...Mal_Run-4(Note: %Program Files% Try not.

Once a virus such as MAL_OTORUN1 gains entry into your computer, the symptoms of infection can vary depending on the type of virus. uInternet Settings,ProxyOverride = *.local uInternet Settings,ProxyServer = actsvr.comcast:8100 Trusted Zone: internet Handler: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - c:\program files\Trend Micro\TrendSecure\TISProToolbar\TSToolbar.dll . . ------- File Associations ------- . Do...

I'm awaiting word on that right now.

C:\Program Files\WinAntiSpyware 2007(2)\AsAgents.xml (Rogue.WinAntiSpyware) -> Quarantined and deleted successfully. Save it to your Desktop. I did a system restore from the day before and that resolved that issue. But they may be useful tools to keep We will now confirm that your hidden files are set to that, as some of the tools I use will change thatClick Start.

Here's the log. ChewyNo. button.Copy everything in the Results window (under the green bar) to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy), and Back to top #3 hotwire2253 hotwire2253 Topic Starter Members 11 posts OFFLINE Local time:11:17 PM Posted 02 April 2009 - 10:12 PM thanks for the help, I did everything step

To clean your registry using CCleaner, please perform the following tasks: Step 1 Click https://www.piriform.com/ccleaner to access the download page of CCleaner and click the Free Download button to download CCleaner. To get rid of MAL_OTORUN1, the first step is to install it, scan your computer, and remove the threat. C:\Program Files\WinAntiSpyware 2007(2)\database(2)\vbpv.dat (Rogue.WinAntiSpyware) -> Quarantined and deleted successfully. Detailed analysis will be done on submitted samples, and corresponding removal instructions will be provided, if necessary.

C:\Windows\System32\jesterss.dll moved successfully. Click "OK".Make sure everything has a checkmark next to it and click "Next".A notification will appear that "Quarantine and Removal is Complete". Several functions may not work. The dropped AUTORUN.INF is detected by Trend Micro as Mal_Otorun1.

...its dropped

Also, have her do this please: Open HijackThis and click on "Config" and then on the "Misc Tools" button. MAL_OTORUN1 can gain entry onto your computer in several ways. As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. I believe the virus is still around I triend running all antivirus programs but it can't find it.