All Activity

This stream auto-updates     

  1. Today
  2. yes, then I will send them there then and thank you very much.
  3. yes the anti-virus i have been using was advance system care but my validity had ended two weeks ago i will be sure to change it, and do please look up a solution about it thank you very much
  4. My server files are encrypted with ransomware and file extension has been renamed to .eztop how_to_back_files.html po611000PODetailsByVendorWithCost.rpx.eztop
  5. Your use case is rare. Most enterprises have multiple groups. To avoid users to not make changes on Workspace level by error, we decided to jump to the 'new computers' group by default, like in Emsisoft Enterprise Security. Sure. Please note that Emsisoft Cloud Console is a first beta, bugs and missing features exist. We are working hard to improve step by step. With this setting you can instruct Emsisoft Anti-Malware to not scan certain registry settings, as they are commonly used by system administrators: example: "HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system", "DisableTaskMgr" This is by design. A License can be linked to a users OR Workspace. Users cannot delete Workspaces yet. We understand that you now mis certain info related to seat usage, for example,. In a near future ECC release we will improve this,l ike showing the devices that use the same license but have not been connected (yet). I hope this helps.
  6. If this happened not the same day, then by the date of the files change you can determine the days of the attack. Analysis of the date of the attack can help identify the weak link (who was working at the PC?) and properly configure the PC protection for the future. If at the PC working you only, then you need to install a complex anti-virus product (e.g. Internet security at 1 month trial) in order to remove the remaining virus files and protect the PC from new attacks. If there is unnamed anti-virus on your PC and no one has been disabled it before the attack, then you need to get rid of it, as soon as possible. AV protection that cannot protect user's files from attacks from outside and even from his wrong actions and from illegitimate programs does not have the right to be on this PC.
  7. Hello. It is a pity that such a thing happened. Instructions with your files.txt - is a note from Paradise Ransomware The extension _c3tfsp_{[email protected]}.sambo added by Paradise Ransomware UQSNORZLPD-MANUAL.txt - is a note from GandCrab 5.2 Ransomware The extension with 10 characters - .uqsnorzlpd - added by GandCrab 5.2 Ransomware Looking at the screenshots I can see that first your files were encrypted by Paradise Ransomware, and then the files were encrypted by GandCrab 5.2 Ransomware
  8. Hello. It is a pity that such a thing happened. I can look at these files, but I cannot download attachments from your message. Send to www.sendspace.com two these ransom notes and give us the download link. And please replace the two non-informative encrypted ini-files to with txt, doc, jpg, png files.
  9. I recommend uploading a copy of the ransom note along with an encrypted file to ID Ransomware so that you can verify which ransomware you are dealing with: https://id-ransomware.malwarehunterteam.com/ You can paste a link to the results into a reply if you would like one of our experts to review them.
  10. I request for your aid in the suggestion of what should I do since my pc has been affected by ransomware that I don't know. Please kindly give me some advice on what should i use to recover my files. They changed all my picture and videos into this format here are some pictures sample
  11. Yesterday
  12. Auch hier fehlen temporär die Datums- und Uhrzeiten. Browser Firefox und Browser Iron (Chrome) sind da identisch. Und es macht keinen Unterschied ob ich angemeldet bin oder nicht.
  13. Ich habe hier einen Treiber, ist das Malware und wenn ja, was richtet der an? https://www.virustotal.com/gui/file/3438c1b80d0ee1e41744efdc048c5b4c21b5fdbd0540a706277c2a59af7437ad/detection
  14. Could I get a quick reply on my two little questions please ☺️🤗 By the way: I have noticed that workspaces cannot be deleted. I assume this feature will be added later? Thanks! Raynor
  15. Last week
  16. attached files incase helps port.ini port.ini.COLORIT HOW TO DECRYPT FILES.txt HOW TO DECRYPT FILES.hta
  17. hi my pc has been encrypted via ransomware , id ransomware detects as xorist but the decryter tool fails to find a key and keeps asking me to drag the files the files all have extension .colorit thanks in advance for any help / support pk24
  18. Waren Sie im Forum angemeldet, als Sie die Profile angesehen haben?
  19. Nachtrag: in den Profilen fehlt auch teilweise der Zeitstempel "Letzter Besuch":
  20. The version of EAM in use of this system is out-of-date, buy a few years. The signature database has never been updated. Making the scan report unreliable and inaccurate. The current version of EAM is 2019.3.1.9367
  21. Ok. I'll look into it, but if it's too complicated, I may just keep dragging the window around when I need to see something that isn't showing. But, thank you for your time and patience with me. I really do appreciate it!
  22. In that case you'll need the Application Compatibility Toolkit from Microsoft. There's a tool that comes with it called "Compatibility Administrator" that will allow you to create compatibility settings for any program you want, however it is a bit complicated to use. There's information at the following link that may help you use it to disable the DPI scaling for a any program you want: https://superuser.com/a/1018284 The information at that link was intended for advanced users, so let me know if you need me to try to write instructions that are easier to follow.
  1. Load more activity
  • Newsletter

    Want to keep up to date with all our latest news and information?

    Sign Up