Hi Broni,
I ran the scan again, please see bellow for log.
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Database version: v2013.04.15.02
Windows Server 2003 Service Pack 1 x86 NTFS
Internet Explorer 7.0.5730.11
Administrator :: DRAGON [administrator]
4/15/2013 8:52:07 AM
mbam-log-2013-04-15 (08-52-07).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 443994
Time elapsed: 35 minute(s), 44 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 24
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360rp.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360rps.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360Safe.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360sd.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360tray.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avcenter.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avgnt.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cfp.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cmdagent.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\kavstart.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\kissvc.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KsafeTray.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KSWebShield.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVMonXP.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVMonXP.kxp (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVSrvXp.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\kvxp.kxp (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Kwatch.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\QQPCRTP.EXE (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\QQPCTray.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ravmond.exe (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RSTRAY.EXE (Security.Hijack) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SHSTAT.EXE (Security.Hijack) -> Quarantined and deleted successfully.
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 80
C:\boottfmm.exe (Malware.NSPack) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\eb.exe (PUP.ServerCCProxy) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\uuid.dll (PUP.ServerCCProxy) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\TmpC446.tmp (Trojan.AVDis.Gen) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\boottfmm.exe (Malware.NSPack) -> Quarantined and deleted successfully.
C:\Documents and Settings\Administrator\Local Settings\Temp\PPTV_Update.exe (Trojan.Dropper) -> Quarantined and deleted successfully.
C:\WINDOWS\Microsoft.NET\Framework\v3.2.0.5\eb.exe (PUP.ServerCCProxy) -> Quarantined and deleted successfully.
C:\WINDOWS\Microsoft.NET\Framework\v3.2.0.5\uuid.dll (PUP.ServerCCProxy) -> Quarantined and deleted successfully.
C:\RECYCLER\hex360.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\hex8.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\hexavse.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\hexnbbm2.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\hexnetstat.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\hexseer.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\hexSevrs.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\hexstartnet.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\hextaskmgr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\hexvbsa.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\hexvideo.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xp1.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xp123.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xp2.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xp33.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xp360.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xp5.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpavse.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpcmsaa.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpdagg.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpffmm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpHades.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpifly01.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpmsts.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpnbbm2.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpnetstat.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpoffice.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xprora.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpseer.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpserver.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpSevrs.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpsogou.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpstartnet.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpsvchost.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpsvshost.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xptaskmgr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xptfmm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpvbsa.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\xpvideo.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zy1.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zy123.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zy1818tt.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zy2.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zy33.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zy360.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zy5.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zy8.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zy888.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zyavse.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zybfbm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zyconfig.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zydagg.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zyHades.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zyifly01.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zyjeel.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zylsadds.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zymsts.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zynbbm2.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zynetstat.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zyoffice.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zyrora.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zyseer.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zyserver.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zySevrs.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zystartnet.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zysvchost.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zysvshost.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zytaskmgr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zyvbsa.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zyvideo.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zyxhddos.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\RECYCLER\zyxixi.exe (Trojan.Agent) -> Quarantined and deleted successfully.
(end)