Slow startup and slow running of programs

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Cuervo79, May 18, 2011.

  1. Cuervo79

    Cuervo79 Private E-2

    This problem started I think when I installed a game, I didn't notice it too much didn't like the game so I deleted it. that was about 2 weeks ago little by little problems started cropping up first the computer didn't want to boot up then it booted up but didn't load the last screen on Win XP where it let's you select the user. Then it did boot up (slowly) but it took a really long time to lactually load my user preferences and programs, when starting firefox (this was a version previous to 4.0) it took a long time to load and I really couln't do anything so I upgraded to 4.0 and although I can do stuff I the computer's really slow, since at first I thought the problem was the OS HD I ran chkdsk but to no avail, then I started running superantispyware (it didn't find anything but it took REALLY a long time to scan (last time I had a prob it didn't took that much, then I went with malwarebytes and it found like 3 things which I deleted, but there still was the slugish problem so I ran my antivirus program (avast) It found 6 files but I couldn't delete them so I made the antivirus program run at boot it found only one infected file but I couldn't delete it.

    Then I remembered this site and ran the steps on the FAQ, now boot up time is up to normal but from the time I select my user to the time that everything loads it takes too long compared to normal and I still have problems with programs being slugish.

    Attached you will find the logs, anything else you need to diagnose please tell me

    Cheers
     

    Attached Files:

  2. Cuervo79

    Cuervo79 Private E-2

    Here's the MG logs zip
     

    Attached Files:

    Last edited: May 18, 2011
  3. Cuervo79

    Cuervo79 Private E-2

    I have a new simptom, the boot up time is normal but when I load my user after a bit both my monitors go blank, I'm writing this on my laptop.
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I am not seeing any malware in your logs. We can remove some left over junk:

    Please disable all anti-virus and anti-spyware programs while we do the following (re-enable when you are finished):

    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    After clicking Fix, exit HJT.

    Now copy just the bold text below to notepad (Do not include any space above the word REGEDIT). Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.


    Please go here and download and run the AVG Removal Tool.

    As far as your "slowness" issues, you should post in the software forum and post with answers to these questions:

    A slow computer is not always due to malware:

    Please explain what operations are slow! For example answer the below:

    * Is boot up slow?
    * Is shutdown slow?
    * Is browsing/surfing slow?
    * Is downloading slow?
    * Is running any application?
    * Is it also slow in safe boot mode?
    * Also are any process showing in Task Manager to be using a lot of CPU time?
    * Anything else slow?

    Since you are not having any malware problems, it is time to do our final steps:

    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no real time protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.We recommend them for doing backup scans when you suspect a malware infection.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.


    3. Go back to step 6 of the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    4. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    5. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    6. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    7. Go to add/remove programs and uninstall HijackThis.
    8. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    9. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures pointed to by step 7 of the READ ME
        for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.

    10. After doing the above, you should work thru the below link:


    Malware removal from a National Chain = $149
    Malware removal from MajorGeeks = $0

    Help Support MajorGeeks
    Buy Discounted Software @ Majorgeeks Store. Giveaways Too!

    Majorgeeks Geek Wear. Hats, T-Shirts, Hoodies

    MajorGeeks on FaceBook
     
  5. Cuervo79

    Cuervo79 Private E-2

    Is there a way to do this without running windows? Although I don't doubt you can't see any malware on the logs, I'm having trouble loading my user settings, as I mentioned after a while its loading the programs, my screens go dark and I have to restar the comp. I've been trying to enter windows via safe mode but no luck.
     
  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Whilst Tim is offline let's have you do this:

    Important Notice: A new version of SUPERAntiSpyware is available.
    • Please uninstall your current version (this is necessary).
    • Then download this SUPERAntiSpyware
    • Install this new version. It may tell you that you need to reboot to complete the installation. You must reboot at this time.
    • After the reboot, run SUPERAntiSpyware and immediately click the Check for Updates button to get more updates for the database.
    • Now run a new full scan of your system. And attach this log later.


    Java(TM) 6 Update 20 <--- uninstall outdated Java

    Now go to this MGTools and download the new version of MGtools.exe. Overwrite your previous MGtools.exe file with this one. (You do not have a copy any more if you followed final steps so you do not have to overwrite if that is the case.) The pprevious copy you had was very outdated.

    I want you to run TDSSKiller so refer to the below for how to do so.

    TDSSkiller - How to run

    Reboot your machine and install the most current and up to date version of Java available here at the below link:

    Java Runtime 6

    Now run the new C:\MGTools.exe and attach the new C:\MGLogs.zip
     
  7. Cuervo79

    Cuervo79 Private E-2

    update: I've been trying to load Win xp normally and it doesn't even load, after the splash screen where you see the bar moving it then goes blank and doesn't load the user selection screen
     
  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Urgh. Are you still not able to use safe mode either?

    I may have to send you off to the software forum but you must return when you are up and running again.

    If you really cannot run anything to provide us information that we need to perform a proper diagnosis, your option would be to use another PC to try create one or more of the below CDs to boot from that allow you to run scans and perform many other tasks without Windows even being loaded. Sometimes this can help to get you started when all else fails. They can even help in cases where a previous scan may have removed something that resulted in your PC being unbootable.
     
  9. Cuervo79

    Cuervo79 Private E-2

    well as I said I'm posting from my laptop not the afected comp. Seems that its not that it isn't loading but that it takes a LONG time to load for example as I'm writing this the comp loaded the user selection screen (it took about 15 mins to load and there was no HD use lights lighting on...
     
  10. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    So you are able to get in via normal mode, it just takes a long time, correct?

    If so then please follow as much of my instructions in post # 6 as possible.
     
  11. Cuervo79

    Cuervo79 Private E-2

    I will try and let the comp alone to see if maybe that way it loads everything and let's me do something to it.

    I thought it wasn't loading since it doesn't take 15 mins from the xp loading screen to the user selection screen
     
  12. Cuervo79

    Cuervo79 Private E-2

    I've been trying to run it in safemode and I can get it to log in but sooner or later I get a blue screen of death with the following technical info:
    stop: 0x000000f4 (0x00000003, 0x8a6e2850, 0x8a6e29c4, 0x860577e)

    I tried to boot up normally and it did even gave me enough time to update superantispyware and start runing a scan but after a while my screens whent black and the comp became unresponsive...
     
  13. Cuervo79

    Cuervo79 Private E-2

    I haven't been able to run a full scan with superantispiware the comp freezes up (screens go black) I did how ever got to scan with tdsskiller attached is the log.

    What other thing can I do? I will try to run mgtools again (last time I tried it didn't finish since the comp freezed as well)
     

    Attached Files:

  14. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    OK that found and removed a bootkit infection. Can you run it again to be sure it is clear this time?
     
  15. Cuervo79

    Cuervo79 Private E-2

    it came out clean, I'm trying to run mg tools now hopefully my comp won't freeze up...
     
  16. Cuervo79

    Cuervo79 Private E-2

    mglogs file... trying to run a complete scan with superantispyware...
     

    Attached Files:

  17. Cuervo79

    Cuervo79 Private E-2

    no success with superantispyware, my computer freezed up again...
     
  18. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I have not time to go through the mglogs yet however try this

    NOTE: If you get a blue screen type crash when trying to run the scan then after reboot, configure the below options and rescan
    Run SuperAntiSpyware
    In SUPERAntiSpyware under Configuration and Preferences, click the Preferences button.
    Click the Scanning Control tab.
    Under Scanner Options uncheck the below two options
    Use Kernel Direct File Access (recommended)
    Use Kernel Direct Registry Access (recommended)
    Then try doing a new Complete.
    After the scan is complete, a Scan Summary box will appear with potentially harmful items that were detected. Click "OK".
    Make sure everything has a checkmark next to it and click "Next".
    A notification will appear that Quarantine and Removal is Complete. Click OK and then click the Finish button to return to the main menu.
    If asked if you want to reboot, click Yes.
    Reboot into normal Windows boot mode

    If it still crashes then you can try http://www.superantispyware.com/onlinescan.html

    Reboot immediately after scanning if it finds and removes anything. Let me know if anything was found. It does not save a log.
     
  19. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Follow Kes's advice and try running SAS> however, I am not finding any malware in your logs. I am beginning to think you may need to go into the software forum to diagnose your BSOD's.

    Please disable all anti-virus and anti-spyware programs while we do the following (re-enable when you are finished):

    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    After clicking Fix, exit HJT.

    Now copy just the bold text below to notepad (Do not include any space above the word REGEDIT). Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.
     
  20. Cuervo79

    Cuervo79 Private E-2

    when trying to merge the reg file it gives me the following error:
    cannot iimport c:\documents and settings\cuervo79\desktop\fixme.reg: the specified file is not a registry script. you can only import binary registry files from within the registry editor...

    Regarding superanti spyware none of the options worked my comp still froze up
     
  21. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Did you save it as "All Files" in the type box?
     
  22. Cuervo79

    Cuervo79 Private E-2

    yes, the encoding was ansi should I use another?
     
  23. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Not ascii. ALL FILES.
     
  24. Cuervo79

    Cuervo79 Private E-2

    Yes I did save as all files and the encodin was ansi (sorry I mistyped ascii it was ansi)
     
  25. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Should have worked. The reg fix was a backup in case HJT didn't fix it. But either way, neither of the items are significant to your issues. The error code seems to point to either a bad ram stick or a dying cmos battery. How old is this computer?
     
  26. Cuervo79

    Cuervo79 Private E-2

    pretty old, 5+ years...

    should I add the registry lines by hand?
     
  27. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    It very well could be your cmos battery going dead. You might consider replacing it. I am not real worried about the reg fix. Just run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista or Win7, don't double click, use right click and select Run As Administrator).Make sure that you watch for the license agreement for TrendMicro HijackThis and click on the Accept button TWICE to accept ( yes twice ) and attach the new MGLogs.zip to see if they were fixed.
     
  28. Cuervo79

    Cuervo79 Private E-2

    It happened again while running getlogs.bat the comp froze to black screens, is there a way other than chkdsk to check for HD health? or another thing I can do to see what is the matter?
    is there another tool I could try? when I used Tdsskiller it found something that the others didn't find, too bad superantispyware doesn't have a boot up scan...
     
  29. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Attach the TDSSKiller log if this is a recent scan. You will probably need to post in the software forum to diagnose the BSOD issue.

    Also please try running the below online scan:

    http://www.superantispyware.com/onlinescan.html

    Reboot immediately after scanning if it finds and removes anything. Let me know if anything was found. It does not save a log.
     
  30. Cuervo79

    Cuervo79 Private E-2

    already tried that one my comp froze up, the tdsskiller is showing up clean now the log where it showed an infected file is the one I uploaded
     
  31. Cuervo79

    Cuervo79 Private E-2

    any other ideas?
     
  32. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    As I already suggested to you, you should post in the software forum to diagnose the BSOD issue. You can also discuss your slowness issues, after giving some additional info about that in your software thread:

    Please explain what operations are slow! For example answer the below:

    * Is boot up slow?
    * Is shutdown slow?
    * Is browsing/surfing slow?
    * Is downloading slow?
    * Is running any application?
    * Is it also slow in safe boot mode?
    * Also are any process showing in Task Manager to be using a lot of CPU time?
    * Anything else slow?
     
  33. Cuervo79

    Cuervo79 Private E-2

    ok thank you for the suggestions... I've made a thread there

    Cheers

    And thanx for the help
     
  34. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You are most welcome. I will try to keep an eye on your software thread. Safe surfing. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds