Jump to content

malicious website being accessed continuously by svchost


Recommended Posts

Our computers' svchost process is attempting to access malicious websites every 5 seconds.  This has been going on for months and we've suppressed the popups just to make the machine usable.  I've run AdwCleaner and JRT with no joy.  I ran FRST and the output is attached, along with a sample protection log.  I'm running Unmanaged MalwareBytes Endpoint Security 1.7.1 purchased Oct 13, 2016.  I'm unable to find the Breach Remediation tool.  Can you help ridding us of this?

Addition.txt

FRST.txt

protection-log-2018-02-23.txt

Link to post
Share on other sites

  • Root Admin

Can we get a Threat Scan log from the program please.

Have you check for program updates? We don't show that current rules should be blocking at least some of those addresses.

The logs shows that the updates are not working.

 

2018/02/23 12:36:52 -0500 MAX-LABELLER Max MESSAGE Executing scheduled update: Daily

2018/02/23 12:36:53 -0500 MAX-LABELLER Max ERROR Scheduled update failed: Host not found failed with error code 11001

2018/02/23 12:37:00 -0500 MAX-LABELLER Max IP-BLOCK 184.84.35.120 (Type: outgoing, Port: 63784, Process: mbamscheduler.exe)

2018/02/23 12:37:00 -0500 MAX-LABELLER Max IP-BLOCK 184.84.35.120 (Type: outgoing, Port: 63786, Process: mbamscheduler.exe)

2018/02/23 12:37:00 -0500 MAX-LABELLER Max IP-BLOCK 184.84.35.120 (Type: outgoing, Port: 63788, Process: mbamscheduler.exe)

 

Thanks

 

Link to post
Share on other sites

  • Root Admin

Glad we could help.

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this topic with your request.

This applies only to the originator of this thread.Other members who need assistance please start your own topic in a new thread.

Thanks

 

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.