Skip to content
  • Active
  • Severity: High
  • Worms
  • Windows
  • Verified · Apr 2021

How to remove Looksky.f

A step-by-step removal guide for affected devices. Follow the verified procedure below — most readers complete it in under 10 minutes.

Jake Doevan · Computer technology expert

Looksky.f – a variant of a Windows parasites that belong to a worm categoty

Looksky.f

Looksky.f is a rapidly spreading Internet worm, which propagates by contaminated emails. The parasite arrives in infected executable files attached to spoofed email messages. Social engineering plays a vital role in this case, as the attackers claim that the user's account (not specified) has been suspended.

Without a doubt, a computer worm is a dangerous threat to everybody infected. Not only can it inflict major damage to Windows system files but also result in financial losses or privacy issues due to its capabilities of tracking various information and sending it to cybercriminals.

Name Looksky.f
Type Worm, malware
Distribution Spreads via infected email attachments
Dangers Loss of personal information, system file damage
Removal Perform a full system scan with anti-malware program
System fix In case your Windows starts crashing, delivering errors, BSODs, or showing other instability symptoms, repair virus damage with FortectIntego

Once executed, Looksky.f silently installs itself to the system and runs a spreading routine. The worm sends e-mail messages with attached infected files to all the contacts in the Windows Address Book and some addresses harvested from local web (.htm) files.

These letters have the following subject:

  • “Your mail Account is Suspended”

The following body text informs users that certain account of theirs has been suspended, with an immediate prompt to open the attached malicious file:

We regret to inform you that your account has been suspended due to the violation of our site policy, more info is attached

The parasite's payload is comprised of several harmful functions. Looksky.f records all user keystrokes, collect system information and steals various login names and passwords.

Then it sends gathered data to a predefined e-mail address or transfers it to a predetermined web server. The virus can also execute specific commands issued by the remote attacker. The worm is able to automatically update itself via the Internet. It is also set up to secretly run on every Windows startup.

In order to remove malware and all the malicious files, you should perform a full system scan with SpyHunterCombo Cleaner or MalwarebytesMalwarebytes. Then, use FortectIntego to fix all the damaged Windows system files, as you might face crashes, errors, or other problems due to file corruption.

Be the first to comment

Spyware News
Privacy preferences

We use cookies to improve your experience and analyze traffic. Some cookies enable embedded content like videos and social posts. Choose what you allow — you can change this anytime.