impossible to delete registry subkey

Discussion in 'Malware Help (A Specialist Will Reply)' started by lplecoq, Aug 24, 2005.

  1. lplecoq

    lplecoq Private E-2

    I am unable to delete the malware registry entries (legacy_orans, legacy_netinfo, legacy_ssl etc.) can anyone tell me whether the registry cleaner tools mentionned in some of the posts will be able to, or tell me how to force the delete...
    Infection: orans / netinfo worm + friends...
    Why am I going at it manually:
    because my antivirus (MacAffee) detected but was not able to clean or delete (is that a new trick of old worms?) the malware.
    I managed to get rid of the exe (at least they seem to be gone and not reappear anymore at boot time) and to restore the "security" registry entries to their original settings.
    I cannot remove the entries mentionned above. I did start your removal procedure which identified a lonely forgotten offender but there too was unable to get rid of it. I forgot to store the results and stopped after running the online RAVantivirus I would rather clean my registry and then go again through the whole procedure.
     
  2. lplecoq

    lplecoq Private E-2

    Hi,
    I went through the whole procedure and only forgot to note the two items Spybot got rid of. Actually, as I suspected there was nothing left to detect. However, the entries in the registry which I cannot delete are still there...
    without the corresponding exe they should not do much. Still I would rather eliminate all traces of these worms...
    The main entries are: LEGACY_NETINFO, LEGACY_ORANS and LEGACY_SSL, also in HKEY_USERS\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit
    a value LastKey mentioning "LEGACY_ORANS" etc.

    I worry that they could under the right circumstances facilitate a new infection...

    I join the Log
    Thanks in advance for the help...

    Lionel
     

    Attached Files:


MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds