X
Tap here to go to the mobile version of the site.

Support Forum

how to block https://pahthplayerattack.org firefoxpatch.cs

Posted

I keep getting the so-called critical update from a phony site. I always ignore this, but it was coming up repeatedly.

Now I keep getting the below and I have to keep exiting. Is there a way to block this? Any specific program.

I'm also curious that yesterday, I went to Firefox Help>about>check for updates and updated the ESR channel. As I did it, a file save came up called firefox-patch.js (13KB) and I couldn't figure why an update was a patch, so I did NOT go in to invoke it. Later, after restarting FF, a notice came up saying I was updated (which seemed weird but I had to go teach and forgot about it.

So now I'm nervous.

Any idea what I shd do to block this? I have disconnected the drive I saved it to, pending advice to delete.

Meanwhile, is there a program to block the darned intrusion?

Thanks

I keep getting the so-called critical update from a phony site. I always ignore this, but it was coming up repeatedly. Now I keep getting the below and I have to keep exiting. Is there a way to block this? Any specific program. I'm also curious that yesterday, I went to Firefox Help>about>check for updates and updated the ESR channel. As I did it, a file save came up called firefox-patch.js (13KB) and I couldn't figure why an update was a patch, so I did NOT go in to invoke it. Later, after restarting FF, a notice came up saying I was updated (which seemed weird but I had to go teach and forgot about it. So now I'm nervous. Any idea what I shd do to block this? I have disconnected the drive I saved it to, pending advice to delete. Meanwhile, is there a program to block the darned intrusion? Thanks
Attached screenshots
Quote

Additional System Details

Installed Plug-ins

OpenH264 Video Codec provided by Cisco Systems, Inc. Widevine Content Decryption Module provided by Google Inc Haven't a clue why those above are here

Flash (turn off regularly)

Application

  • Firefox 52.4.0
  • User Agent: Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:52.0) Gecko/20100101 Firefox/52.0
  • Support URL: https://support.mozilla.org/1/firefox/52.4.0/WINNT/en-US/

Extensions

  • Application Update Service Helper 2.0 (aushelper@mozilla.org)
  • Bookmarks Organizer 1.3.0 (bookmarksorganizer@agenedia.com)
  • Classic Bookmarks Button 1.2 (ClassicBookmarksButton@ArisT2Noia4dev)
  • Classic Style for Favicons 1.3.3.1-signed.1-signed (classic_style_for_favicons@iceberg.it)
  • Classic Theme Restorer 1.7.0 (ClassicThemeRestorer@ArisT2Noia4dev)
  • Classic Toolbar Buttons 1.5.9 (CSTBB@NArisT2_Noia4dev)
  • Config Export 1.0 (ConfigExport@DCN)
  • Cookie Controller 6.1 ({ac2cfa60-bc96-11e0-962b-0800200c9a66})
  • Cookie Import/Export 1.0.2 (jid1-sZ7aKDCe4A2prQ@jetpack)
  • FlashDisable 1.2.1 (jid0-bbA9VAawX3LMWDu668aUDrpQVXU@jetpack)
  • Menu Wizard 5.10 (s3menu@wizard)
  • Multi-process staged rollout 1.10 (e10srollout@mozilla.org)
  • Password Exporter 1.3.4 ({B17C1C5A-04B1-11DB-9804-B622A1EF5492})
  • Pocket 1.0.5 (firefox@getpocket.com)
  • Saved Password Editor 2.10.3 (savedpasswordeditor@daniel.dawson)
  • Saved Passwords Button 1.2.4.1-signed.1-signed (savedpasswords@adamfranco.com)
  • selectivecookiedelete 4.1.1-signed.1-signed (selectivecookiedelete@siju.mathew)
  • Show my Password 1.2.0 (jid1-ytAaKUpYnPSfGA@jetpack)
  • Show my Password 2.0.1-signed.1-signed ({cd617372-6743-4ee4-bac4-fbf60f35719e})
  • Show/Hide passwords 0.4 (shpassword@shpassword.fr)
  • Total bookmarks 4.5.201405021257.1-signed.1-signed (totalbookmarks@cs0ip.net)
  • Unhide Passwords 1.2.7.0.1-signed.1-signed ({2e17e2b2-b8d4-4a67-8d7b-fafa6cc9d1d0})
  • Web Compat 1.0 (webcompat@mozilla.org)
  • Popup Blocker Ultimate 8.0 ({60B7679C-BED9-11E5-998D-8526BB8E7F8B}) (Inactive)
  • Star-Button In Urlbar 1.4 (Starbuttoninurlbar@ArisT2Noia4dev) (Inactive)
  • Tab Popup 1.2.3.1-signed.1-signed (tabpopup@adarsh.tp) (Inactive)

Javascript

  • incrementalGCEnabled: True

Graphics

  • adapterDescription: AMD Radeon HD 7540D
  • adapterDescription2:
  • adapterDeviceID: 0x9991
  • adapterDeviceID2:
  • adapterDrivers: aticfx64 aticfx64 aticfx64 aticfx32 aticfx32 aticfx32 atiumd64 atidxx64 atidxx64 atiumdag atidxx32 atidxx32 atiumdva atiumd6a atitmm64
  • adapterDrivers2:
  • adapterRAM: 512
  • adapterRAM2:
  • adapterSubsysID: 2ae0103c
  • adapterSubsysID2:
  • adapterVendorID: 0x1002
  • adapterVendorID2:
  • clearTypeParameters: Gamma: 2.2 Pixel Structure: BGR ClearType Level: 0 Enhanced Contrast: 300
  • crashGuards: [{u'prefName': u'gfx.crash-guard.status.d3d9video', u'type': u'd3d9video'}]
  • currentAudioBackend: wasapi
  • direct2DEnabled: True
  • directWriteEnabled: True
  • directWriteVersion: 6.2.9200.22164
  • driverDate: 3-19-2013
  • driverDate2:
  • driverVersion: 12.102.1.1000
  • driverVersion2:
  • failures: [u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.', u'[GFX1-]: DXVA2D3D9 video decoding is disabled due to a previous crash.']
  • featureLog: {u'fallbacks': [], u'features': [{u'status': u'available', u'description': u'Compositing', u'log': [{u'status': u'available', u'type': u'default'}], u'name': u'HW_COMPOSITING'}, {u'status': u'available', u'description': u'Direct3D11 Compositing', u'log': [{u'status': u'available', u'type': u'default'}], u'name': u'D3D11_COMPOSITING'}, {u'status': u'disabled', u'description': u'Direct3D9 Compositing', u'log': [{u'status': u'disabled', u'message': u'Disabled by default', u'type': u'default'}], u'name': u'D3D9_COMPOSITING'}, {u'status': u'available', u'description': u'Direct2D', u'log': [{u'status': u'available', u'type': u'default'}], u'name': u'DIRECT2D'}, {u'status': u'available', u'description': u'Direct3D11 hardware ANGLE', u'log': [{u'status': u'available', u'type': u'default'}], u'name': u'D3D11_HW_ANGLE'}]}
  • indices: [0, 16, 17, 18, 19, 20, 21, 7, 8, 9, 10, 11, 12, 13, 14, 15]
  • info: {u'AzureCanvasAccelerated': 0, u'AzureCanvasBackend': u'direct2d 1.1', u'AzureFallbackCanvasBackend': u'cairo', u'AzureContentBackend': u'direct2d 1.1'}
  • isGPU2Active: False
  • numAcceleratedWindows: 1
  • numTotalWindows: 1
  • supportsHardwareH264: No; DXVA2D3D9 crashes detected in the past
  • webgl2Renderer: Google Inc. -- ANGLE (AMD Radeon HD 7540D Direct3D11 vs_5_0 ps_5_0)
  • webglRenderer: Google Inc. -- ANGLE (AMD Radeon HD 7540D Direct3D11 vs_5_0 ps_5_0)
  • windowLayerManagerRemote: True
  • windowLayerManagerType: Direct3D 11

Modified Preferences

Misc

  • User JS: No
  • Accessibility: No
Tyler Downer
  • Administrator
  • Moderator
1358 solutions 9066 answers

Helpful Reply

I'd suggest the following:

  • Scan your computer with malwarebytes.org
  • Install ublock origin to prevent these attacks in the future


Just a few side notes, you have a lot of add-ons, some of which are duplicates of each other. Might be time to clean up your add-ons list to improve performance. You might be able to get a newer graphics driver as well.

I'd suggest the following: * Scan your computer with malwarebytes.org * Install ublock origin to prevent these attacks in the future Just a few side notes, you have a lot of add-ons, some of which are duplicates of each other. Might be time to clean up your add-ons list to improve performance. You might be able to get a newer graphics driver as well.

Modified by Tyler Downer

Was this helpful to you? 1
Quote

Question owner

Add-ons, yes. Good idea. I'll give malwarbytes a try again. I used it for years and got rid of it for hitmanPro and SAS but apparently it's time to use it again.

Add-ons, yes. Good idea. I'll give malwarbytes a try again. I used it for years and got rid of it for hitmanPro and SAS but apparently it's time to use it again.
Was this helpful to you?
Quote

Question owner

Thanks, reinstalled MBAM then repurchased. It found 2 PUPs (oddly on old Gibson files and an old icon file) Dunno if that will affect anything, but like to have questionable things gone. Also just installed "unblock origin" but am not yet familiarized with it. Thanks for the tips. Hope they help! I'll update in the next coupla days. P

Thanks, reinstalled MBAM then repurchased. It found 2 PUPs (oddly on old Gibson files and an old icon file) Dunno if that will affect anything, but like to have questionable things gone. Also just installed "unblock origin" but am not yet familiarized with it. Thanks for the tips. Hope they help! I'll update in the next coupla days. P
Was this helpful to you?
Quote
Pkshadow
  • Top 10 Contributor
236 solutions 2498 answers

Suggest scanning with https://www.malwarebytes.com/adwcleaner/ Google all results or if need help go to Malwarebytes forum and someone will help you.

Please let us know if this solved your issue or if need further assistance.

Suggest scanning with https://www.malwarebytes.com/adwcleaner/ Google all results or if need help go to Malwarebytes forum and someone will help you. Please let us know if this solved your issue or if need further assistance.
Was this helpful to you? 0
Quote
Ask a question

You must log in to your account to reply to posts. Please start a new question, if you do not have an account yet.