0 Members and 1 Guest are viewing this topic.
HERE is the online analyses of the log. And this is what my analyzer says about it:--------------------------------------------------------------------------------CHECKING HIJACKTHIS AND INTERNET EXPLORER :--------------------------------------------------------------------------------You are using the latest version of HijackThis.Old version of Internet Explorer detected, please update.INMEDIATLY visit http://windowsupdate.microsoft.com and install ALL security patches/updates.No software firewall detected. If you are not using ahardware firewall, it is highly recommended to install one. --------------------------------------------------------------------------------THESE ITEMS ARE HARMFULL AND SHOULD BE FIXED/REMOVED :--------------------------------------------------------------------------------\program files\web_rebates\webrebates1.exe\program files\web_rebates\webrebates0.exer3 - default urlsearchhook is missingo2 - bho: clear search - {00000000-0000-0000-0000-000000000240} - c:\program files\clearsearch\ie_clrsch.dll (file missing)o2 - bho: (no name) - {bdf3e430-b101-42ad-a544-fadc6b084872} - (no file)o3 - toolbar: (no name) - {42cdd1bf-3ffb-4238-8ad1-7859df00b1d6} - (no file)o4 - hklm\..\run: [webrebates0] "c:\program files\web_rebates\webrebates0.exe"o4 - global startup: microsoft works calendar reminders.lnk = ?o9 - extra button: messenger - {4528bbe0-4e08-11d5-ad55-00010333d0ad} - c:\program files\yahoo!\messenger\yhexbmes0411.dll (file missing)\program files\yahoo!\messenger\yhexbmes0411.dll (file missing)o9 - extra button: messenger - {fb5f1910-f110-11d2-bb9e-00c04f795683} - c:\program files\messenger\msmsgs.exe (file missing)o9 - extra 'tools' menuitem: windows messenger - {fb5f1910-f110-11d2-bb9e-00c04f795683} - c:\program files\messenger\msmsgs.exe (file missing)o16 - dpf: yahoo! chat - http://cs7.chat.yahoo.com/c381/chat.cabo16 - dpf: {01020304-0506-0708-090a-0b0c0d0e0f08} - http://messenger.yahoo.com/maintenance/patch.cabo16 - dpf: {11260943-421b-11d0-8eac-0000c07d88cf} (ipix activex control) - http://www.ipix.com/viewers/ipixx.cabo16 - dpf: {15ad4789-cdb4-47e1-a9da-992ee8e6bad6} - http://public.windupdates.com/get_file.php?bt=ie&p=48c347740e8f5c90be38175e52b8a764f9088180cf867b07efef0da67587cbcfe07d5eda93b070b3e1f5f4b23f7ec81a88639e10093bff8917f19d0c3b2daa1576:9088c9d39de8432b43b6edf749c9050f o16 - dpf: {1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} - http://ak.imgfarm.com/images/nocache/funwebproducts/smileycentralinitialsetup1.0.0.6.cab o16 - dpf: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (yinststarter class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yinst0401.cab o16 - dpf: {40c83af8-fea7-4a6a-a470-431ee84a0886} (secureobjectfactory class) - http://enu.vs.mcafeeasap.com/vs2/bin/mycioagt.cabo16 - dpf: {49dec3c0-c71a-11d4-ba38-000102621b9b} - http://store.yahoo.net/lib/cursorskins1/mousemagiccs.cabo16 - dpf: {644e432f-49d3-41a1-8dd5-e099162eeec5} (symantec rufsi utility class) - http://security.symantec.com/sscv6/sharedcontent/common/bin/cabsa.cabo16 - dpf: {74d05d43-3236-11d4-bdcd-00c04f9a3b61} (housecall control) - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cabo16 - dpf: {8714912e-380d-11d5-b8aa-00d0b78f3d48} (yahoo! webcam upload wrapper) - http://chat.yahoo.com/cab/yuplapp.cabo16 - dpf: {a17e30c4-a9ba-11d4-8673-60db54c10000} (yahooymailto class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yse/ymmapi_416.dllo16 - dpf: {c2fcef52-ace9-11d3-bebd-00105aa9b6ae} (symantec rufsi registry information class) - http://security.symantec.com/ssc/sharedcontent/common/bin/cabsa.cabo16 - dpf: {ce28d5d2-60cf-4c7d-9fe8-0f47a3308078} (activedatainfo class) - https://www-secure.symantec.com/techsupp/activedata/symadata.cabo16 - dpf: {e77c0d62-882a-456f-ad8f-7c6c9569b8c7} (activedataobj class) - https://www-secure.symantec.com/techsupp/activedata/activedata.cabo16 - dpf: {ef99bd32-c1fb-11d2-892f-0090271d4f88} (yahoo! companion) - http://us.dl1.yimg.com/download.yahoo.com/dl/toolbar/ym/yiebio5_0_2_7.cabo16 - dpf: {f58e1cef-a068-4c15-ba5e-587caf3ee8c6} (msn chat control 4.5) - http://chat.msn.com/bin/msnchat45.cab
Almost right, it should be:start > run > cmd > (on the command prompt) sfc /scannow