Page 2 of 2 FirstFirst 12
Results 11 to 16 of 16

Thread: Virtumonde

  1. #11
    In Memoriam -Always in our heart pskelley's Avatar
    Join Date
    Oct 2005
    Location
    Clearwater, Florida
    Posts
    20,247

    Default

    Thanks for the feedback, I am not surprised Avast4 found malware files, the hackers call the junk what they want and it is hard to have them all in the database. I would like the names of those files if you would:

    1) Open Avast 4.8 from the system tray

    2) Click the scroll down menu upper left corner

    3) Click Virus Chest

    3) since it is only two, post the complete information.

    Thanks

    How long since you ran maintenance on your hard drive? Scan Disk and Defrag? If the disk gets in bad shape the computer will not run as good and it takes forever to run scans. Here is some maintenance information:

    http://www.netsquirrel.com/msconfig/msconfig_xp.html
    http://www.malwareremoval.com/tutori...ningslowly.php
    http://users.telenet.be/bluepatchy/m...wcomputer.html
    http://www.microsoft.com/atwork/getstarted/speed.mspx

    Defragmenting
    http://artsweb.bham.ac.uk/artsit/Inf...ag-win2kxp.htm
    Check for Disk Errors in Windows XP
    http://www.microsoft.com/windowsxp/u...ips/kbtip.mspx
    MS-MVP Consumer Security 2007-08-09
    Proud Member ASAP
    UNITE Member 2006

  2. #12
    Junior Member
    Join Date
    Jan 2009
    Posts
    10

    Default

    So the two infected files are labeled:

    Win32:Monder-IF[trj]

  3. #13
    Junior Member
    Join Date
    Jan 2009
    Posts
    10

    Default

    Here's the complete info:

    A0000005.DLL Original location: C:\ System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP1


    cbXPheff.dll oRIGINAL LOCATION: C:\WINDOWS\System 32


    Both have the virus labeled: Win32:Monder-IF[trj]


    I am not sure when and if we've ever run maintenance on this hard drive...I will read all those links and follow instructions.

    Thanks!

  4. #14
    In Memoriam -Always in our heart pskelley's Avatar
    Join Date
    Oct 2005
    Location
    Clearwater, Florida
    Posts
    20,247

    Default

    If the instructions were followed in the order I posted them, this:
    Clean the System Restore files like this: <<< would have cleaned System Restore, this:
    A0000005.DLL Original location: C:\ System Volume Information\_restore <<< is a System Restore file.

    While don't you complete these instructions again:

    Clean the System Restore files like this:

    Turn off System Restore.
    On the Desktop, right-click My Computer.
    Click Properties.
    Click the System Restore tab.
    Check Turn off System Restore.
    Click Apply, and then click OK.

    Reboot

    Turn ON System Restore,
    On the Desktop, right-click My Computer.
    Click Properties.
    Click the System Restore tab.
    UN-Check *Turn off System Restore*.
    Click Apply, and then click OK.

    Then scan again with Avast4, let me know if you have any other issues.

    Thanks...Phil
    MS-MVP Consumer Security 2007-08-09
    Proud Member ASAP
    UNITE Member 2006

  5. #15
    Junior Member
    Join Date
    Jan 2009
    Posts
    10

    Default

    Ok, I think everything looks good now. Again, many thanks for your help and patience!

    When you close this thread, I will still be able to view our complete correspondence, right? I want to take a closer look at some of the links you posted.

    All the best to you!
    C.

  6. #16
    In Memoriam -Always in our heart pskelley's Avatar
    Join Date
    Oct 2005
    Location
    Clearwater, Florida
    Posts
    20,247

    Default

    Thanks for letting me know, safe surfing

    Yes, you will be able to view the information, once it is archived you just can not add to the thread.
    MS-MVP Consumer Security 2007-08-09
    Proud Member ASAP
    UNITE Member 2006

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •