LandzDown Forum

Security => Analysis and Malware Removal => Topic started by: mksphnx2001 on September 08, 2006, 01:59:30 PM

Title: I'm new to this... need help with my PC and some spyware....
Post by: mksphnx2001 on September 08, 2006, 01:59:30 PM
I have identified that "look2me" piece of $&%@ on my computer.  This thing is aggravating me to no end!  I went into regedit while in safe mode and the thing won't let me delete.  Then finally I was able to get into regedit (don't ask how) and I found the Guard.tmp file and deleted it.  Guess what happen next?  look2me attached itself to another file somthing called JUT500.dll.  So I deleted that one as well and then it moved itself to another file by itself.  This tricky little mutha keeps jumping from file to file can't get rid of it. Any suggestions?

Thank You!
Title: Re: I'm new to this... need help with my PC and some spyware....
Post by: GR@PH;<'S on September 08, 2006, 04:25:40 PM
mksphnx2001,
As a starting point can you make sure that you are using
Ad-aware SE Build 106 (http://www.lavasoft.com/software/adaware/)
[if not Uninstall your old Ad-aware first then install SE]
Then use the WebUpDate
to get the latest Definition file
SE1R121 28.08.2006
To do this Open Ad-aware
Click the WebUpDate
button at the top right hand side of the Ad-aware screen (The world globe).
Click "Connect"
Ad-aware will then download the latest  Definition file for you.
To make sure it is updated , look at the main
Ad-aware screen, and look under "Initialization Status"
It should say the Latest Definition file.
then scan  doing a  "Full Scan" (http://www.lavasofthelp.com/howto/scan_se/) and then post your logfile here by using the Add-Reply Feature .
As Logs are stored in :
C:\Documents and Settings\USERNAME\Application Data\Lavasoft\Ad-aware\Logs\.
An easy way to get there is to
click Start,
click Run
And type in and press ENTER: %appdata%
then click  Lavasoft
then Ad-Aware
and then Logs.
scroll down to find the latest one that you have
(by date & time)
and open it right Click select all
copy and then paste the contents of it here.
(Make sure that all of your Logfile has been posted, sometimes it will require two post's to get it all)
I recommend that you use the WebUpDate just before you scan that way you will always be up to date.

(note The Application Data is a hidden folder, so you will need to show hidden files and folders
and for Windows 98/ME users your logs are stored in
C:\WINDOWS\All Users\Application Data\ ) by default.

GR@PH;<'S   :Hammys pint: