Might be a new variant. Try this.
[*]Download the
Killbox.
[*]Unzip it to the desktop but do NOT run it yet.
[*]Then please reboot into Safe Mode by restarting your computer and pressing F8 as your computer is booting up. Then select the Safe Mode option.
[*]Once in Safe Mode, please run Killbox.
[*]Click "
Delete on Reboot".
[*]Paste the following into the top "
Full Path of File to Delete" box.
- C:\WINDOWS\SYSTEM32\d3doff.dll
[*]Click the red-and-white "
Delete File".
[*]Click "
Yes" at the Delete on Reboot prompt.
[*]Click "
No" at the Pending Operations prompt.
Then reboot and post a new Hijackthis log.