Author Topic: Suspicious Files Found!  (Read 5258 times)

0 Members and 1 Guest are viewing this topic.

Offline julieinwv

  • Jr. Member
  • **
  • Posts: 35
Suspicious Files Found!
« on: November 21, 2008, 06:42:12 PM »
Wow, I don't know where to start.  I just joined. 

When I got online this morning everything seemed ok, booted up fine, etc..  Then I tried to open IE and it wouldn't come up, tried several ways of opening a window to no avail.   So, I made sure my Avast was up-to-date and ran it.   It wasn't long before an Avast Warning popped up.   It does not give me the option to put these files in the chest.   It only gives the options to delete now or ignore. 

It is saying the type Rookit hidden.. something.  It won't allow me to extend it out to see it all.

I have an Acer Aspire 3000, and some of them sounded Acer-related.   I run XP, IE 7.

I wasn't able to find anything by Googling.

The 'suspicious' files are as follows:

C:\WINDOWS\system.ini\ACEAPCTL.OCX
C:\WINDOWS\system.ini\ACERCTRL.OCX
C:\WINDOWS\system.ini\LUNCHAPP.OCX
C:\WINDOWS\system.ini\SCAXBTNS.OCX
C:\WINDOWS\system.ini\SCDIAGS.OCX
C:\WINDOWS\system.ini\SCINTRO.OCX
C:\WINDOWS\system.ini\SCMAINT.OCX
C:\WINDOWS\system.ini\SCSUPT.OCX
C:\WINDOWS\system.ini\VSOCX32.OCX


I would really appreciate any help anyone can give.

Thank you!

Julie

Offline igor

  • Avast team
  • Serious Graphoman
  • *
  • Posts: 11849
    • AVAST Software
Re: Suspicious Files Found!
« Reply #1 on: November 21, 2008, 06:45:35 PM »
What's the exact build of avast! you have installed?

Offline julieinwv

  • Jr. Member
  • **
  • Posts: 35
Re: Suspicious Files Found!
« Reply #2 on: November 21, 2008, 06:54:40 PM »
I'm sorry, I should have mentioned that. 

It's 4.8 Home Edition

Offline igor

  • Avast team
  • Serious Graphoman
  • *
  • Posts: 11849
    • AVAST Software
Re: Suspicious Files Found!
« Reply #3 on: November 21, 2008, 06:56:26 PM »
No, I meant the exact build... e.g. 4.8.1290.
You can find it in the About box.

Offline julieinwv

  • Jr. Member
  • **
  • Posts: 35
Re: Suspicious Files Found!
« Reply #4 on: November 21, 2008, 06:59:11 PM »
Build Nov2008(4.8.1290)

Offline julieinwv

  • Jr. Member
  • **
  • Posts: 35
Re: Suspicious Files Found!
« Reply #5 on: November 21, 2008, 10:00:30 PM »
Is there any other info I need to give?

Thank you!

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Suspicious Files Found!
« Reply #6 on: November 21, 2008, 10:02:40 PM »
Is your system an Acer by any chance ?

Offline julieinwv

  • Jr. Member
  • **
  • Posts: 35
Re: Suspicious Files Found!
« Reply #7 on: November 21, 2008, 10:06:42 PM »
Yes, like I said... it's an Acer Aspire 3000.   Some of the 'suspicious' files sound Acer-related....  Yes?

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Suspicious Files Found!
« Reply #8 on: November 21, 2008, 10:36:58 PM »
Quote
I have an Acer Aspire 3000, and some of them sounded Acer-related.   I run XP, IE 7.
Ooops Sorry didn't see that, but yes they are all Acer components

They need to be passed to Avast as false positives.  I will need to search for the routine for that 

Offline julieinwv

  • Jr. Member
  • **
  • Posts: 35
Re: Suspicious Files Found!
« Reply #9 on: November 21, 2008, 10:42:47 PM »
Oh good!   Thank you so much!

Please let me know what I will need to do.


Again, thanks a bunch  :)

Offline julieinwv

  • Jr. Member
  • **
  • Posts: 35
Re: Suspicious Files Found!
« Reply #10 on: November 21, 2008, 10:48:21 PM »
I am guessing the weirdness w/ IE not allowing me to open a window on first boot up this morning was a coincidence?      

Any ideas on what I should do about these files?  Choose to ignore them on Avast or what?

Any help would be greatly appreciated :)
« Last Edit: November 22, 2008, 12:34:10 AM by julieinwv »

Offline julieinwv

  • Jr. Member
  • **
  • Posts: 35
Re: Suspicious Files Found!
« Reply #11 on: November 24, 2008, 10:13:39 PM »
I'm still getting the Suspicious Files Found warning.

Is there anything I should be doing?   Is there any further info I can give, and be sure these are not bad files?

I'd really appreciate some help.

Thank you!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
Re: Suspicious Files Found!
« Reply #12 on: November 24, 2008, 10:24:28 PM »
Hi julieinwv,

Put the mentioned files into the avast exclusion list, then when the fp's are no longer found with a later avast update, you can include them again,

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline julieinwv

  • Jr. Member
  • **
  • Posts: 35
Re: Suspicious Files Found!
« Reply #13 on: November 25, 2008, 04:14:32 AM »
Thanks a lot Polonus!  :)