CHECKING HIJACKTHIS, INTERNET EXPLORER, WINDOWS AND SOFTWARE FIREWALL:

You are using the latest version of HijackThis.
You are using the latest version of Internet Explorer.
Software firewall detected.


THESE ARE EITHER HARMFULL OR A SECURITY RISK
WE STRONGLY RECOMMEND TO FIX THEM :

\program files\common files\wintools\wtoolsa.exe
\program files\common files\wintools\wsup.exe
r1 - hkcu\software\microsoft\internet explorer\main,search bar = http://www.seekerbar.com/ie.aspx?tb_id=50154
r1 - hklm\software\microsoft\internet explorer\main,searchassistant = http://www.seekerbar.com/ie.aspx?tb_id=50154
r0 - hklm\software\microsoft\internet explorer\search,searchassistant = http://www.seekerbar.com/ie.aspx?tb_id=50154
r0 - hklm\software\microsoft\internet explorer\search,customizesearch =
r0 - hkcu\software\microsoft\internet explorer\toolbar,linksfoldername =
r3 - urlsearchhook: (no name) - {87766247-311c-43b4-8499-3d5fec94a183} - c:\progra~1\common~1\wintools\wtoolsb.dll
o2 - bho: speerobj class - {00000026-8735-428d-b81f-dd098223b25f} - c:\windows\speer.dll
o2 - bho: pctools site guard - {5c8b2a36-3db1-42a4-a3cb-d426709bbfeb} - c:\progra~1\spywar~1\tools\iesdsg.dll (file missing)
o2 - bho: mybar bho - {0494d0d1-f8e0-41ad-92a3-14154ece70ac} - c:\program files\myway\mybar\1.bin\mybar.dll
o2 - bho: (no name) - {87766247-311c-43b4-8499-3d5fec94a183} - c:\progra~1\common~1\wintools\wtoolsb.dll
o3 - toolbar: my &search bar - {0494d0d9-f8e0-41ad-92a3-14154ece70ac} - c:\program files\myway\mybar\1.bin\mybar.dll
o4 - hklm..\run: [wintools] c:\progra~1\common~1\wintools\wtoolsa.exe
o4 - hklm..\runservices: [wintools] c:\progra~1\common~1\wintools\wtoolsa.exe
o4 - hklm..\runservicesonce: [wintools] c:\progra~1\common~1\wintools\wtoolsa.exe /boot
o9 - extra button: (no name) - {cd67f990-d8e9-11d2-98fe-00c0f0318afe} - (no file)
o16 - dpf: {e09f6b38-3a0d-11d3-b5e7-0008c7bf61f2} (detectmn) - http://www.musicnotes.com/download/npmusicn.cab
o16 - dpf: {dbb2de32-61f1-4f7f-beb8-a37f5bc24ee2} (mozillapluginhostctrl class) - http://www.musicnotes.com/download/adaptor.cab
o16 - dpf: {df6a0f17-0b1e-11d4-829d-00c04f6843fe} (microsoft office tools on the web control) - http://dgl.microsoft.com/downloads/outc.cab
o16 - dpf: {56336bcb-3d8a-11d6-a00b-0050da18de71} (rdxie class) - http://207.188.7.150/093a44fafae236f7d522/netzip/rdxie601.cab
o16 - dpf: {1954a4b1-9627-4cf2-a041-58aa2045cb35} (brix6ie control) - http://a19.g.akamai.net/7/19/7125/3110/ftp.coupons.com/r31/brix6ie.cab
o16 - dpf: {90c9629e-cd32-11d3-bbfb-00105a1f0d68} (installshield international setup player) - http://www.installengine.com/engine/isetup.cab
o16 - dpf: {d30ca0fd-1ca0-11d4-ac78-006008a9a8bc} (webbasedclientinstall class) - http://duplinschools.net/webinst.cab
o16 - dpf: {9600f64d-755f-11d4-a47f-0001023e6d5a} (shutterfly picture upload plugin) - http://web1.shutterfly.com/downloads/uploader.cab
o16 - dpf: {41f17733-b041-4099-a042-b518bb6a408c} - http://a1540.g.akamai.net/7/1540/52/20030530/qtinstall.info.apple.com/bonnie/us/win/quicktimeinstaller.exe
o16 - dpf: {4c39376e-fa9d-4349-bacc-d305c1750ef3} (epuimagecontrol class) - http://tools.ebayimg.com/eps/wl/activex/epuwalcontrol_v1-0-3-9.cab
o16 - dpf: {205ff73b-ca67-11d5-99dd-444553540000} (cinstall class) - http://www.spywarestormer.com/files2/install.cab
o16 - dpf: {fa3662c3-b8e8-11d6-a667-0010b556d978} (iwinampactivex class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab


THE FOLLOWING ITEMS ARE NOT NEEDED TO LOAD
AT BOOTIME FOR THE SYSTEM TO WORK PROPERLY:

o4 - hkcu..\run: [microsoft works update detection] i\wkdetect.exe
o4 - hkcu..\run: [epson stylus photo 825] c:\windows\system\e_s10ic2.exe /a “c:\windows\system\e_s21e4.tmp”
o4 - hkcu..\runservices: [microsoft works update detection] i\wkdetect.exe
o4 - startup: exif launcher.lnk = c:\program files\finepixviewer\quickdcf.exe
o4 - startup: office startup.lnk = c:\program files\microsoft office\office\osa.exe


WE HAVE NO INFO ON THE FOLLOWING ITEMS. THEY CAN BE BAD OR GOOD.
YOU HAVE TO VERIFY THEM MANUALLY. PLEASE TELL US IF YOU HAVE INFO ON THEM :

\windows\system\otaqgt.exe
o4 - hklm..\run: [otaqgt] c:\windows\system\otaqgt.exe