Results 1 to 4 of 4

Thread: Nearly infected while immunizing

  1. #1
    Junior Member
    Join Date
    May 2006
    Posts
    10

    Default Nearly infected while immunizing

    Today while updating Spybot and immunizing, Spybot requested to make changes to my registry and to add a BHO.

    Assuming it was safe, I permitted. But then Spysweeper alerted me that Spybot was attempting to install spyaxe.exe and suggested that I deny the installation which I did.

    Has this happened to anyone else?

  2. #2
    Senior Member
    Join Date
    Oct 2005
    Location
    Germany
    Posts
    5,263

    Default

    Hello,

    That sounds to me like SpySweeper alerts the immunization of Spybot.
    We add sites to the restricted zones to block them.
    Some softwares interfer this like Microsoft AntiSpyware and probably SpySweeper.

    Best regards
    Sandra
    Team Spybot

  3. #3
    Spybot Advisor Team [Retired] md usa spybot fan's Avatar
    Join Date
    Oct 2005
    Posts
    5,859

    Default

    Spybot's immunization does not add BHO's and SpySweaper falsely identifies some of Spybot's immunization (as well as some of SpywareBlaster's protection) as threats. See:

    Getting an answer is one thing, learning is another.


    Microsoft Windows XP Home Edition running on a 2.40GHz IntelŪ PentiumŪ 4 Processor with 512 MB of RAM and a 533 MHz System Bus.

  4. #4
    Esteemed Member
    Join Date
    Oct 2005
    Posts
    554

    Default

    At some point during the Spybot update process the SDHelper.dll Browser Helper Object (BHO) is re-initialized. To another program which is monitoring for BHO changes this would appear to remove and then add a BHO.

    The Spybot Immunize process performs a semi-automated (usually initiated manually by the user) mass addition of items of 'protection' to multiple sections of the registry. Since the real-time monitoring of several antimalware products, including Spybot's own Teatimer, watch these same registry areas for potential additions by malware, this type of problem can result. In this case, SpySweeper is performing its intended function of blocking the 'abnormal' addition of registry entries by a program, rather than a user performing individual entries via the 'Internet Options' dialog as was originally designed and intended.

    I've seen many discussions relating to this problem filled with finger pointing and statements of who's right and who's wrong. The real problem is that the user is caught in the middle of a battle of competing antimalware applications, can't understand what's happening and simply wants it to work.

    I'm not going to argue that either side is really 'correct' in this case. I'll simply point out that the frustration created by these 'conflicts' is causing all but the most technically knowledgeable users to move to complete suites of protection which are designed to work together and avoid such conflicts.

    Though there are negatives to this homogeneous approach to protection, the confusion of conflicting antimalware for an average user is actually worse, since it reduces the comfort level with both applications. Unless those organizations producing individual antimalware applications find a way to standardize or modularize their protection, they're simply going to perform the function of killing each other off.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •