TrustyHound

TrustyHound provides a search engine in the system tray and sends system information to a predetermined server. It includes high risk threats that are typically installed without user interaction through security exploits, and can severely compromise system security. Such threats may open illicit network connections, use polymorphic tactics to self-mutate, disable security software, modify system files, and install additional malware.0

General information:

Malware Name:TrustyHound
Malware Type:Spyware
Company Name:TrustyHound
Company URL:http://www.trustyhound.net/
Threat Level:High Risk
Operating System:WIN XP
Installation Type:Installed through EXE
Operation:Time of After Installation.

Company Description:

Includes powerful result clustering by Vivisimo, plus customizable home page with: news, weather, movies, horoscopes, entertainment, & much more. 1.5 gigabyte web mail accounts loaded with features - 100% free. TrustyHound™ is a customizable web search & home page service. All with no flashy banners, and no pop-ups! Choose our favorite types of content get local weather information, manage RSS content feeds, and more. Use our easy tag navigation for browsing 1000's of our favorite destinations on the web. It's better than a favorites list. Take TrustyHound with us as we surf the web. Get its free toolbar and make TrustyHound parts of our web browser so we can save any page, no matter what site we’re on.

Spyware Description:

TrustyHound provides a search engine in the system tray and sends system information to a predetermined server. It includes high risk threats that are typically installed without user interaction through security exploits, and can severely compromise system security. Such threats may open illicit network connections, use polymorphic tactics to self-mutate, disable security software, modify system files, and install additional malware.0

Characteristics/Symptoms:

    -> It has a search function and provides search results for paid advertisers -> Track browsing habits -> Adds a third-party utility bar to the web browser -> Changes browser -> Shows Advertisements0

Additional information might be found here:

googleSearch at Google for TrustyHound
bingSearch at Bing for TrustyHound
yahooSearch at Yahoo for TrustyHound

Processes Running:

File information Created after Installation:

File LocationSize (Bytes)Type
C:\Program Files\TrustyHound-TB\Thoundo.bmp3454Bitmap Image
C:\Program Files\TrustyHound-TB\websearcho.bmp2706Bitmap Image
C:\Program Files\TrustyHound-TB\whiteList_plugin.dll49152Application Extension

Folder information Created after Installation:

Folder Location
C:\Program Files\TrustyHound-TB

Registry information Created after Installation:

Main Registry KeySub Registry KeyKey Value Name
HKEY_CURRENT_USER\Software\XBTB01786\Toolbar\tb_itemswebmail_tool_button
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstallXBTB01786.XBTB01786ToolbarDisplayName
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\XBTB01786.XBTB01786ToolbarUninstallString