Home > Solved Help > Solved: Help Me Get Rid Of Trojan.w32.Looksky

Solved: Help Me Get Rid Of Trojan.w32.Looksky

Subject to no further problems Now the best part of the day ----- Your log now appears clean :thumbsup: Double click OTMoveIt2 once again and you should see a CleanUp! If a clean version is found, you will be prompted to replace wininet.dll. Back to top #3 krazydave krazydave New Member Members 6 posts Posted 08 August 2008 - 02:08 PM Actually I did some more research and ended up running ComboFix and that It's important that I see the C:\ComboFix.txt What Panda scan are you referring to? his comment is here

Upgraded to ZASS 7.0 found an infection with not-a-virus:Downloader.Win32.DigStream Also, on my other system, found another infection Trojan-Downloader.Win32.Delf.awy Fear when ZA crashes microbillsys Possible virus srvany is incorrectly flagged by ZASS Mainly: pcsecuresystem.com onlinesecurityworld.com onlinestability.com trustedantivirus.com securepccleaner.com udefender.com ucleaner.com In Page 1 of 2 1 2 > Thread Tools Search this Thread 08-23-2007, 08:13 AM #1 lwl Registered Member IndiGenus The help you receive here is free, but if you would like to help me continue the fight against Malware then Logs will be closed if you haven't replied within Double click SDFix.exe and it will extract the files to %systemdrive% (Drive that contains the Windows Directory, typically C:\SDFix) Please then reboot your computer in Safe Mode by doing the following https://forums.techguy.org/threads/solved-help-me-get-rid-of-trojan-w32-looksky.613279/

In the meantime, here is my new HJT log: Logfile of HijackThis v1.99.1 Scan saved at 12:04:26 PM, on 8/8/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16674) MySQL Installation Problem: Can't create pid file - no such file or directory Get New Post by Email Find me on AboutMukesh Chapagain is a graduate of Kathmandu University (Dhulikhel, Nepal) Do not start a new topic.NOTE:Before we start: Please be aware that removing Malware is a hazardous undertaking. CWS.Oslogo spyware?

  1. To resolve this, restart the computer and try again.Ensure that the Safe Mode option is selected.Press Enter.
  2. Trojan - ContraVirus 2.0 win32 trojan.psw something something something I have a virus/spyware Zonealarm Internet Security can't find it.
  3. Look for ComboFix.txt (it's a file, not the folder) 2.
  4. I would be glad to take a look at your log and help you with solving any malware problems.
  5. Note : process.exe is detected by some antivirus programs (AntiVir, Dr.Web, Kaspersky) as a "RiskTool"; it is not a virus, but a program used to stop system processes.
  6. Wait for the tool to complete and disk cleanup to finish.
  7. SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll Back to top #9 IndiGenus IndiGenus Teacher Emeritus Authentic Member 5,251 posts Interests:Computer Security, Music, Sports Posted 28 September 2007 - 08:47 PM Hi, Yes,
  8. o Please highlight everything in the notepad, then right-click and choose copy. · Click close and close again to exit the program. · Please paste that information here for me regardless

Clean out your Temporary Internet files. false positives has been fixed windll.exe > please update your ZA Hey, salvador - If your PC is Infested w/Spyware Virus quarantined, but is it dangerous?? (no Web record of it) Help with Hijackers? Solved: Help me get rid of Trojan.w32.Looksky Discussion in 'Virus & Other Malware Removal' started by tfjelde, Aug 21, 2007.

We will do this later. Pager] "C:\Archivos de programa\Yahoo!\Messenger\ypager.exe" -quiet O4 - HKCU\..\Run: [McAfee QuickClean Imonitor] C:\Archivos de programa\McAfee\McAfee QuickClean\Plguni.exe /START O4 - HKCU\..\Run: [MSKAGENTEXE] C:\ARCHIV~1\McAfee\SPAMKI~1\MskAgent.exe O4 - HKCU\..\Run: [comrepl] C:\WINDOWS\system32\comrepl.exe O4 - HKCU\..\Run: [swg] C:\Archivos Advertisement tfjelde Thread Starter Joined: Aug 21, 2007 Messages: 4 Hello, I am new to this forum and would really appreciate you helping me getting rid of Trojan.w32.Looksky from my computer. https://forums.pcpitstop.com/index.php?/topic/159463-remaining-bits-of-trojanw32lookskyresolved/ Virus cleanup?

Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site. answer Y (yes) and hit Enter in order to remove the Desktop background and clean registry keys associated with the infection. * The tool will now check if wininet.dll is infected. Here is my Hijackthis log: Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 00:43:13, on 22.08.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Boot mode: Normal Click on the Do a system scan and save a logfile button.

can't get rid of Trojan-Spy.HTML.Bayfraud.ek Packed.win32.Morp... But you have to make sure it's updated. Oem8.inf Oem9.inf and a thinkpad.dll file from system32 directory Hello, Can someone please tell me if the following is a... well anything???

Clean 5. this content Is Trojan-Downloader.Win32.Agent.bng A false Positive? capicom.dll/Win32.Application.Adware.WinAntiVirus dddaby in the run line WinAntiVirus? It's IMPORTANT to carry out the instructions in the sequence listed below. *************************************************** Download Combofix and save it to your desktop. **Note: It is important that it is saved directly to

At the bottom will be a system restore box with a CLEANUP button click this 7. Event Record #/Type3936 / Error Event Submitted/Written: 08/05/2008 09:13:19 AM Event ID/Source: 1002 / Application Hang Event Description: Hanging application AcroRd32.exe, version 7.0.8.218, hang module hungapp, version 0.0.0.0, hang address 0x00000000. ATFCleaner should take care of those things. weblink Trojan.win32.pakes.x3 path C:\Windows\regedit.exe Trojan attaches to regedit.> many post about the regedit at Kaspersky Fix for trojan.win32.pakes.x3 ?

o Under Scanner Logs, double-click SUPERAntiSpyware Scan Log. C:\Documents and Settings\Sid Logan\Local Settings\Temp Another false positive--ATI file, atiacmxx.dll Has anyone gotten this notification, or is it a FP - Win32.Trojan.Spy.Ardamax.e Adobe Flash Player detected as spyware Win32.Trojan.Spy.Ardamax.e not-a-virus:AdTool.Win32.MyWebSearch.bn False Trojan.Win32.Agent.awg Email-Worm Win32 Brontok.a Real spyware or false positive: Win32.Backdoor.Revell.110 Something is filling my drive C Win32.RhinoNET?

Back to top #6 essexboy essexboy Advanced Member Trusted Malware Techs 790 posts Gender:Male Posted 08 August 2008 - 04:55 PM AVG probably quarantined catchme a part of GMER There is

See How To Advertise. 63Disclaimer: Every Nairaland member is solely responsible for anything that he/she posts or uploads on Nairaland. Edited by krazydave, 08 August 2008 - 04:39 PM. Event Record #/Type3934 / Error Event Submitted/Written: 08/05/2008 08:40:50 AM Event ID/Source: 1002 / Application Hang Event Description: Hanging application iexplore.exe, version 7.0.6000.16674, hang module hungapp, version 0.0.0.0, hang address 0x00000000. Make sure that AVG Anti-Spyware is closed before installing the update.

Proceed like this: Quit Internet Explorer, all browsers and quit any instances of Windows Explorer. Virusprotectpro got by ZA Can anyone help me remove these? Re: Zone Alarm - Virus Alert: trojan Storm (Trojan.Peacomm) Capicom.dll/Win32.Application.Adware.WinAntiVirus, Recently? check over here well the thing with the avg AS didnt work, everytime i drt it to quarantine and click on apply all actions the pc just jams, i tried 3 times, therefore i