PDA

View Full Version : Uh-Oh...Will this cause big problems?



Vamp
01-11-2006, 09:38 AM
I just did an Ad Aware scan and the one critical object that came up is.

Vendor: Windows
Type: RegData
Category: Vulnerability
Object: HKEY.CLASSES.ROOT regfile:shell\open\command...
Comment: Possible Virus Infection

What do I do here? Obviously removing it would cause massive problems with the registry...?

Barbarossa
01-11-2006, 10:47 AM
Try using a virus scanner to determine whether there is an actualy virus infection, and to identify it. Then you should be able to find removal instructions.

Vamp
01-11-2006, 10:56 AM
I ran AVG, came up with no viruses...Should I just remove the critical object with Adaware or will it definitely cause problems?

Barbarossa
01-11-2006, 11:13 AM
Ad aware is for detecting adware and spyware. I wouldn't trust it to identify a virus infection, especially as it only says "possible".

Is your AVG set up to scan the registry? Has it also got an up to date pattern file?

Try Housecall (http://housecall.trendmicro.com/)

Also, post the contents of that registry key here so we can see if it looks fucksored.

If you just simply remove it, there's a good chance you will feck up your ability to open files or something... :dabs:

Vamp
01-11-2006, 11:30 AM
How do I find the contents of that key?

Barbarossa
01-11-2006, 11:42 AM
Start -> Run. Type Regedit

Expand HKEY_CLASSES_ROOT and find the entry that says RegFile.
Expand that, and drill down to shell\open\command. The value is in the right-hand pane.

Mine just has a default string value, data = regedit.exe "%1" :blink:

Vamp
01-11-2006, 11:49 AM
it just says

Name: (Default)
Type: Reg_SZ

Barbarossa
01-11-2006, 11:54 AM
OK, I think all that is wrong is that your PC won't know what to do when it encounters a .reg file. Ad-Aware thinks this could have been caused by a virus. :unsure:

I don't think it's too serious, you have scanned with AVG and you don't seem to have any viruses.

What you could do is put in what I've got in the data, and re-run ad-aware to see if it is happy. (Be careful when editing the registry though, you really should take a backup of it first, but it should be OK)

Good luck!

Vamp
01-11-2006, 12:13 PM
What/Where/How exactly do I put in the data field?

Thanks a lot for your help! I really appreciate it...What problems would be caused by my PC not knowing what to do with a .reg file though?

Barbarossa
01-11-2006, 12:20 PM
oh sorry.

In regedit, on the key where you were (regfile\shell\open\command) ... double-click "(default)", and enter:


regedit.exe "%1"

and click OK.

You'd probably not have encountered any problems though, unless you tried to update the registry with a .reg file.. - who knows really?

Vamp
01-11-2006, 12:32 PM
Thanks again...Going to run Adaware now...my last PC was a wormhole, virus-ridden mess...I try keep this one spic and span. No viruses for the year and half since I got it. :P

Vamp
01-11-2006, 12:47 PM
Thanks dude...It worked!

Barbarossa
01-11-2006, 12:49 PM
Good-oh. You're welcome ;)