Bill:
Try the following...
1) Download the following two items...
Trend Sysclean Package
http://www.trendmicro.com/download/dcs.asp
Latest Trend signature files.
http://www.trendmicro.com/download/pattern.asp
Create a directory.
On drive "C:\"
(e.g., "c:\New Folder")
or the desktop
(e.g., "C:\Documents and Settings\lipman\Desktop\New Folder")
Download SYSCLEAN.COM and place it in that directory.
Download the signature files (pattern files) by obtaining the ZIP file.
For example; lpt263.zip
Extract the contents of the ZIP file and place the contents in the same directory as
SYSCLEAN.COM.
2) If you are using WinME or WinXP, disable System Restore
http://vil.nai.com/vil/SystemHelpDocs/DisableSysRestore.htm
3) Reboot your PC into Safe Mode
4) Using the Trend Sysclean utility, perform a Full Scan of your platform and
clean/delete any infectors found
5) Restart your PC and perform a "final" Full Scan of your platform
6) If you are using WinME or WinXP, Re-enable System Restore and re-apply any
System Restore preferences, (e.g. HD space to use suggested 400 ~ 600MB),
7) Reboot your PC.
8) If you are using WinME or WinXP, create a new Restore point
9) Please report back your results
Dave
| Obliged for that. First requires install of sophos. Second allows free
| download of spyhunter. Great at locating spyware but did not find the worm.
| Also whilst Spyhunter is free to run and identify, you then have to purchase
| software to cure. Bit naughty that.
| | > Bill wrote:
| >
| > > Sddrop - dammit; couldn't even spell it properly!
| > >
| > > | > >
| > >>And I can't get it out. AVG snapped it up but can neither heal nor
| vault.
| > >>Tried a Google search with lots of ideas but not getting very far with a
| > >>successful solution. Be obliged for a short cut please as to best way to
| > >>drop this one out please!
| >
| > What results did you get at Google? These are the first two pages I
| > see and both describe how to remove it.
| >
| >
http://www.sophos.com/virusinfo/analyses/w32sddropa.html
| >
http://www.2-spyware.com/remove-sddrop.html
| > and
| >
http://www.pestpatrol.com/pestinfo/w/win32_p2p_sddrop_b_worm.asp
| >
| > --
| > -bts
| > -This space intentionally left blank.
|
|