G
Guest
I use Symantec Antivirus as anit-virus software, when I use Microsoft
Antispyware scan my comouter, 2 files always are detected as spyware. One of
them us PWS.Bancos.A Password Stealer, information is as follow:
Infected registry keys/values detected
HKEY_LOCAL_MACHINE\Software\Intel\Landesk\VirusProtect6
HKEY_LOCAL_MACHINE\Software\Intel\Landesk\VirusProtect6\CurrentVersion\AddressCache\GWLICSVR ScanEngineVendor NAV
HKEY_LOCAL_MACHINE\Software\Intel\Landesk\VirusProtect6\CurrentVersion\LiveUpdate\CmdLines\CmdLine1 ProductLanguage SymAllLanguages
HKEY_LOCAL_MACHINE\Software\Intel\Landesk\VirusProtect6\CurrentVersion\LiveUpdate\CmdLines\CmdLine1 ProductVersion MicroDefsB.Old
HKEY_LOCAL_MACHINE\Software\Intel\Landesk\VirusProtect6\CurrentVersion\LiveUpdate\CmdLines\CmdLine1 ProductName Avenge 1.5
.......
DTService Spyware more information...
Infected files detected
c:\Documents and Settings\angelal\Local Settings\Temp\RarSFX0\ext\dtdl.dll
c:\Documents and Settings\angelal\Local Settings\Temp\RarSFX0\ext\dtsm.dll
I have no idea if there is real spyware or something else. Because after I
remove them , the anti-virus software doesn't work anymore.
Antispyware scan my comouter, 2 files always are detected as spyware. One of
them us PWS.Bancos.A Password Stealer, information is as follow:
Infected registry keys/values detected
HKEY_LOCAL_MACHINE\Software\Intel\Landesk\VirusProtect6
HKEY_LOCAL_MACHINE\Software\Intel\Landesk\VirusProtect6\CurrentVersion\AddressCache\GWLICSVR ScanEngineVendor NAV
HKEY_LOCAL_MACHINE\Software\Intel\Landesk\VirusProtect6\CurrentVersion\LiveUpdate\CmdLines\CmdLine1 ProductLanguage SymAllLanguages
HKEY_LOCAL_MACHINE\Software\Intel\Landesk\VirusProtect6\CurrentVersion\LiveUpdate\CmdLines\CmdLine1 ProductVersion MicroDefsB.Old
HKEY_LOCAL_MACHINE\Software\Intel\Landesk\VirusProtect6\CurrentVersion\LiveUpdate\CmdLines\CmdLine1 ProductName Avenge 1.5
.......
DTService Spyware more information...
Infected files detected
c:\Documents and Settings\angelal\Local Settings\Temp\RarSFX0\ext\dtdl.dll
c:\Documents and Settings\angelal\Local Settings\Temp\RarSFX0\ext\dtsm.dll
I have no idea if there is real spyware or something else. Because after I
remove them , the anti-virus software doesn't work anymore.