I have an XP workstation that started flashing false browser windows and ads. This system has no internet access, but did months ago. Looking at the Task Manager, I see multiple instances of laeso.exe. Killing the processes stops the windows - temporarily, but the process just reloads. Trying to edit the registry, it puts the deleted entries back. Must be a tough one.
The system is in a remote office 375 miles away, I can't start it in safe mode and run my various tools on it. It bugs me, though, that a search on that exe turns up nothing.
Tried running Rkill. Nope. TDSSkiller. Nope. Hmmmm....maybe be harder than I thought to clean this one.
Has anyone heard of this bug?
Edited by hamluis, 30 September 2014 - 05:10 PM.
Moved from XP to Am I Infected - Hamluis.