Members
  • Total Members: 14176
  • Latest: toxxxa
Stats
  • Total Posts: 42952
  • Total Topics: 16150
  • Online Today: 4651
  • Online Ever: 51419
  • (01. January 2010., 10:27:49)









Author Topic: Virtumonde!  (Read 15587 times)

0 Members and 2 Guests are viewing this topic.

Samker

  • SCF Administrator
  • *****
  • Posts: 7528
  • KARMA: 322
  • Gender: Male
  • Whatever doesn't kill us makes us stronger.
    • SCforum.info - Samker's Computer Forum
Re: Virtumonde!
« Reply #20 on: 24. December 2008., 21:12:00 »
Hi friend, thanks for this nice word about our work. :thumbsup: Hope you will also recommend us to your friends etc.  

Don't know about reformatting it's your decisions, in my opinion we will clean this but if you have some other difficulties reformatting is best solution.  

For security related question, first I need information did you think about some Free programs or you are ready to buy some security softwares??

Maybe it will be more appropriate to open new topic about best security solution in General Security Discussions & Advices section  ;) : http://scforum.info/index.php/board,10.0.html  

Regards from Europe,

Samker

Samker's Computer Forum - SCforum.info

Re: Virtumonde!
« Reply #20 on: 24. December 2008., 21:12:00 »

manual2100

  • SCF Member
  • **
  • Posts: 64
  • KARMA: 10
Re: Virtumonde!
« Reply #21 on: 12. October 2010., 12:06:32 »
spybot search and destroy detects and removes many variants of virtumonde.. worked for me

kn1ghtm4r3

  • SCF Member
  • **
  • Posts: 26
  • KARMA: 2
Re: Virtumonde!
« Reply #22 on: 15. October 2010., 07:16:07 »
i used malwarebytes anti-malware and that has helped me heaps.

hazedaze

  • SCF VIP Member
  • *****
  • Posts: 85
  • KARMA: 19
  • Gender: Male
Re: Virtumonde!
« Reply #23 on: 02. December 2010., 14:39:50 »
YOU WILL NEED A SPARE PC/LAPTOP FOR THIS PROCEDURE.

But Just to point out that if anyone has trouble cleaning any of the latest virus's/trojans,

then the best trick you can always do is to pop the HDD out of the infected machine and connect it to what I class as a donar machine via a SATA or IDE to usb cable or equivelent.

MAKE SURE THE DONAR MACHINE IS FULL PROTECED A/V WISE AND IF POSS ENSURE NOTHING CAN WRITE TO THE C: DRIVE, (i.e McAfee Access Protection - all boxes ticked!!) THIS WILL STOP THE LITTLE NASTYS FROM JUMPING FROM ONE INFECTED DRIVE TO YOUR NICE CLEAN DONAR MACHINE.

Once you know that your donar machine is fully protected and up to date definition wise you can connect you infected drive and let it perform a complete scan. (Mcafee or NOD32 + SuperAntispyware + Malware Bytes) run it several times just in case!!

This tends to works alot better than trying to run any of the clean up software on the infected drive itself as the files that would normally report back as being locked or in use by another process will not be live as the drive is only connected essentually as a data drive, this will almost always get rid of the clone files too. (the ones that write themselves back after they have been so say cleaned)

You should find that you can clean your drive up to 99 - 100% using this method and is my prefered method for getting rid of some of the hard to eradicate payloads.

Obiously it's always worth having a clean backup stored on DVD or portable HDD as you never know what backdoors some of these payloads leave open. I know what it's like though and having a complete clean backup is sometimes easier said than done.  :-X

Hope this helps some of you out there...

Regrads

HD

 :up:

Samker's Computer Forum - SCforum.info

Re: Virtumonde!
« Reply #23 on: 02. December 2010., 14:39:50 »

 

With Quick-Reply you can write a post when viewing a topic without loading a new page. You can still use bulletin board code and smileys as you would in a normal post.

Name: Email:
Verification:
Type the letters shown in the picture
Listen to the letters / Request another image
Type the letters shown in the picture:
Second Anti-Bot trap, type or simply copy-paste below (only the red letters):www.scforum.info:

Enter your email address to receive daily email with 'SCforum.info - Samker's Computer Forum' newest content:

Terms of Use | Privacy Policy | Advertising