These are my current process and settings via hijack this,
do you see anything wrong with my system, here, oh and by
the way, ie will not open at all now.
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SYSTEM32\ZONELABS\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\evntsvc.exe
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\explorer\explorer.exe
C:\Program Files\WildTangent\Apps\GameChannel.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\wt\updater\wcmdmgr.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Common Files\Microsoft Shared\Works
Shared\wkcalrem.exe
C:\Program Files\Zone Labs\ZoneAlarm\zonealarm.exe
C:\Program Files\mozilla.org\Mozilla\mozilla.exe
C:\Documents and Settings\David
Arrington\Desktop\HijackThis.exe
R1 -
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet
Settings,ProxyServer = 127.0.0.1:8080
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local
Page = C:\WINDOWS\SYSTEM\blank.htm
O2 - BHO: (no name) -
{0096CC0A-623C-4829-AD9C-19AF0DC9D8FE} - C:\PROGRAM
FILES\DAP\DAPIEBAR.DLL
O2 - BHO: MSN smart tags -
{9DD4258A-7138-49C4-8D34-587879A5C7A4} -
C:\PROGRA~1\MSN\SMARTTAG\MSNBHO.DLL
O2 - BHO: (no name) -
{FFFFFFFF-FFFF-FFFF-FFFF-5F8507C5F4E9} - C:\WINDOWS\iempg.dll
O3 - Toolbar: (no name) -
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)
O3 - Toolbar: DAP Bar -
{62999427-33FC-4baf-9C9C-BCE6BD127F08} - C:\PROGRAM
FILES\DAP\DAPIEBAR.DLL
O3 - Toolbar: &Radio -
{8E718888-423F-11D2-876E-00A0C9082467} -
C:\WINDOWS\System32\MSDXM.OCX
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [Microsoft Works Portfolio] C:\Program
Files\Microsoft Works\WksSb.exe /AllUsers
O4 - HKLM\..\Run: [Microsoft Works Update Detection]
C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKLM\..\Run: [TkBellExe] C:\Program Files\Common
Files\Real\Update_OB\evntsvc.exe -osboot
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [Explorer] C:\WINDOWS\explorer\explorer.exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [RAMpage] "C:\Program
Files\RAMpage\RAMpage.exe" M=28 T=300 P="C:\Program
Files\RAMpage\RAMpageConfig.exe"
O4 - HKLM\..\Run: [wcmdmgr]
C:\WINDOWS\wt\updater\wcmdmgrl.exe -launch
O4 - HKLM\..\Run: [WT GameChannel] C:\Program
Files\WildTangent\Apps\GameChannel.exe
O4 - HKLM\..\Run: [iTunesHelper] C:\Program
Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program
Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program
Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [MSConfig]
C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - Global Startup: MICROSOFT WORKS CALENDAR REMINDERS.LNK
= C:\Program Files\Common Files\Microsoft Shared\Works
Shared\wkcalrem.exe
O4 - Global Startup: World Time.lnk = ?
O4 - Global Startup: ZoneAlarm.lnk = C:\Program Files\Zone
Labs\ZoneAlarm\zonealarm.exe
O4 - Global Startup: Microsoft Office.lnk =
E:\Microsoft_Office\Office10\OSA.EXE
O8 - Extra context menu item: &Define - C:\Program
Files\Common Files\Microsoft Shared\Reference
2001\A\ERS_DEF.HTM
O8 - Extra context menu item: &Download with &DAP -
C:\PROGRA~1\DAP\dapextie.htm
O8 - Extra context menu item: &Google Search -
res://C:\WINDOWS\DOWNLOADED PROGRAM
FILES\GOOGLENAV.DLL/cmsearch.html
O8 - Extra context menu item: &Highlight -
C:\WINDOWS\WEB\highlight.htm
O8 - Extra context menu item: &Links List -
C:\WINDOWS\WEB\urllist.htm
O8 - Extra context menu item: &Web Search -
C:\WINDOWS\WEB\selsearch.htm
O8 - Extra context menu item: Backward &Links -
res://C:\WINDOWS\DOWNLOADED PROGRAM
FILES\GOOGLENAV.DLL/cmbacklinks.html
O8 - Extra context menu item: Cac&hed Snapshot of Page -
res://C:\WINDOWS\DOWNLOADED PROGRAM
FILES\GOOGLENAV.DLL/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel -
res://E:\MICROS~1\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: I&mages List -
C:\WINDOWS\Web\imglist.htm
O8 - Extra context menu item: Linked ima&ges - C:\Program
Files\IEimage\IEimage.htm
O8 - Extra context menu item: Look Up in &Encyclopedia -
C:\Program Files\Common Files\Microsoft Shared\Reference
2001\A\ERS_ENC.HTM
O8 - Extra context menu item: Open Frame in &New Window -
C:\WINDOWS\WEB\frm2new.htm
O8 - Extra context menu item: Si&milar Pages -
res://C:\WINDOWS\DOWNLOADED PROGRAM
FILES\GOOGLENAV.DLL/cmsimilar.html
O8 - Extra context menu item: Zoom &In -
C:\WINDOWS\WEB\zoomin.htm
O8 - Extra context menu item: Zoom O&ut -
C:\WINDOWS\WEB\zoomout.htm
O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
O9 - Extra button: Encarta Encyclopedia (HKLM)
O9 - Extra 'Tools' menuitem: Encarta Encyclopedia (HKLM)
O9 - Extra button: Define (HKLM)
O9 - Extra 'Tools' menuitem: Define (HKLM)
O9 - Extra button: Run DAP (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Windows Messenger (HKLM)
O9 - Extra button: WeatherBug (HKCU)
O16 - DPF: Microsoft WFC Forms Designer -
file://D:\VJ98\WFCFORMS.CAB
O16 - DPF: Visual Studio 6 Extensibility Libraries -
file://D:\VJ98\VSTUDIO6.CAB
O16 - DPF: Yahoo! Chat -
http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/c381/chat.cab
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B}
(QuickTime Object) -
http://www.apple.com/qtactivex/qtplugin.cab
O16 - DPF: {03F998B2-0E00-11D3-A498-00104B6EB52E} -
http://components.metastream.com/MTSInstallers/MetaStream3.cab
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000}
(Shockwave ActiveX Control) -
http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
O16 - DPF: {2253F320-AB68-4A07-917D-4F12D8884A06}
(ChainCast VMR Client Proxy) -
http://64.124.45.181/downloads/ccpm_0237.cab
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo!
Audio Conferencing) -
http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} -
http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} -
http://a1540.g.akamai.net/7/1540/52...pple.com/bonnie/us/win/QuickTimeInstaller.exe
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update
Class) -
http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37986.4752314815
O16 - DPF: {AB29A544-D6B4-4E36-A1F8-D3E34FC7B00A} (WTHoster
Class) -
http://install.wildtangent.com/bgn/partners/shockwave/cannonballs/install..cab
O16 - DPF: {B64EF6D6-6001-49BC-B37F-79FD1606BCEB} (4X
WebExec) -
http://www.xtrmrace.com/xtrmrace/xtrmrace.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
(Shockwave Flash Object) -
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O16 - DPF: {E7DBFB6C-113A-47CF-B278-F5C6AF4DE1BD} -
http://www.smgradio.com/core/player/abasetup141.cab