I ran a scan with Trendmicro and deleted all the files it found. Here is my new HJT log:
Logfile of HijackThis v1.99.1
Scan saved at 12:28:45 PM, on 7/14/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\HPConfig.exe
C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\WINDOWS\system32\svchost.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
C:\WINDOWS\system32\winzi32.exe
C:\WINDOWS\system32\carpserv.exe
C:\PROGRA~1\HPQ\ONE-TO~1\OneTouch.EXE
C:\Program Files\2Wire\Gateway\2PortalMon.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\2Wire Wireless\Client Manager\CMTWO.EXE
c:\progra~1\mcafee.com\vso\mcvsftsn.exe
C:\Program Files\Messenger\msmsgs.exe
C:\PROGRA~1\Yahoo!\browser\YBrowser.exe
C:\Program Files\Hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://srch-us4nb.hpwis.com/R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://rd.yahoo.com/...//www.yahoo.comR1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://rd.yahoo.com/...//www.yahoo.comR1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
http://www.hp.com/info/e-center-pR3 - Default URLSearchHook is missing
O2 - BHO: Class - {007B911E-5570-A396-6F4A-A0CC235143DC} - C:\WINDOWS\d3dn.dll
O2 - BHO: Class - {00A88ECE-D542-06D0-B1E9-091150D86D41} - C:\WINDOWS\system32\msyb32.dll
O2 - BHO: Class - {10093460-6F53-E394-D35F-77E61A43FF4C} - C:\WINDOWS\system32\appgq.dll
O2 - BHO: Yahoo! Companion BHO - {13F537F0-AF09-11d6-9029-0002B31F9E59} - C:\Program Files\Yahoo!\Common\ycomp5,0,8,0.dll
O2 - BHO: Class - {143CE5E6-B0AC-4914-AA2E-624EF574EB4D} - C:\WINDOWS\ipna.dll
O2 - BHO: Class - {18A23373-407C-5064-29FC-1C2D804594FA} - C:\WINDOWS\ipyn32.dll
O2 - BHO: Class - {274A509F-0F00-989C-5FD2-C372C9375F32} - C:\WINDOWS\apipy.dll
O2 - BHO: Class - {28749852-4EA9-0662-286C-D43C4474D30C} - C:\WINDOWS\system32\ipxj.dll
O2 - BHO: Class - {2CF3F7AD-CB85-FA6A-FA52-E649A865235B} - C:\WINDOWS\system32\sysss32.dll
O2 - BHO: Class - {2FBFD3DB-44BC-5682-6544-30AA6B08CA27} - C:\WINDOWS\system32\msuq32.dll
O2 - BHO: Class - {32011C7F-3430-3AF2-DD1F-0049908763E5} - C:\WINDOWS\ipzl.dll
O2 - BHO: Class - {3376A8DD-F7C4-77CF-6511-9B4C70AC5C19} - C:\WINDOWS\mfccp.dll
O2 - BHO: Class - {38D7B7AF-8225-46C7-D3F6-14944118DEB3} - C:\WINDOWS\crpa.dll
O2 - BHO: Class - {3BAA12D3-D817-0626-D1DF-41175C0B6EAB} - C:\WINDOWS\ieal.dll
O2 - BHO: Class - {3D1F3C37-49CA-66D3-9877-04375ADE521D} - C:\WINDOWS\appac32.dll
O2 - BHO: Class - {4763166E-429C-B5AF-C8E8-C91F5368F74C} - C:\WINDOWS\msvu.dll
O2 - BHO: Class - {5846232C-DAB1-2538-1DC5-1F5122BAEDA5} - C:\WINDOWS\system32\syspj32.dll
O2 - BHO: Class - {64B26103-2B1C-551B-4BBE-4C0B592B4757} - C:\WINDOWS\system32\d3ih32.dll
O2 - BHO: Class - {6E088D4B-521B-1676-CDD6-EC121DD3C210} - C:\WINDOWS\addys32.dll
O2 - BHO: Class - {709EE32C-77FF-291F-529C-369850DB1D21} - C:\WINDOWS\system32\appgw.dll
O2 - BHO: Class - {77B4CE71-F8EB-D009-07EA-8D5437684795} - C:\WINDOWS\atlqy.dll
O2 - BHO: Class - {7878CA0E-A0AB-130C-1F20-66B2AB298226} - C:\WINDOWS\d3hf32.dll
O2 - BHO: Class - {7C5CF0D8-6AA4-2FDF-1323-0AC6A9822AA3} - C:\WINDOWS\system32\d3fw.dll
O2 - BHO: Class - {A43797D8-6CEB-05DC-43B9-29CDA766A2BF} - C:\WINDOWS\addmh32.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Class - {AB9DB4E2-75EB-16A7-E1F0-71015153AF1C} - C:\WINDOWS\appen.dll
O2 - BHO: Class - {ABE47D97-A0E4-6AFF-425A-480B402A89B8} - C:\WINDOWS\system32\ipol32.dll
O2 - BHO: Class - {B37338CB-DC89-F6A6-BA8B-AEF4D740566E} - C:\WINDOWS\mswa32.dll
O2 - BHO: Class - {BA766B06-F528-DA73-2252-17372A2B1F55} - C:\WINDOWS\system32\javazw32.dll
O2 - BHO: Class - {C19B9125-B9FB-3BFD-7568-61F62B879410} - C:\WINDOWS\system32\apisl32.dll
O2 - BHO: Class - {C19C3C4F-004E-8C8D-A093-AB7AC41004E0} - C:\WINDOWS\system32\appcd32.dll
O2 - BHO: Class - {C75F302C-5DED-C090-F779-5337D7567BC3} - C:\WINDOWS\system32\crnr32.dll
O2 - BHO: Class - {CD0109D6-A18C-B80E-FAF2-55938C44BD61} - C:\WINDOWS\system32\netee32.dll
O2 - BHO: Class - {D7AC65FF-C9B6-66D9-0935-85FAF279CD1E} - C:\WINDOWS\appep.dll
O2 - BHO: Class - {EB7A738C-0CE4-D731-5E60-6A46C953396F} - C:\WINDOWS\iecu.dll
O2 - BHO: Class - {EC0DCF51-1005-877B-C873-10B3F0156A8C} - C:\WINDOWS\system32\addoj32.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Common\ycomp5,0,8,0.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [PreloadApp] c:\hp\drivers\printers\photosmart\hphprld.exe c:\hp\drivers\printers\photosmart\setup.exe -d
O4 - HKLM\..\Run: [TV Now] C:\Program Files\HPQ\Notebook Utilities\TvNow.exe /RK
O4 - HKLM\..\Run: [Display Settings] C:\Program Files\HPQ\Notebook Utilities\hptasks.exe /s
O4 - HKLM\..\Run: [QT4HPOT] C:\PROGRA~1\HPQ\ONE-TO~1\OneTouch.EXE
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [2wSysTray] C:\Program Files\2Wire\Gateway\2PortalMon.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] "c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [syssq32.exe] C:\WINDOWS\system32\syssq32.exe
O4 - HKLM\..\Run: [ntwh.exe] C:\WINDOWS\system32\ntwh.exe
O4 - HKLM\..\Run: [javasw32.exe] C:\WINDOWS\system32\javasw32.exe
O4 - HKLM\..\Run: [winzi32.exe] C:\WINDOWS\system32\winzi32.exe
O4 - HKLM\..\RunOnce: [atlmq.exe] C:\WINDOWS\atlmq.exe
O4 - HKLM\..\RunOnce: [iean32.exe] C:\WINDOWS\system32\iean32.exe
O4 - HKLM\..\RunOnce: [sdkgh.exe] C:\WINDOWS\system32\sdkgh.exe
O4 - HKLM\..\RunOnce: [javasa32.exe] C:\WINDOWS\javasa32.exe
O4 - HKLM\..\RunOnce: [ipuv.exe] C:\WINDOWS\system32\ipuv.exe
O4 - HKLM\..\RunOnce: [syszr.exe] C:\WINDOWS\syszr.exe
O4 - HKLM\..\RunOnce: [javaoh32.exe] C:\WINDOWS\javaoh32.exe
O4 - HKLM\..\RunOnce: [ntov.exe] C:\WINDOWS\system32\ntov.exe
O4 - HKLM\..\RunOnce: [javaqq32.exe] C:\WINDOWS\system32\javaqq32.exe
O4 - HKLM\..\RunOnce: [mstl.exe] C:\WINDOWS\mstl.exe
O4 - HKLM\..\RunOnce: [apinw.exe] C:\WINDOWS\apinw.exe
O4 - HKLM\..\RunOnce: [appts.exe] C:\WINDOWS\appts.exe
O4 - HKLM\..\RunOnce: [d3ud32.exe] C:\WINDOWS\system32\d3ud32.exe
O4 - HKLM\..\RunOnce: [d3tn.exe] C:\WINDOWS\system32\d3tn.exe
O4 - HKLM\..\RunOnce: [ipcv.exe] C:\WINDOWS\system32\ipcv.exe
O4 - HKLM\..\RunOnce: [sysbh32.exe] C:\WINDOWS\sysbh32.exe
O4 - HKLM\..\RunOnce: [mfcqb.exe] C:\WINDOWS\mfcqb.exe
O4 - HKLM\..\RunOnce: [winga32.exe] C:\WINDOWS\winga32.exe
O4 - HKLM\..\RunOnce: [crng.exe] C:\WINDOWS\system32\crng.exe
O4 - HKLM\..\RunOnce: [sdkkb32.exe] C:\WINDOWS\system32\sdkkb32.exe
O4 - HKLM\..\RunOnce: [sysbw.exe] C:\WINDOWS\system32\sysbw.exe
O4 - HKLM\..\RunOnce: [msuy32.exe] C:\WINDOWS\system32\msuy32.exe
O4 - HKLM\..\RunOnce: [winza32.exe] C:\WINDOWS\winza32.exe
O4 - HKLM\..\RunOnce: [ntlv.exe] C:\WINDOWS\system32\ntlv.exe
O4 - HKLM\..\RunOnce: [javann.exe] C:\WINDOWS\system32\javann.exe
O4 - HKLM\..\RunOnce: [msne.exe] C:\WINDOWS\msne.exe
O4 - HKLM\..\RunOnce: [iece32.exe] C:\WINDOWS\system32\iece32.exe
O4 - HKLM\..\RunOnce: [appja.exe] C:\WINDOWS\system32\appja.exe
O4 - HKLM\..\RunOnce: [wingp.exe] C:\WINDOWS\wingp.exe
O4 - HKLM\..\RunOnce: [adddv.exe] C:\WINDOWS\system32\adddv.exe
O4 - HKLM\..\RunOnce: [mfcts.exe] C:\WINDOWS\mfcts.exe
O4 - HKLM\..\RunOnce: [winrx32.exe] C:\WINDOWS\winrx32.exe
O4 - HKLM\..\RunOnce: [netph32.exe] C:\WINDOWS\system32\netph32.exe
O4 - HKLM\..\RunOnce: [d3sr.exe] C:\WINDOWS\d3sr.exe
O4 - HKLM\..\RunOnce: [ipse32.exe] C:\WINDOWS\ipse32.exe
O4 - HKLM\..\RunOnce: [apiqz.exe] C:\WINDOWS\apiqz.exe
O4 - HKLM\..\RunOnce: [netcq.exe] C:\WINDOWS\system32\netcq.exe
O4 - HKLM\..\RunOnce: [netqn.exe] C:\WINDOWS\netqn.exe
O4 - HKLM\..\RunOnce: [ntqt32.exe] C:\WINDOWS\system32\ntqt32.exe
O4 - HKLM\..\RunOnce: [msir.exe] C:\WINDOWS\msir.exe
O4 - HKLM\..\RunOnce: [d3lj32.exe] C:\WINDOWS\d3lj32.exe
O4 - HKLM\..\RunOnce: [mslp32.exe] C:\WINDOWS\mslp32.exe
O4 - HKLM\..\RunOnce: [sysal.exe] C:\WINDOWS\system32\sysal.exe
O4 - HKLM\..\RunOnce: [sdkew.exe] C:\WINDOWS\sdkew.exe
O4 - HKLM\..\RunOnce: [javanz32.exe] C:\WINDOWS\system32\javanz32.exe
O4 - HKLM\..\RunOnce: [mfcbs32.exe] C:\WINDOWS\system32\mfcbs32.exe
O4 - HKLM\..\RunOnce: [crrn32.exe] C:\WINDOWS\crrn32.exe
O4 - HKLM\..\RunOnce: [ipwx32.exe] C:\WINDOWS\ipwx32.exe
O4 - HKLM\..\RunOnce: [mszg32.exe] C:\WINDOWS\mszg32.exe
O4 - HKLM\..\RunOnce: [crdq32.exe] C:\WINDOWS\crdq32.exe
O4 - HKLM\..\RunOnce: [ipud32.exe] C:\WINDOWS\system32\ipud32.exe
O4 - HKLM\..\RunOnce: [javahf.exe] C:\WINDOWS\system32\javahf.exe
O4 - HKLM\..\RunOnce: [appqm32.exe] C:\WINDOWS\appqm32.exe
O4 - HKLM\..\RunOnce: [ipji.exe] C:\WINDOWS\ipji.exe
O4 - HKLM\..\RunOnce: [sysxg32.exe] C:\WINDOWS\sysxg32.exe
O4 - HKLM\..\RunOnce: [sdkuk32.exe] C:\WINDOWS\system32\sdkuk32.exe
O4 - HKLM\..\RunOnce: [winhy.exe] C:\WINDOWS\winhy.exe
O4 - HKLM\..\RunOnce: [mfcxn32.exe] C:\WINDOWS\mfcxn32.exe
O4 - HKLM\..\RunOnce: [ntrs32.exe] C:\WINDOWS\ntrs32.exe
O4 - HKLM\..\RunOnce: [appzn32.exe] C:\WINDOWS\system32\appzn32.exe
O4 - HKLM\..\RunOnce: [javapc32.exe] C:\WINDOWS\javapc32.exe
O4 - HKLM\..\RunOnce: [ieds32.exe] C:\WINDOWS\system32\ieds32.exe
O4 - HKLM\..\RunOnce: [appwp.exe] C:\WINDOWS\appwp.exe
O4 - HKLM\..\RunOnce: [crzm32.exe] C:\WINDOWS\system32\crzm32.exe
O4 - HKLM\..\RunOnce: [netdu32.exe] C:\WINDOWS\system32\netdu32.exe
O4 - HKLM\..\RunOnce: [nettt32.exe] C:\WINDOWS\nettt32.exe
O4 - HKLM\..\RunOnce: [netqw.exe] C:\WINDOWS\system32\netqw.exe
O4 - HKLM\..\RunOnce: [javadg32.exe] C:\WINDOWS\javadg32.exe
O4 - HKLM\..\RunOnce: [criu32.exe] C:\WINDOWS\system32\criu32.exe
O4 - HKLM\..\RunOnce: [mfckg32.exe] C:\WINDOWS\system32\mfckg32.exe
O4 - HKLM\..\RunOnce: [winym.exe] C:\WINDOWS\system32\winym.exe
O4 - HKLM\..\RunOnce: [javahd32.exe] C:\WINDOWS\system32\javahd32.exe
O4 - HKLM\..\RunOnce: [apiop.exe] C:\WINDOWS\system32\apiop.exe
O4 - HKLM\..\RunOnce: [atllg32.exe] C:\WINDOWS\atllg32.exe
O4 - HKLM\..\RunOnce: [addcx32.exe] C:\WINDOWS\system32\addcx32.exe
O4 - HKLM\..\RunOnce: [msbk32.exe] C:\WINDOWS\msbk32.exe
O4 - HKLM\..\RunOnce: [crbx.exe] C:\WINDOWS\system32\crbx.exe
O4 - HKLM\..\RunOnce: [apiyd32.exe] C:\WINDOWS\apiyd32.exe
O4 - HKLM\..\RunOnce: [winjm.exe] C:\WINDOWS\winjm.exe
O4 - HKLM\..\RunOnce: [nttq32.exe] C:\WINDOWS\nttq32.exe
O4 - HKLM\..\RunOnce: [ntby32.exe] C:\WINDOWS\system32\ntby32.exe
O4 - HKLM\..\RunOnce: [syswh32.exe] C:\WINDOWS\system32\syswh32.exe
O4 - HKLM\..\RunOnce: [javapg32.exe] C:\WINDOWS\javapg32.exe
O4 - HKLM\..\RunOnce: [ipui.exe] C:\WINDOWS\system32\ipui.exe
O4 - HKLM\..\RunOnce: [ntuy32.exe] C:\WINDOWS\system32\ntuy32.exe
O4 - HKLM\..\RunOnce: [atlck.exe] C:\WINDOWS\system32\atlck.exe
O4 - HKLM\..\RunOnce: [addli.exe] C:\WINDOWS\addli.exe
O4 - HKLM\..\RunOnce: [netps32.exe] C:\WINDOWS\netps32.exe
O4 - HKLM\..\RunOnce: [mfchy32.exe] C:\WINDOWS\system32\mfchy32.exe
O4 - HKLM\..\RunOnce: [javadi32.exe] C:\WINDOWS\system32\javadi32.exe
O4 - HKLM\..\RunOnce: [ntgr32.exe] C:\WINDOWS\system32\ntgr32.exe
O4 - HKLM\..\RunOnce: [mfcff32.exe] C:\WINDOWS\mfcff32.exe
O4 - HKLM\..\RunOnce: [iewh.exe] C:\WINDOWS\system32\iewh.exe
O4 - HKLM\..\RunOnce: [d3tc.exe] C:\WINDOWS\system32\d3tc.exe
O4 - HKLM\..\RunOnce: [ntes32.exe] C:\WINDOWS\system32\ntes32.exe
O4 - HKLM\..\RunOnce: [sdkng.exe] C:\WINDOWS\system32\sdkng.exe
O4 - HKLM\..\RunOnce: [atlmu32.exe] C:\WINDOWS\system32\atlmu32.exe
O4 - HKLM\..\RunOnce: [mfcnk32.exe] C:\WINDOWS\system32\mfcnk32.exe
O4 - HKLM\..\RunOnce: [winlx32.exe] C:\WINDOWS\winlx32.exe
O4 - HKLM\..\RunOnce: [d3kk32.exe] C:\WINDOWS\d3kk32.exe
O4 - HKLM\..\RunOnce: [crnj32.exe] C:\WINDOWS\system32\crnj32.exe
O4 - HKLM\..\RunOnce: [atlsk.exe] C:\WINDOWS\system32\atlsk.exe
O4 - HKLM\..\RunOnce: [mfckt.exe] C:\WINDOWS\system32\mfckt.exe
O4 - HKLM\..\RunOnce: [javadb.exe] C:\WINDOWS\system32\javadb.exe
O4 - HKLM\..\RunOnce: [iefz32.exe] C:\WINDOWS\system32\iefz32.exe
O4 - HKLM\..\RunOnce: [msdh.exe] C:\WINDOWS\msdh.exe
O4 - HKLM\..\RunOnce: [ntkn.exe] C:\WINDOWS\system32\ntkn.exe
O4 - HKLM\..\RunOnce: [crse.exe] C:\WINDOWS\crse.exe
O4 - HKLM\..\RunOnce: [apigj32.exe] C:\WINDOWS\system32\apigj32.exe
O4 - HKLM\..\RunOnce: [ieli.exe] C:\WINDOWS\ieli.exe
O4 - HKLM\..\RunOnce: [mfcrb.exe] C:\WINDOWS\mfcrb.exe
O4 - HKLM\..\RunOnce: [iefb32.exe] C:\WINDOWS\iefb32.exe
O4 - HKLM\..\RunOnce: [mfcem32.exe] C:\WINDOWS\system32\mfcem32.exe
O4 - HKLM\..\RunOnce: [sdktd32.exe] C:\WINDOWS\sdktd32.exe
O4 - HKLM\..\RunOnce: [sysvc32.exe] C:\WINDOWS\system32\sysvc32.exe
O4 - HKLM\..\RunOnce: [atlob32.exe] C:\WINDOWS\atlob32.exe
O4 - HKLM\..\RunOnce: [netha32.exe] C:\WINDOWS\system32\netha32.exe
O4 - HKLM\..\RunOnce: [d3sw32.exe] C:\WINDOWS\d3sw32.exe
O4 - HKLM\..\RunOnce: [netut.exe] C:\WINDOWS\netut.exe
O4 - HKLM\..\RunOnce: [winnm32.exe] C:\WINDOWS\system32\winnm32.exe
O4 - HKLM\..\RunOnce: [crso32.exe] C:\WINDOWS\crso32.exe
O4 - HKLM\..\RunOnce: [winlk.exe] C:\WINDOWS\winlk.exe
O4 - HKLM\..\RunOnce: [sdkrp.exe] C:\WINDOWS\sdkrp.exe
O4 - HKLM\..\RunOnce: [mfcwj32.exe] C:\WINDOWS\mfcwj32.exe
O4 - HKLM\..\RunOnce: [atlte.exe] C:\WINDOWS\system32\atlte.exe
O4 - HKLM\..\RunOnce: [ieyg.exe] C:\WINDOWS\ieyg.exe
O4 - HKLM\..\RunOnce: [ntsz32.exe] C:\WINDOWS\system32\ntsz32.exe
O4 - HKLM\..\RunOnce: [appxt32.exe] C:\WINDOWS\appxt32.exe
O4 - HKLM\..\RunOnce: [atlxj32.exe] C:\WINDOWS\system32\atlxj32.exe
O4 - HKLM\..\RunOnce: [ieke.exe] C:\WINDOWS\ieke.exe
O4 - HKLM\..\RunOnce: [apiui32.exe] C:\WINDOWS\system32\apiui32.exe
O4 - HKLM\..\RunOnce: [sdkkp.exe] C:\WINDOWS\sdkkp.exe
O4 - HKLM\..\RunOnce: [apijc.exe] C:\WINDOWS\system32\apijc.exe
O4 - HKLM\..\RunOnce: [sysof32.exe] C:\WINDOWS\system32\sysof32.exe
O4 - HKLM\..\RunOnce: [ntof.exe] C:\WINDOWS\ntof.exe
O4 - HKLM\..\RunOnce: [msgb32.exe] C:\WINDOWS\system32\msgb32.exe
O4 - HKLM\..\RunOnce: [mfcqh.exe] C:\WINDOWS\system32\mfcqh.exe
O4 - HKLM\..\RunOnce: [sysfl32.exe] C:\WINDOWS\sysfl32.exe
O4 - HKLM\..\RunOnce: [d3pr.exe] C:\WINDOWS\system32\d3pr.exe
O4 - HKLM\..\RunOnce: [msvo32.exe] C:\WINDOWS\msvo32.exe
O4 - HKLM\..\RunOnce: [d3jd32.exe] C:\WINDOWS\system32\d3jd32.exe
O4 - HKLM\..\RunOnce: [sysjq.exe] C:\WINDOWS\sysjq.exe
O4 - HKLM\..\RunOnce: [d3yx.exe] C:\WINDOWS\d3yx.exe
O4 - HKLM\..\RunOnce: [sysli.exe] C:\WINDOWS\system32\sysli.exe
O4 - HKLM\..\RunOnce: [winvp.exe] C:\WINDOWS\system32\winvp.exe
O4 - HKLM\..\RunOnce: [appux.exe] C:\WINDOWS\appux.exe
O4 - HKLM\..\RunOnce: [netny.exe] C:\WINDOWS\netny.exe
O4 - HKLM\..\RunOnce: [addyo32.exe] C:\WINDOWS\system32\addyo32.exe
O4 - HKLM\..\RunOnce: [addml32.exe] C:\WINDOWS\addml32.exe
O4 - HKLM\..\RunOnce: [atlmr.exe] C:\WINDOWS\system32\atlmr.exe
O4 - HKLM\..\RunOnce: [winbg.exe] C:\WINDOWS\system32\winbg.exe
O4 - HKLM\..\RunOnce: [crmz32.exe] C:\WINDOWS\crmz32.exe
O4 - HKLM\..\RunOnce: [ipkm32.exe] C:\WINDOWS\system32\ipkm32.exe
O4 - HKLM\..\RunOnce: [sdkex32.exe] C:\WINDOWS\system32\sdkex32.exe
O4 - HKLM\..\RunOnce: [atlju32.exe] C:\WINDOWS\atlju32.exe
O4 - HKLM\..\RunOnce: [netxa.exe] C:\WINDOWS\system32\netxa.exe
O4 - HKLM\..\RunOnce: [crte32.exe] C:\WINDOWS\system32\crte32.exe
O4 - HKLM\..\RunOnce: [ntgj32.exe] C:\WINDOWS\system32\ntgj32.exe
O4 - HKLM\..\RunOnce: [wingj.exe] C:\WINDOWS\wingj.exe
O4 - HKLM\..\RunOnce: [mskv.exe] C:\WINDOWS\system32\mskv.exe
O4 - HKLM\..\RunOnce: [javauu.exe] C:\WINDOWS\system32\javauu.exe
O4 - HKLM\..\RunOnce: [sdkdu32.exe] C:\WINDOWS\sdkdu32.exe
O4 - HKLM\..\RunOnce: [ntrr.exe] C:\WINDOWS\system32\ntrr.exe
O4 - HKLM\..\RunOnce: [sdkxo.exe] C:\WINDOWS\system32\sdkxo.exe
O4 - HKLM\..\RunOnce: [applk.exe] C:\WINDOWS\applk.exe
O4 - HKLM\..\RunOnce: [mfcdg.exe] C:\WINDOWS\mfcdg.exe
O4 - HKLM\..\RunOnce: [msdl.exe] C:\WINDOWS\system32\msdl.exe
O4 - HKLM\..\RunOnce: [ipkb32.exe] C:\WINDOWS\system32\ipkb32.exe
O4 - HKLM\..\RunOnce: [crva32.exe] C:\WINDOWS\crva32.exe
O4 - HKLM\..\RunOnce: [d3ol32.exe] C:\WINDOWS\system32\d3ol32.exe
O4 - HKLM\..\RunOnce: [ipth32.exe] C:\WINDOWS\system32\ipth32.exe
O4 - HKLM\..\RunOnce: [sysik.exe] C:\WINDOWS\system32\sysik.exe
O4 - HKLM\..\RunOnce: [winoh32.exe] C:\WINDOWS\winoh32.exe
O4 - HKLM\..\RunOnce: [crli.exe] C:\WINDOWS\crli.exe
O4 - HKLM\..\RunOnce: [ieky.exe] C:\WINDOWS\system32\ieky.exe
O4 - HKLM\..\RunOnce: [addcr.exe] C:\WINDOWS\system32\addcr.exe
O4 - HKLM\..\RunOnce: [atloi.exe] C:\WINDOWS\system32\atloi.exe
O4 - HKLM\..\RunOnce: [apinq.exe] C:\WINDOWS\apinq.exe
O4 - HKLM\..\RunOnce: [atlll32.exe] C:\WINDOWS\atlll32.exe
O4 - HKLM\..\RunOnce: [javaaa.exe] C:\WINDOWS\javaaa.exe
O4 - HKLM\..\RunOnce: [ipej32.exe] C:\WINDOWS\ipej32.exe
O4 - HKLM\..\RunOnce: [ntea.exe] C:\WINDOWS\ntea.exe
O4 - HKLM\..\RunOnce: [netna.exe] C:\WINDOWS\netna.exe
O4 - HKLM\..\RunOnce: [d3cp32.exe] C:\WINDOWS\d3cp32.exe
O4 - HKLM\..\RunOnce: [addmn.exe] C:\WINDOWS\addmn.exe
O4 - HKLM\..\RunOnce: [ieqr.exe] C:\WINDOWS\ieqr.exe
O4 - HKLM\..\RunOnce: [atlfp32.exe] C:\WINDOWS\system32\atlfp32.exe
O4 - HKLM\..\RunOnce: [ntpf32.exe] C:\WINDOWS\ntpf32.exe
O4 - HKLM\..\RunOnce: [syssr32.exe] C:\WINDOWS\system32\syssr32.exe
O4 - HKLM\..\RunOnce: [sdkse32.exe] C:\WINDOWS\system32\sdkse32.exe
O4 - HKLM\..\RunOnce: [atllf32.exe] C:\WINDOWS\atllf32.exe
O4 - HKLM\..\RunOnce: [javait.exe] C:\WINDOWS\system32\javait.exe
O4 - HKLM\..\RunOnce: [wingq32.exe] C:\WINDOWS\system32\wingq32.exe
O4 - HKLM\..\RunOnce: [crrh32.exe] C:\WINDOWS\crrh32.exe
O4 - HKLM\..\RunOnce: [javafd32.exe] C:\WINDOWS\system32\javafd32.exe
O4 - HKLM\..\RunOnce: [syspu.exe] C:\WINDOWS\syspu.exe
O4 - HKLM\..\RunOnce: [atliv32.exe] C:\WINDOWS\atliv32.exe
O4 - HKLM\..\RunOnce: [netyc.exe] C:\WINDOWS\netyc.exe
O4 - HKLM\..\RunOnce: [crug32.exe] C:\WINDOWS\crug32.exe
O4 - HKLM\..\RunOnce: [d3wg32.exe] C:\WINDOWS\d3wg32.exe
O4 - HKLM\..\RunOnce: [ipkq32.exe] C:\WINDOWS\ipkq32.exe
O4 - HKLM\..\RunOnce: [sdkfk.exe] C:\WINDOWS\system32\sdkfk.exe
O4 - HKLM\..\RunOnce: [netks.exe] C:\WINDOWS\system32\netks.exe
O4 - HKLM\..\RunOnce: [mfctq.exe] C:\WINDOWS\mfctq.exe
O4 - HKLM\..\RunOnce: [nter32.exe] C:\WINDOWS\system32\nter32.exe
O4 - HKLM\..\RunOnce: [netht32.exe] C:\WINDOWS\netht32.exe
O4 - HKLM\..\RunOnce: [ntbm.exe] C:\WINDOWS\ntbm.exe
O4 - HKLM\..\RunOnce: [d3xq.exe] C:\WINDOWS\system32\d3xq.exe
O4 - HKLM\..\RunOnce: [javaul.exe] C:\WINDOWS\system32\javaul.exe
O4 - HKLM\..\RunOnce: [crai32.exe] C:\WINDOWS\system32\crai32.exe
O4 - HKLM\..\RunOnce: [cryg32.exe] C:\WINDOWS\cryg32.exe
O4 - HKLM\..\RunOnce: [appmd.exe] C:\WINDOWS\appmd.exe
O4 - HKLM\..\RunOnce: [mfcll.exe] C:\WINDOWS\system32\mfcll.exe
O4 - HKLM\..\RunOnce: [ntwm.exe] C:\WINDOWS\system32\ntwm.exe
O4 - HKLM\..\RunOnce: [appvl32.exe] C:\WINDOWS\system32\appvl32.exe
O4 - HKLM\..\RunOnce: [atlpc32.exe] C:\WINDOWS\atlpc32.exe
O4 - HKLM\..\RunOnce: [atlvz32.exe] C:\WINDOWS\system32\atlvz32.exe
O4 - HKLM\..\RunOnce: [msav32.exe] C:\WINDOWS\system32\msav32.exe
O4 - HKLM\..\RunOnce: [cryq.exe] C:\WINDOWS\system32\cryq.exe
O4 - HKLM\..\RunOnce: [apixy32.exe] C:\WINDOWS\system32\apixy32.exe
O4 - HKLM\..\RunOnce: [netzq32.exe] C:\WINDOWS\netzq32.exe
O4 - HKLM\..\RunOnce: [mfcct32.exe] C:\WINDOWS\mfcct32.exe
O4 - HKLM\..\RunOnce: [d3xd.exe] C:\WINDOWS\system32\d3xd.exe
O4 - HKLM\..\RunOnce: [iphw32.exe] C:\WINDOWS\iphw32.exe
O4 - HKLM\..\RunOnce: [sdkbp.exe] C:\WINDOWS\sdkbp.exe
O4 - HKLM\..\RunOnce: [apirc32.exe] C:\WINDOWS\system32\apirc32.exe
O4 - HKLM\..\RunOnce: [syswy32.exe] C:\WINDOWS\syswy32.exe
O4 - HKLM\..\RunOnce: [apizk.exe] C:\WINDOWS\system32\apizk.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - Global Startup: 2Wire Wireless Client Manager.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra 'Tools' menuitem: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) -
http://messenger.zon...kr.cab31267.cabO16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) -
http://housecall60.t...all/xscan60.cabO16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky...can_unicode.cabO16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) -
http://download.mcaf...84/mcinsctl.cabO16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) -
http://software-dl.r...ip/RdxIE601.cabO16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) -
http://messenger.zon...nt.cab31267.cabO16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) -
http://messenger.msn...pDownloader.cabO16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) -
http://zone.msn.com/...ro.cab34246.cabO16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) -
http://download.mcaf...,21/mcgdmgr.cabO16 - DPF: {D77EF652-9A6B-40C8-A4B9-1C0697C6CF41} (TikGames Online Control) -
http://zone.msn.com/.../default/gf.cabO16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) -
http://chat.msn.com/bin/msnchat45.cabO23 - Service: Network Security Service (NSS) ( 11Fßä#·ºÄÖ`I) - Unknown owner - C:\WINDOWS\atlmq.exe" /s (file missing)
O23 - Service: HP Configuration Interface Service (HPConfig) - Hewlett-Packard - C:\WINDOWS\system32\HPConfig.exe
O23 - Service: HPWirelessMgr - Hewlett-Packard Co. - C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - McAfee, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe