This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

[Closed] removal of Win32/Daonol.L please!

2 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Hello, was just wondering if someone could help me get rid of a really frequent annoying pop up i keep getting, i have a networked pc on a small server and have e-trust antivirus software on it, Every 2 minutes or so i get this pop up from e-trust, which says it has found an infected file an that it has been deleted. The Win32/Daonol.L was detected in C:\WINDOWS\ELQKKOE.TMP. Machine: DANIELBELL, User: BELL\Dan. Status: Deleted it obviously just keeps coming back as this pop up comes up all the time. I have opened the folder which it says the file is in and you can actually see the file keep disappearing and reappearing. Im guessing that the antivirus software is doing its job in detecteing and deleting this file, but its obviously not found the trojan or virus that keeps distributing it! i have done a full system scan with e-trust and it returned nothing! any help please!!!
Hi,

Please do the following:

Please download DDS from either of these links

LINK 1
LINK 2

and save it to your desktop.
  • Disable any script blocking protection
  • Double click dds.pif to run the tool.
  • When done, two DDS.txt's will open.
  • Save both reports to your desktop.
—————————————————
Please include the contents of the following in your next reply:

DDS.txt
Attach.txt.

NEXT


[external image: Posted Image]
Download GMER Rootkit Scanner from here or here.
  • Extract the contents of the zipped file to desktop.
  • Double click GMER.exe. If asked to allow gmer.sys driver to load, please consent .
  • If it gives you a warning about rootkit activity and asks if you want to run scan…click on NO.

    [external image: Posted Image]
    Click the image to enlarge it
  • In the right panel, you will see several boxes that have been checked. Uncheck the following …
    • Sections
    • IAT/EAT
    • Drives/Partition other than Systemdrive (typically C:\)
    • Show All (don't miss this one)
  • Then click the Scan button & wait for it to finish.
  • Once done click on the [Save..] button, and in the File name area, type in "Gmer.txt" or it will save as a .log file which cannot be uploaded to your post.
  • Save it where you can easily find it, such as your desktop, and post it in your next reply.

**Caution**
Rootkit scans often produce false positives. Do NOT take any action on any "<— ROOKIT" entries

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI