Recommended Posts

I've never heard of Malwarebytes NOT removing something in the FREE version. I haven't used in several months, though, so I can't say for sure.

Here are some free bootable AV CDs:

http://www.techmixer.com/free-bootable-antivirus-rescue-cds-download-list/

You also might try http://en.kioskea.net/faq/13346-windows-delete-the-files-in-c-recycle-bin

Link to comment
https://www.neowin.net/forum/topic/1128510-virus-alert/#findComment-595424954
Share on other sites

I also checked with Maleware Bytes scan....got 3 objects detected .....but FREE version does not have removal facility .

False, your virus looks like it is in a protected system folder which the AV software does not have permissions to. Not really sure why you assume that the free version doesn't remove infections, because it does. You need to look into taking ownership of the Recycle Bin folder

Link to comment
https://www.neowin.net/forum/topic/1128510-virus-alert/#findComment-595424958
Share on other sites

where is the remove feature here ? This is the scan result of Maleware Bytes.

How do I remove detected objects ?

bytes_zps3d57270c.png

>>>>Yeah Id say that, Empty Recycle Bin.

Recycle Bin is already empty !....restarted machine ...no improvmenet.

Probably in Show Results.

Link to comment
https://www.neowin.net/forum/topic/1128510-virus-alert/#findComment-595425068
Share on other sites

I still wish Malwarebytes would take the superantispyware approch and show us what it finds as it finds it. Nothing is more annoying than when you do a scan on someones machine and it finds 1 infection in memory but you don't get to know what that infection is until 1 hour after the scan is complete. Only to find out it's mywebsearch.

Link to comment
https://www.neowin.net/forum/topic/1128510-virus-alert/#findComment-595425088
Share on other sites

I still wish Malwarebytes would take the superantispyware approch and show us what it finds as it finds it. Nothing is more annoying than when you do a scan on someones machine and it finds 1 infection in memory but you don't get to know what that infection is until 1 hour after the scan is complete. Only the find out it's mywebsearch.

Yep, I hate that too, makes me want to hit stop to see what it was, but then I cba to wait for another scan in-case it finds something at the end

Link to comment
https://www.neowin.net/forum/topic/1128510-virus-alert/#findComment-595425118
Share on other sites

Ok from what I read it is a new Trojan (Some people just have too much time on their hands) discovered in mid December, which is why malwarebyes can't remove it because it does not know how

Sirefef, or ZeroAccess, is a Trojan that infects machines by exploiting a browser, through a third-party plugin, via an email attachment/link or it?s downloaded by other malicious software (malware). Once on the machine, it creates an environment where new threats can be installed without detection by most security software and then downloads these threats. Because it prevents antivirus software attempting to remove it, Sirefef is very difficult to remove, often requiring a complete system reinstall.

http://land.viprebusiness.com/sirefef/?adv=2005&loc=1067&gclid=CPnhwZqYxbQCFQSg4Aod4iIAWQ

this may help

http://blog.teesupport.com/how-to-remove-trsirefef-bp-1-malware-manual-removal-of-trsirefef-bp-1-virus/

but if the system is compromised already i would reload from a clean backup but that's just my humble opinion because I have found many a time a lot of these 'removal tips or tools' are more trouble than they are worth...good luck

Link to comment
https://www.neowin.net/forum/topic/1128510-virus-alert/#findComment-595425162
Share on other sites

Iv`e just cleaned a lappie with this on using boot cd`s. Look like you were actually pretty lucky as it normally locks you out of the computer (ransomware). You have been caught blah blah blah, send some money via wire transfer and you can your computer back sort of thing :pinch:

Start sandboxing your browser...

Link to comment
https://www.neowin.net/forum/topic/1128510-virus-alert/#findComment-595426316
Share on other sites

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Rufus alternative Ventoy now supports Windows 11's mandatory update, fixes major boot bug by Sayan Sen While Microsoft has its own official Media Creation Tool used for making bootable USB media, there are some popular third-party utilities as well which offer additional options like bypassing system requirements, Microsoft Account creation, and more. One of these is Ventoy, and the software has received its latest update today. In fact, the app actually got a slew of updates over the last couple of days, three version releases in total, to be specific. The first release, version 1.1.13, was pulled as there was some unspecified error in the update, and as such, the corrected version 1.1.14 was pushed out. Following that on very short notice, 1.1.15 was published as well. For those unfamiliar, Ventoy is an open-source utility that lets users create a bootable USB drive once and then simply copy ISO, WIM, IMG, VHD, or EFI files onto it without repeatedly formatting the drive. It supports both legacy BIOS and UEFI boot modes, Secure Boot, and a wide range of operating systems, making it one of the most versatile tools in the category. The biggest change in version 1.1.14 is an updated Secure Boot shim file aimed at resolving the UEFI CA 2023 issue, which is basically a compatibility problem that has affected Secure Boot environments on some systems. If you recall, we reported about severe boot issues on HP devices following the release of updated Secure Boot 2023 keys. For anyone who may not be aware, back in early 2024, Microsoft announced that it was updating Secure Boot keys as they were going to become 15 years old in 2026, which is also when they are set to expire. As such, the new 2023 certificates have been rolling out with the newest Windows 11 updates. Updated boot manager and Secure Boot certificates are crucial for protection against malware like bootkits. These are mandatory updates. Alongside that, the VentoyPlugson graphical plugin configurator was updated in sync with the release. The update also introduces a new VTOY_SECURE_BOOT_POLICY option within the Global Control plugin, giving users more flexibility in managing Secure Boot behavior. Ventoy has also received a fix for a startup issue when Secure Boot was disabled. Microsoft does officially allow users to boot systems without Secure Boot as long as the PC is Secure Boot capable. The full changelog is given below: Update secure boot shim file to solve the UEFI CA 2023 issue. The new release use a new CA, so you need to enroll the new key for the first boot time. VentoyPlugson update synchronously. Global control plugin add a VTOY_SECURE_BOOT_POLICY option. Fix the boot issue when Secure Boot is disabled in the UEFI firmware. You can download the latest version of the app here on Ventoy's official GitHub repo or from Neowin software stories.
    • Windows 11 is fine, no issues on any of the machines I've run it on since release. The stricter security requirements are a good thing, sometimes the baseline needs to change and people will winge, but it is what it is. Happened with the move from 9x to NT - broke compatability Happened with XP SP2 when security started to become a serious consideration Certainly happend with Vista that brought in UAC, the concept of not running as admin (something that has been the norm in Linux/Unix from pretty much the start) and a completely new driver stack. Windows 11 will probably get looked back at as the point where even consumer and SMB IT was dragged kicking and screaming into a somewhat secure by default configuration.
    • Bluestacks has been emulating Android on Windows for fifteen years. It's janky and riddled with ads though, so WSA looked like it was going to be a huge improvement over the emulator experience. Too bad Microsoft dropped the ball on that.
    • Classic. China would be nothing without Western, Japanese, and South Korean technology.
    • The world is larger then your small viewpoint. Plenty of scientists care about this, especially those involved in space.
  • Recent Achievements

    • Rookie
      krychek57 went up a rank
      Rookie
    • Grand Master
      Jaybonaut went up a rank
      Grand Master
    • One Year In
      Philsl earned a badge
      One Year In
    • Dedicated
      Scoobystu earned a badge
      Dedicated
    • First Post
      Tom Schmidt earned a badge
      First Post
  • Popular Contributors

    1. 1
      +primortal
      441
    2. 2
      +Edouard
      172
    3. 3
      PsYcHoKiLLa
      134
    4. 4
      Michael Scrip
      78
    5. 5
      Xenon
      77
  • Tell a friend

    Love Neowin? Tell a friend!