Forum     

Go Back   Digit Technology Discussion Forum > Software > Software Q&A
Register FAQ Calendar Mark Forums Read

Software Q&A Having trouble with software? Find solutions here

Closed Thread
 
LinkBack Thread Tools Display Modes
Old 01-10-2008, 02:55 PM   #1 (permalink)
In The Zone
 
manishjha18's Avatar
 
Join Date: Aug 2004
Location: pune (temporary)
Posts: 335
Default virtue monde

how to remove virtue monde from pc-kis cant remove it--is there a way to remove it
manishjha18 is offline  
Advertisements. Register and be a member of the community to get rid of them.
Advertisement

Old 01-10-2008, 03:00 PM   #2 (permalink)
The Black Waltz
 
Join Date: Apr 2008
Location: The Shed
Posts: 1,506
Default Re: virtue monde

Spyware Doctor is supposed to be able to remove this.... Also try Avast! Home edition. It's got good trojan detection.
__________________
#krow @ irc.freenode.net
Cool Joe is offline  
Old 01-10-2008, 03:03 PM   #3 (permalink)
In The Zone
 
manishjha18's Avatar
 
Join Date: Aug 2004
Location: pune (temporary)
Posts: 335
Default Re: virtue monde

cant use spyware doctor--i have to register it and cant even patch it--no other windows opens
manishjha18 is offline  
Old 01-10-2008, 03:07 PM   #4 (permalink)
The Black Waltz
 
Join Date: Apr 2008
Location: The Shed
Posts: 1,506
Default Re: virtue monde

Try this- http://virtumonde.net/virtumonderemo...e_Removal.html
__________________
#krow @ irc.freenode.net
Cool Joe is offline  
Old 01-10-2008, 03:15 PM   #5 (permalink)
In The Zone
 
manishjha18's Avatar
 
Join Date: Aug 2004
Location: pune (temporary)
Posts: 335
Default Re: virtue monde

cant boot in safe mode- morever i have tried the vundofix--it still lefts traces

hey beta testing--can i enable task manager anyway

Last edited by manishjha18; 01-10-2008 at 03:22 PM. Reason: Automerged Doublepost
manishjha18 is offline  
Old 01-10-2008, 04:04 PM   #6 (permalink)
The Black Waltz
 
Join Date: Apr 2008
Location: The Shed
Posts: 1,506
Default Re: virtue monde

Open the registry editor (Start> Run> regedit and press enter). Locate the following key

HKEY_CURRENT_USER\Software\Microsoft\Windows\Curre nt Version\Policies\System

Here, you'll find the value DisableTaskMgr and it's value will be set to 1. Delete this value.

This will enable your task manager. Since you've already tried all the methods to remove the trojan, I think the only option left is to do a clean format> reinstall.
__________________
#krow @ irc.freenode.net

Last edited by Cool Joe; 01-10-2008 at 04:05 PM. Reason: Automerged Doublepost
Cool Joe is offline  
Old 01-10-2008, 09:40 PM   #7 (permalink)
Broken In
 
afonofa's Avatar
 
Join Date: Jul 2008
Posts: 179
Lightbulb Re: virtue monde

VirtuMonde is a real pest. If you can still install stuff, to deal with it you can trial CounterSpy, SuperAntiSpyware and Malwarebytes' AntiMalware. They may be able to give you enough control over the comp to get rid of the pest. Did you try scanning with HijackThis?
afonofa is offline  
Old 01-10-2008, 10:26 PM   #8 (permalink)
The Black Waltz
 
Join Date: Apr 2008
Location: The Shed
Posts: 1,506
Default Re: virtue monde

^^What's the use? He can post the HT log here and we can tell him about the processes to end, but it'll start up again. Since he can't install any application, it's even worse.
__________________
#krow @ irc.freenode.net
Cool Joe is offline  
Old 02-10-2008, 12:37 AM   #9 (permalink)
Broken In
 
afonofa's Avatar
 
Join Date: Jul 2008
Posts: 179
Lightbulb Re: virtue monde

Whenever there is an alien(virtumonde) infestation:

1. let the local police(KIS) try and handle it
2. when they can't, send in the commandos(HJT) for seek and destroy operations
3. assist the commandos with air strikes(counterspy etc.)
4. if all else fails, then nuke(format) the town(windows) and wipe out the aliens alongwith whatever human residents(data) who were unfortunate enough to have survived the initial infestation and could not be extracted(failed/impossible recovery)

It's been a while since you saw an alien invasion movie hasn't it?

If he is able to end the processes and delete the files, then it may become possible to install antispyware software which could further remove the pest and slowly but surely get back control. Its worth a try before nuking windows.
afonofa is offline  
Old 02-10-2008, 12:54 AM   #10 (permalink)
In The Zone
 
manishjha18's Avatar
 
Join Date: Aug 2004
Location: pune (temporary)
Posts: 335
Default Re: virtue monde

attached my hdd to my friends comp and used Malwarebytes' Anti-Malware and super antispyware.
worked--but still wondering kis and spyware doctor--both failed..
thanks a lot you guys---
manishjha18 is offline  
Old 02-10-2008, 05:26 AM   #11 (permalink)
Broken In
 
afonofa's Avatar
 
Join Date: Jul 2008
Posts: 179
Default Re: virtue monde

Its not necessary that every antispyware would be to able to remove every variant of virtumonde. Maybe the type that was on your comp was not removable by spyware doctor. But its very likely that KIS's proactive defense alerted you when virtumonde was executing and making changes to the system and you unknowingly allowed it. It's not just KIS, lots of AV's have been having problems detecting and removing newer virtumonde variants and counterspy, superantispyware etc. have been successful in those cases(why? no idea). Once it gets installed its very tough to get rid of. So you should try to remember where/how it could have got into your comp.
Eg. If it was a specific website then you can avoid that site in the future.
afonofa is offline  
Old 02-10-2008, 10:32 AM   #12 (permalink)
Wise Old Owl
 
Cool Buddy's Avatar
 
Join Date: Mar 2006
Location: Milky way
Posts: 1,457
Default Re: virtue monde

virtue monde is a real pest, it infected my pc a few months back and was only removed when I used eset with latest updates. a month old update was not able to remove it.
__________________
Digital Sheets Technology Blog
AMD Phenom II X4 840, 4 GB RAM, MSI HD5670, Corsair CX400 PSU
Nokia 5230
Canon IXUS 115 HS
Cool Buddy is offline  
Old 02-10-2008, 12:26 PM   #13 (permalink)
Alpha Geek
 
ajaybc's Avatar
 
Join Date: Feb 2007
Location: Cochin
Posts: 723
Default Re: virtue monde

I had to format my PC.
Spybot S&D detected it but dint remove.Tried many tools and dint work at last format was my last resort
__________________
Available for freelance web development jobs.
You can view my portfolio here.
Ajay Balachandran

Please contact via PM
ajaybc is offline  
Old 02-10-2008, 12:27 PM   #14 (permalink)
EXIT: DATA Junkyard
 
comp@ddict's Avatar
 
Join Date: Aug 2008
Location: New Delhi
Posts: 4,959
Default Re: virtue monde

Formatting is best option rite know it seems
__________________
http://pleaseguide.me/
comp@ddict is offline  
Old 02-10-2008, 03:04 PM   #15 (permalink)
The Black Waltz
 
Join Date: Apr 2008
Location: The Shed
Posts: 1,506
Default Re: virtue monde

Make sure that your friend isn't infected as well!!!
__________________
#krow @ irc.freenode.net
Cool Joe is offline  
Old 14-11-2008, 05:53 PM   #16 (permalink)
Right Off the Assembly Line
 
Join Date: Jul 2006
Location: Bangalore
Posts: 13
Default Re: virtue monde

Was digging through the forum for something and saw this. I'd this headache for quite a while and tried lot of things. To cut a long story short, finally a boot-time scan scheduled in Avast got rid of the virus. That's how I fixed it. If you want to read the long story of it
http://shreeleshkumar.blogspot.com/2...irtumonde.html
__________________
http://twitter.com/shreelesh
www.shreeleshkumar.blogspot.com
www.flickr.com/photos/shreeleshkumar
Shreelesh Kumar is offline  
Closed Thread

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +5.5. The time now is 05:17 PM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.

Search Engine Optimization by vBSEO 3.3.2