Jump to content

Porthos

Trusted Advisors
  • Content Count

    7,828
  • Joined

  • Last visited

Everything posted by Porthos

  1. @ivzn Have you checked your Spam/junk folder as well for replies?
  2. A large part of me getting new clients. I am sorry, On top of you canceling credit cards if you gave them a #. After that kind of intrusion, I never trust a computer till it is reformatted and reinstalled. I know that is like killing a fly with a bazooka but... Scammers have the potential to have installed or copied anything they wanted during the time they were connected. I am not trying to scare or make things harder but it is your computer and many will advise that our very own malware removal section can double check and remove issues for you. Yes they are real good but it is a time intensive procedure. Be sure once your computer is clean one way or another not before, You should change all your passwords to everything from the already clean computer. In the end, You learned some valuable computer lessons. Wish you the best.
  3. In the email receipt, It should show the billing company, probably 2checkout or Cleverbridge ether way, The receipt should have their contact info and you should be able to get the refund that way unless things have changed. I am just a longtime user not an employee. So I cant swear by that. Support will get to you as there is a 30 60 day refund policy. Thanks Maurice.
  4. What is the issue? Since this is your first post.
  5. Sorry about the sign up experience. It has done wonders for forum spam problems. But yes it is a pain. If it was not for spammers those drastic measures would not be needed.
  6. Screen door with holes in it. But even Chrome can be targeted for malvertising. Every computer I touch has Ublock Origin installed and a few extra filters enabled. You do not get "infected or compromised" unless you fall for the scam and let someone remote control your computer. Also NO ONE from "Microsoft" or any other company will ever call you because of any "issue" about your computer. Same scam but different scare tactic.
  7. But still tries to sell you the paid version on just about every startup. Also has some new privacy settings you have to manually opt out of. 100% agree about all registry cleaners. I stopped installing/recommending/using Ccleaner soon after Avast acquired them. Had clients complaining that they were getting billed for a sub (fell for an offer because they thought they had too)since I told them it was free. Had clients end up with Avast installed and did not know how they got it( pre checked offer when getting update). I could go on.
  8. I believe you can still get it with Ninite stripped of the junk. Just installed it with a Ninite installer and achieved a clean scan with MB.
  9. Be aware the extension (only available for Firefox and Chrome) is a BETA thus it is still being tweaked and refined.
  10. That domain is common for abuse and each site is whitelisted individually. This post will be moved to the proper section for Browser extension reports. It is handled by a separate dev team. @rakka
  11. Seems to be browser extension block.
  12. Guessing it is the game Project IGI. Windows defender deletes it as PUA:Win32/InstallCore which is adware that is bundled with many free programs to make the publisher some money with each install.
  13. Malware or not, they are too old to be detected by MB. It would help to know what software they belong to.
  14. I would if you are NOT using Advanced System Care. I personally would not let that program within a light year of any computer I own or service.
  15. Add you current license to your account, see below. Edit: I reread your topic and yes it seems to be a step backward. I HOPE the above helps.
  16. I know this is no help, I repair computers for a living and it seems like the folks with current backups don't get infected and those without always seem to get hit at least with my clients over the years. In the future I suggest downloading Macrium Reflect and purchase an external drive ($50us 1tb) and make monthly image backups. Unplug the drive after each backup to protect the backups.
  17. Since you posted here, I will just say you are stuck. Currently there is no decrypter for it. You can read more HERE I pray you have current backups of your data. The helpers can clean your computer but not recover your files. It is possible that in the future some one will find a decrypter for this variant. I will ask for your post to be moved to the proper section of the forum. PS, I would not pay the ransom. Some take the money and give nothing in return. It is up to you.
  18. I personally clean install any computer out of the box. For an end user "fresh start" does the same as a clean install. Bloatware/trials all gone.
  19. I see reputation block on the following link http://vsrevogroup.net/revosetup.exe See the Below screenshot from the site.
  20. Give them time, it can sometimes take 3-5 days. Support is busy and they are catching up from the weekend when they have limited staff working.
  21. Seems to be another browser extension block.
  22. I think he means it should be blocked.
  23. Just tying to help, This section is a great way to test 4.0
  24. Malwarebytes www.malwarebytes.com -Log Details- Protection Event Date: 8/5/19 Protection Event Time: 11:01 AM Log File: 5a0b648d-b770-11e9-99f6-4439c43a4aa3.json -Software Information- Version: 4.0.0.142 Components Version: 1.0.628 Update Package Version: 1.0.11863 License: Premium -System Information- OS: Windows 10 (Build 18362.267) CPU: x64 File System: NTFS User: System -Blocked Website Details- Malicious Website: 1 , C:\Program Files\Mozilla Firefox\firefox.exe, Blocked, -1, -1, 0.0.0 -Website Data- Category: Trojan Domain: cpapoutlet.ca IP Address: 199.68.176.105 Port: 59164 Type: Outbound File: C:\Program Files\Mozilla Firefox\firefox.exe (end)
  25. Browser extension block still in place. @rakka
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.