i ran an Ewido scan in safe mode and saved the log, then restarted my computer.

Afterwards i was unable to view any of my desktop items or folders, i can only see them in task manager mode. Hijack this log: Logfile of Hijack This v1.99.1Scan saved at PM, on 5/27/2005Platform: Windows XP (Win NT 5.01.2600)MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)Running processes: C:\WINDOWS\System32\C:\WINDOWS\system32\C:\WINDOWS\system32\C:\WINDOWS\system32\C:\WINDOWS\system32\C:\WINDOWS\System32\C:\WINDOWS\system32\C:\Program Files\ewido\security suite\C:\Program Files\ewido\security suite\C:\WINDOWS\System32\C:\WINDOWS\System32\C:\WINDOWS\System32\C:\Program Files\Netscape\Netscape\C:\Program Files\hijackthis\Hijack R1 - HKCU\Software\Microsoft\Internet Explorer\Main, Search Bar = - HKCU\Software\Microsoft\Internet Explorer\Main, Search Page =

prd=ie&ar=iesearch R1 - HKLM\Software\Microsoft\Internet Explorer\Main, Search Assistant = - HKLM\Software\Microsoft\Internet Explorer\Main, Customize Search = - HKLM\Software\Microsoft\Internet Explorer\Main, Search Bar = - HKLM\Software\Microsoft\Internet Explorer\Main, Search Page =

prd=ie&ar=iesearch R0 - HKLM\Software\Microsoft\Internet Explorer\Main, Start Page = B_PVER}&ar=home R1 - HKCU\Software\Microsoft\Internet Explorer\Search URL,(Default) = - HKCU\Software\Microsoft\Internet Explorer\Toolbar, Links Folder Name = N3 - Netscape 7: user_pref("browser.startup.homepage", "yahoo.com"); (C:\Documents and Settings\kirk\Application Data\Mozilla\Profiles\default\4ztaknsy.slt\prefs.js)N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C:\Program Files\Netscape\Netscape\searchplugins\SBWeb_01.src"); (C:\Documents and Settings\kirk\Application Data\Mozilla\Profiles\default\4ztaknsy.slt\prefs.js)O2 - BHO: Acro IEHlpr Obj Class - - C:\Program Files\Adobe\Acrobat 5.0\Reader\Active X\Acro O2 - BHO: Google Toolbar Helper - - c:\program files\google\googletoolbar3O3 - Toolbar: &Google - - c:\program files\google\googletoolbar3O3 - Toolbar: &Radio - - C:\WINDOWS\System32\O4 - HKLM\..\Run: [Quick Time Task] "C:\Program Files\Quick Time\qttask.exe" -atboottime O4 - HKLM\..\Run: [Dead AIM] rundll32"C:\PROGRA~1\AIM95\\Dead AIM.ocm", Exported Check ODLs O4 - HKLM\..\Run: [Sun Java Update Sched] C:\Program Files\Java\jre1.5.0_01\bin\O4 - HKLM\..\Run: [Remote Control] "C:\Program Files\Cyber Link\Power DVD\PDVDServ.exe"O4 - HKLM\..\Run: [Winamp Agent] C:\Program Files\Winamp\O4 - HKLM\..\Run: [Tk Bell Exe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM95\O4 - HKCU\..\Run: [Spy Sweeper] "C:\Program Files\Webroot\Spy Sweeper\Spy Sweeper.exe" /0O4 - Global Startup: Win Zip Quick = C:\Program Files\Win Zip\WZQKPICK.

EXEO8 - Extra context menu item: &Google Search - res://c:\program files\google\Google Toolbar3.dll/O8 - Extra context menu item: Backward Links - res://c:\program files\google\Google Toolbar3.dll/O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\Google Toolbar3.dll/O8 - Extra context menu item: Similar Pages - res://c:\program files\google\Google Toolbar3.dll/O8 - Extra context menu item: Translate into English - res://c:\program files\google\Google Toolbar3.dll/O9 - Extra button: (no name) - - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01O9 - Extra 'Tools' menuitem: Sun Java Console - - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01O9 - Extra button: AIM - - C:\Program Files\AIM95\O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDoc O15 - Trusted Zone: windowsupdate.O15 - Trusted Zone: *.O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\O23 - Service: WLTRYSVC - Unknown owner - C:\WINDOWS\System32\wltrysvc.exeand here's the ewido scan before everything messed up.

--------------------------------------------------------- ewido security suite - Scan report--------------------------------------------------------- Created on: PM, 5/27/2005 Report-Checksum: 97CA33CD Date of database: 5/27/2005 Version of scan engine: v3.0 Duration: 185 min Scanned Files: 75345 Speed: 6.78 Files/Second Infected files: 6 Removed files: 6 Files put in quarantine: 6 Files that could not be opened: 0 Files that could not be cleaned: 0 Binder: Yes Crypter: Yes Archives: Yes Scanned items: C:\ E:\ Scan result: C:\Program Files\AWS\Weather Bug\Mini Bug - Hi soopadoopa. One is that your operating system is so out of date that it is a major factor in getting infected.

The other is that the infection that ewido cleaned had to remove the file.

The only way to recover from that is to do a repair install.

Go to the link below and follow the directions for you rparticular operating system: will require you to have your XP CD (not a Recovery CD).

Follow the directions exacly and make sure that all of your important data is backed up before you attempt this in case the installation fails.

After the installation is finished upgrade your system to Service pack 2 by going to the Windows Update site.

