Falls es interessiert: Avast Free! erkennt AdwCleaner mal wieder als verdächtig und bezeichnet ihn als Win32:Evo-gen [Susp]
bonjour meme avec la version 4.110 il y a toujours un faux positif pour le logiciel IDM (Internet Download Manager http://www.internetdownloadmanager.com/download.html ) si on supprime les clé de registre affichés cela demande ensuite de reinstaller IDM et on a toujours ce faux positif Rapport pour IDM:
Clé Trouvée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Clé Trouvée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Clé Trouvée : HKLM\SOFTWARE\Classes\CLSID\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Clé Trouvée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Clé Trouvée : [x64] HKLM\SOFTWARE\Classes\CLSID\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Clé Trouvée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}
egalement faux positif pour les logiciel Lastpass https://lastpass.com/misc_download2.php et faux positif pour le logiciel Driver Genius http://www.driver-soft.com/
Hi again, I found the reports at C:\AdwCleaner. You may find them on the same link http://1drv.ms/16uCsum
Concerning the uninstall procedure I explained below, the pictures were actually from the Quarantine Manger. Thanks!
@cocochepeau Hi, As, after AdwCleaner requested to restart the computer after scan and clean, I was not able to log in anymore into the standard account from where I ran AdwCleaner, Therefore I didn't get the report, but I guess it should still be somewhere on my computer. I ran again AdwCleaner but with starting the scan, just to see if it sees the report, but the Report button is grayed out. I downloaded several versions of AdwCleaner, so I may not ran the same version. I don't know if that matters. On the other hand, if I press uninstall (without actually starting the uninstall) I see the files from the quarantine, but not the changes made to the registry. For the files you may take a look at: http://1drv.ms/16uCsum
Changing the standard account into admin allows to log in into the account. Changing it back into standard account brings back the failure to log in.
Actually, I get the same behavior on a newly created standard account: welcome, black screen and then logging off. I have Windows 7 Pro 64 bit. Thanks!
Hi, After running AdwCleaner and reboot I cannot log anymore in into my standard Windows 7 account, I get a black screen and then it makes log off. This is an account without password protection. I ran AdwCleaner from inside that standard account, by entering the admin password when asked. Luckily, I can still log in into my admin account. Is there anything to fix this issue? If not, can I undo what AdwCleanr did? Thanks!
@cocochepeau
Here are most of the entries I could find. I believe the Hotspot Shield drivers might be the culprit. One user had a driver inside Device Manager. Replacing that driver with one from another working computer seems to have corrected the connection issue.
Folder Deleted : C:\ProgramData\hotspot shield
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\hotspot shield
Folder Deleted : C:\Program Files (x86)\hotspot shield
Folder Deleted : C:\Windows\SysWOW64\hotspot shield
File Deleted : C:\Windows\System32\drivers\taphss6.sys
File Deleted : C:\Windows\System32\drivers\hssdrv6.sys
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\hotspotshield
Key Deleted : HKLM\SOFTWARE\hotspotshield
Key Deleted : HKCU\Software\anchorfree
Folder Found : C:\Users\Sid\AppData\Roaming\hotspot shield
Folder Found : C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\hotspot shield
Bonsoir Xplode
AdwCleaner 4.109 détecte bien ColorMedia et propose la suppression des services cmwr et cmwfp ainsi que la suppression des fichiers C:\WINDOWS\System32\drivers\cmwr.sys et C:\WINDOWS\System32\drivers\cmwf.sys mais au reboot du PC les services et les fichiers annoncés comme supprimés par AdwCleaner sont toujours là!
Voici un extrait du fichier des logs:
***** [ Services ] *****
[#] Service Supprimé : ColorMedia
Service Supprimé : cmwf
[#] Service Supprimé : cmwr
[#] Service Supprimé : CMWFP
***** [ Fichiers / Dossiers ] *****
Fichier Supprimé : C:\WINDOWS\System32\drivers\cmwr.sys
Fichier Supprimé : C:\WINDOWS\System32\drivers\cmwf.sys
Cordialement
Bonsoir,
Xplode pourrais-tu, partager ton email ou un formulaire de contact, j'ai crue savoir que tu dev sous Auto-It, j'en ai fait un peu, je dev principalement en VB.Net/C# mais se sont des langages assez proche et si tu le souhaite j'aimerais te donner un coup de main :)
Mise à jours automatique, gérer le logiciel en ligne de commande, outil de téléchargement sécurisé (de la bdd) ...
Tu peux aussi récup mon email dans mon profil en demandant à un admin et me contacter directement :)
Cdlt, DX90