Skip to main content

Installation issue: "Cannot be executed in this machine"

Comments

15 comments

  • Support

    Hi sky_yoshi,

     

    While waiting for a response from Lavasoft regarding your error message, let us take care of the adware problem.

    Please, follow the instructions in Step 2 in the topic Read This Before You Post!.

    0
  • Customer

    Hi, Cecilia! Thank you for your soon and thoughtful answer!

     

    I've already installed another anti-adware application and solved my original problem.

     

    However, I'm still interested in installing Lavasoft's Ad-Aware, since I've had good experiences with it in the past.

     

    I'll attach to this post the reports as asked in the post you mentioned. Maybe something's related to my inhability to install Ad-Aware?

     

    Thank you again for your help

    FRST log files.zip

    0
  • Support

    Hi sky_yoshi,

     

    I see this in the log:


     

    Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 192.168.1.254
    Tcpip\Parameters: [NameServer] 8.8.8.8,8.8.8.4
    Tcpip\..\Interfaces\{43B955D2-736A-4896-B35A-6B3209B55B06}: [DhcpNameServer] 192.168.1.254 192.168.1.254
    Tcpip\..\Interfaces\{4AE8C5E3-F06C-4EEB-9756-3E61E2594D8E}: [DhcpNameServer] 82.163.142.6
    Tcpip\..\Interfaces\{E607AF11-3DF5-4320-8AFA-FCD0EA84B4AE}: [DhcpNameServer] 82.163.142.6


    There are two network interfaces that are using name servers in Israel, while others are using the routers and Googles DNS servers. Is it on purpose or can it be adware that has changed it?

     

    The Home page in Google Chrome is set to v9.com (adware). Can you change it yourself or shall we use FRST to do it?

     

    I can see that you installed several add-ons in Chrome yesterday. Please, check that none of them is installing adware.

     

    You also have several add-ons related to epicunitscan.info, which usually is seen with adware. Are they in your case since you have had them for almost a year?


     

    CHR Extension: (Bing Translate To English) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hogdcbncicoifbkfdofpejkkckgkbjig [2015-04-09] [updateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
    CHR Extension: (F1 News) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jchepaljijgokkoflakjioknkfolenbk [2015-06-21] [updateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
    CHR Extension: (Chrome Hotword Shared Module) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-03] [updateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
    CHR Extension: (Google Wallet) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-03] [updateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
    CHR Extension: (oaeofonahpollpigknepbpnabhgbpcjc) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oaeofonahpollpigknepbpnabhgbpcjc [2015-03-11] [updateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION


     

     

    It's important to disable or uninstall MBAM while installing Ad-Aware (can be enabled/installed afterwards). If you're planning to install Ad-Aware without uninstalling AVG, please make sure that Ad-Aware is installed in compatible mode and don't enable the real-time protection.

    0
  • Support


    I downloaded the installer (edit: I also tried the standalone installer at http://www.lavasoft.com/mylavasoft/support/supportcenter/run_on_a_frozen_pc/ad-aware-standalone-installer with no success), but as soon as I double click on it, it says:

     

     

    (rough translation: This application cannot be executed in this computer. To search for a version for your computer, contact the software editor")

     

     


    Hi again,

     

    The most common cause to that error message is a corrupt installation file.

    A corrupt installation file usually doesn't have an Ad-Aware icon, it might look like http://prnt.sc/agu7z0 and then Windows e.g. shows http://prnt.sc/agu94q

    It can be difficult to download files without corruptions in a computer with adware or malware.

    0
  • Customer

    There are two network interfaces that are using name servers in Israel, while others are using the routers and Googles DNS servers. Is it on purpose or can it be adware that has changed it?


     

    I'm not sure about this part, I'm not very instructed in this topic. The only thing I can think of, is the Facetalk Google Chrome extension, which asked me to install a host app (executable file). I wish to keep using Facetalk, and I don't know if that is what caused the changes you mention.

     

    Otherwise, there's no other reason I can think of for these changes.



     

    The Home page in Google Chrome is set to v9.com (adware). Can you change it yourself or shall we use FRST to do it?


     

    Let's use FRST, please

     

    On a side note, I checked Google Chrome settings, and the home page seems set (and acts) as expected. However, I've had trouble with v9.com before, so it's a good idea to fix it anyway.

     


    I can see that you installed several add-ons in Chrome yesterday. Please, check that none of them is installing adware.


     

    I'll remove (not only disable) them all for a while. Then I'll slowly install the most important ones one by one.




    You also have several add-ons related to epicunitscan.info, which usually is seen with adware. Are they in your case since you have had them for almost a year?


     

    Most likely adware.

     

    I dont recognize the domain, or any of the first 4 extensions. I don't think the 5th extension is legit either.



    It's important to disable or uninstall MBAM while installing Ad-Aware (can be enabled/installed afterwards). If you're planning to install Ad-Aware without uninstalling AVG, please make sure that Ad-Aware is installed in compatible mode and don't enable the real-time protection.


     

    Thanks for the heads-ups! My first plan is to uninstall both MBAM and AVG, and use Ad-Aware only.

     

     


    The most common cause to that error message is a corrupt installation file.

    A corrupt installation file usually doesn't have an Ad-Aware icon, it might look like http://prnt.sc/agu7z0 and then Windows e.g. shows http://prnt.sc/agu94q

    It can be difficult to download files without corruptions in a computer with adware or malware.

     


     



    Those are exactly my sympthoms!

     

    Thank you again for your attention

    0
  • Support

    The log looks good.

     

    Please, try the standalone installer.

    0
  • Support

    You're welcome

    1. Please, use AVG Remover after the usual uninstallation of AVG.

    2. Please, uninstall or update Java since Java 8 Update 25 is an old version with known vulnerabilities that can be used to infect the computer from a web page. If you really need to have Java, it's important to always have the latest version.

    3. The following script will remove the name servers in Israel, and if that stops Facetalk, it should be enough to reinstall it.

    Please, start Notepad.
    Copy all text that is in the box:


    CreateRestorePoint:
    CloseProcesses:
    CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
    Tcpip\..\Interfaces\{4AE8C5E3-F06C-4EEB-9756-3E61E2594D8E}: [DhcpNameServer] 82.163.142.6
    Tcpip\..\Interfaces\{E607AF11-3DF5-4320-8AFA-FCD0EA84B4AE}: [DhcpNameServer] 82.163.142.6
    CHR HomePage: Default -> hxxp://www.v9.com/?utm_source=b&utm_medium=pbc&from=pbc&uid=ST380011A_5MR409QD&ts=1352164866
    CHR Extension: (Bing Translate To English) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hogdcbncicoifbkfdofpejkkckgkbjig [2015-04-09] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
    CHR Extension: (F1 News) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jchepaljijgokkoflakjioknkfolenbk [2015-06-21] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
    CHR Extension: (Chrome Hotword Shared Module) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-03] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
    CHR Extension: (Google Wallet) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-03] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
    CHR Extension: (oaeofonahpollpigknepbpnabhgbpcjc) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oaeofonahpollpigknepbpnabhgbpcjc [2015-03-11] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
    CMD: ipconfig /flushdns
    Reboot:

    and paste in Notepad. Check that no files have been split on two lines.
    Save the file as fixlist.txt on the desktop.

    Exit all programs.
    Start FRST, please.
    Click the Fix button.
    Wait until the tool has finished.

    It creates a log file, called Fixlog.txt, on the desktop.
    Please, paste the content of that file in your reply.

    0
  • Customer


    Start FRST, please.

    Click the Fix button.

    Wait until the tool has finished.

     

    It creates a log file, called Fixlog.txt, on the desktop.

    Please, paste the content of that file in your reply.



    Fix result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
    Ran by MarcosDaniel (2016-03-19 10:49:05) Run:1
    Running from C:\Users\MarcosDaniel\Documents\Installers\Anti malware
    Loaded Profiles: MarcosDaniel (Available Profiles: MarcosDaniel & Invitado)
    Boot Mode: Normal
    ==============================================

    fixlist content:
    *****************
    CreateRestorePoint:
    CloseProcesses:
    CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
    Tcpip\..\Interfaces\{4AE8C5E3-F06C-4EEB-9756-3E61E2594D8E}: [DhcpNameServer] 82.163.142.6
    Tcpip\..\Interfaces\{E607AF11-3DF5-4320-8AFA-FCD0EA84B4AE}: [DhcpNameServer] 82.163.142.6
    CHR HomePage: Default -> hxxp://www.v9.com/?utm_source=b&utm_medium=pbc&from=pbc&uid=ST380011A_5MR409QD&ts=1352164866
    CHR Extension: (Bing Translate To English) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hogdcbncicoifbkfdofpejkkckgkbjig [2015-04-09] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
    CHR Extension: (F1 News) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jchepaljijgokkoflakjioknkfolenbk [2015-06-21] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
    CHR Extension: (Chrome Hotword Shared Module) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-03] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
    CHR Extension: (Google Wallet) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-03] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
    CHR Extension: (oaeofonahpollpigknepbpnabhgbpcjc) - C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oaeofonahpollpigknepbpnabhgbpcjc [2015-03-11] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
    CMD: ipconfig /flushdns
    Reboot:
    *****************

    Restore point was successfully created.
    Processes closed successfully.
    "HKLM\SOFTWARE\Policies\Google" => key removed successfully
    HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{4AE8C5E3-F06C-4EEB-9756-3E61E2594D8E}\\DhcpNameServer => value removed successfully
    HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{E607AF11-3DF5-4320-8AFA-FCD0EA84B4AE}\\DhcpNameServer => value removed successfully
    Chrome HomePage => removed successfully
    C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hogdcbncicoifbkfdofpejkkckgkbjig <==== ATTENTION => not found
    C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jchepaljijgokkoflakjioknkfolenbk <==== ATTENTION => not found
    C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg <==== ATTENTION => not found
    C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda <==== ATTENTION => not found
    C:\Users\MarcosDaniel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oaeofonahpollpigknepbpnabhgbpcjc <==== ATTENTION => not found

    ========= ipconfig /flushdns =========


    Configuraci�n IP de Windows

    Se vaci� correctamente la cach� de resoluci�n de DNS.

    ========= End of CMD: =========



    The system needed a reboot.

    ==== End of Fixlog 10:49:44 ====

    After running FRST, I tried re-downloading (with a different filename) the Ad-Aware Free Antivirus installer, with the same results.

     

    Edit: how do you recommend me to identify which (if any) of my Chrome extensions is installing adware/malware?

    0
  • Support

    Do the standalone installer and the normal installer have this icon?

     

     

    If not, the download failed.

    Do you have any problems with downloading other big files?

    0
  • Customer


    The log looks good.

     

    Please, try the standalone installer.


     

    I still get the "This app can't run on your PC" message, even from the sandalone installer (I re-downloaded it with different filename)

    0
  • Customer


    Do the standalone installer and the normal installer have this icon?

     

    Skärmklipp.PNG

     


     

    No, they both have the default application-icon. I also noticed that the installers are not the same filesize everytime I download them, and they're not close to the original reported filesize by the browser (509 MB for the standalone installer).



    Do you have any problems with downloading other big files?


     


    I don't remember having this problem before. I just tried and succeeded to download 293 MB VMware Workstation installer, while the Ad-Aware standalone installer stops at at most 73 MB.

     

    I also tried to download Ad-Aware from another computer (Desktop Windows XP SP 3.0 PC, same household, same user, mostly same software and extensions installed), but the download also "finishes" before completing its full filesize.

    0
  • Support

    Strange that you can't download Ad-Aware, the normal installer is only a few MB. I guess it wouldn't help if I sent you the installer by email. Please, try to fetch the normal installer on the XP computer. If it's possible, you can transfer it to the computer where you want to install Ad-Aware.

     

    Let's see if Eset's online scanner finds something.

    Run an online scan with Eset (easiest with Internet Explorer): http://www.eset.com/onlinescan/
    To shorten the scanning time disable your antivirus program while scanning.

    Select Enable detection of potentially unwanted applications.
    Click Advanced Settings.

    Deselect Remove found threats.

    Select:
    Scan Archives
    Scan for potentially unsafe applications
    Enable Anti-Stealth Technology

    Click Start.

    When the scan is finished, click on List of found threats and then Export to text file. Copy the content of the text file and paste its content in your reply.

    0
  • Customer

    Hi, sorry for the late reply!

     

    Strange that you can't download Ad-Aware, the normal installer is only a few MB. I guess it wouldn't help if I sent you the installer by email. Please, try to fetch the normal installer on the XP computer. If it's possible, you can transfer it to the computer where you want to install Ad-Aware.


     

    Ad-Aware normal installer download "finishes" instantly on the XP computer. I'll try to download it from another computer when I get thr chance.


    When the [Eset's online] scan is finished, click on List of found threats and then Export to text file. Copy the content of the text file and paste its content in your reply.



    C:\AdwCleaner\Quarantine\C\Program Files (x86)\DNS Unlocker\ConsoleApplication1.dll.vir a variant of Win32/Adware.CloudGuard.B application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\DNS Unlocker\dnsvincentown.exe.vir a variant of MSIL/Adware.CloudGuard.C application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe.vir Win32/AlteredSoftware.C potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleCrashHandler.exe.vir Win32/AlteredSoftware.A potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdate.exe.vir Win32/AlteredSoftware.C potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdateBroker.exe.vir a variant of Win32/AlteredSoftware.B potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdateOnDemand.exe.vir a variant of Win32/AlteredSoftware.B potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\goopdate.dll.vir a variant of Win32/AlteredSoftware.A potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\goopdateres_en.dll.vir a variant of Win32/AlteredSoftware.B potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll.vir Win32/AlteredSoftware.A potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\psmachine.dll.vir a variant of Win32/AlteredSoftware.G potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\globalUpdate\Update\1.3.25.0\psuser.dll.vir a variant of Win32/AlteredSoftware.G potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\2bad8455-4dce-4b8c-8aff-c6879663cf02.dll.vir a variant of Win64/Toolbar.Crossrider.P potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\73eae394-6752-4acc-a546-d0da937a0b47.dll.vir a variant of Win32/Toolbar.CrossRider.CG potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\a31a59b7-cbe5-4e46-9305-3cbeb0aa3c10-1-6.exe.vir a variant of Win32/Toolbar.CrossRider.AV potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\a31a59b7-cbe5-4e46-9305-3cbeb0aa3c10-1-7.exe.vir a variant of Win32/Toolbar.CrossRider.CD potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\a31a59b7-cbe5-4e46-9305-3cbeb0aa3c10-10.exe.vir a variant of Win32/Toolbar.CrossRider.CD potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\a31a59b7-cbe5-4e46-9305-3cbeb0aa3c10-5.exe.vir a variant of Win32/Toolbar.CrossRider.CC potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\a31a59b7-cbe5-4e46-9305-3cbeb0aa3c10-6.exe.vir a variant of Win32/Toolbar.CrossRider.BZ potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\a31a59b7-cbe5-4e46-9305-3cbeb0aa3c10-64.exe.vir a variant of Win64/Toolbar.Crossrider.N potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\a31a59b7-cbe5-4e46-9305-3cbeb0aa3c10-7.exe.vir a variant of Win32/Toolbar.CrossRider.CD potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\Uninstall.exe.vir a variant of Win32/Toolbar.CrossRider.CU potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\UninstallBrw.exe.vir a variant of Win32/Toolbar.CrossRider.CD potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\SavePass 1.1\utils.exe.vir Win32/Packed.VMDetector.I potentially unwanted application
    C:\AdwCleaner\Quarantine\C\Program Files (x86)\Super Optimizer\SupOptSmartScan.exe.vir a variant of Win32/Adware.SpeedingUpMyPC.AG application
    C:\AdwCleaner\Quarantine\C\ProgramData\{0291ac04-4064-0}\BITB876.tmp.vir a variant of Win32/Adware.Adposhel.E application
    C:\AdwCleaner\Quarantine\C\ProgramData\{10614b8e-5064-0}\BIT62D.tmp.vir a variant of Win32/Adware.Adposhel.E application
    C:\AdwCleaner\Quarantine\C\ProgramData\{e1b6d413-c7fa-45ad-e1b6-6d413c7f504f}\hqghumeaylnlf.exe.vir a variant of Win32/Adware.SpeedingUpMyPC.AP application
    C:\AdwCleaner\Quarantine\C\Users\MarcosDaniel\AppData\Roaming\Systweak\ssd\SSDPTstub.exe.vir Win32/Systweak.G potentially unwanted application
    C:\AdwCleaner\Quarantine\C\WINDOWS\System32\roboot64.exe.vir a variant of Win64/Systweak.A potentially unwanted application
    C:\AdwCleaner\Quarantine\C\WINDOWS\System32\drivers\{0782648b-1717-4fef-ac58-8cb3ce03adb3}Gw64.sys.vir a variant of Win64/BrowseFox.BV potentially unwanted application
    C:\AdwCleaner\Quarantine\C\WINDOWS\System32\drivers\{0782648b-1717-4fef-ac58-8cb3ce03adb3}w64.sys.vir a variant of Win64/BrowseFox.BV potentially unwanted application
    C:\Users\MarcosDaniel\AppData\Local\Temp\Temp1_di-sp260.zip\di-sp26.rar a variant of Win32/Keygen.HU potentially unsafe application
    C:\Users\MarcosDaniel\AppData\Local\Temp\Temp2_di-sp260.zip\di-sp26.rar a variant of Win32/Keygen.HU potentially unsafe application
    C:\Users\MarcosDaniel\Documents\Installers\cracks\(Varios Sonic Foundry - FUNCIONA, ABRIR KEYGEN.EXE) sonysoundforgev7.0keygenssg.zip a variant of Win32/Keygen.AQ potentially unsafe application
    C:\Users\MarcosDaniel\Documents\Installers\cracks\Sony-All-Products-Incl-Multi-Keygen-And-Patch-v2.6-Update.rar a variant of Win32/Keygen.HU potentially unsafe application
    C:\Users\MarcosDaniel\Documents\Installers\cracks\Sony.All.KeyMaker.rar a variant of Win32/Keygen.AQ potentially unsafe application
    C:\Users\MarcosDaniel\Documents\Installers\cracks\(Varios Sonic Foundry - FUNCIONA, ABRIR KEYGEN.EXE) sonysoundforgev7.0keygenssg\keygen.rar a variant of Win32/Keygen.AQ potentially unsafe application
    C:\Users\MarcosDaniel\Documents\Installers\cracks\Sony-All-Products-Incl-Multi-Keygen-And-Patch-v2.6-Update\Sony All Products Incl Multi Keygen And Patch v2.6 Update\di-sp260.zip a variant of Win32/Keygen.HU potentially unsafe application
    C:\Users\MarcosDaniel\Documents\Installers\Drivers\JCAM driver CD.iso a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application
    C:\Users\MarcosDaniel\Documents\Installers\Games\smbx13.exe Win32/OpenCandy potentially unsafe application
    C:\Users\MarcosDaniel\Documents\Installers\Games\The Sims 3 - Razor1911 Final MAXSPEED\The Sims 3 - Razor1911 MAXSPEED www.torentz.3xforum.ro\The Sims 3 - Razor1911 MAXSPEED www.torentz.3xforum.ro.iso a variant of Win32/Keygen.GU potentially unsafe application
    C:\Users\MarcosDaniel\Documents\Installers\Internet\cbsidlm-cbsi145-Facebook_Messenger-SEO-10964518.exe a variant of Win32/CNETInstaller.B potentially unwanted application
    C:\Users\MarcosDaniel\Documents\Installers\Music\winamp563_full_emusic-7plus_en-us.exe Win32/OpenCandy potentially unsafe application
    C:\Users\MarcosDaniel\Documents\Installers\Music\FL STUDIO 11 + CRACK\flstudio_11.0.2.exe Win32/OpenCandy potentially unsafe application
    C:\Users\MarcosDaniel\Documents\Installers\Video\ManyCam(v2.5.48).exe a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application
    C:\Users\MarcosDaniel\Documents\Installers\Video\Sony Vegas v6.0C Incl Keygen-Ssg.rar a variant of Win32/Keygen.AQ potentially unsafe application
    C:\Users\MarcosDaniel\Documents\Installers\Video\Sony Vegas v6.0C Incl Keygen-Ssg\keygen.exe a variant of Win32/Keygen.AQ potentially unsafe application
    C:\Windows\System32\wpbbin.exe a variant of Win32/CompuTrace.A potentially unsafe application

    0
  • Support

    Except for all adware that have been quarantined by AdwCleaner, Eset's scanner found a several keygens/cracks (always unsafe to use keygens/cracks) and installers that want to install adware during the installation. If you don't want to keep them, you can delete them yourself.

     


     

    C:\Windows\System32\wpbbin.exe a variant of Win32/CompuTrace.A potentially unsafe application


    You can read these pages about CompuTrace:

    https://en.wikipedia.org/wiki/CompuTrace

    https://threatpost.com/millions-of-pcs-affected-by-mysterious-computrace-backdoor-2/107700/

    0
  • Support

    Due to lack of feedback, this topic has been closed.If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.Thank You !

    0

Please sign in to leave a comment.