Hi. My cousin lives in Russia and we talk almost everyday online. Everything was fine on his computer until 1 week ago, when his roomate used the computer for 4 hours, without permission. Afterwards, the computer slowed to a crawl and my cousin was not able to open folders or programs. We bypassed his startup programs in msconfig. We then ran Adaware and Spybot. Adaware found the usual cookies and Spybot came up only with that DOExploit (which I think is simply a misread in Spybot). We ran Trendmicro Housecall and the first time, it found 10 virus'. It seemed to get it down to 2, but the computer was still not running well (very slow and closing windows). We ran it again in safemode, and it found only 3, and said it removed 2. The one that consistantly came up and not removed was "Chophar.a" The other day, we ran Panda Activescan and also ran HJT. I am enclosing both logs in hopes that someone can help get this clean again. The reason why I am posting for my cousin is that his english is not great and he would never understand many of the fixes provided here. Thank you.