avg and hjt

Discussion in 'Software' started by hawklord, Sep 8, 2007.

  1. hawklord

    hawklord Master Sergeant

    hi,

    thought you might like to know that the latest definitions for avg are picking up a trojan in the hijackthis v2 program downloaded from trend micro and from ourselves,
    just up-loaded the zip file to jotti file scanner and only avg found any problem, worm/generic.dht,
    false positive i think
     
  2. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    Cheers for the heads up Hawklord, it seems AVG is having a glut of false positives of late, keep on like this and it will be one freebie I will start not to recomend.

    But lets see how quick Grisoft fix this, I have forwarded your mesage to our malware fighters as no doubt they will have a few threads mentioning this malware, so thanks for this alert, please also if you get time post back if the next defs for AVG fix this malware alert?
     
  3. hawklord

    hawklord Master Sergeant

    hi halo,

    found the same problems on mine, the last f/p i had was updating spyware terminator (i know about the pro's and con's)
     
  4. evilfantasy

    evilfantasy Malware Fighter

    It is doing the same to Brute Force Uninstaller.
    AVG alerted me to and removed them both out last night.
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    The worm type false detections have happened many times with programs like this. They are sometimes triggered by the compression/packing schemes used to create the EXE files. McAfee used to detect version 1.99.1 of HijackThis to have a p2p worm in it. Since BFU is also from Merijn, it is not surprising to possibly see similar false detections.

    Now back to AVG, as Halo, mentioned there have been quite a few false positives showing up in AVG over the last 3 months or so. It's a shame but it does happen with many programs. Sometimes a new feature/detection that is added to truly detect real malware can also trigger the detection of other things that are not valid.
     
    Last edited: Sep 8, 2007
  6. evilfantasy

    evilfantasy Malware Fighter

    Thanks chaslang. I had pretty much forgotten I had BFU until last night. And didn't make the Merjin connection until you mentioned it.

    Merjin fans are saying it is a direct attack from AVG as they are competitors. But who knows.

    I have to say I was in shock. Two programs in a row. I thought I was under full assault.
    Hopefully it is taken care of soon.
     
  7. greenknight32

    greenknight32 Sergeant

    The FP on HJT is fixed already. I installed the latest update, then I was able to restore HJT.
     
  8. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    Cheers for update Greenknight, good for Grisoft getting this fixed quickly, sadly in some occasions important files and software can be flagged and an unsupecting user can delete the FP and kill some software of theirs, so quick fixes from the AV companies are needed.

    SO good for Grisoft.
     
  9. greenknight32

    greenknight32 Sergeant

    Yep, they are quick. I went to their forum to report the issue, found it had already been discussed at length - and the last post in the thread said the fix would be in the next update. This, in fact, proved to be the case.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds