Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

my pc start to run slow from some time and it's also freezes

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

my pc start to run slow from some time and it's also freezes

Unread postby majo » May 2nd, 2013, 5:25 am

can u please be so kind and hv a look into my log?

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: BrowserJavaVersion: 10.21.2
Run by majo at 10:22:40 on 2013-05-02
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.353.1033.18.7294.5033 [GMT 1:00]
.
AV: AVG AntiVirus Free Edition 2013 *Enabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: AVG AntiVirus Free Edition 2013 *Enabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
FW: PC Tools Firewall Plus *Enabled* {175D0B73-9F8F-2CA9-8BF1-62277A276DC9}
.
============== Running Processes ===============
.
H:\PROGRA~2\AVG\AVG2013\avgrsa.exe
H:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe
H:\Windows\system32\lsm.exe
H:\Windows\system32\svchost.exe -k DcomLaunch
H:\Windows\system32\svchost.exe -k RPCSS
H:\Windows\system32\atiesrxx.exe
H:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
H:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
H:\Windows\system32\svchost.exe -k LocalService
H:\Windows\system32\svchost.exe -k netsvcs
H:\Windows\system32\svchost.exe -k GPSvcGroup
H:\Windows\system32\svchost.exe -k NetworkService
H:\Windows\system32\atieclxx.exe
H:\Windows\system32\WLANExt.exe
H:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
H:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
H:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe
H:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe
H:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
H:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
H:\Program Files (x86)\PC Tools Firewall Plus\FWService.exe
H:\Program Files (x86)\Edimax\Common\RaRegistry.exe
H:\Program Files (x86)\Edimax\Common\RaRegistry64.exe
H:\Windows\system32\svchost.exe -k imgsvc
H:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
H:\Windows\system32\wbem\wmiprvse.exe
H:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
H:\Windows\system32\Dwm.exe
H:\Windows\Explorer.EXE
H:\Program Files (x86)\AVG\AVG2013\avgnsa.exe
H:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
H:\Program Files (x86)\AVG\AVG2013\avgemca.exe
H:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
H:\Program Files (x86)\Edimax\Common\RaUI.exe
H:\Program Files (x86)\PC Tools Firewall Plus\FirewallGUI.exe
H:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
H:\Program Files (x86)\AVG\AVG2013\avgui.exe
H:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
H:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
H:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
H:\Program Files (x86)\Opera\opera.exe
H:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
H:\Windows\system32\AUDIODG.EXE
H:\Windows\system32\wbem\wmiprvse.exe
H:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com
mWinlogon: Userinit = userinit.exe
BHO: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - H:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - H:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - H:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - H:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - H:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - H:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
BHO: HP Smart BHO Class: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - H:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
EB: HP Smart Web Printing: {555D4D79-4BD2-4094-A395-CFC534424A05} - H:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll
EB: HP Smart Web Printing: {555D4D79-4BD2-4094-A395-CFC534424A05} - H:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll
uRun: [SpybotSD TeaTimer] H:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
mRun: [00PCTFW] "H:\Program Files (x86)\PC Tools Firewall Plus\FirewallGUI.exe" -s
mRun: [HDAudDeck] H:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
mRun: [AVG_UI] "H:\Program Files (x86)\AVG\AVG2013\avgui.exe" /TRAYONLY
mRun: [StartCCC] "H:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] H:\Program Files (x86)\Google\Gmail Notifier\gnotify.exe
StartupFolder: H:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\WIRELE~1.LNK - H:\Program Files (x86)\Edimax\Common\RaUI.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Free YouTube Download - H:\Users\majo\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm
IE: Free YouTube to MP3 Converter - H:\Users\majo\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
IE: Pobierz plik wideo w FDM - H:\Program Files (x86)\Free Download Manager\dlfvideo.htm
IE: Pobierz w FDM - H:\Program Files (x86)\Free Download Manager\dllink.htm
IE: Pobierz wszystkie pliki w FDM - H:\Program Files (x86)\Free Download Manager\dlall.htm
IE: Pobierz zaznaczone pliki w FDM - H:\Program Files (x86)\Free Download Manager\dlselected.htm
IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - H:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - H:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/s ... wflash.cab
TCP: NameServer = 192.168.0.1
TCP: Interfaces\{22CD5F68-8CB0-4BB0-A961-ED798149E2AF} : DHCPNameServer = 192.168.42.129
TCP: Interfaces\{E7175EB0-9917-477B-ADED-46A9F2023119} : DHCPNameServer = 192.168.0.1
TCP: Interfaces\{E7175EB0-9917-477B-ADED-46A9F2023119}\244575966496 : DHCPNameServer = 192.168.22.22 192.168.22.23
TCP: Interfaces\{E7175EB0-9917-477B-ADED-46A9F2023119}\55053443532323830383 : DHCPNameServer = 192.168.43.1
TCP: Interfaces\{E7175EB0-9917-477B-ADED-46A9F2023119}\C696E6B6379737 : DHCPNameServer = 192.168.1.1
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - <orphaned>
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - H:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
SSODL: WebCheck - <orphaned>
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "H:\Program Files (x86)\Common Files\LightScribe\LSRunOnce.exe"
x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - H:\Program Files\Java\jre7\bin\ssv.dll
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - H:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - H:\Program Files\Java\jre7\bin\jp2ssv.dll
.
INFO: x64-HKLM has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
x64-DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
x64-Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - <orphaned>
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
Hosts: 127.0.0.1 www.spywareinfo.com
.
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSHA;AVGIDSHA;H:\Windows\System32\drivers\avgidsha.sys [2012-10-15 63328]
R0 Avgloga;AVG Logging Driver;H:\Windows\System32\drivers\avgloga.sys [2012-9-21 225120]
R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;H:\Windows\System32\drivers\avgmfx64.sys [2012-11-16 111968]
R0 Avgrkx64;AVG Anti-Rootkit Driver;H:\Windows\System32\drivers\avgrkx64.sys [2012-9-14 40800]
R1 AVGIDSDriver;AVGIDSDriver;H:\Windows\System32\drivers\avgidsdrivera.sys [2012-10-22 154464]
R1 Avgldx64;AVG AVI Loader Driver;H:\Windows\System32\drivers\avgldx64.sys [2012-10-2 185696]
R1 Avgtdia;AVG TDI Driver;H:\Windows\System32\drivers\avgtdia.sys [2012-9-21 200032]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;H:\Windows\System32\drivers\dtsoftbus01.sys [2012-3-1 279616]
R1 JSWPSLWF;JumpStart Wireless Filter Driver;H:\Windows\System32\drivers\jswpslwfx.sys [2012-1-3 26624]
R1 pctgntdi;pctgntdi;H:\Windows\System32\drivers\pctgntdi64.sys [2012-5-5 334976]
R2 AMD External Events Utility;AMD External Events Utility;H:\Windows\System32\atiesrxx.exe [2012-11-16 238080]
R2 AMD FUEL Service;AMD FUEL Service;H:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-11-16 361984]
R2 AODDriver4.01;AODDriver4.01;H:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys [2012-3-5 53888]
R2 AODDriver4.1.0;AODDriver4.1.0;H:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [2012-2-10 56448]
R2 AVGIDSAgent;AVGIDSAgent;H:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [2012-11-16 5814904]
R2 avgwd;AVG WatchDog;H:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [2012-10-22 196664]
R2 cpuz135;cpuz135;H:\Windows\System32\drivers\cpuz135_x64.sys [2012-3-9 21992]
R2 MBAMScheduler;MBAMScheduler;H:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-4-28 418376]
R2 MBAMService;MBAMService;H:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-4-28 701512]
R2 PCToolsFirewallPlus;PC Tools Firewall Plus;H:\Program Files (x86)\PC Tools Firewall Plus\FWService.exe [2012-5-5 286000]
R2 RalinkRegistryWriter;Ralink Registry Writer;H:\Program Files (x86)\Edimax\Common\RaRegistry.exe [2012-9-4 185632]
R2 RalinkRegistryWriter64;Ralink Registry Writer 64;H:\Program Files (x86)\Edimax\Common\RaRegistry64.exe [2012-9-4 211232]
R2 SBSDWSCService;SBSD Security Center Service;H:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2012-3-24 1153368]
R3 amdiox64;AMD IO Driver;H:\Windows\System32\drivers\amdiox64.sys [2012-3-1 46136]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;H:\Windows\System32\drivers\AtihdW76.sys [2012-2-23 95760]
R3 MBAMProtector;MBAMProtector;H:\Windows\System32\drivers\mbam.sys [2013-4-28 25928]
R3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver;H:\Windows\System32\drivers\pctNdis-PacketFilter64.sys [2012-5-5 119688]
R3 pctNdisMP;PC Tools Driver;H:\Windows\System32\drivers\pctNdis64.sys [2012-5-5 79000]
R3 pctplfw;pctplfw;H:\Windows\System32\drivers\pctplfw64.sys [2012-5-5 179976]
R3 RTL8167;Realtek 8167 NT Driver;H:\Windows\System32\drivers\Rt64win7.sys [2011-6-10 539240]
R3 usbfilter;AMD USB Filter Driver;H:\Windows\System32\drivers\usbfilter.sys [2012-12-1 54400]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service;H:\Windows\System32\drivers\viahduaa.sys [2012-3-1 1235968]
S2 AODDriver4.1;AODDriver4.1;H:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys [2012-3-5 53888]
S2 AODService;AODService;H:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [2012-2-10 136616]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;H:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;H:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 libusbd;LibUsb-Win32 - Daemon, Version 0.1.10.1;system32\libusbd-nt.exe --> system32\libusbd-nt.exe [?]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;H:\Windows\System32\drivers\ssadadb.sys [2012-11-11 36328]
S3 dmvsc;dmvsc;H:\Windows\System32\drivers\dmvsc.sys [2010-11-21 71168]
S3 ggflt;SEMC USB Flash Driver Filter;H:\Windows\System32\drivers\ggflt.sys [2012-12-28 14448]
S3 pctNdis;PC Tools Firewall Intermediate Filter Service;H:\Windows\System32\drivers\pctNdis64.sys [2012-5-5 79000]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;H:\Windows\System32\drivers\rdpvideominiport.sys [2012-12-3 19456]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM);H:\Windows\System32\drivers\ss_bbus.sys [2012-11-11 127488]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);H:\Windows\System32\drivers\ss_bmdfl.sys [2012-11-11 18944]
S3 ss_bmdm;SAMSUNG USB Mobile Modem;H:\Windows\System32\drivers\ss_bmdm.sys [2012-11-11 161280]
S3 ss_bserd;SAMSUNG USB Mobile Logging Driver;H:\Windows\System32\drivers\ss_bserd.sys [2012-11-11 128000]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);H:\Windows\System32\drivers\ssadbus.sys [2012-11-11 157160]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);H:\Windows\System32\drivers\ssadmdfl.sys [2012-11-11 16872]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers;H:\Windows\System32\drivers\ssadmdm.sys [2012-11-11 177128]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);H:\Windows\System32\drivers\ssadserd.sys [2012-11-11 145384]
S3 Synth3dVsc;Synth3dVsc;H:\Windows\System32\drivers\Synth3dVsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver;H:\Windows\System32\drivers\terminpt.sys [2012-12-3 29696]
S3 TsUsbFlt;TsUsbFlt;H:\Windows\System32\drivers\TsUsbFlt.sys [2012-12-3 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device;H:\Windows\System32\drivers\TsUsbGD.sys [2012-12-3 30208]
S3 VBoxUSB;VirtualBox USB;H:\Windows\System32\drivers\VBoxUSB.sys [2012-4-3 117040]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service;H:\Program Files\Microsoft SQL Server\100\Shared\sqladhlp.exe [2009-7-22 61976]
S4 PuranDefrag;PuranDefrag;H:\Windows\System32\PuranDefragS.exe [2012-4-11 289792]
S4 RsFx0105;RsFx0105 Driver;H:\Windows\System32\drivers\RsFx0105.sys [2011-9-22 311144]
S4 SkypeUpdate;Skype Updater;H:\Program Files (x86)\Skype\Updater\Updater.exe [2013-2-28 161384]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);H:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2011-9-22 431464]
SUnknown tsusbhub;tsusbhub; [x]
.
=============== Created Last 30 ================
.
2013-05-02 08:59:30 -------- d-----w- H:\ProgramData\F-Secure
2013-05-02 08:59:13 -------- d-----w- H:\ProgramData\boost_interprocess
2013-05-02 08:39:32 -------- d-----w- H:\ProgramData\SecTaskMan
2013-05-02 08:39:27 -------- d-----w- H:\Program Files (x86)\Security Task Manager
2013-04-30 21:24:34 -------- d-----w- H:\Users\majo\AppData\Local\Temp
2013-04-30 17:28:41 -------- d-----w- H:\Users\majo\AppData\Roaming\OmniTechSupport
2013-04-29 11:39:51 -------- d-----w- H:\ProgramData\Sophos
2013-04-29 11:39:45 73728 ----a-r- H:\Users\majo\AppData\Roaming\Microsoft\Installer\{B829E117-D072-41EA-9606-9826A38D34C1}\SVRTgui.exe1_810EDD9E2F0A4E2BACF86673C38D9F48.exe
2013-04-29 11:39:45 73728 ----a-r- H:\Users\majo\AppData\Roaming\Microsoft\Installer\{B829E117-D072-41EA-9606-9826A38D34C1}\SVRTgui.exe_810EDD9E2F0A4E2BACF86673C38D9F48.exe
2013-04-29 11:39:45 73728 ----a-r- H:\Users\majo\AppData\Roaming\Microsoft\Installer\{B829E117-D072-41EA-9606-9826A38D34C1}\ARPPRODUCTICON.exe
2013-04-29 11:39:42 -------- d-----w- H:\Program Files (x86)\Sophos
2013-04-29 07:16:37 -------- d-----w- H:\Program Files (x86)\ESET
2013-04-28 16:49:37 95648 ----a-w- H:\Windows\SysWow64\WindowsAccessBridge-32.dll
2013-04-28 16:36:11 1092512 ----a-w- H:\Windows\System32\npDeployJava1.dll
2013-04-28 16:36:05 108448 ----a-w- H:\Windows\System32\WindowsAccessBridge-64.dll
2013-04-28 15:14:47 -------- d-----w- H:\Users\majo\AppData\Roaming\Malwarebytes
2013-04-28 15:14:35 -------- d-----w- H:\ProgramData\Malwarebytes
2013-04-28 15:14:34 25928 ----a-w- H:\Windows\System32\drivers\mbam.sys
2013-04-28 15:14:34 -------- d-----w- H:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-04-27 17:40:35 -------- d-----w- H:\Users\majo\AppData\Local\IW4M
2013-04-24 07:38:10 -------- d-----w- H:\Program Files (x86)\MSXML 4.0
2013-04-24 07:30:15 1656680 ----a-w- H:\Windows\System32\drivers\ntfs.sys
2013-04-23 11:55:37 -------- d-----w- H:\ProgramData\WEBREG
2013-04-23 11:49:49 -------- d-----w- H:\Users\majo\AppData\Local\HP
2013-04-23 11:44:58 -------- d-----w- H:\Windows\SysWow64\spool
2013-04-23 11:44:13 -------- d-----w- H:\Program Files (x86)\Common Files\Hewlett-Packard
2013-04-23 11:43:54 -------- d-----w- H:\Program Files (x86)\Common Files\HP
2013-04-23 11:42:49 -------- d-----w- H:\Program Files (x86)\HP
2013-04-23 11:41:35 -------- d-----w- H:\Program Files\HP
2013-04-23 11:35:11 642360 ----a-w- H:\Windows\System32\hpzids40.dll
2013-04-22 10:02:55 -------- d-----w- H:\ProgramData\Package Cache
2013-04-22 09:05:25 -------- d-----w- H:\Program Files (x86)\AMD AVT
2013-04-20 15:25:25 809496 ----a-r- H:\Windows\SysWow64\tmp8D7.tmp
2013-04-18 08:10:18 101376 ----a-w- H:\Windows\System32\Spool\prtprocs\x64\HPZPPWN7.DLL
2013-04-16 12:09:34 -------- d-----w- H:\Users\majo\AppData\Roaming\Softland
2013-04-16 12:09:33 25920 ----a-w- H:\Windows\System32\dopdfmn7.dll
2013-04-16 12:09:33 21312 ----a-w- H:\Windows\System32\dopdfmi7.dll
2013-04-16 12:09:32 1700352 ----a-w- H:\Windows\System32\GdiPlus.dll
2013-04-16 12:09:32 -------- d-----w- H:\Program Files\Softland
2013-04-16 08:21:01 -------- d-----r- H:\Program Files (x86)\Skype
2013-04-15 17:59:53 -------- d-----w- H:\Users\majo\AppData\Roaming\Aliens Colonial Marines
2013-04-15 08:22:43 -------- d-----w- H:\Users\majo\AppData\Local\Programs
2013-04-14 23:12:27 3153408 ----a-w- H:\Windows\System32\win32k.sys
2013-04-14 23:12:26 19968 ----a-w- H:\Windows\System32\drivers\usb8023x.sys
2013-04-14 23:12:26 19968 ----a-w- H:\Windows\System32\drivers\usb8023.sys
2013-04-14 23:11:36 223752 ----a-w- H:\Windows\System32\drivers\fvevol.sys
2013-04-14 23:11:35 5550424 ----a-w- H:\Windows\System32\ntoskrnl.exe
2013-04-14 23:11:34 6656 ----a-w- H:\Windows\SysWow64\apisetschema.dll
2013-04-14 23:11:34 43520 ----a-w- H:\Windows\System32\csrsrv.dll
2013-04-14 23:11:34 3968856 ----a-w- H:\Windows\SysWow64\ntkrnlpa.exe
2013-04-14 23:11:34 3913560 ----a-w- H:\Windows\SysWow64\ntoskrnl.exe
2013-04-14 23:11:34 112640 ----a-w- H:\Windows\System32\smss.exe
2013-04-08 16:38:22 -------- d-----w- H:\Users\majo\AppData\Roaming\Call of Duty Black Ops 2
.
==================== Find3M ====================
.
2013-04-29 08:26:30 71048 ----a-w- H:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2013-04-29 08:26:30 691592 ----a-w- H:\Windows\SysWow64\FlashPlayerApp.exe
2013-04-28 16:49:31 866720 ----a-w- H:\Windows\SysWow64\npdeployJava1.dll
2013-04-28 16:49:31 788896 ----a-w- H:\Windows\SysWow64\deployJava1.dll
2013-04-28 16:35:56 971680 ----a-w- H:\Windows\System32\deployJava1.dll
2013-04-20 15:25:25 466456 ----a-w- H:\Windows\System32\wrap_oal.dll
2013-04-20 15:25:25 444952 ----a-w- H:\Windows\SysWow64\wrap_oal.dll
2013-04-20 15:25:25 122904 ----a-w- H:\Windows\System32\OpenAL32.dll
2013-04-20 15:25:25 109080 ----a-w- H:\Windows\SysWow64\OpenAL32.dll
2013-02-22 06:27:49 2312704 ----a-w- H:\Windows\System32\jscript9.dll
2013-02-22 06:20:51 1392128 ----a-w- H:\Windows\System32\wininet.dll
2013-02-22 06:19:37 1494528 ----a-w- H:\Windows\System32\inetcpl.cpl
2013-02-22 06:15:48 173056 ----a-w- H:\Windows\System32\ieUnatt.exe
2013-02-22 06:15:23 599040 ----a-w- H:\Windows\System32\vbscript.dll
2013-02-22 06:12:41 2382848 ----a-w- H:\Windows\System32\mshtml.tlb
2013-02-22 03:46:00 1800704 ----a-w- H:\Windows\SysWow64\jscript9.dll
2013-02-22 03:38:00 1129472 ----a-w- H:\Windows\SysWow64\wininet.dll
2013-02-22 03:37:50 1427968 ----a-w- H:\Windows\SysWow64\inetcpl.cpl
2013-02-22 03:34:17 142848 ----a-w- H:\Windows\SysWow64\ieUnatt.exe
2013-02-22 03:34:03 420864 ----a-w- H:\Windows\SysWow64\vbscript.dll
2013-02-22 03:31:46 2382848 ----a-w- H:\Windows\SysWow64\mshtml.tlb
2013-02-12 05:45:24 135168 ----a-w- H:\Windows\apppatch\AppPatch64\AcXtrnal.dll
2013-02-12 05:45:22 350208 ----a-w- H:\Windows\apppatch\AppPatch64\AcLayers.dll
2013-02-12 05:45:22 308736 ----a-w- H:\Windows\apppatch\AppPatch64\AcGenral.dll
2013-02-12 05:45:22 111104 ----a-w- H:\Windows\apppatch\AppPatch64\acspecfc.dll
2013-02-12 04:48:31 474112 ----a-w- H:\Windows\apppatch\AcSpecfc.dll
2013-02-12 04:48:26 2176512 ----a-w- H:\Windows\apppatch\AcGenral.dll
.
============= FINISH: 10:22:55.71 ===============
majo
Active Member
 
Posts: 2
Joined: May 2nd, 2013, 5:14 am
Advertisement
Register to Remove

Re: my pc start to run slow from some time and it's also fre

Unread postby wannabeageek » May 3rd, 2013, 11:52 pm

Hello majo, and Welcome to MalWare Removal forums!

My name is wannabeageek and I'll be helping you with any malware problems.
I am a MRU Undergraduate trainee here, and as such my posts to you have to first be checked by a Teacher.
Because of this my replies to your posts may be slightly delayed. Please be patient and I'm sure we'll be able to resolve your problems.

Before we begin, please read and follow these important guidelines, so things will proceed smoothly.
  1. The instructions being given are for YOUR computer and system only!
    Using these instructions on a different computer can cause damage to that computer and possibly render it inoperable!
  2. You must have Administrator rights, permissions for this computer.
  3. DO NOT run any other fix or removal tools unless instructed to do so!
  4. DO NOT install any other software (or hardware) during the cleaning process. This adds more items to be researched.
  5. Only post your problem at (1) one help site. Applying fixes from multiple help sites can cause problems.
  6. Print each set of instructions if possible - your Internet connection will not be available during some fix processes.
  7. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
  8. Only reply to this thread, do not start another one. Please, continue responding, until I give you the "All Clean!" :cheers:

    Absence of symptoms does not mean that everything is clear.

I am currently reviewing your logs and will return, as soon as possible, with additional instructions. In the meantime...

Note: If you haven't done so already, please read this topic ALL USERS OF THIS FORUM MUST READ THIS FIRST where the conditions for receiving help here are explained.

Please read all instructions carefully before executing and perform the steps, in the order given.
lf you have any questions or problems executing these instructions, <<STOP>> do not proceed, post back with the question or problem.

Please be aware that removing Malware is a potentially hazardous undertaking. I will take care not to knowingly suggest courses of action that might damage your computer. However it is impossible for me to foresee all interactions that may happen between the software on your computer and those we'll use to clear you of infection, and I cannot guarantee the safety of your system. It is possible that we might encounter situations where the only recourse is to re-format and re-install your operating system, or to necessitate you taking your computer to a repair shop.

Because of this, I advise you to backup any personal files and folders before you start



Please post the Attach.txt log that should be located on your desktop
wannabeageek
MRU Master
MRU Master
 
Posts: 1871
Joined: November 23rd, 2009, 10:21 pm
Location: California

Re: my pc start to run slow from some time and it's also fre

Unread postby majo » May 4th, 2013, 2:44 am

Hi Thank You for a quick response...I did read this before posting er...' ALL USERS OF THIS FORUM MUST READ THIS FIRST'
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Ultimate
Boot Device: \Device\HarddiskVolume1
Install Date: 03/01/2012 10:31:11
System Uptime: 02/05/2013 09:50:11 (1 hours ago)
.
Motherboard: ASUSTeK Computer INC. | | M4A785TD-V EVO
Processor: AMD Athlon(tm) II X2 240 Processor | AM3 | 2800/240mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 41 GiB total, 3.307 GiB free.
D: is FIXED (NTFS) - 78 GiB total, 3.44 GiB free.
E: is FIXED (NTFS) - 57 GiB total, 2.515 GiB free.
F: is FIXED (NTFS) - 78 GiB total, 2.762 GiB free.
G: is FIXED (NTFS) - 101 GiB total, 31.16 GiB free.
H: is FIXED (NTFS) - 78 GiB total, 9.319 GiB free.
I: is FIXED (NTFS) - 77 GiB total, 7.542 GiB free.
J: is CDROM ()
K: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318}
Description: Karta wirtualnego miniportu WiFi firmy Microsoft
Device ID: {5D624F94-8850-40C3-A3FA-A4FD2080BAF3}\VWIFIMP\6&38C099E3&0&03
Manufacturer: Microsoft
Name: Microsoft Virtual WiFi Miniport Adapter #3
PNP Device ID: {5D624F94-8850-40C3-A3FA-A4FD2080BAF3}\VWIFIMP\6&38C099E3&0&03
Service: vwifimp
.
==== System Restore Points ===================
.
RP173: 29/04/2013 12:37:57 - Installed Sophos Virus Removal Tool.
RP174: 02/05/2013 09:41:02 - Move file to quarantine: iefdm2.dll
RP175: 02/05/2013 09:45:55 - Move file to quarantine: HydraVision
RP176: 02/05/2013 09:47:06 - Move file to quarantine: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
RP177: 02/05/2013 09:48:01 - Move file to quarantine: Adobe Reader XI (11.0.02)
.
==== Installed Programs ======================
.
64 Bit HP CIO Components Installer
7-Zip 9.20 (x64 edition)
7300
7300_Help
7300Trb
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 ActiveX 64-bit
Adobe Flash Player 11 Plugin
Adobe Reader XI (11.0.02)
Adobe Shockwave Player 11.6
AIO_CDB_ProductContext
AIO_CDB_Software
AIO_Scan
Alan Wake
Aliens Colonial Marines
AMD Accelerated Video Transcoding
AMD Catalyst Install Manager
AMD Drag and Drop Transcoding
AMD Fuel
AMD Media Foundation Decoders
AMD OverDrive
AMD VISION Engine Control Center
Any Video Converter 3.3.7
Assassin's Creed Revelations
ASUSUpdate
µTorrent
AVG 2013
BufferChm
Call of Duty Black Ops 2
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
ccc-utility64
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
CCleaner
Cisco EAP-FAST Module
Cisco LEAP Module
Cisco PEAP Module
Cool & Quiet
Copy
CPUID CPU-Z 1.60
Crystal Reports for Visual Studio
DAEMON Tools Lite
Destinations
Detektor Winampa
DeviceDiscovery
DH Driver Cleaner Professional Edition
DiRT 3
DocProc
doPDF 7.3 printer
Dotfuscator Software Services - Community Edition
Edimax Wireless LAN Card
ESET Online Scanner v3
Fax
FIFA 13
Free Download Manager 3.8
Free YouTube Download version 3.0.22.221
Free YouTube to MP3 Converter version 3.11.37.1212
Free YouTube Uploader version 3.3.27.221
GameDesire-Pool & Snooker
Google Chrome
Google Gmail Notifier
GPBaseService2
Grand Theft Auto IV
Hawken
Hotfix for Microsoft Team Foundation Server 2010 Object Model - ENU (KB2736182)
Hotfix for Microsoft Team Foundation Server 2010 Object Model - ENU (KB2813041)
Hotfix for Microsoft Visual Studio 2010 Professional - ENU (KB2529927)
Hotfix for Microsoft Visual Studio 2010 Professional - ENU (KB2542054)
Hotfix for Microsoft Visual Studio 2010 Professional - ENU (KB2548139)
Hotfix for Microsoft Visual Studio 2010 Professional - ENU (KB2549864)
Hotfix for Microsoft Visual Studio 2010 Professional - ENU (KB2635973)
Hotfix for Microsoft Visual Studio 2010 Professional - ENU (KB2736182)
Hotfix for Microsoft Visual Studio 2010 Professional - ENU (KB2813041)
Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB2280741)
Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB2284668)
Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB2295689)
Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB2420513)
Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB2452649)
Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB2455033)
Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB2485545)
Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB982517)
Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB982721)
Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB983233)
HP Imaging Device Functions 13.0
HP Photosmart Essential 3.5
HP Photosmart Officejet and Deskjet All-In-One Driver Software 13.0 Rel. B
HP Smart Web Printing 4.51
HP Solution Center 13.0
HP Update
HPPhotoGadget
HPPhotoSmartDiscLabelContent1
HPPhotosmartEssential
HPProductAssistant
HydraVision
HyperCam 2
Java 7 Update 21
Java 7 Update 21 (64-bit)
Java Auto Updater
Java SE Development Kit 7 Update 21 (64-bit)
Java(TM) 6 Update 31 (64-bit)
K-Lite Codec Pack 5.9.0 (64-bit)
K-Lite Codec Pack 8.4.0 (Full)
LibUSB-Win32-0.1.10.1
LightScribe System Software
Malwarebytes Anti-Malware wersja 1.75.0.1300
Max Payne 3
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft .NET Framework 4 Multi-Targeting Pack
Microsoft Application Error Reporting
Microsoft ASP.NET MVC 2
Microsoft ASP.NET MVC 2 - Visual Studio 2010 Tools
Microsoft Games for Windows - LIVE
Microsoft Games for Windows - LIVE Redistributable
Microsoft Help Viewer 1.1
Microsoft Silverlight
Microsoft Silverlight 3 SDK
Microsoft Silverlight 4 SDK
Microsoft SQL Server 2008 (64-bit)
Microsoft SQL Server 2008 Browser
Microsoft SQL Server 2008 Common Files
Microsoft SQL Server 2008 Database Engine Services
Microsoft SQL Server 2008 Database Engine Shared
Microsoft SQL Server 2008 Native Client
Microsoft SQL Server 2008 R2 Data-Tier Application Framework
Microsoft SQL Server 2008 R2 Data-Tier Application Project
Microsoft SQL Server 2008 R2 Management Objects
Microsoft SQL Server 2008 R2 Management Objects (x64)
Microsoft SQL Server 2008 R2 Transact-SQL Language Service
Microsoft SQL Server 2008 RsFx Driver
Microsoft SQL Server 2008 Setup Support Files
Microsoft SQL Server Compact 3.5 SP2 ENU
Microsoft SQL Server Compact 3.5 SP2 x64 ENU
Microsoft SQL Server Database Publishing Wizard 1.4
Microsoft SQL Server System CLR Types
Microsoft SQL Server System CLR Types (x64)
Microsoft SQL Server VSS Writer
Microsoft Sync Framework Runtime v1.0 SP1 (x64)
Microsoft Sync Framework SDK v1.0 SP1
Microsoft Sync Framework Services v1.0 SP1 (x64)
Microsoft Sync Services for ADO.NET v2.0 SP1 (x64)
Microsoft Team Foundation Server 2010 Object Model - ENU
Microsoft Visual C++ Compilers 2010 Standard - enu - x64
Microsoft Visual C++ Compilers 2010 Standard - enu - x86
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Designtime - 10.0.30319
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x64 Runtime - 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
Microsoft Visual F# 2.0 Runtime
Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools
Microsoft Visual Studio 2010 Office Developer Tools (x64)
Microsoft Visual Studio 2010 Professional - ENU
Microsoft Visual Studio 2010 Service Pack 1
Microsoft Visual Studio 2010 SharePoint Developer Tools
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK
Microsoft Visual Studio Macro Tools
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Need for Speed™ The Run
Nero Express 10
Network64
Nowe Gadu-Gadu
NVIDIA PhysX
OCR Software by I.R.I.S. 13.0
OpenAL
Opera 12.15
Painkiller Hell and Damnation
PC Tools Firewall Plus 7.0
Platform
Polski pakiet jezykowy dla narzedzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
PowerISO
PunkBuster Services
Puran Defrag Free Edition 7.3
Quicksys RegDefrag 2.9
QuickTime
Rockstar Games Social Club
SAMSUNG USB Driver for Mobile Phones
Scan
Security Task Manager 1.8g
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
Security Update for Microsoft .NET Framework 4 Extended (KB2736428)
Security Update for Microsoft .NET Framework 4 Extended (KB2742595)
Security Update for Microsoft Visual Studio 2010 Professional - ENU (KB2644980)
Security Update for Microsoft Visual Studio 2010 Professional - ENU (KB2645410)
Security Update for Microsoft Visual Studio Macro Tools (KB2669970)
Service Pack 3 for SQL Server 2008 (KB2546951) (64-bit)
Skype™ 6.3
SmartWebPrinting
Sniper Ghost Warrior 2
SolutionCenter
Sophos Virus Removal Tool
Spybot - Search & Destroy
Sql Server Customer Experience Improvement Program
Status
swMSM
Syndicate
System.Data.SQLite v1.0.81.0
Toolbox
Torchlight II
TrayApp
Ubisoft Game Launcher
UnloadSupport
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Extended (KB2468871)
Update for Microsoft .NET Framework 4 Extended (KB2533523)
Update for Microsoft .NET Framework 4 Extended (KB2600217)
Uplay
VIA Platform Device Manager
Visual Studio 2008 x64 Redistributables
Visual Studio 2010 Prerequisites - English
Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU
Visual Studio 2010 x64 Redistributables
VLC media player 2.0.0
WCF RIA Services V1.0 SP1
Web Deployment Tool
WebReg
Winamp
Windows Automated Installation Kit
Windows Live ID Sign-in Assistant
Windows Media Player Firefox Plugin
X-VCD Player
Yahoo! Messenger
Yahoo! Software Update
.
==== End Of File ===========================
majo
Active Member
 
Posts: 2
Joined: May 2nd, 2013, 5:14 am

Re: my pc start to run slow from some time and it's also fre

Unread postby wannabeageek » May 6th, 2013, 8:40 pm

Greetings majo,


P2P Advisory!
IMPORTANT There are signs of one or more P2P (Peer to Peer) File Sharing Programs installed on your computer.
µTorrent
As long as you have the P2P program(s) installed, per Forum Policy, I can offer you no further assistance.
If you choose NOT to remove the program(s)...indicate that in your next reply and this topic will be closed.
Otherwise, please perform the following steps:
Remove P2P Program(s)
    Also take the time to remove the outdated Java program.
  1. Click on Start > Control Panel and double click on Programs and Features.
  2. Locate the following programs:
    µTorrent
    Java(TM) 6 Update 31 (64-bit)
  3. Click on the Change/Remove button to uninstall it.
    Carefully read any prompts...
    Some uninstallers prompt in a way to trick you into keeping the program, sometimes, preventing them from being uninstalled again!
    Repeat steps 2 and 3 for each program listed.
  4. When the program(s) have been uninstalled... Close Control Panel.
By using any form of P2P networking to download files you can anticipate infestations of malware to occur. The P2P program
itself, may be safe but the files may not... use P2P at your own risk! Keep in mind that this practice may be the source of your current malware infestation.
Reference... siting risk factors, using P2P programs: How to Prevent the Online Invasion of Spyware and Adware


OTL
Please download OTL ... by Old Timer . Save it to your Desktop.
  1. Right click on OTL.exe select "Run As Administrator" to run it. If prompted by UAC, please allow it.
  2. Click the Scan All Users checkbox.
  3. Check the Extra Registry block to make sure the "Use SafeList" button is highlighted.
    Leave the remaining selections to the default settings.
  4. Click on Run Scan at the top left hand corner.
  5. When done, two Notepad files will open.
    • OTL.txt <-- Will be opened, maximized
    • Extras.txt <-- Will be minimized on task bar.
  6. Please post the contents of both OTL.txt and Extras.txt files in your next reply.


Please include in your next reply:
  1. Contents of OTL.txt
  2. Contents of Extras.txt
  3. Any problem executing the instructions?
Thanks,
wbg
wannabeageek
MRU Master
MRU Master
 
Posts: 1871
Joined: November 23rd, 2009, 10:21 pm
Location: California

Re: my pc start to run slow from some time and it's also fre

Unread postby wannabeageek » May 8th, 2013, 8:39 pm

Hello majo.

It has been two days since my last post.

  • Do you still need help?
  • Do you need more time?
  • Are you having problems following my instructions?
  • According to Malware Removal's latest policy, topics can be closed after 3 days without a response.
  • If you do not reply within the next 24 hours, this topic will be closed.
wannabeageek
MRU Master
MRU Master
 
Posts: 1871
Joined: November 23rd, 2009, 10:21 pm
Location: California

Re: my pc start to run slow from some time and it's also fre

Unread postby Cypher » May 10th, 2013, 6:01 am

Due to a lack of response, this topic is now closed.

If you still require help, please open a new thread in the Infected? Virus, malware, adware, ransomware, oh my! forum, include a fresh FRST log, and wait for a new helper.
User avatar
Cypher
Admin/Teacher
Admin/Teacher
 
Posts: 15148
Joined: October 29th, 2008, 12:49 pm
Location: Land Of The Leprechauns
Advertisement
Register to Remove


  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 348 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware