C:\Documents and Settings\default\Local Settings\Temp\asd8B.tmp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully. You can download that and search through it's database for known ActiveX objects. HijackThis introduced, in version 1.98.2, a method to have Windows delete the file as it boots up, before the file has the chance to load.

RunOnce keys: HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce The RunServices keys are used to launch a service or background process whenever a user, or all users, logs on to the computer. If a Hijacker changes the information in that file, then you will get re infected when you reset that setting, as it will read the incorrect information from the iereset.inf file. C:\Documents and Settings\default\Local Settings\Temp\asd99.tmp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.

C:\Documents and Settings\default\Local Settings\Temp\fiu2.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.

When you fix O16 entries, HijackThis will attempt to delete them from your hard drive. If you click on that button you will see a new screen similar to Figure 10 below. It found multitudes of things: viruses, Trojans, malware, spyware, cookies.

C:\Documents and Settings\default\Local Settings\Temp\asd97.tmp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.

If you look in your Internet Options for Internet Explorer you will see an Advanced Options tab. When working on HijackThis logs it is not advised to use HijackThis to fix entries in a person's log when the user has multiple accounts logged in. How to use the Delete on Reboot tool At times you may find a file that stubbornly refuses to be deleted by conventional means.