Posted 23 June 2010 - 01:05 PM
Yesterday, I was infected with Mal/Fake-AV-BW and the adware Rogue Security products. Webroot Spysweeper detected it, and supposedly got rid of it, but it happenned again today. Once Spysweeper does was it does, I can't connect to the internet. I fix that by doing the automatic detect LAN settings.
AV Security Suite keeps popping up, but I know it's fake and that it's gone now that Spysweeper did its thing again. Something else popped up saying I was attacked from 18.104.22.168, port 53804. The port that was attacked was 52475. The threat was BankerFox.A. I have no idea what any that was, and I think it was part of the AV Security Suite thing. It kept telling me that the ssu.exe was infected as was rundll32.exe was too.
Random pop-ups keep occuring such as viagra.com and other very random websites. Spysweeper keeps alerting me that Z0G7YA1I0.com keeps trying to do something as well. I'm not very computer savy, but I can follow directions quite well. I need assistance getting my computer back to normal. Any help would be greatly appreciated.
I ran rkill and all I got was this:
This log file is located at C:\rkill.log.
Please post this only if requested to by the person helping you.
Otherwise you can close this log when you wish.
Ran as Owner on 06/23/2010 at 13:03:44.
Processes terminated by Rkill or while it was running:
C:\Documents and Settings\Owner\Desktop\rkill.com
Rkill completed on 06/23/2010 at 13:03:53.