Safe to delete?

Discussion in 'ewido anti-spyware forum' started by denis, May 30, 2007.

Thread Status:
Not open for further replies.
  1. denis

    denis Registered Member

    Joined:
    Mar 16, 2005
    Posts:
    137
    ---------------------------------------------------------
    AVG Anti-Spyware - Scan Report
    ---------------------------------------------------------

    + Created at: 16:19:45 30/05/2007

    + Scan result:



    HKLM\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E} -> Adware.DriveCleaner : No action taken.
    HKLM\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shellex\ContextMenuHandlers\{645FF040-5081-101B-9F08-00AA002F954E} -> Adware.DriveCleaner : No action taken.
    HKLM\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shellex\PropertySheetHandlers\{645FF040-5081-101B-9F08-00AA002F954E} -> Adware.DriveCleaner : No action taken.
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Desktop\NameSpace\{645FF040-5081-101B-9F08-00AA002F954E} -> Adware.DriveCleaner : No action taken.
    HKU\S-1-5-21-1004336348-602609370-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{645FF040-5081-101B-9F08-00AA002F954E} -> Adware.DriveCleaner : No action taken.


    ::Report end
     
  2. karl.ewido

    karl.ewido former ewido team

    Joined:
    Dec 9, 2005
    Posts:
    236
    Location:
    Germany
    Please check if you are really using the latest signature Updates.
     
  3. denis

    denis Registered Member

    Joined:
    Mar 16, 2005
    Posts:
    137
    Yep, i have. 815.910
     
  4. karl.ewido

    karl.ewido former ewido team

    Joined:
    Dec 9, 2005
    Posts:
    236
    Location:
    Germany
    Is this really the signature number of your Status screen?
    Please check if you have the 2574.dat file in the signature folder.
     
  5. denis

    denis Registered Member

    Joined:
    Mar 16, 2005
    Posts:
    137
    yep it is.;)
     
  6. bazer

    bazer Registered Member

    Joined:
    May 30, 2007
    Posts:
    3
    i dont think so i did and the recyle bin went, funny i then did 2nd update of today and after i restoured the above entrys the recycle bin came back and then did another scan after the def update drive cleaNER NO LONGER DETECTED SOMEONE F ,,,ED UP AT GIROSOFT
     
    Last edited: May 30, 2007
  7. denis

    denis Registered Member

    Joined:
    Mar 16, 2005
    Posts:
    137
    Yep, i did the scan again today, clean.:D
     
  8. blueoysterdvp

    blueoysterdvp Registered Member

    Joined:
    Jun 26, 2006
    Posts:
    135
    Location:
    Upstate NY, U.S.A.
    I got the same thing on my 30-05-07 scan.The Symantec site listed those same registry sub keys as the ones created by DriveCleaner,a misleading application that exaggerates reports of security and privacy risks on your PC.I deleted mine because after the scan the prompt read to ignore once instead of the delete setting it was at.There was also the usual cookie,so I figured DriveCleaner had the setting changed maliciously.

    AVG Anti-Spyware - Scan Report
    ---------------------------------------------------------

    + Created at: 11:49:38 AM 5/30/2007

    + Scan result:



    HKLM\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E} -> Adware.DriveCleaner : Ignored.
    HKLM\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shellex\ContextMenuHandlers\{645FF040-5081-101B-9F08-00AA002F954E} -> Adware.DriveCleaner : Ignored.
    HKLM\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shellex\PropertySheetHandlers\{645FF040-5081-101B-9F08-00AA002F954E} -> Adware.DriveCleaner : Ignored.
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Desktop\NameSpace\{645FF040-5081-101B-9F08-00AA002F954E} -> Adware.DriveCleaner : Ignored.
    HKU\S-1-5-21-1409082233-1035525444-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID\{645FF040-5081-101B-9F08-00AA002F954E} -> Adware.DriveCleaner : Ignored.
    HKU\S-1-5-21-1409082233-1035525444-725345543-1003\Software\Microsoft\Windows\ShellNoRoam\DUIBags\ShellFolders\{645FF040-5081-101B-9F08-00AA002F954E} -> Adware.DriveCleaner : Ignored.
    :mozilla.21:C:\Documents and Settings\Duane\Application Data\Mozilla\Firefox\Profiles\a3g34h4c.default\cookies.txt -> TrackingCookie.Imrworldwide : Ignored.


    ::Report end

    Hope I did the right thing.After I deleted the scan came clean,but I did delete those Registry sub keys.
     
  9. bazer

    bazer Registered Member

    Joined:
    May 30, 2007
    Posts:
    3
    are you sure you hav latesed sigiture updates 2575 in signiture folder also if you did delete these is your recycle bin still their as i think these are false alerts bazer in sunny kent uk
     
  10. blueoysterdvp

    blueoysterdvp Registered Member

    Joined:
    Jun 26, 2006
    Posts:
    135
    Location:
    Upstate NY, U.S.A.
    I lost my recycle bin also when I deleted the files.I got it back through kellys-korner utility resource.I had to manually download the latest sigs even though I'm a paying customer.But it was to late since I deleted the keys already.
     
  11. bazer

    bazer Registered Member

    Joined:
    May 30, 2007
    Posts:
    3
    i glad i wasnt the only one lucky i restored registry from quarenteen within avg but this is a bad error on avg antispy very little feedbackfrom them also think it may be time unless things improve to look elsware all avg/ewido is give some feedback and admit they made a mistake.
     
  12. karl.ewido

    karl.ewido former ewido team

    Joined:
    Dec 9, 2005
    Posts:
    236
    Location:
    Germany
    If you want to restore a quarantined registry entry it may show you an error message and does not restore this key correctly, but this will be fixed with the next Version.

    We're sorry for the inconvenience.
     
  13. Steel

    Steel Registered Member

    Joined:
    Jul 21, 2005
    Posts:
    219
    :D in the Year 2010
     
  14. peter.ewido

    peter.ewido former ewido team

    Joined:
    Nov 10, 2003
    Posts:
    737
    Location:
    Brno, Czech Republic
    Well... Could be next week actually :)
     
  15. Ocky

    Ocky Registered Member

    Joined:
    May 6, 2006
    Posts:
    2,677
    Location:
    George, S.Africa
    Wow ! 'Also so was' ! :gack: :D

    Better news for a change. Keeping fingers crossed. :cool:
     
  16. JC_Denton

    JC_Denton Registered Member

    Joined:
    Jun 14, 2007
    Posts:
    6
    Location:
    Weltstadt
    Re: Safe to delete? [not really, no]

    Hi,

    just introduced myself in the "Where in the World?"-Thread.

    It only occured to me today :oops: that my recycle bin is actually missing and I found the answer in the AVG-Report. The "645FF040-5081-101B-9F08-00AA002F954E" entries in the registry have been deleted. Unfortunately the files are not in quarantine anymore, someone (?) must have got rid of them entirely.

    :rolleyes:

    That sounds mighty interesting to me. Is there actually a clever way to (is that the word?) revive the recycle bin?! I fiddled around with the registry a little, and get the icon to show up on desktop, but the name doesn't and the program itself does not work, it's simply not 'clickable', if you know what I mean. No shortcut to the real thing, so to speak...

    :doubt:
     
  17. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    57,719
    Location:
    Texas
  18. JC_Denton

    JC_Denton Registered Member

    Joined:
    Jun 14, 2007
    Posts:
    6
    Location:
    Weltstadt
    Yep, worked just fine, I'm impressed by such quick
    help at 20 to 3 in the early morning (at my location).

    Thankyou, thankyou, thankyou. :D
     
  19. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    57,719
    Location:
    Texas
    Good to hear JC_Denton. :D
     
  20. JC_Denton

    JC_Denton Registered Member

    Joined:
    Jun 14, 2007
    Posts:
    6
    Location:
    Weltstadt
    Yes, indeed. And maybe It'll help some other poor souls as well.:cool:
     
Thread Status:
Not open for further replies.