I need help.......

I have a computer on my bench (CEOs Home machine) which was running on the internet with NO updated av ...

Has P2P sharing kazaa.etc etc


I have cleaned it....user runs norton internet security 2005....which WILL NOT run in safe mode

Ran hijack this....and have 2 concerns

one is windupdates...keeps coming back...have found some stuff on google which I am going back to read

and this also concerns me....

O17 - HKLM\System\CCS\Services\Tcpip\..\{9045444D-CF5C-4021-8E33-7DDC9D952B42}: NameServer = 192.168.0.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{9045444D-CF5C-4021-8E33-7DDC9D952B42}: NameServer = 192.168.0.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{9045444D-CF5C-4021-8E33-7DDC9D952B42}: NameServer = 192.168.0.1

The above address is the gateway in use


Thought I would just post and see if I can get any tips.....of to do some reasearch

Yes I have disabled sysrestore, updated antispyware, av etc

Scanned with what ever will run in safe mode\and reg mode....am going to do an online scan now..

I am curious about these entries...any insight is greatly appreciated

MLF

PS

If I dont get back to you right away...its cause I have a meeting...should be done in 1-2 hours

Accounting stuff.........oh joy