Hi and is there any help for vundo.genk?

Discussion in 'Malware Help (A Specialist Will Reply)' started by Starz, Oct 11, 2008.

  1. Starz

    Starz Private E-2

    Hi I am new here and of course it is because I have a trojan virus issue. :crydon't know where and how I got it, was a tough one to defeat, did have to uninstall malwarebytes and reinstall it in order to get the better of it, but I still seem to have some residuals left, any ideas how to clean them all out? It seems to hijack all my spyware/virus protection ware. What a bear, it then proceeds to crash the computer. Takes several reboots, a couple of times had to go to safe start. It still seems to have my AVG, should I uninstall and reinstall it? I keep getting a warning that I should update my windows, which I do everyday when I shutdown my computer, so I don't see why I would be getting the symbol down on my start bar. I ran my McAfee and it caught a few bits, and malwarebytes caught some but I am feeling as though there are still residules, won't let me access my AVG, won't even load. Help....thanks:(
     
  2. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Welcome to Major Geeks, Starz!

    Please follow the instructions in the below link and attach the requested logs when you finish these instructions.

    • If something does not run, write down the info to explain to us later but keep on going.
    • Do not assume that because one step does not work that they all will not.
    READ & RUN ME FIRST. Malware Removal Guide

    Notes:
    1. If you run into problems trying to run the READ & RUN ME or any of the scans in normal boot mode. You can run the steps in safe boot mode but make sure you tell us what you did later when you post logs. See the below if you do not know how to boot in safe mode:
    2. If you have problems downloading on the problem PC, download the tools on another PC and burn to a CD. Then copy them to the problem PC. You will have to skip getting updates if (and only if) your internet connection does not work. Yes, you could use a flash drive too but flash drives are writeable and infections can spread to them.

    Thanks!
     
  3. Starz

    Starz Private E-2

    Ok. so here is the issue. When I got vundo, and a mass of others all at once, not sure how I contacted them. The virus alert came up while I was working offline, apparently it was in a file I opened and it was activated. I am really a noob here. I don't know much about computers other than what I have taught myself out of no choice but learning on my own. My normal firewall is McAfee, it is my sytem virus checker. Then at some point I had added AVG and Spybot. Both of which I would run periodically to catch spyware/adware. Then about 4 months ago, I had somehow got infected with a trojanvirus ware fake alert virus, the name of which right now escapes me. I went to your forum here and found the removal instructions to that virus and that included downloading malwarebytes. I ran it, and it totally removed the virus. So because I have limited memory space I removed fairly recently spybot, and a couple of other spyware, and left only AVG and malware and of course my system firewall McAfee.

    Now, it seems as though most of the vundo, is gone, but I keep occasionally getting virus alerts, I am not sure if they are residuals from the fake vundo warnings or if they are legitimate. I am not getting the overrides when I run my virus scanners the way I did when I first contacted vundo. It hijacked all the virus systems and that is why I uninstalled and reinstalled, figuring that because it was new the virus wouldn't affect the reinstalled malwarebytes, and AVG. I first ran malware, did a quick scan which caught most of vundo, and they went to quarentine, then I reinstalled AVG and did a deep scan, and it caught winexe something or another viruses and of course several malware and other viruses and adware etc. again these went to quarantine. Then I did once more a full scan in malware, ran McAfee and still kept catching various viruses. So, after all this, I was basically having slow start ups, slow uploads (not sure of the terms I am using here, not comp.lit.) Takes for ever for IE to load, etc. So I do have CCleaner, I run it daily, and its registry fix. Ran those. Still seems sluggish. And I can't get the little icons on the bottom right hand corner to get out of there, AVG is there, Window update, MSoutlook and now the smartde- frag. GRRRR

    Now the question is, should I still follow the Windows xp cleaning procedure or not? Will it be moot? I think I have all of the virus out now. But if I do the cleaning procedure, will it help with the slowness? I never seemed to have problems before to the extent I am having now since having got this virus. I also had thought to try a system restore to a point last week and even though I have restore points, when I tried it, it rebooted with a message saying that system restore was unable to take it back to the point selected it had failed, and asked if I wanted to try another. At this point I elected no, not sure as to why it didn't work. I have done this in the past with out a problem. Another question is, I did do the procedure to unhide hidden folders, should I now run my virus detection programs again? and when done should I rehide them? I am really not sure what I should do.

    thanks so much for any help, I am really computer stupid, having not learned any computer skills. I am in my 50's and didn't have the luxury of learning skills while in school, before my time, lol. I have had my computer for 3 years, and I must say that never before have I had the trojan virus problems until recently. Its like all of a sudden they are running rampant. I don't do much surfing, I only go to a few sites and they are sites I have always gone to without incident. :) I don't have a lot of emails either. I don't do blogs, myspace and the likes. The other thing is should I delete the quarantine files in the removal programs?:confused
     
  4. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Hello, Starz

    Yes, please start over with the READ & RUN ME FIRST: Malware Removal Guide... the tools have recently been updated and your question about the quarantine files is answered there.
     
  5. Starz

    Starz Private E-2

    Alright I have done the first part of the Malware removal guide, I have the combofix on the desktop. However the instructions refer to using the xp download boot disks, which I do not have. this computer was built by my daughter's x-boyfriend and he has the original download disks. I tried to figure out how to do what the instructions say about downloading the recovery console from the site, but I am not sure how to do any of what they are talking about at the microsoft recovery center, do I need all the downloads? I have xp professional I again am really not computer savy and am afraid of doing the wrong things here. should I do this with your help or skip? I attached the files of the first part of the removal process...



    Also, I don't understand where to download the MGtools.exe., again I am not good at navigating around in the computer, and I don't want to put it where is doesn't belong...
     

    Attached Files:

  6. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Hello, Starz

    Installing the Recovery Console is highly recommended but not necessary. Please continue on with the instructions for running ComboFix.

    Please review Step 1: of the Windows XP Cleaning Procedure instructions carefully.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds