In my ignorance I deleted the entire HKLM\...\Run key. So, now I'm terrified to restart my computer. I've tried numerous times to undo what I did but to no avail.
I also still have terrible problems with spyware\adware. Something on my computer is constantly downloading trojan viruses, there allways seems to be some IE window running in the background (that I can't seem to get to) with script errors, and there's a bunch of junk folders and files in my system32 folder.
Here's the HiJackThis.log
Logfile of HijackThis v1.99.0
Scan saved at 9:14:05 AM, on 1/1/2005
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\Microsoft.NET\Framework\v2.0.40607\aspnet_admin.exe
C:\PROGRA~1\SYMANT~1\SYMANT~1\DefWatch.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\System32\Hummbird\inetd32.exe
C:\PROGRA~1\SYMANT~1\SYMANT~1\Rtvscan.exe
C:\WINNT\system32\nvsvc32.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\system32\stisvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\Program Files\Verizon Online\WinPoET\WrOS.EXE
C:\WINNT\System32\mspmspsv.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\ZipToA.exe
C:\WINNT\System32\msdtc.exe
C:\WINNT\Explorer.EXE
C:\Iomega\DriveIcons\ImgIcon.exe
C:\Program Files\Hewlett-Packard\PhotoSmart\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\ahead\InCD\InCD.exe
C:\WINNT\system32\armcxys.exe
C:\PROGRA~1\SYMANT~1\SYMANT~1\vptray.exe
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\PROGRA~1\HEWLET~1\PHOTOS~1\HPSHAR~1\hpgs2wnf.exe
C:\WINNT\system32\RUNDLL32.EXE
C:\Program Files\Verizon Online\WinPoET\winpppoverethernet.exe
C:\WINNT\system32\m?iexec.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Lavasoft\Ad-Aware SE Professional\Ad-Watch.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Documents and Settings\Administrator.SIDELAN-BEAR\Application Data\eitb.exe
C:\MSSQL7\Binn\sqlmangr.exe
C:\WINNT\system32\taskmgr.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Administrator.SIDELAN-BEAR\Desktop\registry trash\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://start.earthlink.net
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
F1 - win.ini: run=fntldr.exe
O2 - BHO: (no name) - {1F29302B-DF10-98C1-5AF8-3A4725D93E2C} - C:\WINNT\system32\rkdrjpuy\tdytqmwk.dll
O2 - BHO: (no name) - {26C197D4-7B79-2FAB-ED32-18856585FC5E} - C:\WINNT\system32\bxdotlcw\nsyeuums.dll
O2 - BHO: (no name) - {32E17BE5-1688-1216-BDFF-30EA68D8D7D2} - C:\WINNT\system32\plhdsscn\tyxnwwsu.dll
O2 - BHO: (no name) - {3453BB6B-B8D1-A46C-1E6E-0340683FDB31} - C:\WINNT\system32\vybitwqv\xvwejpyu.dll
O2 - BHO: (no name) - {3C77D5B5-329B-4B17-A9D4-9B241C830C66} - C:\WINNT\system32\hjpqmtab\wglbjxgh.dll
O2 - BHO: (no name) - {3DA2BA54-0724-D7B5-8164-CEC91FE63C5E} - C:\WINNT\system32\lqolmpyb\rnvvhhex.dll
O2 - BHO: (no name) - {52A08460-0C98-1417-A8CD-5EE77B5E271B} - C:\WINNT\system32\rxypltkg\jrqrbaeh.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: (no name) - {5E247C4F-EFE1-AC10-3F9B-76BF49A7AE50} - C:\WINNT\system32\ijsrndkq\osepixcn.dll
O2 - BHO: (no name) - {79C03BC5-6C55-4B5B-921F-C02B6F1ABD7B} - (no file)
O2 - BHO: (no name) - {7FF6D1D0-2B4D-6A26-B304-DC5265983A8F} - C:\WINNT\system32\gxxvhwpk\oruukdxx.dll
O2 - BHO: (no name) - {84169640-CB5F-8BB7-95A5-44DE660C288C} - C:\WINNT\system32\puaxfplv\jdkodmit.dll
O2 - BHO: (no name) - {8D86C9FA-204E-7BBC-4A5C-2DF07CBB3898} - C:\WINNT\system32\vsgv.dll
O2 - BHO: (no name) - {92259EF9-376E-70C4-6878-F373C1999392} - C:\WINNT\system32\dihqfjwl\vtpatepe.dll
O2 - BHO: (no name) - {A423BB6F-BB34-DFCD-FE48-CFC4B78E91E4} - C:\WINNT\system32\xohmuvrk\fvcgihua.dll
O2 - BHO: (no name) - {A43A2331-DA5D-6BEE-3C16-F3CF93068819} - C:\WINNT\system32\fbqhsift\qoaqgxpk.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRA~1\FlashGet\jccatch.dll
O2 - BHO: localli - {A5B1F6DF-623F-1E80-6441-1AA258C3D705} - C:\WINNT\system32\localli.dll (file missing)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [Iomega Startup Options] C:\Iomega\Common\ImgStart.exe
O4 - HKCU\..\Run: [regsrv32.exe] regsrv32.exe
O4 - HKCU\..\Run: [Jw47RiHFT] asfwave.exe
O4 - HKCU\..\Run: [\Pribi.exe] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Pribi\Pribi.exe
O4 - HKCU\..\Run: [Pivzn] C:\WINNT\system32\m?iexec.exe
O4 - HKCU\..\Run: [Haes] C:\Documents and Settings\Administrator.SIDELAN-BEAR\Application Data\eitb.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Service Manager.lnk = C:\MSSQL7\Binn\sqlmangr.exe
O4 - Global Startup: Verizon Online Dialer.lnk = C:\Program Files\Verizon Online\WinPoET\Verizon Online.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: Download All by FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download using FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Open Picture in &Microsoft PhotoDraw - res://C:\PROGRA~1\MICROS~2\Office\1033\phdintl.dll/phdContext.htm
O8 - Extra context menu item: Refresh Pa&ge with Full Quality - C:\Program Files\EarthLink TotalAccess\Accelerator\\pac-page.html
O8 - Extra context menu item: Refresh Pi&cture with Full Quality - C:\Program Files\EarthLink TotalAccess\Accelerator\\pac-image.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINNT\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINNT\System32\msjava.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINNT\System32\Shdocvw.dll
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{85BEF9C6-2234-415D-B331-CAB621C1012F}: NameServer = 199.45.32.43 199.45.32.38
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O23 - Service: DefWatch - Symantec Corporation - C:\PROGRA~1\SYMANT~1\SYMANT~1\DefWatch.exe
O23 - Service: Logical Disk Manager Administrative Service - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: Hummingbird Inetd - Hummingbird Communications Ltd. - C:\WINNT\System32\Hummbird\inetd32.exe
O23 - Service: IomegaAccess - Iomega Corporation - C:\WINNT\System32\IomegaAccess.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Symantec AntiVirus Client - Symantec Corporation - C:\PROGRA~1\SYMANT~1\SYMANT~1\Rtvscan.exe
O23 - Service: NVIDIA Display Driver Service - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe
O23 - Service: WinPPPoverEthernet - iVasion, a Routerware Company - C:\Program Files\Verizon Online\WinPoET\WrOS.EXE
O23 - Service: ZipToA - Iomega Corporation - C:\WINNT\System32\ZipToA.exe