Re: - False Positives -

# AdwCleaner v5.116 - Logfile created 09/05/2016 at 16:51:00 # Updated 09/05/2016 by Xplode # Database : 2016-05-09.1 [Server] # Operating system : Windows 10 Pro  (X64) # Username : Admin - CORE-I7-950 # Running from : D:\Shared Folder\Egso\AdwCleaner v5.116 (09-05-2016)\adwcleaner_5.116.exe # Option : Clean # Support : http://toolslib.net/forum

***** [ Services ] *****

***** [ Folders ] **...

Re: - False Positives -

# AdwCleaner v5.032 - Relatório criado 06/02/2016 às 12:58:17 # Atualizado 31/01/2016 por Xplode # Banco de dados : 2016-02-05.1 [Servidor] # Sistema operacional : Windows 8.1 Pro  (x86) # Usuário : NEO - DESKTOP # Executando de : C:\Users\NEO\Desktop\SEGURANÇA\adwcleaner_5.032.exe # Opção : Limpar # Apoio : http://toolslib.net/forum

***** [ Serviços ] *****

***** [ Pastas ] *****

[-] Pasta...

Re: Probablement faux positif v5.115

Pardon the possibly obvious question, but by "session" do you mean browser session or OS session?


Clovers, 2016-05-07 17:08:50 (UTC)

After some tests, the key remains during the current OS session only.

Re: Probablement faux positif v5.115

Hello,

@User547952 : this key does not belong to Mozilla Firefox only. Mozilla Firefox creates this key only for a limited time (the current session). However, we target the same key created by several malwares, which is not deleted when the current session is terminated.

It's a corner case, but we'll look deeper to see what we can do about that..

Best regards,


fr33tux, 2016-05-06 18:45:56...

Re: Probablement faux positif v5.115

I also get "[ Registry ] >Key Found : HKCU\Software\Classes\Applications\updater.exe"

with both the update to Firefox 46.0.1 and with a full download from [ https://www.mozilla.org/en-US/firefox/all/ ]

Log file =Edit to remove unneed information IMHO

2 Scans

# AdwCleaner v5.115 - Logfile created 05/05/2016 at 17:33:36 # Updated 01/05/2016 by Xplode # Database : 2016-05-04.2 [Server] # Opera...

Re: NoScript Suite Lite flagged

Sure .. here you go: =======================

# AdwCleaner v5.115 - Logfile created 05/05/2016 at 18:37:24
# Updated 01/05/2016 by Xplode
# Database : 2016-05-04.2 [Server]
# Operating system : Windows 8.1 Pro (X64)
# Username : PCUser - MEAGAIN
# Running from : D:\__DownloadZ\AdwCleaner_5.115.exe
# Option : Scan
# Support : http://toolslib.net/forum


***** [ Services ] *****

***** [ Folders...

Re: internet navigation problem

Bonsoir,

J'ai vu ce post sur CCM, tu continue avec Malekal ou avec moi ?

On va donc partir sur un script ZHPFix :

On va utiliser ZHPFix, un logiciel de Nicolas Coolman, afin de supprimer quelques éléments :

  • Rends toi sur la page de téléchargement de ZHPFix, puis clique sur le bouton bleu "Nicolas Coolman - Télécharger".
  • Enregistre le fichier où tu veux et lance le (fais le par un clic-droi...

Re: internet navigation problem

---\\ Liste des pilotes du système (63) - 13s O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys   [108896]  =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport  Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys   [782176]  =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:41...

Re: internet navigation problem

---\\ Modification Domaine/Adresses DNS (6) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.8.4  =>.Google Public DNS O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{37F650BF-BA0B-48A5-9CEA-54F1E05D1189}: DhcpNameServer = 82.163.142.7  =>PUP.Optional.DNSUnlocker O17 - HKLM\System\CC...

Re: internet navigation problem

~ ZHPDiag v2016.5.3.93 Par Nicolas Coolman (2016/05/03) ~ Démarré par thomas (Administrator)  (2016/05/03 17:06:16) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version:  Version OK ~ Mode: Scanner ~ Rapport: C:\Users\thomas\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\thomas\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du sys...