hi collin,
while on the internet do this, get the latest def's for all your scanners, then, go to tools button, internet options, then do this> delete cookies, delete files including all offline content, then delete history.
now go to safe mode and scan using all your programs one by one. delete all files that they come up with.
next run hijackthis, make sure you don't have any open windows, and no running programs. put a check next to these and hit the fix check button:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.windowws.cc/hp.htm?id=54
O2 - BHO: (no name) - {467FAEB2-5F5B-4c81-BAE0-2A4752CA7F4E} - C:\WINDOWS\SYSTEM\YC8YJ1~1.DLL
O2 - BHO: (no name) - {2E9CAFF6-30C7-4208-8807-E79D4EC6F806} - C:\WINDOWS\SYSTEM\YYZSJW.DLL
O4 - HKLM\..\Run: [MsgCenterExe] "C:\Program Files\Common Files\Real\Update_OB\RealOneMessageCenter
O4 - HKCU\..\Run: [romahere2] C:\WINDOWS\SYSTEM\HFUNE1CE698S4.EXE
O9 - Extra button: RealGuide - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\SYSTEM\Shdocvw.dl
O15 - Trusted Zone: *.greg-search.com
O16 - DPF: {70647AB5-18FD-4142-82B0-5852478DD0D4} (Vividence Connector Launcher) - http://task.vivid
in safe mode do a search for these files and or folders and delete these files and or folders from your windows and or windows system32 directories:
C:\PROGRAM FILES\EASY INTERNET\ENCMONTR.EXE
C:\WINDOWS\SYSTEM\MSGLOOP.EXE
C:\WINDOWS\SYSTEM\MSG32.EXE
C:\WINDOWS\SYSTEM\HIDSERV.EXE
C:\WINDOWS\SYSTEM\LTDAEMON.EXE
C:\PROGRAM FILES\WILDWIRE\WWMON.EXE
C:\WINDOWS\SYSTEM\USBMMKBD.EXE
C:\PROGRAM FILES\COMMON FILES\REAL\UPDATE_OB\REALONEMESSAGECENTER.EXE
C:\WINDOWS\SYSTEM\HFUNE1CE698S4.EXE
next do a control alt delete and end task for any of these processes:
YC8YJ1~1.DLL
YYZSJW.DLL
ENCMONTR.EXE
MSGLOOP.EXE
MSG32.EXE
HIDSERV.EXE
LTDAEMON.EXE
WWMON.EXE
USBMMKBD.EXE
REALONEMESSAGECENTER.EXE
HFUNE1CE698S4.EXE
all the best,
murve