Solved

Infected by the 'Qakbot'

Posted on 2009-05-06
5
1,110 Views
Last Modified: 2013-11-22
Many machines appear to be infected by a new form of this virus. CA does not have solution for this strain of virus as of last night. Could this be an isolated infection or have others reported this to the Experts?
Thanks,
Lance
0
Comment
Question by:lloakley
  • 2
5 Comments
 
LVL 2

Expert Comment

by:FatManc
Comment Utility
I would download the latest versions of the following malware removers and rescan the machines.

malwarebytes - http://www.malwarebytes.org/mbam.php
[Admin Edit - link removed. Vee_Mod]

make sure that both packages are up to date.

If nothing is identified please post a HiJackThis log -

http://download.cnet.com/Trend-Micro-HijackThis/3000-8022_4-10227353.html

Thanks
John
0
 
LVL 23

Accepted Solution

by:
Admin3k earned 500 total points
Comment Utility
Please take a look at this write up for manual removal instructions
http://www.sophos.com/security/analyses/viruses-and-spyware/trojqakbota.html
Malwarebytes should handle it as advised above, if all else fails, I am pretty sure Combofix can clean it.
0
 
LVL 2

Expert Comment

by:FatManc
Comment Utility
Hi - any luck with the solutions on this page?
0
 

Author Comment

by:lloakley
Comment Utility
Our virus protection vendor authored a solution. We've applied the updates and this seemed to fix the trouble. Thank you Experts for your efforts...
Lance
0

Featured Post

What Should I Do With This Threat Intelligence?

Are you wondering if you actually need threat intelligence? The answer is yes. We explain the basics for creating useful threat intelligence.

Join & Write a Comment

As more computers now shipped with 64-bit version of Windows, more users are now using this Operating System.  So it's important to be aware how some 32-bit diagnostic tool works on these systems, so we know what to expect when analyzing the logs an…
OVERVIEW This guide provides information on the process performed when the Symantec Endpoint Protection (SEP) client checks in with the Symantec Endpoint Protection Manager (SEPM). AUDIENCE Information Technology personnel responsible for suppo…
This video discusses moving either the default database or any database to a new volume.
This video explains how to create simple products associated to Magento configurable product and offers fast way of their generation with Store Manager for Magento tool.

763 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now