PC freezes every 30-40 secs for about 5-10 secs

Discussion in 'Malware Help (A Specialist Will Reply)' started by 65ravenblack, Oct 5, 2013.

  1. 65ravenblack

    65ravenblack Private E-2

    Hi,

    I've had my PC turned off for about 1 month while on holidays. All seemed to be OK before this.

    After turning PC back on on returning from holidays, I have noticed that the PC freezes every 30-40 secs for about 5-10 secs at a time. CPU goes up to 100% on the windows task manager CPU graph.

    I've also noticed that it takes a while for the freezing to start. It pretty much starts after all the normal startup programs have finished.

    Also, if I start say firefox and then close it down I can't start it again. It just puts an entry in the processes in windows task manager but the program just doesn't seem to start.

    I have XP SP3 and am also running avast! and Malwarebytes as my normal virus/malware defences.

    I have attached the logs as described in the sticky.

    Any help is much appreciated.

    Aaron
     

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Please re run Hitman Pro and have it delete Potential Unwanted Programs.


    Delete this:
    • C:\Documents and Settings\owner\Local Settings\Application Data\blekkotb_031



    Please disable all anti-virus and anti-spyware programs while we do the following (re-enable when you are finished):

    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:

    After clicking Fix exit HJT.



    http://imageshack.us/a/img841/7292/thisisujrt.gif Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista or Seven, right-mouse click it and select Run as Administrator.
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Attach JRT.txt to your next message.


    Let me know how the computer is behaving now.
     
  3. 65ravenblack

    65ravenblack Private E-2

    Hi,

    I've run Hitman Pro as requested, however there is no blekkotb_031.

    There are 3 listings for Blekko and these are:

    blekko toolbars
    blekkotb_019
    HKU\S-1-5-21-205.......

    Not sure what to do.

    By the way what is Blekko?

    Cheers,
    Aaron
     
  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Delete them.

    For this, I will need the full path for the reg key please.
    A junkified search engine.
     
  5. 65ravenblack

    65ravenblack Private E-2

    OK, deleted both the "blekko toolbars" & "blekkotb_019" from Hitman Pro. The reg key didn't appear again.

    Also noticed that a new trojan alert was displayed in Hitman Pro. Details are:

    A0059431.exe
    C:\System Volume Information\_restore{59F4E48A-A473-4A32-983F-CA1D24A372FF}\RP544\

    Didn't know what to with it so ignored it.

    Ran MGTools\analyse.exe, deleted the R0 entry as directed.

    I tried to run JRT, but it got to the "checking shortcuts" and then just seemed to stall. I left it to run for at least an hour but it didn't go any further. When I tried to close the cmd window it wouldn't respond and I had to do a hard reboot. No logs were produced.

    PC is still the same.....
     
  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Can you scan with JRT in safe mode?
     
  7. 65ravenblack

    65ravenblack Private E-2

    JRT log attached. I ran this in safe mode.

    PC is still the same......seems to be getting worse.

    Aaron
     

    Attached Files:

    • JRT.txt
      File size:
      589 bytes
      Views:
      2
  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Please download Combofix to your desktop. Please refer to these instructions prior to running.
    Attach log once done.
     
  9. 65ravenblack

    65ravenblack Private E-2

    Combofix run. Log attached.
     

    Attached Files:

  10. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I really don't think your problems have anything to do with malware. I suggest you post about the freezing in the software forum. :)
     
  11. 65ravenblack

    65ravenblack Private E-2

    Hi,

    Thanks for all your help.

    I think you are right. I have narrowed it down to a problem with my CDROM and the ATAPI. I'm getting errors for both in the Admin Tools Event Viewer when the PC freezes.

    I've disabled the CDROM and haven't had a freeze since then.

    Now I've just got to work out if it's the device, cable or something else associated with it.

    Cheers,
    Aaron
     
  12. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Press and hold the Windows key http://forums.majorgeeks.com/chaslang/images/Windows_Logo_key.gif and then press the letter R on your keyboard. This opens the Run dialog box.
      • Copy and paste the below into the Run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
    3. Renable your Disk Emulation software with Defogger if you had disabled it in step 4 of the READ & RUN ME.
    4. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    5. If running Vista, Win 7 or Win 8, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    6. Now goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    7. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    8. After doing the above, you should work thru the below link:
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds