Win64:Evo-gen (susp)

Oh I see, thank you anyway

So a update, deleted the files in the chest. Did the full scan with MBAM before I went to bed, and that was clean. Just doing a full Avast scan (has come back clean), and then I’ll do a full scan with Superantispyware (that was clean to)
(also my virus total link is still showing as clean???)

MBAM didn’t trigger the virus again with Avast, so I hope it should all come back clean!

Also I been getting a Adobe download warning with Avast lately (svchost.exe), It every-time there’s a update with flash etc though. So just a thought! Also I found a thread saying this virus is a well known false pos with Avast?

Really appreciate the help. I am careful online and use loads of software, but I guess. Sometimes you get caught out. I also use Comodo with Hips and Spyware Blaster

I’m also going to try Eset online scanner, disable avast shields and Comodo hips yeah?

svchost.exe. Open Task Manager. Who is running it? NETWORK SERVICE, or SYSTEM or [User Account Name Here]

As far as I can tell, you’re fine. Not sure why no-one answered.

Thanks Michael. I hate having a virus on my system, even if in chest. I just want rid and it sorted. I still have no idea how I caught it, as only used ebay and aol that day. And definitely wasn’t a dodgy email.

svchost.exe I have 10 processes on that, 2 is for network service, 4 is for local service, and 4 is for system. And they all say there host process for windows services!

I have also done a Trend Micro Housecall with avast shields disabled, and comodos hips disabled and that was normal to.

So guess I’m all ok now? As the scans are fine

Thanks Michael. I hate having a virus on my system,
as said in my reply #7 you have a suspicious file ...... not malware yet

virustotal file info

CopyrightCopyright (C) 2009 Acer Inc. Publisher Acer Inc. Product LaunchAlaunchX Application Original name LaunchAlaunchX.exe Internal name LaunchAlaunchX File version 3, 0, 0, 10 Description Acer GAIA LaunchAlaunchX Comments RTM version

Sorry, so that mean in a way it was a false pos?

Everything seems ok since I deleted the file’s in the chest and scans are all clear! I just do quite a bit of banking etc. So get a bit paranoid when get alerts!

Hi, I cannot help you further. It’d have to be taken up by a hexpert. However, given that VT scan, and it being an Acer File, I’d say FP/

Ah thanks so much, you all been really helpful

It’s put my mind at ease now :slight_smile: