Excuse me for jumping into your post, but I got the same trojan today when trying to download lyrics to a song. A Macromedia window appeared and stated I could not see the site unless I clicked yes. Although something stuck in my mind that it wasn't right about the box, I clicked yes, it started to download, I got panicky and tried to stop it. Avast 4.5 made a warning noise and immediately put a box up on my screen telling me of this virus and recommended moving it to Virus chest. [
Brilliant catch by Avast - really impressed ]
Closed browser, disabled system restore, ran Avast in boot time scan, chose 1. delete [my isp said that the C:\temp\.. files were not vital so could use delete in this instance.]
Ran Adaware = found 4X BlazeFind malware in RegKey[2], RegValue[1], + file in C:\Windows\System32\ide21201.vxd. Got Adaware to delete the regkey and regvalue ones and chose to run spybot to fix the ide21201.vxd file which it did. Re-ran Adaware, Spybot, Avast again and all came up clean.
Now can I go into the Virus Chest and delete the trojan that appears to still be in the chest even though Avast deleted it in boot time, and came up clean when I ran it again? It says this will delete it irreversibly, ie. not removed to recycle bin.
PS:Adaware also found 3x WindUpdates malware [data miners, TAC8].
Do go on a bit don't I? sorry.