Hi Again Neal
I've sent this to your email but thought Id repost it on here.
First about your questions , Hijack This will not fix things unless you
place a check next to the entries and choose Fix Checked, on some it will
delete the file and registry key for example the 02 BHO entries will do that,
others it will restore the registry to the default settings, the R0 & R1
entries for example will be preset to Microsoft's default, 04 Lines which are
the registry run keys will be deleted but not the file its running so once
the system reboots then the file cannot start as the run key has been
removed, You should get advise if your unsure of anything as Hijack This is
very powerfull and also has afew small bugs where it can display (file
missing) if the file is not found on some entries when the file does exist
but in a different location.
There's only a couple of problems showing in your log,
Copy this to notepad and save it as you will need to close all Browser
windows before fixing these entries.
Goto Add/Remove screen (Start Menu > Control Panel > Add/Remove Programs)
Remove this:
Security Toolbar
Then Run Hijack This and choose system scan, place checks next to these
entries
O2 - BHO: HomepageBHO - {e9ccf15d-4c68-4b5a-9e9a-8e12e4bd39bd} -
C:\WINDOWS\System32\hpB95F.tmp (file missing)
O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - (no file)
O3 - Toolbar: SecurityToolbar - {736b5468-bdad-41be-92d0-22ae2ddf7bcb} -
C:\Program Files\Security Toolbar\Security Toolbar.dll (file missing)
Do you have restrictions placed on your account by a network administrator
or other party? This entry would indicate that, if not check it to be
removed.
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
Have you run Rootkit Revealer on your system as the below entry is possibly
connected to that
O23 - Service: QQYMSUKIY - Unknown owner -
C:\DOCUME~1\Owner\LOCALS~1\Temp\QQYMSUKIY.exe (file missing)
Rootkit Revealer is available here
http://www.sysinternals.com/Utilities/RootkitRevealer.html And installs a
similar service with a random name, The above might be malware related as
Rootkit revealer would have Sysinternals and the site address in the name but
this has Unknown Owner. Fix this entry as the file is missing, its in a
temporary folder so Ccleaner will have removed the file when clearing the
temp folders at some stage.
After checking these entires close all open browser windows except Hijack
This and then press 'Fix Checked'
Remove This folder :
C:\Program Files\Security Toolbar <--This Folder
Finally Run Ccleaner and press "Run Cleaner" to remove temp and unused files
from your system
Then your done !
Please navigate to
http://windowsupdate.microsoft.com and download all the
"critical updates" for Windows. This can patch many of the security holes
through which attackers
can gain access to your computer. Your current version is outdated. You may
need to revisit the site a couple of times after rebooting especially if you
decide to upgrade to Service Pack 2 but if you dont want to install that then
at least make sure you have all the latest updates.
In order to protect yourself against spyware, you should consider installing
the following free program as it doesnt need to be running on your system
and just needs the protection enabling in each area and updating, It will
just add malicious sites to the restricted zone and block known malicious
ActiveX components:
SpywareBlaster
http://www.javacoolsoftware.com/spywareblaster.html
Hopefully this should take care of your problems but let me know if I can
help more
Good luck.
Regards
Andy