Re: Comment supprimer des dossiers vides dans mes images

  1. Fri, 08 Jun 2018 14:44:02 GMT Searching empty directories... Fri, 08 Jun 2018 14:44:02 GMT Failed to access files in "C:\inetpub\history" Fri, 08 Jun 2018 14:44:02 GMT Failed to access subdirectories in "C:\inetpub\history" Fri, 08 Jun 2018 14:44:02 GMT Failed to access files in "C:\inetpub\logs" Fri, 08 Jun 2018 14:44:02 GMT Failed to access subdirectories in "C:\inetpub\logs" Fri, 08 Jun 2018...

Help with this Hijack / reg infection

Hi everybody,

I'am in trouble with an infection from a infected installation (all files, archives, download... from this has been removed).

After cleaning all suspicious programs on my compture (with CCleaner), I have clean up all caches files and repair the registre with it.

In third I do scan and clean up with the lasted version of Malwarebytes ; ADWcleaner ; Rkill and UnHackMe. Juste Male...

AdwCleaner & suggests.go.mail.ru

AdwCleaner 7.1.1. I think this is a false alarm:

***** [ Firefox URLs ] *****
PUP.Optional.Legacy             suggests.go.mail.ru

"C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja"

mailru.xml

<!-- This Source Code Form is subject to the terms of the Mozilla Public
   - License, v. 2.0. If a copy of the MPL was not distributed with this
   - file, You can obtain one at http://mozilla...

Adwcleaner vs Malwarebytes

Aftr installing a Printer Software Adwcleaner found an Adware.

Adware.FileTour           HKLM\Software\Wow6432Node\Installer

Malwarebytes says my System is clean ? Which Software can i trust ?

 

Re: Newest adw version detects world of warcraft beta as a threat and deletes the whole thing.

edit: in case you deleted the folder via adwcleaner you have to restore it and then locate the folder so your battlenet knows where the files are. otherwise its gonna re download it all. just restored it now so yea now i just have to remember to not delete it again when using adwcleaner again x) also the new version fixed the false positive: greast and fast!

AdwCleaner 7.1.1 false positive with Vulkan

Hi,

Probably a false positive:

# -------------------------------
# Malwarebytes AdwCleaner 7.1.1.0
# -------------------------------
# Build:    04-27-2018
# Database: 2018-04-30.1
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start:    04-30-2018
# Duration: 00:00:11
# OS:       Windows 7 Professional
# ...

Re: Fibril.exe

on Rkill by Destrio5

C'est OK pour ça ;)

Juste cette extension sur Firefox qui est douteuse :

FF Extension: (Flash Video Downloader) - C:\Users\pstar\AppData\Roaming\Mozilla\Firefox\Profiles\sovl3vhv.default\Extensions\artur.dubovoy@gmail.com.xpi [2018-03-29]

Re: Fibril.exe

Merci enfait j'ai trouvé c'était une connerie dans le registre ( HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Winlogon/fibril.exe ) Je l'ai supprimé j'ai plus de soucis... Mais tiens si tu veux quand même jeter un oeil au cas ou =>

https://pjjoint.malekal.com/files.php?read=FRST_20180427_n5k15h5b9u13

 

https://pjjoint.malekal.com/files.php?read=20180427_p6c157u8i10  

Re: Fibril.exe

on Rkill by Destrio5

Bonjour,

Attention : tu dois prendre la version compatible avec ton système : 32 ou 64 bits.

32 ou 64 bits - Comment savoir ?

  • Lance FRST (Sous Windows Vista/7/8/10, clic droit sur FRST > Exécuter en tant qu'administrateur).
  • Coche la case Addition.txt.
  • Clique sur le bouton Analyser.
  • Une fois le scan terminé, deux rapports FRS...