Start a Conversation

Unsolved

This post is more than 5 years old

6387

February 5th, 2011 18:00

XPS M1530 running Windows 7 and Trojan.Vundo

Hello,

I recently found out that I have a Trojan.Vundo virus! I can not find anything that will remove it. Can any one help?

Also, I backed up my computer a couple of months ago and I haven't added anything that can't be re-added, can I just start my system over? I know that the Trojan.Vundo was not on my computer at the time of the back up!

Thank you!

3 Apprentice

 • 

20.5K Posts

February 5th, 2011 22:00

Try running Malwarebytes' Anti-Malware.
Please download to your desktop Malwarebytes' Anti-Malware from Here or Here

Double Click mbam-setup.exe to install the application.

  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Press the OK button to close that box and continue.
  • If you encounter any problems while downloading the updates,
manually download them from here
and just double-click on mbam-rules.exe to install.
Alternatively, you can update through MBAM's interface from a clean computer,
copy the definitions (rules.ref) located in
C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes'
Anti-Malware from that system to a usb stick or CD and then copy it to the infected machine.
  • Once the program has loaded, select "Perform Quick Scan"; then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checkedPhotobucket
    Click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • If you are still having problems and/or would like a follow-up check to be sure the infection as well as vulnerabilities are gone, copy and paste the entire report into a New Message on the Malware Removal forum. Also include a fresh HijackThis log. Instructions for downloading HijackThis are in the "Please Read..." announcement at the top of that forum.

     

    1. Just click the "+ New Post" button (upper right) in the Malware Removal forum HERE
    to start your own thread requesting assistance for a follow-up check to be sure the malware is gone.

    2. In the discussion window that opens, simply Right-Click and select Paste.

    Extra Notes:
    If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer, please do so immediately.

     

    * If you are unable to download or install MBAM on your computer, see if you can use a friend's or family member's computer to download MBAM. Use this update link here to manually download the update. Once downloaded, rename the program installer "mbam-setup.exe" file to something else like "catchjunk.exe". Copy the installer file and the update file to your CD or flash drive. Transfer the file to the infected computer. Install the "catchjunk.exe" file, then run the update so that you will have the current definitions. After that, run a full system scan and select to have the program REMOVE whatever it finds.

     

    -- MBAM may make changes to your registry as part of its disinfection routine. If you're using other security programs that detect registry changes (like Spybot's Teatimer), they may interfere with the fix or alert you after scanning with MBAM. Please disable such programs until disinfection is complete or permit them to allow the changes.

    **If you need to re-install MBAM but encounter issue in re-installing, try using the MBAM Cleanup Utility by downloading it from http://www.malwarebytes.org/mbam-clean.exe

February 6th, 2011 06:00

I ran a quick scan and nothing popped up.

Here is what the problem is: When I open my email account (Hotmail) everything loads fine. When I open an email, the advertisement to the right keeps reloading, the "Hotmail - Inbox" on the window tab keeps reloading, the "Reload Current Page" keeps flashing between the Red X and the Reload Arrow. When I try to scroll down the page I get pulled back to the top. I've log on to my mothers email and it does the same thing however when I use another computer both email accounts are fine. I am currently running Firefox Version 4 Beta 9

I am going to run a full system scan with Malwarebytes.

3 Apprentice

 • 

20.5K Posts

February 6th, 2011 08:00

What diagnosed this activity as "Vundo"? The symptoms that you describe do not sound like Vundo to me. What anti-virus are you using?

Does this happen with IE as well as Firefox Beta?

No Events found!

Top