Important Windows Encrypted file Backup

glennc

New member
Power User
VIP
Local time
3:50 PM
Messages
1,024
Good Day,
Several months ago, on my Windows 7 Ultimate system, a Windows prompt to backup my encrypted file info has been popping up every boot. In sloth I have routinely told it to remind me again, until the time would come to investigate it.
I am here, today with other issues and this reminded me of the above problem. I do not use any Window's encrypted files or bitlocker to the best of my knowledge. I am concerned as to the cause as well as to the solution. Can anyone help me with this issue?
glennc
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self-Built
OS
Windows 7 Ultimate
CPU
AMD Phenom-II X4 965
Motherboard
Gigabyte GA-MA785GM-US2H
Memory
8192 MB DDR2-SDRAM
Graphics Card(s)
ATI Radeon HD 4200
Sound Card
ATI Radeon HD 4200 High Definition Audo
Monitor(s) Displays
LG Electronics W1943
Screen Resolution
1360 X 768
Hard Drives
C: 500 GB Caviar Black SATA
E: 500 GB Caviar Black SATA
PSU
Ultra LSP 750
Case
Ultra XBlaster
Cooling
2 Fans, CPU Fan, PS Fan
Keyboard
Acer
Mouse
Logitech
Internet Speed
6 MB

My Computer

Computer type
PC/Desktop
OS
Microsoft Windows 7 Home Premium 64-bit 7601 Multiprocessor Free Service Pack 1
CPU
Intel(R) Core(TM) i7-3770 CPU @ 3.40GHz
Motherboard
ASUSTeK COMPUTER INC. P8H77-M
Memory
8.00 GB
Graphics Card(s)
Intel(R) HD Graphics 4000
Sound Card
On Board
Monitor(s) Displays
Dell 24"
Screen Resolution
1920 x 1080
Hard Drives
(1) INTEL SSDSC2CT180A3 ATA Device (2) ST500DM002-1BD142 ATA Device (3) WDC WD3200AAKS-75L9A0 ATA Device (4) Generic- Compact Flash USB Device (5) Generic- MS/MS-Pro USB Device (6) Generic- SD/MMC USB Device (7) Generic- SM/xD-Picture USB
PSU
500w Corsair
Case
Cooler Master
Cooling
3 Fans
Keyboard
Logitech MK300
Mouse
Logitech WOM
Internet Speed
75Mb
Antivirus
Norton 360
Browser
Firefox, Opera, IE
Howdy mitchell65,
Thanks very much!! I ran the cipher command and found some downloaded pdf's that were encrypted. Deleted them and all seems clean. In too deep here. with yet a different problem so I have not rebooted as yet :cry:. Finger's crossed........

Appreciated Kind Sir,
glennc
 
Last edited:

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self-Built
OS
Windows 7 Ultimate
CPU
AMD Phenom-II X4 965
Motherboard
Gigabyte GA-MA785GM-US2H
Memory
8192 MB DDR2-SDRAM
Graphics Card(s)
ATI Radeon HD 4200
Sound Card
ATI Radeon HD 4200 High Definition Audo
Monitor(s) Displays
LG Electronics W1943
Screen Resolution
1360 X 768
Hard Drives
C: 500 GB Caviar Black SATA
E: 500 GB Caviar Black SATA
PSU
Ultra LSP 750
Case
Ultra XBlaster
Cooling
2 Fans, CPU Fan, PS Fan
Keyboard
Acer
Mouse
Logitech
Internet Speed
6 MB
Well Sir,
The problem cleared up on my user account, after I deleted the found files. But on my admin account, it still pops up the reminder. I peeked in with certmgr.msc and saw this

Capture.PNG

How do I extract meaningful information from the Owner certificate? I still maintain I do not use windows encryption or bitlocker.
Appreciate the help!
glennc
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self-Built
OS
Windows 7 Ultimate
CPU
AMD Phenom-II X4 965
Motherboard
Gigabyte GA-MA785GM-US2H
Memory
8192 MB DDR2-SDRAM
Graphics Card(s)
ATI Radeon HD 4200
Sound Card
ATI Radeon HD 4200 High Definition Audo
Monitor(s) Displays
LG Electronics W1943
Screen Resolution
1360 X 768
Hard Drives
C: 500 GB Caviar Black SATA
E: 500 GB Caviar Black SATA
PSU
Ultra LSP 750
Case
Ultra XBlaster
Cooling
2 Fans, CPU Fan, PS Fan
Keyboard
Acer
Mouse
Logitech
Internet Speed
6 MB
The problem reappeared on the user account....................
glennc
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self-Built
OS
Windows 7 Ultimate
CPU
AMD Phenom-II X4 965
Motherboard
Gigabyte GA-MA785GM-US2H
Memory
8192 MB DDR2-SDRAM
Graphics Card(s)
ATI Radeon HD 4200
Sound Card
ATI Radeon HD 4200 High Definition Audo
Monitor(s) Displays
LG Electronics W1943
Screen Resolution
1360 X 768
Hard Drives
C: 500 GB Caviar Black SATA
E: 500 GB Caviar Black SATA
PSU
Ultra LSP 750
Case
Ultra XBlaster
Cooling
2 Fans, CPU Fan, PS Fan
Keyboard
Acer
Mouse
Logitech
Internet Speed
6 MB
Just to be sure, scan with Malwarebytes Anti-Malware free (accept free premium trial, should be checked by default), enable rootkit scanning in the Detection settings screen.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Build
OS
Windows 7 Ultimate x64 SP1
CPU
AMD Phenom 2 1090T
Motherboard
Gigabyte GA-890FXA-UD5
Memory
2x8GB Kingston HyperX Fury Black 1600Mhz Unganged
Graphics Card(s)
MSI GTX 970 Gaming 4G
Sound Card
Realtek On-Board HD 7.1 Audio / Logitech G35
Monitor(s) Displays
3xAcer GD245HQ
Screen Resolution
1920x1080
Hard Drives
Samsung 850 Pro 512GB SSD - OS /
WD Caviar Black SATA 3 - 1 TBx2 - Dynamic RAID 0 /
WD Caviar Green SATA 2 - 640GBx2 - Dynamic RAID 0 /
WD Caviar Green SATA 2 - 640GB - Internal Backup /
Seagate Barracude SATA 3 - 3TB - External Backup/ Sync
PSU
HighPower 1000W
Case
Cooler Master HAF 932
Cooling
Noctua NH-D14
Keyboard
Logitech G19
Mouse
Logitech G500
Internet Speed
100/4 Mbit Cable (100GB quota)
Antivirus
ZoneAlarm Extreme Security / MBAM Pro / MBAE Free / SAS Free
Browser
IE 11 - Firefox - Chrome
Other Info
Logitech F710/ G27/ G940/ Z5500 // TrackIR 5 // Nvidia 3D Surround Vision
Just to be sure, scan with Malwarebytes Anti-Malware free (accept free premium trial, should be checked by default), enable rootkit scanning in the Detection settings screen.

Howdy GokAy,
Running Active Protection Anti-Malware Premium and doing scans. Will do a full one now!
Thanks for your time and info!
glennc
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self-Built
OS
Windows 7 Ultimate
CPU
AMD Phenom-II X4 965
Motherboard
Gigabyte GA-MA785GM-US2H
Memory
8192 MB DDR2-SDRAM
Graphics Card(s)
ATI Radeon HD 4200
Sound Card
ATI Radeon HD 4200 High Definition Audo
Monitor(s) Displays
LG Electronics W1943
Screen Resolution
1360 X 768
Hard Drives
C: 500 GB Caviar Black SATA
E: 500 GB Caviar Black SATA
PSU
Ultra LSP 750
Case
Ultra XBlaster
Cooling
2 Fans, CPU Fan, PS Fan
Keyboard
Acer
Mouse
Logitech
Internet Speed
6 MB
EFS Services

Good day GokAy,
Ran Malwarebytes as you suggested and no issues were picked up. I have in the last few days subjected the machine to more than usual scans.............
While rooting around I found that the EFS services was started and automatic. Since I do not use window's encryption or bitlocker to the best of my recollection and knowledge, I disabled the service. Preliminary boot has shown NO pop-up. I did notice something unusual in the settings of EFS though.
Thank you
glennc
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self-Built
OS
Windows 7 Ultimate
CPU
AMD Phenom-II X4 965
Motherboard
Gigabyte GA-MA785GM-US2H
Memory
8192 MB DDR2-SDRAM
Graphics Card(s)
ATI Radeon HD 4200
Sound Card
ATI Radeon HD 4200 High Definition Audo
Monitor(s) Displays
LG Electronics W1943
Screen Resolution
1360 X 768
Hard Drives
C: 500 GB Caviar Black SATA
E: 500 GB Caviar Black SATA
PSU
Ultra LSP 750
Case
Ultra XBlaster
Cooling
2 Fans, CPU Fan, PS Fan
Keyboard
Acer
Mouse
Logitech
Internet Speed
6 MB
Back
Top