Those With Avg & Hjt Experts Need To Read This.


Recommended Posts

From Bleeping Computer forums.

*Link removed to deleted thread*

AVG was falsely reporting a trojan (Flooder.Ake) then deleting a critical system file thereby causing your PC to keep rebooting. It was stated not to allow AVG to remove this "trojan". Some people had to do a repair install because of this. There were a couple of files to rename temporarily to stop AVG from detecting the "trojan" until a newer update for AVG straightened this out.

-------------------------------------------------------------

Found it posted at Grisoft's AVG forum.

http://forum.grisoft.cz/freeforum/read.php...7,backpage=,sv=

flooder.AKE

Posted by: kid_canuk (IP Logged)

Date: December 7, 2006 08:08PM

Hi,

I was searching the forum to see if there was any news on this virus. It started Dec. 6th,2007. I know a person who got it and had to reinstall windows. If you want more info just google flooder.ake and you will find the info on it.

Re: flooder.AKE

Posted by: rdsok - Moderator (IP Logged)

Date: December 7, 2006 08:21PM

Please pay attention to where you are posting and make it fit the subject of the forum area you are in. Moved to the virus forum area.

Quoting Radek Janata - Grisoft Team

Unfortunately, this issue is caused by the false detection on particular version of "winlogon.exe" file. The false detection has been immediately fixed, however several users may have updated their AVG to this virus update containing this false definition. In order to solve this unpleasant issue, please proceed as follows:

1. Boot your computer to Safe mode. Power on (or restart) your computer, keep pressing F8 key until the Startup menu appears and choose "Windows in Safe Mode".

2. In the Windows Safe mode, navigate to following folder:

C:\WINDOWS\system32\drivers\

3. Rename rename the following files to avoid furhter deleting of "winlogon.exe".

AVGCLEAN.SYS -> AVGCLEAN.SY_

AVGRSXP.SYS -> AVGRSXP.SY_

4. Launch Registry Editor (regedit.exe) and remove the "__delete" value in the right pane from this key:

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AvgClean

5. Restart the computer back to Windows normal mode

6. Update your AVG program to latest virus base version. Launch AVG or open AVG Control Center and press F9 key to update your AVG.

7. Then rename the SYS files back to their original names

AVGCLEAN.SY_ -> AVGCLEAN.SYS

AVGRSXP.SY_ -> AVGRSXP.SYS

8. Restart your computer for to get AVG Resident shield loaded again

The problem should be solved now.

Please note that this issue may happen on a very old Windows XP systems without any Service Packs. This issue doesn't appear on Windows XP Service Pack 1 or Service Pack 2. Therefore we strongly recommend to update your Windows XP to Service Pack 2, not only to get your computer secure. Visit [www.windowsupdate.com] to get the latest critical security patches for your operating system.

Please accept our apologies for this inconvenience.

Edited by TheTerrorist_75
Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...