Jump to content

Akonyl

Members
  • Posts

    2
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Hi, recently (last night) I was infected by both Antivirus Vista and Support Tools. Using MBAM, along with some other tools (Spybot, Spyware Doctor), I was able to disinfect my computer of these programs, re-enable System Restore and roll back to an earlier date. However, I still have some sort of malware that is generating popups, and attempting to access malicious IPs. In firefox, some of the sites that will open include chatfree.org, blackcard.com, christianchildrenfund.org (or something like that), some casino site, etc. MBAM then has notifications that tell me traffic to the following malicious IPs have been blocked: 213.163.89.104 213.163.89.105 213.163.89.106 At times, these notifications would occur approx every 10 seconds, but have since subsided to once every 10+ minutes (actually, it seems to have picked up a little bit since I started this post). The only issue is that MBAM is unable to locate the cause during scans, with even a full scan returning only one item (which was a false positive probably, but I deleted it anyway), and it still persists. The protection log shows what IP was blocked, but is it possible at all to find the source process that's attempting to generate this traffic? Looking around, I suspected it may be Virut, but after downloading a virut utility from symantec it claims it's not Virut.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.