Tech Support banner

Status
Not open for further replies.
1 - 20 of 30 Posts

·
Registered
Joined
·
28 Posts
Discussion Starter #1
My computer is infected with Adclicker fc and my dated version of McAfee can't get rid of it. I have done a scan with hijack this and here are the results

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:08:01 PM, on 11/23/2007
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\hidserv.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
C:\WINNT\system32\nvsvc32.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\Explorer.EXE
C:\WINNT\system32\RUNDLL32.EXE
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINNT\CTHELPER.EXE
C:\Program Files\McAfee.com\VSO\mcvsshld.exe
C:\Program Files\McAfee.com\VSO\oasclnt.exe
c:\program files\mcafee.com\agent\mcagent.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
C:\Program Files\SBC Self Support Tool\bin\mpbtn.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\SBHookSvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Java\jre1.6.0_01\bin\jucheck.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/sb/sbcydsl/*http://www.yahoo.com/search/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/sp/sbcydsl/*http://www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://softwarereferral.com/jump.php?wmid=6010&mid=MjI6Ojg5&lid=2
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/customize/ie/defaults/su/sbcydsl/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/sb/sbcydsl/*http://www.yahoo.com/search/ie.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/sp/sbcydsl/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/ie/defaults/su/sbcydsl/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\Common\yiesrvc.dll
O2 - BHO: EWPBrowseObject Class - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: SidebarAutoLaunch Class - {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll
O3 - Toolbar: @msdxmLC.dll,[email protected],&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: The jokwmp - {459C681F-AA94-49B7-A55B-110D924E5FCE} - C:\DOCUME~1\Admin\LOCALS~1\Temp\ac8zt2\jokwmp.dll (file missing)
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [YBrowser] C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [DXM6Patch_981116] C:\WINNT\p_981116.exe /Q:A
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [AdwareAlert] C:\Program Files\AdwareAlert\AdwareAlert.exe -boot
O4 - .DEFAULT Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe (User 'Default user')
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: SBC Self Support Tool.lnk = C:\Program Files\SBC Self Support Tool\bin\matcli.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: AT&T Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photo.walgreens.com/WalgreensActivia.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1144619130944
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/shared/mcgdmgr/1,0,0,26/mcgdmgr.cab
O16 - DPF: {C02226EB-A5D7-4B1F-BD7E-635E46C2288D} (Toontown Installer ActiveX Control) - http://a.download.toontown.com/sv1.0.20.19/ttinst.cab
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.113.125 85.255.112.92
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.113.125 85.255.112.92
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.113.125 85.255.112.92
O21 - SSODL: rmvgor - {D1A9E0F5-B12A-4907-94EE-95D3D6296D0F} - C:\WINNT\rmvgor.dll
O21 - SSODL: sapnet - {1B1886E7-61AF-403E-8554-0FB6801745D4} - C:\WINNT\sapnet.dll
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe
O23 - Service: SBHookSvc - Motive Communications, Inc. - C:\PROGRA~1\SBCSEL~1\SMARTB~1\SBHookSvc.exe
O24 - Desktop Component 0: Privacy Protection - file:///C:\WINNT\privacy_danger\index.htm

--
End of file - 10160 bytes
Your help will be deeply appreciated.

Helmut
 

·
TSF Emeritus
Joined
·
15,079 Posts
Hello and welcome to TSF :wave:.

I am currently reviewing your log. Please note that this is under the supervision of an expert analyst, and I will be back with a fix for your problem as soon as possible.

You may wish to subscribe to this thread to get immediate notification of replies as soon as they are posted. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant Notification, then click Subscribe.



Please be patient with me during this time.

----------------------------

Download Deckard's System Scanner (DSS) to your Desktop. Note: You must be logged onto an account with administrator privileges.
  1. Close all applications and windows.
  2. Double-click on dss.exe to run it, and follow the prompts.
  3. When the scan is complete, two text files will open - main.txt <- this one will be maximized and extra.txt <-this one will be minimized
  4. Copy (Ctrl+A then Ctrl+C) and paste (Ctrl+V) the contents of main.txt here.
  5. Please attach extra.txt to your post.
To attach a file to a new post, simply
  1. Click the[Manage Attachments] button under Additional Options > Attach Files on the post composition page, and
  2. copy and paste the following into the "Upload File from your Computer" box:
    C:\Deckard\System Scanner\extra.txt
  3. Click Upload.
What DSS will do:
  • create a new System Restore point in Windows XP and Vista.
  • clean your Temporary Files, Downloaded Program Files, and Internet Cache Files, and also empty the Recycle Bin on all drives.
  • check some important areas of your system and produce a report for your analyst to review. DSS automatically runs HijackThis for you, but it will also install and place a shortcut to HijackThis on your desktop if you do not already have HijackThis installed.
 

·
Registered
Joined
·
28 Posts
Discussion Starter #3
Thanks for working on this. I started the 5 steps before your reply so I hope that was ok. Here are the results from the Deckard scan.


and in Deckard's System Scanner v20071014.68
Run by Admin on 2007-11-24 07:05:46
Computer is in Normal Mode.
--------------------------------------------------------------------------------

Backed up registry hives.
Performed disk cleanup.



-- HijackThis (run as Admin.exe) -----------------------------------------------

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:09:49 AM, on 11/24/2007
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\hidserv.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
C:\WINNT\system32\nvsvc32.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\RUNDLL32.EXE
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINNT\CTHELPER.EXE
C:\Program Files\McAfee.com\VSO\mcvsshld.exe
C:\Program Files\McAfee.com\VSO\oasclnt.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
C:\Program Files\SBC Self Support Tool\bin\mpbtn.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\SBHookSvc.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn0\YTBSDK.exe
C:\Program Files\Java\jre1.6.0_01\bin\jucheck.exe
C:\WINNT\explorer.exe
C:\Documents and Settings\Admin\Local Settings\Temporary Internet Files\Content.IE5\CTI3WL2Z\dss[1].exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\Admin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/sb/sbcydsl/*http://www.yahoo.com/search/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/sp/sbcydsl/*http://www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://softwarereferral.com/jump.php?wmid=6010&mid=MjI6Ojg5&lid=2
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/customize/ie/defaults/su/sbcydsl/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/sb/sbcydsl/*http://www.yahoo.com/search/ie.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/sp/sbcydsl/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/ie/defaults/su/sbcydsl/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\Common\yiesrvc.dll
O2 - BHO: EWPBrowseObject Class - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: SidebarAutoLaunch Class - {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll
O3 - Toolbar: @msdxmLC.dll,[email protected],&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: The jokwmp - {459C681F-AA94-49B7-A55B-110D924E5FCE} - C:\DOCUME~1\Admin\LOCALS~1\Temp\ac8zt2\jokwmp.dll (file missing)
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [YBrowser] C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [DXM6Patch_981116] C:\WINNT\p_981116.exe /Q:A
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - .DEFAULT Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe (User 'Default user')
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: SBC Self Support Tool.lnk = C:\Program Files\SBC Self Support Tool\bin\matcli.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: AT&T Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photo.walgreens.com/WalgreensActivia.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1144619130944
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/shared/mcgdmgr/1,0,0,26/mcgdmgr.cab
O16 - DPF: {C02226EB-A5D7-4B1F-BD7E-635E46C2288D} (Toontown Installer ActiveX Control) - http://a.download.toontown.com/sv1.0.20.19/ttinst.cab
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.113.125 85.255.112.92
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.113.125 85.255.112.92
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.113.125 85.255.112.92
O21 - SSODL: rmvgor - {D1A9E0F5-B12A-4907-94EE-95D3D6296D0F} - C:\WINNT\rmvgor.dll
O21 - SSODL: sapnet - {1B1886E7-61AF-403E-8554-0FB6801745D4} - C:\WINNT\sapnet.dll
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe
O23 - Service: SBHookSvc - Motive Communications, Inc. - C:\PROGRA~1\SBCSEL~1\SMARTB~1\SBHookSvc.exe
O24 - Desktop Component 0: Privacy Protection - file:///C:\WINNT\privacy_danger\index.htm

--
End of file - 10358 bytes

-- File Associations -----------------------------------------------------------

All associations okay.


-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

R1 MPFIREWL - c:\winnt\system32\drivers\mpfirewall.sys <Not Verified; McAfee; McAfee Personal Firewall>
R2 MCSTRM - c:\winnt\system32\drivers\mcstrm.sys <Not Verified; RealNetworks, Inc.; RealNetworks Virtual Path Manager® (32-bit)>
R3 emupia (E-mu Plug-in Architecture Driver) - c:\winnt\system32\drivers\emupia2k.sys <Not Verified; Creative Technology Ltd; E-mu Plug-In Architecture>
R3 NaiAvFilter1 - c:\winnt\system32\drivers\naiavf5x.sys <Not Verified; McAfee Inc.; VirusScan>

S3 hap17v2k (Creative P17V HAL Driver) - c:\winnt\system32\drivers\hap17v2k.sys <Not Verified; Creative Technology Ltd; Creative Audio Product>


-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

R3 SBHookSvc - c:\progra~1\sbcsel~1\smartb~1\sbhooksvc.exe <Not Verified; Motive Communications, Inc.; Motive System>


-- Device Manager: Disabled ----------------------------------------------------

No disabled devices found.


-- Scheduled Tasks -------------------------------------------------------------

2007-11-24 03:00:03 520 --a------ C:\WINNT\Tasks\AntiSpywareBot Scheduled Scan.job
2007-11-24 03:00:01 496 --a------ C:\WINNT\Tasks\AdwareAlert Scheduled Scan.job
2007-11-23 15:54:07 264 --a------ C:\WINNT\Tasks\Utility Manager.job
2007-11-19 19:54:03 284 --a------ C:\WINNT\Tasks\AppleSoftwareUpdate.job


-- Files created between 2007-10-24 and 2007-11-24 -----------------------------

2007-11-24 06:44:19 0 d-------- C:\ie-spyad_zo
2007-11-24 06:33:03 118784 --a------ C:\WINNT\system32\MSSTDFMT.DLL <Not Verified; Microsoft Corporation; MSSTDFMT Object Library>
2007-11-24 06:33:02 0 d-------- C:\Program Files\SpywareBlaster
2007-11-23 23:11:17 16384 --a-----t C:\WINNT\system32\Perflib_Perfdata_5f0.dat
2007-11-23 22:33:19 0 d-------- C:\WINNT\system32\ActiveScan
2007-11-23 22:07:18 0 d-------- C:\Program Files\Trend Micro
2007-11-23 21:50:01 0 d-------- C:\Documents and Settings\Admin\Application Data\AdwareAlert
2007-11-23 21:35:51 0 d-------- C:\Documents and Settings\Admin\Application Data\AntiSpywareBot
2007-11-21 18:07:33 0 d-------- C:\WINNT\privacy_danger
2007-11-21 09:28:39 16384 --a-----t C:\WINNT\system32\Perflib_Perfdata_604.dat
2007-11-20 20:01:01 348160 --a------ C:\WINNT\sapnet.dll
2007-11-20 20:01:01 278528 --a------ C:\WINNT\rmvgor.dll <Not Verified; ; rmvgor>
2007-11-20 20:01:01 151552 --a------ C:\WINNT\nethop.exe
2007-11-20 19:43:27 0 d-a------ C:\WINNT\system32\appmgmt
2007-11-19 19:38:01 0 d-------- C:\Program Files\RichVideoCodec
2007-11-08 16:43:41 16 --a------ C:\s16k
2007-10-30 18:28:51 16 --a------ C:\s20c


-- Find3M Report ---------------------------------------------------------------

2007-11-24 02:29:33 0 d-------- C:\Program Files\QuickTime
2007-11-24 01:58:41 0 d-------- C:\Program Files\iTunes
2007-11-23 23:11:06 0 d-------- C:\Documents and Settings\Admin\Application Data\OpenOffice.org2
2007-11-20 19:43:27 0 d-------- C:\Program Files\Real
2007-10-19 16:22:53 16 --a------ C:\s170
2007-10-17 15:39:26 16 --a------ C:\s1qk
2007-10-11 16:12:21 16 --a------ C:\s1dc
2007-10-09 21:07:18 16 --a------ C:\s19g
2007-10-08 15:58:07 16 --a------ C:\s21c
2007-10-03 14:45:22 16 --a------ C:\suk
2007-10-03 05:30:26 0 d-------- C:\Program Files\Apple Software Update
2007-10-03 05:29:12 0 d-------- C:\Program Files\iPod
2007-09-18 12:31:49 16 --a------ C:\s184
2007-09-13 15:24:46 16 --a------ C:\s1jk
2007-08-30 15:18:23 16 --a------ C:\s1u0


-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Synchronization Manager"="mobsync.exe" [06/19/03 11:05a C:\WINNT\system32\mobsync.exe]
"NvCplDaemon"="C:\WINNT\system32\NvCpl.dll" [10/29/04 03:50p]
"nwiz"="nwiz.exe" [10/29/04 03:50p C:\WINNT\system32\nwiz.exe]
"NvMediaCenter"="C:\WINNT\system32\NvMcTray.dll" [10/29/04 03:50p]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" [06/06/05 10:46p]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe" [03/14/07 02:43a]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [04/16/06 04:57p]
"CTHelper"="CTHELPER.EXE" [12/08/05 11:06a C:\WINNT\CTHELPER.EXE]
"VSOCheckTask"="C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" [07/08/05 05:18p]
"VirusScan Online"="C:\Program Files\McAfee.com\VSO\mcvsshld.exe" [08/10/05 11:49a]
"OASClnt"="C:\Program Files\McAfee.com\VSO\oasclnt.exe" [08/11/05 09:02p]
"MCAgentExe"="c:\PROGRA~1\mcafee.com\agent\mcagent.exe" [09/22/05 05:29p]
"MCUpdateExe"="c:\PROGRA~1\mcafee.com\agent\mcupdate.exe" [01/11/06 11:05a]
"MPFExe"="C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe" [11/11/05 04:00p]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [04/27/07 08:41a]
"YBrowser"="C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe" [07/21/06 03:19p]
"Motive SmartBridge"="C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe" [08/24/05 06:51a]
"DXM6Patch_981116"="C:\WINNT\p_981116.exe" [11/30/98 05:04p]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [07/27/07 07:14p]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Yahoo! Pager"="C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.exe" [03/01/07 05:11p]

C:\Documents and Settings\Admin\Start Menu\Programs\Startup\
OpenOffice.org 2.0.lnk - C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe [1/25/2006 6:42:22 PM]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [9/23/2005 10:05:26 PM]
SBC Self Support Tool.lnk - C:\Program Files\SBC Self Support Tool\bin\matcli.exe [6/23/2007 2:00:25 PM]

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
Source= file:///C:\WINNT\privacy_danger\index.htm
FriendlyName= Privacy Protection

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"rmvgor"= {D1A9E0F5-B12A-4907-94EE-95D3D6296D0F} - C:\WINNT\rmvgor.dll [11/20/07 12:41p 278528]
"sapnet"= {1B1886E7-61AF-403E-8554-0FB6801745D4} - C:\WINNT\sapnet.dll [11/20/07 12:41p 348160]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sglfb.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tga.sys]
@="Driver"




-- End of Deckard's System Scanner: finished at 2007-11-24 07:13:35 ------------

Deckard's System Scanner v20071014.68
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------

-- System Information ----------------------------------------------------------

Microsoft Windows 2000 Professional (build 2195) SP 4.0
Architecture: X86; Language: English

CPU 0: AMD Athlon(tm) XP 1800+
Percentage of Memory in Use: 66%
Physical Memory (total/avail): 511.49 MiB / 172.13 MiB
Pagefile Memory (total/avail): 1246.91 MiB / 886.99 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1962.26 MiB

A: is Removable (No Media)
C: is Fixed (NTFS) - 93.15 GiB total, 76.3 GiB free.
D: is CDROM (No Media)

\\.\PHYSICALDRIVE0 - ST3100011A - 93.16 GiB - 1 partition
\PARTITION0 (bootable) - Installable File System - 93.15 GiB - C:



-- Security Center -------------------------------------------------------------

AUOptions is scheduled to auto-install.


-- Environment Variables -------------------------------------------------------

ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\Admin\Application Data
CLASSPATH=.;C:\Program Files\Java\jre1.5.0_06\lib\ext\QTJava.zip
CommonProgramFiles=C:\Program Files\Common Files
COMPUTERNAME=FAMILY-CEVTYWCU
ComSpec=C:\WINNT\system32\cmd.exe
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\Admin
LOGONSERVER=\\FAMILY-CEVTYWCU
NUMBER_OF_PROCESSORS=1
OS=Windows_NT
Os2LibPath=C:\WINNT\system32\os2\dll;
Path=C:\Program Files\Internet Explorer;;C:\WINNT\system32;C:\WINNT;C:\WINNT\System32\Wbem;C:\Program Files\QuickTime\QTSystem\
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 6 Model 6 Stepping 2, AuthenticAMD
PROCESSOR_LEVEL=6
PROCESSOR_REVISION=0602
ProgramFiles=C:\Program Files
PROMPT=$P$G
QTJAVA=C:\Program Files\Java\jre1.5.0_06\lib\ext\QTJava.zip
SystemDrive=C:
SystemRoot=C:\WINNT
TEMP=C:\DOCUME~1\Admin\LOCALS~1\Temp
TMP=C:\DOCUME~1\Admin\LOCALS~1\Temp
USERDOMAIN=FAMILY-CEVTYWCU
USERNAME=Admin
USERPROFILE=C:\Documents and Settings\Admin
windir=C:\WINNT


-- User Profiles ---------------------------------------------------------------

luvabluzer
Admin (admin)
Administrator.FAMILY-CEVTYWCU (admin)


-- Add/Remove Programs ---------------------------------------------------------

--> C:\PROGRA~1\SBCSEL~1\CustomUninstall.exe SBC
--> C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
--> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7B9AE66C-2A8F-4FB2-85D7-416AFFAE8408}\setup.exe" -l0x9
Adobe Reader 7.0.9 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70900000002}
Adobe® Photoshop® Album Starter Edition 3.0 --> MsiExec.exe /I{4BDFD2CE-6329-42E4-9801-9B3D1F10D79B}
Apple Software Update --> MsiExec.exe /I{B74F042E-E1B9-4A5B-8D46-387BB172F0A4}
AT&T Self Support Tool --> C:\WINNT\Motive\SBC\MCCUninst.exe
AT&T Yahoo! Applications --> C:\PROGRA~1\Yahoo!\Common\uninstall.exe
Canon iP4200 --> C:\WINNT\system32\CNMCP78.exe "-PRINTERNAMECanon iP4200" "-HELPERDLLC:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINNT\Canon iP4200 Installer\Inst2\cnmis.dll" "-RCDLLcnmi0409.dll"
Canon PhotoRecord --> MsiExec.exe /X{BBBC2B89-E193-4348-A83C-C8DD8210A4AC}
Canon Setup Utility 2.0 --> "C:\Program Files\Canon\Canon Setup Utility 2.0\Maint.exe" /Uninstall C:\Program Files\Canon\Canon Setup Utility 2.0\uninst.ini
Canon Utilities Easy-PhotoPrint --> C:\Program Files\Canon\Easy-PhotoPrint\uninst.exe uninst.ini
Comcast Rhapsody --> C:\PROGRA~1\COMCAS~1\Unwise32.exe /A C:\PROGRA~1\COMCAS~1\install.log
Creative Audio Console --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7B9AE66C-2A8F-4FB2-85D7-416AFFAE8408}\setup.exe" -l0x9 /remove
Easy-WebPrint --> C:\WINNT\IsUninst.exe -f"C:\Program Files\Canon\Easy-WebPrint\Uninst.isu"
HijackThis 2.0.2 --> "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
HyperCD --> C:\WINNT\IsUninst.exe -fC:\HyperCD\Uninst.isu
iPod for Windows 2006-03-23 --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{2070F79D-46BC-4EEA-8F02-9B4DCABAE7CB} /l1033
iPod for Windows 2006-06-28 --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{BD57EA4D-026E-4F08-9B93-080E282B81FE} /l1033
iTunes --> MsiExec.exe /I{ABCE1C63-56ED-41FF-BEAF-57321F70DC49}
J2SE Runtime Environment 5.0 Update 1 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150010}
J2SE Runtime Environment 5.0 Update 6 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150060}
Java(TM) SE Runtime Environment 6 Update 1 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160010}
Macromedia Flash Player 8 --> C:\WINNT\System32\Macromed\Flash\UninstFl.exe
Macromedia Shockwave Player --> C:\WINNT\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINNT\system32\Macromed\SHOCKW~1\Install.log
McAfee Personal Firewall Plus --> c:\PROGRA~1\mcafee.com\shared\mcappins.exe /v=3 /uninstall=1 /appid=mpf /interact=1 /script_proactive=0 /start=c:\PROGRA~1\mcafee.com\agent\uninst\mpfrem.ui::uninstall.htm
McAfee SecurityCenter --> c:\PROGRA~1\mcafee.com\shared\mcappins.exe /v=3 /uninstall=1 /appid=msc /interact=1 /script_proactive=0 /start=c:\PROGRA~1\mcafee.com\agent\uninst\screm.ui::uninstall.htm
McAfee VirusScan --> c:\PROGRA~1\mcafee.com\shared\mcappins.exe /v=3 /uninstall=1 /appid=vso /interact=1 /script_proactive=0 /start=c:\PROGRA~1\mcafee.com\agent\uninst\vsoremui.dll::uninstall.htm
MovieCommander --> "C:\Program Files\MovieCommander\Uninstall.exe"
Mozilla Firefox (2.0.0.9) --> C:\Program Files\Mozilla Firefox\uninstall\helper.exe
OpenOffice.org 2.0 --> MsiExec.exe /I{686BB230-DE5B-44F4-8DB0-4F9BEE7310F7}
Panda ActiveScan --> C:\WINNT\system32\ASUninst.exe Panda ActiveScan
QuickTime --> MsiExec.exe /I{08094E03-AFE4-4853-9D31-6D0743DF5328}
RealPlayer --> C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Security Update for Windows 2000 (KB923689) --> "C:\WINNT\$NtUninstallKB923689$\spuninst\spuninst.exe"
SpywareBlaster v3.5.1 --> "C:\Program Files\SpywareBlaster\unins000.exe"
WebVideo Support --> C:\WINNT\nethop.exe
Windows Media Player system update (9 Series) --> C:\PROGRA~1\WINDOW~2\setup_wm.exe /Uninstall
WinFast(R) Display Driver --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F69FD33C-8815-46BF-9134-A643DE68F3C0}\setup.exe" -l0x9 -removeonly


-- Application Event Log -------------------------------------------------------

Event Record #/Type2256 / Error
Event Submitted/Written: 11/23/2007 09:50:35 PM
Event ID/Source: 27 / WinMgmt
Event Description:
WinMgmt could not open the repository file. This could be due to insufficient security access to the "<%SystemRoot%>\System32\WBEM\Repository", insufficient disk space or insufficient memory.

Event Record #/Type2255 / Warning
Event Submitted/Written: 11/23/2007 09:50:34 PM
Event ID/Source: 29 / WinMgmt
Event Description:
The repository file was not the size we expected it to be. This could have been because WinMgmt crashed, the system crashed, or you did not shut your machine down cleanly. We had to delete the repository and create a new one.

Event Record #/Type2254 / Error
Event Submitted/Written: 11/23/2007 09:50:08 PM
Event ID/Source: 27 / WinMgmt
Event Description:
WinMgmt could not open the repository file. This could be due to insufficient security access to the "<%SystemRoot%>\System32\WBEM\Repository", insufficient disk space or insufficient memory.

Event Record #/Type2253 / Warning
Event Submitted/Written: 11/23/2007 09:50:08 PM
Event ID/Source: 29 / WinMgmt
Event Description:
The repository file was not the size we expected it to be. This could have been because WinMgmt crashed, the system crashed, or you did not shut your machine down cleanly. We had to delete the repository and create a new one.

Event Record #/Type2166 / Error
Event Submitted/Written: 11/06/2007 10:14:28 PM
Event ID/Source: 1000 / Microsoft Internet Explorer
Event Description:
iexplore.exe6.0.2800.1106unknown0.0.0.061eb77e0



-- Security Event Log ----------------------------------------------------------

No Errors/Warnings found.


-- System Event Log ------------------------------------------------------------

Event Record #/Type6042 / Error
Event Submitted/Written: 11/24/2007 02:18:20 AM / 11/24/2007 02:18:21 AM
Event ID/Source: 11 / Disk
Event Description:
The driver detected a controller error on \Device\Harddisk0\DR0.

Event Record #/Type6041 / Error
Event Submitted/Written: 11/24/2007 02:18:20 AM
Event ID/Source: 5 / atapi
Event Description:
A parity error was detected on \Device\Ide\IdePort1.

Event Record #/Type6040 / Error
Event Submitted/Written: 11/24/2007 01:45:50 AM
Event ID/Source: 11 / Disk
Event Description:
The driver detected a controller error on \Device\Harddisk0\DR0.

Event Record #/Type6039 / Error
Event Submitted/Written: 11/24/2007 01:45:13 AM
Event ID/Source: 11 / Disk
Event Description:
The driver detected a controller error on \Device\Harddisk0\DR0.

Event Record #/Type6034 / Error
Event Submitted/Written: 11/24/2007 01:21:28 AM
Event ID/Source: 11 / Disk
Event Description:
The driver detected a controller error on \Device\Harddisk0\DR0.



-- End of Deckard's System Scanner: finished at 2007-11-24 07:13:35 ------------
 

·
Registered
Joined
·
28 Posts
Discussion Starter #4
I was not able to complete step 3 with the spyad program. I was able to download it but could not find an icon on the desk top to double click.

Helmut
 

·
TSF Emeritus
Joined
·
15,079 Posts
Hello again :wavey:

Please read these instructions very carefully, and follow them in the exact order I have listed. If you don’t understand any part of the fix please ask before proceeding.

You may want to print out these instructions, or copy them into Notepad.

Please note: Just because you have lack of symptoms it doesn’t mean the problem is gone. Please stay with me until I declare your log’s clean. Thank you.

=====================

Downloads

Please do not run any of these tools/programs yet. We will shortly.

----------------------------

Click Here or Here to download Fixwareout.exe

**Save it to your desktop**


----------------------------

Download SDFix and save it to your Desktop.

=====================

Run FixWareout

  • Please run FixWareout.exe.
  • Click Next, then Install, make sure "Run fixit" is checked and click Finish.
  • The fix will begin; follow the prompts.
  • You will be asked to reboot your computer; please do so.
  • Your system may take longer than usual to load; this is normal.
  • Once the desktop loads post the text that will open (report.txt) in the forum please.
=====================

Run SDFix

Double click SDFix.exe and it will extract the files to %systemdrive%
(Drive that contains the Windows Directory, typically C:SDFix)

Please then reboot your computer in Safe Mode by doing the following :
  • Restart your computer
  • After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
  • Instead of Windows loading as normal, the Advanced Options Menu should appear;
  • Select the first option, to run Windows in Safe Mode, then press Enter.
  • Choose your usual account.
  • Open the extracted SDFix folder and double click RunThis.bat to start the script.
  • Type Y to begin the cleanup process.
  • It will remove any Trojan Services and Registry Entries that it finds then prompt you to press any key to Reboot.
  • Press any Key and it will restart the PC.
  • When the PC restarts the Fixtool will run again and complete the removal process then display Finished, press any key to end the script and load your desktop icons.
  • Once the desktop icons load the SDFix report will open on screen and also save into the SDFix folder as Report.txt
    (Report.txt will also be copied to Clipboard ready for posting back on the forum).
  • Finally paste the contents of the Report.txt back on the forum.
=====================

Please run DSS again and post Main.txt back into this thread.

=====================

Required Logs

In your next reply please include:
  • report.txt <-- Log from Fixwareout
  • Main.txt <-- Log from DSS
  • Report.txt <-- Log from SDfix
 

·
Registered
Joined
·
28 Posts
Discussion Starter #6
Hi GTP:wave:

The computer will not run in safe mode! I tried clicking the F8 key continually during boot up and also when the click F8 screen flashes during the boot up. Is there another way?
Here is the report from Fixwareout

Username "Admin" - 11/25/2007 7:31:05 [Fixwareout edited 9/01/2007]

~~~~~ Prerun check

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters
"nameserver"="85.255.113.125 85.255.112.92" <Value cleared.

Successfully flushed the DNS Resolver Cache.


System was rebooted successfully.

~~~~~ Postrun check
HKLM\SOFTWARE\~\Winlogon\ "System"=""
....
....
~~~~~ Misc files.
....
~~~~~ Checking for older varients.
....


C:\Program Files\MovieCommander < Found
Additional tools are recommended.

~~~~~ Current runs (hklm hkcu "run" Keys Only)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Synchronization Manager"="mobsync.exe /logon"
"NvCplDaemon"="RUNDLL32.EXE C:\\WINNT\\system32\\NvCpl.dll,NvStartup"
"nwiz"="nwiz.exe /install"
"NvMediaCenter"="RUNDLL32.EXE C:\\WINNT\\system32\\NvMcTray.dll,NvTaskbarInit"
"Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Starter Edition\\3.0\\Apps\\apdproxy.exe\""
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.6.0_03\\bin\\jusched.exe\""
"TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"CTHelper"="CTHELPER.EXE"
"VSOCheckTask"="\"C:\\PROGRA~1\\McAfee.com\\VSO\\mcmnhdlr.exe\" /checktask"
"VirusScan Online"="C:\\Program Files\\McAfee.com\\VSO\\mcvsshld.exe"
"OASClnt"="C:\\Program Files\\McAfee.com\\VSO\\oasclnt.exe"
"MCAgentExe"="c:\\PROGRA~1\\mcafee.com\\agent\\mcagent.exe"
"MCUpdateExe"="c:\\PROGRA~1\\mcafee.com\\agent\\mcupdate.exe"
"MPFExe"="C:\\PROGRA~1\\McAfee.com\\PERSON~1\\MpfTray.exe"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"YBrowser"="C:\\PROGRA~1\\Yahoo!\\browser\\ybrwicon.exe"
"Motive SmartBridge"="C:\\PROGRA~1\\SBCSEL~1\\SMARTB~1\\MotiveSB.exe"
"DXM6Patch_981116"="C:\\WINNT\\p_981116.exe /Q:A"
"iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Yahoo! Pager"="\"C:\\PROGRA~1\\Yahoo!\\MESSEN~1\\YAHOOM~1.EXE\" -quiet"
....
Hosts file was reset, If you use a custom hosts file please replace it...
~~~~~ End report ~~~~~

Thanks again.

Helmut:wavey:
 

·
Registered
Joined
·
28 Posts
Discussion Starter #7
Hello again,:wave:

I have another question on your last post. What is the DSS log?:question:
Also, what time is it in Austraila:wave:
 

·
Registered
Joined
·
28 Posts
Discussion Starter #8
FTP:wave:

I tried changing the keyboard hoping maybe that would allow me to start in Safe mode but it made no difference.:upset:
 

·
TSF Emeritus
Joined
·
15,079 Posts
Hello luvabluzer :wavey:

Restart your computer and try tapping F5 to see if you get the options for safe mode. If you don't can you please clarify what you mean by this:

and also when the click F8 screen flashes during the boot up
I have another question on your last post. What is the DSS log?
DSS.exe is a tool that is on your desktop. When ran it produces a log called Main.txt. The log can be found in
C:\Deckard\Sytem Scanner\*random # folder\main.txt.

If you still cant find the Main.txt please do a search for it.

The time is currently 6.13pm here in Aus :grin:
 

·
Registered
Joined
·
28 Posts
Discussion Starter #10
GtP:wave:

F5 doesn't work either.

I could have used another word other than flash. There are three DOS screens that appear during the boot-up process. The third one has the text about pressing F8 and it appears very briefly, maybe a second at the most. That is why I used the word flash.
Can we run SDfix in windows?
I'm off to work now. I'll send the Main.txt when I return.

Till then:peace!:
 

·
Registered
Joined
·
28 Posts
Discussion Starter #11
Hello FtP

Here is the DSS file:

Deckard's System Scanner v20071014.68
Run by Admin on 2007-11-26 17:04:37
Computer is in Normal Mode.
--------------------------------------------------------------------------------



-- HijackThis (run as Admin.exe) -----------------------------------------------

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:05:11 PM, on 11/26/2007
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\hidserv.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
C:\WINNT\system32\nvsvc32.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\Explorer.EXE
C:\WINNT\system32\RUNDLL32.EXE
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINNT\CTHELPER.EXE
C:\Program Files\McAfee.com\VSO\mcvsshld.exe
C:\Program Files\McAfee.com\VSO\oasclnt.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
C:\PROGRA~1\SBCSEL~1\SMARTB~1\SBHookSvc.exe
C:\Program Files\SBC Self Support Tool\bin\mpbtn.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Admin\Desktop\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\Admin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/sb/sbcydsl/*http://www.yahoo.com/search/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/sp/sbcydsl/*http://www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://softwarereferral.com/jump.php?wmid=6010&mid=MjI6Ojg5&lid=2
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/customize/ie/defaults/su/sbcydsl/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/sb/sbcydsl/*http://www.yahoo.com/search/ie.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/sp/sbcydsl/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/ie/defaults/su/sbcydsl/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\Common\yiesrvc.dll
O2 - BHO: EWPBrowseObject Class - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: SidebarAutoLaunch Class - {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll
O3 - Toolbar: @msdxmLC.dll,[email protected],&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: The jokwmp - {459C681F-AA94-49B7-A55B-110D924E5FCE} - C:\DOCUME~1\Admin\LOCALS~1\Temp\ac8zt2\jokwmp.dll (file missing)
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [YBrowser] C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [DXM6Patch_981116] C:\WINNT\p_981116.exe /Q:A
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - .DEFAULT Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe (User 'Default user')
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: SBC Self Support Tool.lnk = C:\Program Files\SBC Self Support Tool\bin\matcli.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: AT&T Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photo.walgreens.com/WalgreensActivia.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1144619130944
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/shared/mcgdmgr/1,0,0,26/mcgdmgr.cab
O16 - DPF: {C02226EB-A5D7-4B1F-BD7E-635E46C2288D} (Toontown Installer ActiveX Control) - http://a.download.toontown.com/sv1.0.20.19/ttinst.cab
O21 - SSODL: rmvgor - {D1A9E0F5-B12A-4907-94EE-95D3D6296D0F} - C:\WINNT\rmvgor.dll
O21 - SSODL: sapnet - {1B1886E7-61AF-403E-8554-0FB6801745D4} - C:\WINNT\sapnet.dll
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe
O23 - Service: SBHookSvc - Motive Communications, Inc. - C:\PROGRA~1\SBCSEL~1\SMARTB~1\SBHookSvc.exe
O24 - Desktop Component 0: Privacy Protection - file:///C:\WINNT\privacy_danger\index.htm

--
End of file - 9918 bytes

-- Files created between 2007-10-26 and 2007-11-26 -----------------------------

2007-11-24 06:44:19 0 d-------- C:\ie-spyad_zo
2007-11-24 06:33:03 118784 --a------ C:\WINNT\system32\MSSTDFMT.DLL <Not Verified; Microsoft Corporation; MSSTDFMT Object Library>
2007-11-24 06:33:02 0 d-------- C:\Program Files\SpywareBlaster
2007-11-23 22:33:19 0 d-------- C:\WINNT\system32\ActiveScan
2007-11-23 22:07:18 0 d-------- C:\Program Files\Trend Micro
2007-11-23 21:50:01 0 d-------- C:\Documents and Settings\Admin\Application Data\AdwareAlert
2007-11-23 21:35:51 0 d-------- C:\Documents and Settings\Admin\Application Data\AntiSpywareBot
2007-11-21 18:07:33 0 d-------- C:\WINNT\privacy_danger
2007-11-20 20:01:01 348160 --a------ C:\WINNT\sapnet.dll
2007-11-20 20:01:01 278528 --a------ C:\WINNT\rmvgor.dll <Not Verified; ; rmvgor>
2007-11-20 20:01:01 151552 --a------ C:\WINNT\nethop.exe
2007-11-20 19:43:27 0 d-a------ C:\WINNT\system32\appmgmt
2007-11-19 19:38:01 0 d-------- C:\Program Files\RichVideoCodec
2007-11-08 16:43:41 16 --a------ C:\s16k
2007-10-30 18:28:51 16 --a------ C:\s20c


-- Find3M Report ---------------------------------------------------------------

2007-11-26 16:53:42 0 d-------- C:\Documents and Settings\Admin\Application Data\OpenOffice.org2
2007-11-24 08:50:34 0 d-------- C:\Program Files\Java
2007-11-24 02:29:33 0 d-------- C:\Program Files\QuickTime
2007-11-24 01:58:41 0 d-------- C:\Program Files\iTunes
2007-11-20 19:43:27 0 d-------- C:\Program Files\Real
2007-10-19 16:22:53 16 --a------ C:\s170
2007-10-17 15:39:26 16 --a------ C:\s1qk
2007-10-11 16:12:21 16 --a------ C:\s1dc
2007-10-09 21:07:18 16 --a------ C:\s19g
2007-10-08 15:58:07 16 --a------ C:\s21c
2007-10-03 14:45:22 16 --a------ C:\suk
2007-10-03 05:30:26 0 d-------- C:\Program Files\Apple Software Update
2007-10-03 05:29:12 0 d-------- C:\Program Files\iPod
2007-09-18 12:31:49 16 --a------ C:\s184
2007-09-13 15:24:46 16 --a------ C:\s1jk
2007-08-30 15:18:23 16 --a------ C:\s1u0


-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Synchronization Manager"="mobsync.exe" [06/19/03 11:05a C:\WINNT\system32\mobsync.exe]
"NvCplDaemon"="C:\WINNT\system32\NvCpl.dll" [10/29/04 03:50p]
"nwiz"="nwiz.exe" [10/29/04 03:50p C:\WINNT\system32\nwiz.exe]
"NvMediaCenter"="C:\WINNT\system32\NvMcTray.dll" [10/29/04 03:50p]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" [06/06/05 10:46p]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [09/25/07 01:11a]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [04/16/06 04:57p]
"CTHelper"="CTHELPER.EXE" [12/08/05 11:06a C:\WINNT\CTHELPER.EXE]
"VSOCheckTask"="C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" [07/08/05 05:18p]
"VirusScan Online"="C:\Program Files\McAfee.com\VSO\mcvsshld.exe" [08/10/05 11:49a]
"OASClnt"="C:\Program Files\McAfee.com\VSO\oasclnt.exe" [08/11/05 09:02p]
"MCAgentExe"="c:\PROGRA~1\mcafee.com\agent\mcagent.exe" [09/22/05 05:29p]
"MCUpdateExe"="c:\PROGRA~1\mcafee.com\agent\mcupdate.exe" [01/11/06 11:05a]
"MPFExe"="C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe" [11/11/05 04:00p]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [04/27/07 08:41a]
"YBrowser"="C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe" [07/21/06 03:19p]
"Motive SmartBridge"="C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe" [08/24/05 06:51a]
"DXM6Patch_981116"="C:\WINNT\p_981116.exe" [11/30/98 05:04p]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [07/27/07 07:14p]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Yahoo! Pager"="C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.exe" [03/01/07 05:11p]

C:\Documents and Settings\Admin\Start Menu\Programs\Startup\
OpenOffice.org 2.0.lnk - C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe [1/25/2006 6:42:22 PM]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [9/23/2005 10:05:26 PM]
SBC Self Support Tool.lnk - C:\Program Files\SBC Self Support Tool\bin\matcli.exe [6/23/2007 2:00:25 PM]

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
Source= file:///C:\WINNT\privacy_danger\index.htm
FriendlyName= Privacy Protection

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"rmvgor"= {D1A9E0F5-B12A-4907-94EE-95D3D6296D0F} - C:\WINNT\rmvgor.dll [11/20/07 12:41p 278528]
"sapnet"= {1B1886E7-61AF-403E-8554-0FB6801745D4} - C:\WINNT\sapnet.dll [11/20/07 12:41p 348160]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sglfb.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tga.sys]
@="Driver"




-- End of Deckard's System Scanner: finished at 2007-11-26 17:08:09 ------------
 

·
TSF Emeritus
Joined
·
15,079 Posts
Hello again :wavey:

Restart your computer, and start tapping F8 on the second Flash, but before 3rd. Only tap F8 3 times.

Instead of Windows loading as normal, a menu should appear:
  • Use the up arrow key to highlight Safe Mode and press Enter.
  • Login with your usual account.
If you've reached Safe Mode, please continue with the instructions given in Post #5.
 

·
Registered
Joined
·
28 Posts
Discussion Starter #13
Hello FtP:wave:

Finally figured out how to get to safe mode.:grin:
I'm getting an error message when I try to post saying the post has too many characters so I will split the report into two posts

Here is the report.txt


SDFix: Version 1.115

Run by Admin on Tue 11/27/2007 at 9:19p

Microsoft Windows 2000 [Version 5.00.2195]

Running From: C:\SDFix

Safe Mode:
Checking Services:


Restoring Windows Registry Values
Restoring Windows Default Hosts File
Restoring Default HomePage Value
Restoring Default Desktop Components Value

Rebooting...


Normal Mode:
Checking Files:

Trojan Files Found:

C:\Documents and Settings\Admin\Desktop\Error Cleaner.url - Deleted
C:\Documents and Settings\Admin\Favorites\Error Cleaner.url - Deleted
C:\Documents and Settings\Admin\Desktop\Privacy Protector.url - Deleted
C:\Documents and Settings\Admin\Favorites\Privacy Protector.url - Deleted
C:\Documents and Settings\Admin\Desktop\Spyware&Malware Protection.url - Deleted
C:\Documents and Settings\Admin\Favorites\Spyware&Malware Protection.url - Deleted
C:\WINNT\privacy_danger\index.htm - Deleted
C:\WINNT\privacy_danger\images\capt.gif - Deleted
C:\WINNT\privacy_danger\images\danger.jpg - Deleted
C:\WINNT\privacy_danger\images\down.gif - Deleted
C:\WINNT\privacy_danger\images\spacer.gif - Deleted
C:\WINNT\dat.txt - Deleted
C:\WINNT\nethop.exe - Deleted
C:\WINNT\rmvgor.dll - Deleted
C:\WINNT\rs.txt - Deleted
C:\WINNT\sapnet.dll - Deleted



Folder C:\Program Files\RichVideoCodec - Removed
Folder C:\WINNT\privacy_danger - Removed

Removing Temp Files...

ADS Check:

C:\WINNT
No streams found.

C:\WINNT\system32
No streams found.

C:\WINNT\system32\svchost.exe
No streams found.

C:\WINNT\system32\ntoskrnl.exe
No streams found.



Final Check:

catchme 0.3.1262.1 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-11-27 21:29:23
Windows 5.0.2195 Service Pack 4 NTFS

scanning hidden processes ...

scanning hidden services & system hive ...

scanning hidden registry entries ...

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0


Remaining Services:
------------------



Remaining Files:
---------------

File Backups: - C:\SDFix\backups\backups.zip

Files with Hidden Attributes:

Wed 7 Jun 2006 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Mon 4 Oct 2004 417,792 A..H. --- "C:\Program Files\Canon\Canon Setup Utility 2.0\Maint.exe"
Tue 11 May 2004 61,440 A..H. --- "C:\Program Files\Canon\Canon Setup Utility 2.0\uinstrsc.dll"
Wed 7 Jun 2006 4,348 ...H. --- "C:\admin backup\My Documents\My Music\License Backup\drmv1key.bak"
Fri 28 Jul 2006 20 A..H. --- "C:\admin backup\My Documents\My Music\License Backup\drmv1lic.bak"
Tue 6 Jun 2006 312 ...H. --- "C:\admin backup\My Documents\My Music\License Backup\drmv2key.bak"
Fri 28 Jul 2006 1,536 A..H. --- "C:\admin backup\My Documents\My Music\License Backup\drmv2lic.bak"
Tue 27 Nov 2007 0 A..H. --- "C:\Documents and Settings\Admin\Local Settings\Temp\BIT3D1.tmp"
Tue 27 Nov 2007 388,090 A..H. --- "C:\Documents and Settings\Admin\Local Settings\Temp\BIT3D2.tmp"
Tue 27 Nov 2007 0 A..H. --- "C:\Documents and Settings\Admin\Local Settings\Temp\BIT3D3.tmp"
Tue 27 Nov 2007 0 A..H. --- "C:\Documents and Settings\Admin\Local Settings\Temp\BIT3D4.tmp"
Tue 27 Nov 2007 0 A..H. --- "C:\Documents and Settings\Admin\Local Settings\Temp\BIT3D5.tmp"
Wed 7 Jun 2006 4,348 ...H. --- "C:\Documents and Settings\Admin\My Documents\My Music\License Backup\drmv1key.bak"
Wed 2 May 2007 20 A..H. --- "C:\Documents and Settings\Admin\My Documents\My Music\License Backup\drmv1lic.bak"
Tue 6 Jun 2006 312 ...H. --- "C:\Documents and Settings\Admin\My Documents\My Music\License Backup\drmv2key.bak"
Wed 2 May 2007 1,536 A..H. --- "C:\Documents and Settings\Admin\My Documents\My Music\License Backup\drmv2lic.bak"
Wed 8 Aug 2007 85,946 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT10.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT100.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT101.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT102.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT103.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT104.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT105.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT106.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT107.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT108.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT109.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT10A.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT10B.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT10C.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT10D.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT10E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT10F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT11.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT110.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT111.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT112.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT113.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT114.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT115.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT116.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT117.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT118.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT119.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT11A.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT11B.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT11C.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT11D.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT11E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT11F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT12.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT120.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT121.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT122.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT123.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT124.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT125.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT126.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT127.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT128.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT129.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT12A.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT12B.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT12C.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT12D.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT12E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT12F.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT13.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT130.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT131.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT132.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT133.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT134.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT135.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT136.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT137.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT138.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT139.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT13A.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT13B.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT13C.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT13D.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT13E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT13F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT14.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT140.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT141.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT142.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT143.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT144.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT145.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT146.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT147.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT148.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT149.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT14A.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT14B.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT14C.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT14D.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT14E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT14F.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT15.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT150.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT151.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT152.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT153.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT154.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT155.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT156.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT157.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT158.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT159.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT15A.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT15B.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT15C.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT15D.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT15E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT15F.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT16.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT160.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT161.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT162.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT163.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT164.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT165.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT166.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT167.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT168.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT169.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT16A.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT16B.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT16C.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT16D.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT16E.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT16F.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT17.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT170.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT171.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT172.tmp"
Wed 21 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT173.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT174.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT175.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT176.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT177.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT178.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT179.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT17A.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT17B.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT17C.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT17D.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT17E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT17F.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT18.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT180.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT181.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT182.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT183.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT184.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT185.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT186.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT187.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT188.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT189.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT18A.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT18B.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT18C.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT18D.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT18E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT18F.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT19.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT190.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT191.tmp"
Wed 21 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT192.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT193.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT194.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT195.tmp"
Wed 21 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT196.tmp"
Wed 21 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT197.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT198.tmp"
Wed 21 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT199.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT19A.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT19B.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT19C.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT19D.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT19E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT19F.tmp"
Wed 21 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1A.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1A0.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1A1.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1A2.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1A3.tmp"
Wed 21 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1A4.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1A5.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1A6.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1A7.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1A8.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1A9.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1AA.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1AB.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1AC.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1AD.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1AE.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1AF.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1B.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1B0.tmp"
Wed 21 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1B1.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1B2.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1B3.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1B4.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1B5.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1B6.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1B7.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1B8.tmp"
Wed 21 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1B9.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1BA.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1BB.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1BC.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1BD.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1BE.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1BF.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1C.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1C0.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1C1.tmp"
Sat 13 Oct 2007 333,540 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1C2.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1C3.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1C4.tmp"
Wed 21 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1C5.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1C6.tmp"
Wed 21 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1C7.tmp"
Wed 21 Nov 2007 341,918 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1C8.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1C9.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1CA.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1CB.tmp"
Sat 13 Oct 2007 333,540 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1CC.tmp"
Fri 23 Nov 2007 339,187 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1CD.tmp"
Sat 13 Oct 2007 333,540 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1CE.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1CF.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1D.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1D0.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1D1.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1D2.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1D3.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1D4.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1D5.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1D6.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1D7.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1D8.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1D9.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1DA.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1DB.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1DC.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1DD.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1DE.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1DF.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1E0.tmp"
Wed 21 Nov 2007 341,918 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1E1.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1E2.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1E3.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1E4.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1E5.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1E6.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1E7.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1E8.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1E9.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1EA.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1EB.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1EC.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1ED.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1EE.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1EF.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1F.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1F0.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1F1.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1F2.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1F3.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1F4.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1F5.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1F6.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1F7.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1F8.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1F9.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1FA.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1FB.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1FC.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1FD.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1FE.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT1FF.tmp"
Wed 8 Aug 2007 85,946 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT20.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT200.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT201.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT202.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT203.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT204.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT205.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT206.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT207.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT208.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT209.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT20A.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT20B.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT20C.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT20D.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT20E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT20F.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT21.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT210.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT211.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT212.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT213.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT214.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT215.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT216.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT217.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT218.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT219.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT21A.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT21B.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT21C.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT21D.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT21E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT21F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT22.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT220.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT221.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT222.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT223.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT224.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT225.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT226.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT227.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT228.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT229.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT22A.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT22B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT22C.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT22D.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT22E.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT22F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT23.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT230.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT231.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT232.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT233.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT234.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT235.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT236.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT237.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT238.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT239.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT23A.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT23B.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT23C.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT23D.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT23E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT23F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT24.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT240.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT241.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT242.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT243.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT244.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT245.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT246.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT247.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT248.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT249.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT24A.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT24B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT24C.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT24D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT24E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT24F.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT25.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT250.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT252.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT253.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT254.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT255.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT256.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT257.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT258.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT259.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT25A.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT25B.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT25C.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT25D.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT25E.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT25F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT26.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT260.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT261.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT262.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT263.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT264.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT265.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT266.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT267.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT268.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT269.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT26A.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT26B.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT26C.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT26D.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT26E.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT26F.tmp"
Sat 13 Oct 2007 336,252 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT27.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT271.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT272.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT273.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT274.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT275.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT276.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT277.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT278.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT279.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT27A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT27B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT27C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT27D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT27E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT27F.tmp"
Sat 13 Oct 2007 331,849 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT28.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT280.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT281.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT282.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT283.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT284.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT285.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT286.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT287.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT288.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT289.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT28A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT28B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT28C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT28D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT28E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT28F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT29.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT290.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT291.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT292.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT293.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT294.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT295.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT296.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT297.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT298.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT299.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT29A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT29B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT29C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT29D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT29E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT29F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2A0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2A1.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2A2.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2A3.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2A4.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2A5.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2A6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2A7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2A8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2A9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2AA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2AB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2AC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2AD.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2AE.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2AF.tmp"
Sat 13 Oct 2007 334,758 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2B0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2B1.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2B2.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2B3.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2B4.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2B5.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2B6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2B7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2B8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2B9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2BA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2BB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2BC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2BD.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2BE.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2BF.tmp"
Sat 13 Oct 2007 331,849 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2C0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2C1.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2C2.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2C3.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2C4.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2C5.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2C6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2C7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2C8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System
 

·
Registered
Joined
·
28 Posts
Discussion Starter #14
Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2C9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2CA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2CB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2CC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2CD.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2CE.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2CF.tmp"
Sat 13 Oct 2007 334,758 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2D0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2D1.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2D2.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2D3.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2D4.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2D5.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2D6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2D7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2D8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2D9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2DA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2DB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2DC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2DD.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2DE.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2DF.tmp"
Sat 13 Oct 2007 308,552 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2E0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2E1.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2E2.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2E3.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2E4.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2E5.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2E6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2E7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2E8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2E9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2EA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2EB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2EC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2ED.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2EE.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2EF.tmp"
Sat 13 Oct 2007 334,758 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2F0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2F1.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2F2.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2F3.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2F4.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2F5.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2F6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2F7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2F8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2F9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2FA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2FB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2FC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2FD.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2FE.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT2FF.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3.tmp"
Sat 13 Oct 2007 308,552 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT30.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT300.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT301.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT302.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT303.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT304.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT305.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT306.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT307.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT308.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT30B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT30C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT30D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT30E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT30F.tmp"
Sat 13 Oct 2007 332,281 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT31.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT310.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT311.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT312.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT313.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT314.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT315.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT316.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT317.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT318.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT319.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT31A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT31B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT31C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT31D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT31E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT31F.tmp"
Sat 13 Oct 2007 308,552 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT32.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT320.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT321.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT322.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT323.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT324.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT325.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT326.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT327.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT328.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT329.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT32A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT32B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT32C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT32D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT32E.tmp"
Sat 13 Oct 2007 334,758 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT33.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT330.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT331.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT332.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT333.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT334.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT335.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT336.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT337.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT338.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT339.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT33A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT33B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT33C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT33D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT33E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT33F.tmp"
Sat 13 Oct 2007 308,552 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT34.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT340.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT341.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT342.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT343.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT344.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT345.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT346.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT347.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT348.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT349.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT34A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT34B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT34C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT34D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT34E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT34F.tmp"
Sat 13 Oct 2007 333,605 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT35.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT350.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT351.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT352.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT353.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT354.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT355.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT356.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT357.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT358.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT359.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT35A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT35B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT35C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT35D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT35E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT35F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT36.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT360.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT361.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT362.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT363.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT364.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT365.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT366.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT367.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT368.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT369.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT36A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT36B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT36C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT36D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT36E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT36F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT37.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT370.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT371.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT372.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT373.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT374.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT375.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT376.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT377.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT378.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT379.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT37A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT37B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT37C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT37D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT37E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT37F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT38.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT380.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT381.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT382.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT383.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT384.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT385.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT386.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT387.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT388.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT389.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT38A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT38B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT38C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT38D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT38E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT38F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT39.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT390.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT391.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT392.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT393.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT394.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT395.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT396.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT397.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT398.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT399.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT39A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT39B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT39C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT39D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT39E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT39F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3A0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3A1.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3A2.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3A3.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3A4.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3A5.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3A6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3A7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3A8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3A9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3AA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3AB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3AC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3AD.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3AE.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3AF.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3B0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3B1.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3B2.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3B3.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3B4.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3B5.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3B6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3B7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3B8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3B9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3BA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3BB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3BC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3BD.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3BE.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3BF.tmp"
Sat 13 Oct 2007 308,552 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3C0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3C1.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3C2.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3C3.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3C4.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3C5.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3C6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3C7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3C8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3C9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3CA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3CB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3CC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3CD.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3CE.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3CF.tmp"
Sat 13 Oct 2007 334,758 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3D0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3D1.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3D2.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3D3.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3D4.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3D5.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3D6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3D7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3D8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3D9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3DA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3DB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3DC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3DD.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3DE.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3DF.tmp"
Sat 13 Oct 2007 331,849 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3E0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3E1.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3E2.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3E3.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3E4.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3E5.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3E6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3E7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3E8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3E9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3EA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3EB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3EC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3ED.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3EE.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3EF.tmp"
Sat 13 Oct 2007 334,758 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3F0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3F1.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3F2.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3F3.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3F4.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3F5.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3F6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3F7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3F8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3F9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3FA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3FB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3FC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3FD.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3FE.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT3FF.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT4.tmp"
Fri 23 Nov 2007 341,918 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT40.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT400.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT401.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT402.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT403.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT404.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT405.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT406.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT407.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT408.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT409.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT40A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT40B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT40C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT40D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT40E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT40F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT41.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT410.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT411.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT412.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT413.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT414.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT415.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT416.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT417.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT418.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT419.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT41A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT41B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT41C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT41D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT41E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT41F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT42.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT420.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT421.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT422.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT423.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT424.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT425.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT426.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT427.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT428.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT429.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT42A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT42B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT42C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT42D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT42E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT42F.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT43.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT430.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT431.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT432.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT433.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT434.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT435.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT436.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT437.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT438.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT439.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT43A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT43B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT43C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT43D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT43E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT43F.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT44.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT440.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT441.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT442.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT443.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT444.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT445.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT446.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT447.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT448.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT45.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT452.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT453.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT454.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT455.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT456.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT457.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT458.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT459.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT45A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT45B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT45C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT45D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT45E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT46.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT460.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT461.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT462.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT463.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT464.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT465.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT467.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT47.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT48.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT49.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT4A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT4B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT4C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT4D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT4E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT4F.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT5.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT50.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT51.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT513.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT52.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT53.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT54.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT55.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT56.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT57.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT58.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT59.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT5A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT5B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT5C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT5D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT5E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT5F.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT60.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT61.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT62.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT627.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT62A.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT62D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT63.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT630.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT632.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT64.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT65.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT66.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT67.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT68.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT69.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT6A.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT6B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT6C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT6D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT6E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT6F.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT70.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT71.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT72.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT73.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT74.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT75.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT76.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT77.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT78.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT79.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT7A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT7B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT7C.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT7D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT7E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT7F.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT80.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT81.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT82.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT83.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT84.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT85.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT86.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT87.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT88.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT89.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT8A.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT8B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT8C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT8D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT8E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT8F.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT90.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT91.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT92.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT93.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT94.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT95.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT96.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT97.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT98.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT99.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT9A.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT9B.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT9C.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT9D.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT9E.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BIT9F.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITA0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITA1.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITA2.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITA3.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITA4.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITA5.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITA6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITA7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITA8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITA9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITAA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITAB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITAC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITAD.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITAE.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITAF.tmp"
Wed 21 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITB0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITB1.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITB2.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITB3.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITB4.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITB5.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITB6.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITB7.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITB8.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITB9.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITBA.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITBB.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITBC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITBD.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITBE.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITBF.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITC.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITC0.tmp"
Fri 23 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITC1.tmp"
Fri 23 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITC2.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITC3.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITC4.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITC5.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITC6.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITC7.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITC8.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITC9.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITCA.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITCB.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITCC.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITCD.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITCE.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITCF.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITD.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITD0.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITD1.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITD2.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITD3.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITD4.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITD5.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITD6.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITD7.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITD8.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITD9.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITDA.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITDB.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITDC.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITDD.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITDE.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITDF.tmp"
Wed 21 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITE.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITE0.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITE1.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITE2.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITE3.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITE4.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITE5.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITE6.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITE7.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITE8.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITE9.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITEA.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITEB.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITEC.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITED.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITEE.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITEF.tmp"
Wed 21 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITF.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITF0.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITF1.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITF2.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITF3.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITF4.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITF5.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITF6.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITF7.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITF8.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITF9.tmp"
Sat 24 Nov 2007 388,090 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITFA.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITFB.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITFC.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITFD.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITFE.tmp"
Sat 24 Nov 2007 0 A..H. --- "C:\Deckard\System Scanner\20071126170422\backup\DOCUME~1\Admin\LOCALS~1\Temp\BITFF.tmp"

Finished!

sername "Admin" - 11/25/2007 7:31:05 [Fixwareout edited 9/01/2007]

~~~~~ Prerun check

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters
"nameserver"="85.255.113.125 85.255.112.92" <Value cleared.

Successfully flushed the DNS Resolver Cache.


System was rebooted successfully.

~~~~~ Postrun check
HKLM\SOFTWARE\~\Winlogon\ "System"=""
....
....
~~~~~ Misc files.
....
~~~~~ Checking for older varients.
....


C:\Program Files\MovieCommander < Found
Additional tools are recommended.

~~~~~ Current runs (hklm hkcu "run" Keys Only)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Synchronization Manager"="mobsync.exe /logon"
"NvCplDaemon"="RUNDLL32.EXE C:\\WINNT\\system32\\NvCpl.dll,NvStartup"
"nwiz"="nwiz.exe /install"
"NvMediaCenter"="RUNDLL32.EXE C:\\WINNT\\system32\\NvMcTray.dll,NvTaskbarInit"
"Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Starter Edition\\3.0\\Apps\\apdproxy.exe\""
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.6.0_03\\bin\\jusched.exe\""
"TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"CTHelper"="CTHELPER.EXE"
"VSOCheckTask"="\"C:\\PROGRA~1\\McAfee.com\\VSO\\mcmnhdlr.exe\" /checktask"
"VirusScan Online"="C:\\Program Files\\McAfee.com\\VSO\\mcvsshld.exe"
"OASClnt"="C:\\Program Files\\McAfee.com\\VSO\\oasclnt.exe"
"MCAgentExe"="c:\\PROGRA~1\\mcafee.com\\agent\\mcagent.exe"
"MCUpdateExe"="c:\\PROGRA~1\\mcafee.com\\agent\\mcupdate.exe"
"MPFExe"="C:\\PROGRA~1\\McAfee.com\\PERSON~1\\MpfTray.exe"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"YBrowser"="C:\\PROGRA~1\\Yahoo!\\browser\\ybrwicon.exe"
"Motive SmartBridge"="C:\\PROGRA~1\\SBCSEL~1\\SMARTB~1\\MotiveSB.exe"
"DXM6Patch_981116"="C:\\WINNT\\p_981116.exe /Q:A"
"iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Yahoo! Pager"="\"C:\\PROGRA~1\\Yahoo!\\MESSEN~1\\YAHOOM~1.EXE\" -quiet"
....
Hosts file was reset, If you use a custom hosts file please replace it...
~~~~~ End report ~~~~~

The virus seems to be gone and the computer is running faster.:grin:

What else needs to be done? :4-dontkno
 

·
Registered
Joined
·
28 Posts
Discussion Starter #16
Hello FtP

Deckard's System Scanner v20071014.68
Run by Admin on 2007-11-28 19:19:54
Computer is in Normal Mode.
--------------------------------------------------------------------------------



-- HijackThis (run as Admin.exe) -----------------------------------------------

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:20:16 PM, on 11/28/2007
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\hidserv.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
C:\WINNT\system32\nvsvc32.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\Explorer.EXE
C:\WINNT\system32\RUNDLL32.EXE
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINNT\CTHELPER.EXE
C:\Program Files\McAfee.com\VSO\mcvsshld.exe
C:\Program Files\McAfee.com\VSO\oasclnt.exe
c:\program files\mcafee.com\agent\mcagent.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
C:\PROGRA~1\SBCSEL~1\SMARTB~1\SBHookSvc.exe
C:\Program Files\SBC Self Support Tool\bin\mpbtn.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Admin\Desktop\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\Admin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/sb/sbcydsl/*http://www.yahoo.com/search/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/sp/sbcydsl/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/customize/ie/defaults/su/sbcydsl/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/sb/sbcydsl/*http://www.yahoo.com/search/ie.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/sp/sbcydsl/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/ie/defaults/su/sbcydsl/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\Common\yiesrvc.dll
O2 - BHO: EWPBrowseObject Class - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: SidebarAutoLaunch Class - {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll
O3 - Toolbar: @msdxmLC.dll,[email protected],&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [YBrowser] C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [DXM6Patch_981116] C:\WINNT\p_981116.exe /Q:A
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - .DEFAULT Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe (User 'Default user')
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: SBC Self Support Tool.lnk = C:\Program Files\SBC Self Support Tool\bin\matcli.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: AT&T Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photo.walgreens.com/WalgreensActivia.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1144619130944
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/shared/mcgdmgr/1,0,0,26/mcgdmgr.cab
O16 - DPF: {C02226EB-A5D7-4B1F-BD7E-635E46C2288D} (Toontown Installer ActiveX Control) - http://a.download.toontown.com/sv1.0.20.19/ttinst.cab
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe
O23 - Service: SBHookSvc - Motive Communications, Inc. - C:\PROGRA~1\SBCSEL~1\SMARTB~1\SBHookSvc.exe

--
End of file - 9398 bytes

-- Files created between 2007-10-28 and 2007-11-28 -----------------------------

2007-11-28 07:45:53 16384 --a-----t C:\WINNT\system32\Perflib_Perfdata_5c0.dat
2007-11-28 06:52:09 16 --a------ C:\s1jc
2007-11-27 21:18:56 0 d-------- C:\WINNT\ERUNT
2007-11-24 06:44:19 0 d-------- C:\ie-spyad_zo
2007-11-24 06:33:03 118784 --a------ C:\WINNT\system32\MSSTDFMT.DLL <Not Verified; Microsoft Corporation; MSSTDFMT Object Library>
2007-11-24 06:33:02 0 d-------- C:\Program Files\SpywareBlaster
2007-11-23 22:33:19 0 d-------- C:\WINNT\system32\ActiveScan
2007-11-23 22:07:18 0 d-------- C:\Program Files\Trend Micro
2007-11-23 21:50:01 0 d-------- C:\Documents and Settings\Admin\Application Data\AdwareAlert
2007-11-23 21:35:51 0 d-------- C:\Documents and Settings\Admin\Application Data\AntiSpywareBot
2007-11-20 19:43:27 0 d-a------ C:\WINNT\system32\appmgmt
2007-11-08 16:43:41 16 --a------ C:\s16k
2007-10-30 18:28:51 16 --a------ C:\s20c


-- Find3M Report ---------------------------------------------------------------

2007-11-28 07:45:50 0 d-------- C:\Documents and Settings\Admin\Application Data\OpenOffice.org2
2007-11-27 22:32:36 0 d-------- C:\Documents and Settings\Admin\Application Data\Adobe
2007-11-24 08:50:34 0 d-------- C:\Program Files\Java
2007-11-24 02:29:33 0 d-------- C:\Program Files\QuickTime
2007-11-24 01:58:41 0 d-------- C:\Program Files\iTunes
2007-11-20 19:43:27 0 d-------- C:\Program Files\Real
2007-10-19 16:22:53 16 --a------ C:\s170
2007-10-17 15:39:26 16 --a------ C:\s1qk
2007-10-11 16:12:21 16 --a------ C:\s1dc
2007-10-09 21:07:18 16 --a------ C:\s19g
2007-10-08 15:58:07 16 --a------ C:\s21c
2007-10-03 14:45:22 16 --a------ C:\suk
2007-10-03 05:30:26 0 d-------- C:\Program Files\Apple Software Update
2007-10-03 05:29:12 0 d-------- C:\Program Files\iPod
2007-09-18 12:31:49 16 --a------ C:\s184
2007-09-13 15:24:46 16 --a------ C:\s1jk
2007-08-30 15:18:23 16 --a------ C:\s1u0


-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Synchronization Manager"="mobsync.exe" [06/19/03 11:05a C:\WINNT\system32\mobsync.exe]
"NvCplDaemon"="C:\WINNT\system32\NvCpl.dll" [10/29/04 03:50p]
"nwiz"="nwiz.exe" [10/29/04 03:50p C:\WINNT\system32\nwiz.exe]
"NvMediaCenter"="C:\WINNT\system32\NvMcTray.dll" [10/29/04 03:50p]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" [06/06/05 10:46p]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [09/25/07 01:11a]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [04/16/06 04:57p]
"CTHelper"="CTHELPER.EXE" [12/08/05 11:06a C:\WINNT\CTHELPER.EXE]
"VSOCheckTask"="C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" [07/08/05 05:18p]
"VirusScan Online"="C:\Program Files\McAfee.com\VSO\mcvsshld.exe" [08/10/05 11:49a]
"OASClnt"="C:\Program Files\McAfee.com\VSO\oasclnt.exe" [08/11/05 09:02p]
"MCAgentExe"="c:\PROGRA~1\mcafee.com\agent\mcagent.exe" [09/22/05 05:29p]
"MCUpdateExe"="c:\PROGRA~1\mcafee.com\agent\mcupdate.exe" [01/11/06 11:05a]
"MPFExe"="C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe" [11/11/05 04:00p]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [04/27/07 08:41a]
"YBrowser"="C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe" [07/21/06 03:19p]
"Motive SmartBridge"="C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe" [08/24/05 06:51a]
"DXM6Patch_981116"="C:\WINNT\p_981116.exe" [11/30/98 05:04p]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [07/27/07 07:14p]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Yahoo! Pager"="C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.exe" [03/01/07 05:11p]

C:\Documents and Settings\Admin\Start Menu\Programs\Startup\
OpenOffice.org 2.0.lnk - C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe [1/25/2006 6:42:22 PM]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [9/23/2005 10:05:26 PM]
SBC Self Support Tool.lnk - C:\Program Files\SBC Self Support Tool\bin\matcli.exe [6/23/2007 2:00:25 PM]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sglfb.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tga.sys]
@="Driver"




-- End of Deckard's System Scanner: finished at 2007-11-28 19:20:48 ------------

:wave:
 

·
TSF Emeritus
Joined
·
15,079 Posts
Hello luvabluzer :wavey:


Please read these instructions very carefully, and follow them in the exact order I have listed. If you don’t understand any part of the fix please ask before proceeding.

You may want to print out these instructions, or copy them into Notepad.

Please note: Just because you have lack of symptoms it doesn’t mean the problem is gone. Please stay with me until I declare your log’s clean. Thank you.

=====================

ComboFix

Download Combofix and save it to your desktop.

**Note: It is important that it is saved directly to your desktop**

----------------------------

1. Close any open browsers.

2. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

----------------------------

Double click on combofix.exe & follow the prompts.
  • When finished, it will produce a report for you.
  • Please post the "C:\ComboFix.txt" for further review.
**Please Note: Do not mouseclick combofix's window whilst it's running. That may cause it to stall**

=====================

Please produce a fresh Hijackthis log.

=====================

Required Logs

In your next reply please include:
  • Combofix.txt
  • A fresh Hijackthis log
Also how is your system behaving now?
 

·
Registered
Joined
·
28 Posts
Discussion Starter #18
Hello FtP,

The computer is running much better now. No more pop-ups:grin:

Here is the ComboFix file:

ComboFix 07-11-30.3 - Admin 2007-11-29 16:47:53.1 - NTFSx86
Running from: C:\Documents and Settings\Admin\Desktop\ComboFix.exe
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\Admin\Application Data\AntiSpywareBot
C:\Documents and Settings\Admin\Application Data\AntiSpywareBot\Log\2007 Nov 23 - 09_36_05 PM_653.log
C:\Documents and Settings\Admin\Application Data\AntiSpywareBot\Log\2007 Nov 23 - 09_36_13 PM_874.log
C:\Documents and Settings\Admin\Application Data\AntiSpywareBot\rs.dat
C:\Documents and Settings\Admin\Application Data\AntiSpywareBot\Settings\CustomScan.stg
C:\Documents and Settings\Admin\Application Data\AntiSpywareBot\Settings\IgnoreList.stg
C:\Documents and Settings\Admin\Application Data\AntiSpywareBot\Settings\ScanInfo.stg
C:\Documents and Settings\Admin\Application Data\AntiSpywareBot\Settings\ScanResults.stg
C:\Documents and Settings\Admin\Application Data\AntiSpywareBot\Settings\SelectedFolders.stg
C:\Documents and Settings\Admin\Application Data\AntiSpywareBot\Settings\Settings.stg
C:\WINNT\Tasks.\AntiSpywareBot Scheduled Scan.job

.
((((((((((((((((((((((((( Files Created from 2007-10-28 to 2007-11-30 )))))))))))))))))))))))))))))))
.

2007-11-28 06:52 . 07-11-28 06:52 16 --a------ C:\s1jc
2007-11-27 21:18 . 07-11-27 21:19 <DIR> d-------- C:\WINNT\ERUNT
2007-11-24 07:05 . 07-11-24 07:05 <DIR> d-------- C:\Deckard
2007-11-24 06:44 . 07-11-24 06:44 <DIR> d-------- C:\ie-spyad_zo
2007-11-24 06:33 . 07-11-24 06:38 <DIR> d-------- C:\Program Files\SpywareBlaster
2007-11-24 06:33 . 05-08-25 18:19 1,066,176 --a------ C:\WINNT\system32\MSCOMCTL.OCX
2007-11-24 06:33 . 05-08-25 18:18 118,784 --a------ C:\WINNT\system32\MSSTDFMT.DLL
2007-11-24 06:33 . 05-08-25 18:19 115,920 --a------ C:\WINNT\system32\MSINET.OCX
2007-11-23 22:34 . 07-11-23 23:15 2,550 --a------ C:\WINNT\system32\Uninstall.ico
2007-11-23 22:34 . 07-11-23 23:15 1,406 --a------ C:\WINNT\system32\Help.ico
2007-11-23 22:33 . 07-11-24 00:05 <DIR> d-------- C:\WINNT\system32\ActiveScan
2007-11-23 22:33 . 07-11-23 23:15 30,590 --a------ C:\WINNT\system32\pavas.ico
2007-11-23 22:07 . 07-11-23 22:07 <DIR> d-------- C:\Program Files\Trend Micro
2007-11-23 21:50 . 07-11-23 21:51 <DIR> d-------- C:\Documents and Settings\Admin\Application Data\AdwareAlert
2007-11-08 16:43 . 07-11-08 16:43 16 --a------ C:\s16k
2007-10-30 18:28 . 07-10-30 18:28 16 --a------ C:\s20c
2007-10-19 16:22 . 07-10-19 16:22 16 --a------ C:\s170
2007-10-17 15:39 . 07-10-17 15:39 16 --a------ C:\s1qk
2007-10-11 16:12 . 07-10-11 16:12 16 --a------ C:\s1dc
2007-10-09 21:07 . 07-10-09 21:07 16 --a------ C:\s19g
2007-10-08 15:58 . 07-10-08 15:58 16 --a------ C:\s21c
2007-10-03 14:45 . 07-10-03 14:45 16 --a------ C:\suk
2007-10-03 05:30 . 07-10-03 05:30 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Apple
2007-10-03 05:29 . 07-11-24 01:58 <DIR> d-------- C:\Program Files\iTunes

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-11-29 22:43 --------- d-----w C:\Documents and Settings\Admin\Application Data\OpenOffice.org2
2007-11-24 14:50 --------- d-----w C:\Program Files\Java
2007-11-24 08:29 --------- d-----w C:\Program Files\QuickTime
2007-11-21 01:43 --------- d-----w C:\Program Files\Real
2007-10-03 11:30 --------- d-----w C:\Program Files\Apple Software Update
2007-10-03 11:29 --------- d-----w C:\Program Files\iPod
2007-08-19 22:55 91,136 ----a-w C:\WINNT\system32\MSOERT2.DLL
2007-08-19 22:55 596,992 ----a-w C:\WINNT\system32\INETCOMM.DLL
2007-08-19 22:55 47,616 ----a-w C:\WINNT\system32\INETRES.DLL
2007-08-19 22:55 229,376 ----a-w C:\WINNT\system32\MSOEACCT.DLL
2007-08-19 22:52 44,032 ----a-w C:\WINNT\system32\MSIDENT.DLL
2007-08-17 06:48 448,272 ----a-w C:\WINNT\system32\oieng400.dll
2007-08-17 06:48 39,184 ----a-w C:\WINNT\system32\jpeg2x32.dll
2007-08-17 06:48 33,552 ----a-w C:\WINNT\system32\tifflt.dll
2006-04-05 01:23 271 ---h--w C:\Program Files\desktop.ini
2006-04-05 01:23 21,952 ---h--w C:\Program Files\folder.htt
1999-12-07 12:00 32,528 ----a-w C:\WINNT\inf\wbfirdma.sys
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Yahoo! Pager"="C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.exe" [07-03-01 17:11 ]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Synchronization Manager"="mobsync.exe" [03-06-19 11:05 C:\WINNT\system32\mobsync.exe]
"NvCplDaemon"="RUNDLL32.exe" [99-12-07 06:00 C:\WINNT\system32\rundll32.exe]
"nwiz"="nwiz.exe" [04-10-29 15:50 C:\WINNT\system32\nwiz.exe]
"NvMediaCenter"="RUNDLL32.exe" [99-12-07 06:00 C:\WINNT\system32\rundll32.exe]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" [05-06-06 22:46 ]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [07-09-25 01:11 ]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [06-04-16 16:57 ]
"CTHelper"="CTHELPER.EXE" [05-12-08 11:06 C:\WINNT\CTHELPER.EXE]
"VSOCheckTask"="C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" [05-07-08 17:18 ]
"VirusScan Online"="C:\Program Files\McAfee.com\VSO\mcvsshld.exe" [05-08-10 11:49 ]
"OASClnt"="C:\Program Files\McAfee.com\VSO\oasclnt.exe" [05-08-11 21:02 ]
"MCAgentExe"="c:\PROGRA~1\mcafee.com\agent\mcagent.exe" [05-09-22 17:29 ]
"MCUpdateExe"="c:\PROGRA~1\mcafee.com\agent\mcupdate.exe" [06-01-11 11:05 ]
"MPFExe"="C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe" [05-11-11 16:00 ]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [07-04-27 08:41 ]
"YBrowser"="C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe" [06-07-21 15:19 ]
"Motive SmartBridge"="C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe" [05-08-24 06:51 ]
"DXM6Patch_981116"="C:\WINNT\p_981116.exe" [98-11-30 17:04 ]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [07-07-27 19:14 ]

C:\Documents and Settings\Administrator.FAMILY-CEVTYWCU\Start Menu\Programs\Startup\
OpenOffice.org 2.0.lnk - C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe [2006-01-25 18:42:22]

C:\Documents and Settings\Admin\Start Menu\Programs\Startup\
OpenOffice.org 2.0.lnk - C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe [2006-01-25 18:42:22]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-23 22:05:26]
SBC Self Support Tool.lnk - C:\Program Files\SBC Self Support Tool\bin\matcli.exe [2007-06-23 14:00:25]

R3 lne100v4;Linksys LNE100TX Fast Ethernet Adapter(LNE100TX v4);C:\WINNT\system32\DRIVERS\lne100v4.sys

*Newly Created Service* - PROCEXP90
.
Contents of the 'Scheduled Tasks' folder
"2007-11-24 09:00:01 C:\WINNT\Tasks\AdwareAlert Scheduled Scan.job"
- C:\Program Files\AdwareAlert\AdwareAlert.ex
- C:\Program Files\AdwareAlert
"2007-11-20 01:54:03 C:\WINNT\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2007-11-23 21:54:07 C:\WINNT\Tasks\Utility Manager.job"
- C:\WINNT\system32\utilman.exe./start
.
**************************************************************************

catchme 0.3.1318 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-11-30 17:04:20
Windows 5.0.2195 Service Pack 4 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

**************************************************************************
.
Completion time: 2007-11-30 17:05:38
.
--- E O F ---
and the hijackthis log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:09:24 PM, on 11/30/2007
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\hidserv.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\WINNT\system32\nvsvc32.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINNT\CTHELPER.EXE
C:\Program Files\McAfee.com\VSO\mcvsshld.exe
C:\Program Files\McAfee.com\VSO\oasclnt.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
C:\Program Files\SBC Self Support Tool\bin\mpbtn.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\SBHookSvc.exe
c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe
C:\WINNT\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/customize/ie/defaults/su/sbcydsl/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/sb/sbcydsl/*http://www.yahoo.com/search/ie.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/sp/sbcydsl/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/ie/defaults/su/sbcydsl/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\Common\yiesrvc.dll
O2 - BHO: EWPBrowseObject Class - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: SidebarAutoLaunch Class - {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll
O3 - Toolbar: @msdxmLC.dll,[email protected],&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [YBrowser] C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [DXM6Patch_981116] C:\WINNT\p_981116.exe /Q:A
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - .DEFAULT Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe (User 'Default user')
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: SBC Self Support Tool.lnk = C:\Program Files\SBC Self Support Tool\bin\matcli.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: AT&T Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photo.walgreens.com/WalgreensActivia.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1144619130944
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/shared/mcgdmgr/1,0,0,26/mcgdmgr.cab
O16 - DPF: {C02226EB-A5D7-4B1F-BD7E-635E46C2288D} (Toontown Installer ActiveX Control) - http://a.download.toontown.com/sv1.0.20.19/ttinst.cab
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe
O23 - Service: SBHookSvc - Motive Communications, Inc. - C:\PROGRA~1\SBCSEL~1\SMARTB~1\SBHookSvc.exe

--
End of file - 8865 bytes

This has been a great experience. My son would have reformatted the hard drive to get rid of the virus. This was educational and less work.

Helmut
 

·
TSF Emeritus
Joined
·
15,079 Posts
Hiya luvabluzer :wave:

Please read these instructions very carefully, and follow them in the exact order I have listed. If you don’t understand any part of the fix please ask before proceeding.

You may want to print out these instructions, or copy them into Notepad.

Please note: Just because you have lack of symptoms it doesn’t mean the problem is gone. Please stay with me until I declare your log’s clean. Thank you.

=====================

1. Close any open browsers.

2. Open notepad and copy/paste the text in the quotebox below into it:

File::
C:\s1jc
C:\s16k
C:\s20c
C:\s170
C:\s1qk
C:\s1dc
C:\s19g
C:\s21c
C:\suk
C:\WINNT\Tasks\AdwareAlert Scheduled Scan.job

Folder::
C:\Documents and Settings\Admin\Application Data\AdwareAlert
C:\Program Files\AdwareAlert
Save this as CFScript.txt, in the same location as ComboFix.exe




Refering to the picture above, drag CFScript into ComboFix.exe

When finished, it shall produce a log for you at "C:\ComboFix.txt"

**Please Note: Do not mouseclick combofix's window whilst it's running. That may cause it to stall**

=====================

Fix entries in Hijack This

Open HijackThis and click on Do a System Scan Only. Check the following entries (If they still exist, make sure you do not miss any)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/cust.../www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/cust...search/ie.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/cust.../www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/cust.../www.yahoo.com
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm


Please remember to close all other windows, including browsers then click Fix checked.

=====================

Please produce a fresh Hijackthis log

=====================

Required Logs

In your next reply please include:
  • A new Hijackthis log
  • Combofix.txt
Also how is your system behaving now?
 

·
Registered
Joined
·
28 Posts
Discussion Starter #20
Hello FtP:wave:

Here are the requested logs:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:03:45 AM, on 12/1/2007
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\hidserv.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
C:\WINNT\system32\nvsvc32.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\RUNDLL32.EXE
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINNT\CTHELPER.EXE
C:\Program Files\McAfee.com\VSO\mcvsshld.exe
C:\Program Files\McAfee.com\VSO\oasclnt.exe
c:\program files\mcafee.com\agent\mcagent.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
C:\Program Files\SBC Self Support Tool\bin\mpbtn.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\SBHookSvc.exe
C:\WINNT\explorer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\Common\yiesrvc.dll
O2 - BHO: EWPBrowseObject Class - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: SidebarAutoLaunch Class - {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll
O3 - Toolbar: @msdxmLC.dll,[email protected],&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [YBrowser] C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [DXM6Patch_981116] C:\WINNT\p_981116.exe /Q:A
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - .DEFAULT Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe (User 'Default user')
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: SBC Self Support Tool.lnk = C:\Program Files\SBC Self Support Tool\bin\matcli.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: AT&T Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\Common\yiesrvc.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photo.walgreens.com/WalgreensActivia.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1144619130944
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/shared/mcgdmgr/1,0,0,26/mcgdmgr.cab
O16 - DPF: {C02226EB-A5D7-4B1F-BD7E-635E46C2288D} (Toontown Installer ActiveX Control) - http://a.download.toontown.com/sv1.0.20.19/ttinst.cab
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe
O23 - Service: SBHookSvc - Motive Communications, Inc. - C:\PROGRA~1\SBCSEL~1\SMARTB~1\SBHookSvc.exe

--
End of file - 8141 bytes

ComboFix 07-11-30.3 - Admin 12/01/2007 6:54:27.2 - NTFSx86
Microsoft Windows 2000 Professional 5.0.2195.4.1252.1.1033.18.326 [GMT -6:00]
Running from: C:\Documents and Settings\Admin\Desktop\ComboFix.exe
Command switches used :: C:\ComboFix\CFScript.txt
.

((((((((((((((((((((((((( Files Created from 2007-11-01 to 2007-12-01 )))))))))))))))))))))))))))))))
.

2007-12-01 06:54 . 12/01/07 06:54a 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_2e8.dat
2007-12-01 06:44 . 12/01/07 06:44a 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_5b0.dat
2007-11-28 06:52 . 11/28/07 06:52a 16 --a------ C:\s1jc
2007-11-27 21:18 . 11/27/07 09:19p <DIR> d-------- C:\WINNT\ERUNT
2007-11-24 07:05 . 11/24/07 07:05a <DIR> d-------- C:\Deckard
2007-11-24 06:44 . 11/24/07 06:44a <DIR> d-------- C:\ie-spyad_zo
2007-11-24 06:33 . 11/24/07 06:38a <DIR> d-------- C:\Program Files\SpywareBlaster
2007-11-24 06:33 . 08/25/05 06:19p 1,066,176 --a------ C:\WINNT\system32\MSCOMCTL.OCX
2007-11-24 06:33 . 08/25/05 06:18p 118,784 --a------ C:\WINNT\system32\MSSTDFMT.DLL
2007-11-24 06:33 . 08/25/05 06:19p 115,920 --a------ C:\WINNT\system32\MSINET.OCX
2007-11-23 22:34 . 11/23/07 11:15p 2,550 --a------ C:\WINNT\system32\Uninstall.ico
2007-11-23 22:34 . 11/23/07 11:15p 1,406 --a------ C:\WINNT\system32\Help.ico
2007-11-23 22:33 . 11/24/07 12:05a <DIR> d-------- C:\WINNT\system32\ActiveScan
2007-11-23 22:33 . 11/23/07 11:15p 30,590 --a------ C:\WINNT\system32\pavas.ico
2007-11-23 22:07 . 11/23/07 10:07p <DIR> d-------- C:\Program Files\Trend Micro
2007-11-23 21:50 . 11/23/07 09:51p <DIR> d-------- C:\Documents and Settings\Admin\Application Data\AdwareAlert
2007-11-08 16:43 . 11/08/07 04:43p 16 --a------ C:\s16k

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-12-01 12:44 --------- d-----w C:\Documents and Settings\Admin\Application Data\OpenOffice.org2
2007-11-24 14:50 --------- d-----w C:\Program Files\Java
2007-11-24 08:29 --------- d-----w C:\Program Files\QuickTime
2007-11-24 07:58 --------- d-----w C:\Program Files\iTunes
2007-11-21 01:43 --------- d-----w C:\Program Files\Real
2007-10-03 11:30 --------- d-----w C:\Program Files\Apple Software Update
2007-10-03 11:30 --------- d-----w C:\Documents and Settings\All Users\Application Data\Apple
2007-10-03 11:29 --------- d-----w C:\Program Files\iPod
2006-04-05 01:23 271 ---h--w C:\Program Files\desktop.ini
2006-04-05 01:23 21,952 ---h--w C:\Program Files\folder.htt
1999-12-07 12:00 32,528 ----a-w C:\WINNT\inf\wbfirdma.sys
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Yahoo! Pager"="C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.exe" [03/01/07 05:11p]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Synchronization Manager"="mobsync.exe" [06/19/03 11:05a C:\WINNT\system32\mobsync.exe]
"NvCplDaemon"="RUNDLL32.exe" [12/07/99 06:00a C:\WINNT\system32\rundll32.exe]
"nwiz"="nwiz.exe" [10/29/04 03:50p C:\WINNT\system32\nwiz.exe]
"NvMediaCenter"="RUNDLL32.exe" [12/07/99 06:00a C:\WINNT\system32\rundll32.exe]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" [06/06/05 10:46p]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [09/25/07 01:11a]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [04/16/06 04:57p]
"CTHelper"="CTHELPER.EXE" [12/08/05 11:06a C:\WINNT\CTHELPER.EXE]
"VSOCheckTask"="C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" [07/08/05 05:18p]
"VirusScan Online"="C:\Program Files\McAfee.com\VSO\mcvsshld.exe" [08/10/05 11:49a]
"OASClnt"="C:\Program Files\McAfee.com\VSO\oasclnt.exe" [08/11/05 09:02p]
"MCAgentExe"="c:\PROGRA~1\mcafee.com\agent\mcagent.exe" [09/22/05 05:29p]
"MCUpdateExe"="c:\PROGRA~1\mcafee.com\agent\mcupdate.exe" [01/11/06 11:05a]
"MPFExe"="C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe" [11/11/05 04:00p]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [04/27/07 08:41a]
"YBrowser"="C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe" [07/21/06 03:19p]
"Motive SmartBridge"="C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe" [08/24/05 06:51a]
"DXM6Patch_981116"="C:\WINNT\p_981116.exe" [11/30/98 05:04p]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [07/27/07 07:14p]

C:\Documents and Settings\Administrator.FAMILY-CEVTYWCU\Start Menu\Programs\Startup\
OpenOffice.org 2.0.lnk - C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe [2006-01-25 18:42:22]

C:\Documents and Settings\Admin\Start Menu\Programs\Startup\
OpenOffice.org 2.0.lnk - C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe [2006-01-25 18:42:22]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-23 22:05:26]
SBC Self Support Tool.lnk - C:\Program Files\SBC Self Support Tool\bin\matcli.exe [2007-06-23 14:00:25]

R3 lne100v4;Linksys LNE100TX Fast Ethernet Adapter(LNE100TX v4);C:\WINNT\system32\DRIVERS\lne100v4.sys

.
Contents of the 'Scheduled Tasks' folder
"2007-11-24 09:00:01 C:\WINNT\Tasks\AdwareAlert Scheduled Scan.job"
- C:\Program Files\AdwareAlert\AdwareAlert.ex
- C:\Program Files\AdwareAlert
"2007-11-20 01:54:03 C:\WINNT\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2007-11-23 21:54:07 C:\WINNT\Tasks\Utility Manager.job"
- C:\WINNT\system32\utilman.exe./start
.
**************************************************************************

catchme 0.3.1318 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-12-01 06:56:00
Windows 5.0.2195 Service Pack 4 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

**************************************************************************
.
Completion time: 12/01/2007 6:57:09
C:\ComboFix2.txt ... 11/30/07 05:05p
.
--- E O F ---
The computer seems to be running fine, no popups of any kind. All the programs seem to be working as they should.
 
1 - 20 of 30 Posts
Status
Not open for further replies.
Top