Jump to content

Obamu

Members
  • Posts

    9
  • Joined

  • Last visited

Everything posted by Obamu

  1. So is it the site itself that does those or is it just the users abusing the services of that site? like what happened to hostinger.es While the site is still functional, it's only inconvenient cause it lacks/blocks some pictures, I don't in particularly experiencing any ads, popups nor redirects cause I have a months tweaked uBlock and nano defender. Now, in scale from 1 to 10, 10 being GO, 1 being NO. should I exclude s5.postimg.cc?
  2. Mr. Devin C instructed me to post here. I came from here https://www.reddit.com/r/Malwarebytes/comments/8l07gb/false_positive/ Virus Total : https://www.virustotal.com/#/url/323f9cac55dbe786c37ba11b0d9166bdfcc105e78f5affc4be857e26fe4828cf/detection When Malwarebytes blocks that url, all the images on the site I visit are not appearing, and I happen to visit that site for a long time now. Around less than 24 hrs ago, it was suddenly blocked now. Now the mystery is I do not know when did they use s5.postimg.cc. I also had not fiddle what image host they were using in any point of time. It's kinda confusing and a mystery. researching either http://s5.postimg.cc/ nor postimg.cc doesn't yield any fishy results, the only thing slightly a "something" going on about this domain was they changed from postimg.ORG to postimg.CC http://www.ballreviews.com/comments-and-suggestions/notice-for-any-users-using-postimageorg-to-host-pictures-in-their-posts-t316196.0.html
  3. This is just a dud executable that literally does nothing, it is made to replace nagging autoruns that cannot be turned of with a setting or even registry tweak. here is the site that I got it from http://www.stephan-brenner.com/?p=190 this is the virus total scan https://www.virustotal.com/en/file/4ac78b4b52b77938086381f698c7f7ba4e0493cb0c7271cd1bafddc0d0bf885f/analysis/1444277496/ DoNothing.exe Scan log.txt DoNothing.zip
  4. # AdwCleaner v3.213 - Report created 27/06/2014 at 17:51:48 # Updated 23/06/2014 by Xplode # Operating System : Windows 7 Ultimate Service Pack 1 (64 bits) # Username : userMel01 - userMel01 # Running from : D:\Mel\Downloads\AdwCleaner malwarebytes forum\adwcleaner_3.213.exe # Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A1CCCE0D-AE21-42A2-BE58-8E6109410995} ***** [ Browsers ] ***** -\\ Internet Explorer v10.0.9200.16921 -\\ Mozilla Firefox v29.0 (en-US) [ File : C:\Users\userMel01\AppData\Roaming\Mozilla\Firefox\Profiles\b9mym0ll.default\prefs.js ] -\\ Google Chrome v35.0.1916.153 [ File : C:\Users\userMel01\AppData\Local\Google\Chrome\User Data\Default\preferences ] Deleted [search Provider] : hxxp://search.aol.com/aol/search?query={searchTerms} Deleted [search Provider] : hxxp://www.ask.com/web?q={searchTerms} ************************* AdwCleaner[R8].txt - [1193 octets] - [27/06/2014 17:45:46] AdwCleaner[s3].txt - [1120 octets] - [27/06/2014 17:51:48] ########## EOF - C:\AdwCleaner\AdwCleaner[s3].txt - [1180 octets] ########## ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 7 Ultimate x64 Ran by CromwellMelFlores on Fri 06/27/2014 at 20:55:52.80 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on Fri 06/27/2014 at 21:04:34.62 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  5. RogueKiller V9.1.0.0 (x64) [Jun 23 2014] by Adlice Software mail : http://www.adlice.com/contact/ Feedback : http://forum.adlice.com Website : http://www.adlice.com/softwares/roguekiller/ Blog : http://www.adlice.com Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version Started in : Normal mode User : userMel01 [Admin rights] Mode : Scan -- Date : 06/27/2014 00:54:12 ¤¤¤ Bad processes : 0 ¤¤¤ ¤¤¤ Registry Entries : 12 ¤¤¤ [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 192.168.2.1 122.2.129.2 -> FOUND [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 192.168.2.1 122.2.129.2 -> FOUND [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{813B0806-72DB-4027-A85B-6594A59643CE} | DhcpNameServer : 192.168.2.1 122.2.129.2 -> FOUND [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{C409D0F6-1D5B-47E7-B753-26763D859B9F} | DhcpNameServer : 124.106.5.2 124.106.6.2 -> FOUND [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{813B0806-72DB-4027-A85B-6594A59643CE} | DhcpNameServer : 192.168.2.1 122.2.129.2 -> FOUND [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{C409D0F6-1D5B-47E7-B753-26763D859B9F} | DhcpNameServer : 124.106.5.2 124.106.6.2 -> FOUND [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters\Interfaces\{813B0806-72DB-4027-A85B-6594A59643CE} | DhcpNameServer : 192.168.2.1 124.106.4.2 -> FOUND [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters\Interfaces\{C409D0F6-1D5B-47E7-B753-26763D859B9F} | DhcpNameServer : 124.106.5.2 124.106.6.2 -> FOUND [PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> FOUND [PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> FOUND [PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> FOUND [PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> FOUND ¤¤¤ Scheduled tasks : 0 ¤¤¤ ¤¤¤ Files : 0 ¤¤¤ ¤¤¤ HOSTS File : 0 ¤¤¤ ¤¤¤ Antirootkit : 0 ¤¤¤ ¤¤¤ Web browsers : 0 ¤¤¤ ¤¤¤ MBR Check : ¤¤¤ +++++ PhysicalDrive0: WDC WD5000BPVT-22HXZT3 +++++ --- User --- [MBR] b76d48c781393a070623ba5235a23f74 [bSP] b65fb8ea2e6ba4bc1ee055c693cd0721 : Windows Vista/7/8 MBR Code Partition table: 0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 312 MB 1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 643072 | Size: 153600 MB 2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 315215872 | Size: 323025 MB User = LL1 ... OK User = LL2 ... OK
  6. also, what is this file doing in my system32/drivers/etc file name lmhosts.txt, I save a backup of it, then deleted it? whats your opinion of it?
  7. Lately I think my internet connection speed is being bogged down by something, I am not sure what is the cause, I am just ruling out the possibilities, I know u will think its probably my ISP provider, well thats one possibility, besides I haven't asked from a professional help on checking my system personally aside from malwarebytes prem, I've planned to ask for deeper inspection someday so here it is. This is from FRST.txt This from Addition.txt
  8. Malwarebytes custom scan hangs here C:\Windows\Web\Wallpaper\Windows\img0.jpg, and sometimes img26 but the arrow and still keeps spinning and the time keeps going up, but the location/file scanned img0.jpg is still the same, Im not sure but I think it scanned that file for one hour cause I was working with a very important data. I think we have the same problem here https://forums.malwarebytes.org/index.php?showtopic=143902 but no post helped. I think its software side problem, I know you employees were told to never admit its the softwares problem cause its bad for business we IT know that for a long time, soon it'll be a household knowledge. just fix it asap or whatever. My scan settings was the default plus adding the last unticked one I think sounded like rootkit? and scanning C and D PC specs: Operating SystemWindows 7 Ultimate 64-bit SP1CPUIntel Core i7 3630QM @ 2.40GHz Ivy Bridge 22nm TechnologyRAM8.00GB Dual-Channel DDR3 @ 665MHz (9-9-9-24)MotherboardMicro-Star International Co., Ltd. MS-16GA (SOCKET 0) GraphicsGeneric PnP Monitor (1366x768@60Hz)Intel HD Graphics 4000 (MSI)2047MB NVIDIA GeForce GT 650M (MSI) Hard Drives466GB Western Digital WDC WD5000BPVT-22HXZT3 (SATA) Optical DrivesPIONEER DVD-RW DVRTD11RSAudioBreakaway Pipeline Malwarebytes Anti-malware version 2.0.1.1004 build date 4/4/2014
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.