A friend of mine phoned to say that their computer has a program on it called SPydoctor which has found 99 infections.
They thought that I had put spydoctor on their pc but I had only put on Spyblaster, which was set to stop spyware.
This has got me wondering if this spydoctor is one of those fake spyware programs that asks you to purchase it so it will remove the fake spyware it finds.
I installed it on my own system which is very heavily guarded with all the latest anti scum progs around. It found 67 infections. Some were kazaa related which I dont even have on my pc but some were like this.
Zango Search Assistant
Tool name: Registry Scanner
Infection location: HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings\ZoneMap\Domains\xxxtoolbar.com
Infection type: Registry
Infection risk level: Dangerous
I did find many folders under the reg key HKEY_CURRENT_USER\Software\Microsoft\Windows\Curre ntVersion\Internet Settings\ZoneMap\Domains folder, such as
30search.com
4pokertips.com
99livecam.com
69teenage.com
1sexparty.com
coolwebsearch
gator.com
In fact there were thousands of entrys listed under this domains folder.
However when you open these they only have a single key with an asterix next to the small icon with the blue binary numbers on it.
I am not sure how they got there and am also not sure why spybot doesn't pick them up after doing a full scan either. Are they fake and perhaps put there by Spydoctor itself???
If so can I remove all these entrys in this domains folder??
