what is heuristic.win32.avkiller

  • Thread starter Thread starter mae
  • Start date Start date
M

mae

i would just like to know what is heuristic.win32.avkiller?

is it part of defender? defender doesn't see it but spybot and avg
anti-spyware does....
 
If this detection relates to \windows\system32\mrt.exe I believe you are
seeing a false positive--but you should confirm this with an AVG related
forum to be sure.

MRT.exe is not part of Windows Defender--it is Microsofts Malicious Software
Removal tool, which is updated approximately monthly and distributed as part
of the second Tuesday security updates.
 
thanks for the reply Bill!


Bill Sanderson MVP said:
If this detection relates to \windows\system32\mrt.exe I believe you are
seeing a false positive--but you should confirm this with an AVG related
forum to be sure.

MRT.exe is not part of Windows Defender--it is Microsofts Malicious
Software Removal tool, which is updated approximately monthly and
distributed as part of the second Tuesday security updates.
 
no, just the Norton antivirus....

i asked this question because it was found by AVG Anti-spyware but not by
defender....
 
Also out of curiosity, is the AVG "anti-spyware" the version that recently
replaced ewido A/S? That's not a product ithat is prone to throw false
positives often.

I put very little faith in anything that Symantec reports (or doesn't
report) for a number of reasons. More importantly, it is downright foolhardy
to ever dismiss *ANYTHING* as being a false positive without subjecting it to
several diverse scans first. Your system integrity and possibly your
identity is at stake.

It is most likely NOT to be a false positive, seeing as w32.avkiller is a
very real threat. It is also likely that you will need to spend some
"quality time" with HijackThis! to exorcize the menace.

Upload the suspect file to VirusTotal where it will be subjected to a wide
variety of scans. If the suspicious file is identified by more than three or
four scanners, I would consider it a definite threat! After all, there is no
A/V or A/S product on the market that is even close to perfection, nor is it
likely that there ever will be one.

I run three or four resident anti-malware tools on each of my systems and
perform regular over-the-web scans (on top of some serious IP hardening), and
I am still extremely cautious about what I do and where I travel on the web.

Links to several online scans, HijackThis!, and "Submit Supicious Files
Here" (Virus Total) may be had from the Internet Security link in my sig.
 
I think you need more information. There should be a way to find what file
was involved in this detection. Additionally, getting another opinion would
be very worthwhile--Trend Micro's online scan scans for spyware:

http://housecall.antivirus.com

--
 
Back
Top