ils.dll => false positive?

Hi

I just got a warning from avast, it detected a rootkit in the ils.dll file in the windows\system32 folder. (Windows XP SP3)
This happened on 2 of my computers at almost the same time.
This makes me think that this is a false positive?

Looks like a FP:
http://forum.avast.com/index.php?topic=40975.0

I got the same warning.
Could somebody confirms this is an FP or not?

Thx.

I just received a VPS database update and scanned ils.dll and did not get an alert.

today dec. 15th, I’ve received a warning from AVAST about the c:\windows\system32\ils.dll. here 2 computers using XP got this warning…

I guess a false positive warning…

I suggest you guys send a mail to avast tem, they can give us an answer…

Yup, same warning here. Think I’ll cancel the full scan running on that system and get to work, and hope for
“official” notice this is a fp.

I also received the same message…
Avast! popped up saying it had found a suspicious file, and that it was detected using heuristic methods. It was actually quite scary for me, as I go to great lengths to keep my computer safe from malware, and I don’t think malware has ever actually been found on my computer in over a year lol.

I’m just going to assume that this is a false positive for now.

Precisely the same thing here too, Avast says it detected ils.dll as a rootkit using a heuristic method.

Trend micro rootkit finder says nothing, and the boot time scan also finds nothing, so im guessing false positive.

i got the same warning twice :S
so what is this than??

Same here. The database updated and shortly after that the warning appeared. Then found this thread on google.

me too. also on 2 computers ???
i run boot scan and zero infected files were found. I also scan ils.dll file alone and it’s ok. few minutes after system restart message appeared again! ???
could you tell me if it’s something dangerous and what is false positive?

thanks!

I’m getting the same thing. Virus Total says ils.dll is clean. Looking at the file’s “properties”, it looks like it’s part of Microsoft’s NetMeeting software.

Hi guys!
I have the same MSG about ils.dll.
Thanks!

Yep me too.

Thanks for this thread ;D

Same here when I started up the computer a few hours ago.
Rebooted computer and scanned. No viruses found.

Same here… I’m sure it’s a false positive. I clicked on Ignore and everything is fine… except that the message pops up every time I scan my computer.

http://www.shrani.si/f/3i/10G/ShYBYcw/ils.jpg

I hope Avast team will remove this FP in the new update.

I 'v just also got a warning from avast , it detected a virus in the ils.dll file in the windows\system32 folder. Type : Rootkit
This happened on 2 of my computers (laptop and other) at almost the same time in this morrning (December 15 th, 2008)

This problem seems to be encountered by many people all around the world and in the same time :-. It a very strange warning message, not usual ???.

J.

Belgium

The fixed VPS was already released - please invoke a VPS update.

Thank you guys for the info. Saved me deleting a file that didn’t need deleting.

Same problem on my pc and pc’s of two friends