Jump to content

HEUR:Trojan.PowerShell.generic on pagefile.sys could be false positive?


Recommended Posts

thirossato
Posted

Kaspersky keeps detecting this as virus, but when I click on resolve button, it kind of only update the detection date and time.

I’ve tried to remove it using Kaspersky Virus Removal tool, but it didn’t detect it on scan. Tried with rescue disk, and other brands tools like malwarebytes. None of them detected this.

Should this be a false positive?

Posted

@thirossato Welcome.

Can you unhide the protected operating system files and locate “pagefile.sys” ?
 

thirossato
Posted

@thirossato Welcome.

Can you unhide the protected operating system files and locate “pagefile.sys” ?
 

Yes I can, it is on “C:”


 

Posted

@thirossato How much RAM do you have on your system, please close all running applications ?

thirossato
Posted

@Berny that is not possible, the file have more than 2gb, and the analyze tool allows only files up to 256MB. Even so, I believe that this file is used by the system somehow, I tried to check that with Process Explorer, and looks like no process is using it.

 

Wesly.Zhang
Posted

Hello,

This file can be deleted by following step If the system memory is above 4GB!

After do that, Please reboot PC. Because of deleting pagefile.sys by OS, The period of reboot may take a while time, Please be patient.

Notice/Imporant!   If the pagefile.sys has been deleted. Please turn the settings back !!! and reboot PC again.

Regards.

  • 3 weeks later...
Posted

Apoio Secure is best antivirus for cleaning computer and protect your computer from virus and trojan.
download from apoiosecure.us

Guest
This topic is now closed to further replies.


×
×
  • Create New...