![]() O2 - BHO: Yahoo! Toolbar Helper - C:\Program Files\Messenger\msmsgs.Detect JS obfuscation done by the js obfuscator (often 0x3e6:$c8: while(!!) R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = ![]() R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = ![]() R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSIE: Internet Explorer v6.00 SP2 (.2180)Ĭ:\Program Files\Common Files\Symantec Shared\ccSvcHst.exeĬ:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exeĬ:\Program Files\Lavasoft\Ad-Aware\aawservice.exeĬ:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exeĬ:\Program Files\Bonjour\mDNSResponder.exeĬ:\Program Files\Common Files\LightScribe\LSSrvc.exeĬ:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXEĬ:\Program Files\Microsoft SQL Server\MSSQL$INVENTORCONTENT\Binn\sqlservr.exeĬ:\Program Files\Common Files\InstallShield\UpdateService\issch.exeĬ:\Program Files\Common Files\Real\Update_OB\realsched.exeĬ:\Program Files\Windows Media Player\WMPNSCFG.exeĬ:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exeĬ:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exeĬ:\Program Files\Mozilla Firefox\firefox.exeĬ:\Program Files\Trend Micro\HijackThis\HijackThis.exe This is what it says:Īnd the other one says the same thing except the 2 processes and 1 file are c:\windows\system32\sxtsyctd.sys I restarted my computer and it ran fine for a few hours until just about 10 minutes ago when once again Norton 360 said that it had detected Bloodhound.SONAR.1. I removed them and it told me I need to restart my computer for the effects to take place. This morning Norton 360 alerted me that it had found two suspicious items with the name "Bloodhound.SONAR.1".
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |