I came to this forum looking for help & found many useful tidbits of info.I have downloaded & ran spybot S&D,CWShredder & HJT.When I tried to run Spybot the 2nd time I got parameter 89 changed & a message in what I think is german.Here is HJT log any help would be greatly appreciated.
Logfile of HijackThis v1.97.7
Scan saved at 4:26:25 PM, on 20/06/2004
Platform: Windows ME (Win9x 4.90.3000)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\JAVASF32.EXE
C:\WINDOWS\SYSTEM\ADDLW32.EXE
C:\WINDOWS\SYSTEM\SYSRI.EXE
C:\WINDOWS\SYSTEM\WINSH.EXE
C:\WINDOWS\ATLNG32.EXE
C:\WINDOWS\SYSTEM\IEHY.EXE
C:\WINDOWS\SYSTEM\APPYG32.EXE
C:\WINDOWS\SYSTEM\IEJC32.EXE
C:\WINDOWS\NTNA.EXE
C:\WINDOWS\SYSTEM\IPNM.EXE
C:\WINDOWS\SYSTEM\CRTU32.EXE
C:\WINDOWS\SYSTEM\APIJE32.EXE
C:\WINDOWS\NETYA32.EXE
C:\WINDOWS\SYSTEM\JAVAFU32.EXE
C:\WINDOWS\SYSTEM\NETHO.EXE
C:\WINDOWS\SYSTEM\D3XJ32.EXE
C:\WINDOWS\SYSTEM\CRES.EXE
C:\WINDOWS\SYSTEM\IEHL.EXE
C:\WINDOWS\ADDHE.EXE
C:\WINDOWS\SYSTEM\D3XD.EXE
C:\WINDOWS\SYSKY.EXE
C:\WINDOWS\APPUL32.EXE
C:\WINDOWS\SYSTEM\IPEJ.EXE
C:\WINDOWS\APIVA.EXE
C:\WINDOWS\SYSTEM\SYSZS.EXE
C:\WINDOWS\SYSWD.EXE
C:\WINDOWS\CRYE32.EXE
C:\WINDOWS\SYSTEM\APIJO.EXE
C:\WINDOWS\IEIQ32.EXE
C:\WINDOWS\SYSTEM\IEKC.EXE
C:\WINDOWS\WINGV.EXE
C:\WINDOWS\SYSTEM\D3ZX.EXE
C:\WINDOWS\SYSTEM\MSXN32.EXE
C:\WINDOWS\WINCQ.EXE
C:\WINDOWS\SYSTEM\SYSJK32.EXE
C:\WINDOWS\SYSTEM\SYSPJ32.EXE
C:\WINDOWS\SYSTEM\SYSBK.EXE
C:\WINDOWS\WINTU32.EXE
C:\WINDOWS\NTTM32.EXE
C:\WINDOWS\WINRI32.EXE
C:\WINDOWS\APPZG.EXE
C:\WINDOWS\WINAZ.EXE
C:\WINDOWS\NETBB.EXE
C:\WINDOWS\SYSTEM\IPZD.EXE
C:\WINDOWS\SYSTEM\WINMU.EXE
C:\WINDOWS\APINO.EXE
C:\WINDOWS\SYSTEM\MSRR32.EXE
C:\WINDOWS\SYSOQ32.EXE
C:\WINDOWS\SYSTEM\IEGQ.EXE
C:\WINDOWS\SYSTEM\APPVO.EXE
C:\WINDOWS\JAVAZG32.EXE
C:\WINDOWS\SYSTEM\NTAH.EXE
C:\WINDOWS\SYSTEM\IEOU32.EXE
C:\WINDOWS\MFCQQ32.EXE
C:\WINDOWS\NETIE.EXE
C:\WINDOWS\SYSTEM\D3VJ.EXE
C:\WINDOWS\SYSTEM\NETCP32.EXE
C:\WINDOWS\SYSTEM\NETPG32.EXE
C:\WINDOWS\JAVAQT32.EXE
C:\WINDOWS\APPEU32.EXE
C:\WINDOWS\NTWY.EXE
C:\WINDOWS\IEXA.EXE
C:\WINDOWS\SYSHN32.EXE
C:\WINDOWS\SYSTEM\IEQG.EXE
C:\WINDOWS\SYSTEM\JAVAPR.EXE
C:\WINDOWS\SYSTEM\ADDJC.EXE
C:\WINDOWS\SYSTEM\SDKXH32.EXE
C:\WINDOWS\SYSTEM\SYSSH32.EXE
C:\WINDOWS\MSBN32.EXE
C:\WINDOWS\SYSTEM\D3CL.EXE
C:\WINDOWS\SYSTEM\IEAP32.EXE
C:\WINDOWS\ATLSE.EXE
C:\WINDOWS\SYSTEM\SDKIZ.EXE
C:\WINDOWS\SYSTEM\MSMB.EXE
C:\WINDOWS\SYSTEM\SDKTY.EXE
C:\WINDOWS\SYSYM.EXE
C:\WINDOWS\IEBV32.EXE
C:\WINDOWS\APIZU.EXE
C:\WINDOWS\SYSTEM\JAVADG32.EXE
C:\WINDOWS\SYSTEM\ATLYW.EXE
C:\WINDOWS\IEOE32.EXE
C:\WINDOWS\SYSTEM\IECJ32.EXE
C:\WINDOWS\SDKYB32.EXE
C:\WINDOWS\WINDE.EXE
C:\WINDOWS\IEND.EXE
C:\WINDOWS\SYSTEM\NTAR.EXE
C:\WINDOWS\SYSTEM\WINYO.EXE
C:\WINDOWS\SYSTEM\IEUN32.EXE
C:\WINDOWS\SYSTEM\SYSIW32.EXE
C:\WINDOWS\APPSB32.EXE
C:\WINDOWS\SYSTEM\MFCLV.EXE
C:\WINDOWS\NETXM32.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\JAVATK.EXE
C:\WINDOWS\SDKSB.EXE
C:\WINDOWS\SYSTEM\APPFI.EXE
C:\WINDOWS\D3LK32.EXE
C:\WINDOWS\SYSTEM\JAVAHG32.EXE
C:\WINDOWS\SYSTEM\JAVATP.EXE
C:\WINDOWS\JAVAQU.EXE
C:\WINDOWS\NTJP.EXE
C:\WINDOWS\SYSTEM\MSXM32.EXE
C:\WINDOWS\MSYO32.EXE
C:\WINDOWS\SYSYB.EXE
C:\WINDOWS\NETAV32.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\WINDOWS\SYSTEM\ADDXE.EXE
C:\WINDOWS\SYSTEM\ADDTJ.EXE
C:\WINDOWS\NETFP32.EXE
C:\WINDOWS\SYSTEM\RESTORE\STMGR.EXE
C:\WINDOWS\IPCS32.EXE
C:\WINDOWS\SYSTEM\NTJT32.EXE
C:\WINDOWS\NETHO32.EXE
C:\WINDOWS\SYSTEM\SYSDH.EXE
C:\WINDOWS\SYSTEM\IPGI.EXE
C:\WINDOWS\SYSTEM\NETOX32.EXE
C:\WINDOWS\SYSTEM\NTES.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\SYSTEM\MFCMH32.EXE
C:\WINDOWS\NETFP32.EXE
C:\PROGRAM FILES\WINZIP\WZQKPICK.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\PROGRAM FILES\GOMEZ\GOMEZPEER\BIN\GOMEZPEER.EXE
C:\PROGRAM FILES\GOMEZ\GOMEZPEER\JRE\BIN\JAVA.EXE
C:\WINDOWS\SDKVA.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\WINDOWS\DESKTOP\ALLWAYS\VIDS\HIJACKTHIS\HIJACKTHIS.EXE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system\gmdxi.dll/sp.html#892478769
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = res://gmdxi.dll/index.html#892478769
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = res://gmdxi.dll/index.html#892478769
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system\gmdxi.dll/sp.html#892478769
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = res://gmdxi.dll/index.html#892478769
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINDOWS\system\gmdxi.dll/sp.html#892478769
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = http://www.cbssportsline.com
O2 - BHO: (no name) - {B9D90B27-AD4A-413a-88CB-3E6DDC10DC2D} - C:\WINDOWS\MSOPT.DLL (file missing)
O2 - BHO: (no name) - {82E171B7-1D29-3198-5994-8538A263AB90} - C:\WINDOWS\SYSTEM\ATLKX32.DLL
O2 - BHO: (no name) - {882277A9-9B00-249B-B5A5-F1A34D1D32EE} - C:\WINDOWS\SYSTEM\ATLKX32.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (file missing)
O2 - BHO: (no name) - {211D3DB0-EDDE-9087-6537-F30E20643B60} - C:\WINDOWS\SYSTEM\ATLKX32.DLL
O2 - BHO: (no name) - {58CC646F-58C1-4FBE-58A2-2ABD5713621F} - C:\WINDOWS\SYSTEM\ATLKX32.DLL
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [MFCMH32.EXE] C:\WINDOWS\SYSTEM\MFCMH32.EXE
O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\Run: [PCHealth] C:\WINDOWS\PCHealth\Support\PCHSchd.exe -s
O4 - HKLM\..\RunServices: [WINSH.EXE] C:\WINDOWS\SYSTEM\WINSH.EXE
O4 - HKLM\..\RunServices: [IPNM.EXE] C:\WINDOWS\SYSTEM\IPNM.EXE
O4 - HKLM\..\RunServices: [D3XJ32.EXE] C:\WINDOWS\SYSTEM\D3XJ32.EXE
O4 - HKLM\..\RunServices: [JAVAFU32.EXE] C:\WINDOWS\SYSTEM\JAVAFU32.EXE
O4 - HKLM\..\RunServices: [NETYA32.EXE] C:\WINDOWS\NETYA32.EXE
O4 - HKLM\..\RunServices: [NTNA.EXE] C:\WINDOWS\NTNA.EXE
O4 - HKLM\..\RunServices: [NETHO.EXE] C:\WINDOWS\SYSTEM\NETHO.EXE
O4 - HKLM\..\RunServices: [ADDLW32.EXE] C:\WINDOWS\SYSTEM\ADDLW32.EXE
O4 - HKLM\..\RunServices: [JAVASF32.EXE] C:\WINDOWS\SYSTEM\JAVASF32.EXE
O4 - HKLM\..\RunServices: [IEHY.EXE] C:\WINDOWS\SYSTEM\IEHY.EXE
O4 - HKLM\..\RunServices: [APPYG32.EXE] C:\WINDOWS\SYSTEM\APPYG32.EXE
O4 - HKLM\..\RunServices: [CRTU32.EXE] C:\WINDOWS\SYSTEM\CRTU32.EXE
O4 - HKLM\..\RunServices: [IEJC32.EXE] C:\WINDOWS\SYSTEM\IEJC32.EXE
O4 - HKLM\..\RunServices: [SYSRI.EXE] C:\WINDOWS\SYSTEM\SYSRI.EXE
O4 - HKLM\..\RunServices: [APIJE32.EXE] C:\WINDOWS\SYSTEM\APIJE32.EXE
O4 - HKLM\..\RunServices: [ATLNG32.EXE] C:\WINDOWS\ATLNG32.EXE
O4 - HKLM\..\RunServices: [CRES.EXE] C:\WINDOWS\SYSTEM\CRES.EXE
O4 - HKLM\..\RunServices: [APIJO.EXE] C:\WINDOWS\SYSTEM\APIJO.EXE
O4 - HKLM\..\RunServices: [SYSKY.EXE] C:\WINDOWS\SYSKY.EXE
O4 - HKLM\..\RunServices: [SYSWD.EXE] C:\WINDOWS\SYSWD.EXE
O4 - HKLM\..\RunServices: [APPUL32.EXE] C:\WINDOWS\APPUL32.EXE
O4 - HKLM\..\RunServices: [D3XD.EXE] C:\WINDOWS\SYSTEM\D3XD.EXE
O4 - HKLM\..\RunServices: [IEHL.EXE] C:\WINDOWS\SYSTEM\IEHL.EXE
O4 - HKLM\..\RunServices: [IPEJ.EXE] C:\WINDOWS\SYSTEM\IPEJ.EXE
O4 - HKLM\..\RunServices: [APIVA.EXE] C:\WINDOWS\APIVA.EXE
O4 - HKLM\..\RunServices: [SYSZS.EXE] C:\WINDOWS\SYSTEM\SYSZS.EXE
O4 - HKLM\..\RunServices: [ADDHE.EXE] C:\WINDOWS\ADDHE.EXE
O4 - HKLM\..\RunServices: [CRYE32.EXE] C:\WINDOWS\CRYE32.EXE
O4 - HKLM\..\RunServices: [IEIQ32.EXE] C:\WINDOWS\IEIQ32.EXE
O4 - HKLM\..\RunServices: [IEKC.EXE] C:\WINDOWS\SYSTEM\IEKC.EXE
O4 - HKLM\..\RunServices: [WINGV.EXE] C:\WINDOWS\WINGV.EXE
O4 - HKLM\..\RunServices: [MSXN32.EXE] C:\WINDOWS\SYSTEM\MSXN32.EXE
O4 - HKLM\..\RunServices: [D3ZX.EXE] C:\WINDOWS\SYSTEM\D3ZX.EXE
O4 - HKLM\..\RunServices: [WINCQ.EXE] C:\WINDOWS\WINCQ.EXE
O4 - HKLM\..\RunServices: [SYSJK32.EXE] C:\WINDOWS\SYSTEM\SYSJK32.EXE
O4 - HKLM\..\RunServices: [WINTU32.EXE] C:\WINDOWS\WINTU32.EXE
O4 - HKLM\..\RunServices: [SYSPJ32.EXE] C:\WINDOWS\SYSTEM\SYSPJ32.EXE
O4 - HKLM\..\RunServices: [SYSBK.EXE] C:\WINDOWS\SYSTEM\SYSBK.EXE
O4 - HKLM\..\RunServices: [NTTM32.EXE] C:\WINDOWS\NTTM32.EXE
O4 - HKLM\..\RunServices: [WINRI32.EXE] C:\WINDOWS\WINRI32.EXE
O4 - HKLM\..\RunServices: [IPZD.EXE] C:\WINDOWS\SYSTEM\IPZD.EXE
O4 - HKLM\..\RunServices: [APPZG.EXE] C:\WINDOWS\APPZG.EXE
O4 - HKLM\..\RunServices: [WINMU.EXE] C:\WINDOWS\SYSTEM\WINMU.EXE
O4 - HKLM\..\RunServices: [IEGQ.EXE] C:\WINDOWS\SYSTEM\IEGQ.EXE
O4 - HKLM\..\RunServices: [APPVO.EXE] C:\WINDOWS\SYSTEM\APPVO.EXE
O4 - HKLM\..\RunServices: [WINAZ.EXE] C:\WINDOWS\WINAZ.EXE
O4 - HKLM\..\RunServices: [JAVAZG32.EXE] C:\WINDOWS\JAVAZG32.EXE
O4 - HKLM\..\RunServices: [NETBB.EXE] C:\WINDOWS\NETBB.EXE
O4 - HKLM\..\RunServices: [SYSOQ32.EXE] C:\WINDOWS\SYSOQ32.EXE
O4 - HKLM\..\RunServices: [MSRR32.EXE] C:\WINDOWS\SYSTEM\MSRR32.EXE
O4 - HKLM\..\RunServices: [NTAH.EXE] C:\WINDOWS\SYSTEM\NTAH.EXE
O4 - HKLM\..\RunServices: [APINO.EXE] C:\WINDOWS\APINO.EXE
O4 - HKLM\..\RunServices: [IEOU32.EXE] C:\WINDOWS\SYSTEM\IEOU32.EXE
O4 - HKLM\..\RunServices: [NETIE.EXE] C:\WINDOWS\NETIE.EXE
O4 - HKLM\..\RunServices: [MFCQQ32.EXE] C:\WINDOWS\MFCQQ32.EXE
O4 - HKLM\..\RunServices: [D3VJ.EXE] C:\WINDOWS\SYSTEM\D3VJ.EXE
O4 - HKLM\..\RunServices: [JAVAQT32.EXE] C:\WINDOWS\JAVAQT32.EXE
O4 - HKLM\..\RunServices: [NETCP32.EXE] C:\WINDOWS\SYSTEM\NETCP32.EXE
O4 - HKLM\..\RunServices: [NETPG32.EXE] C:\WINDOWS\SYSTEM\NETPG32.EXE
O4 - HKLM\..\RunServices: [APPEU32.EXE] C:\WINDOWS\APPEU32.EXE
O4 - HKLM\..\RunServices: [NTWY.EXE] C:\WINDOWS\NTWY.EXE
O4 - HKLM\..\RunServices: [IEXA.EXE] C:\WINDOWS\IEXA.EXE
O4 - HKLM\..\RunServices: [IEQG.EXE] C:\WINDOWS\SYSTEM\IEQG.EXE
O4 - HKLM\..\RunServices: [SYSHN32.EXE] C:\WINDOWS\SYSHN32.EXE
O4 - HKLM\..\RunServices: [ADDJC.EXE] C:\WINDOWS\SYSTEM\ADDJC.EXE
O4 - HKLM\..\RunServices: [JAVAPR.EXE] C:\WINDOWS\SYSTEM\JAVAPR.EXE
O4 - HKLM\..\RunServices: [SDKXH32.EXE] C:\WINDOWS\SYSTEM\SDKXH32.EXE
O4 - HKLM\..\RunServices: [SYSSH32.EXE] C:\WINDOWS\SYSTEM\SYSSH32.EXE
O4 - HKLM\..\RunServices: [MSBN32.EXE] C:\WINDOWS\MSBN32.EXE
O4 - HKLM\..\RunServices: [D3CL.EXE] C:\WINDOWS\SYSTEM\D3CL.EXE
O4 - HKLM\..\RunServices: [IEAP32.EXE] C:\WINDOWS\SYSTEM\IEAP32.EXE
O4 - HKLM\..\RunServices: [ATLSE.EXE] C:\WINDOWS\ATLSE.EXE
O4 - HKLM\..\RunServices: [SDKIZ.EXE] C:\WINDOWS\SYSTEM\SDKIZ.EXE
O4 - HKLM\..\RunServices: [IEBV32.EXE] C:\WINDOWS\IEBV32.EXE
O4 - HKLM\..\RunServices: [MSMB.EXE] C:\WINDOWS\SYSTEM\MSMB.EXE
O4 - HKLM\..\RunServices: [IEOE32.EXE] C:\WINDOWS\IEOE32.EXE
O4 - HKLM\..\RunServices: [APIZU.EXE] C:\WINDOWS\APIZU.EXE
O4 - HKLM\..\RunServices: [SDKTY.EXE] C:\WINDOWS\SYSTEM\SDKTY.EXE
O4 - HKLM\..\RunServices: [SYSYM.EXE] C:\WINDOWS\SYSYM.EXE
O4 - HKLM\..\RunServices: [JAVADG32.EXE] C:\WINDOWS\SYSTEM\JAVADG32.EXE
O4 - HKLM\..\RunServices: [ATLYW.EXE] C:\WINDOWS\SYSTEM\ATLYW.EXE
O4 - HKLM\..\RunServices: [IECJ32.EXE] C:\WINDOWS\SYSTEM\IECJ32.EXE
O4 - HKLM\..\RunServices: [*StateMgr] C:\WINDOWS\System\Restore\StateMgr.exe
O4 - HKLM\..\RunServices: [SDKYB32.EXE] C:\WINDOWS\SDKYB32.EXE
O4 - HKLM\..\RunServices: [WINDE.EXE] C:\WINDOWS\WINDE.EXE
O4 - HKLM\..\RunServices: [IEUN32.EXE] C:\WINDOWS\SYSTEM\IEUN32.EXE
O4 - HKLM\..\RunServices: [IEND.EXE] C:\WINDOWS\IEND.EXE
O4 - HKLM\..\RunServices: [NTAR.EXE] C:\WINDOWS\SYSTEM\NTAR.EXE
O4 - HKLM\..\RunServices: [WINYO.EXE] C:\WINDOWS\SYSTEM\WINYO.EXE
O4 - HKLM\..\RunServices: [SYSIW32.EXE] C:\WINDOWS\SYSTEM\SYSIW32.EXE
O4 - HKLM\..\RunServices: [APPSB32.EXE] C:\WINDOWS\APPSB32.EXE
O4 - HKLM\..\RunServices: [MFCLV.EXE] C:\WINDOWS\SYSTEM\MFCLV.EXE
O4 - HKLM\..\RunServices: [NETXM32.EXE] C:\WINDOWS\NETXM32.EXE
O4 - HKLM\..\RunServices: [JAVATK.EXE] C:\WINDOWS\JAVATK.EXE
O4 - HKLM\..\RunServices: [SDKSB.EXE] C:\WINDOWS\SDKSB.EXE
O4 - HKLM\..\RunServices: [APPFI.EXE] C:\WINDOWS\SYSTEM\APPFI.EXE
O4 - HKLM\..\RunServices: [D3LK32.EXE] C:\WINDOWS\D3LK32.EXE
O4 - HKLM\..\RunServices: [JAVATP.EXE] C:\WINDOWS\SYSTEM\JAVATP.EXE
O4 - HKLM\..\RunServices: [JAVAHG32.EXE] C:\WINDOWS\SYSTEM\JAVAHG32.EXE
O4 - HKLM\..\RunServices: [JAVAQU.EXE] C:\WINDOWS\JAVAQU.EXE
O4 - HKLM\..\RunServices: [MSYO32.EXE] C:\WINDOWS\MSYO32.EXE
O4 - HKLM\..\RunServices: [SYSYB.EXE] C:\WINDOWS\SYSYB.EXE
O4 - HKLM\..\RunServices: [NTJP.EXE] C:\WINDOWS\NTJP.EXE
O4 - HKLM\..\RunServices: [MSXM32.EXE] C:\WINDOWS\SYSTEM\MSXM32.EXE
O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\RunServices: [NETAV32.EXE] C:\WINDOWS\NETAV32.EXE
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [ADDXE.EXE] C:\WINDOWS\SYSTEM\ADDXE.EXE
O4 - HKLM\..\RunServices: [ADDTJ.EXE] C:\WINDOWS\SYSTEM\ADDTJ.EXE
O4 - HKLM\..\RunServices: [SYSDH.EXE] C:\WINDOWS\SYSTEM\SYSDH.EXE
O4 - HKLM\..\RunServices: [IPCS32.EXE] C:\WINDOWS\IPCS32.EXE
O4 - HKLM\..\RunServices: [NETFP32.EXE] C:\WINDOWS\NETFP32.EXE
O4 - HKLM\..\RunServices: [NETOX32.EXE] C:\WINDOWS\SYSTEM\NETOX32.EXE
O4 - HKLM\..\RunServices: [NTJT32.EXE] C:\WINDOWS\SYSTEM\NTJT32.EXE
O4 - HKLM\..\RunServices: [NETHO32.EXE] C:\WINDOWS\NETHO32.EXE
O4 - HKLM\..\RunServices: [NTES.EXE] C:\WINDOWS\SYSTEM\NTES.EXE
O4 - HKLM\..\RunServices: [IPGI.EXE] C:\WINDOWS\SYSTEM\IPGI.EXE
O4 - HKLM\..\RunServices: [SDKVA.EXE] C:\WINDOWS\SDKVA.EXE
O4 - Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O4 - Startup: Gomez PEER.lnk = C:\Program Files\Gomez\GomezPEER\bin\GomezPEER.exe
O4 - Startup: Microsoft Office.lnk.disabled
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra button: Related (HKLM)
O9 - Extra 'Tools' menuitem: Show &Related Links (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: MSN Messenger Service (HKLM)
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?38120.5883564815
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab