They way I removed the virus was simple. I used AVG from GriSoft and it told me where the file was hidden. I found the file and it is an application.
Remember its name. You can't delete unless you shut down the application. So then you open task manager and then processes, scroll down until you find the application. Shut it down and then you can simply delete the file. (Sorry about my bad English, I'm 14 and from Denmark.)
After you have stopped the process sisint16.exe in Task Manager and deleted the file C:\Windows\System32\sinister16.exe, you should also delete all instances of sinister from Registry to avoid error messages when Windows starts.
Go to Start /Control Panel /Folder Options (click the View tab)and uncheck both the *Hide file extension for known file types & *Hide protected operating system files (Recommended)-boxes, then OK yourself out.
Then go to Start /Search /For Files or Folders option type up the NAME OF THE FILE & EXT (not downloader.crypter.c), but the actual name of the file, which would have shown up on your anti-virus software. Highlight the file and press Delete...make sure to empty your Recycle Bin.
http://www.ca.com/us/securityadvisor/virusinfo/virus.aspx?ID=62504
Downloads popup generator malware and propagates the infection to other dummy system files. This contains the wintrim downloader Trojan
purity scan ac - http://www.symantec.com/security_response/writeup.jsp?docid=2003-090516-2325-99&tabid=3
format
t4tttt
How do I get rid of this Virus?
www.intermute.com
I think that some more info is needed like what operating system you use, have you tried to do it from a bootscan, what virus detection system do you have before this can be answered.
Go here for a free virus scan and removal. Be patient, this is a very in depth scan and takes awhile. http://www.pandasoftware.com/activescan/com/default.asp?
just run a antivirus scan.
Your "up to date" antivirus will remove it.
I used AVG Free Edtion and it took it out. It was in two files. Wintrim.2.G and Wintrim.2.J was on my Computer.