http://www.google.com/search?hl=en&i...=Google+Search

Removing Autostart Entries from the Registry

Removing autostart entries from the registry prevents the malware from executing during startup.

To remove the malware autostart entries:

1. Open Registry Editor. To do this, click Start>Run, type Regedit, then press Enter.
2. In the left panel, double-click the following:
HKEY_LOCAL_MACHINE>Software>Microsoft>
Windows>CurrentVersion>Run
3. In the right panel, locate and delete the entry:
Microsoft System Checkup = "ntsysmgr.exe"
4. In the left panel, double-click the following:
HKEY_LOCAL_MACHINE>Software>Microsoft>
Windows>CurrentVersion>RunServices
5. In the right panel, locate and delete the entry or entries:
Microsoft System Checkup = "ntsysmgr.exe"
6. Close Registry Editor.
It's WORM_SDBOT.SE

Removal Instructions: http://uk.trendmicro-europe.com/ente...=WORM_SDBOT.SE