X
Tap here to go to the mobile version of the site.
Your Firefox is out of date and may contain a security risk! Upgrade Firefox

Support Forum

firefox try to connect to website blocked by avast

Posted

hello

today avast keep warning me

=

Infection Details

URL: http://best-installer.info/get/

Process: C:\Program Files\Mozilla Firefox\firefox...

Infection: URL:Mal

=

i clear the cash run antivirus , Malwarebytes scan nothing

how i can know if plugin or add-ons cause this ?

google show other have the same issues today

http://www.fixitpc.pl/topic/15736-malware/

Modified by werty20

Chosen solution

thx i dont have SaveByClick , i search the also =

what i did , full scan using AdwCleaner then SUPERAntiSpyware .. delete everything AdwCleaner found and restart , rest my profile and 3 day til now didn't get the message hope this help

thx all for help

Read this answer in context 1

Additional System Details

Installed Plug-ins

  • Foxit Reader Plug-In For Firefox and Netscape
  • Shockwave Flash 11.5 r502
  • IE Tab 2 Plug-in for Mozilla/Firefox
  • Google Talk Plugin Video Accelerator version:0.1.44.23
  • Version 3.10.2.10212
  • Google Update
  • Next Generation Java Plug-in 1.6.0_35 for Mozilla browsers
  • NPRuntime Script Plug-in Library for Java(TM) Deploy
  • VLC media player Web Plugin 2.0.2
  • LightshotPlugin
  • 5.1.10411.0
  • Picasa plugin
  • HTTPAnalyzer Firefox Plugin DLL
  • The QuickTime Plugin allows you to view a wide variety of multimedia content in Web pages. For more information, visit the QuickTime Web site.
  • Yahoo Application State Plugin version 1.0.0.7
  • The plug-in allows you to open and edit files using Microsoft Office applications
  • RealPlayer(tm) LiveConnect-Enabled Plug-In
  • 6.0.12.448
  • Office Authorization plug-in for NPAPI browsers
  • Windows Presentation Foundation (WPF) plug-in for Mozilla browsers
  • Npdsplay dll
  • DRM Store Netscape Plugin
  • DRM Netscape Network Object
  • Windows Multimedia Services DRM Store Plug-In

Application

  • User Agent: Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0

More Information

Application Basics
Name
Firefox
Version
18.0
User Agent
Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0
Build Configuration
about:buildconfig
Extensions
Name
Version
Enabled
ID
Adblock Plus
2.2.1
true
{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
Awesome screenshot: Capture and Annotate
2.3.8
true
jid0-GXjLLfbCoAx0LcltEdFrEkQdQPI@jetpack
ChatZilla
0.9.89
true
{59c81df5-4b7a-477b-912d-4e0fdf64e5f2}
Check4Change
1.9.3
true
check4change-owner@mozdev.org
Cookies Manager+
1.5.1.1
true
{bb6bc1bb-f824-4702-90cd-35e2fb24f25d}
Element Hiding Helper for Adblock Plus
1.2.3
true
elemhidehelper@adblockplus.org
F6
0.2
true
f6@merike.pri.ee
FEBE
7.1.0
true
{4BBDD651-70CF-4821-84F8-2B918CF89CA3}
FlashGot
1.5.3
true
{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}
Gmail Watcher
1.57
true
gmailwatcher@sonthakit
gTranslate
0.9
true
{aff87fa2-a58e-4edd-b852-0a20203c1e17}
Hide My Ass Proxy Extension
1.2.7
true
extension@hidemyass.com
IDM CC
7.3.33
true
mozilla_cc@internetdownloadmanager.com
IE Tab 2 (FF 3.6+)
4.12.22.2
true
{1BC9BA34-1EED-42ca-A505-6D2F1A935BBB}
ImageHost Grabber
1.6.5.9
true
{E4091D66-127C-11DB-903A-DE80D2EFDFE8}
Java Console
6.0.34
true
{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA}
Java Console
6.0.35
true
{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
Java Quick Starter
1.0
true
jqs@sun.com
Lightshot (screenshot tool)
3.0.0
true
{394DCBA4-1F92-4f8e-8EC9-8D2CB90CB69B}
Microsoft .NET Framework Assistant
0.0.0
true
{20a82645-c095-46ed-80e3-08825760534b}
NoScript
2.6.4.3rc2
true
{73a6fe31-595d-460b-a920-fcc0f8843232}
Real-Debrid Plugin
2.3b
true
real@debrid
Rehost Image
1.5.6
true
rehostimage@engy.us
ReloadEvery
17.0.0
true
{888d99e7-e8b5-46a3-851e-1ec45da1e644}
Search by Image for Google
1.2.0
true
{ab4b5718-3998-4a2c-91ae-18a7c2db513e}
UrlExtract
0.6
true
nesdown47@gmail.com
avast! WebRep
7.0.1474
false
wrc@avast.com
DownloadHelper
4.9.13
false
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
EPUBReader
1.4.2.1
false
{5384767E-00D9-40E9-B72F-9CC39D655D6F}
Greasemonkey
1.6
false
{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
Http Analyzer
6.5
false
httpanalyzerv6ffaddon@ieinspector.com
ImageBot
4.2.3
false
{55009080-176f-11da-8cd6-0800200c9a66}
OneClick YouTube Downloader
1.0.8
false
{35379F86-8CCB-4724-AE33-4278DE266C70}
PageZipper
0.6.2
false
pagezipper@printwhatyoulike.com
Restart Firefox
0.5
false
restart@restart.org
Social Fixer
7.321
false
socialfixer@mattkruse.com
Tamper Data
11.0.1
false
{9c51bd27-6ed8-4000-a2bf-36cb95c0c947}
YesScript
1.9
false
yesscript@userstyles.org
Important Modified Preferences
Name
Value
accessibility.typeaheadfind.flashBar
0
browser.cache.disk.capacity
358400
browser.cache.disk.smart_size.first_run
false
browser.cache.disk.smart_size.use_old_max
false
browser.cache.disk.smart_size_cached_value
327680
browser.places.smartBookmarksVersion
4
browser.search.useDBForOrder
true
browser.startup.homepage
about:home
browser.startup.homepage_override.buildID
20130104151925
browser.startup.homepage_override.mstone
18.0
dom.ipc.plugins.enabled.npietab2.dll
true
dom.max_chrome_script_run_time
40
dom.max_script_run_time
40
dom.mozApps.used
true
extensions.lastAppVersion
18.0
font.internaluseonly.changed
false
javascript.options.showInConsole
false
keyword.URL
http://www.alnaddy.com/search/?q=
network.cookie.prefsMigrated
true
places.database.lastMaintenance
1358254588
places.history.expiration.transient_current_max_pages
35840
privacy.cpd.cookies
false
privacy.cpd.downloads
false
privacy.cpd.formdata
false
privacy.cpd.history
false
privacy.cpd.sessions
false
privacy.sanitize.migrateFx3Prefs
true
privacy.sanitize.timeSpan
0
security.warn_viewing_mixed
false
Graphics
Adapter Description
NVIDIA GeForce 8600 GT
Adapter Drivers
nv4_disp
Adapter RAM
Unknown
Device ID
0x0401
Direct2D Enabled
no information
DirectWrite Enabled
false (0.0.0.0)
Driver Date
8-30-2012
Driver Version
6.14.13.623
GPU #2 Active
false
GPU Accelerated Windows
1/1 Direct3D 9
Vendor ID
0x10de
WebGL Renderer
Google Inc. -- ANGLE (NVIDIA GeForce 8600 GT)
AzureCanvasBackend
cairo
AzureContentBackend
none
AzureFallbackCanvasBackend
none
JavaScript
Incremental GC
true
Accessibility
Activated
false
Prevent Accessibility
0
Library Versions
Expected minimum version
Version in use
NSPR
4.9.4
4.9.4
NSS
3.14.1.0 Basic ECC
3.14.1.0 Basic ECC
NSSSMIME
3.14.1.0 Basic ECC
3.14.1.0 Basic ECC
NSSSSL
3.14.1.0 Basic ECC
3.14.1.0 Basic ECC
NSSUTIL
3.14.1.0
3.14.1.0

philipp
  • Top 10 Contributor
  • Moderator
2046 solutions 8901 answers

hello, can you try to replicate this behaviour when you launch firefox in safe mode once? if not, maybe an addon is interfering here... (plugins are left enabled in safemode though)

Troubleshoot extensions, themes and hardware acceleration issues to solve common Firefox problems

Tyler Downer
  • Administrator
  • Moderator
1165 solutions 6641 answers

Helpful Reply

Also, scan with some other malware scanners Troubleshoot Firefox issues caused by malware

geekest_cat 0 solutions 3 answers

I'm having this problem as well since yesterday, and I haven't installed any add-on. The only thing I changed from it is that I updated Java, so I suspect it may have to do with the Java connectors. I've disabled the Java Platform SE 7 U5 10.5.1.255, will see if it happens again.

geekest_cat 0 solutions 3 answers

Just replying to my answer to state that the issue keeps happening with the specified Java connectors disabled.

geekest_cat 0 solutions 3 answers

I'm reposting here as well because it seems someone has found the issue. Link in Spanish:

http://mx.answers.yahoo.com/question/index?qid=20130119101338AAlEUkh

Go to the program files folder, and there should be a folder named "SaveByClick". The folder contains two files: a .dll and a uninstaller. The .dll activates repeatedly the unistaller file and Avast blocks it. So simply delete the entire folder and the problem will disappear.

I'll try that as well and in a few days I'll report if it solves the issue for me.

Chosen Solution

thx i dont have SaveByClick , i search the also =

what i did , full scan using AdwCleaner then SUPERAntiSpyware .. delete everything AdwCleaner found and restart , rest my profile and 3 day til now didn't get the message hope this help

thx all for help