Hijackthis log, can someone take a look and give some advice?
Logfile of HijackThis v1.99.1
Scan saved at 4:04:33 PM, on 7/3/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:Program FilesWebrootSpy SweeperSpySweeper.exe
C:WINDOWSExplorer.EXE
C:WINDOWSsystem32ctfmon.exe
C:Program FilesSUPERAntiSpywareSUPERAntiSpyware.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesHijackthisHijackThis.exe
R1 – HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.yahoo.com
R1 – HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 – HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://us.f830.mail.yahoo.com/dc/launch?.rand=3i3sd1j9ccm9t
R1 – HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.yahoo.com
R1 – HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 – HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 – HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.yahoo.com
R0 – HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant =
R0 – HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R1 – HKCUSoftwareMicrosoftInternet ExplorerSearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 – HKCUSoftwareMicrosoftInternet ExplorerMain,Window Title = Windows Internet Explorer provided by Yahoo!
O2 – BHO: Adobe PDF Reader Link Helper – {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} – C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelper.dll
O3 – Toolbar: Yahoo! Toolbar – {EF99BD32-C1FB-11D2-892F-0090271D4F88} – C:PROGRA~1Yahoo!CompanionInstallscpn6yt.dll
O4 – HKLM..Run: [wltray.exe] C:WINDOWSsystem32wltray.exe
O4 – HKLM..Run: [SunKistEM] "C:Program FilesDigital Media Readershwiconem.exe"
O4 – HKLM..Run: [SoundMan] SOUNDMAN.EXE
O4 – HKLM..Run: [LXCFCATS] rundll32 C:WINDOWSSystem32spoolDRIVERSW32X86LXCFtime.dll,_RunDLLEntry@16
O4 – HKLM..Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 – HKLM..Run: [CHotkey] zHotkey.exe
O4 – HKLM..Run: [ATIPTA] "C:Program FilesATI TechnologiesATI Control Panelatiptaxx.exe"
O4 – HKLM..Run: [UfSeAgnt.exe] "C:Program FilesTrend MicroInternet SecurityUfSeAgnt.exe"
O4 – HKLM..Run: [masqform.exe] "C:Program FilesPureEdgeViewer 6.0masqform.exe" -UpdateCurrentUser
O4 – HKLM..Run: [QuickTime Task] "C:Program FilesQuickTimeqttask.exe" -atboottime
O4 – HKLM..Run: [SpySweeper] C:Program FilesWebrootSpy SweeperSpySweeperUI.exe /startintray
O4 – HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe
O4 – HKCU..Run: [SUPERAntiSpyware] "C:DOCUME~1OwnerLOCALS~1TempSSUPDATE.EXE" SoftwareSUPERAntiSpyware.comSUPERAntiSpyware
O9 – Extra button: (no name) – {08B0E5C0-4FCB-11CF-AAA5-00401C608501} – C:Program FilesJavajre1.6.0_03binssv.dll
O9 – Extra ‘Tools’ menuitem: Sun Java Console – {08B0E5C0-4FCB-11CF-AAA5-00401C608501} – C:Program FilesJavajre1.6.0_03binssv.dll
O9 – Extra button: Research – {92780B25-18CC-41C8-B9BE-3C9C571A8263} – C:PROGRA~1MICROS~2OFFICE11REFIEBAR.DLL
O9 – Extra button: PartyPoker.com – {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} – C:Program FilesPartyGamingPartyPokerRunApp.exe
O9 – Extra ‘Tools’ menuitem: PartyPoker.com – {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} – C:Program FilesPartyGamingPartyPokerRunApp.exe
O9 – Extra button: Real.com – {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} – C:WINDOWSsystem32Shdocvw.dll
O9 – Extra button: (no name) – {e2e2dd38-d088-4134-82b7-f2ba38496583} – %windir%Network Diagnosticxpnetdiag.exe (file missing)
O9 – Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 – {e2e2dd38-d088-4134-82b7-f2ba38496583} – %windir%Network Diagnosticxpnetdiag.exe (file missing)
O9 – Extra button: Messenger – {FB5F1910-F110-11d2-BB9E-00C04F795683} – C:Program FilesMessengermsmsgs.exe
O9 – Extra ‘Tools’ menuitem: Windows Messenger – {FB5F1910-F110-11d2-BB9E-00C04F795683} – C:Program FilesMessengermsmsgs.exe
O11 – Options group: [INTERNATIONAL] International*
O16 – DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) – http://upload.facebook.com/controls/FacebookPhotoUploader5.cab
O16 – DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) – C:Program FilesYahoo!CommonYinsthelper.dll
O16 – DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} (Symantec Script Runner Class) – http://www.symantec.com/techsupp/asa/ss/sa/sa_cabs/tgctlsr.cab
O16 – DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} – http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O16 – DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) – http://by117fd.bay117.hotmail.msn.com/resources/MsnPUpld.cab
O16 – DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) – http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 – DPF: {6A344D34-5231-452A-8A57-D064AC9B7862} – https://webdl.symantec.com/activex/symdlmgr.cab
O16 – DPF: {6F0C8A89-8B0D-11D2-801B-00105AA78F4A} (ECareAgent Class) – http://ecare1a.netopia.com/uhaul3/ecare4/components/CobAgent_4.2.1.318.cab
O16 – DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) – http://web1.shutterfly.com/downloads/Uploader.cab
O16 – DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} (Creative Toolbox Plug-in) – http://ak.imgag.com/imgag/cp/install/Crusher.cab
O18 – Protocol: bw+0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw+0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw-0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw-0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw00 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw00s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw10 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw10s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw20 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw20s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw30 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw30s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw40 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw40s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw50 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw50s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw60 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw60s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw70 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw70s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw80 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw80s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw90 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bw90s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwa0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwa0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwb0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwb0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwc0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwc0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwd0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwd0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwe0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwe0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwf0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwf0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwfile-8876480 – {9462A756-7B47-47BC-8C80-C34B9B80B32B} – (no file)
O18 – Protocol: bwg0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwg0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwh0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwh0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwi0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwi0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwj0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwj0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwk0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwk0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwl0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwl0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwm0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwm0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwn0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwn0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwo0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwo0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwp0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwp0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwq0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwq0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwr0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwr0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bws0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bws0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwt0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwt0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwu0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwu0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwv0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwv0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bww0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bww0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwx0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwx0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwy0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwy0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwz0 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: bwz0s – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O18 – Protocol: offline-8876480 – {21E27362-B330-401C-A48D-DB535479A3CB} – (no file)
O20 – Winlogon Notify: !SASWinLogon – C:Program FilesSUPERAntiSpywareSASWINLO.DLL
O20 – Winlogon Notify: WgaLogon – C:WINDOWSSYSTEM32WgaLogon.dll
O20 – Winlogon Notify: WRNotifier – C:WINDOWSSYSTEM32WRLogonNTF.dll
O23 – Service: Adobe LM Service – Adobe Systems – C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe
O23 – Service: Apple Mobile Device – Apple, Inc. – C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe
O23 – Service: Ati HotKey Poller – ATI Technologies Inc. – C:WINDOWSsystem32Ati2evxx.exe
O23 – Service: ewido anti-spyware 4.0 guard – Anti-Malware Development a.s. – C:Program Filesewido anti-spyware 4.0guard.exe
O23 – Service: iPod Service – Apple Inc. – C:Program FilesiPodbiniPodService.exe
O23 – Service: Kodak Camera Connection Software (KodakCCS) – Eastman Kodak Company – C:WINDOWSsystem32driversKodakCCS.exe
O23 – Service: lxcf_device – – C:WINDOWSsystem32lxcfcoms.exe
O23 – Service: PrismXL – New Boundary Technologies, Inc. – C:Program FilesCommon FilesNew BoundaryPrismXLPRISMXL.SYS
O23 – Service: Trend Micro Central Control Component (SfCtlCom) – Trend Micro Inc. – C:Program FilesTrend MicroInternet SecuritySfCtlCom.exe
O23 – Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) – Unknown owner – C:Program FilesTrend MicroBMTMBMSRV.exe" /service (file missing)
O23 – Service: Trend Micro Proxy Service (tmproxy) – Trend Micro Inc. – C:Program FilesTrend MicroInternet SecurityTmProxy.exe
O23 – Service: SecuROM User Access Service (V7) (UserAccess7) – Sony DADC Austria AG. – C:WINDOWSsystem32UAService7.exe
O23 – Service: Viewpoint Manager Service – Viewpoint Corporation – C:Program FilesViewpointCommonViewpointService.exe
O23 – Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) – Webroot Software, Inc. – C:Program FilesWebrootSpy SweeperSpySweeper.exe
O23 – Service: Broadcom Wireless LAN Tray Service (wltrysvc) – Unknown owner – C:WINDOWSSystem32wltrysvc.exe
More on Kindle . .
Filed under: Kindle vs Sony Reader
Like this post? Subscribe to my RSS feed and get loads more!




Twitter
All this are viruses
O18 – Protocol: bw+0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw+0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw-0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw-0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw00 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw00s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw10 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw10s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw20 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw20s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw30 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw30s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw40 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw40s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw50 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw50s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw60 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw60s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw70 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw70s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw80 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw80s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw90 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bw90s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwa0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwa0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwb0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwb0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwc0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwc0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwd0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwd0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwe0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwe0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwf0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwf0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwfile-8876480 – {9462A756-7B47-47BC-8C80-C34B9… – (no file)
O18 – Protocol: bwg0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwg0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwh0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwh0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwi0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwi0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwj0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwj0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwk0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwk0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwl0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwl0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwm0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwm0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwn0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwn0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwo0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwo0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwp0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwp0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwq0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwq0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwr0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwr0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bws0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bws0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwt0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwt0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwu0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwu0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwv0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwv0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bww0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bww0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwx0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwx0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwy0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwy0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwz0 – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: bwz0s – {21E27362-B330-401C-A48D-DB535… – (no file)
O18 – Protocol: offline-8876480 – {21E27362-B330-401C-A48D-DB535… – (no file)
these are junk
R0 – HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 – HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
these are adware programs related keys
O9 – Extra button: PartyPoker.com – {B7FE5D70-9AA2-40F1-9C6B-12A25… – C:\Program Files\PartyGaming\PartyPoker\R…
O9 – Extra ‘Tools’ menuitem: PartyPoker.com – {B7FE5D70-9AA2-40F1-9C6B-12A25… – C:\Program Files\PartyGaming\PartyPoker\R…
Uninstall it.
Run HJ again, check and delete them. Next uninstall HJ (to delete the backups) and go to http://www.eset.com/onlinescan/ AND http://www.bitdefender.com/scan8/ie.html and run the scan. Reinstall HJ and run it again. If nothing bad appears disable System Restore, reboot and reenable it. Go again to the sites above and rescan.
BTW you need a new AV and AS, these have been compromised. And why are you running 2 (weak) AV’s simultaneously?