Here is the Hijack This file
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:34:00 PM, on 3/29/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:Program FilesNorton Internet SecurityNorton Internet SecurityEngine16.5.0.134ccSvcHst.exe
C:Windowssystem32taskeng.exe
C:Program FilesASUSAASP1.00.46aaCenter.exe
C:Windowssystem32DllHost.exe
C:Program FilesDisplayLink Core SoftwareDisplayLinkUI.exe
C:Windowssystem32Dwm.exe
C:WindowsExplorer.EXE
C:WindowsSystem32spooldriversw32x863WrtMon.exe
C:Program FilesVMwareVMware Workstationvmware-tray.exe
C:Program FilesJavajre6binjusched.exe
C:Program FilesAnalog DevicesSoundMAXSoundTray.exe
C:WindowsSystem32spooldriversw32x863WrtProc.exe
C:Program FilesAnalog DevicesCoresmax4pnp.exe
C:Program FilesScanSoftOmniPageSE4OpWareSE4.exe
C:WindowsSystem32rundll32.exe
C:Program FilesNorton GhostAgentVProTray.exe
C:Program FilesCommon FilesPure Networks SharedPlatformnmctxth.exe
C:Program FilesiTunesiTunesHelper.exe
C:Program FilesIntelIntel Matrix Storage ManagerIAAnotif.exe
C:Program FilesASUSAi SuiteAiGear3CpuPowerMonitor.exe
C:Program FilesCommon FilesArcSoftConnection ServiceBinACDaemon.exe
C:Program FilesASUSAi SuiteAiNapAiNap.exe
C:Program FilesSiber SystemsAI RoboFormrobotaskbaricon.exe
C:UsersBillAppDataLocalGoogleUpdateGoogleUpdate.exe
C:Program FilesBionixBionix Wallpaper 5.exe
C:Program FilesLogitechDesktop Messenger8876480ProgramLogitechDesktopMessenger.exe
C:Program FilesWindows Media Playerwmpnscfg.exe
C:Windowssystem32taskmgr.exe
C:WindowsSystem32perfmon.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesMozilla Firefox3firefox.exe
C:Windowssystem32SearchFilterHost.exe
C:Program FilesTrend MicroHijackThisHijackThis.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant =
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = *.local
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelper.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:Program FilesNorton Internet SecurityNorton Internet SecurityEngine16.5.0.134coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:Program FilesNorton Internet SecurityNorton Internet SecurityEngine16.5.0.134IPSBHO.DLL
O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:Program FilesSiber SystemsAI RoboFormroboform.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:Program FilesJavajre6binjp2ssv.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:Program FilesNorton Internet SecurityNorton Internet SecurityEngine16.5.0.134coIEPlg.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:Program FilesSiber SystemsAI RoboFormroboform.dll
O4 - HKLM..Run: [WUSBManager] "C:Program FilesWireless USB ManagerWireless USB Manager.exe"
O4 - HKLM..Run: [WrtMon.exe] "C:Windowssystem32spooldriversw32x863WrtMon.exe"
O4 - HKLM..Run: [Windows Defender] "C:Program FilesWindows DefenderMSASCui.exe" -hide
O4 - HKLM..Run: [vmware-tray] "C:Program FilesVMwareVMware Workstationvmware-tray.exe"
O4 - HKLM..Run: [sunJavaUpdateSched] "C:Program FilesJavajre6binjusched.exe"
O4 - HKLM..Run: [sSBkgdUpdate] "C:Program FilesCommon FilesScansoft SharedSSBkgdUpdateSSBkgdupdate.exe" -Embedding -boot
O4 - HKLM..Run: [soundTray] "C:Program FilesAnalog DevicesSoundMAXSoundTray.exe"
O4 - HKLM..Run: [soundMAXPnP] "C:Program FilesAnalog DevicesCoresmax4pnp.exe"
O4 - HKLM..Run: [smp.exe] "C:Program FilesPure NetworksSpeed Meter Prosmp.exe" -autorun -nosplash
O4 - HKLM..Run: [QuickTime Task] "C:Program FilesQuickTimeQTTask.exe" -atboottime
O4 - HKLM..Run: [OpwareSE4] "C:Program FilesScanSoftOmniPageSE4OpwareSE4.exe"
O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:Windowssystem32NvMcTray.dll,NvTaskbarInit
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:Windowssystem32NvCpl.dll,NvStartup
O4 - HKLM..Run: [Norton Ghost 14.0] "C:Program FilesNorton GhostAgentVProTray.exe"
O4 - HKLM..Run: [nmctxth] "C:Program FilesCommon FilesPure Networks SharedPlatformnmctxth.exe"
O4 - HKLM..Run: [nmapp] "C:Program FilesPure NetworksNetwork Magicnmapp.exe" -autorun -nosplash
O4 - HKLM..Run: [iTunesHelper] "C:Program FilesiTunesiTunesHelper.exe"
O4 - HKLM..Run: [iAAnotif] C:Program FilesIntelIntel Matrix Storage Manageriaanotif.exe
O4 - HKLM..Run: [Google Desktop Search] "C:Program FilesGoogleGoogle Desktop SearchGoogleDesktop.exe" /startup
O4 - HKLM..Run: [CPU Power Monitor] "C:Program FilesASUSAi SuiteAiGear3CpuPowerMonitor.exe"
O4 - HKLM..Run: [Cpu Level Up help] "C:Program FilesASUSAi SuiteCpuLevelUpHelp.exe"
O4 - HKLM..Run: [CanonSolutionMenu] "C:Program FilesCanonSolutionMenuCNSLMAIN.exe" /logon
O4 - HKLM..Run: [CanonMyPrinter] "C:Program FilesCanonMyPrinterBJMyPrt.exe" /logon
O4 - HKLM..Run: [ArcSoft Connection Service] C:Program FilesCommon FilesArcSoftConnection ServiceBinACDaemon.exe
O4 - HKLM..Run: [AppleSyncNotifier] "C:Program FilesCommon FilesAppleMobile Device SupportbinAppleSyncNotifier.exe"
O4 - HKLM..Run: [Ai Nap] "C:Program FilesASUSAi SuiteAiNapAiNap.exe"
O4 - HKLM..Run: [Adobe Reader Speed Launcher] "C:Program FilesAdobeReader 8.0ReaderReader_sl.exe"
O4 - HKCU..Run: [sidebar] C:Program FilesWindows Sidebarsidebar.exe /autoRun
O4 - HKCU..Run: [RoboForm] "C:Program FilesSiber SystemsAI RoboFormRoboTaskBarIcon.exe"
O4 - HKCU..Run: [Picasa Media Detector] "C:Program FilesPicasa2PicasaMediaDetector.exe"
O4 - HKCU..Run: [Google Update] "C:UsersBillAppDataLocalGoogleUpdateGoogleUpdate.exe" /c
O4 - HKCU..Run: [bionix Wallpaper 5] "C:Program FilesBionixBionix Wallpaper 5.exe"
O4 - HKUSS-1-5-19..Run: [sidebar] %ProgramFiles%Windows SidebarSidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUSS-1-5-19..Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUSS-1-5-20..Run: [sidebar] %ProgramFiles%Windows SidebarSidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:Program FilesLogitechDesktop Messenger8876480ProgramLogitechDesktopMessenger.exe
O8 - Extra context menu item: Customize Menu - file://C:Program FilesSiber SystemsAI RoboFormRoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:PROGRA~1MICROS~3OFFICE11EXCEL.EXE/3000
O8 - Extra context menu item: Fill Forms - file://C:Program FilesSiber SystemsAI RoboFormRoboFormComFillForms.html
O8 - Extra context menu item: RoboForm Toolbar - file://C:Program FilesSiber SystemsAI RoboFormRoboFormComShowToolbar.html
O8 - Extra context menu item: Save Forms - file://C:Program FilesSiber SystemsAI RoboFormRoboFormComSavePass.html
O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:Program FilesSiber SystemsAI RoboFormRoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:Program FilesSiber SystemsAI RoboFormRoboFormComFillForms.html
O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:Program FilesSiber SystemsAI RoboFormRoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:Program FilesSiber SystemsAI RoboFormRoboFormComSavePass.html
O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:Program FilesSiber SystemsAI RoboFormRoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:Program FilesSiber SystemsAI RoboFormRoboFormComShowToolbar.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:PROGRA~1MICROS~3OFFICE11REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:program filesvmwarevmware workstationvsocklib.dll
O10 - Unknown file in Winsock LSP: c:program filesvmwarevmware workstationvsocklib.dll
O13 - Gopher Prefix:
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:Program FilesLogitechDesktop Messenger8876480ProgramGAPlugProtocol-8876480.dll
O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - C:Program FilesNorton Internet SecurityNorton Internet SecurityEngine16.5.0.134coIEPlg.dll
O20 - AppInit_DLLs: C:PROGRA~1GoogleGOOGLE~1GOEC62~1.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:Program FilesCommon FilesArcSoftConnection ServiceBinACService.exe
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:Windowssystem32AEADISRV.EXE
O23 - Service: Apple Mobile Device - Apple Inc. - C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:Program FilesSymantecLiveUpdateAluSchedulerSvc.exe
O23 - Service: BMFMySQL - Unknown owner - C:Program FilesQuest SoftwareBenchmark Factory for DatabasesRepositoryMySQLbinmysqld-max-nt.exe
O23 - Service: Bonjour Service - Apple Inc. - C:Program FilesBonjourmDNSResponder.exe
O23 - Service: DB2 Management Service (TACOM20) (DB2MGMTSVC_TACOM20) - International Business Machines Corporation - C:Program FilesQuest SoftwareToad for Data Analysis 2.0DB2 ClientBINdb2mgmtsvc.exe
O23 - Service: DB2 Security Server (TACOM20) (DB2NTSECSERVER_TACOM20) - International Business Machines Corporation - C:Program FilesQuest SoftwareToad for Data Analysis 2.0DB2 ClientBINdb2sec.exe
O23 - Service: DisplayLink Service (DisplayLinkService) - DisplayLink Corp. - C:Program FilesDisplayLink Core SoftwareDisplayLinkService.exe
O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:Program FilesGoogleGoogle Desktop SearchGoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe
O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:Program FilesIntelIntel Matrix Storage ManagerIaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe
O23 - Service: Intuit Update Service (IntuitUpdateService) - Intuit Inc. - C:Program FilesCommon FilesIntuitUpdate ServiceIntuitUpdateService.exe
O23 - Service: iPod Service - Apple Inc. - C:Program FilesiPodbiniPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:Program FilesSymantecLiveUpdateLuComServer_3_4.EXE
O23 - Service: McciCMService - Motive Communications, Inc. - C:Program FilesCommon FilesMotiveMcciCMService.exe
O23 - Service: Pure Networks Net2Go Service (nmraapache) - Pure Networks, Inc. - C:Program FilesPure NetworksNetwork MagicWebServerbinnmraapache.exe
O23 - Service: Pure Networks Platform Service (nmservice) - Pure Networks, Inc. - C:Program FilesCommon FilesPure Networks SharedPlatformnmsrvc.exe
O23 - Service: Norton Ghost - Symantec Corporation - C:Program FilesNorton GhostAgentVProSvc.exe
O23 - Service: Norton Internet Security - Symantec Corporation - C:Program FilesNorton Internet SecurityNorton Internet SecurityEngine16.5.0.134ccSvcHst.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:Windowssystem32nvvsvc.exe
O23 - Service: OracleMTSRecoveryService - Oracle Corporation - C:XEClientBINomtsreco.exe
O23 - Service: OracleServiceXE - Oracle Corporation - c:oraclexeapporacleproduct10.2.0serverbinORACLE.EXE
O23 - Service: OracleXEClrAgent - Unknown owner - C:oraclexeapporacleproduct10.2.0serverbinOraClrAgnt.exe
O23 - Service: OracleXETNSListener - Unknown owner - C:oraclexeapporacleproduct10.2.0serverBINtnslsnr.exe
O23 - Service: SymSnapService - Symantec - C:Program FilesNorton GhostSharedDriversSymSnapService.exe
O23 - Service: VMware Agent Service (ufad-ws60) - VMware, Inc. - C:Program FilesVMwareVMware Workstationvmware-ufad.exe
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:Program FilesVMwareVMware Workstationvmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:Windowssystem32vmnetdhcp.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:Windowssystem32vmnat.exe
O23 - Service: WiCenterService - Stonestreet One - C:Program FilesWireless USB ManagerWiCenterService.exe
--
End of file - 14044 bytes