Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Norton "unauthorized access (access thread data) blocked"


  • Please log in to reply
No replies to this topic

#1 Millie.G.

Millie.G.

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:07:33 PM

Posted 07 June 2011 - 11:07 AM

Hiya,

I have Norton 360 and it has been notifying me of repeated attacks on my computer. It's been going on for a few weeks (maybe more that I'm not aware of) and the attacks are occurring every couple of minutes, some of which are high risk.
They have all been blocked and no action was needed, but it does worry me that it's occurring and I want it stopped!
I downloaded Norton Power Eraser and ran a scan (including rootkit) which didn't work.
So I then actived Norton Intrsuion AutoBlock for 48 hours hoping that would curb it but still occuring.
Then downloaded and ran Malware Bytes which quarantined and removed trojans...but I'm still getting these unauthorized attacks.

Malware log:
Scan type: Full scan (C:\|)
Objects scanned: 251850
Time elapsed: 40 minute(s), 41 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 7

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
c:\Users\AEPG\AppData\Local\Temp\acrnxewmso.exe (Trojan.Hiloti) -> Quarantined and deleted successfully.
c:\users\aepg\appdata\local\temp\soxeanmwrc.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\Users\AEPG\AppData\Roaming\Adobe\plugs\kb2344289.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\Users\AEPG\AppData\Roaming\Adobe\plugs\kb2344414.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\Users\AEPG\AppData\Roaming\Adobe\plugs\kb2344585.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\Users\AEPG\AppData\Roaming\Adobe\plugs\kb2344929.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\Users\AEPG\AppData\Roaming\Adobe\plugs\kb2344991.exe (Trojan.Agent) -> Quarantined and deleted successfully.

The Norton actor:C:\WINDOWS\SYSTEM32\SYSTEM.EXE
Target: C:\Program Files\Norton360\Engine\4.3.0.5\ccsvchst.exe

BC AdBot (Login to Remove)

 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users