Re: bloodhound.exploit.6

From: Crouchie1998 (crouchie1998_at_spamcop.net)
Date: 05/31/05


Date: Tue, 31 May 2005 15:20:10 +0100

You've visited a website that is running dodgy scripts like illegal
crack/serial sites

Just clean your Temp Internet Cache out.

Norton never 'quarantined' the file it seems, but never let the exploit
penetrate.

It was descovered on February 13th, 2004, so, your def's are easily covering
it.

The 27th May, 2005 virus definitions are the latest LiveUpdate updates, but
the Intelligent Updater updates are 30th May.

Here's the page for the latest Intelligent Updater Updates:

http://www.sarc.com/avcenter/download/pages/US-N95.html

Always go to that page to get the latest def's for your antivirus software.
You have 1 of 2 files to download; either ther 32-bit version or the 64 bit
version.

32-bit def's:
------------

http://definitions.symantec.com/defs/20050530-008-i32.exe

64-bit def's:
------------

http://definitions.symantec.com/defs/20050530-008-i64.exe

My guess is that you are using the 32 bit virus def's.

Below is a link to the exploit that you received:

http://securityresponse.symantec.com/avcenter/venc/data/bloodhound.exploit.6.html

At the base of that page it says delete cookies, delete files & delete
offline content.

I hope this info helps

Crouchie1998
BA (HONS) MCP MCSE