I had Trojan.Vundo, and lots of Malware. Is it gone?

Discussion in 'Malware Help (A Specialist Will Reply)' started by isamu13, May 29, 2008.

  1. isamu13

    isamu13 Private E-2

    I followed the READ AND RUN thread for removing malware, but I'm not sure I have got rid of everything. I had the Trojan.Vundo amongst many many other viruses and malware. Here's my scans. Note that I had already ran a few of these programs before coming to these forums..
     

    Attached Files:

  2. isamu13

    isamu13 Private E-2

    3 More attachments..
     

    Attached Files:

  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Looks good...let's just do this:

    Please disable all anti-virus and anti-spyware programs while we do the following (re-enable when you are finished):

    Run C:\MGtools\analyse.exe by double clicking on it. This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    After clicking Fix, exit HJT.

    Now Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Now tell me if you are having any other issues.
     
  4. isamu13

    isamu13 Private E-2

    Thanks for the help.

    I fixed the registry. But here's my problem... I did a scan with Kaspersky online scanner and I'm still infected. Here's the log:
     

    Attached Files:

  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Then I would suggest that you remove that Sims file.......are you having any other problems?
     
  6. isamu13

    isamu13 Private E-2

    I don't think I have any problems now... yay!

    Except maybe that my clock seems to be stuck in military mode.... any suggestions?
     
  7. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    If you are not having any other malware problems, it is time to do our final steps:

    1. If we used ComboFix then UNINSTALL COMBOFIX (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
    2.
    * Click START then RUN
    * Now type "%userprofile%\Desktop\cf" /u in the runbox and click OK.
    * Note: The space between the cf and the /U, it must be there.
    3. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    4. You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete the C:\MGlogs.zip
    5. If you are running Windows XP or Windows ME, do the below:
    * Refer to the cleaning steps in the READ ME for your Window version and see the steps to Disable System Restore which will flush your Restore Points.
    * Then reboot and Enable System Restore to create a new clean Restore Point.
    6. After doing the above, you should work thru the below link:
    How to Protect yourself from malware!

    If removing ComboFix does not return your system clock...then go to the control panel / Regional and Language / customize / time -> there you can reset to how you want it displayed.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds