Re: Désinfection de tapsnake, cronDNS, Dubfishiw

Bonjour,

S'il t'affiche un numéro de téléphone, n'appelle pas (c'est peut-être un peu bête comme conseil mais certains le font et se sont avoir, je ne connais pas ton niveau).

 

1/

  • Télécharge et lance AdwCleaner (de ToolsLib / Malwarebytes), choisis l'option Analyser.
  • Une fois le scan terminé, choisis l'option Nettoyer.
  • Redémarre le PC comme demandé, héberge le rapport sur pjjoint.malekal...

Re: Impossible de supprimer Nophilos.exe

Bonjour,

Attention : tu dois prendre la version compatible avec ton système : 32 ou 64 bits.

32 ou 64 bits - Comment savoir ?

  • Lance FRST (Sous Windows Vista/7/8/10, clic droit sur FRST > Exécuter en tant qu'administrateur).
  • Coche la case Addition.txt.
  • Clique sur le bouton Analyser.
  • Une fois le scan terminé, deux rapports FRS...

Major difficulties with AdwCleaner v. 7.0.3.1

I am helping a friend clean a grossly infected computer. Windows 10. Uses McAfee AV.

He ran Malwarebytes 3 without difficulty and it cleaned with no problem at all. I do have the log if needed but cannot find a way to attach the text file

He then attempted to use AdwCleaner v. 7.0.3.1 but it would not complete cleaning and received a box with notification that a problem had stopped the clean....

Re: Is this a false positive?

on AdwCleaner by Nec

The fact that this is Spanish(Maybe?) makes it very VERY difficult to read.... Any way you could turn it into English? On the first glance noticed some things that MIGHT be potential issues, unsure, cause..... I am not yet used to reading the logs, and different language doesn't help the issue :)


JoshRoss, 2017-09-07 14:26:07 (UTC)

Of course sorry.

If you see something that is not translat...

Re: Is this a false positive?

on AdwCleaner by Nec

Ports, applications, accessibility. Maybe your other device is used a lot less, you haven't messed with any ports or have any applications that require forwarding. Honestly, very weird issue, I would need to investigate the files. Can you scan your PC With Farbar MiniToolBox and Malwarebytes JRT? Post the logs that you get.


JoshRoss, 2017-09-06 13:16:38 (UTC)

MiniToolBox by Farbar  Version...

Re: redémarrage impossible après passage de tweaning

Bonjour,

Avez-vous la possibilité d'utiliser un autre clavier ? Vous pouvez aussi tenter d'utiliser le clavier d'accessibilité de Windows. Vous pouvez vous rendre sur cette page pour savoir comment y accéder.

Ensuite, tentez la restauration d'un point de restauration système. La marche à suivre est décrite sur cette page, dans la section "Restaurer à partir d’un point de restauration système"...

Re: extansion .no_more_ransom

Future here! Hopefully, you will be able to understand this in English. Decided, to surf some older posts and add some information to what we now know. 2 Vendors currently have a decryptor for it as part of the "No More Ransom" project (Not related to this extension, this extension is just mocking). You can find Kaspersky's and McAfee's versions respectively. Additionally, you can read more abo...

Re: Jaff virus?

Utilisez Data Recovery Pro ou Rakhni decryptor pour restaurer les fichiers cryptés par le rançongiciel Jaff. Data Recovery Pro est unun outil automatique qui peut effectuer ce travail à votre place. Vous pouvez il ou Rahini décrypteur conçu par Kaspersky Lab en cliquant ici: http://www.2-spyware.com/remove-jaff-ransomware-virus.html

N'oubliez d'exécuter une analyse supplémentaire de votre syst...

Re: Start\Windows icon

Hmm.... You could try getting a bootable Windows10 USB/CD and try a general repair function, see if that helps you in any way. You can also try a recovery with the bootable drive.

Re: pup optional legacy

Could you define the nature of the pop-up? Is it in the browser? On the desktop? through certain applications? When did the issue start happening? (Please answer these before continuing the read)

Since I am not certain about how it manifests, I can only offer a general thorough PC clean-up. The following steps should help you remove the issues, but make sure to post MBAM and ADW logs after sca...