G
Guest
For the past 28 hours Defender has been 'removing' two detected threats: Zlob
and Exploit:Win32/Wmfap.
This is recurrent WD execution; I've uninstalled and reinstalled from HS,
then deleted .exe and re-downloaded, installed and run. Same results.
Both files were detected inside Norton AV/Quarentine folder so I would
simply uninstall WD forever BUT.. WD detail indicates registry entries remain
for Zlob.
If correct then WD has merit ( regedit check verified entries ID'd in WD
detal).
2) Could Norton AV-Q prevent deletion?
3) What of the registry keys associated in WD detail ( same key for regkey
and runkey:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\run ) ? Are they/it legit in WinXP-SP2?
Thanks
and Exploit:Win32/Wmfap.
This is recurrent WD execution; I've uninstalled and reinstalled from HS,
then deleted .exe and re-downloaded, installed and run. Same results.
Both files were detected inside Norton AV/Quarentine folder so I would
simply uninstall WD forever BUT.. WD detail indicates registry entries remain
for Zlob.
If correct then WD has merit ( regedit check verified entries ID'd in WD
detal).
2) Could Norton AV-Q prevent deletion?
3) What of the registry keys associated in WD detail ( same key for regkey
and runkey:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\run ) ? Are they/it legit in WinXP-SP2?
Thanks