Well worked as expected, detected all but couldn't remove before and after restart logs are shown. Do you know any advanced or dos level removal technique? Malwarebytes' Anti-Malware 1.50 www.malwarebytes.org Database version: 5340 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 12/17/2010 7:59:58 AM mbam-log-2010-12-17 (07-59-58).txt Scan type: Quick scan Objects scanned: 141561 Time elapsed: 3 minute(s), 37 second(s) Memory Processes Infected: 0 Memory Modules Infected: 1 Registry Keys Infected: 1 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 3 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: c:\Users\ki\AppData\Local\Temp\wla77DD.tmp (Worm.Parite) -> Delete on reboot. Registry Keys Infected: HKEY_LOCAL_MACHINE\SOFTWARE\FlvTube (Adware.FlvTube) -> Quarantined and deleted successfully. Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: c:\Users\ki\AppData\Local\Temp\wla77DD.tmp (Worm.Parite) -> Delete on reboot. c:\Users\ki\AppData\Local\Temp\oja5F8C.tmp (Worm.Parite) -> Quarantined and deleted successfully. c:\Users\ki\AppData\Local\Temp\xing.exe (Trojan.Agent) -> Quarantined and deleted successfully. AFTER RESTART--RESCANNING-- Malwarebytes' Anti-Malware 1.50 www.malwarebytes.org Database version: 5340 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 12/17/2010 8:09:34 AM mbam-log-2010-12-17 (08-09-34).txt Scan type: Quick scan Objects scanned: 32788 Time elapsed: 1 minute(s), 16 second(s) Memory Processes Infected: 0 Memory Modules Infected: 3 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 3 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: c:\Users\ki\AppData\Local\Temp\yyaF0F2.tmp (Worm.Parite) -> Delete on reboot. c:\Users\ki\AppData\Local\Temp\pyaF19E.tmp (Worm.Parite) -> Delete on reboot. c:\Users\ki\AppData\Local\Temp\eyaF131.tmp (Worm.Parite) -> Delete on reboot. Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: c:\Users\ki\AppData\Local\Temp\yyaF0F2.tmp (Worm.Parite) -> Delete on reboot. c:\Users\ki\AppData\Local\Temp\pyaF19E.tmp (Worm.Parite) -> Delete on reboot. c:\Users\ki\AppData\Local\Temp\eyaF131.tmp (Worm.Parite) -> Delete on reboot.