\WINDOWS\prefetch\NOTEPAD.EXE-2f2D61E1.pf is corrupt and unreadable.
and evwrytime i open lime wire it gets me a prerun installation like lang.... etc.
heres a hijack this log
help would be much appreciated
Logfile of HijackThis v1.99.1
Scan saved at 3:17:56 PM, on 10/6/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\System32\Ati2evxx.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
D:\WINDOWS\sm56hlpr.exe
D:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
D:\WINDOWS\System32\ezSP_Px.exe
D:\Program Files\Common Files\Real\Update_OB\realsched.exe
D:\Program Files\MSN Messenger\msnmsgr.exe
D:\Program Files\ewido\security suite\ewidoctrl.exe
D:\WINDOWS\System32\msiexec.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\WINDOWS\System32\wuauclt.exe
D:\Documents and Settings\Super Net\Desktop\HijackThis.exe
O4 - HKLM\..\Run: [ATIPTA] D:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] D:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] D:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [steam] steam.exe
O4 - HKLM\..\Run: [TkBellExe] "D:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\RunServices: [steam] steam.exe
O4 - HKCU\..\Run: [msnmsgr] "D:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Startup: LimeWire On Startup.lnk = C:\LimeWire\LimeWire.exe
O4 - Global Startup: MSN Messenger 7.5.lnk = ?
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.co...ad/MsnPUpld.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{1437F663-B504-4E3E-A9C3-B40A06D7590B}: NameServer = 213.131.65.20,213.131.66.246
O17 - HKLM\System\CCS\Services\Tcpip\..\{4F05B24F-165E-4464-B626-88F6D60AAB99}: NameServer = 213.131.65.20,213.131.66.246
O17 - HKLM\System\CS1\Services\Tcpip\..\{1437F663-B504-4E3E-A9C3-B40A06D7590B}: NameServer = 213.131.65.20,213.131.66.246
O17 - HKLM\System\CS2\Services\Tcpip\..\{1437F663-B504-4E3E-A9C3-B40A06D7590B}: NameServer = 213.131.65.20,213.131.66.246
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "D:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Ati HotKey Poller - Unknown owner - D:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - D:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ewido security suite control - ewido networks - D:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: Hardware Clock Driver (hwclock) - Unknown owner - D:\WINDOWS\System32\hwclock.exe (file missing)
O23 - Service: NT login service (ntlogin32) - Unknown owner - D:\WINDOWS\System32\libsys32.exe (file missing)
O23 - Service: PACSPTISVR - Sony Corporation - D:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - D:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe