Hello, my husband somehow got a worm/trojan/virus on his laptop that we have Norton360 on. From researching the running processes I've come down to the gaobot.ee worm (?) Processes in question are
lsass.exe > this is in C:\i386, C:\WINDOWS\system32, C:\WINDOWS\ServicePackFiles\i386
svchost.exe> same as lsass
BAsfIpM.exe>only in C:\i386 and C:\WINDOWS\system32
csrss.exe> in the same places as lsass
SMSS.exe> ditto and add C:\i386\SYSTEM32
One thing that I am sure of is that it is disallowing Norton360 to run. It is also disabling access to online virus removal websites (including the symantec one). I can access google and other websites, but anytime I go to one of the virus removal sites, it won't load the pages.
My question is: If I cannot run Norton360 in safe mode, and I cannot get onto online removal sites, how do I get rid of this thing? I cannot download or run hijack this as I cannot get on the website from his computer. Same for kaspersky, and bitdefender.
Thanks very much for your input.