Symantec detects suspicious entries in the MVPS HOSTS file

Well here we go again … another security program with a poorly written detection … seems Symantec added a new update SecurityRisk.URLRedir which they describe as “detection for suspicious entries added to the hosts file

The following entries are (falsely) detected as suspicious:

Looks like they are detecting anything related to a Antivirus program regardless of what the entry is … except for “” which McAfee describes as “Upon execution it connects to “” and adds “BaiduBar.dll” as Browser Helper Object for the Internet Explorer and installs itself as the toolbar

The above entries are all legit and should not be removed … if these entries are the only ones detected after a scan, you should set them to Ignore. The “sdc” entries are all 3rd party tracking Cookies from WebTrends. The “om” and “tc” entries are actually 3rd party tracking cookies from Omniture. [more info]

