Virtumonde.dll trojan C-05: Superantispyware cannot find Spybot did....cannot remove it! S...

Do you have a question? Post it now! No Registration Necessary.  Now with pictures!

Threaded View
How can I have this removed?
Suggestions so far is to use SuperAntiSpyware in safe mode
but does not detect it!

Any suggestions as to what software I can use to successfully
remove this item?

Bob.

Re: Virtumonde.dll trojan C-05: Superantispyware cannot find Spybot did....cannot remove it! Suggestions please.


| How can I have this removed?
| Suggestions so far is to use SuperAntiSpyware in safe mode
| but does not detect it!

| Any suggestions as to what software I can use to successfully
| remove this item?

Use Malwarebytes' anti malware.  Very effective on the Vundo/Virtumonde family
of trojans.

--
Dave
Multi-AV Scanning Tool - http://www.pctipp.ch/downloads/dl/35905.asp



Re: Virtumonde.dll trojan C-05: Superantispyware cannot find Spybot did....cannot remove it! Suggestions please.

On Sat, 27 Nov 2010 11:17:01 -0500, "David H. Lipman"

Quoted text here. Click to load it

Ran Malwarebytes, did not pick up virtumonde.dll!
Spybot still shows it but again cannot remove it.

Any further advice on this.

Bob

Re: Virtumonde.dll trojan C-05: Superantispyware cannot find Spybot did....cannot remove it! Suggestions please.

alt.comp.anti-virus:

Quoted text here. Click to load it

I may have found the same symptom. After installing the most recent
detection definitions, Spybot supposedly found Virtumonde. I have since
run Malwarebytes and SuperAntiSpyware, but they detected nothing. I
haven't had time to troubleshoot it any further, but I suspect a false
positive on Spybot's part. I don't consider Spybot to be reliable these
days - its useful days seem to be in the past.

Re: Virtumonde.dll trojan C-05: Superantispyware cannot find Spybot did....cannot remove it! Suggestions please.


| On Sat, 27 Nov 2010 11:17:01 -0500, "David H. Lipman"


Quoted text here. Click to load it



| Ran Malwarebytes, did not pick up virtumonde.dll!
| Spybot still shows it but again cannot remove it.

| Any further advice on this.

Please post the fully qualified name and path of the file deemed to be infected
by the
Virtumonde adware.

A log snippet can help.

--
Dave
Multi-AV Scanning Tool - http://www.pctipp.ch/downloads/dl/35905.asp



Re: Virtumonde.dll trojan C-05: Superantispyware cannot find Spybot did....cannot remove it! Suggestions please.

On Sat, 27 Nov 2010 14:44:00 -0500, "David H. Lipman"

Quoted text here. Click to load it

C:\windows\system32\mfc40.dll

----------- found in search ----------
I also have in C:\windows\system32\mfc.dll_tobe_deleted
and in C:\windows\system32\dllcache

I don't have a log snippet, log file is empty, sorry.

Bob.

Re: Virtumonde.dll trojan C-05: Superantispyware cannot find Spybot did....cannot remove it! Suggestions please.


| On Sat, 27 Nov 2010 14:44:00 -0500, "David H. Lipman"


Quoted text here. Click to load it









| C:\windows\system32\mfc40.dll

| ----------- found in search ----------
| I also have in C:\windows\system32\mfc.dll_tobe_deleted
| and in C:\windows\system32\dllcache

| I don't have a log snippet, log file is empty, sorry.


Please submit a sample of mfc40.dll  to Virus Total

If the one in dllcache is the same and is also flagged , submit that.

http://www.virustotal.com/flash/index_en.html
The submission will then be tested against many different AV vendor's scanners.
That will give you an idea what it is and who recognizes it.  In addition Virus
Total will provide the sample to all participating vendors.

You can also submit a suspect, one at a time, via the following email URL...
mailto:scan@virustotal.com?subject=SCAN

When you get the report, please post back the exact results.


--
Dave
Multi-AV Scanning Tool - http://www.pctipp.ch/downloads/dl/35905.asp



Re: Virtumonde.dll trojan C-05: Superantispyware cannot find Spybot did....cannot remove it! Suggestions please.


| How can I have this removed?
| Suggestions so far is to use SuperAntiSpyware in safe mode
| but does not detect it!

| Any suggestions as to what software I can use to successfully
| remove this item?

False Positive.

http://forums.spybot.info/showthread.php?p=389658#post389658

{ Thanx JD }


--
Dave
Multi-AV Scanning Tool - http://www.pctipp.ch/downloads/dl/35905.asp



Re: Virtumonde.dll trojan C-05: Superantispyware cannot find Spybot did....cannot remove it! Suggestions please.

David H. Lipman wrote:
Quoted text here. Click to load it

Sorry. I was running scandisk and it took much longer than I
anticipated. Thanks for catching my post in the other newsgroup!

--
  JD..

Re: Virtumonde.dll trojan C-05: Superantispyware cannot find Spybot did....cannot remove it! Suggestions please.

On Sat, 27 Nov 2010 20:37:58 -0500, "David H. Lipman"

Quoted text here. Click to load it

Thanks again David!

Bob

Site Timeline