Rick,
went to :
See
http://rickrogers.org/fixes.htm#trojan > for assistance in removing them.
it tells me to restart in safe mode, which I did and to start a search for
the files, neither of which were found. Then it says to click start/run, type
regedit and click ok. Expand the plus (+) sign s to these keys , one at a
time:
HKEY_CURRENT_USER\Software\Microsoft\Windows\currentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg
Look in the right hand pane for the string or strings that load that file.
Delete just those strings that contain the reference. Do not delete other
strings or the keys from the left pane. Close the registry editor wehn
completed, make sure you check all strings.
2 things, when I do what they say I get this:
HKEY_CLASSES_ROOT which has ab (default) REG_SZ and value not set
HKEY_CURRENT_USER which has ab (default) REG_SZ and value not set
and ab PerfectFit Logical REG_SZ
and "x<>|
HKEY_LOCAL_MACHINE which has ab (default) REG_SZ and value not set
the ab (default)... is the name type and data I guess of the string in the
right pane.
not sure either what reference they are talking about, I believe since I was
looking for the files yrvogi and voxmdkz, they meant any ref to them. Since I
am somewhat computer illit. and need baby steps I did not change anything.
Please HELP.
thanks