How to Remove the 2008 Trojan.Vundo

104 24

    Run Your Antivirus Program

    • 1). Open your antivirus program. If you do not have an antivirus program, consider downloading a free antivirus program, such as Windows Defender or AVG (see "Resources" below).

    • 2). Update your antivirus program. Most antivirus programs include an "Update" or "Check for Updates" button. It is important to update your antivirus program frequently to ensure that you are protected against the latest computer viruses.

    • 3). Run a full scan of your computer using your antivirus program. Most antivirus programs give you the option of running a full scan or a quick scan. A full scan will search your entire computer for the 2008 Trojan.Vundo. A quick scan will only search the areas where the 2008 Trojan.Vundo is most likely to be found. Running a full scan with an up to date antivirus program should detect and remove the 2008 Trojan.Vundo. If it does not, continue to the next step.

    Remove Infected Registry Values

    • 1). Hold down the Windows key and press "R." The Run box opens.

    • 2). Type "regedit" (without the quotation marks) into the Run box and click "OK." The Registry Editor opens.

    • 3). Locate the following registry values in the left pane of the Registry Editor and delete them. To delete a registry value, right-click on it and select "Delete."

      "HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Active State"
      "HKEY_CURRENT_USER SoftwareMicrosoftWindows CurrentVersionRunOnce*WinLogon"
      "HKEY_LOCAL_MACHINE SoftwareMicrosoftWindows CurrentVersionRunOnce*[filename]"
      "HKEY_CLASSES_ROOTCLSID{2316230A-C89C-4BCC-95C2-66659AC7A775}"
      "HKEY_CLASSES_ROOTCLSID{8109AF33-6949-4833-8881-43DCC232B7B2}"
      "HKEY_LOCAL_MACHINE SOFTWAREClassesATLEvents.ATLEvents"
      "HKEY_LOCAL_MACHINE SOFTWAREClassesATLEvents.ATLEvents.1"
      "HKEY_LOCAL_MACHINE SOFTWAREClassesCLSID{02F96FB7-8AF6-439B-B7BA-2F952F9E4800}"
      "HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionExplorerBrowser Helper Objects{02F96FB7-8AF6-439B-B7BA-2F952F9E4800}"
      "HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionExplorerBrowser Helper Objects{2316230A-C89C-4BCC-95C2-66659AC7A775}"
      "HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionExplorerBrowser Helper Objects{8109AF33-6949-4833-8881-43DCC232B7B2}"
      "HKEY_CURRENT_USER SoftwareMicrosoftInternet ExplorerMainActive State"

    • 4). Restart your computer.

Source...
Subscribe to our newsletter
Sign up here to get the latest news, updates and special offers delivered directly to your inbox.
You can unsubscribe at any time

Leave A Reply

Your email address will not be published.