Malwarebytes' Anti-Malware 1.41 Database version: 2954 Windows 5.1.2600 Service Pack 3 11/17/2009 4:32:14 PM mbam-log-2009-11-17 (16-32-14).txt Scan type: Quick Scan Objects scanned: 117060 Time elapsed: 6 minute(s), 56 second(s) Memory Processes Infected: 1 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 1 Folders Infected: 0 Files Infected: 4 Memory Processes Infected: C:\WINDOWS\system\services.exe (Heuristics.Reserved.Word.Exploit) -> Unloaded process successfully. Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL\CheckedValue (Hijack.System.Hidden) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully. Folders Infected: (No malicious items detected) Files Infected: C:\WINDOWS\Explore.exe (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system\services.exe (Heuristics.Reserved.Word.Exploit) -> Quarantined and deleted successfully. C:\WINDOWS\winlogon.exe (Heuristics.Reserved.Word.Exploit) -> Quarantined and deleted successfully. C:\WINDOWS\system32\drivers\System.exe (Trojan.Agent) -> Delete on reboot.