1) Download the following three items...
Trend Sysclean Package
http://www.trendmicro.com/download/dcs.asp
Latest Trend signature files.
http://www.trendmicro.com/download/pattern.asp
Adaware SE (free personal version v1.05)
http://www.lavasoftusa.com/
Create a directory.
On drive "C:\"
(e.g., "c:\New Folder")
or the desktop
(e.g., "C:\Documents and Settings\lipman\Desktop\New Folder")
Download SYSCLEAN.COM and place it in that directory.
Download the Trend Pattern File by obtaining the ZIP file.
For example; lpt351.zip
Extract the contents of the ZIP file and place the contents in the same directory as
SYSCLEAN.COM.
2) Update Adaware with the latest definitions.
3) If you are using WinME or WinXP, disable System Restore
http://vil.nai.com/vil/SystemHelpDocs/DisableSysRestore.htm
4) Reboot your PC into Safe Mode and shutdown as many applications as possible.
5) Using both the Trend Sysclean utility and Adaware, perform a Full Scan of your
platform and clean/delete any infectors/parasites found.
(a few cycles may be needed)
6) Restart your PC and perform a "final" Full Scan of your platform using both the
Trend Sysclean utility and Adaware
7) If you are using WinME or WinXP,Re-enable System Restore and re-apply any
System Restore preferences, (e.g. HD space to use suggested 400 ~ 600MB),
8) Reboot your PC.
9) If you are using WinME or WinXP, create a new Restore point
* * * Please report back your results * * *
--
Dave
http://www.claymania.com/removal-trojan-adware.html
| DIALER PROBLEM
|
| Win2K...SP 4 ..All Patches
| Dial up ..ISP..ATT WorldNet
|
| Constant dialing to the ISP at 10 minute intervals when off-line
|
| I have tried to rid me of this worm using:
| NAV updated; run in Safe Mode
| Ad-aware 1.05
| Spybot
| SpySweeper
| Stinger
|
| · I was flagged by NAV that W32 Randex was removed while on-line
| a while back. I have searched Symantec's site for removal information.
| Nothing that I could understand came up.
|
| Is there a way out of this curse ?
| TIA
| A.Packer
|