www.007guard.com

Hi! when I run AgentNetstat I see: remote adress hxxp://www.007guard.com conected. I would like to know how can I kill this malware.

I tryed: ccleaner, shutdown system restore, start in safe mode, run malwarebytes, ccleaner again, restart and antivirus online…
But nothing 007guard is still there. ???
I have the free avast home version.
Thank you a lot.

I suggest:

  1. Clean your temporary files.
  2. Schedule a boot time scanning with avast with archive scanning turned on. If avast does not detect it, you can try DrWeb CureIT! instead.
  3. Use SUPERantispyware, MBAM or Spyware Terminator to scan for spywares and trojans. If any infection is detected, better and safer is send the file to Quarantine than to simple delete them.
  4. Test your machine with anti-rootkit applications. I suggest avast! antirootkit or Trend Micro RootkitBuster.
  5. Make a HijackThis log to post here or this analysis site. Or even submit the RunScanner log to to on-line analysis.
  6. Disable System Restore and then reenable it again.
  7. Immunize your system with SpywareBlaster.
  8. Check if you have insecure applications with Secunia Software Inspector.

The answer is here:

http://forum.avast.com/index.php?topic=40574.msg340233#msg340233

Thanks a lot :)… now say localhost conection established

Can you please modify your first post and edit the URL so it isn’t active to avoid accidental exposure. Change the www for wXw, e.g. wXw.007guard.com