I think I have found a False Positive on 3.304. Scan has flagged AppleChargerSrv in Services and the file AppleChargerSrv.exe
This file has been on my PC since January 2013 from Gigabyte from my Motherboard which was new then. Although I do not use Apple it is not activated in services either. I have scanned the file with malwarebytes and McAfee I have a feeling this is a False Positive. Adwcleaner has never flagged this file before until now
Please, I need your help. After scanning my system with your product, I detected the following (from the report)
# AdwCleaner v3.303 - Report created 08/08/2014 at 10:38:47
# Updated 06/08/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Paulo - PAULO-PC
# Running from : C:\Users\Paulo\Desktop\Clean Up\AdwCleaner.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v0.0.0.0
-\\ Google Chrome v34.0.1847.116
[ File : C:\Users\Paulo\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Found [Extension] : eofcbnmajmjmplflapaojjnihcjkigck
*************************
AdwCleaner[R99].txt - [715 octets] - [08/08/2014 10:38:47]
########## EOF - C:\AdwCleaner\AdwCleaner[R99].txt - [775 octets] ##########
After the scan, Under Chrome found an Extension unknown.(see above)
Selected "Clean" - Program ran for a little then a message appeared:
Aut2Exe has stopped working.
A problem caused the program to stop working correctly.
Windows will close the program and notify you if a solution is available.
The faulty chrome Extension was not removed. My system is now unstable and had several dumps (blue screen). Avast, ESET, Malwarebytes and other reported nothing, only AdwCleaner.
Again, my system is now unstable, AdwCleaner is detecting that Chrome Extension but does abort before removing it. Any idea of what the problem is.
Please, contact me at padi5star@gmail.com if you have a solution. I will be away from my computer for 10 days, but I can receive emails.
Thank you.
Here is a log showing what was found on a PC that I had it crash on.
# AdwCleaner v3.303 - Report created 07/08/2014 at 15:00:51
# Updated 06/08/2014 by Xplode
# Operating System : Windows 8.1 (64 bits)
# Username : Robert - MAINPC
# Running from : C:\A.I.R\adwcleaner.exe
# Option : Scan
***** [ Services ] *****
Service Found : CltMngSvc
***** [ Files / Folders ] *****
File Found : C:\Users\Public\Desktop\eBay.lnk
File Found : C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage
File Found : C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage-journal
File Found : C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Found : C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
Folder Found : C:\Program Files (x86)\SearchProtect
Folder Found : C:\ProgramData\374311380
Folder Found : C:\ProgramData\Trymedia
Folder Found : C:\Users\Robert\AppData\Local\SearchProtect
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Data Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
Data Found : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll
Key Found : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Found : HKCU\Software\Optimizer Pro
Key Found : HKCU\Software\Trymedia Systems
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Found : [x64] HKCU\Software\Optimizer Pro
Key Found : [x64] HKCU\Software\Trymedia Systems
Key Found : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Found : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Found : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Found : HKLM\Software\SearchProtect
Key Found : HKLM\Software\Trymedia Systems
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17126
-\\ Google Chrome v36.0.1985.125
[ File : C:\Users\Guest\AppData\Local\Google\Chrome\User
v3.302 same sqlite3.dll errors constantly when scanning for browser issues.
//////// v3.302 - 30/07/14 //////// FR
- Mise à jour de la base de données
- Faux positifs supprimés
- Ajout de processus à la liste blanche
- Mise à jour du module de détection des tâches planifiées
- Ajout de la possibilité d'annuler le nettoyage avant la fermeture des processus
- Détection générique AdPeak mise à jour
//////// v3.302 - 30/07/14 //////// ENG
- Database update
- False positive removed
- Added processes to whitelist
- Updated scheduled task detections
- Added possibility to cancel cleaning before closing processes
- Generic.AdPeak detection updated
Merci encore pour tout le service rendu ;)
Hotspot Shield
https://gambetto.de/image/OF
https://gambetto.de/image/O0
https://gambetto.de/image/O3
***** [ Dienste ] *****
Dienst Gefunden : hshld
Dienst Gefunden : hsstrayservice
Dienst Gefunden : hsswd
***** [ Dateien / Ordner ] *****
Ordner Gefunden : C:\Program Files (x86)\hotspot shield
Ordner Gefunden : C:\ProgramData\hotspot shield
Ordner Gefunden : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\hotspot shield
Ordner Gefunden : C:\Users\Waldijs\AppData\Roaming\hotspot shield
Ordner Gefunden : C:\Windows\SysWOW64\hotspot shield
***** [ Tasks ] *****
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gefunden : HKCU\Software\anchorfree
Schlüssel Gefunden : [x64] HKCU\Software\anchorfree
Schlüssel Gefunden : HKLM\Software\hotspotshield
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\hotspotshield
Hallo
Bedankt
heb al wel 3 verschillende programatjes laten draaien,en niets kon die rommel verwijderen
thank you , thank jou
sonia
v3.301, getting SysWOW64\sqlite.dll errors when scanning browsers, scan never completes and no way to cancel the scan and clean what scan has already found.
Bonsoir,
Version 3.300 supprime toujours "Google Tool bare" et trouve une tâches planifiées à supprimer: RunAsStdUser, que la version 3.312 ne trouve pas.
Encore une fois cette tâches planifiées à supprimer revient en boucle...suppression faite, puis à nouveau là au contrôle suivant (2 minutes plus tard).
Version à revoir!!!!
//////// v3.300 - 27/07/14 //////// FR
- Mise à jour de la base de données
- Détection générique Crossrider mise à jour
- Détection générique Multiplug mise à jour
- Détection générique Tuto4PC mise à jour
- Ajout de la détection générique Skintrim
- Ajout de la détection générique AdPeak
- Ajout de la détection générique Illyx
- Ajout de la détection générique Sambreel
- Ajout de la détection générique DownloadProtect
- Mise à jour du module de détection des tâches planifiées
- Mise à jour des détections de la valeur DefaultScope
//////// v3.300 - 27/07/14 //////// ENG
- Database update
- Generic.Crossrider detection updated
- Generic.Multiplug detection updated
- Generic.Tuto4PC detection updated
- Generic.Skintrim detection added
- Generic.AdPeak detection added
- Generic.Illyx detection added
- Generic.Sambreel detection added
- Generic.DownloadProtect detection added
- Scheduled task detections updated
- DefaultScope detections updated
Get Malwarebytes for powerful protection against adware and threats.
Get Malwarebytes Now