Win32/Vundo virus and Antivirus 2008 Pro trojan Removal
July 27, 2008 by admin Filed under All posts, Computer Info
I recently was trying to cleanup a computer for a relative and it had the Win32/Vundo virus and Antivirus 2008 Pro trojan on it and 8 other little buggers, they would let IE open and I was able to go to some sites, but was redirected when trying to go to Windows Update or any site that would have a tool to remove these buggers, I would be redirected to asiuoqgusdbaksd.com and then you get redirected to a site like the one you were searching for, like Spybot Search and Destroy it would redirect you from asiuoqgusdbaksd.com to a false Spybot download site.
I tried downloading Spybot to a Flash drive and then cut and pasted it to the infected computer, suprise, suprise, lol, it disabled opening certain exe files, Firefox-No, Spybot-No, it blocked any software that would be able to remove it. I was able to install Safari Browser ( Apples ) but when I tried to go to sites to download a tool I would get a error page. I was able to download AVG Free Antivirus and install it on the infected computer, but again when I tried to update the def files it blocked the download site, AVG found some infections 10 actually but was not able to remove them. I also was able to get to Windows Live OneCare and run the scan, which really surprised me, it found 10 infections also but could not remove them.
So this was getting fustrating and I was about ready to reformat and reinstall when I ran across Malwarebytes Anti-Malware Tool at malwarebytes.org I downloaded this from my clean computer to a Flash Drive and then copied and pasted it to the infected computers Desktop in Safe Mode and then clicked the .exe file to install it, hmmm nothing blocked, so for fun I renamed the file Howdy and clicked it, lol, it installed, I was not able to update it, but I ran the tool and it removed all but one infection, it then asked if it could run at startup and I checked OK, I then restarted and let it bootup normally, Malwarebytes’ Anti-Malware Tool ran before Windows XP Pro started and it removed the last infection and then let Windows finish booting. Once XP was up I was able to install Spybot Search and Destroy and update it, it found one more infection. The computer was almost back to normal, I was able to start Firefox and was able to get to Windows Update. I had uninstalled all the Java file in Add and Remove, so I had to get that installed, then the Background tab and Screen Saver Tab were missing in Desktop Properties, I got those working. Then I updated Malwarebytes’ Anti-Malware Tool and AVG Free and ran them on full scans, they found a few tracking cookies, these scans take a few hours.
Those are some nasty little infections, lol, but you can get them removed and reclaim your computer. That tool Malwarebytes Anti-Malware Tool at malwarebytes.org is a free tool, you can purchase the Pro version, which I think I may do to support it, but the free version worked great, I have added it to my Start Menu, I now have, AVG Free AntiVirus, Spybot Search and Destroy and now Malwarebytes. If you need help or have questions use the Contact Form.
One Note: if you use a USB or Flash Drive to transfere files to a infected computer, they can get infected so make sure you scan them for infections when connecting them back up to the clean computer, just right click on them in My Computer and run scans before openning any files.
Comments?