"Peter Gurk" <none@none.com> wrote in message
newsMd6e.32700$9v2.1126927@twister.southeast.rr.com...
> Basically, there is a garbage-named executable in C:\WINDOWS\SYSTEM32.
Right
> now, it's named lkkfdks.exe. Whenever I try to kill it from Task Manager,
> after I issue End Process and when the process actually goes away, it
makes
> a copy of itself and launches the copy.
Try booting in safe mode and hit it with adware removal tools (Spybot Search
& destroy, MS Antispyware beta etc)
Last year my wifes PC got hit with something similar. It started with around
5 or 6 suspect processes and one or two pop-ups a day. It ended up taking me
four days to remove the stuff mainly because I had to learn how. Take this
seriously. Half way through the learning process they started to download
and install their "friends" on my wifes PC. In the end she had 60 suspect
processes running with random names that weren't obvious abrieviations for
anything (eg qxpfv.exe). For each one there was a matching file in
C:\WINDOWS\
eg..
C:\WINDOWS\mdjsqjy.exe
C:\WINDOWS\odrynrc.exe
I believe she was hit with Roings and Webhancer and other malware.
To remove this lot I had to use ALL the removal tools I could find. Even
Ad-ware (with expert help) wasn't sufficient on it's own. I had to run
msconfig and remove any entries from startup tab, kill processes manually
and run several removal tools without rebooting between each step. Forget
one and reboot and the whole lot came back forcing me to start over. Got
them all in the tend though! Thinking about it now, it would be better to
have tried booting into safe mode and running tools there first.
Good luck


Md6e.32700$9v2.1126927@twister.southeast.rr.com...
Reply With Quote