Hi there...
Click here and follow along for removal of the "Forced Entry" backdoor
trojan:
http://www.sophos.com/virusinfo/analyses/trojsdbotfn.html
Also:
Forced Entry Trojan:
Open C:\Windows\WIN.INI (in notepad). To do this:
Click start, all programs, accessories, and open notepad.
Click File and Open.
Near the bottom where it says Files of Type...click the arrow and choose
all files.
At the top where it says Look in...click the arrow and click your main
drive (typically C), then click Windows, then click win.ini and then
click open.
Here you can search for the following line:
Look for the line run=msreg32.exe.
If found, delete the line referring to it.
Then delete the same file if it is there, from C:\Windows\System or
C:\Windows\System32
(You may want to make a change to be sure that all files are showing for
this and future reference). To do this:
Right click start and click explore.
Click Tools and then Folder Options at the top.
Click on the View tab of the window that opens.
Tick show hidden files and folders.
You may also want to uncheck "hide extensions for known file types"
Click apply and ok.
Take Care...
Dee