BrandonHiggins
-
Posts
10 -
Joined
-
Last visited
Content Type
Events
Profiles
Forums
Posts posted by BrandonHiggins
-
-
Results of screen317's Security Check version 0.99.73Windows 7 x64 (UAC is enabled)``````````````Antivirus/Firewall Check:``````````````Windows Security Center service is not running! This report may not be accurate!Windows Firewall Disabled!AVG Internet Security 2014Antivirus up to date!`````````Anti-malware/Other Utilities Check:`````````Malwarebytes Anti-Malware version 1.75.0.1300Adobe Reader 9 Adobe Reader out of Date!Google Chrome 29.0.1547.66````````Process Check: objlist.exe by Laurent`````````````````````````System Health check`````````````````Total Fragmentation on Drive C:````````````````````End of Log``````````````````````
-
Alright and done! Anything else I need to do?
-
I wasn't sure about what to remove, so I'll post the log here
-
-
Here is my log. I want to add that yesterday, I looked into the hidden Windows 7 Administrator account, uncovered it and passworded it, that MAY explain more recent, N/A logs. But here are some from the day before.
-
-
Here is my log from Rougekiller
-
I also want to add that Netstat has shown that strange Mac Address even in safemode and its linked to that svchost.exe. Is this normal or am I right to be paranoid?
-
I've had a strange occurrence the other day where I could constantly hear the sound of a usb turn on and off as well as a bit of computer strangeness. I was unable to update windows and other things had occurred. Though the former occurred when I installed BitDefender and still happened after installation. I had a recent System Recovery and my Windows 7 has been grossly out of date.
I looked around and I saw that the EventViewer had MANY instances of an anonymous account logging in and out of the computer.
Though through scanning with AVG, MalwareBytes and others showed it to be clean, but I'm not sure of that. I took some screenshots and have a few logs to share, tell me if something is up.
Suspected RAT - Screenshots and Logs included
in Resolved Malware Removal Logs
Posted
Thank you for you help! But there is just one thing I want to be absolutely sure of. I have a screenshot of my local domain in AVG and I want to make sure that this kind address and this activity is normal. Particularly the the weird IP in this screenshot