![]() |
|
#1
|
||||
|
||||
|
Quote:
|
|
#2
|
||||
|
||||
|
The Adobe Bulletin is here
__________________
siljaline MS MVP Alum . MVPS HOSTS . Rename Hosts . ESET for Business . 10 Immutable Laws of Security . System Lookup . ESET Threat Blog . MBAM |
|
#3
|
||||
|
||||
|
Thanks Ron and siljaline - I checked and did not find the "NOS" folder or "getPlus(R) Helper" service.
__________________
DefenseWall HIPS/Personal Firewall Emsisoft Anti-Malware 7.0 VoodooShield Look 'n' Stop Firewall (Phant0m Ruleset) |
|
#4
|
||||
|
||||
|
You are most welcome, if you are using Internet Explorer, check your add-ons as well, they may be lurking there. If found, disable or delete.
Quote:
Quote:
__________________
siljaline MS MVP Alum . MVPS HOSTS . Rename Hosts . ESET for Business . 10 Immutable Laws of Security . System Lookup . ESET Threat Blog . MBAM Last edited by siljaline : February 24th, 2010 at 01:01 AM. Reason: removing incorrectly quoted text |
|
#5
|
||||
|
||||
|
Quote:
__________________
DefenseWall HIPS/Personal Firewall Emsisoft Anti-Malware 7.0 VoodooShield Look 'n' Stop Firewall (Phant0m Ruleset) |
|
#6
|
||||
|
||||
|
That is a valid BHO, leave as-is. I will post back more information to this thread later, when I am able to obtain more information.
Regards, Quote:
__________________
siljaline MS MVP Alum . MVPS HOSTS . Rename Hosts . ESET for Business . 10 Immutable Laws of Security . System Lookup . ESET Threat Blog . MBAM |
|
#7
|
||||
|
||||
|
Quote:
Okay, thanks siljaline.
__________________
DefenseWall HIPS/Personal Firewall Emsisoft Anti-Malware 7.0 VoodooShield Look 'n' Stop Firewall (Phant0m Ruleset) |
|
#8
|
||||
|
||||
|
The findings regarding the vulnerabilities in Adobe's download manager have been unfortunately inconclusive.
For those that wish to view the Download Manager FAQ, it is here. We in the security community are extremely disappointed of Adobe's overall performance as a software vendor and will continue to have this narrow view as long as Adobe remains the top Hacker target Quote:
__________________
siljaline MS MVP Alum . MVPS HOSTS . Rename Hosts . ESET for Business . 10 Immutable Laws of Security . System Lookup . ESET Threat Blog . MBAM Last edited by siljaline : February 27th, 2010 at 01:46 AM. Reason: additional comments |
|
#9
|
||||
|
||||
|
FWIW, I have removed 99% of Adobe from my W7 64 bit notebook.
I use Foxit Reader V3.2.1.0401 (free) to read pdf files now seems fine do far. The 1% of Adobe I haven't got yetdeals with Identity H and V in Adobe/Reader9.0/resource folder. Has anybody got any clues on how to wipe these out? It is a permissions issue from what I can tell.
__________________
Escalader ![]() i7 8 GB RAM Notebook, 1TB External Drive Sandboxie, Nod32, OP FW Pro, KeyScrambler, MVPS HOSTS File IE 9 Hardened Active X,SmartScreen,Tracking Protection Paragon Backup and Imaging |
|
#10
|
||||
|
||||
|
Some, out of privacy concerns are moving to Sumatra PDF Viewer, Escalader, though I have not tested it myself.
__________________
siljaline MS MVP Alum . MVPS HOSTS . Rename Hosts . ESET for Business . 10 Immutable Laws of Security . System Lookup . ESET Threat Blog . MBAM |
|
#11
|
||||
|
||||
|
Quote:
TY. Do you mean privacy visa via Adobe or Foxit reader? ![]() My FW rules prevent Foxit from using the www.
__________________
Escalader ![]() i7 8 GB RAM Notebook, 1TB External Drive Sandboxie, Nod32, OP FW Pro, KeyScrambler, MVPS HOSTS File IE 9 Hardened Active X,SmartScreen,Tracking Protection Paragon Backup and Imaging |
|
#12
|
||||
|
||||
|
You're welcome.
Foxit from a bloatware point of view, I have read numerous complaints since Foxit is the main replacement for Adobe Reader, etc, now. It has swelled somewhat. Otherwise I could not comment. Quote:
__________________
siljaline MS MVP Alum . MVPS HOSTS . Rename Hosts . ESET for Business . 10 Immutable Laws of Security . System Lookup . ESET Threat Blog . MBAM Last edited by siljaline : April 21st, 2010 at 03:13 PM. Reason: typo |
|
#13
|
||||
|
||||
|
Quote:
Well the Foxit web site has many addons they offer for a price.Maybe those cause bloat I don't have them so I don't know either. The free reader I just put in uses 29,000 k peak. So in my case with a 8MB RAM it has very little impact.
__________________
Escalader ![]() i7 8 GB RAM Notebook, 1TB External Drive Sandboxie, Nod32, OP FW Pro, KeyScrambler, MVPS HOSTS File IE 9 Hardened Active X,SmartScreen,Tracking Protection Paragon Backup and Imaging |
|
#14
|
||||
|
||||
|
Thanks for sharing as I was not aware and quite likely others were not, as well.
Regards, Quote:
__________________
siljaline MS MVP Alum . MVPS HOSTS . Rename Hosts . ESET for Business . 10 Immutable Laws of Security . System Lookup . ESET Threat Blog . MBAM |
|
#15
|
||||
|
||||
|
Quote:
Further to the Adobe removal matter, I have NOT been successful in: 1) Finding an un-installer from the Adobe site for Adobe reader (9.x) 2) Two files remain IDENTITY-H and IDENTITY-V. I have added them to my FW executable block list so OP thinks they can execute! That is interesting in itself! As well, for good measure I've anti-leaked them to maximum. (no injectables, no hooking, no keylogging etc) Any clues on how to rid these pests? PS here is the path C:\PROGRAM FILES (X86)\ADOBE\READER 9.0\RESOURCE\CMAP
__________________
Escalader ![]() i7 8 GB RAM Notebook, 1TB External Drive Sandboxie, Nod32, OP FW Pro, KeyScrambler, MVPS HOSTS File IE 9 Hardened Active X,SmartScreen,Tracking Protection Paragon Backup and Imaging Last edited by Escalader : April 24th, 2010 at 12:09 PM. Reason: add the path |
|
#16
|
||||
|
||||
|
@Escalader
First remove the blocks etc you've put in place, then use the windows search for Adobe and delete everything you feel is correct. Then use a reg cleaner and do the same. I've used those methods dozens of times over the years, with great success, hope you do too.
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air |
|
#17
|
||||
|
||||
|
Quote:
Hi Clone: Did all those steps that BUT these 2 files are locked/protected. I set Cleaner up to delete these BUT it failed. So did jv16. My temporary Blocks are preventing them from executing only not from being deleted. Thanks for replying. ![]()
__________________
Escalader ![]() i7 8 GB RAM Notebook, 1TB External Drive Sandboxie, Nod32, OP FW Pro, KeyScrambler, MVPS HOSTS File IE 9 Hardened Active X,SmartScreen,Tracking Protection Paragon Backup and Imaging |
|
#18
|
||||
|
||||
|
@Escalader
Quote:
Ok, just that you didn't say Try changing permissions on them and see if they unlock to delete. Also maybe try in safe mode.
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air |
|
#19
|
||||
|
||||
|
Quote:
Sorry, just hoping for an easier solution. Permission won't change. These 2 nasties owned by SYSTEM. When I try to alter the permissions I am not allowed. To change to full control is greyed out. Fun eh! I am in windows 7. UPDATE: VIA SPECIAL PERMISSIONS AND MOVING OWNERSHIP OF THESE FILES TO ME AS ADMIN I FINALLY DELETED THEM! NOW I'M GOING FOR THE ADOBE FOLDER, DON'T RECOMMEND THIS TO ANYBODY UNLESS YOU HAVE AN IMAGE BACKUP! (i HAVE)
__________________
Escalader ![]() i7 8 GB RAM Notebook, 1TB External Drive Sandboxie, Nod32, OP FW Pro, KeyScrambler, MVPS HOSTS File IE 9 Hardened Active X,SmartScreen,Tracking Protection Paragon Backup and Imaging Last edited by Escalader : April 24th, 2010 at 04:14 PM. |
|
#20
|
||||
|
||||
|
@Escalader
Just seen your edit ! Presumed you were already in Admin mode to attempt this If you still havn't managed to delete them, then i guess it's time for Unlocker Unlocker Quote:
http://ccollomb.free.fr/unlocker Used it many times and it's never failed for me, or lots of others. You might need to reboot afterwards. Don't install the EBAY shortcut option, unless you want to ![]()
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air |
|
#21
|
||||
|
||||
|
Quote:
Thanks for the tip ! I'll get the Unlocker in case I ever need it in the future.
__________________
Escalader ![]() i7 8 GB RAM Notebook, 1TB External Drive Sandboxie, Nod32, OP FW Pro, KeyScrambler, MVPS HOSTS File IE 9 Hardened Active X,SmartScreen,Tracking Protection Paragon Backup and Imaging |
|
#22
|
||||
|
||||
|
@Escalader
Quote:
Pleasure, it's a goody to have around. So does this mean that you totally Adobe free now ?
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air |
|
#23
|
||||
|
||||
|
Quote:
Yes! I reran jv16 and zapped all the 250 adobe entries in the register. Adobe is without doubt one of the most $%%#@@! pieces of intrusive software users have on their setups. If you pass your mouse over it it tries to phone home! The adobe is in my view not only hazardous it is a "bully". Locking those 2 IDENTITY files is an example of their mind set.
__________________
Escalader ![]() i7 8 GB RAM Notebook, 1TB External Drive Sandboxie, Nod32, OP FW Pro, KeyScrambler, MVPS HOSTS File IE 9 Hardened Active X,SmartScreen,Tracking Protection Paragon Backup and Imaging |
|
#24
|
||||
|
||||
|
@Escalader
Good news Never use Adobe myself, glad i don't ![]()
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|