--- Spybot - Search & Destroy version: 1.4 (build: 20050523) --- 2005-05-31 blindman.exe (1.0.0.1) 2005-05-31 SpybotSD.exe (1.4.0.3) 2005-05-31 TeaTimer.exe (1.4.0.2) 2006-01-31 unins000.exe (51.41.0.0) 2005-05-31 Update.exe (1.4.0.0) 2007-04-18 advcheck.dll (1.5.1.0) 2005-05-31 aports.dll (2.1.0.0) 2005-05-31 borlndmm.dll (7.0.4.453) 2005-05-31 delphimm.dll (7.0.4.453) 2005-05-31 SDHelper.dll (1.4.0.0) 2007-01-02 Tools.dll (2.0.1.0) 2005-05-31 UnzDll.dll (1.73.1.1) 2005-05-31 ZipDll.dll (1.73.2.0) 2007-04-25 Includes\Cookies.sbi 2006-12-08 Includes\Dialer.sbi 2007-04-25 Includes\DialerC.sbi 2007-04-04 Includes\Hijackers.sbi 2007-04-25 Includes\HijackersC.sbi 2006-10-27 Includes\Keyloggers.sbi 2007-04-25 Includes\KeyloggersC.sbi 2004-11-29 Includes\LSP.sbi 2007-03-21 Includes\Malware.sbi 2007-04-25 Includes\MalwareC.sbi 2007-03-21 Includes\PUPS.sbi 2007-04-25 Includes\PUPSC.sbi 2007-04-25 Includes\Revision.sbi 2006-12-08 Includes\Security.sbi 2007-04-25 Includes\SecurityC.sbi 2007-03-21 Includes\Spybots.sbi 2007-04-25 Includes\SpybotsC.sbi 2005-02-17 Includes\Tracks.uti 2007-04-25 Includes\Trojans.sbi 2007-04-25 Includes\TrojansC.sbi {00A6FAF1-072E-44cf-8957-5838F569A31D} (MyWebSearch Search Assistant BHO) BHO name: MyWebSearch Search Assistant BHO CLSID name: MyWebSearch Search Assistant BHO description: MyWebSearch classification: Confirmed as malware known filename: MWSSRCAS.DLL info link: http://www.doxdesk.com/parasite/MySearch.html info source: Path: C:\Program Files\MyWebSearch\SrchAstt\3.bin\ Long name: MWSSRCAS.DLL Short name: Date (created): 2/12/2007 1:19:20 PM Date (last access): 4/30/2007 9:46:32 PM Date (last write): 2/12/2007 1:19:20 PM Filesize: 57344 Attributes: archive MD5: 0B5BE129EA571FE9597189CDE54C02D7 CRC32: 89ADBA2A Version: 1.0.2.3 {02478D38-C3F9-4EFB-9B51-7695ECA05670} (Yahoo! Toolbar Helper) BHO name: CLSID name: Yahoo! Toolbar Helper description: Yahoo Companion! classification: Legitimate known filename: Ycomp*_*_*_*.dll info link: http://companion.yahoo.com/ info source: TonyKlein Path: C:\Program Files\Yahoo!\Companion\Installs\cpn\ Long name: yt.dll Short name: Date (created): 3/17/2006 9:53:02 AM Date (last access): 4/30/2007 9:46:32 PM Date (last write): 1/5/2006 1:30:40 PM Filesize: 399352 Attributes: archive MD5: 8BBB9FEEC360F11867B28059B5360843 CRC32: 12033757 Version: 2005.11.4.1 {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (AcroIEHlprObj Class) BHO name: CLSID name: AcroIEHlprObj Class description: Adobe Acrobat reader classification: Legitimate known filename: AcroIEhelper.ocx
AcroIEhelper.dll info link: http://www.adobe.com/products/acrobat/readstep2.html info source: TonyKlein Path: C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\ Long name: AcroIEHelper.ocx Short name: ACROIE~1.OCX Date (created): 9/16/2005 12:58:52 PM Date (last access): 4/30/2007 9:46:32 PM Date (last write): 4/16/2001 4:39:02 PM Filesize: 37808 Attributes: MD5: 8394ABFC1BE196A62C9F532511936DF7 CRC32: 71D6E350 Version: 1.0.0.1 {07B18EA1-A523-4961-B6BB-170DE4475CCA} (mwsBar BHO) BHO name: mwsBar BHO CLSID name: mwsBar BHO description: MyWebSearch classification: Confirmed as malware known filename: Mwsbar.dll info link: http://www.doxdesk.com/parasite/MySearch.html info source: Path: C:\Program Files\MyWebSearch\bar\3.bin\ Long name: MWSBAR.DLL Short name: Date (created): 2/12/2007 1:19:16 PM Date (last access): 4/30/2007 9:46:32 PM Date (last write): 2/12/2007 1:19:16 PM Filesize: 376901 Attributes: archive MD5: 8D23A39BE47954DC43FCBB0114CE2A55 CRC32: F736A37C Version: 2.2.60.6 {53707962-6F74-2D53-2644-206D7942484F} () BHO name: CLSID name: description: Spybot-S&D IE Browser plugin classification: Legitimate known filename: SDhelper.dll info link: http://spybot.eon.net.au/ info source: Patrick M. Kolla Path: C:\PROGRA~1\Security\Spyware\SPYBOT~1\ Long name: SDHelper.dll Short name: Date (created): 1/31/2006 5:38:04 PM Date (last access): 4/30/2007 9:46:36 PM Date (last write): 5/31/2005 2:04:00 AM Filesize: 853672 Attributes: archive MD5: 250D787A5712D7768DDC133B3E477759 CRC32: D4589A41 Version: 1.4.0.0 {7E853D72-626A-48EC-A868-BA8D5E23E045} () BHO name: CLSID name: {9030D464-4C02-4ABF-8ECC-5164760863C6} (Windows Live Sign-in Helper) BHO name: CLSID name: Windows Live Sign-in Helper Path: C:\Program Files\Common Files\Microsoft Shared\Windows Live\ Long name: WindowsLiveLogin.dll Short name: WINDOW~1.DLL Date (created): 8/31/2006 8:33:06 PM Date (last access): 4/30/2007 9:46:36 PM Date (last write): 8/31/2006 8:33:06 PM Filesize: 322368 Attributes: archive MD5: E43F7CFDEE2B00A22C96C168147B20D3 CRC32: 2AEACC43 Version: 4.100.313.1 {AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper) BHO name: CLSID name: Google Toolbar Helper description: Google toolbar classification: Open for discussion known filename: googletoolbar.dll
googletoolbar*.dll
(* = number)
googletoolbar_en_*.**-big.dll
Googletoolbar_en_*.*.**-deleon.dll info link: http://toolbar.google.com/ info source: TonyKlein Path: c:\program files\google\ Long name: GoogleToolbar2.dll Short name: GOOGLE~2.DLL Date (created): 2/15/2007 12:44:00 AM Date (last access): 4/30/2007 9:46:32 PM Date (last write): 1/20/2007 12:55:32 AM Filesize: 2403392 Attributes: readonly archive MD5: 6319F2D4708DBCAE37CFA03DA10782C0 CRC32: D51D8296 Version: 4.0.1601.4978 {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} (Windows Live Toolbar Helper) BHO name: CLSID name: Windows Live Toolbar Helper Path: C:\Program Files\Windows Live Toolbar\ Long name: msntb.dll Short name: Date (created): 9/27/2006 5:45:28 PM Date (last access): 4/30/2007 9:46:32 PM Date (last write): 9/27/2006 5:45:28 PM Filesize: 544032 Attributes: archive MD5: 3D97244F1254E41036458BCACB8FDA4F CRC32: E6449E14 Version: 3.1.0.68 {D34F5D71-99E4-4D96-91CA-F4104F69B8AE} () BHO name: CLSID name: Path: C:\Program Files\Video AX Object\ Long name: bpvol.dll Short name: Date (created): 4/30/2007 12:37:42 PM Date (last access): 4/30/2007 9:46:42 PM Date (last write): 4/30/2007 12:37:42 PM Filesize: 9728 Attributes: archive MD5: 4C06679DA425B92A4816A13D5F2A0D12 CRC32: BE83E4A5