Re: PUP.Legacy.Optional

Hi,

Don't panic, this is a classic "aggressive (scam) advertising" and a (real) false 'Zeus' alert! None zeus virus is present on your computer!

https://www.bleepingcomputer.com/virus-removal/remove-zeus-virus-detected-popups

https://blog.malwarebytes.com/threat-analysis/2017/06/the-numeric-tech-support-scam-campaign/

I've not seen yet MalwareBytes, ADWCleaner, HitmanPro, uBlock, adblock, a...

PUP.Legacy.Optional

Hello,

Windows10 Chrome -- month ago got a malware popup when on tunein radio. Along with the following popup, a voice came on and said "your pc is infected with Malware, do not ignore this, etc:

** Zeus Virus Detected  - Your Computer Has Been Blocked **

Error: Trojan Backdoor Hijack #365838d7f8a4fa5

---------------------------------------------------------------------

After running adwcl...

False Positive v7?

Today I stumbled upon this detection whilst using Adwcleaner 7.0.1.0:

***** [ Registry ] *****

PUP.Optional.YahooChrome, [Key] - HKLM\SOFTWARE\Yahoo\SS

Afterwards I scanned with other virusscanners (Malwarebytes, MBAR, and Roguekiller) and none of them detected aforementioned registery key. Thus, it seems like a false positive generated by adwcleaner. 

Can someone confirm this?

Kind regard...

Re: False Positives V7

ActiveX detection started after the new update. I am getting the same pop-ups. I can assure you it is not malware. ActiveX detections are usually guidelines for processes and services to follow. While they can be exploited, I doubt this is the case.

Re: My First Post: Are These Internet Explorer\ActiveX Compatibility Entries False Positives

ActiveX detections are usual FP's. Try doing an additional scan with Malwarebytes to confirm that. But I am fairly certain that these should not be detected. According to the internet and research that I did, ActiveX sets guidelines for processes, it can be exploited to some degree, but Adwcleaner would have removed them if found.

Re: False Positives V7

Hello,

Thanks for the feedback. Please also share a logfile showing these detections, thanks!

Re: More false positives

Hello,

These detections are not FPs - please refer to this page to ask for changes.

Best regards,

Re: Effacement RFA (Registry First Aid)

Erreur de ma part ! Problème avec version 7010 mais sur un autre ordi.

Mon ordi principal ne détecte pas RFA avec Adwcleaner car j'avais chargé 7020 Beta et il a conservé son programme malgré que je sois revenu à 7010.

Re: Effacement RFA (Registry First Aid)

Bonjour,

Pouvez-vous partager un rapport d'analyse montrant cette détection?

Re: More false positives

These are still detected, they're actually related to a music application too called MASCHINE by Native Instruments and pose no threat,

where as the registry detections are immunization entries created by either Spybot S&D or SpywareBlaster. Checked this several times over.

Would it be better to use the beta for now then ?