Page 1 of 2 12 LastLast
Results 1 to 10 of 14

Thread: Virtumonde.sdn

  1. #1
    Junior Member
    Join Date
    Mar 2010
    Posts
    20

    Default Virtumonde.sdn

    hey so i ran my Spybot Search and Destroy today and i got a problem found called "Virtumonde.sdn" and i was wondering what it was and how to get it off my computer. thank you

  2. #2
    Senior Member Matt's Avatar
    Join Date
    Aug 2006
    Location
    Bavaria
    Posts
    1,169

    Default

    Hi mmckinley,



    Virtumonde is a trojan. Did you let Spybot fix all problems after the scan has finished?

    Which OS do you have?
    Best regards - Beste Grüße,

    Matt

  3. #3
    Junior Member
    Join Date
    Mar 2010
    Posts
    20

    Default

    Well when i first encountered the virtuemonde i hit fix selected problem but then when i did that my computer went black then shut down and did that the next couple times i turn it on even when i didnt hit any buttons after i turned it on. Then i let it sit turned off for about an hour then turned it back on and it has been fine since. I ran the Spybot Search and Destroy again but this time didnt hit fix selected problems because i wanted to check on here what to do because i did not want that happening again. Should i go ahead and hit fix selected problems again to see what happens. Also sorry what does OS mean?

  4. #4
    Senior Member Matt's Avatar
    Join Date
    Aug 2006
    Location
    Bavaria
    Posts
    1,169

    Default

    Hi mmckinley,

    Sorry... OS means operating system... Which operating system (e.g. 2000, XP, Vista, 7) do you have?

    Please update Spybot, run another scan. After the scan has finished, right click on the white background where Spybot reports Virtumonde, and choose "Save results to file...". Save the file to your desktop and add it with your next answer.

    Then I'll give you further instructions. Perhaps you've to open your own thread in the Malware Removal Forum.

    I'm waiting for your answer.
    Best regards - Beste Grüße,

    Matt

  5. #5
    Junior Member
    Join Date
    Mar 2010
    Posts
    20

    Default

    Ok here is the file that i saved. My OS is Windows Vista. Thank you !

  6. #6
    Junior Member sonia_'s Avatar
    Join Date
    Mar 2010
    Location
    Croatia
    Posts
    1

    Default

    Hi there,
    Sorry for inerrupting........
    .......I've got a problem with a Virtumonde too. I ran my Spybot S&D and when I choose "Fix selected problems" it said that its fixed, but its not - I ran it again and its still there.
    Could you please help me get rid of it?
    My OS is XP.

  7. #7
    Senior Member Matt's Avatar
    Join Date
    Aug 2006
    Location
    Bavaria
    Posts
    1,169

    Default

    Hi mmchinley,
    Quote Originally Posted by mmckinley View Post
    Ok here is the file that i saved. My OS is Windows Vista. Thank you !
    Hhmm... there is only this registry entry:
    Code:
    Virtumonde.sdn: [SBI $4F0ABAF2] Settings (Registry key, nothing done)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\PFW
    Did you scan your computer with other Anti-Malware tools as well?
    Do you have problems or signs of Malware?




    Hi sonia_;365536,
    Quote Originally Posted by sonia_ View Post
    Could you please help me get rid of it?
    First of all: You don't use the newest version of Spybot. Please download Spybot 1.6.2 from here. After that, uninstall Spybot 1.6.0, reboot your computer, delete all leavings ( http://www.safer-networking.org/en/howto/uninstall.html ) and install the newest version 1.6.2.
    More here:
    http://www.safer-networking.org/en/tutorial/index.html

    Update Spybot and run another scan.

    Do you have problems or any sings of Malware?
    Last edited by Matt; 2010-03-29 at 10:14.
    Best regards - Beste Grüße,

    Matt

  8. #8
    Junior Member
    Join Date
    Mar 2010
    Posts
    20

    Default

    I dont seem to have any of the symptoms of maleware, my computer is running normally to my knowledge. Does that mean that i do not actually have the Virtumonde trojan or something?

  9. #9
    Junior Member
    Join Date
    Mar 2010
    Posts
    20

    Default

    and yes i also use Malwarebytes Anti-Malware along with Spybot

  10. #10
    Senior Member Matt's Avatar
    Join Date
    Aug 2006
    Location
    Bavaria
    Posts
    1,169

    Default

    Hi mmckinley,

    Quote Originally Posted by mmckinley View Post
    I dont seem to have any of the symptoms of maleware, my computer is running normally to my knowledge. Does that mean that i do not actually have the Virtumonde trojan or something?
    Just to make sure, that you are not infected with Virtumonde, I would like you to do the following steps:

    Please read this FAQ: "BEFORE you POST"(READ this Procedure BEFORE Requesting Assistance)

    Then start your own thread in the Malware Removal Forum and post your HijackThis logfile.
    Moreover, you can post your Spybot scan results right after your HijackThis Logfile or add it. An analyst will advise you as soon as available.

    Happy safe surfing!
    Best regards - Beste Grüße,

    Matt

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •