Hoi Michael,
Hier komen de rapportjes:a-squared Free - Version 2.1
Scan settings:
Objects: Memory, Traces, Cookies, C:\
Scan archives: On
Heuristics: On
ADS Scan: On
Scan start: 18-12-2006 20:56:18
C:\Program Files\imesh detected: Trace.Directory.IMesh
C:\Program Files\bho detected: Trace.Directory.IntermixMedia.KeenValue
C:\WINDOWS\browserxtras\pn detected: Trace.Directory.KaZaA
C:\Program Files\myway detected: Trace.Directory.MyWaySpeedbar
C:\WINDOWS\gatorpatch.log detected: Trace.File.Claria.CommonComponents
C:\Program Files\imesh\client\autoupdate.dll detected: Trace.File.Gator
C:\WINDOWS\gatorpatch.log detected: Trace.File.Gator
C:\Program Files\imesh\client\imeshclient.exe detected: Trace.File.IMesh
C:\Program Files\imesh\client\unwise.ini detected: Trace.File.IMesh
C:\WINDOWS\lbbho.ini detected: Trace.File.IMesh
C:\WINDOWS\system32\hsenj.ocx detected: Trace.File.IMesh
C:\WINDOWS\belt.ini detected: Trace.File.SearchV
C:\WINDOWS\system32\msrev21.dll detected: Trace.File.Suspicious
C:\WINDOWS\smdat32m.sys detected: Trace.File.Twain-Tech
C:\WINDOWS\system32\browseui.exe detected: Trace.File.WebSearchToolbar
Value: HKEY_CLASSES_ROOT\arlnk --> URL Protocol detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Height detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Left detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Maximized detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Top detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Width detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Download detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Queue detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Upload detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Data --> AresNet1 detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Data --> JI.AresNet1 detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Download detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Queue detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Upload detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> ChatRoom.ServerPort detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> ChatRoom.ShowJP detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Extra.ShowActiveCaption detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.AutoConnect detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.AutoStartUp detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.LastLibraryMode detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastChatRoomBrowse detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastLibrary detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastPMBrowse detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastSearch detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Personal.GUID detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Privacy.SendRegularPath detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> PrivateMessage.AllowBrowse detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> PrivateMessage.AwayMessage detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CAvgTime detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CDnSpeed detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CFRTime detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CTtUptime detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CUpSpeed detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.HasLQCa detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.LstCaQuery detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.LstCaQueryInt detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Transfer.MaximizeUpBandOnIdle detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Transfer.ServerPort detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run --> ares detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run --> BPS Security Console detected: Trace.Registry.BPS SpywareRemover
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/hdplugin1014.dll detected: Trace.Registry.Claria.CommonComponents
Key: HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_erssdd detected: Trace.Registry.ErrorSafe
Value: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run --> forbes detected: Trace.Registry.Forbes
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/hdplugin1014.dll detected: Trace.Registry.Gator
Key: HKEY_CURRENT_USER\software\microsoft\installer\features\10b0642b36134f8f914ea8e11ee5b503 detected: Trace.Registry.HotBar
Key: HKEY_CURRENT_USER\software\microsoft\installer\products\d493500bd4a54ea6bc805fc9cda952c5 detected: Trace.Registry.HotBar
Value: HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\shellbrowser --> {74cc49f7-eb32-4a08-b204-948962a6e3db} detected: Trace.Registry.HotBar
Key: HKEY_CLASSES_ROOT\clsid\{147a976e-eee1-4377-8ea7-4716e4cdd239} detected: Trace.Registry.MyWebSearchToobar
Key: HKEY_CLASSES_ROOT\clsid\{147a976e-eee1-4377-8ea7-4716e4cdd239} detected: Trace.Registry.MyWebSearchToolbar
Key: HKEY_CURRENT_USER\software\microsoft\systemcertificates\trustedpublisher\certificates\bd8400524261df1adbd8860f22c9ce2b97471448 detected: Trace.Registry.P2E
Key: HKEY_CURRENT_USER\software\local appwizard-generated applications\popup detected: Trace.Registry.UnclassifiedDialer
C:\Documents and Settings\Ingrid\Cookies\ingrid@stat.onestat[2].txt detected: Trace.TrackingCookie
C:\Bdienst\2003\IB2003s.exe detected: Heuristic.Dialer
C:\Program Files\SpamBlockerUtility\Bin\4.7.5.0\SbAds.dll detected: Adware.Win32.HotBar.be
C:\Program Files\SpamBlockerUtility\Bin\4.8.0.0\SbAds.dll detected: Adware.Win32.HotBar.be
Scanned
Files: 83216
Traces: 90510
Cookies: 82
Processes: 11
Found
Files: 3
Traces: 66
Cookies: 1
Processes: 0
Registry keys: 0
Scan end: 18-12-2006 21:46:23
Scan time: 0:50:05
C:\Program Files\SpamBlockerUtility\Bin\4.7.5.0\SbAds.dll Deleted Adware.Win32.HotBar.be
C:\Program Files\SpamBlockerUtility\Bin\4.8.0.0\SbAds.dll Deleted Adware.Win32.HotBar.be
C:\Bdienst\2003\IB2003s.exe Deleted Heuristic.Dialer
C:\Documents and Settings\Ingrid\Cookies\ingrid@stat.onestat[2].txt Deleted Trace.TrackingCookie
Key: HKEY_CURRENT_USER\software\local appwizard-generated applications\popup Deleted Trace.Registry.UnclassifiedDialer
Key: HKEY_CURRENT_USER\software\microsoft\systemcertificates\trustedpublisher\certificates\bd8400524261df1adbd8860f22c9ce2b97471448 Deleted Trace.Registry.P2E
Key: HKEY_CLASSES_ROOT\clsid\{147a976e-eee1-4377-8ea7-4716e4cdd239} Deleted Trace.Registry.MyWebSearchToolbar
Key: HKEY_CLASSES_ROOT\clsid\{147a976e-eee1-4377-8ea7-4716e4cdd239} Deleted Trace.Registry.MyWebSearchToobar
Key: HKEY_CURRENT_USER\software\microsoft\installer\features\10b0642b36134f8f914ea8e11ee5b503 Deleted Trace.Registry.HotBar
Key: HKEY_CURRENT_USER\software\microsoft\installer\products\d493500bd4a54ea6bc805fc9cda952c5 Deleted Trace.Registry.HotBar
Value: HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\shellbrowser --> {74cc49f7-eb32-4a08-b204-948962a6e3db} Deleted Trace.Registry.HotBar
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/hdplugin1014.dll Deleted Trace.Registry.Gator
Value: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run --> forbes Deleted Trace.Registry.Forbes
Key: HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_erssdd Deleted Trace.Registry.ErrorSafe
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/hdplugin1014.dll Deleted Trace.Registry.Claria.CommonComponents
Value: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run --> BPS Security Console Deleted Trace.Registry.BPS SpywareRemover
Value: HKEY_CLASSES_ROOT\arlnk --> URL Protocol Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Height Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Left Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Maximized Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Top Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Width Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Download Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Queue Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Upload Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Data --> AresNet1 Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Data --> JI.AresNet1 Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Download Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Queue Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Upload Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> ChatRoom.ServerPort Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> ChatRoom.ShowJP Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Extra.ShowActiveCaption Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.AutoConnect Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.AutoStartUp Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.LastLibraryMode Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastChatRoomBrowse Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastLibrary Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastPMBrowse Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastSearch Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Personal.GUID Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Privacy.SendRegularPath Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> PrivateMessage.AllowBrowse Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> PrivateMessage.AwayMessage Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CAvgTime Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CDnSpeed Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CFRTime Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CTtUptime Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CUpSpeed Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.HasLQCa Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.LstCaQuery Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.LstCaQueryInt Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Transfer.MaximizeUpBandOnIdle Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Transfer.ServerPort Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run --> ares Deleted Trace.Registry.Ares
C:\WINDOWS\system32\browseui.exe Deleted Trace.File.WebSearchToolbar
C:\WINDOWS\smdat32m.sys Deleted Trace.File.Twain-Tech
C:\WINDOWS\system32\msrev21.dll Deleted Trace.File.Suspicious
C:\WINDOWS\belt.ini Deleted Trace.File.SearchV
C:\Program Files\imesh\client\imeshclient.exe Deleted Trace.File.IMesh
C:\Program Files\imesh\client\unwise.ini Deleted Trace.File.IMesh
C:\WINDOWS\lbbho.ini Deleted Trace.File.IMesh
C:\WINDOWS\system32\hsenj.ocx Deleted Trace.File.IMesh
C:\Program Files\imesh\client\autoupdate.dll Deleted Trace.File.Gator
C:\WINDOWS\gatorpatch.log Deleted Trace.File.Gator
C:\WINDOWS\gatorpatch.log Deleted Trace.File.Claria.CommonComponents
C:\Program Files\myway Deleted Trace.Directory.MyWaySpeedbar
C:\WINDOWS\browserxtras\pn Deleted Trace.Directory.KaZaA
C:\Program Files\bho Deleted Trace.Directory.IntermixMedia.KeenValue
C:\Program Files\imesh Deleted Trace.Directory.IMesh
Delete
Files: 3
Traces: 66
Cookies: 1
___________________________________________________________________________
a-squared Anti-Dialer 2.1
Scan start: 18-12-2006 22:06:03
Files: 0
Scan end: 18-12-2006 22:40:19
Scan time: 0:34:16
____________________________________________________________________________
Van a-squered free heb ik alles verwijderd.
Van a-squered anti-dialer heb ik er een gevonden (iets met volume) en die heb ik(per ongeluk) in qarantine gezet.
De melding van de virusscanner (Error creating Savi Interface) heb ik sinds vanochtend
en krijg ik ook na het scannen nog steeds.
Groetjes Floske
Hier komen de rapportjes:a-squared Free - Version 2.1
Scan settings:
Objects: Memory, Traces, Cookies, C:\
Scan archives: On
Heuristics: On
ADS Scan: On
Scan start: 18-12-2006 20:56:18
C:\Program Files\imesh detected: Trace.Directory.IMesh
C:\Program Files\bho detected: Trace.Directory.IntermixMedia.KeenValue
C:\WINDOWS\browserxtras\pn detected: Trace.Directory.KaZaA
C:\Program Files\myway detected: Trace.Directory.MyWaySpeedbar
C:\WINDOWS\gatorpatch.log detected: Trace.File.Claria.CommonComponents
C:\Program Files\imesh\client\autoupdate.dll detected: Trace.File.Gator
C:\WINDOWS\gatorpatch.log detected: Trace.File.Gator
C:\Program Files\imesh\client\imeshclient.exe detected: Trace.File.IMesh
C:\Program Files\imesh\client\unwise.ini detected: Trace.File.IMesh
C:\WINDOWS\lbbho.ini detected: Trace.File.IMesh
C:\WINDOWS\system32\hsenj.ocx detected: Trace.File.IMesh
C:\WINDOWS\belt.ini detected: Trace.File.SearchV
C:\WINDOWS\system32\msrev21.dll detected: Trace.File.Suspicious
C:\WINDOWS\smdat32m.sys detected: Trace.File.Twain-Tech
C:\WINDOWS\system32\browseui.exe detected: Trace.File.WebSearchToolbar
Value: HKEY_CLASSES_ROOT\arlnk --> URL Protocol detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Height detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Left detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Maximized detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Top detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Width detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Download detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Queue detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Upload detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Data --> AresNet1 detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Data --> JI.AresNet1 detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Download detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Queue detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Upload detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> ChatRoom.ServerPort detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> ChatRoom.ShowJP detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Extra.ShowActiveCaption detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.AutoConnect detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.AutoStartUp detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.LastLibraryMode detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastChatRoomBrowse detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastLibrary detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastPMBrowse detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastSearch detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Personal.GUID detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Privacy.SendRegularPath detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> PrivateMessage.AllowBrowse detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> PrivateMessage.AwayMessage detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CAvgTime detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CDnSpeed detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CFRTime detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CTtUptime detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CUpSpeed detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.HasLQCa detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.LstCaQuery detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.LstCaQueryInt detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Transfer.MaximizeUpBandOnIdle detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Transfer.ServerPort detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run --> ares detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run --> BPS Security Console detected: Trace.Registry.BPS SpywareRemover
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/hdplugin1014.dll detected: Trace.Registry.Claria.CommonComponents
Key: HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_erssdd detected: Trace.Registry.ErrorSafe
Value: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run --> forbes detected: Trace.Registry.Forbes
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/hdplugin1014.dll detected: Trace.Registry.Gator
Key: HKEY_CURRENT_USER\software\microsoft\installer\features\10b0642b36134f8f914ea8e11ee5b503 detected: Trace.Registry.HotBar
Key: HKEY_CURRENT_USER\software\microsoft\installer\products\d493500bd4a54ea6bc805fc9cda952c5 detected: Trace.Registry.HotBar
Value: HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\shellbrowser --> {74cc49f7-eb32-4a08-b204-948962a6e3db} detected: Trace.Registry.HotBar
Key: HKEY_CLASSES_ROOT\clsid\{147a976e-eee1-4377-8ea7-4716e4cdd239} detected: Trace.Registry.MyWebSearchToobar
Key: HKEY_CLASSES_ROOT\clsid\{147a976e-eee1-4377-8ea7-4716e4cdd239} detected: Trace.Registry.MyWebSearchToolbar
Key: HKEY_CURRENT_USER\software\microsoft\systemcertificates\trustedpublisher\certificates\bd8400524261df1adbd8860f22c9ce2b97471448 detected: Trace.Registry.P2E
Key: HKEY_CURRENT_USER\software\local appwizard-generated applications\popup detected: Trace.Registry.UnclassifiedDialer
C:\Documents and Settings\Ingrid\Cookies\ingrid@stat.onestat[2].txt detected: Trace.TrackingCookie
C:\Bdienst\2003\IB2003s.exe detected: Heuristic.Dialer
C:\Program Files\SpamBlockerUtility\Bin\4.7.5.0\SbAds.dll detected: Adware.Win32.HotBar.be
C:\Program Files\SpamBlockerUtility\Bin\4.8.0.0\SbAds.dll detected: Adware.Win32.HotBar.be
Scanned
Files: 83216
Traces: 90510
Cookies: 82
Processes: 11
Found
Files: 3
Traces: 66
Cookies: 1
Processes: 0
Registry keys: 0
Scan end: 18-12-2006 21:46:23
Scan time: 0:50:05
C:\Program Files\SpamBlockerUtility\Bin\4.7.5.0\SbAds.dll Deleted Adware.Win32.HotBar.be
C:\Program Files\SpamBlockerUtility\Bin\4.8.0.0\SbAds.dll Deleted Adware.Win32.HotBar.be
C:\Bdienst\2003\IB2003s.exe Deleted Heuristic.Dialer
C:\Documents and Settings\Ingrid\Cookies\ingrid@stat.onestat[2].txt Deleted Trace.TrackingCookie
Key: HKEY_CURRENT_USER\software\local appwizard-generated applications\popup Deleted Trace.Registry.UnclassifiedDialer
Key: HKEY_CURRENT_USER\software\microsoft\systemcertificates\trustedpublisher\certificates\bd8400524261df1adbd8860f22c9ce2b97471448 Deleted Trace.Registry.P2E
Key: HKEY_CLASSES_ROOT\clsid\{147a976e-eee1-4377-8ea7-4716e4cdd239} Deleted Trace.Registry.MyWebSearchToolbar
Key: HKEY_CLASSES_ROOT\clsid\{147a976e-eee1-4377-8ea7-4716e4cdd239} Deleted Trace.Registry.MyWebSearchToobar
Key: HKEY_CURRENT_USER\software\microsoft\installer\features\10b0642b36134f8f914ea8e11ee5b503 Deleted Trace.Registry.HotBar
Key: HKEY_CURRENT_USER\software\microsoft\installer\products\d493500bd4a54ea6bc805fc9cda952c5 Deleted Trace.Registry.HotBar
Value: HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\shellbrowser --> {74cc49f7-eb32-4a08-b204-948962a6e3db} Deleted Trace.Registry.HotBar
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/hdplugin1014.dll Deleted Trace.Registry.Gator
Value: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run --> forbes Deleted Trace.Registry.Forbes
Key: HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_erssdd Deleted Trace.Registry.ErrorSafe
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/hdplugin1014.dll Deleted Trace.Registry.Claria.CommonComponents
Value: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run --> BPS Security Console Deleted Trace.Registry.BPS SpywareRemover
Value: HKEY_CLASSES_ROOT\arlnk --> URL Protocol Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Height Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Left Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Maximized Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Top Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Width Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Download Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Queue Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Upload Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Data --> AresNet1 Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Data --> JI.AresNet1 Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Download Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Queue Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Upload Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> ChatRoom.ServerPort Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> ChatRoom.ShowJP Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Extra.ShowActiveCaption Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.AutoConnect Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.AutoStartUp Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.LastLibraryMode Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastChatRoomBrowse Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastLibrary Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastPMBrowse Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastSearch Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Personal.GUID Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Privacy.SendRegularPath Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> PrivateMessage.AllowBrowse Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> PrivateMessage.AwayMessage Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CAvgTime Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CDnSpeed Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CFRTime Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CTtUptime Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CUpSpeed Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.HasLQCa Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.LstCaQuery Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.LstCaQueryInt Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Transfer.MaximizeUpBandOnIdle Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Transfer.ServerPort Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run --> ares Deleted Trace.Registry.Ares
C:\WINDOWS\system32\browseui.exe Deleted Trace.File.WebSearchToolbar
C:\WINDOWS\smdat32m.sys Deleted Trace.File.Twain-Tech
C:\WINDOWS\system32\msrev21.dll Deleted Trace.File.Suspicious
C:\WINDOWS\belt.ini Deleted Trace.File.SearchV
C:\Program Files\imesh\client\imeshclient.exe Deleted Trace.File.IMesh
C:\Program Files\imesh\client\unwise.ini Deleted Trace.File.IMesh
C:\WINDOWS\lbbho.ini Deleted Trace.File.IMesh
C:\WINDOWS\system32\hsenj.ocx Deleted Trace.File.IMesh
C:\Program Files\imesh\client\autoupdate.dll Deleted Trace.File.Gator
C:\WINDOWS\gatorpatch.log Deleted Trace.File.Gator
C:\WINDOWS\gatorpatch.log Deleted Trace.File.Claria.CommonComponents
C:\Program Files\myway Deleted Trace.Directory.MyWaySpeedbar
C:\WINDOWS\browserxtras\pn Deleted Trace.Directory.KaZaA
C:\Program Files\bho Deleted Trace.Directory.IntermixMedia.KeenValue
C:\Program Files\imesh Deleted Trace.Directory.IMesh
Delete
Files: 3
Traces: 66
Cookies: 1
___________________________________________________________________________
a-squared Anti-Dialer 2.1
Scan start: 18-12-2006 22:06:03
Files: 0
Scan end: 18-12-2006 22:40:19
Scan time: 0:34:16
____________________________________________________________________________
Van a-squered free heb ik alles verwijderd.
Van a-squered anti-dialer heb ik er een gevonden (iets met volume) en die heb ik(per ongeluk) in qarantine gezet.
De melding van de virusscanner (Error creating Savi Interface) heb ik sinds vanochtend
en krijg ik ook na het scannen nog steeds.
Groetjes Floske