Author Topic: url blocked  (Read 9471 times)

0 Members and 1 Guest are viewing this topic.

jrauch74

  • Guest
url blocked
« on: September 01, 2013, 07:34:05 PM »
need help...
# AdwCleaner v3.001 - Report created 01/09/2013 at 11:32:35
# Updated 24/08/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : RAUCH - RAUCH-PC
# Running from : C:\Users\RAUCH\Downloads\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Users\RAUCH\AppData\Roaming\Mozilla\Firefox\Profiles\5o0g6tvm.default\bProtector_extensions.rdf
Folder Found : C:\Users\RAUCH\AppData\Roaming\Mozilla\Firefox\Profiles\5o0g6tvm.default\Extensions\ffxtlbr@babylon.com
Folder Found C:\Program Files (x86)\Common Files\ParetoLogic
Folder Found C:\Program Files (x86)\Free Offers from Freeze.com
Folder Found C:\Program Files (x86)\ParetoLogic
Folder Found C:\ProgramData\Babylon
Folder Found C:\ProgramData\ParetoLogic
Folder Found C:\Users\RAUCH\AppData\LocalLow\delta
Folder Found C:\Users\RAUCH\AppData\Roaming\DriverCure
Folder Found C:\Users\RAUCH\AppData\Roaming\iWin
Folder Found C:\Users\RAUCH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic
Folder Found C:\Users\RAUCH\AppData\Roaming\ParetoLogic
Folder Found C:\Users\RAUCH\Documents\DealRunner

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\AppDataLow\Software\Crossrider
Key Found : HKCU\Software\AppDataLow\Software\Freecause
Key Found : HKCU\Software\Cr_Installer
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Surf Canyon
Key Found : [x64] HKCU\Software\Cr_Installer
Key Found : [x64] HKCU\Software\Surf Canyon
Key Found : HKLM\SOFTWARE\908f8ae66fec47
Key Found : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Found : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Found : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\Prod.cap
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Found : HKLM\Software\DataMngr
Key Found : HKLM\Software\Freeze.com
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\tracing\askpartnercobrandingtool_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16660


-\\ Mozilla Firefox v3.6.13 (en-US)

[ File : C:\Users\RAUCH\AppData\Roaming\Mozilla\Firefox\Profiles\5o0g6tvm.default\prefs.js ]

Line Found : user_pref("extensions.enabledItems", "{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24,{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}:6.0.25,{5911488E-9D1E-40ec-8CBB-06B231CC153F}:2.0.1,superfish@superfish.com:1[...]

-\\ Google Chrome v

[ File : C:\Users\RAUCH\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [4824 octets] - [01/09/2013 11:32:35]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [4884 octets] ##########

Offline Secondmineboy

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3645
Re: url blocked
« Reply #1 on: September 01, 2013, 07:40:05 PM »
Can you give more information about your problem please?

Do what is shown in this thread and attach logs, run in listed order. ;)

http://forum.avast.com/index.php?topic=53253.0
Windows 10 1909, 4 GB DDR3 RAM, 500 GB 5400 RPM HDD, 1366 by 768 LCD Screen, Intel Core i3 5010U Dual Core, Intel HD Graphics 5500
HUAWEI P30 Pro. Android 10

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37547
  • Not a avast user
Re: url blocked
« Reply #2 on: September 01, 2013, 07:41:31 PM »
Quote
url blocked ...
need help...
we would appreciate more info   ;)


Offline Secondmineboy

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3645
Re: url blocked
« Reply #3 on: September 01, 2013, 07:42:18 PM »
Quote
url blocked ...
need help...
we would appreciate more info   ;)

As i said, it could some malware which is trying to connect to the internet. ;)
Windows 10 1909, 4 GB DDR3 RAM, 500 GB 5400 RPM HDD, 1366 by 768 LCD Screen, Intel Core i3 5010U Dual Core, Intel HD Graphics 5500
HUAWEI P30 Pro. Android 10

jrauch74

  • Guest
Re: url blocked
« Reply #4 on: September 01, 2013, 07:45:53 PM »
i keep getting messages about url blocked..

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Database version: v2013.09.01.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16660
RAUCH :: RAUCH-PC [administrator]

9/1/2013 11:45:19 AM
mbam-log-2013-09-01 (11-45-19).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 224410
Time elapsed: 9 minute(s), 59 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 1
C:\Users\RAUCH\Downloads\Setup.exe (PUP.Optional.IBryte) -> Quarantined and deleted successfully.

(end)

Offline Secondmineboy

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3645
Re: url blocked
« Reply #5 on: September 01, 2013, 07:49:24 PM »
Now OTL Log and Extras and we are good to go.

When these are attached a malware remover will be notified. ;)

Under the Text box for the reply is an option for Attachments, please attach the .txt file there.
Windows 10 1909, 4 GB DDR3 RAM, 500 GB 5400 RPM HDD, 1366 by 768 LCD Screen, Intel Core i3 5010U Dual Core, Intel HD Graphics 5500
HUAWEI P30 Pro. Android 10

Offline Secondmineboy

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3645
Re: url blocked
« Reply #6 on: September 01, 2013, 07:54:09 PM »
I have notified Argus, he is online right now.

But it can take some time till he arrives. ;)
Windows 10 1909, 4 GB DDR3 RAM, 500 GB 5400 RPM HDD, 1366 by 768 LCD Screen, Intel Core i3 5010U Dual Core, Intel HD Graphics 5500
HUAWEI P30 Pro. Android 10

jrauch74

  • Guest
Re: url blocked
« Reply #7 on: September 01, 2013, 07:59:08 PM »
thanks working on other logs..

Offline Secondmineboy

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3645
Re: url blocked
« Reply #8 on: September 01, 2013, 08:00:44 PM »
OK. Argus is offline now.

But they will see this thread so someone will help you. ;)
Windows 10 1909, 4 GB DDR3 RAM, 500 GB 5400 RPM HDD, 1366 by 768 LCD Screen, Intel Core i3 5010U Dual Core, Intel HD Graphics 5500
HUAWEI P30 Pro. Android 10

jrauch74

  • Guest
Re: url blocked
« Reply #9 on: September 01, 2013, 08:02:07 PM »
thanks

jrauch74

  • Guest
Re: url blocked
« Reply #10 on: September 01, 2013, 08:18:43 PM »
here they are..

Offline Secondmineboy

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3645
Re: url blocked
« Reply #11 on: September 01, 2013, 08:21:01 PM »
OK.

Now you can just wait for an malware remover. ;)
Windows 10 1909, 4 GB DDR3 RAM, 500 GB 5400 RPM HDD, 1366 by 768 LCD Screen, Intel Core i3 5010U Dual Core, Intel HD Graphics 5500
HUAWEI P30 Pro. Android 10

jrauch74

  • Guest
Re: url blocked
« Reply #12 on: September 01, 2013, 09:27:56 PM »
here's the others..

Offline Secondmineboy

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3645
Re: url blocked
« Reply #13 on: September 01, 2013, 09:37:23 PM »
I cant see any Attachments............
Windows 10 1909, 4 GB DDR3 RAM, 500 GB 5400 RPM HDD, 1366 by 768 LCD Screen, Intel Core i3 5010U Dual Core, Intel HD Graphics 5500
HUAWEI P30 Pro. Android 10

jrauch74

  • Guest
Re: url blocked
« Reply #14 on: September 01, 2013, 09:58:08 PM »
ttt