Click here to get back home

Vundo/Virtumonde trojan removal

 HomeNewsGroups | Search | About
 microsoft.public.security.virus    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content
Subject Author Date
Vundo/Virtumonde trojan removal geir.moi 02-24-2008
Posted by geir.moi on February 24, 2008, 10:04 pm
Please log in for more thread options
Here's what is did. I removed Virtumonde successfully.
I have Windows Vista Home Premium

To remove the Virtumonde Trojan, please proceed with the following
steps at your own risk.


STEP 1: Clean Temp folders
Start > All Programs > Accessories > System Tools > Disk Cleanup >
push OK

STEP 2: Run Vundo Fix.
Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
Reboot PC
http://www.atribune.org/ccount/click.php?id=4

STEP 3: Run Virtumundobegone.exe
Run > Run > Continue > Start > Yes > Reboot (may need to perform
manual reboot if PC freezes)
http://secured2k.home.comcast.net/tools/VirtumundoBeGone.exe

STEP 4: Run Vundo Fix again.
Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
Reboot PC
http://www.atribune.org/ccount/click.php?id=4

STEP 5: Hijackthis Log
Save to Desktop > Double click on icon 'hijackthis' > Run > 'Do a
system scan only and save logfile' > save log in notepad and attach to
e-mail.
http://nod32-av.com/utilities/HiJackThis%20for%20Troubleshooting/hijackthis.exe

STEP 6: Run ComboFix USE THIS STEP WITH CAUTION!!!!!
Save to Desktop > Double click on icon 'combofix' > Run
http://download.bleepingcomputer.com/sUBs/ComboFix.exe



STEP 7: Run Vundo Fix again.
Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
Reboot PC
http://www.atribune.org/ccount/click.php?id=4

STEP 8: Smitfraudfix
Save to Desktop > Double click on icon 'smitfraudfix' > Run > Option 2
http://siri.urz.free.fr/Fix/SmitfraudFix.exe

Posted by Milo on February 25, 2008, 4:57 pm
Please log in for more thread options
Thanks for sharing

How much time did you extend removing the vundo in your system?

--
Milo



"geir.moi@gmail.com" wrote:

> Here's what is did. I removed Virtumonde successfully.
> I have Windows Vista Home Premium
>
> To remove the Virtumonde Trojan, please proceed with the following
> steps at your own risk.
>
>
> STEP 1: Clean Temp folders
> Start > All Programs > Accessories > System Tools > Disk Cleanup >
> push OK
>
> STEP 2: Run Vundo Fix.
> Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
> Reboot PC
> http://www.atribune.org/ccount/click.php?id=4
>
> STEP 3: Run Virtumundobegone.exe
> Run > Run > Continue > Start > Yes > Reboot (may need to perform
> manual reboot if PC freezes)
> http://secured2k.home.comcast.net/tools/VirtumundoBeGone.exe
>
> STEP 4: Run Vundo Fix again.
> Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
> Reboot PC
> http://www.atribune.org/ccount/click.php?id=4
>
> STEP 5: Hijackthis Log
> Save to Desktop > Double click on icon 'hijackthis' > Run > 'Do a
> system scan only and save logfile' > save log in notepad and attach to
> e-mail.
> http://nod32-av.com/utilities/HiJackThis%20for%20Troubleshooting/hijackthis.exe
>
> STEP 6: Run ComboFix USE THIS STEP WITH CAUTION!!!!!
> Save to Desktop > Double click on icon 'combofix' > Run
> http://download.bleepingcomputer.com/sUBs/ComboFix.exe
>
>
>
> STEP 7: Run Vundo Fix again.
> Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
> Reboot PC
> http://www.atribune.org/ccount/click.php?id=4
>
> STEP 8: Smitfraudfix
> Save to Desktop > Double click on icon 'smitfraudfix' > Run > Option 2
> http://siri.urz.free.fr/Fix/SmitfraudFix.exe
>

Posted by Jim on February 26, 2008, 12:13 am
Please log in for more thread options
Quicker solution. Pop Windows Setup CD. Unplug PC. Wait 30 secs. Boot from
CD and run setup
:-)

> Here's what is did. I removed Virtumonde successfully.
> I have Windows Vista Home Premium
>
> To remove the Virtumonde Trojan, please proceed with the following
> steps at your own risk.
>
>
> STEP 1: Clean Temp folders
> Start > All Programs > Accessories > System Tools > Disk Cleanup >
> push OK
>
> STEP 2: Run Vundo Fix.
> Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
> Reboot PC
> http://www.atribune.org/ccount/click.php?id=4
>
> STEP 3: Run Virtumundobegone.exe
> Run > Run > Continue > Start > Yes > Reboot (may need to perform
> manual reboot if PC freezes)
> http://secured2k.home.comcast.net/tools/VirtumundoBeGone.exe
>
> STEP 4: Run Vundo Fix again.
> Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
> Reboot PC
> http://www.atribune.org/ccount/click.php?id=4
>
> STEP 5: Hijackthis Log
> Save to Desktop > Double click on icon 'hijackthis' > Run > 'Do a
> system scan only and save logfile' > save log in notepad and attach to
> e-mail.
> http://nod32-av.com/utilities/HiJackThis%20for%20Troubleshooting/hijackthis.exe
>
> STEP 6: Run ComboFix USE THIS STEP WITH CAUTION!!!!!
> Save to Desktop > Double click on icon 'combofix' > Run
> http://download.bleepingcomputer.com/sUBs/ComboFix.exe
>
>
>
> STEP 7: Run Vundo Fix again.
> Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
> Reboot PC
> http://www.atribune.org/ccount/click.php?id=4
>
> STEP 8: Smitfraudfix
> Save to Desktop > Double click on icon 'smitfraudfix' > Run > Option 2
> http://siri.urz.free.fr/Fix/SmitfraudFix.exe



Posted by Milo on February 26, 2008, 5:37 am
Please log in for more thread options
That's the last option, Reformating / or clean installing your system means
you've been defeated by those who made it.

I'de say you give it 30 Minutes to an hour

get a proper support from here or some support group. We are here to help and
give you another avenue than formatting.

--
Milo



"Jim" wrote:

> Quicker solution. Pop Windows Setup CD. Unplug PC. Wait 30 secs. Boot from
> CD and run setup
> :-)
>
> > Here's what is did. I removed Virtumonde successfully.
> > I have Windows Vista Home Premium
> >
> > To remove the Virtumonde Trojan, please proceed with the following
> > steps at your own risk.
> >
> >
> > STEP 1: Clean Temp folders
> > Start > All Programs > Accessories > System Tools > Disk Cleanup >
> > push OK
> >
> > STEP 2: Run Vundo Fix.
> > Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
> > Reboot PC
> > http://www.atribune.org/ccount/click.php?id=4
> >
> > STEP 3: Run Virtumundobegone.exe
> > Run > Run > Continue > Start > Yes > Reboot (may need to perform
> > manual reboot if PC freezes)
> > http://secured2k.home.comcast.net/tools/VirtumundoBeGone.exe
> >
> > STEP 4: Run Vundo Fix again.
> > Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
> > Reboot PC
> > http://www.atribune.org/ccount/click.php?id=4
> >
> > STEP 5: Hijackthis Log
> > Save to Desktop > Double click on icon 'hijackthis' > Run > 'Do a
> > system scan only and save logfile' > save log in notepad and attach to
> > e-mail.
> >
http://nod32-av.com/utilities/HiJackThis%20for%20Troubleshooting/hijackthis.exe
> >
> > STEP 6: Run ComboFix USE THIS STEP WITH CAUTION!!!!!
> > Save to Desktop > Double click on icon 'combofix' > Run
> > http://download.bleepingcomputer.com/sUBs/ComboFix.exe
> >
> >
> >
> > STEP 7: Run Vundo Fix again.
> > Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
> > Reboot PC
> > http://www.atribune.org/ccount/click.php?id=4
> >
> > STEP 8: Smitfraudfix
> > Save to Desktop > Double click on icon 'smitfraudfix' > Run > Option 2
> > http://siri.urz.free.fr/Fix/SmitfraudFix.exe
>
>
>

Posted by Jim on February 29, 2008, 12:04 am
Please log in for more thread options

> That's the last option, Reformating / or clean installing your system
> means
> you've been defeated by those who made it.

Really? I'd say you're defeated the moment your PC got hit.

> I'de say you give it 30 Minutes to an hour

An hour to clean up infections? I'm impressed. I wasted a week trying to
remove friggin trojan infections. Ended up reformatting/reinstalling OS.
It's quicker, easier and guaranteed it's 100% clean.

> get a proper support from here or some support group. We are here to help
> and
> give you another avenue than formatting.

Unlike some people I don't have days/weeks to spend cleaning craps from PCs.
I admit that sometimes I'm curious too. So I spend a day or two attempting
to get rid of infections. If it keeps popping back... heck... format it.
Somehow I don't feel safe using a PC even after virus infections have been
cleaned unless the PC gets reformatted and the OS is freshly reinstalled.
99.9999% of the time I end up reformatting. Yeah, I'm that kind of person.

> --
> Milo
>
>
>
> "Jim" wrote:
>
>> Quicker solution. Pop Windows Setup CD. Unplug PC. Wait 30 secs. Boot
>> from
>> CD and run setup
>> :-)
>>
>> > Here's what is did. I removed Virtumonde successfully.
>> > I have Windows Vista Home Premium
>> >
>> > To remove the Virtumonde Trojan, please proceed with the following
>> > steps at your own risk.
>> >
>> >
>> > STEP 1: Clean Temp folders
>> > Start > All Programs > Accessories > System Tools > Disk Cleanup >
>> > push OK
>> >
>> > STEP 2: Run Vundo Fix.
>> > Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
>> > Reboot PC
>> > http://www.atribune.org/ccount/click.php?id=4
>> >
>> > STEP 3: Run Virtumundobegone.exe
>> > Run > Run > Continue > Start > Yes > Reboot (may need to perform
>> > manual reboot if PC freezes)
>> > http://secured2k.home.comcast.net/tools/VirtumundoBeGone.exe
>> >
>> > STEP 4: Run Vundo Fix again.
>> > Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
>> > Reboot PC
>> > http://www.atribune.org/ccount/click.php?id=4
>> >
>> > STEP 5: Hijackthis Log
>> > Save to Desktop > Double click on icon 'hijackthis' > Run > 'Do a
>> > system scan only and save logfile' > save log in notepad and attach to
>> > e-mail.
>> >
http://nod32-av.com/utilities/HiJackThis%20for%20Troubleshooting/hijackthis.exe
>> >
>> > STEP 6: Run ComboFix USE THIS STEP WITH CAUTION!!!!!
>> > Save to Desktop > Double click on icon 'combofix' > Run
>> > http://download.bleepingcomputer.com/sUBs/ComboFix.exe
>> >
>> >
>> >
>> > STEP 7: Run Vundo Fix again.
>> > Run > Run > Scan for Vundo > Remove Vundo (when scan is completed) >
>> > Reboot PC
>> > http://www.atribune.org/ccount/click.php?id=4
>> >
>> > STEP 8: Smitfraudfix
>> > Save to Desktop > Double click on icon 'smitfraudfix' > Run > Option 2
>> > http://siri.urz.free.fr/Fix/SmitfraudFix.exe
>>
>>
>>



Similar ThreadsPosted
Win 32 Trojan removal help... April 13, 2007, 12:58 am
Re: Trojan Removal Help July 21, 2008, 6:20 am
Removal of Trojan Virus Startpage June 27, 2005, 12:25 pm
Removal of Virus/Trojan DLLs ? November 25, 2007, 12:13 am
Removal of Virus/Trojan DLLs ? (more decom tips) November 28, 2007, 9:32 am
Uninstall/removal of MRT (Microsoft Malicious Software Removal Tool) November 13, 2006, 9:03 am
lop.com removal tool? August 27, 2005, 10:43 pm
Virus removal help please! September 21, 2005, 5:39 pm
virus removal December 4, 2005, 4:51 am
Spyware Removal December 16, 2005, 4:55 am

Our other projects:

Art Dolls, Fairies and Mermaids - Sunnyfaces.net

Roy's Linux, Programming and Search Engines messages

1-Script XML SitemapXML Sitemap