netfilter2.sys faux positif ou pas d'Adwcleaner ?

Bonsoir et bon weekend  de Paques

Adwcleaner considère comme nuisible le fichier pilote netfilter2.sys

Rapport Adwcleaner: http://www.cjoint.com/c/GDqswX3EsH8

Le fichier a été analysé par Virus Total

C:\WINDOWS\SysNative\drivers\netfilter2.sys 

https://www.virustotal.com/file/F7D9FE205F40952B8876710512594C6755A2A8912CEBB15DBE5C83063D8C00A4/analysis/

 

 

Est ce un faux Positif ou pas d...

Re: menace trouvée: DrvAgent64.SYS - faux positif ?

Bonjour,

Un PUP nommé DriverAgentPlus installe ce fichier DRVAGENT64.SYS (DrvAgent32.sys sur un Windows 32 bits). Lien VirusTotal de l'analyse de l'installateur :

https://www.virustotal.com/fr/file/244b50458be045ec3ca37760b5a053e63b9dcdf93fcf8dc3890f4085ec63d9d1/analysis/1492370289/

# AdwCleaner v6.045 - Rapport créé le 16/04/2017 à 20:03:02
# Mis à jour le 28/03/2017 par Malwarebytes
# Bas...

Re: menace trouvée: DrvAgent64.SYS - faux positif ?

# AdwCleaner v6.045 - Rapport créé le 15/04/2017 à 10:48:27 # Mis à jour le 28/03/2017 par Malwarebytes # Base de données : 2017-04-14.1 [Serveur] # Système d'exploitation : Windows 10 Home  (X64) # Nom d'utilisateur : antoine - DESKTOP-AGA2HP0 # Exécuté depuis : C:\Users\antoi\Downloads\adwcleaner_6.045.exe # Mode: Scan # Support : https://www.malwarebytes.com/support

 

***** [ Services ] **...

menace trouvée: DrvAgent64.SYS - faux positif ?

depuis 8 jours AdwCleaner me signale deux menaces:

 

***** [ Services ] *****Service trouvé: DrvAgent64

et

***** [ Fichiers ] *****Fichier trouvé: C:\Windows\SysWOW64\drivers\DRVAGENT64.SYS

 

-1-   une recherche dans System Lookup n'indique rien d'anormal:

Name Filename Description Status DrvAgent64 DrvAgent64.SYS Related to DrvAgent64.SYS DriverAgent Direct I/O for 64-bit Windows from P...

Re: Adwcleaner freezes everytime i try to get rid of UCGuard *Please help me get rid of it* And Malwarebytes doesn't detect it

here you go 

Fix result of Farbar Recovery Scan Tool (x64) Version:04-10-2015 Ran by Hunter Cutbush (2017-02-01 16:47:17) Run:1 Running from C:\Users\Hunter Cutbush\Desktop\New folder Loaded Profiles: Hunter Cutbush (Available Profiles: Hunter Cutbush) Boot Mode: Normal ==============================================

fixlist content: ***************** CreateRestorePoint: CloseProcesses: R2 UCG...

Re: Adwcleaner freezes everytime i try to get rid of UCGuard *Please help me get rid of it* And Malwarebytes doesn't detect it

okay :D Thanks for perplying so early :D

# AdwCleaner v6.043 - Logfile created 31/01/2017 at 19:17:55 # Updated on 27/01/2017 by Malwarebytes # Database : 2017-01-31.1 [Local] # Operating System : Windows 10 Home  (X64) # Username : Hunter Cutbush - HUNTER # Running from : C:\Users\Hunter Cutbush\Downloads\adwcleaner_6.043 (1).exe # Mode: Scan # Support : https://www.malwarebytes.com/support
...

Re: Adwcleaner freezes when attempting to remove UCguard and UCguard.sys

Hello,

Sorry for the delay.

  1. Please relaunch AdwCleaner,
  2. Click on Tools > Options,
  3. Here, tick "Debug" in the "Mode" section,
  4. Then, do a scan.

When the results are shown, unselect the file "C:\WINDOWS\SysNative\drivers\ucguard.sys" and then click on the [Clean] button.

Please share the generated logfile shown at the reboot (also located at C:\AdwCleaner\AdwCleaner[Cxx].txt.

Best regards,

Re: Adwcleaner freezes when attempting to remove UCguard and UCguard.sys

Samwellajackson, Until instructed otherwise. I can try and help you out until Fr33tux or cocochepeau respond. 

Have you tried booting into safemode and Deleting the C:\WINDOWS\SysNative\drivers\ucguard.sys file manually? If not I'd create a system restore point and try that.

Unable to get rid of a file through AdwCleaner

Hello, 

I recently installed MalwareBytes and Malwarebytes AdwCleaner and ran the scans because I have been getting a lot of pop-ups after letting my friend use my computer.  I ran the Adwcleaner three times, but this file is still remaining even after I cleaned it (three times).  The file is under WINDOWS\SysNative\drivers\kisknl_del.sys.  I am unsure if this file is actually harmful, should ...

Re: blocage de l'écran

Bonjour, j'ai était dans l'obligation de remettre le drivers a jour.

 

Je vous propose de vous recontactez dans 1 semaine pour voir si le problème refait surface.