False positive on Avencis product (SSOX)

F

Frederic Pierre

When running the Beta version of the spyware, it reports a
false positive on our product SSOX. What is the preferred
way to include our product in the signature list so SSOX
won't be removed by error?
Thanks.

--

Spyware Scan Details
Start Date: 1/10/2005 11:34:15 AM
End Date: 1/10/2005 11:37:48 AM
Total Time: 3 mins 33 secs

Detected Threats

CommonName Search Hijacker more information...
Details: CommonName is a keywords service that allows you
to enter simple names instead of URLs. The software is a
search redirector and displays advertisements.
Status: Removed
Elevated threat - Elevated threats are usually threats that
fall into the range of adware in which data about a user's
habits are tracked and sent back to a server for analysis
without your consent or knowledge.

Infected registry keys/values detected
HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}
HKEY_LOCAL_MACHINE\software\classes\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\InprocServer32
ThreadingModel Apartment
HKEY_LOCAL_MACHINE\software\classes\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\ProgID
SSOXBHO.1
HKEY_LOCAL_MACHINE\software\classes\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\TypeLib
{1E1B286C-88FF-11D2-8D96-D7ACAC95951F}
HKEY_LOCAL_MACHINE\software\classes\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\VersionIndependentProgID
SSOXBHO
HKEY_LOCAL_MACHINE\software\classes\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}
SSOX BHO Class
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser
helper objects\{1e1b2879-88ff-11d2-8d96-d7acac95951f}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser
helper objects\{1e1b2879-88ff-11d2-8d96-d7acac95951f} SSOX BHO
HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\InprocServer32
C:\Program Files\AVENCIS\SSOX\ssoxbho.dll
HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\InprocServer32
ThreadingModel Apartment
HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\ProgID
SSOXBHO.1
HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\TypeLib
{1E1B286C-88FF-11D2-8D96-D7ACAC95951F}
HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\VersionIndependentProgID
SSOXBHO
HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}
SSOX BHO Class
HKEY_LOCAL_MACHINE\software\classes\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}

HKEY_LOCAL_MACHINE\software\classes\clsid\{1e1b2879-88ff-11d2-8d96-d7acac95951f}\InprocServer32
C:\Program Files\AVENCIS\SSOX\ssoxbho.dll

Detected Spyware Cookies
 
G

Guest

-----Original Message-----
When running the Beta version of the spyware, it reports a
false positive on our product SSOX. What is the preferred
way to include our product in the signature list so SSOX
won't be removed by error?
Thanks.

Followup to myself: found spynet page.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top