Problem removing SecurityRisk.URLRedir threat

Hello!

 

I am having an issue removing a SecurityRisk.URLRedir threat. A full scan on a Windows XP PC running Norton AV version 10.1.0.394 flags the threat but cannot quarantine it. When I look at the details of the threat I see two entries labeled "Host File Entry"  with corresponding IP addresses, one of which (74.125.45.100) is Google. My issue is that while this threat is described as a corruption of the Hosts file, a check of System32\drivers\etc as well as a search of the entire drive for a file named "Hosts" seems to indicate that this file does not exist. Is there someplace else I should be looking for these Host file entries or, if not, where exactly is Norton AV seeing these entries?

There is a host reset fix from Microsoft Here:

 

http://support.microsoft.com/kb/972034

 

Are you running Norton Antivirus or Symantec Antivirus?  If you have one of the corporate versions you can also get more assistance here.

 

www.symantec.com/connect

If the problem persists, download and run Norton Power Eraser tool :

http://www.symantec.com/norton/support/DIY/index.jsp


Go for Rootkit Scan and Restart the computer. Check if it detects any threats and if it does, please provide us the filename and other details.



 Yogesh