PDA

View Full Version : Have I actually eliminated Virtumonde?



jdtl0
2008-12-24, 09:31
I picked up the virus a few days ago and ran a few Symantec and Spybot scans. I got to the point where Symantec picked up nothing, but Spybot would not stop popping up a registry change request, which would continue to reappear after few seconds every time I denied the change. I found this archived post http://forums.spybot.info/showthread.php?p=266503, so I downloaded Malwarebyte's Anti-Malware. The first time I ran this, I picked up 17 infected files, some of which couldn't be treated immediately and required restarting. The second time I ran it, it picked up 1 file, and the third time I picked up none.

Now the only problem I ever really noticed was the Spybot registry change window that kept popping up, and this has stopped. Being that Anti-Malware, Spybot, Adaware, and Symantec now pick up nothing, have I truly removed it or does this virus typically penetrate further (the posts I've read have all mentioned Combofix-- do I need this?). I see no signs of the virus anymore.

I was also planning on reformatting my computer before I picked up Virtumonde...do you think it'd be safe to just back-up my documents one last time and reformat? (I'm hoping this should also minimize assistance needed)

Shaba
2008-12-26, 12:32
Hello jdtl0

Please see this (http://forums.spybot.info/showthread.php?t=288) next

Please follow the instructions in the above thread and then start a fresh topic with the logs required.

Regards.