spïrö wrote:
> Actually, apon reboot I have experienced the same problem! 
>
> I went back into regedit to find that it said "Explorer.exe scvhost.exe"
> again.
>
> I changed it back (again) and pressed F5; it changed from "Explorer.exe" to
> "Explorer.exe scvhost.exe" straight away.
Are you absolutely sure of the spelling of "scvhost.exe"? Because if you
typed this correctly your computer is infected with some variant of the
Agobot virus. "Svchost.exe" is the process belonging to Windows.
The fact that you have "explorer.exe scvhost.exe" shows that you are
indeed infected because the virus runs with explorer.exe every time.
Go through these general malware removal steps systematically -
http://www.elephantboycomputers.com/...moving_Malware
You will see instructions to scan with either Sysclean or Multi_AV,
following that with updating your full-featured antivirus and doing
another scan. All scans should be done in Safe Mode.
Standard caveat: If the procedures look too complex - and there is no
shame in admitting this isn't your cup of tea - take the machine to a
professional computer repair shop (not your local version of
BigStoreUSA). Please be aware that not all local shops are skilled at
removing malware and even if they are, your computer may be so infested
that Windows will need to be clean-installed. Have all your data backed
up before you take the machine into a shop.
Malke
--
Elephant Boy Computers
www.elephantboycomputers.com
"Don't Panic!"
MS-MVP Windows - Shell/User