I found this fix written by bananafanafo at GeeksToGo. (I made some minor changes since this board does not use HijackThis logs unless absolutely necessary.) Please read these instructions carefully and print them out! Be sure to follow ALL instructions! Go to Start > Control Panel > Add or Remove Programs and remove the following programs, if found: Security IGuard Virtual Maid Search Maid Exit Add/Remove Programs. *Click here and download Killbox by Option^Explicit. *Extract the program to your desktop and double-click on its folder, then double-click on Killbox.exe to start the program. *In the killbox program, select the Delete on Reboot option. *Copy the file names below to the clipboard by highlighting them and pressing Control-C: C:\wp.exe C:\wp.bmp C:\bsw.exe C:\WINDOWS\sites.ini C:\WINDOWS\popuper.exe C:\WINDOWS\system32\hhk.dll C:\WINDOWS\System32\helper.exe C:\WINDOWS\System32\intmonp.exe C:\WINDOWS\System32\msmsgs.exe C:\WINDOWS\System32\ole32vbs.exe C:\WINDOWS\system32\msole32.exe C:\WINDOWS\System32\shnlog.exe C:\WINDOWS\System32\intmon.exe C:\WINDOWS\System32\msmsgs.exe *Return to Killbox, go to the File menu, and choose "Paste from Clipboard". *Click the red-and-white "Delete File" button. Click "Yes" at the Delete on Reboot prompt. Click "No" at the Pending Operations prompt. While your computer is restarting, tap the F8 key continually until a menu appears. Use your up arrow key to highlight Safe Mode, then hit enter. *IMPORTANT* Be sure you know how to VIEW HIDDEN FILES Using Windows Explorer, delete the following (please do NOT try to find them by "search" because they will not show up that way) FOLDERS to delete (in bold) if found: C:\Program Files\Search Maid C:\Program Files\Virtual Maid C:\Windows\System32\Log Files C:\Program Files\Security IGuard Reboot into normal mode. A registry file to undo most of the changes is available here: http://metallica.geekstogo.com/smitfraud.reg Doubleclick that file and confirm you want to merge it with the registry. 1.) Download the Hoster from HERE Press "Restore Original Hosts" and press "OK". Exit Program. 2.) Download: http://www.mvps.org/winhelp2002/DelDomains.inf To use: right-click and select: Install (no need to restart) Note: This will remove all entries in the "Trusted Zone" and "Ranges" also. 3.) Download, install, and run CleanUp! 4.) Run a virus scan. If you do not have an AV installed, use ActiveScan - Save the results from the scan!