Wie kent 'Dial/Switch-B'

Status
Niet open voor verdere reacties.
Hoi Michael,

Hier komen de rapportjes:a-squared Free - Version 2.1

Scan settings:

Objects: Memory, Traces, Cookies, C:\
Scan archives: On
Heuristics: On
ADS Scan: On

Scan start: 18-12-2006 20:56:18

C:\Program Files\imesh detected: Trace.Directory.IMesh
C:\Program Files\bho detected: Trace.Directory.IntermixMedia.KeenValue
C:\WINDOWS\browserxtras\pn detected: Trace.Directory.KaZaA
C:\Program Files\myway detected: Trace.Directory.MyWaySpeedbar
C:\WINDOWS\gatorpatch.log detected: Trace.File.Claria.CommonComponents
C:\Program Files\imesh\client\autoupdate.dll detected: Trace.File.Gator
C:\WINDOWS\gatorpatch.log detected: Trace.File.Gator
C:\Program Files\imesh\client\imeshclient.exe detected: Trace.File.IMesh
C:\Program Files\imesh\client\unwise.ini detected: Trace.File.IMesh
C:\WINDOWS\lbbho.ini detected: Trace.File.IMesh
C:\WINDOWS\system32\hsenj.ocx detected: Trace.File.IMesh
C:\WINDOWS\belt.ini detected: Trace.File.SearchV
C:\WINDOWS\system32\msrev21.dll detected: Trace.File.Suspicious
C:\WINDOWS\smdat32m.sys detected: Trace.File.Twain-Tech
C:\WINDOWS\system32\browseui.exe detected: Trace.File.WebSearchToolbar
Value: HKEY_CLASSES_ROOT\arlnk --> URL Protocol detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Height detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Left detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Maximized detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Top detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Width detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Download detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Queue detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Upload detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Data --> AresNet1 detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Data --> JI.AresNet1 detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Download detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Queue detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Upload detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> ChatRoom.ServerPort detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> ChatRoom.ShowJP detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Extra.ShowActiveCaption detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.AutoConnect detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.AutoStartUp detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.LastLibraryMode detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastChatRoomBrowse detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastLibrary detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastPMBrowse detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastSearch detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Personal.GUID detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Privacy.SendRegularPath detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> PrivateMessage.AllowBrowse detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> PrivateMessage.AwayMessage detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CAvgTime detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CDnSpeed detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CFRTime detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CTtUptime detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CUpSpeed detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.HasLQCa detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.LstCaQuery detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.LstCaQueryInt detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Transfer.MaximizeUpBandOnIdle detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Transfer.ServerPort detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run --> ares detected: Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run --> BPS Security Console detected: Trace.Registry.BPS SpywareRemover
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/hdplugin1014.dll detected: Trace.Registry.Claria.CommonComponents
Key: HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_erssdd detected: Trace.Registry.ErrorSafe
Value: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run --> forbes detected: Trace.Registry.Forbes
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/hdplugin1014.dll detected: Trace.Registry.Gator
Key: HKEY_CURRENT_USER\software\microsoft\installer\features\10b0642b36134f8f914ea8e11ee5b503 detected: Trace.Registry.HotBar
Key: HKEY_CURRENT_USER\software\microsoft\installer\products\d493500bd4a54ea6bc805fc9cda952c5 detected: Trace.Registry.HotBar
Value: HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\shellbrowser --> {74cc49f7-eb32-4a08-b204-948962a6e3db} detected: Trace.Registry.HotBar
Key: HKEY_CLASSES_ROOT\clsid\{147a976e-eee1-4377-8ea7-4716e4cdd239} detected: Trace.Registry.MyWebSearchToobar
Key: HKEY_CLASSES_ROOT\clsid\{147a976e-eee1-4377-8ea7-4716e4cdd239} detected: Trace.Registry.MyWebSearchToolbar
Key: HKEY_CURRENT_USER\software\microsoft\systemcertificates\trustedpublisher\certificates\bd8400524261df1adbd8860f22c9ce2b97471448 detected: Trace.Registry.P2E
Key: HKEY_CURRENT_USER\software\local appwizard-generated applications\popup detected: Trace.Registry.UnclassifiedDialer
C:\Documents and Settings\Ingrid\Cookies\ingrid@stat.onestat[2].txt detected: Trace.TrackingCookie
C:\Bdienst\2003\IB2003s.exe detected: Heuristic.Dialer
C:\Program Files\SpamBlockerUtility\Bin\4.7.5.0\SbAds.dll detected: Adware.Win32.HotBar.be
C:\Program Files\SpamBlockerUtility\Bin\4.8.0.0\SbAds.dll detected: Adware.Win32.HotBar.be

Scanned

Files: 83216
Traces: 90510
Cookies: 82
Processes: 11

Found

Files: 3
Traces: 66
Cookies: 1
Processes: 0
Registry keys: 0

Scan end: 18-12-2006 21:46:23
Scan time: 0:50:05

C:\Program Files\SpamBlockerUtility\Bin\4.7.5.0\SbAds.dll Deleted Adware.Win32.HotBar.be
C:\Program Files\SpamBlockerUtility\Bin\4.8.0.0\SbAds.dll Deleted Adware.Win32.HotBar.be
C:\Bdienst\2003\IB2003s.exe Deleted Heuristic.Dialer
C:\Documents and Settings\Ingrid\Cookies\ingrid@stat.onestat[2].txt Deleted Trace.TrackingCookie
Key: HKEY_CURRENT_USER\software\local appwizard-generated applications\popup Deleted Trace.Registry.UnclassifiedDialer
Key: HKEY_CURRENT_USER\software\microsoft\systemcertificates\trustedpublisher\certificates\bd8400524261df1adbd8860f22c9ce2b97471448 Deleted Trace.Registry.P2E
Key: HKEY_CLASSES_ROOT\clsid\{147a976e-eee1-4377-8ea7-4716e4cdd239} Deleted Trace.Registry.MyWebSearchToolbar
Key: HKEY_CLASSES_ROOT\clsid\{147a976e-eee1-4377-8ea7-4716e4cdd239} Deleted Trace.Registry.MyWebSearchToobar
Key: HKEY_CURRENT_USER\software\microsoft\installer\features\10b0642b36134f8f914ea8e11ee5b503 Deleted Trace.Registry.HotBar
Key: HKEY_CURRENT_USER\software\microsoft\installer\products\d493500bd4a54ea6bc805fc9cda952c5 Deleted Trace.Registry.HotBar
Value: HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\shellbrowser --> {74cc49f7-eb32-4a08-b204-948962a6e3db} Deleted Trace.Registry.HotBar
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/hdplugin1014.dll Deleted Trace.Registry.Gator
Value: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run --> forbes Deleted Trace.Registry.Forbes
Key: HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_erssdd Deleted Trace.Registry.ErrorSafe
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/hdplugin1014.dll Deleted Trace.Registry.Claria.CommonComponents
Value: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run --> BPS Security Console Deleted Trace.Registry.BPS SpywareRemover
Value: HKEY_CLASSES_ROOT\arlnk --> URL Protocol Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Height Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Left Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Maximized Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Top Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\bounds --> Main.Width Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Download Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Queue Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Columns\Transfers --> Upload Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Data --> AresNet1 Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Data --> JI.AresNet1 Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Download Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Queue Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares\Positions\Transfers --> Upload Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> ChatRoom.ServerPort Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> ChatRoom.ShowJP Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Extra.ShowActiveCaption Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.AutoConnect Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.AutoStartUp Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> General.LastLibraryMode Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastChatRoomBrowse Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastLibrary Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastPMBrowse Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> GUI.LastSearch Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Personal.GUID Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Privacy.SendRegularPath Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> PrivateMessage.AllowBrowse Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> PrivateMessage.AwayMessage Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CAvgTime Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CDnSpeed Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CFRTime Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CTtUptime Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.CUpSpeed Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.HasLQCa Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.LstCaQuery Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Stats.LstCaQueryInt Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Transfer.MaximizeUpBandOnIdle Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\Software\Ares --> Transfer.ServerPort Deleted Trace.Registry.Ares
Value: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run --> ares Deleted Trace.Registry.Ares
C:\WINDOWS\system32\browseui.exe Deleted Trace.File.WebSearchToolbar
C:\WINDOWS\smdat32m.sys Deleted Trace.File.Twain-Tech
C:\WINDOWS\system32\msrev21.dll Deleted Trace.File.Suspicious
C:\WINDOWS\belt.ini Deleted Trace.File.SearchV
C:\Program Files\imesh\client\imeshclient.exe Deleted Trace.File.IMesh
C:\Program Files\imesh\client\unwise.ini Deleted Trace.File.IMesh
C:\WINDOWS\lbbho.ini Deleted Trace.File.IMesh
C:\WINDOWS\system32\hsenj.ocx Deleted Trace.File.IMesh
C:\Program Files\imesh\client\autoupdate.dll Deleted Trace.File.Gator
C:\WINDOWS\gatorpatch.log Deleted Trace.File.Gator
C:\WINDOWS\gatorpatch.log Deleted Trace.File.Claria.CommonComponents
C:\Program Files\myway Deleted Trace.Directory.MyWaySpeedbar
C:\WINDOWS\browserxtras\pn Deleted Trace.Directory.KaZaA
C:\Program Files\bho Deleted Trace.Directory.IntermixMedia.KeenValue
C:\Program Files\imesh Deleted Trace.Directory.IMesh

Delete

Files: 3
Traces: 66
Cookies: 1

___________________________________________________________________________


a-squared Anti-Dialer 2.1


Scan start: 18-12-2006 22:06:03



Files: 0

Scan end: 18-12-2006 22:40:19
Scan time: 0:34:16
____________________________________________________________________________

Van a-squered free heb ik alles verwijderd.

Van a-squered anti-dialer heb ik er een gevonden (iets met volume) en die heb ik(per ongeluk) in qarantine gezet.

De melding van de virusscanner (Error creating Savi Interface) heb ik sinds vanochtend
en krijg ik ook na het scannen nog steeds.

Groetjes Floske
 
Ben een beetje geschrokken over de dingen die ik las over:
"Error creating Savi Interface" en dat het op de een of andere manier met
de virusscanner van HOME verbonden zou kunnen zijn.

Ik heb de HOME virusscanner gedeinstaleerd en AVG virusscanner
geinstaleerd.
Ik krijg de melding nu niet meer maar ik houd je op de hoogte.

Als ik nog vragen heb moet ik het dan hieronder posten of een
nieuw topic openen?

Groetjes Floske
 
Voor vragen over anti-virus enz. kan je hier onder plaatsen, andere hele nieuwe in een nieuw topic.
Maar, hoe staat het met je probleem dat je had?
Die worm en dialer ben je nu kwijt!:thumb: Is er nog wat als probleem want anders lijkt mij deze vraag opgelost!:thumb: ?
 
Deze vraag is dankzij jou hartstikke opgelost.:thumb:

Ik weet niet hoe ik je moet bedanken, ik leer hier zoveel van
en ben een stuk minder afhankelijk van mensen of ze me even
willen helpen.

Morgen krijg ik mijn nieuwe computer en ben er nu helemaal
klaar voor.

Even iets anders ik heb intussen behoorlijk wat anti-vanalles software
op de computer staan:

AVG (virusscanner)
Zone labs (firewall?)
Hitman Pro
Lava Soft Adaware
AVG antispyware
a-Squered Anti-Dialer
a-Squered Free
Spyware Blaster


-wat moet eraf en wat moet blijven?
-wat up-date automatisch en wat moet ik zelf up-daten?
-HITMAN PRO staat er ook nog op, het liefst zou ik hem eraf willen maar wat neem ik hier voor in de plaats?
 
Je mag me bedanken door de vraag rechtsonder op Vraag is opgelost te zetten ( als je ingelogd bent ).

En over het rijtje:

Hitman Pro eraf halen via Start --> Configuratiescherm --> Software.
Hitman Pro heeft diverse programma's in zich.

Verder mag de rest erop blijven.
Verder is je rijtje prima, goede beveiliging, vergeet niet af en toe te scannen met de verschillende programma's!:thumb:

AVG Anti-Virus heeft een automatische updates-functie, deze moet natuurlijk wel aan staan.
ZoneAlarm is inderdaad je firewall, en heeft dat ook.
AVG Anti-Spyware heeft het ook, als je het aan hebt staan.
De rest is mogelijk, maar soms moet je voor die functie betalen, zoals bij Spywareblaster.
Bij de rest is het verder heel makkelijk te updaten, elk programma heeft zo'n update-functie.
 
Status
Niet open voor verdere reacties.
Terug
Bovenaan Onderaan