Your main problem is that the system is full of torrent programs and data:
P2P or 'file sharing' Warning:
Note: Even if you are using a "safe" P2P program, it is only the program that is safe. I suggest that you uninstall [all torrent related programs[/b] for the following reasons:
- As long as you are using file sharing networks and programs which are from sources that are not documented, you cannot verity that a download is legitimate.
- Malware writers use these program to include malicious content.
- Fie sharing is usually unmonitored and there is a danger that your private files might be accessed.
- The 'sharing' also includes malware that the shared system has on it.
- Files that are illegal can be spread through file sharing.
Please read the information on P2P Warning to help you better understand these dangers.
I have started you off below. It's up to you.
[1]. Close any open browsers.
[2]. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
[3]. Open notepad and copy/paste the text in the code below into it:
Code:
File::
c:\users\sean\AppData\Roaming\StreamTorrent
c:\programdata\ReviverSoft
c:\users\sean\AppData\Roaming\uTorrent
c:\windows\system32\ezsvc7x.dll
c:\program files\uTorrent\uTorrent.ex
C:\Users\sean\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\55\55f19477-2ab515f0
Folder::
c:\program files\StreamTorrent 1.0
c:\program files\PFPortChecker
c:\program files\uTorrent
RegLock::
[HKEY_USERS\S-1-5-21-2576920828-643336720-614938838-1000_Classes\CLSID\{07d14086-149d-440c-8dd1-5d87355ee545}]
[HKEY_USERS\S-1-5-21-2576920828-643336720-614938838-1000_Classes\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
Driver::
Save this as CFScript.txt, in the same location as ComboFix.exe
Referring to the picture above, drag CFScript into ComboFix.exe
When finished, it will produce a log for you at C:\ComboFix.txt . Please attach to your next reply.
====================