PDA

View Full Version : Funwebproduct !?



SnakeDoc
2008-10-19, 02:40
Hey! sorry if im a little slow when coming to these things im a little new... I havnt had any problems like this before, I use AVG for anti-viral - ad adaware and spybot S&D... spybot was the only thing which located this product, im on vista 64bit ultimate and i dont want to do anything until i have this cleared, before we start i accidently deleted an .sbi folder within HKEY_CLASSES_ROOT/.sbi -- i really hope this is not important!

Anyway all the anti programs are fully upto date and the log for S&D is as follows;


--- Search result list ---
Hint of the Day: Click the bar at the right of this to see more information! ()


FunWebProducts: [SBI $7AEE25A5] Class ID (Registry key, fixing failed)
HKEY_CLASSES_ROOT\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}


--- Spybot - Search & Destroy version: 1.6.0 (build: 20080707) ---

2008-07-07 blindman.exe (1.0.0.8)
2008-07-07 SDFiles.exe (1.6.0.4)
2008-07-07 SDMain.exe (1.0.0.6)
2008-07-07 SDShred.exe (1.0.2.3)
2008-07-07 SDUpdate.exe (1.6.0.8)
2008-07-07 SDWinSec.exe (1.0.0.12)
2008-07-07 SpybotSD.exe (1.6.0.30)
2008-09-16 TeaTimer.exe (1.6.3.25)
2008-10-15 unins000.exe (51.49.0.0)
2008-07-07 Update.exe (1.6.0.7)
2008-07-07 advcheck.dll (1.6.1.12)
2007-04-02 aports.dll (2.1.0.0)
2008-06-14 DelZip179.dll (1.79.11.1)
2008-09-15 SDHelper.dll (1.6.2.14)
2008-06-19 sqlite3.dll
2008-07-07 Tools.dll (2.1.5.7)
2008-09-02 Includes\Adware.sbi (*)
2008-10-14 Includes\AdwareC.sbi (*)
2008-06-03 Includes\Cookies.sbi (*)
2008-09-02 Includes\Dialer.sbi (*)
2008-09-09 Includes\DialerC.sbi (*)
2008-07-23 Includes\HeavyDuty.sbi (*)
2008-09-02 Includes\Hijackers.sbi (*)
2008-10-07 Includes\HijackersC.sbi (*)
2008-09-09 Includes\Keyloggers.sbi (*)
2008-10-14 Includes\KeyloggersC.sbi (*)
2004-11-29 Includes\LSP.sbi (*)
2008-10-08 Includes\Malware.sbi (*)
2008-10-14 Includes\MalwareC.sbi (*)
2008-09-02 Includes\PUPS.sbi (*)
2008-10-14 Includes\PUPSC.sbi (*)
2007-11-07 Includes\Revision.sbi (*)
2008-06-18 Includes\Security.sbi (*)
2008-09-30 Includes\SecurityC.sbi (*)
2008-06-03 Includes\Spybots.sbi (*)
2008-06-03 Includes\SpybotsC.sbi (*)
2008-09-09 Includes\Spyware.sbi (*)
2008-10-14 Includes\SpywareC.sbi (*)
2008-06-03 Includes\Tracks.uti
2008-10-15 Includes\Trojans.sbi (*)
2008-10-14 Includes\TrojansC.sbi (*)
2008-03-04 Plugins\Chai.dll
2008-03-05 Plugins\Fennel.dll
2008-02-26 Plugins\Mate.dll
2007-12-24 Plugins\TCPIPAddress.dll



--- System information ---
Windows Vista (Build: 6001) Service Pack 1 (6.0.6001)


PLEASE HELP! :sad:

SnakeDoc
2008-10-19, 02:51
just cutting and adding further info - as cant fit in whole report info (middle section)
--- Startup entries list ---
Located: HK_LM:Run, ATICustomerCare
Located: HK_LM:Run, AVG8_TRAY
Located: HK_LM:Run, Diamondback
Located: HK_LM:Run, Reclusa
Located: HK_LM:Run, StartCCC
Located: HK_LM:Run, SunJavaUpdateSched
Located: HK_LM:Run, WinampAgent
Located: HK_CU:Run, MsnMsgr
Located: HK_CU:Run, SpybotSD TeaTimer



--- Process list ---
PID: 0 ( 0) [System]
PID: 528 (1708) C:\Windows\SysWOW64\rundll32.exe
size: 44544
MD5: 4B555106290BD117334E9A08761C035A
PID: 532 (1708) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
size: 5724184
MD5: A8972A2F9A744DD5EE0BFE429D767F1C
PID: 2024 (1708) C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
size: 1833296
MD5: 63B3FF83B87AFCEBA89CED54695DA0F6
PID: 2116 (1864) C:\Program Files (x86)\Razer\Diamondback\razerhid.exe
size: 147456
MD5: 046B05F3FA9CF3CA9151D25BEFE8E0D8
PID: 2124 (1864) C:\Program Files (x86)\Razer\Reclusa\razerhid.exe
size: 167936
MD5: 3208A5B6157D0D4EE0117B99AAF28A68
PID: 2136 (1864) C:\Program Files (x86)\Java\jre1.6.0_07\bin\jusched.exe
size: 144784
MD5: 6AB4C021FBD36DC6764924C312428D97
PID: 2180 (1864) C:\Program Files (x86)\AVG\AVG8\avgtray.exe
size: 1234712
MD5: 84A91D110D27B11713C349523F4EA47F
PID: 2188 (1864) C:\Program Files (x86)\Winamp\winampa.exe
size: 36352
MD5: E7DEADB409CD8A4552C91ABF624F138F
PID: 2384 (2116) C:\Program Files (x86)\Razer\Diamondback\razerofa.exe
size: 163840
MD5: 594E9C4D98BBA6B88359696259719FAB
PID: 4008 (1708) C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
size: 4891472
MD5: 3B1B5D09D3C9C4CD39D4DB06ED7A0855
PID: 3776 (1708) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
size: 307712
MD5: A6D64056AD6CA84534143757FD782D7A
PID: 4 ( 0) System
PID: 480 ( 4) smss.exe
PID: 552 ( 540) csrss.exe
PID: 600 ( 540) wininit.exe
size: 96768
PID: 620 ( 612) csrss.exe
PID: 652 ( 600) services.exe
size: 279040
PID: 664 ( 600) lsass.exe
PID: 676 ( 600) lsm.exe
size: 229888
PID: 772 ( 612) winlogon.exe
size: 314880
PID: 848 ( 652) svchost.exe
size: 21504
PID: 908 ( 652) svchost.exe
size: 21504
PID: 952 ( 652) svchost.exe
size: 21504
PID: 1012 ( 652) Ati2evxx.exe
PID: 320 ( 652) svchost.exe
size: 21504
PID: 416 ( 652) svchost.exe
size: 21504
PID: 492 ( 652) svchost.exe
size: 21504
PID: 980 ( 320) audiodg.exe
size: 88064
PID: 1060 ( 652) svchost.exe
size: 21504
PID: 1108 ( 652) SLsvc.exe
PID: 1140 ( 652) svchost.exe
size: 21504
PID: 1312 (1012) Ati2evxx.exe
PID: 1324 ( 652) svchost.exe
size: 21504
PID: 1676 ( 416) C:\Windows\System32\dwm.exe
PID: 1828 ( 652) spoolsv.exe
PID: 1836 ( 492) C:\Windows\System32\taskeng.exe
size: 169472
MD5: 5F109032CE46B7184ED9E50F9FE8489E
PID: 1872 ( 652) svchost.exe
size: 21504
PID: 2008 ( 492) taskeng.exe
size: 169472
PID: 1348 (2008) aaCenter.exe
PID: 1448 (1708) C:\Program Files\Windows Defender\MSASCui.exe
size: 1584184
MD5: 48DD40677817CE1053C2315F5A87E0D3
PID: 2164 (2148) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
size: 49152
MD5: E681281D9BFC9D45D3B72532717E5880
PID: 2256 ( 492) taskeng.exe
size: 169472
PID: 2560 ( 652) avgwdsvc.exe
PID: 2628 ( 652) PnkBstrA.exe
size: 66872
PID: 2688 ( 652) svchost.exe
size: 21504
PID: 2860 ( 652) svchost.exe
size: 21504
PID: 2936 ( 652) svchost.exe
size: 21504
PID: 3020 ( 652) SearchIndexer.exe
size: 439808
PID: 384 (2164) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
size: 49152
MD5: 25CA1677AAA3CDC99CD4FCF940886F3C
PID: 836 (2560) avgrsa.exe
PID: 2036 ( 652) avgemc.exe
PID: 2988 ( 652) svchost.exe
size: 21504
PID: 260 ( 652) aawservice.exe
PID: 1068 (1084) Ad-Aware.exe
PID: 1660 ( 772) C:\Windows\explorer.exe
size: 3080704
MD5: F6D765FB6B457542D954682F50C26E4F
PID: 3140 (4008) regedit.exe
size: 134656
PID: 3512 ( 492) taskeng.exe
size: 169472

Yodama
2008-10-21, 11:27
hello,

please use the registry editor and export this registry key:
HKEY_CLASSES_ROOT\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}

and email it to detections@spybot.info with a reference to this thread.