In addition this trojan modify the “ashDisp.exe” file to “ashDisp.ex_”, copies itself and trojan changing to “Trojan.Inject.351”. As a result trojan make activies each computer start by Avast.
I suspect this trojan in some illegal sites but Avast doesn’t detect.
What detected it ?
If you have a sample send it to avast.
Send the sample to virus@avast.com zipped and password protected with password in email body and false positive/undetected malware in the subject.
Or you can also add the file to the User Files (File, Add) section of the avast chest where it can do no harm and send it from there (select the file, right click, email to Alwil Software). No need to zip and PW protect when the sample is sent from chest. A copy of the file/s will remain in the original location, so any further action you take can remove that.