
Hey Necro,
Let's see what we can do to get you back up and gaming.
Please make sure that you stay in Safe Mode for the entire fix.
To boot into Safe Mode, continually tap the F8 key during bootup until either a beep sounds, or a menu pops up. Use you arrow keys to navigate to Safe Mode, and hit Enter.
First run CCleaner as per the instructions you followed previously. Then empty your Norton Protected Recycling Bin.
Next run UnhackMe, save the log. Do not fix anything with Unhackme until we see the log.
Next run Spy Sweeper, click on Options, Sweep Options, make sure that all of your harddrives are selected. Under What to Sweep, make sure all options are checked. Click on Sweep, Start. Let it fix everything that it finds. Save the log after the fix (lower left corner).
You have a couple of bad services running, follow these instructions next,
To Stop and Disable a bad Added Service;
Click Start,Run and type in: services.msc
Click OK
In the Services window find:
Msdn Update 32
Select/highlight, right click the entry, and choose: Properties
On the General tab, under Service Status, click the Stop button
Beside: Startup Type, in the drop menu, select: Disabled
Click Apply, then OK
Repeat with
System Messenger Service
Open
HJT and click Config, Misc Tools, ?delete an NT service?
Copy and past:
msdnupdate32 Click OK.
Repeat with
WINSMSC
Now run HijackThis, and fix the following if still there, delete the items in
Bold afterward;
R3 - Default URLSearchHook is missing
O4 - HKLM\..\Run: [Microsoft Storage Bin] msbin.exe (you will need to do a search for this file)
O4 - HKLM\..\RunServices: [Microsoft Storage Bin] msbin.exe
O4 - HKCU\..\Run: [Microsoft Storage Bin] msbin.exe
O23 - Service: Msdn Update 32 (msdnupdate32) - Unknown owner - C:\WINNT\msdnupdate32 (file missing)
O23 - Service: System Messenger Service (WINSMSC) - Unknown owner - C:\WINNT\smsc.exe (file missing)
Next run CCleaner again, reboot into normal mode. Run
HJT again and post the new log along with the logs from Unhackme and Spy Sweeper.
Looking forward to your reply,
TTFN
LGW