Pls help. Trojan Vundo

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by sagun, Apr 30, 2005.

  1. sagun

    sagun Private E-2

    Can someone help me to get rid of the Vundo.trojan virus. It has infected the following file in C:\WINDOWS\Registration\cmdacc.dll
    Norton detected it but could not repair or quarantine it. The symantec Vundo.trojan removal program could not find it. Trojan remover could not detect it. I unsuccessfully tried deleting the BHO and the file using Hijack This by following some guidelines from other forum posts and failed.
    My specs are as follows:
    OS- Windows XP Pro SP2.
    Anti Virus- Norton 2005 trial version.

    Pls help.
     
  2. XspeedyX

    XspeedyX Private E-2

    Follow these steps:

    Download HijackThis 1.99.1

    - Unzip the hijackthis.exe file to a folder you create named C:\Program Files\HJT

    - Do NOT run Hijack This from the Desktop, a temp folder, or a sub-folder of C:\Documents and Settings, or choose to run it directly from the downloaded ZIP file.

    - Before running HijackThis: You must close each of the following:your web browser, e-mail client, instant messenger, and programs like notepad, wordpad, MS Word etc. And any other unnecessary running programs.

    - Run HijackThis and save your log file.

    - Post your log as an ATTACHMENT to your next message. (Do NOT copy/paste the log into your post)

    Look here before you post http://forums.majorgeeks.com/showthread.php?t=35407

    Did you try this removal tool http://forums.majorgeeks.com/showthread.php?t=61742
     
  3. sagun

    sagun Private E-2

    Hi,
    I have attached my log file. I did try the new symantec tool which detected the virus and said it will be deleted on reboot. But unfortunately it was not deleted.
     

    Attached Files:

  4. deant

    deant Private E-2

    If you have the Vundo.B virus there appears to be a couple of key things to do when you run the new Symantec removal tool:

    1. Run the removal tool when you are in the safe mode
    2. Make sure you are disconnected from any network.

    Hope this helps.
     
  5. sagun

    sagun Private E-2

    Re: Trojan Vundo

    Thanks a lot Deant. The new tool worked in the safe mode, it seems Vundo's been deleted.
    :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds