Unable to Scan: MICR0S0F.ZIP

Hello. Recently whenever I scan my computer using avast, I get this:

C:WINDOWS\Temp\hyg4tuy3.TMP\MICR0S0F.ZIP

Avast says its unable to scan because it is a ‘Decompression bomb’. I did a search on the forums for this looking for a solution for this, found nothing really. I also went into the directory where it is, and its not there. Searched, nothing. I enabled ‘view all hidden files’ thinking the file is hidden, still couldnt find it.

\hyg4tuy3.TMP\MICR0S0F.ZIP is nowhere to be found on my computer but avast picks it up when/after scanning.

I hope there is a solution for this. Even if its harmless, I’d still like to get rid of it. Thanks.

A compression bomb is a file that at first sight appears small in size but has had advanced compression applied to it, so when unzipped it can take up a very large space compared to its zipped size. This can at times cause problems.

  1. it looks like a strange path hyg4tuy3.TMP looks like a file and not a folder and if it is a file it would appear to be incorrectly named if it has another file, microsof.zip inside it. That would make it an archive file that has an incorrect file extension.

Is there a file in temp called hyg4tuy3.TMP or is it a folder ?
If it is a file then the path would be like this C:WINDOWS\Temp\hyg4tuy3.TMP/MICR0S0F.ZIP

Since this is a temporary location I would suggest clearing all temporary files: ClearProg - Temp File Cleaner or CCleaner - Temp File Cleaner, etc.

See that is the thing, there is nothing in temp called hyg4tuy3.tmp or MICR0S0F.ZIP.

I would guess it was a folder. Maybe it was a file though, not sure. When I go in there to look for anything, I find nothing at all that says or indicates hyg4tuy3.TMP or MICR0S0F.ZIP.

All I know is C:WINDOWS\Temp\hyg4tuy3.TMP\MICR0S0F.ZIP shows up on avast exactly like that after scanning with avast, saying its a decompression bomb. Let me know, thanks.

Well it is strange that nothing shows up in explorer for those files/folders even with show hidden files and system files. To me that it makes it more suspicious rather than less, have you tried either of those programs I gave links for ?

What is your OS ?
I would also check another program to see if there is some masking process hiding these files from explorer.
If you haven’t already got this software (freeware), download, install, update and run it, preferably in safe mode.
Ewido Security Suite If using winXP. or a-Squared free if using win98/ME.

I downloaded CCleaner, scanned the computer. I then went to scan again with avast to see if its gone or not, and what do you know, it’s gone. It looks like CCleaner got rid of it. Thanks. :slight_smile:

Btw: WinXP SP2

CCleaner is fine, I prefer ClearProg, but they both do a good job.

With XP, Ewido is the better option as a back-up scanner for Trojan detection and removal. Worth running once in safe mode to confirm all clear and then once a week in normal mode.

A belated welcome to the forums.

I downloaded Ewido and ran it. Shortly right after, my computer started acting weird, especially the mouse. For instance, I’d click to open one web browser, instead of one opening, two would open instead. This and a few similiar things were happening with the mouse. I since then uninstalled Ewido and everything has been fine. But there is something I should mention. When I ran Ewido, I wasn’t in safe mode. Did that have anything to do with my mouse/computer acting weird?

Failure to get into safe mode is because I don’t know how to get into it. When I click on F1 during boot up, it takes me into the BIOS setup and when I click on Del, it takes me to the boot up order menue. I saw no where that indicated booting up into safe mode.

Thanks for the welcome to the forums. :slight_smile:

No running ewido in normal mode shouldn’t have this or any effect on your mouse. The only reason we suggest running it in safe mode is that windows doesn’t load lots of stuff in safe mode and some malware too might not be running. In safe mode some of your drivers won’t be running either and it is possible that the graphics will drop to 256 colours and 800X600 resolution, but other than that no adverse effects.

Tap, tap, tap, on the F8 key whilst booting to get into safe mode.