Jump to content

Tech Help and Discussions

Free PC Help Forum is a community to get free computer help for all. Whether a novice or an expert everyone is welcome.

  1. A security researcher says an audio driver is recording every keystroke entered, accessible to any person or malware that knows where to look. An audio driver installed in several HP laptops contains a keylogger-type feature that records every keystroke entered into the computer into a log file, according to a security researcher. Swiss security firm Modzero said in a security advisory posted Thursday that the keylogger activity was discovered in the Conexant HD audio driver package (version 1.0.0.46 and earlier), found on dozens of HP business and enterprise laptop models, including HP Elitebook, ProBook, and ZBook models -- including the latest Folio G1 laptop…

      • Like
    • 1 reply
    • 612 views
  2. The decryptor works on .amnesia files on victims' devices A new decryption tool for ransomware victims has been released, this time for those affected by the Amnesia Ransomware. Over the weekend, Emsisoft announced they had a new decryptor ready for Amnesia, a ransomware that was spotted just earlier this month. According to the company's CTO and malware researcher Fabian Wosar, the malware has had another variant released called CryptoBoss. This new family of ransomware was named Amnesia based on the extension that gets added to encrypted files by the first variant (.amnesia). The CryptoBoss variant has yet to get a decryptor, but researchers are work…

  3. Started by Tony D,

    This little machine had Trend Micro Maxium Security, AVG CloudCare and SuperAntiSpyware. It was running pretty slow. I uninstalled AVG using the AVG uninstaller. It was still slow. It's running pretty well now that the Trend software is not running. Ran Malwarebytes Antimalware. It found 1,964 threats which were all MindSpark and Ask in Chrome. They were quarantined. MBAM shows them in the quarantine, but there is no scan report available. That's strange. Can you take a look at the scan logs to remove any AVG items that remain and see if there's anything else to be concerned about? Thank you. Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 03-05-…

  4. A new tool against ransomware available for free The war against ransomware can claim another won battle as a new decrypter has been released for free by Emsisoft. This time, the decrypter works on the Cry128 strain from the CryptON ransomware family. Strains from the CryptON ransomware, such as the X3M and Nemesis, started popping up here and there back in December of last year. Security Researchers claim they are all put together using the same builder, which is the software application which automates the process of customizing a malware executable. The Cry128 strain that can now be decrypted with this free tool began appearing on April 22, 2017, so it…

  5. Windows' system files were flagged as malicious, and Facebook was marked as a phishing site. A malware signature update issued by the company on Monday triggered the software into mistakenly flagging Windows system files as malware, melting down millions of managed systems around the world. The problem began in the afternoon on the US east coast when the antivirus product began falsely marking those files as W32.Trojan.Gen, otherwise known as generic malware. That moved crucial system files essential to the operating system's effective functioning to quarantine, making them unavailable to Windows. A thread on the company's website is already nine pages deep…

  6. Started by Steve08,

    HI - question also relates to Windows 10, but I suspect the issues is the same. Basically I want to install Java, but only the Server JRE (no requirement for dev tools, browser plugins etc). I can download the package from Oracle, here, but as they say, it doesn't include an installer. The installation instructions simply say "Unpack the tarball to a folder of your choice". All very well, but there must be more to it than that? How do applications that require Java know it's there? thanks...

  7. Recently various scheduled tasks have been failing with 0x41306 - the only solutions I can find online try to get me to download an run a program called ReimageRepair.exe, which I am somewhat reluctant to do, or to use Windows restore to recent a previous system backup point. see here Before attempting the latter, which I am also somewhat wary of doing, wondering if anyone has experience or knowledge of this reimagerepair utility, or any better recommendations? Thanks...

    • 5 replies
    • 1.6k views
  8. Started by Kick,

    Hi, In my Action Center, I am being offered KB4015552 described as 'Optional' and 'April, 2017 Preview of Monthly Quality Rollup for Windows 7'. I understand that the previews are released on the third Tuesday of each month but will become part of the following month's Patch Tuesday update. This is the first time I have noticed a preview update being offered on my system so I am a little confused as to what is best for me to do. Is there any advantage in me downloading and installing this review version or would it be better to wait until the next Patch Tuesday offerings? I would welcome advice and comments. Cheers.

      • Like
    • 2 replies
    • 1.2k views
  9. Started by allheart55 Cindy E,

    To play, here are the rules: Change one letter in the previous five letter word entry to make another five letter word. You can move the letters around but you can not not add or delete letters. Use the new word in a sentence or phrase. Please underline the word in the sentence or phrase so the next player knows which word is being played. I will start off the game right now.

  10. I'm running Windows 7 premium. After several shutdowns that have happened throught the day i received the following message. Locale ID: 1033 Additional information about the problem: BCCode: 7f BCP1: 0000000000000008 BCP2: 0000000080050031 BCP3: 00000000000406F8 BCP4: FFFFF88000F10008 OS Version: 6_1_7601 Service Pack: 1_0 Product: 768_1 Files that help describe the problem: C:\Windows\Minidump\030117-17206-01.dmp C:\Users\N3\AppData\Local\Temp\WER-62306-0.sysdata.xml

  11. I've been using Macrium Reflect free versions for many years now and have found the program excellent for the creation of backup image files. On several occasions it has come to my rescue. I am now approaching a time when I should consider replacing the 160GB hard drive on my Windows 7 desktop with something of larger capacity. I would therefore be using the Macrium Reflect disk cloning option which seems straightforward enough. My question, however, relates to the replacement hard drive (it would be a tradition SATA HDD rather than SSD or hybrid). Should the drive be left unformatted for the operation or, as some drives come already formatted ntfs, can the drive b…

      • Like
    • 9 replies
    • 1.3k views
  12. Started by peterr,

    C:\ Local disc>sandbox. Does anyone have such a folder in Windows 1607 build 14393.969 Sandbox>prime>default box>user + current then current all and C: depending upon which you click.

  13. Started by Tony D,

    I'm looking at a computer where someone called the user, told them that there was a problem with their computer. The user allowed them remote access and gave them the password to get into their machine. We've since changed the password. I see that the scammer put three files on this Windows 10 machine: 1) AnyDesk.exe onto the Desktop 2) FixMeit Client.exe into the Downloads folder 3) An MS Access file titled "New Microsoft Access Database.accdb" It doesn't look like any executables were installed. What piques my curiosity is that MS Access file. What would that be for?

  14. Microsoft now reserves the right to force critical patches to Windows 10 PCs over metered connections. Windows 10 Home users may soon lose some of their already limited ability to prevent Microsoft from forcing automatic system updates on their PCs. While there’s no official way to prevent updates in Windows 10 Home, a workaround is to mark your Wi-Fi connection as metered. The Windows Insider Preview Build 15058 released on Tuesday reduces the effectiveness of that workaround, as WinSuperSite recently spotted. In build 15058, heading to Settings > Update and Security > Windows Update reveals the following note: “We’ll automatically download and insta…

    • 1 reply
    • 508 views
  15. Another severe bug has been found in LastPass, giving yet another reason to stop using browser-based password manager extensions It's been over a year since I presented on LostPass at ShmooCon, and in that time, many more bugs have been found in password managers. The most severe of which are in browser-based password managers extensions such as LastPass. Tavis Ormandy yesterday demonstrated a remote code execution on the latest LastPass version. This isn't the first extremely severe bug he's found in LastPass, either; there've been so many extremely severe bugs in LastPass it would be tedious to list them out. But LastPass isn't alone: Keeper, Dashlane and e…

    • 4 replies
    • 1.4k views
  16. Started by peterr,

    Hello I hope there are some Comcast users here. I went to check my settings in their gateway router and found my password opened and my key exposed. I was told it might have been a firmware upgrade. I don't think that is so. I have temporarily beefed up the password to enter the setup for now but have question; I used to bridge their router within the gateway then use my own router till it died. Do you recommend I use a router to avoid prying eyes. I cannot find out if Comcast can see on my side of their router. My old router never had bridging as I just clicked bridging on the Comcast router so I suspect I do not need bridging on my new one I will be getting. …

  17. Malicious loaders delivered by self-extracting Dropbox files - enabling payloads to bypass detection. One of the most common forms of ransomware is evolving a new technique in order to become even more effective and harder to detect - the ability to evade detection by cybersecurity tools which use machine learning to identify threats. Rather than relying on specifically identified signatures of known threats, some cybersecurity defences employ machine learning in an effort to detect previously unknown malware and the methods used to deliver them to unsuspecting victims. The Cerber family of ransomware is already one of the most successful variants of file-enc…

  18. Started by Tony D,

    I have a Toshiba laptop here in for a keyboard replacement. Geez, I've never seen a keyboard fail on a machine that looks like it's been well cared for. A couple of keys don't always type and the space bar doesn't work at all. What I find strange about this Windows 10 Home Premium laptop is that when you open the lid, the machine starts up. I've haven't seen that before. Has anyone seen this behaviour?

  19. Started by Tony D,

    When this machine boots, WinPatrol say there's a new unknown program in the startup. It's a number starting with 14900xxxxx. The xxxxx digits are different each time. Each time it boots, I click WinPatol's Reject button. Here's an example. Logs are attached. MBAM scan log.txt FRST.txt Addition.txt JRT.txt AdwCleaner[C0].txt

  20. Hey guys, I am not sure if this thread belongs her so if not please move to whichever forum, thanks. Hearing now about the ipad pro being virus free, one thing come to mind, whatever technology they are using for this may soon be used in windows then virus cleaning will eventually become obsolete?

      • Like
    • 5 replies
    • 942 views
  21. Started by Kick,

    Not sure if I should have posted this here but it does have some relationship to security. In case some are not aware, Microsoft has postponed this month's 'Patch Tuesday' updates because they have discovered issues they could not resolve in time. The latest information is that the update will be included with the March update.

  22. Are you out there, Windows Vista users? If so, prepare yourself for the end: Microsoft will be pulling support for the operating system on April 11, sending it to wherever poorly received software goes when it dies. Microsoft has provided 10 years of support for the operating system, but the company says it’s finally ready to put Vista out of its misery and invest its resources in “more recent technologies.” “After April 11, 2017, Windows Vista customers will no longer receive new security updates, non-security hotfixes, free or paid assisted support options, or online technical content updates from Microsoft,” the company says. If you just can’t say goodbye and …

  23. Started by Tony D,

    I've been copying VHS tapes to mpg format for the last few days on my W10 machine. Everything has been working fairly well. This afternoon, W10 updated. Now I can't open any of the mpg files. Media Player and Movie Maker start and then a notice comes up that they stopped working. Movie & TV starts and then just shuts down with no notice. I don't have time to research this now as I have to leave. Just thought I'd let you all know in case you run into a similar situation. I'll do a System Restore later this evening or tomorrow morning.

  24. Started by peterr,

    I downloaded an ISO file of Win 10 and think I copied the contents to a DVD. At any rate it did allow a clean install. I then copied the same contents to a flash drive but have not yet used it. I was told this cannot be done to create a bootable disc for either DVD or flash Drive. A moderator told me I do not need Rufus and can do as I told you I did. But another person said I cannot just copy the files. I know the DVD worked but have not used the flash drive as my system is fine. Could you help clear this up?