Share via

Hello, so I have little problem with virus.

Anonymous
2025-02-07T18:39:45+00:00

My avast is popping up with text : IDP.HELU.CMD.Generic23 ( I wanted to include screenshot but it doesnt work)Also it is located in C:\Windows\System32\WindowsPowershell\v1.0\powershell.exeI tried running tests with Avast and Malwerbytes but they dont detect anything
Can you please help

Edit: I took a photo of it

Windows for home | Windows 11 | Security and privacy

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments

Answer accepted by question author

  1. Reza-Ameri 45,811 Reputation points Volunteer Moderator
    2025-02-07T20:24:53+00:00

    Hi,

    It could be false positive and incorrect detection .

    Since the message is from Avast, I advise you to contact Avast's support.

    Have a look at Home | Official Avast Support.

    Was this answer helpful?

    0 comments No comments

3 additional answers

Sort by: Most helpful
  1. _AW_ 67,261 Reputation points Volunteer Moderator
    2025-02-08T10:47:54+00:00

    Your Windows installation is malware free so I assume it's a false positive as Reza mentioned.

    If you'd like to investigate what triggers the Avast detection, we could use a Process Monitor capture.

    https://learn.microsoft.com/en-us/sysinternals/downloads/procmon 

    If you'd like to pursue this, please let me know how often these detections occur and if any occur soon after system boot.

    The filter used in procmon and what events are captured will depend on how long it will have to capture before the detection.

    Was this answer helpful?

    0 comments No comments
  2. Anonymous
    2025-02-08T06:10:10+00:00

    Ok
    I have the onedrive link

    wf

    Was this answer helpful?

    0 comments No comments
  3. _AW_ 67,261 Reputation points Volunteer Moderator
    2025-02-07T22:50:24+00:00

    This could well be a script based malware. If you'd like your PC checked, please run a scan with Farbar Recovery Scan Tool (FRST) and share your logs.

    https://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/

    Note: If you are using Edge, SmartScreen may initially block the download.

    Click on the three dots next to the warning and select Keep => Show more => Keep anyway.

    • If your computer's language is not English, rename FRST64.exe to FRST64English.exe
    • Run the tool, leave the default settings, and press Scan.
    • Zip the logs, FRST.txt and Addition.txt, then upload to a cloud storage service like OneDrive, Google Drive or gofile.io
    • Post the share link.

    Share OneDrive files and folders - Microsoft Support

    Was this answer helpful?

    0 comments No comments