Author Topic: Rootkit c:\windows\SoftwareDistribution\download\b18c8e918883751dfbf19ad251c8c35  (Read 8765 times)

0 Members and 1 Guest are viewing this topic.

solidsnake44

  • Guest
Hello everybody,


Today I did a scan with Avast 6 and Avast found a Rootkit (:modification system) in :

c:\windows\SoftwareDistribution\download\b18c8e918883751dfbf19ad251c8c352\x86_06ba0d35a05397d17859b3f9cb08ec23_b77a5c561934e089_6.0.6002.22621_none_e61fa5ebd64c1392.manifest

The threat is classified in HIGH

I think it's a false positive, but I want to be sure to inform Avast.

I Did a scan with Malwarebyte anti-malware and spybot = Nothing
Avast had never shown an alert during use. Only in Scan.

Thank you :)
« Last Edit: July 14, 2011, 09:55:03 AM by solidsnake44 »

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37534
  • Not a avast user
Quote
I think it's a false positive, but I want to be sure to inform Avast.
have you tested the file at www.virustotal.com ?

solidsnake44

  • Guest
Hello.

During the scan I deleted the file (It wasn't very important). And I didn't have Internet.

I installed the pc on Internet during 4 days only. And I didn't visit risky websites.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37534
  • Not a avast user
Quote
And I didn't visit risky websites......
you dont have to.....


Website infected every 3.6 seconds
http://www.scmagazine.com.au/News/150874,website-infected-every-36-seconds.aspx

solidsnake44

  • Guest
Ouah !  :o

It's huge. 

You think it's a false Positive ?

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
You think it's a false Positive ?

Difficult to say, as you already deleted it, there's nothing to check.
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

solidsnake44

  • Guest
Ok Thank you :)

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0