Download
KillBox http://www.greyknight17.com/spy/KillBox.exe.
Run KillBox and check the box that says '
End Explorer Shell While Killing File'. Next click on '
Delete on Reboot'. For each of the following files below, check the box that says '
Unregister .dll Before Deleting' if it's not grayed out. Copy and paste each of the following into KillBox (hitting the X button for each file -
Choose YES when informs you the file will be deleted on Reboot.
Choose NO when it asks if you want to reboot):
C:\WINDOWS\Downloaded Program Files\popcaploader.inf
C:\tttxxsp.chm
C:\Documents and Settings\Windows User\Application Data\area.exe
Empty this folder.
C:\Program Files\Yahoo!\YPSR\
Quarantine\
Run a new Panda Scan and a new HJT log when you have done, and bring the results with you in your next post.