I recently bought the FETCH! computer game and installed it. A couple months later, I downloaded and installed Spyware Detector. I just noticed that it classified FETCH! as "Critical, Backdoor.Sdbot."
Here are the entries it found:
Information :
Date: 7/8/2007 07-07-43
OS Version: Windows Vista
Computer Name: (censored)
Backdoor.Sdbot Folder c:\program files\common files\thraex software Scan
Backdoor.Sdbot Folder c:\program files\common files\thraex software\autoupdator Scan
Backdoor.Sdbot File c:\program files\common files\thraex software\autoupdator\autoupdator.exe#@#43BB068D0B313801D30D28C0B2B7BF0D Scan
Backdoor.Sdbot Registry Key hkey_local_machine\software\thraex software Scan
Backdoor.Sdbot Registry Key hkey_local_machine\software\thraex software\autoupdator Scan
Backdoor.Sdbot Registry Value hkey_local_machine\software\thraex software\autoupdator\"program name" Scan
Backdoor.Sdbot Registry Data hkey_local_machine\software\thraex software\autoupdator\program name\:autoupdater Scan
Backdoor.Sdbot Registry Value hkey_local_machine\software\thraex software\autoupdator\"installed version" Scan
Backdoor.Sdbot Registry Data hkey_local_machine\software\thraex software\autoupdator\installed version\:1.10.00 Scan
Backdoor.Sdbot Registry Value hkey_local_machine\software\thraex software\autoupdator\"info" Scan
Backdoor.Sdbot Registry Data hkey_local_machine\software\thraex software\autoupdator\info\:automated update tool Scan
Backdoor.Sdbot Registry Value hkey_local_machine\software\thraex software\autoupdator\"proxy" Scan
Backdoor.Sdbot Registry Data hkey_local_machine\software\thraex software\autoupdator\proxy\:0 Scan
Backdoor.Sdbot Registry Value hkey_local_machine\software\thraex software\autoupdator\"dial-up connection" Scan
Backdoor.Sdbot Registry Data hkey_local_machine\software\thraex software\autoupdator\dial-up connection\:1 Scan
Backdoor.Sdbot Registry Value hkey_local_machine\software\thraex software\autoupdator\"proxy host" Scan
Backdoor.Sdbot Registry Data hkey_local_machine\software\thraex software\autoupdator\proxy host\:localhost Scan
Backdoor.Sdbot Registry Value hkey_local_machine\software\thraex software\autoupdator\"moretodo" Scan
Backdoor.Sdbot Registry Data hkey_local_machine\software\thraex software\autoupdator\moretodo\:0 Scan
Backdoor.Sdbot Registry Value hkey_local_machine\software\thraex software\autoupdator\"xml download url" Scan
Backdoor.Sdbot Registry Data hkey_local_machine\software\thraex software\autoupdator\xml download url\:http://www.thraexsoftware.com/au/update-info.xml Scan
Backdoor.Sdbot Registry Value hkey_local_machine\software\thraex software\autoupdator\"directory" Scan
Backdoor.Sdbot Registry Data hkey_local_machine\software\thraex software\autoupdator\directory\:c:\program files\common files\thraex software\autoupdator Scan
Backdoor.Sdbot Registry Key hkey_local_machine\software\thraex software\autoupdator\notready Scan
Backdoor.Sdbot Registry Key hkey_local_machine\software\thraex software\autoupdator\programs Scan
Backdoor.Sdbot Registry Key hkey_local_machine\software\thraex software\autoupdator\programs\valusoft Scan
Backdoor.Sdbot Registry Key hkey_local_machine\software\thraex software\autoupdator\programs\valusoft\fetch Scan
Backdoor.Sdbot Registry Value hkey_local_machine\software\thraex software\autoupdator\programs\valusoft\fetch\"program name" Scan
Backdoor.Sdbot Registry Data hkey_local_machine\software\thraex software\autoupdator\programs\valusoft\fetch\program name\:fetch Scan
Backdoor.Sdbot Registry Value hkey_local_machine\software\thraex software\autoupdator\programs\valusoft\fetch\"installed version" Scan
Backdoor.Sdbot Registry Data hkey_local_machine\software\thraex software\autoupdator\programs\valusoft\fetch\installed version\:1.00 Scan
Backdoor.Sdbot Registry Value hkey_local_machine\software\thraex software\autoupdator\programs\valusoft\fetch\"xml download url" Scan
Backdoor.Sdbot Registry Data hkey_local_machine\software\thraex software\autoupdator\programs\valusoft\fetch\xml download url\:http://www.virtual-playground.co.uk/...etchupdate.xml Scan
Backdoor.Sdbot Registry Value hkey_local_machine\software\thraex software\autoupdator\programs\valusoft\fetch\"silentmodeallowed" Scan
Backdoor.Sdbot Registry Data hkey_local_machine\software\thraex software\autoupdator\programs\valusoft\fetch\silentmodeallowed\:1
avast! doesn't catch it. Spybot doesn't catch it. Ad-Aware doesn't catch it. Is FETCH! spyware, or is Spyware Detector rogue antispyware? I have never heard of Thraex Software, but ValuSoft is the company that makes FETCH!. I haven't quite been able to figure this out. I really had a hard time figuring it out, because Wikipedia doesn't have an article on FETCH!.I guess, while I'm at it, I'll go see if Wikipedia knows anything about Spyware Detector.
Please respond if you have any tips!



I guess, while I'm at it, I'll go see if Wikipedia knows anything about Spyware Detector.
Reply With Quote

Bookmarks