*edit… Forgot to list:
OS: XP Home SP3
Browser: IE8, Firefox 3.5
AV: Avast Home 4.8, VPS 100814-1
Additional Scanners: Spybot S&D 1.6.2.46, MBAM 1.46 DB Ver. 4427
- Detected during full scan of PC
- Located in Temporary Internet Files/Content.IE5.
- 04/04/2010, was the last time the file was modified, it was detected 08/14/2010.
- File name is index[1].htm
- A virus has been detected! Reported by Avast 4.8 scanner.
- Scanned file again, which is in chest and same result.
- Sent to Jotti, results are as follows:
[ArcaVir]
2010-08-15 Found nothing
[G DATA]
2010-08-15 JS:FakeAV-FL
[Avast! antivirus]
2010-08-14 JS:FakeAV-FL
[Ikarus]
2010-08-14 Found nothing
[Grisoft AVG Anti-Virus]
2010-08-14 Found nothing
[Kaspersky Anti-Virus]
2010-08-14 Found nothing
[Avira AntiVir]
2010-08-13 Found nothing
[ESET NOD32]
2010-08-14 Found nothing
[Softwin BitDefender]
2010-08-15 Found nothing
[Panda Antivirus]
2010-08-14 Found nothing
[ClamAV]
2010-08-15 Found nothing
[Quick Heal]
2010-08-14 Found nothing
[CPsecure]
2010-08-15 Found nothing
[Sophos]
2010-08-15 Found nothing
[Dr.Web]
2010-08-15 Found nothing
[VirusBlokAda VBA32]
2010-08-13 Found nothing
[Frisk F-Prot Antivirus]
2010-08-14 Found nothing
[VirusBuster]
2010-08-14 Found nothing
[F-Secure Anti-Virus]
2010-08-14 Found nothing
I’m not sure what to make of this… I had a similar problem with another temp file that avast detected as a virus (JS:FakeAV-EI [trj]), same directory, with a name of index[2].htm, back in 04/14/2010, which was picked up on a full system scan. This file, along with the one mentioned above, is still quarantined in my chest. Just for a little background, here are the jotti results of that file:
[ArcaVir]
2010-08-15 Found nothing
[G DATA]
2010-08-15 Found nothing
[Avast! antivirus]
2010-08-14 JS:FakeAV-EI
[Ikarus]
2010-08-14 Found nothing
[Grisoft AVG Anti-Virus]
2010-08-14 Found nothing
[Kaspersky Anti-Virus]
2010-08-14 Found nothing
[Avira AntiVir]
2010-08-13 JS/FakeAlert.168219
[ESET NOD32]
2010-08-14 Found nothing
[Softwin BitDefender]
2010-08-15 Found nothing
[Panda Antivirus]
2010-08-14 Found nothing
[ClamAV]
2010-08-15 Found nothing
[Quick Heal]
2010-08-14 Found nothing
[CPsecure]
2010-08-15 Found nothing
[Sophos]
2010-08-15 Mal/FakeAvJs-A
[Dr.Web]
2010-08-15 Found nothing
[VirusBlokAda VBA32]
2010-08-13 Found nothing
[Frisk F-Prot Antivirus]
2010-08-14 Found nothing
[VirusBuster]
2010-08-14 Found nothing
[F-Secure Anti-Virus]
2010-08-14 Found nothing
I ran a malwarebytes scan and spybot scan and no additional results have turned up. I guess my question would be, are these files a possible false positive and if not, since they are temp files, can they safely be deleted? Thanks for any help, as it’s greatly appreciated.