Virtumonde / Iexplore.exe
Eventually, these helped remove the fake security alert and all. Click here to Register a free account now! I ran Spybot S&D, Ad-aware, Stinger, Spyhunter ... When I disabled my wireless (that's the only way I connect), I would be prompted for "work offline" and "Try again" options. weblink
I used couple of online scanners for Virtumonde then (Uniblue and Symantec ..at least that's what they said) and both concluded that my computer is Virtumonde free. Register now! I kept getting these internet access requests tho. Sign In Sign Up Browse Back Browse Forums Guidelines Staff Online Users Members Activity Back Activity All Activity My Activity Streams Unread Content Content I Started Search Malwarebytes.com Back Malwarebytes.com Malwarebytes
Quads Norton Fighter25 Reg: 21-Jul-2008 Posts: 16,481 Solutions: 182 Kudos: 3,388 Kudos0 Re: Help - Virtumonde Trojan Posted: 13-Apr-2009 | 7:55PM • Permalink Ok Malwarebytes entry HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\54d02d04 (Trojan.Vundo.H) -> Quarantined and BleepingComputer is being sued by Enigma Software because of a negative post of SpyHunter. I have followed the Pre- HJT Post, "Please follow these instructions prior to posting a HJT log" instructions.I have researched and tried to find a solution but am at a loss Edited by surferInternetSurfer, 24 March 2008 - 02:23 AM.
Hope you can help me resolve this issue. Try Download Hijackthis http://www.trendsecure.com/portal/en-US/tools/security_tools/hijackthis the 3rd .exe (executable) version in the list, run it creating a log. If using Vista Right click and "Run as Administrator". Open that log and copy and Share this post Link to post Share on other sites Smilez78 New Member Topic Starter Members 13 posts ID: 3 Posted December 3, 2008 I use Eset Nod 32 Super Anti Spyware - Safe Mode: SUPERAntiSpyware Scan Loghttp://www.superantispyware.com Generated 04/12/2009 at 03:12 PM Application Version : 4.25.1014 Core Rules Database Version : 3839Trace Rules Database Version: 1795 Scan type :
Using the site is easy and fun. So if everything looks good to you then I guess not. Sign In Sign Up Browse Back Browse Forums Guidelines Staff Online Users Members Activity Back Activity All Activity My Activity Streams Unread Content Content I Started Search Malwarebytes.com Back Malwarebytes.com Malwarebytes http://www.geekstogo.com/forum/topic/194871-virtumonde-wont-go-away-iexploreexe-acting-up-resolved/ Site Changelog Community Forum Software by IP.Board Sign In Use Facebook Use Twitter Need an account?
Also, after my scans, I am getting access request by some urls, which according to Spybot are owned by Virtumonde. Initially, even Spybot didn't find Virtumonde, but when I went to advanced mode and performed detailed scan, Spybot found something for Virtumonde and deleted it along with bunch of other stuff. Any help (especially, prompt ones) would be GREATLY APPRECIATED.Logfile of Trend Micro HijackThis v2.0.2Scan saved at 7:33:32 PM, on 3/23/2008Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Boot mode: Share this post Link to post Share on other sites Smilez78 New Member Topic Starter Members 13 posts ID: 4 Posted December 3, 2008 HiJack This!
That may cause it to stall. 0 #5 Cozined Indigo Posted 15 April 2008 - 08:57 PM Cozined Indigo New Member Topic Starter Member 4 posts Here's the next log:ComboFix 08-04-13.3 have a peek at these guys Since Friday night 10:00pm (yup, sharp 10:00pm, may be few seconds here-there) I had this fake antivirus alert. Sign In Sign In Remember me Not recommended on shared computers Sign in anonymously Sign In Forgot your password? rooneyms Contributor4 Reg: 11-Apr-2009 Posts: 11 Solutions: 0 Kudos: 0 Kudos0 Re: Help - Virtumonde Trojan Posted: 13-Apr-2009 | 5:49PM • Permalink Sorry, I forgot I had a Turbo Tax CD
Please re-connect to the Internet and Report the Scan Results and also let us know if your Issue is Solved.
There is never an IE window open, just the task manager claiming that the process is running. There are also various processes that are keysmashed letters which I don't recognize as of late.A scan with all the various anti-spyware programs says that I've got a couple of different A case like this could easily cost hundreds of thousands of dollars. Do you still require any assistance?