I assume Bit Defender people monitor this forum (thank God I found it) and read this --- My emails from them ALL say Shield Deluxe and never even mention Bit Defendfer Share this post Link to post Share on other sites dan0180 0 Newbie Members 0 2 posts Posted March 3, 2010 I'm having the same issue, bitdefender found 30 infected

It does this by redirecting browser traffic to malicious advertisement pages, which host other malware.

TECHNICAL DETAILS Memory Resident: YesPayload: Connects to URLs/IPs, Displays graphics/imageAdware RoutineThis Trojan connects to the following

The reply contains the redirection chain. http://www.trendmicro.com/vinfo/us/threat-encyclopedia/malware/SWIZZOR If you’re using Windows XP, see our Windows XP end of support page. GENERAL RULES Understand that once you have registered as a new user, you consequently agree with ALL THE FORUM RULES written below. The red color spreads throughout the disc to indicate whether a threat is moderate, high or severe.PreviousNextSummaryWhat to do nowTechnical informationSymptoms Symptoms The following can indicate that you have this threat

The mentioned detection has been removed sometime this morning. We have seen it connect to: 85.25.116. After receiving a click fraud commands from the C&C, the malware silently creates many Internet Explorer processes and injects malicious code into them to Topics and replies related to cracking security software, advice on breaching security systems, cracking security protocols, flood attacks or posts that promote cracking or Internet attacks in any way will be weblink Tam incelemeyi okuyunSeçilmiş sayfalarBaşlık SayfasıİçindekilerDizinReferanslarİçindekilerVegetables In and Out of the Garden1 In Which Asparagus Seduces the King of France11 In Which Beans Beat Back the Dark Ages29 In Which Beets Make

For example, we have seen it installed to the following locations: %LOCALAPPDATA% \Adworks\Vm3ig.exe %LOCALAPPDATA% \Afwdworks\jqvNe.exe %LOCALAPPDATA% \Ajfworks\tmp1019.exe %LOCALAPPDATA% \Alworks\T_RhS.exe %LOCALAPPDATA% \Apworks\tmp3D67.exe %LOCALAPPDATA% \AWworks\msiexec.exe %LOCALAPPDATA% \Edtion\vB0H6.exe %LOCALAPPDATA% \Efgtion\_y7LN.exe %LOCALAPPDATA% \Epjtion\creative-pci-software.exe %LOCALAPPDATA% \Extion\ONM0k.exe Register a free account to unlock additional features at BleepingComputer.com Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Analysis by Duc Nguyen Prevention Take these steps to help prevent infection on your PC.

Is this a false positive or not?