Go Back   Tech Support Forum > Security Center > Virus/Trojan/Spyware Help

User Tag List

Slow Internet windows 7 home premium service pack 1

This is a discussion on Slow Internet windows 7 home premium service pack 1 within the Virus/Trojan/Spyware Help forums, part of the Tech Support Forum category. [B]I was away from my computer with it being off, but on standby. Furthermore the Ethernet cable was still plugged

Closed Thread
Thread Tools Search this Thread
Old 05-16-2017, 04:53 PM   #1
Registered Member
Join Date: May 2017
Posts: 1
OS: Windows 7 Home Premium Service Pack 1


[B]I was away from my computer with it being off, but on standby. Furthermore the Ethernet cable was still plugged in. Upon return, I have had internet problems. The issue has arisen between 28th March to 18th April.
  • I have not done any of the following steps in safe-mode.
  • No other users on this desktop have been utilized in years.
  • It is not a problem of internet as several other devices work perfectly from my port and through my login (as it is university internet).
  • On looking at the network connection properties, it is automatically obtaining an IPv6 address, a DNS server address and an IP address.

I am mildly computer fluent and have tried to follow many routes, but haven't had good results.
Is it possible that malware, virus, rootkit etc has been removed, but settings are still changed and therefore prohibiting my internet speeds?

I would really appreciate any help as being a student, this computer is my lifeline, especially during exam time at the moment.

Using SpeedOf.me, results shown below,
Max Download 140kbps
Max Upload: 10kbps

Whilst pages load extremely slowly, the internet is still up and online. It feels like something is restricting the speeds. Also,my computer is running slower in relation to normal file browsing processes etc.

I have uninstalled and re-downloaded the Realtek PCIe GBE Family Controller Drivers before and after each of these steps.
  • Bullguard antivrus full scan,
  • Malware bytes 3
  • Hitman Pro
  • Kasperky tdsskiller
in this order.

This has applied to all browsers, even after deleting and reinstalling chrome. Chrome had its home page settings changed and after being changed, would revert to the homepage in question. After running malwarebytes and changing it back, this was no longer an issue.

I also discovered that Bullguard settings had been altered and had lowered security level for antivirus. I was able to change these without them reversing.

Tdss killer found no issues.

I have flushed the dns cache using ipconfig /flushdns in administrator CMD prompt.
I have performed this in adminstator CMD Prompt as well "netsh winsock reset".
I have restarted the computer and performed all updates, apart from windows 10.

Malware Bytes found and removed several issues, but the logs do not extend far back enough now, so I don't think there is a way for me to find out what it removed.

In Folder options, having selected:
Show hidden files, folders, and drives,
and unselected:
hide extensions for known file types
Hide protected operating system files (recommended)

I ran malwarebytes3 again with no more issues found.
I am not sure if it does it automatically, but
Hide protected operating system files (recommended)
has automatically been reselected.

Bullguard has reported on these issues.


C:\Users\James\AppData\Local\Apowersoft\Apowersoft Online Launcher\unins000.exe


Risk: HIGH
Behaviour: The program unins000.exe attempted to delete itself.
Time: 2017/05/02 22:47:15


Move to quarantine: Succeeded


C:\Users\James\AppData\Local\Apowersoft\Online Video Converter\unins000.exe


Risk: HIGH
Behaviour: The program unins000.exe attempted to delete itself.
Time: 2017/05/02 22:46:35


Move to quarantine: Succeeded


(handtyped this due to no export log)

ATTACKER IP- (v3749-0ac92d8.wifi.cf.ac.uk
EVENT TIME- 2017-05-12 14:14:12
ATTACKER MAC- 74-D4-35-E7-1F-89


Malware Bytes discovered this.

Suspected file: unins000.exe

Risk: high
Path: C:\Users\James\AppData\Local\Apowersoft\Apowersoft Online Launcher\unins000.exe

• The program unins000.exe attempted to delete itself.

Files modified

Registry modified
• \REGISTRY\MACHINE\SYSTEM\CONTROLSET001\CONTROL\SESSION MANAGER:PendingFileRenameOperations (modified: old_value=[\??\C:\ProgramData\BullGuard\BdAgent.log, \??\C:\ProgramData\BullGuard\CompressedLogs\BdAgent.log, \??\C:\ProgramData\BullGuard\BsMailProxy.log, \??\C:\ProgramData\BullGuard\CompressedLogs\BsMailProxy.log], new_value =[\??\C:\ProgramData\BullGuard\BdAgent.log, \??\C:\ProgramData\BullGuard\CompressedLogs\BdAgent.log, \??\C:\ProgramData\BullGuard\BsMailProxy.log, \??\C:\ProgramData\BullGuard\CompressedLogs\BsMailProxy.log, \??\C:\Users\James\AppData\Local\Temp\_iu14D2N.tmp

"_IU14D2N.TMP" is still in "C:\Users\James\AppData\Local\Temp"
1.13 MB and modified on 02/05/17.
BigJimothy is offline  
Sponsored Links
Closed Thread

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Similar Threads
Thread Thread Starter Forum Replies Last Post
stuck in safe mode
ok I was told to run dds and gmer rootkit detector and post the results here. (I think). DDS (Ver_2012-11-20.01) - NTFS_x86 NETWORK Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 10.21.2 Run by HP_Administrator at 21:13:36 on 2014-05-16 Microsoft Windows XP Professional ...
sheriredding Virus/Trojan/Spyware Help 107 09-17-2014 07:06 AM
FBI.Cybercrime lock-out
Hello and thank you in advance for helping me. I am locked out of my computer with a notice from "FBI.Cybercrime" to pay a fine or the FBI will be here to haul me off to prison. I received a suggestion that through Bleeping Computers I would find the instructions to follow for self help removal...
Cathy95820 Resolved HJT Threads 34 05-06-2013 03:49 AM
[SOLVED] Re: IE7 cannot connect with secure sites
Hi...Corday of the Internet Explorer forum site suggested that I put the DDS file and Attach files on this forum. I could not download the ark.txt from the many GMER sites that I saw. The following was sent to Corday who suggested the re-direction to the Security centre. Corday..thanks...
raringer Resolved HJT Threads 43 06-26-2012 08:33 PM
Suspected Malware In Neighbors Computer
I originally went to fix his printer but I think that is being affected by malware. The things I think are fishy is whitesmoke toolbar and something called yontoo. I ran his antivirus and cleaned up what it found. Windows install CD is a no for now, I have asked him if he has it and but he is...
kmssd Resolved HJT Threads 20 01-03-2012 07:44 PM
After closing previous thread my problems continue
Hi there. After lots of great help from CatByte all the memory I had lost was returned and it looked like my problems were solved. However I've noticed that the memory I got back has been going down at the same rate as before (see link to thread below). It also takes a long time to shut down with...
Oberjeen Resolved HJT Threads 7 03-19-2011 03:48 PM

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is on
Smilies are on
[IMG] code is on
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off

Post a Question

» Site Navigation
 > FAQ
Powered by vBadvanced CMPS v3.2.3

All times are GMT -7. The time now is 11:51 AM.

Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2020, vBulletin Solutions, Inc.
vBulletin Security provided by vBSecurity v2.2.2 (Pro) - vBulletin Mods & Addons Copyright © 2020 DragonByte Technologies Ltd.
User Alert System provided by Advanced User Tagging v3.1.0 (Pro) - vBulletin Mods & Addons Copyright © 2020 DragonByte Technologies Ltd.
Copyright 2001 - 2018, Tech Support Forum

Windows 10 - Windows 7 - Windows XP - Windows Vista - Trojan Removal - Spyware Removal - Virus Removal - Networking - Security - Top Web Hosts