Infection ou pas?

Bonjour ^^

Avec l'une des dernières maj de la base, deux chose sont apparues en tant que choses nuisibles:

AdvinstAnalytics

C'est localisé dans app local data et user enfin un truc comme ça.

J'ai scanné avec Malwarebytes et lui ne trouve rien de cela.

Pourtant adwcleaner est une partie de Malwarebytes.

Zhpdiag et Zhpcleaner ne trouvent rien

D'avance merci pour votre aide

Re: Cleaning process for both Vista32: there is something to be erased?

Hello,

Thanks for the confirmation.

Yes, I was speaking of MB3 as Malwarebytes 3 as a replacement for your BSOD'ing Comodo: https://toolslib.net/downloads/viewdownload/309-malwarebytes/

A more detailled description: https://www.malwarebytes.com/premium/

If you need some details, just ask.

Re: Cleaning process for both Vista32: there is something to be erased?

Hi, today I had the first "real" bluescreen after 11th april.

Boot > manually update CID database (in a few secvonds since the defs has been updated yesterday) > end of downloading process > bluescreen BAD_POOL_CALLER 0x000000C2 !! 

Reboot: CIS updates has not been installed! CIS is now dowloading a big database file: 270MB!! In CIS scanner folder the file "bxxxxxxx.cav" cannot be deleted sin...

Re: Pc très lent,dans l’exécution des taches

c'est choses devrait aider:

- reduire le nombre de programmes lancés

- verifier les mises à jours de windows, ainsi que des pilotes 

- reduire le nombre de taches au démarrage (tu semble avoir beaucoup de tâches planifiées (62))

 

la version de windows est 32bits ansi que de 2Gb de ram (D'après les logs fournies), Ajouté plus de ram et installer windows 64bits pourrait 

peut-être réssoudr...

Re: Cleaning process for both Vista32: there is something to be erased?

Hi fr33tux, thanks for your reply and analysis. Here both logs A_Laptop and B_Desktop

(I hope that you may want to delete Symantec from boot process, see please my first post, part #2; on Google Drive I shared a memory.dump file too, hope this helps).

Malwarebytes
www.malwarebytes.com

-Dettagli log-
Data scansione: 26/05/17
Ora scansione: 13:43
File di log: MBAM_for__A_Laptop.txt
Amministra...

Re: Cleaning process for both Vista32: there is something to be erased?

Hello,

I'm really sorry for the delay.

- For both computers:

You have MBAM 2 installed, can you uninstall it and install MB3? Then, do a scan with it and share the generated logfile.

- For DesktopB:

I don't see anything suspect at first glance, I'm still looking at it.

- For ALaptop:

More after the MB3 scan :)

Thanks, and sorry again.

Re: Firefox prefs.js line detected as a threat

on AdwCleaner by Jkl

This is the relevant part:

# AdwCleaner v6.047 - Logfile created 23/05/2017 at 22:12:42 # Updated on 19/05/2017 by Malwarebytes # Database : 2017-05-23.1 [Server] # Operating System : Windows 8.1 Pro  (X86) # Mode: Scan # Support : https://www.malwarebytes.com/support

***** [ Web browsers ] *****

Firefox pref Found:  [*prefs.js] - "extensions.Imagus.sieve" -  "{\"dereferers\":{\"link\":\"^[^...

False positive confirmation

https://forums.malwarebytes.com/topic/200856-devdiv-registry/

Me and the OP of this forum post had the same registry key result in a scan two days ago (though I use Windows 7 instead). I did another scan last night and it came out clean, does it mean the key was confirmed a FP and removed from the database?

Re: Gismeteo add-on Firefox FP

Hello,

Please see my answer here.

Best regards,