i just did a hijackthis scan and here it is
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:58:03 PM, on 6/16/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Safe mode with network support
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\Program Files\Softex\OmniPass\OPXPApp.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Steam\Steam.exe
C:\Documents and Settings\Owner\My Documents\My Downloads\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://us8.hpwis.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://us.rd.yahoo.com/customize/yco.../www.yahoo.com
R3 - URLSearchHook: (no name) - {F9E535F6-FE6E-D9BC-19F6-F35A6C3012E4} - (no file)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O1 - Hosts: 91.184.6.104 pagead2.googlesyndication.com
O2 - BHO: (no name) - {0048B696-3B49-4EB4-8EAA-12E4B73A8B47} - (no file)
O2 - BHO: (no name) - {008740B0-F635-425B-8F83-C9833F5CCD70} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: (no name) - {034DACD2-674B-464C-81CB-5D82E884BCE2} - (no file)
O2 - BHO: (no name) - {057b73b0-ae36-494b-a5ce-9e6398e703dd} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {184D8FB3-591B-4EBF-A059-91E1999E7205} - (no file)
O2 - BHO: (no name) - {22350094-E0E8-4FF0-AD18-6E232EAE080F} - (no file)
O2 - BHO: (no name) - {24FCFBD3-1F8E-44B8-B715-04A3BB4A689C} - (no file)
O2 - BHO: (no name) - {27CBE6B6-D9A6-4DDD-B113-14736ECA405C} - (no file)
O2 - BHO: (no name) - {32C0C82D-D173-4F92-880A-EF4DD3632204} - (no file)
O2 - BHO: (no name) - {3379E611-AD9F-4A6F-9623-233F52D16970} - (no file)
O2 - BHO: (no name) - {3BA2C4B4-06E4-4D62-AE98-D6D66EE0505C} - (no file)
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {3DD5AE84-FC67-43F9-BE06-40506A6BE072} - (no file)
O2 - BHO: (no name) - {3FECA576-7AD2-4E11-A6AD-6B59D4FB5DB9} - C:\WINDOWS\system32\fccdbxx.dll (file missing)
O2 - BHO: (no name) - {4263C7F9-8517-4814-B9E7-AB23A6808F6B} - (no file)
O2 - BHO: (no name) - {478f8b95-df4a-49df-a4e9-332fa8ee4aac} - (no file)
O2 - BHO: (no name) - {50405B6D-DD0E-49C3-80D1-24392AB2D366} - C:\WINDOWS\system32\vtuts.dll (file missing)
O2 - BHO: (no name) - {507C73B0-D5D4-4CBF-86AD-690FAE5104E5} - (no file)
O2 - BHO: (no name) - {5B438ACB-69BF-4EB0-BBCC-A19BD8EB7BEE} - (no file)
O2 - BHO: (no name) - {60764275-78C7-4847-82C3-9531AB4921A7} - (no file)
O2 - BHO: (no name) - {6C987574-5D3A-435F-87A6-C449AB8528F9} - (no file)
O2 - BHO: (no name) - {704BFE2B-0830-4A7D-B9AC-DB0E25E9B67A} - (no file)
O2 - BHO: (no name) - {71bf372e-7171-4b39-8ae1-da86020e00d6} - (no file)
O2 - BHO: (no name) - {72235AA7-C750-4F62-90BB-4323F488D295} - (no file)
O2 - BHO: (no name) - {74CF0B2A-E1A9-47A9-BC3B-36A245EC1CD2} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {775782F8-1F4E-4183-B35C-B5599FC1F275} - (no file)
O2 - BHO: (no name) - {77C3CABA-021C-432C-B248-E97C40416BAA} - (no file)
O2 - BHO: (no name) - {77D6BB8E-EFF7-4D93-8D68-2ED95AE7E5FD} - (no file)
O2 - BHO: (no name) - {7A152772-EA44-49DE-963D-F927FB4F161C} - (no file)
O2 - BHO: (no name) - {82115ADC-7440-47EC-A7C2-90C33B2D224E} - (no file)
O2 - BHO: (no name) - {8AA409CA-8AB0-4366-AE32-3CE2CEBF700E} - (no file)
O2 - BHO: (no name) - {937E0F91-F744-45C1-91C8-6D396F67B975} - (no file)
O2 - BHO: (no name) - {93958BE2-4677-450A-A3A2-8F0CC40D1A97} - C:\WINDOWS\system32\pmnll.dll (file missing)
O2 - BHO: (no name) - {950BD455-4B1E-4D65-BE5E-4B4B8D09C8BB} - (no file)
O2 - BHO: (no name) - {96EBA088-5039-4E0F-AF3C-B67A386446DB} - C:\WINDOWS\system32\jkklm.dll (file missing)
O2 - BHO: (no name) - {98B25900-39C0-49CA-8A3D-DA20D39D3B65} - (no file)
O2 - BHO: (no name) - {9AE447FC-78DA-49F2-BEA2-988EDD0B172E} - (no file)
O2 - BHO: (no name) - {9E6BB767-9152-42DD-BF3C-EBEB36EA1B92} - (no file)
O2 - BHO: (no name) - {A1D934F0-06EC-4CA5-9092-56CA77B5EE51} - (no file)
O2 - BHO: (no name) - {A1E53EFA-5380-4127-8EC2-10208DD12D95} - (no file)
O2 - BHO: (no name) - {A59F00E2-AE32-42EB-9073-5CE9CDF9B8B0} - (no file)
O2 - BHO: (no name) - {A7B1B32E-1898-49DA-980E-ED6834290C6A} - (no file)
O2 - BHO: (no name) - {ACC540BB-9032-4927-8778-E20C828FFFC0} - (no file)
O2 - BHO: (no name) - {B8B80292-49E6-458E-B1EE-5F2A3703AC0E} - (no file)
O2 - BHO: (no name) - {C6F6A65E-4FA7-4FEF-B8D7-A99529208DE8} - (no file)
O2 - BHO: (no name) - {CA8A7E0C-9D9D-4336-8C69-CF6038E7AD5B} - (no file)
O2 - BHO: (no name) - {CB1F9D21-04C1-4170-8CD2-E1104AF785AE} - (no file)
O2 - BHO: (no name) - {D880219A-1252-407D-9D60-B7023F203E62} - (no file)
O2 - BHO: (no name) - {E3146938-E3DA-4C0C-A384-E35EF593B0A6} - (no file)
O2 - BHO: (no name) - {E7DF5D59-D4C1-457E-BF23-D424C62C0EE0} - (no file)
O2 - BHO: (no name) - {EBC3E190-6156-45B2-AB51-062DAF48C808} - (no file)
O2 - BHO: (no name) - {ED675B33-D867-4781-86B2-52FDB4C5CECD} - (no file)
O2 - BHO: (no name) - {F903D0C5-48C7-40B9-8FA5-6D3FD045B8BC} - (no file)
O2 - BHO: (no name) - {fd81f7ab-dbbd-41c5-9649-c9bff131c96d} - (no file)
O2 - BHO: (no name) - {FDE27ACD-58F1-434E-BCEE-0C3BBA073E2A} - (no file)
O2 - BHO: (no name) - {FE98573C-648D-4A87-BFF4-DB7AEE0E6C8F} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [SetDefaultMIDI] MIDIDef.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [SetDefaultMidi] MIDIDEF.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [SetDefaultMIDI] MIDIDef.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [SetDefaultMidi] MIDIDEF.EXE (User 'Default user')
O4 - Startup: Greetings Workshop Reminders.lnk.disabled
O4 - Startup: TA_Start.lnk.disabled
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Monitor.lnk = C:\Program Files\ArcSoft\Media Card Companion\MCC Monitor.exe
O4 - Global Startup: Quicken Scheduled Updates.lnk.disabled
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {1A26F07F-0D60-4835-91CF-1E1766A0EC56} -
http://scanner2.malware-scan.com/setup/webinst.cab
O16 - DPF: {1D0D9077-3798-49BB-9058-393499174D5D} - file://c:\counter.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} -
http://download.mcafee.com/molbin/sh...0/mcinsctl.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} -
http://download.mcafee.com/molbin/sh...23/mcgdmgr.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{293BE57A-2433-4323-9468-2CC774303307}: NameServer = 68.94.156.1,68.94.157.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{293BE57A-2433-4323-9468-2CC774303307}: NameServer = 68.94.156.1,68.94.157.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{293BE57A-2433-4323-9468-2CC774303307}: NameServer = 68.94.156.1,68.94.157.1
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: c:\windows\system32\pmnllli.dll,avgrsstx.dll
O20 - Winlogon Notify: anshlx - anshlx.dll (file missing)
O20 - Winlogon Notify: byxvwts - byxvwts.dll (file missing)
O20 - Winlogon Notify: fccdbxx - fccdbxx.dll (file missing)
O20 - Winlogon Notify: kbdmgr - kbdmgr.dll (file missing)
O20 - Winlogon Notify: vtuts - C:\WINDOWS\system32\vtuts.dll (file missing)
O20 - Winlogon Notify: vtutu - C:\WINDOWS\System32\vtutu.dll (file missing)
O20 - Winlogon Notify: wvuusqp - wvuusqp.dll (file missing)
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Softex OmniPass Service (omniserv) - Unknown owner - C:\Program Files\Softex\OmniPass\Omniserv.exe
O23 - Service: Remote Procedure Call (RPC) Helper ( 6Qรรต'ยชยดรร8) - Unknown owner - C:\WINDOWS\system32\appyh32.exe (file missing)
--
End of file - 10644 bytes
if someone could help me out, i would be deeply grateful