PDA

View Full Version : virtumonde



benthefreak
2008-09-16, 00:22
Hi guys, first time post here and probably not the last = P

i have a problem with virtumonde, iv installed spybot s&d, updated and done full scans and it is being picked up, i get a pop up stating i should restart and scan again to fix the problem.
i have left it to run its course a few times however even after restarting (and before windows has fully loaded) i get the message recomending a restart before spybot has even finished. i best also add that this has been tryed in safe mode.

i have read the "read before you post" section and it advises to give a HJT log HOWEVER, i cant seem to get this program running, after installing and clicking the exe file, nothing happens - can anyone shed any light on this before i proceed any further? if not is there any other logs etc that would be acceptable?

ken545
2008-09-20, 15:59
Hello benthefreak

Welcome to Safer Networking.

Please read Before You Post (http://forums.spybot.info/showthread.php?t=288)
That said, All advice given by anyone volunteering here, is taken at own risk.
While best efforts are made to assist in removing infections safely, unexpected stuff can happen.

Delete what you have and try it this way

Download Trendmicros Hijackthis (http://www.trendsecure.com/portal/en-US/_download/HJTInstall.exe) to your desktop.

Double click it to install
Follow the prompts and by default it will install in C:\Program Files\Trendmicro\Hijackthis\Highjackthis.exe
Open HJT Scan and Save a Log File, it will open in Notepad
Go to Format and make sure Wordwrap is Unchecked
Go to Edit> Select All.....Edit > Copy and Paste the new log into this thread by using the Post Reply and not start a New Thread.

DO NOT have HijackThis fix anything yet. Most of what it finds will be harmless or even required.


If no luck run this scan

Download Deckard's System Scanner (DSS) (http://www.techsupportforum.com/sectools/Deckard/dss.exe) to your Desktop. Note: You must be logged onto an account with administrator privileges.

Close all applications and windows.
Double-click on dss.exe to run it, and follow the prompts.
When the scan is complete, two text files will open - main.txt <- this one will be maximized and extra.txt<-this one will be minimized
Copy (Ctrl+A then Ctrl+C) and paste (Ctrl+V) the contents of main.txt and the extra.txt to your post. in your reply