Is Rundll.exe a virus?

Status
Not open for further replies.

guhanath

Journeyman
I recently downloaded AVG 8 free edition and did a complete scan. It says that rundll.exe in c:\windows\system32\rundll.exe is affected by virus? Is it a false positive or is it really a virus.

My PC indeed has a problem, that I was unable to open any spyware program like Ad-aware or spybot, whenever i open them it closes immedietly and also my safe mode is not working.please suggest whether it is safe to delete these file?

Windows Xp is the operating system updated with SP3 RC. I also have bitdefender total security 2008 which have not detected this as a virus. Ad aware 2007 installed, but it was not opening at all(problem stated above)

AVG 8 Free edition
virus DB: 269.23.2/1362

Exact error messages from AVG
1. potentially harmful program Logger.cwn (C:\windows\system32\rundll.exe)
2. Found Registry key with reference to infected rundll.exe(HKLM\software\microsoft\current version\run\user themes.
 
I dont think so...
everyone has one Rundll.exe in System32 folder...
and I have never seen Norton or Kaspersky or AVS or NOD32 detecting it as Virus...
 

ashu888ashu888

Core i7 (nehalem) Owner
Well it is a Virus, I mean there is an original rundll.,exe file too in System32 folder but this one is a mirror of that same name and is a VIRUS,

It Caused me to FORMAT my whole C: Drive, coz eventually day by day, it showed msgs like java was not installed, the soumd files are missing and stuff like that...

Cheers n e-peace....
 
T

The Conqueror

Guest
Yes it is a virus.

Use better AV such as Kaspersky / NOD32
 

nvidia

-----ATi-----
I dont think rundll.exe is a virus. But the run32dll.exe could be a virus... See the below links for more info..
Run32dll
Rundll
 
OP
G

guhanath

Journeyman
Hi All,
Thanks for all your replies. AVG has moved the rundll.exe to the vault making it inaccessible. Now windows boots normally but it gives the error "could not find rundll.exe" . How can we restore the original file? I searched in winXP cd but i could not find it. Can anyone post the file which i cna download?
 

blueshift

Wise Old Crow
It might be a virus coz XP has original rundll32.exe file(not rundll.exe) in System32 folder by default.
So I guess AVG has deleted that virus file but could not delete the registry entries which loads that deleted file as Win boots. Its nothing to worry as long as you dont see changes in other applications as ashu888ashu888 has written.
You need to check your Run and Winlogon keys in Registry Editor.
 
Status
Not open for further replies.
Top Bottom