Hi,
Thanks for the reply, here's my hijackthis log:
(Thanks for the reply Rawe; I ran the panda activescan, and it identified many of the files in my hijackthis log, so, since I got referred to this forum, I'll wait for the response to the hijackthis log)
Logfile of HijackThis v1.99.1
Scan saved at 10:05:30 PM, on 05/05/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\Erik Webster Allen\Desktop\erik's computer help\hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://w-find.com/sp.htmR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://w-find.com/index.htmR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://w-find.com/index.htmR0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://w-find.com/sp.htmR1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://w-find.com/index.htmR1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O2 - BHO: (no name) - {0AD937E7-2F37-4873-A05E-548A67EF1D0E} - (no file)
O2 - BHO: PopKill Class - {3C060EA2-E6A9-4E49-A530-D4657B8C449A} - C:\Program Files\Zero Knowledge\TELUS Security service\pkR.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: ZKBho Class - {56071E0D-C61B-11D3-B41C-00E02927A304} - C:\Program Files\Zero Knowledge\TELUS Security service\FreeBHOR.dll
O2 - BHO: FlashEnhancer Extnder - {A749B4BC-7621-4a80-9220-D0A283367DD5} - c:\Program Files\Fln\fln.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [CeEPOWER] C:\Program Files\TOSHIBA\Power Management\CePMTray.exe
O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe
O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe
O4 - HKLM\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [Drag'n Drop CD] C:\Program Files\Drag'n Drop CD\BinFiles\DragDrop.exe /StartUp
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [ADUserMon] C:\Program Files\Iomega\AutoDisk\ADUserMon.exe
O4 - HKLM\..\Run: [TELUS Security service] C:\Program Files\Zero Knowledge\TELUS Security service\Freedom.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\TELUSE~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKLM\..\Run: [Connection Client] C:\WINDOWS\system32\atmeorxx.exe
O4 - HKLM\..\Run: [FlnCPY] "C:\Program Files\Common Files\Java\flncpy.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [tbilnve] c:\windows\nxfmmlr.exe
O4 - HKCU\..\Run: [sllajfa] c:\windows\chsncwr.exe
O4 - HKCU\..\Run: [syagate] c:\windows\chsncwr.exe
O4 - HKCU\..\Run: [pxkjddv] c:\windows\chsncwr.exe
O4 - HKCU\..\Run: [tvxkjvy] c:\windows\chsncwr.exe
O4 - HKCU\..\Run: [jawtrly] c:\windows\chsncwr.exe
O4 - HKCU\..\Run: [wvljwte] c:\windows\chsncwr.exe
O4 - HKCU\..\Run: [fkyouob] c:\windows\chsncwr.exe
O4 - HKCU\..\Run: [tianepy] c:\windows\chsncwr.exe
O4 - HKCU\..\Run: [tuvyede] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [fbqhavo] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [wkssyor] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [iqpsdij] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [wyblnea] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [wasjflv] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [mywrfwm] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [YBopRPJ7g] hhsortreader.exe
O4 - HKCU\..\Run: [snstpjr] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [cjusxdo] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [nfqnmwr] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [gxskalj] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [owyilrq] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [fdlrcxp] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [bqpbqnm] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [pdvaasn] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [fpbkjyj] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [clgjtrp] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [kwlsnlx] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [blaootq] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [mhxbfin] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [onwusfw] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [eqvueyn] c:\windows\pxrhrsg.exe
O4 - HKCU\..\Run: [siitbqo] c:\windows\apeyrab.exe
O4 - HKCU\..\Run: [kakytle] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [yrcljrf] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [rvsfobr] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [veeetos] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [yvqttiq] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [vrmckkq] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [jrjkjmy] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [prltwlu] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [qtfivok] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [cpuvyhv] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [aryywco] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [yfchhys] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [mybpcnd] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [kahhxik] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [pjpquus] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [sfhhilm] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [nuvucdv] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [wcatetf] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [jjkhvue] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [ojoundt] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [dvtknmj] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [rektklj] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [aibeyhj] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [hlcdhkj] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [gkmqbri] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [chcjwav] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [woputoj] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [esooewk] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [swcgpew] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [awqeqci] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [nixvxyu] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [tcnvwwp] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [tdxvtos] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [avdvvuk] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [gmxvdiw] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [fqpyupd] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [qojjnhb] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [iijymys] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [bndthyy] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [cxvycgo] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [kqchunu] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [xgkubnl] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [yqqyxnx] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [lvsjgnb] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [wpoqsor] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [rwccneq] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [bqxqqbf] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [mphteqm] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [kjtetyu] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [wevlvru] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [jyjruec] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [sicrjck] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [etaspto] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [crurxar] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [nfsqapp] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [ccswdvb] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [vqwttch] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [vxnhhbf] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [pfbqkin] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [igxlyqw] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [dkynehm] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [eojndqy] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [jgymbyw] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [fttndyl] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [woxohqc] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [yjhinxq] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [qygyvjx] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [guwklnt] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [isjsemk] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [dccwyfs] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [gvskuat] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [xndssab] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [snwjtaw] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [odjcxyl] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [yeuwuau] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [emdjrun] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [lrmgbvq] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [wyvsagt] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [xgsmhtk] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [bsynjbd] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [qkptsvi] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [hygsoyf] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [cbbevch] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [avyvwsk] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [jsiyhlh] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [jubpoah] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [twcmsic] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [nbvjfnk] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [ysarkrm] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [lllykhv] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [pqpnmbw] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [jpmqvhq] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [xaytvea] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [vqrjdud] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [tvtdecl] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [yxjldix] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [biebfow] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [kcmroad] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [wnpwcby] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [eaxojen] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [gxuwmnt] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [dvsmbyf] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [omenrsj] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [iywhwdi] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [krafoqb] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [kqlhuui] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [tldamtv] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [ejnewun] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [buuodvt] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [haafiuk] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [vsghwgc] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [hwfuyro] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [kdcdewi] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [hhklpou] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [ougbxyi] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [ssaiyik] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [fqipseu] c:\windows\hyhacch.exe
O4 - HKCU\..\Run: [irsqgby] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [fvraflb] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [asvydrr] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [egkhncq] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [jvcxkbj] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [curdugk] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [tosclcn] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [fhldejp] c:\windows\vlinbll.exe
O4 - HKCU\..\Run: [yfaypbu] c:\windows\gvncbmp.exe
O4 - HKCU\..\Run: [ilbbmgr] c:\windows\lxkbytp.exe
O4 - HKCU\..\Run: [ogsnwff] c:\windows\nexubyb.exe
O4 - HKCU\..\Run: [uqxnupl] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [cmhtpgy] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [muohayx] c:\windows\myxdfiy.exe
O4 - HKCU\..\Run: [jipakvl] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [qdygfmy] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [xyimacm] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [qpurmwk] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [kqsjaxo] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [wpvbavg] c:\windows\myxdfiy.exe
O4 - HKCU\..\Run: [eqramxs] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [xrpqyyw] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [rrohlab] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [ndrxrha] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [ajspwso] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [bvphmvl] c:\windows\myxdfiy.exe
O4 - HKCU\..\Run: [mqugdfe] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [ywwxiqs] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [lexpndh] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [dfjsgqd] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [yuxgaim] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [hqvgmau] c:\windows\myxdfiy.exe
O4 - HKCU\..\Run: [ujmstav] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [pxagnqe] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [lnoshin] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [jkiseke] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [chhuvhe] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [nyqlxie] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [xrycbje] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [qoydsgf] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [yignrie] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [kesvgbr] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [pwfkkme] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [upsynwr] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [gmfhcqf] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [cqshsit] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [vyngpdd] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [pfxgqei] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [jligrgn] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [dsdgobw] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [fxioayp] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [lsotgaj] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [buujnil] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [pvbytqn] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [wrieaqh] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [onspumo] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [ciqflmk] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [osjrgmu] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [bdbdame] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [pyysqmb] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [ccgwkij] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [eiumuac] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [upyxrcm] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [lvdknfx] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [ncqaxwq] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [cywnosd] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [ebbnfla] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [urinqns] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [lipndpk] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [nktntji] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [jvnlxfw] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [qnycuxp] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [wyvffrj] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [dkriold] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [kcdylev] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [udgsjir] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [yqlrhid] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [wmbsiaq] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [viqsjqe] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [auvrhqp] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [agkubyt] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [kltjlvx] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [hsyvyow] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [daeinhu] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [neowxdy] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [gwmovib] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [lxrxuig] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [ropmuie] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [ygnavid] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [egtktii] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [faifpnj] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [tsysqeg] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [xmcnyyp] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [bgfjhsa] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [qyvwijw] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [pgruiyt] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [tevjbur] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [bwdelfs] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [iokawos] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [nmooplr] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [ldesnju] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [ryjvbem] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [pjymfwx] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [ntocjqj] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [tptgwlc] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [somaany] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [eebwbrp] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [ayvgjqc] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [vtrqrpn] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [ijfnsse] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [sfjcvir] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [klbkmwl] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [ejmhhbw] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [yhxebeh] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [pnpnrsb] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [iofxsts] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [vxswcap] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [reooyxh] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [mjjgvva] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [bsxffcw] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [pspmkeb] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [fvfhbdj] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [jlrjmeg] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [mcekyee] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [cfsgodm] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [devkcyc] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [gktrgev] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [niuxekp] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [ugvedrj] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [ymsmhwd] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [ovawiyj] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [mupwtce] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [eusfprw] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [vvwoliq] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [ttmnxll] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [gdqphem] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [baqcccb] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [lsihedf] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [vkylfdj] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [qhaxbbx] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [emtrpio] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [ijpxtvi] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [xkinbas] c:\windows\ncragxr.exe
O4 - HKCU\..\Run: [olbcied] c:\windows\vjdsgkd.exe
O4 - HKCU\..\Run: [rjwjnqw] c:\windows\xmwphyu.exe
O4 - HKCU\..\Run: [jnykoyy] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [loshobn] c:\windows\gthhglg.exe
O4 - HKCU\..\Run: [rosirle] c:\windows\ernkfvn.exe
O4 - HKCU\..\Run: [takqceh] c:\windows\hsikliw.exe
O4 - HKCU\..\Run: [uwcuwvd] c:\windows\hsikliw.exe
O4 - HKCU\..\Run: [mssgaae] c:\windows\hsikliw.exe
O4 - HKCU\..\Run: [asxoglk] c:\windows\hsikliw.exe
O4 - HKCU\..\Run: [vldmbsy] c:\windows\hsikliw.exe
O4 - HKCU\..\Run: [oxbekyh] c:\windows\hsikliw.exe
O4 - HKCU\..\Run: [xixxnra] c:\windows\hsikliw.exe
O4 - HKCU\..\Run: [wxxbxjx] c:\windows\hsikliw.exe
O4 - HKCU\..\Run: [gcuhwai] c:\windows\fhnmtpn.exe
O4 - HKCU\..\Run: [ldbrwld] c:\windows\fhnmtpn.exe
O4 - HKCU\..\Run: [pvfkurh] c:\windows\hubachw.exe
O4 - HKCU\..\Run: [fnwwkxi] c:\windows\qfgpcib.exe
O4 - HKCU\..\Run: [wroqphu] c:\windows\ymqhcul.exe
O4 - HKCU\..\Run: [ibveabu] c:\windows\pcmrbsi.exe
O4 - HKCU\..\Run: [uyicasb] c:\windows\hubachw.exe
O4 - HKCU\..\Run: [iagjytj] c:\windows\qfgpcib.exe
O4 - HKCU\..\Run: [oahsmtf] c:\windows\ymqhcul.exe
O4 - HKCU\..\Run: [cykknrw] c:\windows\pcmrbsi.exe
O4 - HKCU\..\Run: [aysvkga] c:\windows\hubachw.exe
O4 - HKCU\..\Run: [ynveudd] c:\windows\qfgpcib.exe
O4 - HKCU\..\Run: [mgtnpro] c:\windows\ymqhcul.exe
O4 - HKCU\..\Run: [nsqfftk] c:\windows\pcmrbsi.exe
O4 - HKCU\..\Run: [eglwfig] c:\windows\hubachw.exe
O4 - HKCU\..\Run: [vjnwsrx] c:\windows\qfgpcib.exe
O4 - HKCU\..\Run: [auajyao] c:\windows\ymqhcul.exe
O4 - HKCU\..\Run: [iqxklrw] c:\windows\pcmrbsi.exe
O4 - HKCU\..\Run: [bdlgnhe] c:\windows\hubachw.exe
O4 - HKCU\..\Run: [estxife] c:\windows\qfgpcib.exe
O4 - HKCU\..\Run: [pkdplge] c:\windows\ymqhcul.exe
O4 - HKCU\..\Run: [lvuwqid] c:\windows\pcmrbsi.exe
O4 - HKCU\..\Run: [knkotev] c:\windows\hubachw.exe
O4 - HKCU\..\Run: [bcjlmiv] c:\windows\qfgpcib.exe
O4 - HKCU\..\Run: [guwaqti] c:\windows\ymqhcul.exe
O4 - HKCU\..\Run: [pgwdxpi] c:\windows\pcmrbsi.exe
O4 - HKCU\..\Run: [nygbmlg] c:\windows\hubachw.exe
O4 - HKCU\..\Run: [amlbkhv] c:\windows\qfgpcib.exe
O4 - HKCU\..\Run: [tsvbljb] c:\windows\ymqhcul.exe
O4 - HKCU\..\Run: [gfqbnnm] c:\windows\pcmrbsi.exe
O4 - HKCU\..\Run: [mwigorm] c:\windows\hubachw.exe
O4 - HKCU\..\Run: [itubbbh] c:\windows\qfgpcib.exe
O4 - HKCU\..\Run: [wvcqijj] c:\windows\ymqhcul.exe
O4 - HKCU\..\Run: [byovvao] c:\windows\pcmrbsi.exe
O4 - HKCU\..\Run: [gtimubj] c:\windows\hubachw.exe
O4 - HKCU\..\Run: [haxngbp] c:\windows\qfgpcib.exe
O4 - HKCU\..\Run: [tkpabby] c:\windows\ymqhcul.exe
O4 - HKCU\..\Run: [teaxpbs] c:\windows\pcmrbsi.exe
O4 - HKCU\..\Run: [rvvatvd] c:\windows\hubachw.exe
O4 - HKCU\..\Run: [kincaqg] c:\windows\qfgpcib.exe
O4 - HKCU\..\Run: [bornwtr] c:\windows\ymqhcul.exe
O4 - HKCU\..\Run: [icampyo] c:\windows\pcmrbsi.exe
O4 - HKCU\..\Run: [hukltbo] c:\windows\jjeqqrd.exe
O4 - HKCU\..\Run: [ilejmtj] c:\windows\tptarsx.exe
O4 - HKCU\..\Run: [xbjhwac] c:\windows\tptarsx.exe
O4 - HKCU\..\Run: [pmueeil] c:\windows\tptarsx.exe
O4 - HKCU\..\Run: [qiggpfw] c:\windows\yxynmea.exe
O4 - HKCU\..\Run: [svyhxhr] c:\windows\yxynmea.exe
O4 - HKCU\..\Run: [wvobgkh] c:\windows\unefndt.exe
O4 - HKCU\..\Run: [xraothv] c:\windows\xycffls.exe
O4 - HKCU\..\Run: [vdnyfkw] c:\windows\xycffls.exe
O4 - HKCU\..\Run: [vtckmaf] c:\windows\xycffls.exe
O4 - HKCU\..\Run: [fmnfyay] c:\windows\wbrqucf.exe
O4 - HKCU\..\Run: [pnbnijs] c:\windows\yialagd.exe
O4 - HKCU\..\Run: [cyolqwt] c:\windows\yialagd.exe
O4 - HKCU\..\Run: [rcdlaps] c:\windows\yialagd.exe
O4 - HKCU\..\Run: [uriuofa] c:\windows\yialagd.exe
O4 - HKCU\..\Run: [fdsfdnf] c:\windows\hmghfli.exe
O4 - HKCU\..\Run: [vvghxga] c:\windows\ohgfdun.exe
O4 - HKCU\..\Run: [oawbdpm] c:\windows\woqxdhy.exe
O4 - HKCU\..\Run: [dsyyefn] c:\windows\sgjvfqs.exe
O4 - HKCU\..\Run: [yquecab] c:\windows\aiujoqx.exe
O4 - HKCU\..\Run: [hbdhxam] c:\windows\dneuckt.exe
O4 - HKCU\..\Run: [rxqpnvp] c:\windows\dneuckt.exe
O4 - HKCU\..\Run: [nsuaqse] c:\windows\dneuckt.exe
O4 - HKCU\..\Run: [utrryxd] c:\windows\dneuckt.exe
O4 - HKCU\..\Run: [repkyig] c:\windows\egwsltp.exe
O4 - HKCU\..\Run: [dncmlhr] c:\windows\egwsltp.exe
O4 - Startup: eTomi Pro On Startup.lnk = C:\Program Files\eTomiPro\Gui\etomipro.exe
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
O4 - Global Startup: M-Audio MobilePre Control Panel Launcher.lnk = C:\Program Files\M-Audio MobilePre\MPTask.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: TELUS eCare.lnk = C:\Program Files\TELUS eCare\bin\matcli.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Microsoft AntiSpyware helper - {A90DEC04-8C3B-46CB-BCDE-DE6E35AD9654} - (no file) (HKCU)
O9 - Extra 'Tools' menuitem: Microsoft AntiSpyware helper - {A90DEC04-8C3B-46CB-BCDE-DE6E35AD9654} - (no file) (HKCU)
O16 - DPF: {4602AE28-0E46-320B-EFD9-00364F496251} -
http://69.50.182.94/1/rdgCA1882.exeO16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) -
http://207.188.7.150...tzip/RdxIE6.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://v5.windowsupd...b?1093371035858O16 - DPF: {76947A08-DFBC-48F3-977F-5612E575B6B1} -
https://cesium.ab.ta...gi-bin/oca2.cgiO16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://www.pandasoft.../as5/asinst.cabO16 - DPF: {DBB177CC-6908-4B53-9BEE-F1C697818D65} (QuickBooks Online Edition Utilities Class v4a) -
https://accounting.q...167/qboax4a.cabO21 - SSODL: Client Access - {61704116-D71B-45F9-86FC-35764D9D79A6} - C:\WINDOWS\system32\winttxex.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: DvpApi (dvpapi) - Command Software Systems, Inc. - C:\Program Files\Common Files\Command Software\dvpapi.exe
O23 - Service: Iomega App Services - Iomega Corporation - C:\PROGRA~1\Iomega\System32\AppServices.exe
O23 - Service: MobilePre Installer (MobilePreInstallerService) - Nemesis - C:\Program Files\M-Audio MobilePre\Install\MPInst.exe
O23 - Service: Iomega Active Disk (_IOMEGA_ACTIVE_DISK_SERVICE_) - Iomega Corporation - C:\Program Files\Iomega\AutoDisk\ADService.exe
Edited by ewallen, 05 May 2005 - 10:33 PM.