Threat dectected every web page

Hi,

since the past week I receive an avast pop up that says threat detected on every new pages I open with chrome (Infection: URL:Mail / Process C:\Program Files (x86)\Google\Chrome\Application1chrome.exe).

I therefore followed this guide https://forum.avast.com/index.php?topic=53253.0 and I attach you all the information scanned!

Thank you for the help.

Giovanni

Also post a screenshot of the avast popup so we can see the exact message

Here.

Do you have Facebook Video Downloader extension installed?

If so, uninstall it

Essexboy will be online later and check your logs :wink:

Omg was it really so easy? I uninstalled Facebook Video Downloader and the problem disappeared!

Thank you so much for the help, I’ve been struggling for a while

check back later to see what Essexboy find in your logs

Will do

I would recommend that you uninstall Hola™ 1.13.72 - Better Internet http://adios-hola.org/

CAUTION : This fix is only valid for this specific machine, using it on another may break your computer

Open notepad and copy/paste the text in the quotebox below into it:

CreateRestorePoint: ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => No File ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => No File ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => No File BHO-x32: No Name -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> No File BHO-x32: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File FF user.js: detected! => C:\Users\Giga1994\AppData\Roaming\Mozilla\Firefox\Profiles\7bdcr8qv.default\user.js [2016-05-03] CHR Extension: (Facebook Video Downloader) - C:\Users\Giga1994\AppData\Local\Google\Chrome\User Data\Default\Extensions\amjcoehkcacocffpmhnefgoeanepjfkf [2016-04-26] IE trusted site: HKU\S-1-5-21-2510874167-1550461560-530935572-1001\...\hola.org -> hxxp://hola.org Reg: reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f Reg: reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f RemoveProxy: EmptyTemp: CMD: bitsadmin /reset /allusers

Save this as fixlist.txt, in the same location as FRST.exe

https://dl.dropboxusercontent.com/u/73555776/FRSTfix.JPG

Run FRST and press Fix
On completion a log will be generated please post that

THEN

Please download AdwCleaner by Xplode onto your desktop.

[*]Close all open programs and internet browsers.
[*]Double click on AdwCleaner.exe to run the tool.
[*]Click on Scan.
[*]After the scan is complete click on “Clean”
[*]Confirm each time with Ok.
[*]Your computer will be rebooted automatically. A text file will open after the restart.
[*]Please post the content of that logfile with your next answer.
[*]You can find the logfile at C:\AdwCleaner[S0].txt as well.

I uninstalled hola. I was using it to watch the usa netflix when abroad. Do you have any suggestions of other vpn I might use?

Find attached the text

Thanks for the help

Any further problems

http://www.thetop10bestvpn.com/best-free-vpn-service vpn’s

netflix is cracking down on the use of VPN and are blocking lots of VPNs, the only reason hola worked was because you were connecting to the internet through someone elses pc and other people were connecting to the internet through your pc in return so if said person connected through you did something very very illegal (child porn as an example) you would be the one who gets in trouble for it as it traces back to your pc, aswell as other security issues to your pc.

Do you have any suggestions of other vpn I might use?
http://www.opera.com/blogs/desktop/2016/04/free-vpn-integrated-opera-for-windows-mac/