Freezing and failing to shut down properly

Discussion in 'Malware Help (A Specialist Will Reply)' started by jamie365, Sep 19, 2013.

  1. jamie365

    jamie365 Private E-2

    Dear Major Geeks

    I would be grateful for any assistance:

    My Toshiba Satellite L750D running windows 7 and using McAfee antivirus has the following problems:
    1. Freezing
    2. Failing to shut down properly, usually stopping at the "shutting down" window. The only way to close it is to force shutdown with the start button.

    I have followed the Malware removal/cleaning procedure as far as possible (which is to say I have not managed to complete the whole sequence successfully).

    I was able to successfuly run Rogue Killer and have attached the log.
    Malware Bytes started to run but hung up at the following: C:\WINDOWS\TEMP\WER986.tmp\WERInternalMetadata.xml. This occurred twice.
    TDSSKiller ran and did not detect anything abnormal.
    HitmanPro ran and I have attached the log.
    I am not sure if MGTools finished. It stopped before giving me a GetLogs-Final message. However there is a log file which I am attaching.
    At each of the unsuccessful attempts at running the above programmes the computer froze again and I had to force shutdown again.

    Thankyou in anticipation of assistance.
     

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Uninstall Babylon

    Re run Hitman and have it delete all of the Potential Unwanted Programs.


    http://imageshack.us/a/img841/7292/thisisujrt.gif Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista or Seven, right-mouse click it and select Run as Administrator.
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Attach JRT.txt to your next message.



    Now run the C:\MGtools\GetLogs.bat file by double clicking on it. (Right click and run as admin if using Vista, Windows7 or Win8) Then attach the new C:\MGlogs.zip file that will be created by running this.

    Let me know of any problems you may have encountered with the above instructions and also let me know how things are running now!
     
  3. jamie365

    jamie365 Private E-2

    Dear Kestrel

    I have run those steps without any problem and can now shutdown normally.

    I am attaching the logs. Hitman identified MGTools as a Trojan but I ignored that.

    Thank you very much for your help.
     

    Attached Files:

  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Describe how things are running please. :) Is everything okay now, all told? Ready for final steps?
     
  5. jamie365

    jamie365 Private E-2

    HI Kestrel
    All seems to be running fine at the moment, no freezing and normal shutdown thankyou.
    So yes, probably ready for final steps/
    Thank you
     
  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Glad to hear it. :)


    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. Renable your Disk Emulation software with Defogger if you had disabled it in step 4 of the READ & RUN ME.
    3. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    4. If running Vista, Win 7 or Win 8, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Now goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    6. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.

    7. After doing the above, you should work thru the below link:
     
  7. jamie365

    jamie365 Private E-2

    All done and thank you so much for your help.

    I don't know why you do what you do, but I am very pleased that you do it to help the bewildered.

    Kind regards

    Tim
     
  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Guess I'm just a glutton for punishment. LOL

    I am so glad all is running well for you now, Tim.
     
  9. jamie365

    jamie365 Private E-2

    HI
    Still not sure things are quite right....

    I tried to run Malware bytes as recommended by the tutorial but again it stopped before completion.
    So I downloaded superantispyware free edition and ran that and again it stopped before completion.
    I also tried to get my installed Macafee to run a scan and that wouldn't even start the scan.
    On each occasion the computer then would not shutdown properly without forcing.
    Google Chrome has also failed to respond on a couple of occasions but works normally at other times.
    Any further advice?
    Tim
     
  10. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Run everything that you are able to of the R&R. Attach what logs you gather, and I can review them from fresh to see if anything has changed. If I see no signs of malware, you will have to post in the software forum. :)
     
  11. jamie365

    jamie365 Private E-2

    Hi

    I downloaded all the tools again, but was not allowed to put MGTools in the C drive this time with message that I don't have administrator privileges so saved to desktop instead.

    None of the other tools would run completely:
    RK started but failed to complete scan
    MB started but failed to complete scan
    TDSSKiller came up with a lot of error messages about failing to initialise properly and update and then failed to complete
    Hitman Pro filed to complete scan but did get t 99% at which time it had calssified MGTools as a Trojan but not fond anyting else.
    MGTools failed to start... just came up with the black prompt screen with nothing in it.

    Currently very slow on startup, can's do a normal shutdown and having to use IE as Google Chrome keeps failing to respond.

    Any assistance appreciated...

    Tim
     
  12. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I may have to refer you off to the software forum. Then you can return here if necessary.

    A question first: How do things run in safe mode?
     
  13. jamie365

    jamie365 Private E-2

    Hi
    I started up in safe mode (the top one, simplest of the 3 safe options) and startup was quick. Simple things like looking at photos were fine.
    I also ran the tools except MGTools in safe mode, not sure if this was a useful or sensible thing to do, logs attached except for Kaspersky which did not detect anything.
    MacAfee would not run a scan in safe mode.

    Tim
     

    Attached Files:

  14. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    So you ran MGTools in normal mode? That would be great if so, can I see the log please? (MGlogs.zip)
     
  15. jamie365

    jamie365 Private E-2

    HI
    No I have only been able to run MGTools in safe mode.
    Everything including internet access works perfectly well in safe mode.

    MGlogs.zip attached.

    Would system restore help me do you think?

    Tim
     

    Attached Files:

  16. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You can try this:

    Download Windows Repair by Tweaking.com and unzip the contents into a newly created folder on your desktop.
    • Now run Repair_Windows.exe by double clicking on it ( if you are running Vista or Win 7, use right click and select Run As Administrator)
    • Now select the Start Repairs tab.
    • The click the Start button.
    • Create a System Restore point if prompted.
    • On the next screen, click the Unselect All button to first deselect all repairs.
    • Now select the following repair options:
      • Reset Registry Permissions
      • Reset File Permissions
      • Register System Files
      • Repair WMI
      • Repair Windows Firewall
      • Remove Policies Set By Infections
      • Repair Winsock & DNS Cache
      • Repair Proxy Settings
      • Repair Windows Updates
      • Set Windows Services To Default Startup
    • Now on the lower right side check the box to Restart/Shutdown System When Finished
    • Then make sure the Restart System radio button is enabled.
    • Shutdown any other programs that you are running now before continuing.
    • Now click the Start button.
    • Be patient while the tool repairs the selected items.
    • It should reboot automatically when finished.

    Let me know if it helped.
     
  17. jamie365

    jamie365 Private E-2

    Thankyou
    Can I do that in safe mode or does it have to be in normal mode?
    Tim
     
  18. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You can only run things from safe mode so go for that, yes. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds