Slow Computer

Discussion in 'Malware Help (A Specialist Will Reply)' started by davidbrad, Apr 11, 2026.

  1. davidbrad

    davidbrad Private E-2

    Older laptop but still a good one. Thanks for your help
     

    Attached Files:

  2. Oh My!

    Oh My! Malware Expert Staff Member

    Greetings and :welcome: to Major Geeks Malware Forum.

    My name is Oh My! and I am here to help you! Now that we are "friends" please call me Gary.

    ===================================================

    Ground Rules:
    • First, please keep in mind most of us at Major Geeks volunteer our assistance for your benefit in your time of need. Please try to match our commitment to you with your patience toward us.
    • It is important to not run any tools or take any steps other than those I will provide for you.
    • Please perform all steps in the order they are listed. If things are not clear or you experience problems be sure to stop and let me know.
    • Please take special note in my instructions whether to copy and paste, attach, or upload reports or files requested in my instructions
    • When your computer is clean I will let you know, provide instructions to remove tools and reports, and offer you information about how you can combat future infections.
    ===================================================

    Now that I am assisting you, you can expect that I will be very responsive to your situation. If you are able, I would request you check this thread at least once per day so that we can try to resolve your issues effectively and efficiently. If you are going to be delayed please be considerate and let me know.

    Please allow me some time to review what you have posted.
     
  3. Oh My!

    Oh My! Malware Expert Staff Member

    The FRST.txt report is incomplete. Could you try another scan?
     
  4. davidbrad

    davidbrad Private E-2

    Hopefully this one worked.
     

    Attached Files:

  5. Oh My!

    Oh My! Malware Expert Staff Member

    Still did not come out correctly.

    Delete the existing FRST64 file, download a new copy and try it again.
     
  6. davidbrad

    davidbrad Private E-2

    I deleted it all and downloaded again. Lets see if this works.
     

    Attached Files:

  7. Oh My!

    Oh My! Malware Expert Staff Member

    Worked this time.

    Having multiple antivirus programs installed on a system can result in diminished computer performance. I recommend uninstalling all of them then once we are done we can reinstall the antivirus program of your choosing.

    Let's start with this.

    ===================================================

    Uninstalling Programs Using Revo Uninstaller Free Portable

    --------------------

    • Download Revo Uninstaller Free Portable and save it to your Desktop
    • Right click on the folder and select Extract All..., then click Extract
    • Double click on the RevoUninstaller-Portable folder
    • Right click on RevoUPort and select Run as administrator
    • Click OK on the License Agreement
    • From the list of programs double click on the listed program(s), or anything similar, to remove it (if it exists)
    Code:
    AVG AntiVirus Free
    CCleaner 7
    McAfee
    McAfee Security Scan Plus
    WebAdvisor by McAfee
    
    • If the program's uninstaller appears work through the steps to remove the program(s)
    • Be sure the Advanced option is selected then click Scan
    • For each window that may appear identifying leftover items click Select All, Delete, then confirm the deletion
    • Once done click Finish
    • Reboot your computer
    ===================================================

    Farbar Recovery Scan Tool Fix

    --------------------
    • Close any open programs or windows because your computer will automatically reboot after FRST64 is run
    • Right click on the FRST64 icon and select Run as administrator
    • Highlight the below information then hit the Ctrl + C keys at the same time and the text will be copied
    • There is no need to paste the information anywhere, FRST64 will do it for you
    Code:
    Start::
    CreateRestorePoint:
    CloseProcesses:
    Folder: C:\Windows\Temp\0841B60D-8B08-4069-9B1B-B5E4973615F0
    File: C:\Windows\Temp\0841B60D-8B08-4069-9B1B-B5E4973615F0\DismHost.exe
    C:\WINDOWS\System32\drivers\webshieldfilter.sys
    HKU\S-1-5-21-4189326699-856581146-2302307927-1001\...\RunOnce: [Application Restart #3] => C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe  --app-id=lgnggepjiihbfdbedefdhcffnmhcahbm --ip-aumid=www.reddit.com-39246391_4cmcp3m16r51a!App --ip-binding --ip-proc-id=6800 --mojo-named (the data entry has 100 more characters). [4314192 2026-02-05] (Microsoft Corporation -> Microsoft Corporation) 
    HKU\S-1-5-21-4189326699-856581146-2302307927-1001\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe  --app-id=lgnggepjiihbfdbedefdhcffnmhcahbm --ip-aumid=www.reddit.com-39246391_4cmcp3m16r51a!App --ip-binding --ip-proc-id=4816 --mojo-named (the data entry has 100 more characters). [4314192 2026-02-05] (Microsoft Corporation -> Microsoft Corporation) 
    HKU\S-1-5-21-4189326699-856581146-2302307927-1002\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4746600 2026-04-11] (Microsoft Corporation -> Microsoft Corporation) 
    S2 avg; "C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe" /svc [X] 
    S3 avgm; "C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe" /medsvc [X] 
    HKLM\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\Update\OneDriveSetup.exe" (No File) 
    HKLM\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\StandaloneUpdater\OneDriveSetup.exe" (No File) 
    FirewallRules: [{9DA1C9ED-BFE8-4E3C-BC34-2E366AA4B883}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe => No File 
    HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION 
    2026-04-11 14:23 - 2026-04-11 14:21 - 000323752 _____ (Gen Digital Inc.) C:\WINDOWS\system32\asw71e308d78cb43ed8.tmp 
    2026-04-11 13:53 - 2026-04-11 13:53 - 002338304 _____ () [File not signed] \\?\C:\Users\bboye\AppData\Local\Temp\13265574-97f1-42f0-9beb-e856d1174897.tmp.node 
    R1 webshieldfilter; C:\WINDOWS\System32\drivers\webshieldfilter.sys [96264 2023-10-31] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) <==== ATTENTION 
    BootExecute: autocheck autochk * icarus_rvrt.exe
    cmd: netsh winsock reset catalog
    cmd: netsh int ip reset resetlog.txt
    Reg: reg export HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\FirewallRules C:\Firewall.reg
    C:\Firewall.reg
    cmd: netsh advfirewall reset
    cmd: netsh advfirewall set allprofiles state ON
    cmd: bitsadmin /reset /allusers
    cmd: ipconfig /flushdns
    Removeproxy:
    hosts:
    cmd: sfc /scannow
    cmd: DISM /Online /Cleanup-Image /CheckHealth
    Emptytemp:
    End::
    
    • Click Fix
    • When completed the tool will create a log on the desktop called Fixlog.txt. Please copy and paste the contents of the file in your reply.
    • Note: This step resets your Firewall settings and you may be asked later to grant permission for legitimate programs to pass through the Firewall. If you recognize the program agree to the request.
    • WARNING Regarding the Emptytemp: command, please see here before running the Fixlist.
    ===================================================

    Farbar Recovery Scan Tool SearchAll

    --------------------
    • Launch FRST
    • Copy and paste the following in the Search: box
    Code:
    SearchAll: "AVG";"Gen Digital";McAfee;CCleaner;"Total AV"
    
    • Click the Search Files button
    • When completed click OK and a Search.txt document will open on your desktop
    • Please zip and upload the file to GoFile or the file hosting site of your choice and post the download link in your reply.
    ===================================================

    Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it.
    • Programs uninstalled?
    • Fixlog
    • Download link
     
  8. davidbrad

    davidbrad Private E-2

    https://gofile.io/d/Z7dp5B

    I removed all those programs

    Fix result of Farbar Recovery Scan Tool (x64) Version: 12-04-2026 01
    Ran by bboye (14-04-2026 22:12:57) Run:1
    Running from C:\Users\bboye\OneDrive\Desktop
    Loaded Profiles: bboye & Brad
    Boot Mode: Normal
    ==============================================

    fixlist content:
    *****************
    Start::
    CreateRestorePoint:
    CloseProcesses:
    Folder: C:\Windows\Temp\0841B60D-8B08-4069-9B1B-B5E4973615F0
    File: C:\Windows\Temp\0841B60D-8B08-4069-9B1B-B5E4973615F0\DismHost.exe
    C:\WINDOWS\System32\drivers\webshieldfilter.sys
    HKU\S-1-5-21-4189326699-856581146-2302307927-1001\...\RunOnce: [Application Restart #3] => C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --app-id=lgnggepjiihbfdbedefdhcffnmhcahbm --ip-aumid=www.reddit.com-39246391_4cmcp3m16r51a!App --ip-binding --ip-proc-id=6800 --mojo-named (the data entry has 100 more characters). [4314192 2026-02-05] (Microsoft Corporation -> Microsoft Corporation)
    HKU\S-1-5-21-4189326699-856581146-2302307927-1001\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --app-id=lgnggepjiihbfdbedefdhcffnmhcahbm --ip-aumid=www.reddit.com-39246391_4cmcp3m16r51a!App --ip-binding --ip-proc-id=4816 --mojo-named (the data entry has 100 more characters). [4314192 2026-02-05] (Microsoft Corporation -> Microsoft Corporation)
    HKU\S-1-5-21-4189326699-856581146-2302307927-1002\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4746600 2026-04-11] (Microsoft Corporation -> Microsoft Corporation)
    S2 avg; "C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe" /svc [X]
    S3 avgm; "C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe" /medsvc [X]
    HKLM\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\Update\OneDriveSetup.exe" (No File)
    HKLM\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\StandaloneUpdater\OneDriveSetup.exe" (No File)
    FirewallRules: [{9DA1C9ED-BFE8-4E3C-BC34-2E366AA4B883}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe => No File
    HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
    2026-04-11 14:23 - 2026-04-11 14:21 - 000323752 _____ (Gen Digital Inc.) C:\WINDOWS\system32\asw71e308d78cb43ed8.tmp
    2026-04-11 13:53 - 2026-04-11 13:53 - 002338304 _____ () [File not signed] \\?\C:\Users\bboye\AppData\Local\Temp\13265574-97f1-42f0-9beb-e856d1174897.tmp.node
    R1 webshieldfilter; C:\WINDOWS\System32\drivers\webshieldfilter.sys [96264 2023-10-31] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) <==== ATTENTION
    BootExecute: autocheck autochk * icarus_rvrt.exe
    cmd: netsh winsock reset catalog
    cmd: netsh int ip reset resetlog.txt
    Reg: reg export HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\FirewallRules C:\Firewall.reg
    C:\Firewall.reg
    cmd: netsh advfirewall reset
    cmd: netsh advfirewall set allprofiles state ON
    cmd: bitsadmin /reset /allusers
    cmd: ipconfig /flushdns
    Removeproxy:
    hosts:
    cmd: sfc /scannow
    cmd: DISM /Online /Cleanup-Image /CheckHealth
    Emptytemp:
    End::
    *****************

    Restore point was successfully created.
    Processes closed successfully.

    ========================= Folder: C:\Windows\Temp\0841B60D-8B08-4069-9B1B-B5E4973615F0 ========================

    not found.

    ====== End of Folder: ======


    ========================= File: C:\Windows\Temp\0841B60D-8B08-4069-9B1B-B5E4973615F0\DismHost.exe ========================

    "C:\Windows\Temp\0841B60D-8B08-4069-9B1B-B5E4973615F0\DismHost.exe" => not found
    ====== End of File: ======

    C:\WINDOWS\System32\drivers\webshieldfilter.sys => moved successfully
    "HKU\S-1-5-21-4189326699-856581146-2302307927-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #3" => removed successfully
    "HKU\S-1-5-21-4189326699-856581146-2302307927-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #2" => removed successfully
    "HKU\S-1-5-21-4189326699-856581146-2302307927-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\OneDrive" => removed successfully
    HKLM\System\CurrentControlSet\Services\avg => removed successfully
    avg => service removed successfully
    HKLM\System\CurrentControlSet\Services\avgm => removed successfully
    avgm => service removed successfully
    "HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Delete Cached Update Binary" => removed successfully
    "HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Delete Cached Standalone Update Binary" => removed successfully
    "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9DA1C9ED-BFE8-4E3C-BC34-2E366AA4B883}" => removed successfully
    HKLM\SOFTWARE\Policies\Mozilla => removed successfully
    "C:\WINDOWS\system32\asw71e308d78cb43ed8.tmp" => not found
    C:\Users\bboye\AppData\Local\Temp\13265574-97f1-42f0-9beb-e856d1174897.tmp.node => moved successfully
    webshieldfilter => Service stopped successfully.
    HKLM\System\CurrentControlSet\Services\webshieldfilter => removed successfully
    webshieldfilter => service removed successfully
    HKLM\System\CurrentControlSet\Control\Session Manager\\"BootExecute"="autocheck autochk *" => value restored successfully

    ========= netsh winsock reset catalog =========


    Sucessfully reset the Winsock Catalog.
    You must restart the computer in order to complete the reset.



    ========= End of CMD: =========


    ========= netsh int ip reset resetlog.txt =========

    Resetting Compartment Forwarding, OK!
    Resetting Compartment, OK!
    Resetting Control Protocol, OK!
    Resetting Echo Sequence Request, OK!
    Resetting Global, OK!
    Resetting Interface, OK!
    Resetting Anycast Address, OK!
    Resetting Multicast Address, OK!
    Resetting Unicast Address, OK!
    Resetting Neighbor, OK!
    Resetting Path, OK!
    Resetting Potential, OK!
    Resetting Prefix Policy, OK!
    Resetting Proxy Neighbor, OK!
    Resetting Route, OK!
    Resetting Site Prefix, OK!
    Resetting Subinterface, OK!
    Resetting Wakeup Pattern, OK!
    Resetting Resolve Neighbor, OK!
    Resetting , OK!
    Resetting , OK!
    Resetting , OK!
    Resetting , OK!
    Resetting , failed.
    Access is denied.

    Resetting , OK!
    Resetting , OK!
    Resetting , OK!
    Resetting , OK!
    Resetting , OK!
    Resetting , OK!
    Resetting , OK!
    Resetting , OK!
    Restart the computer to complete this action.



    ========= End of CMD: =========


    ========= reg export HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\FirewallRules C:\Firewall.reg =========

    The operation completed successfully.



    ========= End of Reg: =========

    C:\Firewall.reg => moved successfully

    ========= netsh advfirewall reset =========

    Ok.



    ========= End of CMD: =========


    ========= netsh advfirewall set allprofiles state ON =========

    Ok.



    ========= End of CMD: =========


    ========= bitsadmin /reset /allusers =========


    BITSADMIN version 3.0
    BITS administration utility.
    (C) Copyright Microsoft Corp.

    {296EDC12-D146-4CA2-B67E-9BF75DF9C0FE} canceled.
    Unable to cancel {EDF9EF44-F228-4D87-8CC3-18E535974137}.
    1 out of 2 jobs canceled.


    ========= End of CMD: =========


    ========= ipconfig /flushdns =========


    Windows IP Configuration

    Successfully flushed the DNS Resolver Cache.


    ========= End of CMD: =========


    ========= RemoveProxy: =========

    "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
    "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully
    "HKU\S-1-5-21-4189326699-856581146-2302307927-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
    "HKU\S-1-5-21-4189326699-856581146-2302307927-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully
    "HKU\S-1-5-21-4189326699-856581146-2302307927-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
    "HKU\S-1-5-21-4189326699-856581146-2302307927-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully


    ========= End of RemoveProxy: =========

    C:\Windows\System32\Drivers\etc\hosts => moved successfully
    Hosts restored successfully.

    ========= sfc /scannow =========



    Beginning system scan. This process will take some time.



    Beginning verification phase of system scan.


    Verification 0% complete.
    Verification 1% complete.
    Verification 1% complete.
    Verification 2% complete.
    Verification 2% complete.
    Verification 3% complete.
    Verification 4% complete.
    Verification 4% complete.
    Verification 5% complete.
    Verification 5% complete.
    Verification 6% complete.
    Verification 7% complete.
    Verification 7% complete.
    Verification 8% complete.
    Verification 8% complete.
    Verification 9% complete.
    Verification 10% complete.
    Verification 10% complete.
    Verification 11% complete.
    Verification 11% complete.
    Verification 12% complete.
    Verification 12% complete.
    Verification 13% complete.
    Verification 14% complete.
    Verification 14% complete.
    Verification 15% complete.
    Verification 15% complete.
    Verification 16% complete.
    Verification 17% complete.
    Verification 17% complete.
    Verification 18% complete.
    Verification 18% complete.
    Verification 19% complete.
    Verification 20% complete.
    Verification 20% complete.
    Verification 21% complete.
    Verification 21% complete.
    Verification 22% complete.
    Verification 22% complete.
    Verification 23% complete.
    Verification 24% complete.
    Verification 24% complete.
    Verification 25% complete.
    Verification 25% complete.
    Verification 26% complete.
    Verification 27% complete.
    Verification 27% complete.
    Verification 28% complete.
    Verification 28% complete.
    Verification 29% complete.
    Verification 30% complete.
    Verification 30% complete.
    Verification 31% complete.
    Verification 31% complete.
    Verification 32% complete.
    Verification 32% complete.
    Verification 33% complete.
    Verification 34% complete.
    Verification 34% complete.
    Verification 35% complete.
    Verification 35% complete.
    Verification 36% complete.
    Verification 37% complete.
    Verification 37% complete.
    Verification 38% complete.
    Verification 38% complete.
    Verification 39% complete.
    Verification 40% complete.
    Verification 40% complete.
    Verification 41% complete.
    Verification 41% complete.
    Verification 42% complete.
    Verification 42% complete.
    Verification 43% complete.
    Verification 44% complete.
    Verification 44% complete.
    Verification 45% complete.
    Verification 45% complete.
    Verification 46% complete.
    Verification 47% complete.
    Verification 47% complete.
    Verification 48% complete.
    Verification 48% complete.
    Verification 49% complete.
    Verification 50% complete.
    Verification 50% complete.
    Verification 51% complete.
    Verification 51% complete.
    Verification 52% complete.
    Verification 52% complete.
    Verification 53% complete.
    Verification 54% complete.
    Verification 54% complete.
    Verification 55% complete.
    Verification 55% complete.
    Verification 56% complete.
    Verification 57% complete.
    Verification 57% complete.
    Verification 58% complete.
    Verification 58% complete.
    Verification 59% complete.
    Verification 60% complete.
    Verification 60% complete.
    Verification 61% complete.
    Verification 61% complete.
    Verification 62% complete.
    Verification 62% complete.
    Verification 63% complete.
    Verification 64% complete.
    Verification 64% complete.
    Verification 65% complete.
    Verification 65% complete.
    Verification 66% complete.
    Verification 67% complete.
    Verification 67% complete.
    Verification 68% complete.
    Verification 68% complete.
    Verification 69% complete.
    Verification 70% complete.
    Verification 70% complete.
    Verification 71% complete.
    Verification 71% complete.
    Verification 72% complete.
    Verification 72% complete.
    Verification 73% complete.
    Verification 74% complete.
    Verification 74% complete.
    Verification 75% complete.
    Verification 75% complete.
    Verification 76% complete.
    Verification 77% complete.
    Verification 77% complete.
    Verification 78% complete.
    Verification 78% complete.
    Verification 79% complete.
    Verification 80% complete.
    Verification 80% complete.
    Verification 81% complete.
    Verification 81% complete.
    Verification 82% complete.
    Verification 82% complete.
    Verification 83% complete.
    Verification 84% complete.
    Verification 84% complete.
    Verification 85% complete.
    Verification 85% complete.
    Verification 86% complete.
    Verification 87% complete.
    Verification 87% complete.
    Verification 88% complete.
    Verification 88% complete.
    Verification 89% complete.
    Verification 90% complete.
    Verification 90% complete.
    Verification 91% complete.
    Verification 91% complete.
    Verification 92% complete.
    Verification 92% complete.
    Verification 93% complete.
    Verification 94% complete.
    Verification 94% complete.
    Verification 95% complete.
    Verification 95% complete.
    Verification 96% complete.
    Verification 97% complete.
    Verification 97% complete.
    Verification 98% complete.
    Verification 98% complete.
    Verification 99% complete.
    Verification 100% complete.


    Windows Resource Protection found corrupt files and successfully repaired them.

    For online repairs, details are included in the CBS log file located at

    windir\Logs\CBS\CBS.log. For example C:\Windows\Logs\CBS\CBS.log. For offline

    repairs, details are included in the log file provided by the /OFFLOGFILE flag.



    ========= End of CMD: =========


    ========= DISM /Online /Cleanup-Image /CheckHealth =========


    Deployment Image Servicing and Management tool
    Version: 10.0.19041.3636

    Image Version: 10.0.19045.6466

    No component store corruption detected.
    The operation completed successfully.


    ========= End of CMD: =========


    =========== EmptyTemp: ==========

    FlushDNS => completed
    BITS transfer queue => 0 B
    DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 37046273 B
    Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 24433186 B
    Windows/system/drivers => 263281926 B
    Edge => 324172272 B
    Firefox => 308240000 B
    Opera => 0 B

    Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
    Default => 0 B
    ProgramData => 0 B
    Public => 0 B
    systemprofile => 4288 B
    systemprofile32 => 0 B
    LocalService => 66096 B
    NetworkService => 3510 B
    bboye => 506156078 B
    Brad => 18392773 B

    RecycleBin => 1224239459 B
    EmptyTemp: => 2.5 GB temporary data Removed.

    ================================


    The system needed a reboot.

    ==== End of Fixlog 22:30:37 ====
     
  9. Oh My!

    Oh My! Malware Expert Staff Member

    Thank you for the report.

    Any change in computer performance?

    Please do this.

    ===================================================

    Farbar Recovery Scan Tool Search

    --------------------
    • Launch FRST
    • Type the following in the Search: box
    Code:
    DismHost.exe
    • Click Search Files button
    • When completed click OK and a Search.txt document will open on your desktop
    • Copy and paste the contents of that document your reply
    ===================================================

    Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it.
    • Change in performance?
    • Search.txt
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds