Try ending these tasks
bnaydy.exe
RUNDLL32.EXE rundll32.exe "C:\windows\system32\bxotvid.dll", UMonitor {3E537993-32D4-48C5-9FBC-065F01F6DE12} DS3 1380
--
Ramesh - Microsoft MVP
Windows XP Shell/User
http://www.mvps.org/sramesh2k
AumHa VSOP:
http://www.aumha.org
I have runned this command:
WMIC /OUTPUT:C:\ProcessList.txt path win32_process get
Caption,Processid,Commandline" and
Open C:\ProcessList.txt and I will not post up my log
Caption
CommandLine
ProcessId
System Idle
Process
0
System
4
SMSS.EXE \SystemRoot\System32
\smss.exe
552
CSRSS.EXE
612
WINLOGON.EXE
winlogon.exe
640
SERVICES.EXE C:\windows\system32
\services.exe
684
LSASS.EXE C:\windows\system32
\lsass.exe
696
SVCHOST.EXE C:\windows\system32\svchost -k
rpcss
856
SVCHOST.EXE C:\windows\System32\svchost.exe -k
netsvcs
932
SVCHOST.EXE
1028
SVCHOST.EXE
1096
SPOOLSV.EXE C:\windows\system32
\spoolsv.exe
1252
RUNDLL32.EXE rundll32.exe "C:\windows\system32
\bxotvid.dll", UMonitor {3E537993-32D4-48C5-9FBC-
065F01F6DE12} DS3 1380
EXPLORER.EXE
C:\windows\Explorer.EXE
1580
realsched.exe "C:\Program Files\Common
Files\Real\Update_OB\realsched.exe" -
osboot
1716
NAVAPW32.EXE "C:\PROGRA~1\NORTON~1
\navapw32.exe"
1736
meta ooze upload.exe "C:\PROGRA~1\STOREK~1\meta ooze
upload.exe"
1784
BNAYDY.EXE "C:\windows\System32
\bnaydy.exe"
1812
CTFMON.EXE "C:\windows\System32
\ctfmon.exe"
1840
MDM.EXE "C:\Program Files\Common
Files\Microsoft
Shared\VS7Debug\mdm.exe"
1892
MSNMSGR.EXE "C:\Program Files\MSN
Messenger\MsnMsgr.Exe" /background
1904
NAVAPSVC.EXE "C:\Program Files\Norton
AntiVirus\navapsvc.exe"
1940
VPlus.exe "C:\Program
Files\ICQPlus\vplus.exe"
1948
Steam.exe "C:\program files\steam\steam.exe" -
silent
1964
NVSVC32.EXE C:\windows\System32
\nvsvc32.exe
1984
wuauclt.exe "C:\windows\System32
\wuauclt.exe"
3952
rnathchk.exe "C:\Program Files\Common
Files\Real\Update_OB\rnathchk.exe"
1568
iexplore.exe "C:\Program Files\Internet
Explorer\iexplore.exe"
2684
iexplore.exe "C:\Program Files\Internet
Explorer\iexplore.exe"
3780
HijackThis[1].exe "C:\Documents and
Settings\TommyTam\Local Settings\Temporary Internet
Files\Content.IE5\8DQ3CDQN\HijackThis[1].exe" 440
wmic.exe "C:\windows\System32
\Wbem\WMIC.exe" /OUTPUT:C:\ProcessList.txt path
win32_process get Caption,Processid,Commandline
588
conime.exe C:\windows\System32
\conime.exe
2228
wmiprvse.exe
3620