HJT Log #1
I thought I had uploaded the Hijach This log but it looks like I didn't. The problem is it is too big for a single post and exceeds the upload limit I will put it in two replys.
Logfile of HijackThis v1.99.1
Scan saved at 10:03:17 AM, on 6/26/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\Trend Micro\Internet Security 2005\pccguide.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Br.Ronnie\My Documents\Downloads\hijack this\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://us.rd.yahoo.com/customize/ycomp/defaults/su/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Yahoo!
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {01C3675A-742C-F571-C549-9B7E893FC5E9} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Class - {088535BC-DED7-DA54-0D5F-6BC96009E456} - C:\WINDOWS\crrp.dll (file missing)
O2 - BHO: (no name) - {0A18D7B4-8485-B715-3461-EDCA233B81A2} - (no file)
O2 - BHO: (no name) - {0B55BE2B-A75E-6E3D-F6CF-A9288172D9E4} - (no file)
O2 - BHO: Class - {0C3C97D9-21C6-B33B-3429-B59624FD263F} - C:\WINDOWS\system32\mssr32.dll (file missing)
O2 - BHO: Class - {0E59F682-B49E-9314-4B0F-55169D9DB01D} - C:\WINDOWS\system32\addqv32.dll (file missing)
O2 - BHO: Class - {0F1C73A3-D00A-5B50-277B-29E122FC2D80} - C:\WINDOWS\netoq32.dll (file missing)
O2 - BHO: Class - {0FA16817-797E-C206-03C6-AA5386674100} - C:\WINDOWS\nthg.dll (file missing)
O2 - BHO: (no name) - {12249E43-F15C-0E4D-06F5-0B6F9831A09F} - (no file)
O2 - BHO: (no name) - {140D792F-75A2-4E42-7091-0866E3AE621A} - (no file)
O2 - BHO: (no name) - {181EDD6C-335B-6475-7B7C-B04EFA3C4F99} - (no file)
O2 - BHO: Class - {197A8D26-DFA5-F761-1F4B-4A8703447597} - C:\WINDOWS\system32\netpo32.dll (file missing)
O2 - BHO: Class - {1C716D90-1EF1-DAB0-7395-A99040661F78} - C:\WINDOWS\system32\apirs32.dll (file missing)
O2 - BHO: Class - {1F24D511-9AF7-39AA-3646-AD1A3A3C44E0} - C:\WINDOWS\mfcwn.dll (file missing)
O2 - BHO: Class - {229E6A5D-B94F-9372-A0E1-C8FA42AAC0B7} - C:\WINDOWS\system32\crzu.dll (file missing)
O2 - BHO: Class - {24A65122-E418-D30F-9B86-0FC7CF1A477D} - C:\WINDOWS\atlqa.dll (file missing)
O2 - BHO: Class - {27931773-97FE-8F82-A25B-070C522B3CF0} - C:\WINDOWS\atlqy32.dll (file missing)
O2 - BHO: Class - {282032FC-C6CA-9E36-F009-345A15203683} - C:\WINDOWS\javaln.dll (file missing)
O2 - BHO: Class - {2AD27B78-A144-13BF-3CFD-8C2B118FCB77} - C:\WINDOWS\sdkgq.dll (file missing)
O2 - BHO: (no name) - {2CF3F7AD-CB85-FA6A-FA52-E649A865235B} - (no file)
O2 - BHO: Class - {36672DD6-0E2A-B9F7-1ADF-58AE711BE2D3} - C:\WINDOWS\system32\crpm32.dll (file missing)
O2 - BHO: (no name) - {37276319-5C2D-9354-E5C1-9D62AF7ADE07} - (no file)
O2 - BHO: (no name) - {3E9286B0-CAED-1862-7F24-4B2CF01194D2} - (no file)
O2 - BHO: (no name) - {40435204-5FF3-A72D-C4F6-26F9B7CF3238} - (no file)
O2 - BHO: Class - {41D261AF-74ED-449F-EEC7-1D4FC649FA14} - C:\WINDOWS\appoe32.dll (file missing)
O2 - BHO: Class - {427AC2D9-095B-B8F2-E344-79D48DC72DAA} - C:\WINDOWS\javayy32.dll (file missing)
O2 - BHO: Class - {46015205-9C0D-68F5-0714-0BA8A0DA3C56} - C:\WINDOWS\javaqq.dll (file missing)
O2 - BHO: Class - {4D6349C9-DB1F-F1BC-CA27-1B9D604C7F02} - C:\WINDOWS\ipac32.dll (file missing)
O2 - BHO: (no name) - {4EC3A22A-5434-CC1A-4E91-B9094044E2D6} - (no file)
O2 - BHO: Class - {54EC2000-824C-7ABC-DA9D-E7D8479CD36D} - C:\WINDOWS\system32\apigc.dll (file missing)
O2 - BHO: Class - {5F25A197-5C64-2844-84AC-BE08CBD78A39} - C:\WINDOWS\system32\winvw32.dll (file missing)
O2 - BHO: Class - {621C772A-BD1C-569E-4C0E-31803458AF26} - C:\WINDOWS\ipui.dll (file missing)
O2 - BHO: Class - {63D8E7C3-8227-3E71-D229-292FC69E5C73} - C:\WINDOWS\javare32.dll (file missing)
O2 - BHO: Class - {6542A967-1F9A-0252-366F-EB61AF2E0E58} - C:\WINDOWS\system32\d3dm32.dll (file missing)
O2 - BHO: Class - {661A21D1-458F-8AE8-8737-B3DD77B2194A} - C:\WINDOWS\system32\sdkfs.dll (file missing)
O2 - BHO: (no name) - {686C35B9-5E7B-1BFA-0B2C-F8DBA37CB7CF} - (no file)
O2 - BHO: Class - {6916E12D-B7B5-E5B2-A230-80E344B0872D} - C:\WINDOWS\apiyw.dll (file missing)
O2 - BHO: Class - {696C280D-491E-BCE6-CB54-6602CC3C3A0C} - C:\WINDOWS\winvr32.dll (file missing)
O2 - BHO: Class - {6A9A98A4-1733-141A-04B1-536A43E5A00C} - C:\WINDOWS\netek.dll (file missing)
O2 - BHO: (no name) - {6DF792E2-E465-9370-BF80-0572AA228138} - (no file)
O2 - BHO: Class - {70B30880-F84D-EE39-FE16-EDB1E1A80F9A} - C:\WINDOWS\system32\iemq32.dll (file missing)
O2 - BHO: (no name) - {72763199-C2D7-3547-5C10-D62AF7ADE07C} - (no file)
O2 - BHO: (no name) - {741EF1A1-D9CC-94D4-0B32-52C18D0ED509} - (no file)
O2 - BHO: Class - {75B9E207-AB9C-F794-070D-C3D24A9C47A8} - C:\WINDOWS\system32\appcu32.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: Class - {7621039D-911B-1A3D-343B-0F72B58EF21C} - C:\WINDOWS\syskr32.dll (file missing)
O2 - BHO: Class - {78F80350-DF77-499E-4B59-72E1FF551449} - C:\WINDOWS\system32\ieve32.dll (file missing)
O2 - BHO: Class - {7CE28F1A-C75D-E86A-7653-65342618DF9B} - C:\WINDOWS\syslj32.dll (file missing)
O2 - BHO: Class - {7DBD6986-1C5E-5F61-5CDC-F5402DB34848} - C:\WINDOWS\mfcee32.dll (file missing)
O2 - BHO: Class - {7DCBAEA8-04D5-60D6-F78B-5C16E122E3BC} - C:\WINDOWS\system32\apizf32.dll (file missing)
O2 - BHO: Class - {8349086E-3F47-DF2F-515E-324A161E8B39} - C:\WINDOWS\apiht32.dll (file missing)
O2 - BHO: (no name) - {8430846B-8A81-CE71-E16C-22A97EFCBE41} - (no file)
O2 - BHO: Class - {847B6EAB-D9B0-4FC9-A4B8-83E8BCC35E8C} - C:\WINDOWS\netxp.dll (file missing)
O2 - BHO: (no name) - {86E20715-05AB-460E-423F-569BAEE5A0CB} - (no file)
O2 - BHO: Class - {8A4CF18B-B846-C0E7-A457-DF8C366EE6AB} - C:\WINDOWS\javatt32.dll (file missing)
O2 - BHO: Class - {8C7D53BF-2F81-F6A2-202A-C13B9FDF7854} - C:\WINDOWS\addoe.dll (file missing)
O2 - BHO: Class - {920AD1D2-5235-FD60-EB1A-42DB37705C6B} - C:\WINDOWS\winue32.dll (file missing)
O2 - BHO: Class - {94EDC8C3-C5D6-A92A-41EE-6CC367C3A231} - C:\WINDOWS\d3dk.dll (file missing)
O2 - BHO: Class - {9567AEAF-59B7-5E8B-8F6C-5DD2344A72B3} - C:\WINDOWS\system32\nettl32.dll (file missing)
O2 - BHO: Class - {977907C4-FEB4-AC8C-7FEA-8B1DE9098D54} - C:\WINDOWS\system32\ipgq32.dll (file missing)
O2 - BHO: Class - {A26538B0-8F5F-F0E6-7B55-44FA9E707CF1} - C:\WINDOWS\apiog.dll (file missing)
O2 - BHO: (no name) - {A4F44AA0-9FEC-4E35-454E-9966C5BAB81B} - (no file)
O2 - BHO: (no name) - {A5FF8485-7410-8006-3E97-05C369AB07B3} - (no file)
O2 - BHO: Class - {A6773BDA-AF27-D057-4727-6CE7CCFF4CE6} - C:\WINDOWS\mfcfy32.dll (file missing)
O2 - BHO: Class - {A69B7D98-9DAC-21C6-7ADB-7FF21D28CEC1} - C:\WINDOWS\system32\addep.dll (file missing)
O2 - BHO: Class - {AEB98174-C938-D64D-4321-E50CF46B9CFC} - C:\WINDOWS\system32\sdkjs32.dll (file missing)
O2 - BHO: Class - {B30E458E-D56C-F802-8A2F-D5FC73A16CAE} - C:\WINDOWS\system32\mfcxj32.dll (file missing)
O2 - BHO: Class - {B33D0721-6A15-CDB1-D9DA-50D77149E4F8} - C:\WINDOWS\system32\atlig32.dll (file missing)
O2 - BHO: Class - {B89A9C19-6168-604D-2FF8-CB8455B6D319} - C:\WINDOWS\msby32.dll (file missing)
O2 - BHO: Class - {B9B03493-3AB7-1458-DC72-1757D8B6955D} - C:\WINDOWS\winuh32.dll (file missing)
O2 - BHO: Class - {B9D30E0B-5FED-E464-AAFF-7DD0E2C91EDE} - C:\WINDOWS\system32\d3fy32.dll (file missing)
O2 - BHO: Class - {B9FCA0E1-7B64-E16E-A3DC-00928170618E} - C:\WINDOWS\crhr.dll (file missing)
O2 - BHO: Class - {BA41BA8F-761F-36A0-EC00-50A899ECE89E} - C:\WINDOWS\system32\netfx32.dll (file missing)
O2 - BHO: Class - {BD9F01E8-BBEC-4791-99A6-0B3141961A1C} - C:\WINDOWS\system32\mfcem32.dll (file missing)
O2 - BHO: Class - {C0B4A97D-E166-016C-9557-B10E1E67B6BD} - C:\WINDOWS\sdkzr.dll (file missing)
O2 - BHO: Class - {C0FE83BD-31A5-72B3-58A3-123E5B3E66F7} - C:\WINDOWS\netsa32.dll (file missing)
O2 - BHO: Class - {C15D9B6E-7635-EE40-6B05-91AF55B4A5D8} - C:\WINDOWS\system32\iedw.dll (file missing)
O2 - BHO: Class - {C1A41FA6-75A9-208D-8DC5-1020AE6270B6} - C:\WINDOWS\d3gz.dll (file missing)
O2 - BHO: (no name) - {CC99040E-760C-7B3F-DB14-4EE4EB7AA49E} - (no file)
O2 - BHO: Class - {CE7A710F-55BC-4498-742A-FEB5AF0058EF} - C:\WINDOWS\system32\crbz32.dll (file missing)
O2 - BHO: (no name) - {CF3AB838-55A1-5960-9D86-9EF072CBB309} - (no file)
O2 - BHO: Class - {CFE933EE-9DAA-CBCB-0405-119C175A18A1} - C:\WINDOWS\system32\atlje.dll (file missing)
O2 - BHO: Class - {D01EB607-FCB6-D9F9-F253-E432410DA962} - C:\WINDOWS\system32\sdkon.dll (file missing)
O2 - BHO: (no name) - {D02FD285-78D4-2369-CA17-092C21D1BC0E} - (no file)
O2 - BHO: Class - {D3DFD4E6-1C5E-99E5-CD97-BC92535FF528} - C:\WINDOWS\javawn.dll (file missing)
O2 - BHO: Class - {D49FD607-A2D9-6ED1-FD46-17458B02B006} - C:\WINDOWS\crnd32.dll (file missing)
O2 - BHO: (no name) - {D772EDB5-7E28-3680-0DFD-47B69536B127} - (no file)
O2 - BHO: (no name) - {D846D0FC-261A-7E1F-5D9C-EF98B2A7155F} - (no file)
O2 - BHO: Class - {E1757CF5-D1DE-B6BF-7313-71B514B2709D} - C:\WINDOWS\ipyg32.dll (file missing)
O2 - BHO: (no name) - {E2206C5C-A3AE-1960-7FEE-E2D7D04FD24C} - (no file)
O2 - BHO: Class - {E9AE91ED-230B-9C13-63C1-9B2A676E905B} - C:\WINDOWS\system32\d3qu.dll (file missing)
O2 - BHO: (no name) - {EACAF0D9-E942-E0AA-7DE0-8F8242818257} - (no file)
O2 - BHO: Class - {EE37178B-E57C-4045-A483-E895595C72A5} - C:\WINDOWS\sdkdy.dll (file missing)
O2 - BHO: Class - {EE72118D-405B-F80E-60FC-ABE4266F3C23} - C:\WINDOWS\winon.dll (file missing)
O2 - BHO: (no name) - {EFE08795-2BF8-283F-7363-352336770626} - (no file)
O2 - BHO: (no name) - {F0E2EB4B-54D0-6F5F-BFD0-1254D3F4D787} - (no file)
O2 - BHO: Class - {F3B83A92-A1D1-BD6C-69DB-EAEF4B4D27B8} - C:\WINDOWS\syshi32.dll (file missing)
O2 - BHO: (no name) - {F58EF4B2-119D-83ED-24FE-F0DCDD4A68DC} - (no file)
O2 - BHO: Class - {F8DF7926-05DA-3C69-A9DA-2FF6B1F4CDF8} - C:\WINDOWS\system32\mfclv.dll (file missing)
O2 - BHO: Class - {FA30FBE1-2D6A-60CB-19A0-CC0872CC2F67} - C:\WINDOWS\sdkdz.dll (file missing)
O2 - BHO: (no name) - {FA5137E2-683E-E18D-19AC-697532D849C0} - (no file)
O2 - BHO: (no name) - {FBD510D7-7593-FDD3-1C34-C5FEB77E69B3} - (no file)
O2 - BHO: Class - {FC63F231-14C0-2872-4514-264B57E8F5C1} - C:\WINDOWS\ipsi32.dll (file missing)
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 2005\pccguide.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [winzy.exe] C:\WINDOWS\system32\winzy.exe
O4 - HKLM\..\Run: [winzd.exe] C:\WINDOWS\system32\winzd.exe
O4 - HKLM\..\Run: [winyw.exe] C:\WINDOWS\winyw.exe
O4 - HKLM\..\Run: [winxp32.exe] C:\WINDOWS\system32\winxp32.exe
O4 - HKLM\..\Run: [winqw.exe] C:\WINDOWS\system32\winqw.exe
O4 - HKLM\..\Run: [winqb.exe] C:\WINDOWS\winqb.exe
O4 - HKLM\..\Run: [winkk32.exe] C:\WINDOWS\winkk32.exe
O4 - HKLM\..\Run: [winja.exe] C:\WINDOWS\winja.exe
O4 - HKLM\..\Run: [winfs.exe] C:\WINDOWS\system32\winfs.exe
O4 - HKLM\..\Run: [winfk32.exe] C:\WINDOWS\system32\winfk32.exe
O4 - HKLM\..\Run: [winfd32.exe] C:\WINDOWS\system32\winfd32.exe
O4 - HKLM\..\Run: [windt32.exe] C:\WINDOWS\windt32.exe
O4 - HKLM\..\Run: [winby.exe] C:\WINDOWS\system32\winby.exe
O4 - HKLM\..\Run: [winay32.exe] C:\WINDOWS\system32\winay32.exe
O4 - HKLM\..\Run: [syszp32.exe] C:\WINDOWS\system32\syszp32.exe
O4 - HKLM\..\Run: [sysye.exe] C:\WINDOWS\system32\sysye.exe
O4 - HKLM\..\Run: [sysxt32.exe] C:\WINDOWS\system32\sysxt32.exe
O4 - HKLM\..\Run: [sysxg.exe] C:\WINDOWS\sysxg.exe
O4 - HKLM\..\Run: [sysuq.exe] C:\WINDOWS\sysuq.exe
O4 - HKLM\..\Run: [sysqr32.exe] C:\WINDOWS\system32\sysqr32.exe
O4 - HKLM\..\Run: [sysow32.exe] C:\WINDOWS\sysow32.exe
O4 - HKLM\..\Run: [sysnt.exe] C:\WINDOWS\system32\sysnt.exe
O4 - HKLM\..\Run: [syshw32.exe] C:\WINDOWS\syshw32.exe
O4 - HKLM\..\Run: [sysem32.exe] C:\WINDOWS\sysem32.exe
O4 - HKLM\..\Run: [syscy32.exe] C:\WINDOWS\syscy32.exe
O4 - HKLM\..\Run: [sdkyp.exe] C:\WINDOWS\system32\sdkyp.exe
O4 - HKLM\..\Run: [sdkwi32.exe] C:\WINDOWS\sdkwi32.exe
O4 - HKLM\..\Run: [sdkos.exe] C:\WINDOWS\sdkos.exe
O4 - HKLM\..\Run: [sdknr.exe] C:\WINDOWS\system32\sdknr.exe
O4 - HKLM\..\Run: [sdkmt32.exe] C:\WINDOWS\system32\sdkmt32.exe
O4 - HKLM\..\Run: [sdklr.exe] C:\WINDOWS\system32\sdklr.exe
O4 - HKLM\..\Run: [sdkit32.exe] C:\WINDOWS\sdkit32.exe
O4 - HKLM\..\Run: [sdkgb.exe] C:\WINDOWS\system32\sdkgb.exe