dslreports logo
site
 
    All Forums Hot Topics Gallery
spc

spacer




how-to block ads


Search Topic:
uniqs
1632
share rss forum feed


MarkAW
Barry White
Premium
join:2001-08-27
Canada
kudos:16

SUPERAntiSpyware flagging Avast

After today's Def update SAS is now flagging Avast as a trojan. Anyone else getting this?

I've already sent in a fp report and await a reply from the people at SAS.

Generated 12/21/2012 at 10:39 AM

Application Version : 5.6.1014

Core Rules Database Version : 9775
Trace Rules Database Version: 7587

Scan type : Complete Scan
Total Scan Time : 00:27:36

Operating System Information
Windows 7 Professional 32-bit, Service Pack 1 (Build 6.01.7601)
UAC On - Limited User

Memory items scanned : 666
Memory threats detected : 3
Registry items scanned : 37323
Registry threats detected : 12
File items scanned : 36014
File threats detected : 9

Trojan.Agent/Gen-Siggen
HKLM\System\ControlSet001\Services\ASWFSBLK
C:\WINDOWS\SYSTEM32\DRIVERS\ASWFSBLK.SYS
HKLM\System\ControlSet001\Enum\Root\LEGACY_ASWFSBLK
HKLM\System\ControlSet002\Services\ASWFSBLK
HKLM\System\ControlSet002\Enum\Root\LEGACY_ASWFSBLK
HKLM\System\CurrentControlSet\Services\ASWFSBLK
HKLM\System\CurrentControlSet\Enum\Root\LEGACY_ASWFSBLK
C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\ASWIDLE.DLL
C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\ASWIDLE.DLL
C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\SETUP\INF\ASWFSBLK.SYS

Trojan.Agent/Gen-Agent
HKLM\System\ControlSet001\Services\AVAST! ANTIVIRUS
C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\AVASTSVC.EXE
HKLM\System\ControlSet001\Enum\Root\LEGACY_AVAST! ANTIVIRUS
HKLM\System\ControlSet002\Services\AVAST! ANTIVIRUS
HKLM\System\ControlSet002\Enum\Root\LEGACY_AVAST! ANTIVIRUS
HKLM\System\CurrentControlSet\Services\AVAST! ANTIVIRUS
HKLM\System\CurrentControlSet\Enum\Root\LEGACY_AVAST! ANTIVIRUS
C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\AVASTSVC.EXE
C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\SCREENHOOKS32.DLL
C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\SETUP\INF\ASWRDR.SYS

Trojan.Agent/Gen-Agentsmall
C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\AHRESJS.DLL
C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\AHRESJS.DLL
C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\ASWRUNDLL.EXE
C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\DEFS\12122100\FWAUX.DLL
--
We never really grow up, we only learn how to act in public.
Do not argue with an idiot. He will drag you down to his level and beat you with experience. (Hmm)
I have enemies? Good. That means I've stood up for something, sometime in my life.


Buddel
If it ain't broke, don't fix it.
Premium
join:2004-03-06
EU
kudos:3
You're not alone, Mark: »forums.superantispyware.com/inde···-threat/

Let's hope this FP will soon be fixed.


MarkAW
Barry White
Premium
join:2001-08-27
Canada
kudos:16

1 recommendation

said by Buddel:

You're not alone, Mark: »forums.superantispyware.com/inde···-threat/

Let's hope this FP will soon be fixed.

Yup saw that at the SAS forum and i also have a thread over there. I hope so as well.
--
We never really grow up, we only learn how to act in public.
Do not argue with an idiot. He will drag you down to his level and beat you with experience. (Hmm)
I have enemies? Good. That means I've stood up for something, sometime in my life.


BennyBooBoo

@beyondbb.com
reply to MarkAW
Yes. Just start a SAS scan, stop about 10 seconds in, Allow/Trust the Avast entries, good to go.


jadinolf
I love you Fred
Premium
join:2005-07-09
Ojai, CA
kudos:8
reply to MarkAW
Yep, happened to me.

Driving me crazy.

Uninstalled avast! and installed MSE.

Now I will research your posts.

Phew!
--
Printed on 100% recycled bytes


Bobdorcom

@comcast.net
reply to MarkAW
Yes getting that too on my computers as well. Deleted Avast "trojan" files. Have to reinstall it. Spybot and Malware are not picking anything up.
Expand your moderator at work


MarkAW
Barry White
Premium
join:2001-08-27
Canada
kudos:16
reply to MarkAW

Re: SUPERAntiSpyware flagging Avast

Since running scans on my systems with SAS and posting this morning i have run scans with MBAM and HitmanPro and neither program has found anything.

HitmanPro 3.7.0.185
www.hitmanpro.com

Computer name . . . . :
Windows . . . . . . . : 6.1.1.7601.X86/2
User name . . . . . . :
UAC . . . . . . . . . : Enabled
License . . . . . . . :

Scan date . . . . . . : 2012-12-21 12:45:20
Scan mode . . . . . . : EWS
Scan duration . . . . : 3m 32s
Disk access mode . . : Direct disk access (SRB)
Cloud . . . . . . . . : Internet
Reboot . . . . . . . : No

Threats . . . . . . . : 0
Traces . . . . . . . : 0

Objects scanned . . . : 797,827
Files scanned . . . . : 8,773
Remnants scanned . . : 224,231 files / 564,823 keys

Malwarebytes Anti-Malware (PRO) 1.70.0.1100
www.malwarebytes.org

Database version: v2012.12.21.10

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16439
[administrator]

Protection: Enabled

21/12/2012 12:45:59 PM
mbam-log-2012-12-21 (12-45-59).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM | P2P
Scan options disabled:
Objects scanned: 199517
Time elapsed: 12 minute(s), 10 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)
--
We never really grow up, we only learn how to act in public.
Do not argue with an idiot. He will drag you down to his level and beat you with experience. (Hmm)
I have enemies? Good. That means I've stood up for something, sometime in my life.


nogeeksorg

@optonline.net
reply to MarkAW
Yeah, getting false positives on all machines. Not the first time this has happened between the two apps (in both directions).

Still love combining them, though, even though I just spent an hour on the phone with customers.