Announcement

Collapse
No announcement yet.

Google Chrome has random pop ups

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Google Chrome has random pop ups

    If you leave it running for awhile and come back, theres another tab with some stupid ad on it. Possibly a virus im assuming?? Anywho.. How so i cure this. MSE isnt saying theres anything there..
    GOPR0198 by larrychance88

  • #2
    Run this and post the log upon completion. http://www.eset.com/us/online-scanner/

    Comment


    • #3
      Use internet explorer? Free trial or online scanner?
      GOPR0198 by larrychance88

      Comment


      • #4
        Online scanner and it should download an exe to run. Before you do that, what else have you tried? This scanner can take a long time to run...

        Comment


        • #5
          I just ran a full scan on MSE. Thats it.

          Well It found no threats. On Internet Explorer that is..But we only use Google Chrome. Im trying it on Google Chrome now.
          GOPR0198 by larrychance88

          Comment


          • #6
            Mse is mostly ineffective, hence why I asked to run the eset scan.

            In the pic you posted by took down, there was a check box, check it and dl the exe, allow it to dl the definitions, then run the scan.

            Post its log upon completion.

            *If it comes back clean, dl and run Malwarebytes(quick scan). Post its log as well.

            Comment


            • #7
              Yup, Came back clean. Gonna download the Malwarebytes and run the scan. Ill let ya know
              GOPR0198 by larrychance88

              Comment


              • #8
                Roger

                Comment


                • #9
                  88 threats found. Heres the log.

                  Malwarebytes Anti-Malware (Trial) 1.75.0.1300


                  Database version: v2013.10.02.12

                  Windows 7 Service Pack 1 x64 NTFS
                  Internet Explorer 10.0.9200.16686
                  Brackeen :: BRACKEEN [administrator]

                  Protection: Enabled

                  10/2/2013 7:57:57 PM
                  MBAM-log-2013-10-02 (20-03-39).txt

                  Scan type: Quick scan
                  Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
                  Scan options disabled: P2P
                  Objects scanned: 219575
                  Time elapsed: 3 minute(s), 35 second(s)

                  Memory Processes Detected: 2
                  C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe (PUP.Optional.PerformerSoft.A) -> 1752 -> No action taken.
                  C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe (PUP.Optional.PerformerSoft.A) -> 2084 -> No action taken.

                  Memory Modules Detected: 1
                  C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.dll (PUP.Optional.PerformerSoft.A) -> No action taken.

                  Registry Keys Detected: 32
                  HKLM\SYSTEM\CurrentControlSet\Services\BitGuard (PUP.Optional.PerformerSoft.A) -> No action taken.
                  HKCR\CLSID\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.Funmoods) -> No action taken.
                  HKCR\funmoods.funmoodsHlpr.1 (PUP.Funmoods) -> No action taken.
                  HKCR\funmoods.funmoodsHlpr (PUP.Funmoods) -> No action taken.
                  HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Browser Helper Objects\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.Funmoods) -> No action taken.
                  HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext \Settings\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.Funmoods) -> No action taken.
                  HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext \Stats\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.Funmoods) -> No action taken.
                  HKCR\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} (PUP.Optional.Delta.A) -> No action taken.
                  HKCR\CLSID\{75A4D144-506D-4BE5-81DB-EC7DA1E7F840} (PUP.Funmoods) -> No action taken.
                  HKCR\TypeLib\{960DF771-CFCB-4E53-A5B5-6EF2BBE6E706} (PUP.Funmoods) -> No action taken.
                  HKCR\esrv.funmoodsESrvc.1 (PUP.Funmoods) -> No action taken.
                  HKCR\esrv.funmoodsESrvc (PUP.Funmoods) -> No action taken.
                  HKCR\CLSID\{965B9DBE-B104-44AC-950A-8A5F97AFF439} (PUP.Funmoods) -> No action taken.
                  HKCR\CLSID\{A9DB719C-7156-415E-B49D-BAD039DE4F13} (PUP.Funmoods) -> No action taken.
                  HKCR\funmoodsApp.appCore.1 (PUP.Funmoods) -> No action taken.
                  HKCR\funmoodsApp.appCore (PUP.Funmoods) -> No action taken.
                  HKCR\CLSID\{F03FD9D0-4F2B-497C-8A71-DD41D70B07D9} (PUP.Funmoods) -> No action taken.
                  HKCR\f (PUP.Funmoods) -> No action taken.
                  HKCR\Typelib\{1D085C0A-E4F4-4F66-BDBF-4BE51015BFC3} (PUP.Funmoods) -> No action taken.
                  HKCR\Interface\{0D80F1C5-D17B-4177-AC68-955F3EF9F191} (PUP.Funmoods) -> No action taken.
                  HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C87FC351-A80D-43E9-9A86-CF1E29DC443A} (PUP.Funmoods) -> No action taken.
                  HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall\Funmoods (PUP.FunMoods) -> No action taken.
                  HKCU\SOFTWARE\DataMngr_Toolbar (PUP.Optional.DataMngr.A) -> No action taken.
                  HKCU\SOFTWARE\Funmoods (PUP.FunMoods) -> No action taken.
                  HKCU\Software\DataMngr (PUP.Optional.DataMngr.A) -> No action taken.
                  HKCU\Software\BabSolution\Updater (PUP.Optional.Babylon.A) -> No action taken.
                  HKCU\Software\Google\Chrome\Extensions\bbjciahceam godcoidkjpchnokgfpphh (PUP.Funmoods) -> No action taken.
                  HKCU\SOFTWARE\INSTALLCORE (PUP.Optional.InstallCore.A) -> No action taken.
                  HKCU\Software\Microsoft\Windows\CurrentVersion\Ext \bProtectSettings (PUP.Optional.BProtector.A) -> No action taken.
                  HKLM\SOFTWARE\Google\Chrome\Extensions\bbjciahceam godcoidkjpchnokgfpphh (PUP.Funmoods) -> No action taken.
                  HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall\funmoods (PUP.FunMoods) -> No action taken.
                  HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall\{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693} (PUP.Optional.BitGuard.A) -> No action taken.

                  Registry Values Detected: 4
                  HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|bProtector Start Page (PUP.BProtector) -> Data: http://www1.delta-search.com/?babsrc...3_wc2&tsp=4970 -> No action taken.
                  HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes|bProtectorDefaultScope (PUP.BProtector) -> Data: {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} -> No action taken.
                  HKCU\Software\InstallCore|tb (PUP.Optional.InstallCore.A) -> Data: 0L1N1H2O1S -> No action taken.
                  HKLM\SYSTEM\CurrentControlSet\Services\BitGuard|Im agePath (PUP.Optional.BitGuard.A) -> Data: C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe -> No action taken.

                  Registry Data Items Detected: 2
                  HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows|AppInit_DLLs (PUP.Optional.PerformerSoft.A) -> Bad: (c:\progra~3\bitguard\261673~1.238\{c16c1~1\bitgua rd.dll) Good: () -> No action taken.
                  HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (PUP.Optional.StartPage) -> Bad: (http://www1.delta-search.com/?babsrc...3_wc2&tsp=4970) Good: (http://www.google.com) -> No action taken.

                  Folders Detected: 9
                  C:\Users\Brackeen\AppData\Roaming\Babylon (PUP.Optional.Babylon.A) -> No action taken.
                  C:\Program Files (x86)\Funmoods (PUP.FunMoods) -> No action taken.
                  C:\Program Files (x86)\Funmoods\1.5.23.22 (PUP.FunMoods) -> No action taken.
                  C:\Program Files (x86)\Funmoods\1.5.23.22\bh (PUP.FunMoods) -> No action taken.
                  C:\Users\Brackeen\AppData\Roaming\File Scout (PUP.Optional.FileScout.A) -> No action taken.
                  C:\ProgramData\BitGuard\2.6.1673.238 (PUP.Optional.BitGuard.A) -> No action taken.
                  C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8} (PUP.Optional.BitGuard.A) -> No action taken.
                  C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\FirefoxExtension (PUP.Optional.BitGuard.A) -> No action taken.
                  C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings (PUP.Optional.BitGuard.A) -> No action taken.
                  GOPR0198 by larrychance88

                  Comment


                  • #10
                    Files Detected: 38
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.dll (PUP.Optional.PerformerSoft.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe (PUP.Optional.PerformerSoft.A) -> No action taken.
                    C:\Program Files (x86)\Funmoods\1.5.23.22\bh\escort.dll (PUP.Funmoods) -> No action taken.
                    C:\Program Files (x86)\Funmoods\1.5.23.22\funmoodssrv.exe (PUP.Funmoods) -> No action taken.
                    C:\Program Files (x86)\Funmoods\1.5.23.22\escortApp.dll (PUP.Funmoods) -> No action taken.
                    C:\Program Files (x86)\Funmoods\1.5.23.22\escortEng.dll (PUP.Funmoods) -> No action taken.
                    C:\Users\Brackeen\AppData\Roaming\File Scout\filescout.exe (PUP.Optional.FileScout.A) -> No action taken.
                    C:\Users\Brackeen\Downloads\Produtools_Manuals_2_1 _B2 (1).exe (PUP.Optional.Conduit.A) -> No action taken.
                    C:\Users\Brackeen\Downloads\Produtools_Manuals_2_1 _B2.exe (PUP.Optional.Conduit.A) -> No action taken.
                    C:\Users\Brackeen\Downloads\ZipOpenerSetup.exe (PUP.Optional.Installcore) -> No action taken.
                    C:\Users\Brackeen\AppData\Local\funmoods.crx (PUP.Funmoods) -> No action taken.
                    C:\Users\Brackeen\Local Settings\Application Data\funmoods.crx (PUP.Funmoods) -> No action taken.
                    C:\Users\Brackeen\AppData\Roaming\Funmoods\UpdateP roc\UpdateTask.exe (PUP.FunMoods) -> No action taken.
                    C:\Users\Brackeen\AppData\Roaming\Babylon\log_file .txt (PUP.Optional.Babylon.A) -> No action taken.
                    C:\Users\Brackeen\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data (PUP.Optional.BProtector.A) -> No action taken.
                    C:\Users\Brackeen\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences (PUP.Optional.BProtector.A) -> No action taken.
                    C:\Program Files (x86)\Funmoods\1.5.23.22\escortShld.dll (PUP.FunMoods) -> No action taken.
                    C:\Program Files (x86)\Funmoods\1.5.23.22\FavIcon.ico (PUP.FunMoods) -> No action taken.
                    C:\Program Files (x86)\Funmoods\1.5.23.22\Sqlite3.dll (PUP.FunMoods) -> No action taken.
                    C:\Program Files (x86)\Funmoods\1.5.23.22\uninst.dat (PUP.FunMoods) -> No action taken.
                    C:\Program Files (x86)\Funmoods\1.5.23.22\uninstall.exe (PUP.FunMoods) -> No action taken.
                    C:\Users\Brackeen\AppData\Roaming\File Scout\uninst.exe (PUP.Optional.FileScout.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.settings (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\bl (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\dm (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\uninstall.exe (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\00 (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\01 (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\02 (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\03 (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\10 (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\11 (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\12 (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\13 (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\20 (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\21 (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\22 (PUP.Optional.BitGuard.A) -> No action taken.
                    C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\23 (PUP.Optional.BitGuard.A) -> No action taken.

                    (end)
                    GOPR0198 by larrychance88

                    Comment


                    • #11
                      Ok, check each and every box, click Remove All and if prompted, reboot.

                      Post back afterwards.

                      Comment


                      • #12
                        Also, I strongly suggest uninstalling MSE and installing Avast for your a/v.

                        Comment


                        • #13
                          Will do. Installing Avast right now. Thanks for your help.
                          GOPR0198 by larrychance88

                          Comment


                          • #14
                            You're more than welcome.

                            Comment


                            • #15
                              How's it doin?

                              Comment

                              Working...
                              X