Hi Paul, Hi Raistlin,
(the PC was aquired in this condition,
it will be hopefully kept clean from now on ... )
I mentioned earlier, that almost everything is being sent to 127.0.0.1
except some annoying 'adult' site, and now i've just read this about
the RTKIT(troj) from the Symantic site....
Routes all the Internet requests through itself using a packet driver,
preventing normal utilities and applications from detecting the
Backdoor's network traffic.
So it looks like it maybe was the malware doing that, which is why i
didn't find anything new in the Hosts folder .....
I will run those programs, from safe-mode.
Adaware
SpybotS&D
Spyware Blaster
And get back to you.
John