Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Suspicious Avira event - blocked access to registry


  • Please log in to reply
1 reply to this topic

#1 Tempusername

Tempusername

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:01:15 AM

Posted 09 April 2016 - 04:05 AM

While I was reading a news article on CNET (I use the latest version of Pale Moon as my default browser) I noticed a pop up from Avira saying it had blocked access to the registry. There's no other info it provides, just that it prevented access.

 

I don't recall ever having anything like this happen before, at least not seemingly out of the blue or without manually editing the registry myself. My first thought was a drive-by download from a hijacked page but the extensions I use (uBlock Origin, uMatrix, and httpseverywhere) should theoretically prevent such things. While I can't remember exactly what other websites I may have had open I'm pretty sure I didn't visit any place unusual or out of the ordinary that I don't check most everyday without problem.

Other than that nothing out of the ordinary has happened since. I disconnected my PC from the Internet for a time anyway.

 

Things that might have caused it:

Shortly before this event happened I had created a Windows XP Home edition bootable USB using Rufus (specifically the portable edition which I ran from the desktop).

A few days earlier I had installed a few things - Microsoft .NET Framework 4.5.2, ScpToolkit, Microsoft Xbox 360 Accessories 1.2, and received an update for Pale Moon 26.2.0 (x86 en-US).

ScpToolkit might have something to do with it as I believe it has some automatic update features and the program itself deals with drivers and the registry.

 

I am using Windows 7 Ultimate 32-bit.

My anti-virus (Avira and Malwarebytes - both the free editions) is always kept up to date to the best of my abilities. I ran some scans with both of them but came up with nothing. Still, I'm feeling anxious about the whole thing and would like some peace of mind, if you can provide it.

 

Thanks!



BC AdBot (Login to Remove)

 


#2 buddy215

buddy215

  • Moderator
  • 13,301 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:07:15 PM

Posted 09 April 2016 - 05:46 AM

Welcome to BC...

 

If it is the ScpUpdater that Avira is blocking and you don't need the ScpToolkit to be in the Windows Startups then

you can disable the Startup and stop the updater. CCleaner's Tools will show you what is in Windows Startups and some Scheduled Tasks.

You can disable items in those lists about clicking on them and then choosing to Disable on the right.

 

You can find the updater using the Windows Services Console, too. Type in services.msc in the Start search box and press ENTER.

 

If you need help in deciding what to Disable do this:

 

Post the three lists mentioned below using CCleaner.

Open CCleaner and click on Tools. Choose Startups. On that page you will see a list of Windows Startups and at the top tabs for each browser and Scheduled Tasks.

At the bottom right of that page you will see a button when clicked will allow you to Copy and Paste the list of Windows Startups and Scheduled Tasks into your next

post. Please do that.

 

Open CCleaner and click on Tools. Choose Uninstall. On that page you will see a list of programs installed on your computer and at the bottom right of that page you

will see a button when clicked will allow you to Copy and Paste that list in your next post. Please do that.


“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss
A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users