IWETHEY v. 0.3.0 | TODO
1,095 registered users | 0 active users | 0 LpH | Statistics
Login | Create New User
IWETHEY Banner

Welcome to IWETHEY!

New Did you try this set of instructions?
[link|http://help.lockergnome.com/index.php?act=ST&f=65&t=29689|Lockergnome]. It seems that a combination of booting in Safe Mode and examining logs from [link|http://www.tomcoyote.org/hjt/|Hijack This] permits VX2 to be removed.

I haven't tried it myself, and hope I don't need to...

Cheers,
Scott.
New That's for older versions
The current version leaves no trace in HijackThis AdAware or anything else, and it's fully running in Safe Mode and even Safe Mode Command Prompt so it can't be removed, and the files you find with an AdAwre scan don't really exist or can't be seen by Windows.

I tried yanking the plug so there would be no chance of clean-up and then went into Windows\\System32 from a recovery boot from CD and none of the listed files was there. Only DLLCompare can find the VX2 .dlls and does so by comparing it's own list with what Windows sees. Anything Windows can't see is suspect.

Oh, and incidentally, it updates itself to the latest version every few weeks to keep ahead of the scumware removers.
[link|http://www.aaxnet.com|AAx]
Expand Edited by Andrew Grygus Jan. 7, 2005, 02:57:52 PM EST
New Joy. :-( Thanks for the info.
     VX2 - (Andrew Grygus) - (9)
         Did you try the new free MS antispyware tool? - (andread) - (3)
             Wanna bet... - (folkert) - (2)
                 Doubtful that it works. - (Andrew Grygus)
                 Re: Wanna bet... - (andread)
         ICLRPD (new thread) - (drewk)
         Well, I can't say . . . - (Andrew Grygus)
         Did you try this set of instructions? - (Another Scott) - (2)
             That's for older versions - (Andrew Grygus) - (1)
                 Joy. :-( Thanks for the info. -NT - (Another Scott)

What a bizarre 'field' ... all about 'Information' - and nobody has any you'd trust!
74 ms