PDA

View Full Version : virtumonde & IE



googolman
2008-04-19, 14:36
Spybot tells me that I have been infected by Virtumonde. It also expressly advises me not to use IE while infected. So I am using my wife's computer to ask this question. If I cannot or should not use IE while infected, how am I supposed to get hold of Trend Micro HijackThis and Kaspersy Antivirus?

So how do I get rid of Virtumonde?

googolman
2008-04-19, 18:11
I do have SuperAntiVirus, if this does the same job as Kaspersky. But I do not know what HijackThis is supposed to be. It appears to be something that everbody except me has on their machine.

googolman
2008-04-21, 01:30
My SuperAntiVirus is actually SuperAntiSpyware (silly me) but after running that and finding 18 errors (Vundo type), which I quarantined and removed, Spybot found no threats.

Blade81
2008-04-21, 16:27
Hi

You can use IE to download HijackThis. :)


Download and install TrendMicro HijackThis (http://www.trendsecure.com/portal/en-US/_download/HJTInstall.exe)
* Once installed open HijackThis by clicking Start > Programs > HijackThis and click the button labeled
Do a system scan only

* Click the scan button in the lower left hand corner of the interface and HijackThis will quickly scan your system.
* Once the scan is complete the scan button will now read save log. Click this button to save the log file to your PC. Once you select where you would like to save the file it will open in your systems default text editor. Typically this application is Notepad. Post the log here.

Blade81
2008-04-28, 21:33
Due to inactivity, this thread will now be closed.

Note:If it has been five days or more since your last post, and the helper assisting you posted a response to that post to which you did not reply, your topic will not be reopened. At that point, if you still require help, please start a new topic and include a fresh HijackThis log and a link to your previous thread.

If it has been less than five days since your last response and you need the thread re-opened, please send me or your helper a private message (pm). A valid, working link to the closed topic is required.