Solved Chrome: Spinning blue wheel, slow page loads

January 6, 2017 at 12:18:00
Specs: Windows 64
Today for the umpteenth time I uninstalled and reinstalled Chrome in an effort to get rid of the spinning wheel. Add-ons....all Google.....were disabled. Cleared browsing history.

No good.

I.E: Yahoo mail: loads but not usable, as the page jumps up and down until the spinning stops, which may or may not happen.

FB: the page loads in pieces while the wheel spins

I have run Windows Defender and some other MS scan from their site; nothing was found.

A friend ran CC Cleaner and deleted temporary files.

It won't stop.

Am not sure what category to choose.
I have Windows 10.

Thoughts?

Thanks, Colleen


See More: Chrome: Spinning blue wheel, slow page loads

Report •

✔ Best Answer
January 7, 2017 at 18:00:39
Extract from my original instructions.
Please download Farbar Recovery Scan Tool and save it onto your Desktop. If your default download location is not the Desktop, drag it out of it's location onto the Desktop.

Copy & Paste the text in Blue below & save it into Notepad on your Desktop & name it fixlist.txt
NOTE: It is important that Notepad is used. The fix will not work if Word or some other program is used.
NOTE: It is important that both files, FRST64 and fixlist.txt are in the same location or the fix will not work.
NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system.

CreateRestorePoint:
emptytemp:
closeprocesses:
HKLM-x32\...\Run: [] => [X]
GroupPolicy: Restriction - Chrome <======= ATTENTION
SearchScopes: HKLM -> {5EA0A79D-6D1C-4376-B111-784DC374C953} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
Toolbar: HKU\S-1-5-21-831815545-3924932916-3600405698-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Task: {0BA9CE40-C2BD-4640-BC26-C50322AFFCD6} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {2D9B910B-2DF1-4334-BC22-0A42EA995C67} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {41C2B668-9168-40A8-AEA1-182DFBE859ED} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {4A3F783F-20DB-4592-98EA-36DFCF354C16} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {64C8E7CE-102D-4EC9-B4D4-629DC950EA53} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {721799A4-BACE-4535-AF19-4B17A4FE4EB6} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {75EB9D11-5CA1-468F-B9E3-6337D3873DF2} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {77A0F33B-2E3B-4B31-9251-F3703E037167} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {7A106B5E-57BB-4FA5-A58A-23FD94419D7B} - \WPD\SqmUpload_S-1-5-21-831815545-3924932916-3600405698-1001 -> No File <==== ATTENTION
Task: {A6A7E513-AA80-4937-8BFA-344412C9EF88} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {A7EA1531-416F-4D09-B6C2-0111685A6F91} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {D61D3278-D85E-4397-90C1-85A84FDF9B0A} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {FA7944A7-73D5-4B9B-A3FB-E3B726BBE07A} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION

Open FRST64 and press the Fix button just once and wait.
If for some reason the tool needs a restart, please make sure you let the system restart normally. After that, let the tool complete its run.
When finished FRST will generate a log on the Desktop (Fixlog.txt). Please Copy & Paste the contents into your reply.
Refer these SS if needed.
http://fs5.directupload.net/images/...
http://fs5.directupload.net/images/...
http://fs5.directupload.net/images/...
http://fs5.directupload.net/images/...
http://fs5.directupload.net/images/...
http://fs5.directupload.net/images/...

message edited by Johnw



#1
January 6, 2017 at 13:11:32
It could still be malware. These three small freebies often find what anti-virus programs miss, the first two being focussed on "browser malware". Run them in the order given:

AdwCleaner:
https://toolslib.net/downloads/view...
(blue "Download Now" button on right).
Download and "Save" the file somewhere. Go to the saved file then double click it to run the program. Use the "Scan" button, followed by the "Clean" button.

Junkware Removal Tool (JRT)
https://www.malwarebytes.org/junkwa...
(blue Download button).
Download and "Save" the file somewhere. Go to the saved file then double click it to run JRT. It might appear to have stopped at times or flash the screen but sit tight until it has finished.

MalwareBytes:
https://www.malwarebytes.org/
(use the "Free Download" button rather than the "Buy Now" button).
Install and Run the Threat Scan - quarantine anything it finds.

Please keep all logs.

Always pop back and let us know the outcome - thanks

message edited by Derek


Report •

#2
January 6, 2017 at 14:06:34
Am working on them now

Report •

#3
January 6, 2017 at 15:05:53
Derek, it's worse.....truly worse!
Spinning doesn't stop.
It took nearly 70 seconds for my home page to load.
Loading this page took another 45.
And the whole time, the spinning wheel continues.
What did I just do?
How do I fix this?
Ugh.
Thanks
Colleen

Report •

Related Solutions

#4
January 6, 2017 at 15:33:37
Copy & Paste the contents of all the logs in your next reply, please Colleen.

You can find the logfile at C:\AdwCleaner [C1 or later].txt as well.
http://i.imgur.com/r3PoAEG.gif

On completion, a log (JRT.txt) is saved onto your Desktop and will automatically open.

Open MBAM once more.
Click on the History tab > Application Logs.
Double click on the scan log which shows the Date and time of the scan just performed.
Click 'Copy to Clipboard'
Paste the contents of the clipboard into your reply.
http://fs5.directupload.net/images/...
Or,
https://www.malwarebytes.com/suppor...

message edited by Johnw


Report •

#5
January 6, 2017 at 15:44:37
"What did I just do?"
I doubt it is anything that you did, just the symptoms getting worse.

Try to do what Johnw suggested in #4. That is your best bet right now.

Always pop back and let us know the outcome - thanks

message edited by Derek


Report •

#6
January 6, 2017 at 18:13:46
Did you try another browser? IE11 or Firefox? Same problem?
Same problem on other devices? Phone, laptop, tab?

message edited by sluc


Report •

#7
January 6, 2017 at 18:55:02
Thx, everyone. This is a most congenial group.
Just in from church...will send logs 2m.
Thx

Report •

#8
January 6, 2017 at 18:58:39
"will send logs 2m"
Ok.

Report •

#9
January 7, 2017 at 09:18:57
Good morning,
Malwarebytes:
Malwarebytes
www.malwarebytes.com

-Log Details-
Scan Date: 1/7/17
Scan Time: 2:39 AM
Logfile:
Administrator: Yes

-Software Information-
Version: 3.0.5.1299
Components Version: 1.0.43
Update Package Version: 1.0.947
License: Trial

-System Information-
OS: Windows 10
CPU: x64
File System: NTFS
User: System

-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 402055
Time Elapsed: 11 min, 56 sec

-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

-Scan Details-
Process: 0
(No malicious items detected)

Module: 0
(No malicious items detected)

Registry Key: 0
(No malicious items detected)

Registry Value: 0
(No malicious items detected)

Data Stream: 0
(No malicious items detected)

Folder: 0
(No malicious items detected)

File: 0
(No malicious items detected)

Physical Sector: 0
(No malicious items detected)


(end)


Junk:
unkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.0 (12.05.2016)
Operating System: Windows 10 Home x64
Ran by ColleenMc (Administrator) on Fri 01/06/2017 at 17:15:07.57
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


File System: 1

Successfully deleted: C:\WINDOWS\wininit.ini (File)

Registry: 3

Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{5EA0A79D-6D1C-4376-B111-784DC374C953} (Registry Key)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} (Registry Key)
Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{5EA0A79D-6D1C-4376-B111-784DC374C953} (Registry Key)


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Fri 01/06/2017 at 17:21:55.36
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


Adw:
I cannot copy and paste anything....actually, I can copy, not paste.
It removed a Coupon Printer.

I am most thankful for all your help, everyone. It is a bit overwhelming not knowing how this stuff works at times.

I restarted the PC a couple of times hoping that would get rid of stray stuff, but the pages still spin and take longer to load.

Colleen



Report •

#10
January 7, 2017 at 10:18:50
It presumably found something not too good about your coupon printer. That can be looked at later but let John have a look at the malware situation first - he is particularly expert on that topic.

John is in Australia so he won't be around for a few hours. In the meantime, to keep things going, restart the computer. If your problems are still there have a look at #6 from sluc and let us know the outcome.

We come from far and wide - I'm from the UK.

Always pop back and let us know the outcome - thanks

message edited by Derek


Report •

#11
January 7, 2017 at 11:01:27
Gentlemen, I surveyed that site you sent me to, toolslib, and found something called NoBot.
I ran the Adw again, and it found a shred of an old AVG uninstallation, and then ran NoBot....it found four pieces of One Drive. Don't know what that was. But, my pages are loading nicely, the spinning seems to have stopped.....
Ever grateful for your help.
I am going to continue surveying that site to see what else I might like to store away in case I do this to my PC again.

But, I would be interested in what John has to say....this is rather interesting.

Have a blessed day, gentlemen, and thank you so much.
Colleen


Report •

#12
January 7, 2017 at 11:39:54
Nobot is a new one on me. I note you have to decide what to let it remove, so you need to take care

Glad to hear of the improvement but that that might not mean your computer is yet clean. As you say, let's get Johnn's input.

Always pop back and let us know the outcome - thanks

message edited by Derek


Report •

#13
January 7, 2017 at 12:01:17
Current Events:
Clicking the link to this page from the email: the page took about 10 seconds to finally load, and the spinning wheels on the email page and this one spun until it did. The other two tabs that are open did not have a spinning wheel, which was the case prior to all of this. Previously, all the tabs would spin whenever I opened a new one.

FB, i.e.: the page loads slowly but much more quickly.

New tabs: moving from page to page is much more seamless now.

Chat you up later.
Colleen


Report •

#14
January 7, 2017 at 13:22:59
Back again, Colleen, see if you can do this.

Please download Farbar Recovery Scan Tool and save it onto your Desktop. If your default download location is not the Desktop, drag it out of it's location onto the Desktop.
http://www.bleepingcomputer.com/dow...
If we have to run Farbar more than once, refer this SS.
http://i.imgur.com/yUxNw0j.gif
Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
Double-click to run it. When the tool opens click Yes to disclaimer.
Press Scan button.
It will make a log (FRST.txt) on the Desktop.
The first time the tool is run, it makes also another log (Addition.txt)
The logs are large, upload them using this. No account/registration needed. Give us the links please.
File Convoy
http://www.fileconvoy.com/index.php


Report •

#15
January 7, 2017 at 16:56:02
The file(s) you have just uploaded can be retrieved using the link or URL provided below. Save this link NOW as you will not be able to get it back once you leave this page. You must send this link to every recipient of your file(s). They will be able to retrieve the file(s) by pasting this link (bold part only) into the address bar of any browser [Chrome, Firefox, Internet Explorer, Safari, Opera, etc.].
The link or URL you must send to the recipient(s) of your file(s) is:
http://www.fileconvoy.com/dfl.php?i...
The file(s) that can be retrieved with the above link is (are):

Addition.txt (44.319 KB)
The file(s) will be available on the server for the next 1 day.


Report •

#16
January 7, 2017 at 16:56:57
The file(s) you have just uploaded can be retrieved using the link or URL provided below. Save this link NOW as you will not be able to get it back once you leave this page. You must send this link to every recipient of your file(s). They will be able to retrieve the file(s) by pasting this link (bold part only) into the address bar of any browser [Chrome, Firefox, Internet Explorer, Safari, Opera, etc.].
The link or URL you must send to the recipient(s) of your file(s) is:
http://www.fileconvoy.com/dfl.php?i...
The file(s) that can be retrieved with the above link is (are):

FRST.txt (74.964 KB)
The file(s) will be available on the server for the next 1 day.


Report •

#17
January 7, 2017 at 17:20:24
Ok Colleen, got them, back in about 1/2 an hr.

Report •

#18
January 7, 2017 at 18:00:39
✔ Best Answer
Extract from my original instructions.
Please download Farbar Recovery Scan Tool and save it onto your Desktop. If your default download location is not the Desktop, drag it out of it's location onto the Desktop.

Copy & Paste the text in Blue below & save it into Notepad on your Desktop & name it fixlist.txt
NOTE: It is important that Notepad is used. The fix will not work if Word or some other program is used.
NOTE: It is important that both files, FRST64 and fixlist.txt are in the same location or the fix will not work.
NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system.

CreateRestorePoint:
emptytemp:
closeprocesses:
HKLM-x32\...\Run: [] => [X]
GroupPolicy: Restriction - Chrome <======= ATTENTION
SearchScopes: HKLM -> {5EA0A79D-6D1C-4376-B111-784DC374C953} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
Toolbar: HKU\S-1-5-21-831815545-3924932916-3600405698-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Task: {0BA9CE40-C2BD-4640-BC26-C50322AFFCD6} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {2D9B910B-2DF1-4334-BC22-0A42EA995C67} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {41C2B668-9168-40A8-AEA1-182DFBE859ED} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {4A3F783F-20DB-4592-98EA-36DFCF354C16} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {64C8E7CE-102D-4EC9-B4D4-629DC950EA53} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {721799A4-BACE-4535-AF19-4B17A4FE4EB6} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {75EB9D11-5CA1-468F-B9E3-6337D3873DF2} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {77A0F33B-2E3B-4B31-9251-F3703E037167} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {7A106B5E-57BB-4FA5-A58A-23FD94419D7B} - \WPD\SqmUpload_S-1-5-21-831815545-3924932916-3600405698-1001 -> No File <==== ATTENTION
Task: {A6A7E513-AA80-4937-8BFA-344412C9EF88} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {A7EA1531-416F-4D09-B6C2-0111685A6F91} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {D61D3278-D85E-4397-90C1-85A84FDF9B0A} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {FA7944A7-73D5-4B9B-A3FB-E3B726BBE07A} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION

Open FRST64 and press the Fix button just once and wait.
If for some reason the tool needs a restart, please make sure you let the system restart normally. After that, let the tool complete its run.
When finished FRST will generate a log on the Desktop (Fixlog.txt). Please Copy & Paste the contents into your reply.
Refer these SS if needed.
http://fs5.directupload.net/images/...
http://fs5.directupload.net/images/...
http://fs5.directupload.net/images/...
http://fs5.directupload.net/images/...
http://fs5.directupload.net/images/...
http://fs5.directupload.net/images/...

message edited by Johnw


Report •

#19
January 8, 2017 at 13:32:50
How do I undo whatever that fix was?
I restarted and it took four minutes to get to a blank screen while my yahoo page loaded; at 4:15 I got the sign in page, but it was skewed.

Fix result of Farbar Recovery Scan Tool (x64) Version: 08-01-2017
Ran by ColleenMc (08-01-2017 16:16:28) Run:1
Running from C:\Users\ColleenMc\Desktop\Downloads\Farbar
Loaded Profiles: ColleenMc (Available Profiles: ColleenMc)
Boot Mode: Normal
==============================================

fixlist content:
*****************
CreateRestorePoint:
emptytemp:
closeprocesses:
HKLM-x32\...\Run: [] => [X]
GroupPolicy: Restriction - Chrome <======= ATTENTION
SearchScopes: HKLM -> {5EA0A79D-6D1C-4376-B111-784DC374C953} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
Toolbar: HKU\S-1-5-21-831815545-3924932916-3600405698-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Task: {0BA9CE40-C2BD-4640-BC26-C50322AFFCD6} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {2D9B910B-2DF1-4334-BC22-0A42EA995C67} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {41C2B668-9168-40A8-AEA1-182DFBE859ED} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {4A3F783F-20DB-4592-98EA-36DFCF354C16} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {64C8E7CE-102D-4EC9-B4D4-629DC950EA53} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {721799A4-BACE-4535-AF19-4B17A4FE4EB6} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {75EB9D11-5CA1-468F-B9E3-6337D3873DF2} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {77A0F33B-2E3B-4B31-9251-F3703E037167} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {7A106B5E-57BB-4FA5-A58A-23FD94419D7B} - \WPD\SqmUpload_S-1-5-21-831815545-3924932916-3600405698-1001 -> No File <==== ATTENTION
Task: {A6A7E513-AA80-4937-8BFA-344412C9EF88} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {A7EA1531-416F-4D09-B6C2-0111685A6F91} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {D61D3278-D85E-4397-90C1-85A84FDF9B0A} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {FA7944A7-73D5-4B9B-A3FB-E3B726BBE07A} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
*****************

Restore point was successfully created.
Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{5EA0A79D-6D1C-4376-B111-784DC374C953} => key removed successfully
HKCR\CLSID\{5EA0A79D-6D1C-4376-B111-784DC374C953} => key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} => key removed successfully
HKCR\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} => key removed successfully
HKCR\Wow6432Node\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => key not found.
HKU\S-1-5-21-831815545-3924932916-3600405698-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value removed successfully
HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0BA9CE40-C2BD-4640-BC26-C50322AFFCD6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0BA9CE40-C2BD-4640-BC26-C50322AFFCD6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OfficeSoftwareProtectionPlatform\SvcRestartTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2D9B910B-2DF1-4334-BC22-0A42EA995C67} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2D9B910B-2DF1-4334-BC22-0A42EA995C67} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{41C2B668-9168-40A8-AEA1-182DFBE859ED} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{41C2B668-9168-40A8-AEA1-182DFBE859ED} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4A3F783F-20DB-4592-98EA-36DFCF354C16} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4A3F783F-20DB-4592-98EA-36DFCF354C16} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{64C8E7CE-102D-4EC9-B4D4-629DC950EA53} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{64C8E7CE-102D-4EC9-B4D4-629DC950EA53} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{721799A4-BACE-4535-AF19-4B17A4FE4EB6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{721799A4-BACE-4535-AF19-4B17A4FE4EB6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{75EB9D11-5CA1-468F-B9E3-6337D3873DF2} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{75EB9D11-5CA1-468F-B9E3-6337D3873DF2} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{77A0F33B-2E3B-4B31-9251-F3703E037167} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{77A0F33B-2E3B-4B31-9251-F3703E037167} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7A106B5E-57BB-4FA5-A58A-23FD94419D7B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7A106B5E-57BB-4FA5-A58A-23FD94419D7B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WPD\SqmUpload_S-1-5-21-831815545-3924932916-3600405698-1001 => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A6A7E513-AA80-4937-8BFA-344412C9EF88} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A6A7E513-AA80-4937-8BFA-344412C9EF88} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A7EA1531-416F-4D09-B6C2-0111685A6F91} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A7EA1531-416F-4D09-B6C2-0111685A6F91} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D61D3278-D85E-4397-90C1-85A84FDF9B0A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D61D3278-D85E-4397-90C1-85A84FDF9B0A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FA7944A7-73D5-4B9B-A3FB-E3B726BBE07A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FA7944A7-73D5-4B9B-A3FB-E3B726BBE07A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent => key removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 308208 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 40019080 B
Java, Flash, Steam htmlcache => 535 B
Windows/system/drivers => 115208 B
Edge => 224123 B
Chrome => 433519472 B
Firefox => 3912396 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 16777232 B
NetworkService => 10501516 B
ColleenMc => 7848034 B

RecycleBin => 112722843 B
EmptyTemp: => 597 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 16:19:27 ====


Report •

#20
January 8, 2017 at 13:34:56
IDK if you got my message; between spinning and pages freezing, my eyebrows are getting sparse.

This Notepad fix made it the worst it has been. Am going to run all those scans again.
Here is the Notepad file after running the fix:

Fix result of Farbar Recovery Scan Tool (x64) Version: 08-01-2017
Ran by ColleenMc (08-01-2017 16:16:28) Run:1
Running from C:\Users\ColleenMc\Desktop\Downloads\Farbar
Loaded Profiles: ColleenMc (Available Profiles: ColleenMc)
Boot Mode: Normal
==============================================

fixlist content:
*****************
CreateRestorePoint:
emptytemp:
closeprocesses:
HKLM-x32\...\Run: [] => [X]
GroupPolicy: Restriction - Chrome <======= ATTENTION
SearchScopes: HKLM -> {5EA0A79D-6D1C-4376-B111-784DC374C953} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
Toolbar: HKU\S-1-5-21-831815545-3924932916-3600405698-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Task: {0BA9CE40-C2BD-4640-BC26-C50322AFFCD6} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {2D9B910B-2DF1-4334-BC22-0A42EA995C67} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {41C2B668-9168-40A8-AEA1-182DFBE859ED} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {4A3F783F-20DB-4592-98EA-36DFCF354C16} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {64C8E7CE-102D-4EC9-B4D4-629DC950EA53} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {721799A4-BACE-4535-AF19-4B17A4FE4EB6} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {75EB9D11-5CA1-468F-B9E3-6337D3873DF2} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {77A0F33B-2E3B-4B31-9251-F3703E037167} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {7A106B5E-57BB-4FA5-A58A-23FD94419D7B} - \WPD\SqmUpload_S-1-5-21-831815545-3924932916-3600405698-1001 -> No File <==== ATTENTION
Task: {A6A7E513-AA80-4937-8BFA-344412C9EF88} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {A7EA1531-416F-4D09-B6C2-0111685A6F91} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {D61D3278-D85E-4397-90C1-85A84FDF9B0A} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {FA7944A7-73D5-4B9B-A3FB-E3B726BBE07A} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
*****************

Restore point was successfully created.
Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{5EA0A79D-6D1C-4376-B111-784DC374C953} => key removed successfully
HKCR\CLSID\{5EA0A79D-6D1C-4376-B111-784DC374C953} => key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} => key removed successfully
HKCR\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} => key removed successfully
HKCR\Wow6432Node\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => key not found.
HKU\S-1-5-21-831815545-3924932916-3600405698-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value removed successfully
HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0BA9CE40-C2BD-4640-BC26-C50322AFFCD6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0BA9CE40-C2BD-4640-BC26-C50322AFFCD6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OfficeSoftwareProtectionPlatform\SvcRestartTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2D9B910B-2DF1-4334-BC22-0A42EA995C67} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2D9B910B-2DF1-4334-BC22-0A42EA995C67} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{41C2B668-9168-40A8-AEA1-182DFBE859ED} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{41C2B668-9168-40A8-AEA1-182DFBE859ED} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4A3F783F-20DB-4592-98EA-36DFCF354C16} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4A3F783F-20DB-4592-98EA-36DFCF354C16} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{64C8E7CE-102D-4EC9-B4D4-629DC950EA53} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{64C8E7CE-102D-4EC9-B4D4-629DC950EA53} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{721799A4-BACE-4535-AF19-4B17A4FE4EB6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{721799A4-BACE-4535-AF19-4B17A4FE4EB6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{75EB9D11-5CA1-468F-B9E3-6337D3873DF2} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{75EB9D11-5CA1-468F-B9E3-6337D3873DF2} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{77A0F33B-2E3B-4B31-9251-F3703E037167} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{77A0F33B-2E3B-4B31-9251-F3703E037167} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7A106B5E-57BB-4FA5-A58A-23FD94419D7B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7A106B5E-57BB-4FA5-A58A-23FD94419D7B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WPD\SqmUpload_S-1-5-21-831815545-3924932916-3600405698-1001 => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A6A7E513-AA80-4937-8BFA-344412C9EF88} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A6A7E513-AA80-4937-8BFA-344412C9EF88} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A7EA1531-416F-4D09-B6C2-0111685A6F91} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A7EA1531-416F-4D09-B6C2-0111685A6F91} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D61D3278-D85E-4397-90C1-85A84FDF9B0A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D61D3278-D85E-4397-90C1-85A84FDF9B0A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FA7944A7-73D5-4B9B-A3FB-E3B726BBE07A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FA7944A7-73D5-4B9B-A3FB-E3B726BBE07A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent => key removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 308208 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 40019080 B
Java, Flash, Steam htmlcache => 535 B
Windows/system/drivers => 115208 B
Edge => 224123 B
Chrome => 433519472 B
Firefox => 3912396 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 16777232 B
NetworkService => 10501516 B
ColleenMc => 7848034 B

RecycleBin => 112722843 B
EmptyTemp: => 597 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 16:19:27 ====


Report •

#21
January 8, 2017 at 14:35:05
You have installed the Premium version of Malwarebytes, which is very good & can be run in conjunction with your current Anti-Virus ( AV ) It would have prevented the adware installs. If you don't want to buy it, do this to avoid the purchase nag screens.
Open Malwarebytes, on the Dashboard, click on ‘End Free Trial’ link which, then will be instantly converted to the free version.

Click the Settings tab at the top, and then in the left column, select Detections and Protections, and place a checkmark in the selection box to Scan for rootkits.
http://i.imgur.com/dZgt1g2.gif

Next step, run Malwarebytes again.
When the scan is complete, click Apply Actions.
Before the reboot, Copy & Paste the contents of the log in your next post.
http://i.imgur.com/NOmMO3l.gif
Wait for the prompt to restart the computer to appear, then click on Yes.


Report •

#22
January 8, 2017 at 15:43:06
Gentlemen,
I thank you for all your help; I cannot choose a best answer simply because each of you has been most helpful.
I ran all the previous scans again today, including NoBot, CCCleaner, and AtomicCleaner3; less spinning, it seems; some pages load easily, some don't.
I have spent enough time in this for a while.
Please let me thank you again, and take a break.
What I wanted to do was video the screens and read the times involved for the completion of new tabs, etc, as well as show you the erratic nature of the spinning: I was going to upload it into that drop box you had me use. But I simply have no time left this weekend.

I will be in touch, if that would be okay. I will post your page on my FB and give you a great recommendation.

Again, many thanks,
Colleen


Report •

#23
January 18, 2017 at 04:59:50
have we overlooked the simple answer: a bad network connection?

anyways, Good Luck Colleen


Report •

#24
January 18, 2017 at 09:59:51
I love when the obvious is so hidden, but no, dear friend, the connection is fine.
The PC is still experiencing more subtle versions of the same problems, but I run those programs that I downloaded every day. Maybe a bit obsessive.

I am slowly deleting files that I no longer use, especially downloaded photos, and saving others to an external drive.

You have all been so supportive and wonderful. Thank you.
Colleen


Report •

#25
January 18, 2017 at 10:16:35
Files that are just sitting there make no difference to how the computer runs. What does is unnecessary programs running in the background (see Task Manager Startup tab).

I assume you have only one virus checker running in real time because sometimes those can "argue with each other" and cause issues.

Always pop back and let us know the outcome - thanks


Report •

#26
January 18, 2017 at 17:14:30
"The PC is still experiencing more subtle versions of the same problems"

Extract from your Addition log.

"Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)"

Most people do not need Java, I would uninstall it completely & test.

Use this uninstaller for a complete uninstall. Keep this program for future uninstalls.

Geek Uninstaller
http://www.softpedia.com/get/Tweak/...
http://www.freewarefiles.com/GeekUn...
http://www.freewarefiles.com/screen...
http://www.geekuninstaller.com/
Just Double click on the program you want to uninstall.

message edited by Johnw


Report •

#27
January 18, 2017 at 17:29:52
... and in the unlikely case that you have some offline program that uses Java (I do) then you can disable it in browsers instead - Java Icon in Control Panel, Security tab.

The above could also be used to test whether you need it.

Always pop back and let us know the outcome - thanks


Report •

#28
January 18, 2017 at 18:07:44
Next step after doing Java, download the latest version of Farbar ( delete the old version ) & upload the logs please. I'm sure I will see something that is affecting your comp.

message edited by Johnw


Report •

Ask Question