Author Topic: malicious URL  (Read 2080 times)

0 Members and 1 Guest are viewing this topic.

roaduntrodden

  • Guest
malicious URL
« on: February 19, 2014, 05:33:03 AM »
I keep getting a message that Avast has blocked a malcious URL.

http://download.newnext.me/spark.bin?rnd...
Infection: URL:Mal
process: c:\windows\sysWOW64\rundll32.exe

What should I do?

Offline mikaelrask

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1556
Re: malicious URL
« Reply #1 on: February 19, 2014, 05:46:37 AM »
hey and welcome to the forum

please follow this guide and attach your logs

we need the logs from mbam, otl and aswmbr

http://forum.avast.com/index.php?topic=53253.0

a malware expert will help you from there.
Windows 8.1 amd a10-5700 64 bit
12 GB ram 1 tb hard drive. Avast 18, MBAM

roaduntrodden

  • Guest
Re: malicious URL
« Reply #2 on: February 19, 2014, 05:48:52 AM »
Thanks!
Will get back with the logs.

roaduntrodden

  • Guest
Re: malicious URL
« Reply #3 on: February 19, 2014, 06:50:29 AM »
I don't get any more warnings after removing infections using MBAM.
Do I need to proceed with the rest of the tools? :)

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37700
Re: malicious URL
« Reply #4 on: February 19, 2014, 07:04:29 AM »
there may be leftovers that need to be removed so run OTL and attach the log

also attach Malwarebytes log so that the malware expert can see what was removed




roaduntrodden

  • Guest
Re: malicious URL
« Reply #5 on: February 19, 2014, 08:03:49 AM »
The logs are attached.
Thanks to all for your help!

Offline TwinHeadedEagle

  • Malware Removal Expert
  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 2987
    • Zemana
Re: malicious URL
« Reply #6 on: February 19, 2014, 09:06:31 AM »
Hi,


Please download zoek.zip or zoek.rar by smeenk () from here or here and save it to your Desktop.
Unpack the archive...
  • Close any open browsers
  • Temporarily disable your AntiVirus program. (If necessary)
    If you are unsure how to do this please read this or this Instruction.

  • Double click on zoek.exe to run the tool .
    Please wait for the tool to start...

  • Copy the text present inside the code box below and paste it into the large window in the zoek tool:
Code: [Select]
createsrpoint;
gpt.ini;z
C:\Windows\System32\GroupPolicy;v
C:\Windows\SysWOW64\GroupPolicy;v
StandardSearch;
emptyfolderscheck;
installer-list;
installedprogs;
uninstall-list;
  • Click on button.
    Please wait until a logreport will open (this can be after reboot)

  • Save notepad to your Desktop and attach here zoek-results.log
    Note: It will also create a log in the C:\ directory named "zoek-results.log"
« Last Edit: February 19, 2014, 09:08:21 AM by TwinHeadedEagle »
My help is free, however if you'd like to show your appreciation by leaving a donation, it will be much appreciated ------> DONATE