Malware within Firefox

vuga

New Member
Thread author
Apr 9, 2015
6
Added attachment of screenshot Firefox connection to unknown page (screenshot mozila 1) and screenshot of blocked page by Kaspersky (screenshot mozila 2).
Since not all time with PC my reply / reaction can take time.
 

Attachments

  • Addition.txt
    50.9 KB · Views: 33
  • AdwCleaner[S0].txt
    16.3 KB · Views: 21
  • FRST.txt
    59.5 KB · Views: 23
  • screenshot mozila 1.png
    screenshot mozila 1.png
    406.6 KB · Views: 33
  • screenshot mozila 2.png
    screenshot mozila 2.png
    130 KB · Views: 30

argus

Former MalwareTips Staff
Verified
Apr 24, 2014
3,395
Helllo,

My name is Argus and and I will be helping you with your computer problems.

Before we begin, please note the following:
  • I will working be on your Malware issues, this may or may not, solve other issues you have with your machine.
  • The logs can take some time to research, so please be patient with me.
  • Stay with the topic until I tell you that your system is clean. Missing symptoms does not mean that everything is okay.
  • Instructions that I give are for your system only!
  • Please do not run any tools until requested ! The reason for this is so I know what is going on with the machine at any time. Some programs can interfere with others and hamper the recovery process.
  • Please perform all steps in the order received. If you can't understand something don't hesitate to ask.
  • Again I would like to remind you to make no further changes to your computer unless I direct you to do so. I will not help you if you do not follow my instructions.




warning.gif
Rules and policies

We won't support any piracy.
That being told, if any evidence of illegal OS, software, cracks/keygens or any other will be revealed, any further assistance will be suspended. If you are aware that there is this kind of stuff on your machine, remove it before proceeding!
The same applies to any use of P2P software: uTorrent, BitTorrent, Vuze, Kazaa, Ares... We don't provide any help for P2P, except for their removal. All P2P software has to be uninstalled or at least fully disabled before proceeding!

Failure to follow these guidelines will result with closing your topic and withdrawning any assistance.



Always have one (and no more than one!) AntiVirus program! In this case having more of them will not provide you with better protection - instead they may cause slowness, lock-ups and even mark another ones as harmful, leading to leave your system unstable and even damaged. Please choose only one from the listed below to stay with and uninstall the others:
  • Norton
  • Kaspersky

Uninstallation procedure:
  • Press the
    WindowsKey.png
    + R on your keyboard at the same time. Type appwiz.cpl and click OK.
  • Search for each uninstalled entry, right-click it and select Uninstall.
This should be done until any other steps will be taken.



Reset you router to factory default.
http://setuprouter.com/networking/how-to-reset-your-router/






FRST.gif
Scan with Farbar Recovery Scan Tool

Please re-run Farbar Recovery Scan Tool to give me a fresh look at your system.
  • Right-click on
    FRST.gif
    icon and select
    RunAsAdmin.jpg
    Run as Administrator to start the tool.
    (XP users click run after receipt of Windows Security Warning - Open File).
  • Make sure that Addition option is checked.
  • Press Scan button and wait.
  • The tool will produce two logfiles on your desktop: FRST.txt and Addition.txt.
Please include their content into your next reply.
 

vuga

New Member
Thread author
Apr 9, 2015
6
I've replied to your e-mail with some questions. After receiving reply I'll act and run FRST.
 

vuga

New Member
Thread author
Apr 9, 2015
6
as I wrote in my reply to you I found on C: programs (x86) strange program called summer games --> never ever seen and not installed by my knowledge. When checking Uninstall or change program in Programs & features is this program not seen.
I think this is somehow attached to my problem.
 

vuga

New Member
Thread author
Apr 9, 2015
6
Dear Argus,
Yes you are correct, server and myself we are in Oman. I am just working here for next 2 months.
Please can you inform me about things which I wrote in reply to your e-mail (pls see copy bellow):

Dear Argus,

Nice to get reply from you. I will follow all your instructions. Please find bellow my questions/replies to your instructions.

Other thing is your timing. I’m leaving at Oman present 14.45. So I follow this timings, at evening I’m quite late (night bird). Tomorrow is our day off and I will travel. Afternoon I will be with machine for treatment J

From which area are you, what is your timing?





Helllo,

My name is Argus and and I will be helping you with your computer problems.

Before we begin, please note the following:

  • I will working be on your Malware issues, this may or may not, solve other issues you have with your machine.
  • The logs can take some time to research, so please be patient with me.
  • Stay with the topic until I tell you that your system is clean. Missing symptoms does not mean that everything is okay.
  • Instructions that I give are for your system only!
  • Please do not run any tools until requested ! The reason for this is so I know what is going on with the machine at any time. Some programs can interfere with others and hamper the recovery process.
  • Please perform all steps in the order received. If you can't understand something don't hesitate to ask.
  • Again I would like to remind you to make no further changes to your computer unless I direct you to do so. I will not help you if you do not follow my instructions.
[Zeljko Vuga] All clear





Rules and policies
We won't support any piracy.
That being told, if any evidence of illegal OS, software, cracks/keygens or any other will be revealed, any further assistance will be suspended. If you are aware that there is this kind of stuff on your machine, remove it before proceeding!
The same applies to any use of P2P software: uTorrent, BitTorrent, Vuze, Kazaa, Ares... We don't provide any help for P2P, except for their removal. All P2P software has to be uninstalled or at least fully disabled before proceeding!
Failure to follow these guidelines will result with closing your topic and withdrawning any assistance.

[Zeljko Vuga] Just checking installed programs because in the past some 5 years ago I use to run Bitorent for “watching” movies while staying in Africa. I found within Program files (x86) on C drive one strange program = summer gamesànever ever known to me and downloaded by my knowledge. I think this is somehow connected to my problem. Installed on 4.4.15 which can cope with beginning of my troubles.




Always have one (and no more than one!) AntiVirus program! In this case having more of them will not provide you with better protection - instead they may cause slowness, lock-ups and even mark another ones as harmful, leading to leave your system unstable and even damaged. Please choose only one from the listed below to stay with and uninstall the others:

  • Norton
  • Kaspersky
[Zeljko Vuga] Please advise me which to run. Norton is my program for years, also running with other machines (family members) but is not detecting malware.

Kaspersky we are using at work and is detecting this malware and blocking connections to other sites and popups. I downloaded 30days trial /free version as temporary only.

I can in principle deinstall both if necessary, but then I am without any protection.


Uninstallation procedure:

  • Press the + R on your keyboard at the same time. Type appwiz.cpl and click OK.
  • Search for each uninstalled entry, right-click it and select Uninstall.
This should be done until any other steps will be taken.



Reset you router to factory default.
http://setuprouter.com/networking/how-to-reset-your-router/

[Zeljko Vuga] no router used. I’m connected with USB key (sim card) to mobile network. There is no any amendment from my side possible, everything done by operator only.








Scan with Farbar Recovery Scan Tool

Please re-run Farbar Recovery Scan Tool to give me a fresh look at your system.

  • Right-click on icon and select Run as Administrator to start the tool.
    (XP users click run after receipt of Windows Security Warning - Open File).
  • Make sure that Addition option is checked.
  • Press Scan button and wait.
  • The tool will produce two logfiles on your desktop: FRST.txt and Addition.txt.
[Zeljko Vuga] I’ll run after your reply concerning summer games & antivirus program

Please include their content into your next reply.
 

vuga

New Member
Thread author
Apr 9, 2015
6
Dear Argus,

Yes me and server we are both in Oman. I am here for next 2 months.
I sent you before reply to your e-mail.
I will attach copy of it (its from Outlook). Please inform what are your suggestions about my questions.
 

Attachments

  • Reply to your e-mail.txt
    9.3 KB · Views: 18

argus

Former MalwareTips Staff
Verified
Apr 24, 2014
3,395
[Zeljko Vuga] Please advise me which to run. Norton is my program for years, also running with other machines (family members) but is not detecting malware.

Kaspersky we are using at work and is detecting this malware and blocking connections to other sites and popups. I downloaded 30days trial /free version as temporary only.

I can in principle deinstall both if necessary, but then I am without any protection.


No, now you have no protection. Two antivirus programs can not work together because of have drivers in kernel mode.
There are conflicts.

Summer games is not malware, these are the online games.

I am from Serbia.
 

vuga

New Member
Thread author
Apr 9, 2015
6
argus dobrodosao, nema problema onda sa vremenom.
Sto predlazes da deinstaliram Norton ili Kaspersky. Norton mi je placen program i vec godinama ga upotrebljavam. Dali zavrijedi da ga jos upotrebljavam ili ne? Kaspersky imam samo privremeno kod ovog problema.
Summer games = mozda games ali nisam ja to instalirao. Ja bih to skinio, ja toga ne trebam. Kako da uradim posto nema programa u Program & fatures za deinstalaciju programa?
Iza toga bih jos jedanput prosao sa FRST i slao rezultat.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top