Skip to main content

Heur Trojan Win32 Generic

  • November 20, 2015
  • 1 reply
  • 303 views

I have Webroot on my PC, but got infected with Heur Trojan Win32 Generic.  Why wasn't it blocked?  How do I remove it? 

1 reply

Ssherjj
Moderator
Forum|alt.badge.img+62
  • Moderator
  • November 20, 2015
Hello  ?
 
Welcome to the Webroot Community,
 
Sorry you are having this issue. My research is what I have found below.
 
EDITED!
 
HEUR.Trojan.Win32.Generic is a generic detection used by Webroot and other antivirus products for a file that appears to have trojan-like features or behavior.
HEUR.Trojan.Win32.Generic contains malicious or potentially unwanted software which downloads and installs on the affected system. Commonly, this infection will install a backdoor which allows remote, surreptitious access to infected systems. This backdoor may then be used by remote attackers to upload and install further malicious or potentially unwanted software on the system.
 
What you are seeing and describing is what we on the Community refer to as a PUA. (Potentially Unwanted Application)These are very annoying at best in that they cause pop-us, redirect your browser home page, and other behavior that may slow down the computer and direct ads your way, but they are not actually doing anything bad like damaging files or stealing information. Often they are installed intentionally by you the user as browser add-ons for various tasks such as quick search tools.. but they also come with the result of added annoying pop-ups and ads. Other times they 'piggy back' with other software that you installed, or try to 'sneak' onto your system entirely.
 
WSA does detect and remove many PUA's, and more are being added, but WSA does not detect all of them. A simple browser add-on with PUA behavior that is easy to identify and easy to remove is not likely to be detected and removed by WSA. Those that are intentionally difficult to locate and remove are. Please see THIS LINK for more information regarding Webroot's stance on these annoying programs.
 
The best thing to do is to submit a Trouble Ticket and ask Webroot Support to take a look and remove these for you.  There is NO CHARGE for this for valid WSA license holder.
 
 
Hope this helps,