stapp

Global Moderator
  • Content Count

    4029
  • Joined

  • Last visited

  • Days Won

    52

Everything posted by stapp

  1. I recommend uploading a copy of the ransom note along with an encrypted file to ID Ransomware so that you can verify which ransomware you are dealing with: https://id-ransomware.malwarehunterteam.com/ You can paste a link to the results into a reply if you would like one of our experts to review them.
  2. No Jeremy all is well with the forum I believe it's a new type of email based feedback they are trialling.
  3. I recommend uploading a copy of the ransom note along with an encrypted file to ID Ransomware so that you can verify which ransomware you are dealing with: https://id-ransomware.malwarehunterteam.com/ You can paste a link to the results into a reply if you would like one of our experts to review them.
  4. I recommend uploading a copy of the ransom note along with an encrypted file to ID Ransomware so that you can verify which ransomware you are dealing with: https://id-ransomware.malwarehunterteam.com/ You can paste a link to the results into a reply if you would like one of our experts to review them.
  5. I recommend uploading a copy of the ransom note along with an encrypted file to ID Ransomware so that you can verify which ransomware you are dealing with: https://id-ransomware.malwarehunterteam.com/ You can paste a link to the results into a reply if you would like one of our experts to review them.
  6. I recommend uploading a copy of the ransom note along with an encrypted file to ID Ransomware so that you can verify which ransomware you are dealing with: https://id-ransomware.malwarehunterteam.com/ You can paste a link to the results into a reply if you would like one of our experts to review them.
  7. Haben Sie einen Neustart Ihrer Maschine ausprobiert?
  8. You have already posted here https://support.emsisoft.com/topic/30704-kroput-new-ransomware-attack/?tab=comments#comment-191201
  9. It is recommended to upload a copy of the ransom note along with an encrypted file to ID Ransomware so that you can verify which ransomware you are dealing with to this site here: https://id-ransomware.malwarehunterteam.com/ You can paste a link to the results into a reply if you would like one of our experts to review them.
  10. I tend to just double-click on the Update entry when I want to see it Alan. I tend to do that with all the entries in the Forensic logs. Does it work for you?
  11. It is recommended to upload a copy of the ransom note along with an encrypted file to ID Ransomware so that you can verify which ransomware you are dealing with to this site here: https://id-ransomware.malwarehunterteam.com/ You can paste a link to the results into a reply if you would like one of our experts to review them.
  12. As there was no answer to the above question I am asking it again using build 9269 on Win 10 :) In EAM advanced settings, I turn off (untick) Start with Windows and restart (fast boot disabled) Upon restart there is no icon in taskbar but taskmanager shows EAM protection service running. Windows Security Center seems a bit unsure about what is happeneing. Then the Security Center says I have to open EAM to fix things. After I click on that message EAM is open and all is running normally and taskmanager shows all 3 EAM items. Can you say what exactly NOT starting with Windows does?? (also you have to remember to re-tick start with Windows)
  13. It is recommended to upload a copy of the ransom note along with an encrypted file to ID Ransomware so that you can verify which ransomware you are dealing with: https://id-ransomware.malwarehunterteam.com/ You can paste a link to the results into a reply if you would like one of our experts to review them
  14. It is recommended to upload a copy of the ransom note along with an encrypted file to ID Ransomware so that you can verify which ransomware you are dealing with: https://id-ransomware.malwarehunterteam.com/ You can paste a link to the results into a reply if you would like one of our experts to review them.
  15. Just attach the logs to a post.
  16. Please follow the steps here and attach the requested logs so that one of our experts can help you. https://support.emsisoft.com/announcement/2-start-here-if-you-dont-we-are-just-going-to-send-you-back-to-this-thread/
  17. Perhaps also post the Fabar Recovery Scan Tool as requested here and attach the log so our experts can see it. https://support.emsisoft.com/announcement/2-start-here-if-you-dont-we-are-just-going-to-send-you-back-to-this-thread/
  18. Danke, Icewolf. Mein Deutsch ist schrecklich !! Wenn Sie den Cursor hier positionieren, werden Uhrzeit und Datum angezeigt.
  19. I had my browser open, EAM update slide appeared, I opened notepad which is pinned to my taskbar, and dismissed EAM update slide. Notepad was minimised back to the taskbar leaving the browser. EAM build 9269 on Windows 10.
  20. Siehe hier.. https://support.emsisoft.com/topic/30508-build-9204/?tab=comments#comment-190523
  21. It may help identify the ransomware.
  22. Did you try uploading the ransom note?
  23. No, the link to what it said here when you uploaded the files to it https://id-ransomware.malwarehunterteam.com