Download and install Malwarebytes Anti-malware update it and run it. if it wont let you run it or update it, then restart your PC into safe mode with networking ( pressing F8 During startup will display the safe mode menu ) , then run the software and perform a full scan. When the full scan is complete, follow the onscreen instructions to remove the nasties and then restart your PC, Do another scan just to make sure its all gone. Good Hunting.
I ran into a situation with the wife's machine were save mode rebooted, probably due to a hook it still had in safe mode (I should have looked that one up). But what shouldn't be running was pretty obvious. So I stopped and deleted what I could, and I then had the system delete what I couldn't at startup.
AVG scanned and couldn't find a thing wrong with it. She used TrendMicro's Housecall, which found a few things, but still didn't see any issues with what was actually running.
After I did what I could, login, and as soon as you were logged on, you got logged out. Didn't matter who you were, even Administrator.
It's been two years. I booted ERD, copied everything I needed to my personal machine, and reinstalled XP (She hates Vista and won't try Win 7). I then spent today installing Office 2003 (it's what her work uses), finding out that my media was bad. Ouch. Firefox (she was already running that...) And her two games, Hoyle and Bejeweled. She can figure out the rest herself.
Second time she's been hit like this. Last time was a proxy that injected itself into Google via Firefox (IE wasn't affected!). Some googling led me to a suspicious file, same name as another file actually needed in Windows, but in the wrong directory. Removed that sucker, and she was fine again. That time.
Posted by: Bryan Price | January 01, 2010 at 06:59 PM