Re: Backdoor Win32/Vundo.G!dll



Sandy wrote:
How do I get rid of this?

My message was this High Risk

Backdoor:Win32/Vundo.G!dll

c:/system volume information\restore{106cf321-99a3-9103-1bd027606a99\rp74\a0009528.dll

Go through the preparatory steps systematically - http://www.elephantboycomputers.com/page2.html#Removing_Malware

Include scanning with either Sysclean or Multi_AV, plus AVG Anti-Spyware (formerly Ewido - http://www.ewido.net/en/) and follow instructions to do all scans in Safe Mode.

There are specific Vundo removal steps here:
http://www.elephantboycomputers.com/page2.html#Winfixer

When all else fails, run HijackThis and post your log in one of the specialty forums listed at the link above (not here, please).

Standard caveat: If the procedures look too complex - and there is no shame in admitting this isn't your cup of tea - take the machine to a professional computer repair shop (not your local version of BigStoreUSA). Please be aware that not all local shops are skilled at removing malware and even if they are, your computer may be so infested that Windows will need to be clean-installed. Have all your data backed up before you take the machine into a shop.


Malke
--
Elephant Boy Computers
www.elephantboycomputers.com
"Don't Panic!"
MS-MVP Windows - Shell/User
.



Relevant Pages

  • Re: How do i get rid of Win32/zlob.zwc?
    ... Since Vista is so new, it will be a while before removal techniques and tools are developed. ... If the procedures look too complex - and there is no shame in admitting this isn't your cup of tea - take the machine to a professional computer repair shop. ... Please be aware that not all local shops are skilled at removing malware and even if they are, your computer may be so infested that Windows will need to be clean-installed. ... MS-MVP Windows - Shell/User ...
    (microsoft.public.security.virus)
  • Re: antispystorm
    ... Since Vista is so new, it will be a while before removal techniques and tools are developed. ... If the procedures look too complex - and there is no shame in admitting this isn't your cup of tea - take the machine to a professional computer repair shop. ... Please be aware that not all local shops are skilled at removing malware and even if they are, your computer may be so infested that Windows will need to be clean-installed. ... MS-MVP Windows - Shell/User ...
    (microsoft.public.security)
  • Re: pc security lab
    ... I can't find your exact malware entry but do find PC Cleaner, which is a variant of Vundo. ... If the procedures look too complex - and there is no shame in admitting this isn't your cup of tea - take the machine to a professional computer repair shop. ... Please be aware that not all local shops are skilled at removing malware and even if they are, your computer may be so infested that Windows will need to be clean-installed. ... MS-MVP Windows - Shell/User ...
    (microsoft.public.windowsxp.general)
  • Re: Help.. "Noooh.. please try to open task manager etc" sys.exe
    ... Include scanning with either Sysclean or Multi_AV, plus AVG Anti-Spyware ... If the procedures look too complex - and there is no shame in admitting this isn't your cup of tea - take the machine to a professional computer repair shop. ... Please be aware that not all local shops are skilled at removing malware and even if they are, your computer may be so infested that Windows will need to be clean-installed. ... MS-MVP Windows - Shell/User ...
    (microsoft.public.windowsxp.security_admin)
  • Re: files disappeaing mysteriously
    ... You can also check to see if there are targeted removal steps for your malware here: ... If the procedures look too complex - and there is no shame in admitting this isn't your cup of tea - take the machine to a professional computer repair shop. ... Please be aware that not all local shops are skilled at removing malware and even if they are, your computer may be so infested that Windows will need to be clean-installed. ... MS-MVP Windows - Shell/User ...
    (microsoft.public.windowsxp.general)