Tom's Guide | Tom's Hardware | Tom's Games
![]() |
![]() |
![]() |
Norton warned me that my pc had been infected by the above trojan and could not quarantine or delete it! So its still there. I read a few of your forums regarding trojans and took your advice and scanned my system with hijackthis. Unfortunatley I dont have a clue what the log file means in terms of spotting threats. Your help will be greatly appreciated.
Regards,
James

The first thing you need to do is pay a visit to the Microsoft Critical Updates page and get all the critical updates for XP installed. If the problem persists, turn off system restore(My Computer>Properties>System Restore) and then restart the computer and enter the Safe Mode(hold down or continous tapping of the F8 key). Select administrator and run your Norton scan while in the safe mode. After the scan, restart the computer and run Norton's scan again, and if the system is clean you can turn system restore back on. I suugest you set it set it at 5% instead of its default setting to save space. There will still be plenty of restore points if you like using it. It is where a worm/virus/trojan packet loves to hide, because the files are protected and cannot be removed/cleaned/repaired by an antivirus program. HTH

Thanks Capt appreciate your reply. I have already turned off sytem restore and did a full system scan in safe mode, no luck. I did the same thing with panda virus scanner which found a bit of adware but thats it. I have been reading countless forums on the subject and no-one has a straight out answer to fix the problem. The malignant file is located in
C:\documents and settings\local settings\temporary internet files\content.IE5\8x69qzy7\start[2].htm
I have also tried deleting my temp internet files and before i did that i went into the folder to see the file and it appears not to be there even though the folder settings are on to view all files. Does anyone have any other suggestions?

James, Open Internet Explorer/Tools/Internet Options/General tab, click the "Delete Files" button and when the pop-up window appears put a checkmark in front of "delete all offline content" and click OK. This should get rid of it.
Tufenuf

I've read your postings with a great deal of interest. I'm basically a newbie when it comes to computers but I'm running NAV with all current updates. I also have Zone Alarm as my firewall. The Bloodhound trojan slipped into my system last night when I suddenly got a message from Norton telling me that my computer was infected and it couldn't either repair or quarantine the infected file. Isn't this the whole point of having a working and up to date virus prgram and a firewall? Why is the virus or trojan allowed to enter?

On my xp box,I found the bloodhound in the registry.
HKey_Current_User\Software\Microsoft\Search
Assistant\ACMRU\5603ab000 reg_sz Bloodhound.Exploit.6
ab001 reg_sz bloodhoundI dont know what to do with it?
peace

I deleted bloodhound.exploit.6 and bloodhound. Everthing seems to be fine.
It hasnt come back after a reboot.peace

![]() |
![]() |
![]() |

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.
| Ads by Google |