Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: Trojan Vundo  (Read 2871 times)

0 Members and 1 Guest are viewing this topic.

CBSk

    Topic Starter


    Beginner
  • Look for opportunities where I can help...
    • Computer: Specs
    • Experience: Familiar
    • OS: Windows XP
    Trojan Vundo
    « on: December 24, 2008, 02:57:46 AM »
    Malwarebytes' Anti-Malware found a malware on my system (File name is avgrsstx.dll). But I found it's related to AVG Anti-virus through internet.
    I am currently using AVG Free Anti-virus.

    The log is...

    Code: [Select]
    Malwarebytes' Anti-Malware 1.31
    Database version: 1539
    Windows 5.1.2600 Service Pack 3

    24/12/2008 03:10:25 PM
    mbam-log-2008-12-24 (15-10-25).txt

    Scan type: Quick Scan
    Objects scanned: 45365
    Time elapsed: 9 minute(s), 19 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 0
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 1

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    (No malicious items detected)

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    (No malicious items detected)

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    C:\WINDOWS\system32\avgrsstx.dll (Trojan.Vundo) -> Delete on reboot.


    Suggestion needed.
    Selvakumar CBSk

    CBMatt

    • Mod & Malware Specialist


    • Prodigy

    • Sad and lonely...and loving every minute of it.
    • Thanked: 167
      • Yes
    • Experience: Experienced
    • OS: Windows 7
    Re: Trojan Vundo
    « Reply #1 on: January 04, 2009, 03:34:24 PM »
    Sorry for the long wait.  We are VERY backed-up right now!  If you still require assistance, please read through this...
    http://www.computerhope.com/forum/index.php/topic,46313.0.html
    Quote
    An undefined problem has an infinite number of solutions.
    —Robert A. Humphrey

    CBSk

      Topic Starter


      Beginner
    • Look for opportunities where I can help...
      • Computer: Specs
      • Experience: Familiar
      • OS: Windows XP
      Re: Trojan Vundo
      « Reply #2 on: January 05, 2009, 05:13:52 AM »
      Thanks.

      I know and read that all. But in my infection, the infected file is a part of AVG antivirus.
      It's not detected by others. So I need confirmation that is correct detection.  Because I don't know the possibility of antivirus infection.

      Before this reply, Infection was removed from my system.
      Selvakumar CBSk

      CBMatt

      • Mod & Malware Specialist


      • Prodigy

      • Sad and lonely...and loving every minute of it.
      • Thanked: 167
        • Yes
      • Experience: Experienced
      • OS: Windows 7
      Re: Trojan Vundo
      « Reply #3 on: January 05, 2009, 05:04:42 PM »
      Sorry, I have to admit that things were a bit hectic yesterday and I misread your post.  The result you got from MBAM should be a false positive.  They are known for getting a lot of these from other scanning programs.  Update your copy of MBAM and that should take care of it.
      Quote
      An undefined problem has an infinite number of solutions.
      —Robert A. Humphrey

      CBSk

        Topic Starter


        Beginner
      • Look for opportunities where I can help...
        • Computer: Specs
        • Experience: Familiar
        • OS: Windows XP
        Re: Trojan Vundo
        « Reply #4 on: January 05, 2009, 11:10:16 PM »
        ok. I recovered that file from quarantine.
        Selvakumar CBSk