My firefox browser keeps redirecting me to random pages, I have had a similar attack before and had it removed it appears I have another. I use a Windows Vista, I did a scam on MBAM and pulled out some viruses, I removed them already but I saved the logs: I will include the log below this post. It doesn't happen all the time and I use my browser without issue, but this is rapidly becoming and issue and I hope it can be solved.
The site will redirect me to "popcash.net" and my avast! would let me know it is indeed a Trojan. This would also appear in my History: http://174.139.59.218/in.asp?id=evoevo
Which would redirect me to this: http://search.dailynewsupdates.org/of.php?upctr=1&username=test&count=1&format=json&style=2
And then this: http://usa.visa.com/
Here is the MBAM log, not sure if it'll help but here:
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Database version: v2013.11.01.03
Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 9.0.8112.16421
Nick F :: NICKF-PC [administrator]
11/1/2013 10:00:19 AM
MBAM-log-2013-11-01 (10-24-59).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 245940
Time elapsed: 24 minute(s), 5 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3A787631-66A2-4634-B928-A37E73B58FB6} (PUP.Optional.Spigot.A) -> No action taken.
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 2
C:\Users\Nick F\AppData\Roaming\Slick Savings (PUP.Optional.Spigot.A) -> No action taken.
C:\Users\Nick F\AppData\Local\Slick Savings (PUP.Optional.Spigot.A) -> No action taken.
Files Detected: 8
C:\ProgramData\YouTube Downloader\ytd_installer.exe (PUP.Optional.Spigot.A) -> No action taken.
C:\ProgramData\YTD Video Downloader\ytd_installer.exe (PUP.Optional.Spigot.A) -> No action taken.
C:\Users\Nick F\AppData\Roaming\Slick Savings\Uninstall.exe (PUP.Optional.Spigot.A) -> No action taken.
C:\Users\Nick F\Downloads\YTDSetup.exe (PUP.Optional.Spigot.A) -> No action taken.
C:\Users\Nick F\AppData\Roaming\Slick Savings\coupons_2.4.crx (PUP.Optional.Spigot.A) -> No action taken.
C:\Users\Nick F\AppData\Roaming\Slick Savings\CouponsHelper.exe (PUP.Optional.Spigot.A) -> No action taken.
C:\Users\Nick F\AppData\Roaming\Slick Savings\coupons_2.7.xpi (PUP.Optional.Spigot.A) -> No action taken.
C:\Users\Nick F\AppData\Local\Slick Savings\coupons.crx (PUP.Optional.Spigot.A) -> No action taken.
(end)
The site will redirect me to "popcash.net" and my avast! would let me know it is indeed a Trojan. This would also appear in my History: http://174.139.59.218/in.asp?id=evoevo
Which would redirect me to this: http://search.dailynewsupdates.org/of.php?upctr=1&username=test&count=1&format=json&style=2
And then this: http://usa.visa.com/
Here is the MBAM log, not sure if it'll help but here:
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Database version: v2013.11.01.03
Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 9.0.8112.16421
Nick F :: NICKF-PC [administrator]
11/1/2013 10:00:19 AM
MBAM-log-2013-11-01 (10-24-59).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 245940
Time elapsed: 24 minute(s), 5 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3A787631-66A2-4634-B928-A37E73B58FB6} (PUP.Optional.Spigot.A) -> No action taken.
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 2
C:\Users\Nick F\AppData\Roaming\Slick Savings (PUP.Optional.Spigot.A) -> No action taken.
C:\Users\Nick F\AppData\Local\Slick Savings (PUP.Optional.Spigot.A) -> No action taken.
Files Detected: 8
C:\ProgramData\YouTube Downloader\ytd_installer.exe (PUP.Optional.Spigot.A) -> No action taken.
C:\ProgramData\YTD Video Downloader\ytd_installer.exe (PUP.Optional.Spigot.A) -> No action taken.
C:\Users\Nick F\AppData\Roaming\Slick Savings\Uninstall.exe (PUP.Optional.Spigot.A) -> No action taken.
C:\Users\Nick F\Downloads\YTDSetup.exe (PUP.Optional.Spigot.A) -> No action taken.
C:\Users\Nick F\AppData\Roaming\Slick Savings\coupons_2.4.crx (PUP.Optional.Spigot.A) -> No action taken.
C:\Users\Nick F\AppData\Roaming\Slick Savings\CouponsHelper.exe (PUP.Optional.Spigot.A) -> No action taken.
C:\Users\Nick F\AppData\Roaming\Slick Savings\coupons_2.7.xpi (PUP.Optional.Spigot.A) -> No action taken.
C:\Users\Nick F\AppData\Local\Slick Savings\coupons.crx (PUP.Optional.Spigot.A) -> No action taken.
(end)