Avast WEBforum

Business Products => Avast Business => Topic started by: matshekad on February 02, 2016, 04:40:21 PM

Title: Undetected Malware
Post by: matshekad on February 02, 2016, 04:40:21 PM
Hi there

I'm part of an enterprise support team and

I've detected a malware that  major Anti-Virus solution(AVG, VAST, Mcafee, etc) cant pick-up at all. Its packaged as "part" of the malware that normally causes shortcuts on flash disks. Malwarebytes was the only one that detected it though I had to manually remove it from the system..I've been tracking and observing it since last year and the only viable solution for me was to manually remove it, only to come and remove it again if a user were to insert an infected flash

This is what I know of it now

1 Its in the Program Data
2 It modifies the Load string in the registry
3 On almost every PC it has a different name(msgzvju, msddr.exe, mszdzn.exe, msburzi.exe, etc)
5..... :( AVAST END POINT cant detect it at all

The issue is beyond the work place and now I see it almost everywere

Me, Being Thankful


Title: Re: Undetected Malware
Post by: Asyn on February 03, 2016, 05:59:28 AM
You can report suspected malware here: https://support.avast.com/support/tickets/new?form=3
Title: Re: Undetected Malware
Post by: matshekad on February 03, 2016, 09:32:45 AM
Thanks a lot...I've done so
Title: Re: Undetected Malware
Post by: Asyn on February 03, 2016, 09:35:23 AM
You're welcome.
Title: Re: Undetected Malware
Post by: Milos on February 03, 2016, 12:17:53 PM
Hello,
thanks, for the ticket. We will need some samples to analyze. As I see they are quite large -- 81 MB, pack them to archive and upload them to our ftp://ftp.avast.com/incoming/ and let us know the uploaded filename.

Milos