I have an application that Avast is treating as a virus. It seems to be doing 2 things:
Deleting a key .exe file
Disabling the database service
I have added an exclusion in the shield settings and that does seem to be working. But I can’t figure out how to get it to stop disabling the service. Can anyone point me in the right direction?
Do you have the process path of the service running?
Something like “C:\Windows\SysWow64\IntelCpHeciSvc.exe”. Entering it as an exception will work or not?
Yes the path is C:\Program Files (x86)\In-Synch\RMSDBSyncService.exe.
I set up a File System Shield exclusion for C:\Program Files (x86)\In-Synch* so it stopped deleting the executable.
It’s not disabling the service constantly, just every now and then. I haven’t found a pattern yet. I spoke to the software vendor and they’ve noticed it on other networks. Apparently if you re-enable it several times it eventually stops disabling it.