[b][i]Hey guys,
I have Windows XP home edition SP3, intel celeron CPU 2.66 GHz 446 MB RAM, VIA S3g UniChromePro IGP
My problem started yesterday, I perfomed a full system scan with Malwarebytes and detected Troyan.Agent with 17 entries in my system including the file actskin4.ocx I removed the Trojan succesfully, and I took a picture of it and sent it to malwarebytes yesterday to see if it was a False Positive,…
The problem with AVast started today when I tried to run a scan, the memory items were checked but when the skin of Avast tried to open a msge saying Usigetskin faild came, what I did is that I reinstalled Avast Antivirus and the original skin open, but I performed another Malwarebytes and detected the Troyan.Agent againt with 18 registry problems and the file of actskin4.ocx infected too.
Malwarebytes sent me a ticket to correct the problem and asked to send the mbam-log after the scan together with the actskin4.ocx file what I did today.
I what see when I came to this AvastWeb Forum is that some else has my same problem, could it be that this person has the same problem than me?
I have not taken any action removing anything with Malwarebytes since I know that I won´t be able to open Avast Again, I am waiting to hear from Malwarbytes staff.
Just wanted to ask if you know what is happening? what should I do? any suggestions.
Here is the mbam-log I took from Malwarebytes today, probably it can help you help me.[/i][/b]
Malwarebytes’ Anti-Malware 1.41
Versión de la Base de Datos: 2885
Windows 5.1.2600 Service Pack 3
01/10/2009 11:13:01 a.m.
mbam-log-2009-10-01 (11-12-54).txt
Tipo de examen : Examen Completo (A:|C:|D:|E:|)
Objetos examinados: 90815
Tiempo transcurrido: 4 minute(s), 51 second(s)
Procesos en Memoria Infectados: 0
Módulos en Memoria Infectados: 0
Claves del Registro Infectadas: 17
Valores del Registro Infectados: 1
Elementos de Datos del Registro Infectados: 0
Carpetas Infectadas: 0
Ficheros Infectados: 1
Procesos en Memoria Infectados:
(No se han detectado elementos maliciosos)
Módulos en Memoria Infectados:
(No se han detectado elementos maliciosos)
Claves del Registro Infectadas:
HKEY_CLASSES_ROOT\CLSID{52c01a76-19e2-4a50-ae8a-38ffbccf9182} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\TypeLib{90f3d7b3-92e7-44ba-b444-6a8e2a3bc375} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\Interface{4921908c-7090-4d37-a6b3-fc447f08378a} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\Interface{750fc67c-0311-4391-9864-a2efed49bd28} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\Interface{f3fc950c-7583-4377-bad8-efbeaa33273c} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\CLSID{0944d16c-d0f4-4389-982a-a085595a9eb3} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\CLSID{3831331e-0d11-4716-871d-68f3b11d23c9} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\CLSID{3dcd2bc5-8489-48ae-891f-90c8b2f19f56} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\CLSID{5954ea75-9bfa-461a-bd34-cea3a861ff19} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\CLSID{762ec429-1a5d-4ab8-844a-9a552e1241da} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\CLSID{a506ef88-9efc-4522-bfe1-a8e886a64d80} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\CLSID{a5704c37-40da-49ef-904b-97e5f5f9b1c5} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\CLSID{b87799af-2ce9-4daa-93cf-65f002035369} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\CLSID{bbc73c94-337c-43cc-b52c-31eb9fa34013} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\CLSID{c406f816-318d-4f7d-81cb-ba93ca7b70d5} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\CLSID{d502d4a3-03e6-4eae-a14e-69606ca63430} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
HKEY_CLASSES_ROOT\CLSID{ec22770d-3343-4c56-8a8d-3e560475f655} (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
Valores del Registro Infectados:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\WINDOWS\system32\actskin4.ocx (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]
Elementos de Datos del Registro Infectados:
(No se han detectado elementos maliciosos)
Carpetas Infectadas:
(No se han detectado elementos maliciosos)
Ficheros Infectados:
C:\WINDOWS\system32\actskin4.ocx (Trojan.Agent) → No action taken. [40544237305383807566791534727079851301922219681718662423141826701914216622171466702566142025717167686871261825199413014739]