CWShredder might get the components that persist in reinfecting. Spybot Search and Destroy will get the other ones...
Had something similar happen to someone's machine at work. Couldn't really control the damn thing until I ran 'ROUTE DELETE 0.0.0.0' at a command prompt. That effectively killed TCPIP routing (temporarily -until reboot(s)). Put STINGER and the above 2 programs on the computer via a Netbios Network connection...and successfully got the shit off of the machine.
It took all three. CWShredder found the nuked the way that it re-infected the system.
|