Here is an new hijack log . Maybe theis wil help . If you choose show source via right mouse button you get this info :
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2 Final//EN">
<html>
<head>
<style>
a:link {font:8pt/11pt verdana; color:red}
a:visited {font:8pt/11pt verdana; color:#4e4e4e}
</style>
<meta HTTP-EQUIV="Content-Type" Content="text-html; charset=Windows-1252">
<title>Geen weer te geven pagina </title>
</head>
<body bgcolor="white">
<table width="400" cellpadding="3" cellspacing="5">
<tr>
<td id="tableProps" valign="top" align="left"><img id="pagerrorImg" SRC="pagerror.gif"
width="25" height="33"></td>
<td id="tablePropsWidth" align="left" valign="middle" width="360"><h1 id="errorText"
style="COLOR: black; FONT: 13pt/15pt verdana">Bewerking is afgebroken</h1>
</td>
</tr>
<tr>
<td id="tablePropsWidth" width="400" colspan="2"><font
style="COLOR: black; FONT: 8pt/11pt verdana">Internet Explorer kan geen verbinding maken met de opgevraagde
webpagina. De pagina is mogelijk tijdelijk niet beschikbaar.</font></td>
</tr>
<tr>
<td id="tablePropsWidth" width="400" colspan="2"><font id="LID1"
style="COLOR: black; FONT: 8pt/11pt verdana"><hr color="#C0C0C0" noshade>
<p id="LID2">Probeer het volgende:</p><ul>
<li id="instructionsText2">Klik op de knop
<a href="javascript
:location.reload()" target="_self">
<img border=0 src="refresh.gif" width="13" height="16"
alt="refresh.gif (82 bytes)" align="middle"></a> <a href="javascript
:location.reload()" target="_self">Vernieuwen</a> of probeer het later opnieuw.<br>
</li>
<li id="instructionsText3">Als u deze pagina eerder bezocht hebt en u wilt bekijken wat
op uw computer is opgeslagen, klikt u op <b>Bestand</b> en vervolgens op <b>Off line werken</b>.<br>
</li>
<li id="instructionsText4">Voor informatie over off line surfen met Internet Explorer klikt
u op het menu <b>Help</b> en vervolgens op <b>Inhoudsopgave en index</b>.<br>
</li>
</ul>
<p><br>
</p>
<h2 id="ietext" style="font:8pt/11pt verdana; color:black">Internet Explorer </h2>
</font></td>
</tr>
</table>
</body>
</html>
Logfile of HijackThis v1.99.1
Scan saved at 15:20:27, on 19/03/2005
Platform: Windows 2000 (WinNT 5.00.2195)
MSIE: Internet Explorer v5.00 (5.00.2920.0000)
Running processes:
C:\winnt\System32\smss.exe
C:\winnt\system32\winlogon.exe
C:\winnt\system32\services.exe
C:\winnt\system32\lsass.exe
C:\winnt\system32\svchost.exe
C:\winnt\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINNT\System32\svchost.exe
C:\winnt\System32\nvsvc32.exe
C:\winnt\system32\regsvc.exe
C:\winnt\system32\MSTask.exe
C:\WINNT\system32\ZoneLabs\vsmon.exe
C:\WINNT\System32\mspmspsv.exe
C:\winnt\system32\svchost.exe
C:\winnt\Explorer.exe
C:\winnt\System32\rundll32.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\winnt\System32\RUNDLL32.EXE
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Zone Labs\ZoneAlarm\zonealarm.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\terminator\TIJDELIJK4\hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
http://www.yahoo.com/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O3 - Toolbar: @msdxmLC.dll,-1@1043,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [AME_CSA] rundll32 amecsa.cpl,RUN_DLL
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [Bouncer RunStartup] C:\Program Files\Bouncer\liveupdate.exe 110
O4 - Global Startup: ZoneAlarm.lnk = C:\Program Files\Zone Labs\ZoneAlarm\zonealarm.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.msn.nl
O14 - IERESET.INF: MS_START_PAGE_URL=http://www.msn.nl
O17 - HKLM\System\CCS\Services\Tcpip\..\{E7C04278-0031-4F57-B243-D7F93B55C711}: NameServer = 193.74.208.65 193.121.171.135
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Logical Disk Manager Administrative-service (dmadmin) - VERITAS Software Corp. - C:\winnt\System32\dmadmin.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\winnt\System32\nvsvc32.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - C:\WINNT\system32\ZoneLabs\vsmon.exe
Process list saved on 15:21:14, on 19/03/2005
Platform: Windows 2000 (WinNT 5.00.2195)
[pid] [full path to filename] [file version] [company name]
108 C:\winnt\System32\smss.exe 5.0.2170.1 Microsoft Corporation
196 C:\winnt\system32\winlogon.exe 5.0.2182.1 Microsoft Corporation
224 C:\winnt\system32\services.exe 5.0.2134.1 Microsoft Corporation
236 C:\winnt\system32\lsass.exe 5.0.2184.1 Microsoft Corporation
408 C:\winnt\system32\svchost.exe 5.0.2134.1 Microsoft Corporation
436 C:\winnt\system32\spoolsv.exe 5.0.2161.1 Microsoft Corporation
488 C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
508 C:\Program Files\Alwil Software\Avast4\ashServ.exe 4.6.602.0
544 C:\WINNT\System32\svchost.exe 5.0.2134.1 Microsoft Corporation
580 C:\winnt\System32\nvsvc32.exe 6.14.10.6693 NVIDIA Corporation
612 C:\winnt\system32\regsvc.exe 5.0.2155.1 Microsoft Corporation
648 C:\winnt\system32\MSTask.exe 4.71.2137.1 Microsoft Corporation
704 C:\WINNT\system32\ZoneLabs\vsmon.exe 3.7.143.0 Zone Labs Inc.
784 C:\WINNT\System32\mspmspsv.exe 7.1.0.3055 Microsoft Corporation
796 C:\winnt\system32\svchost.exe 5.0.2134.1 Microsoft Corporation
872 C:\winnt\Explorer.exe 5.0.2920.0 Microsoft Corporation
1048 C:\winnt\System32\rundll32.exe 5.0.2134.1 Microsoft Corporation
1072 C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe 4.6.585.0
1080 C:\winnt\System32\RUNDLL32.EXE 5.0.2134.1 Microsoft Corporation
1120 C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe 1.0.0.509 Microsoft Corporation
1128 C:\Program Files\Zone Labs\ZoneAlarm\zonealarm.exe 3.7.143.0 Zone Labs Inc.
1240 C:\Program Files\Alwil Software\Avast4\ashWebSv.exe 4.6.622.0 ALWIL Software
860 C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe 4.6.602.0 ALWIL Software
1228 C:\Program Files\Internet Explorer\IEXPLORE.EXE 5.0.2920.0 Microsoft Corporation
1476 C:\Documents and Settings\terminator\TIJDELIJK4\hijackthis\HijackThis.exe 1.99.0.1 Soeperman Enterprises Ltd.