found this in quarantaine, not sure what it is. c:\users\admin\desktop\sources\sxs\amd64_netfx4-scripting_engine_tlb_b03f5f7f11d50a3a_4.0.8400.0_none_600044fdf871c9fd\microsoft.jscript.tlb nothing i am sure
Interesting. I have a similar thing: c:\esd\windows\sources\sxs\amd64_netfx4-scripting_engine_tlb_b03f5f7f11d50a3a_4.0.8400.0_none_600044fdf871c9fd\microsoft.jscript.tlb The C:\ESD folder was created when I installed the Windows 8 preview, ESD = Electronic Software Distribution I think. I deleted that folder after I burnt an ISO image so nothing to scan now.
9:46:57.0921 Infection detected: c:\users\admin\desktop\sources\sxs\amd64_netfx4-scripting_engine_tlb_b03f5f7f11d50a3a_4.0.8400.0_none_600044fdf871c9fd\microsoft.jscript.tlb [MD5: B68C83C4A85A825AC7D18AF74C9EFEA4] [3/00090000] [W32.Allaple.Gen] 02-06-2012 19:46:57.0937 File blocked in realtime: c:\users\admin\desktop\sources\sxs\amd64_netfx4-scripting_engine_tlb_b03f5f7f11d50a3a_4.0.8400.0_none_600044fdf871c9fd\microsoft.jscript.tlb [MD5: B68C83C4A85A825AC7D18AF74C9EFEA4, Size: 57856 bytes] [589824/00000003] [W32.Allaple.Gen] 02-06-2012 19:46:57.0953 Determination flags modified: c:\users\admin\desktop\sources\sxs\amd64_netfx4-scripting_engine_tlb_b03f5f7f11d50a3a_4.0.8400.0_none_600044fdf871c9fd\microsoft.jscript.tlb - MD5: B68C83C4A85A825AC7D18AF74C9EFEA4, Size: 57856 bytes, Flags: 00000020 02-06-2012 19:46:57.0953 Performing cleanup entry: 1
Can you please contact WSA Support and they can clarify there determination of this file, just send the lines to them and they will let you know for sure! https://www.webrootanywhere.com/servicewelcome.asp? Thanks, TH