Author Topic: Avast found Win32: trojan-gen  (Read 19396 times)

0 Members and 1 Guest are viewing this topic.

yod12

  • Guest
Re: Avast found Win32: trojan-gen
« Reply #15 on: August 08, 2008, 01:04:45 AM »
I printed it out as a pdf, and then found that this forum won't accept attachements in that format. Any other suggestions?

yod12

  • Guest
Re: Avast found Win32: trojan-gen
« Reply #16 on: August 08, 2008, 01:11:24 AM »
I printed the results as a pdf, but this forum won't accept attachments in that format. Any other suggestions? Please excuse if this shows up twice.

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89033
  • No support PMs thanks
Re: Avast found Win32: trojan-gen
« Reply #17 on: August 08, 2008, 02:06:22 AM »
In your browsers address bar, just copy and paste the URL for the page with the results in the forum.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

yod12

  • Guest
Re: Avast found Win32: trojan-gen
« Reply #18 on: August 08, 2008, 02:33:16 AM »

wyrmrider

  • Guest
Re: Avast found Win32: trojan-gen
« Reply #19 on: August 08, 2008, 05:18:55 AM »
Backdoor.Win32.Feri.g
is a real hit- so keep it in the chest/ quarentine do not delete/ remove yet
(just because Backdoor.Win32.Feri.g is a real malware name we do not know yet if you really have it as Avast -gen - general tag is ambiguous but suspicious- follow?)
but we can't take any chances

let me double check- did you send a copy to... files for analysis to virus (at) avast.com

let's see if we have anything else infecting your machine
Me
I'd first run a Malware Bytes Anti Malware (MBAM) or Rogue Remover scan
I'd update avast and schedule a boot time scan- rt click on the ball

since Kaspersky targeted this Backdoor.Win32.Feri.g
I'd try a Kaspersky on line scan- run from IE and allow Active X


l
« Last Edit: August 08, 2008, 05:24:45 AM by wyrmrider »

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89033
  • No support PMs thanks
Re: Avast found Win32: trojan-gen
« Reply #20 on: August 08, 2008, 02:49:41 PM »
Personally I don't feel there is a need to send this to avast for analysis as the detection is most certainly good, regardless of the name given.

I would certainly agree that as a possible backdoor that the additional scans should be carried out to ensure there isn't anything else hiding/undetected.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

yod12

  • Guest
Re: Avast found Win32: trojan-gen
« Reply #21 on: August 08, 2008, 08:34:29 PM »

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67194
Re: Avast found Win32: trojan-gen
« Reply #22 on: August 08, 2008, 08:36:54 PM »
Not so sure it's a false positive, don't seem so...
The best things in life are free.

yod12

  • Guest
Re: Avast found Win32: trojan-gen
« Reply #23 on: August 08, 2008, 08:37:26 PM »

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89033
  • No support PMs thanks
Re: Avast found Win32: trojan-gen
« Reply #24 on: August 08, 2008, 09:18:42 PM »
Well both of your last VT results confirm a good detection.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

yod12

  • Guest
Re: Avast found Win32: trojan-gen
« Reply #25 on: August 08, 2008, 09:38:57 PM »
Sorry, I ended up posting results from virustotal twice for one of these. It's been scanning trz11.tmp for over an hour. Not sure what's going on...it's only 161280 bytes.
Well, I've been learning a little bit so far. Not sure what your interpretations mean yet.

Thanks,

wyrmrider

  • Guest
Re: Avast found Win32: trojan-gen
« Reply #26 on: August 08, 2008, 10:57:18 PM »
YOU MOST LIKELY HAVE A VIRUS AND NEED TO DEAL WITH IT
but it in chest

yod12

  • Guest
Re: Avast found Win32: trojan-gen
« Reply #27 on: August 09, 2008, 12:00:10 AM »
Need to deal with it. Well, that's what I trying to figure out.
I put all three in the Chest and they're also in a suspect folder that I got directions here how to create. What should I do now. Virustotal's been scanning trz11.tmp for over 2 hours now.

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89033
  • No support PMs thanks
Re: Avast found Win32: trojan-gen
« Reply #28 on: August 09, 2008, 01:02:11 AM »
What is the size of the trz11.tmp file ?

I feel that you should probably abandon the VT scan of trz11.tmp as it would appear to have stalled. Even if the trz11.tmp file was 10MB (the max upload size) it should have uploaded and been scanned in that time.

Have you run the MalwareBytes Anti-Malware freeware version http://www.softpedia.com/get/Antivirus/Malwarebytes-Anti-Malware.shtml scan as suggested previously ?
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

wyrmrider

  • Guest
Re: Avast found Win32: trojan-gen
« Reply #29 on: August 09, 2008, 02:01:22 AM »
after the MBAM scan post back

Do not worry about the viri in Chest or in the temp file you created (suspicious?)

David R can advise you on this
did you google trz11.tmp?  looks suspicious
what is the full path
But CCLeaner or ATF Cleaner can clean up that temp file if it is a real temp file