Removing A Patching Virus Without Reformatting
Virut is a patching virus. This means that Virut will inject malicious code into your computers existing executable programs (.exe’s and .scr’s). The malicious code can be used to do anything; it’s up to the malware author.
The problem with Virut lies in the quality of the code…it’s very buggy and can cause programs to run extremely slow and randomly crash. The longer Virut is present on your computer the more exe’s it will infect.
If you’ve been infected with W32.Virut then you’ve probably been told that the only way to get rid of Virut completely is to reformat your PC. This is simply NOT TRUE!
It’s true that this is the easiest way, but what if you can’t reformat (as in your client says NO WAY!!!)? Do you just say “Sorry Sir, Have A Nice Day” … You won’t hear that from me, I just can’t say no to my clients (i need the money
).
Anyway, here is how you can get rid of W32.Virut using free software. Please keep in mind that the technique I’ll be teaching you below is get’s rid of Virut and lot’s of other nasties that usually go hand in hand with Virut.
Step By Step Instructions for cleaning Virut without having to reformat the target PC.
1. On a computer NOT infected with Virut download Ultimate Boot CD 4 Win (version 3.50 or higher) from ubcd4win.com.
2. Install UBCD4WIN to a new folder (c:\ubcd4win35 for example).
3. Download Dr. Web’s Cure IT and save it to c:\DrWeb (or whatever folder you want).
4. Launch the UBCD4Win PE Builder. Configure the plugins you’d like to use. I suggest Avira 9 and SAS (click the config button to update them).
5. For the custom directory choose the folder that contains your Dr. Web Cure IT (launch.exe). Your PE Builder window should look like the one below. Source contains all the files from your windows xp disc, Custom contains the folder to Dr. Web’s launch.exe, output should be BartPE, Media output can be whatever path and filename you want.
6. Burn the .iso you just created in step 5 to a DVD or CD. (how to burn an .iso)
7. Boot your computer from the UBCD4WIN disc that you just burned in step 6. (how to boot a computer from a bootable disc)
8. Once you’re booted into the UBCD4WIN environment open My Computer – then explore your CD/DVD – then Double click your Dr Web folder – double click Launch.exe.
9. Once Dr. Web starts it will want to do a quick scan. You can cancel this once it starts (by clicking the stop button on the right). Check out the settings below and start scanning. Be prepared to wait ALONG time. Once Virut is found Dr. Web will ask you what you want to do. Select “Cure All”.
10. Dr. Web will probably find a lot of other infections. As long as they are not Windows system files you can probably just delete them. I know, I know…”but Matt…how do I know if it’s a legit Windows system file”….Google is your friend, research it. Just right click the file and click properties. If the file does NOT have a version tab there is a really great chance it’s NOT legit. Also, if you think a file is suspicious then upload it to Virustotal.com for analysis (requires internet connection in the UBCD4WIN environment).
This concludes my tutorial on how to clean Virut from a PC. I truly hope it helped ya!
St Louis Computer Repair
Computer Repair St Louis
Gain handy knowledge about is wealthy affiliate a scam – read hyperlinked publication.