Sons Laptop VERY Slow - Malware? Maybe?

Discussion in 'Malware Help (A Specialist Will Reply)' started by damedic_mt, Jan 26, 2010.

  1. damedic_mt

    damedic_mt Private E-2

    Hello :wave

    I'm back with my sons older computer now. Thanks for the help last time on my wifes computer!

    My son was doing a lot of cleaning after his mothers computer was down, and he told me he had lots of items found when running the cleaning programs that were recommended by MG's. I told him what to download and use regularly, about a month or so ago.

    I thought he was doing okay, but now he says that the computer is lots slower than he remembers (he's been using our family Desktop instead of this laptop). So, now he asked if I could take over & possibly have something done?

    I am now turning to the experts here at MG. :major

    This is what we have:
    • Dell Inspiron 5100
    • 40 Gig HDD; 3.95 gb available
    • Win XP Home, SP3
    • 512 mb Ram

    I timed the startup @ 4.58 minutes from off to available desktop, which is 1:05 to welcome screen, then after immediately clicking on Users Icon, startup continues loading user settings; 1:15 minutes later desktop appears; things keep on loading and almost 5 minutes later, computer is usable.

    Computer tends to lag at first then after a few minutes, it appears that things smooth out & is somewhat quicker. But I do tend to agree, I think the computer is slow.

    So I am asking for a second opinion. I went thru all of the Read Me... and I double checked all settings to ensure all is as the "Read Me" requires or recommended rather. I ran the scans & will post the logs.

    I don't know if the problem is related to:
    1. Virus, Malware, Trojans, or Rootkits
    2. Hardware Issues
    3. Amount of non-required Startup Items
    4. or... just - in our heads??? :confused

    Take Care and once again as I said last time - You Guys Rock! :dood

    medic
     

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Those logs look good to me, not seeing any malware which is what you came here to rule out as a cause of the slowness.

    Trying to find out the cause of your slowness will more than likely have to be resolved in the software forum as this is not topic for the malware forum, especially since it doesn't look like there's any malware. Let's just do the below and also run something to check nothing is hiding from us:

    1. If you do not use Windows Messenger Run this Disable/Remove Windows Messenger to remove Windows Messenger. Do not confuse Windows Messenger with MSN Messenger because they are not the same. Windows Messenger is a frequent cause of popups.

    2. Please go to Add and Remove programs and uninstall the following software:

    • Java(TM) 6 Update 17

    3. Now Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.

    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.

    4. Now Download Combofix to your desktop but do not run it yet.

    5.
    • Go to TDSSKiller and Download TDSSKiller.zip to your Desktop
    • Extract its contents to your Desktop so that you have TDSSKiller.exe directly on your Desktop and not in any subfolder of the Desktop.
    • Click Start > Run and copy/paste the following bold command into Run box and hit Enter ( the quotes are required).
    "%userprofile%\Desktop\TDSSKiller.exe" -l C:\TDSSKiller.txt -v

    • Follow the instructions to type in "delete" when it asks you what to do when if finds something.
    • When done, a log file should be created on your C: drive called "TDSSKiller.txt" please attach this log to your next reply.

    6. (Make sure you refer to the instructions in the R&R with regards to running combofix) Now run combofix by double clicking on it's icon on your desktop. Attach the C:\combofix.txt log that it produces into your next reply here.

    7. Now reboot your machine and install the most current and up to date version of Java available here at the below link:

    Java Runtime 6


    8. Now run the C:\MGtools\GetLogs.bat file by double clicking on it. Then attach the new C:\MGlogs.zip file that will be created by running this and also attach the log from Combofix. and also the log from TDSSKiller.

    9. Let us know of any problems you may have encountered with the above instructions and also let me know how things are running now.
     
  3. damedic_mt

    damedic_mt Private E-2

    Good Afternoon, Kestrel :wave

    Thank you for taking this one on.

    I do understand your comments about possibly being in the wrong forum if no Malware is found. But, you are correct, I wanted your assistance to rule that possibility out! I was unsure on how to check deeply into this machine. to find those pesky little devils. :tas But, I think you are helping in doing just that.

    I also wanted to post the comment that if I was in the wrong place, will you move this into the proper forum, as you stated, into the Software forum, or will it be better if I just post that myself?

    Anyway, I did what you requested and this is how things went.
    • Uninstalled Windows Messenger - no probs
    • Deleted Java - no probs
    • Copied text & created fixMe & ran the Registry edit - no prob
    • Downloaded TDSSKiller to Desktop
      [*]NO log file was created onto desktop - Will try to place screenshot​
    • Ran ComboFix - no prob
    • Installed newest version of Java - no prob

    I will post logs you requested. Just a repeat, No .txt file was created for TDSSKiller, on the Desktop??? Don't know why that was. But, I will try to post a screenshot of the results seen on the desktop, after that scan.

    <a href="http://s890.photobucket.com/albums/ac109/damedic_mt/?action=view&current=ScrnShtTDSSKlr-1.jpg" target="_blank"><img src="http://i890.photobucket.com/albums/ac109/damedic_mt/ScrnShtTDSSKlr-1.jpg" border="0" alt="Photobucket"></a>

    Thanks again. Will await your reply on how now to proceed.

    PS - all appears to be about the same. No problems additionally. Maybe a little quicker on the startup, but not significantly though. :(

    PSS - I found the .txt file. It was on C: ?
     

    Attached Files:

  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You can do the below to free up some resources, and then you can manually open each program instead of having it run @ start up:

    Please disable all anti-virus and anti-spyware programs while we do the following (re-enable when you are finished):

    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:

    After clicking Fix exit HJT.


    Now use Windows Explorer to locate and delete the following bold directory:

    You will have to visit the software forum to troubleshoot reasons why the laptop is running slowly. Best of luck. :)

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we used Pocket Killbox during your cleanup, do the below
      • Run Pocket Killbox and select File, Cleanup, Delete All Backups
    3. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
    4. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    5. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    6. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    7. Go to add/remove programs and uninstall HijackThis.
    8. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    9. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures in step 3 the READ ME for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    10. After doing the above, you should work thru the below link:
     
  5. damedic_mt

    damedic_mt Private E-2

    Good Evening, Kestrel - Way Cool on the very quick reply...:cool :wave Thanx!

    I went ahead & completed all of your suggestions & instructions, except for the last two where I will read the provided links.

    It is late, I'm tired, I have turned that laptop off, & I am heading for bed. My son could wait another day to get his laptop back.

    Tomorrow I will disable & then re-enable the System Restore & then I'll work thru that last link to be protected from future Malware problems.

    Once again, thank you for your assistance. I hope your upcoming weekend will be a fantastic one! :drink ... but not too much! LOL

    Take care, :)

    And I will post in the Software Forum, to see if I can get a few more pieces of advice on what to do with this machine.
     
  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Not a problem, I'm a night owl and am usually often around then.

    Thankyou very much, mine's a pint of Guiness :-D


    Yes best of luck with that. :)
    Kes
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds