cshenk wrote:
I've made some progress. The infected machine had a TDSS rootkit,
for which I have now used a Kaspersky removal tool that has repaired
at least some of the damage. I can now run Windows Update (which
had previously been blocked) so I am updating the victim machine then
I'll see if there are still signs of infection.
Steve