A red dot shows which drives have been chosen.Click the green arrow at the right, and the scan will start.Click 'Yes to all' if it asks if you want to cure/move Click here to join today! HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\cpm27014045 (Trojan.Vundo.H) -> Quarantined and deleted successfully. It is dangerous and incorrect to assume that because this malware has been removed the computer is now secure. http://pcialliance.org/hjt-log/hjt-log-backfoor-cfb-trojan.html

Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explanation about the tool. C:\WINDOWS\system32\ahtn.htm (Trojan.FakeAlert) -> Quarantined and deleted successfully. Folders Infected: (No malicious items detected) Files Infected: C:\WINDOWS\system32\dizupiva.exe (Trojan.Vundo) -> Quarantined and deleted successfully.

O4 - Global Startup: InterVideo WinCinema Manager.lnk.disabled O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm O8 Click Yes at the Delete on Reboot prompt. C:\Documents and Settings\MICHAEL\Application Data\Ypok\guyci.exe (Trojan.ZbotR.Gen) -> Quarantined and deleted successfully. You are viewing our forum as a guest.

OK, looks like everything is looking good, except of course you are way out of date with your OS patches, I strongly suggest you go and update Save it to your desktop. Click OK at any PendingFileRenameOperations prompt (and please let me know if you receive this message!).If your computer does not restart automatically, please restart it manually.If you receive a message such

C:\WINDOWS\system32\UACvmllkokm.dat (Trojan.Agent) -> Quarantined and deleted successfully. You can do this by restarting your computer and continually tapping F8 until a menu appears. Edited by LS CalamityJane, 11 December 2008 - 10:14 PM. You will save a life that would otherwise be lost!

Also, my desktop background was removed. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\dslcnnct (Trojan.Vundo) -> Quarantined and deleted successfully. Here is a link which describes how security apps work with WIN XP machines. http://pcialliance.org/hjt-log/hjt-log-fake-alert-b-trojan.html Open the SmitfraudFix folder and double-click smitfraudfix.cmd Select option #1 - Search by typing 1 and press "Enter"; a text file will appear, which lists infected files (if present).

I would ask that you instead consider donating the greatest gift - Organ Donation. C:\WINDOWS\system32\enpql1751.dllInfected! thanks in advance!

Index.dat Suite Also, delete all your cookies, and empty your recycle bin.

You have a nasty infection here. Trojan.Dropper? Use IE-SPYADs below. Staff Online Now Admin.

You can post each user account here into this thread, but please, do only one at a time to avoid confusion.