I think my system is now clean. Kaspersky and detect the "2.exe" file, but it cannot detect what is spreading that file. Distribution channels include IRC, peer-to-peer networks, newsgroup postings, e-mail, etc.

The top one started today.Trojan-Downloader.Win32.Small.jhuBackdoor.Win32.Hupigon.gfjwTrojan.Win32.Agent2.ekkTrojan.genericTrojan.Win32.Agent.azsy boorayj 3.03.2009 18:19 And now it has morphed again:File C:\Documents and Settings\\Application Data\rundll.exe: detected Trojan program 'Trojan.Win32.Pakes.nfq'.One computer is re-infected at 45 minutes after the hour.

There are profiles on the machines for users who have never logged on to the machine, particularly due to the psexec process used to install it:File C:\Documents and Settings\\Start Menu\Programs\Startup\uninstall.exe: detected

Technical Information File System Details Trojan.Win32.Agent2.cdb creates the following file(s): # File Name 1 %System%\scrnrdr.exe 2 %AppData%\Styler\Styler\Data\Styler.ini 3 %System%\VIRepair\vi.sif Registry Details Trojan.Win32.Agent2.cdb creates the following registry entry or registry entries: HKEY..\..\..\..{RegistryKeys}HKEY_CURRENT_USER\Software\Windows Recovery of the machine may be difficult, if not impossible. Once gone, it will be irretrievable unless of course you had the good sense to take a regular back up! Trojan.Win32.Agent2.hoq Started by testscorezero , Oct 10 2009 01:11 AM Please log in to reply 9 replies to this topic #1 testscorezero testscorezero Members 31 posts OFFLINE Gender:Male Local time:09:01

During installation I also added the icon to my desk top - it would not run when I clicked it. Once your computer get infected with Win32/Agent.QRN, you should remove it from the computer as soon as possible.