Hmm… Not nice. AdwCleaner 6.000 found registry keys:
HKLM\SOFTWARE\Classes\FWTools.FWUtil
HKLM\SOFTWARE\Classes\FWTools.FWUtil.1
HKLM\SOFTWARE\Classes\SQLActiveScriptHost
HKLM\SOFTWARE\Classes\SWNGRE.uiMeshDecoWizardPage_c
and sure cleaned them out.
After reboot I looked up what a heck those keys was about and found they are all FloXpress utility in SolidWorks 2014. I’m using this program last 2 years and never had any problems with program nor viruses. Now SolidWorks crashes when starting FloXpress… So sad…
Check everything before you cleaning with AdwCleaner 6.000 !
Hi, I have an issue when i run "AdwCleaner 5.201". Whenever I run this particular version, my computer just hangs for few seconds, then starts functioning again. However, the AdwCleaner software doesn't start at all. I tried running the software several times. Same thing happens every time I try running the software. I downloaded twice again, after deleting the previous files, but to no avail. I also deleted all the temporary files, restarted the system, but was of no help.
I would like to know if the same thing or anything similar has happened to anyone and how was it resolved. Any help would really be appreciated. Thank you.
Would it be possible to whitelist the anydesk.exe process or service when it does the clean? Anydesk is a remote access software and adwcleaner kills the process or installed service when doing a cleanup.
i hope this is ligit. looks ligit. i get fake blue screen scams sometimes and usually end task and close the browser fixes it. but recently its getting more frequent and annoying so i downloaded this software. didn't find any malware but i'll keep scanning periodically to see if it catches anything.
Please set in all your softwares English language !!!
Thank you very much for this masterpiece of software. i was infected by some kind of zeroaccess. not the original one. the one i have is not to detect with "normal" and promoted methods like tdss killer and similar. i did many research and from the traces i found, i conclude it might be zeroaccess. no one was able to help me until now. not even so called "experts". everyone told me i didnt have any issue. then i ran your program. the log showed anything suspicious i found over the last months. and it directley fixed it. restarting the machine and.. everything gone. i still can not believe it. your a genius man. the only one who could help me. you can be proud of yourself. thank you very much. greetings andi.
I have a couple of false positives to report that keep getting flagged, but shouldn't be.
1. Under Scheduled Tasks, RunAsStdUser Task is C:\Program Files\GPSoftware\Directory Opus\dopus.exe
This is a legit Directory Opus entry.
2. Under Shortcuts, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraByte Unlimited\TeraByte OSD Tool Suite Pro\Ready To Run Scripts\INISTART - Reset Windows Startup.lnk
This is a legit Terabyte Image for Windows shortcut.
The new version is detecting this Registry Key:
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{196BB40D-1578-3D01-B289-BEFC77A11A1E}
And according with the Google "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" is the product code of Visual C++ 2010 Redistributable Package (x86).
I don't know if it should detect this registry key.
@ibanez0r You're welcome to continue using our free version of GlassWire indefinitely. Our free software is extremely powerful on its own and it never expires or stops working. We chose to interface with the Windows Firewall API because the Windows Firewall is used by over a billion Windows users world-wide. Also we think software that disables the Windows Firewall feels sketchy to us, but maybe we're just paranoid. :)
hi
Have the same key like the user "BakuDM" (see below) on my 3 laptops (maybe a false/positive-detection) :
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\3679CA35668772304D30A5FB873B0FA77BB70D54
see yahhhh....!