Think I picked up some kind of malware

Page 1 of 2 12 LastLast

  1. Posts : 86
    ASUS X79 DELUXE LGA 2011 Intel X79 SATA 6Gb/s USB 3.0 ATX
       #1

    Think I picked up some kind of malware


    Off a website with images. Yes I was looking at pictures of pretty girls. What's the world coming to?

    Anyway when I logged off something happened.
    All the usual places where people tend to go FB Google other social networking sites yadda yadda all returned as unsecure. Won't let me log on to them.

    Running Firefox 61.[sumpin]
    - - - - - - -Doesn't happen in Explorer - - - - - - - -

    No option to add exception is available.
    Interestingly this site is not affected, Ubuntu & Linux forums are not affected, neither are most industrial business sites which leads me to think it is site specific based on whatever the hacker built it to affect.



    I have nuked Firefox three times done a Forced uninstall using IUobit and Revo. So I am sort of pretty sure that it's not in a FF Exe command.

    I have run Malwarebytes, Hirman Pro, Rkill, Kaspersky TDS rootkit tool,

    I found nothing.
    I have an Acronis backup. So I can get whatever data I may think is recent and nuke the drive and call it a L-O-N-G day. But I'd really rather nuke the bug that I am sure I picked up.
    Got any ideas?
      My Computer


  2. Posts : 4
    windows 7 ultimate
       #2

    Do you use proxy or VPN?
    Check browsers or windows internet settings.
      My Computer


  3. Posts : 31
    Windows 7 Professional 64-bit
       #3

    Test with Firefox Portable. If the problem persist use Acronis to restore the system. Next time make sure to configure Firefox properly and use uBlock Origin and uMatrix to reduce the attack surface.

    user.js - What is it, what does it do, and why would I want one?
      My Computer


  4. Posts : 0
    Windows 7 Ultimate x64
       #4

    Clear your DNS cache and look at your hosts file. Other than that the only thing I can think of is you have your profile left over after FF uninstall.

    I'd use Sandboxie for your browser so you don't get online STDs. Check out their website and forum. It's free for the browser only. I use it all the time in replace of using the very cumbersome NoScript add-on. Albeit, I have my Sandboxie install highly customized so that nothing sticks except browser related things like bookmarks and add-ons.
      My Computer


  5. Posts : 86
    ASUS X79 DELUXE LGA 2011 Intel X79 SATA 6Gb/s USB 3.0 ATX
    Thread Starter
       #5

    It was adware/malware


    Slick little bugger. Malware bytes Adware scanner picked it up. I should have guessed from the ridiculous splash screen that an adware scanner would be the proper tool.
      My Computer


  6. Posts : 3,615
    Win 10 x64, Linux Lite, Win 7 x64, BlackArch, & Kali
       #6

    ADWCleaner free by ToolsLib purchased by Malwarebytes available both websites.
      My Computer


  7. Posts : 3,615
    Win 10 x64, Linux Lite, Win 7 x64, BlackArch, & Kali
       #7

    Kernel exploits easily by-pass Sandboxie!
    Nic
      My Computer


  8. Posts : 0
    Windows 7 Ultimate x64
       #8

    Snick said:
    Kernel exploits easily by-pass Sandboxie!
    Nic

    Might not get past Faronics Anti-executable or perhaps Shadow Defender. I do use Spy the Spy as well.
      My Computer


  9. Posts : 3,615
    Win 10 x64, Linux Lite, Win 7 x64, BlackArch, & Kali
       #9

    Never heard of those 3 applications, I'll have to check them out.
      My Computer


  10. Posts : 0
    Windows 7 Ultimate x64
       #10

    I've tested both Anti-executable and Shadow Defender in VMware and tossed a bunch of malware at it up to and including ransomware and nothing got past.
      My Computer


 
Page 1 of 2 12 LastLast

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 13:30.
Find Us