I am a bit confused, we all know the threat is out there. But I cant seem to find any information as to weather or not Avast detects the presence of this software on infected hosts.
Does it? If so, what would it be called?
I am a bit confused, we all know the threat is out there. But I cant seem to find any information as to weather or not Avast detects the presence of this software on infected hosts.
Does it? If so, what would it be called?
As per http://www.bleepingcomputer.com/forums/topic430389.html, avast calls this WIN32: DNS Changer –VJ [Trj]. Quite likely, avast also detects variants that might be named WIN32: DNS Changer –AAC [Trj] etcetera.
Jindřich Kubec of avast has written this piece:
https://blog.avast.com/2012/07/06/how-not-to-lose-your-internet-access-on-jul-9th-2012/#more-8282
If you have an infected system, please work with a malware specialist to remove the infection.
Regards,
this is old stuff…so everyone detect this. Search forum for more info
most vendors call it somethink like trojan:DNSchanger…anyway they all use DNSchanger in the name so should be easy to see when detected