Thankyou very much! It seems to be all OK now.
Here are the logs:
------------------------------------------------------------------
Look2Me-Destroyer V1.0.12
Scanning for infected files.....
Scan started at 9/24/2006 11:21:04 AM
Infected! C:\WINDOWS\system32\d8j00i1me8.dll
Infected! C:\WINDOWS\system32\rXrv1032.dll
Infected! C:\WINDOWS\system32\fvusd.dll
Infected! C:\WINDOWS\system32\d8j00i1me8.dll
Infected! C:\WINDOWS\system32\s4rs0e97eh.dll
Infected! C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071759.dll
Infected! C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071752.dll
Infected! C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071765.dll
Infected! C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071771.dll
Infected! C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071772.dll
Infected! C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071774.dll
Infected! C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071780.dll
Infected! C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071783.dll
Infected! C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071789.dll
Infected! C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071792.dll
Infected! C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071793.dll
Infected! C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071802.dll
Infected! C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071810.dll
Infected! C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071811.dll
Infected! C:\WINDOWS\system32\guard.tmp
Attempting to delete infected files...
Attempting to delete: C:\WINDOWS\system32\d8j00i1me8.dll
C:\WINDOWS\system32\d8j00i1me8.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\rXrv1032.dll
C:\WINDOWS\system32\rXrv1032.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\fvusd.dll
C:\WINDOWS\system32\fvusd.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\d8j00i1me8.dll
C:\WINDOWS\system32\d8j00i1me8.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\s4rs0e97eh.dll
C:\WINDOWS\system32\s4rs0e97eh.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071759.dll
C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071759.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071752.dll
C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071752.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071765.dll
C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071765.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071771.dll
C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071771.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071772.dll
C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071772.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071774.dll
C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071774.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071780.dll
C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071780.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071783.dll
C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071783.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071789.dll
C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071789.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071792.dll
C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071792.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071793.dll
C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071793.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071802.dll
C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071802.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071810.dll
C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071810.dll Deleted successfully!
Attempting to delete: C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071811.dll
C:\System Volume Information\_restore{CA019322-6CDD-4237-A708-9D7473CE3A9F}\RP237\A0071811.dll Deleted successfully!
Attempting to delete: C:\WINDOWS\system32\guard.tmp
C:\WINDOWS\system32\guard.tmp Deleted successfully!
Making registry repairs.
Removing: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\App Paths
Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{AA4A9FF3-6A21-420F-A318-18C7EE4F6008}"
HKCR\Clsid\{AA4A9FF3-6A21-420F-A318-18C7EE4F6008}
Restoring Windows certificates.
Replaced hosts file with default windows hosts file
Restoring SeDebugPrivilege for Administrators - Succeeded
-----------------------------------------------------------------------------------------------------------
Logfile of HijackThis v1.99.1
Scan saved at 11:25:52 AM, on 9/24/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
C:\WINDOWS\system32\CTHELPER.EXE
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\Program Files\Network Associates\VirusScan\mcshield.exe
C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
D:\3d Studio Max\mentalray\satellite\raysat_3dsmax8server.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Alcohol 52\Alcohol 52\StarWind\StarWindService.exe
C:\WINDOWS\system32\ZONELABS\vsmon.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
D:\Hijack This\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
https://loginnet.pas...uth.srf?lc=1033O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKCU\..\Run: [WindowsSys USB2 Driver] notpad.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NVMCTRAY.DLL,NvTaskbarInit
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - D:\3d Studio Max\mentalray\satellite\raysat_3dsmax8server.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Alcohol 52\Alcohol 52\StarWind\StarWindService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZONELABS\vsmon.exe