PDA

View Full Version : Banload.Terra.scr



poindexter
2007-05-04, 12:59
I'm using Window Vista Home Premium and the latest scan with Spybot(updated) result me:

http://img81.imageshack.us/img81/4989/alertall6.jpg

http://img132.imageshack.us/img132/1994/alerta1qf4.jpg

Is it a false-positive or not? The Antivir does not alert me when scanning the 'infected' folders in Fx.

Thanx!!

tashi
2007-05-04, 16:27
Hello.

Please produce a short log

Open SpyBot.
Check for problems.
When finished, right click and choose copy results (not the full report) to clipboard and post that into topic.

tashi
2007-05-04, 18:56
Reported by another user:


treewalk (www.treewalkdns.com) is installed
under the following path

%SystemRoot%\System32\dns

binaries are under "bin" and config files into
"etc" and btw the exe name is "named.exe"
at any rate, here's the popup I see when I
try to start the TW service; right after I run

net start twdns

SpyBot pops up the attached request

poindexter
2007-05-04, 20:06
Hi Tashi!

The results:

Banload.Terra.Scr: Cookie de rastreamento (Firefox: default) (Cookie, nothing done)

Banload.Terra.Scr: Cookie de rastreamento (Firefox: default) (Cookie, nothing done)

Banload.Terra.Scr: Favorito (Firefox: default) (Bookmark, nothing done)


--- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

2005-05-31 blindman.exe (1.0.0.1)
2005-05-31 SpybotSD.exe (1.4.0.3)
2005-05-31 TeaTimer.exe (1.4.0.2)
2007-03-02 unins000.exe (51.41.0.0)
2005-05-31 Update.exe (1.4.0.0)
2007-04-18 advcheck.dll (1.5.1.0)
2005-05-31 aports.dll (2.1.0.0)
2005-05-31 borlndmm.dll (7.0.4.453)
2005-05-31 delphimm.dll (7.0.4.453)
2005-05-31 SDHelper.dll (1.4.0.0)
2007-01-02 Tools.dll (2.0.1.0)
2005-05-31 UnzDll.dll (1.73.1.1)
2005-05-31 ZipDll.dll (1.73.2.0)
2007-05-02 Includes\Cookies.sbi (*)
2006-12-08 Includes\Dialer.sbi (*)
2007-05-02 Includes\DialerC.sbi (*)
2007-04-04 Includes\Hijackers.sbi (*)
2007-05-02 Includes\HijackersC.sbi (*)
2006-10-27 Includes\Keyloggers.sbi (*)
2007-05-02 Includes\KeyloggersC.sbi (*)
2007-03-21 Includes\Malware.sbi (*)
2007-05-02 Includes\MalwareC.sbi (*)
2007-03-21 Includes\PUPS.sbi (*)
2007-05-02 Includes\PUPSC.sbi (*)
2007-05-02 Includes\Revision.sbi (*)
2006-12-08 Includes\Security.sbi (*)
2007-05-02 Includes\SecurityC.sbi (*)
2007-03-21 Includes\Spybots.sbi (*)
2007-05-02 Includes\SpybotsC.sbi (*)
2005-02-17 Includes\Tracks.uti
2007-05-02 Includes\Trojans.sbi (*)
2007-05-02 Includes\TrojansC.sbi (*)

Yodama
2007-05-07, 08:35
hello,

please ignore the found cookies and favorite, it is a false positive and will be corrected with the next update.


@Tashi
about the named.exe it is most likely a false positive in the beta.sbi , corrections should also be effective with the next update.

Kavu2
2007-05-07, 17:28
Hello...I also got the Banload.Terra.scr bookmark and cookie red flags from SpyBot. Thanks, Yodama for the quick report on its status turning out to be False Postive.

And while I'm here, I want to thank Patrick and all the SpyBot mods for their many services here, it's much appreciated. I swing by the forum here everyday just to check for any new threats/news and I almost never have anything to post or worry them with, so I wanted to take this opportunity to thank the crew here for a great product and great service. This is one security product I know I can always count on :-)

Kavu2

tashi
2007-05-07, 18:35
Thank you Kavu2. :greeting:

@Yodama, cheers.

poindexter
2007-05-08, 16:14
hello,

please ignore the found cookies and favorite, it is a false positive and will be corrected with the next update.

Ok, Yodama.
Thanks for your support.