Sponsors

Highlighted

Relaxation by °Tens  19 hours 59 minutes  ago

Relaxation by °Tens 19 hours 59 minutes ago

^nat
As an animation, Bakemonogatari has a simple, clean art style. But the guest illustrations for the series are anything but simple! So, it's great to see that °Tens took on a more complex illustration and made it his own with vector gradients so fine at points it more resembles painting that vectoring. Do have a look at this beautiful wallpaper!

ShoutBox

Bantam 16 minutes ago
Unlimited banana power

~NosVII 23 minutes ago
Haha, you were tagging aswell?

$virus9009 31 minutes ago
There tripled the monotags time for a break ;)

~Lelouch-0 49 minutes ago
I am doing really good today just wished i didnt have to work lol. But the bad thing is that I start at three and i have to get going now. So it was nice talking to you.Bye bye lol I'll see you later

~Roxie-Rae 53 minutes ago
So lelouch, how are you doing?

~Lelouch-0 56 minutes ago
Buh bye I start soon too

~Roxie-Rae 56 minutes ago
Bye kitty.

~kittylove 57 minutes ago
Well i'm gonna go for a while, bye guys

~Lelouch-0 1 hour 1 minute ago
Hello (n_n) lol

~Roxie-Rae 1 hour 2 minutes ago
Hello...yes we are sistas.

www.lookanddiscover.com

user avatar
~ambstrike
Member
Lelouch vi britainnia commands you
Topics: 6
Posts: 895
11 months 1 week ago
How to i remove this from my com?
For those who don't know what this is, i also don't really know, its something a virus that will keep changing your homepage to lookanddiscover.
Its f*cking bullsh*t! Someone please tell me how to remove this!:=[ emoticon

user avatar
~Drifting-Ashore
Member
The cake is a lie, just like everything else.
Topics: 5
Posts: 1708
11 months 1 week ago
Well, it seems as if you've gotten that crap high jacker called lookanddiscover, if you have already tried the basic protection programs such as "Spybot" "A cubed" "AVG" etc etc you may need "Hijack this" It allows you to look at the root files of your computer just boot using the "Safe Boot" option of your computer run the program, BE VERY CAREFUL about what you delete though you may accidentally destroy your computer. If you need more help check this post out: http://forums.spybot.info/archive/index.php/t-36040.html

Before we start fixing anything you should print out these instructions or copy them to a NotePad file so they will be accessible.
Some steps will require you to disconnect from the Internet or use Safe Mode and you will not have access to this page.

1 - SDFix

Download SDFix (http://downloads.andymanchesta.com/RemovalTools/SDFix.exe) and save it to your Desktop.

Double click SDFix.exe and it will extract the files to %systemdrive%
(Drive that contains the Windows Directory, typically C:\SDFix)


2 - Boot into Safe Mode

Reboot your computer in Safe Mode.

If the computer is running, shut down Windows, and then turn off the power.
Wait 30 seconds, and then turn the computer on.
Start tapping the F8 key. The Windows Advanced Options Menu appears. If you begin tapping the F8 key too soon, some computers display a "keyboard error" message. To resolve this, restart the computer and try again.
Ensure that the Safe Mode option is selected.
Press Enter. The computer then begins to start in Safe mode.
Login on your usual account.


3 - Run SDFix

Open the extracted SDFix folder and double click RunThis.bat to start the script.
Type Y to begin the cleanup process.
It will remove any Trojan Services and Registry Entries that it finds then prompt you to press any key to Reboot.
Press any Key and it will restart the PC.
When the PC restarts the Fixtool will run again and complete the removal process then display Finished, press any key to end the script and load your desktop icons.
Once the desktop icons load the SDFix report will open on screen and also save into the SDFix folder as Report.txt
(Report.txt will also be copied to Clipboard ready for posting back on the forum).
Finally paste the contents of the Report.txt back on the forum with a new HijackThis log


4 - download and run RSIT

Download random's system information tool (RSIT) by random/random from here (http://images.malwareremoval.com/random/RSIT.exe) and save it to your desktop.
Double click on RSIT.exe to run RSIT.
Click Continue at the disclaimer screen.
Once it has finished, two logs will open. Please post the contents of both log.txt<- (will be maximized) and info.txt<- (will be minimized)

5 - Status Check
Please reply with

1. the SDFix.Report.txt (C:\SDFix\report.txt)
2. the logs from RSIT (log.txt ,info.txt)

^This is a quote from the forum itself^

(Coming from a wannabe techie who knows how to find the stuff but can't seem to use it) jokes

Hope it helps

#835868 Quote Report Edited by ~Drifting-Ashore 11 months 1 week ago

user avatar
~ambstrike
Member
Lelouch vi britainnia commands you
Topics: 6
Posts: 895
11 months 1 week ago
Is lookanddiscover dangerous? What does it do besides change your homepage?

user avatar
~Drifting-Ashore
Member
The cake is a lie, just like everything else.
Topics: 5
Posts: 1708
11 months 1 week ago
Actually, I don't really know, sorry, but that's because I treat all Viruses, Spam, Malware, Spyware, Adware, High Jackers, Trojans, Rootkits, etc. very seriously; better safe than sorry, I always say. Anyways, that High Jacker may just lead you to that site now, but, may soon change, it might even let other viruses, spyware, adware, etc. into your computer through a back door, you have to be cautious, especially if you use your computer for official business like financial transactions or the likes. Just try to remove it now, and surf more cautiously in the future.

user avatar
~ambstrike
Member
Lelouch vi britainnia commands you
Topics: 6
Posts: 895
11 months 1 week ago
I still cant remove it, I'm on the verge of giving up.
Is there a 100% sure way to remove it, like 1 program , scan, delete, finish no hassle cause I'm still a computer noob

user avatar
^hatesyou
Administrator
Please replace your keyboard-chair interface.
Topics: 54
Posts: 4098
11 months 5 days ago
Format C:

Guaraneteed to kill it dead.

user avatar
~ambstrike
Member
Lelouch vi britainnia commands you
Topics: 6
Posts: 895
11 months 5 days ago
Anything but that, its extremely troublesome to transfer data here and there

user avatar
~Rey-Asuka
Member
ArchAngel
Topics: 2
Posts: 694
11 months 5 days ago
What do you have on your pc man?
can't you just copy them to an external hardrive?
or bring your computer to a shop to get it fixed.

user avatar
~Drifting-Ashore
Member
The cake is a lie, just like everything else.
Topics: 5
Posts: 1708
11 months 5 days ago
Hmm, if SDFix doesn't work, I'm guessing either:

1.) Maybe you forgot something, no offense but everyone tends to miss something, maybe you didn't get to unplug your internet? The hijacker might have a connection with a server that allows it to stick to your PC through the web.

2.) Try more more time, better safe than sorry or:

3.) You could try "Hijack This" without the quotes of course, it's A LOT more complicated than my previous post but, you'll need the assistance of a tech support forum though, be VERY careful with the program; you might delete an important file which runs your computer. Hijack This allows you to look at each root file, hidden or not, using this you must hunt down each and every one of the hijacker files. DO NOT attempt this on your own btw. Many a computer were inaccessible after careless usage.

I'm not that big of a techie; I lack experience as much as you do but, try tech forums, Maximum PC is really good, sorry to repeat myself but, they are really good.

Hope this helps. (Personally, my old computer had an annoying virus so bad I had to NUKE the hard drive clean)

user avatar
~ambstrike
Member
Lelouch vi britainnia commands you
Topics: 6
Posts: 895
11 months 5 days ago
Ahhhh maybe i need to format my C drive. . . . How did i get it in the first place i feel like swearing like the AVGN now

user avatar
~Rey-Asuka
Member
ArchAngel
Topics: 2
Posts: 694
11 months 5 days ago
Certain websites maybe? better to keep important files on an external disk so you can just format/restore factory settings.

user avatar
~Drifting-Ashore
Member
The cake is a lie, just like everything else.
Topics: 5
Posts: 1708
11 months 5 days ago
Or you could get a recovery program, they usually cost but there are free ones floating around, as for reformatting, well, good luck with that, I guess, too bad you couldn't remove that virus. Hope you get your PC up and running fast though it usually takes 2 hours tops if you need to reinstall. As for the swearing, AVGN would be proud, I guess, Heheh

user avatar
~0x7c2
Member

Topics: 1
Posts: 111
11 months 4 days ago
I've just visited www.lookanddiscover.com and it looks like spammer, nothing dangerous here (except possibly that flash logo which I can't see becase I have no flash), if it is really a virus, you probably got it from some spam, but it's possible that it's isolated in your browser and rest of your system is safe. I suggest to reinstall your browser, delete your default profile, or try to create new windows user, but if your current user account has administrator rights than you should really listen to ^hatesyou because she has lot of experience with this ;-)

user avatar
^hatesyou
Administrator
Please replace your keyboard-chair interface.
Topics: 54
Posts: 4098
11 months 4 days ago
I've only suggested the quickest way out as the user wants a one step, guaranteed solution. Personally, I'd spend the time to kill it using a combination of tools and registry manipulation.

Usual tools I'd use would be a combination of Hijack This!, SDFix, Smitfraudfix, Combofix, MalwareBytes Anti Malware, Windows Defender and a few antivirus solutions (which aren't overly applicable given its a browser hijack).

Either way its the user's choice. Is it quicker to back up and start fresh knowing the hijack is dead or do you spend the time killing it and accept the risk that it may return unless you remove it completely?

user avatar
~0x7c2
Member

Topics: 1
Posts: 111
11 months 3 days ago
I must say that your solution looks very complicated but unfortunately t will not help :-( . But "The Big Wheel" told me that only working solution for this problem is to delete all files named "winsched.exe" from your system and especially from folder "C:\Documents and Settings\All Users\Start Menu\Programs\Startup"