Finally had the time to run everything. I still have the 'Black Shadows' around the desktop icons. But, no more mass e-mailing, so I guess it's progress.
Here are the Log Files:
Ewido:
---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------
+ Created on: 10:34:39 AM, 2/26/2006
+ Report-Checksum: 391F85AF
+ Scan result:
HKU\S-1-5-21-299502267-2139871995-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6001CDF7-6F45-471B-A203-0225615E35A7} -> Adware.Generic : Cleaned with backup
[680] C:\WINDOWS\system32\msupdate32.dll -> Backdoor.Delf.aml : Cleaned with backup
[1216] C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.dll -> Logger.Small.dg : Cleaned with backup
C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.dll -> Logger.Small.dg : Cleaned with backup
C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe -> Logger.Small.dg : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\popcaploader.dll -> Not-A-Virus.Downloader.Win32.PopCap.b : Cleaned with backup
C:\WINDOWS\system32\msupdate32.dll -> Backdoor.Delf.aml : Cleaned with backup
C:\WINDOWS\tool2.exe -> Not-A-Virus.Hoax.Win32.Renos.bm : Cleaned with backup
D:\Programs\Cracks\WinACE Archiver 2.04 Keygen.zip/WinACE Archiver 2.04 Keygen/CORE2000.EXE -> Worm.Finaldo.a : Error during cleaning
::Report End
Kaspersky:
------------------------------------------------------------------------------
KASPERSKY ON-LINE SCANNER REPORT
Sunday, February 26, 2006 21:35:53
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version: 5.0.67.0
Kaspersky Anti-Virus database last update: 26/02/2006
Kaspersky Anti-Virus database records: 178824
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
A:\
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\
K:\
Scan Statistics:
Total number of scanned objects: 61021
Number of viruses found: 29
Number of infected objects: 80
Number of suspicious objects: 0
Duration of the scan process: 4691 sec
Infected Object Name - Virus Name
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\0E122381.txt Infected: Trojan-Downloader.Win32.Adload.q
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\0F3D5CAA.exe Infected: Trojan.Win32.VB.ajo
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\1ECC0D5C.htm Infected: Trojan-Clicker.JS.Agent.e
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\1ECF3758.exe Infected: Trojan-Downloader.Win32.Adload.u
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\1ED36155.exe Infected: Trojan-Downloader.Win32.Adload.q
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\1ED36155.txt Infected: Trojan.Win32.StartPage.adi
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\1ED60B51.exe Infected: Trojan-Clicker.Win32.Agent.gp
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\1ED9354E.exe Infected: Trojan.Win32.VB.ajo
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\484A4582.exe Infected: Trojan.Win32.StartPage.adi
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\528E4743.dll Infected: Trojan-Clicker.Win32.Small.jf
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\53DA0180.exe Infected: Trojan-Clicker.Win32.Agent.gp
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\605B3C13.exe Infected: Trojan-Clicker.Win32.VB.is
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\616D02E5.exe/data0002 Infected: Trojan-Clicker.Win32.Small.jf
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\616D02E5.exe Infected: Trojan-Clicker.Win32.Small.jf
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\61AF4A9D.txt Infected: Trojan-Dropper.Win32.Small.amd
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\61B94892.txt Infected: Trojan-Proxy.Win32.Xorpix.o
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\63D84F49.exe Infected: Trojan-Proxy.Win32.Xorpix.o
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\6A9D18C9.exe Infected: Trojan-Proxy.Win32.Xorpix.o
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\6E080D06.exe Infected: Trojan-Dropper.Win32.Small.amd
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\6E0E60FF.exe Infected: Trojan-Clicker.Win32.VB.is
C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\7074365C.exe Infected: Trojan.Win32.Inject.i
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP56\A0024342.exe/Norton_Antivirus_2006_by_gHHg.EXE Infected: Trojan-PSW.Win32.Delf.ik
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP56\A0024342.exe/run.exe Infected: Trojan-Downloader.Win32.Small.cjg
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP56\A0024342.exe Infected: Trojan-Downloader.Win32.Small.cjg
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP56\A0024344.EXE Infected: Trojan-PSW.Win32.Delf.ik
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP56\A0024345.exe Infected: Trojan-Downloader.Win32.Small.cjg
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP56\A0025245.exe Infected: not-virus:Hoax.Win32.Renos.bm
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP56\A0025246.exe/data0002 Infected: Trojan-Clicker.Win32.Small.jf
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP56\A0025246.exe Infected: Trojan-Clicker.Win32.Small.jf
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP56\A0025247.exe Infected: Trojan-Downloader.Win32.Adload.u
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP57\A0025873.dll Infected: Trojan-Clicker.Win32.Small.jf
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP57\A0026997.exe Infected: Trojan-Proxy.Win32.Xorpix.o
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP57\A0027000.exe Infected: Trojan-Dropper.Win32.Small.amd
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP57\A0027001.exe Infected: Trojan-Clicker.Win32.VB.is
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP57\A0027006.exe Infected: Trojan-Proxy.Win32.Xorpix.o
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP57\A0027008.exe Infected: Trojan.Win32.Inject.i
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP58\A0027013.exe Infected: Trojan.Win32.StartPage.adi
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP58\A0027014.exe Infected: Trojan-Downloader.Win32.Adload.q
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP58\A0027015.exe Infected: Trojan-Clicker.Win32.Agent.gp
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP58\A0027016.exe Infected: Trojan.Win32.VB.ajo
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP58\A0027227.dll Infected: Trojan-Spy.Win32.Small.dg
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP58\A0027230.exe Infected: Trojan-Spy.Win32.Small.dg
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP58\A0027231.exe Infected: not-virus:Hoax.Win32.Renos.bm
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP58\A0027233.dll Infected: Backdoor.Win32.Delf.aml
C:\System Volume Information\_restore{F9EAADB7-F588-4CE0-888E-E9705F8145C7}\RP58\A0027234.dll Infected: Trojan-Spy.Win32.Small.dg
C:\WINDOWS\tool3.exe Infected: Trojan-Downloader.Win32.Tiny.bi
D:\Programs\Apps\Desktop\a0109.exe/WISE0013.BIN Infected: not-a-virus:AdWare.Win32.MyWebSearch.ak
D:\Programs\Apps\Desktop\a0109.exe Infected: not-a-virus:AdWare.Win32.MyWebSearch.ak
D:\Programs\Apps\Desktop\iconwars.exe/WISE0019.BIN Infected: Trojan-Downloader.Win32.Small.bke
D:\Programs\Apps\Desktop\iconwars.exe/WISE0020.BIN Infected: not-a-virus:AdWare.Win32.NewDotNet
D:\Programs\Apps\Desktop\iconwars.exe/WISE0021.BIN/stream/data0004 Infected: not-a-virus:AdWare.Win32.ActivShopper.a
D:\Programs\Apps\Desktop\iconwars.exe/WISE0021.BIN/stream/data0005 Infected: not-a-virus:AdWare.Win32.ActivShopper.a
D:\Programs\Apps\Desktop\iconwars.exe/WISE0021.BIN/stream Infected: not-a-virus:AdWare.Win32.ActivShopper.a
D:\Programs\Apps\Desktop\iconwars.exe/WISE0021.BIN Infected: not-a-virus:AdWare.Win32.ActivShopper.a
D:\Programs\Apps\Desktop\iconwars.exe Infected: not-a-virus:AdWare.Win32.ActivShopper.a
D:\Programs\Apps\DivXPro511Adware.exe/stream/data0019 Infected: not-a-virus:AdWare.Win32.Gator.3202
D:\Programs\Apps\DivXPro511Adware.exe/stream Infected: not-a-virus:AdWare.Win32.Gator.3202
D:\Programs\Apps\DivXPro511Adware.exe Infected: not-a-virus:AdWare.Win32.Gator.3202
D:\Programs\Apps\setup_ares.exe/data0037 Infected: not-a-virus:AdWare.Win32.NavExcel.i
D:\Programs\Apps\setup_ares.exe Infected: not-a-virus:AdWare.Win32.NavExcel.i
D:\Programs\My Backups\iMeshV3.exe/WISE0018.BIN/cd_clint.dll Infected: not-a-virus:AdWare.Win32.Cydoor
D:\Programs\My Backups\iMeshV3.exe/WISE0018.BIN/cd_htm.dll Infected: not-a-virus:AdWare.Win32.Cydoor
D:\Programs\My Backups\iMeshV3.exe/WISE0018.BIN Infected: not-a-virus:AdWare.Win32.Cydoor
D:\Programs\My Backups\iMeshV3.exe/WISE0019.BIN Infected: not-a-virus:AdWare.Win32.NewDotNet
D:\Programs\My Backups\iMeshV3.exe/WISE0022.BIN Infected: not-a-virus:AdWare.Win32.Gator.1050
D:\Programs\My Backups\iMeshV3.exe/WISE0024.BIN/SaveNow.exe Infected: not-a-virus:AdWare.Win32.SaveNow.w
D:\Programs\My Backups\iMeshV3.exe/WISE0024.BIN/Uninst.exe Infected: not-a-virus:AdWare.Win32.SaveNow.au
D:\Programs\My Backups\iMeshV3.exe/WISE0024.BIN Infected: not-a-virus:AdWare.Win32.SaveNow.au
D:\Programs\My Backups\iMeshV3.exe Infected: not-a-virus:AdWare.Win32.SaveNow.au
D:\System Volume Information\_restore{00A641D2-D834-4BA2-AD6B-C0723A048BC0}\RP105\A0032217.exe/run.exe Infected: Trojan-Downloader.Win32.PassAlert.i
D:\System Volume Information\_restore{00A641D2-D834-4BA2-AD6B-C0723A048BC0}\RP105\A0032217.exe Infected: Trojan-Downloader.Win32.PassAlert.i
D:\System Volume Information\_restore{0979F568-A157-4976-9D4B-1DAB7C124935}\RP170\A0044164.exe/WISE0020.BIN Infected: Trojan-Downloader.Win32.Small.bke
D:\System Volume Information\_restore{0979F568-A157-4976-9D4B-1DAB7C124935}\RP170\A0044164.exe/WISE0021.BIN Infected: not-a-virus:AdWare.Win32.NewDotNet
D:\System Volume Information\_restore{0979F568-A157-4976-9D4B-1DAB7C124935}\RP170\A0044164.exe/WISE0022.BIN/stream/data0007 Infected: not-a-virus:AdWare.Win32.ActivShopper.a
D:\System Volume Information\_restore{0979F568-A157-4976-9D4B-1DAB7C124935}\RP170\A0044164.exe/WISE0022.BIN/stream/data0008 Infected: not-a-virus:AdWare.Win32.ActivShopper.a
D:\System Volume Information\_restore{0979F568-A157-4976-9D4B-1DAB7C124935}\RP170\A0044164.exe/WISE0022.BIN/stream Infected: not-a-virus:AdWare.Win32.ActivShopper.a
D:\System Volume Information\_restore{0979F568-A157-4976-9D4B-1DAB7C124935}\RP170\A0044164.exe/WISE0022.BIN Infected: not-a-virus:AdWare.Win32.ActivShopper.a
D:\System Volume Information\_restore{0979F568-A157-4976-9D4B-1DAB7C124935}\RP170\A0044164.exe Infected: not-a-virus:AdWare.Win32.ActivShopper.a
D:\System Volume Information\_restore{0979F568-A157-4976-9D4B-1DAB7C124935}\RP204\A0048356.exe/run.exe Infected: Trojan-Downloader.Win32.Adload.j
D:\System Volume Information\_restore{0979F568-A157-4976-9D4B-1DAB7C124935}\RP204\A0048356.exe Infected: Trojan-Downloader.Win32.Adload.j
Scan process completed.
HJT:
Logfile of HijackThis v1.99.1
Scan saved at 9:36:42 PM, on 2/26/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Norton Internet Security\ISSVC.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\WINDOWS\System32\GEARSec.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Symantec\Norton Ghost\Agent\PQV2iSvc.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\CTHELPER.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Symantec\Norton Ghost\Agent\GhostTray.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\SYSDOC32.EXE
C:\Program Files\Lavasoft\Ad-aware 6\Ad-watch.exe
C:\Documents and Settings\Jeff\Desktop\SpyWare\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Acrobat\ActiveX\AcroIEHelper.ocx
O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Norton Ghost 9.0] C:\Program Files\Symantec\Norton Ghost\Agent\GhostTray.exe
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [Ad-aware] C:\Program Files\Lavasoft\Ad-aware 6\Ad-aware.exe +c
O4 - HKLM\..\Run: [Ad-watch] C:\Program Files\Lavasoft\Ad-aware 6\Ad-watch.exe
O4 - HKCU\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /0
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Norton System Doctor.lnk = C:\Program Files\Norton SystemWorks\Norton Utilities\SYSDOC32.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) -
http://www.creative.com/su/ocx/15015/CTSUEng.cab
O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} (asusTek_sysctrl Class) -
http://support.asus.com/common/asusTek_sys_ctrl.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky.com/downloads/k...an_unicode.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/windowsu...?1139790122109
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.microsoft.com/microsof...?1139791777716
O16 - DPF: {7E980B9B-8AE5-466A-B6D6-DA8CF814E78A} (MJLauncherCtrl Class) -
http://zone.msn.com/bingame/luxr/def...jolauncher.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) -
http://cdn2.zone.msn.com/binFramewor...o.cab34246.cab
O16 - DPF: {D77EF652-9A6B-40C8-A4B9-1C0697C6CF41} (TikGames Online Control) -
http://zone.msn.com/bingame/gold/unskin/gf.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) -
http://zone.msn.com/bingame/dim2/def...ploader_v6.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) -
http://www.creative.com/su/ocx/15016/CTPID.cab
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: GEARSecurity - GEAR Software - C:\WINDOWS\System32\GEARSec.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Ghost - Symantec Corporation - C:\Program Files\Symantec\Norton Ghost\Agent\PQV2iSvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
Thanks for all your help so far!