Thanks for emailing me with some help, I finally got it:
StartupList report, 1/30/03, 5:32:37 PM
StartupList version: 1.51
Started from : C:\WINDOWS\TEMPORARY INTERNET FILES\CONTENT.IE5\OTA30XEZ\STARTUPLIST[1].EXE
Detected: Windows 98 Gold (Win9x 4.10.1998)
Detected: Internet Explorer v6.00 SP1 (6.00.2800.1106)
* Using default options
==================================================
Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\PROGRAM FILES\MCAFEE\MCAFEE VIRUSSCAN\AVSYNMGR.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\LXDBOXCP.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\TASKMON.EXE
C:\PROGRAM FILES\MCAFEE\MCAFEE VIRUSSCAN\ALOGSERV.EXE
C:\PROGRAM FILES\RINGCENTRAL\BUZME\BMUI.EXE
C:\PROGRAM FILES\MCAFEE\MCAFEE VIRUSSCAN\VSSTAT.EXE
C:\PROGRAM FILES\MCAFEE\MCAFEE VIRUSSCAN\AVCONSOL.EXE
C:\PROGRAM FILES\MCAFEE\MCAFEE VIRUSSCAN\VSHWIN32.EXE
C:\WINDOWS\DOWNLOADED PROGRAM FILES\CONNECTOR.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\PROGRAM FILES\JUNO\BIN\JUNO.EXE
C:\WINDOWS\SYSTEM\TAPISRV.EXE
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
C:\WINDOWS\SYSTEM\PSTORES.EXE
C:\WINDOWS\SYSTEM\RNAAPP.EXE
C:\WINDOWS\TEMPORARY INTERNET FILES\CONTENT.IE5\OTA30XEZ\STARTUPLIST[1].EXE
--------------------------------------------------
Listing of startup folders:
Shell folders Startup:
[C:\WINDOWS\Start Menu\Programs\StartUp]
BuzMe.lnk = C:\Program Files\RingCentral\BuzMe\BMUI.exe
--------------------------------------------------
Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
SystemTray = SysTray.Exe
ScanRegistry = C:\WINDOWS\scanregw.exe /autorun
TaskMonitor = C:\WINDOWS\taskmon.exe
Click = C:\WINDOWS\SYSTEM\click.exe
Alogserv = C:\Program Files\McAfee\McAfee VirusScan\alogserv.exe
--------------------------------------------------
Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce
012 = C:\WINDOWS\SYSTEM\regsvr32.exe /s C:\WINDOWS\SYSTEM\mshtml.dll
RegTLib = C:\WINDOWS\RegTLib.exe C:\WINDOWS\SYSTEM\StdOle2.Tlb
RunOnceEx = rundll32.exe C:\WINDOWS\SYSTEM\iernonce.dll,RunOnceExProcess
GrpConv = grpconv.exe -o
Registering xenroll.dll.. = C:\WINDOWS\SYSTEM\regsvr32 /s xenroll.dll
Registering hhctrl.ocx.. = C:\WINDOWS\SYSTEM\regsvr32 /s hhctrl.ocx
Registering itircl.dll.. = C:\WINDOWS\SYSTEM\regsvr32 /s itircl.dll
Registering itss.dll.. = C:\WINDOWS\SYSTEM\regsvr32 /s itss.dll
--------------------------------------------------
Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices
LoadPowerProfile = Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
SchedulingAgent = mstask.exe
McAfeeVirusScanService = C:\Program Files\McAfee\McAfee VirusScan\AVSYNMGR.EXE
--------------------------------------------------
Autorun entries in Registry subkeys of:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnceEx
[901]
Register JavaCypt = regsvr32.exe /s C:\WINDOWS\SYSTEM\javacypt.dll
Register JavaPrxy = regsvr32.exe /s C:\WINDOWS\SYSTEM\javaprxy.dll
Register MSAwt = regsvr32.exe /s C:\WINDOWS\SYSTEM\msawt.dll
Register MSJava = regsvr32.exe /s C:\WINDOWS\SYSTEM\msjava.dll
Register VMHelper = regsvr32.exe /s C:\WINDOWS\SYSTEM\vmhelper.dll
InitPKI = regsvr32.exe /s /n /i:u initpki.dll
[902]
Install Class Files = rundll32 C:\WINDOWS\SYSTEM\msjava.dll,JavaPkgMgr_Install C:\WINDOWS\Java\classes\classes.zip,1,5,00,3809,4,286,C:\WINDOWS\Java\classes\classes.cer
Install MSJDBC = rundll32 C:\WINDOWS\SYSTEM\msjava.dll,JavaPkgMgr_Install C:\WINDOWS\Java\classes\msjdbc.zip,1,5,00,3809,4,286,C:\WINDOWS\java\classes\msjdbc.cer
Install Trusted Class Files = rundll32 C:\WINDOWS\SYSTEM\msjava.dll,JavaPkgMgr_Install C:\WINDOWS\Java\trustlib\tclasses.zip,1,5,00,3809,6,286,C:\WINDOWS\java\trustlib\tclasses.cer
Register_JDBGmgr = C:\WINDOWS\SYSTEM\jdbgmgr.exe -regserver
Install WFC Class Files = rundll32 C:\WINDOWS\SYSTEM\msjava.dll,JavaPkgMgr_Install C:\WINDOWS\Java\classes\wfc.zip,1,1,00,8475,6,286,C:\WINDOWS\Java\classes\wfc.cer,,1
[903]
Install Dx3 Class Files = rundll32 C:\WINDOWS\SYSTEM\msjava.dll,JavaPkgMgr_Install C:\WINDOWS\Java\classes\dx3.zip,1,5,00,3809,6,286,C:\WINDOWS\java\classes\dx3.cer
Register DX3J = regsvr32.exe /s C:\WINDOWS\SYSTEM\dx3j.dll
Install XML = rundll32 C:\WINDOWS\SYSTEM\msjava.dll,JavaPkgMgr_Install C:\WINDOWS\Java\classes\xmldso.cab,0,0,0,0,4,282
Install OSP = rundll32 C:\WINDOWS\SYSTEM\msjava.dll,JavaPkgMgr_Install C:\WINDOWS\Java\classes\osp.zip,1,3,99,0101,2,287
--------------------------------------------------
C:\WINDOWS\WININIT.INI listing:
(Created 30/1/2003, 12:15:8)
[Rename]
NUL=C:\WINDOWS\SYSTEM\URLMON.DLL
C:\WINDOWS\SYSTEM\URLMON.DLL=C:\WINDOWS\SYSTEM\SET8081.TMP
NUL=C:\WINDOWS\SYSTEM\MSHTML.DLL
C:\WINDOWS\SYSTEM\MSHTML.DLL=C:\WINDOWS\SYSTEM\SET80A5.TMP
NUL=C:\WINDOWS\SYSTEM\SHDOCVW.DLL
C:\WINDOWS\SYSTEM\SHDOCVW.DLL=C:\WINDOWS\SYSTEM\SET80E5.TMP
C:\WINDOWS\SYSTEM\javacypt.dll=C:\WINDOWS\SYSTEM\javacypt.001
C:\WINDOWS\SYSTEM\msjava.dll=C:\WINDOWS\SYSTEM\msjava.001
C:\WINDOWS\SYSTEM\vmhelper.dll=C:\WINDOWS\SYSTEM\vmhelper.001
C:\WINDOWS\SYSTEM\crypt32.dll=C:\WINDOWS\SYSTEM\crypt32.001
C:\WINDOWS\SYSTEM\schannel.dll=C:\WINDOWS\SYSTEM\schannel.001
C:\WINDOWS\SYSTEM\softpub.dll=C:\WINDOWS\SYSTEM\softpub.001
C:\WINDOWS\SYSTEM\msnp32.dll=C:\WINDOWS\SYSTEM\msnp32.001
C:\WINDOWS\SYSTEM\msnet32.dll=C:\WINDOWS\SYSTEM\msnet32.001
C:\WINDOWS\snmpapi.dll=C:\WINDOWS\snmpapi.002
C:\WINDOWS\SYSTEM\shell32.dll=C:\WINDOWS\SYSTEM\shell32.001
--------------------------------------------------
C:\WINDOWS\WININIT.BAK listing:
(Created 25/12/2002, 17:44:44)
[rename]
NUL=C:\WINDOWS\DELETE.EXE
--------------------------------------------------
C:\AUTOEXEC.BAT listing:
C:\WINDOWS\SYSTEM\sndtune.exe
C:\PROGRA~1\COMMON~1\NETWOR~1\VIRUSS~1\40~1.XX\scan.exe C:\
IF ERRORLEVEL 1 PAUSE
--------------------------------------------------
Enumerating Browser Helper Objects:
(no name) - C:\WINDOWS\DOWNLOADED PROGRAM FILES\BHOPROXY.DLL - {9063D663-ABE1-4777-861B-D68287847784}
--------------------------------------------------
Enumerating Task Scheduler jobs:
Disk Defragmenter.job
Disk Cleanup.job
Maintenance-ScanDisk.job
--------------------------------------------------
Enumerating Download Program Files:
[Shockwave Flash Object]
InProcServer32 = C:\WINDOWS\SYSTEM\MACROMED\FLASH\FLASH.OCX
CODEBASE =
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
[MSN Chat Control 4.0]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\MSNCHAT40.OCX
CODEBASE =
http://sc.communities.msn.com/controls/chat/msnchat4.cab
[SoundCtl Class]
InProcServer32 = C:\WINDOWS\SYSTEM\NPBMCTRL.DLL
CODEBASE =
http://www.buzme.com/ActiveX/NPBMCtrl.cab
[BuzMeSetup Class]
InProcServer32 = C:\WINDOWS\SYSTEM\NPBMAS.DLL
CODEBASE =
http://www.buzme.com/ActiveX/BMAXSetup.cab
[msichat50 Client Control]
InProcServer32 = C:\WINDOWS\DOWNLO~1\MSICHA~1.OCX
CODEBASE =
http://www.ichat.com/custom/nativeclient/msichat.cab
[PWMediaSendControl Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\PWACTIVEXIMGCTL.DLL
CODEBASE =
http://216.249.24.143/code/PWActiveXImgCtl.CAB
[ConnectorLauncherCtrl Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\CONNECTORLAUNCHER.DLL
CODEBASE =
http://task.vividence.com/download/ConnectorLauncher.cab
[RdxIE Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\RDXIE.DLL
CODEBASE =
http://207.188.7.150/23f09b24fe6ef5626400/netzip/RdxIE601.cab
[Symantec RuFSI Registry Information Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\RUFSI.DLL
CODEBASE =
http://security.symantec.com/SSC/SharedContent/common/bin/cabsa.cab
[Symantec AntiVirus scanner]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\AVSNIFF.DLL
CODEBASE =
http://security.symantec.com/SSC/SharedContent/vc/bin/AvSniff.cab
[Update Class]
InProcServer32 = C:\WINDOWS\SYSTEM\IUCTL.DLL
CODEBASE =
http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?37651.3356944444
--------------------------------------------------
End of report, 8,961 bytes
Report generated in 6.465 seconds
Command line options:
/verbose - to add additional info on each section
/complete - to include empty sections and unsuspicious data
/full - to include several rarely-important sections
/force9x - to include Win9x-only startups even if running on WinNT
/forcent - to include WinNT-only startups even if running on Win9x
/forceall - to include all Win9x and WinNT startups, regardless of platform
/history - to list version history only