We're almosr there...
Let's continue on with the fix...
-
Be sure to look this solution over before you begin. There are a some item(s) i'm not familar with. If you recognze any, then just omit them from this fix.
===============
Download the
Backdoor Agent cleanup utility from
Symantec and follow the instructions on their page.
===============
Run
HiJackThis and click "
Scan", then check(tick) the following, if present:
R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - (no file)
O2 - BHO: (no name) - {193244C2-5DC8-947D-0358-20C5A4B97B9E} - C:\DOCUME~1\Bonitta\APPLIC~1\LIVEBA~1\windowheart. exe
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusear...?p=ZNxuk100YYUS
Now, with all windows closed except
HiJackThis, click "
Fix checked".
===============
Locate and
delete the following item(s), if present. Make sure your able to view system and hidden files/ folders:
folders...
C:\Program Files\MessengerPlus! 3
-
Note that some of these file(s) may or may not be present. If present, and cannot be deleted because they're '
in use', try deleting them from "
Safe Mode".
===============
Post back a new log, and let us know how everything goes.