Tech Support Guy banner
  • IMPORTANT: Only authorized members may reply to threads in this forum due to the complexity of the malware removal process. Authorized members include Malware Specialists and Trainees, Administrators, Moderators, and Trusted Advisors. Regular members are not permitted to reply, and any such posts will be deleted without notice or further explanation. Notice
Status
Not open for further replies.

Rid of Vundo now Trojan-downloader-ruin

2K views 3 replies 2 participants last post by  cybertech 
#1 ·
With help from you guys over the weekend I was able to get rid of Juan (Vundo ?) but now have spy sweeper reports: Trojan-downloader-ruin detected. I have checked the forums and found several that I've looked into. One from Seaz with MFDnNC helping him/her out. I did not see any of the entries in my HJT log. I downloaded and ran Fixwareout.exe. I am attaching the contents of the report and my HJT log.

I've noticed all day that my T43 laptop has been sluggish going over the internet. You will see from my HJT log that I have several different Anti-Spyware software loaded (probably too much) to include AVG, XoftSpySE, and Spy Sweeper. I've checked my network properties for TCP/IP and DHCP is checked. IPCONFIG /ALL shows a valid IP address from my router and DNS entries are what I expected.

I have one unsolicited pop-up that seems to occasionally show up when I open my browser- > Ultimate Fixer 2007.

I am running another scan with Spy Sweeper now. Please look at the report and HJT log and see if you see anything I need to address. I will update you if SSweeper shows up with anything.

Thanks
HogWild:)
 

Attachments

See less See more
#2 ·
I'm happy to report that the latest scan results using Spy Sweeper showed up clean. I would like to ask one of the monitors to look through the two files attached earlier just to make sure nothing is missed.

Thanks for you assistance and I will check back tomorrow morning for any posts. Meanwhile I will turn off System Restore and shutdown.

Look like Vundo is keeping you guys busy. Hope everyone has as good as luck or better removing it as I did - with your help of course!

:) :up:

Thanks
HogWild
 
Status
Not open for further replies.
You have insufficient privileges to reply here.
Top