got scamed

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • user1
    PCHF Member
    • Sep 2016
    • 53

    #16
    no last time quickdiag took 10 minutes reading the report…

    Comment

    • Hilton_Heflin
      PCHF Member
      • Aug 2016
      • 134

      #17
      Sorry,tried twice more on the quickdrag and got to 45% and hung up..,am sure I am doing it right as I did it before..
      You never told me about me not being able find ANAYLAS in my Malwaerebytes (paid) to be able to send report..
      Thanks

      Comment

      • user1
        PCHF Member
        • Sep 2016
        • 53

        #18
        Hello I said that :

        Open the « History » tab and then « Application logs »
        Double click on the last Scan Log in date (the one above)
        At the bottom click [Export] → select « Text file (* .txt) »
        In the explorer selects the desktop, name it mbam.txt, click [Save]

        copy/paste the content of the report in your next reply

        Comment

        • Hilton_Heflin
          PCHF Member
          • Aug 2016
          • 134

          #19
          I am so sorry to be such a PIA..but computers and I just dont jive…As I said…I have the paid version6 of Malwarebytes on my computer..but i do not see an analysis or history tap on program..ther is a dashboard ..it has home..scan..protection… .and settings…
          I tried downloading the free version to see if it6 was different than paid but it just foldeduinto my paid version…
          Is there away of removing the two programs i originally ask about( atf cleaner/dell firewall) or is that what we are trying to do…
          Thanks
          Hefs

          Comment

          • user1
            PCHF Member
            • Sep 2016
            • 53

            #20
            can you do a screen capture of you malwarebytes .??? Version 6 doesn’t exist…!!!

            Comment

            • Hilton_Heflin
              PCHF Member
              • Aug 2016
              • 134

              #21
              Originally posted by g3n-h@ckm@n
              can you do a screen capture of you malwarebytes .???
              I am embarrassed about this but do not know how to do it…i looked in help and foind nothing on it

              \
              Originally posted by g3n-h@ckm@n
              can you do a screen capture of you malwarebytes .??? Version 6 doesn’t exist…!!!

              Comment

              • user1
                PCHF Member
                • Sep 2016
                • 53

                #22
                run c:\windows\system32\snippingtool.exe and click “new”

                select the zone to capture ( the interface of your malwarebytes ), and save it to your desktop , and attach the picture you saved

                Comment

                • Hilton_Heflin
                  PCHF Member
                  • Aug 2016
                  • 134

                  #23
                  Originally posted by g3n-h@ckm@n
                  can you do a screen capture of you malwarebytes .??? Version 6 doesn’t exist…!!!
                  [ATTACH]2470[/ATTACH]

                  Comment

                  • user1
                    PCHF Member
                    • Sep 2016
                    • 53

                    #24
                    not VErsion 6 ^^ Version 3.1.2 lol

                    ok it’s reports tab the first scan-log ( it’s not the same interface than in french lol )

                    Comment

                    • Hilton_Heflin
                      PCHF Member
                      • Aug 2016
                      • 134

                      #25
                      ok it’s reports tab the first scan-log ( it’s not the same interface than in french lol )
                      [/QUOTE]
                      Originally posted by g3n-h@ckm@n
                      not VErsion 6 ^^ Version 3.1.2 lol

                      ok it’s reports tab the first scan-log ( it’s not the same interface than in french lol )
                      Oh…did not realize you were in France..
                      I have to go so will work on this tomorrow..
                      Thanks

                      Comment

                      • user1
                        PCHF Member
                        • Sep 2016
                        • 53

                        #26
                        hello
                        ok , waiting to read you , standby… ^^

                        Comment

                        • Hilton_Heflin
                          PCHF Member
                          • Aug 2016
                          • 134

                          #27
                          sorry,but due to my health problems can only sit in front of here but so much..
                          Here is the latest scan..
                          Again..thank you for your patience and help,

                          Comment

                          • user1
                            PCHF Member
                            • Sep 2016
                            • 53

                            #28
                            ok we’re gonna do another diag if quickdiag doesn’t want to go 'till the end
                            [HEADING=1][ul]
                            [li]Disable Windows Defender, Firewall & Antivirus prior to running this tool!![/li][li]Select and copy all the text below[/li][/ul][/HEADING]
                            [HEADING=1]HKCU\Software
                            HKCU\Software\AppDataLow /s
                            HKCU\Software\Microsoft\Windows\CurrentVersion\Pol icies\Explorer /s
                            HKCU\Software\Microsoft\Windows\CurrentVersion\Pol icies\System /s
                            HKLM\Software
                            HKCU\Software\Microsoft\Command Processor /s
                            HKLM\Software\Microsoft\Command Processor /s
                            HKLM\Software\Microsoft\Windows\CurrentVersion\Pol icies\Explorer /s
                            HKLM\Software\Microsoft\Windows\CurrentVersion\Pol icies\System /s
                            HKLM\Software\Microsoft\Windows\CurrentVersion\Exp lorer\RunMRU /s
                            HKLM\System\CurrentControlSet\Control\Session Manager\AppcertDlls /s
                            %Homedrive%*
                            %Homedrive%*.
                            %Homedrive%\Recycler*.exe /s
                            %Homedrive%\Recycler*.scr /s
                            %Homedrive%\Recycler*.pif /s
                            %Homedrive%\Recycler*.vb* /s
                            %Homedrive%$Recycle.bin*.exe /s
                            %Homedrive%$Recycle.bin*.scr /s
                            %Homedrive%$Recycle.bin*.pif /s
                            %Homedrive%$Recycle.bin*.vb* /s
                            %Userprofile%*
                            %Userprofile%*.
                            %Allusersprofile%*
                            %Allusersprofile%*.
                            %LocalAppData%*
                            %LocalAppData%*.
                            %AppData%*
                            %AppData%*.
                            %Userprofile%\Local Settings*
                            %Userprofile%\Local Settings*.
                            %Userprofile%\Local Settings\Application Data*
                            %Userprofile%\Local Settings\Application Data*.
                            %Userprofile%\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave\FlashWritableRoot#SharedObjects*
                            %Userprofile%\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave\FlashWritableRoot#SharedObjects*.
                            %Userprofile%\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave FlashWritableRoot#SharedObjects*
                            %Userprofile%\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave FlashWritableRoot#SharedObjects*.
                            %programFiles%*
                            %programFiles%*.
                            %programfiles%\Google\Desktop*.
                            %ProgramFiles%\Common Files*
                            %ProgramFiles%\Common Files*.
                            %ProgramFiles(X86)%\Common Files*
                            %ProgramFiles(X86)%\Common Files*.
                            %Systemroot%\Installer*
                            %Systemroot%\Installer*.
                            %Systemroot%\Temp*.exe /s
                            %systemroot%\system32*.dll /lockedfiles
                            %systemroot%\system32*.exe /lockedfiles
                            %systemroot%\system32*.in*
                            %systemroot%\PSS* /s
                            %systemroot%\Tasks*
                            %systemroot%\Tasks*.
                            %systemroot%\system32\Tasks*
                            %systemroot%\system32\Tasks*.
                            %systemroot%\syswow64\Tasks*
                            %systemroot%\syswow64\Tasks*.
                            %systemroot%\system32\drivers*.sy* /lockedfiles
                            %systemroot%\system32\config*.exe /s
                            %Systemroot%\ServiceProfiles*.exe /s
                            %systemroot%\system32*.sys
                            dir %Homedrive%* /S /A:L /C
                            msconfig
                            activex
                            /md5start
                            explorer.exe
                            winlogon.exe
                            wininit.exe
                            volsnap.sys
                            atapi.sys
                            ndis.sys
                            cdrom.sys
                            i8042prt.sys
                            iastor.sys
                            tdx.sys
                            netbt.sys
                            afd.sys
                            /md5stop
                            netsvcs
                            safebootminimal
                            safebootnetwork
                            CREATERESTOREPOINT[/HEADING]
                            [ul]
                            [li]Save OTL (by OldTimer) to your desktop.[/li][li]Configure it like this :[/li][/ul]


                            [ul]
                            [li]Paste this script you selected before in the below part of OTL « Personnalisation »[/li][li]Click on « Analysis »[/li][li]Once the scan has completed, 2 reports will open[/li][li]Please copy and paste their content in your next reply[/li][/ul]

                            Comment

                            • Hilton_Heflin
                              PCHF Member
                              • Aug 2016
                              • 134

                              #29
                              Originally posted by g3n-h@ckm@n
                              ok we’re gonna do another diag if quickdiag doesn’t want to go 'till the end
                              [HEADING=1][ul]
                              [li]Disable Windows Defender, Firewall & Antivirus prior to running this tool!![/li][li]Select and copy all the text below[/li][/ul][/HEADING]
                              [HEADING=1]HKCU\Software
                              HKCU\Software\AppDataLow /s
                              HKCU\Software\Microsoft\Windows\CurrentVersion\Pol icies\Explorer /s
                              HKCU\Software\Microsoft\Windows\CurrentVersion\Pol icies\System /s
                              HKLM\Software
                              HKCU\Software\Microsoft\Command Processor /s
                              HKLM\Software\Microsoft\Command Processor /s
                              HKLM\Software\Microsoft\Windows\CurrentVersion\Pol icies\Explorer /s
                              HKLM\Software\Microsoft\Windows\CurrentVersion\Pol icies\System /s
                              HKLM\Software\Microsoft\Windows\CurrentVersion\Exp lorer\RunMRU /s
                              HKLM\System\CurrentControlSet\Control\Session Manager\AppcertDlls /s
                              %Homedrive%*
                              %Homedrive%*.
                              %Homedrive%\Recycler*.exe /s
                              %Homedrive%\Recycler*.scr /s
                              %Homedrive%\Recycler*.pif /s
                              %Homedrive%\Recycler*.vb* /s
                              %Homedrive%$Recycle.bin*.exe /s
                              %Homedrive%$Recycle.bin*.scr /s
                              %Homedrive%$Recycle.bin*.pif /s
                              %Homedrive%$Recycle.bin*.vb* /s
                              %Userprofile%*
                              %Userprofile%*.
                              %Allusersprofile%*
                              %Allusersprofile%*.
                              %LocalAppData%*
                              %LocalAppData%*.
                              %AppData%*
                              %AppData%*.
                              %Userprofile%\Local Settings*
                              %Userprofile%\Local Settings*.
                              %Userprofile%\Local Settings\Application Data*
                              %Userprofile%\Local Settings\Application Data*.
                              %Userprofile%\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave\FlashWritableRoot#SharedObjects*
                              %Userprofile%\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave\FlashWritableRoot#SharedObjects*.
                              %Userprofile%\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave FlashWritableRoot#SharedObjects*
                              %Userprofile%\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave FlashWritableRoot#SharedObjects*.
                              %programFiles%*
                              %programFiles%*.
                              %programfiles%\Google\Desktop*.
                              %ProgramFiles%\Common Files*
                              %ProgramFiles%\Common Files*.
                              %ProgramFiles(X86)%\Common Files*
                              %ProgramFiles(X86)%\Common Files*.
                              %Systemroot%\Installer*
                              %Systemroot%\Installer*.
                              %Systemroot%\Temp*.exe /s
                              %systemroot%\system32*.dll /lockedfiles
                              %systemroot%\system32*.exe /lockedfiles
                              %systemroot%\system32*.in*
                              %systemroot%\PSS* /s
                              %systemroot%\Tasks*
                              %systemroot%\Tasks*.
                              %systemroot%\system32\Tasks*
                              %systemroot%\system32\Tasks*.
                              %systemroot%\syswow64\Tasks*
                              %systemroot%\syswow64\Tasks*.
                              %systemroot%\system32\drivers*.sy* /lockedfiles
                              %systemroot%\system32\config*.exe /s
                              %Systemroot%\ServiceProfiles*.exe /s
                              %systemroot%\system32*.sys
                              dir %Homedrive%* /S /A:L /C
                              msconfig
                              activex
                              /md5start
                              explorer.exe
                              winlogon.exe
                              wininit.exe
                              volsnap.sys
                              atapi.sys
                              ndis.sys
                              cdrom.sys
                              i8042prt.sys
                              iastor.sys
                              tdx.sys
                              netbt.sys
                              afd.sys
                              /md5stop
                              netsvcs
                              safebootminimal
                              safebootnetwork
                              CREATERESTOREPOINT[/HEADING]
                              [ul]
                              [li]Save OTL (by OldTimer) to your desktop.[/li][li]Configure it like this :[/li][/ul]
                              g3n-h@ckm@n Tools: Image

                              [ul]
                              [li]Paste this script you selected before in the below part of OTL « Personnalisation »[/li][li]Click on « Analysis »[/li][li]Once the scan has completed, 2 reports will open[/li][li]Please copy and paste their content in your next reply[/li][/ul]
                              Thanks will have to be later tonight or tomorrow…

                              Comment

                              • user1
                                PCHF Member
                                • Sep 2016
                                • 53

                                #30
                                No problem , I’ll be there to answer

                                Comment

                                Working...