PC Review
Forums
Newsgroups
Microsoft AntiSpyware
Security Signatures
False positive on Avencis product (SSOX)
Forums
Newsgroups
Microsoft AntiSpyware
Security Signatures
False positive on Avencis product (SSOX)
![]() |
False positive on Avencis product (SSOX) |
|
|
Thread Tools | Rate Thread |
|
|
#1 |
|
Guest
Posts: n/a
|
When running the Beta version of the spyware, it reports a
false positive on our product SSOX. What is the preferred way to include our product in the signature list so SSOX won't be removed by error? Thanks. -- Spyware Scan Details Start Date: 1/10/2005 11:34:15 AM End Date: 1/10/2005 11:37:48 AM Total Time: 3 mins 33 secs Detected Threats CommonName Search Hijacker more information... Details: CommonName is a keywords service that allows you to enter simple names instead of URLs. The software is a search redirector and displays advertisements. Status: Removed Elevated threat - Elevated threats are usually threats that fall into the range of adware in which data about a user's habits are tracked and sent back to a server for analysis without your consent or knowledge. Infected registry keys/values detected HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f} HKEY_LOCAL_MACHINE\software\classes\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\InprocServer32 ThreadingModel Apartment HKEY_LOCAL_MACHINE\software\classes\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\ProgID SSOXBHO.1 HKEY_LOCAL_MACHINE\software\classes\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\TypeLib {1E1B286C-88FF-11D2-8D96-D7ACAC95951F} HKEY_LOCAL_MACHINE\software\classes\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\VersionIndependentProgID SSOXBHO HKEY_LOCAL_MACHINE\software\classes\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f} SSOX BHO Class HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{1e1b2879-88ff-11d2-8d96-d7acac95951f} HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{1e1b2879-88ff-11d2-8d96-d7acac95951f} SSOX BHO HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\InprocServer32 C:\Program Files\AVENCIS\SSOX\ssoxbho.dll HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\InprocServer32 ThreadingModel Apartment HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\ProgID SSOXBHO.1 HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\TypeLib {1E1B286C-88FF-11D2-8D96-D7ACAC95951F} HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\VersionIndependentProgID SSOXBHO HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f} SSOX BHO Class HKEY_LOCAL_MACHINE\software\classes\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f} HKEY_LOCAL_MACHINE\software\classes\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\InprocServer32 C:\Program Files\AVENCIS\SSOX\ssoxbho.dll Detected Spyware Cookies |
|
|
|
#2 |
|
Guest
Posts: n/a
|
>-----Original Message----- >When running the Beta version of the spyware, it reports a >false positive on our product SSOX. What is the preferred >way to include our product in the signature list so SSOX >won't be removed by error? >Thanks. > Followup to myself: found spynet page. |
|
![]() |
|
| Thread Tools | |
| Rate This Thread | |
|
|

Main Page 

