Hi Silver - Here are the results.
Results of OTMovelt2
C:\WINDOWS\system32\clbcfg.dat moved successfully.
File/Folder C:\WINDOWS\system32\wneovtpx.dll not found.
File/Folder C:\WINDOWS\system32\vysiesly.dll not found.
File/Folder C:\Program Files\RXToolBar not found.
File/Folder C:\WINDOWS\system32\djtxclylfrln.exe not found.
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Application Data\urlredir.cfg moved successfully.
File/Folder C:\WINDOWS\system32\eemruwpk.dll not found.
C:\WINDOWS\system32\fglliycv.exe moved successfully.
File/Folder C:\WINDOWS\system32\qrixbraq.dll not found.
File/Folder C:\WINDOWS\system32\wtavermm.dll not found.
C:\WINDOWS\system32\AJTwHRqr.ini2 moved successfully.
File/Folder C:\WINDOWS\system32\rqRHwTJA.dll not found.
C:\WINDOWS\system32\lVDNmUtv.ini2 moved successfully.
LoadLibrary failed for C:\WINDOWS\system32\clbinit.dll
C:\WINDOWS\system32\clbinit.dll NOT unregistered.
C:\WINDOWS\system32\clbinit.dll moved successfully.
C:\WINDOWS\system32\DeOoYcdd.ini2 moved successfully.
C:\WINDOWS\system32\XayHRXbc.ini2 moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\mlJDturQ.dll
C:\WINDOWS\system32\mlJDturQ.dll NOT unregistered.
C:\WINDOWS\system32\mlJDturQ.dll moved successfully.
File/Folder C:\WINDOWS\system32\fccAroLD.dll not found.
File/Folder C:\WINDOWS\system32\clbdll.dll not found.
DllUnregisterServer procedure not found in C:\WINDOWS\system32\ssqOHbBu.dll
C:\WINDOWS\system32\ssqOHbBu.dll NOT unregistered.
C:\WINDOWS\system32\ssqOHbBu.dll moved successfully.
File/Folder C:\WINDOWS\system32\mlJBRKdE.dll not found.
File/Folder C:\WINDOWS\system32\mjwmaftk.dll not found.
File/Folder C:\WINDOWS\system32\picgwrio.dll not found.
File/Folder C:\WINDOWS\system32\fcbuyngc.dll not found.
File/Folder C:\WINDOWS\system32\yayaAsTm.dll not found.
C:\WINDOWS\system32\vkiabnvl.exe moved successfully.
C:\WINDOWS\system32\mTsAayay.ini2 moved successfully.
OTMoveIt2 by OldTimer - Version 1.0.4.1 log created on 05082008_171501
—————————————————————-
Results of LOOK.TXT
Volume in drive C has no label.
Volume Serial Number is 1817-0954
Directory of c:\Documents and Settings\Owner.YOUR-0D0035AA17\Elypsium\Diamond\Client\Elypsium\Diamond\Server
07/06/2006 08:14 PM 1,060,864 Server.exe
1 File(s) 1,060,864 bytes
Total Files Listed:
1 File(s) 1,060,864 bytes
0 Dir(s) 134,115,520,512 bytes free
_______________________________________________
Results of Kaspersky
——————————————————————————-
KASPERSKY ONLINE SCANNER REPORT
Thursday, May 08, 2008 11:11:49 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 8/05/2008
Kaspersky Anti-Virus database records: 748447
——————————————————————————-
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\
Scan Statistics:
Total number of scanned objects: 238020
Number of viruses found: 25
Number of infected objects: 193
Number of suspicious objects: 0
Duration of the scan process: 03:04:40
Infected Object Name / Virus Name / Last Action
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\bmmjxqhu.dll Infected: Trojan.Win32.Monder.db skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\byodhvlv.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\mirc631.exe/stream/data0014 Infected: not-a-virus:Client-IRC.Win32.mIRC.631 skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\mirc631.exe/stream Infected: not-a-virus:Client-IRC.Win32.mIRC.631 skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\mirc631.exe NSIS: infected - 2 skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\nsd24A.tmp\adw.exe/stream/data0005 Infected: not-a-virus:AdWare.Win32.BHO.adj skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\nsd24A.tmp\adw.exe/stream/data0006 Infected: not-a-virus:AdWare.Win32.BHO.ww skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\nsd24A.tmp\adw.exe/stream Infected: not-a-virus:AdWare.Win32.BHO.ww skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\nsd24A.tmp\adw.exe NSIS: infected - 3 skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\nsd24A.tmp\bann.exe/stream/data0004 Infected: not-a-virus:AdWare.Win32.TrafficSol.o skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\nsd24A.tmp\bann.exe/stream Infected: not-a-virus:AdWare.Win32.TrafficSol.o skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\nsd24A.tmp\bann.exe NSIS: infected - 2 skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\rjofclht.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\temAE.tmp.exe/data0002 Infected: not-a-virus:AdWare.Win32.Agent.jb skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\temAE.tmp.exe NSIS: infected - 1 skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\tmp184.tmp.exe/stream/data0001 Infected: not-a-virus:AdWare.Win32.Vapsup.awu skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\tmp184.tmp.exe/stream Infected: not-a-virus:AdWare.Win32.Vapsup.awu skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\tmp184.tmp.exe NSIS: infected - 2 skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\tmp27B.tmp/stream/data0002 Infected: not-a-virus:AdWare.Win32.Agent.alo skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\tmp27B.tmp/stream Infected: not-a-virus:AdWare.Win32.Agent.alo skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\tmp27B.tmp NSIS: infected - 2 skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\tmp28F.tmp/stream/data0002 Infected: not-a-virus:AdWare.Win32.Agent.bii skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\tmp28F.tmp/stream Infected: not-a-virus:AdWare.Win32.Agent.bii skipped
C:\Deckard\System Scanner\20080507180226\backup\DOCUME~1\OWNER~1.YOU\LOCALS~1\Temp\tmp28F.tmp NSIS: infected - 2 skipped
C:\Documents and Settings\All Users\Application Data\McAfee\EasyNet\MHNData Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MNA\NAData Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MSC\Logs\Events.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MSC\Logs\{551635F9-3B66-482B-9C3B-3EA7E458C983}.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MSC\Logs\{DB6A441D-30DA-4438-8B21-C7C2D90CF51B}.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MSC\McUsers.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MSK\MSKWMDB.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\MSK\settingsdb.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\VirusScan\Data\TFR13.tmp Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\VirusScan\Logs\OAS.Log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\eHome\logs\ehRecvr.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Pure Networks\Log\logfile.nmapp_exe.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Pure Networks\Log\logfile.nmctxth_exe.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Pure Networks\Log\logfile.nmsrvc_exe.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll.zip/aapoiuik.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll1.zip/brebhywp.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.qrt skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll1.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll10.zip/ngeyjjdp.dll Infected: Trojan.Win32.Monder.cz skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll10.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll11.zip/nswkldph.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll11.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll12.zip/pwhnxsib.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll12.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll13.zip/qdptyvrk.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll13.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll14.zip/rblkdqfj.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll14.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll15.zip/rwdgbnfg.dll Infected: Trojan.Win32.Monder.an skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll15.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll16.zip/ublxryrm.dll Infected: Trojan.Win32.Monder.da skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll16.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll17.zip/vysiesly.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll17.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll18.zip/wneovtpx.dll Infected: Trojan.Win32.Monder.an skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll18.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll2.zip/cbXRHyaX.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.qrq skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll2.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll21.zip/aapoiuik.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll21.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll22.zip/brebhywp.dll_old Infected: not-a-virus:AdWare.Win32.Virtumonde.qrt skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll22.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll23.zip/cbXRHyaX.dll_old Infected: not-a-virus:AdWare.Win32.Virtumonde.qrq skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll23.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll24.zip/dtukoyhx.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll24.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll25.zip/ggwxwdev.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll25.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll26.zip/ispndjdn.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll26.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll27.zip/aapoiuik.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll27.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll28.zip/brebhywp.dll_old Infected: not-a-virus:AdWare.Win32.Virtumonde.qrt skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll28.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll29.zip/cbXRHyaX.dll_old Infected: not-a-virus:AdWare.Win32.Virtumonde.qrq skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll29.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll3.zip/aapoiuik.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll3.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll30.zip/ddcYoOeD.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll30.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll31.zip/mtwubpdx.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll31.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll32.zip/ngeyjjdp.dll_old Infected: Trojan.Win32.Monder.cz skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll32.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll33.zip/ddcYoOeD.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll33.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll34.zip/defdnvoy.dll Infected: Trojan.Win32.Monder.db skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll34.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll35.zip/unahaecr.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll35.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll36.zip/vtUmNDVl.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll36.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll37.zip/defdnvoy.dll_old Infected: Trojan.Win32.Monder.db skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll37.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll38.zip/vtUmNDVl.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll38.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll39.zip/xutfdvul.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll39.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll4.zip/brebhywp.dll_old Infected: not-a-virus:AdWare.Win32.Virtumonde.qrt skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll4.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll40.zip/eemruwpk.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll40.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll41.zip/qrixbraq.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll41.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll42.zip/eemruwpk.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll42.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll43.zip/qrixbraq.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll43.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll44.zip/rqRHwTJA.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll44.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll45.zip/wtavermm.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll45.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll48.zip/rqRHwTJA.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll48.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll49.zip/yayaAsTm.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll49.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll5.zip/cbXRHyaX.dll_old Infected: not-a-virus:AdWare.Win32.Virtumonde.qrq skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll5.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll50.zip/rqRHwTJA.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll50.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll51.zip/yayaAsTm.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll51.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll6.zip/dtukoyhx.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll6.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll7.zip/ggwxwdev.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll7.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll8.zip/ispndjdn.dll_old Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll8.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll9.zip/mtwubpdx.dll Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondedll9.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Documents\Recorded TV\TempRec\TempSBE\MSDVRMM_404162900_6553600_74475 Object is locked skipped
C:\Documents and Settings\All Users\Documents\Recorded TV\TempRec\TempSBE\SBE2.tmp Object is locked skipped
C:\Documents and Settings\All Users\Documents\Recorded TV\TempRec\{844B6D49-1017-4675-8F35-7A4FD508F5A5}.TmpSBE Object is locked skipped
C:\Documents and Settings\brennan\Local Settings\Temporary Internet Files\Content.IE5\17YMM1AP\SmileyCentralFWBInitialSetup1.0.0.15[1].cab/f3Setup1.exe Infected: not-a-virus:AdTool.Win32.MyWebSearch.aw skipped
C:\Documents and Settings\brennan\Local Settings\Temporary Internet Files\Content.IE5\17YMM1AP\SmileyCentralFWBInitialSetup1.0.0.15[1].cab CAB: infected - 1 skipped
C:\Documents and Settings\brennan\Local Settings\Temporary Internet Files\Content.IE5\59BVS0KC\CursorManiaFWBInitialSetup1.0.0.15[1].cab/f3Setup1.exe Infected: not-a-virus:AdTool.Win32.MyWebSearch.aw skipped
C:\Documents and Settings\brennan\Local Settings\Temporary Internet Files\Content.IE5\59BVS0KC\CursorManiaFWBInitialSetup1.0.0.15[1].cab CAB: infected - 1 skipped
C:\Documents and Settings\brennan\Local Settings\Temporary Internet Files\Content.IE5\V5PGNGBP\CAJG1J3W.htm Infected: Trojan-Downloader.JS.Agent.kk skipped
C:\Documents and Settings\brennan\Local Settings\Temporary Internet Files\Content.IE5\YQZ7T7WZ\install_iframe[1].htm Infected: Trojan-Downloader.JS.Agent.kk skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temp\Perflib_Perfdata_cb8.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Application Data\Teleca\Telecalib\Logging\Application logs\SpecificUSB_log.txt Object is locked skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Desktop\Brennan's folder\The_Flames CheatPack V2\Others Things\Super Combat Calculator\Super Combat Calculator.exe Infected: not-virus:BadJoke.MSIL.Agent.w skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat Object is locked skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\History\History.IE5\MSHist012008050820080509\index.dat Object is locked skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temp\~DF8AD3.tmp Object is locked skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temporary Internet Files\Content.IE5\1T9ZEWM6\iddqd[1] Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temporary Internet Files\Content.IE5\4Y0Y3P2Q\idkfa[1] Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temporary Internet Files\Content.IE5\5KXLS5VL\kriv[1] Infected: Trojan.Win32.Monder.db skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temporary Internet Files\Content.IE5\H56TY70I\glas[1] Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temporary Internet Files\Content.IE5\I3Z7P8YE\css4[1] Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temporary Internet Files\Content.IE5\I3Z7P8YE\css4[2] Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temporary Internet Files\Content.IE5\I3Z7P8YE\hctp[1] Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temporary Internet Files\Content.IE5\RNPZM8HA\idkfa[1] Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temporary Internet Files\Content.IE5\ZQC0FGSQ\css4[1] Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temporary Internet Files\Content.IE5\ZQC0FGSQ\glas[1] Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temporary Internet Files\Content.IE5\ZQC0FGSQ\kriv[1] Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\Local Settings\Temporary Internet Files\Content.IE5\ZQC0FGSQ\query[1] Infected: Trojan.Win32.Monder.gen skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\My Documents\My Music\test\silkroad new.zip/setup.exe/data0009/stream/data0004 Infected: not-a-virus:AdWare.Win32.TrafficSol.o skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\My Documents\My Music\test\silkroad new.zip/setup.exe/data0009/stream Infected: not-a-virus:AdWare.Win32.TrafficSol.o skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\My Documents\My Music\test\silkroad new.zip/setup.exe/data0009 Infected: not-a-virus:AdWare.Win32.TrafficSol.o skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\My Documents\My Music\test\silkroad new.zip/setup.exe/data0010/stream/data0005 Infected: not-a-virus:AdWare.Win32.BHO.adj skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\My Documents\My Music\test\silkroad new.zip/setup.exe/data0010/stream/data0006 Infected: not-a-virus:AdWare.Win32.BHO.ww skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\My Documents\My Music\test\silkroad new.zip/setup.exe/data0010/stream Infected: not-a-virus:AdWare.Win32.BHO.ww skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\My Documents\My Music\test\silkroad new.zip/setup.exe/data0010 Infected: not-a-virus:AdWare.Win32.BHO.ww skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\My Documents\My Music\test\silkroad new.zip/setup.exe Infected: not-a-virus:AdWare.Win32.BHO.ww skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\My Documents\My Music\test\silkroad new.zip ZIP: infected - 8 skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\ntuser.dat Object is locked skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Owner.YOUR-0D0035AA17\UserData\index.dat Object is locked skipped
C:\Program Files\BigFix\__Data\Gateway\__Local\Tmp\Gateway_Specific.dat Object is locked skipped
C:\Program Files\BigFix\__Data\Gateway\__Local\Tmp\Gateway_Specific_UK.dat Object is locked skipped
C:\Program Files\BigFix\__Data\Gateway\__Local\Tmp\Gateway_Specific_Vista.dat Object is locked skipped
C:\Program Files\BigFix\__Data\Gateway\__Local\Tmp\Microsoft_Security.dat Object is locked skipped
C:\Program Files\BigFix\__Data\Gateway\__Local\Tmp\Microsoft_Security_UK.dat Object is locked skipped
C:\Program Files\BigFix\__Data\Gateway\__Local\Tmp\Other.dat Object is locked skipped
C:\Program Files\BigFix\__Data\Gateway\__Local\Tmp\Urgent.dat Object is locked skipped
C:\Program Files\BigFix\__Data\Gateway\__Local\Tmp\Welcome.dat Object is locked skipped
C:\Program Files\Icecast2 Win32\logs\access.log Object is locked skipped
C:\Program Files\Icecast2 Win32\logs\error.log Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\master.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\mastlog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\model.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\modellog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\msdbdata.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\msdblog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\tempdb.mdf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Data\templog.ldf Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\LOG\ERRORLOG Object is locked skipped
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\LOG\log_337.trc Object is locked skipped
C:\Program Files\mIRC\mirc.exe Infected: not-a-virus:Client-IRC.Win32.mIRC.631 skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP719\A0110050.dll Infected: not-a-virus:AdWare.Win32.Agent.bii skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP719\A0110060.dll Infected: not-a-virus:AdWare.Win32.Agent.yr skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP723\A0111319.dll Infected: not-a-virus:AdWare.Win32.Agent.zm skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP755\A0116407.exe Infected: not-a-virus:AdTool.Win32.WhenU.a skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP780\A0121416.dll Infected: not-a-virus:AdWare.Win32.Shopper.v skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP799\A0124706.old Infected: Trojan-Downloader.Win32.Small.ixt skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP800\A0125050.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP807\A0126069.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP807\A0126070.dll Infected: not-a-virus:AdWare.Win32.Vapsup.awu skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP809\A0126248.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP809\A0126249.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP809\A0126250.dll Infected: Trojan.Win32.Monder.an skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP809\A0126261.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP809\A0126262.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP809\A0126282.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP809\A0126283.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.qrt skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP809\A0126315.old Infected: Trojan-Downloader.Win32.Small.ixt skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP810\A0126388.old Infected: Trojan-Downloader.Win32.Small.ixt skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP810\A0127039.dll Infected: not-a-virus:AdWare.Win32.Vapsup.awu skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP810\A0127042.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP810\A0128061.exe Infected: Backdoor.Win32.VanBot.db skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP811\A0128175.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP811\A0128177.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.qrt skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP811\A0128178.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.qrq skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP811\A0128179.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP811\A0128181.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP811\A0128184.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP811\A0128186.dll Infected: Trojan.Win32.Monder.an skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP812\A0128206.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP812\A0129283.dll Infected: Trojan.Win32.Monder.db skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP812\A0129286.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP812\A0129287.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP812\A0129288.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP814\A0129329.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP814\A0129332.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP814\A0129360.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP814\A0129361.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP814\A0129435.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP815\A0129472.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP815\A0129473.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP815\A0129474.dll Infected: Trojan.Win32.Monder.gen skipped
C:\System Volume Information\_restore{33267964-7EA5-4B70-8183-818AE8CD6DEC}\RP820\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\ModemLog_SoftV92 Data Fax Modem with SmartCP.txt Object is locked skipped
C:\WINDOWS\Registration\{02D4B3F1-FD88-11D1-960D-00805FC79235}.{B533E941-B384-4417-A40F-E2B5B0F13F20}.crmlog Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\EventCache\{6D30275A-DC25-4935-B495-00EBC884276C}.bin Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\Media Ce.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\59BVS0KC\1[1].exe Infected: not-a-virus:FraudTool.Win32.AntiSpySpider.c skipped
C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\Temp\mcmsc_CodGePZKcpYnEFI Object is locked skipped
C:\WINDOWS\Temp\mcmsc_dHuR6sQGp6cpiz6 Object is locked skipped
C:\WINDOWS\Temp\mcmsc_J7RoePChqWbt2YP Object is locked skipped
C:\WINDOWS\Temp\mcmsc_mAigRn7YuBjOBIn Object is locked skipped
C:\WINDOWS\Temp\sqlite_5Beh6jePJOGhKfa Object is locked skipped
C:\WINDOWS\Temp\sqlite_BjFNygGIOKxof4M Object is locked skipped
C:\WINDOWS\Temp\sqlite_bnozJvloD9LPOS4 Object is locked skipped
C:\WINDOWS\Temp\sqlite_RGpKd0plJAA2AGQ Object is locked skipped
C:\WINDOWS\Temp\~ROMFN_00000728 Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
C:\_OTMoveIt\MovedFiles\05082008_171501\WINDOWS\system32\mlJDturQ.dll Infected: Trojan.Win32.Monder.gen skipped
C:\_OTMoveIt\MovedFiles\05082008_171501\WINDOWS\system32\ssqOHbBu.dll Infected: Trojan.Win32.Monder.gen skipped
Scan process completed.
____________________________________________
Results of HijackThis
Logfile of HijackThis v1.99.1
Scan saved at 11:14:09 PM, on 08/05/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\zHotkey.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Common Files\Logitech\QCDriver\LVCOMS.EXE
C:\Program Files\D-Link\AirPlus G\AirGCFG.exe
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
C:\Program Files\Roxio\Media Experience\DMXLauncher.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Program Files\SiteAdvisor\6253\SiteAdv.exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe
C:\Program Files\Pure Networks\Network Magic\nmapp.exe
C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\Icecast2 Win32\icecastService.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\BigFix\BigFix.exe
c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\SiteAdvisor\6253\SAService.exe
c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://cnn.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6253\SiteAdv.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6253\SiteAdv.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [CHotkey] zHotkey.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [IntelAudioStudio] "C:\Program Files\Intel Audio Studio\IntelAudioStudio.exe" BOOT
O4 - HKLM\..\Run: [Recguard] %WINDIR%\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Common Files\Logitech\QCDriver\LVCOMS.EXE
O4 - HKLM\..\Run: [D-Link AirPlus G] C:\Program Files\D-Link\AirPlus G\AirGCFG.exe
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [MMTray] "C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe"
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [DMXLauncher] "C:\Program Files\Roxio\Media Experience\DMXLauncher.exe"
O4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6253\SiteAdv.exe
O4 - HKLM\..\Run: [McENUI] C:\PROGRA~1\McAfee\MHN\McENUI.exe /hide
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [nmctxth] "C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe"
O4 - HKLM\..\Run: [nmapp] "C:\Program Files\Pure Networks\Network Magic\nmapp.exe" -autorun -nosplash
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [igndlm.exe] C:\Program Files\Download Manager\DLM.exe /windowsstart /startifwork
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Global Startup: BigFix.lnk = C:\Program Files\BigFix\BigFix.exe
O4 - Global Startup: Install Pending Files.LNK = C:\Program Files\SIFXINST\SIFXINST.EXE
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to miniMEDIA Video Converter… - C:\Program Files\Tiger Electronics\miniMEDIA\AMVConverter\grab.html
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: PartyCasino.com - {B4B52284-A248-4c51-9F7C-F0A0C67FCC9D} - C:\Program Files\PartyGaming\PartyCasino\RunCasino.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyCasino.com - {B4B52284-A248-4c51-9F7C-F0A0C67FCC9D} - C:\Program Files\PartyGaming\PartyCasino\RunCasino.exe (file missing)
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/d…can_unicode.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (CDownloadCtrl Object) - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.3.6.108.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
http://pootwoot.spaces.live.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-CA/a-UNO1/GAME_UNO1.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) -
http://flyingmonkeys34.spaces.live.com/Pho…ad/MsnPUpld.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe…nt.cab31267.cab
O16 - DPF: {AF2E62B6-F9E1-4D4F-A10A-9DC8E6DCBCC0} (VideoEgg ActiveX Loader) - http://update.videoegg.com/Install/Windows…ggPublisher.exe
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe…nt.cab56907.cab
O16 - DPF: {C49134CC-B5EF-458C-A442-E8DFE7B4645F} (YYGInstantPlay Control) -
http://www.yoyogames.com/downloads/activex/YoYo.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/shoc…ash/swflash.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - C:\Program Files\Common Files\Pure Networks Shared\Platform\puresp3.dll
O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - C:\Program Files\SiteAdvisor\6253\SiteAdv.dll
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Alpha Networks Inc. - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Icecast Media Server (Icecast) - Unknown owner - C:\Program Files\Icecast2 Win32\icecastService.exe" "C:\Program Files\Icecast2 Win32 (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: SQL Server (SQLEXPRESS) (MSSQL$SQLEXPRESS) - Unknown owner - c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS (file missing)
O23 - Service: Pure Networks Net2Go Service (nmraapache) - Unknown owner - C:\Program Files\Pure Networks\Network Magic\WebServer\bin\nmraapache.exe" -k runservice (file missing)
O23 - Service: Pure Networks Platform Service (nmservice) - Pure Networks, Inc. - C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: SiteAdvisor Service - Unknown owner - C:\Program Files\SiteAdvisor\6253\SAService.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
_________________________________
Once again thanks.
John