Laptop is running really slowly

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • Malnutrition
    PCHF Moderator
    • Jul 2016
    • 7045

    #16

    Step 1: Herd Protect Scan.


    https://sites.google.com/site/canned...go-200x200.png Scan with HerdProtect

    Please download HerdProtect by Reason Software (portable edition) and save the file to your desktop.
    Temporary disable your AntiVirus and AntiSpyware protection

    [ul]
    [li]Right-click on https://sites.google.com/site/canned...go-200x200.png icon and select https://sites.google.com/site/cannedfixes/home/hosted-images-tools/RunAsAdmin.jpg Run as Administrator to install the scanner.[/li][/ul]
    [ul]
    [li]It will ask for the location - leave the default one (%ProgramFiles%) or select another, convenient one.[/li][/ul]
    [ul]
    [li]Agree to the terms, select Launch herdProtect and click Finish.[/li][/ul]
    [ul]
    [li]Click Scan. It may take a while, depending on your system and connection specs. Please be patient.[/li][/ul]
    [ul]
    [li]When it finishes click on Save Results.[/li][/ul]
    [ul]
    [li]A Notepad with a report should open.[/li][/ul]
    Please include the contens of that report in your next reply.
    This type of scan often produces false positives. In any case do not remove on your own any of its findings! Removal will be made after the careful analysis of the scan results.
    Upon completion of the cleaning you may remove HerdProtect if you wish so. To do it just delete its directory (chosen by you when installing the tool).

    Step 2: Rogue Killer Scan.

    Download RogueKiller from one of the following links and save it to your Desktop:

    Link 1
    Link 2
    [ul]
    [li]Close all the running programs[/li][li]Double click on downloaded setup.exe file to install the program.[/li][li]Click on Start Scan button.[/li][li]Click on another Start Scan button.[/li][li]Wait until the Status box shows Scan Finished[/li][li]Click on Delete.[/li][li]Wait until the Status box shows Deleting Finished.[/li][li]Click on Report and copy/paste the content of the Notepad into your next reply.[/li][li]RKreport.txt could also be found on your desktop.[/li][li]If more than one log is produced post all logs.[/li][/ul]
    Step 3: MalwareBytes Scan.

    MalwareBytes Scan

    We need you to run MalwareBytes to get a log, please download the free version of MalwareBytes HERE

    http://data-cdn.mbamupdates.com/web/...2.2.0.1024.exe Alternate Link.

    Save the file to somewhere you can easily find it. Double click the saved file to start the install, accept any security warnings that may appear, and after the install click the new desktop icon to start the program. We need to modify a couple of things with MalwareBytes before we use it so please follow the steps below.

    [ol]
    [li]If the dashboard is not already displayed select it.[/li][li]Then select “Update Now” to get the latest database.[/li][/ol]
    [MEDIA=imgur]VSKiiIc[/MEDIA]

    [ol]
    [li]Next we need to change a scanning option, select “Settings” on the main menu, then “Detection and Protection” on the left.[/li][li]Then select “Scan for rootkits” in the detection options, as well as the other two options already checked.[/li][/ol]
    [MEDIA=imgur]ZU4W2g2[/MEDIA]

    [ul]
    [li]Now return to Dashboard on the main menu and select “Scan Now” at the bottom of the screen.[/li][/ul]
    [MEDIA=imgur]nF8dOcq[/MEDIA]

    [ul]
    [li]Allow MalwareBytes to scan your system, it may take some time depending on what you have loaded onto your hard drive.[/li][/ul]
    [MEDIA=imgur]L8lsasM[/MEDIA]

    When the scan is finished

    [ol]
    [li]Click “Save Results”[/li][li]Then click on “Text file”[/li][/ol]
    [MEDIA=imgur]5x4JOvA[/MEDIA]

    [ul]
    [li]A window will then open allowing you to choose a name for the logfile and also allowing you to choose where to save it, save it to the desktop.[/li][li]Please copy and paste the contents of this file in your next post.[/li][/ul]

    Comment

    • HenryNL
      PCHF Member
      • Dec 2016
      • 10

      #17
      Can you please tell me what is he point of downloading all these applications and doing the same thing over and over again?
      [HEADING=1][spoiler]
      Saved date: 12/12/2016 2:55:17 PM
      Files detected: 35
      Files scanned: 8,633
      Processes scanned: 67
      Modules scanned: 535
      ASEPs scanned: 483
      Downloads scanned: 0
      Deep analysis: 5/0[/spoiler][/HEADING][spoiler]
      Files


      File path: c:\windows\system32\kernelbase.dll
      Publisher: Microsoft Corporation
      MD5: 6d832ca36ed7a60d4f73b4199f26cc66
      SHA-1: d6bbdf769d7a5fc02e28e59cf52cbbf6c5ebc3ab
      Created: 13/02/2016 8:42:06 AM
      Detections: 1
      Determination: Inconclusive
      - Avira AntiVirus as W32/Sality.AT (Undefined)


      File path: c:\program files (x86)\google\update\googleupdate.exe
      Publisher: Google Inc.
      Signer: Google Inc
      MD5: 750446ed76a5d13e902174dddda1a62b
      SHA-1: 9d04597f8cfc8841dfa876487de965c0f05708ca
      Created: 15/04/2016 5:26:38 PM
      Detections: 1
      Determination: Ignore detections (false positive)
      - Reason Heuristics as Adware.Eorezo (M) (Adware)


      File path: c:\program files (x86)\wildtangent games\app\gamesappservice.exe
      Publisher: WildTangent, Inc.
      Signer: WildTangent Inc
      MD5: c403c5db49a0f9aaf4f2128edc0106d8
      SHA-1: efb10419c7b07748f15f029fe63b227e45fbd004
      Created: 12/10/2010 10:59:12 AM
      Detections: 1
      Determination: Ignore detections (false positive)
      - Boost by Reason as Optional.Service.WildTangent.P


      File path: c:\users\henry\downloads\ccsetup524.exe
      Publisher: Piriform Ltd
      Signer: Piriform Ltd
      MD5: 90f503a58ed6b340c78d626d553672f6
      SHA-1: 6485c514e69979ea39ef29270f1df101bb4490b1
      Created: 11/12/2016 2:09:02 PM
      Detections: 2
      Determination: Inconclusive
      - ESET NOD32 as Win32/Bundled.Toolbar.Google.D potentially unsafe application (Undefined)
      - Reason Heuristics as PUP.Bundled.Toolbar.ET (M) (Adware)


      File path: c:\users\henry\downloads\frst64.exe
      Publisher: Farbar
      MD5: d3a3338cf1ede134315cfccc93d2636f
      SHA-1: f37848175f05fffb1607d8d8344aa38cc1ba996d
      Created: 11/12/2016 1:32:23 PM
      Detections: 2
      Determination: Ignore detections (false positive)
      - Bkav FE as W32.HfsAtITA (Undefined)
      - Antiy Labs AVL as Trojan/Generic.ASVCS3S.1E5 (Undefined)


      File path: c:\users\henry\downloads\securitycheck.exe
      Publisher: glax24 (safezone.cc)
      MD5: b54ade01f6ac33c3ed8cfc6d15aeb919
      SHA-1: fc0e1b61ff192b0bfb0351a56d5151846e942aa9
      Created: 12/12/2016 12:25:25 AM
      Detections: 1
      Determination: Adware
      - Reason Heuristics as PUP.SafeZone (M) (Adware)


      File path: c:\users\henry\desktop\frst64.exe
      Publisher: Farbar
      MD5: d3a3338cf1ede134315cfccc93d2636f
      SHA-1: f37848175f05fffb1607d8d8344aa38cc1ba996d
      Created: 11/12/2016 1:32:38 PM
      Detections: 2
      Determination: Ignore detections (false positive)
      - Bkav FE as W32.HfsAtITA (Undefined)
      - Antiy Labs AVL as Trojan/Generic.ASVCS3S.1E5 (Undefined)


      File path: c:\users\henry\desktop\securitycheck.exe
      Publisher: glax24 (safezone.cc)
      MD5: b54ade01f6ac33c3ed8cfc6d15aeb919
      SHA-1: fc0e1b61ff192b0bfb0351a56d5151846e942aa9
      Created: 12/12/2016 12:28:32 AM
      Detections: 1
      Determination: Adware
      - Reason Heuristics as PUP.SafeZone (M) (Adware)


      File path: c:\users\henry\desktop\old firefox data\zxsmw4me.default\extensions\arthurj8283@gmail.com\install.rdf
      Publisher:
      MD5: f93adbab664009775d21186add8ca0e9
      SHA-1: 7105990ca870578537e1d74d9b6e60147a385538
      Created: 30/10/2016 9:23:42 PM
      Detections: 1
      Determination: Adware
      - Reason Heuristics as PUP.Firefox.Extension.xRocketToolbar (Adware)


      File path: c:\windows\system32\wudfx.dll
      Publisher: Microsoft Corporation
      MD5: 25ae683dcb4ae7e6f1b193a0cb9db35f
      SHA-1: 458e6b66ec1862dfa8c2c65cc1c2e1a9e6297f18
      Created: 25/07/2012 6:44:19 PM
      Detections: 1
      Determination: Inconclusive
      - Avira AntiVirus as TR/Dropper.Gen (Undefined)


      File path: c:\programdata\application data\blizzard entertainment\battle.net\cache\36\b2\36b27cd911b33 c61730a8b82c8b2495fd16e8024fc3b2dde08861c77a852941 c.auth
      Publisher:
      MD5: 140d0aaf310055ebebcdd91d3f0f522e
      SHA-1: 8b0b8779b18467e4e180a74971aa469542a18f50
      Created: 15/04/2016 6:11:43 PM
      Detections: 2
      Determination: Ignore detections (false positive)
      - Trend Micro House Call as PAK_Generic.001
      - Trend Micro as PAK_Generic.001


      File path: c:\programdata\blizzard entertainment\battle.net\cache\36\b2\36b27cd911b33 c61730a8b82c8b2495fd16e8024fc3b2dde08861c77a852941 c.auth
      Publisher:
      MD5: 140d0aaf310055ebebcdd91d3f0f522e
      SHA-1: 8b0b8779b18467e4e180a74971aa469542a18f50
      Created: 15/04/2016 6:11:43 PM
      Detections: 2
      Determination: Ignore detections (false positive)
      - Trend Micro House Call as PAK_Generic.001
      - Trend Micro as PAK_Generic.001


      File path: c:\users\henry\appdata\local\apps\2.0\5cg6oy67.5kc \0vjjevn2.9b0\clic…exe_f09d422d3b6d863a_0001.0003_ none_1f743fbe4a8e0300\googleupdatesetup.exe
      Publisher: Google Inc.
      Signer: Google Inc
      MD5: a4c58ea455234afd3b622d838cde4c39
      SHA-1: 92944220a2f71aee4109ba1873a0436a0d9818d6
      Created: 13/02/2016 10:40:54 AM
      Detections: 2
      Determination: Ignore detections (false positive)
      - ESET NOD32 as Detection.Undefined (Undefined)
      - Avira AntiVirus as W32/Ramnit.A (Malware)


      File path: c:\users\henry\appdata\local\apps\2.0\5cg6oy67.5kc \0vjjevn2.9b0\goog…app_f09d422d3b6d863a_0001.0003_ 5ee343e2b5dda962\googleupdatesetup.exe
      Publisher: Google Inc.
      Signer: Google Inc
      MD5: a4c58ea455234afd3b622d838cde4c39
      SHA-1: 92944220a2f71aee4109ba1873a0436a0d9818d6
      Created: 13/02/2016 10:40:54 AM
      Detections: 2
      Determination: Ignore detections (false positive)
      - ESET NOD32 as Detection.Undefined (Undefined)
      - Avira AntiVirus as W32/Ramnit.A (Malware)


      File path: c:\users\henry\appdata\local\punkbuster\fc3\pb\pbc l.dll
      Publisher:
      MD5: a882b128e266a1084bd85e679fe2b496
      SHA-1: 74c6186b50ed21f65f8142283c1b7d9284cd4a47
      Created: 17/02/2016 7:14:54 AM
      Detections: 1
      Determination: Ignore detections (false positive)
      - Bkav FE as HW32.CDB (Undefined)


      File path: c:\users\henry\appdata\local\punkbuster\fc3\pb\pbc ls.dll
      Publisher:
      MD5: a882b128e266a1084bd85e679fe2b496
      SHA-1: 74c6186b50ed21f65f8142283c1b7d9284cd4a47
      Created: 17/02/2016 7:14:51 AM
      Detections: 1
      Determination: Ignore detections (false positive)
      - Bkav FE as HW32.CDB (Undefined)


      File path: c:\program files\ccleaner\lang\lang-1053.dll
      Publisher:
      MD5: 4926b412acaea103b916e36017e17ac6
      SHA-1: a878023c1db66c29284b40822c495f2da2408eca
      Created: 15/11/2016 12:25:56 PM
      Detections: 1
      Determination: Ignore detections (false positive)
      - The Hacker as Trojan/Spy.Zbot.avkc (Undefined)


      File path: c:\program files\daemon tools lite\lang\hun.dll
      Publisher:
      MD5: b2d8ad15925a3fa97d6705091a3f12bb
      SHA-1: 2b439a98c86f3256d255d08fcb9566cae501ddb0
      Created: 15/01/2016 6:55:12 AM
      Detections: 1
      Determination: Inconclusive
      - Avira AntiVirus as W32/Ramnit.C (Malware)


      File path: c:\program files\daemon tools lite\lang\srl.dll
      Publisher:
      MD5: 4872ce9ddd6fda52d9e40f06d1391959
      SHA-1: 0e15aa263aade2d432e8e2cdcdfac6f18cb0d1ed
      Created: 15/01/2016 6:55:12 AM
      Detections: 1
      Determination: Inconclusive
      - Avira AntiVirus as W32/Virut.Gen (Undefined)


      File path: c:\program files\daemon tools lite\lang\trk.dll
      Publisher:
      MD5: f023c370367c9305f400371730777221
      SHA-1: 00a46871f309001bfbba1398ec75af0ccc423e06
      Created: 15/01/2016 6:55:12 AM
      Detections: 1
      Determination: Inconclusive
      - Avira AntiVirus as TR/Dropper.Gen (Undefined)


      File path: c:\program files\daemon tools lite\plugins\grabbers\tages.dll
      Publisher: Disc Soft Ltd.
      MD5: b4ea810dddd1d52d8a76d6d095afc33c
      SHA-1: aab7a2e78d4dad80629a8f1f705b1f5cf93def35
      Created: 3/12/2015 4:54:44 AM
      Detections: 1
      Determination: Ignore detections (false positive)
      - Bkav FE as W64.HfsAutoA (Undefined)


      File path: c:\program files\windowsapps\microsoft.freshpaint_1.0.13011.1 _x86__8wekyb3d8bbwe\commonutils.dll
      Publisher: Microsoft
      MD5: 480dd92e0431ec654d94c86686091706
      SHA-1: cdf608f769b0c35e442268de8f8cd5e996752293
      Created: 1/05/2013 4:01:24 AM
      Detections: 1
      Determination: Ignore detections (false positive)
      - Emsisoft Anti-Malware as Gen:Variant.Kazy.21282 (Undefined)


      File path: c:\program files\windowsapps\microsoft.freshpaint_1.0.13011.1 _x86__8wekyb3d8bbwe\coreengine.dll
      Publisher: Microsoft
      MD5: 7104c5d422a26a7b25ac7df3cec9bb51
      SHA-1: b47191b3945c0d846647db887c43f9294351b923
      Created: 1/05/2013 4:01:24 AM
      Detections: 1
      Determination: Ignore detections (false positive)
      - Emsisoft Anti-Malware as Android.Trojan.GingerMaster.DM (Undefined)


      File path: c:\program files (x86)\amulec1\ed2k.exe
      Publisher: http://www.amule.org/
      MD5: 96631e9beac46a258b5ba2594a220259
      SHA-1: 5290c50525251472c4cd0c427261b82bb28d931e
      Created: 16/11/2016 10:59:48 AM
      Detections: 3
      Determination: Ignore detections (false positive)
      - Bkav FE as W32.eHeur.Malware08 (Undefined)
      - CrowdStrike as malicious_confidence_60% (D) (Undefined)
      - Qihoo 360 Security as HEUR/QVM10.1.0000.Malware.Gen (Undefined)


      File path: c:\program files (x86)\cyberlink\powerdvd10\audiofilter\dolbyhph.dl l
      Publisher: Lake Technology Limited, http://www.lake.com.au
      MD5: 442b5be8aa79b0496c5d0234b78e20ce
      SHA-1: 9956235bf6fe3a3220c73a84c8f57c951226655a
      Created: 15/01/2013 1:11:00 PM
      Detections: 2
      Determination: Inconclusive
      - Bkav FE as HW32.CDB (Undefined)
      - Avira AntiVirus as W32/Sality.AT (Undefined)


      File path: c:\program files (x86)\mozilla maintenance service\uninstall.exe
      Publisher: Mozilla Corporation
      MD5: 43b67df2d6f42deec7d04cf6a974eb67
      SHA-1: 19ed0142fd58c74e1e7d9a92483bfb43a8fbf85e
      Created: 16/04/2016 1:28:00 PM
      Detections: 1
      Determination: Ignore detections (false positive)
      - McAfee Web Gateway as BehavesLike.Win32.Dropper.mm (Undefined)


      File path: c:\program files (x86)\the elder scrolls v skyrim\binkw32.dll
      Publisher: RAD Game Tools, Inc.
      MD5: 6c16d545b0717830773fb1ba4a195778
      SHA-1: 4d205ef5ab7664f2e2b1de7b951824afa769ed61
      Created: 15/02/2016 3:54:52 PM
      Detections: 1
      Determination: Ignore detections (false positive)
      - Antiy Labs AVL as Trojan/Win32.Patched.gen (Undefined)


      File path: c:\program files (x86)\the elder scrolls v skyrim\skyrimlauncher.exe
      Publisher: Bethesda Softworks
      Signer: Bethesda Softworks
      MD5: 53e9024dc5ef69d7727af3d89da3c0ad
      SHA-1: 74e8c16804263530d1d3df6b589dcb47a2f43aa5
      Created: 15/02/2016 3:56:38 PM
      Detections: 1
      Determination: Ignore detections (false positive)
      - Rising Antivirus as PE:Malware.XPACK-LNR/Heur!1.5594 (Undefined)


      File path: c:\program files (x86)\ubisoft\farcry 3\bin\ubiorbitapi_r2_loader.dll
      Publisher:
      MD5: f137a84a1a52ec06183a32659dbfef71
      SHA-1: fc6ce9ac83c03f95a118459bdea31239deac3327
      Created: 15/02/2016 10:23:23 PM
      Detections: 2
      Determination: Inconclusive
      - Comodo Security as ApplicUnwnt.Win32.CrackTool.Agent.~a (Adware)
      - VIPRE Antivirus as Trojan.Win32.Generic (Undefined)


      File path: c:\program files (x86)\ubisoft\farcry 3\bin\pb\pbcl.dll
      Publisher:
      MD5: a882b128e266a1084bd85e679fe2b496
      SHA-1: 74c6186b50ed21f65f8142283c1b7d9284cd4a47
      Created: 16/02/2016 7:08:41 AM
      Detections: 1
      Determination: Ignore detections (false positive)
      - Bkav FE as HW32.CDB (Undefined)


      File path: c:\program files (x86)\ubisoft\farcry 3\bin\pb\pbcls.dll
      Publisher:
      MD5: a882b128e266a1084bd85e679fe2b496
      SHA-1: 74c6186b50ed21f65f8142283c1b7d9284cd4a47
      Created: 16/02/2016 7:08:38 AM
      Detections: 1
      Determination: Ignore detections (false positive)
      - Bkav FE as HW32.CDB (Undefined)


      File path: c:\program files (x86)\ubisoft\farcry 3\bin\pb\dll\wc002312.dll
      Publisher:
      MD5: a882b128e266a1084bd85e679fe2b496
      SHA-1: 74c6186b50ed21f65f8142283c1b7d9284cd4a47
      Created: 16/02/2016 7:08:42 AM
      Detections: 1
      Determination: Ignore detections (false positive)
      - Bkav FE as HW32.CDB (Undefined)


      File path: c:\program files (x86)\wildgames\bejeweled 3\bejeweled3-wt.exe
      Publisher: WildTangent, Inc.
      Signer: WildTangent Inc
      MD5: 8932f98bd67606690255efc8633ce780
      SHA-1: 130790454e158f63112a65d64805b9e46d1b6c5a
      Created: 26/01/2011 1:58:02 PM
      Detections: 1
      Determination: Ignore detections (false positive)
      - Kingsoft AntiVirus as VIRUS_UNKNOWN (Undefined)


      File path: c:\program files (x86)\wildgames\peggle\peggle-wt.exe
      Publisher: WildTangent, Inc.
      Signer: WildTangent Inc
      MD5: 95f4a4e5c2cf1f348772bf89b269e5fa
      SHA-1: 6156d461966ff3aa27658ca17735b68092c6fabb
      Created: 17/08/2010 12:29:48 PM
      Detections: 1
      Determination: Ignore detections (false positive)
      - Emsisoft Anti-Malware as JS:Exploit.BlackHole.HB (Undefined)


      File path: c:\program files (x86)\wildtangent games\app\uninstall.exe
      Publisher: WildTangent
      Signer: WildTangent Inc
      MD5: c5d025baa6e4ea91b363c8d53e6c509d
      SHA-1: 9c08cd35422805d60f09e5de102d626c24710291
      Created: 1/02/2013 12:51:24 PM
      Detections: 3
      Determination: Ignore detections (false positive)
      - K7 AntiVirus as Trojan (Undefined)
      - K7 Gateway Antivirus as Trojan (Undefined)
      - The Hacker as Posible_Worm32 (Undefined)[/spoiler]

      RogueKiller V12.8.4.0 (x64) [Dec 5 2016] (Free) by Adlice Software
      mail : Support Form | Contact • Adlice Software
      Feedback : http://forum.adlice.com
      Website : Free Virus Cleaner | RogueKiller AntiMalware • Adlice Software
      Blog : http://www.adlice.com

      Operating System : Windows 8 (6.2.9200) 64 bits version
      Started in : Normal mode
      User : Henry [Administrator]
      Started from : C:\Program Files\RogueKiller\RogueKiller64.exe
      Mode : Delete – Date : 12/12/2016 15:03:30 (Duration : 00:16:19)

      ¤¤¤ Processes : 0 ¤¤¤

      ¤¤¤ Registry : 2 ¤¤¤
      [PUP] (X64) HKEY_CLASSES_ROOT\CLSID{DC638EEA-2BA2-4459-9C46-85A2F0BE6040} (C:\Program Files (x86)\WinZipper\wzShellctx64.dll) → Not selected
      [Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\M onold_protect (“C:\ProgramData\Monold\protect\protect.exe”) → Not selected

      ¤¤¤ Tasks : 0 ¤¤¤

      ¤¤¤ Files : 0 ¤¤¤

      ¤¤¤ WMI : 0 ¤¤¤

      ¤¤¤ Hosts File : 0 ¤¤¤

      ¤¤¤ Antirootkit : 0 (Driver: Loaded) ¤¤¤

      ¤¤¤ Web browsers : 0 ¤¤¤

      ¤¤¤ MBR Check : ¤¤¤
      +++++ PhysicalDrive0: ST1000LM024 HN-M101MBB +++++
      — User —
      [MBR] 79dde02c62ccb3198f48838cfc02a4b3
      [BSP] d28e338c2261577215d19a426d664c81 : Empty MBR Code
      Partition table:
      0 - [MAN-MOUNT] EFI system partition | Offset (sectors): 2048 | Size: 100 MB
      1 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 206848 | Size: 900 MB
      2 - [MAN-MOUNT] Microsoft reserved partition | Offset (sectors): 2050048 | Size: 128 MB
      3 - Basic data partition | Offset (sectors): 2312192 | Size: 381547 MB
      4 - Basic data partition | Offset (sectors): 783720448 | Size: 550703 MB
      5 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 1911560192 | Size: 20490 MB
      User = LL1 … OK
      User = LL2 … OK

      Comment

      • Malnutrition
        PCHF Moderator
        • Jul 2016
        • 7045

        #18
        Originally posted by HenryNL
        Can you please tell me what is he point of downloading all these applications and doing the same thing over and over again?
        Making sure you are clean, you are good to go. I would not want someone to leave here still infected.

        Your machine is clean.

        Just re-run Rogue Killer and delete these two.

        [PUP] (X64) HKEY_CLASSES_ROOT\CLSID{DC638EEA-2BA2-4459-9C46-85A2F0BE6040} (C:\Program Files (x86)\WinZipper\wzShellctx64.dll) → Not selected
        [Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\M onold_protect (“C:\ProgramData\Monold\protect\protect.exe”) → Not selected

        Glad to have helped!! Please tell a friend … or two about us. https://forum.windowsinstructed.com/...cons/smile.png

        Optimize your internet connection.

        Click here for instructions.

        suggest the following in place of adblock.
        Alternate DNS Server. Ad Blocking DNS.
        Ublock Origin.
        Anti Ad Block Killer.

        Also, keep your browsing private with these tools:

        Self Destructing Cookies.
        Self Destructing Cookies Chrome.

        Some items to keep you safe on the internet.

        VooDoo Shield. control of what is running on your machine
        Qualys BrowserCheck To update plugins.
        Web Of Trust To Avoid Shady Websites.
        Unchecky To Avoid Bundled Software.
        Privazer To Clean up your mahcine.

        Now Lets Clean up the tools we used and remove old restore points.

        Download DelFix by “Xplode” to your Desktop.
        Right Click the tool and Run as Admin ( Xp Users Double Click)
        Put a check mark next the items below:

        Remove disinfection tools
        Create registry backup
        Purge System Restore

        Now click on “Run” button.
        allow the program to complete its work.
        all the tools we used will be removed.
        Tool will create and open a log report (DelFix.txt)
        Note: The report can be located at the following location C:\DelFix.txt

        Comment

        • HenryNL
          PCHF Member
          • Dec 2016
          • 10

          #19
          Thank you so much for the help! I cannot explain how grateful I am. If anyone I know has any computer problems I will be sure to send them here! :LOL:

          Comment

          Working...