Trojan.Zlob!IK Avast did not see it?

Hi guys

i did a scan with a-squared and it found Trojan.Zlob!IK

in my Documents why has avast not seen this Trojan in my Documents and how did Avast let this get past its security i have all of Avast security settings up high?

Any help!

There are thousands of Zlob variants churned out every year/few months.

You need this codec = Zlob
video.exe = Zlob
You need a new version of flash = Zlob
You got an e-card = Zlob

Your AV will never warn you about every Zlob: just avoid the scams.

Outside of the multi variant issue FWF mentions, a-squared has a little previous and a number of people fond that all it ever found were false positives, so I would do some investigation.

What is the infected file name, where was it found e.g. (C:\windows\system32\infected-file-name.xxx) ?

You could also check the offending/suspect file at: VirusTotal - Multi engine on-line virus scanner and report the findings here the URL in the Address bar of the VT results page.

I suggest:

  1. Clean your temporary files.
  2. Schedule a boot time scanning with avast with archive scanning turned on. If avast does not detect it, you can try DrWeb CureIT! instead.
  3. Use SUPERantispyware, MBAM or Spyware Terminator to scan for spywares and trojans. If any infection is detected, better and safer is send the file to Quarantine than to simple delete them.
  4. Test your machine with anti-rootkit applications. I suggest avast! antirootkit or Trend Micro RootkitBuster.
  5. Make a HijackThis log to post here or this analysis site. Or even submit the RunScanner log to to on-line analysis.
  6. Disable System Restore and then reenable it again.
  7. Immunize your system with SpywareBlaster.
  8. Check if you have insecure applications with Secunia Software Inspector.