Win32:Evo-gen [susp] in Motorola\MotForwardDeamon

Started up the PC as per usual yesterday, but I noticed that Skype wasn’t running like it’s normal self. Ended up restarting the computer only to find that Avast found the Win32:Evo-gen rootkit, but it was in C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe file. Attached are the logs that were made this morning.

Win32:Evo-gen [susp] = Suspicious so not a clear detection

C:\Program Files (x86)\Motorola\MotForwardDaemon\[b]ForwardDaemon.exe[/b]
upload and test file at www.virustotal.com if tested before, click rescan ..... post link to scan result here

That appears to be a false positive could you send it Avast from the virus chest. You appear to be running both Avast and Avira, more is not better, I would recommend uninstalling one

Here is the Virus Total link. https://www.virustotal.com/en/file/026a57155fb9e01cfafd8613980cdf0f3d744abbbc66efdc6c20b89980fb45cf/analysis/1410370743/

Yes I agree on the false positive idea. I just don’t know why it would take so long for it to come up as one because it’s for my phone (A Samsung GS3) and I’ve had the phone for… a year and a half now? Something like that? Well here’s to it being sent as a false positive.

Side note: Yeah I know I have Avira and Avast on here. I use Avast mainly, but if it detects something I cross ref with Avira, but usually they are in agreement when it comes to that. I know either one is faster at detection than many other competitors, but through the years, I have found these two to play the nicest together. I might uninstall Avira in the future though.

First submission 2012-06-19 23:37:55 UTC ( 2 years, 2 months ago )

CopyrightMotorola Copyright ? 2010 Publisher Motorola Product Motorola ForwardDemon Original name ForwardDemon.exe Internal name ForwardDemon File version 1, 0, 0, 0 Description ForwardDemon

False positive :wink:

Side note: Yeah I know I have Avira and Avast on here. I use Avast mainly, but if it detects something I cross ref with Avira, but usually they are in agreement when it comes to that. I know either one is faster at detection than many other competitors, but through the years, I have found these two to play the nicest together. I might uninstall Avira in the future though.

Why Using Multiple Antivirus Programs is a Bad Idea
http://blog.kaspersky.com/multiple-antivirus-programs-bad-idea/
https://blog.avast.com/2014/05/09/when-software-collides-what-to-do-with-your-old-antivirus-program/

Removal tools http://singularlabs.com/uninstallers/security-software/