Removing Viral entries in Registry in Windows XP Pro - Is Reg Edit my only option? RRS feed

  • General discussion

  • A year ago I downlaoded a win rar winzip tool via tu cows.  BAD IDea and a virus later - shoulda spent the dosh for Winzip instead.  Onto the question.  THe virus loaded a number of items up and posted a PDF as the wallpaper pushing an anti virus campaign.  Huh.  I used file manager to find the files that were being created in the time frame the software was loaded and then deleted the files.  After my restart I found where the rest of the 'startup files were being secreted.  I deleted the files yet again and then I used regedit to locate the launch commands that created the executables and deleted them.  But there are still some errors as the startup file - still stored somewhere in the registry attempt to launch these 'not found executable files  So I get errors on every startup.  To be clear the virus did not use the windows install program to install itsself.

    I just tried using Live OneCare to perform the registry correction but it does not seem to bother to check or correct registry entries pointing to non existent file.
    Registry cleaners have a massively bad rep.

    I last really used Reg Edit back in the W4Workgroups era..  Is using Reg Edit and crawling throug looking for the only option I have.  The registry is quite daunting since the days of Work Groups.

    Old sock.

    • Changed type JimR1Moderator Wednesday, June 17, 2009 3:57 AM
    • Moved by JimR1Moderator Wednesday, June 17, 2009 3:57 AM (From:Windows Live OneCare Anti-Virus)
    Wednesday, June 17, 2009 3:35 AM

All replies

  • Since this is not really a One Care issue I have moved this post to the off topic folder. It might be a real time saver and also yield a better result to just reinstall Windows rather than searching the registry line by line with no guarantee you will find the remaining malware. Before taking any other action you can call 1-866-PCSafety or 1-866-727-2338 for help with malware removal. This phone number is for virus and other security-related support. It is available 24 hours a day for the U.S. and Canada.
    Jim - MVP Windows Live - Forum Moderator - Live One Care - Live Mesh
    Wednesday, June 17, 2009 4:07 AM