Jump to content

outbound malicious connections


Recommended Posts

Ive had some malicious outbound connects from my web browsers (Icedragon, Chrome) im not sure if false positive or not but something seems off about them here are the mbam log.  ive attached the farbar logs too.

Malwarebytes Anti-Malware
www.malwarebytes.org


Update, 4/4/2016 12:16 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, No Internet connection detected,
Update, 4/4/2016 12:19 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Update, 4/4/2016 12:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Rootkit Database, 2016.3.30.1, 2016.4.3.1,
Update, 4/4/2016 12:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.3.4, 2016.4.4.1,
Protection, 4/4/2016 12:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/4/2016 12:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/4/2016 12:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/4/2016 12:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/4/2016 12:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/4/2016 12:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/4/2016 1:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.4.1, 2016.4.4.2,
Protection, 4/4/2016 1:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/4/2016 1:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/4/2016 1:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/4/2016 1:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/4/2016 1:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/4/2016 1:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/4/2016 2:20 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Update, 4/4/2016 2:26 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Update, 4/4/2016 2:38 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Scan, 4/4/2016 2:42 AM, SYSTEM, DESKTOP-PUDCBJ5, Context, Start:4/4/2016 2:20 AM, Duration:21 min 30 sec, Threat Scan, Completed, 0 Malware Detections, 0 Non-Malware Detections,
Update, 4/4/2016 2:44 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Update, 4/4/2016 3:33 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.4.2, 2016.4.4.3,
Protection, 4/4/2016 3:33 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/4/2016 3:33 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/4/2016 3:33 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/4/2016 3:33 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/4/2016 3:33 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/4/2016 3:33 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Protection, 4/4/2016 3:58 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Starting,
Protection, 4/4/2016 3:58 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Started,
Protection, 4/4/2016 3:58 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/4/2016 3:58 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Detection, 4/4/2016 4:16 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, File, PUP.Optional.AdOffer, C:\Users\Derik\AppData\Local\Temp\bitool.dll, Quarantine, [4390f8b2d2c7b87eeb6dcea07c86cb35]
Detection, 4/4/2016 4:17 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, File, PUP.Optional.OpenCandy, C:\Users\Derik\AppData\Local\Temp\nsuE5FA.tmp\OCSetupHlp.dll, Quarantine, [30a39a10366367cf5beede649d68837d]
Detection, 4/4/2016 4:35 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 209.197.3.41, 94982c5b634975e50103ce96082d2827.adsk2.co, 51520, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 4/4/2016 4:35 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 209.197.3.41, 94982c5b634975e50103ce96082d2827.adsk2.co, 51520, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 4/4/2016 5:17 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, File, PUP.Optional.AdOffer, C:\Users\Derik\AppData\Local\Microsoft\Windows\INetCache\IE\EHHPZ7TI\BiTool[1].dll, Quarantine, [785beac0960350e6ca8edc927b8706fa]
Detection, 4/4/2016 5:17 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, File, PUP.Optional.Somoto, C:\Users\Derik\AppData\Local\Microsoft\Windows\INetCache\IE\2RVUUYOO\setup[1].exe, Quarantine, [11c2d8d2f9a0f83e75e21fdda061bb45]

(end)

heres a logs from yesterday and a couple days ago too.

Malwarebytes Anti-Malware
www.malwarebytes.org


Update, 4/3/2016 1:13 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.2.6, 2016.4.3.1,
Protection, 4/3/2016 1:13 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/3/2016 1:13 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/3/2016 1:13 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/3/2016 1:13 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/3/2016 1:13 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/3/2016 1:13 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Scan, 4/3/2016 2:34 AM, SYSTEM, DESKTOP-PUDCBJ5, Context, Start:4/3/2016 2:12 AM, Duration:22 min 28 sec, Threat Scan, Completed, 0 Malware Detections, 0 Non-Malware Detections,
Detection, 4/3/2016 3:40 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 50.22.155.138, www.appscase.com, 60205, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 4/3/2016 3:40 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 50.22.155.138, www.appscase.com, 60205, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 4/3/2016 3:40 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 50.22.155.138, www.appscase.com, 60206, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 4/3/2016 3:40 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 50.22.155.138, www.appscase.com, 60207, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Update, 4/3/2016 3:42 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.3.1, 2016.4.3.2,
Protection, 4/3/2016 3:42 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/3/2016 3:42 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/3/2016 3:42 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/3/2016 3:43 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/3/2016 3:43 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/3/2016 3:43 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/3/2016 4:30 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Domain Database, 2016.4.2.1, 2016.4.3.1,
Protection, 4/3/2016 4:30 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/3/2016 4:30 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/3/2016 4:30 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/3/2016 4:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/3/2016 4:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/3/2016 4:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Protection, 4/3/2016 6:47 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Stopping,
Protection, 4/3/2016 6:47 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Stopped,
Protection, 4/3/2016 6:47 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/3/2016 6:47 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Update, 4/3/2016 7:36 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.3.2, 2016.4.3.3,
Protection, 4/3/2016 7:36 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/3/2016 7:36 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/3/2016 8:06 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Starting,
Protection, 4/3/2016 8:06 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Started,
Protection, 4/3/2016 8:06 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/3/2016 8:06 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Protection, 4/3/2016 8:56 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Stopping,
Protection, 4/3/2016 8:56 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Stopped,
Protection, 4/3/2016 9:17 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Starting,
Protection, 4/3/2016 9:17 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Started,
Update, 4/3/2016 10:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.3.3, 2016.4.3.4,
Protection, 4/3/2016 10:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/3/2016 10:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/3/2016 10:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/3/2016 10:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/3/2016 10:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/3/2016 10:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/3/2016 11:39 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Update, 4/3/2016 11:46 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Update, 4/3/2016 9:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, No Internet connection detected,
Update, 4/3/2016 9:13 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Update, 4/3/2016 9:32 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Update, 4/3/2016 9:46 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Update, 4/3/2016 9:50 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Update, 4/3/2016 9:56 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Update, 4/3/2016 10:40 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Update, 4/3/2016 10:46 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Update, 4/3/2016 11:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, No Internet connection detected,
Update, 4/3/2016 11:40 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Detection, 4/3/2016 11:46 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, File, PUP.Optional.Spigot, C:\Users\Derik\AppData\Local\Temp\nsa5DE.tmp\NSISPluginW.dll, Quarantine, [1f51e0ca0c8d7eb8737916386d9852ae]

(end)

Malwarebytes Anti-Malware
www.malwarebytes.org


Scan, 4/2/2016 2:35 AM, SYSTEM, DESKTOP-PUDCBJ5, Context, Start:4/2/2016 2:15 AM, Duration:20 min 12 sec, Threat Scan, Completed, 0 Malware Detections, 0 Non-Malware Detections,

Detection, 4/2/2016 5:19 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 121.54.58.243, 55429, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 4/2/2016 5:19 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 121.54.58.243, 55432, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 4/2/2016 5:19 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 121.54.58.243, 55429, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 4/2/2016 5:19 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 121.54.58.243, 55433, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 4/2/2016 5:19 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 121.54.58.243, 55434, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Protection, 4/2/2016 5:29 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/2/2016 5:29 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Update, 4/2/2016 5:30 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.2.1, 2016.4.2.2,
Protection, 4/2/2016 5:30 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/2/2016 5:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/2/2016 5:51 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/2/2016 5:51 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/2/2016 7:39 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.2.2, 2016.4.2.3,
Protection, 4/2/2016 7:39 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/2/2016 7:39 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/2/2016 7:39 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/2/2016 7:39 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/2/2016 7:39 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/2/2016 7:39 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/2/2016 9:25 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.2.3, 2016.4.2.4,
Protection, 4/2/2016 9:25 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/2/2016 9:25 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/2/2016 9:25 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/2/2016 9:25 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/2/2016 9:25 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/2/2016 9:25 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/2/2016 3:50 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.2.4, 2016.4.2.5,
Protection, 4/2/2016 3:50 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/2/2016 3:50 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/2/2016 3:50 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/2/2016 3:50 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/2/2016 3:50 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/2/2016 3:50 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/2/2016 5:28 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.2.5, 2016.4.2.6,
Protection, 4/2/2016 5:28 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/2/2016 5:28 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/2/2016 5:28 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/2/2016 5:28 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/2/2016 5:28 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/2/2016 5:28 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,

(end)

Malwarebytes Anti-Malware
www.malwarebytes.org


Update, 4/1/2016 12:21 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Domain Database, 2016.4.1.1, 2016.4.1.2,
Protection, 4/1/2016 12:21 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/1/2016 12:21 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/1/2016 12:21 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/1/2016 12:21 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/1/2016 12:21 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/1/2016 12:21 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/1/2016 12:34 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Domain Database, 2016.4.1.2, 2016.4.1.3,
Protection, 4/1/2016 12:34 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/1/2016 12:34 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/1/2016 12:34 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/1/2016 12:34 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/1/2016 12:34 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/1/2016 12:34 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Scan, 4/1/2016 2:10 AM, SYSTEM, DESKTOP-PUDCBJ5, Context, Start:4/1/2016 1:52 AM, Duration:17 min 22 sec, Threat Scan, Completed, 0 Malware Detections, 0 Non-Malware Detections,
Scan, 4/1/2016 2:35 AM, SYSTEM, DESKTOP-PUDCBJ5, Context, Start:4/1/2016 2:20 AM, Duration:15 min 47 sec, Threat Scan, Completed, 0 Malware Detections, 0 Non-Malware Detections,
Protection, 4/1/2016 3:13 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Starting,
Protection, 4/1/2016 3:13 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Started,
Protection, 4/1/2016 3:13 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/1/2016 3:13 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Protection, 4/1/2016 3:29 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Starting,
Protection, 4/1/2016 3:29 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Started,
Protection, 4/1/2016 3:29 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/1/2016 3:29 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Protection, 4/1/2016 3:30 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/1/2016 3:30 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/1/2016 3:30 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Stopping,
Protection, 4/1/2016 3:30 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Stopped,
Update, 4/1/2016 3:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Manual, Failed, No Internet connection detected,
Protection, 4/1/2016 3:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Starting,
Protection, 4/1/2016 3:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Started,
Protection, 4/1/2016 3:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/1/2016 3:41 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Protection, 4/1/2016 3:52 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Starting,
Protection, 4/1/2016 3:52 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Started,
Protection, 4/1/2016 3:52 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/1/2016 3:52 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/1/2016 4:30 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.1.1, 2016.4.1.2,
Protection, 4/1/2016 4:30 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/1/2016 4:30 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/1/2016 4:30 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/1/2016 4:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/1/2016 4:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/1/2016 4:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/1/2016 7:19 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.1.2, 2016.4.1.3,
Protection, 4/1/2016 7:19 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/1/2016 7:19 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/1/2016 7:19 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/1/2016 7:20 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/1/2016 7:20 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/1/2016 7:20 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/1/2016 3:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, IP Database, 2016.3.28.1, 2016.4.1.1,
Update, 4/1/2016 3:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Domain Database, 2016.4.1.3, 2016.4.1.8,
Update, 4/1/2016 3:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.1.3, 2016.4.1.5,
Protection, 4/1/2016 3:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/1/2016 3:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/1/2016 3:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/1/2016 3:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/1/2016 3:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/1/2016 3:35 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/1/2016 4:40 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, No Internet connection detected,
Protection, 4/1/2016 5:12 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Starting,
Protection, 4/1/2016 5:12 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Started,
Protection, 4/1/2016 5:12 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/1/2016 5:12 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/1/2016 5:25 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, No Internet connection detected,
Update, 4/1/2016 5:28 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, Unable to access update server,
Update, 4/1/2016 5:37 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.1.5, 2016.4.1.6,
Protection, 4/1/2016 5:37 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/1/2016 5:37 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/1/2016 5:37 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/1/2016 5:37 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/1/2016 5:37 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/1/2016 5:37 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Detection, 4/1/2016 8:18 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 217.13.124.96, play.leadzupc.com, 50550, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 4/1/2016 8:18 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 217.13.124.96, play.leadzupc.com, 50550, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 4/1/2016 8:18 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 217.13.124.96, play.leadzupc.com, 50551, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 4/1/2016 8:18 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 217.13.124.96, play.leadzupc.com, 50552, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 4/1/2016 8:18 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 217.13.124.96, play.leadzupc.com, 50553, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Protection, 4/1/2016 9:43 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Starting,
Protection, 4/1/2016 9:43 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Started,
Protection, 4/1/2016 9:43 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/1/2016 9:43 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/1/2016 10:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Domain Database, 2016.4.1.8, 2016.4.2.1,
Protection, 4/1/2016 10:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/1/2016 10:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/1/2016 10:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/1/2016 10:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/1/2016 10:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/1/2016 10:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 4/1/2016 11:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.4.1.6, 2016.4.2.1,
Protection, 4/1/2016 11:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 4/1/2016 11:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 4/1/2016 11:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 4/1/2016 11:31 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 4/1/2016 11:31 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 4/1/2016 11:31 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,

(end)

Malwarebytes Anti-Malware
www.malwarebytes.org


Detection, 3/31/2016 12:31 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 169.54.57.122, www.appscase.com, 54772, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/31/2016 12:32 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 184.173.138.110, 6e.8a.adb8.ip4.static.sl-reverse.com, 54803, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/31/2016 12:32 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 184.173.138.110, 6e.8a.adb8.ip4.static.sl-reverse.com, 54803, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/31/2016 12:34 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 50.22.179.158, 9e.b3.1632.ip4.static.sl-reverse.com, 54858, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/31/2016 12:34 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 50.22.179.158, 9e.b3.1632.ip4.static.sl-reverse.com, 54858, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Scan, 3/31/2016 2:06 AM, SYSTEM, DESKTOP-PUDCBJ5, Context, Start:3/31/2016 1:50 AM, Duration:16 min 13 sec, Threat Scan, Completed, 0 Malware Detections, 0 Non-Malware Detections,
Scan, 3/31/2016 2:26 AM, SYSTEM, DESKTOP-PUDCBJ5, Context, Start:3/31/2016 2:10 AM, Duration:15 min 26 sec, Threat Scan, Completed, 0 Malware Detections, 0 Non-Malware Detections,
Update, 3/31/2016 3:32 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.3.30.8, 2016.3.31.1,
Protection, 3/31/2016 3:32 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 3/31/2016 3:32 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 3/31/2016 3:32 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 3/31/2016 3:33 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 3/31/2016 3:33 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 3/31/2016 3:33 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 3/31/2016 6:22 AM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.3.31.1, 2016.3.31.2,
Protection, 3/31/2016 6:22 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 3/31/2016 6:22 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 3/31/2016 6:22 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 3/31/2016 6:23 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 3/31/2016 6:23 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 3/31/2016 6:23 AM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 3/31/2016 4:33 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Domain Database, 2016.3.30.4, 2016.3.31.5,
Update, 3/31/2016 4:33 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.3.31.2, 2016.3.31.5,
Protection, 3/31/2016 4:33 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 3/31/2016 4:33 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 3/31/2016 4:33 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 3/31/2016 4:33 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 3/31/2016 4:33 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 3/31/2016 4:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 3/31/2016 5:29 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Domain Database, 2016.3.31.5, 2016.3.31.8,
Protection, 3/31/2016 5:29 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 3/31/2016 5:29 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 3/31/2016 5:29 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 3/31/2016 5:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 3/31/2016 5:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 3/31/2016 5:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 3/31/2016 6:45 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.3.31.5, 2016.3.31.6,
Protection, 3/31/2016 6:45 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 3/31/2016 6:45 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 3/31/2016 6:45 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 3/31/2016 6:45 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 3/31/2016 6:45 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 3/31/2016 6:45 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 3/31/2016 11:33 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Domain Database, 2016.3.31.8, 2016.4.1.1,
Update, 3/31/2016 11:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.3.31.6, 2016.4.1.1,
Protection, 3/31/2016 11:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 3/31/2016 11:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 3/31/2016 11:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 3/31/2016 11:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 3/31/2016 11:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 3/31/2016 11:34 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,

(end)

Malwarebytes Anti-Malware
www.malwarebytes.org


Scan, 3/30/2016 2:22 AM, SYSTEM, DESKTOP-PUDCBJ5, Context, Start:3/30/2016 2:04 AM, Duration:17 min 49 sec, Threat Scan, Completed, 0 Malware Detections, 0 Non-Malware Detections,
Update, 3/30/2016 6:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Rootkit Database, 2016.3.12.1, 2016.3.30.1,
Update, 3/30/2016 6:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Domain Database, 2016.3.29.5, 2016.3.30.4,
Update, 3/30/2016 6:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Malware Database, 2016.3.30.1, 2016.3.30.8,
Protection, 3/30/2016 6:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Starting,
Protection, 3/30/2016 6:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopping,
Protection, 3/30/2016 6:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Stopped,
Protection, 3/30/2016 6:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Refresh, Success,
Protection, 3/30/2016 6:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 3/30/2016 6:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Protection, 3/30/2016 7:29 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Starting,
Protection, 3/30/2016 7:29 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malware Protection, Started,
Protection, 3/30/2016 7:29 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Starting,
Protection, 3/30/2016 7:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Started,
Update, 3/30/2016 7:30 PM, SYSTEM, DESKTOP-PUDCBJ5, Scheduler, Failed, No Internet connection detected,
Detection, 3/30/2016 10:14 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 169.54.57.122, www.appscase.com, 53596, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:14 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 169.54.57.122, www.appscase.com, 53597, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:14 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 169.54.57.122, www.appscase.com, 53596, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:14 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 169.54.57.122, www.appscase.com, 53600, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:14 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 169.54.57.122, www.appscase.com, 53601, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:27 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53701, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:27 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53701, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:27 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53702, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:27 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53703, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:27 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53704, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:27 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53705, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:27 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53706, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:28 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53722, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:28 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53723, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:28 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53724, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:28 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53725, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:50 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53952, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:50 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53953, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:50 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53954, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:50 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53955, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:50 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53956, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 10:50 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53957, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53979, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53980, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53981, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53982, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53983, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:07 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 53984, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:17 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 54011, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:17 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 54012, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:17 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 54013, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:17 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 54014, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:17 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 54015, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:17 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 54016, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:17 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 54019, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:19 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 54034, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:19 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 54035, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:19 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 54036, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:19 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 54037, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:19 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 54038, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:19 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, IP, 195.2.252.199, img10.lostpic.net, 54039, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:35 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 184.173.138.110, www.appscase.com, 54275, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,
Detection, 3/30/2016 11:35 PM, SYSTEM, DESKTOP-PUDCBJ5, Protection, Malicious Website Protection, Domain, 184.173.138.110, www.appscase.com, 54275, Outbound, C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe,

(end)

FRST.txt

Addition.txt

Link to post
Share on other sites

  • Step #1 Fix with AdwCleaner
    • Download AdwCleaner by Xplode to your Desktop from the following link.
    • Right-click on AdwCleaner.exe and choose Run as administrator;
    • Click on Option and put a tick mark on everything;
    • Click on Scan and let the program run unhindered;
    • When done, click on Clean and allow the system to reboot after it is done;
    • A log will be opened automatically after the restart. If not, it is located in C:\AdwCleaner\AdwCleaner[CX].txt, where X is replaced with a number;
    • Copy and Paste the contents of this log in your reply.

 


  • Step #2 Fix with Junkware Removal Tool
    Download Junkware Removal Tool by thisisu to your Desktop from the link below.
    Download Link 1
    Download Link 2
    • Disable your anti-virus to avoid potential conflicts. For more information please acknowledge yourself this article;
    • Run the program either by double-clicking(Windows XP) or Right-clicking and choosing Run as administrator(Windows Vista and above);
    • Please be patient as the tool cleans your system;
    • After completion of the process a log named JRT.txt will automatically open and is save to your Desktop;
    • Copy and Paste the contents of the log in your next reply.

Link to post
Share on other sites

Heres the adwcleaner log. Also i had a certificate for gotomanage.com ask to be installed today it popped up a bunch of times i clicked no everytime.

# AdwCleaner v5.109 - Logfile created 04/04/2016 at 22:11:57
# Updated 04/04/2016 by Xplode
# Database : 2016-04-03.2 [Local]
# Operating system : Windows 10 Pro  (x64)
# Username : Derik - DESKTOP-PUDCBJ5
# Running from : C:\Users\Derik\Downloads\AdwCleaner.exe
# Option : Clean
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****


***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****


*************************

:: "Image File Execution Options" keys deleted
:: "Tracing" keys deleted
:: "Prefetch" files deleted
:: Proxy settings cleared
:: Winsock settings cleared
:: TCP/IP settings cleared
:: Firewall settings cleared
:: IPSec settings cleared
:: BITS queue cleared
:: IE policies deleted
:: Chrome policies deleted

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [952 bytes] - [04/04/2016 22:11:57]
C:\AdwCleaner\AdwCleaner[S1].txt - [749 bytes] - [04/04/2016 00:10:57]
C:\AdwCleaner\AdwCleaner[S2].txt - [828 bytes] - [04/04/2016 06:05:56]
C:\AdwCleaner\AdwCleaner[S3].txt - [893 bytes] - [04/04/2016 22:02:33]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1240 bytes] ##########

 

Link to post
Share on other sites

Heres the jrt log. It says limited even though i ran as admin.

Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.4 (03.14.2016)
Operating System: Windows 10 Pro x64

Ran by Derik (Limited) on Mon 04/04/2016 at 22:30:40.63
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 


File System: 0

 


Registry: 0

 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Mon 04/04/2016 at 22:33:44.81
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 

Link to post
Share on other sites

Step # ESET Online Scanner
Disable your security programs which includes but not limited to anti-virus, anti-malware, anti-spyware et cetera. Peruse this for additional information.

  • Download esetsmartinstaller_enu.exe by clicking here.
  • Right-click on the program and choose Run as administrator.
  • Accept their terms and condition and proceed.
  • Install Add-On/Active X if prompted.
  • From the Computer Scan Setting check the following box --
    • Enable detection for potentially unwanted programs
  • Click on Advanced Setting --
    • Uncheck the box beside Remove Found Threats;
    • Check the box beside Scan archives
    • Check the box beside Scan for potentially unsafe applications
    • Check the box beside Enable Anti-Stealth Technology
  • Click on Start and wait for the virus signature database to update.
  • The online scan will begin automatically and can take several hours.
    • Note: Do not touch either the Mouse or keyboard during the scan. Otherwise it may stall.
  • After the Scan finishes --
    • If no threats were found:
      • Put a checkmark in Uninstall application on close.
      • Close the program and report that nothing was found
    • If threats were found:
      • Open the file located in C:\Program Files\ESET\ESET Online Scanner\log.txt (32-bit) or C:\Program Files (x86)\ESET\ESET Online Scanner\log.txt (64-bit).
      • Copy and Paste contents of the log file in your next reply.

Note: Enable your security programs afterwards.

Link to post
Share on other sites

  • Root Admin

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.