Re: ramnit virus

lost the origin email...  and cannot send any attachments here...  pse repeat email and from there I can reply wih attachments (screenshots)   thanks

Re: ramnit virus

well will try again by downloading aswcleaner and scan with malwarewarebytes and herdprotect and virus total

will then screen shoot  regards

Re: ramnit virus

Hello,

it found ramnit b y avira antivirus and ESET Nod... so 3 anti virus programs found that virus...  so deleted adwcleaner 5.03 and wont run it till later...it could be a false positive but seeing the result better be safe than sorry...  my inkling is that it is a fale positive    anyhow will look at it later and run herdprotect as you regularly update adw...   thanks and regards


johan44...

Re: adwcleaner disappeares

For some reason....just tried downloading it for the 25th time....and magically it's working. Huh......strange.


JaySchroeder5050, 2016-01-23 00:57:11 (UTC)

I have it (adwcleaner_5.027.exe (or _5.030)) saved on disk by Download manager as part of my brawser and I discovered that I can “Open” it repeatedly through the “downloded files” list in the Download manager Menu

AES256 Hexadecimal

I have an AES256 key in hexadecimal "8A64E947DAA12B6B7761F30192219270883F24D358D55A1E98E5364B801E9120".

That key is encrypted in AES256 and have to decrypt the following key and initialization vector:

Key = "517565747A616C636F61746C5349495038383838383838382020202020202020"

IV = "00000000000000000000000000000000".

The result of the decryption must be a string of 64 characters (hexadecimal).

...

Re: adwcleaner disappeares

on AdwCleaner by ****

I second that motion.......I was running the 5.028, and that was fantastic. Got the 5.029 and didn't get a chance to run a scan at all, before the 5.030 came along. Downloaded it and got the error message. Have not been able to acquire and get it to work. Continually getting error message.....any help would be welcome.

Re: Désinstallation de MPC Cleaner

Bonsoir Chapi,

Voici le résultat de l'opération, ça résiste toujours :(

Résultats de correction de Farbar Recovery Scan Tool (x64) Version:18-01-2016 Exécuté par Joseph (2016-01-22 18:57:13) Run:2 Exécuté depuis C:\Users\Joseph\Desktop Profils chargés: Joseph (Profils disponibles: Joseph) Mode d'amorçage: Safe Mode (minimal) ==============================================

fixlist contenu: ***...

Re: Désinstallation de MPC Cleaner

Bonjour !

Bon cette fois on met le paquet :

On va faire un fix FRST plus complet et en MSE :

  • Télécharge ce script fixlist.txt sur ton bureau.
  • Démarre en MSE.
  • Lance FRST et clique sur le bouton Corriger.
  • Parfois un redémarrage est nécessaire.
  • Un fichier texte apparaît, copie/colle le contenu de ce fichier dans ta réponse.

Chapi

False Positive

Hello, The following keys detected in the latest (v5.030) version are false positives belonging to Bitdefender's context menu entries:

HKLM\SOFTWARE\Classes\BDShellExt.BDMenu

HKLM\SOFTWARE\Classes\BDShellExt.BDMenu.1

Screnshot link: http://i.imgur.com/wndgk0T.png

Could you please look into this?

 

Thank you

Re: Désinstallation de MPC Cleaner

Bonjour,

Bon on arrive aux limites de mes compétences... Il me reste une solution, supprimer en passant par un autre système d'exploitation, mais c'est bien plus lourd et j'essaie de l'éviter... J'ai donc demandé des conseils, on va voir ce qui va revenir.

Dans tous les cas on va quand même si préparer en récupérant plus d'infos sur ton malware :

1) Peux tu exporter cette partie de ton regis...


Protect Your PC from Malware

Get Malwarebytes for powerful protection against adware and threats.

Get Malwarebytes Now