Jump to content

Recommended Posts

Well here I'm not completely sure what's going on but it's potentially very serious. Apparently Norton keeps showing up a window alerting me that a Bloodhound type exploit has been detected in my browser under one of my profiles (firefox) on my old computer that I require for work (it has my modeling program). I obviously cannot just delete that profile considering the immense data I need. In any case, Norton alerts me that is has been cleaned but then it started showing up a second and then a third time saying it was cleansed (but it obviously was not). At this point I became worried and looked more into Bloodhound (33). Apparently it's very high risk and can do some serious damage but it's not completely identified because Bloodhound is just a detection designation that Norton gave it and exploit 33 is the type of that class. I might have felt that damage too considering my Firewall (Comodo) has been acting strange lately as if it does not remember all the programs and connections I've allowed or disallowed. I was also forced to redownload Norton as if the program itself has been eaten away by something, so much so that hundreds of megabytes were just chunked out. Malwarebytes is working fine and I just did a scan with it. It DID detect some things but I quartined them all. This is obviously very serious, which is why I decided to reboot into Safe Mode immediately and am now asking for expert assistance.

 

​Please keep in mind I did the Farbar scan in Safe Mode. I am still currently in Safe Mode and awaiting further instruction.

Link to post
Share on other sites

No, this is not serious and you do not need to remain in Safe Mode.  "Bloodhound" is Symantec's Heuristic detection name and it  (Exploit.33)  is related to "...detection for the MSN Messenger Crash on Parsing GIFS..." and this was associated with a vulnerability identified in 2005 as CVE-2005-0562.  This means that it was found and identified 9 years ago.  Therefore the propensity of this vulnerability still being viable and un-patched is extremely small.  The fact is the vulnerable software, MSN Messenger v6.2, is now a dead product.
 
If Norton AV (NAV) is detecting "Bloodhound.Exploit.33", we need to look at WHAT is being flagged as "Bloodhound.Exploit.33".
 
Please post a log or log snippet showing the fully qualified name and path to the file(s) being flagged by NAV as "Bloodhound.Exploit.33".

Link to post
Share on other sites

  • Root Admin

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.