We’d like to remind Forumites to please avoid political debate on the Forum.

This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.

📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

Ready to throw computer through window - so slow

bagby
bagby Posts: 828 Forumite
Part of the Furniture 500 Posts Name Dropper Combo Breaker
Computer is running so slow - I dont really know what Im doing but Ive done ccleaner and also full scan on malwarebytes and below is the logs - What do I do now - any help appreciated. My husband seems to think when computer goes slow its time to get a new one??

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Database version: 4052
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
11/05/2010 17:39:09
mbam-log-2010-05-11 (17-39-09).txt
Scan type: Quick scan
Objects scanned: 133862
Time elapsed: 8 minute(s), 28 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 12
Registry Values Infected: 1
Registry Data Items Infected: 2
Folders Infected: 20
Files Infected: 18
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\seekdns (Adware.Zwangi) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Seekdns (Adware.Zwangi) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\hotbarsa (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Registry Helper (Rogue.RegistryHelper) -> Quarantined and deleted successfully.
Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Folders Infected:
C:\Documents and Settings\denise\Application Data\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\Application Data (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\cs (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\cs\cs (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\cs\db (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\cs\dwld (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\cs\report (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\cs\res3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\cs\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\ShoppingReport\cs (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\ShoppingReport\cs\db (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\ShoppingReport\cs\dwld (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\ShoppingReport\cs\report (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\ShoppingReport\cs\res1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\ShoppingReport\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\WeatherDPA (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\Seekdns (Adware.Zwangi) -> Quarantined and deleted successfully.
C:\Program Files\Seekdns (Adware.Zwangi) -> Quarantined and deleted successfully.
Files Infected:
C:\Documents and Settings\denise\Application Data\ShoppingReport\cs\Config.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\cs\db\Aliases.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\cs\db\Sites.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\cs\dwld\WhiteList.xip (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\cs\report\aggr_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\cs\report\send_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\denise\Application Data\ShoppingReport\cs\res3\WhiteList.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\ShoppingReport\cs\Config.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\ShoppingReport\cs\db\Aliases.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\ShoppingReport\cs\db\Sites.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\ShoppingReport\cs\dwld\WhiteList.xip (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\ShoppingReport\cs\report\aggr_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\ShoppingReport\cs\report\send_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\danny\Application Data\ShoppingReport\cs\res1\WhiteList.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\Seekdns\seekdns137.exe (Adware.Zwangi) -> Quarantined and deleted successfully.
C:\Program Files\Seekdns\seekdns.dll (Adware.Zwangi) -> Quarantined and deleted successfully.
C:\Program Files\Seekdns\seekdns.exe (Adware.Zwangi) -> Quarantined and deleted successfully.
C:\Program Files\Seekdns\uninstall.exe (Adware.Zwangi) -> Quarantined and deleted successfully.

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Database version: 4052
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
16/05/2010 16:55:50
mbam-log-2010-05-16 (16-55-50).txt
Scan type: Quick scan
Objects scanned: 134468
Time elapsed: 14 minute(s), 4 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Database version: 4052
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
25/05/2010 19:50:27
mbam-log-2010-05-25 (19-50-27).txt
Scan type: Quick scan
Objects scanned: 135391
Time elapsed: 48 minute(s), 10 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Database version: 4052
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
03/06/2010 20:51:09
mbam-log-2010-06-03 (20-51-09).txt
Scan type: Quick scan
Objects scanned: 133500
Time elapsed: 1 hour(s), 22 minute(s), 35 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)


Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Database version: 4052
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
14/06/2010 18:19:23
mbam-log-2010-06-14 (18-19-23).txt
Scan type: Quick scan
Objects scanned: 134162
Time elapsed: 17 minute(s), 25 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Database version: 4052
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
17/06/2010 23:12:00
mbam-log-2010-06-17 (23-12-00).txt
Scan type: Full scan (C:\|D:\|E:\|F:\|G:\|H:\|)
Objects scanned: 174588
Time elapsed: 1 hour(s), 31 minute(s), 29 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 1
Folders Infected: 0
Files Infected: 11
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Folders Infected:
(No malicious items detected)
Files Infected:
C:\System Volume Information\_restore{CB0C1E7E-114D-43FA-B884-67A9D8782B3B}\RP251\A0085561.dll (Adware.SmartShopper) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{CB0C1E7E-114D-43FA-B884-67A9D8782B3B}\RP251\A0085571.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{CB0C1E7E-114D-43FA-B884-67A9D8782B3B}\RP251\A0085572.exe (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{CB0C1E7E-114D-43FA-B884-67A9D8782B3B}\RP251\A0085576.exe (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{CB0C1E7E-114D-43FA-B884-67A9D8782B3B}\RP251\A0085577.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{CB0C1E7E-114D-43FA-B884-67A9D8782B3B}\RP251\A0085578.exe (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{CB0C1E7E-114D-43FA-B884-67A9D8782B3B}\RP251\A0085579.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{CB0C1E7E-114D-43FA-B884-67A9D8782B3B}\RP251\A0085580.exe (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{CB0C1E7E-114D-43FA-B884-67A9D8782B3B}\RP251\A0085581.exe (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{CB0C1E7E-114D-43FA-B884-67A9D8782B3B}\RP251\A0085582.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{CB0C1E7E-114D-43FA-B884-67A9D8782B3B}\RP251\A0085583.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
..
«13456

Comments

  • Browntoa
    Browntoa Posts: 49,612 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    edited 18 June 2010 at 4:12PM
    I take it you updated Malwarebytes before running it ??

    I see not as its past version 4199 now

    update it and scan again

    you then need to run this

    http://www.bleepingcomputer.com/combofix/how-to-use-combofix

    and post that log
    Ex forum ambassador

    Long term forum member
  • bagby
    bagby Posts: 828 Forumite
    Part of the Furniture 500 Posts Name Dropper Combo Breaker
    Browntoa wrote: »
    I take it you updated Malwarebytes before running it ??

    you need to run this

    http://www.bleepingcomputer.com/combofix/how-to-use-combofix

    and post that log


    Ive only just installed malwarebyes a couple of weeks ago - Ill try the bleepingcomputer = thanks
    ..
  • Browntoa
    Browntoa Posts: 49,612 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    you need to update malwarebytes , I edited my post as you replied
    Ex forum ambassador

    Long term forum member
  • bagby
    bagby Posts: 828 Forumite
    Part of the Furniture 500 Posts Name Dropper Combo Breaker
    couldnt update so uninstalled malwarebytes and now internet explorer cannot display the webpage - will keep trying.
    ..
  • Laz123
    Laz123 Posts: 1,742 Forumite
    Part of the Furniture 1,000 Posts Name Dropper Combo Breaker
    I'd suggest getting a flash drive for £20 and backup your data, then format and reinstall. It'll take less than a day and it'll run nice and smoothly. Otherwise you'll be messing around for days.
  • Browntoa
    Browntoa Posts: 49,612 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    or once you have combofix on the PC via a usb drive or CD if it cannot download on the infected Pc it will take about 20 minutes (not days)
    Ex forum ambassador

    Long term forum member
  • kwikbreaks
    kwikbreaks Posts: 9,187 Forumite
    If you do continue with you original plan of throwing the PC through the window I would advise opening it first - that way you won't have to waste time getting the window fixed before you can go out to buy a new PC. This is often the simplest (but rarely the cheapest) way to fix slow PCs.

    HTH.
  • I'll bet this is nothing to do with Malware. If so, probably only a small part.

    Quick question. Next to your clock, how many icons do you see :p
    Just another dumbass with money...:D
  • The_Grandmaster
    The_Grandmaster Posts: 1,424 Forumite
    Part of the Furniture Combo Breaker
    If I was betting I'd say it's malware with 11 files found only two days ago and another list from a month ago...
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    I'll bet this is nothing to do with Malware. If so, probably only a small part.

    Did you completely miss the malwarebytes post?
    :idea:
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 352.1K Banking & Borrowing
  • 253.6K Reduce Debt & Boost Income
  • 454.2K Spending & Discounts
  • 245.2K Work, Benefits & Business
  • 600.8K Mortgages, Homes & Bills
  • 177.5K Life & Family
  • 258.9K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16K Discuss & Feedback
  • 37.7K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.