Malicious Website Blocked (svhost.exe)

Status
Not open for further replies.

williamharlanprice

New Member
Thread author
Oct 8, 2016
3
Hello, I keep getting the same malicious website attempts and random little freezes in my system. This all started happening today. attached logs
 

Attachments

  • FRST.txt
    40.8 KB · Views: 4
  • Addition.txt
    27 KB · Views: 3

williamharlanprice

New Member
Thread author
Oct 8, 2016
3
Malwarebytes Anti-Malware
www.malwarebytes.org


Detection, 10/8/2016 12:12 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 194.44.166.24, 8999, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 12:12 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 194.44.166.24, 8999, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Scan, 10/8/2016 12:17 AM, SYSTEM, DESKTOP-4ER8TK6, Manual, Start:10/7/2016 10:08 PM, Duration:2 hr 8 min 43 sec, Threat Scan, Completed, 1 Malware Detection, 0 Non-Malware Detections,
Protection, 10/8/2016 12:17 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malware Protection, Starting,
Protection, 10/8/2016 12:17 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malware Protection, Started,
Protection, 10/8/2016 12:17 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Starting,
Protection, 10/8/2016 12:17 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Started,
Detection, 10/8/2016 12:44 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 177.18.10.135, 8999, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 12:44 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 177.18.10.135, 8999, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 12:45 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 177.18.10.135, 50710, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 12:46 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 41.85.189.161, 8999, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 12:46 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 41.85.189.161, 8999, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 12:46 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 41.85.189.161, 50773, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 12:47 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 27.106.48.174, 8999, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 12:47 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 27.106.48.174, 8999, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 12:47 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 109.98.164.41, 8999, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 12:47 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 109.98.164.41, 8999, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 12:47 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 109.98.164.41, 50871, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 12:51 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 201.218.40.198, 51354, Outbound, C:\Windows\System32\svchost.exe,
Detection, 10/8/2016 12:51 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 201.218.40.198, 51354, Outbound, C:\Windows\System32\svchost.exe,
Update, 10/8/2016 1:50 AM, SYSTEM, DESKTOP-4ER8TK6, Scheduler, Malware Database, 2016.10.8.1, 2016.10.8.2,
Protection, 10/8/2016 1:50 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Starting,
Protection, 10/8/2016 1:50 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopping,
Protection, 10/8/2016 1:50 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopped,
Protection, 10/8/2016 1:50 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Success,
Protection, 10/8/2016 1:50 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Starting,
Protection, 10/8/2016 1:50 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Started,
Detection, 10/8/2016 2:40 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 201.218.40.198, 51354, Outbound, C:\Windows\System32\svchost.exe,
Detection, 10/8/2016 2:40 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 201.218.40.198, 51354, Outbound, C:\Windows\System32\svchost.exe,
Update, 10/8/2016 2:40 AM, SYSTEM, DESKTOP-4ER8TK6, Scheduler, Malware Database, 2016.10.8.2, 2016.10.8.3,
Protection, 10/8/2016 2:40 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Starting,
Protection, 10/8/2016 2:40 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopping,
Protection, 10/8/2016 2:40 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopped,
Protection, 10/8/2016 2:40 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Success,
Protection, 10/8/2016 2:40 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Starting,
Protection, 10/8/2016 2:41 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Started,
Protection, 10/8/2016 2:54 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malware Protection, Starting,
Protection, 10/8/2016 2:54 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malware Protection, Started,
Protection, 10/8/2016 2:54 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Starting,
Protection, 10/8/2016 2:54 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Started,
Scan, 10/8/2016 3:12 AM, SYSTEM, DESKTOP-4ER8TK6, Manual, Start:10/8/2016 2:57 AM, Duration:15 min 0 sec, Threat Scan, Completed, 0 Malware Detections, 0 Non-Malware Detections,
Detection, 10/8/2016 3:30 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 201.218.40.198, 51354, Outbound, C:\Windows\System32\svchost.exe,
Detection, 10/8/2016 3:30 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 201.218.40.198, 51354, Outbound, C:\Windows\System32\svchost.exe,
Scan, 10/8/2016 4:15 AM, SYSTEM, DESKTOP-4ER8TK6, Context, Start:10/8/2016 3:55 AM, Duration:20 min 28 sec, Threat Scan, Completed, 0 Malware Detections, 0 Non-Malware Detections,
Scan, 10/8/2016 4:32 AM, SYSTEM, DESKTOP-4ER8TK6, Context, Start:10/8/2016 4:20 AM, Duration:12 min 35 sec, Threat Scan, Cancelled, 0 Malware Detections, 0 Non-Malware Detections,
Scan, 10/8/2016 4:53 AM, SYSTEM, DESKTOP-4ER8TK6, Manual, Start:10/8/2016 4:52 AM, Duration:1 min 37 sec, Hyper Scan, Cancelled, 0 Malware Detections, 0 Non-Malware Detections,
Detection, 10/8/2016 5:33 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 103.255.5.32, 58500, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 5:33 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 103.255.5.32, 58500, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 5:33 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 58.69.101.116, 58500, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Detection, 10/8/2016 5:33 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 58.69.101.116, 58500, Outbound, C:\Program Files (x86)\qBittorrent\qbittorrent.exe,
Protection, 10/8/2016 6:02 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malware Protection, Starting,
Protection, 10/8/2016 6:02 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malware Protection, Started,
Protection, 10/8/2016 6:02 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Starting,
Protection, 10/8/2016 6:02 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Started,
Detection, 10/8/2016 6:20 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Domain, 222.187.254.89, js.users.51.la, 50097, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 10/8/2016 6:20 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Domain, 222.187.254.89, js.users.51.la, 50097, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 10/8/2016 6:20 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Domain, 222.187.254.89, js.users.51.la, 50098, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Protection, 10/8/2016 6:32 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malware Protection, Starting,
Protection, 10/8/2016 6:32 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malware Protection, Started,
Protection, 10/8/2016 6:32 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Starting,
Protection, 10/8/2016 6:32 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Started,
Detection, 10/8/2016 7:04 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 45.124.145.62, 57657, Outbound, C:\Windows\System32\svchost.exe,
Detection, 10/8/2016 7:04 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 45.124.145.62, 57657, Outbound, C:\Windows\System32\svchost.exe,
Detection, 10/8/2016 7:55 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 43.250.80.74, 57657, Outbound, C:\Windows\System32\svchost.exe,
Detection, 10/8/2016 7:55 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 43.250.80.74, 57657, Outbound, C:\Windows\System32\svchost.exe,
Detection, 10/8/2016 7:55 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 43.250.80.74, 53155, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 10/8/2016 7:55 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 43.250.80.74, 53156, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 10/8/2016 7:55 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 43.250.80.74, 53157, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 10/8/2016 8:22 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 213.8.204.62, 57657, Outbound, C:\Windows\System32\svchost.exe,
Detection, 10/8/2016 8:22 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 213.8.204.62, 57657, Outbound, C:\Windows\System32\svchost.exe,
Update, 10/8/2016 8:51 AM, SYSTEM, DESKTOP-4ER8TK6, Scheduler, IP Database, 2016.10.6.1, 2016.10.8.1,
Protection, 10/8/2016 8:51 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Starting,
Protection, 10/8/2016 8:51 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopping,
Protection, 10/8/2016 8:51 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopped,
Protection, 10/8/2016 8:51 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Success,
Protection, 10/8/2016 8:51 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Starting,
Protection, 10/8/2016 8:51 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Started,
Update, 10/8/2016 9:49 AM, SYSTEM, DESKTOP-4ER8TK6, Scheduler, Malware Database, 2016.10.8.3, 2016.10.8.4,
Protection, 10/8/2016 9:49 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Starting,
Protection, 10/8/2016 9:49 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopping,
Protection, 10/8/2016 9:49 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopped,
Protection, 10/8/2016 9:50 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Success,
Protection, 10/8/2016 9:50 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Starting,
Protection, 10/8/2016 9:50 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Started,
Update, 10/8/2016 9:52 AM, SYSTEM, DESKTOP-4ER8TK6, Scheduler, Domain Database, 2016.10.7.3, 2016.10.8.1,
Protection, 10/8/2016 9:52 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Starting,
Protection, 10/8/2016 9:52 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopping,
Protection, 10/8/2016 9:52 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopped,
Protection, 10/8/2016 9:53 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Success,
Protection, 10/8/2016 9:53 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Starting,
Protection, 10/8/2016 9:53 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Started,
Update, 10/8/2016 11:35 AM, SYSTEM, DESKTOP-4ER8TK6, Scheduler, Malware Database, 2016.10.8.4, 2016.10.8.5,
Protection, 10/8/2016 11:35 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Starting,
Protection, 10/8/2016 11:35 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopping,
Protection, 10/8/2016 11:35 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopped,
Protection, 10/8/2016 11:35 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Success,
Protection, 10/8/2016 11:35 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Starting,
Protection, 10/8/2016 11:35 AM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Started,
Detection, 10/8/2016 12:35 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 213.8.204.38, 57657, Outbound, C:\Windows\System32\svchost.exe,
Detection, 10/8/2016 12:35 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 213.8.204.38, 57657, Outbound, C:\Windows\System32\svchost.exe,
Update, 10/8/2016 2:34 PM, SYSTEM, DESKTOP-4ER8TK6, Scheduler, Malware Database, 2016.10.8.5, 2016.10.8.6,
Protection, 10/8/2016 2:34 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Starting,
Protection, 10/8/2016 2:34 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopping,
Protection, 10/8/2016 2:34 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopped,
Protection, 10/8/2016 2:34 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Success,
Protection, 10/8/2016 2:34 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Starting,
Protection, 10/8/2016 2:34 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Started,
Detection, 10/8/2016 2:50 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 41.215.141.183, 57657, Outbound, C:\Windows\System32\svchost.exe,
Detection, 10/8/2016 2:50 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 41.215.141.183, 57657, Outbound, C:\Windows\System32\svchost.exe,
Detection, 10/8/2016 2:50 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 41.215.141.183, 57657, Outbound, C:\Windows\System32\svchost.exe,
Detection, 10/8/2016 3:41 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 41.215.141.183, 57657, Outbound, C:\Windows\System32\svchost.exe,
Detection, 10/8/2016 3:41 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, IP, 41.215.141.183, 57657, Outbound, C:\Windows\System32\svchost.exe,
Update, 10/8/2016 3:44 PM, SYSTEM, DESKTOP-4ER8TK6, Scheduler, Malware Database, 2016.10.8.6, 2016.10.8.7,
Protection, 10/8/2016 3:44 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Starting,
Protection, 10/8/2016 3:44 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopping,
Protection, 10/8/2016 3:44 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Stopped,
Protection, 10/8/2016 3:44 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Refresh, Success,
Protection, 10/8/2016 3:44 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Starting,
Protection, 10/8/2016 3:44 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Started,
Protection, 10/8/2016 6:07 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malware Protection, Starting,
Protection, 10/8/2016 6:07 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malware Protection, Started,
Protection, 10/8/2016 6:07 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Starting,
Protection, 10/8/2016 6:07 PM, SYSTEM, DESKTOP-4ER8TK6, Protection, Malicious Website Protection, Started,

(end)
 

williamharlanprice

New Member
Thread author
Oct 8, 2016
3
I should also add that this is a fresh install of windows, leading me to believe my storage drives may be the issue
 
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top