That is a good observation. I would also like to note that this is most
definetly a trojan virus. My guess would be either NetBus, SubSeven, or
BackOrifice. There are many others that have this ability, but I would
think it would be one of those three. You really need to check your
computer for viruses. I am pretty sure you don't have an Antivirus
installed since this trojan is having such an easy time, so you will
need to go online and use an online virus scanner.
Two things:
First, check these four places for the potential trojan virus.
1. Click start-run-type regedt32 and click ok. Now click the plus next
to these in order:
HKEY_LOCAL_MACHINE-Software-Microsoft-Windows-CurrentVersion-Run and see
if there are any odd looking programs starting with windows. If there
are, you should delete it, but if you are not sure, post the name of it
in here and we'll see if we can figure it out

2. Now go back and press the minus next to HKEY_LOCAL_MACHINE, and
press the plus next to these in order:
HKEY_CURRENT_USER-Software-Microsoft-Windows-CurrentVersion-Run and look
for odd programs in there as well. Same as above, delete if you know
you don't need it and it could be the virus.
3. Click start-programs-startup and double click on the startup folder.
Now look and see if there are any programs in there that are starting
with Windows that shouldn't be. Also right click in the window and
choose properties. There should be one more file than you can visibly
see icons for. If there is more than one file that doesn't show up, the
virus may have hidden itself in the startup folder.
4. This is the most difficult one. Click Start-run-type services.msc
and click ok. Now there are going to be a lot of services listed. You
will just need to look through the list and see if any have a weird
name, jumbled letters, or something that doesn't look right. Do not
disable any of these services unless you know what they do, but if there
is something suspicious, post the name of the service in here and I'll
tell you if you need it or not and how to disable it.
Second, while you are on the internet, go to
http://us.mcafee.com/root/mfs/default.asp?cid=9914 and run that online
virus scanner
Nathan McNulty