i have the same disks as you scoot and huggi has the same as me i have not found a trojan in mine
When Backdoor.Bla is executed, it does the following:
1. It creates a new file in the \Windows\System folder. This file runs in the background until you attempt to shut down or restart the computer.
2. When you command Windows to restart or shut down, the dropped file adds a value (which may vary from the examples that follow) such as
System
or
IO System Debug
to the registry key
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
This causes the file to run when Windows starts.
NOTE: In most cases, you will be unable to restart Windows due to the large number of illegal operations performed by the Trojan. The infected computer usually displays the blue warning screens generated by Microsoft Windows.
removal instructions
To remove this Trojan, delete files detected as Backdoor.Bla and remove the value that it added to the registry.
To remove the Trojan:
1. Run LiveUpdate to make sure that you have the most recent virus definitions.
2. Start Norton AntiVirus (NAV), and run a full system scan, making sure that NAV is set to scan all files.
3. If any files are detected as Backdoor.Bla, first write down the file names, and then delete them.
NOTE: If NAV displays a message that it cannot delete the file, you must first remove the value that it added to the registry, restart the computer, and run the scan again.
To edit the registry:
CAUTION: We strongly recommend that you back up the system registry before making any changes. Incorrect changes to the registry could result in permanent data loss or corrupted files. Please make sure you modify only the keys specified. Please see the document How to back up the Windows registry before proceeding.
1. Click Start, and click Run. The Run dialog box appears.
2. Type regedit and then click OK. The Registry Editor opens.
3. Navigate to the key
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
4. In the right pane, in the Data column, look for a reference to the file name that you wrote down earlier (the file that NAV detected as infected). The entry in the Name column will vary, but the following have been reported:
System
IO System Debug
5. Delete the entry that refers to the Trojan file name.
6. Click Registry, and then click Exit to save the change.