MalwareBytes, SuperAntiSpyware and ComboFix should be run in normal mode, unless the computer boots only in safe mode.
I've seen the HijackThis log and it looks normal except for 1 file:
C:\WINDOWS\System32\NILaun
Can you upload this file onto www.virustotal.com for a scan?
Can you try the boot scan mode of Avast once and let us know, what you find? http://www.techiecorner.co
It would be useful to have the ComboFix log.
Main Topics
Browse All Topics





by: PriceDPosted on 2009-08-28 at 15:56:49ID: 25212151
Rootkit
trendmicro.com go to feetools and download the Rootkit buster, removed the rootkits. After the reboot, use Malwarebytes to remove the other infected files.
http://free.antivirus.com/