Infostealer.Banker.D virus removal

Discussion in 'Windows - Virus and spyware problems' started by menai, Feb 22, 2008.

  1. menai

    menai Member

    Joined:
    Feb 20, 2007
    Messages:
    26
    Likes Received:
    0
    Trophy Points:
    11
    can anyone tell me the easiest possible way to remove this file without going into the registry.

    i have a client in another state where i cannot remote into her machine and i am not willing to run her through going into the registry to clean it out.

    isnt there a removal tool for this, i tried searching through google but couldnt find anything.

    any help will be much apreciated.

    Thanks
     
  2. ddp

    ddp Moderator Staff Member

    Joined:
    Oct 15, 2004
    Messages:
    39,167
    Likes Received:
    136
    Trophy Points:
    143
  3. Ltangel

    Ltangel Regular member

    Joined:
    Feb 17, 2008
    Messages:
    200
    Likes Received:
    0
    Trophy Points:
    26
    It's extremely important to tell your client to alert the bank and change her bank account information IMMEDIATELY. Advise her NOT to use her infected computer for any banking transaction until it is confirmed that her computer is clean from the infection.

    Meanwhile,can you ask your client to come to the forums here and post her problems.

    ~Ltangel~
     
  4. menai

    menai Member

    Joined:
    Feb 20, 2007
    Messages:
    26
    Likes Received:
    0
    Trophy Points:
    11
    thanks for the help.

    i seen the symantec information, i just thought there might have been some removal tool as i am running her through it over the phone.

    my apologies for posting in the wrong forum. didnt realise there was one specifically for these type of problems
     
    Last edited: Feb 23, 2008
  5. menai

    menai Member

    Joined:
    Feb 20, 2007
    Messages:
    26
    Likes Received:
    0
    Trophy Points:
    11
    client is using symantec, but when scanning and detecting it, it comes up advising that it has been quarantined successfully, but then it says access denied.

    could it be that it is located in the system restore data?

    if thats the case i might aswell disable system restore but i dont want to do that because its quite handy at times(system restore).
     
  6. Ltangel

    Ltangel Regular member

    Joined:
    Feb 17, 2008
    Messages:
    200
    Likes Received:
    0
    Trophy Points:
    26
    Can you direct her to the forums here, and ask her to register and post her problem?
     

Share This Page