I just did a quick scan using AVG now (after I did the OTMoveIt command) and it's picking up the trojan PSW.OnlineGames.BDXC (and .BEER) in C:\System Volume Information\_restore{727AB5D6-B326-432F-AB38-9E2301D5887B} then \RP943\A0175050.exe, \RP943\A0175052.exe, \RP943\A0175054.exe for the .BDXC one and \RP953\A0185594.dll for the .BEER one
Here's also the OTMoveIt log following the last instructions
========== PROCESSES ==========
Process explorer.exe killed successfully.
========== FILES ==========
C:\Documents and Settings\All Users.WINDOWS\Application Data\SecTaskMan\MreadfeB.dll.q_8046000_q moved successfully.
C:\Documents and Settings\All Users.WINDOWS\Application Data\SecTaskMan\SystemHper.dll.q_804F000_q moved successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\Neill\LOCALS~1\Temp\etilqs_Jng8FoDhO7fkCRYxJODH scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Temporary Internet Files folder emptied.
User's Internet Explorer cache folder emptied.
Local Service Temp folder emptied.
Local Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\ib2 scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\ib3 scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\ib4 scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\ib5 scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\ib6 scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_4d4.dat scheduled to be deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
File delete failed. C:\Documents and Settings\Neill\Local Settings\Application Data\Mozilla\Firefox\Profiles\u6yvctxw.default\Cache\_CACHE_001_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Neill\Local Settings\Application Data\Mozilla\Firefox\Profiles\u6yvctxw.default\Cache\_CACHE_002_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Neill\Local Settings\Application Data\Mozilla\Firefox\Profiles\u6yvctxw.default\Cache\_CACHE_003_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Neill\Local Settings\Application Data\Mozilla\Firefox\Profiles\u6yvctxw.default\Cache\_CACHE_MAP_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Neill\Local Settings\Application Data\Mozilla\Firefox\Profiles\u6yvctxw.default\urlclassifier3.sqlite scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Neill\Local Settings\Application Data\Mozilla\Firefox\Profiles\u6yvctxw.default\XUL.mfl scheduled to be deleted on reboot.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully
OTMoveIt3 by OldTimer - Version 1.0.5.0 log created on 10222008_094926
Files moved on Reboot...
File C:\DOCUME~1\Neill\LOCALS~1\Temp\etilqs_Jng8FoDhO7fkCRYxJODH not found!
File move failed. C:\WINDOWS\temp\ib2 scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\ib3 scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\ib4 scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\ib5 scheduled to be moved on reboot.
File move failed. C:\WINDOWS\temp\ib6 scheduled to be moved on reboot.
File C:\WINDOWS\temp\Perflib_Perfdata_4d4.dat not found!
C:\Documents and Settings\Neill\Local Settings\Application Data\Mozilla\Firefox\Profiles\u6yvctxw.default\Cache\_CACHE_001_ moved successfully.
C:\Documents and Settings\Neill\Local Settings\Application Data\Mozilla\Firefox\Profiles\u6yvctxw.default\Cache\_CACHE_002_ moved successfully.
C:\Documents and Settings\Neill\Local Settings\Application Data\Mozilla\Firefox\Profiles\u6yvctxw.default\Cache\_CACHE_003_ moved successfully.
C:\Documents and Settings\Neill\Local Settings\Application Data\Mozilla\Firefox\Profiles\u6yvctxw.default\Cache\_CACHE_MAP_ moved successfully.
C:\Documents and Settings\Neill\Local Settings\Application Data\Mozilla\Firefox\Profiles\u6yvctxw.default\urlclassifier3.sqlite moved successfully.
C:\Documents and Settings\Neill\Local Settings\Application Data\Mozilla\Firefox\Profiles\u6yvctxw.default\XUL.mfl moved successfully.