Live Chat & Podcast at 1:00PM Eastern on Sunday!
There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
Search
Tag Cloud
access acer asus bios bsod computer crash desktop driver drivers error ethernet excel freeze gaming hard drive hardware hdmi internet laptop malware memory modem monitor motherboard network printer problem ram registry router security slow software sound toshiba trojan ubuntu 11.10 uninstall usb video virus vista wifi windows windows 7 windows 7 32 bit windows 7 64 bit windows xp wireless
Search
Search for:
Tech Support Guy Forums > Security & Malware Removal > General Security >
New AVG/SP3 files

Reply  
Thread Tools
ArtoShirt's Avatar
Junior Member with 7 posts.
 
Join Date: Mar 2008
Location: Rochester, NY
Experience: Intermediate
02-Jul-2008, 08:17 PM #1
New AVG/SP3 files
Hello all...

Ok so the other day my new avg 8.0 (free version) popped up and quarantined 2 files found in the sp3 file folder. Totally legit folders too, and the files were both msconfig.exe, just found in 2 locations. One was C:\windows\pchealth\helpctr\binaries\msconfig.exe and the other was C:windows\ServicesPackFiles\i386\msconfig.exe.

It's calling them I-Worm/Brontoc.KO

So I'm thinking it's the new avg 8.0 going crazy, and Microsoft with sp3 looking like a worm when it's not.

Any thoughts?

AMD 64X2 Dual
Windows Home SP3
Home built
Foxcon board

Never had a problem until I uninstalled avg 7.5, and installed avg 8.0 and two days later this happened.

I don't want to assume it's not a worm and have issues. The computer is on a lan at work with 10 other machines running Zonealarm but allowing the other 10 machines into the trusted zone. The other machines are maintained by me and have limited access (in some cases no access) to the internet, but email is there and spam and such. They all have avg 7.5 and we are all behind a Belkin router.

I do surf at work, but mainly to trusted sites unless I’m searching for things for work, so it could be something, but I have Zonealarm and a router. The machine is only 4 months old was built by a friend and has never had any p2p or anything questionable.

The files are still in quarantine and I'm wondering if I should let them out, although windows if running fine. I think msconfig.exe is for setting up your start-up files an things of that nature. Haven't used it on this machine and it won't work now with them sitting in the virus vault.

Any help would be appreciated.

Thanks
mrss's Avatar
Registered User with 722 posts.
 
Join Date: Jun 2007
02-Jul-2008, 09:24 PM #2
Yes, msconfig is a useful utility for blocking startup programs that one has installed, but really didn't want to run. The folders you mention are where those two files reside on my SP3 computer. You can also submit them to an online scan. These guys, and others, provide that service.
http://www.kaspersky.com/scanforvirus

Or just copy them onto a flash drive and scan them with one of your PC's.

Who knows, maybe they are corrupted, as msconfig is on every XP PC in the world and you wouldn't expect AVG 8.0 to trip over itself. But given what I've read about it ....
Attached Thumbnails
New AVG/SP3 files-image1.jpg   New AVG/SP3 files-image0.jpg  
Reply

Tags
avg 8.0, msconfig.exe, sp3

THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Search Tech Support Guy

Find the solution to your
computer problem!




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.
Thread Tools



Facebook Facebook Twitter Twitter TechGuy.tv TechGuy.tv Mobile TSG Mobile
You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -4. The time now is 10:04 PM.
Copyright © 1996 - 2011 TechGuy, Inc. All rights reserved.

Powered by Cermak Technologies, Inc.