Please don't create a new thread for the same log/topic. After you are done with the below fixes, just reply back to this same thread.
Please print out the instructions here (or save it in Notepad) so that you can follow along more easily.
This hijack may take a couple of tries to remove it. If you have any questions during this process, please ask us (just don't restart or shutdown - unless the instructions say so).
Download
WinsockFix and unzip it. Then double-click on it to run it.
1. Run CleanUp! program and click on CleanUp button. Say NO when it asks you to reboot/logoff. Check your Downloaded Program Files folder for any program that you do not recognize and remove anything in question.
2. Go to Start->Run and type in regedit and hit OK. Go to File->Export and save the registry somewhere as a backup. While in the Registry Editor, navigate to:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ and delete
Extensions
If any of the above registry keys are giving you problems deleting, right click on them and click on Permissions. Then click on the Advanced button. Make sure the first box (Inherit from parent...) is checked. Click OK and OK. Then try deleting the entry again. Once you're done, close the Registry Editor.
3. Run KillBox now.
a) Click on the 'Delete on Reboot' button.
b) Check 'End Explorer Shell While Killing File'.
c) Check 'Unregister .dll Before Deleting' for each file (if it's available).
Copy and paste each of the following (one by one) into KillBox and hit the X button for each one (when it asks you if you want to reboot, choose NO for all of them):
c:\recycler\desktop.ini
C:\WINDOWS\system32\guard.tmp
c:\winnt\system32\aklsp.dll
C:\WINNT\system32\DQCOBJ.DLL
C:\WINNT\system32\jtjm0711e.dll
4. Restart and hit the F8 key (repeatedly until a menu shows up) to enter Safe Mode.
5. Run HijackThis and do a scan. Check and fix the following:
O1 - Hosts: 69.20.16.183 auto.search.msn.com
O1 - Hosts: 69.20.16.183 search.netscape.com
O1 - Hosts: 69.20.16.183 ieautosearch
O1 - Hosts: 64.91.255.87
www.dcsresearch.com
O10 - Broken Internet access because of LSP provider 'c:\winnt\system32\aklsp.dll' missing
Close HijackThis and run Hoster. Click 'Restore Original Hosts' and click OK.
Run CleanUp! program again and clean everything. Say Yes when it asks you to reboot/logoff.
6. Reboot into Normal Mode and run HijackThis. See if the O1 entries are still in HijackThis. If they are still there, go to c:\windows\system32\ and sort the files by date. There will/should be two new DLLs.
-- If those O1 entries do return in HijackThis, paste those two files into KillBox (in Step 3 above) and kill them. Just follow through the same procedures (Steps 3 - 6) like before. Make sure NOT to reboot until you deleted those two files (otherwise the names will change again).
After that's done (or if you need more help), give us a new set of updated logs (2 PV logs, 1 notify.txt log, 1 VX2Finder log and 1 HijackThis log).