Additional info, spy sweeper finds these after a while from kill'em. Even that no intenet connection enabled. How can I find the source from my computer???
Findings:
MSConnect Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\SwitchDialer
MSConnect Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Startportal
MSConnect Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : cxqfile
MSConnect Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : .mxq
MSConnect Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : .cxq
MSConnect Object recognized!
Type : Folder
Object : c:\program files\Startportal
----- Mark wrote: -----
I accepted certificate from "funny download" pages and that was not a good idea at all. I got something exrta with that download. I did delete all spys by Ad-ware and run virus sweep(f-sec). But in start up there appears icon to right-down corner, by the clock.
Additionally my browser attempts to go occasionally to
http://a0e6.ffx23wl.nl
Well, what could I do more?