Computer Hope

Software => Computer viruses and spyware => Topic started by: CBSk on December 24, 2008, 02:57:46 AM

Title: Trojan Vundo
Post by: CBSk on December 24, 2008, 02:57:46 AM
Malwarebytes' Anti-Malware found a malware on my system (File name is avgrsstx.dll). But I found it's related to AVG Anti-virus through internet.
I am currently using AVG Free Anti-virus.

The log is...

Code: [Select]
Malwarebytes' Anti-Malware 1.31
Database version: 1539
Windows 5.1.2600 Service Pack 3

24/12/2008 03:10:25 PM
mbam-log-2008-12-24 (15-10-25).txt

Scan type: Quick Scan
Objects scanned: 45365
Time elapsed: 9 minute(s), 19 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
C:\WINDOWS\system32\avgrsstx.dll (Trojan.Vundo) -> Delete on reboot.


Suggestion needed.
Title: Re: Trojan Vundo
Post by: CBMatt on January 04, 2009, 03:34:24 PM
Sorry for the long wait.  We are VERY backed-up right now!  If you still require assistance, please read through this...
http://www.computerhope.com/forum/index.php/topic,46313.0.html
Title: Re: Trojan Vundo
Post by: CBSk on January 05, 2009, 05:13:52 AM
Thanks.

I know and read that all. But in my infection, the infected file is a part of AVG antivirus.
It's not detected by others. So I need confirmation that is correct detection.  Because I don't know the possibility of antivirus infection.

Before this reply, Infection was removed from my system.
Title: Re: Trojan Vundo
Post by: CBMatt on January 05, 2009, 05:04:42 PM
Sorry, I have to admit that things were a bit hectic yesterday and I misread your post.  The result you got from MBAM should be a false positive.  They are known for getting a lot of these from other scanning programs.  Update your copy of MBAM and that should take care of it.
Title: Re: Trojan Vundo
Post by: CBSk on January 05, 2009, 11:10:16 PM
ok. I recovered that file from quarantine.