Posted 04 August 2007 - 12:39 PM
A couple days ago the tell-tale signs showed up, seemingly out of nowhere. Popups, music playing even though nothing was open (turned out to be ads for heavy.com), weird error messages and even a few blue screens. I have gotten my machine back to a stable point but there are some lingering problems that I haven't been able to root out.
My environment:WinXP Home Edition v2002 service pack 2
Here is what I have tried in the last couple days:
Installed Kaspersky and scanned (ran every scan they offer)
HiJackThis.exe (researched every entry and removed all bad entries, which just reappeared)
I ran each of these multiple times, in different orders, both in and out of safe mode. Each scan found problems and I neutralized/fixed/quarantined/etc what I could. I don't remember everything they found but it was a ton of stuff, stuff like keylogger, loader, trojan this and that (sorry for the poor detail).
The problems that still show up which get caught by Kaspersky when after the OS loads:
And I can see the file system32/locafox2_0.sls is infected
And I get the following error after the operating system loads after rebooting:
svchost.exe has encountered a problem and needs to close.
Appname:svchost appver:0.0.0.0 modname:unknown modver:0.0.0.0 offset:00000000
I still get popup windows for heavy.com and other sites every once in awhile.
I don't know what to do next, any help will be greatly appreciated