Like in subject, when I use Firefox I frequently receive alert about URL:MAL trying to connect to website m73lae5cpmgrv38.com. I’ve had performed scans with Avast and Malwarebytes, but they haven’t found anything. Could anyone help me?
I am attaching logs from Malwarebytes and FRST64.
Using Windows 10 64 bit.
Have you tried to clear browser crap with AdwCleaner? >> https://www.malwarebytes.com/adwcleaner/
URL:Mal = Blacklisted URL or IP
Blacklisted >> https://www.virustotal.com/#/url/08bdb526adfcbccb86e7d5bf1424fe932ac3b8e92c64aa091a13d0f21382796e/detection
Possible fake Google site, see click screenshot at top right here >> http://urlquery.net/report/08d40020-17b1-4028-a344-94e8e5a83127
Malware experts are notified, it may take hours before they are online
From one search on the Internet we can decide one should not visit this site:
https://urlscan.io/result/9b5e14d3-7ce4-49b0-a26f-b8adccb8046d/#summary is till rather neutral, while there is Webzilla abuse, and here it is also not that clear: http://phishcheck.me/1706/details
Not flagged here: https://urlquery.net/report/38a243d3-1bcf-4189-91a1-0bf887a5f47a
alas now we get a not found for that domain, but earlier two to flag here: https://www.virustotal.com/#/url/08bdb526adfcbccb86e7d5bf1424fe932ac3b8e92c64aa091a13d0f21382796e/detection
BonzunaInstaller executable could be a PUP. Website is Amazon related: https://toolbar.netcraft.com/site_report?url=http%3A%2F%2Fm73lae5cpmgrv38.com%2F
Also consider this info: https://server.easycounter.com/81510d7881e35e8.com
polonus (volunteer website security analyst and website error-hunter)
Thought I’d post a response.
I experienced the same. Tracked it back to a site that I sometimes go to. It had an element linked to m73lae5cpmgrv38.com
I used uMatrix (AdBlocker) to block the element.
Problem solved. No more messages.
I suppose someone with this issue could do the same with uMatrix or a similar app/plugin.