• Hi there and welcome to PC Help Forum (PCHF), a more effective way to get the Tech Support you need!
    We have Experts in all areas of Tech, including Malware Removal, Crash Fixing and BSOD's , Microsoft Windows, Computer DIY and PC Hardware, Networking, Gaming, Tablets and iPads, General and Specific Software Support and so much more.

    Why not Click Here To Sign Up and start enjoying great FREE Tech Support.

    This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Solved Windows acting very strange

Status
Not open for further replies.

Gourde

PCHF Member
Dec 28, 2022
24
2
29
I got this computer a year ago, and this weird problem has only been slowly getting worse. On startup, I have to kick in some what I think are video drivers (Or cancelling them?) by putting on any video. I use the Discord gifs for this since if I interrupt the process on Firefox I have to redownload the whole browser (Weird...) At first I only had to do this once, and it took about 5-10 seconds to kick in, now I have to do it twice (sometimes) and it takes about 45-60 seconds to do so. Very bothersome. There's also the problem of Discord sometimes just turning into a black screen. It doesn't happen all the time. I haven't seen my issue anywhere else online, so I'm hoping I can find help here!
A couple additional things, my computer cannot go into sleep mode and this is a pirated version. However, my uncle is using the exact same version on his computer and it works just fine. If I have to get a genuine license to fix this I will, but it would be nice to save the money if possible. And to also know just what is wrong with my PC.

Here is a video of the issue
 
Could be drivers.
Hardware
software
firmware

all we can do is guess until you post system specs completely including the make and model of the PSU.

This will help with most of it you will still have to post the PSU info.

Download then run Speccy (free) and post the resultant url for us, details here, this will provide us with information about your computer hardware + any software that you have installed that may explain the present issue/s.

To publish a Speccy profile to the Web:

In Speccy, click File, and then click Publish Snapshot.

In the Publish Snapshot dialog box, click Yes to enable Speccy to proceed.

Speccy publishes the profile and displays a second Publish Snapshot. You can open the URL in your default browser, copy it to the clipboard, or close the dialog box.
 
Hi,

What video card do you have installed? Have you updated the drivers for your video card and updated Windows 10 to the latest version? If you open Control Panel and navigate to System and Security and then Power Options, is the power plan set to high performance?

Please download and run KillEmAll and run the application which will close all non essential processes on your system. See if the same behavior occurs after running this application which will bring the computer to a clean boot state.
 
Hi,

What video card do you have installed? Have you updated the drivers for your video card and updated Windows 10 to the latest version? If you open Control Panel and navigate to System and Security and then Power Options, is the power plan set to high performance?

Please download and run KillEmAll and run the application which will close all non essential processes on your system. See if the same behavior occurs after running this application which will bring the computer to a clean boot state.

I have an AMD Radeon Graphics card. The power performance is in the middle of saving and best performance. I just updated my Windows today. I will try that KillEmAll application and will get back to you!
 
I have an AMD Radeon Graphics card. The power performance is in the middle of saving and best performance. I just updated my Windows today. I will try that KillEmAll application and will get back to you!
Okay I did the KillEmAll app and I'm not sure if that did anything. I will try it again...
 
Okay I did the KillEmAll app and I'm not sure if that did anything. I will try it again...
Did it again with the Admin permissions, I think it might have worked! Now I am unsure, since it sometimes does it sometimes doesn't and I thought I fixed it earlier this year but was only good for about 2 weeks. Thank you both for the help!
 
That is no state to leave your computer in, once you reboot it will return to the same way it was. It is not a solution, only a diagnostic approach to the issue. Let's see what was running that caused the issue. First you must reboot your computer, then gather a log from KillEmAll.

Download KillEmAll to your desktop and unzip it there.
Right click KillEmAll run as admin.
Click enter button.
Then click L
Then hit enter key on your keyboard.
A log file will appear.
Copy and paste that into your reply here.
@Evan Omo will guide you from there.
 
That is no state to leave your computer in, once you reboot it will return to the same way it was. It is not a solution, only a diagnostic approach to the issue. Let's see what was running that caused the issue. First you must reboot your computer, then gather a log from KillEmAll.

Download KillEmAll to your desktop and unzip it there.
Right click KillEmAll run as admin.
Click enter button.
Then click L
Then hit enter key on your keyboard.
A log file will appear.
Copy and paste that into your reply here.
@Evan Omo will guide you from there.
It's a pretty long log, apologies if it clogs up anyone's screen.


Started on DESKTOP-KTL1RES at 2022-12-28 5:33:55 PM... (Running as Administrator)

Terminated=True "c:\windows\system32\driverstore\filerepository\u0384804.inf_amd64_41ca4ca6939f5e56\b384763\atiesrxx.exe"
Terminated=True "c:\windows\system32\amdfendrsr.exe"
Terminated=True "c:\windows\system32\driverstore\filerepository\u0384804.inf_amd64_41ca4ca6939f5e56\b384763\atieclxx.exe"
Terminated=FALSE "c:\program files\avast software\avast\wsc_proxy.exe"
Terminated=FALSE "c:\program files\avast software\avast\avastsvc.exe"
Terminated=True "c:\windows\system32\wlanext.exe"
Terminated=FALSE "c:\program files\avast software\avast\aswtoolssvc.exe"
Terminated=FALSE "c:\program files\avast software\avast\aswengsrv.exe"
Terminated=FALSE "c:\program files\avast software\avast\aswidsagent.exe"
Terminated=FALSE "c:\program files\avast software\avast\afwserv.exe"
Terminated=FALSE "c:\program files\avast software\cleanup\tuneupsvc.exe"
Terminated=True "c:\windows\system32\driverstore\filerepository\realtekservice.inf_amd64_c55c1d525a3fa2a2\rtkauduservice64.exe"
Terminated=True "c:\program files\nefarius software solutions\scptoolkit\scpservice.exe"
Terminated=FALSE "c:\program files\avast software\driver updater\driverupdsvc.exe"
Terminated=True "c:\program files\avast software\secureline vpn\vpnsvc.exe"
Terminated=True "c:\program files\windowsapps\microsoft.gamingservices_8.71.12001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe"
Terminated=True "c:\program files\windowsapps\microsoft.gamingservices_8.71.12001.0_x64__8wekyb3d8bbwe\gamingservices.exe"
Terminated=True "c:\windows\system32\searchindexer.exe"
Terminated=True "c:\windows\system32\wbem\unsecapp.exe"
Terminated=True "c:\program files (x86)\google\update\1.3.36.152\googlecrashhandler.exe"
Terminated=True "c:\program files (x86)\google\update\1.3.36.152\googlecrashhandler64.exe"
Terminated=True "c:\windows\systemapps\microsoft.windows.startmenuexperiencehost_cw5n1h2txyewy\startmenuexperiencehost.exe"
Terminated=True "c:\windows\systemapps\microsoft.windows.search_cw5n1h2txyewy\searchapp.exe"
Terminated=True "c:\program files\common files\microsoft shared\ink\tabtip.exe"
Terminated=True "c:\windows\systemapps\microsoftwindows.client.cbs_cw5n1h2txyewy\textinputhost.exe"
Terminated=True "c:\users\glitc\appdata\local\discord\app-1.0.9008\discord.exe"
Terminated=True "c:\users\glitc\appdata\local\discord\app-1.0.9008\discord.exe"
Terminated=True "c:\users\glitc\appdata\local\discord\app-1.0.9008\discord.exe"
Terminated=True "c:\users\glitc\appdata\local\discord\app-1.0.9008\discord.exe"
Terminated=True "c:\windows\system32\securityhealthsystray.exe"
Terminated=True "c:\windows\system32\driverstore\filerepository\realtekservice.inf_amd64_c55c1d525a3fa2a2\rtkauduservice64.exe"
Terminated=FALSE "c:\program files\avast software\avast\avastui.exe"
Terminated=True "c:\program files (x86)\microsoft\edge\application\msedge.exe"
Terminated=True "c:\program files (x86)\microsoft\edge\application\msedge.exe"
Terminated=True "c:\program files (x86)\microsoft\edge\application\msedge.exe"
Terminated=True "c:\program files (x86)\microsoft\edge\application\msedge.exe"
Terminated=True "c:\program files (x86)\microsoft\edge\application\msedge.exe"
Terminated=True "c:\program files\huiontablet\huiontablet.exe"
Terminated=True "c:\program files\huiontablet\huiontabletcore.exe"
Terminated=True "c:\program files\huiontablet\huionserver.exe"
Terminated=True "c:\windows\systemapps\shellexperiencehost_cw5n1h2txyewy\shellexperiencehost.exe"
Terminated=True "discord.exe"
Terminated=True "discord.exe"
Terminated=True "c:\program files (x86)\steam\steam.exe"
Terminated=True "c:\program files (x86)\steam\bin\cef\cef.win7x64\steamwebhelper.exe"
Terminated=True "c:\program files (x86)\steam\bin\cef\cef.win7x64\steamwebhelper.exe"
Terminated=True "c:\program files (x86)\common files\steam\steamservice.exe"
Terminated=True "c:\program files (x86)\steam\bin\cef\cef.win7x64\steamwebhelper.exe"
Terminated=True "c:\program files (x86)\steam\bin\cef\cef.win7x64\steamwebhelper.exe"
Terminated=FALSE "c:\program files\avast software\avast\avastui.exe"
Terminated=FALSE "c:\program files\avast software\avast\avastui.exe"
Terminated=FALSE "c:\program files\avast software\avast\avastui.exe"
Terminated=True "steamwebhelper.exe"
Terminated=True "steamwebhelper.exe"
Terminated=True "steamwebhelper.exe"
Terminated=True "c:\program files\windowsapps\microsoft.yourphone_1.22102.229.0_x64__8wekyb3d8bbwe\phoneexperiencehost.exe"
Terminated=True "c:\program files\mozilla firefox\firefox.exe"
Terminated=True "c:\program files\mozilla firefox\firefox.exe"
Terminated=True "c:\program files\mozilla firefox\firefox.exe"
Terminated=True "c:\program files\mozilla firefox\firefox.exe"
Terminated=True "c:\program files\mozilla firefox\firefox.exe"
Terminated=True "c:\program files\mozilla firefox\firefox.exe"
Terminated=True "c:\program files\mozilla firefox\firefox.exe"
Terminated=True "c:\program files\mozilla firefox\firefox.exe"
Terminated=True "c:\program files\mozilla firefox\firefox.exe"
Terminated=True "c:\program files\mozilla firefox\firefox.exe"
Terminated=True "c:\program files\mozilla firefox\firefox.exe"
Terminated=True "c:\windows\systemapps\microsoft.windows.search_cw5n1h2txyewy\searchapp.exe"
Terminated=True "c:\program files (x86)\origin\originwebhelperservice.exe"
Terminated=True "c:\program files (x86)\origin\origin.exe"
Terminated=True "c:\program files (x86)\origin\qtwebengineprocess.exe"
Terminated=True "c:\program files (x86)\origin\qtwebengineprocess.exe"
Terminated=True "c:\program files (x86)\origin\qtwebengineprocess.exe"
Terminated=True "c:\program files (x86)\origin\qtwebengineprocess.exe"
Terminated=True "c:\program files (x86)\origin\qtwebengineprocess.exe"
Terminated=True "c:\program files (x86)\origin\originclientservice.exe"
Terminated=True "c:\windows\system32\oobe\useroobebroker.exe"
Terminated=True "c:\program files\windowsapps\microsoft.zunevideo_10.22091.10031.0_x64__8wekyb3d8bbwe\video.ui.exe"
Terminated=True "c:\program files\windowsapps\microsoft.windows.photos_2022.30120.12006.0_x64__8wekyb3d8bbwe\microsoft.photos.exe"
Terminated=True "c:\program files\mozilla firefox\firefox.exe"
Terminated=True "firefox.exe"
Terminated=True "c:\windows\system32\smartscreen.exe"
Terminated=True "c:\program files (x86)\origin games\simcity\simcity\simcity.exe"
Terminated=True "firefox.exe"
Terminated=True "c:\windows\syswow64\dllhost.exe"
Terminated=True "searchprotocolhost.exe"
Terminated=True "searchfilterhost.exe"
Terminated=True "firefox.exe"
 
I'd suggest removing Avast and just using Crystal Security,. You will get the same if not better protection, and it will be lighter on the system. It's cloud based so really light on resources!!


Use Geek Uninstaller to remove Avast. Reboot then install Crystal.

Make sure Defender is disabled.

Download and run Startup lite.

Reset your Hosts file.


  1. Click here to download RstHosts v2.0\
  2. Save the file to your desktop.
  3. Right Click and Run as Administrator.
  4. Click on Restaurer, then click OK at the prompt.
  5. This will restore the default host file.


Open a notepad and copy the content of the code box below, paste into open notepad and save it to your desktop as clean.bat then right click on clean.bat and run as admin.


Do not copy the word Code:

Code:
@echo off
wmic /Namespace:\\root\default Path SystemRestore Call Enable "%SystemDrive%"
WMIC /Namespace:\\root\default Path SystemRestore Call CreateRestorePoint "BatchRestorePoint", 100, 10
fsutil resource setautoreset true c:\&fsutil usn deletejournal /d /n c:
powercfg.exe /setactive 381b4222-f694-41f0-9685-ff5bb260df2e
powercfg -hibernate off
bitsadmin /reset /allusers
nbtstat -R
nbtstat -RR
netsh winsock reset all
netsh winsock reset catalog
netsh winhttp reset proxy
netsh int tcp set heuristics disabled
netsh int tcp set global rss=enabled
netsh int tcp set global autotuninglevel=normal
netsh interface httpstunnel reset all
netsh interface portproxy reset all
netsh interface ip delete arpcache
netsh advfirewall reset
netsh advfirewall set allprofiles state On
wmic nicconfig where (IPEnabled=TRUE) call SetDNSServerSearchOrder ("1.1.1.1", "1.0.0.1")
%WINDIR%\SYSTEM32\lodctr.exe /R
%WINDIR%\SysWOW64\lodctr.exe /R
C:\Windows\SYSTEM32\lodctr.exe /R
C:\Windows\SysWOW64\lodctr.exe /R
DISM.exe /Online /Cleanup-Image /StartComponentCleanup
pause
DISM.exe /Online /Cleanup-image /Restorehealth
pause
del /s /q C:\Windows\SoftwareDistribution\download\*.*
del /s /q "%userprofile%\AppData\Local\Microsoft\Edge\User Data\Default\Cache\*.*"
del /s /q "%userprofile%\AppData\Local\Google\Chrome\User Data\Default\Cache\*.*"
del /s /q "%userprofile%\AppData\Local\Opera Software\Opera Stable\Cache\Cache_Data\*.*"
del /s /q "%userprofile%\AppData\Local\temp\*.*"
del /f /s /q %systemdrive%\*.tmp
del /f /s /q %systemdrive%\*.log
del /f /s /q %systemdrive%\*.chk
del /f /s /q %systemdrive%\recycled\*.*
del /f /s /q %windir%\*.bak
del /f /s /q %windir%\prefetch\*.*
ipconfig /flushdns
ipconfig /registerdns
sc stop RasAuto
sc stop RasMan
sc stop SessionEnv
sc stop TermService
sc stop UmRdpService
sc stop RemoteAccess
sc config RasAuto start= disabled
sc config RasMan start= disabled
sc config SessionEnv start= disabled
sc config TermService start= disabled
sc config UmRdpService start= disabled
sc config RemoteAccess start= disabled
sc stop sysmain
sc config sysmain start= disabled
sc stop iphlpsvc
sc config iphlpsvc start= disabled
sc stop DiagTrack
sc config DiagTrack start= disabled
sc stop dmwappushservice
sc config dmwappushservice start= disabled
sc stop WSearch
sc config WSearch start= disabled
sc stop lfsvc
sc config lfsvc start= disabled
del /s /q %ProgramData%\Microsoft\Diagnosis\ETLLogs\AutoLogger\AutoLogger-Diagtrack-Listener.etl
REG ADD HKLM\SOFTWARE\Policies\Microsoft\Windows\DataCollection /v AllowTelemetry /d 0 /t REG_DWORD /f
reg add HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SQMClient\parameters /v DisabledComponents /t REG_DWORD /d 0xFFFFFFFF
reg add hklm\system\currentcontrolset\services\tcpip6\parameters /v DisabledComponents /t REG_DWORD /d 0xFFFFFFFF
echo "" > %ProgramData%\Microsoft\Diagnosis\ETLLogs\AutoLogger\AutoLogger-Diagtrack-Listener.etl
sfc /scannow
pause
shutdown -r
Exit /B


Use O&O shutup ten with suggested and somewhat suggested settings enabled.

Disable windows update, and only enable it once a week to update on your terms not whenever microsoft feels you need an update.

Uninstall Useless to you windows apps with O&O App buster.
 
I'd suggest removing Avast and just using Crystal Security,. You will get the same if not better protection, and it will be lighter on the system. It's cloud based so really light on resources!!


Use Geek Uninstaller to remove Avast. Reboot then install Crystal.

Make sure Defender is disabled.

Download and run Startup lite.

Reset your Hosts file.


  1. Click here to download RstHosts v2.0\
  2. Save the file to your desktop.
  3. Right Click and Run as Administrator.
  4. Click on Restaurer, then click OK at the prompt.
  5. This will restore the default host file.


Open a notepad and copy the content of the code box below, paste into open notepad and save it to your desktop as clean.bat then right click on clean.bat and run as admin.


Do not copy the word Code:

Code:
@echo off
wmic /Namespace:\\root\default Path SystemRestore Call Enable "%SystemDrive%"
WMIC /Namespace:\\root\default Path SystemRestore Call CreateRestorePoint "BatchRestorePoint", 100, 10
fsutil resource setautoreset true c:\&fsutil usn deletejournal /d /n c:
powercfg.exe /setactive 381b4222-f694-41f0-9685-ff5bb260df2e
powercfg -hibernate off
bitsadmin /reset /allusers
nbtstat -R
nbtstat -RR
netsh winsock reset all
netsh winsock reset catalog
netsh winhttp reset proxy
netsh int tcp set heuristics disabled
netsh int tcp set global rss=enabled
netsh int tcp set global autotuninglevel=normal
netsh interface httpstunnel reset all
netsh interface portproxy reset all
netsh interface ip delete arpcache
netsh advfirewall reset
netsh advfirewall set allprofiles state On
wmic nicconfig where (IPEnabled=TRUE) call SetDNSServerSearchOrder ("1.1.1.1", "1.0.0.1")
%WINDIR%\SYSTEM32\lodctr.exe /R
%WINDIR%\SysWOW64\lodctr.exe /R
C:\Windows\SYSTEM32\lodctr.exe /R
C:\Windows\SysWOW64\lodctr.exe /R
DISM.exe /Online /Cleanup-Image /StartComponentCleanup
pause
DISM.exe /Online /Cleanup-image /Restorehealth
pause
del /s /q C:\Windows\SoftwareDistribution\download\*.*
del /s /q "%userprofile%\AppData\Local\Microsoft\Edge\User Data\Default\Cache\*.*"
del /s /q "%userprofile%\AppData\Local\Google\Chrome\User Data\Default\Cache\*.*"
del /s /q "%userprofile%\AppData\Local\Opera Software\Opera Stable\Cache\Cache_Data\*.*"
del /s /q "%userprofile%\AppData\Local\temp\*.*"
del /f /s /q %systemdrive%\*.tmp
del /f /s /q %systemdrive%\*.log
del /f /s /q %systemdrive%\*.chk
del /f /s /q %systemdrive%\recycled\*.*
del /f /s /q %windir%\*.bak
del /f /s /q %windir%\prefetch\*.*
ipconfig /flushdns
ipconfig /registerdns
sc stop RasAuto
sc stop RasMan
sc stop SessionEnv
sc stop TermService
sc stop UmRdpService
sc stop RemoteAccess
sc config RasAuto start= disabled
sc config RasMan start= disabled
sc config SessionEnv start= disabled
sc config TermService start= disabled
sc config UmRdpService start= disabled
sc config RemoteAccess start= disabled
sc stop sysmain
sc config sysmain start= disabled
sc stop iphlpsvc
sc config iphlpsvc start= disabled
sc stop DiagTrack
sc config DiagTrack start= disabled
sc stop dmwappushservice
sc config dmwappushservice start= disabled
sc stop WSearch
sc config WSearch start= disabled
sc stop lfsvc
sc config lfsvc start= disabled
del /s /q %ProgramData%\Microsoft\Diagnosis\ETLLogs\AutoLogger\AutoLogger-Diagtrack-Listener.etl
REG ADD HKLM\SOFTWARE\Policies\Microsoft\Windows\DataCollection /v AllowTelemetry /d 0 /t REG_DWORD /f
reg add HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\SQMClient\parameters /v DisabledComponents /t REG_DWORD /d 0xFFFFFFFF
reg add hklm\system\currentcontrolset\services\tcpip6\parameters /v DisabledComponents /t REG_DWORD /d 0xFFFFFFFF
echo "" > %ProgramData%\Microsoft\Diagnosis\ETLLogs\AutoLogger\AutoLogger-Diagtrack-Listener.etl
sfc /scannow
pause
shutdown -r
Exit /B


Use O&O shutup ten with suggested and somewhat suggested settings enabled.

Disable windows update, and only enable it once a week to update on your terms not whenever microsoft feels you need an update.

Uninstall Useless to you windows apps with O&O App buster.
Thank you for all this advice! I will do this in a bit, currently am eating supper. I greatly appreciate all the help, and how quick I got it too! Happy holidays!
 
  • Like
Reactions: Malnutrition
The internet issue was most likely the dns server, I set in the batch file. Find the best dns server for your machine with the guide below.


 
Re run kill em all when the problem occurs. Post new log, we can narrow down what the issue is.
Sadly when the problem occurs now I can't move my mouse at all! Do I instead run it before and after the problem? And sorry for the late responses, I do see these often however I am disabled so my energy levels are VERY low. I only respond when I have enough energy to do so! And to do all these steps too.
 
Create a new thread in the malware forum. We should check to see if there is any malware on your computer, before we do anything else.
I do not think this is malware, as this issue has been present since day one and I got it to stop once trying to get Dark Injections mods to work on Steam Spore. My uncle uses the exact same windows he installed on my computer and doesn't have these issues.
 
It may indeed be malware, we should check to be certain. Then we can go from there. It will not take long. Just a couple scans and we can go from there.
 
Status
Not open for further replies.