Avast showing Malware URL Blocked. Any Idea what is it?

Discussion in 'malware problems & news' started by Atul88, May 4, 2012.

Thread Status:
Not open for further replies.
  1. Atul88
    Offline

    Atul88 Registered Member

    i am getting this popup often, when i do scan the pc, nothing is detected.
    I have just installed Win XP and Avast!!!
    Has anybody else faced the same problem??

    Attached Files:

    • 1.JPG
      1.JPG
      File size:
      12.9 KB
      Views:
      753
  2. HAN
    Offline

    HAN Registered Member

    The IP Address is sourced from Russia

    inetnum: 146.185.246.0 - 146.185.246.255
    netname: Kuznetsova-net
    descr: Kuznetsova Anastasiia Genadievna hosting ands VPS

    Somehow, something is communicating (on your PC) to or from this address.

    I run Avast on many PCs, both at work and at home. I have never seen anything like it.
  3. Ranget
    Offline

    Ranget Registered Member

    virustotal it
  4. Page42
    Offline

    Page42 Registered Member

    MBAM website blocking blocks that site.

    mbam ip block II.jpg
  5. 3x0gR13N
    Offline

    3x0gR13N Registered Member

    You're definitely infected, the executable is detected by several anti-viruses on VT, including Kaspersky.
    1.PNG

    Make sure that installed software and OS are from trusted sources.
  6. Ranget
    Offline

    Ranget Registered Member

    i recomend that you go to a Helping site in malware removal
  7. Technical
    Offline

    Technical Registered Member

    It does not seem to be a false positive from avast! ;)
  8. cheater87
    Offline

    cheater87 Registered Member

    Virus total says WOT and Malwareblacklist have detected this.
  9. Atul88
    Offline

    Atul88 Registered Member

    Run the pc whole day today..
    Not even a single popup..:D :D
    Maybe someone was trying to get into my system..:shifty: :shifty:
  10. Page42
    Offline

    Page42 Registered Member

    According to ThreatExpert , backdoor.win32.floder.ila creates a new process in the system, Ybxaxy.exe.
  11. ellison64
    Offline

    ellison64 Registered Member

    You may have the url saved in your browser cache which is triggered by avast scan.If the url is entered in address bar ,it automatically downloads i.exe binary file which is a trojan detected by mbam and a few others.Just uploaded to jottis and avast doesnt detect it there.Not sure what version they use there but avast seems to detect it on your pc ,at least the url anyway
  12. Atul88
    Offline

    Atul88 Registered Member

    No i didn't have any suspicious exe running like Ybxaxy.exe
Thread Status:
Not open for further replies.