New
#1
Suspected file and startup in MSCONFIG: taskhost.exe
Hi,
MSCONFIG has now a startup entry called: c:\Users\Administrator\AppData\Local\Microsoft Windows\taskhost.exe
I don't trust this. Why would MS Windows load such an executable via the registry (in HKCU). It didn't before and it doesn't load other surrogates this way. However, my Avast (I just ran it) didn't remove it or mentions it's unsafe. I'm not sure about that.
Do I have more tougher scans or detection methods at my disposal? Or do you have other suggestions for me?
Cheers!