Every single time I turn on my laptop this message pops up:
Generic Host Process for Win32 Services has encountered a problem and needs to close. We are sorry for the inconvenience.
Technical Details:
C:\DOCUME~1\user\LOCALS~1\Temp\WER590c.dir00\svchost.exe.mdmp
C:\DOCUME~1\user\LOCALS~1\Temp\WER590c.dir00\appcompat.txt
I have tried running AVG Anti-Virus Free Edition 2011, Spybot S&D, Malwarebytes'Anti-Malware and the Windows Malicious Software Removal Tool. The Windows Malicious Software Removal Tool found a Win32 Trojan Alureon virus and I cannot get rid of that.
GMER-ONE:
GMER 1.0.15.15530 - http://www.gmer.net
Rootkit quick scan 2010-11-18 22:16:40
Windows 5.1.2600 Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdePort0 TOSHIBA_MK4018GAP rev.M0.03_A
Running: fi8px3gs.exe; Driver: C:\DOCUME~1\user\LOCALS~1\Temp\kfqyrpog.sys
---- Disk sectors - GMER 1.0.15 ----
Disk \Device\Harddisk0\DR0 sectors 78139904 (+255): rootkit-like behavior;
---- Devices - GMER 1.0.15 ----
Device \Driver\atapi -> DriverStartIo \Device\Ide\IdePort0 85A42AEA
Device \Driver\atapi -> DriverStartIo \Device\Ide\IdePort1 85A42AEA
Device \Driver\atapi -> DriverStartIo \Device\Ide\IdeDeviceP1T0L0-e 85A42AEA
AttachedDevice \FileSystem\Ntfs \Ntfs AVGIDSFilter.Sys (IDS Application Activity Monitor Filter Driver./AVG Technologies CZ, s.r.o. )
AttachedDevice \Driver\Tcpip \Device\Ip avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
AttachedDevice \Driver\Tcpip \Device\Tcp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
AttachedDevice \Driver\Tcpip \Device\Udp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
AttachedDevice \Driver\Tcpip \Device\RawIp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
Device \Device\Ide\IdeDeviceP0T0L0-3 -> \??\IDE#DiskTOSHIBA_MK4018GAP_______________________M0.03_A_#3258345235303136205420202020202020202020#{53f56307-b6bf-11d0-94f2-00a0c91efb8b} device not found
---- EOF - GMER 1.0.15 ----
GMER-TWO:
GMER 1.0.15.15530 - http://www.gmer.net
Rootkit scan 2010-11-18 22:51:48
Windows 5.1.2600 Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdePort0 TOSHIBA_MK4018GAP rev.M0.03_A
Running: fi8px3gs.exe; Driver: C:\DOCUME~1\user\LOCALS~1\Temp\kfqyrpog.sys
---- System - GMER 1.0.15 ----
SSDT \SystemRoot\system32\DRIVERS\AVGIDSShim.Sys (IDS Application Activity Monitor Loader Driver./AVG Technologies CZ, s.r.o. ) ZwOpenProcess [0xF26E96C0]
SSDT \SystemRoot\system32\DRIVERS\AVGIDSShim.Sys (IDS Application Activity Monitor Loader Driver./AVG Technologies CZ, s.r.o. ) ZwTerminateProcess [0xF26E9770]
SSDT \SystemRoot\system32\DRIVERS\AVGIDSShim.Sys (IDS Application Activity Monitor Loader Driver./AVG Technologies CZ, s.r.o. ) ZwTerminateThread [0xF26E9810]
SSDT \SystemRoot\system32\DRIVERS\AVGIDSShim.Sys (IDS Application Activity Monitor Loader Driver./AVG Technologies CZ, s.r.o. ) ZwWriteVirtualMemory [0xF26E98B0]
---- Devices - GMER 1.0.15 ----
AttachedDevice \FileSystem\Ntfs \Ntfs AVGIDSFilter.Sys (IDS Application Activity Monitor Filter Driver./AVG Technologies CZ, s.r.o. )
AttachedDevice \Driver\Tcpip \Device\Ip avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
AttachedDevice \Driver\Tcpip \Device\Tcp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
Device \Driver\atapi -> DriverStartIo \Device\Ide\IdePort0 85C41AEA
Device \Driver\atapi -> DriverStartIo \Device\Ide\IdePort1 85C41AEA
Device \Driver\atapi -> DriverStartIo \Device\Ide\IdeDeviceP1T0L0-e 85C41AEA
AttachedDevice \Driver\Tcpip \Device\Udp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
AttachedDevice \Driver\Tcpip \Device\RawIp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
Device \Device\Ide\IdeDeviceP0T0L0-3 -> \??\IDE#DiskTOSHIBA_MK4018GAP_______________________M0.03_A_#3258345235303136205420202020202020202020#{53f56307-b6bf-11d0-94f2-00a0c91efb8b} device not found
---- Disk sectors - GMER 1.0.15 ----
Disk \Device\Harddisk0\DR0 sectors 78139904 (+255): rootkit-like behavior;
---- EOF - GMER 1.0.15 ----
Malwarebytes Anti-Malware:
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Database version: 4052
Windows 5.1.2600 Service Pack 2
Internet Explorer 8.0.6001.18702
11/15/2010 12:42:00 PM
mbam-log-2010-11-15 (12-42-00).txt
Scan type: Full scan (C:\|D:\|)
Objects scanned: 146557
Time elapsed: 47 minute(s), 55 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
AVG Anti-Virus Free Edition 2011:
"";"C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\Q1FZJQCB\inst[1].exe";"Trojan horse FakeAlert.VL";"Moved to Virus Vault"
"";"C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\Q1FZJQCB\inst[2].exe";"Trojan horse FakeAlert.VL";"Moved to Virus Vault"
"";"C:\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\X3SBSZZP\inst[1].exe";"Trojan horse FakeAlert.VL";"Moved to Virus Vault"
I dont know what else to do.