My laptop 3 day ago starts to be very slow. especially with internet connection
I have checked the connection speed with a second laptop and is OK
Posted 30 June 2020 - 03:36 AM
My laptop 3 day ago starts to be very slow. especially with internet connection
I have checked the connection speed with a second laptop and is OK
Register to Remove
Posted 30 June 2020 - 03:18 PM
Start Farbar Recovery Scan Tool with Administrator privileges
(Right click on the FRST icon and select Run as administrator)
highlight on the text below and select Copy.
beginning with Start:: and finishing with End::
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Highlight the entire content of the quote box below and select Copy.
Start::
CloseProcesses:
CreateRestorePoint:
Task: {C0F76BCB-EC63-4DEC-BC5B-6D2866D54C46} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {FCDA05B1-5FB0-4FF7-ADFF-68FD0C56A64B} - \WPD\SqmUpload_S-1-5-21-2555437703-3487995665-1624086675-1001 -> No File <==== ATTENTION
SearchScopes: HKLM-x32 -> {799AB903-C2F1-4ADE-B4A4-8D9D3001F018} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-2555437703-3487995665-1624086675-1001 -> {0C16FF58-81D1-458F-89E4-997CC4E2D984} URL = hxxps://it.search.yahoo.com/search?p={searchTerms}&intl=it&fr=yset_ie_syc_oracle&type=orcl_default
SearchScopes: HKU\S-1-5-21-2555437703-3487995665-1624086675-1001 -> {799AB903-C2F1-4ADE-B4A4-8D9D3001F018} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
CHR HKLM-x32\...\Chrome\Extension: [bollbfeakabenkobaocgakdibphdnanj] - <no Path/update_url>
S3 hwdatacard; \SystemRoot\system32\DRIVERS\ewusbmdm.sys [X]
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers2: [a-squared Anti-Malware Shell Extension] -> {AB77609F-2178-4E6F-9C4B-44AC179D937A} => -> No File
ContextMenuHandlers2: [a-squared Anti-Malware Shell Extension x64] -> {E3F21FC7-6D65-48E7-B62B-E9ED8200C764} => -> No File
ContextMenuHandlers3: [a-squared Anti-Malware Shell Extension] -> {AB77609F-2178-4E6F-9C4B-44AC179D937A} => -> No File
ContextMenuHandlers3: [a-squared Anti-Malware Shell Extension x64] -> {E3F21FC7-6D65-48E7-B62B-E9ED8200C764} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers6: [a-squared Anti-Malware Shell Extension] -> {AB77609F-2178-4E6F-9C4B-44AC179D937A} => -> No File
ContextMenuHandlers6: [a-squared Anti-Malware Shell Extension x64] -> {E3F21FC7-6D65-48E7-B62B-E9ED8200C764} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ShortcutWithArgument: C:\Users\Marco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CrossLoop\CrossLoop.lnk -> C:\Users\Marco\AppData\Local\CrossLoop\CrossLoopConnect.exe (CrossLoop) -> -ap=crossloop -port=5910 -udp=www.CrossLoop.com -webserver=server.crossloop.com -webservice=www.crossloop.com -startup=server
ShortcutWithArgument: C:\Users\Marco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CrossLoop.lnk -> C:\Users\Marco\AppData\Local\CrossLoop\CrossLoopConnect.exe (CrossLoop) -> -ap=crossloop -port=5910 -udp=www.CrossLoop.com -webserver=server.crossloop.com -webservice=www.crossloop.com -startup=server
FirewallRules: [{7CEC368D-A3FA-4D5F-BC46-801F8EBA1D3D}] => (Allow) C:\Users\Marco\AppData\Local\Temp\7zS3C6D\hppiw.exe => No File
FirewallRules: [{3AA2E560-9C52-4A66-A778-379042D464C6}] => (Allow) C:\Users\Marco\AppData\Local\Temp\7zS3C6D\hppiw.exe => No File
FirewallRules: [{875562EC-033C-4C4C-BE3F-14ECFE6B6769}] => (Block) C:\program files (x86)\d-link\d-viewcam\mainconsole.exe => No File
FirewallRules: [{F6A9A694-4307-43D0-A48A-DD4B437ECCF9}] => (Block) C:\program files (x86)\d-link\d-viewcam\mainconsole.exe => No File
FirewallRules: [UDP Query User{3B06924D-25E0-4728-B8B8-460FF69B7B84}C:\tnlenterprises\sentryvision\controlpanel.exe] => (Block) C:\tnlenterprises\sentryvision\controlpanel.exe => No File
FirewallRules: [TCP Query User{FE6F5FFE-7940-4DCE-824B-802D8194DFDA}C:\tnlenterprises\sentryvision\controlpanel.exe] => (Block) C:\tnlenterprises\sentryvision\controlpanel.exe => No File
FirewallRules: [{8D1B898C-2E7E-46FE-8FD9-2B343CA92A6D}] => (Allow) C:\Program Files (x86)\PCTV Systems\DistanTV\RemoteTVApp.exe => No File
FirewallRules: [{E8009070-8BBB-4F3C-9E57-A3809D6579DA}] => (Allow) C:\Program Files (x86)\PCTV Systems\DistanTV\RemoteTVApp.exe => No File
FirewallRules: [{70BC6082-A28F-4018-BF80-B5F62F3C702D}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe => No File
FirewallRules: [{F41DDC03-9CF1-40B5-B042-43F531706240}] => (Allow) E:\Advanced\autorun.exe => No File
EmptyTemp:
C:\Windows\Temp\*.*
End::
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Start FRST (FRST64) with Administrator privileges
Press the Fix button. FRST will process the lines copied above from the clipboard.
When finished, a log file Fixlog.txt will pop up and saved in the same location the tool was ran from.
Please copy and paste its contents in your next reply.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Download and run AdwCleaner
Download AdwCleaner from here and save it to your desktop.
Posted 01 July 2020 - 01:54 AM
Done you can reports attached
Posted 01 July 2020 - 04:11 AM
You may have Malwarebytes Anti-Malware installed but if not, you can download it from here:
Posted 01 July 2020 - 12:02 PM
MBAN report clean
I cant scan with esets
on line
I have downloaded from your linck
but it doesn't work the application stops
Posted 01 July 2020 - 02:12 PM
Posted 02 July 2020 - 11:29 AM
Hi Juliet,
My pc has improved its performance a little.
After each restart the speed is satisfactory but with passing
dell ore goes down constantly.
I have interpreted the scan with the emergency kit and attach the log.
Eset on line scan now works but the scan is still in progress
I will post the report as soon as the scan finish
Posted 02 July 2020 - 11:30 AM
some problems with english
My pc has improved its performance a little.
After each restart the speed is satisfactory but with passing
of the hours goes down constantly.
I have performed the scan with the emergency kit and attached the log.
Eset on line scan now works but the scan is still in progress
Posted 02 July 2020 - 04:53 PM
what comes to mind looking over logs, you have a heavy duty internet security app on here, Kaspersky, it's a good app and, can cause havoc at times with resources.
If in the back ground there is another item task to run, I could see lag happening.
I'm not saying by any means that this is exactly whats happened but let's keep that in mind.
Whats been found so far is light compared to others by means of infections but, we haven't tried a root kit scan
After you complete what your doing with Eset on line scan follow the below.
Follow the instructions in the thread below. Make sure to download the MBAR version linked in it. Let me know if you're not able to launch it and run a scan.
https://forums.malwa...t-malwarebytes/
If you manage to run a scan, delete everything it finds, and then copy/paste the content of the mbar-log-DATE-(TIME).txt log that is located in the MBAR folder here after.
Posted 03 July 2020 - 05:47 AM
Hi Juliet,
Esetonline scan has been completed and you find the report attached
Register to Remove
Posted 03 July 2020 - 05:50 AM
malwarebyte rootkit completed
nothing found
Today the PC seem to work properly
Posted 03 July 2020 - 06:52 AM
Right now, I don't think it's infection. What was and has been found has been removed.
Let's give it a day. Use the computer but do not download anything.
Then give me an update.
Posted 03 July 2020 - 08:58 AM
OK
Posted 04 July 2020 - 08:15 AM
Hi Juliet,
Today afetr restarting my pc works really really slow
I have tried to disable kaspersky protection but nothing has changed
Posted 05 July 2020 - 04:44 AM
How's it doing this morning?
Have you rebooted again?
0 members, 0 guests, 0 anonymous users