G’day,
I submitted a couple of files last night (q.inx and start.exe). I believe that these are part of the download bundle associated with Spyware.Falcon (first detected May 8, 06). They may also be related to the latest iteration of “smitfraud”, namely smitfraud.g. The other components that appeared are atmclk.exe and dcomcfg.exe. Both of these processes are proving exceptionally hard to eliminate, as they self monitor and self replicate each other.
Have tried / am currently trying the following
adaware
spybot
arovax
killbox
hijackthis
process defender
CAV
AVG
smitrem.exe
smitrem.reg
prevx1
spydoctor
bho kill
ads kill
Any other suggestions would be greatly appreciated.
As and when I get more info, I’ll repost here.
wish me luck,
ewen