Sign in to follow this  
sky_yoshi

Installation issue: "Cannot be executed in this machine"

Recommended Posts

Hi, I'm having adware problems (popups on Google Chrome, the only web browser I use), so i decided to install the free version of Ad-Aware 11.

 

I downloaded the installer (edit: I also tried the standalone installer at http://www.lavasoft.com/mylavasoft/support/supportcenter/run_on_a_frozen_pc/ad-aware-standalone-installer with no success), but as soon as I double click on it, it says:

 

No se puede executar esta aplicación en el equipo. Para buscar una versión para su equipo, consulte con el editor del software

 

 

(rough translation: This application cannot be executed in this computer. To search for a version for your computer, contact the software editor")

 

I´m using 64-bit Windows 8.1 on a laptop. Thank you in advance for your answer :)

System Info.zip

Edited by sky_yoshi

Share this post


Link to post
Share on other sites

Hi sky_yoshi,

 

While waiting for a response from Lavasoft regarding your error message, let us take care of the adware problem.

Please, follow the instructions in Step 2 in the topic Read This Before You Post!.

Share this post


Link to post
Share on other sites

Hi, Cecilia! Thank you for your soon and thoughtful answer!

 

I've already installed another anti-adware application and solved my original problem.

 

However, I'm still interested in installing Lavasoft's Ad-Aware, since I've had good experiences with it in the past.

 

I'll attach to this post the reports as asked in the post you mentioned. Maybe something's related to my inhability to install Ad-Aware?

 

Thank you again for your help :)

FRST log files.zip

Share this post


Link to post
Share on other sites

Hi sky_yoshi,

 

I see this in the log:

 

Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 192.168.1.254
Tcpip\Parameters: [NameServer] 8.8.8.8,8.8.8.4
Tcpip\..\Interfaces\{43B955D2-736A-4896-B35A-6B3209B55B06}: [DhcpNameServer] 192.168.1.254 192.168.1.254
Tcpip\..\Interfaces\{4AE8C5E3-F06C-4EEB-9756-3E61E2594D8E}: [DhcpNameServer] 82.163.142.6
Tcpip\..\Interfaces\{E607AF11-3DF5-4320-8AFA-FCD0EA84B4AE}: [DhcpNameServer] 82.163.142.6

There are two network interfaces that are using name servers in Israel, while others are using the routers and Googles DNS servers. Is it on purpose or can it be adware that has changed it?

 

The Home page in Google Chrome is set to v9.com (adware). Can you change it yourself or shall we use FRST to do it?

 

I can see that you installed several add-ons in Chrome yesterday. Please, check that none of them is installing adware.

 

You also have several add-ons related to epicunitscan.info, which usually is seen with adware. Are they in your case since you have had them for almost a year?

 

CHR Extension: (Bing Translate To English) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hogdcbncicoifbkfdofpejkkckgkbjig [2015-04-09] [updateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (F1 News) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jchepaljijgokkoflakjioknkfolenbk [2015-06-21] [updateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-03] [updateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (Google Wallet) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-03] [updateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (oaeofonahpollpigknepbpnabhgbpcjc) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oaeofonahpollpigknepbpnabhgbpcjc [2015-03-11] [updateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION

 

 

It's important to disable or uninstall MBAM while installing Ad-Aware (can be enabled/installed afterwards). If you're planning to install Ad-Aware without uninstalling AVG, please make sure that Ad-Aware is installed in compatible mode and don't enable the real-time protection.

Share this post


Link to post
Share on other sites

I downloaded the installer (edit: I also tried the standalone installer at http://www.lavasoft.com/mylavasoft/support/supportcenter/run_on_a_frozen_pc/ad-aware-standalone-installer with no success), but as soon as I double click on it, it says:

 

 

(rough translation: This application cannot be executed in this computer. To search for a version for your computer, contact the software editor")

 

 

Hi again,

 

The most common cause to that error message is a corrupt installation file.

A corrupt installation file usually doesn't have an Ad-Aware icon, it might look like http://prnt.sc/agu7z0 and then Windows e.g. shows http://prnt.sc/agu94q

It can be difficult to download files without corruptions in a computer with adware or malware.

Share this post


Link to post
Share on other sites

There are two network interfaces that are using name servers in Israel, while others are using the routers and Googles DNS servers. Is it on purpose or can it be adware that has changed it?

 

I'm not sure about this part, I'm not very instructed in this topic. The only thing I can think of, is the Facetalk Google Chrome extension, which asked me to install a host app (executable file). I wish to keep using Facetalk, and I don't know if that is what caused the changes you mention.

 

Otherwise, there's no other reason I can think of for these changes.

 

The Home page in Google Chrome is set to v9.com (adware). Can you change it yourself or shall we use FRST to do it?

 

Let's use FRST, please :)

 

On a side note, I checked Google Chrome settings, and the home page seems set (and acts) as expected. However, I've had trouble with v9.com before, so it's a good idea to fix it anyway.

 

I can see that you installed several add-ons in Chrome yesterday. Please, check that none of them is installing adware.

 

I'll remove (not only disable) them all for a while. Then I'll slowly install the most important ones one by one.

You also have several add-ons related to epicunitscan.info, which usually is seen with adware. Are they in your case since you have had them for almost a year?

 

Most likely adware.

 

I dont recognize the domain, or any of the first 4 extensions. I don't think the 5th extension is legit either.

It's important to disable or uninstall MBAM while installing Ad-Aware (can be enabled/installed afterwards). If you're planning to install Ad-Aware without uninstalling AVG, please make sure that Ad-Aware is installed in compatible mode and don't enable the real-time protection.

 

Thanks for the heads-ups! :) My first plan is to uninstall both MBAM and AVG, and use Ad-Aware only.

 

 

The most common cause to that error message is a corrupt installation file.

A corrupt installation file usually doesn't have an Ad-Aware icon, it might look like http://prnt.sc/agu7z0 and then Windows e.g. shows http://prnt.sc/agu94q

It can be difficult to download files without corruptions in a computer with adware or malware.

 

 

Those are exactly my sympthoms!

 

Thank you again for your attention :)

Edited by sky_yoshi

Share this post


Link to post
Share on other sites

You're welcome :)

1. Please, use AVG Remover after the usual uninstallation of AVG.

2. Please, uninstall or update Java since Java 8 Update 25 is an old version with known vulnerabilities that can be used to infect the computer from a web page. If you really need to have Java, it's important to always have the latest version.

3. The following script will remove the name servers in Israel, and if that stops Facetalk, it should be enough to reinstall it.

Please, start Notepad.
Copy all text that is in the box:

CreateRestorePoint:
CloseProcesses:
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
Tcpip\..\Interfaces\{4AE8C5E3-F06C-4EEB-9756-3E61E2594D8E}: [DhcpNameServer] 82.163.142.6
Tcpip\..\Interfaces\{E607AF11-3DF5-4320-8AFA-FCD0EA84B4AE}: [DhcpNameServer] 82.163.142.6
CHR HomePage: Default -> hxxp://www.v9.com/?utm_source=b&utm_medium=pbc&from=pbc&uid=ST380011A_5MR409QD&ts=1352164866
CHR Extension: (Bing Translate To English) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hogdcbncicoifbkfdofpejkkckgkbjig [2015-04-09] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (F1 News) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jchepaljijgokkoflakjioknkfolenbk [2015-06-21] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-03] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (Google Wallet) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-03] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (oaeofonahpollpigknepbpnabhgbpcjc) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oaeofonahpollpigknepbpnabhgbpcjc [2015-03-11] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CMD: ipconfig /flushdns
Reboot:

and paste in Notepad. Check that no files have been split on two lines.
Save the file as fixlist.txt on the desktop.

Exit all programs.
Start FRST, please.
Click the Fix button.
Wait until the tool has finished.

It creates a log file, called Fixlog.txt, on the desktop.
Please, paste the content of that file in your reply.

Share this post


Link to post
Share on other sites

Start FRST, please.

Click the Fix button.

Wait until the tool has finished.

 

It creates a log file, called Fixlog.txt, on the desktop.

Please, paste the content of that file in your reply.

Fix result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Ran by MarcosDaniel (2016-03-19 10:49:05) Run:1
Running from C:\Users\MarcosDaniel\Documents\Installers\Anti malware
Loaded Profiles: MarcosDaniel (Available Profiles: MarcosDaniel & Invitado)
Boot Mode: Normal
==============================================

fixlist content:
*****************
CreateRestorePoint:
CloseProcesses:
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
Tcpip\..\Interfaces\{4AE8C5E3-F06C-4EEB-9756-3E61E2594D8E}: [DhcpNameServer] 82.163.142.6
Tcpip\..\Interfaces\{E607AF11-3DF5-4320-8AFA-FCD0EA84B4AE}: [DhcpNameServer] 82.163.142.6
CHR HomePage: Default -> hxxp://www.v9.com/?utm_source=b&utm_medium=pbc&from=pbc&uid=ST380011A_5MR409QD&ts=1352164866
CHR Extension: (Bing Translate To English) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hogdcbncicoifbkfdofpejkkckgkbjig [2015-04-09] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (F1 News) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jchepaljijgokkoflakjioknkfolenbk [2015-06-21] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-03] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (Google Wallet) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-03] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (oaeofonahpollpigknepbpnabhgbpcjc) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oaeofonahpollpigknepbpnabhgbpcjc [2015-03-11] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CMD: ipconfig /flushdns
Reboot:
*****************

Restore point was successfully created.
Processes closed successfully.
"HKLM\SOFTWARE\Policies\Google" => key removed successfully
HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{4AE8C5E3-F06C-4EEB-9756-3E61E2594D8E}\\DhcpNameServer => value removed successfully
HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{E607AF11-3DF5-4320-8AFA-FCD0EA84B4AE}\\DhcpNameServer => value removed successfully
Chrome HomePage => removed successfully
C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hogdcbncicoifbkfdofpejkkckgkbjig <==== ATTENTION => not found
C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jchepaljijgokkoflakjioknkfolenbk <==== ATTENTION => not found
C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg <==== ATTENTION => not found
C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda <==== ATTENTION => not found
C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oaeofonahpollpigknepbpnabhgbpcjc <==== ATTENTION => not found

=========  ipconfig /flushdns =========


Configuraci�n IP de Windows

Se vaci� correctamente la cach� de resoluci�n de DNS.

========= End of CMD: =========



The system needed a reboot.

==== End of Fixlog 10:49:44 ====

After running FRST, I tried re-downloading (with a different filename) the Ad-Aware Free Antivirus installer, with the same results.

 

Edit: how do you recommend me to identify which (if any) of my Chrome extensions is installing adware/malware?

Edited by sky_yoshi

Share this post


Link to post
Share on other sites

The log looks good.

 

Please, try the standalone installer.

Share this post


Link to post
Share on other sites

The log looks good.

 

Please, try the standalone installer.

 

I still get the "This app can't run on your PC" message, even from the sandalone installer (I re-downloaded it with different filename)

Share this post


Link to post
Share on other sites

Do the standalone installer and the normal installer have this icon?

 

Skärmklipp.PNG

 

If not, the download failed.

Do you have any problems with downloading other big files?

Share this post


Link to post
Share on other sites

Do the standalone installer and the normal installer have this icon?

 

attachicon.gifSkärmklipp.PNG

 

 

No, they both have the default application-icon. I also noticed that the installers are not the same filesize everytime I download them, and they're not close to the original reported filesize by the browser (509 MB for the standalone installer).

Do you have any problems with downloading other big files?

 

I don't remember having this problem before. I just tried and succeeded to download 293 MB VMware Workstation installer, while the Ad-Aware standalone installer stops at at most 73 MB.

 

I also tried to download Ad-Aware from another computer (Desktop Windows XP SP 3.0 PC, same household, same user, mostly same software and extensions installed), but the download also "finishes" before completing its full filesize.

Share this post


Link to post
Share on other sites

Strange that you can't download Ad-Aware, the normal installer is only a few MB. I guess it wouldn't help if I sent you the installer by email. Please, try to fetch the normal installer on the XP computer. If it's possible, you can transfer it to the computer where you want to install Ad-Aware.

 

Let's see if Eset's online scanner finds something.

Run an online scan with Eset (easiest with Internet Explorer): http://www.eset.com/onlinescan/
To shorten the scanning time disable your antivirus program while scanning.

Select Enable detection of potentially unwanted applications.
Click Advanced Settings.

Deselect Remove found threats.

Select:
Scan Archives
Scan for potentially unsafe applications
Enable Anti-Stealth Technology

Click Start.

When the scan is finished, click on List of found threats and then Export to text file. Copy the content of the text file and paste its content in your reply.

Share this post


Link to post
Share on other sites

Hi, sorry for the late reply!

 

Strange that you can't download Ad-Aware, the normal installer is only a few MB. I guess it wouldn't help if I sent you the installer by email. Please, try to fetch the normal installer on the XP computer. If it's possible, you can transfer it to the computer where you want to install Ad-Aware.

 

Ad-Aware normal installer download "finishes" instantly on the XP computer. I'll try to download it from another computer when I get thr chance.

When the [Eset's online] scan is finished, click on List of found threats and then Export to text file. Copy the content of the text file and paste its content in your reply.

C:\AdwCleaner\Quarantine\C\Program Files (x86)\DNS Unlocker\ConsoleApplication1.dll.vir a variant of Win32/Adware.CloudGuard.B application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\DNS Unlocker\dnsvincentown.exe.vir a variant of MSIL/Adware.CloudGuard.C application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe.vir Win32/AlteredSoftware.C potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleCrashHandler.exe.vir Win32/AlteredSoftware.A potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdate.exe.vir Win32/AlteredSoftware.C potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdateBroker.exe.vir a variant of Win32/AlteredSoftware.B potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdateOnDemand.exe.vir a variant of Win32/AlteredSoftware.B potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\goopdate.dll.vir a variant of Win32/AlteredSoftware.A potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\goopdateres_en.dll.vir a variant of Win32/AlteredSoftware.B potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll.vir Win32/AlteredSoftware.A potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\psmachine.dll.vir a variant of Win32/AlteredSoftware.G potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\psuser.dll.vir a variant of Win32/AlteredSoftware.G potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\2bad8455-4dce-4b8c-8aff-c6879663cf02.dll.vir a variant of Win64/Toolbar.Crossrider.P potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\73eae394-6752-4acc-a546-d0da937a0b47.dll.vir a variant of Win32/Toolbar.CrossRider.CG potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\a31a59b7-cbe5-4e46-9305-3cbeb0aa3c10-1-6.exe.vir a variant of Win32/Toolbar.CrossRider.AV potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\a31a59b7-cbe5-4e46-9305-3cbeb0aa3c10-1-7.exe.vir a variant of Win32/Toolbar.CrossRider.CD potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\a31a59b7-cbe5-4e46-9305-3cbeb0aa3c10-10.exe.vir a variant of Win32/Toolbar.CrossRider.CD potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\a31a59b7-cbe5-4e46-9305-3cbeb0aa3c10-5.exe.vir a variant of Win32/Toolbar.CrossRider.CC potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\a31a59b7-cbe5-4e46-9305-3cbeb0aa3c10-6.exe.vir a variant of Win32/Toolbar.CrossRider.BZ potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\a31a59b7-cbe5-4e46-9305-3cbeb0aa3c10-64.exe.vir a variant of Win64/Toolbar.Crossrider.N potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\a31a59b7-cbe5-4e46-9305-3cbeb0aa3c10-7.exe.vir a variant of Win32/Toolbar.CrossRider.CD potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\Uninstall.exe.vir a variant of Win32/Toolbar.CrossRider.CU potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\UninstallBrw.exe.vir a variant of Win32/Toolbar.CrossRider.CD potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\utils.exe.vir Win32/Packed.VMDetector.I potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Super Optimizer\SupOptSmartScan.exe.vir a variant of Win32/Adware.SpeedingUpMyPC.AG application
C:\AdwCleaner\Quarantine\C\ProgramData\{0291ac04-4064-0}\BITB876.tmp.vir a variant of Win32/Adware.Adposhel.E application
C:\AdwCleaner\Quarantine\C\ProgramData\{10614b8e-5064-0}\BIT62D.tmp.vir a variant of Win32/Adware.Adposhel.E application
C:\AdwCleaner\Quarantine\C\ProgramData\{e1b6d413-c7fa-45ad-e1b6-6d413c7f504f}\hqghumeaylnlf.exe.vir a variant of Win32/Adware.SpeedingUpMyPC.AP application
C:\AdwCleaner\Quarantine\C\Users\MarcosDaniel\AppData\Roaming\Systweak\ssd\SSDPTstub.exe.vir Win32/Systweak.G potentially unwanted application
C:\AdwCleaner\Quarantine\C\WINDOWS\System32\roboot64.exe.vir a variant of Win64/Systweak.A potentially unwanted application
C:\AdwCleaner\Quarantine\C\WINDOWS\System32\drivers\{0782648b-1717-4fef-ac58-8cb3ce03adb3}Gw64.sys.vir a variant of Win64/BrowseFox.BV potentially unwanted application
C:\AdwCleaner\Quarantine\C\WINDOWS\System32\drivers\{0782648b-1717-4fef-ac58-8cb3ce03adb3}w64.sys.vir a variant of Win64/BrowseFox.BV potentially unwanted application
C:\Users\MarcosDaniel\AppData\Local\Temp\Temp1_di-sp260.zip\di-sp26.rar a variant of Win32/Keygen.HU potentially unsafe application
C:\Users\MarcosDaniel\AppData\Local\Temp\Temp2_di-sp260.zip\di-sp26.rar a variant of Win32/Keygen.HU potentially unsafe application
C:\Users\MarcosDaniel\Documents\Installers\cracks\(Varios Sonic Foundry - FUNCIONA, ABRIR KEYGEN.EXE) sonysoundforgev7.0keygenssg.zip a variant of Win32/Keygen.AQ potentially unsafe application
C:\Users\MarcosDaniel\Documents\Installers\cracks\Sony-All-Products-Incl-Multi-Keygen-And-Patch-v2.6-Update.rar a variant of Win32/Keygen.HU potentially unsafe application
C:\Users\MarcosDaniel\Documents\Installers\cracks\Sony.All.KeyMaker.rar a variant of Win32/Keygen.AQ potentially unsafe application
C:\Users\MarcosDaniel\Documents\Installers\cracks\(Varios Sonic Foundry - FUNCIONA, ABRIR KEYGEN.EXE) sonysoundforgev7.0keygenssg\keygen.rar a variant of Win32/Keygen.AQ potentially unsafe application
C:\Users\MarcosDaniel\Documents\Installers\cracks\Sony-All-Products-Incl-Multi-Keygen-And-Patch-v2.6-Update\Sony All Products Incl Multi Keygen And Patch v2.6 Update\di-sp260.zip a variant of Win32/Keygen.HU potentially unsafe application
C:\Users\MarcosDaniel\Documents\Installers\Drivers\JCAM driver CD.iso a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application
C:\Users\MarcosDaniel\Documents\Installers\Games\smbx13.exe Win32/OpenCandy potentially unsafe application
C:\Users\MarcosDaniel\Documents\Installers\Games\The Sims 3 - Razor1911 Final MAXSPEED\The Sims 3 - Razor1911 MAXSPEED www.torentz.3xforum.ro\The Sims 3 - Razor1911 MAXSPEED www.torentz.3xforum.ro.iso a variant of Win32/Keygen.GU potentially unsafe application
C:\Users\MarcosDaniel\Documents\Installers\Internet\cbsidlm-cbsi145-Facebook_Messenger-SEO-10964518.exe a variant of Win32/CNETInstaller.B potentially unwanted application
C:\Users\MarcosDaniel\Documents\Installers\Music\winamp563_full_emusic-7plus_en-us.exe Win32/OpenCandy potentially unsafe application
C:\Users\MarcosDaniel\Documents\Installers\Music\FL STUDIO 11 + CRACK\flstudio_11.0.2.exe Win32/OpenCandy potentially unsafe application
C:\Users\MarcosDaniel\Documents\Installers\Video\ManyCam(v2.5.48).exe a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application
C:\Users\MarcosDaniel\Documents\Installers\Video\Sony Vegas v6.0C Incl Keygen-Ssg.rar a variant of Win32/Keygen.AQ potentially unsafe application
C:\Users\MarcosDaniel\Documents\Installers\Video\Sony Vegas v6.0C Incl Keygen-Ssg\keygen.exe a variant of Win32/Keygen.AQ potentially unsafe application
C:\Windows\System32\wpbbin.exe a variant of Win32/CompuTrace.A potentially unsafe application
Edited by sky_yoshi

Share this post


Link to post
Share on other sites

Except for all adware that have been quarantined by AdwCleaner, Eset's scanner found a several keygens/cracks (always unsafe to use keygens/cracks) and installers that want to install adware during the installation. If you don't want to keep them, you can delete them yourself.

 

 

C:\Windows\System32\wpbbin.exe a variant of Win32/CompuTrace.A potentially unsafe application

You can read these pages about CompuTrace:

https://en.wikipedia.org/wiki/CompuTrace

https://threatpost.com/millions-of-pcs-affected-by-mysterious-computrace-backdoor-2/107700/

Share this post


Link to post
Share on other sites

Due to lack of feedback, this topic has been closed.If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.Thank You !

Share this post


Link to post
Share on other sites
Guest
This topic is now closed to further replies.
Sign in to follow this