Start Killbox and place a tick next to [x]delete on reboot.
Copy this list into the windows clipboard:
C:\WINDOWS\system32\ecesq.dll
C:\WINDOWS\system32\t3odm.dll
C:\WINDOWS\system32\t5rdv.dll
Back in Killbox go > file > paste from clipboard,
Click the red highlighted X button and say yes to the prompt, then click OK.
Exit Killbox and restart your PC.
Copy the contents of Code box below to a notepad file. Save it to Desktop named Fixreg.reg and in the "save as" type box choose "all files".
Code:
REGEDIT4
[-HKEY_CLASSES_ROOT\CLSID\{incert csdl here}]
[-HKEY_CLASSES_ROOT\CLSID\{6EC11407-5B2E-4E25-8BDF-77445B52AB37}]
[-HKEY_CLASSES_ROOT\Folder\shellex\ColumnHandlers\{6EC11407-5B2E-4E25-8BDF-77445B52AB37}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WebNexus]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{9E248641-0E24-4DDB-9A1F-705087832AD6}]
And then please post a new Rkfiles and findqoologic log.
Again , Please Do Not reboot youre pc until I reply back.
And just to check to make sure , i keep leaving one file since im 99.9% sure it is a false positive. Can you upload this file to these sites and report back if they find anything?
C:\WINDOWS\system32\dfrg.msc
http://virusscan.jotti.org/
http://www.virustotal.com/flash/index_en.html

























Linear Mode
