One of my users was getting a somewhat authentic looking Windows Security Alert box appearing after bootup this morning, with a message about the system being infected with Trojan-Keylogger.Win32.Fung. Neither spybot nor Kaspersky have identified this system as being infected with anything, and both are up-to-date within the last twelve hours. Nevertheless, I googled the name and found this website with removal instructions.
Looks like this trojan attempts to con users into buying some anti-spyware software, the file "mupd1_2_1711951.exe" was running as a process on this machine, and was loading from the registry. Removing the entry from the registry and deleting the file appears to have resolved it, hopefully. I didn't see anything here in search results about this and the blog linked above appears to have been posted today so I'm guessing this is new.
Looks like this trojan attempts to con users into buying some anti-spyware software, the file "mupd1_2_1711951.exe" was running as a process on this machine, and was loading from the registry. Removing the entry from the registry and deleting the file appears to have resolved it, hopefully. I didn't see anything here in search results about this and the blog linked above appears to have been posted today so I'm guessing this is new.