I’m running Avast 4.8 at the moment and I’ve had this pop up twice with the On-Access Scanner (sensitivity is on High, version 4.8-1368), both times I’ve moved to the chest, the infected filepath was “C:\Windows\SoftwareDistribution\DataStore\Logs\tmp.edb”. I’ve not visited any insecure sites, and everything is up to date according to the secunia.com scanner. I’ve run Spybot S&D which picked up nothing (also have the Resident protection going, didn’t pick it up at the time), SUPERAntiSpyware which also picked up nothing, a full scan with Windows Defender which again picked up nothing, and I’ve run a thorough scan with avast which turned up nothing. Also, I’ve noticed that today my HDD indicator light isn’t working, I can’t recall whether this has been going on all day, or only since the infection notification, not sure whether this is relevant, but it seemed an odd coincidence.
I did a google search and found someone asking about the very same filepath, a reply said that the C:\Windows\SoftwareDistribution\ file is only used by automatic updater, which was going today, and that you should stop the auto update service, deleted the folder and then start it again, is that right?