First
Read: Only use these HJT-instructions when asked!
/P/ Process needs to be stopped
/S/ Service needs to be stopped
The text between the dotted lines underneath goes between the dotted lines of that post.
Make sure to follow
ALL instructions
in SEQUENCE, and in HiJackThis tick/fix
ALL lines!
...................................................................................................
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://g.msn.com/0SEENUS/SAOS01
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
O4 - Global Startup: PGPtray.lnk = ?
Fix ALL your O16 - DPF: entries
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Apache2 - Unknown owner - D:\Apache\Apache2\bin\Apache.exe" -k runservice (file missing)
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
/P/S/ O23 - Service: XSYFMH - Sysinternals -
www.sysinternals.com - C:\DOCUME~1\Admin\LOCALS~1\Temp\XSYFMH.exe
...................................................................................................
Follow ALL instructions!