AdwCleaner infected w/ Trojan.Win32.Generic!O

Discussion in 'Software' started by Skullpture, May 13, 2014.

  1. Skullpture

    Skullpture Private E-2

    I've been downloading from Majorgeeks.com for years, and rarely do I find them to be infected. For some reason this time I decided to check the file AdwCleaner that was posted on May 12th, 2014 for any infections. It came back that Virustotal.com reported it to be infected with Trojan.Win32.Generic!O.

    This may want to be addressed and removed.

    Here are my findings running the file "adwcleaner.exe" HERE
     
  2. LauraR

    LauraR MajorGeeks Super-Duper Administrator Staff Member

    I would say that the likelihood of CMC (which I've actually never heard of) coming up with a false positive is pretty high. All the other scans are clean....a lot of them being the highly respected utilites.

    I will definitely report it to the owners, though.
     
  3. Nick T

    Nick T MajorGeek

    A scan with Jotti came up with, Clam AV finding: PUA.Win32.Packer.UPX-48, and, DR.WEB finding: Trojan.Botnetlog.9. Sorry I couldn't get a screenshot . Hope this helps.
     
  4. Adrynalyne

    Adrynalyne Guest

    Agreed. Many well known and highly scored antivirus programs cleared it.

    You decide its worthiness (CMC):

    http://www3.cmcinfosec.com/san-pham/cmc-antivirus/14.epi

    Trojan.Win32.Generic!O is a (as it sounds) generic name and not necessarily an instance of a trojan. Any application that can change or modify system settings and installed applications runs the risk of hitting a false positive like this.
     
  5. Adrynalyne

    Adrynalyne Guest



    PUA.Win32.Packer.UPX-48

    PUA stands for Possibly Unwanted Application. Similar to PUP. There are parts of it still in french, and I have a feeling that would do it. Its right in there with the generic trojan.


    Not sure about the Dr. WEB finding. It should be noted that in all three of these findings, its been with low scoring antivirus applications.
     
  6. Major Attitude

    Major Attitude Co-Owner MajorGeeks.Com Staff Member

    Any program, almost always, that removes viruses or malware will be detected as a virus or trojan. False positive all day long.
     
  7. Nick T

    Nick T MajorGeek

    Agree with you Major Attitude, I just wanted to let you know in case a very small chance something happened. Just doing my part for MGs.
     
  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    We use it all the time in Malware removal. It isn't infected. :major
     
  9. Skullpture

    Skullpture Private E-2

    I was using it too, until I came across this info. Sorry. I thought I was helping. Never mind.
     
  10. LauraR

    LauraR MajorGeeks Super-Duper Administrator Staff Member

    Just to be clear, we always appreciate people reporting things like this.

    In this case, though, the download is safe and those are false positives. Proof positive being that our malware team uses it in removal. I have a feeling if you looked in our malware removal forum, you'd see the expertise in there.
     
  11. Nick T

    Nick T MajorGeek

    I think this sums it up and says it all.
     
  12. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    Just the nature of a anti - malware or security program as in it can trigger some security software to think its nasty but the nature of the security applications is that they need to be sneaky at times so hence the trigger in an alert.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds