Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Computer sporadically freezing...is it malware? [Solved]


  • This topic is locked This topic is locked

#16
BrianR1976

BrianR1976

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 355 posts

Here is the log. I will do the other half then surf.

 

Process    CPU    Private Bytes    Working Set    PID    Description    Company Name    Verified Signer
System Idle Process    83.45    0 K    24 K    0            
svchost.exe    10.56    353,840 K    228,420 K    652    Host Process for Windows Services    Microsoft Corporation    
procexp64.exe    2.92    29,808 K    53,092 K    4668    Sysinternals Process Explorer    Sysinternals - www.sysinternals.com    
System    0.69    208 K    3,648 K    4            
Interrupts    0.38    0 K    0 K    n/a    Hardware Interrupts and DPCs        
firefox.exe    0.33    437,032 K    452,284 K    5688    Firefox    Mozilla Corporation    
FitbitConnectService.exe    0.30    15,688 K    22,308 K    2088    Fitbit Connect Service    Fitbit, Inc.    
svchost.exe    0.25    147,488 K    155,480 K    120    Host Process for Windows Services    Microsoft Corporation    
csrss.exe    0.18    2,728 K    5,276 K    436    Client Server Runtime Process    Microsoft Corporation    
svchost.exe    0.18    11,972 K    20,376 K    444    Host Process for Windows Services    Microsoft Corporation    
csrss.exe    0.16    10,340 K    10,028 K    544    Client Server Runtime Process    Microsoft Corporation    
aswidsagenta.exe    0.12    20,656 K    32,388 K    4676    avast! Identity Protection Service    AVAST Software s.r.o.    
explorer.exe    0.08    60,364 K    76,272 K    3024    Windows Explorer    Microsoft Corporation    
MBAMService.exe    0.07    371,932 K    396,228 K    3772    Malwarebytes Service    Malwarebytes    
svchost.exe    0.07    5,600 K    10,884 K    2064    Host Process for Windows Services    Microsoft Corporation    
downloader2.exe    0.05    3,316 K    3,076 K    3812    RealDownloader        
avastui.exe    0.03    22,484 K    21,504 K    4012    Avast Antivirus    AVAST Software    
AvastSvc.exe    0.03    123,168 K    41,636 K    1420    Avast Service    AVAST Software    
svchost.exe    0.03    5,284 K    10,196 K    752    Host Process for Windows Services    Microsoft Corporation    
svchost.exe    0.02    32,748 K    23,612 K    1304    Host Process for Windows Services    Microsoft Corporation    
unchecky_bg.exe    0.01    2,032 K    7,304 K    1060    Unchecky Background Process    RaMMicHaeL    
LMS.exe    0.01    2,604 K    5,168 K    4028    Local Manageability Service    Intel Corporation    
rpdsvc.exe    0.01    41,756 K    45,436 K    3736    RealPlayer Cloud Service    RealNetworks, Inc.    
AGSService.exe    0.01    2,144 K    6,932 K    1964    Adobe Genuine Software Integrity Service    Adobe Systems, Incorporated    
ipoint.exe    0.01    7,268 K    3,820 K    2952    IPoint.exe    Microsoft Corporation    
svchost.exe    0.01    5,116 K    9,100 K    864    Host Process for Windows Services    Microsoft Corporation    
lsass.exe    < 0.01    5,320 K    13,140 K    588    Local Security Authority Process    Microsoft Corporation    
itype.exe    < 0.01    6,260 K    3,068 K    2960    IType.exe    Microsoft Corporation    
AdobeUpdateService.exe    < 0.01    1,208 K    4,244 K    1940    Adobe Update Service    Adobe Systems Incorporated    
wuauclt.exe    < 0.01    2,536 K    7,060 K    2940    Windows Update    Microsoft Corporation    
svchost.exe    < 0.01    12,624 K    15,392 K    1808    Host Process for Windows Services    Microsoft Corporation    
svchost.exe    < 0.01    5,132 K    9,300 K    2228    Host Process for Windows Services    Microsoft Corporation    
sftlist.exe    < 0.01    5,304 K    13,288 K    4224    Microsoft Application Virtualization Client Service    Microsoft Corporation    
SearchIndexer.exe    < 0.01    28,292 K    17,568 K    4580    Microsoft Windows Search Indexer    Microsoft Corporation    
WLIDSVC.EXE    < 0.01    8,056 K    16,772 K    364    Microsoft® Windows Live ID Service    Microsoft Corp.    
OfficeClickToRun.exe    < 0.01    19,472 K    35,628 K    1196    Microsoft Office Click-to-Run (SxS)    Microsoft Corporation    
stacsv64.exe    < 0.01    11,700 K    8,920 K    644    IDT PC Audio    IDT, Inc.    
PhotoshopElementsFileAgent.exe    < 0.01    2,768 K    1,208 K    5392    Adobe Photoshop Elements 13.0 (component)    Adobe Systems Incorporated    
spoolsv.exe    < 0.01    17,684 K    25,156 K    1764    Spooler SubSystem App    Microsoft Corporation    
WUDFHost.exe        2,288 K    6,484 K    4384    Windows Driver Foundation - User-mode Driver Framework Host Process    Microsoft Corporation    
WmiPrvSE.exe        3,180 K    6,848 K    3560    WMI Provider Host    Microsoft Corporation    
WmiPrvSE.exe        5,820 K    11,044 K    4284    WMI Provider Host    Microsoft Corporation    
WLIDSVCM.EXE        1,496 K    3,684 K    3508    Microsoft® Windows Live ID Service Monitor    Microsoft Corp.    
wlanext.exe        2,536 K    6,292 K    1524    Windows Wireless LAN 802.11 Extensibility Framework    Microsoft Corporation    
winlogon.exe        3,308 K    7,688 K    676    Windows Logon Application    Microsoft Corporation    
wininit.exe        1,992 K    5,016 K    508    Windows Start-Up Application    Microsoft Corporation    
unchecky_svc.exe        1,684 K    5,100 K    2424    Unchecky Service    RaMMicHaeL    
TrustedInstaller.exe        43,168 K    46,116 K    1116    Windows Modules Installer    Microsoft Corporation    
taskhost.exe        7,792 K    14,404 K    2800    Host Process for Windows Tasks    Microsoft Corporation    
taskeng.exe        2,780 K    6,776 K    2836    Task Scheduler Engine    Microsoft Corporation    
taskeng.exe        2,264 K    5,812 K    5148    Task Scheduler Engine    Microsoft Corporation    
svchost.exe        19,620 K    22,288 K    992    Host Process for Windows Services    Microsoft Corporation    
svchost.exe        2,852 K    6,200 K    1172    Host Process for Windows Services    Microsoft Corporation    
svchost.exe        2,064 K    5,864 K    3408    Host Process for Windows Services    Microsoft Corporation    
svchost.exe        1,368 K    3,872 K    2360    Host Process for Windows Services    Microsoft Corporation    
svchost.exe        1,388 K    3,916 K    2220    Host Process for Windows Services    Microsoft Corporation    
svchost.exe        6,032 K    11,924 K    1596    Host Process for Windows Services    Microsoft Corporation    
smss.exe        588 K    1,272 K    332    Windows Session Manager    Microsoft Corporation    
sftvsa.exe        1,516 K    4,996 K    2720    Microsoft Application Virtualization Virtual Service Agent    Microsoft Corporation    
services.exe        5,640 K    9,664 K    572    Services and Controller app    Microsoft Corporation    
rndlresolversvc.exe        1,116 K    3,920 K    3668            
RealPlayerUpdateSvc.exe        2,288 K    7,620 K    3872            
RaRegistry64.exe        1,768 K    4,480 K    2380    RalinkRegistryWriter    Ralink Technology, Corp.    
pdfsvc.exe        2,544 K    7,560 K    4960    Dispatcher    PDF Complete Inc    
OSPPSVC.EXE        3,984 K    11,356 K    3280    Microsoft Office Software Protection Platform Service    Microsoft Corporation    
mDNSResponder.exe        2,452 K    6,308 K    2024    Bonjour Service    Apple Inc.    
mbamtray.exe    Suspended    376 K    140 K    3584    Malwarebytes Tray Application    Malwarebytes    
lsm.exe        2,836 K    4,584 K    596    Local Session Manager Service    Microsoft Corporation    
HPTouchSmartSyncCalReminderApp.exe        24,168 K    26,912 K    4596    HP TouchSmart Calendar Service    Hewlett-Packard    
HPSupportSolutionsFrameworkService.exe        46,928 K    55,748 K    1044    HP Support Solutions Framework Service    HP Inc.    
GCalService.exe        10,952 K    14,024 K    4360    HP TouchSmart Calendar    Hewlett-Packard    
dwm.exe        2,136 K    6,276 K    3016    Desktop Window Manager    Microsoft Corporation    
dllhost.exe        2,664 K    6,356 K    4812    COM Surrogate    Microsoft Corporation    
CVHSVC.EXE        4,140 K    9,696 K    4488    Microsoft Office Client Virtualization Service     Microsoft Corporation    
conhost.exe        1,076 K    2,928 K    1532    Console Window Host    Microsoft Corporation    
audiodg.exe        15,516 K    16,860 K    2312    Windows Audio Device Graph Isolation     Microsoft Corporation    
atiesrxx.exe        1,732 K    4,652 K    932    AMD External Events Service Module    AMD    
atieclxx.exe        2,652 K    6,776 K    1276    AMD External Events Client Module    AMD    
armsvc.exe        1,244 K    4,140 K    1896    Adobe Acrobat Update Service    Adobe Systems Incorporated    

 


  • 0

Advertisements


#17
BrianR1976

BrianR1976

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 355 posts

It's frozen a couple of times since I did what you asked me to do. Im gonna reboot it now


  • 0

#18
Bruce1270

Bruce1270

    Trusted Helper

  • Malware Removal
  • 1,714 posts
Hi BrianR1976

OK. We'll move on with a few other things to try. I would like you to work through each one at a time, after each one try web browsing to see if the issue persists. If it does move on to the next one. If it doesn't stop and let me know which one has resolved the issue.

Note: Please do a backup of your PC prior to trying these.

Step1 - reset all web browsers back to default settings
  • Please see this guide on how to reset your web browsers.
  • Please follow the instructions for Chrome, FireFox and Internet Explorer.


    Step2 - Update Graphics driver

    Update your driver version to a later one from here.
    scroll down to the Catalyst Software Suite revision number 15.7.1 and click the Download button.
    Download to your desktop. Right click and Run as Administrator and follow the on screen install instructions.


    step3 - FSC scan


    SFC Scan

    1.Click on the Start button and in the search box, type Command Prompt
    2.When you see Command Prompt on the list, right-click on it and select Run as administrator
    3.When command prompt opens, copy and paste the following commands into it and press enter.

    sfc /scannow

    Please note: there is one space between the c and the /

    4.Let the scan complete.

    If you get the message "Windows Resource Protection did not find any integrity violations" this means all is OK. Carry on and do some browsing.

    If you get any other message then copy and paste the following command at the command prompt and press enter

    findstr /c:"[SR]" %windir%\Logs\CBS\CBS.log >"%userprofile%\Desktop\sfcdetails.txt"

    5.This will create a file, sfcdetails.txt on your Desktop.
    6.Type exit to close the command prompt window.
    7.Open file sfcdetails.txt and copy/paste this in your next reply.
    8.If the file is too large you can zip the file and attach to your post.


    Step4 - CHKDSK


    1.Click on the Start button and in the search box, type Command Prompt
    2.When you see Command Prompt on the list, right-click on it and select Run as administrator
    3.When command prompt opens, copy and paste the following commands into it, press enter after each

    Chkdsk /r C:

    4.A prompt then asks whether you want to schedule the disk to be checked the next time you restart the system. Click Yes to schedule this check.
    5.Reboot your system to let CHKDSK run.

    Once CHKDSK completes you can post the log using the following tool.

    ListChkdskResult.png Scan with ListChkDskResult

    Please download ListChkDskResult by SleepyDude and save it to your desktop.
    • Right-click on ListChkdskResult.png icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
    • A message about checking Windows Event Log will pop-up. Click OK.
    • Wait patiently until a notepad window will open. This won't take long.
    • The displayed logfile will be also saved to your desktop as ListChkDskResult.txt.
    Please include the content of this file in your next reply.

    Give the web browsing a try after posting the log. :)

    Let me know how it goes.

  • 0

#19
BrianR1976

BrianR1976

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 355 posts

I am off work Friday and Saturday I will do these on Friday. I will let you know what happens then. I'm not going to lose my bookmarks by resetting my browsers am I?

 

Edit: I ended up resetting my Chrome settings and surfed for about an hour and had no issues.


Edited by BrianR1976, 16 March 2017 - 12:34 AM.

  • 0

#20
Bruce1270

Bruce1270

    Trusted Helper

  • Malware Removal
  • 1,714 posts
Hi BrianR1976

No worries, take as long as you need and when you can fit in.
 

I'm not going to lose my bookmarks by resetting my browsers am I?


You can back these up by exporting them. For FF see this guide.

There is a separate link to how to do this for IE as well in the guide. :)
  • 0

#21
BrianR1976

BrianR1976

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 355 posts

So I have been using my reset Chrome browser (still haven't reset Firefox) for a couple hours now and no freezes.


  • 0

#22
Bruce1270

Bruce1270

    Trusted Helper

  • Malware Removal
  • 1,714 posts
That's good news.

I would still try doing FF to see how that goes. Might be best to give a day or so to fully test the browsing to see if the lock ups have gone. :)
  • 0

#23
BrianR1976

BrianR1976

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 355 posts

Ok I have reset Firefox. It's the browser I use the most so I will spend the most time with it. I never use IE should I even bother with that?


  • 0

#24
BrianR1976

BrianR1976

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 355 posts

Some things to report. I have been using a refreshed Firefox for a bit and am still getting freezes. One website, my local grocery store completely locked up Firefox requiring my use of Task Manager to close it. And as I was typing this all of my extensions just turned back on. Which could be why the crashes were happening. Should I remove them by hand?


  • 0

#25
Bruce1270

Bruce1270

    Trusted Helper

  • Malware Removal
  • 1,714 posts
Hi Brian1976

Yes give that a try, disable each on in turn and try browsing to see if you can identify which one is causing the issue.

I take it Chrome didn't cause any issues?

If you don't use IE then you can leave that one. :)
  • 0

Advertisements


#26
BrianR1976

BrianR1976

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 355 posts

Still no issues with Chrome. While I was using Firefox this evening I had a popup window appear saying to update Firefox and was redirected to something that was not Firefox. I closed the browser and then turned on the popup and ad blockers. In all the years of computer use I have never seen something like that before.

 

Edit: Chrome finally froze up on me tonight. As for the thing about the "update" after I reloaded Firefox it did in fact run an update so maybe it was legit. Whatever the case is I don't think the add-on's were the issue. Tomorrow I think I will move on to the next steps.


Edited by BrianR1976, 18 March 2017 - 12:50 AM.

  • 0

#27
Bruce1270

Bruce1270

    Trusted Helper

  • Malware Removal
  • 1,714 posts
Ok. Thanks for the update.

See how the next steps go. :)
  • 0

#28
BrianR1976

BrianR1976

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 355 posts

I ran Check Disk and then went to download the last part of step 4 and I get a file not found.


  • 0

#29
Bruce1270

Bruce1270

    Trusted Helper

  • Malware Removal
  • 1,714 posts
Hi BrianR1976

Sorry. That link appears to be broken now.

Try this..

Open a Powershell command prompt - Click on Start > In search box type Powershell. Double click on Powershell from the list of options it returns.

At the flashing prompt copy  and paste in the following command.

Get-EventLog -LogName Application -Source wininit | Select-Object -Last 1 -ExpandProperty message | out-file Desktop\chkdskresults.txt

This should create a text file called chkdskresults on your desktop.

Open the file and copy/paste the content into your next reply.

Thanks
  • 0

#30
BrianR1976

BrianR1976

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 355 posts


Checking file system on C:
The type of the file system is NTFS.
Volume label is OS.

A disk check has been scheduled.
Windows will now check the disk.                         

CHKDSK is verifying files (stage 1 of 5)...
  430592 file records processed.                                         

File verification completed.
  1705 large file records processed.                                   

  0 bad file records processed.                                     

  0 EA records processed.                                           

  107 reparse records processed.                                      

CHKDSK is verifying indexes (stage 2 of 5)...
  550806 index entries processed.                                        

Index verification completed.
  0 unindexed files scanned.                                        

  0 unindexed files recovered.                                      

CHKDSK is verifying security descriptors (stage 3 of 5)...
  430592 file SDs/SIDs processed.                                        

Cleaning up 3661 unused index entries from index $SII of file 0x9.
Cleaning up 3661 unused index entries from index $SDH of file 0x9.
Cleaning up 3661 unused security descriptors.
Security descriptor verification completed.
  60108 data files processed.                                           

CHKDSK is verifying Usn Journal...
  35559856 USN bytes processed.                                            

Usn Journal verification completed.
CHKDSK is verifying file data (stage 4 of 5)...
  430576 files processed.                                                

File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
  146778226 free clusters processed.                                        

Free space verification is complete.
CHKDSK discovered free space marked as allocated in the
master file table (MFT) bitmap.
CHKDSK discovered free space marked as allocated in the volume bitmap.
Windows has made corrections to the file system.

 959077375 KB total disk space.
 371203548 KB in 352746 files.
    196380 KB in 60109 indexes.
         0 KB in bad sectors.
    564539 KB in use by the system.
     65536 KB occupied by the log file.
 587112908 KB available on disk.

      4096 bytes in each allocation unit.
 239769343 total allocation units on disk.
 146778227 allocation units available on disk.

Internal Info:
00 92 06 00 03 4c 06 00 be 0f 0b 00 00 00 00 00  .....L..........
9d 1a 00 00 6b 00 00 00 00 00 00 00 00 00 00 00  ....k...........
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................

Windows has finished checking your disk.
Please wait while your computer restarts.

 


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP