Hi, I’m not the best at computers so please bear with me. So I found a trojan earlier today after running a full scan and still can’t find a way to remove it or quarintine it. I would appreciate it if someone could find a solution for me.
Some basic info:
File name: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\tmp.edb
Severity: High
Status: Threat: Win32:FakeAV-ANO [Trj]
My computer is a Dell Inspiron 560 that uses Windows 7. Other computer protection programs on computer: Malwarebytes Anti-Malware (Free Version), Comodo Firewall (Free Version), Windows Malicous Software Removal Tool, Microsoft Security Essentials, Windows Defender (Disabled).
Bunch of info on what I’ve tried:
When I found it, I first attempted to move it to the chest but there was an error that came up saying, “Error: The process cannot access the file because it’s being used by another process (32).”
Screenshot of avast at this point: http://imageshack.us/photo/my-images/819/trojang.png/
Next I tried to apply the delete option and it said that it’s “postponed until next reboot.” So I restarted my computer. When I checked back at the scan log to see if the trojan was deleted, it still said “postponed until next reboot.”
Since it still wasn’t deleted, I tried to find the file myself and delete it manually. A message popped up saying “This action cannot be completed because this file is open in Windows Search.”
Screenshot of message: http://imageshack.us/photo/my-images/163/filewontdelete.png/
After all that I tried scanning it with Malwarebytes Anti-Malware, Windows Defender, Windows Malicous Software Removal Tool, and Microsoft Security Essentials but they all failed to detect it. Then as a last resort, I tried sandboxing it in Comodo Firewall’s sandbox but it didn’t let me.
At the moment, the file still exists and I can’t do anything about it.