Hi, I can't beileve I am here finally I have been trying for 4 hrs! I have been redirected so many times! and I am getting numerouse pop ups! here is what is hapening. I am getting pop ups that say : system broken file association in registry. other pop ups say: Adware.tracking cookie others say: XP internet Security Center this pop up says my fire wall is turned off. now when I go to control panel and look at the fire wall it is turned off and I can not turn it on!...and i don't recall turning it off???
I get another pop up with words about system recovery. another pop up with words of: disabled task manager.
another pops up with words of : found Trogen BNK. Win32. keylogger.gen C:\Program files \Messenger\msmsgs.exe
these pop up with in seconds of each other!
I ran scans after scans with Super Anti spy ware, it keeps finding the same things, and the list grows! from 5 to 13 and now 17 infections! I updated it each time and ran yet more scans and the same files appear with more infections!
Help!!!!
Now, I cannot see any programs listed under the start nutton! ???
Now I cannot see the saved folders with all my word docs. saved in them !...nothing is showing up in my documents!??? it says empty??
the program button says empty...?????
The smybol for Super antispyware that was in my tool bar at the bottom right next to the clock is now gone? it was there before I had this computer reboot, as instructed by super antispyware.???? where is it now?
I don't know that I'll be able to get back to this web site forum once I leave it. I twas so difficult to get here this time, I not sure how I did it? FYI: I am not a computer expert just a user with a tad bit more knowledge about computers and affiliated problems than adverge perhaps.
I appreciate all your help! I really appreciate your help!!
I can be reached at: flywelder@live.com
below I hope to post the latest scan log, I might not be able to as i cannot find any icon for SAS to click on!????
I might go ahead and post this message so that you folks hear from me, and can email me with advice and instructions. so I can post my scan log next. remember my email above, I'll be looking there for help.
I am going to use 'search' and try to find SAS and maybe a scan log file. if I am successful I try and post it at the botom of this message.
I make a request right now, to have diagnostics be run by SAS developers.....it think it would be wise as I feel I am way in over my head now. would you agree that would be a good step? and if so, how do we proceed? would there be a way to learn where these viruses came from?...so they can be avoided in the future.
Thanks, thanks, thanks!
David 5-06-2011
SUPERAntiSpyware Scan Log
https://www.superantispyware.com
Generated 05/06/2011 at 01:56 PM
Application Version : 4.51.1000
Core Rules Database Version : 6999
Trace Rules Database Version: 4811
Scan type : Complete Scan
Total Scan Time : 00:38:38
Memory items scanned : 467
Memory threats detected : 3
Registry items scanned : 7213
Registry threats detected : 8
File items scanned : 27521
File threats detected : 10
System.BrokenFileAssociation
HKCR\.exe
Disabled.TaskManager
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System#DisableTaskMgr
HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM#DISABLETASKMGR
HKU\S-1-5-21-605865402-4069305935-1106247723-1011\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM#DISABLETASKMGR
Trojan.Agent/Gen-FakeAlert
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\UYSXVIYJUISDKJH.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\UYSXVIYJUISDKJH.EXE
C:\DOCUMENTS AND SETTINGS\BIOMED\LOCAL SETTINGS\APPLICATION DATA\ISJ.EXE
C:\DOCUMENTS AND SETTINGS\BIOMED\LOCAL SETTINGS\APPLICATION DATA\ISJ.EXE
[uySxVIYJUiSDkJH] C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\UYSXVIYJUISDKJH.EXE
C:\WINDOWS\Prefetch\ISJ.EXE-35FA3FA6.pf
C:\WINDOWS\Prefetch\UYSXVIYJUISDKJH.EXE-030F83E2.pf
Trojan.Agent/Gen-FakeAV[Nx]
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\17555236.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\17555236.EXE
C:\WINDOWS\Prefetch\17555236.EXE-36AE10C6.pf
Disabled.SecurityCenterOption
HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER#ANTIVIRUSDISABLENOTIFY
HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER#FIREWALLDISABLENOTIFY
HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER#UPDATESDISABLENOTIFY
Trojan.Agent/Gen-FakeSecurity
C:\DOCUMENTS AND SETTINGS\BIOMED\DESKTOP\WINDOWS RECOVERY.LNK
C:\DOCUMENTS AND SETTINGS\BIOMED\START MENU\PROGRAMS\WINDOWS RECOVERY\UNINSTALL WINDOWS RECOVERY.LNK
C:\DOCUMENTS AND SETTINGS\BIOMED\START MENU\PROGRAMS\WINDOWS RECOVERY\WINDOWS RECOVERY.LNK
Trojan.Agent/Gen-Virut
C:\WINDOWS\SYSTEM32\DRIVERS\1409.SYS