W32/VB-EMU:VB-Backdoor-PEK-based!Maximus

  • Thread starter Thread starter Guest
  • Start date Start date
G

Guest

The subj virus keeps appearing in C:\system volume information\_Restore and I
cannot seem to get rid of it. There is little info when I Google it and the
individual spyware sites offer no response to searches. Does anyone have info
on what this virus does and how to get rid of it? Thanks in advance.
 
Hi SC,

Aftewr your report to Microsoft, please follow this steps:

The System Volume Information is the hidden, protected operating
system folder in which WinXP's System Restore feature stores
information used to recover from errors. It's really not a good idea
for you, or an antivirus application, to directly access the contents
of that folder, unless you expect to have no future use for the
restore points, in which case it would be simpler just to turn off the
System Restore feature.

To clear viruses or other malware from the "System Volume
Information," simply turn off the System Restore feature (Start > All
Programs > Accessories > System Tools > System Restore, System Restore
Settings), reboot, then re-enable System Restore, and reboot one last
time. This will delete all of your Restore Points, including the
corrupted one(s), and allow you start with a clean slate.
 
Additional:

First, depending on the date of the Restore Point, I would use Disk Cleanup
first and remove System Restore points all except the latest.

If the virus still shows up, then do what Engel states.

If the virus is from 10 restore points back, why delete all restore points.
 
Hello NewScience,

I Agree.
--

NewScience said:
Additional:

First, depending on the date of the Restore Point, I would use Disk Cleanup
first and remove System Restore points all except the latest.

If the virus still shows up, then do what Engel states.

If the virus is from 10 restore points back, why delete all restore points.
 
Hello Engel and New Science,
Thanks very much for the advice, I will first try the clean up.
 
Back
Top