Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

My computer suddenly started slowing down


  • Please log in to reply
10 replies to this topic

#1 TheGagabou

TheGagabou

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Canada
  • Local time:07:04 AM

Posted 24 April 2015 - 02:00 AM

First of all, 

Hi, brand new user from Canada here.  I Looked at a few topics to see what I stumbled upon and I was impressed! Happy to be a new member and hope to use this site often! (I know this isn't introduction, I just find it more polite to say hi before asking from you guys!)

Well there we go, recently my gaming computer started slowing down, skipping frames when the action became intense (Sc2 Extreme settings full Zerg army, for exemple), which it didn't ever do before! I'm having trouble finding what might be the issue and it's starting to bug me. So I came for hints! 

As you can probably tell by the topic's location I'm running Windows 8, the specs should be detailled in the picture attached with the topic. Other than that I guess I'll include a OOKLA speedtest and the webpage describing the computer's hardware. I've ran CCleaner and repaired. Did a system restore from before the supposed slowdown time. Cleaned the hardware (We own 2 cats, dust and cat hairs were "obstructing" the different vents [Nothing clogged or anything like that, just a little bit dusty]). Other than that I don't remember doing anything else whilst trying to fix my problem! 

I was wondering if it could've been software related (Os mainly) and if not what could be the cause? 

Oh, also, I have Norton Internet Security installed and up to date.
 

Thanks for any help! And if any more reports, results, info, etc. is required I'll be happy to follow instructions! 

Ookla : http://www.speedtest.net/my-result/4313053655

Hardware: http://www.walmart.ca/en/ip/923774

Attached File  Specs.png   193.4KB   0 downloads


Edited by hamluis, 25 April 2015 - 03:13 PM.
Moved from Win 8 to Am I Infected - Hamluis.


BC AdBot (Login to Remove)

 


m

#2 dicke

dicke

    Paraclete


  • Members
  • 2,176 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Charlotte, NC
  • Local time:06:04 AM

Posted 24 April 2015 - 08:53 PM

Welcome,

I'd suggest that you put IS into silent ode while gaming. The other choice being to go into your settings and have the program ignore the game.

Security scans can slow things down during rapid game action. Just be very sure you don't leave yourself open to an infection.

 

Dick


Stay well and surf safe [stay protected]

Dick E


#3 TheGagabou

TheGagabou
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Canada
  • Local time:07:04 AM

Posted 25 April 2015 - 12:14 AM

Hello and thanks for your reply, 

I've tried running games with Norton in Silent more but the problem is still the same: I have decreased fps performance wether or not Norton is on or not...

I'm starting to feel it might be some kind of malware that Norton could not pick up and other than ccleaner and Norton I haven't ever messed with any malware detection tools, so I don't really know what I could do?


Edited by TheGagabou, 25 April 2015 - 12:21 AM.


#4 dicke

dicke

    Paraclete


  • Members
  • 2,176 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Charlotte, NC
  • Local time:06:04 AM

Posted 25 April 2015 - 02:39 PM

Based on your reply I will ask a moderator to move your thread into the Am I Infected forum so you can get the trained help you need to clean up your system

 

Dick


Stay well and surf safe [stay protected]

Dick E


#5 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:06:04 AM

Posted 25 April 2015 - 04:54 PM

Download and run wipe  and system ninja,

 

https://privacyroot.com/software/www/en/wipe.php

https://singularlabs.com/software/system-ninja/

 

Then.....

 

Go ahead and install Ccleaner. Now that you have the program installed go ahead and run the cleaner function.
kwLN4uv.png


Now that you have cleaned out some temp files, lets go ahead and disable all of the items starting up with your machine except your antivirus. To do this you will need to click on tools then start up select each item then disable.

GjWwvEu.png

Now that you have disabled those un-needed start ups lets go into the settings, we will have Ccleaner run when your machine boots, so that you will never have to worry about cleaning temp files again.

To do this:

  • Hit options.
  • Settings.
  • Place a tick to run Ccleaner when the computer starts.


Lxioao1.png

Now go to the advanced tab, and select close program after cleaning, now run the cleaner again this will close Ccleaner.

SnqZ2JW.png

 

Reboot your machine and then follow the  instructions below.

 

Step 1: eScanAV.

 

Disable your antivirus prior to this scan.

http://www.bleepingcomputer.com/forums/t/114351/how-to-temporarily-disable-your-anti-virus-firewall-and-anti-malware-programs/

Download the eScanAV Anti-Virus Toolkit (MWAV)
http://www.escanav.com/english/content/products/downloadlink/downloadcounter.asp?pcode=MWAV&src=english_dwn&type=alter
Save the file to your desktop.
Right click run as administrator.
A new icon will appear on your desktop.
Right click run as administrator on new icon.
Click on the update tab.
ZCDJtZN.png
Once you have updated the program, make sure the settings are the same as the picture below.
7DUFn5c.png
Once you have made sure the settings match the picture, hit the Scan & Clean button.
Upon scan completion, click View Log.
ApSVXsQ.png
Copy and paste entire log into your next reply.
Note: Reboot if needed to remove infections.

 

Step 2: Zemana

 

Run a full scan with Zemana antimalware.

http://www.zemana.us/product/zemana-antimalware/default.aspx

Install and select deep scan.

jdmyscF.jpg

Remove any infections found.

Then click on the icon in the pic below.

DOLGyto.jpg

Double click on the scan log, copy and paste here in your reply.

 

 

Step 3: Junkware Removal Tool.
 
Please download Junkware Removal Tool and save it on your desktop.

  • Shut down your anti-virus, anti-spyware, and firewall software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista or Windows 7, right-click it and select Run as administrator.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log is saved to your desktop and will automatically open.
  • Please post the JRT log.

Step 4: Adware Cleaner.
 
Please download AdwCleaner by Xplode onto your desktop.


  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Scan button.
  • When the scan has finished click on Clean button.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.


#6 TheGagabou

TheGagabou
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Canada
  • Local time:07:04 AM

Posted 25 April 2015 - 09:08 PM

Hi,
Thank you Dick for helping move my topic in the right section.
Before reading this message I did a fresh install from my windows 8.1 recovery CD, deleting all my files (I didn't really care about any of those). 
After, I did all the tests as you asked but with a little tweak on the eScanAV part: I selected all local drives, seeing as I have 2 main ones (C:/ not being the main one) and they were freshly wiped. 

Here are the results:
 

25 Apr 2015 21:23:45 [1594] - **********************************************************
25 Apr 2015 21:23:45 [1594] - MWAV - eScanAV AntiVirus Toolkit.
25 Apr 2015 21:23:45 [1594] - Copyright © MicroWorld Technologies
25 Apr 2015 21:23:45 [1594] - **********************************************************
25 Apr 2015 21:23:45 [1594] - Source: C:\Users\Etienne\Desktop\mwav.exe
25 Apr 2015 21:23:45 [1594] - Version 14.0.178 (C:\USERS\ETIENNE\APPDATA\LOCAL\TEMP\MEXE.COM)
25 Apr 2015 21:23:45 [1594] - Log File: C:\Users\Etienne\AppData\Local\Temp\MWAV.LOG
25 Apr 2015 21:23:45 [1594] - MWAV Registered: TRUE
25 Apr 2015 21:23:45 [1594] - User Account: Etienne (Administrator Mode)
25 Apr 2015 21:23:45 [1594] - OS Type: Windows Workstation [InstallType: Client]
25 Apr 2015 21:23:45 [1594] - OS: Windows 8.1 64-Bit [OS Install Date: 25 Apr 2015 20:11:51]
25 Apr 2015 21:23:45 [1594] - Ver: Personal Build 9200
25 Apr 2015 21:23:45 [1594] - System Up Time: 46 Minutes, 4 Seconds
 
 
25 Apr 2015 21:23:45 [1594] - Parent Process Name : C:\Users\Etienne\Desktop\mwav.exe
25 Apr 2015 21:23:45 [1594] - Windows Root  Folder: C:\Windows
25 Apr 2015 21:23:45 [1594] - Windows Sys32 Folder: C:\Windows\system32
25 Apr 2015 21:23:45 [1594] - DHCP NameServer: 192.168.2.1
25 Apr 2015 21:23:45 [1594] - Interface0 DHCPNameServer: 192.168.2.1
25 Apr 2015 21:23:45 [1594] - Local Fixed Drives: c:\,d:\
25 Apr 2015 21:23:45 [1594] - MWAV Mode(A): Scan and Clean files (for viruses, adware and spyware)
25 Apr 2015 21:23:45 [1594] - [CREATED ZIP FILE: C:\Users\Etienne\AppData\Local\Temp\pinfect.zip]
25 Apr 2015 21:23:45 [1594] - Latest Date of files inside MWAV: Mon Mar  2 17:13:53 2015.
25 Apr 2015 21:23:47 [1594] - ** Changed Value of "HKEY_CLASSES_ROOT\.htm" from "ChromeHTML" to "htmlfile"
25 Apr 2015 21:23:47 [1594] - ** Changed Value of "HKEY_CLASSES_ROOT\.html" from "ChromeHTML" to "htmlfile"
25 Apr 2015 21:23:47 [1594] - Loading/Creating FileScan Cache Database C:\ProgramData\MicroWorld\MWAV\ESCANDBY.MDB [Log: C:\Users\Etienne\AppData\Local\Temp\ESCANDB.LOG]
25 Apr 2015 21:23:48 [1594] - Loaded/Created FileScan Cache Database...
25 Apr 2015 21:23:48 [1594] - Loading AV Library [DB]...
25 Apr 2015 21:24:03 [1594] - ArchiveScan: DISABLED
25 Apr 2015 21:24:04 [1594] - AV Library Loaded - MultiThreaded - 8 : [DB-DIRECT].
25 Apr 2015 21:24:04 [1594] - MWAV doing self scanning...
25 Apr 2015 21:24:04 [1594] - MWAV files are clean.
25 Apr 2015 21:24:09 [1594] - ArchiveScan: DISABLED
25 Apr 2015 21:24:09 [1594] - Virus Database Date: 02 Mar 2015
25 Apr 2015 21:24:09 [1594] - Virus Database Count: 6701505
25 Apr 2015 21:24:09 [1594] - Sign Version: 7.59505 [518257]
25 Apr 2015 21:24:17 [1594] - Downloading AntiVirus and Anti-Spyware Databases...
25 Apr 2015 21:28:51 [1594] - Update Successful...
25 Apr 2015 21:28:55 [1594] - Indexed Spyware Databases Successfully Created...
25 Apr 2015 21:28:55 [1594] - Old Sign Version: 7.59505 New Sign Version: 7.60288
25 Apr 2015 21:29:14 [1594] - Reload of AntiVirus Signatures successfully done.
25 Apr 2015 21:29:14 [1594] - Virus Database Date: 25 Apr 2015
25 Apr 2015 21:29:14 [1594] - Virus Database Count: 5719364
25 Apr 2015 21:29:14 [1594] - Sign Version: 7.60288 [519040]
 
25 Apr 2015 21:29:40 [1594] - **********************************************************
25 Apr 2015 21:29:40 [1594] - MWAV - eScanAV AntiVirus Toolkit.
25 Apr 2015 21:29:40 [1594] - Copyright © MicroWorld Technologies
25 Apr 2015 21:29:40 [1594] - 
25 Apr 2015 21:29:40 [1594] - Support: support@escanav.com
25 Apr 2015 21:29:40 [1594] - Web: http://www.escanav.com
25 Apr 2015 21:29:40 [1594] - **********************************************************
25 Apr 2015 21:29:40 [1594] - Version 14.0.178[DB] (C:\USERS\ETIENNE\APPDATA\LOCAL\TEMP\MEXE.COM)
25 Apr 2015 21:29:40 [1594] - Log File: C:\Users\Etienne\AppData\Local\Temp\MWAV.LOG
25 Apr 2015 21:29:40 [1594] - User Account: Etienne (Administrator Mode)
25 Apr 2015 21:29:40 [1594] - Parent Process Name : C:\Users\Etienne\Desktop\mwav.exe
25 Apr 2015 21:29:40 [1594] - Windows Root  Folder: C:\Windows
25 Apr 2015 21:29:40 [1594] - Windows Sys32 Folder: C:\Windows\system32
25 Apr 2015 21:29:40 [1594] - OS: Windows 8.1 64-Bit [OS Install Date: 25 Apr 2015 20:11:51]
25 Apr 2015 21:29:40 [1594] - Ver: Personal Build 9200
25 Apr 2015 21:29:40 [1594] - Latest Date of files inside MWAV: Mon Mar  2 17:13:53 2015.
 
25 Apr 2015 21:29:47 [15f8] - Options Selected by User:
25 Apr 2015 21:29:47 [15f8] - Memory Check: Enabled
25 Apr 2015 21:29:47 [15f8] - Registry Check: Enabled
25 Apr 2015 21:29:47 [15f8] - StartUp Folder Check: Enabled
25 Apr 2015 21:29:47 [15f8] - System Folder Check: Enabled
25 Apr 2015 21:29:47 [15f8] - Services Check: Enabled
25 Apr 2015 21:29:47 [15f8] - Scan Spyware: Enabled
25 Apr 2015 21:29:47 [15f8] - Scan Archives: Disabled
25 Apr 2015 21:29:47 [15f8] - Drive Check: Disabled
25 Apr 2015 21:29:47 [15f8] - All Drive Check :Enabled
25 Apr 2015 21:29:47 [15f8] - Folder Check: Disabled
25 Apr 2015 21:29:47 [15f8] - SCAN: All_Files [ANSI]
25 Apr 2015 21:29:47 [15f8] - MWAV Mode(B): Scan and Clean files (for viruses, adware and spyware)
 
25 Apr 2015 21:29:47 [15f8] - Scanning DNS Records...
25 Apr 2015 21:29:47 [15f8] - Scanning Master Boot Record (User)...
25 Apr 2015 21:29:47 [15f8] - Scanning Logical Boot Records...
25 Apr 2015 21:29:47 [15f8] - ***** Scanning For Hidden Rootkit Processes *****
25 Apr 2015 21:29:48 [15f8] - ***** Scanning For Hidden Rootkit Services *****
 
25 Apr 2015 21:29:49 [15f8] - ***** Scanning Memory Files *****
 
25 Apr 2015 21:29:52 [15f8] - ***** Scanning Registry Files *****
25 Apr 2015 21:29:52 [15f8] - ERROR(3)!!! Invalid Entry  Maintance = "C:\Program Files\\net1.exe" windowsStartup (in key HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run). Action Taken: Removing it.
 
25 Apr 2015 21:29:52 [15f8] - ***** Scanning StartUp Folders *****
25 Apr 2015 21:29:54 [15f8] - INVALID ATTRIBUTES FOR FOLDER [C:\ProgramData\Microsoft\Windows\WER\ReportArchive]: LastErr: 5. IGNORING.
25 Apr 2015 21:29:54 [15f8] - INVALID ATTRIBUTES FOR FOLDER [C:\ProgramData\Microsoft\Windows\WER\ReportQueue]: LastErr: 5. IGNORING.
 
25 Apr 2015 21:29:58 [15f8] - ***** Scanning Service Files *****
25 Apr 2015 21:29:58 [15f8] - Scanning File C:\Windows\System32\drivers\1394ohci.sys
25 Apr 2015 21:29:58 [15f8] - ERROR(2)!!! ScanFile Fails for C:\Windows\System32\drivers\1394ohci.sys...
25 Apr 2015 21:29:59 [15f8] - ERROR(2)!!! Invalid Entry C:\Windows\system32\EasyAntiCheat.exe. Action Taken: Removing HKLM64\SYSTEM\CurrentControlSet\Services\EasyAntiCheat.
25 Apr 2015 21:30:04 [15f8] - Giving rights(a) to [HKLM64\SYSTEM\CurrentControlSet\Services\TrkWks].
 
25 Apr 2015 21:30:06 [15f8] - ***** Scanning Registry and File system for Adware/Spyware *****
25 Apr 2015 21:30:06 [15f8] - Loading Spyware Signatures from new External Database [Name: C:\Users\Etienne\AppData\Local\Temp\spydb.avs, Size: 464724]...
25 Apr 2015 21:30:06 [15f8] - Indexed Spyware Databases Successfully Created...
 
25 Apr 2015 21:30:10 [15f8] - Offending file found: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.6.0.32\Logs\LU.dat
25 Apr 2015 21:30:10 [15f8] - System found infected with ImIServer IEPlugin Spyware/Adware (LU.dat)! Action taken: File Deleted.
25 Apr 2015 21:30:10 [15f8] - Object "ImIServer IEPlugin Spyware/Adware" found in File System! Action Taken: File Deleted.
 
 
25 Apr 2015 21:30:11 [15f8] - ***** Scanning Registry Files *****
25 Apr 2015 21:30:11 [15f8] - ** Value in HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\main/Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
25 Apr 2015 21:30:11 [15f8] - ** Deleted Value of "NoActiveDesktop" in "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer". Its value was DWORD:1.
25 Apr 2015 21:30:11 [15f8] - ** Deleted Value of "ForceActiveDesktopOn" in "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer". Its value was DWORD:0.
25 Apr 2015 21:30:11 [15f8] - ** Deleted Value of "NoComponents" in "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop". Its value was DWORD:1.
25 Apr 2015 21:30:11 [15f8] - ** Deleted Value of "NoAddingComponents" in "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop". Its value was DWORD:1.
25 Apr 2015 21:30:11 [15f8] - ** Value in 64-bit HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\main/Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
25 Apr 2015 21:30:11 [15f8] - ** Value in HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\main/Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
25 Apr 2015 21:30:11 [15f8] - ** Value in 64-bit HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\main/Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
 
25 Apr 2015 21:30:11 [15f8] - ***** Scanning System32 Folders *****
 
 
25 Apr 2015 21:30:25 [15f8] - ***** Scanning All Drives *****
25 Apr 2015 21:30:25 [15f8] - ***** C:,D: ***** 
25 Apr 2015 21:30:25 [15f8] - Scanning C:\ Drive
25 Apr 2015 21:30:59 [15f8] - INVALID ATTRIBUTES FOR FOLDER [C:\ProgramData\Microsoft\Windows\WER\ReportArchive]: LastErr: 5. IGNORING.
25 Apr 2015 21:30:59 [15f8] - INVALID ATTRIBUTES FOR FOLDER [C:\ProgramData\Microsoft\Windows\WER\ReportQueue]: LastErr: 5. IGNORING.
25 Apr 2015 21:31:00 [1230] - Scanning File C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
25 Apr 2015 21:31:00 [08f8] - Scanning File C:\System Volume Information\{845f3cbb-ebc0-11e4-8255-448a5b9becd6}{3808876b-c176-4e48-b7ae-04046e6cc752}
25 Apr 2015 21:31:04 [15f8] - INVALID ATTRIBUTES FOR FOLDER [C:\Users\Etienne\AppData\Local\Microsoft\Windows\WER\ReportArchive]: LastErr: 5. IGNORING.
25 Apr 2015 21:31:04 [15f8] - INVALID ATTRIBUTES FOR FOLDER [C:\Users\Etienne\AppData\Local\Microsoft\Windows\WER\ReportQueue]: LastErr: 5. IGNORING.
25 Apr 2015 21:31:11 [0d84] - C:\Users\Etienne\OneDrive\Documents\20150407063108_ESP_Partie_1_Etienne_Delisle_VF.mw not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [08f8] - C:\Users\Etienne\OneDrive\Documents\Adaware_Installer.exe not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [11d0] - C:\Users\Etienne\OneDrive\Documents\Correction_KVA_Travail_de_sessi_1248636.pdf not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [0e2c] - C:\Users\Etienne\OneDrive\Documents\CV.docx not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [0780] - C:\Users\Etienne\OneDrive\Documents\Maple-Fusées-Physique-1.mw not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [1230] - C:\Users\Etienne\OneDrive\Documents\Philippe-Archambault-Travail-de-session-Partie2 (EDIT).mw not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [1004] - C:\Users\Etienne\OneDrive\Documents\Philippe-Archambault-Travail-de-session-Partie2.mw not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [15d0] - C:\Users\Etienne\OneDrive\Documents\samuel-coallier-devoir-04.mw not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [0d84] - C:\Users\Etienne\OneDrive\Documents\saves\autosave1.ess not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [08f8] - C:\Users\Etienne\OneDrive\Documents\saves\autosave1.ess.bak not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [11d0] - C:\Users\Etienne\OneDrive\Documents\saves\autosave1.skse not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [0e2c] - C:\Users\Etienne\OneDrive\Documents\saves\autosave2.ess not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [0780] - C:\Users\Etienne\OneDrive\Documents\saves\autosave2.ess.bak not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [1230] - C:\Users\Etienne\OneDrive\Documents\saves\autosave2.skse not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [1004] - C:\Users\Etienne\OneDrive\Documents\saves\autosave3.ess not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [15d0] - C:\Users\Etienne\OneDrive\Documents\saves\autosave3.ess.bak not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [0d84] - C:\Users\Etienne\OneDrive\Documents\saves\autosave3.skse not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [08f8] - C:\Users\Etienne\OneDrive\Documents\saves\quicksave.ess not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [11d0] - C:\Users\Etienne\OneDrive\Documents\saves\quicksave.ess.bak not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [0e2c] - C:\Users\Etienne\OneDrive\Documents\saves\quicksave.skse not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [0780] - C:\Users\Etienne\OneDrive\Documents\saves\save 11 - gagabou  dragonsreach  04.32.28.ess not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [1230] - C:\Users\Etienne\OneDrive\Documents\saves\save 12 - gagabou  skyrim  05.35.03.ess not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [1004] - C:\Users\Etienne\OneDrive\Documents\saves\Save 13 - Prisoner  Skyrim  00.05.24.ess not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [15d0] - C:\Users\Etienne\OneDrive\Documents\saves\Save 17 - TheGagabou  Ustengrav  04.57.44.ess not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [0d84] - C:\Users\Etienne\OneDrive\Documents\saves\Save 17 - TheGagabou  Ustengrav  04.57.44.skse not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [08f8] - C:\Users\Etienne\OneDrive\Documents\saves\save 3 - gagabou  skyrim  01.56.34.ess not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [11d0] - C:\Users\Etienne\OneDrive\Documents\saves\save 4 - prisoner  skyrim  00.06.24.ess not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [0e2c] - C:\Users\Etienne\OneDrive\Documents\saves\save 6 - gagabou  helgen keep  00.38.24.ess not Scanned. Possibly password protected...
25 Apr 2015 21:31:11 [0780] - C:\Users\Etienne\OneDrive\Documents\saves\save 9 - gagabou  skyrim  03.24.57.ess not Scanned. Possibly password protected...
25 Apr 2015 21:37:03 [15f8] - Scanning D:\ Drive
 
25 Apr 2015 21:37:38 [15f8] - ***** Checking for specific ITW Viruses *****
 
25 Apr 2015 21:37:38 [15f8] - ***** Scanning complete. *****
 
25 Apr 2015 21:37:38 [15f8] - Total Objects Scanned: 161227
25 Apr 2015 21:37:38 [15f8] - Total Critical Objects: 1
25 Apr 2015 21:37:38 [15f8] - Total Disinfected Objects: 0
25 Apr 2015 21:37:38 [15f8] - Total Objects Renamed: 0
25 Apr 2015 21:37:38 [15f8] - Total Deleted Objects: 1
25 Apr 2015 21:37:38 [15f8] - Total Errors: 3
25 Apr 2015 21:37:38 [15f8] - Time Elapsed: 00:07:50
25 Apr 2015 21:37:38 [15f8] - Virus Database Date: 25 Apr 2015
25 Apr 2015 21:37:38 [15f8] - Virus Database Count: 5719364
25 Apr 2015 21:37:38 [15f8] - Sign Version: 7.60288 [519040]
 
25 Apr 2015 21:37:38 [15f8] - Scan Completed.
 
 
 
Zemana AntiMalware 2.10.2.18 (Installed)
-------------------------------------------------------
Scan Result           : Completed
Scan Date             : 2015-4-25
Operating System      : Windows 8.1 64-bit
Processor             : 8X Intel® Core™ i7-4770K CPU @ 3.50GHz
BIOS Mode             : UEFI
CUID                  : 00E4664EC88DBC4CF5E686
Scan Type             : Deep Scan
Duration              : 1m 58s
Scanned Objects       : 26146
Detected Objects      : 0
Excluded Objects      : 0
Read Level            : SCSI
Auto Upload           : Yes
Show All Extensions   : No
Scan Documents        : Yes
Engines               : Zemana, Avira, Eset, Bitdefender, AVG, Kaspersky
 
 
Detected Objects
-------------------------------------------------------
There are no detected objects
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.6.3 (04.25.2015:1)
OS: Windows 8.1 x64
Ran by Etienne on 2015-04-25 at 21:48:44.70
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Tasks
 
 
 
~~~ Registry Values
 
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL
 
 
 
~~~ Registry Keys
 
 
 
~~~ Files
 
 
 
~~~ Folders
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 2015-04-25 at 21:53:40.88
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
# AdwCleaner v4.202 - Logfile created 25/04/2015 at 22:00:21
# Updated 23/04/2015 by Xplode
# Database : 2015-04-23.2 [Server]
# Operating system : Windows 8.1  (x64)
# Username : Etienne - ETIENNE-PC
# Running from : C:\Users\Etienne\Desktop\adwcleaner_4.202.exe
# Option : Cleaning
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
Folder Deleted : C:\Users\Etienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom
File Deleted : C:\Users\Etienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage
File Deleted : C:\Users\Etienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage-journal
 
***** [ Scheduled tasks ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
 
***** [ Web browsers ] *****
 
-\\ Internet Explorer v11.0.9600.17037
 
 
-\\ Google Chrome v42.0.2311.90
 
[C:\Users\Etienne\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Deleted [Extension] : gighmmpiobklfepjocnamgkkbiglidom
 
*************************
 
AdwCleaner[R0].txt - [1317 bytes] - [25/04/2015 21:59:37]
AdwCleaner[S0].txt - [1250 bytes] - [25/04/2015 22:00:21]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1309  bytes] ##########


#7 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:06:04 AM

Posted 25 April 2015 - 10:59 PM

Since you did a fresh install there is really no reason to continue this thread. :)

 

 

Qualys BrowserCheck To update plugins.

Safe Browsing Tool Web of trust to keep away from shady sites.

Unchecky  To avoid bundled software.

Adblock Plus  To browse the web ad free.

Malwarebytes Anti-Exploit To block Zero day attacks.

Malwarebytes | StartUpLITE To disable un-needed start ups.

 

 

 

Download DelFix by "Xplode" to your Desktop.
Right Click the tool and Run as Admin ( Xp Users Double Click)
Put a check mark next the items below:


Remove disinfection tools
Create registry backup
Purge System Restore




Now click on "Run" button.
allow the program to complete its work.
all the tools we used will be removed.
Tool will create and open a log report (DelFix.txt)
Note: The report can be located at the following location C:\DelFix.txt



#8 TheGagabou

TheGagabou
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Canada
  • Local time:07:04 AM

Posted 26 April 2015 - 10:56 AM

Hello,

Thanks for all your help InadequateInfermity! My frames are back to normal and it's not because of the fresh install.

See I did the following in order:

1.Test my fps in-game -->Result 20-40

2.Do a "fresh install" via Settings/Change PC settings/Updates and Recovery/Recovery/Remove everything and Install Windows (Chose the one that takes a few minutes not hours)

3.Test my fps in-game -->Result still 20-40

4.Followed your instructions ( eScanAV AntiVirus Toolkit Picked up 1 Critical Object and cleaned it)

5.
Test my fps in-game -->Result 60-75!!!



Turns out that if I didn't follow your instructions after wiping my computer I'd still be stuck at 30ish fps. I guess this serves as a lesson for me: a fresh install doesn't mean no more malware! 

Thanks again, and have a nice day!

Edit: How do I close the topic? 


Edited by TheGagabou, 26 April 2015 - 10:57 AM.


#9 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:06:04 AM

Posted 26 April 2015 - 12:00 PM

Topics do not need to be closed here, they gradually fall into .........



#10 TheGagabou

TheGagabou
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Canada
  • Local time:07:04 AM

Posted 26 April 2015 - 12:04 PM

Perfect ty :) 



#11 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:06:04 AM

Posted 26 April 2015 - 12:06 PM

:thumbup2:






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users