Vundo Malware Removal
Vundo is a invasive and difficult to remove spyware application affecting Microsoft Windows XP and upward. It commonly manifests itself with taskbar pop-up advertising spyware, desktop wallpapers noting that security is deficient and a general malaise of system performance.
The most common avenue of infection is use of Internet Explorer in conjunction with Sun Java version 1.4. Newer versions of Java protect against this, as does use of Firefox. While updating software regularly is a best practice, it is especially crucial with programs like Java that have full file system read/write/execute permissions.
Removal of this software is difficult and given the tenacity of the malware, any system requiring institutional security absolutely should be wiped and re-installed as that is the only 100% sure way that the system is secure.
- Update Java, by going to Start -> Control Menu -> Java. Clcik the Update tab, then select Update now.
- Download and install VirusScan along with the AntiSpyware plug-in, if you don't already have it. This will find and clean, but only temporarily.
- Download SmitFraudFix and place it on a flash drive or somewhere else easily findable.
- Reboot. Before the Windows splashscreen comes up, press F8. If it goes to the splash screen, reboot and try again. When you do get to the Windows boot options menu, select the first Safe Mode.
- Run SmitFraudFix. Use option #2 to initiate a cleaning, and the program will run automatically, though you may need to confirm some optional cleaning items during the process.
- Reboot. You may need to reset your preferred desktop wallpaper.
If software advertisements continue, you've come to the more difficult part of Vundo. You may wish to re-update your SmitFraudFix, as they and the Vundo authors both keep updating and refining their programs. However, if even an updated version fails then you will either need to be prepared for intense registry editing, or back up your personal data and reformat the system.
Current Record: 3806
Create Date: 06-10-2008
Last Reviewed: 06-11-2008
Home
