Boot malmo aka Junkie - detected but no removal
Created: 08 Nov 2012 | Updated: 10 Dec 2012 | 10 comments
This issue has been solved. See solution.
Does anyone have a response to remove this virus. The article from the symantec site is almost 5 years old and we have a stack of machines
infected and detected with SEP 11RU7 but SEP does not remove the virus?
Has anyone resolved to get this virus off machines?
Discussion Filed Under:
Group Ownership:
Comments 10 Comments • Jump to latest comment
Hi,
To remove this virus, boot the computer from a Norton AntiVirus Rescue Disk and then run a DOS scan:
Thank& Regards,
Ambesh
Please mark your thread as 'SOLVED' with the answer that helps you.
Hello,
Check this featured Article:
Is your system infected? Symantec tools to help clear an infection
and
Symantec Endpoint Protection – Security Best Practices for Stopping malware and other Threats
http://www.symantec.com/theme.jsp?themeid=stopping_malware
Best practices for troubleshooting viruses on a network
http://www.symantec.com/business/support/index?page=content&id=TECH122466
Hope that helps!!
Mithun Sanghavi
Symantec Technical Support Engineer, SEP
MIM | MCSA | MCTS | STS | ITIL v3
Twitter: @mithun_sanghavi
Don't forget to mark your thread as 'SOLVED' with the answer that best helps you.<&a
How do I make a Norton rescue disk or do I use the SERT ?
This is outdated - who has windows 95/98 stiffy drive???
To install and create Rescue Disk on an uninfected computer:
Requirements: Five or more blank 1.44 MB floppy disks and a Windows 95/98 computer that is not infected by a virus.
We are using SEP11RU7 - where or how do I make a bootable cd for the rescue disk?
Hello,
I would prefer SERT tool. Since you are running the SEP version.
1. The Power Eraser Tool eliminates deeply embedded and difficult to remove threats that traditional virus scanning doesn't always detect.
2. If you have access to Fileconnect, the SERT (Symantec Endpoint Recovery Tool) is useful in situations where computers are too heavily infected for the Symantec Endpoint Protection client installed upon them to clean effectively
Hope that helps!!
Mithun Sanghavi
Symantec Technical Support Engineer, SEP
MIM | MCSA | MCTS | STS | ITIL v3
Twitter: @mithun_sanghavi
Don't forget to mark your thread as 'SOLVED' with the answer that best helps you.<&a
Can I boot up from a mem stick using the tool? What are the requirements to get the SERT tool running from boot and scan the machine?
Hello,
Yes, check this Article:
How to make the Symantec Endpoint Recovery Tool boot from a USB memory stick
http://www.symantec.com/business/support/index?page=content&id=TECH131578
and this VIDEO:
Symantec Endpoint Recovery Tool (SERT)
https://www-secure.symantec.com/connect/videos/symantec-endpoint-recovery-tool-sert
Hope that helps!!
Mithun Sanghavi
Symantec Technical Support Engineer, SEP
MIM | MCSA | MCTS | STS | ITIL v3
Twitter: @mithun_sanghavi
Don't forget to mark your thread as 'SOLVED' with the answer that best helps you.<&a
Is there a way to remove this virus without having to go through the steps mentioned for the SERT tool?
Automated ?
Hello,
We are suggesting the SERT Tool as this tool would assist you with Boot related Threats.
However, In case you would like to get a hand on to other tools, check this Article below:
Is your system infected? Symantec tools to help clear an infection
Hope that helps!!
Mithun Sanghavi
Symantec Technical Support Engineer, SEP
MIM | MCSA | MCTS | STS | ITIL v3
Twitter: @mithun_sanghavi
Don't forget to mark your thread as 'SOLVED' with the answer that best helps you.<&a
Will try the SERT tool and see whether it does the trick.
Would you like to reply?
Login or Register to post your comment.