similiar to this but slightly differant: http://www.bleepingcomputer.com/forums/t/251745/please-i-have-braviaxexe-pc-antispyware-2010/
What i've done so far:
My dad's computer has been infected with a virus/rootkit or trojan. Probably all 3. He immediatelly shut down the computer but it was too late. On subsequent boot, after loading into windows i noticed the following. A crapload of popups for a program called PC_Antispyware 2010 that tried to scan the computer, also braxia.exe was in my task manager. It wouldn't let me do anything so i ended the both processes. Then avast antivirus scan asked me to delete braxia but couldn't so it said that i needed to do a Avast BootTime Scan so i went ahead and did that. Its currently running and so far its found the following. some of which i deleted and others which i moved to the chest. I need further assistance in making sure the computer is completely virus/malware free and rootkit free. First scan is complete but its running another one. so i'll update this with whatever else it finds. thanks for the help.
ALSO I'm using another computer to type this.
It found the following which i deleted!
2bti.exe - win32:rootkit-gen
DLLNC.dll - win32:Trojan-gen
KoPb.exe - Win32:trojan-gen
mshtml2.exe [UPX] - Win32-Agent-YTZ (TRJ)
msiexec.exe - Win32: Agent-VDE [TRJ]
c3w3clab/in.html - JS:Obfuscated-cv [trj]
C:/programfiles/pc_antispyware2010/wscui.cpl - win32
Found a couple files in my system restore folder which i moved to the chest or deleted
Found the following which i moved to chest(quarantine)
C:/windows/sytem32/000020.exe - win32:Trojan-gen
C:/Windows/system32/000090.exe - win32:crypt-CIL (TRJ)
C:Windows/system32/dllcache/beep.sys is infelected by Win32:FakeAV-No[Rtk]
C:Windows/system32/dllcache/figaro.sys is infelected by Win32:FakeAV-No[Rtk]
C:/windows/sytem32/imeshere.dIl is infected by win32:Trojan-gen
UPDATE: scan was complete, got back onto windows only for it to find another virus. Again Avast is making me run a bootTime Scan.There are two user privalages on the computer ( 1 being my account which is given full rights, and my fathers which is limited(thats where he got he virus using his account). Seems like both are infected though. I'll be posting the actual scan log very soon. Can someone please help. thank you.