This is an old revision of the document!
Personal Software Inspector is a free computer security solution that identifies vulnerabilities in applications on your private PC. Vulnerable programs can leave your PC open to attacks, against which your antivirus solution may not be effective. Simply put, it scans software on your system and identifies programs in need of security updates to safeguard your PC against cybercriminals. It then supplies your computer with the necessary software security updates to keep it safe.
STEP 02 from: https://forums.malwarebytes.org/index.php?/topic/150253-keep-getting-malicious-website-blocked-message/ Please run a Threat Scan with MBAM. If you're unable to run or complete the scan as shown below please see the following: MBAM Clean Removal Process 2x When reinstalling the program please try the latest version. Right click and choose "Run as administrator" to open Malwarebytes Anti-Malware and from the Dashboard please Check for Updates by clicking the Update Now... link Open up Malwarebytes > Settings > Detection and Protection > Enable Scan for rootkit and Under Non Malware Protection set both PUP and PUM to Treat detections as malware. Click on the SCAN button and run a Threat Scan with Malwarebytes Anti-Malware by clicking the Scan Now>> button. Once completed please click on the History > Application Logs and find your scan log and open it and then click on the "copy to clipboard" button and post back the results on your next reply.
From: http://www.eset.com/us/online-scanner-popup/ From: “Checklist by Eset” http://kb.eset.com/esetkb/index?page=content&id=SOLN2921
Custom Scan lets you specify which folders to scan Quick Scan reduces software scan times to a few minutes Stand-alone eliminates compatibility issues associated with browser-activated scanners Smart Scan delivers the latest antivirus protection while reducing download times
as I remember this will only identify not clean
From: “Checklist vy Avast” http://forum.avast.com/index.php?topic=53253.0
From: Virus Bulletin's
Ransomware Screen Unlocker Tool is designed to eliminate Lock Screen ransomware from your infected PC in two different scenarios: Scenario 1: Lock Screen ransomware is blocking “normal mode”, but “safe mode” with networking is still accessible. Scenario 2: Lock Screen ransomware is blocking both “normal mode” and “safe mode” with networking.
From: “Spyware on Windows”: http://kb.mozillazine.org/Popups_not_blocked
From: “MalwareTips” http://malwaretips.com/blogs/mapsgalaxy-toolbar-removal/
From: “MalwareTips” http://malwaretips.com/blogs/pup-optional-mindspark-removal/#malwarebytes
Should I Remove It? is a very simple but extremely powerful Windows application that helps users, both technical and non technical, decide what programs they should remove from their PC. This typically includes finding and removing all sorts of crapware and bloatware such as adware, spyware, toolbars, bundled unwanted applications as well as many forms of malware. The program is very lightweight and extremely fast. Should I Remove It? simply scans your computer for all its' installed programs and then ranks what should be removed by leveraging the wisdom of the crowd (and of course our technical experts) to determine what should not be installed.
Toolbar Cleaner removes more than 1,000,000 unwanted toolbars, apps, add-ons, and plug-ins per month including Ask, Alot, Babylon, Bing and MSN Toolbars.
Fiddler - Debug traffic from PC, Mac or Linux systems and mobile devices
C:\Users\bubba\AppData\Local\Google\Chrome\User Data\Default\Extensions ckibcdccnfeookdmbahgiakhnjcddpki C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Local Storage chrome-extension_ckibcdccnfeookdmbahgiakhnjcddpki_0.localstorage chrome-extension_ckibcdccnfeookdmbahgiakhnjcddpki_0.localstorage-journal Instead of deleting this time I made read only and mangled the localstorage database
Installed as “Search Protect”
AdwCleaner cleaned it
Decrypt (try locky): https://decrypter.emsisoft.com/
1. Shadow Explorer: http://www.shadowexplorer.com/downloads.html
2. deletes the original: see recovery software in malwaretips or handy recovery
Characteristics: In the local users %Username% root, a file called 'Google.exe' and 'Runme.exe' will be present, along with another EXE file with a random name
"Uninstall iAntiVirus.app" in Applications -> iAntiVirus. To remove user specific preferences simply delete "com.pctools.iAntiVirus.plist" from ~/Library/Preferences.
net user <user_name> <new_password>.
"Task Manager substitution" "Autorun from hard drives is allowed" "Autorun from network drives is enabled" "CD/DVD autorun is enabled" "Removable media autorun is enabled" "Microsoft Internet Explorer - disable caching data received via protected channel" "Microsoft Internet Explorer: disable sending error reports" "Microsoft Internet Explorer: clear the list of trusted domains" "Microsoft Internet Explorer: clear list of pop-up blocker exceptions" "Microsoft Internet Explorer: enable cache autocleanup on browser closing" "Microsoft Internet Explorer: start page reset"