Lost Administrative Privileges Windows 7

Discussion in 'Malware Help (A Specialist Will Reply)' started by EcoGeek, Jan 29, 2013.

  1. EcoGeek

    EcoGeek Private E-2

    I lost my adminstrative privileges. I noticed this when trying to access event viewer and access was denied. Access was denied on log folder and in Process explorer access to view processes was denied.

    Runing sfc /scannow gaves repair error me [SR] Cannot repair member file [l:22{11}]"t2embed.dll" of Microsoft-Windows-Font-Embedding, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral,

    indicating bug that Duqu exploited to install itself. ... that prevents access to the buggy component, file t2embed.dll

    I appreciate your time and assistance!
     

    Attached Files:

  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Your logs were from safe boot mode which are really not that helpful in properly checking a PC for malware. However since all of your logs were clean, it appears that you are having Windows problems not malware problems. I suggest that you try the below and then if still having problems, post in the Software Forum.

    Be patient while doing the below. The fixes can sometimes take quite awhile to run. Especially the permissions repairs. It may be best to kick it off and goto bed or do something else. It is better not to run anything while the repairs are going on.



    Download Windows Repair by Tweaking.com and unzip the contents into a newly created folder on your desktop.
    • Now run Repair_Windows.exe by double clicking on it ( if you are running Vista or Win 7, use right click and select Run As Administrator)
    • Now select the Start Repairs tab.
    • The click the Start button.
    • Create a System Restore point if prompted.
    • On the next screen, click the Unselect All button to first deselect all repairs.
    • Now select the following repair options:
      • Reset Registry Permissions
      • Reset File Permissions
      • Register System Files
      • Repair WMI
      • Remove Policies Set By Infections
      • Repair Windows Updates
      • Set Windows Services To Default Startup
    • Now on the lower right side check the box to Restart/Shutdown System When Finished
    • Then make sure the Restart System radio button is enabled.
    • Shutdown any other programs that you are running now before continuing.
    • Now click the Start button.
    • Be patient while the tool repairs the selected items.
    • It should reboot automatically when finished.
    Oh and one other thing to check would be for problems with running Avira, WinPatrol and Spybot's Teatimer. I would uninstall all of them and see what happens.
     
  3. EcoGeek

    EcoGeek Private E-2

    Unfortunately that didn't work. It actually made things a bit worse. I had a backup on an external drive which I tried but it wouldn't recognize the restore point on it.

    When I ran RogueKiller it found 10 entries and asked if I wanted to delete them. I didn't do anything. I believe it is in the report. Should I be concern about that or is it innocuous.

    Thanks
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Those were not problems. They are normal.

    You need to post in the Software Forum to work on your Windows problems because you are not having malware problems.
     
  5. EcoGeek

    EcoGeek Private E-2

    Thanks Much. The only secure way for me at this time is to format and reinstall windows :(
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome. Good luck with your reinstall.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds