I created a new .inf file to remove .af, .ag, and .ai.
http://files.invisibill.net/unbagle.af.ag.ai.inf will remove the startup calls from the registry and the files directly called by them (if not in use). There are still other related files, as well as the actual email attachment and/or network share files that spread the infection, which my script won't do anything about. You still need a virus scanner to find and remove everything else, but this script should remove the startup stuff at least, so it won't be running and trying to kill your firewall and AV programs.
Just save the file somewhere convenient, then right-click and choose Install. If you don't trust me for whatever reason, you can open the script with any text editor and see that it just tries to delete three registry entries and three files. Once you've "installed" it, reboot. Your machine will still have virus-related files on it, but they shouldn't autorun after you reboot, allowing you to more easily clean your system.
http://www.invisibill.net/2004_07_01...50275993762389