Showing questions tagged: Show all questions
  • Solved

pups prefs.js keep coming back found by malwarebytes plus several tries to hack my email account

I found some infos but I do not trust myself just deleting the files in question since they ared all over my system. The following I found per malwarebytes which found th… (read more)

I found some infos but I do not trust myself just deleting the files in question since they ared all over my system. The following I found per malwarebytes which found the pups every day up to now:

PUP.Optional.DefaultSearch is Malwarebytes’ detection name for a family of browser hijackers targeting Chrome, Firefox and Internet Explorer. Symptoms The browsers’ default search engine was changed to one that belonged to the threat-actors. I am german so probably I need your patience in helping me to clean my system resp. Mozilla.

Looking forward Ingrid

Asked by iethomas 1 week ago

Answered by jscher2000 4 days ago

Bitdefender: suspicious connection blocked involving Firefox - signature-2.cdn.mozilla.net

Each morning, when I first cold boot my computer, the moment I open my Firefox browser, I receive numerous (10+) identical error messages from Bitdefender: Suspicious con… (read more)

Each morning, when I first cold boot my computer, the moment I open my Firefox browser, I receive numerous (10+) identical error messages from Bitdefender:

Suspicious connection blocked: Feature: Online Threat Prevention

firefox.exe attempted to establish a connection relying on an unmatching security certificate to content-signature-2.cdn.mozilla.net. We blocked the connection to keep your data safe since the used certificate was issued for a different web address than the targeted one.

Question: Is this ACTUALLY coming from Firefox? If so, please match your security certificates! If that's impossible due to a technical issue, then please email me your confirmation so that I can add an exception to Bitdefender.

Question: If it's not coming from Firefox, please email me, letting me know what additional system information you require so that we can get to the bottom of who/what is masquerading as Firefox while attempting to establish an unauthorized Internet connection from my computer.

HP Envy laptop, Windows 10 OS, latest update.

This has been occurring for several months.

Thank you for your time.

Asked by swamper 2 weeks ago

Last reply by jscher2000 1 week ago

Got hacked by the add-on called Safepal Wallet!!

Dear Supportteam, Today I browsed true the add-on list of Mozilla Firefox I was searching for Safepal wallet extension to use my cryptocurrency wallet also in the webbrow… (read more)

Dear Supportteam,

Today I browsed true the add-on list of Mozilla Firefox I was searching for Safepal wallet extension to use my cryptocurrency wallet also in the webbrowser. So my searching ended on the following page: https://addons.mozilla.org/nl/firefox/addon/safepal-wallet/ After I installed this extension and logged in with my credentials it was not working. 8 hours later I checked if my funds were still save on my phone software wallet also from Safepal I saw nothing $0,- balance I was deep in shock I saw my last transactions and saw that my funs ($4000,-) were transferred to another wallet. I could not believe it an add-on that is deployed in the add-on list of Mozilla Firefox. Is there no any audit department that is checking every add-on and test it before it get listed on the official add-on store of Mozilla Firefox. Can you please have a look into this add-on before there will be a massive amount of people getting scammed. And also have a look into the developer identity I have found the IP-address of the developer by tracing the mail address. Please have a look into it and maybe their is a solution to help me out.

Asked by cali-cpt 2 weeks ago

Last reply by FredMcD 2 weeks ago

C&C Callback Address [Malware !!]

Im used Firefox (v91.0.2 32bit) on Windows 10 Pro and anti-virus (Trend micro) alert has malware on FF to open website. im open https://www.cloudflare.com and then my use… (read more)

Im used Firefox (v91.0.2 32bit) on Windows 10 Pro and anti-virus (Trend micro) alert has malware on FF to open website. im open https://www.cloudflare.com and then my use Google Chrome to open https://www.cloudflare.com and the anti-virus not alert warning. The Admin talk to me firefox has malware.!!!! (sorry for bad Eng.)

Asked by khao_lek 2 weeks ago

Last reply by FredMcD 2 weeks ago

  • Solved

ChunkApp

How can I remove ChunkApp from my browser? It is not showing in my extensions, but i know its there because the internet service I use at a customers site wont allow me t… (read more)

How can I remove ChunkApp from my browser? It is not showing in my extensions, but i know its there because the internet service I use at a customers site wont allow me to utilize my browser because of the redirect to Chunk App host/server.

Please help I do not want to switch to Google Chrome because of this legal search engine redirect virus.


Mac Operating System

Asked by mbosh 3 weeks ago

Answered by jscher2000 3 weeks ago

Firefox on debian linux keeps depositing a windows virus in its cache.

Firefox on Debian Linux with no modules or extensions enabled keeps installing a windows virus in it's cache. Other browsers don't do this so it's something with firefox.… (read more)

Firefox on Debian Linux with no modules or extensions enabled keeps installing a windows virus in it's cache. Other browsers don't do this so it's something with firefox.

Asked by dayscondor 1 month ago

Last reply by James 1 month ago

search marquis

Hallo everyone! i have now a couple of days (search marquis) coming up when i start Mozilla :( I have on my Macbook MacAffe protection, but i dont know how to get out thi… (read more)

Hallo everyone! i have now a couple of days (search marquis) coming up when i start Mozilla :( I have on my Macbook MacAffe protection, but i dont know how to get out this Search Marquis ... Pls can anybody help me with that ?

Asked by sparta.panos1 1 month ago

Last reply by FredMcD 1 month ago

Remove sneakily installed saving option of download

Hi guys, I don't know when and how exactly this thing was added to my firefox behind my back, I don't like it, I don't like Baidu Pan either but I have to use it. I check… (read more)

Hi guys,

I don't know when and how exactly this thing was added to my firefox behind my back, I don't like it, I don't like Baidu Pan either but I have to use it.

I checked the extensions and add-ons, nothing suspicious was found.

Can you please help me remove it?

Asked by 865285807 1 month ago

Last reply by FredMcD 1 month ago

  • Solved

Browser Hijacker

I have incurred a browser hijacker that I can't seem to get rid of as no anti virus that I've tried will recognise it. The hijacker is defaultsearch.nchuser. The 'Refresh… (read more)

I have incurred a browser hijacker that I can't seem to get rid of as no anti virus that I've tried will recognise it. The hijacker is defaultsearch.nchuser. The 'Refresh Firefox button is not working at the moment. Please help me to remove this pest. Thank you.

Asked by kenrumble 1 month ago

Answered by FredMcD 1 month ago

How do I remove FreeTestNow from my PC without buying a phony antivirus program?

Tell me how to remove FreeTestNow from my PC. Mozilla Firefox: Click the Menu button (three bars) on the right upper corner of the screen Select "Options" and clic… (read more)

Tell me how to remove FreeTestNow from my PC.

Mozilla Firefox:

   Click the Menu button (three bars) on the right upper corner of the screen
   Select "Options" and click on "Privacy & Security" in the toolbar on the left hand side of the screen
   Scroll down to the "Permissions" section and click the "Settings" button next to "Notifications"
   In the opened window, locate all suspicious URLs, click the drop-down menu and select "Block"

I see no """Options""" when I click the Menu button so I can't remove FreeTestNow from my PC (Catch - 22?)

So how do I get to """Options""", then scroll down to the "Permissions" section?

Thank you for your help.

David Sicks

Asked by franklin_6 1 month ago

Last reply by FredMcD 1 month ago

poshukach

good day. two days ago I was infected by poshukach probably when downloading Opera browser or a torrente file. So, whenever I initiate firefox I am redirected to poshukac… (read more)

good day. two days ago I was infected by poshukach probably when downloading Opera browser or a torrente file. So, whenever I initiate firefox I am redirected to poshukach browser instead. Question is: how can I get rid of poshukach? Thanks a lot

Asked by mail1133 1 month ago

Last reply by JP 1 month ago

new https "trusted partner" redirect opt out

I want to opt out of the new (slower than molasses) "trusted partner redirect" Firefox gave me ONE chance for 3 seconds before closing the option window. This has resulte… (read more)

I want to opt out of the new (slower than molasses) "trusted partner redirect" Firefox gave me ONE chance for 3 seconds before closing the option window.

This has resulted in slowing down an already too slow event in Firefox. This is why users are going to chrome.

It's a great idea as an option. Not a great idea to force it on users.

Thanks for your help,

Asked by BertD FireFox 2 months ago

Last reply by jscher2000 2 months ago

Malware.Exploit.Agent.Generic, , Blocked, 0, 392684, 0.0.0, , -Exploit Data- Affected Application: Mozilla Firefox (and add-ons) Protection Layer: Protection Against OS Security Bypass Protection Technique: Exploit ROP gadget attack blocked

Firefox updated yesterday to ver 90.0.1 (64-bit). Today when I open Firefox browser, Malwarebytes blocks an exploit with thiis message: Malwarebytes www.malwarebytes.com… (read more)

Firefox updated yesterday to ver 90.0.1 (64-bit). Today when I open Firefox browser, Malwarebytes blocks an exploit with thiis message: Malwarebytes www.malwarebytes.com

-Log Details- Protection Event Date: 7/21/21 Protection Event Time: 1:37 PM Log File: 577494dc-ea4a-11eb-a649-54bf641896a0.json

-Software Information- Version: 4.4.2.123 Components Version: 1.0.1358 Update Package Version: 1.0.43331 License: Premium

-System Information- OS: Windows 10 (Build 19043.1110) CPU: x64 File System: NTFS User: System

-Exploit Details- File: 0 (No malicious items detected)

Exploit: 1 Malware.Exploit.Agent.Generic, , Blocked, 0, 392684, 0.0.0, ,

-Exploit Data- Affected Application: Mozilla Firefox (and add-ons) Protection Layer: Protection Against OS Security Bypass Protection Technique: Exploit ROP gadget attack blocked File Name: URL:


(end)


When I open in safe mode, no problem. I can not find the extension causing the problem

Asked by ItBme 2 months ago

Last reply by ItBme 2 months ago

A duplicate page designed just like Firefox Addons, keeps installing an extension without permission.

I was searching for some music online, and I came across a website. It redirected me to a duplicate page, that is designed exactly like Firefox Addons. Now that site auto… (read more)

I was searching for some music online, and I came across a website. It redirected me to a duplicate page, that is designed exactly like Firefox Addons. Now that site automatically loads whenever I open my Firefox browser and keeps installing an addon without any permissions, even if the "Get addon" button isn't clicked. The URL of the site is https://black-mode-for-browser.site/Dark%20Fox%20%E2%80%93%20Get%20this%20Theme%20for%20%F0%9F%A6%8A%20Firefox%20(en-US).php. Please beware before checking on this link.

Asked by S Balaji 2 months ago

Last reply by FredMcD 2 months ago

Firefox 89.02 Deceptive Content and Dangerous Software Protection

I´m using Firefox since many years ago. I have installed Firefox 89.02 and I have checked all the options in Dangerous Content Protection: Block dangerous and deceptive c… (read more)

I´m using Firefox since many years ago. I have installed Firefox 89.02 and I have checked all the options in Dangerous Content Protection: Block dangerous and deceptive content, Block dangerous downloads and Warn you about unwanted and uncommon software. I have install Kaspersky Total Security 21.3 and a few days ago I received an alert: Event: A malicious link has been detected that has already been opened Application active: firefox.exe Component: Antivirus Internet Description: No process Type: Likelihood of an unauthorized software download Name: https://in-page-push.com/400/3906803 Alert: High

Is Firefox blocking dangerous software or not? How to block push notifications that can try to install some kind of malicious program? Thanks for this excellent browser.

Asked by enriquespain 2 months ago

Last reply by Sandro Linux 2 months ago

Error found byy ZHPCleaner

Hello, ZHPCleaner finds an error he has never reported before in the registory. What does this mean ? ZHPCleaner v2021 6.28.305 by Nicolas Coolman. Registry : Fo… (read more)

Hello,

        ZHPCleaner finds an error he has never reported before in the registory.

What does this mean ? ZHPCleaner v2021 6.28.305 by Nicolas Coolman. Registry : Found Key HKLM\Software\Mozilla\Firefox[AdditionalScan 570] . SUP.FirefoxRestiction Potentially unnecessary software lps. Greetings.

Asked by patrick.seret 2 months ago

Last reply by cor-el 2 months ago

DEAR SIRS, PLEASE HELP How to remove brower hijacked by 'a.horsered.com' on my blog:https://rightwaystechnologies.blogspot.com/

DEAR SIRS, PLEASE HELP How to remove Brower hijacked by 'a.horsered.com' on my blog:https://rightwaystechnologies.blogspot.com/ THANKS RICHARD rightwayspro@gmail.com … (read more)

DEAR SIRS, PLEASE HELP How to remove Brower hijacked by 'a.horsered.com' on my blog:https://rightwaystechnologies.blogspot.com/

THANKS

RICHARD rightwayspro@gmail.com

Asked by Richard 3 months ago

Last reply by FredMcD 3 months ago