Trojan Generic_R.KGN

AVG Customer Care - Request #03527487    [ ref:_00Db0Z3Sf._500b0ihko1:ref ]

Concerning the above request, your technical team took remote control of my PC approx 22:00 on Sat 2nd Jul (UK time) when they gathered diagnostics for this problem.

I have had no further correspondence since then.

Are you able to confirm that I haven't missed any mails from you and that the problem is still being investigated please ?

No pressure for a resolution here, just want to be sure the case is still active.

Thanks.

This is AVG AntiVirus Free, Version 16.81.7640
Virus Database Version is 4613/12530 (01/07/2016, 02:02)

AVG is reporting discovery of Trojan Generic_R.KGN by the Resident Shield naming 'svchost.exe' as the infected file.

I have tried to both Remove & Ignore the threat, both appear to work (ie no error messages) but the threat is notified again some time later.  This sequence of events has been repeated several times over and across PC restarts.

After 20+ years of using AVG, these threat messages are getting to be a real nuisance.

Any help appreciated !!

Hello Martin,

Hello Geoff,

Sorry for the inconvenience caused.
May I know the name of AVG program installed on your PC, is it free, trial or paid version?
Also mention whether you have installed the latest 2016 version of it?

Thank you for updating AVG and performing complete scan.
Sorry to know that you are getting the same threat detected.
Could you please provide the entire path of the threat where it got infected?
By checking the path we can provide the instructions accordingly.

Hello Martin,
Your patience is much appreciated.
Yes your case is still active and it has been escalated to our higher level team. And they will get back to you shortly with the resolution.
Thank you.

Thank you for providing the version information.
We request you to update your AVG free antivirus program once and then scan your PC completely.
Check whether you are getting the same threat detected repeatedly, do let us know the status of it.

AVG Detection states :
Threat : Trojan horse Generic_r.KGN
Object name : c:\Windows\System32\drivers\36cef29449e34d954b31afba27a30fea.sys

'Show Details@ gives
Process name : C:\Windows\System32\svchost.exe
Process Id : 1032
Created : 01/07/2016, 15:47:21
Username : System
Session Id : 0