Windows Defender nowhere to be found and will not start

Page 4 of 4 FirstFirst ... 234

  1. Posts : 21
    Windows 7 Home Premium
    Thread Starter
       #31

    Layback Bear said:
    If I may. Malwarebytes Anti Malware was run in post #2. I don't understand how it just found all these infection in post #26.
    Where did all these things come from between post #2 and post #26?

    From post #2

    Also install and run Malwarebytes Antimalware.

    Malwarebytes : Free anti-malware download
    I had not done the malwarebytes until that post. I was trying to follow only one person's directions so I would not get confused or mess anything up. I should have done it earlier I'm sure but either way nothing is working. This is getting to be much more work than I wanted. I could have spent an hour or two removing my personal pics, music and files and just reinstalled windows 7.
      My Computer


  2. Posts : 21
    Windows 7 Home Premium
    Thread Starter
       #32

    cottonball said:
    dexterrules4,
    Please post the SystemLook.txt in your reply Thanks!
    SystemLook 30.07.11 by jpshortstuff
    Log created at 22:03 on 01/07/2013 by alireep
    Administrator - Elevation successful

    ========== reg ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDefend]
    (No values found)

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDefend\Parameters]
    (No values found)

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDefend\Security]
    (No values found)

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDefend\TriggerInfo]
    (No values found)

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDefend\TriggerInfo\0]
    (No values found)


    []
    Hive unrecognized.

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\WinDefend]
    (No values found)

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\WinDefend\Parameters]
    (No values found)

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\WinDefend\Security]
    (No values found)

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\WinDefend\TriggerInfo]
    (No values found)

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\WinDefend\TriggerInfo\0]
    (No values found)


    -= EOF =-
      My Computer


  3. Posts : 2,470
    Windows 7 Home Premium
       #33

    dexterrules4,

    Since the following steps involve editing the Registry, please create new restore point before proceeding.
    System Restore Point - Create
    Select: Option Two

    Please restart the computer, and tap the F8 key to get an Advanced Boot Options Menu.
    From there, select: Safe Mode

    Next, while in Safe Mode, please open Notepad by pressing the Windows key and the R key at the same time.
    In the Open area, type: notepad
    Copy and paste all the text inside the code box below to Notepad:

    Code:
    Windows Registry Editor Version 5.00
     
    [HKEY_LOCAL_MACHINE\999\ControlSet002\services\WinDefend]
    "DisplayName"="@%ProgramFiles%\\Windows Defender\\MsMpRes.dll,-103"
    "ErrorControl"=dword:00000001
    "ImagePath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
      74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\
      00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,\
      6b,00,20,00,73,00,65,00,63,00,73,00,76,00,63,00,73,00,00,00
    "Start"=dword:00000002
    "Type"=dword:00000020
    "Description"="@%ProgramFiles%\\Windows Defender\\MsMpRes.dll,-1176"
    "DependOnService"=hex(7):52,00,70,00,63,00,53,00,73,00,00,00,00,00
    "ObjectName"="LocalSystem"
    "ServiceSidType"=dword:00000001
    "RequiredPrivileges"=hex(7):53,00,65,00,49,00,6d,00,70,00,65,00,72,00,73,00,6f,\
      00,6e,00,61,00,74,00,65,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,\
      65,00,00,00,53,00,65,00,42,00,61,00,63,00,6b,00,75,00,70,00,50,00,72,00,69,\
      00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,52,00,65,00,73,00,\
      74,00,6f,00,72,00,65,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,\
      00,00,00,53,00,65,00,44,00,65,00,62,00,75,00,67,00,50,00,72,00,69,00,76,00,\
      69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,43,00,68,00,61,00,6e,00,67,\
      00,65,00,4e,00,6f,00,74,00,69,00,66,00,79,00,50,00,72,00,69,00,76,00,69,00,\
      6c,00,65,00,67,00,65,00,00,00,53,00,65,00,53,00,65,00,63,00,75,00,72,00,69,\
      00,74,00,79,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,\
      53,00,65,00,53,00,68,00,75,00,74,00,64,00,6f,00,77,00,6e,00,50,00,72,00,69,\
      00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,49,00,6e,00,63,00,\
      72,00,65,00,61,00,73,00,65,00,51,00,75,00,6f,00,74,00,61,00,50,00,72,00,69,\
      00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,41,00,73,00,73,00,\
      69,00,67,00,6e,00,50,00,72,00,69,00,6d,00,61,00,72,00,79,00,54,00,6f,00,6b,\
      00,65,00,6e,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,\
      00,00
    "DelayedAutoStart"=dword:00000001
    "FailureActions"=hex:80,51,01,00,00,00,00,00,00,00,00,00,03,00,00,00,14,00,00,\
      00,01,00,00,00,60,ea,00,00,01,00,00,00,60,ea,00,00,00,00,00,00,00,00,00,00
    [HKEY_LOCAL_MACHINE\999\ControlSet002\services\WinDefend\Parameters]
    "ServiceDllUnloadOnStop"=dword:00000001
    "ServiceDll"=hex(2):25,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,46,00,69,\
      00,6c,00,65,00,73,00,25,00,5c,00,57,00,69,00,6e,00,64,00,6f,00,77,00,73,00,\
      20,00,44,00,65,00,66,00,65,00,6e,00,64,00,65,00,72,00,5c,00,6d,00,70,00,73,\
      00,76,00,63,00,2e,00,64,00,6c,00,6c,00,00,00
    [HKEY_LOCAL_MACHINE\999\ControlSet002\services\WinDefend\Security]
    "Security"=hex:01,00,14,80,dc,00,00,00,e8,00,00,00,14,00,00,00,30,00,00,00,02,\
      00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
      00,00,02,00,ac,00,06,00,00,00,00,00,28,00,ff,01,0f,00,01,06,00,00,00,00,00,\
      05,50,00,00,00,b5,89,fb,38,19,84,c2,cb,5c,6c,23,6d,57,00,77,6e,c0,02,64,87,\
      00,0b,28,00,00,00,00,10,01,06,00,00,00,00,00,05,50,00,00,00,b5,89,fb,38,19,\
      84,c2,cb,5c,6c,23,6d,57,00,77,6e,c0,02,64,87,00,00,14,00,fd,01,02,00,01,01,\
      00,00,00,00,00,05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,\
      05,20,00,00,00,20,02,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,05,\
      04,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,05,06,00,00,00,01,\
      01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
    [HKEY_LOCAL_MACHINE\999\ControlSet002\services\WinDefend\TriggerInfo]
    [HKEY_LOCAL_MACHINE\999\ControlSet002\services\WinDefend\TriggerInfo\0]
    "Type"=dword:00000005
    "Action"=dword:00000001
    "GUID"=hex:e6,ca,9f,65,db,5b,a9,4d,b1,ff,ca,2a,17,8d,46,e0
    In Notepad, go to File > Save As...
    Save the file to: Desktop
    Save the file as: fixwdf.reg
    Save type as needs set to: All files

    On the Desktop, double-click: fixwdf.reg
    When a box pops up, click: Yes
    Confirm the key was added to the Registry
    Click: OK

    Restart the computer.

    On the Desktop, right click fixwdf.reg, and select: Delete
    Also empty the Recycle Bin.


    Now, press the Windows key and the R key at the same time.
    In the Open area, type: services.msc

    In the Services console, make sure Windows Defender is there, and:
    Startup Type is set to: Automatic
    Service Status is set to: Started

    When done, please run the Farbar Service Scanner once again, and post its new FSS.txt report.
    Last edited by cottonball; 02 Jul 2013 at 01:27.
      My Computer


  4. Posts : 25,847
    Windows 10 Pro. 64/ version 1709 Windows 7 Pro/64
       #34

    Thanks dexterrules4 for your reply. Now I understand and will go back watching.
      My Computer


  5. Posts : 2,470
    Windows 7 Home Premium
       #35

    dexterrules4,

    Some of us belong to the Wipe and Clean Club, and others belong to the Good Riddance Club.
    I belong to the latter. However, even when we try our best, when dealing with an infected system, cannot offer any guarantees.

    If this is what you wish to do:
    This is getting to be much more work than I wanted. I could have spent an hour or two removing my personal pics, music and files and just reinstalled windows 7.
    The following Tutorials may be of assistance:
    Clean Reinstall - Factory OEM Windows 7
    Clean Install Windows 7

    Also, the following forum is the best source to provide answers to any questions regarding:
    Installation & Setup - Windows 7 Help Forums
    Last edited by cottonball; 02 Jul 2013 at 01:28.
      My Computer


 
Page 4 of 4 FirstFirst ... 234

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 22:05.
Find Us