Hope this helps been trying to get this nasty code off my pc it worked for me be careful I tried this before I gave up and was going to F disk hope it works for you.
Try this:
For Searchv hijacks, run Hijack This from
http://tomcoyote.org/hjt/ and tick all lines that have this in it.
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.searchv.com/w/search.html
Look down the list for these entries;
O2 - BHO: WinShow module - {6CC1C918-AE8B-4373-A5B4-28BA1851E39A} - C:\Documents and Settings\your name\Application Data\winshow\winshow.dll O4 - HKLM\..\Run: [sys] regedit /s C:\winnt\sys.reg O4 - HKCU\..\Run: [winlogon] c:\winnt\winlogon.exe O4 - Global Startup: MSupdater.exe
Check these in HJT and close all browser windows. Click Fix and reboot into Safe Mode by tapping F8 when booting.
Find and delete these files/folders
MSupdater.exe
winlogon.exe
sys.reg
winshow folder
Good luck
Thomas