Re: CWShredder/Bloodhound.Exploit.6

From: Bill Sanderson (Bill_Sanderson_at_msn.com.plugh.org)
Date: 04/06/04


Date: Mon, 5 Apr 2004 22:46:33 -0400

I don't know how to get you this answer.

One way, of course, is to try it out--always download a fresh copy of the
newest CWShredder, please.

I do see that some CoolWebSearch variants infect system files--these will
need to be replaced from the appropriate sources for your OS, of course--but
I don't know whether the one you want to get rid of fits that category.

http://securityresponse.symantec.com/avcenter/venc/data/bloodhound.exploit.6.html

Have you considered trying to remove it using an antivirus tool?

This isn't on Stinger's list, but you could use Trend Micro's Damage Cleanup
Engine:

http://www.trendmicro.com/download/dcs.asp (get the Sysclean Package)
then get the defs package from:
http://www.trendmicro.com/download/pattern.asp
(current is lpt51.zip)

Unzip and place in the same folder as sysclean and run sysclean.

I can't tell from their virus encyclopedia whether they claim to be able to
clean this one, but there are a number of bloodhound entries.

"belp" <anonymous@discussions.microsoft.com> wrote in message
news:11D291BD-8399-4A00-BD2D-1B2261FFA973@microsoft.com...
> Will THE SHREDDER eliminate Bloodhound.Exploit.6 given that my Microsoft
> XP is French?


Quantcast