Thanks for your help so far, hopefully we can get this thing cleared out. Here are the 2 logs you need.
L2M Destroyer:
------------------
Look2Me-Destroyer V1.0.12
Scanning for infected files.....
Scan started at 4/27/2006 12:31:08 PM
Infected! C:\WINDOWS\system32\ir48l5hu1.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029178.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029198.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029203.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029225.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029230.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029368.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029372.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029424.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029428.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029447.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029452.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP434\A0029481.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP434\A0029489.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP435\A0029509.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP437\A0032467.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP438\A0032562.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP438\A0032563.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032573.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032586.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032600.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032604.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032605.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032610.dll
Infected! C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032615.dll
Infected! C:\WINDOWS\system32\ir48l5hu1.dll
Infected! C:\WINDOWS\system32\q268lcju1fo8.dll
Infected! C:\WINDOWS\system32\sUmlib.dll
Infected! C:\WINDOWS\system32\guard.tmp
Attempting to delete infected files...
Attempting to delete: C:\WINDOWS\system32\ir48l5hu1.dll
C:\WINDOWS\system32\ir48l5hu1.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029178.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029178.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029198.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029198.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029203.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029203.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029225.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029225.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029230.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029230.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029368.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029368.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029372.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029372.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029424.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029424.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029428.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029428.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029447.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029447.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029452.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP433\A0029452.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP434\A0029481.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP434\A0029481.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP434\A0029489.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP434\A0029489.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP435\A0029509.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP435\A0029509.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP437\A0032467.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP437\A0032467.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP438\A0032562.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP438\A0032562.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP438\A0032563.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP438\A0032563.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032573.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032573.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032586.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032586.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032600.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032600.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032604.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032604.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032605.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032605.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032610.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032610.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032615.dll
C:\System Volume Information\_restore{C8ED17E5-E033-4B45-B2FB-BA2077226AB5}\RP439\A0032615.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\ir48l5hu1.dll
C:\WINDOWS\system32\ir48l5hu1.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\q268lcju1fo8.dll
C:\WINDOWS\system32\q268lcju1fo8.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\sUmlib.dll
C:\WINDOWS\system32\sUmlib.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\guard.tmp
C:\WINDOWS\system32\guard.tmp Deleted successfully!
Making registry repairs.
Removing: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MS-DOS Emulation
Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{A5783DC5-A8DB-49E9-AA9A-C0F876AE04BD}"
HKCR\Clsid\{A5783DC5-A8DB-49E9-AA9A-C0F876AE04BD}
Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{F0B43E42-1227-4C08-A308-B72EC0FD38F2}"
HKCR\Clsid\{F0B43E42-1227-4C08-A308-B72EC0FD38F2}
Restoring Windows certificates.
Replaced hosts file with default windows hosts file
Restoring SeDebugPrivilege for Administrators - Succeeded
And the HijackThis log.
-------------
Logfile of HijackThis v1.99.1
Scan saved at 12:42:37 PM, on 4/27/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\S2FyYSBIb3J0b24\command.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Network Monitor\netmon.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\pctspk.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\System32\wdfmgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\elitemediapop.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\COMMON~1\uqzu\uqzum.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://yahoo.sbc.com/dslR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://red.clientapps.yahoo.com/customize/...//www.yahoo.comR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://red.clientapps.yahoo.com/customize/.../search/ie.htmlR0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://yahoo.sbc.com/dslR1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://red.clientapps.yahoo.com/customize/...//www.yahoo.comR3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - C:\Program Files\SurfSideKick 3\SskBho.dll
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
F2 - REG:system.ini: Shell=Explorer.exe, C:\WINDOWS\system32\xtqju.exe
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,jpxnfns.exe
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll (file missing)
O3 - Toolbar: Toolbar888 - {77FBF9B8-1D37-4FF2-9CED-192D8E3ABA6F} - C:\Program Files\Toolbar888\tbu02640\ToolBar888.dll
O3 - Toolbar: (no name) - {9A9C9B68-F908-4AAB-8D0C-10EA8997F37E} - (no file)
O4 - HKLM\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - HKLM\..\Run: [elitemedia] C:\WINDOWS\elitemediapop.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKCU\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - HKCU\..\Run: [uqzu] C:\PROGRA~1\COMMON~1\uqzu\uqzum.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra 'Tools' menuitem: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll (file missing)
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes.dll
O9 - Extra button: (no name) - {4ABF810A-F11D-4169-9D5F-7D274F2270A1} - C:\WINDOWS\System32\dmonwv.dll
O9 - Extra 'Tools' menuitem: Java - {4ABF810A-F11D-4169-9D5F-7D274F2270A1} - C:\WINDOWS\System32\dmonwv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: *.elitemediagroup.net
O15 - Trusted Zone:
http://click.getmirar.com (HKLM)
O15 - Trusted Zone:
http://click.mirarsearch.com (HKLM)
O15 - Trusted Zone:
http://redirect.mirarsearch.com (HKLM)
O15 - Trusted Zone:
http://awbeta.net-nucleus.com (HKLM)
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\common\yinsthelper.dll
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) -
http://upload.facebook.com/controls/Facebo...otoUploader.cabO16 - DPF: {9AC54695-69A4-46F1-BE10-10C74F9520D5} (elitectl.DemoCtl) -
http://cabs.elitemediagroup.net/cabs/mediaview.cabO16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) -
http://photos.yahoo.com/ocx/us/yexplorer1_9us.cabO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
https://fpdownload.macromedia.com/pub/shock...ash/swflash.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{0BEF29A7-77CC-4BC9-A724-3D56D0C582EF}: NameServer = 166.102.165.11 166.102.165.13
O17 - HKLM\System\CS1\Services\Tcpip\..\{0BEF29A7-77CC-4BC9-A724-3D56D0C582EF}: NameServer = 166.102.165.11 166.102.165.13
O17 - HKLM\System\CS2\Services\Tcpip\..\{0BEF29A7-77CC-4BC9-A724-3D56D0C582EF}: NameServer = 166.102.165.11 166.102.165.13
O20 - AppInit_DLLs: repairs303169572.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\S2FyYSBIb3J0b24\command.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MSSQLServerADHelper - Unknown owner - C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe (file missing)
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Network Monitor - Unknown owner - C:\Program Files\Network Monitor\netmon.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\system32\YPCSER~1.EXE