Thanks
JBraves17
Hold on a sec....I was able to hit the scan and save log file before it shut me out if it. Here it is.....
Logfile of HijackThis v1.99.1
Scan saved at 10:51:57 PM, on 10/28/2005
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\csrs.exe
C:\WINDOWS\System32\spooIsv.exe
C:\WINDOWS\System32\fdos.exe
C:\WINDOWS\etb\pokapoka78.exe
C:\WINDOWS\System32\netcom.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\ruta\houm.exe
C:\WINDOWS\System32\netcom.exe
C:\WINDOWS\System32\com_32.exe
C:\Program Files\Common Files\Windows\services32.exe
C:\Program Files\Common Files\Windows\services32.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Justin\My Documents\hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://www.sitesearc...ral.com/sp2.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.sitesearc...ral.com/sp2.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sitesearc...ral.com/sp2.php
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
O2 - BHO: CControl Object - {3643ABC2-21BF-46B9-B230-F247DB0C6FD6} - C:\Program Files\E2G\IeBHOs.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [Client Server Runtime Process] C:\WINDOWS\System32\csrs.exe
O4 - HKLM\..\Run: [Spooler SubSystem App] C:\WINDOWS\System32\spooIsv.exe
O4 - HKLM\..\Run: [Windows Update] fdos.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [noC=] c:\windows\mrjj.exe
O4 - HKLM\..\Run: [System service78] C:\WINDOWS\etb\pokapoka78.exe
O4 - HKLM\..\RunServices: [Windows Update] fdos.exe
O4 - HKLM\..\RunOnce: [removeQL] cmd /c IF NOT EXIST "C:\WINDOWS\System32\qlink32.dll" (IF EXIST "C:\WINDOWS\System32\PreUninstallQL.exe" del /s /q "C:\WINDOWS\System32\PreUninstallQL.exe")
O4 - HKCU\..\Run: [services32] C:\Program Files\Common Files\Windows\mc-110-12-0000133.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Windows Update] fdos.exe
O4 - HKCU\..\Run: [Rmum] "C:\Program Files\ruta\houm.exe" -vt mt
O4 - HKCU\..\Run: [netcom] C:\WINDOWS\System32\netcom.exe
O4 - HKCU\..\RunServices: [Windows Update] fdos.exe
O4 - HKCU\..\RunOnce: [netcom] C:\WINDOWS\System32\netcom.exe
O15 - Trusted Zone: http://awbeta.net-nucleus.com (HKLM)
O16 - DPF: {7C559105-9ECF-42B8-B3F7-832E75EDD959} - http://www.tbcode.co...006_regular.cab
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
Edited by jbraves17, 29 October 2005 - 12:02 AM.