Threat Win32: Evo-gen [Susp] (not the same as other thread)

As OTL does not want to play then run this small programme as it will do the same job and then self delete http://oldtimer.geekstogo.com/OTC.exe

I still have the same problem. this is my log file, any help?

https://rapidshare.com/files/2699251824/log.txt

What problem do you have ?

The log was corrupted could you attach it here

here is the file.

I still get the infection alert for winlogon.exe

That is still corrupt could you attach the log ensuring that wordwrap is not selected in note pad

I was experiencing the same issues described in this post (Avast reporting infected explorer.exe and winlogon.exe, therefore I ran ComboFix as described. Unfortunately, Avast is still reporting Win32: Evo-gen [Susp] in the file C:\Windows\System32\winlogon.exe.

I believe that ComboFix may not have been able to find a suitable replacement for winlogon.exe, as it mentioned needing to do an exhaustive search, but never reported if a replacement was found.

I’ve attached my ComboFix log for review and welcome any suggestions!

Thanks, in advance!

This needs further analysis by a malware removal specialist:
Go to this topic http://forum.avast.com/index.php?topic=53253.0 for information on Logs to assist in cleaning malware. Use the information about getting and using the tools and attach the logs here, not in the LOGS topic.

Thanks, David. At your request, I’ve run all the apps in the guide and created a new topic at http://forum.avast.com/index.php?topic=97759.0 with all the requested logs.

Thanks!

You’re welcome, now essexboy is on the case in that topic, you are in good hands.