hello everyone,
A recent scan has found this registry entry and these files. are they safe or are they virus/malware/spyware or traces of virus/malware/spyware etc.
HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts.com/search?q=hp%20assistat&form=WNSGPH&qs=SW&cvid=abee8ac32569465895bba270caef994f&pq=hp%20assistat&nclid=0ED39ADB9642D6A945440994DFD21348&ts=1462992234518&nclidts=1462992234&tsms=518
the files that i found where a bunch of files in system32 ending in snapshot.etl. Have no idea if they are safe or not.
Thank you everyone?
Eddy
May 17, 2016, 4:42pm
2
Thank you so much for the .etl extension info. so i supposer it is safe?
how about the registry entry? can you help me with that?
Thank you very much.
Upload and test suspicious file(s) here www.virustotal.com / www.metadefender.com
If scanned before click on rescan for a fresh result
You may post link to scan result here
thank you for the website for scanning the viruses but where can i check what that registry entry is?
HKCU\Software\Microsoft\Windows\CurrentVersion\[b]Explorer\FileExts[/b]\.com/search?
Seems to be related to a addon for explorer ...
If you want a check?
follow instructions here https://forum.avast.com/index.php?topic=53253.0
we need Malwarebytes and Farbar Recovery Scan Tool logs, attach the logs, 3 logs total
see below the box you write in … Attachments and other options
When done a expert will check logs and assist you
Eddy
May 17, 2016, 7:25pm
8
That key is used for setting the default application that should open/run a certain file-extension.
Thank you so much for your kind help. i have attached the logs.
Pondus
May 17, 2016, 9:20pm
10
Essexboy may have logged out for today so check back tomorrow
system
May 17, 2016, 10:19pm
11
thanks. ill check back tomorrow. have a good one.
What problems are you having as I can see nothing untoward
system
May 23, 2016, 4:52pm
13
Thank you so much for coming back to me and thanks to everyone else for the help. It appears to be a flase positive actually.
You have a great forum.
Best regards to all.