See if you can borrow another keyboard or a USB-keyboard.
Your PS/2 port might be 'shot'.
You run Symantec/Norton, AVG, Jetico, Spybot, MS Antispyware, Ewido.
That looks like a lethal combination.
Get rid COMPLETELY of all that Symantec/Norton bloatware, resource-hogging, user-unfriendly, in-your-face crap!
(I could fill pages with more adjectives, but I assume you get the point!)
The others together do a more than adequate job!
Get rid of al those toolbars you have. These may look pretty, and have some nifty functionality, but they open the floodgates wide for any unwanted intruder, particularly those of the messenger-style communications. Half the time you don't know WHO made them or WHAT ELSE is in them.
Firefox includes most of these (browser toolbar) extras already, so there's no need for that extra IE ballast!
And STOP using that bleedin' Internet Explorer as well, other than for Windoze updates!
Physically disconnect your PC from the internet (Dialup-modemcable and/or RJ45 Network cable).
Boot in Safe Mode, see how here.
Switch System restore OFF, see how here.
In Windows Explorer, turn on "show all files and folders, including hidden and system". See how here.
Next, click Start/Control Panel/Add/Remove Programs. If there, UNinstall anything to do with:
C:\Program Files\ICQToolbar\toolbaru.dll
All Norton/Symantec programs
All Lifeupdate crap (+ anything else that belongs to Symantec as well)
C:\Program Files\Yahoo!\Messenger\ypager.exe
C:\Program Files\Free Download Manager\dlall.htm
Next, reboot in Safe Mode. <<<== I M P O R T A N T
Next, open Windows Task Manager by pressing
CTRL+ALT+DELETE.
Click the
Processes tab, select the process (if there) and click
End Process for:
Realdownload.exe (this is a rogue, I think, being in the wrong directory!!)
Next, run a HJT scan and (if still there) place a tick-mark in the little square before:
...................................................................................................
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.euro.dell.com/countries/ie/enu/gen/default.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://google.icq.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.euro.dell.com/countries/ie/enu/gen/default.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.ie/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
https://jump-subs.ea.com/SubscribeEntry.jsp?prodID=EASO2003&site=nh03&iPath=3&lkey=&
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\
ICQToolbar\toolbaru.dll
O2 - BHO: Web assistant - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\
Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\
Norton AntiVirus\NavShExt.dll (file missing)
O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: (no name) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
O4 - HKLM\..\Run: [URLLSTCK.exe] C:\Program Files\
Norton Internet Security\UrlLstCk.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\
Yahoo!\Messenger\ypager.exe -quiet
O4 - Global Startup: RealDownload.lnk = C:\Program Files\Real\
RealDownload\Realdownload.exe
O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Program Files\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZRxdm077
O8 - Extra context menu item: Download all by Free Download Manager - file://C:\Program Files\
Free Download Manager\dlall.htm
O8 - Extra context menu item: Download by Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Download selected by Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download web site by Free Download Manager - file://C:\Program Files\Free Download Manager\dlpage.htm
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\
SPYWAR~1\tools\iesdpb.dll (file missing) <<==Spyware Dr leftover
O9 - Extra button: (no name) -{578FC4E3-151E-456c-AF8E-B63061EFE228}} - (no file)
I doubt very much that this is your ISP: Inhoster, ul.Antonova 5, Kiev, 03186, Ukraine!
Fix all these O17 immediately!
O17 - HKLM\System\CCS\Services\Tcpip\..\{09610E36-75CD-4721-B6DE-104158C9FD0F}: NameServer = 195.95.218.18,85.255.112.11
O17 - HKLM\System\CCS\Services\Tcpip\..\{3D1BC7B4-43C8-4FC0-A21B-AA9CFB235721}: NameServer = 195.95.218.18,85.255.112.11
O17 - HKLM\System\CCS\Services\Tcpip\..\{7FFF3129-FFA4-4517-B8A3-8AA3AAD37A03}: NameServer = 195.95.218.18,85.255.112.11
O17 - HKLM\System\CCS\Services\Tcpip\..\{C3541CB3-45FF-44B3-B08A-8959446D9920}: NameServer = 195.95.218.18,85.255.112.11
O17 - HKLM\System\CCS\Services\Tcpip\..\{F2ACB621-CD3E-4531-9C1D-C1374D0622B0}: NameServer = 195.95.218.18,85.255.112.11
O17 - HKLM\System\CCS\Services\Tcpip\..\{F87CF780-BCCC-4E76-A95E-5D8DCAB529DD}: NameServer = 195.95.218.18,85.255.112.11
O17 - HKLM\System\CS1\Services\Tcpip\..\{09610E36-75CD-4721-B6DE-104158C9FD0F}: NameServer = 195.95.218.18,85.255.112.11
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Unknown owner - C:\Program Files\Norton AntiVirus\navapsvc.exe (file missing)
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Unknown owner - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe (file missing)
O23 - Service: SAVScan - Unknown owner - C:\Program Files\Norton AntiVirus\SAVScan.exe (file missing)
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
...................................................................................................
Now click on the
Fix Checked button in HJT. Exit HJT.
When done, from between the above dotted lines, delete the highlighted
bold files.
When a \
directory-name\ is
bold, delete everything in it, including that directory itself.
Delete all files and directories from: C:\Documents and Settings\[username]\Local Settings\Temp
Repeat this for ALL [usernames].
Rightclick IE on the desktop, select Properties, click on
Delete Cookies, and
Delete Files.
Delete ALL files and directories from: C:\WINDOWS\Temp (except files dated from TODAY).
XP only: Delete ALL files from C:\WINDOWS\Prefetch.
Boot normal. When all OK, switch System Restore back on.