Jump to content

my malwarebytes keeps on blocking several ip addresses (type: outgoing)..


Recommended Posts

  • Replies 69
  • Created
  • Last Reply

Top Posters In This Topic

2012/03/14 22:20:19 +0100 HERB-PC herb DETECTION C:\Users\herb\Downloads\Firefox Setup 11.0.exe Trojan.FakeFireFox QUARANTINE

2012/03/14 22:20:20 +0100 HERB-PC herb DETECTION c:\users\herb\downloads\firefox setup 11.0.exe Trojan.FakeFireFox DENY

NOW U WANT MALWARE IN MY PC??? :D should i install this??

Link to post
Share on other sites

i did download firefox again and shows no report.. am on firefox now tryed to download something from AMD site and speed seems little faster its constantly on 200kb/s

also i did scan before updating MBAM

Malwarebytes Anti-Malware (PRO) 1.60.1.1000

www.malwarebytes.org

Database version: v2012.03.14.05

Windows 7 Service Pack 1 x64 NTFS

Internet Explorer 9.0.8112.16421

herb :: HERB-PC [administrator]

Protection: Enabled

3/14/2012 10:53:03 PM

mbam-log-2012-03-14 (22-56-28).txt

Scan type: Quick scan

Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM | P2P

Scan options disabled:

Objects scanned: 187067

Time elapsed: 2 minute(s), 44 second(s)

Memory Processes Detected: 0

(No malicious items detected)

Memory Modules Detected: 0

(No malicious items detected)

Registry Keys Detected: 0

(No malicious items detected)

Registry Values Detected: 0

(No malicious items detected)

Registry Data Items Detected: 0

(No malicious items detected)

Folders Detected: 0

(No malicious items detected)

Files Detected: 1

C:\Users\herb\Downloads\Firefox Setup 11.0.exe (Trojan.FakeFireFox) -> No action taken.

(end)

it show that fake fire fox

and after update shows no infection

Malwarebytes Anti-Malware (PRO) 1.60.1.1000

www.malwarebytes.org

Database version: v2012.03.14.07

Windows 7 Service Pack 1 x64 NTFS

Internet Explorer 9.0.8112.16421

herb :: HERB-PC [administrator]

Protection: Enabled

3/14/2012 10:58:06 PM

mbam-log-2012-03-14 (22-58-06).txt

Scan type: Quick scan

Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM | P2P

Scan options disabled:

Objects scanned: 187119

Time elapsed: 2 minute(s), 20 second(s)

Memory Processes Detected: 0

(No malicious items detected)

Memory Modules Detected: 0

(No malicious items detected)

Registry Keys Detected: 0

(No malicious items detected)

Registry Values Detected: 0

(No malicious items detected)

Registry Data Items Detected: 0

(No malicious items detected)

Folders Detected: 0

(No malicious items detected)

Files Detected: 0

(No malicious items detected)

(end)

Link to post
Share on other sites

MBAM

2012/03/15 03:14:11 +0100 HERB-PC herb IP-BLOCK 77.78.192.111 (Type: outgoing, Port: 51926, Process: avwebgrd.exe)

2012/03/15 03:30:46 +0100 HERB-PC herb IP-BLOCK 77.78.192.111 (Type: outgoing, Port: 52089, Process: avwebgrd.exe)

was on firefox trying to do speed test again.. and on start of the test blocked....

no p2p software installed, it seems to me that every time i open some port something is trying to get out (IN)

same when I try to play online game, 1st am spiking with ping 70-130 then it go sick high 1k,2k,3k,4k,5k,6000ping and am out from sever

Link to post
Share on other sites

Glad we could help. :)

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.

Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.