Malicious activity

OzRay

Mu-43 Hall of Famer
Malwarebytes just blocked some malicious activity on this forum page: https://www.mu-43.com/showthread.php?t=473&page=222.

Malwarebytes Anti-Malware
www.malwarebytes.org


Protection, 29/05/2014 7:40:19 AM, SYSTEM, ADMIN-PC, Protection, Malware Protection, Starting,
Protection, 29/05/2014 7:40:19 AM, SYSTEM, ADMIN-PC, Protection, Malware Protection, Started,
Protection, 29/05/2014 7:40:19 AM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, Starting,
Protection, 29/05/2014 7:40:24 AM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, Started,
Update, 29/05/2014 7:56:43 AM, SYSTEM, ADMIN-PC, Scheduler, Malware Database, 2014.5.28.4, 2014.5.28.8,
Protection, 29/05/2014 7:56:43 AM, SYSTEM, ADMIN-PC, Protection, Refresh, Starting,
Protection, 29/05/2014 7:56:43 AM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, Stopping,
Protection, 29/05/2014 7:56:43 AM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, Stopped,
Protection, 29/05/2014 7:56:48 AM, SYSTEM, ADMIN-PC, Protection, Refresh, Success,
Protection, 29/05/2014 7:56:48 AM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, Starting,
Protection, 29/05/2014 7:56:48 AM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, Started,
Protection, 29/05/2014 11:16:54 AM, SYSTEM, ADMIN-PC, Protection, Malware Protection, Starting,
Protection, 29/05/2014 11:16:54 AM, SYSTEM, ADMIN-PC, Protection, Malware Protection, Started,
Protection, 29/05/2014 11:16:54 AM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, Starting,
Protection, 29/05/2014 11:17:07 AM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, Started,
Detection, 29/05/2014 12:48:50 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50284, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:48:50 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50285, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:48:50 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50286, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:48:50 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50287, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:48:50 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50288, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:48:50 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50284, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:48:50 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50289, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:50:14 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50309, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:50:14 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50313, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:50:14 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50315, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:50:14 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50316, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:50:14 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50317, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:50:14 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50318, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:50:15 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50326, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:50:15 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50327, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:50:15 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50328, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:50:15 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50329, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:50:15 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50330, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Detection, 29/05/2014 12:50:15 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 50331, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,

(end)
 

OzRay

Mu-43 Hall of Famer
Oh, look! :flypig:

Malwarebytes Anti-Malware
www.malwarebytes.org


Detection, 29/05/2014 1:55:30 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 51415, Outbound, C:\Program Files (x86)\Mozilla Firefox\firefox.exe,
Detection, 29/05/2014 1:55:30 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 51416, Outbound, C:\Program Files (x86)\Mozilla Firefox\firefox.exe,
Detection, 29/05/2014 1:55:31 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 51417, Outbound, C:\Program Files (x86)\Mozilla Firefox\firefox.exe,
Detection, 29/05/2014 1:55:31 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 51418, Outbound, C:\Program Files (x86)\Mozilla Firefox\firefox.exe,
Detection, 29/05/2014 1:55:31 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 51419, Outbound, C:\Program Files (x86)\Mozilla Firefox\firefox.exe,
Detection, 29/05/2014 1:55:31 PM, SYSTEM, ADMIN-PC, Protection, Malicious Website Protection, IP, 66.96.147.101, www.fotomecanico.com, 51420, Outbound, C:\Program Files (x86)\Mozilla Firefox\firefox.exe,

(end)
 

Amin Sabet

Administrator
It seems that the site Foto Mecanico is being flagged as an infected site and a member embedded images that were hosted there. I've censored Foto Mecanico on this site so those images cannot be embedded here. Ray, please let me know if your malware detector still finds a problem with that thread. I don't believe that it will. Thanks, Amin
 

Replytoken

Mu-43 Hall of Famer
Oh, now I get it.
I just did not want to click on the thread link to find out which thread it was. I follow a number of long threads, and just wanted to avoid this one if it was one that I have been following. Thanks for calling attention to it! Glad that it has been resolved.

--Ken
 

OzRay

Mu-43 Hall of Famer
It seems that the site Foto Mecanico is being flagged as an infected site and a member embedded images that were hosted there. I've censored Foto Mecanico on this site so those images cannot be embedded here. Ray, please let me know if your malware detector still finds a problem with that thread. I don't believe that it will. Thanks, Amin
All good now.
 

Latest posts

Top