comment

on AdwCleaner's page

from kinnonii, (27 september 2014)

Hola. Quiero añadir un feedback para Xplode, creador de AdwCleaner, y es que el análisis del programa detecta como adware la carpeta C:\Program Files\Skillbrains. Skillbrains es la carpeta donde se instala el gestor de capturas de pantalla 'Lightshot' (http://prntscr.com/)." target="_blank">http://prntscr.com/). Quisiera que para futuras revisiones de ADWcleaner esta carpeta sea excluida, ya que una vez esta utilidad fuer eliminada por error de mi sistema. Saludos.
Captura: http://prntscr.com/4qr0sq" target="_blank">http://prntscr.com/4qr0sq

Hi, I would like to give a feedback to Xplode, creator of ADWCleaner. When it analyzes my system, it detects the C:\Program Files\Skillbrains folder as adware, when it's not. That's the folder where Lightshot, a screen capture tool (http://prntscr.com), is installed, and it's not any adware o malicious software. I would like that folder to be excluded from adware detections on future ADWcleaner revisions. Greetings.
Screen capture: http://prntscr.com/4qr0sq" target="_blank">http://prntscr.com/4qr0sq

comment

on AdwCleaner's page

from ****, (02 september 2014)

Also cannot download as Norton blocks and removes it. Here is copy of Norton details:


Filename: adwcleaner[1].exe
Threat name: Trojan.Gen.SMH
Full Path: c:\users\admin\appdata\local\microsoft\windows\temporary internet files\content.ie5\0xz70k18\adwcleaner[1].exe
____________________________
Details
Unknown Community Usage,  Unknown Age,  Risk High

Origin
Downloaded from
 http://download.bleepingcomputer.com/dl/ccc7b1be60ac8b673cbab8cd91aea0c9/5405e713/windows/security/security-utilities/a/adwcleaner/AdwCleaner.exe

Activity
Actions performed: Actions performed: 1
____________________________
On computers as of 
9/2/2014 at 8:45:45 AM
Last Used 
9/2/2014 at 9:49:52 AM
Startup Item 
No
Launched 
No
____________________________
Unknown
It is unknown how many users in the Norton Community have used this file.
Unknown
This file release is currently not known.
High
This file risk is high.
Threat type: Virus. Programs that infect other programs, files, or areas of a computer by inserting themselves or attaching themselves to that medium.
___________________________
http://download.bleepingcomputer.com/dl/ccc7b1be60ac8b673cbab8cd91aea0c9/5405e713/windows/security/security-utilities/a/adwcleaner/AdwCleaner.exe
Downloaded File adwcleaner[1].exe Threat name: Trojan.Gen.SMH
from bleepingcomputer.com
Source: External Media
adwcleaner[1].exe
___________________________
File Actions
File: c:\Users\ADMIN\AppData\Local\microsoft\Windows\temporary internet files\Content.IE5\0XZ70K18\ adwcleaner[1].exe Removed
____________________________
File Thumbprint - SHA:
f303a32ba4a44ae7d25b73f5b6f3f2c3dcf6d9970ebf88de816b399eedce80b1
File Thumbprint - MD5:
Not available

comment

on AdwCleaner's page

from libeccio42, (08 august 2014)

Please, I need your help. After scanning my system with your product, I detected the following (from the report)
# AdwCleaner v3.303 - Report created 08/08/2014 at 10:38:47
# Updated 06/08/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Paulo - PAULO-PC
# Running from : C:\Users\Paulo\Desktop\Clean Up\AdwCleaner.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v0.0.0.0
-\\ Google Chrome v34.0.1847.116
[ File : C:\Users\Paulo\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Found [Extension] : eofcbnmajmjmplflapaojjnihcjkigck
*************************
AdwCleaner[R99].txt - [715 octets] - [08/08/2014 10:38:47]
########## EOF - C:\AdwCleaner\AdwCleaner[R99].txt - [775 octets] ##########

After the scan, Under Chrome found an Extension unknown.(see above)
Selected "Clean" - Program ran for a little then a message appeared:
Aut2Exe has stopped working.
A problem caused the program to stop working correctly.
Windows will close the program and notify you if a solution is available.

The faulty chrome Extension was not removed. My system is now unstable and had several dumps (blue screen). Avast, ESET, Malwarebytes and other reported nothing, only AdwCleaner.
Again, my system is now unstable, AdwCleaner is detecting that Chrome Extension but does abort before removing it. Any idea of what the problem is.
Please, contact me at padi5star@gmail.com if you have a solution. I will be away from my computer for 10 days, but I can receive emails.
Thank you.

comment

on AdwCleaner's page

from ketkirk, (08 august 2014)

Here is a log showing what was found on a PC that I had it crash on.

# AdwCleaner v3.303 - Report created 07/08/2014 at 15:00:51
# Updated 06/08/2014 by Xplode
# Operating System : Windows 8.1 (64 bits)
# Username : Robert - MAINPC
# Running from : C:\A.I.R\adwcleaner.exe
# Option : Scan

***** [ Services ] *****

Service Found : CltMngSvc

***** [ Files / Folders ] *****

File Found : C:\Users\Public\Desktop\eBay.lnk
File Found : C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage
File Found : C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage-journal
File Found : C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Found : C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
Folder Found : C:\Program Files (x86)\SearchProtect
Folder Found : C:\ProgramData\374311380
Folder Found : C:\ProgramData\Trymedia
Folder Found : C:\Users\Robert\AppData\Local\SearchProtect

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Data Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
Data Found : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll
Key Found : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Found : HKCU\Software\Optimizer Pro
Key Found : HKCU\Software\Trymedia Systems
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Found : [x64] HKCU\Software\Optimizer Pro
Key Found : [x64] HKCU\Software\Trymedia Systems
Key Found : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Found : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Found : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Found : HKLM\Software\SearchProtect
Key Found : HKLM\Software\Trymedia Systems

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17126


-\\ Google Chrome v36.0.1985.125

[ File : C:\Users\Guest\AppData\Local\Google\Chrome\User

comment

on AdwCleaner's page

from Edelweiss, (31 july 2014)

Bonjour,

Version 3.302......trouve à nouveau des tâches planifiée:

***** [ Tâches planifiées ] *****

Tâche Présente : GoforFilesUpdate
Tâche Présente : ProgramRefresh-ATFST
Tâche Présente : ProgramUpdateCheck

La version précédente 3.301 ne trouvait pas ces tâches planifiées.

Conclusion: Version à revoir.....

Bonne journée

comment

on AdwCleaner's page

from Waldijs, (30 july 2014)

Hotspot Shield
https://gambetto.de/image/OF
https://gambetto.de/image/O0
https://gambetto.de/image/O3

***** [ Dienste ] *****

Dienst Gefunden : hshld
Dienst Gefunden : hsstrayservice
Dienst Gefunden : hsswd

***** [ Dateien / Ordner ] *****

Ordner Gefunden : C:\Program Files (x86)\hotspot shield
Ordner Gefunden : C:\ProgramData\hotspot shield
Ordner Gefunden : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\hotspot shield
Ordner Gefunden : C:\Users\Waldijs\AppData\Roaming\hotspot shield
Ordner Gefunden : C:\Windows\SysWOW64\hotspot shield

***** [ Tasks ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Schlüssel Gefunden : HKCU\Software\anchorfree
Schlüssel Gefunden : [x64] HKCU\Software\anchorfree
Schlüssel Gefunden : HKLM\Software\hotspotshield
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\hotspotshield

comment

on AdwCleaner's page

from bosodeniro, (15 july 2014)

Greetings AdWareCleaner Users & Developers: I have QUESTIONS please - How come my adwcleaner as an installed application under Vista isn't listed under my "All Programs"? ... How Come adwcleaner deletes installed apps I paid for like my Paretologic Registry Cleaner and its PCHA? Are Registry Cleaners as a group considered potential adware or malware? ... Are they even worth having? Why is there even a tab for Registry Cleaner on AdWareCleaner? ... How come there isn't a preview screen that I can edit before AdwCleaner deletes or quarantines its targeted folders or files? ... The old version of AdWareCleaner I had was installed on my desktop, how come the new one isn't? ... Is there any relationship between AdwareCleaner and MalWareBytes? How can I get back deleted or quarantined applications, files, and folders? Is there a help file I can read to spare us all from my tedious annoying questions? Instead of donating i would prefer a paid application I could buy. Thank you. (and can you post answers to PeterR5@Hotmail.com with subject line "AdWareCleaner Queries")

comment

on AdwCleaner's page

from GG84, (03 july 2014)

Bonjour,

Est t'il prévu de pouvoir lancer AdwCleaner en ligne de commande ? Par exemple, "adwcleaner.exe /scan -remove" lancerait un scan des fichiers malveillants, puis les supprimeraient, tout cela en arrière plan avec peut être un log directement dans la console (par ex: "Scanning folders... Done!" etc.)

Merci,

-------------------------------

Are there any plans you can launch AdwCleaner in command line? For example, "adwcleaner.exe / scan -remove" will launch a scan of malicious files and then would remove all, in the background. With maybe a log directly into the console (eg "Scanning folders ... Done!" etc.)

Thanks a lot.

comment

on AdwCleaner's page

from ****, (24 june 2014)

When the program quarantines a program, it marks every file in subfolders [filename].[ext].vir. A few hundred movie files were named in this way, would it be possible to change that behaviour so that only executables are marked in this way?

comment

on AdwCleaner's page

from libeccio42, (19 may 2014)

Help please - I run regularly AdwCleaner (most up to date) and I always find items flagged in Chrome - I click on the clean button and after rebooting I found the following:
# AdwCleaner v3.210 - Report created 19/05/2014 at 13:19:25
# Updated 19/05/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Paulo - PAULO-PC
# Running from : C:\Users\Paulo\Desktop\Clean Up\AdwCleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v0.0.0.0
-\\ Google Chrome v34.0.1847.116
[ File : C:\Users\Paulo\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
Deleted [Search Provider] : hxxp://search.aol.com/aol/search?query={searchTerms}
Deleted [Search Provider] : hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=dsites0103&cd=2XzuyEtN2Y1L1QzuzytDtB0BtAyEtAtC0D0A0ByCyDtB0DzytN0D0Tzu0CyByByDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=938586735&ir=
Deleted [Startup_urls] : hxxp://search.conduit.com/?ctid=CT3306061&SearchSource=48&CUI=UN25144629123183723&UM=2
Deleted [Startup_urls] : hxxp://start.mysearchdial.com/?f=1&a=dsites0103&cd=2XzuyEtN2Y1L1QzuzytDtB0BtAyEtAtC0D0A0ByCyDtB0DzytN0D0Tzu0CyByByDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=938586735&ir=
*************************
AdwCleaner[R47].txt - [1467 octets] - [19/05/2014 13:18:36]
AdwCleaner[S21].txt - [1397 octets] - [19/05/2014 13:19:25]

I assume the Chrome items are delete. I run AdwCleaner again, and they seem to be gone. If I run again AwdCleaner a few hours later, the items are back. Where are they coming from? How can I clean them permanently? I do not have ask.com nor aol.com. Please, help.
Contact at pady5star@gmail.com - thanks
########## EOF - C:\AdwCleaner\AdwCleaner[S21].txt - [1458 octets] ##########