VundoFix is a removal tool for Virtumonde - aka Winfixer.
VundoFix is a freeware removal tool for many of the known variants of Trojan.Vundo, Trojan.Conhook and other similar infections.
http://www.atribune.org/public-beta/VundoFix.exeTo use Vundofix:
- Download the file and then double-click *VundoFix.exe* to run it.
- Put a check next to *Run VundoFix as a task.
- You will receive a message saying vundofix will close and re-open in a minute or less. Click *OK*
- When VundoFix re-opens, click the *Scan for Vundo* button.
- Once it's done scanning, click the *Remove Vundo* button.
- You will receive a prompt asking if you want to remove the files, click *YES*
- Once you click yes, your desktop will go blank as it starts removing Vundo.
- When completed, it will prompt that it will shutdown your computer, click *OK*.
- Turn your computer back on.
VundoFix 6.7.08
File Size: 129KB
Language: English
OS: Win2000/XP/2003
License: Free
Homepage:
http://www.atribune.org/More Info:
http://vundofix.atribune.org/Another great Freeware tool is Multi Temp File Cleaner 'ATF-Cleaner'
This program is for XP and Windows 2000 only
Double-click ATF-Cleaner.exe to run the program.
Under Main choose: Select All
Click the Empty Selected button.
If you use Firefox browser
Click Firefox at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.
If you use Opera browser
Click Opera at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.
Click Exit on the Main menu to close the program.
For Technical Support, double-click the e-mail address located at the bottom of each menu.
This will remove all files from the items that are checked so if you have some cookies you'd like to save. please move them to a different directory first.
Notes for Windows Vista users:
On Windows Vista that "Windows Temp" is disabled, to empty "Windows Temp" ATF-Cleaner must be "Run as an Administrator"
Prefetch has been disabled on Windows Vista. As I'm not sure the effects that emptying prefetch on Windows Vista will have for the time being it I won't enable that function.
Homepage:
http://www.atribune.org/content/view/25/2/Download:
http://www.atribune.org/public-beta/ATF-Cleaner.exeI thought it's a good object to make a small compression ratio test:
original upx 2.91 packed size:
49,50 KBuncompressed:
292,00 KBPE trimmed:
280,50 KBYZPack 2.0b compressed:
52,20 KBXComp 0.98 compressed in lzma mode:
44,67 KB ( ~ 44,42 KB is possible )
FSG v2.0 compressed:
52.82 KBPECompact 2.80 Beta 5 compressed:
45.50 KB (max settings, longest comp time from all except upx with max comp settings)
UPX 3.02w compressed:
45.50 KB (all possible combinations, longest compression time from all)
Remark: VirtualProtect