Jump to content

Repeated attempted outbound connection to 193.161.204.22


Recommended Posts

Earlier today, I got a notification from Malwarebytes that it caught an alleged Trojan making an outbound connection to 193.161.204.22 via Windscribe.exe. Running a whois got me some Finnish company called "Oy Crea Nova Hosting Solution Ltd" I've never heard of. Since then I've been regularly catching attempted outbound connections to the same IP address, but from "System" instead. Threat Scan did not catch anything and neither did Kaspersky real-time protection. I have been using Windscribe for years previously without it doing this, if that matters.

I have attached FRST, Addition, latest Threat Scan log, first instance of catching these attempted connections from Windscribe, and a sample subsequent one from System.

IP.png

20230830_0850.txt 20230830_1007.txt Addition.txt FRST.txt 20230830_1127.txt

Link to post
Share on other sites

  • Root Admin

Glad we could help.

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this topic with your request.

This applies only to the originator of this thread. Other members who need assistance please start your own topic in a new thread.

Please review the following to help you better protect your computer and privacy Tips to help protect from infection

Thank you

 

 

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.