Author Topic: Detection of care2gtu1.exe -- what is it?  (Read 3472 times)

0 Members and 1 Guest are viewing this topic.

Howard Ballinger

  • Guest
Detection of care2gtu1.exe -- what is it?
« on: March 21, 2004, 06:13:27 PM »
Hello, I'm a regular Avast! home edition user with Internet Mail and Standard Shield providers running at all times. I decided to do a scan today and it detected a file c:\program files\care2gtu\care2gtu1.exe.

I'm wondering what this is (I've searched here and there and found nothing on it), what it does, and how it got by my resident protection.

Actually it's runnig now, and I'll need to do a boot time scan to get rid of it I guess.

whocares

  • Guest
Re:Detection of care2gtu1.exe -- what is it?
« Reply #1 on: March 21, 2004, 07:23:20 PM »
Hi,

what virusname gives avast this detection exactly ?

Google helps you maybe:
Clickme!
« Last Edit: March 21, 2004, 07:24:08 PM by whocares »

Howard Ballinger

  • Guest
Re:Detection of care2gtu1.exe -- what is it?
« Reply #2 on: March 21, 2004, 09:17:50 PM »
I just found more info in the file 'warning.log' ...

3/21/2004   8:21:00 AM   1079886060   *****\******      3200   Sign of "Win32:Trojan-gen. {VC}" has been found in "C:\Program Files\Care2GTU\Care2GTU1.exe" file.  
3/21/2004   9:09:52 AM   1079888992   NT AUTHORITY\SYSTEM   1936   Sign of "Win32:Trojan-gen. {VC}" has been found in "C:\Program Files\Care2GTU\Care2GTU1.exe" file.  
3/21/2004   12:02:58 PM   1079899378   *****\******   892   Function setifaceUpdatePackages() has failed. Return code is 0x20000004, dwRes is 20000004.  

=================================

I did a boot-time scan (finally found the main menu in the dashboard-like Avast! window) ... and while it detected a copy of "Win32:Trojan-gen. {VC}" in the system restore files, it didn't detect it in the Care2GTU directory.  "...\\Care2GTU\Care2GTU1.exe" still existed. Since I didn't know what it was I deleted it, and this time I was able to (i.e. it wasn't running). All seems to be well now.



Anyway it seems