Friday, January 22, 2010

False Alarm ClamAV: Trojan.Rootkit-1835


PCMAV 2.2c user that the computer detected "Trojan.Rootkit-1835" that infects atapi.sys file (usually located in the folder Windows \ System32 \ drivers). The virus is detected by ClamAV engine is integrated with PCMAV.

At each release PCMAV, we always perform strict quality control and continued to improvised from time to time, to ensure that PCMAV going well when you are in your hands. With this complaint, we initiated an investigation and check again. The conclusion we get is Trojan.Rootkit-1835 is detected by ClamAV on atapi.sys file is a false alarm. The solution is to update the latest ClamAV database.

The following steps ClamAV database update manually, with a consideration if you can update automatically, should not be having this false alarm because you have ClamAV database was updated. We've got feedback that this step to solve the reported false alarms concerned readers.

1. Prepare PCMAV 2.2c already integrated with ClamAV 0.95.3.
2. Download the latest database (daily.cvd) in http://www.clamav.net/download/cvd/
3. PCMAV folder, save it in the folder daily.cvd plugins \ clamav \ (old daily.cvd overwritten).
4. With this condition, PCMAV 2.2c + ClamAV 0.95.3 plus the latest database is ready.
5. Run PCMAV-CLN and PCMAV-RTP as usual.

After running these steps, false alarms should not occur again.
 

Labels

what is PCMAV?

PCMAV is an antivirus program developed by Indonesian Software Developer (PCMedia Magazine). PCMAV is distributed bundled with PCMedia Magazine. PCMAV is a free software for personal use or non-commecial use. For Commercial Use, You need to have the PCMedia Magazine to use this software.

Distributting and Using PCMAV is legal for personal and non-commercial!

PC Media Antivirus PCMAV Download Update © 2009 PCMAV is an antivirus program developed by Indonesian Software Developer (PCMedia Magazine).