Hi
Make sure you have already run Adaware, Spybot S & D(check for updates) as these will do a preliminary clean first.Some files below may not be present after running the above programs.
Then....
Close your browser window and run hjt in safe mode...
HOW TO RUN SAFE MODE and have "Hijack This" fix the following by placing a check in the appropriate boxes and selecting "fix checked".
Folders that have been
highlighted in RED will need to be uninstalled.
Check first as some folders maybe uninstalled via the Add/Remove program. Files
highlighted in BLACK will need to be removed from your hard drive. Make sure to have your system set to show hidden files and folders..
HOW TO SHOW FILES ..Please post a new log when finished...
R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINNT\about.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyServer = 200.49.86.68:8080
R3 - URLSearchHook: (no name) - _{00D6A7E7-4A97-456f-848A-3B75BF7554D7} - (no file)
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
F2 - REG:system.ini: Shell=Explorer.exe C:\WINNT\system32\fservice.exe
O2 - BHO: (no name) - {0000607D-D204-42C7-8E46-216055BF9918} - (no file)
O2 - BHO: SetupHtml Class - {51641EF3-8A7A-4D84-8659-B0911E947CC8} - C:\WINNT\DOWNLO~1\DOWNLO~1.DLL
O3 - Toolbar: (no name) - {C4CA6559-2CF1-48B6-96B2-8340A06FD129} - (no file)
O4 - HKLM\..\Run: [ypxocl] C:\WINNT\system32\
uclacrl.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\
Messenger Plus! 3\MsgPlus.exe"
O4 - HKCU\..\Run: [SpyKiller] C:\Program Files\
SpyKiller\spykiller.exe /startup
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe" /WinStart
You did not say what your problem was !!! I have inclueded SpyKiller as it tends to do more spying than killing...its a scam.