Author Topic: Win 32 Evo gen Susp is in my Virus chest  (Read 1207 times)

0 Members and 1 Guest are viewing this topic.

Offline noriko_sh

  • Newbie
  • *
  • Posts: 19
Win 32 Evo gen Susp is in my Virus chest
« on: April 20, 2018, 12:02:31 PM »
Hi
I just realized Win 32 Evo gen Susp is in my Virus chest.
What should I do now?
Is my pc safe to use?
Is there any potential harm that can cause me lose my privacy or etc?

Offline Michael (alan1998)

  • Massive Poster
  • ****
  • Posts: 2768
  • Volunteer
Re: Win 32 Evo gen Susp is in my Virus chest
« Reply #1 on: April 21, 2018, 02:28:56 PM »
Well the Susp means Suspicious. Evo-gen detections are extremely broad honestly. I wouldn't worry to much. Can you post a picture of the filepath from the Avast! chest?

If you want a second opinion on it, restore it and go to www.virustotal.com and upload it there. Additionally you can post your MBAM and FRST logs from the programmes found here.

Run MBAM first. It'll clean up any bloatware, or general infections. Then run FRST.

If you post logs I'll PM Sass Drake and see if he'll come over to take a look.

~Michael
VOLUNTEER

Senior Security Analyst; Sys Admin (Linux); Forensics/Incident Response.

Security is a mindset, not an application. Think BEFORE you click.

Offline noriko_sh

  • Newbie
  • *
  • Posts: 19
Re: Win 32 Evo gen Susp is in my Virus chest
« Reply #2 on: April 24, 2018, 06:47:50 AM »
I tried to post the picture but it was too big.
The infected file name was
Stubs/Izma-x86-unicode
Original Location was
C://program files/

Thank you
Regards,

Offline Milos

  • Avast team
  • Super Poster
  • *
  • Posts: 2294
Re: Win 32 Evo gen Susp is in my Virus chest
« Reply #3 on: April 25, 2018, 09:39:35 AM »
Hello,
extract the file from the virus chest and send it us through https://www.avast.com/false-positive-file-form.php

Milos