Olav
-
Posts
4 -
Joined
-
Last visited
Content Type
Events
Profiles
Forums
Posts posted by Olav
-
-
Here are the log files generated as requested in the instructions
Addition.txt AdwCleaner[C00].txt FRST.txt Malwarebytes Scan Report 2024-08-15 192546.txt
-
1
-
-
Hello, and thank you for your answers!
Yes, I'm definitely still here, I just got caught up in some other urgent paperwork that needed to be finished, and I'm so sorry for the late reply.
Let me get started on the procedure, and I'll be right back with the answers to the instructions.
Thank you!
-
1
-
-
Hello!
At irregular intervals, Malwarebytes blocks outbound powershell connections in category 'Riskware' going to 'imonews.net', with the IP-address: 172.67.190.202 on port: 443.
It also blocks outbound powershell connections in category 'Riskware' going to the IP-address: 135.181.231.130 on port: 80.This has been going on for a few months now, but neither Malwarebytes nor Symantec Endpoint Protection (14.3 RU9) find anything when doing a full scan of the computer. Both apps are updated to the latest version.
At one time, Symantec Endpoint Protection also terminated a powershell process with the risk name: 'CL.Downloader!gen96'.
I'm on a Windows 11 23H2 PC, and I've tried to disable powershell as outlined here: https://www.thewindowsclub.com/how-to-disable-powershell-windows-10, but it did not fix the problem. FYI, I've enabled powershell in the OS again.
Can someone please help me look into and hopefully solve this?
Blocked outbound powershell connections.
in Resolved Malware Removal Logs
Posted
Thank you, I will get back to you when the issues outlined have been corrected.