|Things are not going well.|
When I start my machine in normal mode, after login I get an error message that says "Windows cannot find 'C:\WINDOWS\is-3U2Q5.exe. Make sure you typed the name ..." etc. It will then start up, launch all the startup programs, wait a minute or so, and then I get BSOD (this doesn't happen if I am physically disconnected from the internet). The error at the top is DRIVER_IRQL_NOT_LESS_OR_EQUAL. The technical info at the bottom is STOP: 0x...D1 (0x...40, 0x...02, 0x...00, 0xB9E2021F) [The dots stand for zeros]. atapi.sys - Address B9E2021F base at B9E18000 Datestamp 4802539d.
I have deleted atapi.sys and replaced it with a copy from an XP disc to no effect, although googling suggests that this has worked for others.
Working in safe mode I can start up OK, no error message, no BSOD, but I do get tabs popping up to shopping sites - no searches or results of searches have been redirected that I have noticed.
My situation was worse until recently; Defense Center downloaded itself and put some shortcuts to itself, a support centre and a couple of porn sites on my desktop. MBAM took care of that; it found 70 infections and after clearing them DC appeared to be gone- I erased the shortcuts manually (with Eraser). To my disappointment this did not resolve the other issues; a subsequent run of MBAM found 4 infections. I have the log for that, also for GMER and HijackThis. I have Combofix but have not run it yet. I have RapidShared the logs and can PM links if that would be useful. I'm not sure about the integrity of the GMER log - it takes at least a day and a half to run, and when I got back from work today it appeared to have finished but there was an error message about some file not being saved and data being lost - unfortunately I pressed OK before I thought to take a screenshot. This error came up again when I shutdown, but again I didn't think to snapshot it. Also, I only noticed halfway through that ADAware icon was in the intray, so there may have been a conflict? This was actually a second run of GMER, the first time ran it I got a different BSOD, something about PCTCore.sys I think? That was after 10 hours.
That's all I can think of.
So, what do you think?