This thread's last reply is from January 11, 2009, 10:46 AM UTC. Software, malware, and removal-tool
advice below may be out of date — treat specific steps and download links with caution.
Ok, i'll wait untill Tuesday, have a nice time in Phoenix
Thanks for letting me know.

I am so sorry but we have to go back to Phoenix tomorrow. Our son needs more surgery as an outpatient kind of thing so hopefully I can get the Malware scan done after that. I did however, tell you, I think that I sent you the scan before I deleted the three things listed. I guess I wasn't suppose to do it that way, HUH? LOL

Soooooooooooooo Solly.
Here is what I deleted after I posted it to you.
Registry Keys Infected:
HKEY_CLASSES_ROOT\CLSID\{d5df7c9d-6069-4552-8b0c-d02a912fc889} (Trojan.FakeAlert) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{d5df7c9d-6069-4552-8b0c-d02a912fc889} (Trojan.FakeAlert) -> No action taken.
Files Infected:
C:\System Volume Information\_restore{F3C49B63-18E1-46C9-91F4-3660C0771E9E}\RP35\A0012084.exe (Rogue.Winweb) -> No action taken.
C:\System Volume Information\_restore{F3C49B63-18E1-46C9-91F4-3660C0771E9E}\RP35\A0012085.exe (Rogue.Winweb) -> No action taken.
C:\System Volume Information\_restore{F3C49B63-18E1-46C9-91F4-3660C0771E9E}\RP38\A0014338.exe (Rogue.Winweb) -> No action taken.
C:\System Volume Information\_restore{F3C49B63-18E1-46C9-91F4-3660C0771E9E}\RP47\A0018045.exe (Rogue.Winweb) -> No action taken.
Hello spankyjo54,
I hope the operation goes well for your son.
How did you delete those items you posted?
If you did using Malwarebytes' Anti-Malware , please post here the latest report from the logs tab.
I need to see that report.