Need help getting rid of spyware on system. Below is the Hijackthis log file. Please help.
Logfile of HijackThis v1.97.7
Scan saved at 2:12:50 PM, on 8/20/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.e
xe
C:\WINDOWS\system32\winlog
on.exe
C:\WINDOWS\system32\servic
es.exe
C:\WINDOWS\system32\lsass.
exe
C:\WINDOWS\system32\svchos
t.exe
C:\WINDOWS\System32\svchos
t.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Java\j2re1.4.2_03\bi
n\jusched.
exe
C:\Program Files\Real\RealPlayer\Real
Play.exe
C:\PROGRA~1\VERIZO~1\SUPPO
R~1\SMARTB
~1\MotiveS
B.exe
C:\documents and settings\owner\local settings\temp\rKIlJr.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\PROGRA~1\AIM95\aim.exe
C:\Program Files\Verizon Online\SupportCenter\bin\m
pbtn.exe
C:\WINDOWS\System32\Packet
hSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\nvsvc3
2.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.ex
e
C:\WINDOWS\wanmpsvc.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
C:\Program Files\Symantec\LiveUpdate\
ALUNOTIFY.
EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\All Users\Documents\HijackThis
.exe
R0 - HKCU\Software\Microsoft\In
ternet Explorer\Main,Start Page =
http://www.windowws.cc/hp.htm?id=9R1 - HKCU\Software\Microsoft\In
ternet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Verizon Online
R1 - HKCU\Software\Microsoft\In
ternet Explorer\Main,Start Page_bak = about:blank
O2 - BHO: (no name) - {467FAEB2-5F5B-4c81-BAE0-2
A4752CA7F4
E} - C:\WINDOWS\System32\13vzml
v0vclcr.dl
l
O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A
37C9A5676A
7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt
.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7
859DF00B1D
6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bi
n\jusched.
exe
O4 - HKLM\..\Run: [checktime] c:\program files\HPSelect\Frontend\ct
.exe
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\Real
Play.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\VERIZO~1\SUPPO
R~1\SMARTB
~1\MotiveS
B.exe
O4 - HKLM\..\Run: [rKIlJr] C:\documents and settings\owner\local settings\temp\rKIlJr.exe
O4 - HKLM\..\Run: [System Update] C:\WINDOWS\System32\ezzlz.
exe
O4 - HKLM\..\Run: [Cryptographic Service] C:\WINDOWS\System32\dqmbz.
exe
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dump
rep 0 -u
O4 - HKLM\..\Run: [romahere] C:\WINDOWS\System32\matrix
here.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [pnpsvc_lock] C:\WINDOWS\System32\41838.
exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM95\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [Grmfmrva] C:\WINDOWS\System32\dufhkc
ws.exe
O4 - HKCU\..\Run: [uninstal] regsvr32 /u /s image.dll
O4 - HKCU\..\Run: [romahere] C:\WINDOWS\System32\matrix
here.exe
O4 - HKCU\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMo
n.exe
O4 - Global Startup: Verizon Online Support Center.lnk = C:\Program Files\Verizon Online\SupportCenter\bin\m
atcli.exe
O4 - Global Startup: winlogin.exe
O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
O9 - Extra button: Control Pad (HKLM)
O9 - Extra 'Tools' menuitem: Control Pad (HKLM)
O9 - Extra button: Microsoft® VBScript® Console (HKLM)
O9 - Extra 'Tools' menuitem: VBScript Terminal (HKLM)
O9 - Extra button: AIM (HKLM)
O9 - Extra button: Real.com (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Messenger (HKLM)
O9 - Extra button: Microsoft® VBScript® Terminal (HKCU)
O9 - Extra 'Tools' menuitem: VBScript Terminal (HKCU)
O16 - DPF: {11111111-1111-1111-1111-1
1111111123
7} -
http://69.93.232.139/1/deaGB869.exeO16 - DPF: {72D59B9C-1E59-4958-803A-A
BDEE2D4CFA
6} -
http://download.divx.com/player/DivXPlayerInstaller.exeO16 - DPF: {9F1C11AA-197B-4942-BA54-4
7A8489BB47
F} (Update Class) -
http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?38017.2215277778O16 - DPF: {C1C2AC28-5E4B-4228-B7A0-0
5E986FFCE1
4} -
http://www.movie-browser.com/tl4000.dllO16 - DPF: {D06A22B4-6087-4D3D-B7AF-8
2B113E9ABD
4} (CPostLaunch Object) -
http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CABO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-4
4455354000
0} (Shockwave Flash Object) -
http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cabO16 - DPF: {F98517F2-7B3B-11D3-91EB-0
0A0CC24BD4
0} (upgrade Class) -
http://www.helpmeeting.com/down.cab