Hi There
)
The problem is that Nameshifter doesnt give us any info
on what this really is, Id guess its Qoologic Trojan, You
will have to boot into safe mode for this and download
some other scanners.
Please download, install and update the free version of
Ewido trojan scanner:
http://www.ewido.net/en/download/
When installing, under "Additional Options"
uncheck "Install background guard" and "Install scan via
context menu".
From the main ewido screen, click on update in the left
menu, then click the Start update button.
After the update finishes (the status bar at the bottom
will display "Update successful").
Exit Ewido DO NOT SCAN yet
Please download CCleaner,
http://www.ccleaner.com/ccdownload.asp
Install it but do not run it yet.
Boot into safe mode:
Restart your computer and as soon as it starts booting up
again continuously tap F8.
A menu should come up where you will be given the option
to enter Safe Mode.
Run ewido, click on the Scanner button in the left menu,
then click on the Complete scan.
If ewido finds anything, it will pop up a notification.
You can select "Remove" and check the boxes "Perform
action with all infections" and "Create encrypted backup"
before clicking on OK.
When the scan finishes, there will be some options at the
bottom of the screen, click on "Save Report". This will
create a text file, save that to your desktop incase we
need it later
Run MS Antispy on a full scan and remove anything found
Run Ccleaner and press "Run Cleaner"
Reboot back to Normal mode.
If the problem is still there can you goto start menu
then C:/drive and goto ProgramFiles check here for a
random named folder (You dont need to do this if MS
Antispy is showing where the Nameshifter file is) I
suspect it will abit like this :
c:\program files\vvywezgvt\czpcuzgbn.exe
This is just a example so your's will be different
Goto a Malware scan site once you know where the file
location is on your system:
http://virusscan.jotti.org/
Press Browse on the above site and then find the .exe
file and then press submit and copy the results back here
and the ewido scan log
Good Luck
Andy