Re: Ransomware .shit?

Browsing old threads and safe to say, that Locky won't be decryptable for quite some time. Considering that new versions of it are coming out, making it even more complicated to do anything. You can read more on Malwarebytes and The Hacker News. Even Kaspersky's attempts at that have failed. Hopefully, we can have the master key somehow, or a lucky break in decryption. Other than that, you can ...

Adwcleaner freezes during removal of viruses.

dans AdwCleaner par zuber

Got 2 viruses and the AdwCleaner freezes  @20% during removal. Microsoft Security Essential and Malwarebytes does not detect these viruses.

No1: PUP.Optional.YahooChrome.     Registry[HKLM] SOFTWARE\Yahoo\SS

No2: PUP.Adware.Heuristic                C:\programData\{D19C2D22-6043-47E7-B400-83A351841204}

Haw, can I remove it?

Re: False Positive v7?

dans AdwCleaner par JoshRoss

Interesting development. Thanks for the logs, as expected they are clean. Successful removal could indicate that Adwcleaner stopped the threat further or was a false positive. Honestly, everything related to Yahoo is a massive security hole for me, and I would avoid it as much as possible. 

Upon further investigation, this looks like malware's registry file that wasn't removed correctly, but t...

Re: False Positive v7?

dans AdwCleaner par JoshRoss

Can you post the full logs? Also, try downloading the newest beta version of Adwcleaner and see if that helps you out? In addition to that, try doing the scans in Windows "Safe mode with networking" as well as add Hitman Pro to your program list. That way you can be certain that the threats are removed. In theory, it should work.

Re: PUP.Legacy.Optional

Hi,

Don't panic, this is a classic "aggressive (scam) advertising" and a (real) false 'Zeus' alert! None zeus virus is present on your computer!

https://www.bleepingcomputer.com/virus-removal/remove-zeus-virus-detected-popups

https://blog.malwarebytes.com/threat-analysis/2017/06/the-numeric-tech-support-scam-campaign/

I've not seen yet MalwareBytes, ADWCleaner, HitmanPro, uBlock, adblock, a...

PUP.Legacy.Optional

dans AdwCleaner par cjankow

Hello,

Windows10 Chrome -- month ago got a malware popup when on tunein radio. Along with the following popup, a voice came on and said "your pc is infected with Malware, do not ignore this, etc:

** Zeus Virus Detected  - Your Computer Has Been Blocked **

Error: Trojan Backdoor Hijack #365838d7f8a4fa5

---------------------------------------------------------------------

After running adwcl...

Re: My First Post: Are These Internet Explorer\ActiveX Compatibility Entries False Positives

dans AdwCleaner par JoshRoss

ActiveX detections are usual FP's. Try doing an additional scan with Malwarebytes to confirm that. But I am fairly certain that these should not be detected. According to the internet and research that I did, ActiveX sets guidelines for processes, it can be exploited to some degree, but Adwcleaner would have removed them if found.

Re: extansion .no_more_ransom

Future here! Hopefully, you will be able to understand this in English. Decided, to surf some older posts and add some information to what we now know. 2 Vendors currently have a decryptor for it as part of the "No More Ransom" project (Not related to this extension, this extension is just mocking). You can find Kaspersky's and McAfee's versions respectively. Additionally, you can read more abo...

Re: More false positives

You know that, i know that, but a schoolstudent does not. As a servicedeskmanager i have been promoting adwcleaner for years on our schools but now it's causing confusion among collegues and other cliënts when adwcleaner is stating that there might be a problem or maybe something is a PUP while there isnt anything wrong. I understand there's a behavior pattern wich puts it in a categorie for ma...

Re: Launchpage infection

Hopefully, you can understand English or google translate this. I know this is an old forum, but since it doesn't have a definitive answer, I'd like to share my experience and a solution. My friend had a similar couple of weeks ago. You are dealing with a redirect virus or some form of adware. Quite annoying really. I have used Malwarebytes and Adwcleaner to elevate the issue alongside these in...