Jump to content


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.


Slow computer after "Pay us ransom" issue

  • Please log in to reply
3 replies to this topic

#1 Music Minister

Music Minister

  • Members
  • 23 posts
  • Local time:02:07 AM

Posted 13 February 2016 - 12:56 PM

Been having problems using Internet Explorer.  Switched to Edge.  Got infected with the browser hostage type hijack.  Resolved that using some online advice.  Now browser is slow.  While trying to use GoPro Studio (video) processing takes hours.  Fan runs on high continuously. Some GoPro video files disappear.


Have run MaleWareBytes but still no better. Processing seems to take forever.  Programs load slow and work even slower.


This laptop came with Windows 8  It has been upgrade to Windows Home 10 via Microsoft.


Thank you for taking the time to help,


Sam Harris


System Information

System Summary

OS Name Microsoft Windows 10 Home
Version 10.0.10586 Build 10586
Other OS Description  Not Available
OS Manufacturer Microsoft Corporation
System Manufacturer Gateway
System Model NV76R
System Type x64-based PC
System SKU NV76R_068C_2.18
Processor Intel® Pentium® CPU B960 @ 2.20GHz, 2200 Mhz, 2 Core(s), 2 Logical Processor(s)
BIOS Version/Date Insyde Corp. V2.18, 2/25/2013
SMBIOS Version 2.7
Embedded Controller Version 0.00
BaseBoard Manufacturer Acer
BaseBoard Model Not Available
BaseBoard Name Base Board
Platform Role Mobile
Secure Boot State On
PCR7 Configuration Binding Not Possible
Windows Directory C:\WINDOWS
System Directory C:\WINDOWS\system32
Boot Device \Device\HarddiskVolume2
Locale United States
Hardware Abstraction Layer Version = "10.0.10586.0"
User Name HarrisLaptop\Sam
Time Zone Eastern Standard Time
Installed Physical Memory (RAM) 6.00 GB
Total Physical Memory 5.82 GB
Available Physical Memory 3.61 GB
Total Virtual Memory 6.76 GB
Available Virtual Memory 3.91 GB
Page File Space 960 MB
Page File C:\pagefile.sys
Hyper-V - VM Monitor Mode Extensions No
Hyper-V - Second Level Address Translation Extensions No
Hyper-V - Virtualization Enabled in Firmware No
Hyper-V - Data Execution Protection Yes

Edited by Music Minister, 13 February 2016 - 12:58 PM.

BC AdBot (Login to Remove)


#2 peterracine


  • Members
  • 16 posts
  • Local time:03:07 AM

Posted 13 February 2016 - 07:40 PM

Hello Sam, it sounds like one of the malware removal members will have to help you out but, if you think that it is a browser hijacker try adwcleaner. It is downloadable from bleeping computer and it is tailored for removing many browser hijackers and other unwanted files and registry entries. Hope that it helps.

#3 Music Minister

Music Minister
  • Topic Starter

  • Members
  • 23 posts
  • Local time:02:07 AM

Posted 13 February 2016 - 09:15 PM

Would this cause all programs to be slow to load and slow to run?


Until someone can help I will run adwcleaner can't hurt!


Adwcleaner results log


# AdwCleaner v5.033 - Logfile created 13/02/2016 at 21:32:39
# Updated 07/02/2016 by Xplode
# Database : 2016-02-07.2 [Server]
# Operating system : Windows 10 Home  (x64)
# Username : Sam - HARRISLAPTOP
# Running from : C:\Users\Sam\Downloads\AdwCleaner.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****

***** [ Folders ] *****

***** [ Files ] *****

***** [ DLLs ] *****

***** [ Shortcuts ] *****

***** [ Scheduled tasks ] *****

***** [ Registry ] *****
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\Compete
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\dotomi.com
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\fromdoctopdf.dl.tb.ask.com
***** [ Web browsers ] *****
[-] [C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : aol.com
[-] [C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : ask.com
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1244 bytes] ##########

Edited by Music Minister, 13 February 2016 - 09:40 PM.

#4 boopme


    To Insanity and Beyond

  • Global Moderator
  • 73,530 posts
  • Gender:Male
  • Location:NJ USA
  • Local time:02:07 AM

Posted 22 February 2016 - 08:46 PM

It would be better to get a deeper look to be sure it is all out//

Please re post...

Please follow this Preparation Guide and post in a new topic.
Let me know if all went well.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users