First I noticed that webpages were loading slower than usual.
Some of the slowness can be attributed to unnecessary processes loading on boot and running in the background. For Example: CyberLink DVD Launcher, Quicktime, iTunes, Adobe Reader, Java, Lexmark (printer) processes and some others. None of these needs to start on boot and can be launched Manually when needed.
As mentioned, the use of BitTorrent file sharing will not only use resources but also put the system at risk for malware.
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
Mbam found and deleted processes for Spyware.StolenData which is 'new' malware, having first been seen on 2009-03-08- a good example for always updating before running security scans!
Remove bad HijackThis entries
•
Run HijackThis
• Click on the
System Scan Onlyy button
• Put a
check beside all of the items listed below (if present):
O2 - BHO: Google Audio Helper - {134F1731-860D-4C51-AEFD-D768AAF3FEEF} - %SystemRoot%\system32\apphelpf6.dll (file missing)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [DW4] "C:\Program Files\The Weather Channel FW\Desktop Weather\DesktopWeather.exe"
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
•
Close all open windows and browsers/email, etc...
• Click on the
"Fix Checked" button
• When completed, close the application.
Boot into Safe Mode:
* Restart your computer and start pressing the F8 key on your keyboard.
* Select the Safe Mode option when the Windows Advanced Options menu appears, and then press ENTER.
Right click on Start> Run> msconfig> enter> Selective Startup> Startup Menu> UNCHECK the following:
BitTorrent
The Weather Channel
Adobe Reader
Poker Stars entries
Then Apply> OK
This choice is yours. However I strongly suggest UNINSTALLING all of these:
Control Panel> Add/Remove Programs>
BitTorrent
Weather Channel
Poker Stars
Right click on Start> Explore> Windows> System 32> do a right click> delete on these files if present:
Rebot the system into Normal Mode. Ignore the nag message and close after clicking 'don't show message again'. Stay in Selective Startup.
For the Firefox/Redirect:
Part 1 - The Scan
- Please download GooredFix and save it to your Desktop.
- Double-click Goored.exe to run it.
- Select 1. Find Goored (no fix) by typing 1 and pressing Enter.
- A log will open which you can just close. The log file is named Goored.txt and is on your Desktop.
- Please attach the Goored.txt log to your next reply
- Note: Do not run Option #2 yet until a helper asks you to do so.
Rescan with HijackThis when finished with Goored. Attach both logs. Depending on what the log entries show, I will give you the Goored Fix" if applicable.