Trojan: Win32/Vundo.gen!P

Discussion in 'Malware Help (A Specialist Will Reply)' started by jvaudio, Sep 30, 2008.

  1. jvaudio

    jvaudio Private E-2

    Hello

    We recently had a customer come into our store (Office Max) with this trojan. She claimed that it was from her daughter using Limewire, and from the bit I have found on the internet, that appears likely. Since we don't offer any sort of instore tech service, I was wondering if someone could help.

    I had her download and run HijackThis and I have attached the logfile. Could someone please inform me of the steps necessary to remove this? Thank you in advance!
     

    Attached Files:

  2. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    Welcome to Majorgeeks! jvaudio


    Not my major area of expertise is malware removals but to get you started with the removals process and gaining some logs for our malware experts, I will post the below info for you to follow on that PC, mainly as I have noticed some maware/rogue items I have seen before in once called Antivirus 2009 which is a rouge antivirus application, with this installed as it is their will likely be other malwares hiding too and just a Hijackthis log doesnt find all of them.


    Follow the below and it should clean up many of the malware components on the PC, but you maybe left with a few as to be sneeky they change their .exe names to random ones, so this is where the logs come in handy to a trained eye. The malware guys will post some further removal instructions for you to follow.


    Please follow the instructions in the below link and attach the requested logs when you finish these instructions.


    • If something does not run, write down the info to explain to us later but keep on going.
    • Do not assume that because one step does not work that they all will not.
    Notes:

    1. If you run into problems trying to run theREAD & RUN ME or any of the scans in normal boot mode. You can running steps in safe boot mode but make sure you tell us what you did later when you post logs. See the below if you do not know how to boot in safe mode:
    2. If you have problems downloading on the problem PC, download the tools on another PC and burn to a CD. Then copy them to the problem PC. You will have to skip getting updates if (and only if) your internet connection does not work. Yes you could use a flash drive too but flash drives are writeable and infections can spread to them.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds