User Name Password Register
DaniWeb IT Discussion Community
All
What is DaniWeb IT Discussion Community?
You're currently browsing the Viruses, Spyware and other Nasties section within the Tech Talk category of DaniWeb, a massive community of 425,972 software developers, web developers, Internet marketers, and tech gurus who are all enthusiastic about making contacts, networking, and learning from each other. In fact, there are 1,686 IT professionals currently interacting right now! Registration is free, only takes a minute and lets you enjoy all of the interactive features of the site.
Please support our Viruses, Spyware and other Nasties advertiser: Programming Forums
Views: 2823 | Replies: 3 | Solved
Reply
Join Date: Apr 2008
Posts: 1,239
Reputation: sittas87 is on a distinguished road 
Rep Power: 3
Solved Threads: 36
sittas87 sittas87 is offline Offline
Nearly a Posting Virtuoso

Mal_Vundo-4

  #1  
Apr 25th, 2008
Hi
I have a Virus named Mal_Vundo-4 and cannot remove it.I have Trend Micro office scan that currently detects the Vundo,however it cannot remove it as it clearly states.I previously ran vundfix and that didn't detect it.

Any help is appreciated
Thanx in advance
=====No One Will Manufacture A Lock Without A Key=====
===Similarly God Wont Give Problems Without Solutions===
AddThis Social Bookmark Button
Reply With Quote  
Join Date: Apr 2008
Posts: 1,239
Reputation: sittas87 is on a distinguished road 
Rep Power: 3
Solved Threads: 36
sittas87 sittas87 is offline Offline
Nearly a Posting Virtuoso

Re: Mal_Vundo-4

  #2  
Apr 25th, 2008
Hey all
I've managed to solve the problem.For those having the same trojan (Mal_Vundo-4) or other Vundo trojan,I highly recommend the following.

First do a scan with the following program:Trend Micro Office scan that-find it @ http://www.trendmicro.com.
If the program cannot remove the virus wich it will tell you,then install a program called system clean witch is a DOS application that can also be found at the above site.
create and store it in a temp folder in the root of the drive you want to scan eg C.
do not run the DOS application yet because theres two more files needed to work in relation with the application.these files are named lpt239 and sspdaX_XXX (note I've replaced the sspdaX_XXX with the file sspda6_633)
The files is zip files and needs to be extracted in the same temp folder as the DOS application.

After the extraction run application and let it do its job.it takes several minutes but did the trick.I also did a registry cleaner after that just to ensure a good job.for that i used RegCure http://regcure.com/.

!!The X's in the second pattern file represent other caracters but I could find that file and replaced it with the above file.It does give a error upon the run of the DOS but it works fine if you click continue/scan

Good luck
=====No One Will Manufacture A Lock Without A Key=====
===Similarly God Wont Give Problems Without Solutions===
Reply With Quote  
Join Date: Apr 2008
Posts: 1
Reputation: SammieP is an unknown quantity at this point 
Rep Power: 0
Solved Threads: 0
SammieP SammieP is offline Offline
Newbie Poster

Re: Mal_Vundo-4

  #3  
Apr 25th, 2008
I have downloaded the system cleaner from trendmicro but don't know where to get the other files needed to clean this. Any help?
Reply With Quote  
Join Date: Apr 2008
Posts: 1,239
Reputation: sittas87 is on a distinguished road 
Rep Power: 3
Solved Threads: 36
sittas87 sittas87 is offline Offline
Nearly a Posting Virtuoso

Re: Mal_Vundo-4

  #4  
Apr 29th, 2008
Originally Posted by SammieP View Post
I have downloaded the system cleaner from trendmicro but don't know where to get the other files needed to clean this. Any help?

Location of the files:
sspdaX_XXX(sspda6_634) -http://www.trendmicro.com/ftp/produc...sspda6_637.zip


lpt239
http://www.trendmicro.com/download/a...ruspattern-cpr

Both files has been updated,but dont mind the difference in numbering codes eg lpt239 thats updated to lpt245


[Follow the links and you'll see see the files on the page-Good luck ]
=====No One Will Manufacture A Lock Without A Key=====
===Similarly God Wont Give Problems Without Solutions===
Reply With Quote  
Reply

Only community members can participate in forum threads. You must register or log in to contribute.

DaniWeb Viruses, Spyware and other Nasties Marketplace
Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)

 

Thread Tools Display Modes

Other Threads in the Viruses, Spyware and other Nasties Forum

All times are GMT -4. The time now is 11:10 pm.
Forum system based on vBulletin Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
©2003 - 2008 DaniWeb® LLC