Freezing computer - malware suspected

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Vectorian, Mar 8, 2012.

  1. Vectorian

    Vectorian Private E-2

    Hello,

    I am facing a serious problem of my computer freezing after each start. Everything started today, after I downloaded several PDF files yesterday from upload/share websites, whereas Kaspersky Internet Security 2012 didn't alert at any time and I checked each file. There is no particular program which causes the crash but the crash takes place always in the same manner: after starting any program, Windows explorer freezes first and after a few seconds the other programs follow. I didn't have the problem when running in the safe mode so I went through all steps of the Malware Removal/Cleaning Procedure in the safe mode and it looks like the computer doesn't freeze anymore but I'm still very concerned because:
    • After rebooting the first time after the removal rpcedure, the computer still froze once. Then I uninstalled Java 6 Update 3 since I couldn't do it in the safe mode
    • It is quite difficult to interpret the log files but I suspect that the malware was not removed completely because GMER detected some items. How can I remove the them? The log file of GMER as well as other malware removal programs are attached.
    • Except GMER none of the programs detected malware (I think) which would be strange.
    • After the whole removal procedure, (huge) new files were created in "C:\" (such as "hiberfil.sys" [2 GB], "pagefile.sys" [2.4 GB], "IO.SYS" [empty], "MSDOS.SYS" [empty], ). I also noticed that several hidden "desktop.ini"'s and "%userprofile%" folder appeared on the desktop (I'm sure they weren't there before because hidden folders were visible before the removal procedures as well). May I delete them?

    No listed malware was found in the list of installed programs.

    Thanks in advance,

    AR
     

    Attached Files:

  2. Vectorian

    Vectorian Private E-2

    The rest of the log files attached.
     

    Attached Files:

  3. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    No, do not delete any files that you are not sure about please.

    I want you to run TDSSKiller so refer to the below for how to do so.

    TDSSkiller - How to run


    Please also download MBRCheck to your desktop
    • Double click MBRCheck.exe to run (vista and Win 7 right click and select Run as Administrator)
    • It will show a Black screen with some information that will contain either the below line if no problem is found:
      • Done! Press ENTER to exit...
    • Or you will see more information like below if a problem is found:
      • Found non-standard or infected MBR.
      • Enter 'Y' and hit ENTER for more options, or 'N' to exit:
    • Either way, just choose to exit the program at this point since we want to see only the scan results to begin with.
    • MBRCheck will create a log named similar to MBRCheck_07.16.10_00.32.33.txt which is random based on date and time.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds