Jump to content

HexxiumGamingYT

Members
  • Posts

    11
  • Joined

  • Last visited

Everything posted by HexxiumGamingYT

  1. While watching a YouTube video, I noticed Malwarebytes starting to go insane with notifications blocking both inbound and outbound connections from the IP 121.54.58.246 to Skype. I never have any ads in Skype and while Malwarebytes does randomly block IP's inbound to skype at times, its never been anything like this before. A quick google search of this IP address reveals that it is listed in the StopForumSpam database as well as project honeypot who states it is used in dictionary attacks (see attached image). I have attached the Malwarebytes protection log, should I be concerned about this? malwarebytes.txt
  2. I'm not sure if this is the exact location to place this, but I would like to inform you of my experience with the Total Security rogue which appears to be a ripoff of Bitdefender. In my testing, Malwarebytes did detect the Rogue antivirus as shown in the attached picture and did supposedly remove it, however, upon restart (as requested by Malwarebytes when the scan completed), the Rogue is still there and appears untouched, it will boot with the operating system as well. I would be happy to submit this sample of the rogue so that you can improve Malwarebytes's removal of it if needed. Also, if this topic isn't in the right place, please do tell me where this kind of topic should go. Thank you.
  3. PC appears to be behaving normally, thank you. If I notice any future issue or this reappearing, I'll be sure to let you know
  4. I've attached both logs, also please note that in the past uTorrent was installed, however it should be long gone by now as I uninstalled it a while back, might still be in the registry, not sure how effective uTorrent uninstalls itself FRST.txt Addition.txt
  5. While simply using my computer like always, watching YouTube videos, Malwarebytes notified me that it blocked an outgoing IP from svchost.exe which seems to me only malware would cause that and the IP that it was attempting to contact was in the Netherlands and clearly marked as malicious by Malwarebytes, I've attached the photos of both Malwarebytes notifying me and of Rkill supposedly fixing something with svchost.exe as well as the malwarebytes hyperscan log, what are you guy's thoughts on this? Malware or no? Log: Malwarebytes Anti-Malwarewww.malwarebytes.org Detection, 11/8/2015 4:07 PM, SYSTEM, HEXXIUMYT-PC, Protection, Malicious Website Protection, IP, 94.102.52.166, 49489, Outbound, C:\Windows\System32\svchost.exe, Detection, 11/8/2015 4:07 PM, SYSTEM, HEXXIUMYT-PC, Protection, Malicious Website Protection, IP, 94.102.52.166, 49489, Outbound, C:\Windows\System32\svchost.exe, Update, 11/8/2015 4:07 PM, SYSTEM, HEXXIUMYT-PC, Manual, Remediation Database, 2015.11.4.1, 2015.11.8.2, Update, 11/8/2015 4:08 PM, SYSTEM, HEXXIUMYT-PC, Manual, Malware Database, 2015.11.7.6, 2015.11.8.5, Protection, 11/8/2015 4:08 PM, SYSTEM, HEXXIUMYT-PC, Protection, Refresh, Starting, Protection, 11/8/2015 4:08 PM, SYSTEM, HEXXIUMYT-PC, Protection, Malicious Website Protection, Stopping, Protection, 11/8/2015 4:08 PM, SYSTEM, HEXXIUMYT-PC, Protection, Malicious Website Protection, Stopped, Protection, 11/8/2015 4:08 PM, SYSTEM, HEXXIUMYT-PC, Protection, Refresh, Success, Protection, 11/8/2015 4:08 PM, SYSTEM, HEXXIUMYT-PC, Protection, Malicious Website Protection, Starting, Protection, 11/8/2015 4:08 PM, SYSTEM, HEXXIUMYT-PC, Protection, Malicious Website Protection, Started, Scan, 11/8/2015 4:10 PM, SYSTEM, HEXXIUMYT-PC, Manual, Start:11/8/2015 4:08 PM, Duration:2 min 12 sec, Hyper Scan, Completed, 0 Malware Detections, 0 Non-Malware Detections
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.