I just got hit the other day by Alureon or a variant. It cleverly changed my Windows Update settings to Automatic Updates at 3:00 am and when I woke-up, I saw my machine had been rebooted. Then it would not connect to the internet....a classic symptom of this virus.
I had the latest 2010 edition of NAV with the latest definitions. A scan had been run 3 days earlier - no detection. A ran a full scan again - once more, nothing detected.
I went onto the Kaspersky website, downloaded a tool, and it found it...and apparently partially disabled it.
Upon reboot, my Norton Internet Security was hosed, so I rebooted onto a CD with the "latest" Norton Bootable Recovery Tool. The definitions on that tool indicated 10/30/2009 !!! They were so old.
Anyway, once again, it detected nothing.
From BleepingComputer.com I downloaded the TDSSKILLER program, ran it, and now all is well.
No more hijacked links.
Hello Norton tech support !!! Is anyone listening to this story ?