Re: False Positive v7?

Upon further investigation, this looks like malware's registry file that wasn't removed correctly, but the rest of the issue was

That seems rather unlikely, because the registery key was the only thing that was detected. To reiterate, before AdwCleaner's database update of August 25 my Adwcleaner scans (and other scans for that matter) were clean. In addition, other virusscanners weren't abl...

Re: False Positives V7

Is anyone from the AdwCleaner team able to comment about this yet?


SWBUser, 2017-08-29 20:09:30 (UTC)

It would be nice wouldn't it? I am solving this myself, by uninstalling AdwCleaner and not recommending it to those requesting help on a forum where I am a mod. Too bad, very good tool, one of the best for removing PUP's but not going to sacrifice SpywareBlaster's ability to block them so ...

Re: False Positive v7?

Sure, here they are:

# AdwCleaner 7.0.2.0 - Logfile created on Sat Aug 26 17:05:27 2017 # Updated on 2017/29/08 by Malwarebytes  # Database: 08-25-2017.1 # Running on Windows 8.1 (X64) # Mode: scan # Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious fil...

My First Post: Are These Internet Explorer\ActiveX Compatibility Entries False Positives

# AdwCleaner 7.0.1.0 - Logfile created on Thu Aug 24 18:42:33 2017

# Updated on 2017/05/08 by Malwarebytes # Database: 08-22-2017.4 # Running on Windows 7 Professional (X64) # Mode: scan # Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

...

Re: extansion .no_more_ransom

Future here! Hopefully, you will be able to understand this in English. Decided, to surf some older posts and add some information to what we now know. 2 Vendors currently have a decryptor for it as part of the "No More Ransom" project (Not related to this extension, this extension is just mocking). You can find Kaspersky's and McAfee's versions respectively. Additionally, you can read more abo...

Re: More false positives

Yesterday the Windows 10 machine from my wife was scanned by 7.0.1.0 and referred Zylom games and TryMedia as suspicious. Removal of it all led to no gaming anymore because these files (and dirs) are apearently necessary to run and check validation of the Zylom Games. Such a shame because a noob does not understand that.  

# AdwCleaner 7.0.1.0 - Logfile created on Mon Aug 21 19:08:44 2017 # Up...

Re: More false positives

Hello,

The beta version tells me: PUP.Optional.DriverBooster


snabbeltax, 2017-08-07 10:15:05 (UTC)

Can you share a logfile showing this?


fr33tux, 2017-08-23 00:30:14 (UTC)

# AdwCleaner 7.0.2.0 - Logfile created on Mon Aug 07 10:03:39 2017 # Updated on 2017/29/08 by Malwarebytes  # Database: 08-06-2017.2 # Running on Windows 10 Pro (X64) # Mode: scan # Support: https://www.malwarebytes....

Re: More false positives

Hello. Sure.

# AdwCleaner 7.0.2.0 - Logfile created on Wed Aug 23 17:39:18 2017 # Updated on 2017/29/08 by Malwarebytes # Database: 08-22-2017.2 # Running on Windows 7 Ultimate (X64) # Mode: scan # Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files...

Re: Jaff virus?

Utilisez Data Recovery Pro ou Rakhni decryptor pour restaurer les fichiers cryptés par le rançongiciel Jaff. Data Recovery Pro est unun outil automatique qui peut effectuer ce travail à votre place. Vous pouvez il ou Rahini décrypteur conçu par Kaspersky Lab en cliquant ici: http://www.2-spyware.com/remove-jaff-ransomware-virus.html

N'oubliez d'exécuter une analyse supplémentaire de votre syst...

Re: Start\Windows icon

Hmm.... You could try getting a bootable Windows10 USB/CD and try a general repair function, see if that helps you in any way. You can also try a recovery with the bootable drive.