Computer Freezing, Shuts Down By It Self

  1. #1
    osabz is offline Newbie

    Computer Freezing, Shuts Down By It Self

    Computer Freezing, Shuts Down By It Self

    Hi

    The computer at times will just shut down by its self for no reason, also sometimes it freezes and shuts down or just freezes. It is also slower than usual.

    Logfile of HijackThis v1.99.1
    Scan saved at 10:43:18 AM, on 11/18/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    D:\WINDOWS\System32\smss.exe
    D:\WINDOWS\system32\winlogon.exe
    D:\WINDOWS\system32\services.exe
    D:\WINDOWS\system32\lsass.exe
    D:\WINDOWS\system32\Ati2evxx.exe
    D:\WINDOWS\system32\svchost.exe
    D:\WINDOWS\System32\svchost.exe
    D:\WINDOWS\system32\spoolsv.exe
    D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    D:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
    D:\WINDOWS\eHome\ehRecvr.exe
    D:\WINDOWS\eHome\ehSched.exe
    D:\WINDOWS\system32\ZoneLabs\vsmon.exe
    D:\WINDOWS\system32\Ati2evxx.exe
    D:\WINDOWS\Explorer.EXE
    D:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
    D:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    D:\Documents and Settings\amr\Desktop\[[Amr]]\desktop\wlmlite_8_0_812-msg****.exe
    D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
    D:\WINDOWS\system32\dllhost.exe
    D:\WINDOWS\system32\wuauclt.exe
    D:\Program Files\Mozilla Firefox\firefox.exe
    D:\Documents and Settings\amr\Desktop\hijackthis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
    R3 - URLSearchHook: (no name) - {A8B28872-3324-4CD2-8AA3-7D555C872D96} - (no file)
    O2 - BHO: (no name) - {CDFCD6E3-3195-4EA3-A224-8E36F2A9E770} - D:\Program Files\Online Services\meboniwap.dll (file missing)
    O4 - HKLM\..\Run: [ATIPTA] D:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
    O4 - HKLM\..\Run: [Zone Labs Client] D:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    O4 - HKCU\..\Run: [msnmsgr] "D:\Documents and Settings\amr\Desktop\[[Amr]]\desktop\wlmlite_8_0_812-msg****.exe" /background
    O4 - Global Startup: BlueSoleil.lnk = D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Ãâ·Ñ¾«²ÊÊÓÆµ³¬Á÷³©ÔÚÏß¹Û¿´ - {022C4009-5283-4365-97BF-144054B40E2E} - http://itv.mop.com (file missing)
    O9 - Extra 'Tools' menuitem: ²¥°ÔµçÊÓ - {022C4009-5283-4365-97BF-144054B40E2E} - http://itv.mop.com (file missing)
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
    O17 - HKLM\System\CCS\Services\Tcpip\..\{FC42A2FE-BE34-4660-94C6-6ADC49767646}: NameServer = 212.135.1.36 195.40.1.36
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - D:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - D:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: BlueSoleil Hid Service - Unknown owner - D:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - D:\WINDOWS\system32\ZoneLabs\vsmon.exe


  2. #2
    VopThis is offline Senior Member (Canada)
    Do you know what the following file is for?:

    D:\Documents and Settings\amr\Desktop\[[Amr]]\desktop\wlmlite_8_0_812-msg****.exe


    If not, search for the file pattern wlmlite_8_0_812-msg****.exe (Start>Search) and submit all files found to VirusTotal for their immediate feedback and post the results back here:

    http://www.virustotal.com/




    Clean out TEMPORARY FILES procedures:
    To clean your temp folder, recycle bin, etc..please download this free tool:

    CCleaner http://www.ccleaner.com/downloadbuilds.asp

    Install Options:
    • Don't install any Toolbars, or other programs, should it ask you!
    • Just uncheck the option of installing the Yahoo toolbar.

    It will put a shortcut on your Desktop.

    Do not run CCleaner until requested later.




    Run CCleaner in SAFE MODE (reboot tapping the F8 key after the beep).
    Select the ‘Cleaner’ BUTTON option (top LEFT), if not already selected. Use the ’Windows’ TAB up front by default.
    • Uncheck ‘Cookies’ option (advisable)
    • Optionally, Uncheck ‘Recently Typed URLs’ option (potentially still useful)
    • Click the ‘Analyse’ button.
    • Thereafter, click ‘Run Cleaner’ after you have reviewed what it proposes to clean.




    There is no running antivirus tool evident on your PC.

    Here are some good free Antivirus programs that are decent, including AVG and Avast!. Download one of them and run a full scan:
    AVG: http://free.grisoft.com/doc/1
    Avast: http://www.avast.com/eng/avast_4_home.html



    Post a revised HijackThis log and any new obsewrvations.
    Last edited by VopThis; 18-11-2006 at 06:02 PM.

  3. #3
    osabz is offline Newbie
    wlmlite is windows live messenger program nothing harmful

    Logfile of HijackThis v1.99.1
    Scan saved at 10:35:58 PM, on 11/18/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    D:\WINDOWS\System32\smss.exe
    D:\WINDOWS\system32\winlogon.exe
    D:\WINDOWS\system32\services.exe
    D:\WINDOWS\system32\lsass.exe
    D:\WINDOWS\system32\Ati2evxx.exe
    D:\WINDOWS\system32\svchost.exe
    D:\WINDOWS\System32\svchost.exe
    D:\WINDOWS\system32\spoolsv.exe
    D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    D:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
    D:\WINDOWS\eHome\ehRecvr.exe
    D:\WINDOWS\eHome\ehSched.exe
    D:\WINDOWS\system32\ZoneLabs\vsmon.exe
    D:\WINDOWS\system32\Ati2evxx.exe
    D:\WINDOWS\Explorer.EXE
    D:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
    D:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    D:\Documents and Settings\amr\Desktop\[[Amr]]\desktop\wlmlite_8_0_812-msg****.exe
    D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
    D:\WINDOWS\system32\dllhost.exe
    D:\WINDOWS\system32\wuauclt.exe
    D:\Program Files\Mozilla Firefox\firefox.exe
    D:\Documents and Settings\amr\Desktop\hijackthis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
    R3 - URLSearchHook: (no name) - {A8B28872-3324-4CD2-8AA3-7D555C872D96} - (no file)
    O2 - BHO: (no name) - {CDFCD6E3-3195-4EA3-A224-8E36F2A9E770} - D:\Program Files\Online Services\meboniwap.dll (file missing)
    O4 - HKLM\..\Run: [ATIPTA] D:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
    O4 - HKLM\..\Run: [Zone Labs Client] D:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    O4 - HKLM\..\Run: [ppmate] D:\Program Files\PPMate\PPMate\ppmate.exe -autoplay
    O4 - HKCU\..\Run: [msnmsgr] "D:\Documents and Settings\amr\Desktop\[[Amr]]\desktop\wlmlite_8_0_812-msg****.exe" /background
    O4 - Global Startup: BlueSoleil.lnk = D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
    O17 - HKLM\System\CCS\Services\Tcpip\..\{FC42A2FE-BE34-4660-94C6-6ADC49767646}: NameServer = 212.135.1.36 195.40.1.36
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - D:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - D:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: BlueSoleil Hid Service - Unknown owner - D:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - D:\WINDOWS\system32\ZoneLabs\vsmon.exe

  4. #4
    VopThis is offline Senior Member (Canada)
    Save 20% on AVG Internet Security 2012 Suite!
    How soon before your PC freezes or shuts down? If it takes a while, this could be indicative of overheating issues and/or inadequate cooling (CPU, motherboard, video, etc.).


    Also and ideally, we need to get a full antivirus scan to eliminate that as a possible issue (time permitting) - see recommended links in my last post. AVG Anti-Spyware is not the same tool as AVG Antivirus Tool.


    Please do a Disk Health check:
    http://www.pcpitstop.com/pcpitstop/diskhealth.asp

    This might help to identify cross-linked files or excessive fragmentation. NOTE: You should always run 'scandisk' before attempting a 'defrag' if issues are identified by the scan. I will provide instructions if you require them.

+ Reply to Thread