for future reference, it was probably a trojan/xdcc hack.. google xdcc
bot or something like that you will get the idea, what normally happens
is someone finds a windows exploit that gives complete control of the
computer to them, then they normally hide a ftpserver and files in
%windir%/system32/folder where folder is hidden. Just some info to let
the next person know.
Matthew Rice
Rice Computer Solutions
www.ricecs.com