A bit of added help- it is like a deja vous day for me so far! Every log I've checked shown an excess of processes running. That means they are on the startup menu, start on boot, then run in the background. THAT'S why you're slow.
Malware shows in HijackThis follows. But it will require that you run the other two programs, Malwarebytes and Superantispyware, follow with new HJT and attach all three logs.
First, you need to disable the Real Time Protection:
Disable AdWatch:
- Right click on the Ad-Watch icon in the system tray.
- At the bottom of the screen there will be two checkable items:
[o] Active: This will turn Ad-Watch On\Off without closing it.
[o]Automatic: Suspicious activity will be blocked automatically.
- Uncheck both of those boxes.
(When done, you can re-enable it using the same steps but this time check both boxes.)
SPYBOT TEATIMER
- Launch Spybot S&D, go to the Mode menu and make sure "Advanced Mode" is selected.
- On the left hand side, click on Tools, then click on the Resident Icon in the list.
- Uncheck the "Resident "TeaTimer" (Protection of overall system settings) active." box.
- Click on the "System Startup" icon in the List
- Uncheck the "TeaTimer" box and "OK" any prompts.
- If Teatimer gives you a warning that changes were made, click the "Allow Change" box when prompted.
- Exit Spybot S&D when done.
- When we are done, you can re-enable Teatimer using the same steps but this time place a check next to "Resident TeaTimer" and check the "TeaTimer" box in System Startup.
Then run Mbam, SAS : links here:
https://www.techspot.com/community/...lware-removal-preliminary-instructions.58138/
and follow them with this:
Please download ComboFix
HERE:
- With ComboFix, at the download window, please rename it to Combo-Fix(.exe) before downloading it.
- Please disable all security programs, such as antiviruses, antispywares, and firewalls. Also disable your internet connection.
- Run Combo-Fix.exe and follow the prompts.
(Understand that things like your system clock changing and your desktop disappearing might happen. Do not worry, because all will be restored later.)
- Wait for the scan to be completed.
- If it requires a reboot, please do it.
• After the scan has completed entirely, please post the log here. The log will be located at C:\ComboFix(.txt)
Do not click on the ComoboFix window, as it may cause it to stall.
CF disconnects your machine from the internet. The connection is automatically restored before CF completes its run. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.
Do new HJ scan when through.
Attach logs from:
Malwarenytes
Superantispyware
Combofix report
New HJ log.
Comment: I'd rather have you run everything in Normal Mode if possible. some entries don't show up in Safe Mode.