OK still some left they could not handle!
Download ComboFix
NOTE: If you have had ComboFix more than a few days old delete and re-download.
Get it here:
https://www.techspot.com/downloads/5587-combofix.html
Or here:
http://subs.geekstogo.com/ComboFix.exe
Double click combofix.exe follow the prompts.
Install Recovery Console if connected to the Internet!
When finished, it will open a log.
Attach the log and a new HJT log in your next reply.
Note: Do not click combofix's window while its running. That may cause it to stall.
=========================================
Download SDFix to Desktop.
http://downloads.andymanchesta.com/RemovalTools/SDFix.exe
On Desktop run SDdFix It will run (install) then close.
Then reboot into Safe Mode
As the computer starts up, tap the F8 key several times.
On the Boot menu Choose Safe Mode.
Click thu all the prompts to get to desktop.
At Desktop
My Computer C: drive. Double-click to open.
Look for a folder called SD Fix. Double-click to enter SD Fix.
Double-click to RunThis.bat. Type Y to begin.
SD Fix does its job.
When prompted hit the enter key to restart the computer
Your computer will reboot.
On normal restart the Fixtool will run again and complete the removal process then say Finished,
Hit the Enter key to end the script and load your desktop icons.
Once the desktop is up, the SDFix report will open on screen and also be saved to the SDFix folder as Report.txt.
Attach the Report.txt file to your next post.
Mike
EDIT: Forgot to pase belo
Run HJT Scan only and select and Fix all lines listed below
O2 - BHO: (no name) - {8F8621B9-5221-48ED-B2B8-EFC4C01E45EA} - c:\windows\system32\tuxsjrw.dll
O4 - HKUS\S-1-5-18\..\Run: [zzgoownz.exe] C:\WINDOWS\zzgoownz.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [bnagyziz.exe] C:\WINDOWS\bnagyziz.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [rveisllf.exe] C:\WINDOWS\rveisllf.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [lfwopopy.exe] C:\WINDOWS\lfwopopy.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [ntqvfbhx.exe] C:\WINDOWS\ntqvfbhx.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [phnrcexg.exe] C:\WINDOWS\phnrcexg.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [lfzxtelk.exe] C:\WINDOWS\lfzxtelk.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [tjydccme.exe] C:\WINDOWS\tjydccme.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [xlprywgl.exe] C:\WINDOWS\xlprywgl.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [fpnsmuvr.exe] C:\WINDOWS\fpnsmuvr.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [phjrmbpj.exe] C:\WINDOWS\phjrmbpj.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [tjyruioa.exe] C:\WINDOWS\tjyruioa.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [vxvwghpn.exe] C:\WINDOWS\vxvwghpn.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [zzgoownz.exe] C:\WINDOWS\zzgoownz.exe (User 'Default user')
O20 - Winlogon Notify: jwrwrqdi - C:\WINDOWS\SYSTEM32\tuxsjrw.dll