False Positive / Firefox Add On "Classic Theme Restorer 1.4.8"

Hello,

would you pls check above mentioned add on for F/P? It works for me for a long time without any problems and was never detected by any other security software.

########## EOF - C:\AdwCleaner\AdwCleaner[S25].txt - [7577 octets] ##########

# AdwCleaner v5.035 - Bericht erstellt am 21/02/2016 um 19:09:38
# Aktualisiert am 18/02/2016 von Xplode
# Datenbank : 2016-02-20.3 [Server]
# Betri...

Re: Keyboarding interruptions in Yahoo Mail

# AdwCleaner v5.035 - Logfile created 19/02/2016 at 09:00:12
# Updated 18/02/2016 by Xplode
# Database : 2016-02-18.5 [Server]
# Operating system : Windows 10 Home  (x64)
# Username : Owner - OWNER-PC
# Running from : C:\Users\Owner\Downloads\adwcleaner_5.035 (1).exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****

***** [ Folders ] *****

[-] Folder Deleted...

Re: Unable to remove some adware

# AdwCleaner v5.035 - Logfile created 19/02/2016 at 09:00:12
# Updated 18/02/2016 by Xplode
# Database : 2016-02-18.5 [Server]
# Operating system : Windows 10 Home  (x64)
# Username : Owner - OWNER-PC
# Running from : C:\Users\Owner\Downloads\adwcleaner_5.035 (1).exe
# Option : Cleaning
# Support : http://toolslib.net/forum


***** [ Services ] *****


***** [ Folders ] *****


[-] Folder Dele...

False Positives

File Found : C:\Users\xxxxx\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\xxxxxxxx.default\searchplugins\yandex.xml

https://www.virustotal.com/en/file/ab3b247fa04a01754d3f99f316ddace02605532d87ed68ae55f42f6ba9a8b60e/analysis/1455822342/

 

File Found : C:\Users\xxxxx\AppData\Roaming\Mozilla\Firefox\Profiles\xxxxxxxx.default\Extensions\{c72c0c73-4eb0-4fb3-af0f-074e97326cfd}.xpi

htt...

Re: Error during scan

Okay, I didn't mean for the debug log to be so illegible.

2016-02-16 22:49:13 : [Success] Retrieved 203 elements from 'generic_browsefox' table

2016-02-16 22:49:13 : [Success] Retrieved 70 elements from 'generic_crossrider' table

2016-02-16 22:49:13 : [Success] Retrieved 289 elements from 'generic_multiplug' table

2016-02-16 22:49:13 : [Success] Retrieved 157 elements from 'generic_mywebsea...

Error during scan

I just downloaded adwcleaner 5.034 and upon running a scan I recieve an error show in this image http://i.imgur.com/P5ZzROK.jpg

When running the program under debug mode this was the log it produced:

 

2016-02-16 22:49:13 : [Notice]        Scan started 2016-02-16 22:49:13 : [Success]        Internet connection is UP 2016-02-16 22:49:13 : [Success]        Loaded C:\Users\Michael\AppData\Local...

Re: False positive check

*sighs* Sorry to reply with this, but v.5.034 found another.
# AdwCleaner v5.034 - Creato file registro eventi 16/02/2016 in 22:48:02
# Aggiornato 16/02/2016 da Xplode
# Database : 2016-02-16.2 [Server]
# Sistema operativo : Windows 7 Home Premium Service Pack 1 (x86)
# Nome utente : Gakutenou - FROSTIE
# In esecuzione da : C:\Documents\Downloads\adwcleaner_5.034.exe
# Opzione : Analisi
# Supp...

Re: virus ask pcconverter

~ ZHPDiag v2016.2.11.28 Par Nicolas Coolman (2016/02/11)
~ Démarré par MACARIO (Administrator)  (2016/02/14 14:04:18)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version:  Version OK
~ Mode: Scanner
~ Rapport: C:\Users\MACARIO\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\MACARIO\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du...

Re: virus ask pcconverter

# AdwCleaner v5.033 - Rapport créé le 13/02/2016 à 20:42:36
# Mis à jour le 07/02/2016 par Xplode
# Base de données : 2016-02-07.2 [Serveur]
# Système d'exploitation : Windows Vista (TM) Business  (x86)
# Nom d'utilisateur : MACARIO - PC-DE-MACARIO
# Exécuté depuis : J:\adwcleaner_5.033.exe.download\adwcleaner_5.033.exe
# Option : Nettoyer
# Support : http://toolslib.net/forum

***** [...

Missed remnants

on AdwCleaner by ****

http://www53.zippyshare.com/v/6kLWyXpr/file.html

Could you blacklist them? Password for the archive is "infected".

Also, please add this registry key created by some download managers, if not already detected:

HKEY_CURRENT_USER\Software\1Q1F1S1C1P1E1C1F1N1C1T1H2UtF1E1I

 


Protect Your PC from Malware

Get Malwarebytes for powerful protection against adware and threats.

Get Malwarebytes Now