What to do with this threat?

Here is a screenshot of whats going on.


When I tried to move it to the vault it says action denied and it also gives me an error for any other action that I try to do. Do I just need to delete it?


Schedule a boot-time scan (if you don’t have a 64bit OS) and that should get round the access denied as before windows starts, it shouldn’t be in use. Once the alert happens in the boot-time scan send it to the chest.

However, before you do that, what is the full path and file name, check the report file for the scan you did and copy and paste the details of the alert.

Do you know what this file is for (faerie solitaire oberon-wt.exe) ?

No I have no idea what this file is for.


Theres the path name.

Game (Faerie Solatire) from Oberon media

Maybe is a False Positive. Send this file to virus total…

How do I do that?

You could also check the offending/suspect file at: VirusTotal - Multi engine on-line virus scanner and report the findings here the URL in the Address bar of the VT results page. You can’t do this with the file securely in the chest, you need to extract it to a temporary (not original) location first, see below.

  • avast5 - Create a folder called Suspect in the [b]C:[/b] drive. Now exclude that folder in the File System Shield, Expert Settings, Exclusions, Add, type (or copy and paste) C:\Suspect* That will stop the File System Shield scanning any file you put in that folder. Now enter the chest again and Extract the file to the Suspect folder and upload it to VT.

I got the same detection in the same file as the OP.

here is the virus total result

It’s on an an almost out of the box HP laptop.
I did install some dodgy stuff a few hours before running the scan. >:(

So is this a false positive?