Results 1 to 3 of 3

Thread: Virtumonde no longer detected but iexplore.exe on startup

  1. #1
    Junior Member
    Join Date
    Dec 2008
    Posts
    3

    Default Virtumonde no longer detected but iexplore.exe on startup

    Hello

    Please can you help with this problem.

    A recent spybot S&D scan on showed virtumonde and advised to fix while disconnected to internet. I attempted this and it seemed to work but now I find iexplore.exe running at startup hogging resources.

    I have followed some of the other threads re virtumonde so am prepared that it could be a sticky problem. I can supply anti-malware and hjt logs as required.

  2. #2
    Junior Member
    Join Date
    Dec 2008
    Posts
    3

    Default Supporting information HJT - Anti-Malware - Spybot process list

    I've attached the HJT, Anti-Malware log and Spybot process list log regarding this problem.

    IEXPLORE.EXE seems to be running at start up as a thread from another process and is not being picked up by any of the scans ever since virtumonde first detection and fix by Spybot.

    Should I use the recover function in Spybot to put the malware back and then try another removal strategy?

  3. #3
    Junior Member
    Join Date
    Dec 2008
    Posts
    3

    Default Trojan.Dropper/Gen-123 Responsible

    I decided to be pro-active on this matter and found superantispyware picked up on Trojan.Dropper/Gen-123 which had infected registry keys and added some files.

    Fixed using the software and on restart iexplore.exe no longer there. Thank goodness!

    Note: was using spybot S&D, SpywareBlaster, AVG8, CCleaner, as my PC "health suite"

    However, now also using Anti-Malware, HiJackThis, SuperAntiSpyware, Autoruns to add to range and depth of detection and information.

    Also dabbled with PrevX, TrojanHunter, ATF Cleaner, VundoFix but these are not preferred choice for current situation so will archive.

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •