Consumer Products > Avast Free Antivirus / Premium Security (legacy Pro Antivirus, Internet Security, Premier)
Suspicious File Found: WINSYS2.EXE
Maxx_original:
winsys2.exe is not a false positive, it has been analysed already.. there could be dependencies to other modules (look at the google results), we're trying to get the other possibly related files...
colebn:
I've just had exactly the same problem as the OP, same messages, same results.
I downloaded the Trend Micro Rootkit buster from the link kindly provided by DavidR. I ran the file, it asked me to restart the PC which I did and since then nothing (I can't see any new program installed or anything). The Avast! message as outlined in the OP still pops up.
Should I try the other rootkit thingies?
And how do you submit a file to Avast!? Is it automatic?
Edit: Not sure if this is useful or not but... http://www.virustotal.com/analisis/a4498afa5ecb4c44b1f530356d3eabf0 I submitted it there.
Brammert:
Same problem here as of yesterday. I did the full virusscan as suggested by Avast, as well as a rootkit check, and no problems were reported.
For your awareness (and to the best of my knowledge): both winsys.exe and winsys2.exe are installed as part of the MSI NVIDIA Geforce videocard driver install process, and are reported as part of the driver pack. I suspect that in my case the Avast message is in error.
colebn:
I have a MSI motherboard and graphics card in my PC as well. I've noticed I have 2 files in the C:/Windows/System32 folder; winsys and winsys2. Both say they are a "DOT MFC Application", whatever that means.
I've since ran the Panda rootkit check and that showed up nothing.
DavidR:
Whilst I have a Sparkle, Nvidia GeForce PCI 8600GT I don't have any of those files, though my graphics card isn't by MSI. My motherboard is by MSI, a P35 Neo.
I suggest you upload them to virustotal and check them out.
You could also check the MD5 number reported at the bottom of the VirusTotal link in colebn's post and compare it against the MD5 of your file.
Navigation
[0] Message Index
[#] Next page
[*] Previous page
Go to full version