Okay here I go… I am looking for hard and fast soutions for this one…
For some reason Avast has detected a worm or – on my computer.
Keeps on warning me: Avast! On-access scanner message Malware was found.
C:\Huadio.tmp contains a sample of Win32:Rootkit-gen (Rtk)
The continuous recommendation is: Move to chest…
I have done that several times
Avast has scanned my system in DOS mode…
In DOS mode and normal running mode: I have deleted, moved and even renamed it several times, but the warning still keeps coming back
How do I remove delete and/or get rid permanently so that Avast doesn’t keep sending me the Malware warning that it is…?
Dear all:
I have the same situation.
according to avast log file’s PID, “huadio.tmp” is made from ashServ.exe.
This program is avast’s file.
Does avast have bug?
ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.
Translation: Spanish (automatically detected) » English
yo tengo el mismo problema El virus se llama Win32:Rootkit-gen [Rtk] Nombre del archivo: C:\WINDOWS\system32\pphc38gj0ej0j.exe Tipo de software: Rootkit (Encubridor)
I have the same problem
The virus is called Win32: Rootkit-gen [RTK]
Filename: C: \ WINDOWS \ system32 \ pphc38gj0ej0j.exe
Type software: Rootkit (accessories)
Create a folder called Suspect in the C:\ drive, e.g. C:\Suspect. Now exclude that folder in the Standard Shield, Customize, Advanced, Add, type (or copy and paste) C:\Suspect* That will stop the standard shield scanning any file you put in that folder. You should now be able to export any file in the chest to this folder and upload it to VirusTotal without avast alerting.
The pphc38gj0ej0j.exe file name looks like it is randomly generated (usually Vundo or that family), so you could try SUPERantispyware On-Demand only in free version.