Ok, you wonderful experts, the little lady is going crazy. How on earth do I finally get rid of this evil piece of (*&%(*&!!! I have Windows XP and I've ran the CSWshredder program and temporarily got rid of it. I know that there is much more to it than that but I don't feel I know enough to mess with the registry. I've been told that screwing it up, screws your computer. I am begging, down on my hands and knees, for someone to help me out. I ran the hijackthis program and will include the log below. I am not an expert, I am afraid of the registry so PLEASE be simple in your explanations. 500 points to the angel who helps me get rid of this thing once and for all.
Logfile of HijackThis v1.97.7
Scan saved at 12:09:37 PM, on 8/3/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon
.exe
C:\WINNT\system32\services
.exe
C:\WINNT\system32\lsass.ex
e
C:\WINNT\system32\svchost.
exe
C:\WINNT\System32\svchost.
exe
C:\WINNT\system32\spoolsv.
exe
C:\WINNT\system32\pctspk.e
xe
C:\WINNT\Explorer.EXE
C:\Program Files\BroadJump\Client Foundation\CFD.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\MA311 PCI Adapter Configuration Utility\wlanutil.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EX
E
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EX
E
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Adobe\Acrobat 6.0\Reader\AcroRd32.exe
C:\WINNT\System32\wisptis.
exe
C:\Documents and Settings\Jen\My Documents\HijackThis.exe
R1 - HKCU\Software\Microsoft\In
ternet Explorer\Main,Search Bar = file://C:\DOCUME~1\Chris\L
OCALS~1\Te
mp\sp.html
R1 - HKCU\Software\Microsoft\In
ternet Explorer\Main,Search Page = file://C:\DOCUME~1\Chris\L
OCALS~1\Te
mp\sp.html
R1 - HKCU\Software\Microsoft\In
ternet Explorer\Search,SearchAssi
stant = file://C:\DOCUME~1\Chris\L
OCALS~1\Te
mp\sp.html
R1 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Search Bar = file://C:\DOCUME~1\Chris\L
OCALS~1\Te
mp\sp.html
R1 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Search Page = file://C:\DOCUME~1\Chris\L
OCALS~1\Te
mp\sp.html
R0 - HKLM\Software\Microsoft\In
ternet Explorer\Search,SearchAssi
stant = file://C:\DOCUME~1\Chris\L
OCALS~1\Te
mp\sp.html
R1 - HKCU\Software\Microsoft\In
ternet Explorer\Main,HomeOldSP = about:blank
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-7
84B7D6BE0B
3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEH
elper.dll
O2 - BHO: (no name) - {4C5BD18F-06BD-4B51-9684-8
3BACC5E033
0} - C:\WINNT\System32\dbeccd.d
ll
O2 - BHO: (no name) - {9B7AA30F-8FEF-4896-8DA0-D
858AE07297
6} - (no file)
O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-C
F10577473F
7} - c:\program files\google\googletoolbar
1.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-0
0A0C908246
7} - C:\WINNT\System32\msdxm.oc
x
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-0
09027A5CD4
F} - c:\program files\google\googletoolbar
1.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe
" /background
O4 - Global Startup: Configuration Utility.lnk = C:\Program Files\MA311 PCI Adapter Configuration Utility\wlanutil.exe
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar
1.dll/cmse
arch.html
O8 - Extra context menu item: Backward &Links - res://C:\Program Files\Google\GoogleToolbar
1.dll/cmba
cklinks.ht
ml
O8 - Extra context menu item: Cac&hed Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar
1.dll/cmca
che.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2
\OFFICE11\
EXCEL.EXE/
3000
O8 - Extra context menu item: Si&milar Pages - res://C:\Program Files\Google\GoogleToolbar
1.dll/cmsi
milar.html
O8 - Extra context menu item: Translate into English - res://C:\Program Files\Google\GoogleToolbar
1.dll/cmtr
ans.html
O9 - Extra button: Research (HKLM)
O9 - Extra button: Related (HKLM)
O9 - Extra 'Tools' menuitem: Show &Related Links (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Messenger (HKLM)
O16 - DPF: {3E68E405-C6DE-49FF-83AE-4
1EE9F4C36C
E} (Office Update Installation Engine) -
http://office.microsoft.com/officeupdate/content/opuc.cabO16 - DPF: {9F1C11AA-197B-4942-BA54-4
7A8489BB47
F} (Update Class) -
http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?38157.4371875O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-4
4455354000
0} (Shockwave Flash Object) -
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cabO16 - DPF: {FA3662C3-B8E8-11D6-A667-0
010B556D97
8} (IWinAmpActiveX Class) -
http://cdn.digitalcity.com/_media/dalaillama/ampx.cab