xnmclam
Joined: 01 Sep 2007 |
Posts: 0 |
|
|
 |
Posted: Sat Sep 01, 2007 4:01 pm |
|
 |
 |
 |
 |
how 2 del tis virus
Scan Started Wed Aug 22 18:13:23 2007
-------------------------------------------------------------------------------
*** Scanning Programs in Computer Memory ***
*** Scanned 17 processes - 300 modules ***
*** Computer Memory Scan Completed ***
how to solve the problem below
D:\WINDOWS\system32\yabya.dll: Trojan.Vundo-308 FOUND
D:\WINDOWS\system32\yayabab.dll: Adware.Virtumonde-86 FOUND
D:\DOCUME~1\AlexGui\LOCALS~1\Temp\anfsbumc.dll: Trojan.Agent-68 FOUND
D:\WINDOWS\system32\slaxfuqj.dll: Trojan.Packed-7 FOUND
D:\WINDOWS\system32\fguwfkmu.dll: Trojan.Agent-68 FOUND
D:\DOCUME~1\AlexGui\LOCALS~1\Temp\rkpxwerg.dll: Adware.BHO-32 FOUND
----------- SCAN SUMMARY -----------
Known viruses: 148157
Engine version: 0.91.1
Scanned directories: 0
Scanned files: 317
Skipped non-executable files: 0
Infected files: 6
|
|
alch
Site Admin
Joined: 27 Nov 2005 |
Posts: 0 |
|
|
 |
Posted: Sun Sep 02, 2007 1:32 am |
|
 |
 |
 |
 |
set clamwin to "move infected files to quarantine" and "unload infected programs" in the general tab of ClamWin preferences
|
|
xnmclam
Joined: 01 Sep 2007 |
Posts: 0 |
|
|
 |
Posted: Sun Sep 02, 2007 4:59 am |
|
 |
 |
 |
 |
i hv set the option ad but it still doesn't work.izzit any other way??or is the software internal problem??
help me......
|
|
sherpya
Joined: 22 Mar 2006 |
Posts: 0 |
Location: Italy |
|
 |
Posted: Mon Sep 03, 2007 10:46 am |
|
 |
 |
 |
 |
go in advanced tab then add --unload to additional program arguments
beware clamscan may crash explorer by unloading dlls, that it's not really big deal,
but crashing winlogon (if the malware attached winlogon) may lead in a bsod
remember to quarantine the file or it will be reloaded
then download autoruns from microsoft (search google)
select "hide microsoft entries" and remove references to cleaned files
|
|
GuitarBob
Joined: 09 Jul 2006 |
Posts: 9 |
Location: USA |
|
 |
Posted: Mon Sep 03, 2007 9:54 pm |
|
 |
 |
 |
 |
It looks like your trojan/malware is adware/spyware. If you still have trouble with them, a good anti-spyware program will probably delete them for you. Try booting into safe mode and then running anti-spyware and ClamWin.
Regards,
|
|
rseek
Joined: 23 Sep 2007 |
Posts: 0 |
Location: india |
|
 |
Posted: Sun Sep 23, 2007 11:06 am |
|
 |
 |
 |
 |
dwnload vundofix from https://www.atribune.org/content/view/24/2/ and run vundofix.exe. after cleaning you may run clamwin and antispy apps like superantispyware spybot etc.
|
|
rseek
Joined: 23 Sep 2007 |
Posts: 0 |
Location: india |
|
 |
Posted: Sun Sep 23, 2007 11:09 am |
|
 |
 |
 |
 |
also for virtumonde Download f-vmonde.zip from https://www.f-secure.com/sw-desc/virtumonde.shtml
|
|