This is a read-only archive. No new posts or registrations. Privacy Page
Software

Frozen PC after Startup

6 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Hello,

I have been cleaning up a malware infection on the Spybot Forum and we ar having some issues with the fixing. Now one of our main troubles is that My PC freezes after start up when the comp tries anything (icons, start menu) and I can not usually even do ctrl-Alt-Del to shut down. I can only do a hard shut off.

Here is the link to the Spybot Forum with our past week of conversation:
http://forums.spybot.info/showthread.php?t=61595&page=1

Any help would be appreciated. My aide had told me now to try opening and shutting down Windows a bunch of times. So far I have had no luck, I cannot choose to shut down in normal mode as the comp freezes.

Pat
Here it is. I really dont think it is a startup issue, as this problem started after running and OTL session suggested by the Spybot Forum help. I have not added or removed any startup options during the fixing. I am just getting the freeze up all the time now and can only run in Safe mode. He mentioned it might be something about caches and to reboot a bunch of times but I still freeze everytime from normal mode. Even after waiting like 30 mins then hitting restart. Here is the log: Name,Value,Section,Enabled,Description,Company "AVG_TRAY","C:\Program Files\AVG\AVG10\avgtray.exe","Registry - Machine Run","1","AVG Tray Monitor (AVG Internet Security)","AVG Technologies CZ, s.r.o." "DivXUpdate",""C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW","Registry - Machine Run","1","DivX Update","" "Google Update",""C:\Documents and Settings\Staples\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c","Registry - User Run","1","Google Installer (Google Update)","Google Inc." "Malwarebytes' Anti-Malware",""C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray","Registry - Machine Run","1","Malwarebytes' Anti-Malware","Malwarebytes Corporation" "Seagate Dashboard","C:\Program Files\Seagate\Seagate Dashboard\MemeoLauncher.exe –silent –no_ui","Registry - Machine Run","1","Memeo Dashboard Launcher (Memeo Dashboard)","" "swg",""C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"","Registry - User Run","1","GoogleToolbarNotifier","Google Inc." Seagate is my portable harddrive
Hi PatSpencer and welcome to the WTT forums, Sorry to hear about the problems with your computer.
So that any technicians here can access your logfiles, here is the link to your malware topic over at Safer Networking:
http://forums.spybot.info/showthread.php?t=61595&page=4
Note Ken who has been advising on the clean has no objections to us making recommendations.

As you have also opened a topic over at PCPitstop here's a link to the topic there for information:
http://forums.pcpitstop.com/index.php?/top…s-from-cleanup/
The following thoughts are offered for your consideration:

1 It is clear from your logs that someone has installed and used peer to peer (P2P) filesharing applications on your computer, Utorrent etc. There are legitimate uses for P2P but sometimes they are also used to download and share copyright protected material. File sharing in this way is a major channel for the distribution of malicious material. Bad people will sometimes "seed" malicious code into files that look like ordinary data files, video or mp3 music files for example, but that are actually carrying a concealed and potentially damaging additional "payload" It is recommended therefore that these (P2P) filesharing applications are removed and any files downloaded through them where their provenance is not 100% should be deleted and then removed from the Recycle Bin.

2 It is also clear from your logs that at some time, your machine has been infected with a "backdoor" Trojan and rootkit…Combofix was run back in May last year and removed some malicous code. In this sub-forum here, we don't provide malware advice, but suffice it to say, that once a computer has become infected with these particular forms of infection, it is very difficult to ever have complete confidence in it, until it has been formatted and the operating system and applications reinstalled.
Hopefully whoever ran combofix for you warned you of the dangers and the urgent need to take immediate steps to notify your bank/financial institutions or other relevant organisations of the computer problems, change all your passwords, access codes etc using a known clean machine, (not the infected one) or other appropriate method, as the attackers may have had access to any thing on it.)

3 With infections, as above, it is not easy to determine what other damage may have been done to the operating systems and applications, although "freezing up" of the computer or lack of responsiveness is a fairly common situation with nasty infections like these.

4 On the WTT forums we do not often recommend formatting and reinstalling, as a solution to computer problems. We note however that both Joe C and TXRedneck over at PCPitstop have recommended this course of action to you, and taking into account all that we have seen in your topics at the 3 forums we agree with them that this is a sensible and wise step for you to take.

5 Your logs indicate that your machine may be an Acer and if so, many of these have a recovery partition that can often be accessed on boot up by pressing Alt+F10 and following onscreen directions. If you have such a partition on your machine then its worth considering using it as is able to restore your computer to its "out of the box" state…..
NOTE to ensure that malware is removed by the process if you are offered the choice of non destructive or destructive recovery then destructive is the one to choose. Everything on your computer will be cleared and it will be put back to its original condition as it was straight out of the box. This is a relatively quick procedure and will save you much time over formatting and installing manually.
Don't worry if your machine is not an Acer but consult your owner's manual for the procedural guide…post back if you need any help on this.

6 Please be aware that any backup made of your files AFTER you became infected should be regarded as potentially compromised. So it is recommended that you only restore files from your back up that were backed up, or copied PRIOR to the infection. If you are in any doubt then any backups that you cannot be sure are OK…should be disregarded.

7 Any flash drives, memory sticks, external hard drives, etc. that may have been used on this machine are best formatted just in case they are themselves harbouring malicious code…..you don't want to risk reinfection once you have formatted and reinstalled your main computer.

8 I f you have made a disc image using Ghost, Paragon, Acronis or one of the free disc imaging applications then you can use this to reimage your machine back to good order in very quick time PROVIDING you are sure to use a disc image made when the machine was running fast and smooth and free from virus or other malicious or undesirable elements.

Best of luck and post back if you need any clarification on any of this.
Regards
paws
Thank you for the input. But it is impossible to reformat at this time. My thesis and other important school projects are on my machine until I complete my studies at the end of April. Is there any other solution? My Thesis runs a dos based program with specific file locations that run stats with my data, it would be a huge hassle to have to redo all of these…. But of course a bigger hassle to lose everything… Pat
Strewth, with such important stuff on a PC, the last thing on my mind would be trying to fix the Operating System. My number one priority would be to transfer that data to removable media, either to a USB Hard Drive or disks ! Why not rescue (back-up) your important data, as by the sound of it your PC's OS might go pear shaped (more than it already is) at any time ? Cheers, Lee
I echo Lee's wise words to you. Whilst you are considering your back ups make sure you have at least one extra copy kept "off site" You should not be doing anything at all until your data and work has been fully protected. Regards paws

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI