My Antivirus, Avast, just reported a file to be infected by “IDP.ALEXA.53”. The file name was “UNINSTALLEXCHANGE.PS1”, and was curiously located in the /Setup/ Folder of my Avast Antivirus installation. Whether it is because Avast removed it or the virus itself removed one of its own files, I don’t know, but this file currently does not exist in the directory anymore.
It had been executed by Windows’ powershell (WindowsSystem32WindowsPowerShellv1.0powershell.exe), although I obviously did not currently run a powershell process myself.
I fear that my computer might have been infected, although I am of course unsure what could have caused this action.
Would you guys happen to have any ideas regarding this? I’m not sure what I should do in order to get to the bottom of it.