Re: False Positive v7?

Interesting development. Thanks for the logs, as expected they are clean. Successful removal could indicate that Adwcleaner stopped the threat further or was a false positive. Honestly, everything related to Yahoo is a massive security hole for me, and I would avoid it as much as possible. 

Upon further investigation, this looks like malware's registry file that wasn't removed correctly, but t...

Re: False Positive v7?

Sure, here they are:

# AdwCleaner 7.0.2.0 - Logfile created on Sat Aug 26 17:05:27 2017 # Updated on 2017/29/08 by Malwarebytes  # Database: 08-25-2017.1 # Running on Windows 8.1 (X64) # Mode: scan # Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious fil...

Re: False Positive v7?

Can you post the full logs? Also, try downloading the newest beta version of Adwcleaner and see if that helps you out? In addition to that, try doing the scans in Windows "Safe mode with networking" as well as add Hitman Pro to your program list. That way you can be certain that the threats are removed. In theory, it should work.

Re: vers 7.0

vers 7.0.2 beta 5

now the tabs quarantine shwos the elements deleted..but there is only one option..to re have them in the pc..no way to delete them from there but only manually..

also for events logs..it shows but no way to delete them..only manually..:

 

i'd like to upload here the debug file but how to do it..??

Re: AdwCleaner 7.0.1.0

Greetings, hopefully, you can understand English. With the power invested in my by Google Translate, I will attempt to answer your questions. AdwCleaner doesn't install anything since it is a standalone software. If you haven't had any malware or there are no files that need to be quarantined/stored, there will be no reason to create a folder in C disk. Try doing a scan once. It should appear a...

Re: extansion .no_more_ransom

Future here! Hopefully, you will be able to understand this in English. Decided, to surf some older posts and add some information to what we now know. 2 Vendors currently have a decryptor for it as part of the "No More Ransom" project (Not related to this extension, this extension is just mocking). You can find Kaspersky's and McAfee's versions respectively. Additionally, you can read more abo...

Re: Start\Windows icon

hello if you use Windows Repair All-in-one , doesn't it work ?

On this Tweaking.com page, download Windows Repair and save the file to the desktop:

http://www.tweaking.com/content/page/windows_repair_all_in_one.html

Installs the software Double-click the Repair_Windows.exe icon to launch the tool /! \ Under Vista and Windows 7/8 / 8.1 / 10, you must launch the file by right-clicking -> Run a...

Re: Jaff virus?

Utilisez Data Recovery Pro ou Rakhni decryptor pour restaurer les fichiers cryptés par le rançongiciel Jaff. Data Recovery Pro est unun outil automatique qui peut effectuer ce travail à votre place. Vous pouvez il ou Rahini décrypteur conçu par Kaspersky Lab en cliquant ici: http://www.2-spyware.com/remove-jaff-ransomware-virus.html

N'oubliez d'exécuter une analyse supplémentaire de votre syst...

Re: More false positives

These are still detected, they're actually related to a music application too called MASCHINE by Native Instruments and pose no threat,

where as the registry detections are immunization entries created by either Spybot S&D or SpywareBlaster. Checked this several times over.

Would it be better to use the beta for now then ?

Re: Start\Windows icon

Hmm.... You could try getting a bootable Windows10 USB/CD and try a general repair function, see if that helps you in any way. You can also try a recovery with the bootable drive.