Infection cannot be deleted

Hello,

today, below mentioned infections have beein found by ADW but cannot be deleted:

# AdwCleaner v5.110 - Bericht erstellt am 11/04/2016 um 08:08:16
# Aktualisiert am 10/04/2016 von Xplode
# Datenbank : 2016-04-10.3 [Server]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (X64)
# Benutzername : Michael - MICHAEL-PC
# Gestartet von : C:\Users\Michael\Downloads\adwcleaner_5.110.ex...

Re: smartnewtab.com

Hi Klaus,

 

I will inform the developper of ZHPCleaner that the soft have some weird behaviour. Do you want any help to restore some files ? ZHPCleaner has got a quarantine :)

 

One question to MalwareBytes before installing it: I have MS Security Essentials installed, won't there be a problem defending one another (and making the PC nearly unuseable) when both are active ? I experienced t...

Re: smartnewtab.com

Good morning !

To your suggestions:

Removing DocMgr would of course be fine !

lanconf.exe is checked, false positive :-)

MyPhoneExplorer: Used it two times till now to get the SMS archive on the PC, what is a special task ;-)

ZHPCleaner: Ran it, removed the threats. But I noticed two strange behaviors when runing ZHPCleaner - first I started it when IE and Firefox were active (which were r...

Re: smartnewtab.com

Hi :)

I do a cleanup of the installed software frequently, there should be not to much unknown.

Most of the programs you listed are installed since a while and known to me (some are quite famous like Corel or Paragon), only DocMgr is quite questionable - it isn't listed in the installed programs, and I can find it listed in the start menu.

I ran cCleaner to see if there are invalid registry...

Re: smartnewtab.com

Hi !

What a quick reply and perfect support :-)

I do a cleanup of the installed software frequently, there should be not to much unknown.

Most of the programs you listed are installed since a while and known to me (some are quite famous like Corel or Paragon), only DocMgr is quite questionable - it isn't listed in the installed programs, and I can find it listed in the start menu.

I ran cCl...

Re: smartnewtab.com

Hi,

Ok, there is just some minor infections and a lot of softwares that I don't know, then I will have to make some research to find if some can be dangerous.

 

But before we do a script with ZHPFix, we are going to clean a little that computer :

  • Removing unuse or unknow softwares :
    • Please go to the Windows Tool to uninstall software (by configuration pannel > uninstall softwares)
    • Then ...

Possibly False Positive - AdwCleaner

Hello, it seems to be a WinDivert driver and developed by Basil Projects. Although i'm not sure which program it belongs.

In Virus total, nothing was detected.

https://virustotal.com/pt/file/2320e9c2e05e021512b4a9c6328caa9761187b10551859d591b6fcc16842fd0e/analysis/  

# AdwCleaner v5.109 - Relatório criado 08/04/2016 às 03:15:27
# Atualizado 04/04/2016 por Xplode
# Banco de dados : 2016-04-0...

Re: impossible d'éradiquer MPC cleaner

on Désinfection by ****

Bonsoir Chapi,

Tout est réglé actuellement et dans un temps record !!!

J'ai beaucoup apprécié la clarté de tes explications et je vais suivre tes conseils pour la suite.

Encore merci pour tout.

Bonne soirée.

Bien amicalement.

JFL

Re: impossible d'éradiquer MPC cleaner

Super !

Voici quelques conseils finaux :)

  1. Pour gagner un peu d'espace en supprimant des fichiers inutiles :
  • Télécharge et installe CCleaner --> lance le --> clique sur Nettoyeur --> Analyse --> Lancer le nettoyage --> OK.
  • Ensuite, clique sur "Options" --> "Surveillance" --> décoche toutes les cases liées à la surveillance.
  1. Suppression des outils :
  • Télécharge DelFix de Xplode sur ton bureau.
  • ...

Re: impossible d'éradiquer MPC cleaner

on Désinfection by ****

Bonsoir,

je viens de faire la manip. Voilà le résultat :

Rapport de ZHPFix 2015.10.19.9 par Nicolas Coolman, Update du 19/10/2015 Fichier d'export Registre : Run by JF at 07/04/2016 20:29:20 High Elevated Privileges : OK Windows 8 Home Premium Edition, 64-bit Service Pack 1 (10586)

Corbeille vidée (00mn 03s) Dossier Prefetcher vidé

========== Clés du Registre ========== SUPPRIMÉ: Service: I...