Search the Community

Showing results for tags 'Closed'.

More search options

  • Search By Tags

    Type tags separated by commas.
  • Search By Author

Content Type


  • Malware Research Center
    • Help, my files are encrypted!
    • Help, my PC is infected!
    • Malware and Computer Security
    • Malware submissions
  • Company & Products
    • Customer Support
    • Beta Community
    • Feedback, comments, and suggestions
    • False positives
    • Emsisoft News
  • Other Languages
    • German Support - Deutscher Support
  • Private Zone

Find results in...

Find results that contain...

Date Created

  • Start


Last Updated

  • Start


Filter by number of...


  • Start





Website URL







Found 744 results

  1. When I try to browse Netflix or the BBC, Google Chrome, Firefox or MS Edge hang or redirect me to "Help with Malware" sites or a firm called Reimage. I've asked Netflix for advice but they were as good as useless. I would appreciate some guidance please. Addition.txt FRST.txt scan_180124-065626.txt
  2. New Beta No issues on install
  3. Помогите удалить файлы из системы. И нужно ли их удалять?
  4. Hi, team, It seems that my PC is infected with some kind of a malware/virus as it runs unusually slow with some errors (ie. firefox not opening even after refreshing and ran as admin,waking up from 'sleep' with a blank black screen that doesn't allow any control like restarting/Cntrl+Alt+Del except a mouse/smart pad control with a cursor you can navigate, AND "File System Error (-1073741819)." issue). I think this happened since a couple days ago (27th night-28th early morning) when I downloaded and ran 'AutoKMS' file from a website. Would you please help me with this issue? Thank you much for your help in advance!! Sam scan_180130-234739.txt FRST.txt Addition.txt
  5. W8.1 64bit. I'm perplexed by some items on the BB display, which here looks like: BB list.bmp?dl=0 The top three items have no meaningful name or description. When I double click, in turn on them, the 'detail' displays tell me nothing more First one: Process 1 detail.bmp?dl=0 Second one: Process 2 detail.bmp?dl=0 Third one: Process 3 detail.bmp?dl=0 The first one, from C:\Dropbox\Programs--ALL is probably one of three versions of FileZilla that I have installed at the moment. I ran two or maybe even all three of them yesterday while trying to solve an FTP problem. The third one, from C:\Program Files (x86)\ is probably Firefox (originally a 32bit app when it auto-updated to 64bit it retained its 32-bit install location). I've no idea what the second one might be. Also a little lower on the BB display you can see eg "bash.exe" (from my "Msys2" environment) described as "Stopped". Does "Stopped" mean something other than "not currently running"?
  6. Windows 10. Right-click scan from tray icon starts a custom scan, no option to do Malware Scan. I don't remember it being like that before. EDIT .....after more tests In my opinion the scan from tray is broken. It is almost impossible to get it to do a scan now as it auto defaults to last scan done (I tried a context menu scan last from GUI) I closed GUI, I opened it I selected 'new scan' etc etc but nothing works. I do not see restarting my machine, or restarting Explorer, as a way to do a scan from tray... not happening
  7. Systems updated no problems. Did have one BSOD coming out of Shadowdefender Shadow Mode. It was in Epp.sys. I will wait and see if it happens again. Pete
  8. Smooth upgrade. What's up Frank?
  9. The suspicious behavior was blocked when I tried saving file on Tiled map editor, behavior blocked "code injection" in tiled.exe. I am fairly sure this is false positive but you never know for 100%, also dont know what those cmd windows were. Ive seen such cmd windows on start up before so they may be just windows thing. Here are farbar logs anyway, i would be glad if you could check them. FRST.txt Addition.txt
  10. FRST.txt Addition.txt scan_180105-185403.txt The noscript pop up warning said Noscript detected a potential cross-site scripting attack from [...] to Suspicious data: TypeError: ic is undefined,(URL) I removed the first W from the addresses so that they are not functional in case they lead to malicious code.
  11. This Chrome extension installed without my knowledge and defied many attempts to get rid of it. For one, it hijacked my image search tab. Reset Chrome, ran Emsisoft, M-Bam, and Superantispyware scans. M-BAM showed PUPS and quarantined them but no other scans turned anything up. Restarted my computer and it appears to be gone. I am careful surfing so not sure where I got it. Have adware blockers but had to disable them for Weatherunderground, which is full of adds. How do I permanently stop this from reappearing? Thanks
  12. Sorry for not being reactive enough but I am not at all comfortable with this kind of things. I think I found what I downloaded and that I shouldn't have opened. in the description of the file, when you place the cursor on the name, it is actually written "nonextermination setup",though it is an .epub extension. I have attached the file. Marie PS: uploading this, the exe extension appears. Bridging_The_Communication_Gap.epub.exe
  13. Outlook and Quiken would not open, ran Emisoft, found swizzor trojan. Attempted to quarantine, however program said I needed more assistance. Thank-you. Addition.txt FRST.txt logs.db3
  14. Hi two days ago emsi detect something and i delete it it says are something in my browser who make cryptcoins or somethingl ikethat sorry to be ambigous. I delete the emsisoft logs. I have scan whith FRT to see if i have no traces FRST.txt Addition.txt Shortcut.txt
  15. Hi there so since i was foreced to update to THE CREATORS UPDATE I get a split second cd window flash when my desktop loads and i want to find oyt the cause and stop it FRST.txt Addition.txt
  16. To Whom It May Concern: I recently performed the Emsisoft Emergency Kit Scan and two Trojan.LNK.Poweliks.1.Gen (B) files were identified for quarantine. However, the files are deeply embedded in my operating system and the Emergency Kit directed me to seek your expert advise. Thank you in advance for your time and assistance, Sage, Deputy Clerk Town of Skykomish, WA Addition_28-12-2017 12.47.25.txt FRST_28-12-2017 12.47.25.txt
  17. Hi, I have run your tool a few times but can't get rid of this. Attached are the scan reports. I hope you can help. Marie Addition.txt FRST.txt scan_171228-225333.txt
  18. Internet explorer stops working. There is a problem that caused the program to stop working correctly. Windows close the program, and I have to start all over.
  19. Windows 10 Downloaded latest version 8334 from the website. Updated without any problems then turned on beta updates .. just one file downloaded for beta updates. Ran a scan without issue (apart from the fact that Windows Defender caught eicar first :)) I took up EEK offer to install EAM which it did. My only issue is when installing EAM through EEK it doesn't put an icon on the desktop whereas downloading and installing EAM myself, it does put an EAM icon on the desktop.
  20. For the longest time my computer was using an unactivated licensed Windows and yesterday I was able to buy a product key. I am not able to clean and re-install a new copy of Windows 10 OS because Windows Defender is giving me the error 0x800700aa. Please help clean my computer! Addition_04-01-2018 23.22.13.txt FRST_04-01-2018 23.22.13.txt logs.db3
  21. Hello, hope you can help me. When I scan my PC with Emsisoft AntiMalware (installed in the PC) "C:\ProgramData\simplitec" is flagged up as an infection. I select to delete this folder but it reappears on next power-up. This problem has been reported on this forum before and I'd like help to decide if this is a genuine infection. And if so, how to get rid of it. Thanks. Victor FRST.txt scan_171227-021824.txt Addition.txt
  22. Update seemed smooth. Is there anything visibly different to try out?
  23. OneKey Ghost 14.5 Viet.rar -IDM 6.18 Build 7 Silent Plus(4virut).rar
  24. Emsisoft Anti-Malware scan shows that there is an application that cannot removed, the scan results are attached on the file There were also some other files from previous scans I would like help with. The folders were not affected by selecting the option to quarantine. When I click the folders it says that I do not have permissions to access. -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- 12/14/2017 8:48:39 PM Behavior Blocker detected suspicious behavior "TrojanDownloader" of "C:\Users\Pasue-A240\AppData\Local\scewlnt\scewlnt.exe" 12/14/2017 8:48:39 PM A notification message "Suspicious behavior has been found in the following program: C:\Users\Pasue-A240\AppData\Local\scewlnt\scewlnt.exe" has been shown 12/14/2017 8:48:42 PM User "PASUE-A240\Pasue-A240" clicked "Quarantine now" ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- 12/14/2017 8:29:45 PM Behavior Blocker detected suspicious behavior "CryptoMalware" of "C:\Users\Pasue-A240\AppData\Local\scewlnt\cobpkum.exe" 12/14/2017 8:29:47 PM A notification message "Suspicious behavior has been found in the following program: C:\Users\Pasue-A240\AppData\Local\scewlnt\cobpkum.exe" has been shown 12/14/2017 8:29:50 PM User "PASUE-A240\Pasue-A240" clicked "Quarantine now" ------------------ scan_171214-204854.txt