Something Sucking Up All The Ram

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by andrewr47, Jan 27, 2018.

  1. andrewr47

    andrewr47 Private E-2

    problem started yesterday. Once windows starts up, some unknown process eats up my RAM 1% at a time until 100% of it is taken up (takes about 5 min) and Windows gets completely stuck and I have to manually reboot the system. I am unable to do anything on regular WIndows so I ran all the diags on safe mode.

    My MalwareBytes also has its real time protection turned off by some unknown process and I cannot turn it back on. (I have a subscription to it).

    There was no warning MB or MSE about any malicious sites or programs

    One problem with HITMAN PRO: I ran it 4 times, and each time I tried to save the log, the app crashes so the .log file is never created. So I tried my best and just typed out the suspicious files it detected. All the detected files were IGNORED as instructed
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    First, reopen RogueKiller and remove everything it found. Reboot and
    download Zemana Malware Removal to your desktop and run it please.
    It auto updates, and you click scan. After it's finished, click on the icon that looks like Cell phone strength bars. High-light the report (by date log was produced) and click on the "Open Report" icon. (looks like a folder). That notepad.txt can then be copied/pasted into another .txt doc and saved. Upload that, please.
     
  3. andrewr47

    andrewr47 Private E-2

    After deleting everything RK found, Windows seems to act normally, and MB real-time protection is back on. I was able to run Zemana in regular Windows now.

    Zemana report is attached. Thanks
     

    Attached Files:

  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Your Zemana report indicates you quarantined the infections. Is that right?

    Are things running normally now?
     
  5. andrewr47

    andrewr47 Private E-2

    I dont recall if there was an option to quarantine or not, but I didn't click any additional buttons to delete or quarantine or anything else. I just saved the report.

    But so far everything is running normally, I'm glad. Thank you.

    I just wonder how this thing got in because I don't go to any suspicious sites or open suspicious emails. I alreayd have MSE and MB on real time protection, is there another software I need to use?
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    HKLM\Software\Wow6432Node\MozillaPlugins\@qq.com/TXSSO\Path = C:\Program Files (x86)\Common Files\Tencent

    Tencent Technology(Shenzhen) Company Limited.

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. Re-enable your Disk Emulation software with Defogger if you had disabled it in step 4 of the READ & RUN ME.
    3. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    4. If running Vista, Win 7 or Win 8 or 10, it is time to make sure you have re-enabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Now go to the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 or 10 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    6. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    7. After doing the above, you should work thru the below link:
     
  7. andrewr47

    andrewr47 Private E-2

    Thanks!
     
  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You're welcome. Safe surfing. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds