PC Startup Issue
Solved
melin
Posted messages
204
Status
Member
-
yoann090 Posted messages 10597 Status Security Contributor -
yoann090 Posted messages 10597 Status Security Contributor -
Hello,
Configuration: Windows 7 / Firefox 22.0
My PC is starting up extremely slowly.
Below is the ZHPDiag report
https://www.cjoint.com/?0GmsqpEfpEk
Thank you in advance to anyone who can help me
Best regards
Configuration: Windows 7 / Firefox 22.0
My PC is starting up extremely slowly.
Below is the ZHPDiag report
https://www.cjoint.com/?0GmsqpEfpEk
Thank you in advance to anyone who can help me
Best regards
18 answers
-
Hello
I’m not surprised he’s struggling!
Please do this
You must have installed potentially unwanted software
To avoid this kind of problem:
- Do not download any programs offered in advertisements or on suspicious sites. Note that some well-known sites like O1net, Softronic, Tuto4PC, etc. sometimes modify the programs offered for download to add advertising software ==> Always prefer downloading directly from the publisher's site.
- During the installation of a free program, read carefully and uncheck all the additional programs that are offered, especially toolbars.
For your information, read these files on Potentially Unwanted Programs and Toolbars, which are not mandatory
* Download this easy-to-use tool
http://general-changelog-team.fr/fr/downloads/viewdownload/20-outils-de-xplode/2-adwcleaner (by Xplode) onto your desktop.
* If there is an issue with the first link, take it here https://www.commentcamarche.net/telecharger/securite/2759-adwcleaner/
* Run it (On Vista/Seven/8 right-click on it, and select run as administrator; if you are on XP double click on it)
* Click on search
* Post the search report C:\Adwcleaner[R]
* Note the search report is also saved under C:\Adwcleaner[R1]
* If the report is too long, host it on cjoint => http://www.pc-infopratique.com/forum-informatique/tutoriel-heberger-rapport-vt-67934.html
If there is a problem, there is always a solution
Don’t forget to mark your topic as resolved :) -
Thank you for this quick intervention.
Below is the requested report
https://www.cjoint.com/?0GmsMa0Ga0r -
@smilygui: Thank you :D
Melin
* Launch it (On Vista/Seven/8 right-click on it, and select Run as administrator) if you're on XP double click on it
* Then click on Delete.
* Save all ongoing work and accept the closure of currently running programs.
* Wait for the cleaning process to complete.
* Once the scan is finished, you will be prompted to restart.
* Upon restarting the PC, a report will open.
* Please share its content in your next response.
Note: The report is also saved under C:\AdwCleaner[S1].txt
Similarly, host it on cjoint
--
If there's a problem, there is always a solution
Don't forget to mark your topic as resolved :) -
-
Hello melin
How is your PC behaving?
Please run a zhpdiag again
--
If there is a problem, there is always a solution
Don't forget to mark your topic as solved :) -
lilidurhone (come on OL!)
he's still slow to start for now;
I have to restart because it has crashed -
planted a second time right in the middle of the analysis
I'll start again -
I have a problem:
when I restart, it works quite well for about 2 or 3 minutes, then the yellow hard drive light stays on and nothing happens anymore, the programs stop responding; so I have to turn it off using the power button by holding it for 6 seconds. -
Hello
Okay for zhpdiag, we'll see later
Have you already checked the status of your hard drive by running the error check?
--
If there is a problem, there is always a solution
Don't forget to mark your topic as resolved :) -
-
Re,
Do you know: C:\Program Files\calps ? -
Thank you Yoann,
In my control panel - programs and features, I have Calps Protocol Handler - Uninstall installed on June 4th and nothing else on the line.
I don't know what that corresponds to. -
It's done, but in the Programs folder, I still have a calps folder with only one file, uninst.exe, which is 34 KB.
-
Okay.
Perform a full scan with Malwarebytes.
https://www.security-helpzone.com/2013/04/19/malwarebytes-anti-malware-mbam-recherche-complete-des-menaces/?google_seo_thread=MalwareBytes-Anti-Malware-MBAM-Scan-complet -
-
-
-
-
-
Here is the malwarebytes
https://www.cjoint.com/?0Grp62MdYRR
and the zhpdiag
https://www.cjoint.com/?0GrqaySx00X -
Re,
Copy the text in bold below:
SysRestore
P2 - FPN: [HKLM] [@calps.plugin] - (.CEGID - Calps.) -- C:\Program Files\calps\npCalps.dll
O61 - LFC: 17/07/2013 - 08:43:37 ---A- C:\Users\MARC\AppData\Roaming\LOG_calps.txt [4978]
[HKLM\Software\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}]
[HKLM\Software\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}]
[HKLM\Software\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}]
[HKLM\Software\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}]
[HKLM\Software\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}]
[HKLM\Software\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}]
[HKLM\Software\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}]
[HKLM\Software\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}]
[HKLM\Software\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}]
[HKLM\Software\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}]
[HKLM\Software\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}]
[HKLM\Software\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}]
[HKLM\Software\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}]
[HKLM\Software\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}]
[HKLM\Software\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}]
[HKLM\Software\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}]
[HKLM\Software\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}]
[HKLM\Software\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}]
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}]
[HKLM\Software\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}]
[HKLM\Software\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}]
[HKLM\Software\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}]
[HKLM\Software\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}]
[HKLM\Software\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}]
[HKLM\Software\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}]
[HKLM\Software\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}]
[HKLM\Software\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}]
[HKLM\Software\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}]
[HKLM\Software\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}]
[HKLM\Software\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}]
[HKLM\Software\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}]
[HKLM\Software\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}]
[HKLM\Software\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}]
[HKLM\Software\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}]
[HKLM\Software\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}]
[HKLM\Software\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}]
[HKLM\Software\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}]
[HKLM\Software\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}]
[HKLM\Software\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}]
[HKLM\Software\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}]
[HKLM\Software\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}]
[HKLM\Software\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}]
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}]
[HKLM\Software\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}]
[HKLM\Software\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}]
[HKLM\Software\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}]
[HKLM\Software\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}]
[HKLM\Software\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}]
[HKLM\Software\Iminent]
[HKLM\Software\Microsoft\Tracing\Iminent_RASAPI32]
[HKLM\Software\Microsoft\Tracing\Iminent_RASMANCS]
[HKCU\Software\InstallCore] =>Adware.InstallCore
O42 - Software: Calps Protocol Handler - Uninstallation - (...) [HKLM] -- calps
O43 - CFD: 16/07/2013 - 15:37:01 - [3,061] ----D C:\Program Files\calps
[HKLM\Software\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5]
EmptyTemp
Then follow this tutorial: https://www.security-helpzone.com/2013/04/14/zhpfix-fixer-les-lignes-dun-rapport-zhpdiag/ -
ok :)
Let's clean up the tools then and finalize.
▶ We will use the Delfix utility (Thanks to Xplode).
- Download Delfix, then run it.
- Launch it, leave the pre-checked box.
- Then click on Run and wait during the removal process.
- The report will be saved as C:\DelFix.txt. Copy/Paste it into your next response. -
the delfix report :
# DelFix v10.3 - Report created on 07/17/2013 at 20:49:37
# Updated on 06/08/2013 by Xplode
# Username : MARC - MARC-PC
# Operating system : Windows 7 Enterprise Service Pack 1 (32 bits)
~ Removal of disinfection tools ...
Deleted : C:\ZHP
Deleted : C:\Users\MARC\Desktop\RK_Quarantine
Deleted : C:\Program Files\ZHPDiag
Deleted : C:\PhysicalDisk0_MBR.bin
Deleted : C:\Users\MARC\Desktop\RKreport[0]_S_07152013_181300.txt
Deleted : C:\Users\MARC\Desktop\ZHPDiag.txt
Deleted : C:\Users\MARC\Desktop\ZHPFixReport.txt
Deleted : C:\Users\Public\Desktop\MBRCheck.lnk
Deleted : C:\Users\Public\Desktop\ZHPDiag.lnk
Deleted : C:\Users\Public\Desktop\ZHPFix.lnk
Deleted : C:\Users\MARC\Downloads\adwcleaner.exe
Deleted : C:\Users\MARC\Downloads\RogueKiller.exe
Deleted : C:\Users\MARC\Downloads\ZHPDiag2.exe
Deleted : HKLM\SOFTWARE\AdwCleaner
Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZHPDiag_is1
########## - EOF - ########## -
If you have more questions, as for me, we are done.