Thank you very much Kenny94 for the quick response. I really appreciate it.
I was at the office PC awhile ago. This time, on my home PC, the virus simply won't be detected by the antivirus program. I will also run the scan again as soon as I get back to the office. I hope you still have the time.
I followed your instructions on my home PC and here are the logs:
DDS.txt.
DDS (Ver_11-03-05.01) - NTFSx86
Run by Administrator at 22:34:18.01 on Wed 04/20/2011
Internet Explorer: 6.0.2900.5512 BrowserJavaVersion: 1.6.0_16
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3062.2092 [GMT -7]
.
.
============== Running Processes ===============
.
D:\WINDOWS.0\system32\svchost -k DcomLaunch
svchost.exe
D:\WINDOWS.0\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
D:\WINDOWS.0\system32\spoolsv.exe
D:\WINDOWS.0\system32\igfxtray.exe
D:\WINDOWS.0\system32\igfxpers.exe
D:\WINDOWS.0\RTHDCPL.EXE
D:\WINDOWS.0\system32\igfxsrvc.exe
D:\WINDOWS.0\System32\spool\DRIVERS\W32X86\3\E_S4I3T1.EXE
D:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
D:\Program Files\Java\jre6\bin\jusched.exe
D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
D:\Program Files\iTunes\iTunesHelper.exe
D:\WINDOWS.0\system32\ctfmon.exe
D:\Documents and Settings\Administrator\Application Data\Dropbox\bin\Dropbox.exe
D:\Program Files\BitTorrent\bittorrent.exe
C:\backup 12-29-2009\Softwares\portable software\TheSage.3.0.16.1718.RC1\TheSage.exe
D:\Program Files\Opera\opera.exe
svchost.exe
D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
D:\Program Files\Bonjour\mDNSResponder.exe
D:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
D:\Program Files\Java\jre6\bin\jqs.exe
D:\Program Files\Alias\Maya7.0\docs\wrapper.exe
D:\WINDOWS.0\system32\svchost.exe -k imgsvc
D:\Program Files\Alias\Maya7.0\docs\jre\bin\java.exe
D:\Program Files\iPod\bin\iPodService.exe
D:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
D:\WINDOWS.0\explorer.exe
D:\Program Files\Java\jre6\bin\jucheck.exe
D:\Documents and Settings\Administrator\Desktop\dds.scr
.
============== Pseudo HJT Report ===============
.
uStart Page =
hxxp://eis.esnips.com/page/search/?client_uuid=bda82ac0-85c3-4b48-b0d2-41fde8d1391dmStart Page =
hxxp://eis.esnips.com/page/search/?client_uuid=bda82ac0-85c3-4b48-b0d2-41fde8d1391duInternet Settings,ProxyOverride = *.local
mWinlogon: SfcDisable=-99 (0xffffff9d)
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - d:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - d:\progra~1\micros~3\office12\GRA8E1~1.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - d:\program files\java\jre6\bin\jp2ssv.dll
BHO: kikin Plugin: {e601996f-e400-41ca-804b-cd6373a7eee2} - d:\program files\kikin\ie_kikin.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - d:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {32099AAC-C132-4136-9E9A-4E364A424E17} - No File
uRun: [EA Core] "d:\program files\electronic arts\eadm\Core.exe" -silent
uRun: [Messenger (Yahoo!)] "d:\program files\yahoo!\messenger\YahooMessenger.exe" -quiet
uRun: [BitTorrent DNA] "d:\program files\bittorrent_dna\dna.exe"
uRun: [ctfmon.exe] d:\windows.0\system32\ctfmon.exe
uRun: [DAEMON Tools Lite] "d:\program files\daemon tools lite\DTLite.exe" -autorun
mRun: [IgfxTray] d:\windows.0\system32\igfxtray.exe
mRun: [HotKeysCmds] d:\windows.0\system32\hkcmd.exe
mRun: [Persistence] d:\windows.0\system32\igfxpers.exe
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [Adobe Reader Speed Launcher] "d:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
mRun: [EPSON Stylus C45 Series] d:\windows.0\system32\spool\drivers\w32x86\3\E_S4I3T1.EXE /P23 "EPSON Stylus C45 Series" /O6 "USB001" /M "Stylus C45"
mRun: [egui] "d:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice
mRun: [AdobeCS4ServiceManager] "d:\program files\common files\adobe\cs4servicemanager\CS4ServiceManager.exe" -launchedbylogin
mRun: [SunJavaUpdateSched] "d:\program files\java\jre6\bin\jusched.exe"
mRun: [CanonSolutionMenu] d:\program files\canon\solutionmenu\CNSLMAIN.exe /logon
mRun: [STICKYNOTES] d:\program files\morpheusweb.it\stickynotes\StickyNotes.exe
mRun: [GrooveMonitor] "d:\program files\microsoft office\office12\GrooveMonitor.exe"
mRun: [UnlockerAssistant] "d:\program files\unlocker\UnlockerAssistant.exe"
mRun: [QuickTime Task] "d:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "d:\program files\itunes\iTunesHelper.exe"
dRunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
StartupFolder: d:\docume~1\admini~1\startm~1\programs\startup\dropbox.lnk - d:\documents and settings\administrator\application data\dropbox\bin\Dropbox.exe
StartupFolder: d:\docume~1\admini~1\startm~1\programs\startup\thesag~1.lnk - c:\backup 12-29-2009\softwares\portable software\thesage.3.0.16.1718.rc1\TheSage.exe
uPolicies-explorer: NoSMHelp = 1 (0x1)
uPolicies-explorer: ForceClassicControlPanel = 1 (0x1)
uPolicies-explorer: NoResolveTrack = 1 (0x1)
uPolicies-explorer: NoSMMyPictures = 1 (0x1)
uPolicies-explorer: NoSMConfigurePrograms = 1 (0x1)
mPolicies-explorer: NoDesktopCleanupWizard = 1 (0x1)
mPolicies-system: DisableCAD = 1 (0x1)
dPolicies-explorer: NoSMHelp = 1 (0x1)
dPolicies-explorer: ForceClassicControlPanel = 1 (0x1)
dPolicies-explorer: NoResolveTrack = 1 (0x1)
dPolicies-explorer: NoSMMyPictures = 1 (0x1)
dPolicies-explorer: NoSMConfigurePrograms = 1 (0x1)
IE: E&xport to Microsoft Excel - d:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - {E601996F-E400-41CA-804B-CD6373A7EEE2} - d:\program files\kikin\ie_kikin.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - d:\progra~1\micros~3\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - d:\progra~1\micros~3\office12\REFIEBAR.DLL
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cabDPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cabDPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cabHandler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - d:\progra~1\micros~3\office12\GR99D3~1.DLL
Notify: igfxcui - igfxdev.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - d:\progra~1\micros~3\office12\GRA8E1~1.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - d:\docume~1\admini~1\applic~1\mozilla\firefox\profiles\6q3u0bnm.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage -
hxxp://eis.esnips.com/page/search/?client_uuid=bda82ac0-85c3-4b48-b0d2-41fde8d1391dFF - prefs.js: keyword.URL -
hxxp://eis.esnips.com/page/search_provider/?client_uuid=bda82ac0-85c3-4b48-b0d2-41fde8d1391d&q=FF - plugin: d:\program files\bittorrent_dna\npbtdna.dll
.
============= SERVICES / DRIVERS ===============
.
R1 ehdrv;ehdrv;d:\windows.0\system32\drivers\ehdrv.sys [2009-3-19 107256]
R1 epfwtdir;epfwtdir;d:\windows.0\system32\drivers\epfwtdir.sys [2009-3-19 93848]
R2 ekrn;ESET Service;d:\program files\eset\eset nod32 antivirus\ekrn.exe [2009-3-19 731840]
S3 Ambfilt;Ambfilt;d:\windows.0\system32\drivers\Ambfilt.sys [2009-12-31 1684736]
.
=============== Created Last 30 ================
.
2011-04-17 21:22:51 -------- d-----w- D:\Portrait Professional Studio 9.0.14 Portable
2011-04-17 20:08:58 -------- d-----w- d:\docume~1\admini~1\applic~1\Anthropics
2011-04-17 20:07:39 -------- d-----w- d:\program files\Portrait Professional 9 Trial
2011-04-17 20:01:35 -------- d-----w- d:\docume~1\admini~1\applic~1\kikin
2011-04-17 20:01:34 -------- d-----w- d:\program files\kikin
2011-04-17 20:01:16 -------- d-----w- d:\program files\JDownloader
2011-04-09 19:11:01 -------- d-----w- D:\Where The Wild Things Are {2009} DVDRIP. Jaybob
2011-04-09 18:58:11 -------- d-----w- d:\program files\ConvertHelper
2011-04-04 06:35:06 -------- d-----w- d:\documents and settings\administrator\dwhelper
2011-03-28 03:46:04 -------- d-----w- D:\Le Ballon Rouge - The Red Balloon (1956)
2011-03-26 07:04:20 -------- d-----w- d:\docume~1\admini~1\locals~1\applic~1\Adobe
.
==================== Find3M ====================
.
.
============= FINISH: 22:34:30.17 ===============
Attach.txt.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_11-03-05.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 12/31/2009 1:37:17 AM
System Uptime: 4/20/2011 10:20:28 PM (0 hours ago)
.
Motherboard: ASUSTeK Computer INC. | | P5KPL-AM SE
Processor: Intel Pentium III Xeon processor | Socket 775 | 2600/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 98 GiB total, 3.516 GiB free.
D: is FIXED (NTFS) - 51 GiB total, 4.444 GiB free.
E: is CDROM ()
F: is CDROM ()
G: is Removable
H: is CDROM ()
I: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP115: 3/31/2011 12:40:42 AM - System Checkpoint
RP116: 4/2/2011 6:36:45 PM - System Checkpoint
RP117: 4/9/2011 11:46:03 AM - System Checkpoint
RP118: 4/10/2011 5:57:22 PM - Removed Disney-Pixar WALL-E
RP119: 4/13/2011 8:58:46 PM - Removed Opera 11.01.
RP120: 4/17/2011 10:50:41 AM - System Checkpoint
RP121: 4/18/2011 11:37:04 PM - System Checkpoint
.
==== Installed Programs ======================
.
AAC Decoder
Adobe After Effects CS4 Third Party Content
Adobe AIR
Adobe Anchor Service CS4
Adobe Bridge CS4
Adobe CMaps CS4
Adobe Color EU Extra Settings CS4
Adobe Color JA Extra Settings CS4
Adobe Color NA Recommended Settings CS4
Adobe Color Video Profiles AE CS4
Adobe CSI CS4
Adobe Default Language CS4
Adobe Device Central CS4
Adobe Drive CS4
Adobe Dynamiclink Support
Adobe ExtendScript Toolkit CS4
Adobe Extension Manager CS4
Adobe Flash CS4
Adobe Flash CS4 Extension - Flash Lite STI en
Adobe Flash CS4 STI-en
Adobe Flash Player 10 Plugin
Adobe Fonts All
Adobe Linguistics CS4
Adobe Media Encoder CS4
Adobe Media Encoder CS4 Additional Exporter
Adobe Media Encoder CS4 Exporter
Adobe Media Encoder CS4 Importer
Adobe Media Player
Adobe MotionPicture Color Files CS4
Adobe Output Module
Adobe PDF Library Files CS4
Adobe Reader 8.1.1
Adobe Search for Help
Adobe Service Manager Extension
Adobe Setup
Adobe Type Support CS4
Adobe Update Manager CS4
Adobe WinSoft Linguistics Plugin
Adobe XMP Panels CS4
AdobeColorCommonSetCMYK
AdobeColorCommonSetRGB
Alias DirectConnect 2.0
AoADVDCreator
Apple Mobile Device Support
Apple Software Update
ArcSoft PhotoStudio 5.5
Audacity 1.3.3
AutoUpdate
BitTorrent
BitTorrent 6.0
BitTorrent DNA
Bonjour
Canon MP Navigator EX 2.0
Canon Utilities Solution Menu
CanoScan LiDE 200 Scanner Driver
CDisplay 1.8
Chikka Messenger
Chikka TXT Messenger (3.0.19)
Connect
ConvertHelper 2.2
DivX Codec
DivX Converter
DivX Player
DivX Plus DirectShow Filters
DivX Version Checker
DivX Web Player
doPDF 6.2 printer
Dropbox
e-Sword
EA Download Manager
EPSON Printer Software
ESET NOD32 Antivirus
GOM Player
H.264 Decoder
HashCheck Shell Extension (x86-32)
Intel(R) Graphics Media Accelerator Driver
iTunes
Java(TM) 6 Update 16
JDownloader
kikin plugin 2.4
kuler
LAME v3.98.3 for Audacity
Maya 7.0
Microsoft .NET Framework 2.0
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Software Update for Web Folders (English) 12
Microsoft Visual C++ 2005 Redistributable
Microsoft WSE 3.0 Runtime
MKV Splitter
Mozilla Firefox (3.6.16)
NativeBoxDVD
Open Command Prompt Shell Extension (x86-32)
OpenAL
Opera 11.10
PDF Settings CS4
Photoshop Camera Raw
PicaView32
Pixel Bender Toolkit
Portrait Professional 9.5 Trial
QuickTime
REALTEK GbE & FE Ethernet PCI-E NIC Driver
Realtek High Definition Audio Driver
Sentinel System Driver
Suite Shared Configuration CS4
The KMPlayer (remove only)
The Sims 2
The Sims™ 3
The Sims™ 3 Ambitions
The Sims™ 3 World Adventures
Total Video Converter 3.12 080330
Update for Windows XP (KB955839)
VC80CRTRedist - 8.0.50727.762
VistaBootPRO 3.3
Yahoo! Messenger
.
==== Event Viewer Messages From Past Week ========
.
4/17/2011 9:54:52 AM, error: DCOM [10005] - DCOM got error "%1053" attempting to start the service iPod Service with arguments "" in order to run the server: {063D34A4-BF84-4B8D-B699-E8CA06504DDE}
.
==== End Of File ===========================
Thank again.