If you're infected, check with your antivirus vendor for system-specific solutions; most of them are on the case. Be advised that you'll have to dig out the rootkit, clean the registry (including the wincom32 autostart key) and delete the two .ini files. Don't forget to disable System Restore while you're scrubbing! Note that you should also check infected machines for WORM_NUWAR.CQ infection at this time.