Please help, virus changed settings in display properties and startup regedit

Status
Not open for further replies.

Brewhaha

Posts: 9   +0
Thanks in advance,
Have run multiple scans and such had the problem fixed then it has reemerged. Still hidden in "my theme" on display properties and regedit startup, though they are dissabled.

Ran Kaspersky:
KASPERSKY ONLINE SCANNER 7 REPORT
Tuesday, September 2, 2008
Operating System: Microsoft Windows XP Professional Service Pack 2 (build 2600)
Kaspersky Online Scanner 7 version: 7.0.25.0
Program database last update: Monday, September 01, 2008 20:59:26
Records in database: 1175122


Scan settings
Scan using the following database extended
Scan archives yes
Scan mail databases yes

Scan area My Computer
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\

Scan statistics
Files scanned 244164
Threat name 5
Infected objects 6
Suspicious objects 7
Duration of the scan 04:19:19

File name Threat name Threats count
C:\Documents and Settings\HP_Administrator\.housecall6.6\Quarantine\wowfx.dll.bac_a01264 Infected: Trojan.Win32.Agent.aawu 1

C:\Documents and Settings\HP_Administrator\Desktop\SmitfraudFix\Reboot.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f 1

C:\Documents and Settings\HP_Administrator\Desktop\SmitfraudFix.exe Infected: not-a-virus:RiskTool.Win32.Reboot.f 1

C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Microsoft\Outlook\archive.pst Suspicious: Trojan-Spy.HTML.Fraud.gen 3

C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Microsoft\Outlook\Copy of Outlook.pst Infected: Trojan-Spy.HTML.Bankfraud.ci 2

C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst Suspicious: Trojan-Spy.HTML.Fraud.gen 4

C:\Program Files\Online Services\AOL90US\comps\toolbar\toolbr.EXE Infected: not-a-virus:AdWare.Win32.SearchIt.t 1
And here is my HJT log:
 
Status
Not open for further replies.
Back