Main Forum > General Computer Support

Should TCP Viewer show my system BLOWING UP? Malware, Spyware & Hijacked, OH MY!

<< < (7/9) > >>

Boggin:
The original sfc /scannow reported it was unable to repair all files because of a corrupt Components Store.

The /RestoreHealth command repairs the Component Store so the next sfc returns nothing wrong - job done.

Are you still getting any "side effects" from running WR ?

Just as a recap, what are the security programs you have installed ?

JohnVanDaal:

--- Quote from: Boggin on December 02, 2014, 09:48:44 am ---I'm anti EU as I believe they've interfered too much in the running of the UK - but I don't want to get into politics.
--- End quote ---


Nah, I mean the people, and cultures - in general, I'm not related to the PoliTicks   :tongue:




--- Quote from: Boggin on December 02, 2014, 09:48:44 am ---
Which McAfee program is snagging possible infections ?

--- End quote ---


Well, Emsisoft keeps picking up those bad Registry files, McAfee Live Safe - Internet Security is the one Alerting about "Changed Programs" ever since I used WR and Restarted. I've been getting popup that say this or that program is trying to reach the internet, that I've allowed it  before, but that it's "recently changed", and then it gives me the option to "Allow Always", "Allow Once" or "Block".

I'm sure McAffee's Default is set to block so I'm wondering if that would exaplain why there is a new other instance of explorer.exe that showed up right around that time.



I'm running MBAM right now so we'll see what it has to say in a few.

JohnVanDaal:

--- Quote from: Boggin on December 02, 2014, 03:19:15 pm ---The original sfc /scannow reported it was unable to repair all files because of a corrupt Components Store.

The /RestoreHealth command repairs the Component Store so the next sfc returns nothing wrong - job done.
--- End quote ---


Right, and it did a great job, good call.



--- Quote from: Boggin on December 02, 2014, 03:19:15 pm ---Are you still getting any "side effects" from running WR ?

--- End quote ---

I don't believe so, even the McAfee popups are pretty much through popping up. I'll keep a vigilant eye on everything as always but nothing that I know of right now seems to be off.


--- Quote from: Boggin on December 02, 2014, 03:19:15 pm ---Just as a recap, what are the security programs you have installed ?

--- End quote ---



I've left everything from McAfee in place while we worked so it's still there with the all the same components. McAfee LiveSafe controls all the other processes  installed by McAfee, plus there is McAfee SafeKey used for saving Passwords and File Protection type functions.

Got rid of BrowserGuard, replaced with HitmanPro.Alert   :wink:


The ESET online scanner still exists as a browser extension for performing the online scan if needed, but I have it disabled, if necessary I'll just uninstall it.

I haven't done anything with Microtrend's RUBotted or HijackThis yet, except for turning HT off at Startup & I don't keep it running, but I'll probably uninstall both if everything is OK and just save the Setups in a Zipped file for future use if things become suspicious.

I've left Malwarebytes Anti-Exploit alone so it's running - it's a Beta so I'm not sure how things will play out with its availability as Freeware in the future though.




Also, I've been able to get the HP Assistant to upgrade some of the software related to the Diagnostics and Update features, there is also an AMD Catalyst Control Center with more features for Troubleshooting and Tune-Ups, checking for missing or updated Drivers, etc., I'm looking those things over right now and I see it wants me to download an update for AMD.


Haven't run any other scans except Malwarebytes AM like you recommended - it didn't pick up anything suspicious with the "Threat Scan", so I have it off for now since McAfee is still up and all.




What are your thoughts for what to do now, good Boggin?




Boggin:
It sounds like you are good to go but I'll leave the final word for Shane, as he'll probably review your thread as he likes to be aware of any after effects of running WR.

Tom.

Boggin:
Just remembered from another forum that MBAM Exploit was updated on 1st December, if you haven't already updated your version.

New features and improvements etc. https://forums.malwarebytes.org/index.php?/topic/132660-malwarebytes-anti-exploit-history-updates/#entry914489

Download link http://www.malwarebytes.org/antiexploit/

I'm not sure if the ESET Scanner will update its definitions if/when you come to use it next, but as it's easily downloaded and it brings itself up to date then, I usually check its box for the auto uninstall when complete.

Navigation

[0] Message Index

[#] Next page

[*] Previous page

Go to full version