Jump to content

svchost.exe trojan and IP address blocking


Recommended Posts

Howdy. I use CA and MBAM Pro and am having the same issues as seen in this topic (with Larry Tate assisting another user) and have run all programs suggested, up to/including using tdsskiller: http://forums.malwarebytes.org/index.php?showtopic=103456&st=40

Tdsskiller unlocked a kit and a re-scan with MBAM successfully quarantined the trojan. I've gotten PEV.exe scanned and below are the results. Can someone help for my specific situation?

Thanks!

Antivirus Version Last Update Result

AhnLab-V3 2012.01.09.00 2012.01.09 -

AntiVir 7.11.20.203 2012.01.09 -

Antiy-AVL 2.0.3.7 2012.01.09 -

Avast 6.0.1289.0 2012.01.09 Win32:Rootkit-gen [Rtk]

AVG 10.0.0.1190 2012.01.10 -

BitDefender 7.2 2012.01.10 -

ByteHero 1.0.0.1 2011.12.31 -

CAT-QuickHeal 12.00 2012.01.09 -

ClamAV 0.97.3.0 2012.01.09 PUA.Packed.PECompact-1

Commtouch 5.3.2.6 2012.01.09 -

Comodo 11226 2012.01.09 -

DrWeb 5.0.2.03300 2012.01.09 -

Emsisoft 5.1.0.11 2012.01.09 Win32.Rootkit!IK

eSafe 7.0.17.0 2012.01.09 Suspicious File

eTrust-Vet 37.0.9672 2012.01.09 -

F-Prot 4.6.5.141 2012.01.09 -

F-Secure 9.0.16440.0 2012.01.09 -

Fortinet 4.3.388.0 2012.01.09 -

GData 22.342/22.635 2012.01.09 Win32:Rootkit-gen

Ikarus T3.1.1.109.0 2012.01.09 Win32.Rootkit

Jiangmin 13.0.900 2012.01.09 -

K7AntiVirus 9.124.5897 2012.01.09 -

Kaspersky 9.0.0.837 2012.01.09 -

McAfee 5.400.0.1158 2012.01.10 -

McAfee-GW-Edition 2010.1E 2012.01.09 -

Microsoft 1.7903 2012.01.09 -

NOD32 6780 2012.01.09 -

Norman 6.07.13 2012.01.09 -

nProtect 2012-01-09.01 2012.01.09 -

Panda 10.0.3.5 2012.01.09 -

PCTools 8.0.0.5 2012.01.10 -

Prevx 3.0 2012.01.10 -

Rising 23.92.00.02 2012.01.09 -

Sophos 4.73.0 2012.01.09 -

SUPERAntiSpyware 4.40.0.1006 2012.01.10 Trojan.Dropper/Gen

Symantec 20111.2.0.82 2012.01.10 -

TheHacker 6.7.0.1.373 2012.01.08 -

TrendMicro 9.500.0.1008 2012.01.09 -

TrendMicro-HouseCall 9.500.0.1008 2012.01.10 -

VBA32 3.12.16.4 2012.01.09 -

VIPRE 11376 2012.01.09 -

ViRobot 2012.1.9.4871 2012.01.09 -

VirusBuster 14.1.158.1 2012.01.09 -

Additional information

MD5 : f042ee4c8d66248d9b86dcf52abae416

SHA1 : 4cd785c7c3e40c42e3d126086d986c4d4d940bb2

SHA256: ae0f5cc54e4b133df66a54572a7ce52faff11f8fd0caeab088aad3699d6ec924

I continued to follow the aforementioned thread and was able to clean my computer of the virus using the same final steps.

A special thanks to Larry for his persistence to help the other user and, consequently, also helping me. :D

Link to post
Share on other sites

  • 1 month later...

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.