How to remove geeby.dll, infected with Trojan virus
Hi,
My system file is infected Vundo Trojan virus. Its location is c:\windows\system32\geeby.dll. My existing antivirus / spam software has failed! "Microsoft Defender" even said "Your system is running properly" and has nothing to recognize I have tried this tool - Spybot Search & Destroy has detected somewhat but didn't remove it, then I tried Symantec Antivirus, it do not delete the trojan / virus or clean up. How to remove geeby.dll, infected with Trojan Vundo virus ????
Re: How to remove geeby.dll, infected with Trojan virus
A tip for searching the viruses, in the folder "/windows" and "/windows/system32 and press Enter," and sort the files by date. You search for "dll", "dat" and so find files, so that you can delete it directly from location. then simply inserting the "geeby. dll", etc. (type) in Google. Then download it and put it in the same location from where you have deleted.
Re: How to remove geeby.dll, infected with Trojan virus
If it is still hidden (setting: Show Hidden System Files -)> Enable it. Then search the entry in the regedit -> after you will have all the entries for "geeby" and "winstr32 delete" in the registry, make (Note: Before a backup of the registry (export)!) then after a reboot into Safe Mode.
Re: How to remove geeby.dll, infected with Trojan virus
Download VirtumundoBeGone. The tool deletes the registry entries, and fires a blue screen (Windows from crash) to avoid the "geeby.dll" again writes to the registry. Then you should re-boot into Safe Mode, and behold: The "geeby.dll" will renamed "geeby.dll.vir. Delete this file now, and let Spybot Search & Destroy again walk on the hard drive (do not forget Empty Trash!)
Re: How to remove geeby.dll, infected with Trojan virus
IF only time knows which files are infected, the rest is pretty easy. The sticking point is that the Trojan is active in memory, and as described above, various mechanisms for may be active. Usually we find the same files as the active processes in taskmanager. To stop processes manually -> delete registry entries -> deleting files from the disk.