Jump to content

Can't identify the source...


Recommended Posts

Hi, after each clean up, I still get this sane thread warning

PUP.Optional.Legacy             libedajeiljdoodmokbppgapcfbignci

It says it is a Chrome plugin, however with that name I have noway of finding and uninstalling that plugin...

Is there a remedy for this?

Thank you

Link to post
Share on other sites

@cemster

While you are waiting for the next qualified/approved malware removal expert helper to weigh in on your topic, and even though you may have run the following Malwarebytes utility, or its subsets, please carefully follow these instructions:

  1. Download the Malwarebytes Support Tool.
  2. In your Downloads folder, open the mb-support-x.x.x.xxx.exe file.
  3. In the User Account Control (UAC) pop-up window, click Yes to continue the installation.
  4. Run the MBST Support Tool.
  5. In the left navigation pane of the Malwarebytes Support Tool, click Advanced.
  6. In the Advanced Options, click only Gather Logs. A status diagram displays the tool is Getting logs from your computer.
  7. A zip file named mbst-grab-results.zip will be saved to the Public desktop, please attach that file in your next reply to this topic. Please do NOT copy and paste.

For the short time between when you post the diagnostic logs, and when your helper weighs in, please take no further self-directed remedial actions that will invalidate the diagnostic logs you will have sent.

Thank you.

Link to post
Share on other sites

Thank you, but this is not my favorite choice of action. I was hopping that identifying the problem and getting rid of it was the goal here...

But I do understand where you're coming from. I had this configuration for 15 years or so and never had an issue (that I couldn't find e remedy for anyway) .

This thing started to happen for five days. And the only newextensions since a month were all legit stuff, no mediocre or/and unknown plugins plugins...

So, I am wondering...

Link to post
Share on other sites

  • Root Admin

Some people believe it to be SoundCloud Downloader for Chrome

I don't see it listed in your logs as that name though or that of the one you listed.

Here is what the logs have for your installation of Google Chrome. Without doing a major clean up you'll need to manually search and clean on your own. I have no way to manually dig into the code to say specifically what entry is causing it.

 

Chrome:
=======
CHR DefaultProfile: Profile 6
CHR Profile: C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Guest Profile [2023-04-15]
CHR Profile: C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 1 [2023-04-13]
CHR Notifications: Profile 1 -> hxxps://www.trendyol.com
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-04-13]
CHR Extension: (Avast Online Security & Privacy) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2023-02-19]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2023-04-13]
CHR Extension: (Tureng Dictionary) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ihedienojfhdahpomfldoejaimefofff [2023-02-21]
CHR Extension: (Chrome Web Store Payments) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-31]
CHR Profile: C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 2 [2022-05-30]
CHR Extension: (Avast Online Security & Privacy) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gomekmidlodglbbmalcneegieacbdmki [2022-04-10]
CHR Extension: (Chrome Web Mağazası Ödemeleri) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-06]
CHR Profile: C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 5 [2023-04-13]
CHR Notifications: Profile 5 -> hxxps://linkforcaptcha.top
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-04-10]
CHR Extension: (Avast Online Security & Privacy) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\gomekmidlodglbbmalcneegieacbdmki [2023-03-19]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2023-04-13]
CHR Extension: (Chrome Web Store Payments) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-06]
CHR Profile: C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6 [2023-04-15]
CHR StartupUrls: Profile 6 -> "hxxps://www.google.com/?ion=0"
CHR Session Restore: Profile 6 -> is enabled.
CHR Extension: (Entanglement Web App) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\aciahcmjmecflokailenpkdchphgkefd [2023-03-14]
CHR Extension: (Workona Tab Manager) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\ailcmbgekjpnablpdkmaaccecekgdhlh [2023-03-28]
CHR Extension: (Authenticator) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\bhghoamapcdpbohphigoooaddinpkbai [2023-03-14]
CHR Extension: (DuckDuckGo) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2023-04-13]
CHR Extension: (Mute Tab) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\blljobffcekcbopmkgfhpcjmbfnelkfg [2023-03-14]
CHR Extension: (Tab Muter) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\bnclejfcblondkjliiblkojdeloomadd [2023-03-14]
CHR Extension: (Merlin - ChatGPT Assistant for All Websites) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\camppjleccjaphfdbohjdohecfnoikec [2023-04-13]
CHR Extension: (Timebox++) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\cbgpbhpefmeholmeodlhaalbcjgbafjd [2023-03-14]
CHR Extension: (Send to Kindle for Google Chrome™) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\cgdjpilhipecahhcilnafpblkieebhea [2023-03-14]
CHR Extension: (Tab Restore) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\dbndgjfafojhfndfgpcibceghelbbnep [2023-03-14]
CHR Extension: (ChatGPT Sidebar - Support GPT-4 for Plus user) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\difoiogjjojoaoomphldepapgpbgkhkb [2023-04-07]
CHR Extension: (NoScript) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\doojmbjmlfjjnbmnoijecmcbfeoakpjm [2023-03-14]
CHR Extension: (Session Buddy) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\edacconmaakjimmfgnblocblbcdcpbko [2023-03-14]
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-04-10]
CHR Extension: (Dark Reader) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2023-04-11]
CHR Extension: (Readium) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\fepbnnnkkadjhjahcafoaglimekefifl [2023-03-14]
CHR Extension: (Pomodoro Timer for Google Chrome™) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\fgaaffhjdmhlhdmmigjpjepflplblgam [2023-03-14]
CHR Extension: (you.com) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\fhplnehgjpmohhldfnjhibanpbiedofi [2023-03-30]
CHR Extension: (Site Connector) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\fncdipbcmcjafbnfkkfgocoghjjdmfej [2023-03-14]
CHR Extension: (Chat GPT) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\fnmihdojmnkclgjpcoonokmkhjpjechg [2023-04-02]
CHR Extension: (Domain Blocker) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\ggdcjplapccgoinblmidpkoocfafajfa [2023-03-14]
CHR Extension: (Avast Online Security & Privacy) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\gomekmidlodglbbmalcneegieacbdmki [2023-03-14]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2023-03-30]
CHR Extension: (Search Site WE) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\hjleocmfcmdknclahmmfclopknmdkhkp [2023-03-14]
CHR Extension: (Video Tuner) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\hplbaefjnkjpbnbkcbkjmdcedcbncppm [2023-03-14]
CHR Extension: (Kindle Cloud Reader) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\icdipabjmbhpdkjaihfjoikhjjeneebd [2023-03-14]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2023-04-13]
CHR Extension: (Tureng Dictionary) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\ihedienojfhdahpomfldoejaimefofff [2023-03-14]
CHR Extension: (QuillBot: AI Grammar and Writing Tool) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\iidnbdjijdkbmajdffnidomddglmieko [2023-04-11]
CHR Extension: (Yahoo Partner) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\jcdpkbfmnobnohjlbopbakpolnchhfgj [2023-03-14]
CHR Extension: (Absolute Enable Right Click & Copy) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\jdocbkpgdakpekjlhemmfcncgdjeiika [2023-03-14]
CHR Extension: (Volume Master) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\jghecgabfgfdldnmbfkhmffcabddioke [2023-03-14]
CHR Extension: (Web Scraper - Free Web Scraping) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\jnhgnonknehpejjnehehllkliplmbmhn [2023-03-14]
CHR Extension: (Chessvision.ai Chess Position Scanner) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\johejpedmdkeiffkdaodgoipdjodhlld [2023-03-14]
CHR Extension: (Grammarly: Grammar Checker and Writing App) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2023-04-11]
CHR Extension: (Yellow highlighter pen for web) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\lnmengjdnfjbochkdkcjbbpildacancp [2023-03-14]
CHR Extension: (WebChatGPT: ChatGPT with internet access) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\lpfemeioodjbpieminkklglpmhlngfcn [2023-04-11]
CHR Extension: (TabCopy) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\micdllihgoppmejpecmkilggmaagfdmb [2023-03-14]
CHR Extension: (Sticky Notes) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\nbjdhgkkhefpifbifjiflpaajchdkhpg [2023-03-14]
CHR Extension: (Keep It Tidy - Tab Manager) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\ncjlgbnopdeldjbdbcpgdepfifhpocip [2023-03-14]
CHR Extension: (Domain Whitelist) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\njkbjdmigienhoeccpigopgjmlgmdine [2023-03-14]
CHR Extension: (MetaMask) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2023-04-14]
CHR Extension: (ShareX) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\nlkoigbdolhchiicbonbihbphgamnaoc [2023-03-14]
CHR Extension: (Wordtune - AI-powered Writing Companion) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\nllcnknpjnininklegdoijpljgdjkijc [2023-04-05]
CHR Extension: (Chrome Web Store Payments) - C:\Users\SONY\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-03-14]
CHR Profile: C:\Users\SONY\AppData\Local\Google\Chrome\User Data\System Profile [2023-04-15]
CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

 

 

Link to post
Share on other sites

  • 1 month later...
  • Root Admin

Glad we could help.

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this topic with your request.

This applies only to the originator of this thread. Other members who need assistance please start your own topic in a new thread.

Please review the following to help you better protect your computer and privacy Tips to help protect from infection

Thank you

 

 

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.