Jump to content

sicayman

Members
  • Posts

    1
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Having an issue with a computer. Took it in to have it looked at in a store on Friday, got it back for the office on Monday, and by Wednesday we were back with popups and the "Smart Fortress" fake antivirus. I uninstalled that from the program list before looking into it far enough to see that wouldn't work completely. Our normal Trend Micro didn't detect any of this, so I went onto their website and ran their Fake AV removal. Still got pop-ups on the machine, which the normal Trend Micro detects as malicious and blocks. So then loaded MalwareBytes, ran the computer in safe mode and did the search, and it found a bunch of infected processes. Cleaned those off, but am still getting blocked popups. Now both Trend Micro AND MalwareBytes are showing these blocked addresses, even with Internet Explorer closed. We run in XP here in the office, and I checked the forums to see if there was anything to tell where the "outgoing" link was coming from, and downloaded Tcpview.exe to see if I could find where the problem is originating from. The closest thing I can tell is that it's a "ping.exe" that's doing it... but there's no name to the process and it seems to remove itself immediately after it's blocked. Exceedingly confused by all of this. Any help would be appreciated.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.