Author Topic: win32Malware-gen When Opening Firefox/IE  (Read 2263 times)

0 Members and 1 Guest are viewing this topic.

mc_crater

  • Guest
win32Malware-gen When Opening Firefox/IE
« on: October 15, 2013, 08:13:53 AM »
Over the last month or so have developed a problem in which avast picks up on some win32Malware-gen whenever I open either Firefox/Internet Explorer. I've attached a screenshot of an example of what is being blocked in avast.
Webshield also picks up a win32Malware-gen with a URL along the lines of http://ytimg.biz/MCheck/VersionRequest.ashx?codename ....

I also have Chrome which I use but have not encountered this problem

Logs attached

mc_crater

  • Guest
Re: win32Malware-gen When Opening Firefox/IE
« Reply #1 on: October 15, 2013, 08:15:30 AM »
OTL logs attached here as well

Offline magna86

  • Anti Malware Fighter
  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 4235
    • Ambulanta MyCity Forum - ASAP Member
Re: win32Malware-gen When Opening Firefox/IE
« Reply #2 on: October 15, 2013, 02:36:33 PM »


Please download zoek.zip or zoek.rar by smeenk () from here or here and save it to your Desktop.
Unpack the archive...
  • Close any open browsers
  • Temporarily disable your AntiVirus program. (If necessary)
    If you are unsure how to do this please read this or this Instruction.

  • Double click on zoek.exe to run the tool .
    Please wait while the tool does not start...

  • Copy the text present inside the code box below and paste it into the large window in the zoek tool:
Code: [Select]
createsrpoint;
StandardSearch;
installer-list;
installedprogs;
uninstall-list;
  • Click on button.
    Please wait until a logreport will open (this can be after reboot)

  • Save notepad to your Desktop and attach here zoek-results.log
    Note: It will also create a log in the C:\ directory named "zoek-results.log"

mc_crater

  • Guest
Re: win32Malware-gen When Opening Firefox/IE
« Reply #3 on: October 16, 2013, 03:16:17 AM »
log attached

Offline magna86

  • Anti Malware Fighter
  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 4235
    • Ambulanta MyCity Forum - ASAP Member
Re: win32Malware-gen When Opening Firefox/IE
« Reply #4 on: October 16, 2013, 01:21:47 PM »
@mc_crater
Run zoek as you did before but use this script:
Code: [Select]
emptyclsid;
nmmhkkegccagdldgiimedpiccmgmieda;chr
ipconfig /flushdns >> %temp%\log.txt;b
autoclean;
Wait for zoek to finish his work and post here fresh created zoek log report.


Zoek shall attempt to clean all that cache which may trigger avast. If problem stays, you may report files related to Windows Live Messanger and to Firefox ("D3C22d01" name) as FP. As they are not malware related.

« Last Edit: October 16, 2013, 01:23:29 PM by magna86 »

mc_crater

  • Guest
Re: win32Malware-gen When Opening Firefox/IE
« Reply #5 on: October 21, 2013, 02:31:52 AM »
ok here is that log

Offline magna86

  • Anti Malware Fighter
  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 4235
    • Ambulanta MyCity Forum - ASAP Member
Re: win32Malware-gen When Opening Firefox/IE
« Reply #6 on: October 21, 2013, 03:03:17 AM »
Ok, monitor computer behavior and tell me is how is computer running now? Is it avast pleased?