Jump to content

FBI MoneyPak Virus with No safe mode

Recommended Posts

Long time lurker, first time poster. I'm fairly tech-savvy, but don't feel like I'm going to take offense if you talk to me like a dummy. We all learn new things everyday, and I would like everything explained as simply as possible if that works for you :).

My wife's computer got the FBI MoneyPak Ransomware today. Unfortunately, the computer won't boot in Safe mode/networking/command prompt. I've read a few "How to's" and have narrowed it down to the FRST with a thumb drive method, but all of the already-made threads only work for that person's files specifically. I've got the computer to the "Repair my computer" with command prompt open, FRST downloaded onto a flash drive, and scanned her computer with it.

I'm attaching the FRST.exe from notepad, which is where all of the "case-by-case" scenarios seem to differ. Also, can someone please explain to me HOW they are identifying what to fix? I've found a couple similarities in my logs and others, but I want to be sure. I'm not wanting to fix it completely by myself, incase I end up needing to restore the computer to factory defaults, but would like what steps you're taking/signs you're looking for explained so I can try it if we ever have a problem like this again.

Thanks in advance.


Link to post
Share on other sites

Glad we could help. :)

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.