I recently had my computer infected with a virus that showed a blue background screen on my desktop with 0 and 1's. It had big red warning sign, etc. I took the computer to my local shop and they fixed the problem. I now have, along with McAffe and Malwarebytes anti-malware. Everything seemed to be working great until a day or two ago. Everytime I googled searched something and clicked on the link i was redirected to an ad site or another search engine of sorts. Also at times I would get up pop-up stating error in my running system, and then a fake scan popping up showing infections in files on my computer.... Please help..
HiJackThis and Malwarebytes logs
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Database version: 5769
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
2/15/2011 6:58:22 PM
mbam-log-2011-02-15 (18-58-22).txt
Scan type: Full scan (C:\|)
Objects scanned: 240056
Time elapsed: 1 hour(s), 42 minute(s), 38 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 3
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\vesrcocj (Trojan.Downloader) -> Value: vesrcocj -> Quarantined and deleted successfully.
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
c:\WINDOWS\Temp\uetglsnpw\cjjiddfsika.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\documents and settings\networkservice\local settings\temporary internet files\Content.IE5\DNPARRRN\so[1].exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\documents and settings\networkservice\local settings\temporary internet files\Content.IE5\V73LLNPY\so[1].exe (Trojan.Downloader) -> Quarantined and deleted successfully.
[HJT log removed - Broni]
HiJackThis and Malwarebytes logs
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Database version: 5769
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
2/15/2011 6:58:22 PM
mbam-log-2011-02-15 (18-58-22).txt
Scan type: Full scan (C:\|)
Objects scanned: 240056
Time elapsed: 1 hour(s), 42 minute(s), 38 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 3
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\vesrcocj (Trojan.Downloader) -> Value: vesrcocj -> Quarantined and deleted successfully.
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
c:\WINDOWS\Temp\uetglsnpw\cjjiddfsika.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\documents and settings\networkservice\local settings\temporary internet files\Content.IE5\DNPARRRN\so[1].exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\documents and settings\networkservice\local settings\temporary internet files\Content.IE5\V73LLNPY\so[1].exe (Trojan.Downloader) -> Quarantined and deleted successfully.
[HJT log removed - Broni]