TrustyHound

TrustyHound provides a search engine in the system tray and sends system information to a predetermined server. It includes high risk threats that are typically installed without user interaction through security exploits, and can severely compromise system security. Such threats may open illicit network connections, use polymorphic tactics to self-mutate, disable security software, modify system files, and install additional malware.0

General information:

Malware Name: TrustyHound
Malware Type: Spyware
Company Name: TrustyHound
Company URL: http://www.trustyhound.net/
Threat Level: High Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation.

Company Description:

Includes powerful result clustering by Vivisimo, plus customizable home page with: news, weather, movies, horoscopes, entertainment, & much more. 1.5 gigabyte web mail accounts loaded with features - 100% free. TrustyHound™ is a customizable web search & home page service. All with no flashy banners, and no pop-ups! Choose our favorite types of content get local weather information, manage RSS content feeds, and more. Use our easy tag navigation for browsing 1000's of our favorite destinations on the web. It's better than a favorites list. Take TrustyHound with us as we surf the web. Get its free toolbar and make TrustyHound parts of our web browser so we can save any page, no matter what site we’re on.

Spyware Description:

TrustyHound provides a search engine in the system tray and sends system information to a predetermined server. It includes high risk threats that are typically installed without user interaction through security exploits, and can severely compromise system security. Such threats may open illicit network connections, use polymorphic tactics to self-mutate, disable security software, modify system files, and install additional malware.0

Characteristics/Symptoms:

    -> It has a search function and provides search results for paid advertisers -> Track browsing habits -> Adds a third-party utility bar to the web browser -> Changes browser -> Shows Advertisements0

Additional information might be found here:

google Search at Google for TrustyHound
bing Search at Bing for TrustyHound
yahoo Search at Yahoo for TrustyHound

Processes Running:

File information Created after Installation:

File Location Size (Bytes) Type
C:\Program Files\TrustyHound-TB\Thoundo.bmp 3454 Bitmap Image
C:\Program Files\TrustyHound-TB\websearcho.bmp 2706 Bitmap Image
C:\Program Files\TrustyHound-TB\whiteList_plugin.dll 49152 Application Extension

Folder information Created after Installation:

Folder Location
C:\Program Files\TrustyHound-TB

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_CURRENT_USER \Software\XBTB01786\Toolbar\tb_items webmail_tool_button
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindowsCurrentVersionUninstallXBTB01786.XBTB01786Toolbar DisplayName
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\XBTB01786.XBTB01786Toolbar UninstallString