All initial steps completed...still slow!

Discussion in 'Malware Help (A Specialist Will Reply)' started by jonboy75, May 11, 2009.

  1. jonboy75

    jonboy75 Private E-2

    hi everyone
    I've been through all the steps as recommended, but there appears to be an underlying problem still with my PC running fairly slowly and the performance quite pooor.
    Any help is much appreciated. I have all the logs ready, but await your instructions. Thanks

    Jon
     
  2. jonboy75

    jonboy75 Private E-2

    forgot logs rolleyes
     

    Attached Files:

  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Still need the C:\MGLogs.zip from running the C:\MGTools.exe.
     
  4. jonboy75

    jonboy75 Private E-2

    attached, thanks.
     

    Attached Files:

  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Your logs are clean. We can clean up some leftovers:

    Please disable all anti-virus and anti-spyware programs while we do the following (re-enable when you are finished):

    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    After clicking Fix, exit HJT.

    Now Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.


    I suspect that your issue with slowness is that both your hard drives are almost full and probably need to be defragged and cleaned up.

    The other reason is you need more RAM:

    Total Physical Memory 512.00 MB
    Available Physical Memory 146.77 MB

    If you are not having any other malware problems, it is time to do our final steps:

    1. We recommed you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no real time protection. They are useful as backup scanners. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /u
        • Notes: The space between the combofix" and the /u, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.

      • Delete the C:\combofix folder from combofix (if it exists)

    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete the C:\MGlogs.zip
    7. If you are running Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning steps in the READ ME for your Window version and see the steps to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.

    8. After doing the above, you should work thru the below link:

     
  6. jonboy75

    jonboy75 Private E-2

    hi again

    i finally bought some more RAM. I then ran through the steps again as it had been some time since the first attempt. I attach my logs here and hope someone can help.
    I'm unable to attach the RootRepeal log as It would not initialise. Also, I could not upload the MalwareBytes log as i had already posted it earlier in this thread.
    thanks
     

    Attached Files:

    Last edited by a moderator: Jun 21, 2009
  7. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You do not have any malware. What you have is a lot of leftovers from previously installed software and too many AV programs:
    Authentium AntiVirus SDK - 2"
    RPS AntiVirus
    PCguard Anti-Virus
    Remove all but one!

    Your latest MBAM log is here:
    C:\Documents and Settings\Gemma Pinkham\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\
    mbam-l~2.txt 19 Jun 2009 2381 "mbam-log-2009-06-19 (18-00-14).txt

    Now you can use windows explorer to find and delete:
    c:\documents and settings\All Users\Application Data\avg8
    c:\documents and settings\Gemma Pinkham\Application Data\AVG8
    C:\Program Files\AVG
    c:\documents and settings\All Users\Application Data\McAfee
    c:\program files\McAfee.com
    c:\windows\Tasks\Norton Security Scan.job
     
  8. jonboy75

    jonboy75 Private E-2

    Thanks for your help.
    RPS Updater is part of PCGuard, bundled with Virgin Broadband and bought recently. I cant seem to find the Authentium AV?
    I removed all the other items, but still running slow. I have minimal programs running on startup!

    Jon
     
  9. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You could use a startup manager:
    Startup Manager

    Startup_CPL

    We can also remove some of these:
    Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.


    As to addition assistance with your slowness issues, I suggest you post in the software section.
     
  10. jonboy75

    jonboy75 Private E-2

    The reg update worked fine and I am now using startup manager. There still seems to be an underlying issue, so I will post under the other section as advised.
    Thankyou for taking the time to help me, it's much appreciated.
     
  11. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You are welcome.....hope the software forum can lend you a hand.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds