Author Topic: Essexboy......Halp!  (Read 3352 times)

0 Members and 1 Guest are viewing this topic.

avastreally?

  • Guest
Essexboy......Halp!
« on: March 31, 2014, 08:51:32 AM »
Malwarebytes anti exploit popupped saying the beta stage is up and launched chrome with errors
now google chrome can't open (the sandbox one works though)

i ran roguekiller and found some weird hooks

Ran adware cleaner and found one registry thingy that was dealt with a long time ago on this forum

# AdwCleaner v3.022 - Report created 31/03/2014 at 01:29:13
# Updated 13/03/2014 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 (32 bits)
# Username : PatricK - PATRICK-PC
# Running from : C:\Users\PatricK\Desktop\Marvin Gaye\New folder\New folder\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\AppDataLow\Software\bearsharemediabartb

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16521


-\\ Mozilla Firefox v

[ File : C:\Users\PatricK\AppData\Roaming\Mozilla\Firefox\Profiles\0\prefs.js ]


-\\ Google Chrome v33.0.1750.154

[ File : C:\Users\PatricK\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [976 octets] - [31/03/2014 01:25:37]
AdwCleaner[S0].txt - [900 octets] - [31/03/2014 01:29:13]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [959 octets] ##########


roguekiller came back clean and all scans from malwarebytes, avast, eset online scan where all clean
edit: chrome is back now but only when lauched as admin, if launched regularly windows makes a error sound , then i see chrome.exe in taskmanager using 50% or more cpu
« Last Edit: March 31, 2014, 09:03:30 AM by avastreally? »

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37529
  • Not a avast user
Re: Essexboy......Halp!
« Reply #1 on: March 31, 2014, 09:14:03 AM »
Quote
Malwarebytes anti exploit popupped saying the beta stage is up and launched chrome with errors
now google chrome can't open (the sandbox one works though)
sounds like a malwarebytes / Chrome problem .....have you checked MBAM forum ?


Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Essexboy......Halp!
« Reply #2 on: March 31, 2014, 03:33:04 PM »
Can't seem to get to malwarebytes forum at the moment, but evidently there is a new beta posted there

avastreally?

  • Guest
Re: Essexboy......Halp!
« Reply #3 on: April 01, 2014, 06:43:28 AM »
Quote
Malwarebytes anti exploit popupped saying the beta stage is up and launched chrome with errors
now google chrome can't open (the sandbox one works though)
sounds like a malwarebytes / Chrome problem .....have you checked MBAM forum ?
Yeh, ive gotten a new one thx :)


@Essexboy the roguekiller logs are ok?

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Essexboy......Halp!
« Reply #4 on: April 01, 2014, 03:48:21 PM »
Ooops yes no problem there at all :)

avastreally?

  • Guest
Re: Essexboy......Halp!
« Reply #5 on: April 02, 2014, 04:02:00 AM »
ok thx
 :)

avastreally?

  • Guest
Re: Essexboy......Halp!
« Reply #6 on: April 19, 2014, 03:48:11 PM »
bump

hey i ran into some suspicious activities this week and i realize when i ran roguekiller , the drivers are hooked, comparing it to the last roguekiller logs i gave i see networkexplorer.dll

what i'm wondering is why are these being show when i have not other program running, usually my driver section of the scan is clean
could it be malwarebytes antiexploit (it the lastest program i have installed)



Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Essexboy......Halp!
« Reply #7 on: April 19, 2014, 04:51:26 PM »
Have you updated RogueKiller/windows or changed the settings ?  As those hooks are normal and are related to GDI graphics elements

avastreally?

  • Guest
Re: Essexboy......Halp!
« Reply #8 on: April 24, 2014, 01:11:01 AM »
Have you updated RogueKiller/windows or changed the settings ?  As those hooks are normal and are related to GDI graphics elements
window has update , i use the lastest roguekiller, never changed settings, usually i will see blue driver that are ticked legit , but never usually see those red drivers until lately, so it might be windows related

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Essexboy......Halp!
« Reply #9 on: April 24, 2014, 03:22:53 PM »
Are you noticing any unusual behaviour at all ?

avastreally?

  • Guest
Re: Essexboy......Halp!
« Reply #10 on: April 26, 2014, 08:45:54 PM »
Are you noticing any unusual behaviour at all ?
Not now, though today WmiPrvSE.exe was  at 50% cpu and svchost at over 300mb ram (i  know svchost goes that high when checking for windows update and i ran roguekiller incase it need to kill the process or found anything weird)
thanks anyway :)  :-*


« Last Edit: April 26, 2014, 09:09:15 PM by avastreally? »