It seems I have not finished my rant yet. Sophos did not delete itself from LS list, just an exclamation point next to the program asking for access. The accessed ports were still open. i don't know if LS was supposed to clean that up..

That aside, with all that nonsense, ClamX today found a list of 28 infections. In the past, all it has mostly found is email with Windows exe's in email, duh, like that never happens! I will start a new string with a list of what ClamX found for your opinions, but it looks like a nuke and pave is in order.