Start your computer and press F8 key.
Select safe mode to start your computer in safe mode.
Navigate to the Windows temporary folder.
The default location of this folder is C:/Windows/Temp, C:/DOCUMENTS AND SETTINGS/ProfileName/LOCAL SETTINGS/Temp, or C:/Users/ProfileName/AppData/Local/Temp, although it could have been set to another location entirely. In all cases, it can be located by typing "cd %temp%" into the command line.
Delete the following files.
dfrgr dfrg WindowsUpdate.exe tmp2.tmp
While still in the temp directory, look for three files that have seemingly random file names (With no extension), (with .exe extension) & (With .dll extension).
Delete all three of these.
Remove registry entries associated with the virus.
Type "regedit" from the command line to start the windows registry editor. Navigate to: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, and delete two entries involving the same random characters found in the previous step.
Remove "Smart HDD," "Smart HDD.lnk," and "Uninstall Smart HDD.lnk" from the start menu.
Then delete "Smart HDD.lnk" from the desktop.
Reboot the computer in regular mode.
The virus should be removed.