Just looking to see if this makes sense to anyone out there.
I was having a rough time removing Look2me from my Windows 98 2E web browser and, needless to say, it was driving me nuts. When I pressed Ctrl Alt Del to see what programs were running,... Expolrer was gone. It seemed to me like it was replaced by Rundll32. Any way, I tried the Manual removal of Look2me several times with no luck. Every time I deleted the infected key in the registry, it would instantly reappear. I could not locate any of the msg***.dll files on my computer, so deleteing them with a startup disk was useless.
Out of fustration, this is what I did:
Opened my Find files program and in the "search for text" box I typed look2me
The only file it found was the user.dat file in my systems folder. Not being a patient person, I deleted the sucker. When I restarted my computer, (this part is a bit hazy... I was very tired) I think it said my registry had been tampered with and it loaded a backed up version that it found. Sure enough, my HijackThis log was full of stuff I fixed a while ago (months!?!) (Thankfully nothing too terible) but, get this, Look2me was gone!!!
Talk about dumb luck. Does this make sense to any one out there???