Duis mollis, est non commodo luctus, nisi erat porttitor ligula, eget lacinia odio sem nec elit. Sed posuere consectetur est at lobortis. Vestibulum id ligula porta felis euismod semper. Donec ullamcorper nulla non metus auctor fringilla. Aenean lacinia bibendum nulla sed consectetur. Cras justo odio, dapibus ac facilisis in, egestas eget quam. Cras mattis consectetur purus sit amet fermentum. Morbi leo risus, porta ac consectetur ac, vestibulum at eros. Sed posuere consectetur est at lobortis. Etiam porta sem malesuada magna mollis euismod. Cum sociis natoque penatibus et magnis dis parturient montes, nascetur ridiculus mus. Duis mollis, est non commodo luctus, nisi erat porttitor ligula, eget lacinia odio sem nec elit. Cras justo odio, dapibus ac facilisis in, egestas eget quam. Aenean eu leo quam. Pellentesque ornare sem lacinia quam venenatis vestibulum. Curabitur blandit tempus porttitor. Sed posuere consectetur est at lobortis.
Wow isnt amazing the day my copy of norton system works NSW 07 not only updates prematurely it also lets a bloodhound trojan in
Source: C:\Documents and Settings\Me\Local Settings\Temp\cneqpmdj.exe,Risk category: Virus,Overall Risk Impact: High,Action taken: Blocked My question is why wasnt it destroyed by NAV & NSW? instead of blocked?
It also lets something onto my pc called: ( a.exe ) "without the parenthesis" start talking to the internet, location C:\Windows\system32\a.exe
I constantly check my taskmanager to see whats running and eating up ram and cpu and i see this exe called a.exe i know its not a ligit prog who the heck would name a exe 'a' ?
Anyway i overwrote a.exe with the wipe info feature of nsw and i've done this to several progs that nsw and norton av ignored in the past. Seems to work pretty good if you make windows explore.exe let go of the program.
I just dont understand that i've payed this much money for a product that cant make a educated decision by itself with all virus definitions up to date and say: Oh you a bad bug, i eat you now!
Why doesnt NAV and NSW do this automatically?
Is it because major software manufacturers concern themselves with DRMware and Authentication software that AV's think are spyware malware snitchware policeware crimeware goverment spyware then whats the point of having a pc and an internet connection?
Just make me an AV that will track down the virus/trojans/maleware/spyware- who it belongs too- you me uncle sam whatever
and eat their pc lunch dinner author house and paycheck for ever having written the bug in the first place! :D
Well its been a bad day- a trojan, a virus a premature unauthorized charge to my credit card resulting in an over limit fee of $40.00 usd by symantec.....Oh but the day ain't over yet either
Hello,
You seem to have a few issues here. Firstly, regarding the Bloodhound detection - do you have any details on the exact name? Bloodhound is an engine we use to proactively detect malware without having to create a specific detection. The benefit of this is that we can catch new malware without having to update our definitions. However there is a slightly higher risk of false detections with this technology, therefore we are not as aggressive in removing files which have a Bloodhound detection, just in case we remove something we shouldn't.
Regarding "a.exe", it seems that this is a piece of malware for which we don't have detection. While we do our utmost to proactively detect threats and add detections asap for those we can't proactively detect, there are sometimes threats which fall through the net. This seems to be have been the case here. If you still have a sample of a.exe, please submit it here so that we can analyse it and add detection if necessary.
Thanks
Orla Cox
Symantec Security Response