Anyone have any ideas why CPU spikes to 100%?

November 4, 2015 at 07:08:20
Specs: Windows 7
have this ongoing problem with my Lappy lately.

Randomly while doing anything watching YouTube, Playing game, browsing the web ect. my CPU usage will go up to 100% and my entire computer will just lag like no tomorrow and it only stops when pause my work and will start to lag as soon as I start my work.

- I have cleared the Temp files
- Have added a Cooling pad

Anyone have any ideas why?


See More: Anyone have any ideas why CPU spikes to 100%?

Report •

#1
November 4, 2015 at 12:34:50
"Anyone have any ideas why?"

Could be many, many things, process of elimination, lets start here.

Here are the first 2 steps, there will be more steps needed, after I see the results of these logs.

Run them in this order.

Step 1: Run AdwCleaner
http://www.softpedia.com/get/Antivi...
http://www.raymond.cc/blog/adwclean...
http://www.bleepingcomputer.com/dow...
Author's site
http://general-changelog-team.fr/en...
Tutorial
http://general-changelog-team.fr/en...
Close all open programs and internet browsers.
Double click on AdwCleaner.exe to run the tool.
Click Scan
In the results tabs, uncheck anything you don't want to remove.
Click on Cleaning.
Confirm each time with Ok.
Your computer will be rebooted automatically. A text file will open after the restart.
Please Copy & Paste the contents of that logfile with your next answer.
You can find the logfile at C:\AdwCleaner[S1].txt as well.
http://i.imgur.com/r3PoAEG.gif

Step 2: Run Junkware Removal Tool
http://www.softpedia.com/get/Securi...
http://www.bleepingcomputer.com/dow...
http://thisisudax.org/
http://thisisudax.blogspot.com.au/2...
Malwarebytes Acquires Junkware Removal Tool
https://blog.malwarebytes.org/news/...
Download Junkware Removal Tool onto your Desktop. If your default download location is not the Desktop, drag it out of it's location onto the Desktop.
Warning! Once the scan is complete JRT will shut down your browser with NO warning.
Shut down your protection software now to avoid potential conflicts.
Temporarily disable your antivirus and any antispyware real time protection before performing a scan.
Click this link to see a list of security programs that should be disabled and how to disable them.
http://www.bleepingcomputer.com/for...
http://www.techsupportforum.com/for...
Run the tool by double-clicking it. If you are using Windows Vista or Windows 7/8, right-click JRT and select Run as Administrator.
The tool will open and start scanning your system.
Please be patient as this can take a while to complete depending on your system's specifications.
On completion, a log (JRT.txt) is saved onto your Desktop and will automatically open.
Copy and Paste the contents of the JRT.txt log please.


Report •

#2
November 4, 2015 at 18:58:17
Your specs say windowss 7 but you're in the XP forum. Which is it?

How much ram do you have?


Report •

#3
November 4, 2015 at 19:38:58
a simple solution. ctrl+alt+delete for d task manager, browse the processes which uses the most RAM nd kill them! u just dont need an utility for everything.

Report •

Related Solutions

#4
November 5, 2015 at 10:21:52
RE Answer #3

No it's not always that simple. Many virii can hide themselves from the task manager and sometimes viruses can hide themselves as svchost processes, you don't just go arbitrarily shutting those off.

message edited by THX 1138


Report •

#5
November 5, 2015 at 11:32:01
Hi JohnW

PFB the results from both the Steps:-

JRT:-

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.6.4 (09.28.2015:1)
OS: Windows 7 Ultimate x86
Ran by Mr on Fri 11/06/2015 at 0:54:14.07
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


~~~ Services

Successfully deleted: [Service] Update MossNet [Reboot required]

~~~ Tasks

~~~ Registry Values

Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_F0656D80E011C74701DA17C885C06D06

~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Eventlog\Application\Update MossNet

~~~ Files

~~~ Folders

Successfully deleted: [Folder] C:\Users\Mr\Appdata\LocalLow\wedownload ltd

~~~ Chrome


[C:\Users\Mr\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset

[C:\Users\Mr\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:

[C:\Users\Mr\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset

[C:\Users\Mr\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[]

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Fri 11/06/2015 at 0:56:47.79
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

ADWCleaner log:-


AdwCleaner v5.018 - Logfile created 06/11/2015 at 00:37:09
# Updated 05/11/2015 by Xplode
# Database : 2015-11-03.2 [Server]
# Operating system : Windows 7 Ultimate (x86)
# Username : Mr - MR-PC
# Running from : C:\Users\Mr\Downloads\adwcleaner_5.018.exe
# Option : Scan
# Support : http://toolslib.net/forum

***** [ Services ] *****

Service Found : MgAssistService

***** [ Folders ] *****

Folder Found : C:\Users\Mr\AppData\Local\genienext
Folder Found : C:\Users\Mr\AppData\Local\Mobogenie
Folder Found : C:\Users\Mr\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfmkllfplegemejikoabfpjdaoncphip
Folder Found : C:\Users\Mr\AppData\Roaming\newnext.me
Folder Found : C:\Users\Mr\AppData\Roaming\OpenCandy

***** [ Files ] *****

File Found : C:\Users\Mr\daemonprocess.txt
File Found : C:\Users\Mr\AppData\Local\Google\Chrome\User Data\Default\local storage\hxxp_www.superfish.com_0.localstorage-journal
File Found : C:\Users\Mr\AppData\Local\Google\Chrome\User Data\Default\local storage\hxxps_www.superfish.com_0.localstorage-journal
File Found : C:\Users\Mr\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage
File Found : C:\Users\Mr\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage-journal
File Found : C:\Users\Mr\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
File Found : C:\Users\Mr\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage

***** [ DLL ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Found : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Found : HKCU\Software\Myfree Codec
Key Found : HKCU\Software\WEDLMNGR
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{47B89A0E-6162-4917-98BE-FB7E09E6BE6D}
Data Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - {47B89A0E-6162-4917-98BE-FB7E09E6BE6D}

***** [ Web browsers ] *****

[C:\Users\Mr\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Found : hfmkllfplegemejikoabfpjdaoncphip

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [3513 bytes] ##########


Report •

#6
November 5, 2015 at 14:20:22
"PFB the results from both the Steps:-"
Thanks Sasikanth.

Please download Farbar Recovery Scan Tool and save it onto your Desktop. If your default download location is not the Desktop, drag it out of it's location onto the Desktop.
http://www.bleepingcomputer.com/dow...
If we have to run Farbar more than once, refer this SS.
http://i.imgur.com/yUxNw0j.gif
Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
Double-click to run it. When the tool opens click Yes to disclaimer.
Press Scan button.
It will make a log (FRST.txt) on the Desktop.
The first time the tool is run, it makes also another log (Addition.txt).
The logs are large, upload them using Zippy ( No account/registration needed ) or upload to a site of your choosing. Give us the links please.
http://www.zippyshare.com/
Instructions on how to use ZippyShare.
http://i.imgur.com/naG6t2T.gif
http://i.imgur.com/Vi9ZdIh.gif
http://i.imgur.com/1IZu5kP.gif


Report •

#7
November 5, 2015 at 14:34:21
"AdwCleaner v5.018 - Logfile created 06/11/2015 at 00:37:09"
"# Option : Scan"
That shows what it found.
Did you hit the Clean button?

Report •

#8
November 6, 2015 at 05:08:13
All it found was MgAssistService and had it selected and hit the clean button.

Report •

#9
November 6, 2015 at 05:27:00
Hi John,

PFB the links to the FRST.txt & Addition.txt


http://www37.zippyshare.com/v/7vAzR...
http://www37.zippyshare.com/v/briew...


Report •

#10
November 6, 2015 at 13:57:47
Copy & Paste the text in Blue below & save it into Notepad on your Desktop & name it fixlist.txt
NOTE: It is important that Notepad is used. The fix will not work if Word or some other program is used.
NOTE: It is important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work.
NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system.

closeprocesses:
emptytemp:
Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X]
HKU\S-1-5-21-2551407944-2632083916-3609376541-1000\...\MountPoints2: {17ff92bf-35d8-11e3-8da2-00247eb19dfe} - H:\Startme.exe
HKU\S-1-5-21-2551407944-2632083916-3609376541-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.ominent.com/ws/?source=9f1d0980&tbp=homepage&toolbarid=base&u=541fe38a0000000000000c607629b6b6
HKU\S-1-5-21-2551407944-2632083916-3609376541-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://in.msn.com/?rd=1&ucc=IN&dcc=IN&opt=0&ocid=iehp&tc=7

Run FRST/FRST64 and press the Fix button just once and wait.
If for some reason the tool needs a restart, please make sure you let the system restart normally. After that, let the tool complete its run.
When finished FRST will generate a log on the Desktop (Fixlog.txt). Please Copy & Paste the contents into your reply.


Report •

#11
November 7, 2015 at 09:58:25
did it solve after such struggle? um if its a no, download a third party task manager and work on it. if it is an svchost process, search svchost.exe in ur PC and note down the addresses where it is located. then boot a linux live cd and delete them! this is how i live without an antivirus, now u guys too stop surviving with utilities and take it simply. its just a virus created by a human being in notepad. u dont need gb s of utilities to remove kbs of data. any doubts? u r free to question me.

Report •

#12
November 7, 2015 at 10:00:55
if its a svchost general process thats infected, delete it through a live linux and put a fresh one of the file! again, computrs are never complicated. questions?

message edited by jaysarma987


Report •

#13
November 8, 2015 at 02:36:05
Really jaysarma987?

How does your advice help if there is rootkit activity?

The scans aren't a struggle and the downloads aren't that big. More often than not the only struggle is in the wait while the software does its work.


Report •

#14
November 8, 2015 at 06:55:59
"delete it through a live libux and put a fresh one of the file! agaun, conputrs are never complicated. questions?"

I have several:

- what's libux?
- what's agaun?
- what's conptrs?
- why are you attempting to answer questions that you clearly don't know the answer to?
- even if the OP was to find suspicious processes in Device Manager & then "end process" them, what would happen the next time the system was rebooted?

The suspicious processes have to be completely removed, not temporarily turned off. Therefore ADWCleaner, JRT, Farbar, MalwareBytes, etc, not to mention a decent AV program, are needed.


Report •

#15
November 8, 2015 at 11:01:29
Hi John,

Below is the content from the Fixlog txt:-

Fix result of Farbar Recovery Scan Tool (x86) Version:05-11-2015
Ran by Mr (2015-11-09 00:23:41) Run:1
Running from C:\Users\Mr\Downloads
Loaded Profiles: Mr (Available Profiles: Mr)
Boot Mode: Normal

==============================================

fixlist content:
*****************
closeprocesses:
emptytemp:
Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X]
HKU\S-1-5-21-2551407944-2632083916-3609376541-1000\...\MountPoints2: {17ff92bf-35d8-11e3-8da2-00247eb19dfe} - H:\Startme.exe
HKU\S-1-5-21-2551407944-2632083916-3609376541-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.ominent.com/ws/?source=9f1d0980&tbp=homepage&toolbarid=base&u=541fe38a0000000000000c607629b6b6
HKU\S-1-5-21-2551407944-2632083916-3609376541-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://in.msn.com/?rd=1&ucc=IN&dcc=IN&opt=0&ocid=iehp&tc=7

*****************

Processes closed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SDWinLogon" => key removed successfully.
"HKU\S-1-5-21-2551407944-2632083916-3609376541-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{17ff92bf-35d8-11e3-8da2-00247eb19dfe}" => key removed successfully.
HKCR\CLSID\{17ff92bf-35d8-11e3-8da2-00247eb19dfe} => key not found.
HKU\S-1-5-21-2551407944-2632083916-3609376541-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\S-1-5-21-2551407944-2632083916-3609376541-1000\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache => value removed successfully.
EmptyTemp: => 903.6 MB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 00:25:01 ====


Report •

#16
November 8, 2015 at 13:02:50
"Below is the content from the Fixlog txt:"
Thanks Sasikanth.

Download Security Check by screen317 from one of the following links and save it onto your Desktop. If your default download location is not the Desktop, drag it out of it's location onto the Desktop.
http://screen317.spywareinfoforum.o...
http://screen317.changelog.fr/Secur...
Please restart the computer before running this security check..
* Double click SecurityCheck.exe. If you run Windows Vista or 7/8, right click and choose 'Run as Administrator'.
o If you are asked by Windows to run this program or not, please click 'Yes' or 'Run'.
o When you see a console window, press any key to continue scanning.
o Wait while it scans.
o If your firewall alerts you of Security Check, please press 'Allow' or similar.
* A Notepad document should open automatically after scan is completed. It will be called checkup.txt; Please Copy and Paste the contents into your reply.
Note: If a security program requests permission from dig.exe to access the Internet, allow it to do so.

message edited by Johnw


Report •

#17
November 8, 2015 at 18:01:00
fine guys. thats how i did actually. fine, wont answer urs. thought i would say about rain, bt, wont matter anyway.

Report •

#18
November 9, 2015 at 13:04:08
Hi John,

PFB the details from SecurityCheck.exe:

Results of screen317's Security Check version 1.009
Windows 7 x86 (UAC is enabled)
[url=http://windows.microsoft.com/en-US/windows7/install-windows-7-service-pack-1][color=red][b]Out of date service pack!![/color][/url][/b]
[b][u]``````````````Antivirus/Firewall Check:``````````````[/b][/u]
Windows Firewall Enabled!
avast! Antivirus
Antivirus up to date!
[b][u]`````````Anti-malware/Other Utilities Check:`````````[/b][/u]
Spybot - Search & Destroy
Adobe Flash Player 19.0.0.226
Adobe Reader XI
Google Chrome (46.0.2490.71)
Google Chrome (46.0.2490.80)
[b][u]````````Process Check: objlist.exe by Laurent````````[/b][/u]
[b][color=red]Spybot Teatimer.exe is disabled![/color][/b]
AVAST Software Avast AvastSvc.exe
AVAST Software Avast ng vbox\AvastVBoxSVC.exe
AVAST Software Avast avastui.exe
[b][u]`````````````````System Health check`````````````````[/b][/u]
Total Fragmentation on Drive C: 11% [color=red][b]Defragment your hard drive soon! (Do NOT defrag if SSD!)[/b][/color]
[b][u]````````````````````End of Log``````````````````````[/b][/u]


Report •

#19
November 9, 2015 at 14:16:51
What country are you in Sasikanth?

From your Addition log.
"AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}"
http://www.softpedia.com/get/Intern...
"Conclusion
However, it is important to note here that the computer’s performance is going to be hampered, as CPU and memory usage is quite high during most processes"

I would remove it using the 2 step Wise Program Uninstaller
http://www.softpedia.com/get/Tweak/...
http://www.freewarefiles.com/Wise-P...
http://www.freewarefiles.com/screen...
http://wisecleaner.com/wiseuninstal...

Extract from the fixlog.
"EmptyTemp: => 903.6 MB temporary data Removed"
Way, way too big, even for a gamer.
Here are temp file settings for a normal user, adjust to suit your requirements.
All browsers, set to 50mb ( that's MB, not GB ) for temp.
Chrome is not so straight forward.
How to set Google Chrome cache to 50mb max temporary files.
With comps, there is always more than one way to do things, try this way.
Right click on the Google Chrome shortcut > Properties.
Copy & Paste this below after .exe" as per SS ( Screenshot )
NOTE: There is a space after .exe"
http://i.imgur.com/vgkU3X1.gif
--disk-cache-size=50000"
Click > Apply & then OK.


Report •

#20
November 10, 2015 at 00:56:58
Hi John,

I am from India and the I have made the mentioned changes with Chrome cache to 50mb max temporary files.

Just wanted to mention that Spybot was installed recently and I have had challenges with the Laptop heating up prior to it.
I used to use Maxthon browser previously and then consider Chrome since its much liter then the rest.


Appreciate your help.


Report •

#21
November 10, 2015 at 02:03:40
Extract from your FRST log.
"Platform: Microsoft Windows 7 Ultimate (X86) Language: English (United States)"

Make sure ALL your Regional and Language Options settings are Ok. They will be something similar to this, the main point being, you should have at least 3 places to make sure you have your country displayed.
http://moosenose.com/Enabling%20Int...
Screen 4: 2 instances of India.

Screen 5: 2 instances of India.

Scroll down to > Changing Language for non-Unicode Programs
Advanced > 2 instances of India ( you may only have 1 available )

Keyboard shall leave up to your preference.

message edited by Johnw


Report •

#22
November 10, 2015 at 10:25:28
Thanks John,,,,Done that!! Would this be it.

Report •

#23
November 10, 2015 at 14:20:46
"Would this be it"
Time will tell, I get the comp clean & the basics fixed.

Update & Run Malwarebytes Anti-Malware ( MBAM ) Free Version. Use Quick scan ( now called Threat Scan )
http://www.softpedia.com/get/Antivi...
http://www.malwarebytes.org/free/
Make sure you uncheck > Enable free trial < at the END of the install.
http://i.imgur.com/tUFCbYz.gif
Click the Settings tab at the top, and then in the left column, select Detections and Protections, and if not already checked place a checkmark in the selection box to Scan for rootkits.
http://i.imgur.com/dZgt1g2.gif
Under Non-Malware Protection sub tab, make sure PUP and PUM entries to Treat detections as Malware are checked.
http://i.imgur.com/MKxr2K1.gif
Click on the Scan tab, then click on Scan Now >>. If an update is available, click the Update Now button.
A Threat Scan will begin.
With some infections, you may see this message box.
'Could not load DDA driver'
Click 'Yes' to this message, to allow the driver to load after a restart.
Allow the computer to restart. Continue with the rest of these instructions.
When the scan is complete, click Apply Actions.
Wait for the prompt to restart the computer to appear, then click on Yes.
After the restart once you are back at your desktop, open MBAM once more.
Click on the History tab > Application Logs.
Double click on the scan log which shows the Date and time of the scan just performed.
Click 'Copy to Clipboard'
Paste the contents of the clipboard into your reply.


Report •

#24
November 10, 2015 at 16:30:42

Hi John,

Please find below the contents from the MBAM.

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 11/11/2015
Scan Time: 5:12 AM
Logfile:
Administrator: Yes

Version: 2.2.0.1024
Malware Database: v2015.11.10.08
Rootkit Database: v2015.11.04.02
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7
CPU: x86
File System: NTFS
User: Mr

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 278585
Time Elapsed: 10 min, 0 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 5
PUP.Optional.Ominent, HKLM\SOFTWARE\CLASSES\APPID\{9A246976-806F-4B2E-B3B9-A9A58F5685AA}, Quarantined, [8cd4403c0586989e74e082b0b151ff01],
PUP.Optional.Ominent, HKU\S-1-5-21-2551407944-2632083916-3609376541-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{271FF4A7-3AA1-4DA8-B272-B10D2025C9D6}, Quarantined, [87d915671a716ec8dd7645ed31d1c33d],
PUP.Optional.Ominent, HKU\S-1-5-21-2551407944-2632083916-3609376541-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{271FF4A7-3AA1-4DA8-B272-B10D2025C9D6}, Quarantined, [87d915671a716ec8dd7645ed31d1c33d],
PUP.Optional.MossNet, HKU\S-1-5-21-2551407944-2632083916-3609376541-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{155549BF-2110-428A-9D6A-0D9044A99B92}, Quarantined, [5d03e3992665d6603adb81b19b6721df],
PUP.Optional.WeDownload, HKU\S-1-5-21-2551407944-2632083916-3609376541-1000\SOFTWARE\weDownload Ltd, Quarantined, [83ddacd06a2187af098f0397a063cb35],

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)


Report •

#25
November 10, 2015 at 16:36:11
"I have had challenges with the Laptop heating up prior to it"
Just in case this is the heating up you mean.

Curing Laptop/Notebook Overheating
https://www.youtube.com/watch?v=74a...
http://www.technorms.com/40307/5-re...
http://is.gd/ck0tXA
http://is.gd/SKlNjg
http://is.gd/vkq6Iz
http://is.gd/cNfZzK
http://is.gd/N8ZLiY
Cleaning a Laptop/Notebook Computer
http://www.instructables.com/id/Ext...
http://www.techradar.com/news/mobil...
http://www.cnet.com.au/how-to-clean...

/////////////////////////////////////////////////////////////////////////////////

Results of screen317's Security Check version 1.009
Windows 7 x86 (UAC is enabled)
http://windows.microsoft.com/en-US/...
Out of date service pack, to get a stable & secure comp, you need to install the service pack.

Total Fragmentation on Drive C: 11%
Defragment your hard drive soon! (Do NOT defrag if SSD!)


Report •

#26
November 10, 2015 at 16:56:14
Thanks John!!.... Will do it and get back !!

Report •

Ask Question