Do you think I have a virus or trojan?
August 5th, 2016
Also ironically the ip Earl Dudley Associates Inc (66.136.147.22) was the first ip my pc connected to when plugged into the internet.
No browser… nothing open… my first packet didn’t even go to my service provider lol. I’ve been using pg2 strong for years so I noticed the spike in unusual connections. Especially when I only use bit torrent once a month.
If anyone know’s why Earl, ATT LINCROFT ORT, and B1 keep pinging me give me some insight. This whole thing started when SBC,Earl, China, UK, Sweden, and Russia started flooding me one day. A few days later I noticed my connection’s ip was matching B1’s ip.
Anyway here’s a log of about 1 week of connections. Take a look at the first day and the 28th is when Earl decided to connect to me before my internet provider. Google was right behind him lol. And on the last day I used bt and got pinged that many times.
http://www.mediafire.com/?2nmentzmlzy
Trojen as you can see use >superantispyware< and it will remove it
seems trojan to me..
Download Malwarebytes Anti Malware And That Will Get Rid Of It For You!!!
Put A Search In And There You Will Find On This Site!!!!
Everytime I run it they come back from no where because they’re lurking in my system. Its like they materialize from the system volume over and over.
In the time it took to write someone else a short reply and this one my anti virus was disabled again. Mcafee sucks! And my key is legit.
I’ve given up on this windows install already lol I wasn’t happy when I made it. Can members suggest the names of some programs like sandboxie that run things in a controlled environment? Next time I wanna keep things as clean as humanly possible.
Also a simple to use firewall or port blocker.
I’ve used Malwarebytes Anti Malware and it found nothing.
it sure is trojan..
try one good antivirus and one spyware software to get rid of it..
I ran spybot search and destroy an hour ago and found nothing.
Should I run it again after super anti spyware in safe mode and a another reboot?
BTW I didn’t know sandboxie was free now.
turn the system restore off reboot and do a scan with the software that you use then reboot and turn system restore back on hope is of help
its a backdoor the name of the file might help
A0005033.DLL
A005034.EXE
A001137.EXE
A0011138.DLL
A0003245.exe
A003133.exe
————————
They all have names like that and are in C:\System Volume Information\_restore{D7F84568-E7D8-AOE8-4758F0DC604D}\RP11 directories and such.
turn the system restore off reboot and do a scan with the software that you use then reboot and turn system restore back on hope is of help
Yes, do that to get rid of crap that could be in your system restore files..