Malawarebytes result

Just did a scan and malawarebytes found 121 items on my laptop, all of them are "pup.optional.pricegong.a".
How did this happen?

Comments

  • closed
    closed Posts: 10,886 Forumite
    edited 17 August 2013 at 10:03PM
    you probably installed something. eg toolbar
    !!
    > . !!!! ----> .
  • stefano
    stefano Posts: 949 Forumite
    closed wrote: »
    you probably installed something. eg toolbar
    I didn't, and I know the online forum is saying to remove the asktoolbar, but I do not have it, and cannot find it on the control panel
  • You probably have. Go and download adware cleaner http://www.bleepingcomputer.com/download/adwcleaner/
    4.8kWp 12x400W Longhi 9.6 kWh battery Giv-hy 5.0 Inverter, WSW facing Essex . Aint no sunshine ☀️ Octopus gas fixed dec 24 @ 5.74 + Octopus Intelligent Flux leccy
  • stefano
    stefano Posts: 949 Forumite
    In the last few weeks I have also been getting a Server Busy message with "The action cannot be completed because the other program is busy. Choose "Switch To" to activate the busy program and correct the problem." upon start up. It's a Windows XP
  • stefano
    stefano Posts: 949 Forumite
    You probably have. Go and download adware cleaner http://www.bleepingcomputer.com/download/adwcleaner/
    This is the AdwCleaner report:
    ***** [Files / Folders] *****

    Folder Found : C:\DOCUME~1\Stefano\LOCALS~1\Temp\AskSearch
    Folder Found : C:\Documents and Settings\Ali\Local Settings\Application Data\AskToolbar
    Folder Found : C:\Documents and Settings\Ali\Local Settings\Application Data\Conduit
    Folder Found : C:\Documents and Settings\Anastasia\Local Settings\Application Data\AskToolbar
    Folder Found : C:\Documents and Settings\Anastasia\Local Settings\Application Data\Conduit
    Folder Found : C:\Documents and Settings\Christine\Local Settings\Application Data\AskToolbar
    Folder Found : C:\Documents and Settings\Christine\Local Settings\Application Data\Conduit
    Folder Found : C:\Documents and Settings\LocalService\Local Settings\Application Data\AskToolbar
    Folder Found : C:\Documents and Settings\LocalService\Local Settings\Application Data\Conduit

    ***** [Registry] *****

    Key Found : HKCU\Software\APN PIP
    Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
    Key Found : HKCU\Software\PIP
    Key Found : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
    Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Key Found : HKLM\Software\Classes\Installer\Features\90C64EA18BA25EE488BF80DCF07F2FFD
    Key Found : HKLM\Software\Classes\Installer\Products\90C64EA18BA25EE488BF80DCF07F2FFD
    Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
    Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}
    Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{CD95D125-2992-4858-B3EF-5F6FB52FBAD6}
    Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\063A857434EDED11A893800002C0A966
    Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
    Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
    Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
    Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\90C64EA18BA25EE488BF80DCF07F2FFD
    Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}
    Key Found : HKLM\Software\PIP
    Key Found : HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
    Key Found : HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
    Key Found : HKU\S-1-5-21-1003875409-1781358320-3446276120-1006\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
    Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]

    ***** [Internet Browsers] *****

    -\\ Internet Explorer v7.0.6000.21348

    [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://uk.mg.bt.mail.yahoo.com/neo/launch?reason=ignore&rs=1#/minty/page/inbox

    -\\ Mozilla Firefox v23.0.1 (en-US)

    File : C:\Documents and Settings\Stefano\Application Data\Mozilla\Firefox\Profiles\tqdj5jey.default-1369763949703\prefs.js

    [OK] File is clean.

    File : C:\Documents and Settings\Anastasia\Application Data\Mozilla\Firefox\Profiles\48ldorae.default\prefs.js

    [OK] File is clean.

    File : C:\Documents and Settings\Christine\Application Data\Mozilla\Firefox\Profiles\m8cvd9ap.default\prefs.js

    [OK] File is clean.

    File : C:\Documents and Settings\Christine\Application Data\Mozilla\Firefox\Profiles\x0jq0n6j.default\prefs.js

    [OK] File is clean.

    File : C:\Documents and Settings\Ali\Application Data\Mozilla\Firefox\Profiles\2b89bwv5.default\prefs.js

    [OK] File is clean.

    -\\ Google Chrome v [Unable to get version]

    File : C:\Documents and Settings\Stefano\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

    [OK] File is clean.

    File : C:\Documents and Settings\Anastasia\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

    [OK] File is clean.

    File : C:\Documents and Settings\Christine\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

    [OK] File is clean.

    File : C:\Documents and Settings\Ali\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

    [OK] File is clean.

    *************************

    AdwCleaner[R1].txt - [5546 octets] - [18/08/2013 10:42:44]

    ########## EOF - C:\AdwCleaner[R1].txt - [5606 octets] ##########
  • NiftyDigits
    NiftyDigits Posts: 10,459 Forumite
    stefano wrote: »
    In the last few weeks I have also been getting a Server Busy message with "The action cannot be completed because the other program is busy. Choose "Switch To" to activate the busy program and correct the problem." upon start up. It's a Windows XP

    If not solved after the clean-up. http://discussions.virtualdr.com/showthread.php?175954-RESOLVED-Server-Busy-The-action-cannot-be-completed
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    stefano wrote: »
    Just did a scan and malawarebytes found 121 items on my laptop, all of them are "pup.optional.pricegong.a".
    How did this happen?
    I wouldn't be too concerned, Malwarebytes have had a change of policy recently.

    http://blog.malwarebytes.org/news/2013/07/malwarebytes-adopts-aggressive-pup-policy/
    In the past, Malwarebytes Anti-Malware has detected only PUPs, or Potentially Unwanted Programs, that were mostly harmful and deceiving. Our users expected more and so we’ve revised our policy to include PUPs in our database that most of our users find annoying or misleading. Within the next few days, detection for many new variants will be added.

    Malwarebytes feels most of our users have no knowledge that these PUPs were installed and would like them removed. Several thousand forum posts and support tickets confirm our standpoint. Ranging from difficult to uninstall applications to software that makes you opt-out, we’ve had enough of it all!

    http://www.microsoft.com/security/portal/threat/Encyclopedia/Entry.aspx?Name=Adware%3AWin32%2FPriceGong#tab=2

    http://www.pricegong.com/TermsofUse.aspx
  • home_alone
    home_alone Posts: 755 Forumite
    edited 18 August 2013 at 6:04PM
    I had one of these picked up by malwarebytes then did a a safe mode scan and picked up 9 more (in restore) then just deleted them. No more since
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 349.7K Banking & Borrowing
  • 252.6K Reduce Debt & Boost Income
  • 452.9K Spending & Discounts
  • 242.6K Work, Benefits & Business
  • 619.4K Mortgages, Homes & Bills
  • 176.3K Life & Family
  • 255.5K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 15.1K Coronavirus Support Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.