Re: DomainService, fotomoto, vundo: Still Infected?
- From: PA Bear, MS MVP <PABearMSMVP@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Date: Wed, 28 Nov 2007 15:39:00 -0800
cf. http://aumha.net/viewtopic.php?t=30282
--
~Robear Dyer (PA Bear); posting via web-interface
MS MVP-Windows (IE/OE, Security, Shell/User)
AH VSOP & Admin; DTSL-ORG
"AreWeThereYet" wrote:
Thanks, I'll give this a try tonight/tomorrow!.
"Malke" wrote:
AreWeThereYet wrote:
System:
- Intel 32-bit x86
- Win-XP-Pro SP2 (all updates)
Security Software (before):
- Windows Defender (up to date, daily scans, real-time protection)
- Norton 2006 AV (up to date, daily scans, real-time protection)
Security Software (current):
- Bitdefender Total Security 2008 (full-trial)
- Webroot SpySweeper (full-trial)
Primary Threats:
- Trojan.Vundo / Virtumundo
- Trojan.WinFixer
- Trojan.Fotomoto.E, Trojan.Fotomoto.F
(snippage)
Recent variants of Vundo are extremely difficult to remove. Register at
one of the following specialty forums, read the posting FAQ, and post
your HijackThis log there (not here please) for guided help.
http://aumha.org/downloads/hijackthis.zip
http://www.aumha.org/a/hjttutor.htm - HijackThis tutorial by Merijn
http://www.bleepingcomputer.com/forums/index.php?showtutorial=42 -
another tutorial
http://aumha.net/ - Click on the HijackThis forum. Read the announcement
and the stickies *first*.
http://www.atribune.org/forums/index.php?showforum=9
http://aumha.net/viewforum.php?f=30
http://www.bleepingcomputer.com/forums/forum22.html
http://castlecops.com/forum67.html
http://www.dslreports.com/forum/cleanup
http://www.cybertechhelp.com/forums/forumdisplay.php?f=25
http://www.geekstogo.com/forum/Malware_Removal_HiJackThis_Logs_Go_Here-f37.html
Malke
--
Elephant Boy Computers
www.elephantboycomputers.com
"Don't Panic!"
MS-MVP Windows - Shell/User
- References:
- Prev by Date: Re: UNC and authentication
- Next by Date: Re: now that i created a new local group
- Previous by thread: Re: DomainService, fotomoto, vundo: Still Infected?
- Next by thread: Re: Basic Q - how to get rid of unwanted program file!
- Index(es):
Relevant Pages
|
|