Hi there, I have found my PC infected with what Avira calls the "w32/patched.ua" virus. Here is what happened: I noticed on the packaging of a mircrowave burger, the company website with some promotion going on, so I loaded up FireFox and went to the site. Within three seconds Avira notified me that services.exe (c:\windows\system32) was a virus, w32/patched.ua. I closed out of the site, and tried to stop the services.exe which resulted in my PC rebooting after one minute. Once I was booted back into Windows, again services.exe reported as w32/patched.ua. Avira also started reporting that two files in c:\windows\installers were virus as well, but Avira was able to delete them. However, eventually they kept reappearing or being remade (by the virus, I guess). As there was no way to deal with services.exe (it could not be deleted or closed), and that this is the first time I actually got a virus, I panicked and unplugged the net. Then I rebooted into windows repair, opened a command prompt and deleted services.exe (from c:\windows\system32). I then copied the services.exe from another win7 x64 sp1 install into the system32 folder. On reboot everything is fine, services.exe is not being reported as a virus, and several Avira full scans on my pc have come up clean too. However, I am paranoid that something is hiding on my PC, is there any way to verify that I have completely cleaned my PC? Thanks for any help!