From a forum
"I had the W32.Gaobot!inf virus which modified the host file and used to stop me
getting to virus websites.
The abnormal file with my computer with gaobot is soundtasks.exe, a bit like the
aveserve file the Sassa virus uses.
You need to go into the registry (type regedit on run on the start menu).
Under
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices you will
find soundtasks.exe and this is the Gaobot virus which is being executed at startup.
You must delete this file from RunServices since the only file that should be here is
the default file.
Then you go to search all files and folders and delete soundtasks.exe from anywhere
on the hard disk.
This should all be done in SAFE mode so the virus isnt running. After this get all
the windows update patches to prevent reinfection.
Hope this works for you.
Want to reply to this thread or ask your own question?
You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.