not detected by avast but thankfully i dont think it did anything to my computer as theyve been there for a while inactive virus total reads them as ransomware
they were named VersionChecker.exe and VersionUpdater.exe and they both had a config file with them with the same name except .config at the end. I have no idea what they belonged to and according to the properties they were created on my pc on the 25th of march at 9:16am and the closest internet thing i did was accidently open the onedrive website by clicking the tray icon at 9:08. and this was right after i did a reinstall of windows as well.
so its a false positive then? i just freaked out when virus total said it was ransomware and the other was an AV disabler as ransomware is my biggest fear.
yepp, you see AegisLab call it ransomware and the other is called Application.AVDisable all those AV using that name are using Bitdefender AV engine so there is actually only two detections on that file
almost, if you click the additional information tab and scroll to the bottom you will also see TrendMicro detect it as suspicious and also suspicious by F-Secure second engine
==================================================================
The sample you submitted was found to be riskware and it’s properly detected as Application.AVDisable.C
So one of those files some will detect and others dont
Scanning the files at metadefender.com there AegisLab give a different detection name - DangerousObject.Multi.Gen.lHXk