Question Some sort of memory leak?

jtk459

Prominent
Aug 14, 2018
17
0
510
0
Everything was fine 2 days ago now suddenly my pc is at 30% memory usage with nothing running and even if I open nothing it slowly goes up until I get an error message from werfault.exe then I have to restart my pc.


COMPUTER
------------------------------------------------------------
CPU: Intel Core i7-5820K 3.3GHz 6-Core Processor
MOTHERBOARD: Asus RAMPAGE V EXTREME EATX LGA2011-3 Motherboard
MEMORY: G.Skill Ripjaws 4 series 32GB (8 x 4GB) DDR4-2666 Memory
STORAGE: Kingston SSDNow V300 Series 240GB 2.5" Solid State Drive,
Seagate Barracuda 3TB 3.5" 7200RPM Internal Hard Drive
VIDEO CARD: Gigabyte GeForce GTX 970 4GB WINDFORCE Video Card
POWER SUPPLY: Corsair RM 850W 80+ Gold Certified Fully-Modular ATX Power Supply
OPERATING SYSTEM: Microsoft Windows 10 Professional SP1 OEM (64-bit)
 

jtk459

Prominent
Aug 14, 2018
17
0
510
0
and the result is?
It said it had ~30min left then my display drivers stopped working and the scan just stopped and gave me no info when I went to check Nvidia it said I wasn't using my graphics card. had to restart to do anything after that.
 

jtk459

Prominent
Aug 14, 2018
17
0
510
0
I went through all the programs on my pc and found a couple I didn't remember installing and uninstalled them before starting the scan and haven't seen my memory usage spike in a while the most notable program I got rid of was something called Segurazo does anyone know if that program is known to cause problems?
 

jtk459

Prominent
Aug 14, 2018
17
0
510
0
and the result is?
Malwarebytes
www.malwarebytes.com

-Log Details-
Scan Date: 12/29/19
Scan Time: 9:43 AM
Log File: 63ddc786-2a5a-11ea-b14a-0862662752c8.json

-Software Information-
Version: 4.0.4.49
Components Version: 1.0.785
Update Package Version: 1.0.16927
License: Trial

-System Information-
OS: Windows 10 (Build 18362.535)
CPU: x64
File System: NTFS
User: JTK45-PC\JTK45

-Scan Summary-
Scan Type: Custom Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 1766967
Threats Detected: 37
Threats Quarantined: 0
Time Elapsed: 3 hr, 34 min, 33 sec

-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect

-Scan Details-
Process: 0
(No malicious items detected)

Module: 0
(No malicious items detected)

Registry Key: 14
PUP.Optional.InstallCore, HKU\S-1-5-21-523233458-3520325473-2091056160-1000\SOFTWARE\CSASTATS\ic, No Action By User, 480, 586068, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\SegOption, No Action By User, 1557, 757809, 1.0.16927, , ame,
PUP.Optional.WebDiscoverBrowser, HKLM\SOFTWARE\WebDiscoverBrowser, No Action By User, 1695, 253915, 1.0.16927, , ame,
PUP.Optional.WebDiscoverBrowser, HKLM\SOFTWARE\WOW6432NODE\WebDiscoverBrowser, No Action By User, 1695, 253915, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\MICROSOFT\TRACING\segurazoclient_RASAPI32, No Action By User, 1557, 709099, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\Segurazo, No Action By User, 1557, 730655, 1.0.16927, , ame,
PUP.Optional.WebDiscoverBrowser, HKU\S-1-5-21-523233458-3520325473-2091056160-1000\SOFTWARE\WebDiscoverBrowser, No Action By User, 1695, 253912, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\MICROSOFT\TRACING\segurazoclient_RASMANCS, No Action By User, 1557, 709099, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\MICROSOFT\TRACING\SegurazoService_RASAPI32, No Action By User, 1557, 709099, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\MICROSOFT\TRACING\SegurazoService_RASMANCS, No Action By User, 1557, 709099, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\MICROSOFT\TRACING\SegurazoUninstaller_RASAPI32, No Action By User, 1557, 709099, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\MICROSOFT\TRACING\SegurazoUninstaller_RASMANCS, No Action By User, 1557, 709099, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\MICROSOFT\WINDOWS\Segurazo, No Action By User, 1557, 730655, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\SegurazoSvc, No Action By User, 1557, 713771, 1.0.16927, , ame,

Registry Value: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Data Stream: 0
(No malicious items detected)

Folder: 2
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\USERS\JTK45\APPDATA\LOCAL\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}, No Action By User, 850, 542290, 1.0.16927, , ame,

File: 21
Adware.WinYahoo, C:\PROGRAMDATA\JZEDQ\DALEGO.EXE, No Action By User, 689, 758226, 1.0.16927, , ame,
PUP.Optional.WinYahoo.TskLnk, C:\USERS\JTK45\APPDATA\LOCAL\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HOWTOREMOVE\HOWTOREMOVE.HTML, No Action By User, 850, 542290, 1.0.16927, , ame,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\chromium-min.jpg, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\control panel-min-min.JPG, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\down.png, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\ff menu.JPG, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\ff search engine-min.png, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\hp-min ff.png, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\hp-min ie.png, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\search engine.gif, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\setup pages.gif, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\sp-min.png, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\start-min.jpg, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\up.png, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\caciniti, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\rimototat, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\uninst.exe, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\uninstp.dat, No Action By User, 850, 542290, , , ,
PUP.Optional.SearchManager, C:\USERS\JTK45\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NA6Y7OMX.DEFAULT\EXTENSIONS\{24436206-088D-4A1A-8D0E-CF93CA7A2D23}.XPI, No Action By User, 420, 733885, 1.0.16927, , ame,
Adware.InstallCore, C:\USERS\JTK45\DOWNLOADS\INKSCAPE-0.48.5-1-WIN32_2198155514.EXE, No Action By User, 481, 768623, 1.0.16927, , ame,
Adware.InstallCore, C:\USERS\JTK45\DOWNLOADS\INKSCAPE-0.48.5-1-WIN32_3160449409.EXE, No Action By User, 481, 768623, 1.0.16927, , ame,

Physical Sector: 0
(No malicious items detected)

WMI: 0
(No malicious items detected)


(end)
 

jtk459

Prominent
Aug 14, 2018
17
0
510
0
well after getting rid of it I haven't gone above the low to mid 30%'s so I assume that was the issue thanks for the help.
 

ASK THE COMMUNITY

TRENDING THREADS