ComboFix 10-04-21.01 - Delachron 010.04.26. 19:30:35.4.1 - x86
Microsoft Windows XP Professional 5.1.2600.2.1250.36.1038.18.256.100 [GMT 2:00]
Running from: c:\documents and settings\Delachron\Asztal\ComboFix.exe
Command switches used :: c:\documents and settings\Delachron\Asztal\CFScript.txt
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
FILE ::
"c:\program files\folder.htt"
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
--------------- FCopy ---------------
c:\windows\ServicePackFiles\i386\tcpip.sys --> c:\windows\SYSTEM32\DRIVERS\tcpip.sys
c:\windows\ServicePackFiles\i386\tcpip.sys --> c:\windows\$NtServicePackUninstall$\tcpip.sys
.
((((((((((((((((((((((((( Files Created from 2010-03-26 to 2010-04-26 )))))))))))))))))))))))))))))))
.
2010-04-23 23:08 . 2010-04-26 15:31 66564 ----a-w- c:\documents and settings\All Users\Application Data\DQad4L6M.exe
2010-04-23 22:00 . 2010-04-23 22:00 4736 ----a-w- c:\windows\system32\o.sys
2010-04-23 20:06 . 2010-04-23 20:06 -------- d-----w- c:\documents and settings\NetworkService\Application Data\Nokia
2010-04-21 23:10 . 2010-04-21 23:10 -------- d-----w- c:\documents and settings\Delachron\Application Data\Ahead
2010-04-18 21:28 . 2010-04-18 21:28 -------- d-----w- C:\Ninja Tune Retrospective CD2
2010-04-14 13:20 . 2010-04-14 13:21 -------- d-----w- C:\Orbital_-_Brown_Album_1992
2010-04-14 13:20 . 2010-04-14 13:20 -------- d-----w- C:\Orbital_-_The_Box_[single-1996]
2010-04-12 16:53 . 2010-04-12 16:57 -------- d-----w- C:\Rave Mission 2 CD2
2010-04-12 16:46 . 2010-04-12 17:03 -------- d-----w- C:\Rave Mission 2 CD1
2010-04-09 21:09 . 2010-04-09 21:09 -------- d-----w- C:\fff
2010-04-07 19:27 . 2010-04-22 23:33 -------- d-----w- C:\VA_-_Rave_Now_Vol_06-2CD-_Retail_-1996
2010-04-06 23:53 . 2010-04-06 23:53 -------- d-----w- c:\program files\pop
2010-04-06 22:14 . 2010-04-06 22:14 -------- d-----w- C:\Flying Trance Classics CD2
2010-04-06 21:57 . 2010-04-06 21:57 -------- d-----w- C:\Flying Trance classics CD1
2010-04-06 21:39 . 2010-04-06 21:39 -------- d-----w- C:\RMB
2010-04-04 19:08 . 2010-04-04 19:08 5918776 ----a-w- c:\documents and settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
2010-03-29 21:37 . 2003-03-19 09:03 544768 ----a-w- c:\windows\system32\msvcr71d.dll
2010-03-29 21:37 . 2002-01-05 12:37 344064 ----a-w- c:\windows\system32\msvcr70.dll
2010-03-29 21:37 . 2006-09-16 17:44 314368 ----a-w- c:\windows\system32\avisynth.dll
2010-03-29 21:37 . 2004-05-26 19:37 719872 ----a-w- c:\windows\system32\devil.dll
2010-03-29 20:39 . 2010-03-29 20:39 -------- d-----w- c:\documents and settings\Delachron\Application Data\FastStone
2010-03-29 20:39 . 2010-03-29 20:39 -------- d-----w- c:\program files\FastStone Photo Resizer
2010-03-29 18:59 . 2007-09-04 15:56 164352 ----a-w- c:\windows\system32\unrar.dll
2010-03-29 18:59 . 2008-01-10 11:15 755027 ----a-w- c:\windows\system32\xvidcore.dll
2010-03-29 18:59 . 2004-01-25 15:18 217088 ----a-w- c:\windows\system32\yv12vfw.dll
2010-03-29 18:59 . 2008-01-10 11:16 159839 ----a-w- c:\windows\system32\xvidvfw.dll
2010-03-29 18:59 . 2007-11-29 21:30 3596288 ----a-w- c:\windows\system32\qt-dx331.dll
2010-03-29 18:59 . 2007-11-29 21:28 81920 ----a-w- c:\windows\system32\dpl100.dll
2010-03-29 18:59 . 2007-12-04 00:33 682496 ----a-w- c:\windows\system32\divx.dll
2010-03-29 18:59 . 2008-03-04 10:33 7680 ----a-w- c:\windows\system32\ff_vfw.dll
2010-03-29 18:59 . 2010-03-29 18:59 -------- d-----w- c:\program files\K-Lite Codec Pack
2010-03-29 13:39 . 2010-03-29 13:40 -------- d-----w- c:\program files\HUN2009
2010-03-29 00:52 . 2010-03-29 00:52 -------- d-----w- c:\documents and settings\Delachron\Application Data\Tomato
2010-03-29 00:52 . 2010-04-24 18:05 -------- d-----w- c:\program files\Common Files\Tomato
2010-03-28 13:25 . 2010-03-28 21:39 -------- d-----w- c:\program files\Total Video Converter
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-04-26 15:31 . 2010-04-23 22:00 112 ----a-w- c:\documents and settings\All Users\Application Data\KPY0T0n.dat
2010-04-26 15:00 . 2008-08-11 14:54 664 ----a-w- c:\windows\system32\d3d9caps.dat
2010-04-23 22:16 . 2008-06-24 21:28 -------- d-----w- c:\program files\Soulseek
2010-04-23 20:05 . 2008-05-21 18:31 -------- d-----w- c:\program files\Winamp
2010-04-23 20:05 . 2010-04-23 20:05 34304 ----a-w- c:\windows\FONTS\7fQqFX4O.com
2010-04-23 16:42 . 2010-02-22 17:56 -------- d-----w- c:\program files\Magic Video Converter
2010-04-04 19:08 . 2010-03-19 15:49 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-04-04 13:07 . 2008-07-13 19:20 -------- d-----w- c:\program files\Sound Forge 6
2010-03-31 22:07 . 2008-05-21 18:25 13904 -c--a-w- c:\documents and settings\Delachron\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2010-03-29 22:46 . 2010-03-19 15:49 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-03-29 22:45 . 2010-03-19 15:49 20824 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-03-29 13:38 . 2010-03-11 15:45 -------- d-----w- c:\program files\Common Files\InstallShield
2010-03-28 13:07 . 2008-05-21 17:38 303356 ----a-w- c:\windows\system32\perfh00E.dat
2010-03-28 13:07 . 2008-05-21 17:38 57716 ----a-w- c:\windows\system32\perfc00E.dat
2010-03-27 17:50 . 2010-04-07 00:41 187302 ----a-w- c:\windows\PCHealth\HelpCtr\Config\Cache\Professional_32_1038.dat
2010-03-19 22:54 . 2010-03-19 22:53 -------- d-----w- c:\program files\CCleaner
2010-03-19 11:54 . 2010-03-17 15:44 544 ---ha-w- c:\documents and settings\All Users\Application Data\mul.bin
2010-03-18 22:34 . 2010-03-11 15:45 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-03-18 13:39 . 2010-03-18 13:39 -------- d-----w- c:\documents and settings\All Users\Application Data\ESET
2010-03-18 00:39 . 2010-03-17 22:38 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira
2010-03-17 21:05 . 2008-05-21 17:34 14336 ------w- c:\windows\system32\svchost.exe
2010-03-17 16:09 . 2010-03-17 16:09 -------- d-----w- c:\documents and settings\Delachron\Application Data\SUPERAntiSpyware.com
2010-03-11 15:42 . 2010-03-11 15:30 -------- d-----w- c:\documents and settings\Delachron\Application Data\DAEMON Tools Lite
2010-03-11 15:32 . 2010-03-11 15:32 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-03-11 15:30 . 2010-03-11 15:30 -------- d-----w- c:\documents and settings\All Users\Application Data\DAEMON Tools Lite
2010-03-10 00:35 . 2010-03-09 18:18 -------- d-----w- c:\program files\Common Files\AVSMedia
2010-03-09 19:00 . 2010-03-09 19:00 -------- d-----w- c:\program files\Free Audio Pack
2010-03-09 19:00 . 2010-03-09 19:00 -------- d-----w- c:\documents and settings\Delachron\Application Data\FreeAudioPack
2010-03-09 18:23 . 2010-03-09 18:23 -------- d-----w- c:\documents and settings\All Users\Application Data\AVS4YOU
2010-03-09 18:23 . 2010-03-09 18:23 -------- d-----w- c:\documents and settings\Delachron\Application Data\AVS4YOU
2010-03-03 17:52 . 2010-03-03 17:50 -------- d-----w- c:\documents and settings\Delachron\Application Data\avidemux
.
Kód:
<pre>
c:\program files\Nokia\Nokia PC Suite 6\PcSync2 .exe
c:\program files\Winamp\Winampa .exe
</pre>
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NBJ"="c:\program files\Nero\Nero BackItUp\NBJ.exe" [2004-07-26 1867776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WinampAgent"="c:\program files\Winamp\Winampa.exe" [2010-04-23 34308]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2004-08-17 15360]
"Nokia.PCSync"="c:\program files\Nokia\Nokia PC Suite 6\PcSync2.exe" [2010-04-23 34308]
c:\documents and settings\All Users\Start Menu\Programs\Indˇt˘pult\
Adobe Reader gyorsindˇt˘.lnk - c:\program files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-9-24 29696]
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
R2 k;k;c:\windows\SYSTEM32\o.sys [2010.04.24. 0:00 4736]
R3 atirage;atirage;c:\windows\SYSTEM32\DRIVERS\atiragem.sys [2008.05.21. 19:58 70528]
R3 ess;ESS audio-illesztőprogram (WDM);c:\windows\SYSTEM32\DRIVERS\ess.sys [2008.05.21. 19:58 63360]
S2 evahq;aglhyspgq;c:\windows\system32\svchost.exe -k netsvcs [2008.05.21. 19:34 14336]
S2 gkewvnjtj;Manager Microsoft;c:\windows\system32\svchost.exe -k netsvcs [2008.05.21. 19:34 14336]
S3 NtApm;NT APM/örökölt illesztő illesztőprogramja;c:\windows\SYSTEM32\DRIVERS\NtApm.sys [2008.05.21. 19:59 9472]
S4 sptd;sptd;c:\windows\SYSTEM32\DRIVERS\sptd.sys [2010.03.11. 17:32 691696]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
gkewvnjtj
evahq
.
Contents of the 'Scheduled Tasks' folder
2010-04-25 c:\windows\Tasks\At1.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At10.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At100.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At101.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At102.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At103.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At104.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At105.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At106.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At107.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At108.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At109.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At11.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At110.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At111.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At112.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At113.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At114.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At115.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At116.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At117.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At118.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At119.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At12.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At120.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At121.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At122.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At123.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At124.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At125.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At126.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At127.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At128.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At129.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At13.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At130.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At131.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At132.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At133.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At134.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At135.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At136.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At137.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At138.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At139.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At14.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At140.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At141.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At142.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At143.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At144.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At145.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At146.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At147.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At148.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At149.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At15.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At150.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At151.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At152.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At153.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At154.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At155.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At156.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At157.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At158.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At159.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At16.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-26 c:\windows\Tasks\At160.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At161.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At162.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At163.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At164.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At165.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At166.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At167.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At168.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At169.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At17.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At170.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At171.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At172.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At173.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At174.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At175.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At176.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At177.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At178.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At179.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At18.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At180.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At181.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At182.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At183.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At184.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At185.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At186.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At187.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At188.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At189.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At19.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At190.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At191.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At192.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At193.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At194.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At195.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At196.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At197.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At198.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At199.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At2.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At20.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At200.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At201.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At202.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At203.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At204.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At205.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At206.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At207.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At208.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At209.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At21.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-26 c:\windows\Tasks\At210.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At211.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At212.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At213.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At214.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At215.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At216.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At217.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At218.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At219.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At22.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At220.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At221.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At222.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At223.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At224.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At225.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At226.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At227.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At228.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At229.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At23.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At230.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At231.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At232.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At233.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At234.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At235.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At236.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At237.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At238.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At239.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At24.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At240.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At241.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At242.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At243.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At244.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At245.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At246.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At247.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At248.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At249.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At25.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At250.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At251.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At252.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At253.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At254.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At255.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At256.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At257.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At258.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At259.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At26.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At260.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At261.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At262.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At263.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At264.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At265.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At266.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At267.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At268.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At269.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At27.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At270.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At271.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At272.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At273.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At274.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At275.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At276.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At277.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At278.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At279.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At28.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At280.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At281.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At282.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At283.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At284.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At285.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At286.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At287.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At288.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At289.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At29.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At290.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At291.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At292.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At293.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At294.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At295.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At296.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At297.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At298.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At299.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At3.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At30.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At300.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At301.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At302.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At303.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At304.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At305.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At306.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At307.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At308.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At309.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At31.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At310.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At311.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At312.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At32.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At33.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At34.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At35.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At36.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At37.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At38.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At39.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At4.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-26 c:\windows\Tasks\At40.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At41.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At42.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At43.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At44.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At45.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At46.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At47.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At48.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At49.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At5.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At50.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At51.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At52.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At53.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At54.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At55.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At56.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At57.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At58.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At59.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At6.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At60.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At61.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At62.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At63.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At64.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At65.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At66.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At67.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At68.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At69.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At7.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At70.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At71.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At72.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At73.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At74.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At75.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At76.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At77.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At78.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At79.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At8.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-25 c:\windows\Tasks\At80.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At81.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At82.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At83.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At84.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At85.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At86.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At87.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At88.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At89.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At9.job
- c:\windows\Fonts\7fQqFX4O.com [2010-04-23 20:05]
2010-04-26 c:\windows\Tasks\At90.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At91.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At92.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At93.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At94.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At95.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At96.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At97.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-25 c:\windows\Tasks\At98.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
2010-04-26 c:\windows\Tasks\At99.job
- c:\documents and settings\All Users\Application Data\DQad4L6M.exe [2010-04-23 15:31]
.
.
------- Supplementary Scan -------
.
uStart Page =
hxxp://www.google.com/
IE: Download &Flash Movies - c:\program files\Flash2X\Flash Hunter\save.htm
DPF: DirectAnimation Java Classes -
file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java -
file://c:\windows\Java\classes\xmldso.cab
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2010-04-26 19:46
Windows 5.1.2600 Szervizcsomag 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\wscntfy.exe
c:\program files\Winamp\Winampa .exe
.
**************************************************************************
.
Completion time: 2010-04-26 19:58:21 - machine was rebooted
ComboFix-quarantined-files.txt 2010-04-26 17:58
ComboFix2.txt 2010-04-26 17:10
Pre-Run: 822 974 464 bájt szabad
Post-Run: 789 210 112 bájt szabad
- - End Of File - - 908E874A9E4A863C30F3219C110740F3