PDA

View Full Version : Removing the Virtumonde Virus/Adware



Harry
05-27-2008, 02:55 AM
All right, I decided to write this today because I have been infected with the Virtumonde adware/virus for the longest time (on a different PC, not this one) and I just learn't how to remove it today, with the help of NOD32 (within the past 3 days, with some submitted Virtumonde .dll files I sent NOD32) they made an update file to detect it 100%! :) Bbbbuuuutttt... the makers of Virtumonde are tricky! They make a lot of registry values, and other little copies of the virus in other places so you can not remove it 100% without some good hand-work.


Here is the tut, should take you about 40 minutes to remove the virus 100%, but it is wwaayy worth it!: http://www.hy71194.mgatesphoto.com/other/virtumonde (http://www.hy71194.mgatesphoto.com/other/virtumonde)
PS: If you see an 'à' symbol in the tut, it was a -> symbol in MSWord, but I think Firefox formats symbols different than MSWord. Sorry if you find the Guide hard to read... I like big fonts in Tuts.


Happy Virus Hunting!!
~Harry.

jas0npc
05-27-2008, 08:45 AM
nice many thanks this will come in usewfull

Dan Cardin
05-27-2008, 11:02 AM
I just ran ComboFix when i had it, and it was gone ;)

StrikerX
05-27-2008, 11:05 AM
mind elaborating on what the virus is/causes

Harry
05-27-2008, 02:09 PM
@striker: Google is your friend ;) http://www.virtumonde.net/

spicynachos2
05-29-2008, 08:40 AM
this is nice to know. i knew most of it already but i sure not everybody does!

P1nky
05-30-2008, 02:27 AM
this virus is known to make your comp lag?

Harry
05-31-2008, 12:24 PM
Yes, and it downloads a lot of other Malware aswell in the background -> even slower.