Virus protection scans and restoring the system

I am running Windows XP SP3 on a Dell Inspiron 6000 laptop that was purchased in 2005.
---------------------------------------------------------------------------------------
I had trouble with a browser hijacking, in the form of two executables: b.exe and msa.exe.  I deleted them, cleaned my registry with CCleaner upwards, and now I can use my browser again.

HOWEVER...

There seems to be something else that hover on my computer.  I can't run Spybot - S & D, WinPatrol, or the Microsoft Windows malicious software removal tool.

In the case of Spybot, I initially managed to run a scan, but it failed after less than a minute and now any attempt to reopen the program gives me the error message "Windows cannot access the specified device, file, or path. May not permissions to access you the item. »

For WinPatrol, I never received the same error message; I can't open the program.

For the Microsoft Windows Malicious Software Removal Tool, I was able to extract after downloading and running the scan, but it lasted less than 30 seconds before crashing as Spybot.  Now I can't seem to reply to all - no error message or anything.

I have Norton Internet Security 2009 on my computer.  It can start and analyze, but is not picking anything up.  He has not yet identify b.exe and malicious msa.exe, so there may be something wrong with her as well.

And Yes, before ask you, I have tried to run the scans in Mode safe mode with networking, nothing helps.  It will just work.

I also tried restoring the system twice, using two different restore points.  My computer tells me that nothing has changed in the system and therefore don't restore; This of course isn't the case since I obviously wasn't having this problem yesterday.

Please, please, please help me!

An infection on your computer, probably a rootkit , look at what you do.  When he sees an attempt to run a program of security such as Spybot, he kills the program and how to change the permissions on executable to prevent you to run the program again.  The rootkit is probably do other nasty things that you can't see, like sending spam or to join a botnet .

You can run antivirus scanners and removal of rootkit programs available on the Internet and we hope that they can fix it, but the only solution is to reformat the drive and reinstall Windows.  That's what I had to do recently, on a computer owned by one of my clients in consultation, who did exactly what you describe.  Several analyses of virus and rootkit did not help.

I wish I had a better solution for you.   :-(

Tags: Windows

Similar Questions

  • System Restore - question: the computer is not protected. Restart the computer and restoring the system running again. "

    When I run the SYSTEM restore, I get the following message: "the computer is not protected. Restart the computer and restoring the system running again. "I already did and it does not help.  I have Dell Windows XP

    Hello

    Try this link it may be useful you http://www.kellys-korner-xp.com/xp_restore.htm

    Under the heading, enable and disable the system restore... Reg fix?

    Also, it wouldn't hurt to run for malware, spyware, etc...

    Concerning

    GT4U

  • Whenever my computer installs the Microsoft/Windows updates I get Internet and restoring the system to return.

    Whenever my computer installs the Microsoft/Windows updates I get Internet and restoring the system to return.

    Cite your version of IE and the full version of Windows (for example, WinXP SP3;) Vista 64 - bit SP2; Win7 RC. Win7) during the validation in an IE specific forum or a newsgroup. Please do it in your next reply.

    By "The Internet began" do you mean that you encounter errors Page can not be displayed ?

    Updates have you installed just before this problem started? Have you installed an update of the third-party driver that is offered by Windows Update?

    TIP: Never, EVER to use system restore to 'Cancel' an update, Service Pack, or upgrade of IE!  Instead, uninstall the update, Service Pack, or the IE patch & reboot.  If that does not resolve the problem, then try System Restore. ~ Robear Dyer (PA Bear) ~ MS MVP (that is to say, mail, security, Windows & Update Services) since 2002 ~ WARNING: MS MVPs represent or work for Microsoft

  • Problem with newest flash drive and restoring the system

    Greetings,

    SYSTEM - Windows XP SP3 with browser Firefox 5.0

    I run an anti-virus scan every day on my PC (Avast free 6.0.1023 with the updated definitions).

    Then I downloaded the latest version of the Flash player on your site at www.adobe.com/downloads/ last night but it was not installed.

    Ran a virus on the plug-in installation file and scan scan has reported that he was not able to scan multiple files because they were protected by password in archive - NEVER SAW THIS BEFORE.

    So I deleted the file from archive.

    This morning when I ran an antivirus scan everyday, he pointed out that several protected files in the last system restore point since the installation of Flash player file.

    So I tried to restore from Friday, the previous week, but the restore operation failed.

    Tried two days last month and the month before that; no notice of restore.

    Finally, I shut down the system, restore and rebooted the PC to erase all data in restore file.

    Then restarted system restore and ran the antivirus and all is well again.

    I used restoring the system previously on this computer without any problem.

    Also, I noticed the name of file to Setup plug-in is not the format of the normal name - install_flashplayer10_mssd_aih.exe

    instead of install_flashplayer.exe.


    I'm confused, why change a system that works?

    Thank you for your time and your help.

    Try to download installers from http://www.adobe.com/products/flashplayer/fp_distribution3.html

  • My Windows 7 Pro system has some serious hardware, internet connection and security issues. The system image and restore the system in case of failure.

    My Windows 7 Pro system has some serious hardware, internet connection and security issues.

    My efforts to remedy by restoring a system image backup failed.  At this point, I'm ready for a new clean install if I have to buy a drive to do.  My question is whether a professional Ultimate upgrade will or will not fix these bugs.  In addition, what is the cause of restoring the system to fail?  I never turned off or cannot create regular restore points.

    Original title: upgrade a "Fix" for existing system problems?

    My Windows 7 Pro system has some serious hardware, internet connection and security issues.

    My efforts to remedy by restoring a system image backup failed.  At this point, I'm ready for a new clean install if I have to buy a drive to do.  My question is if an upgrade to Professional Ultimate will be or not correct not these bugs.  Also, what is the cause System Restore to fail?  I never turned off or cannot create regular restore points.

    Hello

    1 re-installing/repairing software will not fix hardware issues.

    2. the operating system upgrade is not the way to solve computer problems that can be carried forward.

    3 1. If you use Norton, you should disable Norton inviolable Protection before using System Restore.

    http://Service1.Symantec.com/support/sharedtech.nsf/pfdocs/2005113009323013

    AVG will cause problems with SR too.

    «Temporarily disable AVG»

    http://www.Avg.com/ww-en/FAQ.Num-3857

    2. try to use Safe Mode system restore.

    http://Windows.Microsoft.com/en-us/Windows7/products/features/system-restore

    "Start your computer in safe mode.

    http://Windows.Microsoft.com/en-us/Windows/Start-computer-safe-mode#start-computer-safe-mode=Windows-7

    3 Malware will stop at the system restore.

    Download, install, update and scan your system with the free version of Malwarebytes AntiMalware:

    http://www.Malwarebytes.org/products/malwarebytes_free

    ____________________________________

    We really need for more details:

    "My Windows 7 Pro system has some serious hardware, internet connection and security issues.

    See you soon.

  • Windows Vista Home Edition - create and restore the system image

    One of my laptops old becomes a problem with a disk error.  I need to create a system image, replace the disk, and then restore the image.  Vista Home does not include the option to create an image - although a lot of 3rd party tools do.  Does anyone have experience using a 3rd third-party tool to do what I want, that is, restore the saved image to the new disk.  I plan to use a USB external drive to store the image so anything I start since then will have to be able to see and read from the external USB drive.

    Thank you, Ben (Project MVP)

    Hello

    be able to boot from a USB key depends on the properties of your motherboard

    hard drive manufacturers will normally provide the cloning software to move your operating system installed from the old to the new hard disk

    Search for information on this subject on their Web site

    as you have vista home version you'll need 3rd party software

    link below is an example of this:

    http://www.Acronis.com/homecomputing/products/TrueImage/index.html

  • How to back up and restore the system and program files to install new OS

    Hey all,.

    I recently bought a new Toshiba 1 TB HARD drive. My old WD 1 TB HARD drive was giving me the end. occasionally, I get the BSOD. In addition, on occasion, when I restart the computer it automatically runs chkdsk program and reported several bad clusters. However the chkdsk program never seems to report the bad clusters, so periodically, when I restart, it runs and bring back them again.

    I would like to the image or to back up all the files on my HARD drive problem, then do a fresh install of Win 7 Ultimate 64 bit (my current operating system) to the new HARD disk, and then restore the clone or image system and program files on the new HARD drive. I don't want to go through the process of reinstall all again, when everything seems to work very well. Given that the image of Win 7 program makes and accurate picture of the HARD drive, then use this program would cause the new installation of Win 7 Ultimate 64 bit to be replaced by the restoration of the image. Therefore, if there should be corrupted data under a bad cluster of old HARD drive, that data would not be transferred and my existing problem would be transferred to the new HARD drive.

    On the other hand, if I do a clone of disc, I'm not sure that existing programs would continue to operate on the new HARD drive and would require a new install of each program based on the new installation of the operating system Win 7! I would have then lost my time to make a transfer of program/data files to my newly formatted and freshly installed OS.

    Anyone know of any program (Acronis True Image, Paragon, Norton Ghost, Macrium Reflect, etc) that will allow you to image or clone the program and data (including the operational needs of the files such as: Win32 system files, files of activation, etc.) so that they will work properly on the new installation of the operating system?

    Any help would be greatly appreciated. Have a great day.

    Ed Wood

    "Questionable" disk formatting can hide bad sectors or replaces the original format.  It is not known if / when bad sectors could / will reappear.

    If you have a player that you suspect problems, find advanced manufacturer of the car diagnostic tools.  Go to WD wdc.com website and get their diagnostic tools Data LifeGuard, to 'really' to test your drive.

  • Without end "system diagnostic" at startup and not works do not "update and restore the system.

    Windows 8.1 is not start. Here are the symptoms:

    -If I try to boot, it gets stuck in the windows with balls in traffic logo

    -If I force close at boot, "Automatic repair" starts and gets stuck in the "diagnostic system.

    -Start gets stuck in the windows as said before logo

    -J' managed to go to menu setting start, but when I press the "Upgrade or system restore" button, nothing happens and gets stuck again.

    Sorry if the error messages are not exact, but I translated them are Italian.

    The pc is an Acer Extensa 5230th. Windows should be 32-bit, but I'm not sure.

    Hi Federico,.

    Please select your language in the drop-down list at the bottom of the page to post your question in the language of your choice. The forum in which you've posted is for English only. If you can't find the desired language, the support options for additional international sites are at the link below. 

    Please, select su idioma in her lista desplegable anterior to send you in el idioma of choice su pregunta. El foro Québec ha published're para frances only. If usted no encuentra el idioma no desee por encima of las options para support otros destinos international themselves can find following el siguiente enlace:

    http://support.Microsoft.com/common/international.aspx

    Have a good weekend. : D

    Javier Ruge

    Soporte Técnico Ingeniero

  • Computer has been recently hijacked with "XP security alert" want to pay me to analysis and clean. Knew it was funny. Managed to get rid of the virus (in appearance) and did a system restore. Since

    Computer was hijacked yesterday with "XP security alert" want to pay me to analysis and clean. Knew it was funny. Managed to get rid of the virus (in appearance) and did a system restore. Since then, have been opening several programs such as anti-virus, security, most of the elements in the Panel of control etc. Always can access internet, but only through IE and Mozilla not. Cannot open Outlook Express and need to connect to the sky for e-mail. Impossible to download and run programs as computer application which program I use to open or run the said downloads.  Help!

    It would seem that your registry database has been changed in order to disable the functioning of all. EXE file. You need to restore it, but cannot use regedit.exe to do. Solution: make a copy of the regedit.exe regedit.comappointed.

    Open a command prompt by typing the Windows key + R and type cmd then hit . Type in this commnd:

    copy c:\windows\regedit.exe regedit.com

    ... and click on . Next type:

    Start regedit.com

    ... and click on .

    In the RegEdit program, navigate to the registry:

    HKEY_CLASSES_ROOT\Exefile\Shell\Open\Command

    In the right pane, double-click the (default) value. Delete the current value data, and then type:

    "%1" %*

    (i.e.: quote-percent-one-quote-space-percent-asterisk)
     
    Close the Regedit utility. Your. EXE files must be start normally now. If the problem persists, or redone surface shortly after this procedure, your computer is still infected. In any event, the execution of full scans with MalwareBytes and your own virus anyti is recommended.

    The complete procedure (for XP) is detailed here.

  • Do pop ups: update of Kaspersky Anti-virus and Unspecified changes to CONFIG SYS may have caused the problem after an unexpected shutdown and attempt to restore the system.

    Original title: unable to system restore

    After the unexpected stop down and try the system restore.  I got up a window pops that says update my KASPERSKY anti-virus program, I do not have KASPERSKY.    Another said unspecified changes "caudate root found" SYS CONFIG window may have caused the problem.   Any ideas?  I have Vista and Trend Micro Internet security

    Hi JevenStulie,

    1. are you able to boot into normal mode after receiving these error messages?

    You can try these steps and see if it helps.

    Step 1:

    You can check if the problem occurs in safe mode with network.

    Start your computer in safe mode

    Startup options (including safe mode)

    Step 2:

    If you do not experience the problem in safe mode with network, then you can read the following article to download the Microsoft Safety Scanner and analysis complete on your computer.

    Microsoft safety scanner

    Note: When you perform the analysis, there are chances of losing the data that you can take a backup of important data before performing analysis.

    Hope this information is useful.

  • HP Pavilion dv6 Notebook PC: restore the system and drivers

    Hello. A few days ago I faced a bad experience with my laptop HP Pavilion dv6 Notebook PC. System crashed. At any time, I tried to turn it on, an error message appears and the system was blocked. The message was: FILE: \BOOT\BCD status 0xc000000f, asking for the disc of Windows 7 system running. But the system disk did not run at all. I checked the situation and found the hard drive with 6 partitions instead of 2. I found a named partition BOOT (X which was a replica of C:.)  When I tried to restore the system with the recovery disc, something has obtained control of the recovery disc, so that C: might not be formatted; nor was X:. Also, I tried to cancel the file in X: but disc was protected and does not allow changes. If only I could get my uninstalled hard drive and all partitions have been cleaned. I got my hard drive cleaned perfectly, but my recovery disk can be installed correctly. So, the system has not yet restored. My question is: what should I do to get my laptop with the system restore? any ideas?

    When you request support, please provide the number full name or product model of the HP computer in question. HP/Compaq made thousands of computer models. Without this information, it can be difficult, even impossible to help you solve your problem.

    The information requested above are at the bottom of your computer or inside the battery compartment. , Please do not include your serial number. Please enter the product/model information in the HP Online Support page for consumers , and/or post it here for our review.

    Based on the age on your computer, it could come from the factory with the scores 5 or more. It is common on newer computers that use UEFI and GPT partitions. "Windows 7 system disc", the computer asking wass is a Windows 7 repair disc or a Windows 7 installation disc. None of these discs come with your HP computer and must be downloaded or created in Windows.

     

    Start by using your HP recovery disk set (should be DVD 3 or more). Insert the #1 disc and restart your computer to start the process. Insert the remaining disks as requested, until the recovery is complete.

     

    If this does not work, and you can read the product key 25 character Microsoft Windows 7 on th COST Microsoft attached to your computer, see "How to install Windows 7 without the disc" for download Windows 7 SP1, create the Windows installation DVD and install Windows 7.  If you prefer to install Windows 7 from a USB Flash drive, please download the Windows 7 USB/DVD download tool to create a Windows 7 SP1 USB Flash Drive. After the installation of Windows by using this method, you will have is more HP or software customizations. You'll also need to identify and download the drivers for hardware devices that Windows 7 does not already provide drivers for.

    If you have any other questions, feel free to ask.

    Please click the White Star of KUDOS to show your appreciation

  • After "critical update" 12/23/11, my computer is very slow and crashes, also will restore the system.

    After the "critical" update that is installed on my computer 12/23/11 my computer started running very slowly, he drove my Norton anti virus, blocking, I am unable to restore the system. any ideas?

    Hello

    1 update you installed recently? (Please mention the number of KB)

    2. which version of the Windows operating system is installed on your computer?

    3. what exactly happens when you try to perform the system restore?

    I would suggest trying the following methods and check if it helps.

    Method 1:

    Run the fixit from Microsoft Fixit article and if that helps.

    Fix Windows system on slow Windows performance issues:

    http://support.Microsoft.com/mats/slow_windows_performance/

    Method 2:

    Start in safe mode and check if the same problem persists. If the problem not persists in safe mode, then turn on the computer in a clean boot state and check if that helps.

    Step 1:

    How to start in SafeMode in Windows 7: http://windows.microsoft.com/en-US/windows7/Start-your-computer-in-safe-mode

    Step 2:

    Put the computer in a clean boot state, and check if that helps.

    How to solve the problem by running the clean boot in Windows Vista and Windows 7:
    http://support.Microsoft.com/kb/929135

    Note: Once you have completed troubleshooting, perform the steps in the step 7: to reset the computer as usual.

    Method 3:

    Check the installation update and try to remove the updates that you installed recently and then try to remove it and check if it helps.

    Remove an update:

    http://Windows.Microsoft.com/en-us/Windows7/remove-an-update

    And also ensure that there are no pending restart, if there are any pending restart, then restart the computer and check if that helps.

    Hope the information is useful.

  • I have Microsoft XP 3 package and some how I lost the ability to restore the system. How can I reinstall the system restore on my computer please?

    I have Microsoft XP Package3 and somehow, I lost the ability to restore the computer to an earlier date. How can I reinstall the system on my computer restore it please?

    Thank you.

    Santosh Mathur

    E-mail address is removed from the privacy *.

    Help us understand what "I lost the ability to restore the system" actually mean for you...

    Are you unable to launch/open the system restore?
    Are you unable to create a new Restore Point manually?
    Your system restore calendar is empty dates?
    You preform a restore and get a message that has failed or nothing has changed?

    If the restore in safe mode will not do, keep reading:

    It would be useful to know a few things about your system:

    What is your system brand and model?

    Describe your current antivirus and software anti malware situation: McAfee, Symantec, Norton, Spybot, AVG, Avira!, MSE, Panda, Trend Micro, CA, Defender, ZoneAlarm, PC Tools, Comodo, etc..

    The question was preceded by a loss of power, aborted reboot or abnormal termination?  (this includes the plug pulling, buttons power, remove the battery, etc.)

    The afflicted system has a working CD/DVD (internal or external) drive?

    You have a genuine XP installation CD bootable, which is the same Service as your installed Service Pack (this is not the same as any recovery CD provided with your system)?

    What do you see (exactly) that you don't think you should see, and when you see it?

    What do not you think that you should see?

    If the system works, what do you think might have changed since the last time it did not work properly?

  • The HD to SSDS: how to restore the system and all the drivers?

    Hello

    I changed the HDD with a SSD. Now I want to restore the system (Windows 8) and all the drivers and applications. To do this I use (with DVD) HP Recovery Manager and I choose to install a clean install of the system, drivers and applications. After the copy of the set in the new hd, when the computer is reset, I get the message that there is no system in my HD!
    Why? What can I do?

    Thank you

    Enter the BIOS
    Go to the tab system set
    Scroll Startup Options
    Go to boot order
    Move the current SSD as the first device by following the instructions in the right pane
    After making changes to the boot order, press F10 and click Yes to save the changes and then exit from BIOS

  • I restored the system to today to recover photos from my camera, I downloaded and the system restore hase not put back them in my photo gallery - why?

    I restored my system to today to get some photos, but the file did not appear - how recover them - I didn't do a back-up

    Hello

    "I restored the system to today."

    What do you mean by that?

    You use the system restore to put the settings of the computer to an earlier Date, doesn't not to hand over to today.

    System restore only "puts away" remove photos.

    It has nothing to do with the data files.

    And if you mean the system recovery to factory (like new) settings, which erases the hard drive clean of everything.

    Regardless of how you spent, try this free program to recover:

    http://www.Piriform.com/Recuva

    See you soon.

Maybe you are looking for

  • Satellite L50 - A - 1 6 - DVD problems after upgrade to Windows 10

    As the title, the player is normally recognized by the system, but put any media in the drive is not read and that is why it is always empty.What could be the problem? Thanks to you all

  • Download the photo with overlays and regions

    Hello I have a problem. I work with the Vision Development Module and c#. I want to save my picture as a .bmp with my overlays and regions. I tried what examples I found here on the forums, but they do not work. in my table are a few overlays an inte

  • Shared variables with touchscreen of TPC-2106

    I can't work with a TPC-2106 Touch Panel shared Variables.  I am hosting a Board 9642 sbRIO variables.  I built a test VI to run from the hard drive, and I can edit and read variables that VI.  When a generation a VI to run it on the touch screen wor

  • Is there a way to see all the emails today from my different e-mail accounts in Outlook?

    For example, I have more than 10 accounts e-mail, and instead of the Inbox, click display all the e-mail now and then by clicking Inbox for the following e-mail account, is there a way to see all emails today to all my e-mail accounts 10 +? And if th

  • Norton Security

    I'm trying to uninstall Norton and install another security program, but it doesn't let me do