Malware Combofix Log Help

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by femaleneedshelp, Nov 26, 2016.

  1. femaleneedshelp

    femaleneedshelp Private E-2

    Hello i have been having some issues with my windows 7 pc
    I hope someone can help.

    Problems started a week ago i noticed that my ip was not changing and that my ip was from a company in holland "ripe.net" and not my ip providers range.

    since then i have ran /super-anti-spyware /malwarebytes /avira /avast scans with nothing found

    i then ran combofix and it flaged userinit.exe and repaired it

    today i had netstat showing 6 connections to ips in germany and england from a unlisted process

    i have 3 combofix log files if this helps

    thank you everyone
     

    Attached Files:

  2. femaleneedshelp

    femaleneedshelp Private E-2

    dds logs
     

    Attached Files:

  3. femaleneedshelp

    femaleneedshelp Private E-2

    sorry guys just read/done READ FIRST
     

    Attached Files:

  4. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Please upload the requested Malwarebytes' and RogueKiller text logs.
     
  5. femaleneedshelp

    femaleneedshelp Private E-2

    thanks you
     

    Attached Files:

  6. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Please download the latest version of Farbar Recovery Scan Tool and save it to your desktop.

    Note: Make sure you download the correct version ( 32 bit or 64 bit ) for your PC. Only the correct version will run so if you make a mistake and download the wrong one, go back and get the other.
    • Double-click to run it. When the tool opens click Yes to disclaimer.
    • Press the Scan button and wait.
    • The first time the tool is run it makes two logs, FRST.txt and Addition.txt in the same directory the tool is run.
    • Please upload them in your next reply.
     
  7. femaleneedshelp

    femaleneedshelp Private E-2

    strange agree ?
     

    Attached Files:

  8. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    You'll have to communicate with clearer meaning. Other than a bit of trash that will be taken care of in the below procedure, nothing major was found. Given the plethora of tools you've ran in the last month, perhaps now running an online scan will detect a problem.

    NOTE: This script was written specifically for this user for use on this particular computer. Running this on another machine may cause damage to your operating system.
    • Save the attached (fixlist.txt) to your desktop.
    • Right-click FRST(x32/64) and select Run as Administrator.
    • Click the FIX button once.
    • Wait while FRST processes fixlist.txt
    • A report should pop up named Fixlog.txt, please upload it here in your next reply.
    Next, go here ==> https://www.eset.com/us/online-scanner/ and click on the SCAN NOW radio button > save the esetonlinescanner_enu.exe Binary file to your Desktop > then right-click and choose "Run as Administrator". *Be patient! The scan can take 2hours or more. Post that result also.
     

    Attached Files:

    Last edited: Nov 27, 2016
  9. femaleneedshelp

    femaleneedshelp Private E-2

    hello again

    i dont see any uploaded attachment in your last post
     
  10. femaleneedshelp

    femaleneedshelp Private E-2

    ok got it now
     
  11. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    *Previous post reply has been edited for file upload.
     
  12. femaleneedshelp

    femaleneedshelp Private E-2

    x
     

    Attached Files:

  13. femaleneedshelp

    femaleneedshelp Private E-2

    hi eset is now finished and nothing was found.
     
    Last edited by a moderator: Nov 27, 2016
  14. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    It appears that you have a network settings issue not being caused by malware. I suggest you seek further help in our Software forum.

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase it, it provide no protection. It do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. Go back to step 6 of the READ ME and re-enable your Disk Emulation software with Defogger if you had disabled it.
    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista, Win 7/8/10 - it is time to make sure you have re-enabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. Go to the C:\MGtools folder and find the MGclean.bat file. Double-click on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    7. After doing the above, you should work through the below link:
    Safe surfing! [​IMG]
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds