Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Laptop is being really buggy and slow [Closed]


  • This topic is locked This topic is locked

#1
-Mundang-

-Mundang-

    Member

  • Member
  • PipPip
  • 15 posts

My laptop has been very buggy over the last few weeks, and I think it might have a virus.

 
here are the computer specs
 
OS Name Microsoft Windows 8.1
Version 6.3.9600 Build 9600
Other OS Description Not Available
OS Manufacturer Microsoft Corporation
System Name HUNTER
System Manufacturer ASUSTeK COMPUTER INC.
System Model X202E
System Type x64-based PC
System SKU ASUS-NotebookSKU
Processor Intel® Core™ i3-3217U CPU @ 1.80GHz, 1801 Mhz, 2 Core(s), 4 Logical Processor(s)
BIOS Version/Date American Megatrends Inc. X202E.208, 2/4/2013
SMBIOS Version 2.7
Embedded Controller Version 255.255
BIOS Mode UEFI
BaseBoard Manufacturer ASUSTeK COMPUTER INC.
BaseBoard Model Not Available
BaseBoard Name Base Board
Platform Role Mobile
Secure Boot State On
PCR7 Configuration Binding Not Possible
Windows Directory C:\WINDOWS
System Directory C:\WINDOWS\system32
Boot Device \Device\HarddiskVolume1
Locale United States
Hardware Abstraction Layer Version = "6.3.9600.17196"
User Name Hunter\HUNTER\Hunter
Time Zone Central Daylight Time
Installed Physical Memory (RAM) 4.00 GB
Total Physical Memory 3.89 GB
Available Physical Memory 1.55 GB
Total Virtual Memory 7.89 GB
Available Virtual Memory 5.22 GB
Page File Space 4.00 GB
Page File C:\pagefile.sys
Hyper-V - VM Monitor Mode Extensions Yes
Hyper-V - Second Level Address Translation Extensions Yes
Hyper-V - Virtualization Enabled in Firmware Yes
Hyper-V - Data Execution Protection Yes
 
 
and here is the OTL report

Attached Files

  • Attached File  OTL.Txt   150.44KB   54 downloads

Edited by -Mundang-, 28 October 2014 - 09:36 PM.

  • 0

Advertisements


#2
Biscuithd

Biscuithd

    Trusted Helper

  • Malware Removal
  • 2,573 posts

Hi,

 

Sorry it's taken so long to respond to your post. Sometimes we get very busy.

 

If you still require help, please perform the following scan and post the results.

 

FRST.gif Scan with Farbar Recovery Scan Tool

Please download Farbar Recovery Scan Tool and save it to your Desktop.

  • Right-click on FRST.gif icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
    (XP users click run after receipt of Windows Security Warning - Open File).
  • When the tool opens click Yes to disclaimer.
  • Make sure that Addition option is checked.
  • Press Scan button and wait.
  • The tool will produce two logfiles on your desktop: FRST.txt and Addition.txt.

Please copy and paste their content into your next reply.


  • 0

#3
-Mundang-

-Mundang-

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts

it says it is not compatable for my os


  • 0

#4
Biscuithd

Biscuithd

    Trusted Helper

  • Malware Removal
  • 2,573 posts
There's two versions, 32 and 64. Try the other one.
  • 0

#5
-Mundang-

-Mundang-

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts

Here you go.

Attached Files


  • 0

#6
Biscuithd

Biscuithd

    Trusted Helper

  • Malware Removal
  • 2,573 posts

Let's get started with the following :)

 

FRST.gif Fix with Farbar Recovery Scan Tool

icon_exclaim.gif This fix was created for this user for use on that particular machine. icon_exclaim.gif
icon_exclaim.gif Running it on another one may cause damage and render the system unstable. icon_exclaim.gif



Press the WindowsKey.png + R on your keyboard at the same time. Type Notepad and click OK.
  • Copy the entire content of the codebox below and paste into the Notepad document:

    start
    ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
    ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
    ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
    ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
    ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
    ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
    GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
    CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
    SearchScopes: HKCU - {07045EFB-1D4B-4868-B1E1-7BC1BCDAD21F} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3220468&CUI=UN38680090422923820
    FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll No File
    FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll No File
    CHR dev: Chrome dev build detected! <======= ATTENTION
    S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
    S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
    2014-11-03 22:29 - 2014-11-03 22:30 - 00006144 _____ () C:\Users\Hunter\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    2014-11-03 20:05 - 2014-11-03 20:05 - 00004758 _____ () C:\Users\Hunter\AppData\Local\recently-used.xbel
    2014-10-26 23:25 - 2014-10-28 20:43 - 00000000 ____D () C:\ProgramData\d53a0f7eab3bb10c
    2014-10-24 20:51 - 2014-10-24 20:55 - 00000000 ____D () C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
    C:\ProgramData\SetStretch.exe
    C:\ProgramData\SetStretch.VBS
    C:\Users\Hunter\jagex_cl_runescape_LIVE.dat
    C:\Users\Hunter\random.dat
    emptytemp:
    end
  • Click File, Save As and type fixlist.txt as the File Name.

Both files, FRST and fixlist.txt have to be in the same location or the fix will not work!
  • Right-click on FRST.gif icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
    (XP users click run after receipt of Windows Security Warning - Open File).
  • Press the Fix button just once and wait.
  • If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
  • When finished FRST will generate a log on the Desktop, called Fixlog.txt.

Please post it to your reply.
 
adwcleaner_new.png Scan with AdwCleaner
 
Please download AdwCleaner by Xplode and save the file to your desktop.
 
  • Right-click on adwcleaner_new.png icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
  • Follow the prompts and click Scan.
  • Upon completion, click Report. A log (AdwCleaner[R*].txt) will open.
  •  
    Please include the contents of that file in your reply.
     
     
    JRTbythisisu.png Fix with Junkware Removal Tool
     
    Please download JRT by Thisisu and save the file to your desktop.
    Temporary disable your AntiVirus and AntiSpyware protection - instructions here.
     
    • Right-click on JRTbythisisu.png icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
  • Follow the prompts and let this process run uninterrupted.
  • This scan can take a while, depending on your System specs.
  • Upon completion, a log (JRT.txt) will open on your desktop.
  •  
    Please include the contents of that file in your reply.
     
    Do not forget to re-enable your previously switched off protection software!
    Please also manually reboot your machine after this procedure.

     

    51a612a8b27e2-Zoek.png Scan with ZOEK

    Please download ZOEK by Smeenk and save it to your desktop (preferred version is the *.exe one)
    Temporary disable your AntiVirus and AntiSpyware protection - instructions here.

    • Right-click on 51a612a8b27e2-Zoek.png icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
    • Wait patiently until the main console will appear, it may take a minute or two.
    • In the main box please paste in the following script:

      createsrpoint;
      process;
      services-list;
      systemspecs;
      startupall;
      skipfix-iedefaults;
      firefoxlook;
      chromelook;
      filesrcm;
      installedprogs;
    • Make sure that Scan All Users option is checked.
    • Push Run Script and wait patiently. The scan may take a couple of minutes.
    • When the scan completes, a zoek-results logfile should open in notepad.
    • If a reboot is needed, it will be opened after it. You may also find it at your main drive (usually C:\ drive)


    Post its content into your next reply.

     

    Finally, let me know how the computer is working.


    • 0

    #7
    -Mundang-

    -Mundang-

      Member

    • Topic Starter
    • Member
    • PipPip
    • 15 posts

    Here yo go.

    Attached Files


    • 0

    #8
    Biscuithd

    Biscuithd

      Trusted Helper

    • Malware Removal
    • 2,573 posts

    How is the computer working now?

     

    Also, please (re-)post (copy/paste) the scan results as in-line text. Attachments can contain malware and exploits.


    • 0

    #9
    -Mundang-

    -Mundang-

      Member

    • Topic Starter
    • Member
    • PipPip
    • 15 posts

    A little better. Have to wait and see for a bit.


    • 0

    #10
    Biscuithd

    Biscuithd

      Trusted Helper

    • Malware Removal
    • 2,573 posts

    How is it now?


    • 0

    #11
    Biscuithd

    Biscuithd

      Trusted Helper

    • Malware Removal
    • 2,573 posts

    Please let me know how the machine is working :)


    • 0

    #12
    Biscuithd

    Biscuithd

      Trusted Helper

    • Malware Removal
    • 2,573 posts
    Due to lack of feedback, this topic has been closed.

    If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
    • 0






    Similar Topics

    0 user(s) are reading this topic

    0 members, 0 guests, 0 anonymous users

    As Featured On:

    Microsoft Yahoo BBC MSN PC Magazine Washington Post HP