Windows 7 Freezes

Razake

Reputable
May 13, 2014
11
0
4,510
I am not very adept at these sort of things so forgive me.

My Windows 7 64-bit a few months ago began this new thing of when i was skyping it would freeze. The start menu would come up blank but still pull up, time would stay frozen the same. Hovering over running programs in the taskbar would show them but there was no x to close them like normal. My skype video would continue and sound would continue fine but any new things i'd try to open including the chat log on skype would be black. If i started task manager it would also be black. I'd have to ctrl + alt + del to log off or shut down in order to fix it.

I thought maybe it was skype but no it would do it without skype being opened if i was browsing on google chrome for a while. I'm honestly stumped. I scanned with kaspersky pure it found nothing. Malwarebytes found nothing.

My nvidia graphics card used to crash a lot when i was using skype or yahoo for video but then it stopped for a long time so i thought nothing of it because it never crashed while i was gaming.

I thought maybe it was windows so i made sure it was completely up to date. I ran a /sfc nothing came up. I did a chkdsk one very small bad sector comes up. I uninstalled Nvidia graphics drivers and re-installed them. I really despise the new Nvidia GeForce Experience because i've noticed no matter how many times i close it it likes to re-open on it's own. I made sure chrome was up to date and it doesn't have any extra plugins. I made sure flash was up to date. I cleaned up old windows update files did a defrag and cleaned out my history and un-needed crap.

I did notice this behavior started after i was watching something with VLC player but i didn't think that would trigger it to continue because it's happened ever since.

I've been banging my head against a wall lately trying to figure it out. My laptop is about 6 years old so i thought maybe this is a hardware failure at last but if it's something i can fix i'd like to.

Any ideas?

Thanks!
 

Razake

Reputable
May 13, 2014
11
0
4,510
I forgot to mention i did this already literally nothing comes up in the event viewer that really pin points it. Nothing at the exact time or right before it happens and nothing when it happens. But i'll try to get it saved next time and upload it right away.
 

Razake

Reputable
May 13, 2014
11
0
4,510
Nothing occurs in the event viewer as in no errors or anything. Logging out by forcing a log off and then logging back in 'fixes' it but it's inconvenient and annoying. I can't seem to find much of anything on it in particular like the way it is hanging - it's more of a hang than a freeze as i can still open things and move the mouse around - just all the windows i open are black anything i hover over is black and the start bar when clicked shows up blank and anything i hover over on task bar is lacking a red x close option. Also if i close something it looks like it's still open on the task bar and the time hangs frozen from when it started. Getting frustrated. No errors or anything come up on my hard drive sentinel either. -.-
 

Razake

Reputable
May 13, 2014
11
0
4,510
System

- Provider

[ Name] Microsoft-Windows-User Profiles Service
[ Guid] {89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}

EventID 1530

Version 0

Level 3

Task 0

Opcode 0

Keywords 0x8000000000000000

- TimeCreated

[ SystemTime] 2014-07-18T02:58:37.782124900Z

EventRecordID 228674

Correlation

- Execution

[ ProcessID] 1052
[ ThreadID] 1960

Channel Application

Computer Owner-PC

- Security

[ UserID] S-1-5-18


- EventData

Detail 2 user registry handles leaked from \Registry\User\S-1-5-21-3538140355-3997679232-1022331038-1000_Classes: Process 1948 (\Device\HarddiskVolume2\Program Files\TOSHIBA\FlashCards\TCrdMain.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000_CLASSES Process 1948 (\Device\HarddiskVolume2\Program Files\TOSHIBA\FlashCards\TCrdMain.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000_CLASSES


Only thing associated with the freeze that i can find

and this less than 4 seconds before

System

- Provider

[ Name] Microsoft-Windows-User Profiles Service
[ Guid] {89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}

EventID 1530

Version 0

Level 3

Task 0

Opcode 0

Keywords 0x8000000000000000

- TimeCreated

[ SystemTime] 2014-07-18T02:58:34.942919900Z

EventRecordID 228673

Correlation

- Execution

[ ProcessID] 1052
[ ThreadID] 1960

Channel Application

Computer Owner-PC

- Security

[ UserID] S-1-5-18


- EventData

Detail 17 user registry handles leaked from \Registry\User\S-1-5-21-3538140355-3997679232-1022331038-1000: Process 1948 (\Device\HarddiskVolume2\Program Files\TOSHIBA\FlashCards\TCrdMain.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000 Process 5116 (\Device\HarddiskVolume2\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000 Process 7092 (\Device\HarddiskVolume2\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000 Process 1948 (\Device\HarddiskVolume2\Program Files\TOSHIBA\FlashCards\TCrdMain.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts Process 1948 (\Device\HarddiskVolume2\Program Files\TOSHIBA\FlashCards\TCrdMain.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings Process 1948 (\Device\HarddiskVolume2\Program Files\TOSHIBA\FlashCards\TCrdMain.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000\Software\Policies Process 1948 (\Device\HarddiskVolume2\Program Files\TOSHIBA\FlashCards\TCrdMain.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000\Software\Microsoft\Windows\CurrentVersion\Explorer Process 5116 (\Device\HarddiskVolume2\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000\Software\Microsoft\Windows\CurrentVersion\Explorer Process 7092 (\Device\HarddiskVolume2\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000\Software\Microsoft\Windows\CurrentVersion\Explorer Process 5116 (\Device\HarddiskVolume2\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000\Software\Microsoft\Direct3D Process 1948 (\Device\HarddiskVolume2\Program Files\TOSHIBA\FlashCards\TCrdMain.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap Process 1948 (\Device\HarddiskVolume2\Program Files\TOSHIBA\FlashCards\TCrdMain.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings Process 1948 (\Device\HarddiskVolume2\Program Files\TOSHIBA\FlashCards\TCrdMain.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000\Software\Microsoft\Windows NT\CurrentVersion Process 5116 (\Device\HarddiskVolume2\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000\Software\Microsoft\Windows NT\CurrentVersion Process 1948 (\Device\HarddiskVolume2\Program Files\TOSHIBA\FlashCards\TCrdMain.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000\Software\Microsoft\Internet Explorer\Main\FeatureControl Process 1948 (\Device\HarddiskVolume2\Program Files\TOSHIBA\FlashCards\TCrdMain.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000\Software\Microsoft\Internet Explorer\Main Process 1948 (\Device\HarddiskVolume2\Program Files\TOSHIBA\FlashCards\TCrdMain.exe) has opened key \REGISTRY\USER\S-1-5-21-3538140355-3997679232-1022331038-1000\Software

But i think this is more associated with forcing the log off or shut down than anything...