Solved

Windows Defender makes mysterious folders and files

Posted on 2006-07-06
3
14,287 Views
Last Modified: 2011-08-18
Hi,

A)
I have Win XP Pro SP2.  I installed Windows Defender.  I have run Windows Defender.  I don't "use real time protection" because I have another antispyware program running.

Now weird folders and files are being created in the root folder containing "My Documents".
Below are the folders and files.
1. FOLDER      F:\9de1bcc46e6629e5b6d4f3fdd96e\
FILE      AS_Delta.ini
FILE      mpasdlta.vdm
FILE      MPSigStub.exe

2. FOLDER      F:\Config.Msi\

3. FOLDER      F:\fe851fd572d87c6e7b7f16432944fc\
FILE      AS_Delta.ini
FILE      mpasdlta.vdm
FILE      MPSigStub.exe

B)
Why do I assume Windows Defender is the culprit?

Because here are the contents of "AS_Delta.ini" (one of the files in one of the folders in question).

****Start AS_Delta.ini contents****
"; MpSigStub INI Configuration File

;----------------------------------------------------
; Configuration Section
;
; This section specifies parameters for the stub
;----------------------------------------------------
[Parameters]
PATCH_FULL_ENGINE=0

;----------------------------------------------------
; Products Section
;
; These sections specify the products that are to
; be updated.
;----------------------------------------------------
[WD]
PRODUCT_NAME=Windows Defender
PRODUCT_CONFIG_ROOT_KEY=SOFTWARE\Microsoft\Windows Defender

[MCP]
PRODUCT_NAME=Microsoft Client Protection
PRODUCT_CONFIG_ROOT_KEY=SOFTWARE\Microsoft\Client Protection"
****End AS_Delta.ini contents****

Questions:
1. Is "Windows Defender" the culprit?
Supporting evidence are "PRODUCT_NAME=Windows Defender
PRODUCT_CONFIG_ROOT_KEY=SOFTWARE\Microsoft\Windows Defender"

2. Why is this happening?

Thank you.
0
Comment
Question by:bz43
  • 2
3 Comments
 
LVL 59

Expert Comment

by:LeeTutor
Comment Utility
I did a google search and I found some pages referencing mpasdlta.vdm that verify it has to do with the program Windows Defender.  However, none of those files are present on my system, and I use Windows Defender.  I would suggest you uninstall the program and see if then you can delete the files, then reinstall the program and see if the problem goes away...
0
 
LVL 59

Accepted Solution

by:
LeeTutor earned 250 total points
Comment Utility
bz43, any feedback?
0
 
LVL 9

Author Comment

by:bz43
Comment Utility
Hi,

Sorry for not getting back to you in time.  I've been out of town.

This morning I just deleted all those directories and they haven't come back yet.

Thanks for your help.



0

Featured Post

Free Trending Threat Insights Every Day

Enhance your security with threat intelligence from the web. Get trending threat insights on hackers, exploits, and suspicious IP addresses delivered to your inbox with our free Cyber Daily.

Join & Write a Comment

Suggested Solutions

For both online and offline retail, the cross-channel business is the most recent pattern in the B2C trade space.
When you start your Windows 10 PC and got an "Operating system not found" error or just saw  "Auto repair for startup". After a while, you have entered a loop for Auto repair which does not fix anything and you will be in a  panic as all your work w…
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…
You have products, that come in variants and want to set different prices for them? Watch this micro tutorial that describes how to configure prices for Magento super attributes. Assigning simple products to configurable: We assigned simple products…

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now