So far so good...
I ran the PandaSoftware Scan
Here's that result (Eesh) and then the Hijack log
Incident Status Location
Adware:Adware/PortalScan No disinfected C:\WINNT\system32\winupdt.008
Spyware:Spyware/CWS.Olehelp No disinfected Windows Registry
Adware:Adware/WinTools No disinfected C:\WINNT\hisistheurls.exe
Spyware:Spyware/TVMedia No disinfected C:\Documents and Settings\Administrator\Application Data\tvm*.dll
Adware:Adware/SideFind No disinfected Windows Registry
Adware:Adware/ValueAd No disinfected C:\WINNT\system32\??pPatch
Spyware:Spyware/TVMedia No disinfected C:\Documents and Settings\Administrator\Application Data\tvmdmns.dll
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[aatapi.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[AMDCXC32.DLL]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[cym.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[dn6801jue.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[dnns0157e.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[dqrpsetu.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[dumap.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[fp0s03d7e.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[gp68l3ju1.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[gplql3351.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[h0n0la5m1d.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[hkink.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[j2j60c1sef.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[kcdsg.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[ktrql7951.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[kwdit.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[l4j80e1ueh.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[LCAUT13n.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[LRDWF13N.DLL]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[m0460ahsed460.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[mfglibnt.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[mhcertui.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[mjieftp.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[mntlsapi.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[o2ns0c57ef.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[o2nslc571f.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[pwrfproc.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[qksname.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[rCsdlg.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[sqmpapi.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[sqndmail.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[sznceng.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[ugerenv.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[wgd_ci.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[wustream.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[xesp3res.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[xwsp3res.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Administrator\Desktop\l2mfix\backup.zip[guard.tmp]
Adware:Adware/Neon No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\47DB24CF-171C-4073-AF3C-0057F8\FA5E269C-2592-486A-A09C-4CDB08
Spyware:Spyware/YourSiteBar No disinfected C:\WINNT\Downloaded Program Files\CONFLICT.1\ysbactivex.inf
Adware:Adware/Gator No disinfected C:\WINNT\Downloaded Program Files\CONFLICT.10\HDPlugin1019.inf
Adware:Adware/Gator No disinfected C:\WINNT\Downloaded Program Files\CONFLICT.12\HDPlugin1019.inf
Adware:Adware/Gator No disinfected C:\WINNT\Downloaded Program Files\CONFLICT.13\HDPlugin1019.inf
Adware:Adware/Gator No disinfected C:\WINNT\Downloaded Program Files\CONFLICT.14\HDPlugin1019.inf
Adware:Adware/Gator No disinfected C:\WINNT\Downloaded Program Files\CONFLICT.15\HDPlugin1019.inf
Adware:Adware/Gator No disinfected C:\WINNT\Downloaded Program Files\CONFLICT.4\HDPlugin1019.inf
Adware:Adware/Gator No disinfected C:\WINNT\Downloaded Program Files\CONFLICT.5\HDPlugin1019.inf
Adware:Adware/Gator No disinfected C:\WINNT\Downloaded Program Files\CONFLICT.6\HDPlugin1019.inf
Adware:Adware/Gator No disinfected C:\WINNT\Downloaded Program Files\CONFLICT.7\HDPlugin1019.inf
Adware:Adware/Gator No disinfected C:\WINNT\Downloaded Program Files\CONFLICT.8\HDPlugin1019.inf
Adware:Adware/Gator No disinfected C:\WINNT\Downloaded Program Files\CONFLICT.9\HDPlugin1019.inf
Adware:Adware/WinTools No disinfected C:\WINNT\hisistheurls.exe
Virus:Trj/Iconz.A Disinfected C:\WINNT\iconz.exe Adware:Adware/SAHAgent No disinfected C:\WINNT\inf\bi6.inf Adware:Adware/SAHAgent No disinfected C:\WINNT\inf\biK.inf
Virus:Trj/Downloader.AVB Disinfected C:\WINNT\system32\aud-acx16.exe
Spyware:Spyware/LZIO-Media No disinfected C:\WINNT\system32\axpfbho.exe
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041206-164835.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041206-164923.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041206-164945.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041206-165057.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041206-165300.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041206-165336.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041206-165412.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041206-165447.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041206-165523.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041207-193449.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041207-193501.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041207-193508.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041207-193515.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041207-193521.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041207-193624.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041208-190241.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041208-190306.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041208-203858.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041208-203859.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041215-095543.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041215-095637.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041215-095641.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041215-095654.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041215-095700.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041215-095705.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041215-123907.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041216-192037.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041216-192038.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041216-192051.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041216-192614.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041216-192622.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041216-192634.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041216-192656.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041216-192718.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-132059.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-132100.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-132114.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-132132.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-132145.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-132156.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-132228.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-132245.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-194715.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-194717.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-194737.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-194756.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-194812.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-194833.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-194854.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041217-194914.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041218-101316.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041218-101320.backup
Virus:Trj/Qhost.Y Disinfected C:\WINNT\system32\drivers\etc\hosts.20041218-101407.backup
Adware:Adware/InetOffers No disinfected C:\WINNT\system32\io2unsins.exe
Adware:Adware/PortalScan No disinfected C:\WINNT\system32\winupdt.008
Adware:Adware/Neon No disinfected C:\WINNT\System32uninstallneo2.exe
Virus:Trj/Downloader.AVB Disinfected C:\WINNT\ysycqax..exe
__________________________
HIJACK LOG
__________________________
Logfile of HijackThis v1.99.1
Scan saved at 5:49:26 PM, on 6/27/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINNT\System32\NMSSvc.exe
C:\Program Files\RealVNC\WinVNC\WinVNC.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINNT\explorer.exe
C:\Documents and Settings\Administrator\Desktop\misc\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.uscellular.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.uscellular.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.uscellular.com/
O1 - Hosts: 64.91.255.87 www.dcsresearch.com
O2 - BHO: TBT Popup Blocker - {3950E0E8-58DC-467E-9EE4-21A0E0B142C4} - (no file)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: ShowBarObj Class - {79A002FB-C126-462D-B4A7-81D6B42D1666} - F:\BIZZZZ\New Folder\Traffic_Toolbar\ShowMyBar.dll (file missing)
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll (file missing)
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll (file missing)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll (file missing)
O3 - Toolbar: StockBar Class - {07A3D336-90D3-4C90-922D-7257D56434BF} - F:\BIZZZZ\New Folder\Traffic_Toolbar\htmlbar.dll (file missing)
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [WinVNC] "C:\Program Files\RealVNC\WinVNC\WinVNC.exe" -servicehelper
O4 - HKLM\..\Run: [SpybotSnD] "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
O4 - HKLM\..\Run: [msnappau] "C:\Program Files\MSN Apps\Updater\01.03.0000.1005\en-us\msnappau.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE10\EXCEL.EXE/3000
O9 - Extra button: Traffic Toolbar - {A26ABCF0-1C8F-46e7-A67C-0489DC21B9CC} - C:\WINNT\System32\shdocvw.dll
O9 - Extra 'Tools' menuitem: Traffic Toolbar - {A26ABCF0-1C8F-46e7-A67C-0489DC21B9CC} - C:\WINNT\System32\shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: Yahoo! Pool 2 - http://download.game...ts/y/pote_x.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....467&clcid=0x409
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg...v45/yacscom.cab
O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - http://www.cult3d.co...wnload/cult.cab
O16 - DPF: {3FE16C08-D6A7-4133-84FC-D5BFB4F7D886} (WebGameLoader Class) - http://zone.msn.com/...bGameLoader.cab
O16 - DPF: {511073AD-BE56-4D43-AE68-93390514385E} (TechToolsActivex.TechTools) - file://C:\Program Files\gateway\helpspot\TechTools.CAB
O16 - DPF: {64D01C7F-810D-446E-A07E-16C764235644} (AtlAtomadersCtlAttrib Class) - http://zone.msn.com/...t/atomaders.cab
O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoft.../as5/asinst.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/...ro.cab34246.cab
O16 - DPF: {CA034DCC-A580-4333-B52F-15F98C42E04C} (Downloader Class) - http://www.stopzilla...ller/dwnldr.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://download.game...aploader_v6.cab
O20 - Winlogon Notify: igfxcui - C:\WINNT\SYSTEM32\igfxsrvc.dll
O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINNT\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe (file missing)
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Intel® NMS (NMSSvc) - Intel Corporation - C:\WINNT\System32\NMSSvc.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: VNC Server (winvnc) - Unknown owner - C:\Program Files\RealVNC\WinVNC\WinVNC.exe" -service (file missing)