Author Topic: Avast unable to eliminate Win32: malware-gen  (Read 4540 times)

0 Members and 1 Guest are viewing this topic.

Brian__K

  • Guest
Avast unable to eliminate Win32: malware-gen
« on: March 20, 2011, 01:00:52 AM »
This is my 1st post.  I've read other posts about win32: malware-gen but I've been unable or not skilled enough to understand and apply the manual fixes that seem to be necessary.

Safe mode scans by Malwarebytes and Superantispyware do not find this virus but an Avast boot scan repeatedly finds it and some related infected files.  Avast can isolate the related files but when attempting any of the fix options (delete, repair, move, ignore), I get this error: "operation is not supported for this type of archive." The only action I can perform is to exit the scan.  The location is in some Dell shovelware:

Dell Embassy Trust Suite\embassy trust suite\wave infrastructure\wave infrastructure.msi>data1.cab1|>...(long series of numbers & letters).

I could not attach the full OTS log due to upload size limitations, but I did attach the first part of the log file with the system information.

Any guidance would be appreciated.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37600
  • Not a avast user
Re: Avast unable to eliminate Win32: malware-gen
« Reply #1 on: March 20, 2011, 01:22:59 AM »
Quote
I could not attach the full OTS log due to upload size limitations, but I did attach the first part of the log file with the system information.
then you do one more post where you attach the rest...

Brian__K

  • Guest
Re: Avast unable to eliminate Win32: malware-gen
« Reply #2 on: March 20, 2011, 01:37:07 AM »
Thanks for the tip; I should have thought of that. Here's the second of three OTS files:

Brian__K

  • Guest
Re: Avast unable to eliminate Win32: malware-gen
« Reply #3 on: March 20, 2011, 01:37:49 AM »
And the 3rd and last:

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37600
  • Not a avast user
Re: Avast unable to eliminate Win32: malware-gen
« Reply #4 on: March 20, 2011, 01:54:19 AM »
Essexboy is notified, check back later today as he is in bed now....

Brian__K

  • Guest
Re: Avast unable to eliminate Win32: malware-gen
« Reply #5 on: March 20, 2011, 02:10:29 AM »
You mean to say that you superhero types actually sleep?!

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89280
  • No support PMs thanks
Re: Avast unable to eliminate Win32: malware-gen
« Reply #6 on: March 20, 2011, 02:13:47 AM »
Yes, under their capes ;D
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.5.6116 (build 24.5.9153.762) UI 1.0.808/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

doktornotor

  • Guest
Re: Avast unable to eliminate Win32: malware-gen
« Reply #7 on: March 20, 2011, 09:07:55 AM »
Dell Embassy Trust Suite is a legit product usually preinstalled on Dell laptops. Looks like FP to me. "operation is not supported for this type of archive" message merely tells you that avast! is not able to delete files selectively from the CAB archive. It could delete the entire archive instead if you set the actions accordingly.

IOW, I'd suggest to submit this as possible FP to Avast...

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Avast unable to eliminate Win32: malware-gen
« Reply #8 on: March 20, 2011, 02:15:25 PM »
Would agree with the false positive assessment

Upload as previously stated as a false positive... Otherwise all looks good  ;D

Brian__K

  • Guest
Re: Avast unable to eliminate Win32: malware-gen
« Reply #9 on: March 20, 2011, 05:51:18 PM »
Whew! Thanks for the assistance; keep up the noble work!

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Avast unable to eliminate Win32: malware-gen
« Reply #10 on: March 20, 2011, 06:01:15 PM »
Our pleasure  ;D