Re: False Positive v7?

Interesting development. Thanks for the logs, as expected they are clean. Successful removal could indicate that Adwcleaner stopped the threat further or was a false positive. Honestly, everything related to Yahoo is a massive security hole for me, and I would avoid it as much as possible. 

Upon further investigation, this looks like malware's registry file that wasn't removed correctly, but t...

Re: False Positive v7?

Sure, here they are:

# AdwCleaner 7.0.2.0 - Logfile created on Sat Aug 26 17:05:27 2017 # Updated on 2017/29/08 by Malwarebytes  # Database: 08-25-2017.1 # Running on Windows 8.1 (X64) # Mode: scan # Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious fil...

Re: PUP.Legacy.Optional

Hi,

Don't panic, this is a classic "aggressive (scam) advertising" and a (real) false 'Zeus' alert! None zeus virus is present on your computer!

https://www.bleepingcomputer.com/virus-removal/remove-zeus-virus-detected-popups

https://blog.malwarebytes.com/threat-analysis/2017/06/the-numeric-tech-support-scam-campaign/

I've not seen yet MalwareBytes, ADWCleaner, HitmanPro, uBlock, adblock, a...

PUP.Legacy.Optional

Hello,

Windows10 Chrome -- month ago got a malware popup when on tunein radio. Along with the following popup, a voice came on and said "your pc is infected with Malware, do not ignore this, etc:

** Zeus Virus Detected  - Your Computer Has Been Blocked **

Error: Trojan Backdoor Hijack #365838d7f8a4fa5

---------------------------------------------------------------------

After running adwcl...

False Positive v7?

Today I stumbled upon this detection whilst using Adwcleaner 7.0.1.0:

***** [ Registry ] *****

PUP.Optional.YahooChrome, [Key] - HKLM\SOFTWARE\Yahoo\SS

Afterwards I scanned with other virusscanners (Malwarebytes, MBAR, and Roguekiller) and none of them detected aforementioned registery key. Thus, it seems like a false positive generated by adwcleaner. 

Can someone confirm this?

Kind regard...

Re: AdwCleaner 7.0.1.0

Greetings, hopefully, you can understand English. With the power invested in my by Google Translate, I will attempt to answer your questions. AdwCleaner doesn't install anything since it is a standalone software. If you haven't had any malware or there are no files that need to be quarantined/stored, there will be no reason to create a folder in C disk. Try doing a scan once. It should appear a...

Re: False Positives V7

ActiveX detection started after the new update. I am getting the same pop-ups. I can assure you it is not malware. ActiveX detections are usually guidelines for processes and services to follow. While they can be exploited, I doubt this is the case.

Re: My First Post: Are These Internet Explorer\ActiveX Compatibility Entries False Positives

ActiveX detections are usual FP's. Try doing an additional scan with Malwarebytes to confirm that. But I am fairly certain that these should not be detected. According to the internet and research that I did, ActiveX sets guidelines for processes, it can be exploited to some degree, but Adwcleaner would have removed them if found.

My First Post: Are These Internet Explorer\ActiveX Compatibility Entries False Positives

# AdwCleaner 7.0.1.0 - Logfile created on Thu Aug 24 18:42:33 2017

# Updated on 2017/05/08 by Malwarebytes # Database: 08-22-2017.4 # Running on Windows 7 Professional (X64) # Mode: scan # Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

...

Re: extansion .no_more_ransom

Future here! Hopefully, you will be able to understand this in English. Decided, to surf some older posts and add some information to what we now know. 2 Vendors currently have a decryptor for it as part of the "No More Ransom" project (Not related to this extension, this extension is just mocking). You can find Kaspersky's and McAfee's versions respectively. Additionally, you can read more abo...