I tried running OTL without the custom scans, and it worked =) I got this:
OTL logfile created on: 2010-09-04 17:33:38 - Run 2
OTL by OldTimer - Version 3.2.11.0 Folder = D:\
Windows XP Media Center Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000041D | Country: Sverige | Language: SVE | Date Format: yyyy-MM-dd
2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 78,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 89,00% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 298,09 Gb Total Space | 149,65 Gb Free Space | 50,20% Space Free | Partition Type: NTFS
Drive D: | 1023,69 Mb Total Space | 996,63 Mb Free Space | 97,36% Space Free | Partition Type: FAT
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive N: | 465,76 Gb Total Space | 133,22 Gb Free Space | 28,60% Space Free | Partition Type: NTFS
Computer Name: TOTTE
Current User Name: Tutt
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ========== PRC - [2010-09-03 16:50:38 | 000,574,976 | ---- | M] (OldTimer Tools) -- D:\OTL.exe
PRC - [2010-08-30 21:30:53 | 000,035,848 | ---- | M] () -- C:\Program Files\Spyware Doctor\pctsTray.exe
PRC - [2010-08-28 18:17:11 | 000,015,982 | ---- | M] () -- C:\WINDOWS\system32\mssrv32.exe
PRC - [2010-07-26 14:19:38 | 000,910,296 | ---- | M] (Mozilla Corporation) -- C:\Program1\Mozilla Firefox\firefox.exe
PRC - [2010-06-10 21:03:08 | 000,144,176 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
PRC - [2010-03-15 12:50:36 | 001,142,224 | ---- | M] (PC Tools) -- C:\Program Files\Spyware Doctor\pctsSvc.exe
PRC - [2010-03-11 12:09:22 | 000,366,840 | ---- | M] (PC Tools) -- C:\Program Files\Spyware Doctor\pctsAuxs.exe
PRC - [2010-03-09 09:40:26 | 001,286,608 | ---- | M] (PC Tools) -- C:\Program Files\Spyware Doctor\pctsTray .exe
PRC - [2009-07-26 17:44:56 | 003,883,840 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Live\Messenger\msnmsgr .exe
PRC - [2009-03-21 15:54:07 | 000,026,112 | -HS- | M] () -- C:\WINDOWS\system32\ntdevice.exe
PRC - [2008-12-11 13:14:24 | 000,377,856 | ---- | M] (Orbiscom Ltd. All rights reserved.) -- C:\Program Files\ekort\ekort.exe
PRC - [2007-07-06 14:02:26 | 000,561,152 | ---- | M] (Lavasoft AB) -- C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
PRC - [2007-06-13 13:26:03 | 001,033,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2004-08-10 14:00:00 | 000,815,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mmc.exe
PRC - [2004-08-10 14:00:00 | 000,380,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\Restore\rstrui.exe
PRC - [2004-08-10 14:00:00 | 000,180,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dwwin.exe
PRC - [2004-08-10 14:00:00 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\tcpsvcs.exe
========== Modules (SafeList) ========== MOD - [2010-09-03 17:44:41 | 000,013,312 | -HS- | M] () -- C:\Documents and Settings\Tutt\pizda_ntload.dll
MOD - [2010-09-03 16:50:38 | 000,574,976 | ---- | M] (OldTimer Tools) -- D:\OTL.exe
MOD - [2009-10-30 11:18:16 | 000,147,024 | ---- | M] (PC Tools) -- C:\Program Files\Spyware Doctor\PCTGMhk.dll
MOD - [2004-11-11 00:56:14 | 001,852,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\AppPatch\acgenral.dll
MOD - [2004-08-10 14:00:00 | 000,413,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcp60.dll
MOD - [2004-08-10 14:00:00 | 000,102,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
MOD - [2004-08-10 14:00:00 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msacm32.dll
========== Win32 Services (SafeList) ========== SRV - [2010-06-28 22:57:15 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Stopped] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner)
SRV - [2010-06-28 22:57:15 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Stopped] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner)
SRV - [2010-06-28 22:57:15 | 000,040,384 | ---- | M] (AVAST Software) [Auto | Stopped] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV - [2010-06-10 21:03:08 | 000,144,176 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2010-03-15 12:50:36 | 001,142,224 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\Spyware Doctor\pctsSvc.exe -- (sdCoreService)
SRV - [2010-03-11 12:09:22 | 000,366,840 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\Spyware Doctor\pctsAuxs.exe -- (sdAuxService)
SRV - [2010-01-22 09:56:24 | 000,112,592 | ---- | M] (Threat Expert Ltd.) [Auto | Stopped] -- C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe -- (Browser Defender Update Service)
SRV - [2008-10-19 19:10:49 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2007-07-06 14:02:26 | 000,561,152 | ---- | M] (Lavasoft AB) [Auto | Running] -- C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe -- (aawservice)
SRV - [2004-08-10 14:00:00 | 000,019,456 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\system32\tcpsvcs.exe -- (SimpTcp)
SRV - [2003-03-09 22:31:02 | 000,065,795 | ---- | M] (HP) [On_Demand | Stopped] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12)
========== Driver Services (SafeList) ========== DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys -- (MBAMSwissArmy)
DRV - [2010-08-31 17:01:22 | 000,000,000 | ---- | M] () [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\drivers\pywpy.sys -- (pywpy)
DRV - [2010-08-27 08:00:20 | 000,211,072 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\ndis.sys -- (NDIS)
DRV - [2010-06-28 22:37:52 | 000,046,672 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2010-06-28 22:37:30 | 000,165,456 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2010-06-28 22:33:13 | 000,023,376 | ---- | M] (ALWIL Software) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2010-06-28 22:32:45 | 000,100,176 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2010-06-28 22:32:33 | 000,017,744 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2010-06-28 22:32:16 | 000,028,880 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2010-03-10 11:36:36 | 000,217,032 | ---- | M] (PC Tools) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\PCTCore.sys -- (PCTCore)
DRV - [2009-08-17 00:57:00 | 007,729,568 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2008-10-05 13:40:44 | 000,025,280 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2007-06-04 15:18:48 | 000,009,344 | ---- | M] (Lavasoft AB) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nsdriver.sys -- (Ad-Watch Connect Filter)
DRV - [2007-04-18 08:59:40 | 000,098,600 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\COMMONFX.DLL -- (COMMONFX.DLL)
DRV - [2007-04-12 08:10:26 | 000,164,608 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\CT20XUT.DLL -- (CT20XUT.DLL)
DRV - [2007-04-12 08:10:26 | 000,066,816 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\CTHWIUT.DLL -- (CTHWIUT.DLL)
DRV - [2007-04-12 08:10:24 | 001,317,632 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\CTEXFIFX.DLL -- (CTEXFIFX.DLL)
DRV - [2007-04-12 08:10:22 | 000,323,328 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\CTEDSPSY.DLL -- (CTEDSPSY.DLL)
DRV - [2007-04-12 08:10:22 | 000,128,768 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\CTEDSPIO.DLL -- (CTEDSPIO.DLL)
DRV - [2007-04-12 08:10:20 | 000,280,320 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\CTEDSPFX.DLL -- (CTEDSPFX.DLL)
DRV - [2007-04-12 08:10:20 | 000,094,976 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\CTERFXFX.DLL -- (CTERFXFX.DLL)
DRV - [2007-04-12 08:10:18 | 000,168,192 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\CTEAPSFX.DLL -- (CTEAPSFX.DLL)
DRV - [2007-04-12 08:10:16 | 000,560,384 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\CTSBLFX.DLL -- (CTSBLFX.DLL)
DRV - [2007-04-12 08:10:16 | 000,546,048 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\CTAUDFX.DLL -- (CTAUDFX.DLL)
DRV - [2007-04-10 06:00:24 | 000,157,480 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctsfm2k.sys -- (ctsfm2k)
DRV - [2007-04-10 05:59:04 | 000,126,760 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv)
DRV - [2007-04-10 04:32:06 | 000,189,736 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\haP17v2k.sys -- (hap17v2k)
DRV - [2007-04-10 04:31:18 | 000,163,112 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\haP16v2k.sys -- (hap16v2k)
DRV - [2007-04-10 04:29:10 | 000,797,992 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ha10kx2k.sys -- (ha10kx2k)
DRV - [2007-04-10 04:28:36 | 000,092,968 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\emupia2k.sys -- (emupia)
DRV - [2007-04-10 04:25:46 | 000,014,632 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctprxy2k.sys -- (ctprxy2k)
DRV - [2007-04-10 04:21:06 | 000,347,128 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ctdvda2k.sys -- (ctdvda2k)
DRV - [2007-04-10 04:20:38 | 000,520,488 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctaud2k.sys -- (ctaud2k) Creative Audio Driver (WDM)
DRV - [2007-04-10 04:19:30 | 000,511,272 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctac32k.sys -- (ctac32k)
DRV - [2007-01-15 18:46:22 | 000,223,128 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\Drivers\dtscsi.sys -- (dtscsi)
DRV - [2007-01-15 18:44:39 | 000,643,072 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2006-09-29 11:18:28 | 001,681,920 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2006-09-12 20:27:00 | 004,381,184 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2006-07-14 14:55:42 | 000,089,344 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\nvraid.sys -- (nvraid)
DRV - [2006-07-14 14:55:34 | 000,105,088 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\nvatabus.sys -- (nvatabus)
DRV - [2006-07-11 21:31:02 | 000,084,096 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp)
DRV - [2006-06-19 00:38:18 | 000,043,520 | R--- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8)
DRV - [2006-05-11 11:30:52 | 000,247,808 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\iaStor.sys -- (iaStor)
DRV - [2005-05-27 10:31:28 | 000,022,016 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LVUSBSta.sys -- (LVUSBSta)
DRV - [2005-01-11 17:58:48 | 000,030,976 | ---- | M] (Silicon Integrated Systems Corp) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\SiSRaid2.sys -- (SiSRaid2)
DRV - [2005-01-07 18:07:18 | 000,138,752 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2004-10-08 12:59:12 | 000,326,656 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Camdrl.sys -- (CamDrL) Logitech QuickCam Pro 3000(CamDrl)
DRV - [2004-08-10 14:00:00 | 000,088,448 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx)
DRV - [2004-08-10 14:00:00 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb)
DRV - [2004-08-10 14:00:00 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx)
DRV - [2004-08-04 00:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Realtek RTL8139(A/B/C)
DRV - [2004-08-03 23:08:22 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2004-08-03 23:07:56 | 000,059,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\USBAUDIO.sys -- (usbaudio) USB Audio Driver (WDM)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKCU\..\URLSearchHook: {F08555B0-9CC3-11D2-AA8E-000000000567} - C:\Program Files\blinkx Remote Toolbar\the_blinkx_shook.dll ()
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:6522
========== FireFox ========== FF - prefs.js..browser.startup.homepage: "http://www.rollingstone.com/"
FF - prefs.js..extensions.enabledItems:
betteryoutube@ginatrapani.org:0.4.3
FF - prefs.js..extensions.enabledItems: ekort@orbiscom:3.16.8.0
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems:
en-US@dictionaries.addons.mozilla.org:4.0.0
FF - prefs.js..extensions.enabledItems:
toolbar@blinkx.com:1.0
FF - prefs.js..network.proxy.type: 0
FF - HKLM\software\mozilla\Firefox\extensions\\ekort@orbiscom: C:\Program Files\ekort [2009-04-08 13:24:20 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.9\extensions\\Components: C:\Program\Mozilla Firefox\components
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.9\extensions\\Plugins: C:\Program\Mozilla Firefox\plugins
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Components: C:\Program1\Mozilla Firefox\components [2010-08-02 12:02:14 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Plugins: C:\Program1\Mozilla Firefox\plugins [2010-07-26 14:19:44 | 000,000,000 | ---D | M]
[2008-09-06 19:27:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tutt\Application Data\Mozilla\Extensions
[2010-09-03 22:25:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tutt\Application Data\Mozilla\Firefox\Profiles\ebufj7uh.default\extensions
[2010-05-05 16:46:36 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Tutt\Application Data\Mozilla\Firefox\Profiles\ebufj7uh.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2009-04-08 01:04:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tutt\Application Data\Mozilla\Firefox\Profiles\ebufj7uh.default\extensions\betteryoutube@ginatrapani.org
[2009-10-03 11:53:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tutt\Application Data\Mozilla\Firefox\Profiles\ebufj7uh.default\extensions\en-US@dictionaries.addons.mozilla.org
O1 HOSTS File: ([2010-08-30 20:35:40 | 000,000,727 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (The blinkx Toolbar) - {0069B690-7A2B-41C5-98CA-9F535B4C8532} - C:\Program Files\blinkx Remote Toolbar\the_blinkx_bho.dll ()
O2 - BHO: (EKortBrowserHelper Class) - {1C900459-DEEF-4aa9-B260-1EF0F0C70A8D} - C:\Program Files\ekort\Bhoekort.dll (Orbiscom Ltd. All rights reserved.)
O2 - BHO: (PC Tools Browser Guard BHO) - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
O2 - BHO: (e-kort Helper Class) - {9065E913-4F23-4B47-9B5D-B055D32DB1F3} - C:\Program Files\ekort\EKortHelper.dll ()
O3 - HKLM\..\Toolbar: (PC Tools Browser Guard) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
O3 - HKLM\..\Toolbar: (e-kort Toolbar) - {8DB2B2E8-579F-48A8-A496-18FEFCF8F4DF} - C:\Program Files\ekort\EKortToolbar.dll ()
O4 - HKLM..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe ()
O4 - HKLM..\Run: [ISTray] C:\Program Files\Spyware Doctor\pctsTray.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [rundll32] C:\WINDOWS\system32\ntdevice.exe ()
O4 - HKLM..\Run: [UserFaultCheck] File not found
O4 - HKCU..\Run: [msnmsgr] C:\Program Files\Windows Live\Messenger\msnmsgr .exe (Microsoft Corporation)
O4 - HKCU..\Run: [rundll32] C:\Documents and Settings\Tutt\userinit.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: InstallVisualStyle = C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles (Microsoft)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: InstallTheme = C:\WINDOWS\Resources\Themes\Royale.theme ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: =
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office10\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Skapa mobilfavorit ... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: NordicBet Poker - {E6073F93-9541-4be4-9800-109D378EB99B} - C:\Program Files\nordicbetMPP\MPPoker.exe (Microgaming)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe ()
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000032 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.)
O15 - HKCU\..Trusted Domains: youtube.com ([www] https in Trusted sites)
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B}
http://www.apple.com/qtactivex/qtplugin.cab (QuickTime Object)
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F}
http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab (System Requirements Lab Class)
O16 - DPF: {31435657-9980-0010-8000-00AA00389B71}
http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab (Reg Error: Key error.)
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537}
http://gfx2.hotmail.com/mail/w2/resources/MSNPUpld.cab (MSN Photo Upload Tool)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429}
http://www.sibelius.com/download/software/win/ActiveXPlugin.cab (ScorchPlugin Class)
O16 - DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 217.10.96.44 217.10.96.65
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (C:\WINDOWS\system32\ntdevice.exe) - C:\WINDOWS\system32\ntdevice.exe ()
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006-11-14 17:29:59 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2009-05-18 21:57:29 | 000,000,106 | RHS- | M] () - N:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\{620b171a-c4c6-11de-bba5-0018f3cde07a}\Shell - "" = AutoRun
O33 - MountPoints2\{fd55e772-8495-11dc-b974-0018f3cde07a}\Shell - "" = AutoRun
O33 - MountPoints2\{fd55e772-8495-11dc-b974-0018f3cde07a}\Shell\AutoRun\command - "" = L:\LaunchU3.exe -- File not found
O33 - MountPoints2\J\Shell - "" = AutoRun
O33 - MountPoints2\J\Shell\AutoRun\command - "" = J:\Autorun.exe -- File not found
O33 - MountPoints2\K\Shell - "" = AutoRun
O33 - MountPoints2\K\Shell\AutoRun\command - "" = K:\setup.exe -- File not found
O33 - MountPoints2\L\Shell - "" = AutoRun
O33 - MountPoints2\L\Shell\AutoRun\command - "" = L:\SETUP.EXE -- File not found
O33 - MountPoints2\M\Shell - "" = AutoRun
O33 - MountPoints2\M\Shell\AutoRun\command - "" = M:\SETUP.EXE -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\WINDOWS\System32\lsdelete.exe ()
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ========== [2010-09-03 16:19:34 | 000,000,000 | ---D | C] -- C:\Program Files\Auslogics
[2010-09-03 09:23:54 | 000,000,000 | ---D | C] -- C:\Program Files\Eusing Free Registry Cleaner
[2010-09-03 09:23:40 | 004,601,888 | ---- | C] (Auslogics Software Pty Ltd ) -- C:\Documents and Settings\Tutt\Desktop\registry-cleaner-setup.exe
[2010-09-03 09:23:40 | 002,248,136 | ---- | C] (WiseCleaner.com ) -- C:\Documents and Settings\Tutt\Desktop\WRCPro.exe
[2010-09-02 22:17:25 | 000,000,000 | ---D | C] -- C:\PerfLogs
[2010-08-30 23:09:53 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\simptcp.dll
[2010-08-30 22:49:24 | 000,165,456 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2010-08-30 22:49:24 | 000,017,744 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2010-08-30 22:49:23 | 000,023,376 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2010-08-30 22:49:22 | 000,100,176 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2010-08-30 22:49:22 | 000,046,672 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2010-08-30 22:49:21 | 000,094,544 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2010-08-30 22:49:21 | 000,028,880 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2010-08-30 22:48:43 | 000,038,848 | ---- | C] (ALWIL Software) -- C:\WINDOWS\avastSS.scr
[2010-08-30 22:48:41 | 000,165,032 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2010-08-30 21:14:03 | 001,652,688 | ---- | C] (Threat Expert Ltd.) -- C:\WINDOWS\PCTBDCore.dll
[2010-08-30 21:14:03 | 000,165,840 | ---- | C] (Threat Expert Ltd.) -- C:\WINDOWS\PCTBDRes.dll
[2010-08-30 21:14:03 | 000,149,456 | ---- | C] (PC Tools) -- C:\WINDOWS\SGDetectionTool.dll
[2010-08-30 21:13:36 | 000,233,136 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctgntdi.sys
[2010-08-30 21:13:29 | 000,217,032 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTCore.sys
[2010-08-30 21:13:29 | 000,088,040 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTAppEvent.sys
[2010-08-30 21:13:15 | 000,070,408 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctplsg.sys
[2010-08-30 21:13:09 | 000,000,000 | ---D | C] -- C:\Program Files\Spyware Doctor
[2010-08-30 21:13:09 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PC Tools
[2010-08-30 21:13:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tutt\Application Data\PC Tools
[2010-08-30 21:13:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\PC Tools
[2010-08-30 20:33:23 | 000,000,000 | ---D | C] -- C:\Program Files\Enigma Software Group
[2010-08-29 16:42:41 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\GroupPolicy
[2010-08-29 16:31:35 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2010-08-28 18:14:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\PRAGMAnprpphosti
[2010-08-28 16:21:24 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2010-08-28 16:21:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2010-08-27 16:06:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tutt\Application Data\Malwarebytes
[2010-08-27 16:06:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2010-08-27 16:06:37 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010-08-27 15:57:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tutt\Application Data\drbqohjpu
[2010-08-27 15:57:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tutt\Local Settings\Application Data\drbqohjpu
[2010-08-27 15:51:09 | 000,200,704 | ---- | C] (ApexDC++ Development Team) -- C:\WINDOWS\Hlilyb.exe
[2010-08-27 13:50:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Real
[2010-08-27 08:11:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Macromedia
[2010-08-27 08:11:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Adobe
[2010-08-27 07:58:25 | 000,200,704 | ---- | C] (ApexDC++ Development Team) -- C:\WINDOWS\Hlilya.exe
[2010-08-27 07:58:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tutt\Local Settings\Application Data\wqgmxhwuf
[2010-08-27 07:58:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tutt\Local Settings\Application Data\aekmxpjdr
[2010-08-27 07:58:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tutt\Application Data\aekmxpjdr
[2010-08-27 07:58:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tutt\Local Settings\Application Data\lqjnxfvsb
[2010-08-27 07:58:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tutt\Local Settings\Application Data\Windows Server
[2010-08-27 07:57:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tutt\Application Data\176170D6E4280D8CD04407F5B2F36A2F
[2007-04-09 12:32:58 | 000,034,816 | ---- | C] ( ) -- C:\WINDOWS\System32\a3d.dll
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2010-09-03 17:44:41 | 000,013,312 | -HS- | M] () -- C:\Documents and Settings\Tutt\pizda_ntload.dll
[2010-09-03 17:43:29 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010-09-03 17:43:25 | 2615,726,080 | -HS- | M] () -- C:\hiberfil.sys
[2010-09-03 16:30:10 | 010,747,904 | ---- | M] () -- C:\Documents and Settings\Tutt\ntuser.dat
[2010-09-03 16:25:51 | 001,530,904 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-09-03 09:23:55 | 000,000,746 | ---- | M] () -- C:\Documents and Settings\Tutt\Desktop\Eusing Free Registry Cleaner.lnk
[2010-09-03 09:23:20 | 007,784,054 | ---- | M] () -- C:\Documents and Settings\Tutt\Desktop\EFRCSetup.rar
[2010-09-02 22:59:11 | 000,030,120 | ---- | M] () -- C:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000009-00001102-00000004-00511102}.rfx
[2010-09-02 22:59:11 | 000,030,120 | ---- | M] () -- C:\WINDOWS\System32\BMXState-{00000002-00000000-00000009-00001102-00000004-00511102}.rfx
[2010-09-02 22:59:11 | 000,027,408 | ---- | M] () -- C:\WINDOWS\System32\BMXCtrlState-{00000002-00000000-00000009-00001102-00000004-00511102}.rfx
[2010-09-02 22:59:11 | 000,027,408 | ---- | M] () -- C:\WINDOWS\System32\BMXBkpCtrlState-{00000002-00000000-00000009-00001102-00000004-00511102}.rfx
[2010-09-02 22:59:11 | 000,011,564 | ---- | M] () -- C:\WINDOWS\System32\DVCState-{00000002-00000000-00000009-00001102-00000004-00511102}.rfx
[2010-09-02 21:50:39 | 000,000,278 | -HS- | M] () -- C:\Documents and Settings\Tutt\ntuser.ini
[2010-09-02 21:46:56 | 000,000,221 | -HS- | M] () -- C:\boot.ini
[2010-09-02 20:44:04 | 004,601,888 | ---- | M] (Auslogics Software Pty Ltd ) -- C:\Documents and Settings\Tutt\Desktop\registry-cleaner-setup.exe
[2010-09-02 20:42:36 | 002,248,136 | ---- | M] (WiseCleaner.com ) -- C:\Documents and Settings\Tutt\Desktop\WRCPro.exe
[2010-09-02 20:40:50 | 000,963,852 | ---- | M] () -- C:\Documents and Settings\Tutt\Desktop\EFRCSetup.exe
[2010-09-02 20:40:10 | 000,054,856 | ---- | M] () -- C:\Documents and Settings\Tutt\Desktop\ErrorNukerInstaller.exe
[2010-08-31 17:01:22 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\drivers\pywpy.sys
[2010-08-31 12:28:19 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010-08-31 12:23:23 | 000,000,897 | ---- | M] () -- C:\WINDOWS\win.ini
[2010-08-31 12:23:23 | 000,000,469 | ---- | M] () -- C:\WINDOWS\system.ini
[2010-08-30 23:10:18 | 000,523,098 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010-08-30 23:10:18 | 000,442,602 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010-08-30 23:10:18 | 000,071,868 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010-08-30 23:08:35 | 000,000,057 | ---- | M] () -- C:\WINDOWS\System32\mapisvc.inf
[2010-08-30 22:49:24 | 000,001,706 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\avast! Free Antivirus.lnk
[2010-08-30 22:49:22 | 000,002,626 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-08-30 21:27:24 | 000,001,641 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Spyware Doctor.lnk
[2010-08-30 21:18:31 | 000,000,912 | ---- | M] () -- C:\Documents and Settings\Tutt\sh_wi.bak
[2010-08-30 21:18:06 | 000,035,848 | ---- | M] () -- C:\WINDOWS\System32\kr2RrqT.com
[2010-08-30 21:07:23 | 000,157,696 | ---- | M] () -- C:\Documents and Settings\Tutt\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-08-30 20:35:40 | 000,000,727 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010-08-30 20:33:38 | 000,000,265 | ---- | M] () -- C:\spyhunter.fix
[2010-08-29 16:47:09 | 000,000,420 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{ED6F8FF9-C1D4-4541-A52D-DCF048812A4F}.job
[2010-08-29 16:44:11 | 000,001,004 | RHS- | M] () -- C:\Documents and Settings\Tutt\ntuser.pol
[2010-08-29 16:06:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At17.job
[2010-08-29 16:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At89.job
[2010-08-29 16:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At65.job
[2010-08-29 16:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At521.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At497.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At473.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At449.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At425.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At41.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At401.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At377.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At353.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At329.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At305.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At281.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At257.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At233.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At209.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At185.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At161.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At137.job
[2010-08-29 16:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At113.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At528.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At527.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At526.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At525.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At524.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At523.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At522.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At520.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At519.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At518.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At517.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At516.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At515.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At514.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At513.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At512.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At511.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At510.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At509.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At508.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At507.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At506.job
[2010-08-29 15:23:39 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At505.job
[2010-08-29 15:23:37 | 000,072,706 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\i3x1Qx4f.exe
[2010-08-29 15:23:37 | 000,000,112 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\ln3HK3T.dat
[2010-08-29 15:06:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At16.job
[2010-08-29 15:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At88.job
[2010-08-29 15:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At64.job
[2010-08-29 15:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At496.job
[2010-08-29 15:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At472.job
[2010-08-29 15:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At448.job
[2010-08-29 15:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At424.job
[2010-08-29 15:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At400.job
[2010-08-29 15:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At40.job
[2010-08-29 15:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At376.job
[2010-08-29 15:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At304.job
[2010-08-29 15:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At280.job
[2010-08-29 15:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At352.job
[2010-08-29 15:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At328.job
[2010-08-29 15:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At256.job
[2010-08-29 15:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At232.job
[2010-08-29 15:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At208.job
[2010-08-29 15:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At184.job
[2010-08-29 15:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At160.job
[2010-08-29 15:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At136.job
[2010-08-29 15:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At112.job
[2010-08-29 14:06:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At15.job
[2010-08-29 14:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At87.job
[2010-08-29 14:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At63.job
[2010-08-29 14:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At495.job
[2010-08-29 14:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At471.job
[2010-08-29 14:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At447.job
[2010-08-29 14:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At423.job
[2010-08-29 14:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At399.job
[2010-08-29 14:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At39.job
[2010-08-29 14:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At375.job
[2010-08-29 14:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At351.job
[2010-08-29 14:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At327.job
[2010-08-29 14:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At303.job
[2010-08-29 14:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At231.job
[2010-08-29 14:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At279.job
[2010-08-29 14:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At255.job
[2010-08-29 14:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At207.job
[2010-08-29 14:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At183.job
[2010-08-29 14:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At159.job
[2010-08-29 14:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At135.job
[2010-08-29 14:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At111.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At504.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At503.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At502.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At501.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At500.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At499.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At498.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At494.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At493.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At492.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At491.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At490.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At489.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At488.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At487.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At486.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At485.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At484.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At483.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At482.job
[2010-08-29 13:23:02 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At481.job
[2010-08-29 13:06:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At14.job
[2010-08-29 13:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At398.job
[2010-08-29 13:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At326.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At86.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At62.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At470.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At446.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At422.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At38.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At374.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At350.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At302.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At278.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At254.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At230.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At206.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At182.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At158.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At134.job
[2010-08-29 13:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At110.job
[2010-08-29 12:06:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At13.job
[2010-08-29 12:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At85.job
[2010-08-29 12:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At61.job
[2010-08-29 12:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At469.job
[2010-08-29 12:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At445.job
[2010-08-29 12:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At421.job
[2010-08-29 12:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At397.job
[2010-08-29 12:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At373.job
[2010-08-29 12:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At37.job
[2010-08-29 12:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At349.job
[2010-08-29 12:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At325.job
[2010-08-29 12:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At301.job
[2010-08-29 12:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At277.job
[2010-08-29 12:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At253.job
[2010-08-29 12:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At229.job
[2010-08-29 12:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At205.job
[2010-08-29 12:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At181.job
[2010-08-29 12:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At157.job
[2010-08-29 12:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At133.job
[2010-08-29 12:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At109.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At480.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At479.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At478.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At477.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At476.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At475.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At474.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At468.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At467.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At466.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At465.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At464.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At463.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At462.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At461.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At460.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At459.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At458.job
[2010-08-29 11:22:28 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At457.job
[2010-08-29 11:06:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At12.job
[2010-08-29 11:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At84.job
[2010-08-29 11:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At60.job
[2010-08-29 11:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At444.job
[2010-08-29 11:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At420.job
[2010-08-29 11:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At396.job
[2010-08-29 11:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At372.job
[2010-08-29 11:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At36.job
[2010-08-29 11:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At324.job
[2010-08-29 11:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At300.job
[2010-08-29 11:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At276.job
[2010-08-29 11:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At228.job
[2010-08-29 11:05:01 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At204.job
[2010-08-29 11:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At348.job
[2010-08-29 11:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At252.job
[2010-08-29 11:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At180.job
[2010-08-29 11:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At156.job
[2010-08-29 11:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At132.job
[2010-08-29 11:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At108.job
[2010-08-29 10:06:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At11.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At83.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At59.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At443.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At419.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At395.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At371.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At35.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At347.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At323.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At299.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At275.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At251.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At227.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At203.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At179.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At155.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At131.job
[2010-08-29 10:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At107.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At456.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At455.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At454.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At453.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At452.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At451.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At450.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At442.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At441.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At440.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At439.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At438.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At437.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At436.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At435.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At434.job
[2010-08-29 09:21:53 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At433.job
[2010-08-29 09:06:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At10.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At82.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At58.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At418.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At394.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At370.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At346.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At34.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At322.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At298.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At274.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At250.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At226.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At202.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At178.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At154.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At130.job
[2010-08-29 09:05:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\At106.job
[2010-08-29 08:06:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\At9.job