confused: trojan? spyware? worm? false positive?

System info: winXP pro. Not updated for a while (as my brower is not working)
Brower: IE 6.0 (really i know nothing of the brower esp it’s not working now)
avast 4.7

Symptoms:

  1. IE can’t get opened.
  2. “my computer”, “my documents” on the desktop cann’t get opened; the action will be redirected as opening the IE.

Avast 4.7 detected the following:

C:\I386\WMIPRVSE.EX_\wmiprvse.exe
Win32:Trojan-gen. (Other)

C:\WINDOWS\system32\dllchache\wmiprvse.exe
Win32:Trojan-gen. (Other)

C:\WINDOWS\system32\wbem\wmiprvse.exe
Win32: Trojan-gen. (Other)

C:\Program Files\rising\rav\Backup\ScanBD\BDEx.dll
Win32:Deborm-W[Wrm]

C:\Program Files\rising\ScanBD\BDEd.dll
Win32:Deborm-W[Wrm]

And it seems to find Win32:Adan-062[Adw] in C:\System Volume Information … the uni lab is closing and I can’t really finish this today.

I’m quite new to all these and hopefully what I said is not too confusing. Any help is appreciated! Thanks!

Hi parchment - welcome to the forum.

Most variants of the deborm worm drop trojans and/or backdoors, so I think your root problem is Win32:Deborm-W[Wrm].

Since you have some form of internet access download the latest avast! update and burn it to a cd

http://www.avast.com/eng/update_avast_4_vps.html

Copy the executable to the infected computer and run it.

Disable system restore and clear your temp files. Schedule an avast! boot scan, reboot, and choose the option to put items in the chest when prompted.

If you have Ewido or A-squared installed on the infected computer run that after the boot scan. If not we’ll try to download Ewido later.

Post again with your results.

Also, do you have a third party firewall?