Windows 7 Forums

Welcome to Windows 7 Forums. Our forum is dedicated to helping you find support and solutions for any problems regarding your Windows 7 PC be it Dell, HP, Acer, Asus or a custom build. We also provide an extensive Windows 7 tutorial section that covers a wide range of tips and tricks.


Windows 7: Cannot delete Registry entry

09 Jul 2013   #11
parhamjl

Windows 7 ultimate 64 Service Pack 1
 
 

Here are the DDS logs.




Attached Files
File Type: txt attach.txt (19.0 KB, 3 views)
File Type: txt dds.txt (39.3 KB, 3 views)
My System SpecsSystem Spec
.
09 Jul 2013   #12
VistaKing

Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
 
 

Can you run the tool that is on post #10
My System SpecsSystem Spec
09 Jul 2013   #13
parhamjl

Windows 7 ultimate 64 Service Pack 1
 
 

I had ran a Malwarebytes scan earlier in my recovery from malware. It initially found several problems. For good measure, I updated Malwarebytes and ran a full scan again. It found no problems.
My System SpecsSystem Spec
.

09 Jul 2013   #14
parhamjl

Windows 7 ultimate 64 Service Pack 1
 
 
Farbar

I only ran the scan. I did not do the 'Fix'. Was I supposed to?


Attached Files
File Type: txt Addition.txt (40.3 KB, 2 views)
File Type: txt FRST.txt (86.6 KB, 2 views)
My System SpecsSystem Spec
09 Jul 2013   #15
VistaKing

Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
 
 

Open notepad. Inside notepad paste the highlighted items below


start
Winlogon\Notify\GoToAssist: C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll [X]
HKCU\...\Run: [Akamai NetSession Interface] - "C:\Users\Lynn\AppData\Local\Akamai\netsession_win.exe" [x]
HKLM-x32\...\Run: [Search Protection] - C:\ProgramData\Search Protection\SearchProtection.exe [x]
HKLM-x32\...\Run: [Ad-Aware Antivirus] - "C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher" --windows-run [x]
HKU\Guest\...\Run: [msnmsgr] - "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background [x]
HKU\Guest\...\Run: [Advanced SystemCare 4] - "C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCTray.exe" [x]
HKU\Guest\...\Run: [msnmsgr] - "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background [x]
HKU\Guest\...\Run: [Advanced SystemCare 4] - "C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCTray.exe" [x]
HKU\Guest\...\Run: [Rohos] - C:\Program Files (x86)\Rohos\agent.exe [x]
HKU\Guest\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [x]
HKU\HomeGroupUser$\...\Run: [AVG-Secure-Search-Update_JUNE2013_TB] - "C:\Program Files (x86)\AVG Secure Search\AVG-Secure-Search-Update_JUNE2013_TB.exe" /PROMPT /CMPID=JUNE2013_TB [x]
AppInit_DLLs: C:\PROGRA~2\KEYCRY~1\KEYCRY~4.DLL [85304 2013-03-07] (Zemana Ltd.)
AppInit_DLLs-x32: c:\progra~2\keycry~1\keycry~3.dll [78136 2013-03-07] (Zemana Ltd.)
Startup: C:\ProgramData\Start Menu\Programs\Startup\Constant Guard.lnk
ShortcutTarget: Constant Guard.lnk -> C:\Program Files (x86)\Constant Guard Protection Suite\IDVault.exe (White Sky, Inc.)
URLSearchHook: (No Name) - {90eee664-34b1-422a-a782-779af65cdf6d} - No File
URLSearchHook: (No Name) - {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - No File
HKCU SearchScopes: DefaultScope {C3512387-1998-4F6E-82DE-C56CE250D840} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3289663&CUI=UN39910817921345487&UM=2
SearchScopes: HKCU - {664AFAC7-3060-4BE2-99CF-E087B70885FD} URL = http://search.conduit.com/Results.aspx?ctid=CT3300019&SearchSource=45&UM=2&q={searchTerms}
SearchScopes: HKCU - {C131D0FB-A80A-4E7B-9B86-68180C285C78} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=01E81 5E4-0A5B-4FD8-8014-E458FFFC4725&apn_sauid=A7BFF1FA-EF47-4100-9CDD-60E652CB7B2E
SearchScopes: HKCU - {C3512387-1998-4F6E-82DE-C56CE250D840} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3289663&CUI=UN39910817921345487&UM=2
BHO-x32: Virtual Account Numbers Helper - {17424104-1444-4810-85D7-B4DA413C5A9A} - C:\Program Files (x86)\Virtual Account Numbers\CitiVANHelper.dll (Orbiscom Ltd. All rights reserved.)
BHO-x32: Constant Guard Protection Suite - {B84CDBE7-1B46-494B-A188-01D4C52DEB61} - C:\ProgramData\White Sky, Inc\ID Vault\IEBHO1.13.506.2\NativeBHO.dll (WhiteSky)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security Suite\Engine\20.3.1.22\coIEPlg.dll (Symantec Corporation
Toolbar: HKLM-x32 - Virtual Account Numbers - {7A21A046-B886-4A62-9D69-EF2059B0A27B} - C:\Program Files (x86)\Virtual Account Numbers\CitiVANToolbar.dll (Orbiscom Ltd. All rights reserved.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
URLSearchHook: (No Name) - {90eee664-34b1-422a-a782-779af65cdf6d} - No File
URLSearchHook: (No Name) - {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - No File
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - No File
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll No File
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll No File
S2 RapportMgmtService; "C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe" [x]
S2 vToolbarUpdater15.3.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe [x]
C:\Users\Lynn Standard Accoun\AppData\Roaming\ID Vault
C:\ID Vault
C:\Users\Lynn\AppData\Roaming\ID Vault
C:\ProgramData\Syscon
C:\Users\Lynn\GoToAssistDownloadHelper.exe
C:\Users\Lynn\sxstrace.exe
end


Click on File choose Save As
Choose the Desktop on the left hand side.
In the File Name: input fixlist.txt
In the Save as type: choose All Types on the drop down menu
Click on the [Save] button

Open FRST64.exe and click on the [FIX] button . Once its complete it will create a new log called Fixlog.txt . Upload the Fixlog.txt with your reply .
My System SpecsSystem Spec
09 Jul 2013   #16
parhamjl

Windows 7 ultimate 64 Service Pack 1
 
 

Here is the Fixlog.txt


Attached Files
File Type: txt Fixlog.txt (6.2 KB, 4 views)
My System SpecsSystem Spec
09 Jul 2013   #17
VistaKing

Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
 
 

Once you're done with that. Run the tool below

RogueKiller for 32bit <==== Download Link
RogueKiller for 64bit <==== Download Link

Click on one of the links above that goes with your Windows 7 bit versions

Save to the Desktop.

Close all windows and browsers

Right click on and choose

Press: SCAN

provide the RKreport.txt (Mode: Scan) in your reply.

Log should be on the Desktop or the C:\ Drive
My System SpecsSystem Spec
09 Jul 2013   #18
parhamjl

Windows 7 ultimate 64 Service Pack 1
 
 

Here is the RKreport. It also put a RK_Quarantine subdirectory on my desktop.


Attached Files
File Type: txt RKreport[0]_S_07092013_215431.txt (4.0 KB, 5 views)
My System SpecsSystem Spec
09 Jul 2013   #19
VistaKing

Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
 
 

Rerun RogueKiller click on Delete button then click on Fix Proxy and Fix Host button
My System SpecsSystem Spec
09 Jul 2013   #20
parhamjl

Windows 7 ultimate 64 Service Pack 1
 
 

I somehow managed to generate two RKreport files, apparently while trying to click on the greyed out 'Fix Proxy'. Both are included here.


Attached Files
File Type: txt RKreport[0]_S_07092013_225842.txt (4.0 KB, 1 views)
File Type: txt RKreport[0]_D_07092013_225851.txt (4.1 KB, 2 views)
My System SpecsSystem Spec
Reply

 Cannot delete Registry entry




Thread Tools Search this Thread
Search this Thread:

Advanced Search




Similar help and support threads
Thread Forum
Can you copy a WinXP Pro registry entry into Win 7 registry
Hello, Background: 1. I have a program I use always, I have the install disks and can install it on Win 7 Pro x64. It is a 32 bit program. However, this program had a critical patch issued as a download way back when and this patch cannot be installed on the 7 system, because the installer is...
General Discussion
An entry in registry missing
I want gain an access to com ports and require changed in registry entry of HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PNP0501 but it seems the folder is not there. I have tried regcleaner and reg fix did not help. thanks
Drivers
Default program registry entry
Hi. We are installing OpenOffice on several hundred computers and we want to set it as the default program for .doc, .docx, .ppt, .pptx, etc. files. Where is this information stored in the registry so we can push out the registry changes via a logon script? Thanks!
Software
Registry Entry to delete specific User Profile entries
I work for a University as a Lab Manager where we have over 300 computers running Domain Profiles. We have begun updating from XP to 7 and started to notice TEMP profiles being created. I have figured out how to resolve the issue by going to the registry ...
General Discussion
Unable to delete empty registry entry
I ran Auslogics Registry Cleaner, and it found many errors, and deleted all but one of the registry entries. I ran it a few more times, and it was still unable to delete it. So, I went into the registry and tried to manually delete it. Regedit tells me that it is "Unable to delete all specific...
General Discussion
What is the strange registry entry and how can I delete it?
I have the following registry key that appears to do nothing but keeps re-creating itself: HKEY_CURRENT_USER\Software\Microsoft\WindowsNT\CurrentVersion\Winlogon This key contains a Shell value that points to an empty directory on my system: C:\Users\Birk\AppData\Local\bc53345c\X If I...
Software


Our Sites

Site Links

About Us

Find Us

Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

Designer Media Ltd

All times are GMT -5. The time now is 17:27.

Twitter Facebook Google+



Windows 7 Forums

Seven Forums Android App Seven Forums IOS App