@anonsubmitter, yes you are right. But, most free software downloaded on the Web come bundled up with useless crapware anyway. The YTD downloader box, if you don't want the app, can easily be unchecked while installing your main program. Unckeck all boxes for programs unrelated to the main program. If you need YTD or Hotspot Shield, they have a website where you can get them. No need to be bundled up to anything. They are already very popular. They both can be uninstalled very easily from Programs & Features, so they should not be removed by AdwCleaner. Removing Hotspot Shield this way messes up the Internet connection.
For those who don't usually pay attention while installing software, a program like Unchecky could be very useful. That way, you won't be flooding the malware removal forums all over the Web.
http://unchecky.com/
Just downloaded to update my version, but can't run it because Norton antivirus detects a thread and deletes it immediately. The threat is identified as 'Suspicious.Cloud.7.EP'.
Not sure if this is a false positive, but don't want to take a chance on it. Please verify the software, clean it if necessary and update the download link (or post a note). Txs.
OK! Issue solved! I had knowingly installed the iSafe Key-logger on that computer. This is supposedly invisible to cleaners and registry. AdwCleaner removed the invisible iSafe folder but not its registry entries. That caused instability in the system, probably related to the specificity of the key-loggers. Restoring the iSafe folder from within the AdwCleaner Quarantine Manager solved the issue. No need to do anything in the registry. I hope this helps!
Merci beaucoup, ce truc est sur et efficace, je l'utilise quand je m'apercoit que j'ai des pubs qui ne devraient pas exister (j'utilise adblock) et il les suprime a tout les coups! certains logiciels sur lesquels j'avait quelque doutes ont été suprimés aussi^^ c'est un bon outil
The following entries are false positives:
C:\Documents and Settings\User\Application Data\ProgSense (included with some software to look for updates - nothing malicious or deceiving)
C:\Documents and Settings\User\Application Data\Simple Adblock (adblocker now known as Adblock Plus knowingly installed by user for Internet Explorer)
C:\Documents and Settings\User\Local Settings\Application Data\Hola (knowingly installed by user)
HKCU\Software\ProgSense (included with some software to look for updates - nothing malicious or deceiving)
HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762} (belongs to ZoomBrowser EX, a Canon camera utility)
The following are proxy settings knowingly added by user:
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyEnable] - 1
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] - socks=localhost:1234
Thanks in advance for correcting the issue.
Merci pour ce logiciel miracle. Il a déjà débloqué des situations désespérées chez des personnes (amis, famille) que j'ai dépannées.
Une question: la dernière version (adwcleaner_4.110) signale "Everything", logiciel de recherche hyper-efficace et absolument indispensable que j'utilise en permanence depuis longtemps, comme élément à supprimer.
Pourquoi donc ?
bonjour meme avec la version 4.110 il y a toujours un faux positif pour le logiciel IDM (Internet Download Manager http://www.internetdownloadmanager.com/download.html ) si on supprime les clé de registre affichés cela demande ensuite de reinstaller IDM et on a toujours ce faux positif Rapport pour IDM:
Clé Trouvée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Clé Trouvée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Clé Trouvée : HKLM\SOFTWARE\Classes\CLSID\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Clé Trouvée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Clé Trouvée : [x64] HKLM\SOFTWARE\Classes\CLSID\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Clé Trouvée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}
egalement faux positif pour les logiciel Lastpass https://lastpass.com/misc_download2.php et faux positif pour le logiciel Driver Genius http://www.driver-soft.com/
I'm afraid I need to ask again. Seems my concern was overlooked. The problem can be seen on many computer help forums. Original message:
"AdwCleaner removes Hotspot Shield. However, many users have messed up their Internet connections in the process. If you're reading this, please see what you can do to correct the issue. Thanks"
I don't know why it's seeing Hotspot Shiled as adware. It's a legitimate application.
Thank you for fixing the issue, and for this very useful program.
Bonsoir Xplode
AdwCleaner 4.109 détecte bien ColorMedia et propose la suppression des services cmwr et cmwfp ainsi que la suppression des fichiers C:\WINDOWS\System32\drivers\cmwr.sys et C:\WINDOWS\System32\drivers\cmwf.sys mais au reboot du PC les services et les fichiers annoncés comme supprimés par AdwCleaner sont toujours là!
Voici un extrait du fichier des logs:
***** [ Services ] *****
[#] Service Supprimé : ColorMedia
Service Supprimé : cmwf
[#] Service Supprimé : cmwr
[#] Service Supprimé : CMWFP
***** [ Fichiers / Dossiers ] *****
Fichier Supprimé : C:\WINDOWS\System32\drivers\cmwr.sys
Fichier Supprimé : C:\WINDOWS\System32\drivers\cmwf.sys
Cordialement
latest update says it is not compatible with my operating system... windows 8.1 :/
before it was my favorite though.
Get Malwarebytes for powerful protection against adware and threats.
Get Malwarebytes Now