This morning I saw the blue screen of death on my daughters desktop computer. An attempted restart would only bring it to the same screen just after the windows logo (XP SP3) would appear. Tried starting in safe mode which resulted in the same result.
Then I tried starting in the "use last known good configuration" choice and could get the computer to start. I logged into my account and tried to run Lavasoft's Adaware but it said it was busy. I knew something was up so I ran Spybot S&D which said it needed to clear the temporary folder which I allowed. I noticed that it reported that it could not remove 2 files (again suspicion).
Spybot found 14 minor cookies and I deleted them. Then my NIS 2009 popped up saying that it found a threat and needed to be restarted to complete the removal of the infection. Before I restarted I looked in the reports section and saw the "BACKDOOR.*****" (the ***** are in here because I didn't have the foresight to write down the last bit after the decimal) was detected on 2/10/10 (today). The suggested action was to restart the computer. Also in the same window was 4-5 other files that had been detected and quarantined on 2/9/10 (yesterday). I don't remember what they were other than they were all the same.
When I restarted the computer it came back to the same BSOD but this time I can't boot using the same "use last known good configuration setting".
I asked my daughter if anything strange happened recently and sure enough last night she downloaded something that shut down her computer. She didn't see me to tell me about it until I woke her up for school today and if you have a teenage daughter you know that they are not very talkative first thing in the morning!
I believe that the infection is in the temporary file but without being able to start the computer in windows I'm beyond my ability to help myself. Any suggestions are greatly appreciated.