September 11, 2021

Drive-by Download Attack- Help

TLDR trying to learn about market structures. Was given a link by a friend, which I opened in Mozilla Firefox: anonfiles . com

The second I clicked in to download the file, Kaspersky flagged 8-10 unauthorized downloads and blocked them all. They were all labelled to be coming from “baconaces . pro” which is a hotbed for malware according to VirusTotal ([https://www.virustotal.com/gui/url/5298a7c6430d4caf6059cc40f3b9ed0c67f4b4148f842f876636686539325873/detection](https://www.virustotal.com/gui/url/5298a7c6430d4caf6059cc40f3b9ed0c67f4b4148f842f876636686539325873/detection)) There was one result originating from “facesnotebook . com” as well.

​

My firefox browser became extremely laggy shortly after. Additionally, whenever I opened firefox, kaspersky immediately flagged the same 8-10 unauthorized downloads again. I don’t know how the downloads are still being attempted despite having closed the webpage (anonfiles . com was closed).

​

I have since uninstalled firefox. What can I do to deal with this?

Comments

ilike2burn

anonfile[DOT]com itself is safe, so I doubt you got anything just from visiting it and clicking download.

Run scans with [Emsisoft Emergency Kit](https://dl.emsisoft.com/EmsisoftEmergencyKit.exe), [ESET Online Scanner](https://download.eset.com/com/eset/tools/online_scanner/latest/esetonlinescanner_enu.exe), and [AdwCleaner](https://toolslib.net/downloads/finish/1-adwcleaner/2323/) to see if they catch anything.

Leave a Reply

Your email address will not be published. Required fields are marked *

Note: By filling this form and submitting your commen, you acknowledge, agree and comply with our terms of service. In addition you acknowledge that you are willingly sharing your email address with AiOWikis and you might receive notification emails from AiOWikis for comment notifications. AiOWiksi guarantees that your email address WILL NOT be used for advertisement or email marketting purposes.

This site uses Akismet to reduce spam. Learn how your comment data is processed.