Corrupt SkypeSetup.exe files?

kyla … you  have  not  responded  anymore  to  this  issue … has  avg  resolved  your  issue?  and … may  i  ask  what  the  resolution  was  about?  the  same  circumstances  have  been  happening  with  me  too … so  i  am  just  curious.

Hello Kyla,
Thank you for providing the information and providing us the screenshot. You can remove the temp files manually. Press Window Key + R in your keyboard and type "temp" and hit enter and delete all the files. Once again press Window key + R on your keyboard and type "%temp%" and hit enter and delete the files and run system scan. Those files would have been removed. And these are temporary files been detected and stored in virus vault and if it comes back again the virus vault will detect it and remove it. Thank you for understanding.
Please feel free to contact us for any further assistance. Thank you.

Hello Kyla.
Thank you for contacting us. It seems the folder path is temporary internet files which you can remove them frequently. Thank you.

Multiple times over the past few months, I have run AVG and it has reported items like these as corrupted executable files:

Object name: C:(username)\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1USLAQUW\SkypeSetupFull[1].exe

Object name: C:(username)\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2Q3yCDMR\SkypeSetupFull[2].exe

Etc.  It has only found them a few times, but the fact that it keeps happening even after it tosses them in the virus vault alarms me.

What is especially creepy is 1-I never (deliberately) downloaded these files.  2-I don't use IE.  3-I thought that Skype was just being a pain and trying to force an update and these files were appearing and then becoming corrupted when I interrupted it, but today I did a test and tried updating Skype on purpose.  The screen it showed me was not the same as the one that I "interrupted" in the past.  What's strange is I never saw that mysterious screen any time Skype was not running.  But now I don't know if it was Skype at all or where it came from.  It showed a progress bar and claimed Skype was "installing," but I can't remember more than that.

I have some of these weird SkypeInstall.exe files in that folder right now.  If I try scanning them individually, at the moment, AVG reports they are clean.

Can anyone please shed some light on this?  I feel like I may have some kind of ongoing infection, but I can't seem to figure it out.  This did start happening shortly after I landed on a site with a creepy pop-up telling me my credit card information had been compromised.

While I am it, I was one of the many people who got the SWF_c.APS trojan detection the other month.  Now in my virus history it says it "couldn't be removed," and "restored from virus vault."  I assume this is because the program restored the file since it was a false positive?


Thank you, but I have already done all that.  You don't seem to understand that the fact that this has happened multiple times leads me to believe it is a symptom of an underlying and unidentified problem which may be a virus.  What I am looking for is for someone at AVG to shed some light on that possibility, or help me figure out whether these are some kind of false positives.

Hello Kyla.

We certainly understand your concern. We have sent you an email instruction to get connected with our technical support team. Please follow those instructions to get in touch with them and you should be able to resolve your issue. Thank you.

All my scans come up clean right now, and I don't have any weird plugins, toolbars, etc.  My problem is that this keeps recurring anyway.  Weeks can go by, and then out of the blue, there is another one.  Can't someone please investigate this and figure out whether it is some kind of false positive, or whether it is a real issue?

Hello Pj,
We regret for the inconvenience caused. Could you please confirm whether you have followed all the basic troubleshooting steps provided above? Also please let us know whether you have installed the paid or the Free version of the AVG program?

kyla … you  have  not  responded  anymore  to  this  issue … has  avg  resolved  your  issue?  and … may  i  ask  what  the  resolution  was  about?  the  same  circumstances  have  been  happening  with  me  too … so  i  am  just  curious.

The problem is that this keeps recurring, and I did not download these install files.  This leads me to believe that they are being downloaded by something AVG is not detecting and removing.  Please investigate further.  Also, why is AVG telling me they may be a threat?  Please provide more information.

Thank you for the information, Kyla. Could you please let us know the name of the AVG product you have installed in your pc? we are requesting for the screenshot because so that we can analyzed it from our end and assist you better. Thank you for understanding.

Hello Kyla,
We understand how something like this can really try your patience.
Please be informed that there are numerous number of malware programs emerging day by day and we are working 24/7 to add all those definitions to our database. We request you to start uninstalling all unknown, unnecessary programs from your computer, make sure you don't uninstall the windows programs. Also remove all the weird, unwanted add-ons, plugins, extensions, tool bars and search bars from your web browsers, if the issue persists, reset your browsers once. This should fix your issue. And update AVG on regular basis to be away from virus. Please feel free to contact us should you need any assistance. Thank you.

VirusTotal btw reports the following:

Comodo
Heur.Corrupt.PE
20160122
Cyren
W32/Damaged_File.gen!Eldorado
20160122
F-Prot
W32/Damaged_File.gen!Eldorado
20160122
TheHacker
W32/Behav-Heuristic-CorruptFile-EP
20160119