Hi, Malwarebytes reports the below 76 infections. I selected to clean (removed selected) the infections and it required rebooting. After rebooting, the 76 infections reappear. Norton reports no infections. Computer Associates reports no infections. McAfee reports no infections. Trendmicro reports no infections. Kaspersky reports no infections. Windows Defender reports no infections . If the computer is rebooted in "Safe Mode" Malwarebytes reports no infections. I am trying to understand if these infections are true infections. If in fact they are infections, how do I remove them? Thank you in advance. Here is the Malwarebytes listing: Malwarebytes' Anti-Malware 1.36 Database version: 1983 Windows 5.1.2600 Service Pack 3 4/14/2009 8:45:26 PM mbam-log-2009-04-14 (20-45-20).txt Scan type: Quick Scan Objects scanned: 95190 Time elapsed: 8 minute(s), 37 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 76 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: C:\WINDOWS\system32\config\AppEvent.Evt (Rootkit.Agent.H) -> No action taken. C:\WINDOWS\system32\config\Internet.evt (Rootkit.Agent.H) -> No action taken. C:\WINDOWS\system32\config\ODiag.evt (Rootkit.Agent.H) -> No action taken. C:\WINDOWS\system32\config\OSession.evt (Rootkit.Agent.H) -> No action taken. C:\WINDOWS\system32\config\SecEvent.Evt (Rootkit.Agent.H) -> No action taken. C:\WINDOWS\system32\config\SysEvent.Evt (Rootkit.Agent.H) -> No action taken. C:\WINDOWS\system32\config\TuneUp.evt (Rootkit.Agent.H) -> No action taken. C:\WINDOWS\system32\Config\sam10.log (Trojan.Agent) -> No action taken. C:\WINDOWS\system32\Config\RealtekAC.exe (Trojan.Agent) -> No action taken. C:\WINDOWS\system32\Config\msch24.exe (Trojan.Agent) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\ChkDisk.dll (Trojan.Agent) -> No action taken. C:\WINDOWS\system32\Config\firewall.exe (Backdoor.Bot) -> No action taken. C:\WINDOWS\system32\Config\updater.exe (Backdoor.Bot) -> No action taken. C:\WINDOWS\system32\Config\mswinsck.ocx (Backdoor.Bot) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\application data\mcrupdate.exe (Trojan.Agent) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\application data\pcant.exe (Trojan.Agent) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\application data\printer.exe (Trojan.Agent) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\cftmon.exe (Trojan.Agent) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\ftpdll.dll (Trojan.Agent) -> No action taken. C:\WINDOWS\repair\kasutio (Rootkit.Rustok) -> No action taken. C:\WINDOWS\system32\Config\csrss.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\csrss.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\Application Data\csrss.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\csrss.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\lsass.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\lsass.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\Application Data\lsass.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\lsass.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\services.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\services.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\Application Data\services.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\services.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\smss.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\smss.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\Application Data\smss.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\smss.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\svchost*.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\svchost*.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\Application Data\svchost*.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\svchost*.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\svchost.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\svchost.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\Application Data\svchost.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\svchost.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\winlogon.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\winlogon.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\Application Data\winlogon.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\winlogon.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\explorer.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\explorer.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\Application Data\explorer.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\explorer.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\spoolsv.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\spoolsv.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\Application Data\spoolsv.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\spoolsv.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\dllhost.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\dllhost.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\Application Data\dllhost.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\dllhost.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\msiexec.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\msiexec.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\Application Data\msiexec.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\msiexec.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\ctfmon.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\ctfmon.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\Application Data\ctfmon.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\ctfmon.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\userinit.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\userinit.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\Application Data\userinit.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\userinit.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\rundll32.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\rundll32.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\SystemProfile\Application Data\rundll32.exe (Heuristics.Reserved.Word.Exploit) -> No action taken. C:\WINDOWS\system32\Config\systemprofile\Start Menu\Programs\Startup\rundll32.exe (Heuristics.Reserved.Word.Exploit) -> No action taken.