The tool couldn't kill the adware

Hi,

I have used the tool trying to remove an adware, but no results.

Here is the link of the malicious file:

[WARNING]: DON'T DOWNLOAD IF YOU ARE NOT A DEVELOPER

http://filesdownlall.ru/?file=adware  

Update:

It looks like the malicious URL doesn't download the file now, so i uploaded the file here.

Update 2:

After some investigation, it turned out that proxy settings have been manipula...

Re: AdwCleaner 7.0.4.0 not a valid application

dans AdwCleaner par dschulze

I am using Firefox 56.0.2, with DownThemAll download manager addon. I get the same results as Psajko above.

Yes, it makes a difference if I download it in another browser, or in Firefox without using DTA. Now I've got the right file. (There must be a bug in DTA.) Thank you.

Re: Impossible de supprimer Nophilos.exe

ref https://toolslib.net/forum/viewthread/13492-processus-are-normal/

[PC] Lista de Tareas Activas. Nom de l'image PID Nom de la sessio Num‚ro de s Utilisation ========================= ======== ================ =========== ============ System Idle Process 0 Services 0 24 Ko System 4 Services 0 324 Ko smss.exe 392 Services 0 104 Ko csrss.exe 504 Services 0 2˙092 Ko wininit.exe 560 Services 0 5...

driveragent.sys faux positif?

dans AdwCleaner par did80

sur le forum de nicolas coolman j'ai ceci

 

# AdwCleaner 7.0.3.0 - Logfile created on Thu Oct 12 03:18:34 2017 # Updated on 2017/28/09 by Malwarebytes  # Database: 09-27-2017.1 # Running on Windows 7 Home Premium (X64) # Mode: scan # Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

****...

This processus are normal ?

[PC] Lista de Tareas Activas. Nom de l'image PID Nom de la sessio Num‚ro de s Utilisation ========================= ======== ================ =========== ============ System Idle Process 0 Services 0 24 Ko System 4 Services 0 324 Ko smss.exe 392 Services ...

Required Registries Removed?

I recently did scans that removed the listed registry files. Will this cause problems, or are they safe to remove?

 

PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-1745523471-2157326767-3355521870-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09242017083000032\Software\Host App Service

PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-1745523471-2157326767-3355521870-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260...