Removing xxxxxxxx.dll Files Generated by Vundo

Q

Removing xxxxxxxx.dll Files Generated by Vundo

✍: Guest

A

1. Zipped all 2 suspicious files into a zip file, bho_200611.zip, and tried to delete them:
>del C:\WINDOWS\system32\swcskmxu.dll
(deleted)

>del C:\WINDOWS\system32\gidijvia.dll
(not deleted because it is in use)

2. Closed all Internet Explorer windows and File Explorer windows, and ran HijackThis:
Find and check the gidijvia.dll in the log
Click the "Fix checked" button

3. Ran HijackThis again:
Go to Config >> Misc Tools >> Delete a file on reboot
Select file: C:\WINDOWS\system32\gidijvia.dll
Click Yes to reboot the system

4. Verified the following places:

HijackThis report: clean
C:\WINDOWS\system32 directory: clean
Internet Explorer add-on list: clean

2009-01-13, 5013👍, 0💬