Bdis2009 Detects Virus On Files Which Are Not Infected (i Think)

Hello!


Ever since I installed BDSI2009 several months ago, I perform regular scans, every week or two at most. And just now the scan reports there's a virus on two system files, especifically on two that came preloaded with my laptop:


Remaining issues:Object Name Threat Name Final Status


C:\Acer\Empowering Technology\eRecovery\Autorun\SW3\IOArcade\data2.cab=](IShield Module 5880) Gen:Rootkit.Heur.206D92C2C2 Disinfect Failed


C:\Acer\IOArcade\data2.cab=](IShield Module 5880) Gen:Rootkit.Heur.206D92C2C2 Disinfect Failed


It has never detected that virus before, and the only choice it gives me is to Delete the files, and I don't want to do that since those are legitimate files. Is it a real threat? Or is it a false positive? I haven't been able to find anything on the internet about this, so any help would be greatly appreciated :)

Comments

  • Hi


    the virus name has Heur extension. So it is detected as a virus by the heuristic engine of BD.


    BD staff would remove, if those are not virus.


    Try to upload on www.virustotal.com and post the log here.


    Hemanth

  • csalgau
    csalgau ✭✭

    Dear user,


    I've been unable to locate a detected copy of the mentioned file. Without knowing the version it's quite difficult.


    Please upload the files somewhere and PM me a link or contact support and send them the files.


    Thank you.

  • Dear user,


    I've been unable to locate a detected copy of the mentioned file. Without knowing the version it's quite difficult.


    Please upload the files somewhere and PM me a link or contact support and send them the files.


    Thank you.


    The problem here is, that each file has a .cab extension, and is about 500Mb in size...

  • emmanuel_120, an alternative solution is telling us the model of your Acer system, what OS you use, and what version of IOArcade you have.


    Or, if could give us a download link from the Acer site for your software, it would be even better.


    Cris.

  • Hi,


    I got the same problem too


    C:\Acer\Empowering Technology\eRecovery\Autorun\SW3\IOArcade\data2.cab=](IShield Module 5880) Gen:Rootkit.Heur.206D92C2C2 Disinfect Failed


    C:\Acer\Empowering Technology\eRecovery\Autorun\SW6\IOArcade\data2.cab=](IShield Module 5880) Gen:Rootkit.Heur.206D92C2C2 Disinfect Failed


    C:\Acer\IOArcade\data2.cab=](IShield Module 5880) Gen:Rootkit.Heur.206D92C2C2 Disinfect Failed


    I'm running on a Acer Aspire 5920G with Windows Vista Home Premium


    I think the version is:


    Cyberlink Instant ON Arcade 4.59.4828


    Hope it helps

  • csalgau
    csalgau ✭✭

    To both - please try setting BitDefender to copy to quarantine and scan the files again. See if they could be copied - in which case temporary disable real-time protection, restore the files to another location and upload them then reeanble real-time protection.


    If this does not work, try using 7-zip or some other archiver to unpack the files in question.