PDA

View Full Version : adware/Lop



sv_vasja
2009-01-24, 20:30
Hello, i'd appreciate you helping me removing adware LOP

i scan my system only with panda av and it detects the infected dll in:
globalroot\systemroot\system32
it does not delete or desinfect it.

Assuming that this directory is
E:\Windows\system32
i search this dll but cant locate it, i search all my compluter plus registry but cant seem to locate it...

downloaded hijackthis but when i try to run it, it executes but no interface is loaded - despite i can see the hjtinstall.exe in taskmanager...disabled my av but still not able to run this app.

Thanks 4 your help in advance!
Greetings,
Vasja

ken545
2009-01-27, 03:05
Hello sv_vasja,

Welcome to Safer Networking.

Please read Before You Post (http://forums.spybot.info/showthread.php?t=288)
That said, All advice given by anyone volunteering here, is taken at your own risk.
While best efforts are made to assist in removing infections safely, unexpected stuff can happen.



Download random's system information tool (RSIT) by random/random from here (http://images.malwareremoval.com/random/RSIT.exe) and save it to your desktop.
Double click on RSIT.exe to run RSIT.
Click Continue at the disclaimer screen.
Once it has finished, two logs will open. Please post the contents of both log.txt (<<will be maximized) and info.txt (<<will be minimized)

sv_vasja
2009-01-27, 09:52
ty 4 your post, it was cleaned last night.
This thread is closed.
greetings

ken545
2009-01-27, 10:28
Great :bigthumb: Post back if you feel you still have issues, I will keep this thread open for 5 days for you.


How did I get infected in the first place ? Read these links and find out how to prevent getting infected again.
Tutorial for System Restore (http://www.bleepingcomputer.com/tutorials/tutorial56.html) <-- Do this first to prevent yourself from being reinfected.
WhattheTech (http://forums.whatthetech.com/So_how_did_I_get_infected_in_the_first_place_t57817.html)
TonyKlein CastleCops (http://www.castlecops.com/postlite7736-.html)
Grinler BleepingComputer (http://www.bleepingcomputer.com/forums/topic2520.html)
GeeksTo Go (http://www.geekstogo.com/forum/index.php?autocom=custom&page=How_did_I)
Dslreports (http://www.dslreports.com/faq/10002)



Safe Surfn
Ken