I see that you are running
BitLord.
P2P(Peer to peer) applications are designed to help you easily share and distribute files between you and a group of people. But they can also be used to distribute malware, and thus are not considered safe.
The removal of these programs is optional, but
highly recommended.
If BitLord is not removed, then I won't help you.Go to
Start >
Control Panel >
Add/Remove Programs and remove the following programs.
Now open a new notepad file.
Input this into the notepad file:
KILLALL::
File::
C:\cleanup.bat
C:\cleanup.exe
C:\zip.exe
c:\windows\54t59jz.exe
c:\windows\system32\blocker.dll
Folder::
c:\program files\bitlord
Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"GrpConv"=-
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"NoDispBackgroundPage"=-
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"TCP Query User{F21FCED1-918C-44EF-86D3-AFC64ACF2B11}c:\\program files\\bitlord\\bitlord.exe"=-
"UDP Query User{1F321628-792B-40A8-B9BF-886B8A39F577}c:\\program files\\bitlord\\bitlord.exe"=-
Save this as CFScript.txt, save it to your desktop also.
Then drag and drop CFScript.txt into combofix as seen below:
This will open combofix again, agree to it's terms and allow it to run.
It may want to reboot after it's done. (It will warn you if it wants to)
Post the resulting log back here.