Soft lockups and strange mouse cursor problem

Page 1 of 2 12 LastLast

  1. Posts : 9
    Windows 7 Ultimate 64 bit
       #1

    Soft lockups and strange mouse cursor problem


    Hi,

    My Windows 7 machine has recently (since earlier today) developed an annoying habit of locking up briefly (3-5 seconds usually) as well as having the mouse cursor disappearing/not defaulting back to the arrow pointer. The lockups don't force me to do a manual restart and it hasn't BSODed yet.

    My specs are:

    Windows 7 Ultimate 64bit
    12 gig DDR3 memory
    Intel i7 950 3.07GHz processor
    120 gig SSD main drive
    NVIDIA GeForce 460 GPU

    I ran a rootkit detector that found 2 issues and initially fixed the problem but it has since returned in the last few hours and makes life very difficult. I've updated my GFX driver and checked my SSD/HDD health, which is all ok.

    I've run out of ideas and hope someone can help me out!
      My Computer


  2. Posts : 6,830
    Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
       #2

    What program did you use to remove the rootkit and did it create a log afterwords ?
      My Computer


  3. Posts : 9
    Windows 7 Ultimate 64 bit
    Thread Starter
       #3

    It was the Sophos Virus Removal Tool and it doesn't appear to create a log.
      My Computer


  4. Posts : 6,830
    Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
       #4

    This is the location of the log

    C:\ProgramData\Sophos\Sophos Virus Removal Tool\Logs\SophosVirusRemovalTool.log
      My Computer


  5. Posts : 9
    Windows 7 Ultimate 64 bit
    Thread Starter
       #5

    2013-07-18 13:13:00 Sophos Virus Removal Tool version 2.4
    2013-07-18 13:13:00 Copyright (c) 2009-2013 Sophos Limited. All rights reserved.

    2013-07-18 13:13:00 This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

    2013-07-18 13:13:00 Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x100 PT=0x1 WOW64
    2013-07-18 13:13:00 Checking for updates...
    2013-07-18 13:13:02 Update progress: proxy server not available
    2013-07-18 13:13:07 Option all = no
    2013-07-18 13:13:07 Option recurse = yes
    2013-07-18 13:13:07 Option archive = no
    2013-07-18 13:13:07 Option service = yes
    2013-07-18 13:13:07 Option confirm = yes
    2013-07-18 13:13:07 Option sxl = yes
    2013-07-18 13:13:07 Option max-data-age = 35
    2013-07-18 13:13:07 Option EnableSafeClean = yes
    2013-07-18 13:13:07 Couldn't apply option 'EnableSafeClean' to the detection engine [0xa004020c].
    2013-07-18 13:13:07 Component SVRTcli.exe version 2.4
    2013-07-18 13:13:07 Component control.dll version 2.4
    2013-07-18 13:13:07 Component SVRTservice.exe version 2.4
    2013-07-18 13:13:07 Component engine\osdp.dll version 1.44.0.2100
    2013-07-18 13:13:07 Component engine\veex.dll version 3.45.0.2100
    2013-07-18 13:13:07 Component engine\savi.dll version 7.5.13.2100
    2013-07-18 13:13:07 Component rkdisk.dll version 1.5.30.0
    2013-07-18 13:13:07 Version info: Product version 2.4
    2013-07-18 13:13:07 Version info: Detection engine 3.45.0
    2013-07-18 13:13:07 Version info: Detection data 4.91
    2013-07-18 13:13:07 Version info: Build date 10/07/2013
    2013-07-18 13:13:07 Version info: Data files added 333
    2013-07-18 13:13:07 Version info: Last successful update (not yet updated)
    2013-07-18 13:13:14 Downloading updates...
    2013-07-18 13:13:14 Update progress: [I96736] Looking for package C1A903B2-E63E-483b-982D-04BB9C457C60 1.0
    2013-07-18 13:13:14 Update progress: [I49502] Found supplement SAVIW32 LATEST 4
    2013-07-18 13:13:14 Update progress: [I49502] Found supplement IDE492 LATEST
    2013-07-18 13:13:14 Update progress: [I49502] Found supplement IDE493 LATEST
    2013-07-18 13:13:14 Update progress: [I19463] Syncing product C1A903B2-E63E-483b-982D-04BB9C457C60 1
    2013-07-18 13:13:14 Update progress: [I19463] Syncing product SAVIW32 30
    2013-07-18 13:13:28 Update progress: [I19463] Syncing product IDE492 222
    2013-07-18 13:13:28 Update progress: [I19463] Syncing product IDE493 114
    2013-07-18 13:13:28 Installing updates...
    2013-07-18 13:13:33 Update successful
    2013-07-18 13:13:39 Option all = no
    2013-07-18 13:13:39 Option recurse = yes
    2013-07-18 13:13:39 Option archive = no
    2013-07-18 13:13:39 Option service = yes
    2013-07-18 13:13:39 Option confirm = yes
    2013-07-18 13:13:39 Option sxl = yes
    2013-07-18 13:13:39 Option max-data-age = 35
    2013-07-18 13:13:39 Option EnableSafeClean = yes
    2013-07-18 13:13:39 Couldn't apply option 'EnableSafeClean' to the detection engine [0xa004020c].
    2013-07-18 13:13:39 Component SVRTcli.exe version 2.4
    2013-07-18 13:13:39 Component control.dll version 2.4
    2013-07-18 13:13:39 Component SVRTservice.exe version 2.4
    2013-07-18 13:13:39 Component engine\osdp.dll version 1.44.0.2100
    2013-07-18 13:13:39 Component engine\veex.dll version 3.45.0.2100
    2013-07-18 13:13:39 Component engine\savi.dll version 7.5.13.2100
    2013-07-18 13:13:39 Component rkdisk.dll version 1.5.30.0
    2013-07-18 13:13:39 Version info: Product version 2.4
    2013-07-18 13:13:39 Version info: Detection engine 3.45.0
    2013-07-18 13:13:39 Version info: Detection data 4.91G
    2013-07-18 13:13:39 Version info: Build date 10/07/2013
    2013-07-18 13:13:39 Version info: Data files added 334
    2013-07-18 13:13:39 Version info: Last successful update 18/07/2013 13:13:33

    2013-07-18 13:30:13 Could not open C:\Boot\BCD
    2013-07-18 13:30:28 Could not open C:\hiberfil.sys
    2013-07-18 13:30:39 Could not open C:\pagefile.sys
    2013-07-18 13:42:57 Could not open C:\System Volume Information\{0eb417cb-ef9c-11e2-9b92-bcaec534bfce}{3808876b-c176-4e48-b7ae-04046e6cc752}
    2013-07-18 13:42:57 Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
    2013-07-18 13:42:57 Could not open C:\System Volume Information\{5b968c41-ef9e-11e2-a569-bcaec534bfce}{3808876b-c176-4e48-b7ae-04046e6cc752}
    2013-07-18 13:43:06 Could not open C:\Users\Dan\AppData\Local\Google\Chrome\User Data\Default\Current Session
    2013-07-18 13:43:06 Could not open C:\Users\Dan\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
    2013-07-18 13:43:06 Could not open C:\Users\Dan\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOCK
    2013-07-18 13:43:06 Could not open C:\Users\Dan\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
    2013-07-18 13:43:07 Could not open C:\Users\Dan\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\bmnlcjabgnpnenekpadlanbbkooimhnj\LOCK
    2013-07-18 13:43:07 Could not open C:\Users\Dan\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOCK
    2013-07-18 13:52:53 >>> Virus 'Mal/Generic-L' found in file C:\Users\Dan\Downloads\Fr.Cry.III.Updte.v104\Fr.Cry.III.Updte.v104\net.fix\ubiorbitapi_r2_loader.dll
    2013-07-18 13:52:53 >>> Virus 'Mal/Generic-L' found in file HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
    2013-07-18 13:56:01 Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
    2013-07-18 13:56:01 Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
    2013-07-18 13:59:32 Could not open C:\Windows\Temp\TMP0000BBFFDDDAAEEF391A873D
    2013-07-18 14:02:33 >>> Virus 'Mal/KeyGen-M' found in file D:\$RECYCLE.BIN\S-1-5-21-1713403455-1265810733-2519692852-1001\$R70R5P8.Keygen-BRD\Keygen\Keygen.exe
    2013-07-18 14:02:33 >>> Virus 'Mal/KeyGen-M' found in file D:\$RECYCLE.BIN\S-1-5-21-1713403455-1265810733-2519692852-1001\$R70R5P8.Keygen-BRD\Keygen\Keygen.exe
    2013-07-18 14:02:33 >>> Virus 'Mal/KeyGen-M' found in file HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
    2013-07-18 14:11:03 The following items will be cleaned up:
    2013-07-18 14:11:03 Mal/Generic-L
    2013-07-18 14:11:03 Mal/KeyGen-M
    2013-07-18 14:11:42 Threat 'Mal/Generic-L' has been cleaned up.
    2013-07-18 14:11:42 File "C:\Users\Dan\Downloads\Fr.Cry.III.Updte.v104\Fr.Cry.III.Updte.v104\net.fix\ubiorbitapi_r2_loader.dl l" belongs to malware 'Mal/Generic-L'.
    2013-07-18 14:11:42 File "C:\Users\Dan\Downloads\Fr.Cry.III.Updte.v104\Fr.Cry.III.Updte.v104\net.fix\ubiorbitapi_r2_loader.dl l" has been cleaned up.
    2013-07-18 14:11:42 Registry value "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA" belongs to malware 'Mal/Generic-L'.
    2013-07-18 14:11:42 Registry value "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA" has been cleaned up.
    2013-07-18 14:11:42 Removal successful
    2013-07-18 14:11:44 Threat 'Mal/KeyGen-M' has been cleaned up.
    2013-07-18 14:11:44 File "D:\$RECYCLE.BIN\S-1-5-21-1713403455-1265810733-2519692852-1001\$R70R5P8.Keygen-BRD\Keygen\Keygen.exe" belongs to malware 'Mal/KeyGen-M'.
    2013-07-18 14:11:44 File "D:\$RECYCLE.BIN\S-1-5-21-1713403455-1265810733-2519692852-1001\$R70R5P8.Keygen-BRD\Keygen\Keygen.exe" has been cleaned up.
    2013-07-18 14:11:44 Removal successful
    2013-07-18 14:11:44 Warning: failed to create SafeClean restore instance (0x80004002).


    2013-07-18 14:11:50 Scan completed.
    2013-07-18 14:11:50

    ------------------------------------------------------------

    2013-07-18 22:30:13 Sophos Virus Removal Tool version 2.4
    2013-07-18 22:30:13 Copyright (c) 2009-2013 Sophos Limited. All rights reserved.

    2013-07-18 22:30:13 This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

    2013-07-18 22:30:13 Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x100 PT=0x1 WOW64
    2013-07-18 22:30:13 Checking for updates...
    2013-07-18 22:30:16 Update progress: proxy server not available
    2013-07-18 22:30:18 Option all = no
    2013-07-18 22:30:18 Option recurse = yes
    2013-07-18 22:30:18 Option archive = no
    2013-07-18 22:30:18 Option service = yes
    2013-07-18 22:30:18 Option confirm = yes
    2013-07-18 22:30:18 Option sxl = yes
    2013-07-18 22:30:18 Option max-data-age = 35
    2013-07-18 22:30:18 Option EnableSafeClean = yes
    2013-07-18 22:30:18 Couldn't apply option 'EnableSafeClean' to the detection engine [0xa004020c].
    2013-07-18 22:30:18 Component SVRTcli.exe version 2.4
    2013-07-18 22:30:18 Component control.dll version 2.4
    2013-07-18 22:30:18 Component SVRTservice.exe version 2.4
    2013-07-18 22:30:18 Component engine\osdp.dll version 1.44.0.2100
    2013-07-18 22:30:18 Component engine\veex.dll version 3.45.0.2100
    2013-07-18 22:30:18 Component engine\savi.dll version 7.5.13.2100
    2013-07-18 22:30:18 Component rkdisk.dll version 1.5.30.0
    2013-07-18 22:30:18 Version info: Product version 2.4
    2013-07-18 22:30:18 Version info: Detection engine 3.45.0
    2013-07-18 22:30:18 Version info: Detection data 4.91G
    2013-07-18 22:30:18 Version info: Build date 10/07/2013
    2013-07-18 22:30:18 Version info: Data files added 334
    2013-07-18 22:30:18 Version info: Last successful update 18/07/2013 13:13:33
    2013-07-18 22:30:19 Downloading updates...
    2013-07-18 22:30:19 Update progress: [I96736] Looking for package C1A903B2-E63E-483b-982D-04BB9C457C60 1.0
    2013-07-18 22:30:19 Update progress: [I49502] Found supplement SAVIW32 LATEST 4
    2013-07-18 22:30:19 Update progress: [I49502] Found supplement IDE492 LATEST
    2013-07-18 22:30:19 Update progress: [I49502] Found supplement IDE493 LATEST
    2013-07-18 22:30:19 Update progress: [I19463] Syncing product C1A903B2-E63E-483b-982D-04BB9C457C60 1
    2013-07-18 22:30:19 Update progress: [I19463] Syncing product SAVIW32 30
    2013-07-18 22:30:19 Update progress: [I19463] Syncing product IDE492 222
    2013-07-18 22:30:20 Update progress: [I19463] Syncing product IDE493 117
    2013-07-18 22:30:20 Installing updates...
    2013-07-18 22:30:20 Update successful
    2013-07-18 22:30:24 Option all = no
    2013-07-18 22:30:24 Option recurse = yes
    2013-07-18 22:30:24 Option archive = no
    2013-07-18 22:30:24 Option service = yes
    2013-07-18 22:30:24 Option confirm = yes
    2013-07-18 22:30:24 Option sxl = yes
    2013-07-18 22:30:24 Option max-data-age = 35
    2013-07-18 22:30:24 Option EnableSafeClean = yes
    2013-07-18 22:30:24 Couldn't apply option 'EnableSafeClean' to the detection engine [0xa004020c].
    2013-07-18 22:30:24 Component SVRTcli.exe version 2.4
    2013-07-18 22:30:24 Component control.dll version 2.4
    2013-07-18 22:30:24 Component SVRTservice.exe version 2.4
    2013-07-18 22:30:24 Component engine\osdp.dll version 1.44.0.2100
    2013-07-18 22:30:24 Component engine\veex.dll version 3.45.0.2100
    2013-07-18 22:30:24 Component engine\savi.dll version 7.5.13.2100
    2013-07-18 22:30:24 Component rkdisk.dll version 1.5.30.0
    2013-07-18 22:30:24 Version info: Product version 2.4
    2013-07-18 22:30:24 Version info: Detection engine 3.45.0
    2013-07-18 22:30:24 Version info: Detection data 4.91G
    2013-07-18 22:30:24 Version info: Build date 10/07/2013
    2013-07-18 22:30:24 Version info: Data files added 337
    2013-07-18 22:30:24 Version info: Last successful update 18/07/2013 22:30:20

    2013-07-18 22:30:35 Scan completed.
    2013-07-18 22:30:35

    ------------------------------------------------------------
      My Computer


  6. Posts : 6,830
    Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
       #6

    Farbar Recovery Scan Tool


    64-Bit Version OS Farbar Recovery Scan Tool x64 <===== Download Link

    Drag the FRST64.exe from the Downloads folder to your Desktop

    Right click on FRST64.exe and choose

    When the tool opens click Yes on the disclaimer window .

    Press Scan button.

    FRST will let you know when the scan is complete and has written the FRST.txt to file

       Note
    The first time Farbar Recovery Scan Tool is run, it makes also another log Addition.txt


    Please upload both logs in your reply.(FRST.txt and Addition.txt)

    FRST.txt and Addition.txt will be on the Desktop

    Upload a File
    Click on the Go Advanced button under the Message box . Scroll down to Additional Options then click on Manage Attachments in the Attach Files sections . Click the Browse button locate the file then click on the Open button . In the Upload File from your Computer section click on the Upload button . Wait until it finishes uploading then close the window . Then click Submit Reply .
      My Computer


  7. Posts : 9
    Windows 7 Ultimate 64 bit
    Thread Starter
       #7

    There we go
    Soft lockups and strange mouse cursor problem Attached Files
      My Computer


  8. Posts : 6,830
    Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
       #8

    I don't see any malicious software . I do recommend removing Daemon Tools Lite and Spybot - Search & Destroy
      My Computer


  9. Posts : 9
    Windows 7 Ultimate 64 bit
    Thread Starter
       #9

    What problems could they be causing? Not had any issues with them on a system in the past.

    Any other suggestions as to what could be causing the problem?

    It has been unusually hot here recently and my case is a little short on ventilation as I can't run all my fans, could overheating cause this?
      My Computer


  10. Posts : 6,830
    Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
       #10

    Daemon Tools is known to cause BSODs on Windows 7 . Spybot is an old program that a lot of people don't use .

    Download this program

    RogueKiller for 32bit <==== Download Link

    RogueKiller for 64bit <==== Download Link

    Click on one of the links above that goes with your Windows 7 bit versions

    Save to the Desktop.

    Close all windows and browsers

    Right click on and choose

    Press: SCAN

    provide the RKreport.txt (Mode: Scan) in your reply.
      My Computer


 
Page 1 of 2 12 LastLast

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 10:20.
Find Us