ok i did some windows updating and used the windows malicious software remover and windows defender here is an updated hijackthis log and installed program log:
Logfile of HijackThis v1.99.1
Scan saved at 7:37:33 AM, on 6/28/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\zHotkey.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\msiexec.exe
C:\Documents and Settings\ME\Local Settings\Temporary Internet Files\Content.IE5\3YM84OTE\hijackthis[1].exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://red.clientapps.yahoo.com/customize/.../search/ie.htmlR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://red.clientapps.yahoo.com/customize/...//www.yahoo.comR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.emachines.comR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://searchbar.findthewebsiteyouneed.comR0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://searchbar.findthewebsiteyouneed.comR1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://red.clientapps.yahoo.com/customize/...//www.yahoo.comR3 - URLSearchHook: (no name) - {FFB544D9-8F41-C1E4-65AF-815D43C54F9F} - C:\WINDOWS\System32\bxaubib.dll (file missing)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O1 - Hosts: 204.228.229.111 streetchallenge.info
O1 - Hosts: 204.228.229.111
www.streetchallenge.infoO2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (file missing)
O2 - BHO: (no name) - {18DDA3C5-7935-40FA-90B3-09BCED07B8DF} - C:\Program Files\Online Services\sane.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll (file missing)
O2 - BHO: (no name) - {FFB544D9-8F41-C1E4-65AF-815D43C54F9F} - C:\WINDOWS\System32\bxaubib.dll (file missing)
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O4 - HKLM\..\Run: [CHotkey] zHotkey.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [SunKistEM] C:\Program Files\eMachines Bay Reader\shwiconem.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [winupdates] C:\Program Files\winupdates\winupdates.exe /auto
O4 - HKLM\..\Run: [keyboard] C:\\kybrd_1.exe
O4 - HKLM\..\Run: [newname] C:\\nwnm_1.exe
O4 - HKLM\..\Run: [win320569469170] C:\WINDOWS\win320569469170.exe
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Qsgygo] C:\WINDOWS\W?nSxS\?srss.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &MyToolBar Search - res://C:\Program Files\ToolBar888\MyToolBar.dll/MENUSEARCH.HTM
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll (file missing)
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\OFFICE11\REFIEBAR.DLL (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.emachines.com
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) -
http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cabO16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.microsoft.com/microsoftupdat...b?1151046199750O20 - AppInit_DLLs: C:\WINDOWS\System32\lsass.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\Diskeeper\DkService.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: Windows Overlay Components - Unknown owner - C:\WINDOWS\lqhvpjn.exe (file missing)
here is the installed program log:
INSTALLED SOFTWARE (105) - ZERO - 6/28/2006 7:39:04 AM
3Dfx Interactive
Adobe Reader 6.0 Ver: 6.0 Installed: 5/12/2004
AOL You've Got Pictures Screensaver
CleanUp!
Diskeeper Professional Edition Ver: 8.0.478 Installed: 6/27/2006
eMachines Bay Reader Ver: 1.07 Installed: 5/13/2004
eMachines Bay Reader Ver: 1.07 Installed: 5/13/2004
EPSON EPIC C66
EPSON Printer Software
ewido anti-spyware 4.0
Film Factory
HighMAT Extension to Microsoft Windows XP CD Writing Wizard Ver: 1.1.1905.1 Installed: 7/19/2005
HijackThis 1.99.1 Ver: 1.99.1
HyperLoad - NabiscoWorld MiniGolf Ver: 2.0.0 Installed: 8/2/2005
Intel® Extreme Graphics Driver
Internet Explorer Q903235
J2SE Runtime Environment 5.0 Update 3 Ver: 1.5.0.30 Installed: 6/24/2006
J2SE Runtime Environment 5.0 Update 6 Ver: 1.5.0.60 Installed: 6/25/2006
Java 2 Runtime Environment, SE v1.4.2 Ver: 1.4.2 Installed: 5/12/2004
Learn2 Player (Uninstall Only)
LimeWire 4.12.3 Ver: 4.12.3
Macromedia Flash Player 8 Ver: 8
Macromedia Shockwave Player Ver: 10.1.0.11
MGI PhotoSuite 4 (Remove Only)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Ver: 1.1.4322 Installed: 6/24/2006
Microsoft .NET Framework 1.1 Hotfix (KB886903)
Microsoft Data Access Components KB870669
Microsoft Office Standard Edition 2003 Ver: 11.0.7969.0 Installed: 6/28/2006
Multimedia Keyboard Driver
PowerDVD
QuickTime
RealPlayer Basic
Realtek AC'97 Audio
REALTEK Gigabit and Fast Ethernet NIC Driver Ver: 1.10
Security Update for Windows Media Player (KB911564) Installed: 6/24/2006
Security Update for Windows Media Player 10 (KB917734) Installed: 6/24/2006
Security Update for Windows XP (KB890046) Ver: 1 Installed: 7/19/2005
Security Update for Windows XP (KB893066) Ver: 2 Installed: 7/19/2005
Security Update for Windows XP (KB893756) Ver: 1 Installed: 6/24/2006
Security Update for Windows XP (KB896358) Ver: 1 Installed: 7/19/2005
Security Update for Windows XP (KB896422) Ver: 1 Installed: 7/19/2005
Security Update for Windows XP (KB896423) Ver: 1 Installed: 6/24/2006
Security Update for Windows XP (KB896424) Ver: 1 Installed: 6/24/2006
Security Update for Windows XP (KB896428) Ver: 1 Installed: 7/19/2005
Security Update for Windows XP (KB899587) Ver: 1 Installed: 6/24/2006
Security Update for Windows XP (KB899591) Ver: 1 Installed: 6/24/2006
Security Update for Windows XP (KB900725) Ver: 1 Installed: 6/24/2006
Security Update for Windows XP (KB901017) Ver: 1 Installed: 6/24/2006
Security Update for Windows XP (KB901214) Ver: 1 Installed: 7/19/2005
Security Update for Windows XP (KB902400) Ver: 1 Installed: 6/24/2006
Security Update for Windows XP (KB904706) Ver: 2 Installed: 6/28/2006
Security Update for Windows XP (KB905414) Ver: 1 Installed: 6/24/2006
Security Update for Windows XP (KB905749) Ver: 1 Installed: 6/24/2006
Security Update for Windows XP (KB908519) Ver: 1 Installed: 6/28/2006
Security Update for Windows XP (KB911562) Ver: 1 Installed: 6/28/2006
Security Update for Windows XP (KB911567) Ver: 1 Installed: 6/28/2006
Security Update for Windows XP (KB911927) Ver: 1 Installed: 6/28/2006
Security Update for Windows XP (KB912919) Ver: 1 Installed: 6/28/2006
Security Update for Windows XP (KB913580) Ver: 1 Installed: 6/28/2006
Security Update for Windows XP (KB914389) Ver: 1 Installed: 6/28/2006
Security Update for Windows XP (KB916281) Ver: 1 Installed: 6/28/2006
Security Update for Windows XP (KB917344) Ver: 1 Installed: 6/28/2006
Security Update for Windows XP (KB917953) Ver: 1 Installed: 6/28/2006
Shockwave Director 10.1
Soft Data Fax Modem with SmartCP
Starcraft Brood War (RAZOR 1911)
Street Challenge - Free Drag Racing Game Ver: 1.03.0001
Update for Windows XP (KB898461) Ver: 1 Installed: 7/19/2005
Update for Windows XP (KB900485) Ver: 2 Installed: 6/28/2006
Update for Windows XP (KB908531) Ver: 2 Installed: 6/28/2006
Update for Windows XP (KB910437) Ver: 1 Installed: 6/28/2006
Update for Windows XP (KB911280) Ver: 2 Installed: 6/28/2006
Viewpoint Media Player
ViviCam 10 and 20
WebFldrs XP Ver: 9.50.6513 Installed: 5/12/2004
Windows Backup Utility Ver: 5.1 Installed: 5/12/2004
Windows Defender Ver: 1.1.1347.6 Installed: 6/27/2006
Windows Defender Signatures Ver: 1.20.0.0 Installed: 6/27/2006
Windows Genuine Advantage Validation Tool (KB892130) Ver: 1.5.0530.0 Installed: 6/28/2006
Windows Installer 3.1 (KB893803) Ver: 3.1
Windows Media Format Runtime
Windows Media Player 10
Windows Movie Maker 2.0 Ver: 2.0.0000 Installed: 5/12/2004
Windows Overlay Components
Windows XP Hotfix - KB873333 Ver: 20050114.005213
Windows XP Hotfix - KB873339 Ver: 20041117.092459
Windows XP Hotfix - KB885250 Ver: 20050118.202711
Windows XP Hotfix - KB885626 Ver: 20040909.122822
Windows XP Hotfix - KB885835 Ver: 20041027.181713
Windows XP Hotfix - KB885836 Ver: 20041028.173203
Windows XP Hotfix - KB886185 Ver: 20041021.090540
Windows XP Hotfix - KB887472 Ver: 20041014.162858
Windows XP Hotfix - KB887742 Ver: 20041103.095002
Windows XP Hotfix - KB888113 Ver: 20041116.131036
Windows XP Hotfix - KB888302 Ver: 20041207.111426
Windows XP Hotfix - KB890175 Ver: 20041201.233338
Windows XP Hotfix - KB890859 Ver: 1 Installed: 7/19/2005
Windows XP Hotfix - KB891781 Ver: 20050110.165439
Windows XP Hotfix - KB893086 Ver: 1 Installed: 7/19/2005
Windows XP Service Pack 2 Ver: 20040803.231319
WinRAR archiver
Yahoo! Anti-Spy
Yahoo! Toolbar
Yahoo! Toolbar for Internet Explorer