys [2010-8-12 15232]

S1 MpKsl01673266;MpKsl01673266;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{257e7ce3-fe9b-4f82-aa03-697fa36e73a7}\mpksl01673266.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{257e7ce3-fe9b-4f82-aa03-697fa36e73a7}\MpKsl01673266.sys [?]

S1 MpKsl0b9bc62f;MpKsl0b9bc62f;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{8dc51dc6-9f83-4212-8efd-dbce52c1cac4}\mpksl0b9bc62f.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{8dc51dc6-9f83-4212-8efd-dbce52c1cac4}\MpKsl0b9bc62f.sys [?]

S1 MpKsl106e3dcb;MpKsl106e3dcb;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{e09c94a2-ec06-4f15-8460-03009c5f49e6}\mpksl106e3dcb.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{e09c94a2-ec06-4f15-8460-03009c5f49e6}\MpKsl106e3dcb.sys [?]

S1 MpKsl47c43d0d;MpKsl47c43d0d;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{71d25304-a850-4639-a7f2-a1e1f9165f92}\mpksl47c43d0d.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{71d25304-a850-4639-a7f2-a1e1f9165f92}\MpKsl47c43d0d.sys [?]

S1 MpKsl70d94f36;MpKsl70d94f36;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{e1d59610-5f43-40a7-a78c-bb21fee3a313}\mpksl70d94f36.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{e1d59610-5f43-40a7-a78c-bb21fee3a313}\MpKsl70d94f36.sys [?]

S1 MpKsl8a3e04d8;MpKsl8a3e04d8;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{257e7ce3-fe9b-4f82-aa03-697fa36e73a7}\mpksl8a3e04d8.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{257e7ce3-fe9b-4f82-aa03-697fa36e73a7}\MpKsl8a3e04d8.sys [?]

S1 MpKsl9e7df27d;MpKsl9e7df27d;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{257e7ce3-fe9b-4f82-aa03-697fa36e73a7}\mpksl9e7df27d.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{257e7ce3-fe9b-4f82-aa03-697fa36e73a7}\MpKsl9e7df27d.sys [?]

S1 MpKsla6a86e83;MpKsla6a86e83;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{7a84bccc-b5fb-4916-a385-3354cdb1e525}\mpksla6a86e83.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{7a84bccc-b5fb-4916-a385-3354cdb1e525}\MpKsla6a86e83.sys [?]

S1 MpKslaf07afd3;MpKslaf07afd3;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{59616abe-40ad-456f-9f34-6dbd21c9d3c1}\mpkslaf07afd3.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{59616abe-40ad-456f-9f34-6dbd21c9d3c1}\MpKslaf07afd3.sys [?]

S1 MpKslb197cfec;MpKslb197cfec;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{ed25f7c6-b9f3-4db2-90ea-286ed1769cde}\mpkslb197cfec.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{ed25f7c6-b9f3-4db2-90ea-286ed1769cde}\MpKslb197cfec.sys [?]

S1 MpKslf45999e6;MpKslf45999e6;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{e09c94a2-ec06-4f15-8460-03009c5f49e6}\mpkslf45999e6.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{e09c94a2-ec06-4f15-8460-03009c5f49e6}\MpKslf45999e6.sys [?]

S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2010-7-1 136176]

S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2010-7-1 136176]

S3 MTSTDUSB;MagTek Standard Driver - USB; [x]

.

=============== Created Last 30 ================

.

2011-08-17 21:21:34 28752 ----a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{257e7ce3-fe9b-4f82-aa03-697fa36e73a7}\MpKsl1a027d9e.sys

2011-08-17 15:59:43 0 ----a-w- c:\documents and settings\all users\application data\wkmr.exe

2011-08-17 15:59:43 0 ----a-w- c:\documents and settings\all users\application data\scfm.exe

2011-08-17 15:59:43 0 ----a-w- c:\documents and settings\all users\application data\hfje.exe

2011-08-17 15:59:43 0 ----a-w- c:\documents and settings\all users\application data\bpfv.exe

2011-08-15 17:00:24 -------- d-----w- c:\documents and settings\david\local settings\application data\Adobe

2011-08-13 23:49:02 28752 ----a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{257e7ce3-fe9b-4f82-aa03-697fa36e73a7}\MpKsl525bf8a0.sys

2011-08-13 23:41:34 28752 ----a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{257e7ce3-fe9b-4f82-aa03-697fa36e73a7}\MpKsl32311261.sys

2011-08-13 22:09:09 -------- d-----w- c:\documents and settings\david\application data\ElevatedDiagnostics

2011-08-11 23:08:39 -------- d-----w- c:\documents and settings\david\application data\Malwarebytes

2011-08-11 23:07:38 41272 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys

2011-08-11 23:07:14 22712 ----a-w- c:\windows\system32\drivers\mbam.sys

2011-08-11 23:07:12 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2011-08-11 14:10:13 6881616 ----a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{257e7ce3-fe9b-4f82-aa03-697fa36e73a7}\mpengine.dll

2011-08-06 22:30:07 -------- d-----w- c:\windows\Hewlett-Packard

2011-08-06 17:59:14 274944 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\hpzpp5ha.dll

2011-08-06 17:59:12 118272 ----a-w- c:\windows\system32\hpz3l5ha.dll

2011-08-06 17:11:30 -------- d-----w- c:\documents and settings\all users\application data\WEBREG

2011-08-06 17:05:30 -------- d-----w- c:\program files\common files\Hewlett-Packard

2011-08-06 17:04:50 16496 ----a-r- c:\windows\system32\drivers\HPZipr12.sys

2011-08-06 17:04:46 49920 ----a-r- c:\windows\system32\drivers\HPZid412.sys

2011-08-06 17:04:11 258048 ----a-r- c:\windows\system32\hpzids01.dll

2011-08-06 17:04:07 273920 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\hpzpp4v2.dll

2011-08-06 17:04:04 117760 ----a-w- c:\windows\system32\hpz3l4v2.dll

2011-08-06 17:03:40 21568 ----a-r- c:\windows\system32\drivers\HPZius12.sys

2011-08-06 17:03:08 364544 ----a-r- c:\windows\system32\hppldcoi.dll

2011-08-06 17:03:08 309760 ----a-r- c:\windows\system32\difxapi.dll

2011-08-06 17:03:08 294912 ----a-r- c:\windows\system32\hpovst11.dll

2011-08-06 17:03:07 892928 ----a-r- c:\windows\system32\hpotiop4.dll

2011-08-06 17:03:07 675840 ----a-r- c:\windows\system32\hpowiax4.dll

2011-08-06 17:01:20 -------- d-----w- c:\program files\HP

2011-08-06 16:43:50 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys

2011-08-06 16:43:50 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys

2011-08-06 16:41:25 32128 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys

2011-08-06 16:41:25 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys

2011-07-31 22:19:01 74072 ----a-w- c:\windows\system32\XAPOFX1_5.dll

2011-07-31 22:19:01 527192 ----a-w- c:\windows\system32\XAudio2_7.dll

2011-07-31 22:17:56 69464 ----a-w- c:\windows\system32\XAPOFX1_3.dll

2011-07-31 22:16:49 3851784 ----a-w- c:\windows\system32\D3DX9_39.dll

2011-07-31 22:16:27 65032 ----a-w- c:\windows\system32\XAPOFX1_0.dll

2011-07-31 22:16:26 507400 ----a-w- c:\windows\system32\XAudio2_1.dll

2011-07-31 22:16:20 238088 ----a-w- c:\windows\system32\xactengine3_1.dll

2011-07-31 22:16:15 25608 ----a-w- c:\windows\system32\X3DAudio1_4.dll

2011-07-31 22:16:09 467984 ----a-w- c:\windows\system32\d3dx10_38.dll

2011-07-31 22:16:09 1491992 ----a-w- c:\windows\system32\D3DCompiler_38.dll

2011-07-31 22:16:02 3850760 ----a-w- c:\windows\system32\D3DX9_38.dll

2011-07-31 22:15:48 479752 ----a-w- c:\windows\system32\XAudio2_0.dll

2011-07-31 22:15:34 238088 ----a-w- c:\windows\system32\xactengine3_0.dll

2011-07-31 22:15:17 25608 ----a-w- c:\windows\system32\X3DAudio1_3.dll

2011-07-31 22:14:59 1420824 ----a-w- c:\windows\system32\D3DCompiler_37.dll

2011-07-31 22:14:57 462864 ----a-w- c:\windows\system32\d3dx10_37.dll

2011-07-31 21:53:01 3786760 ----a-w- c:\windows\system32\D3DX9_37.dll

2011-07-31 21:51:36 267272 ----a-w- c:\windows\system32\xactengine2_10.dll

2011-07-31 21:51:27 444776 ----a-w- c:\windows\system32\d3dx10_36.dll

2011-07-31 21:51:27 1374232 ----a-w- c:\windows\system32\D3DCompiler_36.dll

2011-07-31 21:51:21 3734536 ----a-w- c:\windows\system32\d3dx9_36.dll

2011-07-31 21:51:11 267112 ----a-w- c:\windows\system32\xactengine2_9.dll

2011-07-31 21:51:09 444776 ----a-w- c:\windows\system32\d3dx10_35.dll

2011-07-31 21:51:08 1358192 ----a-w- c:\windows\system32\D3DCompiler_35.dll

2011-07-31 21:51:06 3727720 ----a-w- c:\windows\system32\d3dx9_35.dll

2011-07-31 21:51:02 266088 ----a-w- c:\windows\system32\xactengine2_8.dll

2011-07-31 21:51:02 17928 ----a-w- c:\windows\system32\X3DAudio1_2.dll

2011-07-31 21:51:01 443752 ----a-w- c:\windows\system32\d3dx10_34.dll

2011-07-31 21:51:01 1124720 ----a-w- c:\windows\system32\D3DCompiler_34.dll

2011-07-31 21:49:51 2297552 ----a-w- c:\windows\system32\d3dx9_26.dll

2011-07-31 21:48:17 -------- d--h--w- c:\windows\msdownld.tmp

2011-07-31 21:47:16 -------- d-----w- c:\program files\Essentials Codec Pack

2011-07-28 22:36:46 -------- d-----w- c:\program files\AMD APP

2011-07-28 22:36:19 -------- d-----w- c:\program files\ATI

2011-07-25 21:37:26 -------- d--h--w- C:\$AVG

2011-07-25 21:14:56 -------- d-----w- c:\documents and settings\david\application data\AVG10

2011-07-25 21:10:23 -------- d-----w- c:\windows\system32\drivers\AVG

2011-07-25 21:10:23 -------- d-----w- c:\documents and settings\all users\application data\AVG10

2011-07-25 21:09:01 -------- d-----w- c:\program files\AVG

2011-07-25 21:01:28 -------- d-----w- c:\documents and settings\all users\application data\MFAData

2011-07-25 19:45:35 0 ----a-w- c:\documents and settings\all users\application data\pecd.exe

2011-07-25 19:45:35 0 ----a-w- c:\documents and settings\all users\application data\kxnv.exe

2011-07-25 19:45:35 0 ----a-w- c:\documents and settings\all users\application data\kirw.exe

2011-07-25 19:45:35 0 ----a-w- c:\documents and settings\all users\application data\famg.exe

.

==================== Find3M ====================

.

2011-08-13 22:29:26 58880 ----a-w- c:\windows\system32\spoolsv.exe

2011-07-01 14:11:21 101720 ----a-w- c:\windows\system32\drivers\SBREDrv.sys

2011-06-21 03:49:22 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

2011-05-25 01:14:10 222080 ------w- c:\windows\system32\MpSigStub.exe

.

============= FINISH: 15:59:36.42 ===============

Link to post
Share on other sites

  • Staff

Hi,

Hi and welcome to Malwarebytes.

I notice that you are using more than one antivirus program (AVG, Lavasoft, and Microsoft). This is very dangerous, as multiple AVs can interfere with one another and actually allow MORE viruses to get through. I strongly suggest you go to Start -> Control Panel -> Add or Remove Programs and uninstall all but one antivirus program.

Reboot. See if the issue persists.

If so, please visit this webpage for instructions for running ComboFix:

http://www.bleepingcomputer.com/combofix/how-to-use-combofix

  • When the tool is finished, it will produce a report for you.
  • Please post the C:\ComboFix.txt along with a new DDS log so we may continue cleaning the system.

-screen317

Link to post
Share on other sites

Wow!

That seems to have done it; the print spooler is now staying up and I seem to be able to print hard copies or virtual if I use CutePDF. I removed AdAware and MS Security Essentials, so now I have MBAM and AVG.

Thanks so much for your help.

Link to post
Share on other sites

  • Staff

Glad we could help. :)

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.