<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE rss [<!ENTITY % HTMLlat1 PUBLIC "-//W3C//ENTITIES Latin 1 for XHTML//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml-lat1.ent">]>
<rss version="0.92" xml:base="http://www.sculptedcd.com">
<channel>
 <title>PC security - Spyware List</title>
 <link>http://www.sculptedcd.com/taxonomy/term/1/0</link>
 <description></description>
 <language>en</language>
<item>
 <title>Alexa Spyware</title>
 <link>http://www.sculptedcd.com/node/8</link>
 <description>&lt;h3&gt;Spyware details:&lt;/h3&gt;
&lt;p&gt;Alexa works as an Internet Explorer toolbar and may track your web browsing and search information.&lt;/p&gt;
&lt;h4&gt;Creats files:&lt;/h4&gt;
&lt;p&gt;&lt;code&gt;&lt;br /&gt;
alxres.dll&lt;br /&gt;
alxtb1.dll&lt;br /&gt;
alxres.dll&lt;br /&gt;
alexa65.inf&lt;br /&gt;
&lt;/code&gt;&lt;/p&gt;
&lt;h4&gt;Add records in registry:&lt;/h4&gt;
&lt;p&gt;&lt;code&gt;&lt;br /&gt;
{0F3332B5-BC98-48AF-9FAC-05FEC94EBE73}&lt;br /&gt;
{3CEFF6CD-6F08-4e4d-BCCD-FF7415288C3B}&lt;br /&gt;
popmenu.menu&lt;br /&gt;
{9D74677A-E227-40fb-9511-F7E92EA4083A}&lt;br /&gt;
SoftwareMicrosoftInternet ExplorerMenuExtGet Alexa Data\&lt;br /&gt;
{7FB04DE1-4340-4002-9D9E-3B6913AE6953}&lt;br /&gt;
SOFTWAREMicrosoftWindowsCurrentVersionInternet Settings5.0User AgentPost PlatformAlexa Toolbar&lt;br /&gt;
{A6A08CBD-6673-41B1-B997-3F83A25B45B0}&lt;/p&gt;
</description>
 <pubDate>Wed, 20 Apr 2005 22:38:30 -0700</pubDate>
</item>
<item>
 <title>EliteBar</title>
 <link>http://www.sculptedcd.com/node/6</link>
 <description>&lt;h3&gt;Summary:&lt;/h3&gt;
&lt;p&gt;This spyware installs an Internet Explorer toolbar to redirect search requests. Also EliteBar creates popup windows and change MS IE home page and settings.&lt;/p&gt;
</description>
 <pubDate>Wed, 13 Apr 2005 00:12:18 -0700</pubDate>
</item>
<item>
 <title>123Messenger</title>
 <link>http://www.sculptedcd.com/node/5</link>
 <description>&lt;h3&gt;Spanish Shopping Portal Dialer&lt;/h3&gt;
&lt;p&gt;&lt;strong&gt;Creates the following files:&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;code&gt;&lt;br /&gt;
123messenger.per&lt;br /&gt;
licencia.txt&lt;br /&gt;
msa64chk.dll&lt;br /&gt;
msapasrc.dll&lt;br /&gt;
telefonos.txt&lt;br /&gt;
textos.txt&lt;br /&gt;
&lt;/code&gt;&lt;/p&gt;
&lt;p&gt;123Messenger adds in the registy run section &lt;/p&gt;
&lt;p&gt;&lt;code&gt;HKLM\Software\Microsoft\Windows\CurrentVersion\Run&lt;/code&gt;&lt;/p&gt;
&lt;p&gt;following file: rundll32.exe&lt;/p&gt;
</description>
 <pubDate>Wed, 13 Apr 2005 00:13:01 -0700</pubDate>
</item>
<item>
 <title>00d Dialer</title>
 <link>http://www.sculptedcd.com/node/4</link>
 <description>&lt;h3&gt;Details&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt; Dials a phone number&lt;/li&gt;
&lt;li&gt; Registers as BHO&lt;/li&gt;
&lt;li&gt; Runs in stealth mode&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;strong&gt;&lt;br /&gt;
Dials a phone number. Creates the following registry keys:&lt;br /&gt;
&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;code&gt;&lt;br /&gt;
KEY:HKCR\clsid\{ffff0001-0002-101a-a3c9-08002b2f49fb}&lt;br /&gt;
KEY:HCLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ffff0001-0002-101a-a3c9-08002b2f49fb}&lt;br /&gt;
&lt;/code&gt;&lt;/p&gt;
</description>
 <pubDate>Mon, 11 Apr 2005 01:57:24 -0700</pubDate>
</item>
<item>
 <title>The list of known spyware and adware</title>
 <link>http://www.sculptedcd.com/node/3</link>
 <description>&lt;p&gt;Just some names of spyware processes RegFreeze cures from&lt;/p&gt;
</description>
 <pubDate>Wed, 13 Apr 2005 00:11:24 -0700</pubDate>
</item>
</channel>
</rss>
