I have Virtumonde.sdn. I can't get rid of it. Spybot fixes it for a while, but it comes back. Here is the HJT report.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:16:57 PM, on...
Type: Posts; User: landon42; Keyword(s):
I have Virtumonde.sdn. I can't get rid of it. Spybot fixes it for a while, but it comes back. Here is the HJT report.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:16:57 PM, on...
Start: 3
Type: 32
Error Control: 1
Depends On services: Tapisrv,SstpSvc
Service (registry key): RasPppoe
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name:...
Service (registry key): IKEEXT
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\system32\ikeext.dll,-501
Description: @%SystemRoot%\system32\ikeext.dll,-502
...
Acer Crystal Eye webcam 1.0.13 ({AA047D7C-5E7C-4878-B75C-77589151B563})
version: 16777229
install date: 20080115
install location: C:\Program Files\SUYIN\Acer Crystal Eye webcam
...
--- Search result list ---
Virtumonde.sdn: [SBI $75457FE7] Library (File, nothing done)
C:\Windows\System32\rpcnet.dll
Properties.size=56680
Properties.md5=2F4158CFE7801A73BEAA7E8A9DFCAD26...
ComboFix 09-06-18.02 - Landon 06/18/2009 23:30.1 - NTFSx86
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.1.1033.18.1013.357 [GMT -5:00]
Running from: c:\users\Landon\Desktop\ComboFix.exe...
Hello
I am running OS Windows Vista. I have already started with HJT and Combofix from bleeping computer.com.
The Spybot S&D 1.6.2 finds and eliminates Virtumonde.sdn, but it returns just as fast....