All Activity

This stream auto-updates     

  1. Last week
  2. Due to lack of feedback, this topic has been closed.If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.Thank You !
  3. Due to lack of feedback, this topic has been closed.If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.Thank You !
  4. Earlier
  5. Hi Cin, Of course adaware antivirus isn't a virus, but all antivirus programs are difficult to uninstall since they need to be protected from virus and other malicious programs that want to disable (or uninstall) them. Does adaware antivirus want to update the program itself (you installed an old version) or the definitions? In the latter case: Is the computer connected to internet with a VPN connection or a proxy server? Which antivirus program did you use before installing adaware antivirus? Did you use that programs special Removal/Uninstallation tool? If not, there might be left-overs that disturbs the installation of adaware antivirus. Please use Removal Tool after the normal uninstallation of adaware antivirus: https://www.adaware.com/removal-tool
  6. I'm highly suspicious of adaware now - after installing, then after initial scan it kept prompting me to "update" and it WOULD NOT UPDATE! Also, why in the world is it so difficult to remove?!?! Uninstalling alone WILL NOT DO THE TRICK! Is this a virus?????
  7. Hey! It's gone! Thanks so much!!
  8. Hi Jim, Don't you see the full path when you hover with the mouse above the abbreviated path? You can look at more details and download the detailed scan report, see https://www.adaware.com/user-guide/scan_reports,
  9. After my first scan, I had a bunch of possibilities. I want to look at each one and evaluate the file(s) But The program will not give me the entire path to the file! How do I get this to appear?
  10. Hello! You can try to change default search engine and reset browser's settings. Do such actions in Chrome browser Menu->Settings-> Search engine or open an address chrome://settings/search , select Google or another search engine as default. Go to Advanced settings and choose tab "Restore and clean up" and do "Restore settings to their original defaults" If the same Phishing warning will appear again we'll try to find a service that makes changes to Chrome.
  11. Try to reset Chrome: https://support.google.com/chrome/answer/3296214 Note, it's possible that nothing is wrong in your computer and it might be a false positive from AVG or that the web sites (or ads on the pages) where it occurs really are infected and the message is needed to protect you from a phishing attempt. Please see this AVG topic: https://support.avg.com/answers?id=9060N000000PgujQAC
  12. Deleted Honey....Deleted Java. Still have problem. Only seems to work on Chrome. Attached is screen shot. Seems to target Amazon most of the time but not always. Will even redirect from icons in Facebook & Pizzahut too
  13. Thanks, not easy to find anything malicious in the logs. When did the problem with r.eablink start, e.g. when you installed FonePaw Screen Recorder on August 29 or before that? Do you notice r.eablink in all three browsers? Please attach a screen shot of r.eablink. I can see that you installed the add-on Honey in Chrome August 27. It seems to be questionable: https://www.systemlookup.com/FF_Extensions/3662-jid1_93CWPmRbVPjRQA_jetpack_xpi.html The above is a very old Java version with many known vulnerabilities, please uninstall it. If you really need to have Java installed, it's important to always have the latest version.
  14. here are the logsFRST.txtAddition.txt
  15. Hi NDJeff, Please see this topic: https://forum.adaware.com/index.php?/topic/30823-read-this-before-you-post/
  16. Run scan but still have e.eablink virus.. adaware can't find it. Here is the URL https://r.eablink.com/?key=a982cfabb5482be54a4d3a52b21940d7&cuid=US&u=https%3A%2F%2Fwww.pizzahut.com%2F My AVC will block it but want to remove all of it. Thanks, Jeff
  17. Hi rwb8aa, Please see this topic: https://forum.adaware.com/index.php?/topic/35079-problem-with-activation-of-paid-versions-of-adaware-antivirus-12/
  18. I have 3 Adaware Pro accounts. One recently contracted a virus that took out the Microsoft Edge browser, my keyboard for that browser, and my Adaware account. I could not access it. I deleted the account and reinstalled a new "trial" account. It would not take my key, telling me to "try again later". I have tried again several times, same response. I ran a full scan with the trial Adaware and it found the virus, but unfortunately, it did not delete it. I tried to use the email for help from the support tab, but emails will not send from there....just says "loading" forever. I have two questions. 1. How can I get my active key to work on the trial account. 2. How can I contact Adaware directly?
  19. Hi leejcarol, Why have you copied information, including log file, from a more than 10 year old topic? https://forum.adaware.com/index.php?/topic/21766-error-1814/
  20. Hi, I am new to this forum. I attempted to run the AdWare program but got an error message: "not more than one of this application can be running at any time"; also got an error message 1814. When I searched this on this forum I found advice to download and run Hijack This and send the log. I have downloaded, installed and now have the system log. So is this where I should attach or post my system log? Please advise. Thank you, Here is the log file Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 3:46:54 PM, on 11/16/2008 Platform: Windows 2000 SP4 (WinNT 5.00.2195) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Boot mode: Normal Running processes: C:\WINNT\System32\smss.exe C:\WINNT\system32\winlogon.exe C:\WINNT\system32\services.exe C:\WINNT\system32\lsass.exe C:\WINNT\system32\svchost.exe C:\WINNT\system32\spoolsv.exe C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINNT\system32\svchost.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\WINNT\system32\nvsvc32.exe C:\WINNT\system32\MSTask.exe C:\WINNT\system32\slserv.exe C:\WINNT\system32\stisvc.exe C:\WINNT\System32\WBEM\WinMgmt.exe C:\WINNT\system32\svchost.exe C:\WINNT\Explorer.EXE C:\WINNT\SOUNDMAN.EXE C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Ahead\InCD\InCD.exe C:\BITWARE\NT\bwprnmon.exe C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe C:\WINNT\system32\ntvdm.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\WINNT\system32\rundll32.exe C:\Program Files\Lexmark 8300 Series\lxcjmon.exe C:\Program Files\Lexmark 8300 Series\ezprint.exe C:\Program Files\First Principle Group\fpg.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\WINNT\system32\ctfmon.exe C:\Program Files\AWS\WeatherBug\Weather.exe C:\Program Files\eFax Messenger 4.3\J2GTray.exe C:\WINNT\system32\lxcjcoms.exe C:\Program Files\Lavasoft\Ad-Aware\Ad-Aware.exe C:\WINNT\system32\mshta.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://my.juno.com/s/search?r=minisearch R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://my.juno.com/s/search?r=minisearch R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://my.juno.com/s/search?r=minisearch R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://my.juno.com/s/search?r=minisearch R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://my.juno.com/s/search?r=minisearch R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://my.juno.com/s/search?r=minisearch R3 - URLSearchHook: URLSearchHook Class - {37D2CDBF-2AF4-44AA-8113-BD0D2DA3C2B8} - C:\Program Files\JUSearch\SearchEnh1.dll R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: PCCBHO.CPCCBHO - {22FC6CE8-7D47-479F-B74A-BFBB04ADB9AF} - C:\Program Files\Winferno\PC Confidential\PCCBHO.dll O2 - BHO: X1IEHook Class - {52706EF7-D7A2-49AD-A615-E903858CF284} - C:\Program Files\Juno6\qsacc\X1IEBHO.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O2 - BHO: mail.com - {CD292324-974F-4224-CE6F-CC9441768F5D} - C:\PROGRA~1\mail.com\Toolbar\Toolbar.dll O3 - Toolbar: @msdxmLC.dll,[email protected],&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx O3 - Toolbar: mail.com - {CD292324-974F-4224-CE6F-CC9441768F5D} - C:\PROGRA~1\mail.com\Toolbar\Toolbar.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O4 - HKLM\..\Run: [synchronization Manager] mobsync.exe /logon O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINNT\system32\NeroCheck.exe O4 - HKLM\..\Run: [inCD] C:\Program Files\Ahead\InCD\InCD.exe O4 - HKLM\..\Run: [bwprnmon.exe] C:\BITWARE\NT\bwprnmon.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" O4 - HKLM\..\Run: [eFax 4.3] "C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe" /R O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [LXCJCATS] rundll32 C:\WINNT\system32\spool\DRIVERS\W32X86\3\LXCJtime.dll,[email protected] O4 - HKLM\..\Run: [lxcjmon.exe] "C:\Program Files\Lexmark 8300 Series\lxcjmon.exe" O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark 8300 Series\ezprint.exe" O4 - HKLM\..\Run: [First Principle Group] C:\Program Files\First Principle Group\fpg.exe /s O4 - HKCU\..\Run: [spc_w] "C:\Program Files\JUSearch\juspc.exe" -w O4 - HKCU\..\Run: [Mail.com] C:\Program Files\mail.com\mcalert.exe -auto O4 - HKCU\..\Run: [ctfmon.exe] ctfmon.exe O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKCU\..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe 1 O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe /desktop (User 'Default user') O4 - Global Startup: eFax 4.3.lnk = C:\Program Files\eFax Messenger 4.3\J2GTray.exe O4 - Global Startup: Microsoft Office OneNote 2003 Quick Launch.lnk = C:\Program Files\OFFICE11\ONENOTEM.EXE O8 - Extra context menu item: Display All Images with Full Quality - res://C:\Program Files\Juno6\qsacc\appres.dll/228 O8 - Extra context menu item: Display Image with Full Quality - res://C:\Program Files\Juno6\qsacc\appres.dll/227 O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra button: (no name) - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - C:\Program Files\Winferno\PC Confidential\PCConfidential.exe O9 - Extra 'Tools' menuitem: PC Confidential - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - C:\Program Files\Winferno\PC Confidential\PCConfidential.exe O9 - Extra button: PC Confidential - {925DAB62-F9AC-4221-806A-057BFB1014AA} - C:\Program Files\Winferno\PC Confidential\PCConfidential.exe O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\OFFICE11\REFIEBAR.DLL O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINNT\system32\Shdocvw.dll O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O16 - DPF: {02A2D714-433E-46E4-B217-7C3B3FAF8EAE} (ScrabbleCubes Control) - https://www.wealthwords.com O16 - DPF: {1A1F56AA-3401-46F9-B277-D57F3421F821} (FunGamesLoader Object) - https://www.wealthwords.com/puzzles/online-crosswords-games/ O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - https://www.wealthwords.com/puzzles/interactive-story-games-online O16 - DPF: {97438FE9-D361-4279-BA82-98CC0877A717} (Cubis Control) - https://www.wealthwords.com/puzzles/special-crosswords O16 - DPF: {A52FBD2B-7AB3-4F6B-90E3-91C772C5D00F} (WoF Control) - https://www.wealthwords.com/puzzles/active O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - https://www.wealthwords.com/blog/real-money-making-games/ O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: lxcj_device - - C:\WINNT\system32\lxcjcoms.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe O23 - Service: SmartLinkService (SLService) - - C:\WINNT\SYSTEM32\slserv.exe -- End of file - 9305 bytes
  21. You're welcome If that is the case, adaware antivirus would find it during a scan of the computer, or when you use it. Since all antivirus programs can miss some files, you can upload it to https://www.virustotal.com/ to check it against many antivirus programs. You can do that with your own app too and since adaware antivirus gets many definitions from Bitdefender, if it is flagged by Bitdefender, please upload it to Bitdefender: https://www.bitdefender.com.au/support/what-to-do-when-bitdefender-detected-a-clean-file-as-infected-(false-positive)-851.html
  22. Hi Cecilia, I can't just ignore this because I need to distribute my app. It must be clean and not be flagged as infected. It's not my code I am concerned with, but Microsoft Visual Studio links in many libraries and the C++ runtime binaries, which could perhaps be infected or trigger false positives. Either way, I must fix it and I would appreciate any help. The 2010 version of MSVC is obviously old, but that should not be an issue, is it? Maybe the MSVC executable is infected, but shouldn't Adaware clean that? Thanks, Clay
  23. Hi Clay, I've reported your issue to my contact person. I assume it's a false positive and you aren't writing malicious code. Please note that you can exclude folders in adaware antivirus: https://www.adaware.com/user-guide/manage_exclusions I think that is a good solution to configure development folders to not be scanned.
  24. Can you check that you do as described in the attached instruction, just to be sure. Steps to check other disc.docx
  25. Hello, I am compiling a program named "Lightwing" using Microsoft Visual Studio Express 2010. Adaware claims it contains a trojan virus and deletes it even though I just compiled it. Each time I recompile lw.exe the virus is reported again. I have attached my freshly compiled lw.exe and the Adaware report log lists this: <InfectedObject ObjectType="File" ObjectPath="\\?\C:\lightwing\source\build\WindowsVC2010\Release\lw.exe" ParentContainers="" InnerObject="" ObjectStatus="Deleted" ThreatType="Virus" ThreatName="Gen:Variant.Trojan.Crypt.64" /> Please advise if this is a false positive and how should I fix it. Thanks, Clay lw.exe
  26. Sorry, but my contact person hasn't received an answer from the developers yet.
  1. Load more activity