VBS:Malware-gen

Omg you ppl are fast :smiley: Best customer care I have ever got!

still problems even in 080125-1 version.
but, temporary i stopped the web shield.

awaiting for a solution :slight_smile:

I run a website and its come up with same thing so I am worried that possible buyers are put off thinking I might effect thier computers! Avast please do something about this.

Its not good for business >:(

Hi guys,

A sample of alert, i receive.

avast! [MATCHIR3]: File “http://www.horizon-mariage.com/forum/14_0-mariage-pas-cher.html\unp118192644” is infected by “VBS:Malware-gen” virus.
“Resident protection (Web Shield)” task used
Version of current VPS file is 080124-0, 24/01/2008

Current vps is 080125-2. Please update first.

Fantastic work!
080125-2 works fine and there are no more conflicts between Sunbelt firewall or Counterspy2.

As always Avast! and the brilliant people that comprise it’s staff have done an amazing and very fast job.

Great customer driven focus! Thanks for all your help!

Hi, check this website: www.mediadot.ro . It gives the same error.

We have a user currently on 080125-3 and getting VPS: Malware-Gen hits when browsing the http://www.smithbarney.com site. Load the home page and click “Indices” on the navigation bar near the top to try it yourself.

Actually, try the big “Research and Commentaries” tab instead.

Detection was removed from the database and will be out in the next update.
Thanks for your feedback.

Just wanted to say thanks for the quick response, Initially had this problem but appears corrected now.

Hello,
had same VBS:Malware-gen stuff on a few different sites . They almost all disappeared after the different updates in Avast! (home edition) of the last 2 days, EXCEPT one : on my mail site (annoying !!) .
Running VPS file version = 080127-1 . Ran full (= also program )update 1 hr ago (with no effect since standard setting= automatic update ) .
Site : WWW.aemail4u.com .
Problem starts when logging in on the mail server (I mean : www.aemail4u.com is OK, but any further attempt creates a warning )
Last msg from the log : (2 mins ago) :
Sign of “VBS:Malware-gen” has been found in “http://aemail4u.mail.everyone.net/email/scripts/welcome.pl?EV1=12014509807790792” file .

False alarm removed from the database. Will be out on the next update.

(You know, without report we can’t do anything)

Updated VPS to 080128-0, but is still getting the problem with this address
http://www.huaren.us/index71.asp?boardid=355

It’s ok to go to the main page, http://www.huaren.us/, but if you go to any forums the warning about VBS:Malware-gen will come up. It’s a Chinese website, but it has English names for the forums too, like Exchange, Parenting, etc. My wife visits the website everyday. Please have the problem fixed so she can stop bothering me. :frowning:

False alarm removed. Thanks for your submission.

Please remember, that without the reports we can’t fix things (because we don’t know they’re broken).

Hello,

I have the same problem with the website of an hotel in italy : http://www.casalbertina.it/
I receive this virus message and the connexion can’t go on.
I’ve immediately do a scan of the PC : Avast found the same “virus” on d: in a folder where there is nothing special or new (some previous scans with avast and an other antivirus online of this folder have nothing founded ) then blocked.
Avast update itself automatically.
Here is the log :
"28/01/2008 20:07:26 SYSTEM 1444 Sign of “VBS:Malware-gen” has been found in “http://www.casalbertina.it/favicon.ico” file.
28/01/2008 20:07:34 SYSTEM 1444 Sign of “VBS:Malware-gen” has been found in “http://www.casalbertina.it/” file.
28/01/2008 20:09:30 SYSTEM 1444 Sign of “VBS:Malware-gen” has been found in “http://www.casalbertina.it/” file.
28/01/2008 20:42:09 SYSTEM 1444 Sign of “VBS:Malware-gen” has been found in “http://www.casalbertina.it/” file.
28/01/2008 20:42:28 SYSTEM 1444 Sign of “VBS:Malware-gen” has been found in “http://www.casalbertina.it/” file.
28/01/2008 21:04:56 Eigenaar 3944 Sign of “Win32:Adware-gen [Adw]” has been found in “D:\BACK UP PROGRAMMES ET OUTLOCK\MISES A JOUR PC\Nero-6.6.1.15a.exe\Toolbar.exe[Embedded#620d0][Embedded#04080]” file.
28/01/2008 22:23:37 SYSTEM 1448 Sign of “VBS:Malware-gen” has been found in “http://www.casalbertina.it/” file. "

Can you help me.
Thanks in advance

The hotel’s webpage contains double encrypted hidden iframe. I’d not call this a false alarm, it’s highly suspicious.

OK. Thank you.
But the other one found on d: ?
It’s an update of nero 6 (download a long time ago on the site of Ahead) and which was ignored before.
An explanation ?

thanks for your help ! Last update loaded today (***128-0 ), and my problem is solved .
You’re the best ! ! !

Updated and problem solved. Thanks a bunch!