Jump to content

rcarlosng

Members
  • Posts

    5
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Everything indicates that the malware has been removed from the computer, thank you very much for the excellent support provided. Please find attached the Fixlog.txt file in case it is required. Thank you again for the support provided to solve this case. Fixlog.txt
  2. I attach the files indicated in steps 1, 2 and 3. I reiterate my thanks for all the support provided so far. quarantined(Malwarebytes).txtAdwCleaner[C00].txt Addition.txt FRST.txt
  3. I have run a quick scan, once again the same result appeared, attached is the .log Thanks msert.log
  4. Thank you for your prompt reply, I've already uninstalled the suggested programs. I ran a full scan, this is what was found, attached is the file Threat Detected: VirTool:Win32/DefenderTamperingRestore and Removed! Action: Remove, Result: 0x00000000 regkeyvalue://hklm\software\microsoft\windows defender\\DisableAntiSpyware SigSeq: 0x0000055555C57273 The other one is a activation program However in the RTP detection the powershell communication block is still displayed. I remain attentive to what would be the next steps to eradicate this problem. Thanks again msert.log
  5. hello forum I am looking for help with the following problem, malewarebytes stops every half hour the powershell communication to a certain ip address, I have tried but I can't solve this situation, I have already done a scan with FRST.exe and I attach the files created. I hope someone can help me, I will be very grateful. Addition.txt FRST.txt Shortcut.txt
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.