Tech Support Guy banner
  • IMPORTANT: Only authorized members may reply to threads in this forum due to the complexity of the malware removal process. Authorized members include Malware Specialists and Trainees, Administrators, Moderators, and Trusted Advisors. Regular members are not permitted to reply, and any such posts will be deleted without notice or further explanation. Notice
Status
Not open for further replies.

Avira: TR/Patched.Ren.Gen W32/Virut.Gen EXP/MS04-028.JPEG.A

14K views 41 replies 3 participants last post by  iMacg3 
#1 ·
Hi Tech Gurus!

I'm running Avira, MalwareBytes and Windows Defender on my 64 bit machine (details below).

Avira has been reporting the following infections for some time.
- TR/Patched.Ren.Gen
- W32/Virut.Gen
- EXP/MS04-028.JPEG.A

Usually the reports come up when I'm using Windows Image Resizer utility.

I've ignored them up to this point because I had read that these alerts were false positives, resulting from conflicts between Avira and AdAware, so I also disabled AdAware (possibly not the best idea in retrospect).

Please note that I have not noticed any specific issues with the operation of my computer, except for the infection alerts mentioned above. I've not seeing any suspicious activity, unwanted pop-ups etc.

HOWEVER, having just seen this thread (https://forums.techguy.org/threads/exp-ms04-028-jpeg-a-virus-detected-when-editing-photos.1191893/) I realised that this was perhaps not a false positive after all, so I would appreciate your assistance in resolving!!

Tech Support Guy System Info Utility results as follows:
======================================

Tech Support Guy System Info Utility version 1.0.0.9
OS Version: Microsoft Windows 7 Ultimate, Service Pack 1, 64 bit, Build 7601, Installed 20160423101044.000000+600
Processor: Intel(R) Core(TM) i7-3930K CPU @ 3.20GHz, Intel64 Family 6 Model 45 Stepping 7, CPU Count: 12
Total Physical RAM: 32 GB
Graphics Card: NVIDIA GeForce GTX 660 Ti
Hard Drives: C: 894 GB (498 GB Free); D: 0 GB (0 GB Free); E: 931 GB (148 GB Free); G: 2794 GB (458 GB Free);
Motherboard: ASUSTeK COMPUTER INC. RAMPAGE IV BLACK EDITION, ver Rev 1.xx, s/n 140526243400484
System: American Megatrends Inc., ver ALASKA - 1072009, s/n System Serial Number
Antivirus: Avira Antivirus, Enabled and Updated

Looking forward to receiving your reply!!
 
See less See more
#37 ·
Hi iMacG3, apologies for not replying sooner - no they just pop up from time to time, seemingly randomly

I just got a new one a few minutes ago (see atached).

Weirdly I did a search for "tmp0000682e" under windows explorer under c:\windows\temp\ but it returned no results.

It's possible that Avira had already moved the file to its quarantine. But I also did a search on my entire system using the "search" function in the Windows Start menu, and it also foud nothing. Perhaps files in Avira's quarantine become invisible to the rest of the system. (n)
 

Attachments

#39 ·
Hi iMacG3,

Yes, I am attaching the screenshot I tool just now.

As it happens, the Avira security alert popped up just again a moment ago, before I took that screenshot. All I was doing at the time was editing a Word document!

Before I told Avira to FIX the file, I took the opportunity to scan c:\Windows\Temp\ with the following tools, all of which did not find any infections:
1. Malware Bytes
2. Micrioft Security Essentials
3. Adaware Anti-Virus
4. EmsiSoft

I previously deleted all the files in the Avira Quarantine. When I opened it now to take a screenshot, it was EMPTY, which surprised me. Perhaps this means that Avira deleted the files it found rather than quarantining them???
 

Attachments

#41 ·
Hi BondiJonno,

Do you use the program Norton Security Scan ?
Hi iMacG3,

No - I don't have a license for Norton. Why do you ask? Is it possible that Norton might be able to find the cause of these problems, which Emsisoft, MalwareBytes, Microsoft Security Essentials, Adaware Anti-Virus and First were unable to find and/or fix?

Thanks,

Jonathan.
 
#42 ·
Hi BondiJonno,

The reason I asked is that the security programs may be conflicting with each other.Please uninstall Microsoft Security Essentials and Norton, leaving Avira as the only AV.

  • Press the Windows Key + R.
  • Type appwiz.cpl in the Run box and click OK.
  • The Add/Remove Programs list will open. Locate the following program(s) on the list:
    Microsoft Security Essentials
    Norton Security Scan
  • Select the above program(s) and click Uninstall.
  • Restart the computer if prompted.

Let me know if the problem persists.
 
Status
Not open for further replies.
You have insufficient privileges to reply here.
Top