Virtumonde question

Discussion in 'Malware Help (A Specialist Will Reply)' started by mateojimmy, Dec 21, 2008.

  1. mateojimmy

    mateojimmy Private E-2

    You guys are really good at getting rid of malware, your prevention help is great, but I have a question about where it comes from. I use Spybot S&D (with Sdhelper and teatimer installed) and Symantec Anti-virus. I have used other spyware, anti-virus, and firewall programs before. I use the internet mainly for e-mail. And I was under the impression that if I didn't download anything or click on random advertisements I wouldn't have to worry much about malware. Well, I was wrong, I got a Virtumonde problem while surfing, which Chaslang was able to fix. While I was researching it and much was done on here, the common thread seems to come up...That many had no idea how they got it. I have since installed Spyware Blaster, Online Armor and Windows Defender. I'm sure that even with everything installed on my computer and continuing to be careful with what I do online that I can still get infected. So where does this latest class of virtumonde come from? What does it embed in? And how is it prevented?
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    There is no perfect or long lasting protection solution. Malware creators are constantly tracking how we find and remove malware and find new ways to bypass protection methods all the time. Which means we have to find new ways to detect them, remove them, and protect against them again....... and so it repeats.



    There are many vehicles by which people get infected. Downloading and clicking on adverstisments are only two possible ways. Others include but are not limited to
    • NOT KEEPING ALL SOFTWARE UPDATED!!!
    • surfing - usually certain websites are the main problem
    • click links to view pictures or videos, or listen to music....etc
    • not reading what you are clicking on and even if you do it may be worded in a form to trick you into clicking the wrong answer. Sometimes the answer is the opposite of what you think. And sometimes there is no correct answer because it is already too late one the popup has appeared..
    • installing codecs to view videos or sound
    • installing cracks and or illegal software
    • downloading via P2P or Torrent programs
    • downloading from websites that do no check their downloads to see if they are safe and very few actually do this even though they say they do. (We do at Major Geeks!)
    • reading emails from unknown senders especially if you have html enabled and also especially if clicking on any attachments
    • reading emails from friends who don't know they are infected and may not even know they are sending you emails.
    I know that many people like to say that they don't understand how they are getting infected, but the fact remains that in most cases it is by their own doing. I surf more than most people and access all kinds of websites while trying to test various malware. I have to eliminate all of my protection (even my router which has a hardware firewall) and I still have a hard time getting infected and I have to knowingly agree to install things to get infected.

    General Tips for everyone (not just you ;) )
    • If you do not have a router or do not have a router with a hardware firewall, then get one.
    • If you are not using a real bidirectional firewall (I know you said you now have Online Armor) then install one and only one. The Windows (any version) firewall is not adequate.
    • Install one and only one antivirus program.
    • Install one and only one realtime antispyware protection program
    • Install the below for background protection
      • SpywareBlaster
      • Spybot with SDHelper and use the Immunization feature
    • Do period scans with you AV and AS programs?
    • Use additional scan only programs like SUPERAntiSpyware and Malwarebytes.
     
    Last edited: Dec 23, 2008
  3. mateojimmy

    mateojimmy Private E-2

    Thank you again! These are some good tips. I guess I was asking b/c this time I couldn't pin point anything I did to get the trojan. I've gotten malware before and I usually can say, oh yeah... I did this dumb thing...Also previous times it would be as simple as a virus or spyware scan and it would be done. I've actually learned the hard way on a few of those scenarios. (even stuff that before never had a problem). And now just don't do them. Thanks again. :major
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome. Surf safely.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds