First off I need to say (R). I love this suite of programs, and wish them all well for the future. No to my enquiry.
Comodo Antivirus detects that the file c:\windows\system32\derstg.exe contains the virus Trojan-PSW.Win32.Delf.IP. It can neither disinfect or remove the file, even though it says it does. I thought this should just be brought to the attention of the correct authoritys because I want these programs to kick ■■■.
Also Comodo seems to name virus’s different to the symantec way of doing things, not that this is a bad thing, but could be a confusing thing for end-users who want to learn more about the virus on their system. maybe having a thing saying the virus might go under these names or something.
Install this tiny freeware file, WhoLockMe?is a hand tool that will install into the context menu (right-click on a file in explorer). When WhoLockMe loads, it will show you a list of the application(s) that put the lock on the file. Write there names down (as they’d most likely be a part of the infection), kill the processes from WhoLockMe, then start deleting file(s).
I would also suggest looking for manual cleanup routines at the other AV web-sites for the products that identified it successfully.