2007-5-29 20:20:10 D:\YB\redcat\setup.exe Process is trying to register its copy as an autorun startup object. This behaviour is typical of Trojans.
2007-5-29 20:20:10 D:\YB\redcat\setup.exe Attempt to terminate process
2007-5-29 20:21:21 D:\YB\redcat\setup.exe Attempt to terminate process: successfully
2007-5-29 20:21:43 D:\Acgj\gmer1.0.12.11867\gmer.execz_mp3 Rollback
2007-5-29 20:21:43 D:\Acgj\gmer1.0.12.11867\gmer.exe Rollback
2007-5-29 20:21:43 C:\Documents And Settings\All Users\???aê??12?μ¥\3ìDò\???ˉ\setup.exe Rollback
2007-5-29 20:21:43 D:\setup.exe Rollback
2007-5-29 20:21:43 C:\DOCUME~1\ZHANGX~1\LOCALS~1\Temp\~DFDA90.tmp Rollback
2007-5-29 20:20:10 D:\YB\redcat\setup.exe Rollback completed