just got avast 8, but it didn't detect the paralogic posing as microsoft program

I downloaded a program, due to the fact that I was not sure Avast was able to clean registry (got refurbished pc), I know enough to be careful, checked out the properties, etc. owner, and RegCure said it was from Microsoft, not only in the ad, but in the properties window. Only to find out it is NOT and is from Paralogic. and the only thing Microsoft they use is the program installer, I have almost nothing on this pc yet, but now it takes 2-3 minutes to start, get going and load pages. I’m pissed, I tried deleting all of it, but it keeps popping up, just when I think it’s gone. Why didn’t Avast catch this nightmare? Now I know they have “sandbox”. Wish I knew it then. What can I do for this? I ran full scan and nothing came up (snippets, WINS32, cant find files, Domains, etc. But still trying to clean registry or at least get RegCure out. Can Avast do it or not?

I don’t know why you think avast should block RegCure. It isn’t malware as far as I’m aware, it’s a registry cleaner.

Registry cleaners often seem to do more harm than malware*, and I think are best avoided, but I don’t think you can blame avast for that.

To answer your question - no avast can’t fix your registry - it will only remove malicious registry keys.

  • an honourable exception is ccleaner from priform. I’ve never known its registry cleaner to do any damage. Whether it does any good I wouldn’t like to speculate.

do you mean RegCure from ParetoLogic.
if you google it you find lots of bad reviews… so maybe it is detected as PUP if pup scan is turned on
from the google info it seems to be a legit program…
Microsoft have detection for a program that seems to fit the description
https://www.microsoft.com/security/portal/threat/encyclopedia/entry.aspx?Name=Program:Win32/RegCure

if you want a check, or removal help follow the “logs to assist in cleaning malware” guide at top in the viruses and worms forum section

Its clean : https://www.virustotal.com/en/file/e5187f3820097ee325e4b621555206adde0a4b3e34845eaa2ba79c9e30c32a61/analysis/

Its probably a greyware…not a classic rogue.

Interesting - yet IE10 smartscreen filter doesn’t currently flag on the site or on download of the installer, and MSE scan of the set-up file comes up clean (as does mbam with PUP flagging set). If it’s the same file of course.

Regcure is actually a good reg cleaner, only problem is that it basically forces you to buy it once installed, I would uninstall the conventional way, then search through program files, program data, user date, for regcure and paralogic, open registry and do the same, even clean web history and check documents folder, also startup.