Look2Me Removal: Remove Look2Me Forever
Let our support team solve your problem with Look2Me and repair Look2Me right now!
Leave the detailed description of your Look2Me problem in the form below. Our support team will contact you in several minutes and give a step-by-step instruction on how to fix Look2Me problem. Please be specific. Do your best describing the problem. This will help us recommend right and complete Look2Me problem removal solution.
Describe your problem here and we'll contact you in several minutes:
Warning:
1) We hate spam as much as you do. We will not share your email with any third party or publish it anywhere. Your email is used only to contact you and give you Look2Me removal solution.
2) All fields of this form are obligatory.
Threat's profile
|
Name of the threat: Look2Me |
| Command or file name: no.exe |
| Threat type: Badware |
| Affected OS: Win32 (Windows 9x, Windows XP, Windows Vista) |
Look2Me intrusion method
Look2Me copies its file(s) to your hard disk. Its typical file name is no.exe. Then it creates new startup key with name Look2Me and value no.exe. You can also find it in your processes list with name no.exe or Look2Me.
If you have further questions about Look2Me, please fill in the form above and we'll contact you shortly.
» Download program to remove Look2Me (Look2Me Removal Tool)
Recommended Solution
If you are not sure what to delete, use our award winning program - Look2Me Removal Tool.
Look2Me Removal Tool will find and fully remove Look2Me and all problems associated with Look2Me virus.
Fast, easy, and handy, Look2Me Removal Tool protects your computer against Look2Me that does harm to your computer and breaks your privacy. Look2Me Removal Tool scans your hard disks and registry and destroys any manifestation of Look2Me. Standard anti-virus software can do nothing against malicious programs like Look2Me. Remove Look2Me straight away!
» Download Look2Me Removal Tool now for free
How to fix Look2Me
This problem can be solved manually by deleting all registry keys and files connected with Look2Me, removing it from starup list and unregistering all corresponding DLLs. Additionally missing DLL's should be restored from distribution in case they are corrupted by Look2Me.
To get rid of Look2Me, you should:
1. Kill the following processes and delete the appropriate files:
• zppfldr.dll
Warning: you should delete only those files which checksums are listed as malicious. There may be valid files with the same names in your system. We recommend you to use Look2Me Removal Tool for safe problem solution.
2. Delete the following malicious folders:
no information
3. Delete the following malicious registry entries and\or values:
• Key: software\look2me
• Key: SOFTWARE\Classes\CLSID\{DDFFA75A-E81D-4454-89FC-B9FD0631E726}
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Guardian Value: ID
• Key: software\microsoft\windows nt\currentversion\winlogon\notify\guardianorvcb Value: @
• Key: SOFTWARE\Classes\CLSID\{A7CD5137-D2D6-4E2F-8279-4E7631159712}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\ShellExtensions\Approved\{DDFFA-E81D-4454-89FC-B9FD0631E726}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\ShellExtensions\Approved\{DDFFA75A-E81D-4454-89FC-B9FD0631E726}
• Key: CLSID\{423F0AEB-59E6-4190-A39E-03755D01B235}\InprocServer32 Value: ThreadingModel
• Key: CLSID\{423F0AEB-59E6-4190-A39E-03755D01B235}\Implemented Categories\{00021492-0000-0000-C000-000000000046}
• Key: CLSID\{423F0AEB-59E6-4190-A39E-03755D01B235}\Implemented Categories
• Key: CLSID\{423F0AEB-59E6-4190-A39E-03755D01B235} Value: IDEx
• Key: CLSID\{BE1409B6-E26D-4492-B262-2983A670F9F2} Value: IDEx
• Key: CLSID\{BE1409B6-E26D-4492-B262-2983A670F9F2}\Implemented Categories
• Key: CLSID\{BE1409B6-E26D-4492-B262-2983A670F9F2}\Implemented Categories\{00021492-0000-0000-C000-000000000046}
• Key: CLSID\{BE1409B6-E26D-4492-B262-2983A670F9F2}\InprocServer32 Value: ThreadingModel
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Guardian Value: Idex
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Urls Value: DllName
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winm32 Value: Startup
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winm32 Value: Impersonate
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winm32 Value: Asynchronous
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winm32 Value: MaxWait
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Control Panel Value: DllName
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\CSCSettings Value: DllName
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Uninstall Value: DllName
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SMDEn Value: DllName
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IPConfTSP Value: Asynchronous
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IPConfTSP Value: DllName
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IPConfTSP Value: Impersonate
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IPConfTSP Value: Logon
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IPConfTSP Value: Logoff
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IPConfTSP Value: Shutdown
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OptimalLayout Value: Asynchronous
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OptimalLayout Value: DllName
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OptimalLayout Value: Impersonate
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OptimalLayout Value: Logon
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OptimalLayout Value: Logoff
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OptimalLayout Value: Shutdown
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IPConfTSP Value: Asynchronous
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IPConfTSP Value: DllName
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IPConfTSP Value: Impersonate
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IPConfTSP Value: Logon
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IPConfTSP Value: Logoff
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IPConfTSP Value: Shutdown
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OptimalLayout Value: Asynchronous
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OptimalLayout Value: DllName
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OptimalLayout Value: Impersonate
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OptimalLayout Value: Logon
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OptimalLayout Value: Logoff
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OptimalLayout Value: Shutdown
• Key: Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved Value: {423F0AEB-59E6-4190-A39E-03755D01B235}
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\RunOnce Value: DllName
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MediaContentIndex Value: DllName
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MediaContentIndex Value: Asynchronous
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MediaContentIndex Value: Impersonate
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MediaContentIndex Value: Logon
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MediaContentIndex Value: Logoff
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MediaContentIndex Value: Shutdown
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MediaContentIndex Value: Asynchronous
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MediaContentIndex Value: DllName
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MediaContentIndex Value: Impersonate
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MediaContentIndex Value: Logon
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MediaContentIndex Value: Logoff
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MediaContentIndex Value: Shutdown
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ThemeManager Value: DllName
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Internet Settings Value: DllName
• Key: Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved Value: {BE1409B6-E26D-4492-B262-2983A670F9F2}
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SMDEn Value: Asynchronous
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SMDEn Value: DllName
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SMDEn Value: Impersonate
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SMDEn Value: Logon
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SMDEn Value: Logoff
• Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SMDEn Value: Shutdown
Warning: If value is listed for some registry entries, you should only clear these values and leave keys with such values untouched. We recommend you to use Look2Me Removal Tool for safe problem solution.
Next threat: LookQuick »
Learn more about Look2Me and no.exe »
« Back to catalog
Solution: 168
|