AGOBOT-OT Worm trouble

I was getting the same exact "threat detection" since 3-23-16 (AVG found it and put it in the virus vault 15 times)…I ran several other tools several times and none of them found anything…On 5-2 or 5-3 an update of AVG was done and the version changed…Since then, multiple scans have not found the "threat" again(since 5-1)…I think it might have been a false positive???.I just wish they had told me this before I spent hours on the computer scanning for a supposed threat and with techs that were all performing the same measures…I realize I am using the free edition, but I could tell (and I told them so) that 4 or 5 of the 6 techs did the same thing . The 4th 5th & 6th tech told me they were escalating it to the senior team

Hello William,
We are sorry for  the difficulties you are currently experiencing.
Upon carefully reviewing your case number #03287844, we see that it has been escalated to our higher level team. I have set high priority to it and once they have analyzed the issue they will get back to you shortly via email. Your patience is much appreciated.
Feel free to contact us for any further assistance. Thank you.


Hi, I have a PC running Windows 7, the majority of webrowsing is done on Google Chrome.

This is a AVG Software is PAID for. AVG Internet Security 2013 (Full, (1)Computer)

I have a License for this software. If you need that I can get it for you.  

This is AVG Version : 2013.0.3553

VIRUS DATABASE VERSION : 4477/11815

LINKSCANNER VERSION : 2849

AVG SECURITY TOOLBAR VERSION:19.2.0.326

ANTI-SPAM VERSION: 7.0.1

INSTALLED COMPONENTS: AVG Accelerator, AVG Advisor, AVG Security Toolbar,  Anti-RootKit, Anti-Spam, Anti- Spyware, AntiVirus, Firewall, 
                                              Identity Protection, Online Shield, Quick Tune, Resident Shield, Surf- Shield

INSTALLED EMAIL PROTECTION: Personal Email Scanner

The first thing after booting up the computer is click the check for updates button on My AVG Dash. I have always presumed this button would update other AVG components as well.

I have been scanning my system often after my first encounter with this Worm. My program finds it upon scanning and locks in a vault...but repeated exposures to this worm is occuring..hence many scans and many questions.
 

-Brian

Yes, Brian,
AVG Web TuneUp is a browser add-on for Google Chrome, Internet Explorer and Mozilla Firefox with the following features:
1) Site Safety - providing safety rating for the websites you visit
2) Do Not Track - blocking trackers from social networks, ad networks, and web analytics
3) Browser Cleaner - a quick and easy way to clear your browser history and other files

So for every website it will show you as trusted with a green tick mark so that you can access it.
If it shows with a red mark it will prompt you as visiting this website might harm your computer.

Hello,

I have been having trouble with an AGOBOT-OT worm. If that is indeed the name of it. 

AVG has been containing it when a scan is issued.

But the file location puzzles me C:\Users\Brian\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B2N6ZZ8N\RdrServicesUpdater[1].exe

I do not know what RdrServices is.

I also am not getting informed of an immediate infection by AVG , only after a scan takes place AVG announces it found something. The bothers me because I don't visit sites that would do this.

 

If anyone could help me with this I'd greatly appreciate it. I do use Facebook often but do not use Apps there.  I also am an aviation enthusiast so I use flight Tracker programs as well.

Constantly scanning my drive after an internet session is a bit tedious..but more disturbing is my lack of any insight to A) The Vulnerabilty on my PC and B) Where on the web it is coming from.

Thanks,

Brian C.

 

I was getting the same exact "threat detection" since 3-23-16 (AVG found it and put it in the virus vault 15 times)…I ran several other tools several times and none of them found anything…On 5-2 or 5-3 an update of AVG was done and the version changed…Since then, multiple scans have not found the "threat" again(since 5-1)…I think it might have been a false positive???.I just wish they had told me this before I spent hours on the computer scanning for a supposed threat and with techs that were all performing the same measures…I realize I am using the free edition, but I could tell (and I told them so) that 4 or 5 of the 6 techs did the same thing . The 4th 5th & 6th tech told me they were escalating it to the senior team

Hello Brian,
We apologize for the inconvenience caused.
May I know the name of AVG Program installed on this system?
Are you using free or paid version of AVG Program?
Have you updated your AVG Program to latest virus definition and tried to scan your system?
Thank you.


Hi, I have a PC running Windows 7, the majority of webrowsing is done on Google Chrome.

This is a AVG Software is PAID for. AVG Internet Security 2013 (Full, (1)Computer)

I have a License for this software. If you need that I can get it for you.  

This is AVG Version : 2013.0.3553

VIRUS DATABASE VERSION : 4477/11815

LINKSCANNER VERSION : 2849

AVG SECURITY TOOLBAR VERSION:19.2.0.326

ANTI-SPAM VERSION: 7.0.1

INSTALLED COMPONENTS: AVG Accelerator, AVG Advisor, AVG Security Toolbar,  Anti-RootKit, Anti-Spam, Anti- Spyware, AntiVirus, Firewall, 
                                              Identity Protection, Online Shield, Quick Tune, Resident Shield, Surf- Shield

INSTALLED EMAIL PROTECTION: Personal Email Scanner

The first thing after booting up the computer is click the check for updates button on My AVG Dash. I have always presumed this button would update other AVG components as well.

I have been scanning my system often after my first encounter with this Worm. My program finds it upon scanning and locks in a vault...but repeated exposures to this worm is occuring..hence many scans and many questions.
 

-Brian

Excellent! Glad to hear that the installation was successful.
You are having advanced AVG program which is the AVG Internet Security but we always request you not to access any website that you are unaware, please visit the websites that you are aware of and you can trust.
Please feel free to contact us should you need any assistance.
Have a great day!!!

I have now discovered the odd behaviour off AVG Web Tune Up on my browser.  It is not fully compatable with Google Chrome. I discovered this on the Download page. I thought I had it running on Chrome but the shields were still all green.

 

This tool is supposed to work with Firefox..Might have to swap browsers.
 

You are welcome, Brian. We appreciate your valuable effort in trying to fix it.

I do use AVG Secure Search as my search engine.  When I do a AVG search it seems every page has a Green safe Shield with it.  I ponder if this program…(which is free) needs more updating.

Excellent! Glad to hear that the installation was successful.
You are having advanced AVG program which is the AVG Internet Security but we always request you not to access any website that you are unaware, please visit the websites that you are aware of and you can trust.
Please feel free to contact us should you need any assistance.
Have a great day!!!

Download and Installation successful. 

With the new software hopefully, the Worm will be stopped the moment it tries to deliver. Clearly there is a website out there I should not trust. I am more confident with new software it can be dealt with better.

Oh I have for years been running Google Chrome as the default browser on my computer.

I studied the product page and saw this at the bottom of the screenList of AVG Web Tune UP Operating Systems and Google Chrome User note

Hello Brian,
We apologize for the inconvenience caused.
May I know the name of AVG Program installed on this system?
Are you using free or paid version of AVG Program?
Have you updated your AVG Program to latest virus definition and tried to scan your system?
Thank you.