HI ALL.NEED A LITTLE HELP
HAVE A PROG THAT TRYS TO ACCESS THE NET FROM MY PC.. DONT KNOW WHAT IT IS SO IVE BLOCKED IT.
THIS IS WHERE MCAFEE SAYS IT IS...C:WINDOWS\system32\sys32\EOMD.EXE
BUT WHEN ITRY TO FIND IT IN SYSTEM32 ITS NOT THERE....TASK MANAGER SAYS ITS RUNNING.
VIRUS SCAN DID NOT FIND ANYTHING....A LITTLE HELP FOLKS...MANY THANKS.
Well in that case just delete the folder
C:Windows/System32/Sys32/
That should get rid of that keylogger, but i would still like a HJT log to make sure nothing else got infected.
There is only one thing in your log that is malicious and it is the 013
entry. Have you noticed that when you type something into the address bar(in IE at least) that if you don't put http:// it will change it to something else. Because thats what the 013 is doing.
To get rid of that run HJT and put a checkmark next to the following.
O13 - Gopher Prefix:
No one has posted to this discussion for at least three months. Please let old threads die and do not reply to them unless you feel you have something new and valuable to contribute that absolutely must be added to make the discussion complete. Otherwise, please start a new thread in this forum instead.