Malwarebytes was blocking an incoming and outgoing request from an IP in china. Did a scan to see if there was something suspicious.
Based on the hijackthis log, I can't find anything suspicious
Please download HouseCall and scan your machine. Send me the log file or a screenshot of the windows showing if there is any infection:
Download and also scan your machine with rootkit buster tool, it may help to tell us if you have a rootkit/keylogger
You can also download and install this small program that will tell you if you're machine is a bot (part of a botnet) or not:
Hmm, I ran rootkit-buster and rubotted. Both returned negative. I'll run a full zonealarm scan tonight. Any reason to use housecall if I have Zonealarm?
When I logged in just now malwarebytes said it prevented a suspicious outgoing request from svchost.exe to 18.104.22.168 port 63840. A lookup put that in Romania.
I ran a zonealarm scan that found two viruses in a thunderbird inbox that I haven't used in quite a while. It said it treated them.
You should disable your zonealarm and run housecall, as different scanner may have different results. Also, you can run TDSS Killer tool and let me know if anything has been found. This connection to Romania clearly means that something is going on on your machine.
No update. Case closed.
Log in to post a comment.
Sign up for the SourceForge newsletter:
You seem to have CSS turned off.
Please don't fill out this field.