here's my list....
wat should i do????
Logfile of HijackThis v1.99.0
Scan saved at 5:30:10 PM, on 3/8/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\System32\CTSvcCDA.EXE
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\System32\DSentry.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe
C:\Program Files\MSN Apps\Updater\01.02.3000.1001\zh-sg\msnappau.exe
C:\WINDOWS\system32\javari.exe
C:\Program Files\Webroot\Accelerate\accelerate.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Panicware\Pop-Up Stopper Free Edition\PSFree.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\system32\egsvcr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\dwwin.exe
C:\Documents and Settings\kelvin\Local Settings\Temporary Internet Files\Content.IE5\8LYNC56V\HijackThis[1].exe
C:\WINDOWS\system32\conime.exe
C:\WINDOWS\system32\addgs.exe
C:\WINDOWS\SYSTEM32\notepad.exe
C:\Program Files\Messenger\msmsgs.exe
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {000020DD-C72E-4113-AF77-DD56626C6C42} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {56A8C663-874D-4D49-A514-C7F1D1B06635} - C:\WINDOWS\netgx.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\zh-sg\msntb.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [msnappau] "C:\Program Files\MSN Apps\Updater\01.02.3000.1001\zh-sg\msnappau.exe"
O4 - HKLM\..\Run: [sysce.exe] C:\WINDOWS\system32\sysce.exe
O4 - HKLM\..\Run: [d3hf.exe] C:\WINDOWS\system32\d3hf.exe
O4 - HKLM\..\Run: [iefw32.exe] C:\WINDOWS\system32\iefw32.exe
O4 - HKLM\..\Run: [msvs32.exe] C:\WINDOWS\system32\msvs32.exe
O4 - HKLM\..\Run: [winlu.exe] C:\WINDOWS\system32\winlu.exe
O4 - HKLM\..\Run: [mfcbk.exe] C:\WINDOWS\system32\mfcbk.exe
O4 - HKLM\..\Run: [d3hi.exe] C:\WINDOWS\system32\d3hi.exe
O4 - HKLM\..\Run: [adddv32.exe] C:\WINDOWS\system32\adddv32.exe
O4 - HKLM\..\Run: [d3ob32.exe] C:\WINDOWS\system32\d3ob32.exe
O4 - HKLM\..\Run: [crvl.exe] C:\WINDOWS\system32\crvl.exe
O4 - HKLM\..\Run: [msps32.exe] C:\WINDOWS\system32\msps32.exe
O4 - HKLM\..\Run: [javafw.exe] C:\WINDOWS\system32\javafw.exe
O4 - HKLM\..\Run: [sdkrl.exe] C:\WINDOWS\system32\sdkrl.exe
O4 - HKLM\..\Run: [mfcql32.exe] C:\WINDOWS\system32\mfcql32.exe
O4 - HKLM\..\Run: [apitf32.exe] C:\WINDOWS\system32\apitf32.exe
O4 - HKLM\..\Run: [crri.exe] C:\WINDOWS\system32\crri.exe
O4 - HKLM\..\Run: [javari.exe] C:\WINDOWS\system32\javari.exe
O4 - HKLM\..\Run: [appwe32.exe] C:\WINDOWS\system32\appwe32.exe
O4 - HKLM\..\Run: [Error Nuker] C:\Program Files\Error Nuker\bin\ErrorNuker.exe autostart
O4 - HKLM\..\Run: [Anti Spyware] "C:\Program Files\SinEspias\no-spy.exe" /autorun
O4 - HKLM\..\Run: [javalj32.exe] C:\WINDOWS\system32\javalj32.exe
O4 - HKLM\..\Run: [Accelerate] C:\Program Files\Webroot\Accelerate\accelerate.exe /S
O4 - HKLM\..\Run: [egsvcr] C:\WINDOWS\system32\egsvcr.exe
O4 - HKLM\..\RunOnce: [appbs32.exe] C:\WINDOWS\system32\appbs32.exe
O4 - HKLM\..\RunOnce: [ieuo32.exe] C:\WINDOWS\ieuo32.exe
O4 - HKLM\..\RunOnce: [ipsh32.exe] C:\WINDOWS\system32\ipsh32.exe
O4 - HKLM\..\RunOnce: [atlvk.exe] C:\WINDOWS\system32\atlvk.exe
O4 - HKLM\..\RunOnce: [ieet32.exe] C:\WINDOWS\ieet32.exe
O4 - HKLM\..\RunOnce: [ntnx.exe] C:\WINDOWS\ntnx.exe
O4 - HKLM\..\RunOnce: [sysgx32.exe] C:\WINDOWS\sysgx32.exe
O4 - HKLM\..\RunOnce: [netrx32.exe] C:\WINDOWS\system32\netrx32.exe
O4 - HKLM\..\RunOnce: [netby32.exe] C:\WINDOWS\system32\netby32.exe
O4 - HKLM\..\RunOnce: [apppf32.exe] C:\WINDOWS\system32\apppf32.exe
O4 - HKLM\..\RunOnce: [winip.exe] C:\WINDOWS\winip.exe
O4 - HKLM\..\RunOnce: [ntmf.exe] C:\WINDOWS\ntmf.exe
O4 - HKLM\..\RunOnce: [apimg32.exe] C:\WINDOWS\apimg32.exe
O4 - HKLM\..\RunOnce: [iprt.exe] C:\WINDOWS\iprt.exe
O4 - HKLM\..\RunOnce: [javacb32.exe] C:\WINDOWS\system32\javacb32.exe
O4 - HKLM\..\RunOnce: [ntcm32.exe] C:\WINDOWS\system32\ntcm32.exe
O4 - HKLM\..\RunOnce: [sysdo.exe] C:\WINDOWS\system32\sysdo.exe
O4 - HKLM\..\RunOnce: [sdkby32.exe] C:\WINDOWS\system32\sdkby32.exe
O4 - HKLM\..\RunOnce: [apizk.exe] C:\WINDOWS\system32\apizk.exe
O4 - HKLM\..\RunOnce: [d3rt32.exe] C:\WINDOWS\system32\d3rt32.exe
O4 - HKLM\..\RunOnce: [sysby32.exe] C:\WINDOWS\sysby32.exe
O4 - HKLM\..\RunOnce: [msaz32.exe] C:\WINDOWS\system32\msaz32.exe
O4 - HKLM\..\RunOnce: [apiki.exe] C:\WINDOWS\apiki.exe
O4 - HKLM\..\RunOnce: [ierv.exe] C:\WINDOWS\system32\ierv.exe
O4 - HKLM\..\RunOnce: [ntzd.exe] C:\WINDOWS\ntzd.exe
O4 - HKLM\..\RunOnce: [netts32.exe] C:\WINDOWS\system32\netts32.exe
O4 - HKLM\..\RunOnce: [javatt.exe] C:\WINDOWS\system32\javatt.exe
O4 - HKLM\..\RunOnce: [sdkar32.exe] C:\WINDOWS\system32\sdkar32.exe
O4 - HKLM\..\RunOnce: [crgy32.exe] C:\WINDOWS\crgy32.exe
O4 - HKLM\..\RunOnce: [atlot.exe] C:\WINDOWS\system32\atlot.exe
O4 - HKLM\..\RunOnce: [msua.exe] C:\WINDOWS\msua.exe
O4 - HKLM\..\RunOnce: [msze32.exe] C:\WINDOWS\system32\msze32.exe
O4 - HKLM\..\RunOnce: [windg32.exe] C:\WINDOWS\system32\windg32.exe
O4 - HKLM\..\RunOnce: [iejd32.exe] C:\WINDOWS\system32\iejd32.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [PopUpStopperFreeEdition] "C:\Program Files\Panicware\Pop-Up Stopper Free Edition\PSFree.exe"
O4 - HKCU\..\Run: [SpyKiller] C:\Program Files\SpyKiller\spykiller.exe /startup
O4 - HKCU\..\Run: [SpySweeper] C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe /0
O4 - Global Startup: Frontstep VPN Client.lnk = C:\Program Files\Cisco Systems\VPN Client\ipsecdialer.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward &Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cac&hed Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Si&milar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: Instant Messenger - {0F7DE07D-BD74-4991-9D5F-ECBB8391875D} - http://cn.rd.yahoo.c...nger.yahoo.com/ (file missing)
O9 - Extra button: 3721CMail - {5D73EE86-05F1-49ed-B850-E423120EC329} - http://cmail.3721.com?fb=client (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.imgfarm.co...etup1.0.0.8.exe
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zon...er.cab28578.cab
O16 - DPF: {665585FD-2068-4C5E-A6D3-53AC3270ECD4} (FileSharingCtrl Class) - http://appdirectory....sharingctrl.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zon...StatsClient.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{A158327C-B253-4C44-80D7-7EC3B2125D60}: NameServer = 165.21.100.88 165.21.83.88
O18 - Protocol: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: cdl - {3DD53D40-7B8B-11D0-B013-00AA0059CE02} - C:\WINDOWS\SYSTEM32\urlmon.dll
O18 - Protocol: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL
O18 - Protocol: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll
O18 - Protocol: file - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B} - C:\WINDOWS\SYSTEM32\urlmon.dll
O18 - Protocol: ftp - {79EAC9E3-BAF9-11CE-8C82-00AA004BA90B} - C:\WINDOWS\SYSTEM32\urlmon.dll
O18 - Protocol: gopher - {79EAC9E4-BAF9-11CE-8C82-00AA004BA90B} - C:\WINDOWS\SYSTEM32\urlmon.dll
O18 - Protocol: http - {79EAC9E2-BAF9-11CE-8C82-00AA004BA90B} - C:\WINDOWS\SYSTEM32\urlmon.dll
O18 - Protocol: https - {79EAC9E5-BAF9-11CE-8C82-00AA004BA90B} - C:\WINDOWS\SYSTEM32\urlmon.dll
O18 - Protocol: ipp - (no CLSID) - (no file)
O18 - Protocol: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\System32\itss.dll
O18 - Protocol: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: local - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B} - C:\WINDOWS\SYSTEM32\urlmon.dll
O18 - Protocol: mailto - {3050F3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: mhtml - {05300401-BCBC-11D0-85E3-00C04FD85AB4} - C:\WINDOWS\System32\inetcomm.dll
O18 - Protocol: mk - {79EAC9E6-BAF9-11CE-8C82-00AA004BA90B} - C:\WINDOWS\SYSTEM32\urlmon.dll
O18 - Protocol: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\System32\itss.dll
O18 - Protocol: msdaipp - (no CLSID) - (no file)
O18 - Protocol: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
O18 - Protocol: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: sysimage - {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll
O18 - Protocol: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\System32\wiascr.dll
O23 - Service: Network Security Service - Unknown - C:\WINDOWS\system32\addgs.exe
O23 - Service: Symantec Event Manager - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTSvcCDA.EXE
O23 - Service: Cisco Systems, Inc. VPN Service - Cisco Systems, Inc. - C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
O23 - Service: Norton AntiVirus Auto Protect Service - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Intel NCS NetService - Intel® Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: ScriptBlocking Service - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: SymWMI Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
please help me.....