Removing Trojan Vundo with FixVundo.exe from Symantec

Q

Removing Trojan Vundo with FixVundo.exe from Symantec

✍: Guest

A

1. Downloaded FixVundo.exe from http://securityresponse.symantec.com/avcenter/FixVundo.exe:
11/04/2006 08:51 AM 166,064 FixVundo.exe
File properties:
File version: 1.5.0.0
Copyright: Copyright(C) 2004 Symantec Corporation

2. Closed all applications and disconnect from the Internet.

3. Disabled Windows System Restore function to avoid Trojan Vundo hiding in the restore area:
Click Start >> My Computer
Right-mouse click and select Properties. Properties dialog box displays.
Click System Restore tab
Check "Turn of System Restore" checkbox
Click Apply

4. Ran FixVundo.exe and clicked the Start button. It started to scan the entire hard disk. This took about 20 minutes. Surprisingly, FixVundo reported no Vundo infections.

2009-01-28, 9702👍, 0💬