View Full Version : Iopus and Wincontrol
Got those two detections immediately after updating and running a scan with SBS&D ust a few minutes ago. Bug report sent. Pete
You're quite welcome, tashi.
Full, updated-definition scans with TrojanHunter, NOD32 and SpyCop came up clean, BTW. Pete
LonnyRJones
2006-05-27, 10:20
Im seeing Iopus also
Iopus: Settings (Registry key, nothing done)
HKEY_LOCAL_MACHINE\SOFTWARE\The Silicon Realms Toolworks
--- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---
updated
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\The Silicon Realms Toolworks]
[HKEY_LOCAL_MACHINE\SOFTWARE\The Silicon Realms Toolworks\Armadillo]
"{0F943452EDEBA2F7C}"=hex:bb,75,77,39,04,ae,ef,5e,7f,68,ef,02,ed,f6,0e,26,86,\
72,93,8c,94
http://www.wilderssecurity.com/showthread.php?p=759179#post759179 is where I posted my screenshots (this forum doesn't accept jpeg's for some reason).
Think we've got some kind of software on both our machines that's triggering this? The only thing I've installed lately that's new was Symantec's PartitionMagic. (I also d/l'ed - but have not yet installed - the latest Tor "vidalia bundle).
Either of those common to your machine? Pete
I got the same F/Ps and they are definitely F/Ps.
Iopus: Settings (Registry key, nothing done)
HKEY_LOCAL_MACHINE\SOFTWARE\The Silicon Realms Toolworks
Wincontrol: Uninstall settings (Registry key, nothing done)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ST6UNST #1
I actually have 3 of these ST6UNST #1 ST6UNST #2 ST6UNST #3...all legit wares.
Hello,
Both entrys (Iopus and Wincontrol) are F/Ps and will be removed from our beta detection.
Thank you for your help!
Markus :bigthumb:
(this forum doesn't accept jpeg's for some reason).
jpeg attachments are intentionally disabled for the moment, sorry. ;)
The last Update from 26.5.06 is safe to be download now ,or not yet.
Hello.
What do you mean by safe? :p
Apprantly there is a false postive which will be fixed in the next update. (usually friday)
Cheers. :)
The last Update from 26.5.06 is safe to be download now ,or not yet.
the false positives reported in this thread are part of the beta detection which is usually released at the same time as the official dectection update.
by default spybot only downloads the official detectioin updates, beta detection is optional, so if you have not changed this, you will not encounter the mentioned false positives in the iopus and wincontrol detections.
@Yodama,
Thanks for explanation m'8.
Still didn't d/loaded update from 26/05 so no "false positives".
Please explain what is the settings to d/load only official detection update.
Thanks :D
md usa spybot fan
2006-05-30, 21:27
morog:
If you go into Spybot > Mode > Advanced mode > Settings > Settings > 2/3 of the way down the options tree there is a group of option settings titled "Web update":
Web update
□ Search the web for new versions at each program start.
□ Download updated include files if available online.
□ Remind me to look for updates at program start.
□ Display available beta versions.
□ Display updates for other languages.
□ Display new and updated skins.
□ Display PGP signature updates.
□ Use proxy to connect to update server.
The presentation (or exclusion) of the βDetection rules (beta) for downloading during the update process is controlled by the setting of the "Display available beta versions" option. The beta detections rules are only displayed for downloading if the "Display available beta versions" option is checked and it is not checked by default.
jamescooper
2006-08-29, 00:48
md usa spybot fan, thanks a lot for the explanation http://images.myspacetweaker.net/pics/thumbsup.gif
I was just looking for it