Heur.Suspicious@125415489

Hi all, since yesterday comodo is keep on prompts me about a malware named “Heur.Suspicious@125415489”. I click on “clean” and in comodo the status is “Success”. But once I restart my machine, comodo prompts me again for the same “Heur.Suspicious@125415489” detected.

The location for this malware is:
C:\Users\Jack\AppData\Local\Temp{5C8B7B47-07D4-437F-B872-0D7713C9DF29}

Do anyone knows whether there is a way to get rid of this?

Thank you very much.

Since thats a temporary folder, try installing CCleaner ( Download CCleaner 5.84.9143 for Windows - Filehippo.com ), should get rid of all the temp files there. You can also try the windows built in temp folder cleaner, type “disk cleanup” without the quotes in windows start menu search thing, it’ll be there.

See if cleaning the temp folder with CCleaner or manually helps. Sometimes when a file gets protected it will arise in several seconds again. Does it come back like that? Or only after a reboot.

See if you see that path with Autoruns. WHen you find it disable the autostart, reboot and see if that helped or not.

Note about using Autoruns.
Download Autoruns and run it.

Make system restore point to be on the safe side of things.

This program finds about all auto starts in Windows. This tool can therefore seriously damage Windows when not handled properly. After starting push Escape and go to Options and choose to hide Windows and Microsoft entries, to include empty locations and then push F5 to refresh.

Now check all entries to see if there are references to the malware. When you find them untick them. After unticking reboot your computer and see what happens.