February 14, 2011

How to remove Trojan Troj/TDL3Mem-B ?

Trojan Troj/TDL3Mem-B infected to "C:\Windows\System32\ntdll.dll" can be disinfect using Kaspersky's TDSKiller.exe ,a free Rootkit.Win32.TDSS removal utility .

1. Download tdsskiller.zip
2. Close all programs including your web browser.
3. Extract/Unzip tdsskiller.zip
4. Run TDSSKiller.exe

Select "Services and drivers" and "Boot Sectors" and Click "Start Scan".

Select "Cure" option when the Tdsskiller.exe found "Rootkit.Win32.TDSS.tdl3" or similar threats , after removal restart the computer. and repeat the above mentioned steps to make sure that the threat is completely removed from the system.

5. Clear your %temp% folder. If you are unable to remove any files manually using normal delete function then use malware file remover -FileAssassin.exe.

There is no removal utility from Sophos Antivirus .

Download TDSKiller.exe.

** Update 29 Mar 2011**
You must run this tool several times.
Follow this procedure and make sure that all threats are removed.

** Update 16 April 2011**
Malwarebytes' Anti-malware software can remove Troj/TDL3Mem-B
Download Malwarebytes' Anti-malware software.

1 comment:

wcr1m4tppc said...

