OK Did another scan with MBAM and it's all been cleared hopefully
1 C:\WINDOWS\system32\H8SRTlktxocogmj.dll (Trojan.FakeAlert) -> Quarantined and deleted successfully.
2 C:\WINDOWS\system32\vmoyadf.dll (Worm.Autorun) -> Delete on reboot.
3 C:\Documents and Settings\All Users\Application Data\sysReserve.ini (Malware.Trace) -> Quarantined and deleted
4 C:\WINDOWS\system32\H8SRTrdqpsbiyou.dat (Rootkit.TDSS) -> Quarantined and deleted successfully.
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL\CheckedValue (Hijack.System.Hidden) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.
My problem is, I'm sure I deleted 1(fakealert) and 4(TDSS) in the past.
And the websites being blocked was fixed last week by scanning only to reappear today.
So that's why I panicked, because it's like I didn't completely removing them.
hopefully it's all clear now
Edited by alicia37, 04 February 2010 - 07:27 AM.