Pls help with HJT log

Status
Not open for further replies.

ndspaceman

Posts: 18   +0
Having major problems with family member's PC. Pls help with this Hijack log.
Thanks.
 

Attachments

  • hijackthis.txt
    6.5 KB · Views: 5
No visible infections, just cosmetics.

Boot in Safe Mode, see how here.
Next, run a HJT scan and (if still there) place a tick-mark in the little square before:

...................................................................................................
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
O16 - DPF: {0E8D0700-75DF-11D3-8B4A-0008C7450C4A} (DjVuCtl Class) - http://www.lizardtech.com/download/files/win/djvuplugin/en_US/DjVuControl_en_US.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab
Unless this is your ISP: CTIHK, City Telecom (H.K.) Ltd., Internet Service Provider in Hong Kong, FIX this O17:
O17 - HKLM\System\CCS\Services\Tcpip\..\{44519AD4-1456-4590-BA32-2257F5878870}: NameServer = 203.80.96.10,202.80.96.9
...................................................................................................
Now click on the Fix Checked button in HJT. Exit HJT.

Delete all files and directories from: C:\Documents and Settings\[username]\Local Settings\Temp
Repeat this for ALL [usernames].
Rightclick IE on the desktop, select Properties, click on Delete Cookies, and Delete Files.
Delete ALL files and directories from: C:\WINDOWS\Temp (except files dated from TODAY).
XP/ME only: Delete ALL files from C:\WINDOWS\Prefetch.
Boot normal.
 
Status
Not open for further replies.
Back