Comodo BOClean (v4.25) just found and stopped a trojan (DLDR-Agent.aqf) and removed the infected file - the file was CFPUPDAT.exe of Comodo Firewall v. 3.0.14.276.
What? Is Comodo infected? How disturbing to have one Comodo product bust another! And I thought version 3 was soooo the bee’s knees. Is there some Achilles Heel in the product? Anyone else heard anything like this?
Anyway, now I cannot update the firewall, as cfupdate.exe has been removed as infected by BOClean. What is the best solution here? …look for a clean cfpupdat.exe. or reinstall the whole product? …the thing is, this is a fairly new install & I think the latest version -
I’m troubled because it seems either the original download package installer is carrying the infected file, OR, CFP 3 cannot protect even itself?
Incredible! Take a look. Like you, but the trojan in System 32:
BOClean 4.25 report:
12/19/2007 04:17:10: DLDR-AGENT.AQF MALWARE STOPPED by BOCLEAN! Trojan horse was found in memory. C:\WINDOWS\SYSTEM32\USERINIT.EXE contained the trojan. Active trojan horse WAS shut down. System now safe. Logged in user: casa
It’s the first time in my life I got a Trojan. Maybe it’s not. What do you think? Not any other answer yet…
Javier Yearson
The same thing happend to me…I deleted the file userinit.exe and it shut my computer down. I could not even start in safe mode. had to format and reinstall windows ax…watch out