OTL logfile created on: 14/07/2010 11:03:40 - Run 1
OTL by OldTimer - Version 3.2.9.0 Folder = C:\Documents and Settings\Administrator\My Documents\Downloads
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
503.00 Mb Total Physical Memory | 201.00 Mb Available Physical Memory | 40.00% Memory free
1.00 Gb Paging File | 1.00 Gb Available in Paging File | 77.00% Paging File free
Paging file location(s): C:\pagefile.sys 756 1512 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37.25 Gb Total Space | 31.53 Gb Free Space | 84.65% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: USER-28756B4A3B
Current User Name: Administrator
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ========== PRC - C:\Documents and Settings\Administrator\My Documents\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files\ThreatFire\TFService.exe (PC Tools)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe (Analog Devices, Inc.)
========== Modules (SafeList) ========== MOD - C:\Documents and Settings\Administrator\My Documents\Downloads\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\ThreatFire\TFWAH.dll (PC Tools)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll (Microsoft Corporation)
MOD - C:\WINDOWS\system32\msscript.ocx (Microsoft Corporation)
========== Win32 Services (SafeList) ========== SRV - (HidServ) -- C:\WINDOWS\System32\hidserv.dll File not found
SRV - (BecHelperService) -- C:\Program Files\3 Mobile Broadband\3Connect\BecHelperService.exe ()
SRV - (ThreatFire) -- C:\Program Files\ThreatFire\TFService.exe (PC Tools)
SRV - (SoundMAX Agent Service (default)) -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe (Analog Devices, Inc.)
========== Driver Services (SafeList) ========== DRV - (mdvrmng) -- C:\WINDOWS\system32\drivers\mdvrmng.sys ()
DRV - (TfSysMon) -- C:\WINDOWS\system32\drivers\TfSysMon.sys (PC Tools)
DRV - (TfFsMon) -- C:\WINDOWS\system32\drivers\TfFsMon.sys (PC Tools)
DRV - (TfNetMon) -- C:\WINDOWS\system32\drivers\TfNetMon.sys (PC Tools)
DRV - (b57w2k) -- C:\WINDOWS\system32\drivers\b57xp32.sys (Broadcom Corporation)
DRV - (hwusbfake) -- C:\WINDOWS\system32\drivers\ewusbfake.sys (Huawei Technologies Co., Ltd.)
DRV - (hwdatacard) -- C:\WINDOWS\system32\drivers\ewusbmdm.sys (Huawei Technologies Co., Ltd.)
DRV - (IFXTPM) -- C:\WINDOWS\system32\drivers\ifxtpm.sys (Infineon Technologies AG)
DRV - (tifm21) -- C:\WINDOWS\system32\drivers\tifm21.sys (Texas Instruments)
DRV - (HpqKbFiltr) -- C:\WINDOWS\system32\drivers\HpqKbFiltr.sys (Hewlett-Packard Development Company, L.P.)
DRV - (GTIPCI21) -- C:\WINDOWS\system32\drivers\gtipci21.sys (Texas Instruments)
DRV - (w29n51) Intel(R) -- C:\WINDOWS\system32\drivers\w29n51.sys (Intel® Corporation)
DRV - (AgereSoftModem) -- C:\WINDOWS\system32\drivers\AGRSM.sys (Agere Systems)
DRV - (SMCIRDA) -- C:\WINDOWS\system32\drivers\smcirda.sys (SMC)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKU\.DEFAULT\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-117609710-1454471165-839522115-500\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.msn.com/IE - HKU\S-1-5-21-117609710-1454471165-839522115-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ========== FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/06/29 10:37:41 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/06/29 10:37:41 | 000,000,000 | ---D | M]
[2010/06/22 09:53:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Extensions
[2010/06/22 09:53:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\jg715xxy.default\extensions
[2010/06/22 12:48:53 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010/04/01 17:56:49 | 000,001,538 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazon-en-GB.xml
[2010/04/01 17:56:50 | 000,000,947 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\chambers-en-GB.xml
[2010/04/01 17:56:50 | 000,000,769 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay-en-GB.xml
[2010/04/01 17:56:50 | 000,001,135 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo-en-GB.xml
O1 HOSTS File: ([2004/08/04 13:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No CLSID value found.
O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No CLSID value found.
O3 - HKU\S-1-5-21-117609710-1454471165-839522115-500\..\Toolbar\WebBrowser: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No CLSID value found.
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-117609710-1454471165-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/04/19 11:21:42 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{1ddb0baa-5a0c-11df-8f27-0015002dcf7b}\Shell - "" = AutoRun
O33 - MountPoints2\{1ddb0baa-5a0c-11df-8f27-0015002dcf7b}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{1ddb0baa-5a0c-11df-8f27-0015002dcf7b}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- File not found
O33 - MountPoints2\{afe7a080-5ad9-11df-8f29-0015002dcf7b}\Shell - "" = AutoRun
O33 - MountPoints2\{afe7a080-5ad9-11df-8f29-0015002dcf7b}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{afe7a080-5ad9-11df-8f29-0015002dcf7b}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- File not found
O33 - MountPoints2\{ca3a12dc-634a-11df-8f38-0015002dcf7b}\Shell - "" = AutoRun
O33 - MountPoints2\{ca3a12dc-634a-11df-8f38-0015002dcf7b}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{ca3a12dc-634a-11df-8f38-0015002dcf7b}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ========== [2010/07/14 07:42:12 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator\Recent
[2010/07/08 13:39:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
[2010/07/08 13:38:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2010/06/26 15:23:37 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2010/06/25 20:48:55 | 000,059,664 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\TfSysMon.sys
[2010/06/25 20:48:55 | 000,051,984 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\TfFsMon.sys
[2010/06/25 20:48:55 | 000,033,552 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\TfNetMon.sys
[2010/06/25 20:48:54 | 000,000,000 | ---D | C] -- C:\Program Files\ThreatFire
[2010/06/25 20:48:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\PC Tools
[2010/06/24 02:50:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Uniblue
[2010/06/22 12:48:52 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2010/06/22 12:31:13 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010/06/22 09:57:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\WMTools Downloaded Files
[2010/06/22 09:56:47 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\My Documents\My Videos
[2010/06/22 09:53:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Adobe
[2010/06/16 12:52:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2010/07/14 11:00:49 | 000,356,120 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010/07/14 11:00:49 | 000,312,172 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/07/14 11:00:49 | 000,040,394 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/07/14 11:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At84.job
[2010/07/14 11:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At60.job
[2010/07/14 11:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At36.job
[2010/07/14 11:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At156.job
[2010/07/14 11:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At132.job
[2010/07/14 11:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At108.job
[2010/07/14 10:55:29 | 000,000,894 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010/07/14 10:55:26 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/07/14 10:55:20 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/07/14 07:42:25 | 001,609,728 | ---- | M] () -- C:\Documents and Settings\Administrator\ntuser.dat
[2010/07/14 07:42:25 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\Administrator\ntuser.ini
[2010/07/14 07:42:19 | 006,411,552 | -H-- | M] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\IconCache.db
[2010/07/14 07:36:08 | 000,002,463 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\HiJackThis.lnk
[2010/07/14 07:29:14 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/07/12 08:49:00 | 000,000,898 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010/07/08 14:00:01 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At87.job
[2010/07/08 14:00:01 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At63.job
[2010/07/08 14:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At39.job
[2010/07/08 14:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At159.job
[2010/07/08 14:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At135.job
[2010/07/08 14:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At111.job
[2010/07/06 10:24:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At11.job
[2010/07/06 10:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At83.job
[2010/07/06 10:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At59.job
[2010/07/06 10:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At35.job
[2010/07/06 10:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At155.job
[2010/07/06 10:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At131.job
[2010/07/06 10:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At107.job
[2010/07/06 02:24:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At3.job
[2010/07/06 02:00:01 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At99.job
[2010/07/06 02:00:01 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At75.job
[2010/07/06 02:00:01 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At51.job
[2010/07/06 02:00:01 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At27.job
[2010/07/06 02:00:01 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At147.job
[2010/07/06 02:00:01 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At123.job
[2010/07/06 01:24:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At2.job
[2010/07/05 01:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At98.job
[2010/07/05 01:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At74.job
[2010/07/05 01:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At50.job
[2010/07/05 01:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At26.job
[2010/07/05 01:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At146.job
[2010/07/05 01:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At122.job
[2010/07/05 00:41:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At145.job
[2010/07/05 00:40:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At49.job
[2010/07/05 00:32:33 | 000,000,112 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\5gdc88.dat
[2010/07/05 00:31:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At25.job
[2010/07/05 00:27:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At97.job
[2010/06/29 18:24:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At19.job
[2010/06/29 18:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At91.job
[2010/06/29 18:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At67.job
[2010/06/29 18:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At43.job
[2010/06/29 18:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At163.job
[2010/06/29 18:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At139.job
[2010/06/29 18:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At115.job
[2010/06/29 03:24:02 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At4.job
[2010/06/29 03:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At76.job
[2010/06/29 03:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At52.job
[2010/06/29 03:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At28.job
[2010/06/29 03:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At148.job
[2010/06/29 03:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At124.job
[2010/06/29 03:00:00 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At100.job
[2010/06/27 17:24:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At18.job
[2010/06/26 15:24:03 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At16.job
[2010/06/26 15:04:08 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At15.job
[2010/06/26 15:01:05 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At88.job
[2010/06/26 15:01:05 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At64.job
[2010/06/26 15:01:05 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At40.job
[2010/06/26 15:01:05 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At160.job
[2010/06/26 15:01:05 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At112.job
[2010/06/26 15:00:37 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At136.job
[2010/06/26 14:15:03 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At9.job
[2010/06/26 08:15:41 | 000,000,633 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\ThreatFire.lnk
[2010/06/26 08:12:36 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At93.job
[2010/06/26 08:12:36 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At69.job
[2010/06/26 08:12:36 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At45.job
[2010/06/26 08:12:36 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At21.job
[2010/06/26 08:12:35 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At141.job
[2010/06/26 08:12:34 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At117.job
[2010/06/25 20:48:58 | 000,000,639 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\ThreatFire.lnk
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At168.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At167.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At166.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At165.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At164.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At162.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At161.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At158.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At157.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At154.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At153.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At152.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At151.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At150.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At149.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At144.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At143.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At142.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At140.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At138.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At137.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At134.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At133.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At130.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At129.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At128.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At127.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At126.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At125.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At121.job
[2010/06/24 02:17:57 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At92.job
[2010/06/24 02:17:57 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At68.job
[2010/06/24 02:17:56 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At44.job
[2010/06/24 02:17:55 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At116.job
[2010/06/24 02:17:55 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At20.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At120.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At119.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At118.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At114.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At113.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At110.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At109.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At106.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At105.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At104.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At103.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At102.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At101.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At96.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At95.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At94.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At90.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At89.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At86.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At85.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At82.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At81.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At80.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At79.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At78.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At77.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At73.job
[2010/06/23 01:48:02 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At62.job
[2010/06/23 01:48:01 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At38.job
[2010/06/23 01:48:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At14.job
[2010/06/23 01:48:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At13.job
[2010/06/22 12:48:58 | 000,001,620 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2010/06/22 12:48:58 | 000,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2010/06/22 12:37:33 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At72.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At71.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At70.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At66.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At65.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At61.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At58.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At57.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At56.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At55.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At54.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At53.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At48.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At47.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At46.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At42.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At41.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At37.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At34.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At33.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At32.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At31.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At30.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\At29.job
[2010/06/22 12:31:29 | 000,001,548 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\CCleaner.lnk
[2010/06/22 11:53:44 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At8.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At7.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At6.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At5.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At24.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At23.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At22.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At17.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At12.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At10.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At1.job
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ========== [2010/06/26 15:23:37 | 000,002,463 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\HiJackThis.lnk
[2010/06/26 08:15:41 | 000,000,633 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\ThreatFire.lnk
[2010/06/25 20:48:58 | 000,000,639 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\ThreatFire.lnk
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At168.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At167.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At166.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At165.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At164.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At163.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At162.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At161.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At160.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At159.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At158.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At157.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At156.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At155.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At154.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At153.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At152.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At151.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At150.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At149.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At148.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At147.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At146.job
[2010/06/25 20:03:55 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At145.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At144.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At143.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At142.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At141.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At140.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At139.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At138.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At137.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At136.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At135.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At134.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At133.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At132.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At131.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At130.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At129.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At128.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At127.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At126.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At125.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At124.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At123.job
[2010/06/24 02:37:07 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At122.job
[2010/06/24 02:37:06 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At121.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At99.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At98.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At97.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At120.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At119.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At118.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At117.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At116.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At115.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At114.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At113.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At112.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At111.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At110.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At109.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At108.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At107.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At106.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At105.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At104.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At103.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At102.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At101.job
[2010/06/23 17:32:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At100.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At96.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At95.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At94.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At93.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At92.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At91.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At90.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At89.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At88.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At87.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At86.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At85.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At84.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At83.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At82.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At81.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At80.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At79.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At78.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At77.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At76.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At75.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At74.job
[2010/06/23 01:57:16 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At73.job
[2010/06/22 12:48:58 | 000,001,620 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2010/06/22 12:48:58 | 000,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At72.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At71.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At70.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At69.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At68.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At67.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At66.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At65.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At64.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At63.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At62.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At61.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At60.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At59.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At58.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At57.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At56.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At55.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At54.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At53.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At52.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At51.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At50.job
[2010/06/22 12:37:33 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At49.job
[2010/06/22 12:34:12 | 000,000,112 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\5gdc88.dat
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At48.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At47.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At46.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At45.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At44.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At43.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At42.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At41.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At40.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At39.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At38.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At37.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At36.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At35.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At34.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At33.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At32.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At31.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At30.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At29.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At28.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At27.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At26.job
[2010/06/22 12:34:11 | 000,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At25.job
[2010/06/22 12:31:29 | 000,001,548 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\CCleaner.lnk
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At9.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At8.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At7.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At6.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At5.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At4.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At3.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At24.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At23.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At22.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At21.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At20.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At2.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At19.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At18.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At17.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At16.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At15.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At14.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At13.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At12.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At11.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At10.job
[2010/06/22 11:53:44 | 000,000,340 | ---- | C] () -- C:\WINDOWS\tasks\At1.job
[2010/05/07 20:19:35 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\drivers\mdvrmng.sys
[2004/08/04 13:00:00 | 000,027,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys
< End of report >