must show the exact location of this malware in terms of file path?
I suspect it is in your System 32 folder and will activate on boot, notwithstanding safe mode.
In any event you need to d/l and execute Move on Boot.
At some point you will be presented with a drop down which will allow you to scroll to the EXACT location of the malware.
then go to 'delete' and re-boot.
you can find MOB here along with a small write up as to what it does.
btw once installed it is one of the options you can use on an on going basis.
Ok, i've run :
ms spyware beta
The first three do not report derbiz (they all have latest definitions etc)
hijack this does, but when you delete the references to it, it just adds itself back each time you restart or open a new browser.
I must have spent 3 hours trying to delete derbiz, does anyone know which registry keys to delete to terminate this pest - once and for all.
Appreciate any help guys/gals...