Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: Going Bonkers  (Read 5122 times)

0 Members and 1 Guest are viewing this topic.

KrystalDragon

    Topic Starter


    Rookie

    • Experience: Experienced
    • OS: Windows 8
    Going Bonkers
    « on: March 10, 2015, 03:20:28 PM »
    Around mid-feb my Antivirus popped up and said that a threat was detected. Something on my computer stemming from the svchost.exe was trying to get to a website. Every day since then I've received this error at varying intervals. The website always changes. My computer itself is running fine, no noticeable slowing, no random webpages, nothing that gives the indication that anything is wrong except the several-times-a-day notification that "a threat is detected."
    What I have:
    Windows 8.1, all updates done (manually checked even though auto-updates are on)
    Avast Antivirus Full Internet Security (paid for version, not free version)
    Google Chrome is my browser.
    I have no external drive connected for backups. There is 1 other computer on the network that I have disconnected to see if the issue is stemming from it. Problem persists.
    What I've done:
    Reset all browser info/settings to default (both chrome and IE). Purged temp files. Gone through settings, search providers, tabs, etc.
    Run a disc cleanup purging everything in the list.
    Run a full boot-time scan with avast, made sure it's scanning all hard drives, system files, highest level of heuristics sensitivity available. No threats found.
    Malwarebytes-no threats found (results listed below)
    Adwcleaner-no threats found. 2 search providers found and deleted (results below)
    CCleaner - Squeeky clean, 2 registry files with missing dll links. fixed.
    HijackThis - A complaint about Adblock Pro that I have installed for Chrome. Removed-with intention of re-installing when I get this fixed.
    Spybot Search and Destroy - no threats (also uninstalled from my system as I don't really care for the program but was running out of options)
    Hitman Pro - No threats found
    I've dug through my installed programs, have not found anything that is amiss.
    I've dug through the registry looking for something, anything. Nothing leaps out or has been verified as a legitimate source.
    I've run the Windows Process Explorer and Autoruns. Double checked everything there. All seems well and proper.
    I've completely uninstalled Avast, installed AVG, run a scan on my system, all came out well. Uninstalled AVG, reinstalled Avast, manually updated, next day back to the "threat has been detected" notifications.
    I'm at a complete loss as to what to do. Any help is appreciated. Below are the requested log files.

    AdwCleaner:
    # AdwCleaner v4.112 - Logfile created 10/03/2015 at 12:40:08
    # Updated 09/03/2015 by Xplode
    # Database : 2015-03-05.1 [Server]
    # Operating system : Windows 8.1  (x64)
    # Username : Christine - CHRISTINE
    # Running from : C:\Users\Christine\Downloads\adwcleaner_4.112.exe
    # Option : Cleaning

    ***** [ Services ] *****


    ***** [ Files / Folders ] *****


    ***** [ Scheduled tasks ] *****


    ***** [ Shortcuts ] *****


    ***** [ Registry ] *****


    ***** [ Web browsers ] *****

    -\\ Internet Explorer v11.0.9600.17416


    -\\ Google Chrome v40.0.2214.115

    [C:\Users\Christine\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
    [C:\Users\Christine\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}

    *************************

    AdwCleaner[R0].txt - [1945 bytes] - [19/02/2015 15:48:32]
    AdwCleaner[R1].txt - [3726 bytes] - [28/02/2015 10:37:19]
    AdwCleaner[R2].txt - [2625 bytes] - [28/02/2015 11:30:02]
    AdwCleaner[R3].txt - [2749 bytes] - [01/03/2015 16:44:49]
    AdwCleaner[R4].txt - [1144 bytes] - [03/03/2015 18:04:17]
    AdwCleaner[R5].txt - [1567 bytes] - [10/03/2015 12:38:58]
    AdwCleaner[S0].txt - [3638 bytes] - [28/02/2015 10:38:18]
    AdwCleaner[S1].txt - [2703 bytes] - [28/02/2015 11:30:59]
    AdwCleaner[S2].txt - [2827 bytes] - [01/03/2015 16:46:40]
    AdwCleaner[S3].txt - [1211 bytes] - [03/03/2015 18:05:09]
    AdwCleaner[S4].txt - [1498 bytes] - [10/03/2015 12:40:08]

    ########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [1557  bytes] ##########

    MalwareBytes:
    Malwarebytes Anti-Malware
    www.malwarebytes.org

    Scan Date: 3/10/2015
    Scan Time: 3:11:40 PM
    Logfile:
    Administrator: Yes

    Version: 2.00.4.1028
    Malware Database: v2015.03.10.06
    Rootkit Database: v2015.02.25.01
    License: Free
    Malware Protection: Disabled
    Malicious Website Protection: Disabled
    Self-protection: Disabled

    OS: Windows 8.1
    CPU: x64
    File System: NTFS
    User: Christine

    Scan Type: Threat Scan
    Result: Completed
    Objects Scanned: 350986
    Time Elapsed: 5 min, 52 sec

    Memory: Enabled
    Startup: Enabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Enabled
    Heuristics: Enabled
    PUP: Enabled
    PUM: Enabled

    Processes: 0
    (No malicious items detected)

    Modules: 0
    (No malicious items detected)

    Registry Keys: 0
    (No malicious items detected)

    Registry Values: 0
    (No malicious items detected)

    Registry Data: 0
    (No malicious items detected)

    Folders: 0
    (No malicious items detected)

    Files: 0
    (No malicious items detected)

    Physical Sectors: 0
    (No malicious items detected)


    (end)

    CCleaner:
     Results of screen317's Security Check version 0.99.97 
       x64 (UAC is enabled) 
     Internet Explorer 11 
    ``````````````Antivirus/Firewall Check:``````````````[/u]
     Windows Firewall Enabled! 
    Windows Defender   
    avast! Antivirus   
     Antivirus up to date!   
    `````````Anti-malware/Other Utilities Check:`````````[/u]
     Java 8 Update 31 
     Java 8 Update 40 
     Java version 32-bit out of Date!
      Java 64-bit 8 Update 31[/color] 
     Adobe Flash Player    16.0.0.305 
     Adobe Reader 10.1.13 Adobe Reader out of Date! 
     Mozilla Thunderbird (31.5.0)
     Google Chrome (40.0.2214.115)
    ````````Process Check: objlist.exe by Laurent````````[/u] 
     AVAST Software Avast AvastSvc.exe 
     AVAST Software Avast afwServ.exe 
     AVAST Software Avast avastui.exe 
    `````````````````System Health check`````````````````[/u]
     Total Fragmentation on Drive C:  %
    ````````````````````End of Log``````````````````````[/u]

    SuperDave

    • Malware Removal Specialist
    • Moderator


    • Genius
    • Thanked: 1020
    • Certifications: List
    • Experience: Expert
    • OS: Windows 10
    Re: Going Bonkers
    « Reply #1 on: March 10, 2015, 07:55:46 PM »
    Hello and welcome to Computer Hope Forum. My name is Dave. I will be helping you out with your particular problem on your computer.

    1. I will be working on your Malware issues. This may or may not solve other issues you have with your machine.
    2. The fixes are specific to your problem and should only be used for this issue on this machine.
    3. If you don't know or understand something, please don't hesitate to ask.
    4. Please DO NOT run any other tools or scans while I am helping you.
    5. It is important that you reply to this thread. Do not start a new topic.
    6. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
    7. Absence of symptoms does not mean that everything is clear.

    If you can't access the internet with your infected computer you will have to download and transfer any programs to the computer you're using now and transfer them to the infected computer with a CD-RW or a USB storage device. I prefer a CD because a storage device can get infected. If you use a storage device hold the shift key down while inserting the USB storage device for about 10 secs. You will also have to transfer the logs you receive back to the good computer using the same method until we can get the computer back on-line.
    *************************************************************************
    Windows 8 and 8.1 comes with its own AV called Windows Defender. Uninstall Avast and make sure WD is activated and see if you still receive that message.
    Windows 8 and Windows 10 dual boot with two SSD's

    KrystalDragon

      Topic Starter


      Rookie

      • Experience: Experienced
      • OS: Windows 8
      Re: Going Bonkers
      « Reply #2 on: March 11, 2015, 05:05:34 PM »
      Good Afternoon Dave.

      Thank you for your time. I will uninstall Avast directly after I post this, make sure I have Windows Defender active and updated.
      Again, thank you for your time. I will report back with either a positive or negative result.
      ~Christine~

      KrystalDragon

        Topic Starter


        Rookie

        • Experience: Experienced
        • OS: Windows 8
        Re: Going Bonkers
        « Reply #3 on: March 12, 2015, 12:19:03 PM »
        Just a check-in on Progress. I did do a full system scan with windows defender. It said everything was clean. I've not received any notifications as to infections, but am continuing to monitor. Assuming that I do not receive any further notices, are we thinking that Avast was doing an erroneous report?

        SuperDave

        • Malware Removal Specialist
        • Moderator


        • Genius
        • Thanked: 1020
        • Certifications: List
        • Experience: Expert
        • OS: Windows 10
        Re: Going Bonkers
        « Reply #4 on: March 12, 2015, 12:44:16 PM »
        Probably a false positive. Please let me know if anything chages.
        Windows 8 and Windows 10 dual boot with two SSD's

        KrystalDragon

          Topic Starter


          Rookie

          • Experience: Experienced
          • OS: Windows 8
          Re: Going Bonkers
          « Reply #5 on: March 15, 2015, 01:17:06 PM »
          Checking in with what I hope is a final report. No notifications, no pop-ups, no issues. Computer running smoothly. I believe we are fixed. Thank you for your help!

          ~Christine~

          SuperDave

          • Malware Removal Specialist
          • Moderator


          • Genius
          • Thanked: 1020
          • Certifications: List
          • Experience: Expert
          • OS: Windows 10
          Re: Going Bonkers
          « Reply #6 on: March 15, 2015, 06:48:37 PM »
          You're welcome. I will lock this thread. If you need it re-opened, please send me a pm.
          Windows 8 and Windows 10 dual boot with two SSD's