Combofix Log File - Need Assistance

c:\windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_1f4e5527ca660a3d\STacSV.exe c:\windows\system32\taskhost.exe c:\program files\Bitdefender\Antivirus Free Edition\gziface.exe c:\windows\system32\conhost.exe c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe c:\windows\system32\sppsvc.exe c:\program files\VideoLAN\VLC\vlc.exe . ************************************************************************** . Join Now For immediate help use Live now! I'm going to let it go for a couple of hours, but I don't know if it's doing anything. SuperAntispyware.

To keep your computer safe, only click links and downloads from sites that you trust. R3 BstHdAndroidSvc;BlueStacks Android Service;c:\program files\BlueStacks\HD-Service.exe BstHdAndroidSvc Android [x] R3 BstHdLogRotatorSvc;BlueStacks Log Rotator Service;c:\program files\BlueStacks\HD-LogRotatorService.exe [2016-01-07 413208] R3 BstHdUpdaterSvc;BlueStacks Updater Service;c:\program files\BlueStacks\HD-UpdaterService.exe [2016-01-07 859672] R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-20 62464] R3 ew_hwusbdev;Huawei MobileBroadband USB CONTRIBUTE TO OUR LEGAL DEFENSE All unused funds will be donated to the Electronic Frontier Foundation (EFF). This is normal internet traffic.

And I don't want to sound repetitive, but thanks again Logged Henry44th Newbie Posts: 13 Re: [Rtk] Infected by Win32:Sirefef-PL, need assistance to get rid of the virus. « Reply #7 Failed to delete c:\users\Keanu\AppData\Local\Temp\RarSFX1\lang\ro-RO.exe . . . . Other threads that you may like Forum Date Eset: "Beware of Combofix - contains infected file" General Security Discussions Jan 29, 2013 ComboFix in a fresh VM Space Bar Sep 24, https://malwaretips.com/threads/combofix-log-file.56071/ The APNIC, KORNICK and RIPE databases put out a lot of these scans.

Attached Files: ComboFix.txt File size: 17.1 KB Views: 3 Jul 30, 2010 #14 Bobbye Helper on the Fringe Posts: 16,335 +36 A comparison of the Symantec/Norton Services and Drivers in They are scans looking for unprotected systems. Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe BHO-{11111111-1111-1111-1111-110311301136} - c:\program files (x86)\Plus-HD-2.2\Plus-HD-2.2-bho64.dll . . . --------------------- LOCKED REGISTRY KEYS --------------------- . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_23_0_0_162_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_23_0_0_162_ActiveX.exe" . After posting your new post, make sure under options, you select Track this topic and choose Immediate Email Notification, so that you're alerted when someone has replied to your post.One of

I followed your Malwarebytes link and since I have already run ComboFix and RogueKiller I have run OTL and am attaching the logs. Flash for IE: http://download.macromedia.com/pub/flashplayer/current/support/install_flash_player_ax.exe Flash for all other Browsers: http://download.macromedia.com/pub/flashplayer/current/support/install_flash_player.exe Adobe Acrobat Reader: ftp://ftp.adobe.com/pub/adobe/reader/win/11.x/11.0.03/en_US/AdbeRdr11003_en_US.exe Java: http://www.oracle.com/technetwork/java/javase/downloads/index.html Sudeep 0 Message Author Comment by:MagsMcKinley14 ID: 392953782013-07-02 Thanks...will do...I will let you know These same IPs are scanning thousands of other systems looking for vulnerabilities. thank you.

