OK --- I was able to figure out what to download on Adware....so I got past it.
Here are my HJT and Aboutbuster logs.
When you look at the aboutbust log, you will see two scans - one on 9/4 and one on 9/5. SInce I was having trouble figuring out number 11 and I had to reply to you, I started the whole process over again (1-11) b/cause I was not sure if I had wrecked anything by going on the internet in the middle of the process - that's why there are two files.
Also, first time I logged back into the internet after doing all this - my browser page was set as I hoped to MSN.com
logged out and back in again to see if it stayed that way, and I am back to about: blank again
What next????
Thanks
Scanned at: 11:44:32 PM on: 9/4/2004
-- Scan 1 ---------------------------
About:Buster Version 3.0
Reference List : 15
No ADS found on system
Removed 2 Random Key Entries
Deleted 1 Service Keys Successfully!
Removed! : C:\WINDOWS\addcc32.exe
Removed! : C:\WINDOWS\addgo.exe
Removed! : C:\WINDOWS\addsm.exe
Removed! : C:\WINDOWS\addtt32.exe
Removed! : C:\WINDOWS\addxl32.exe
Removed! : C:\WINDOWS\atldl32.exe
Removed! : C:\WINDOWS\atlds32.exe
Removed! : C:\WINDOWS\atllg.exe
Removed! : C:\WINDOWS\atlvd32.exe
Removed! : C:\WINDOWS\atlxs32.exe
Removed! : C:\WINDOWS\atlyh32.exe
Removed! : C:\WINDOWS\bptrw.dat
Removed! : C:\WINDOWS\bsped.dat
Removed! : C:\WINDOWS\cexvc.dat
Removed! : C:\WINDOWS\cnkcb.dat
Removed! : C:\WINDOWS\crcq.exe
Removed! : C:\WINDOWS\crmv32.exe
Removed! : C:\WINDOWS\crnp32.exe
Removed! : C:\WINDOWS\d3al32.exe
Removed! : C:\WINDOWS\d3ij32.exe
Removed! : C:\WINDOWS\daban.dat
Removed! : C:\WINDOWS\dibii.dat
Removed! : C:\WINDOWS\eenuy.dat
Removed! : C:\WINDOWS\egmfw.dat
Removed! : C:\WINDOWS\epzit.dat
Removed! : C:\WINDOWS\fhfjn.dat
Removed! : C:\WINDOWS\fpybh.dat
Removed! : C:\WINDOWS\fttei.dat
Removed! : C:\WINDOWS\gdzzi.dat
Removed! : C:\WINDOWS\gqpzw.dat
Removed! : C:\WINDOWS\gsbtb.dat
Removed! : C:\WINDOWS\icsul.dat
Removed! : C:\WINDOWS\ipun32.exe
Removed! : C:\WINDOWS\jacqr.dat
Removed! : C:\WINDOWS\javacu32.exe
Removed! : C:\WINDOWS\javacx.exe
Removed! : C:\WINDOWS\jybji.dat
Removed! : C:\WINDOWS\lwuuu.dat
Removed! : C:\WINDOWS\mfccy32.exe.bak
Removed! : C:\WINDOWS\msei.exe
Removed! : C:\WINDOWS\mslz.exe
Removed! : C:\WINDOWS\msma.exe
Removed! : C:\WINDOWS\msny.exe.bak
Removed! : C:\WINDOWS\mstw.exe
Removed! : C:\WINDOWS\ncguo.dat
Removed! : C:\WINDOWS\netdk32.exe
Removed! : C:\WINDOWS\netju.exe
Removed! : C:\WINDOWS\netol.exe
Removed! : C:\WINDOWS\netos.exe
Removed! : C:\WINDOWS\ntne32.exe
Removed! : C:\WINDOWS\oeoxp.dat
Removed! : C:\WINDOWS\qadgz.dat
Removed! : C:\WINDOWS\qhhkc.dat
Removed! : C:\WINDOWS\qknvx.dat
Removed! : C:\WINDOWS\qsuit.dat
Removed! : C:\WINDOWS\rbzbg.dat
Removed! : C:\WINDOWS\sdkyj32.exe
Removed! : C:\WINDOWS\sdkyo.exe
Removed! : C:\WINDOWS\shtcl.dat
Removed! : C:\WINDOWS\sysap.exe
Removed! : C:\WINDOWS\syspp.exe
Removed! : C:\WINDOWS\tkxlz.dat
Removed! : C:\WINDOWS\tqpwg.dat
Removed! : C:\WINDOWS\usqtm.dat
Removed! : C:\WINDOWS\uwrap.dat
Removed! : C:\WINDOWS\wakwc.dat
Removed! : C:\WINDOWS\winrj.exe
Removed! : C:\WINDOWS\xekqx.dat
Removed! : C:\WINDOWS\ztigt.dat
Removed! : C:\WINDOWS\System32\addlp.exe
Removed! : C:\WINDOWS\System32\addra.exe
Removed! : C:\WINDOWS\System32\apiuk.exe
Removed! : C:\WINDOWS\System32\apixe32.exe
Removed! : C:\WINDOWS\System32\apiya.exe
Removed! : C:\WINDOWS\System32\appkp.exe
Removed! : C:\WINDOWS\System32\apprn.exe
Removed! : C:\WINDOWS\System32\appvo32.exe
Removed! : C:\WINDOWS\System32\appzg32.exe
Removed! : C:\WINDOWS\System32\awyae.dat
Removed! : C:\WINDOWS\System32\bnlqy.dat
Removed! : C:\WINDOWS\System32\bphpa.dat
Removed! : C:\WINDOWS\System32\cbvvl.dat
Removed! : C:\WINDOWS\System32\chlfu.dat
Removed! : C:\WINDOWS\System32\cree.exe
Removed! : C:\WINDOWS\System32\crkg.exe
Removed! : C:\WINDOWS\System32\czyiu.dat
Removed! : C:\WINDOWS\System32\d3gp32.exe
Removed! : C:\WINDOWS\System32\d3sg.exe
Removed! : C:\WINDOWS\System32\dalgo.dat
Removed! : C:\WINDOWS\System32\drvml.dat
Removed! : C:\WINDOWS\System32\dwglt.dat
Removed! : C:\WINDOWS\System32\dxmao.dat
Removed! : C:\WINDOWS\System32\eacak.dat
Removed! : C:\WINDOWS\System32\eeadd.dat
Removed! : C:\WINDOWS\System32\eepbj.dat
Removed! : C:\WINDOWS\System32\frebr.dat
Removed! : C:\WINDOWS\System32\gcidw.dat
Removed! : C:\WINDOWS\System32\gktlx.dat
Removed! : C:\WINDOWS\System32\hfzcj.dat
Removed! : C:\WINDOWS\System32\iebe.exe
Removed! : C:\WINDOWS\System32\ieke32.exe
Removed! : C:\WINDOWS\System32\iell32.exe
Removed! : C:\WINDOWS\System32\ierz32.exe
Removed! : C:\WINDOWS\System32\imkcx.dat
Removed! : C:\WINDOWS\System32\ipfo.exe
Removed! : C:\WINDOWS\System32\javayy32.exe
Removed! : C:\WINDOWS\System32\jxlsq.dat
Removed! : C:\WINDOWS\System32\lhivt.dat
Removed! : C:\WINDOWS\System32\lhrmy.dat
Removed! : C:\WINDOWS\System32\lvsnw.dat
Removed! : C:\WINDOWS\System32\mfcgz32.exe
Removed! : C:\WINDOWS\System32\mfcti32.exe
Removed! : C:\WINDOWS\System32\mftar.dat
Removed! : C:\WINDOWS\System32\mrhba.dat
Removed! : C:\WINDOWS\System32\mynej.dat
Removed! : C:\WINDOWS\System32\mzrvw.dat
Removed! : C:\WINDOWS\System32\netcw32.exe
Removed! : C:\WINDOWS\System32\netjn.exe
Removed! : C:\WINDOWS\System32\netqs32.exe
Removed! : C:\WINDOWS\System32\nreyd.dat
Removed! : C:\WINDOWS\System32\ntgy.exe
Removed! : C:\WINDOWS\System32\ntwh32.exe
Removed! : C:\WINDOWS\System32\nxlnn.dat
Removed! : C:\WINDOWS\System32\osyxv.dat
Removed! : C:\WINDOWS\System32\prcsp.dat
Removed! : C:\WINDOWS\System32\pufbm.dat
Removed! : C:\WINDOWS\System32\qfoyw.dat
Removed! : C:\WINDOWS\System32\sdkga32.exe
Removed! : C:\WINDOWS\System32\sdklx.exe
Removed! : C:\WINDOWS\System32\sdkmi.exe
Removed! : C:\WINDOWS\System32\syshg32.exe
Removed! : C:\WINDOWS\System32\syspa.exe
Removed! : C:\WINDOWS\System32\ttzdc.dat
Removed! : C:\WINDOWS\System32\ttzdc.dll
Removed! : C:\WINDOWS\System32\unchd.dat
Removed! : C:\WINDOWS\System32\uysqa.dat
Removed! : C:\WINDOWS\System32\wiiba.dat
Removed! : C:\WINDOWS\System32\winib32.exe
Removed! : C:\WINDOWS\System32\winkl.exe
Removed! : C:\WINDOWS\System32\winqf.exe
Removed! : C:\WINDOWS\System32\wintg32.exe
Removed! : C:\WINDOWS\System32\winzk.exe
Removed! : C:\WINDOWS\System32\wryrb.dat
Removed! : C:\WINDOWS\System32\wzioh.dat
Removed! : C:\WINDOWS\System32\xspqm.dll
Removed! : C:\WINDOWS\System32\zghfm.dat
Attempted Clean Of Temp folder.
Removed Uninstall Key (HSA)
Removed Uninstall Key (SE)
Removed Uninstall Key (SW)
Pages Reset... Done!
-- Scan 2 ---------------------------
About:Buster Version 3.0
Reference List : 15
No ADS found on system
Removed 2 Random Key Entries
Attempted Clean Of Temp folder.
Pages Reset... Done!
Scanned at: 8:59:26 PM on: 9/5/2004
-- Scan 1 ---------------------------
About:Buster Version 3.0
Reference List : 15
No ADS found on system
Removed 2 Random Key Entries
Deleted 1 Service Keys Successfully!
Removed! : C:\WINDOWS\appir32.exe
Removed! : C:\WINDOWS\System32\ntii.exe
Attempted Clean Of Temp folder.
Removed Uninstall Key (HSA)
Removed Uninstall Key (SE)
Removed Uninstall Key (SW)
Pages Reset... Done!
-- Scan 2 ---------------------------
About:Buster Version 3.0
Reference List : 15
No ADS found on system
Removed 2 Random Key Entries
Attempted Clean Of Temp folder.
Pages Reset... Done!
Logfile of HijackThis v1.98.2
Scan saved at 9:59:47 PM, on 9/5/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\System32\DSentry.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
C:\Program Files\Common Files\Dell\EUSW\Support.exe
C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
C:\Program Files\Dell AIO Printer A940\dlbabmgr.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\WINDOWS\system32\appgk32.exe
C:\Program Files\Messenger\msmsgs.exe
C:\PROGRA~1\mcafee.com\vso\mcvsescn.exe
c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
C:\Program Files\Spyware Doctor\spydoctor.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\Program Files\Dell AIO Printer A940\dlbabmon.exe
C:\Program Files\America Online 9.0\aoltray.exe
C:\Program Files\Dell\Support\Alert\bin\NotifyAlert.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\Sti_Trace.log:lvile
c:\progra~1\mcafee.com\vso\mcvsftsn.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Documents and Settings\cathy\Desktop\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell4me.com/mywayR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\fohdv.dll/sp.html#29126
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\fohdv.dll/sp.html#29126
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINDOWS\fohdv.dll/sp.html#29126
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\fohdv.dll/sp.html#29126
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\fohdv.dll/sp.html#29126
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\fohdv.dll/sp.html#29126
R3 - Default URLSearchHook is missing
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: (no name) - {F6BD60E1-D255-E8A2-51F1-10CDCC19754E} - C:\WINDOWS\system32\ipqz32.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
O4 - HKLM\..\Run: [DwlClient] C:\Program Files\Common Files\Dell\EUSW\Support.exe
O4 - HKLM\..\Run: [VirusScan Online] "c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"
O4 - HKLM\..\Run: [Dell AIO Printer A940] "C:\Program Files\Dell AIO Printer A940\dlbabmgr.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [mmtask] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKLM\..\Run: [appgk32.exe] C:\WINDOWS\system32\appgk32.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\spydoctor.exe" /Q
O4 - Global Startup: America Online 9.0 Tray Icon.lnk = C:\Program Files\America Online 9.0\aoltray.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O14 - IERESET.INF: START_PAGE_URL=http://www.worldnet.att.net
O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} (iPIX ActiveX Control) -
http://www.ipix.com/viewers/ipixx.cabO16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) -
http://download.mcaf...84/mcinsctl.cabO16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) -
http://software-dl.r...ip/RdxIE601.cabO16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
http://a840.g.akamai...all/xscan53.cabO16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) -
http://download.mcaf...,21/mcgdmgr.cabO16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) -
http://zone.msn.com/...aploader_v5.cab