i have gone through the step-by-step process for eliminating these virus' found in symantec i have tried using norton symantec to remove this. You will do that later in safe mode.Copy these instructions to notepad and save them to your desktop.

Click OK when prompted to clean filesWith the first file it prompts to clean, select the option: "Perform action on all infections" .Choose clean and click OK.Once finished, click the Save using the following configuration: 1. Go to Tools, Folder Options and click on the View tab. I am currently reviewing your log.

Reply to your first thread. I did a full scan and I followed all the steps to get rid of the two viruses in the symantec site, but that didn't work even in safe mode. It won't clean or delete. The virus initially altered my wallpaper, but now my wallpaper is back to normal.

I cannot even get into the desktop (just shows my background) at all. Make sure to work through the fixes in the exact order its listed.. BUT my AMD 1700 T-Bird now runs like a 286AT system!!.... We also suggest that you Subscribe to this thread to be notified of fixes as soon as they are posted by our Team.

Save the following instructions in Notepad as this webpage would not be available when you're carrying out the fix. * * * * * * ADDITIONAL DOWNLOADS * * * * Click Apply then OK. * Next go to Control Panel > Display. When you click on 'All files and folders' on the left pane, click on the 'More advanced options' at the bottom.

Unzip smitRem.zip to extract the files it contains. I tried following a few different instructions but they didn't help.Norton constantly has a Virus Alert (High Risk) up on my computer because this virus is like reproducing or something. You will need them to refer to in safe mode.Restart your computer into safe mode now. Now click "Apply to all folders", Click "Apply" then "OK"Delete these foldersSTART – RUN – type in %temp% OK - Edit – Select all – File – DeleteDelete everything in the

Do not do anything with it yet. Press the button marked Save Report Save the report .txt file to your desktop or somewhere you can find it.Post it back with your next HJT log. ----------------------------------------------------------------------- Please start by There is a new blue background on my desktop which has the following writing in the centre...Security warningA fatal error in IE has occured at 0028:C0011E36 in VXD VMM(01) +00010E36. here is my HJT Log.Logfile of HijackThis v1.99.1Scan saved at 20:11:11, on 19.07.2005Platform: Windows XP (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 (6.00.2600.0000)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\Programme\Gemeinsame Dateien\Symantec Shared\ccSetMgr.exeC:\Programme\Gemeinsame Dateien\Symantec Shared\SNDSrvc.exeC:\WINDOWS\Explorer.EXEC:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exeC:\WINDOWS\system32\spoolsv.exeC:\Programme\Gemeinsame Dateien\Symantec Shared\ccProxy.exeC:\Programme\Norton Internet

I ran a Symantec Antivirus check and it found that i have a 'Backdoor,Coreflood' threat; folder "C:\WINDOWS\SYSTEM32\ under the file DNSRSLVJ.dll. 2nd virus: Trojan.Desktophijack.C threat, under the same above folder, file: Click on I Agree. Continue with that same procedure until you have copied and pasted all of these in the "Paste Full Path of File to Delete" box. it will not.

Perform the following steps in safe mode:Open the smitRem folder, then double click the RunThis.bat file to start the tool. You will need them to refer to in safe mode.* Restart your computer into safe mode now. Instead of Windows loading as normal, a menu should appear 4.

I recommend c:/program files/HJT/ SHOW HIDDEN FILES AND FOLDERS.

Click "Scan". hi!I have problem with a spyware (i guess).I get a window all the time that says c:\windows\system32\wininet.dll was infected by w32.desktophijack!i tried a million ways but i cannot do anything....if anyone

It infected a file called wininet.dll. Select Safe Mode and then run "Hijack This" ------------------------------------------------------------------ Uninstall the following programs (if they still exist) Go into HijackThis->Config->Misc.Tools->Open Uninstall manager P.S.Guard ----------------------------------------------------------------- Go into HijackThis->Config->Misc.

As you can probably tell I was flying blind. It says as you know by now... My Norton Anti-virus is not deleting it, and i don't know how to get rid of it someone please help!!! Save the file to your desktop.

