This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

computer startup very very slow, programs, internet loading very very

4 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

hello

 

I was on the internet and got one of those msgs saying my laptop was infected a few weeks ago (from a news website)… I powered down my laptop immediately, usually this works but it did not this time. since then the startup from complete shutdown or hibernation is getting longer and longer ( almost 10 full minutes to fully load. usually 3 minutes tops!). any programs that load are getting slower and slower… outlook, explorer, firefox, videos etc getting slower.

 

I also attached, the avast log and the frst logs 

 

thanks for your help!

:welcome:

 

Running from C:\Users\[removed]\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\47RJ75NB  <–This is where you running FRST, all our tools and scanners run more efficiently from the desktop in lieu of being buried in some folder,  you need to go in there and find FRST64, right click on it and select CUT, come back to your desktop and right click on a blank space and select PASTE

 

Your running Norton and McAfee antivirus, you need to uninstall one, more than one is overkill and will hamper system performance

 

 

 
-AdwCleaner-by Xplode
 
Click on this link to download : ADWCleaner
Click on ONE of the Two Blue Download Now buttons That have a blue arrow beside them and save it to your desktop.
Use my link only, do not do a search for AdwCleaner as there is a bogus copy going around by scammers
 
 
Do not click on any links in the top Advertisment.
 
  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Scan.
  • After the scan is complete click on "Clean"
  • Confirm each time with Ok.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the content of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.
  •  
     
    ===============================================================================
     
     
    [external image: thisisujrt.gif] Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Post the contents of JRT.txt into your next message.
    •  
       
       
      ===============================================================================
       
      Download Malwarebytes' Anti-Malware  to your desktop. 
       
      • Windows XP : Double click on the icon to run it.
      • Windows Vista, Windows 7 & 8 : Right click and select "Run as Administrator"
      •  
        [external image: MBAMDashboard_zpsddef9b5f.gif]
         
        • On the Dashboard click on Update Now
        • Go to the Setting Tab
        • Under Setting go to Detection and Protection
        • Under PUP and PUM make sure both are set to show Treat Detections as Malware
        • Go to Advanced setting and make sure Automatically Quarantine Detected Items is checked
        • Then on the Dashboard click on Scan
        • Make sure to select THREAT SCAN
        • Then click on Scan
        • When the scan is finished and the log pops up…select Copy to Clipboard
        • Please paste the log back into this thread for review
        • Exit Malwarebytes
        • Thanks for your help. here are the posts you asked for. Kevin

          # AdwCleaner v4.201 - Logfile created 15/04/2015 at 15:24:11
          # Updated 08/04/2015 by Xplode
          # Database : 2015-04-15.1 [Server]
          # Operating system : Windows 7 Home Premium Service Pack 1 (x64)
          # Username : Kevin Defrang - KEVINDEFRANG-PC
          # Running from : C:\Users\Kevin Defrang\Desktop\adwcleaner_4.201.exe
          # Option : Cleaning

          ***** [ Services ] *****






          Malwarebytes Anti-Malware
          www.malwarebytes.org

          Scan Date: 4/15/2015
          Scan Time: 7:59:00 PM
          Logfile: 2.txt
          Administrator: Yes

          Version: 2.01.4.1018
          Malware Database: v2015.04.16.01
          Rootkit Database: v2015.03.31.01
          License: Free
          Malware Protection: Disabled
          Malicious Website Protection: Disabled
          Self-protection: Disabled

          OS: Windows 7 Service Pack 1
          CPU: x64
          File System: NTFS
          User: Kevin Defrang

          Scan Type: Threat Scan
          Result: Completed
          Objects Scanned: 359289
          Time Elapsed: 42 min, 7 sec

          Memory: Enabled
          Startup: Enabled
          Filesystem: Enabled
          Archives: Enabled
          Rootkits: Disabled
          Heuristics: Enabled
          PUP: Enabled
          PUM: Enabled

          Processes: 0
          (No malicious items detected)

          Modules: 0
          (No malicious items detected)

          Registry Keys: 0
          (No malicious items detected)

          Registry Values: 0
          (No malicious items detected)

          Registry Data: 0
          (No malicious items detected)

          Folders: 0
          (No malicious items detected)

          Files: 0
          (No malicious items detected)

          Physical Sectors: 0
          (No malicious items detected)


          (end)


          ***** [ Files / Folders ] *****

          Folder Deleted : C:\ProgramData\Ask
          Folder Deleted : C:\ProgramData\SpeedMaxPc
          Folder Deleted : C:\ProgramData\SparkTrust
          Folder Deleted : C:\ProgramData\myturbopc.com
          File Deleted : C:\Windows\System32\roboot64.exe

          ***** [ Scheduled tasks ] *****


          ***** [ Shortcuts ] *****


          ***** [ Registry ] *****

          Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
          Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
          Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
          Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
          Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
          Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
          Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
          Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
          Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
          Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
          Key Deleted : HKCU\Software\InstallCore
          Key Deleted : HKCU\Software\PIP
          Key Deleted : HKCU\Software\SpeedMaxPC
          Key Deleted : HKCU\Software\WEDLMNGR
          Key Deleted : HKCU\Software\MyTurboPC.com
          Key Deleted : HKLM\SOFTWARE\PIP
          Key Deleted : HKLM\SOFTWARE\SpeedMaxPC
          Key Deleted : HKLM\SOFTWARE\MyTurboPC.com
          Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
          Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\bitchcrawler.com
          Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\en.softonic.com
          Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.com
          Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.ask.com
          Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.bitchcrawler.com
          Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.yourtango.com
          Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\yourtango.com
          Data Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local;192.168.*.*

          ***** [ Web browsers ] *****

          -\\ Internet Explorer v11.0.9600.17689


          -\\ Mozilla Firefox v25.0.1 (en-US)


          -\\ Google Chrome v41.0.2272.118


          -\\ Chromium v


          *************************

          AdwCleaner[R0].txt - [3244 bytes] - [15/04/2015 15:23:27]
          AdwCleaner[S0].txt - [3010 bytes] - [15/04/2015 15:24:11]

          ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3069 bytes] ##########





          ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
          Junkware Removal Tool (JRT) by Thisisu
          Version: 6.5.5 (04.15.2015:1)
          OS: Windows 7 Home Premium x64
          Ran by [removed] on Wed 04/15/2015 at 19:48:43.33
          ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




          ~~~ Services



          ~~~ Tasks



          ~~~ Registry Values



          ~~~ Registry Keys



          ~~~ Files



          ~~~ Folders





          ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
          Scan was completed on Wed 04/15/2015 at 19:52:48.16
          End of JRT log
          ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
          here are the logs… thx!

          Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 15-04-2015 04
          Ran by [removed] (administrator) on KEVINDEFRANG-PC on 17-04-2015 14:20:05
          Running from C:\Users\[removed]\Desktop
          [removed]
          SparkTrust AntiVirus
          McAfee
          Norton 360
           
          I am looking at three Anti Virus programs installed, Microsoft recommends just one, keep it up dated and run regular scans, more than one is overkill and will hamper system performance, your call but you need to uninstall two
           
          I am attaching a FIXLIST file, you need to download it to your desktop where you now have FRST64 or the fix wont work, use your mouse to drag FIXLIST right next to FRST64, either above or below it but not right on top of it, after its downloaded open up FRST64 and click on FIX (Not Scan) it wont take long, after your computer reboots you will find a FIXLOG file on your desktop, post it please and let me know how your system is behaving now
           
           

          Attachments:

          okay here is the log. it is running better. I can not locate the sparktrust files you are seeing…. after I downloaded that I started having problems. this afternoon I was reading that that was actually a virus program that claims to help you after you pay.   I have used Norton forever and the mcaffee (safe eyes) is the program that is an internet filter for undesirable stuff that I struggle with. I will have to make a decision on that. is it possible for you to tell me where the sparktrust stuff is?   thx Kevin

           

           

          Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 15-04-2015 04
          Ran by [removed] at 2015-04-17 15:46:29 Run:1
          Running from C:\Users\[removed]\Desktop
          [removed] Boot Mode: Normal
          ==============================================

          Content of fixlist:
          *****************
          Start
          CreateRestorePoint:
          CloseProcesses:
          CMD: ipconfig /flushdns
          Hosts:
          EmptyTemp:
          End

           

           

           

           

          *****************

          Restore point was successfully created.
          Processes closed successfully.

          =========  ipconfig /flushdns =========

          Windows IP Configuration

          Successfully flushed the DNS Resolver Cache.

          ========= End of CMD: =========

          C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
          Hosts was reset successfully.
          EmptyTemp: => Removed 1.7 GB temporary data.

          The system needed a reboot.

          ==== End of Fixlog 15:51:33 ====

          Look for Spark Trust with this program to remove it, if its no go we can use FRST to remove it

           

          Run AppRemover  
           
          Vista , Win 7 users, right click on the icon and select "run as administrator"
           
          Please download AppRemover and save it to your desktop.
          • Double click on AppRemover.exe to run it.
          • Uncheck "Enable anonymous usage statistics. No personal data will be recorded."
          • Click on the Next button.
          • Click on "Remove Security Application" or "Clean Up a Failed Uninstall" depending on what you want to do. 
          • Click on the Next button.
          • A scan begins, please wait. Once done, click on the Next button.
          • Now you should have a list of your installed security programs, choose the one  you want to uninstall and click on the Next button.
          • Follow the last step and reboot if asked to do so.
          • On your desktop, delete any old Fixlist or Fixlog files so we dont get confused, Going to attach a new Fixlist file, download it to your desktop where you have FRST64, open up FRST64 and click on FIX (not scan), a Fixlog will be on your desktop after your system reboots, post it please

            Attachments:

            here is the log… thx!

             

             

             

            Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 20-04-2015
            Ran by [removed] at 2015-04-21 17:04:46 Run:2
            Running from C:\Users\[removed]\Desktop
            [removed] Boot Mode: Normal
            ==============================================

            Content of fixlist:
            *****************
            Start
            CreateRestorePoint:
            CloseProcesses:
            S2 SBAMSvc; "C:\Program Files (x86)\SparkTrust\SparkTrust AntiVirus\SBAMSvc.exe" [X]
            C:\Program Files (x86)\SparkTrust
            CMD: ipconfig /flushdns
            Hosts:
            EmptyTemp:
            End

             

             

             

             

            *****************

            Restore point was successfully created.
            Processes closed successfully.
            SBAMSvc => Service deleted successfully.
            "C:\Program Files (x86)\SparkTrust" => File/Directory not found.

            =========  ipconfig /flushdns =========

            Windows IP Configuration

            Successfully flushed the DNS Resolver Cache.

            ========= End of CMD: =========

            C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
            Hosts was reset successfully.
            EmptyTemp: => Removed 185.5 MB temporary data.

            The system needed a reboot.

            ==== End of Fixlog 17:05:42 ====

            Ask AI

            AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

            Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI