system
6
DavidR,
I could not find the scan.txt file you mentioned. I checked the folder (C:\ProgramData\Avast Software\Avast\report) and it was not there. However, Avast ran a full scan today, and both Prefetch\AgAppLaunch.db and setupapi.ev1 are not longer detected. Instead, C:\Windows\Prefetch\AgCx_SC1.db and C:\Windows\Prefetch\WMIADAP.EXE-369DF1Cd.pf are now detected as rootkits during a full scan, but a boot scan came up clean. VirusTotal scans show both are clean:
for AgCx_SC1.db:
http://www.virustotal.com/file-scan/report.html?id=1007017d0cfd66c80939d5cbef6bd6894551098dda242578f4bbb75c7ede87fe-1308616330
for WMIADAP.EXE-369DF1Cd.pf:
http://www.virustotal.com/file-scan/report.html?id=3fd1bb85ff6abefae11a1d35680aa18a8cc794a93ce028a4cdbcebdd5177a99b-1308616407
Sincerely,
Carthage