im using an acer aspire laptop, windows xp pro
internet explorer / alternate firefox
EDIT:
I'm reading where a lot of ppl are having the same problem with the same malware. i found a thread (http://www.bleepingcomputer.com/forums/topic291498.html) with some steps to take and am going to go thru the steps advised (updating and running mbam and downloading and running atf and sas). i should be ble to do it in regular boot mode unless my comp goes haywire again. i will post results at the very end of post.
am i on the right track? if someone has other advice on some of the other issues below, in case they're not related, or im barking up the wrong tree, please let me know. thanks :D now on with the original message...
END OF EDIT.
after realising i had the antivirus malware i was able to get online with my alternate browser and followed your guide. the following problems occured.
i was able to download and run rkil but it found nothing in safe mode. i had to boot normally and run it before antivirus soft initiated startup. it found the similar files that you listed in your guide and i was able to remove them with killbox, but when i ran malwarebytes-anti malware, it found none of the files, no infections, nothing.
here are the files found by rkill.
C:\WINDOWS\system32\igfxsrvc.exe,
C:\WINDOWS\system32\ntvdm.exe,
C:\DOCUME~1\user\LOCALS~1\Temp\RtkBtMnt.exe
C:\DOCUME~1\USER\MYDOCU~1\RKILL.COM
(this last one is the rkill program itself, correct? is this normal?)
One of my questions is, are these files related to antivirus soft? if so can i delete them safely with killbox?
my computer is freezing up constantly, mouse function frozen (yes i've made sure it was turned on), can't do control alt delete/escape, only hard boot works. sometimes the boot gets stuck in a loop and at the desktop (sometimes after about a minute or so after destop loads, sometimes right away) a blue screen full of writing appears and it goes back into reboot. the screen only flashes so i can't read anything but the top line which says something to the effect that a problem has been detected..
sometimes after beginning to boot, it just goes to a black screen.
ive had it freeze up loading in safe mode also when all the info is still running across the screen, just locks up right in the middle of it all.
it freezes all the time in various ways you see

after rebooting several times it will usually work for awhile before freezing up again. it seems to do it more often than not if i leave it sitting idle for even a minute or two. im not movig the machine around alot or bumping it, but it does move somewhat.. it is a laptop.
also 9 times out of 10 my wireless conection is showing an issue, so i try and repair the connnection (right click on repair on toolbar icon) and it says it was unable to, but then it will start working again on its own. not sure if its related to my problem.
please help

RESULTS: ran updated mbam, atf, and sas in regular boot mode. mbam found 1 trojan, the others found several issues, all were repaired or deleted.
so far laptop is not freezing so i haven't had any reboot issues because i haven't had to reboot. i'm still skeptical tho. rkill is still finding the files listed below.
C:\WINDOWS\system32\ntvdm.exe,
C:\DOCUME~1\user\LOCALS~1\Temp\RtkBtMnt.exe
C:\DOCUME~1\USER\MYDOCU~1\RKILL.COM
additional problem: when doing a browser search (google, yahoo, bing), instead of pop-ups, my browser redirects to different kinds of advertisements or offers (full pages). sometimes when hitting the back button, it won't let me navigate away from the page, and sometime it goes to the originally intended search page, so there's obviously still a problem, so I still need help.
Edited by angicx, 10 February 2010 - 05:01 PM.