Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Virus, worm, WTF?

Status
Not open for further replies.

TekKnO

ISP
Oct 7, 2002
2
US
This is really starting to irritate me....My computer started running really slow, so I formatted. After I formatted it was still just as slow if not slower. At that point I figured I had some bad hardware or a bad BIOS, but I tried reformatting one more time. To my amazement it ran perfectly, until I started installing stuff off my other drive. I clicked on my sound driver and a window flashed in the background which I found kinda weird, video driver did the same thing. I then clicked on NAV and a window also flashed in the background, that is when I thought it could be some sort of virus. I noticed that I have a lot of processes running with a fresh install of xp. I was watching my CPU usage and at one point it went up to 60% with nothing extra running! When I run NAV fully updated it finds nothing, I also downloaded "the cleaner" and it found nothing. I am stumped. Definetly seems like some sort of virus but AV's can't find it, help please :) I am running an AMD Athlon XP 1900+, GeForce 3 64MB vid, 256 PC2100 DDR RAM. Here are my processes, seems like a lot of this stuff shouldn't be running....BTW, I am not on a network.
alg.exe Not Available 1188 8 Not Available Not Available 10/7/2002 12:55 PM Not Available Not Available Not Available
csrss.exe Not Available 428 13 Not Available Not Available 10/7/2002 12:55 PM Not Available Not Available Not Available
defwatch.exe c:\program files\navnt\defwatch.exe 1204 8 204800 1413120 10/7/2002 12:55 PM 7.60.00.926 32.00 KB (32,768 bytes) 9/24/2001 7:59 AM
explorer.exe c:\windows\explorer.exe 1020 8 204800 1413120 10/7/2002 12:55 PM 6.00.2600.0000 (xpclient.010817-1148) 977.50 KB (1,000,960 bytes) 8/18/2001 6:00 AM
helpctr.exe c:\windows\pchealth\helpctr\binaries\helpctr.exe 2012 8 204800 1413120 10/7/2002 1:11 PM 5.1.2600.0 (xpclient.010817-1148) 676.00 KB (692,224 bytes) 10/7/2002 3:43 AM
helpsvc.exe c:\windows\pchealth\helpctr\binaries\helpsvc.exe 768 8 204800 1413120 10/7/2002 1:11 PM 5.1.2600.0 (xpclient.010817-1148) 678.00 KB (694,272 bytes) 10/7/2002 3:43 AM
iexplore.exe c:\program files\internet explorer\iexplore.exe 356 8 204800 1413120 10/7/2002 12:59 PM 6.00.2600.0000 (xpclient.010817-1148) 89.00 KB (91,136 bytes) 10/7/2002 3:43 AM
lsass.exe c:\windows\system32\lsass.exe 508 9 204800 1413120 10/7/2002 12:55 PM 5.1.2600.0 (xpclient.010817-1148) 11.50 KB (11,776 bytes) 8/18/2001 6:00 AM
msgsys.exe c:\windows\system32\msgsys.exe 148 8 204800 1413120 10/7/2002 12:55 PM 6.0.201.0940 E 14.00 KB (14,336 bytes) 9/18/2000 5:12 PM
msmsgs.exe c:\program files\messenger\msmsgs.exe 1952 8 204800 1413120 10/7/2002 12:55 PM 4.7.0104 1.44 MB (1,511,696 bytes) 9/19/2002 4:52 PM
nvsvc32.exe c:\windows\system32\nvsvc32.exe 1264 8 204800 1413120 10/7/2002 12:55 PM 6.13.10.2942 60.00 KB (61,440 bytes) 5/3/2002 10:06 AM
rtvscan.exe c:\program files\navnt\rtvscan.exe 1248 8 204800 1413120 10/7/2002 12:55 PM 7.60.00.926 444.00 KB (454,656 bytes) 9/24/2001 7:59 AM
services.exe c:\windows\system32\services.exe 496 9 204800 1413120 10/7/2002 12:55 PM 5.1.2600.0 (xpclient.010817-1148) 99.00 KB (101,376 bytes) 8/18/2001 6:00 AM
smss.exe c:\windows\system32\smss.exe 372 11 204800 1413120 10/7/2002 12:54 PM 5.1.2600.0 (xpclient.010817-1148) 44.50 KB (45,568 bytes) 8/18/2001 6:00 AM
spoolsv.exe c:\windows\system32\spoolsv.exe 1096 8 204800 1413120 10/7/2002 12:55 PM 5.1.2600.0 (XPClient.010817-1148) 50.00 KB (51,200 bytes) 8/18/2001 6:00 AM
svchost.exe c:\windows\system32\svchost.exe 684 8 204800 1413120 10/7/2002 12:55 PM 5.1.2600.0 (xpclient.010817-1148) 12.50 KB (12,800 bytes) 8/18/2001 6:00 AM
svchost.exe c:\windows\system32\svchost.exe 728 8 204800 1413120 10/7/2002 12:55 PM 5.1.2600.0 (xpclient.010817-1148) 12.50 KB (12,800 bytes) 8/18/2001 6:00 AM
svchost.exe Not Available 840 8 Not Available Not Available 10/7/2002 12:55 PM Not Available Not Available Not Available
svchost.exe Not Available 892 8 Not Available Not Available 10/7/2002 12:55 PM Not Available Not Available Not Available
system Not Available 4 8 0 1413120 Not Available Not Available Not Available Not Available
system idle process Not Available 0 0 Not Available Not Available Not Available Not Available Not Available Not Available
tca.exe c:\program files\the cleaner\tca.exe 1936 8 204800 1413120 10/7/2002 12:55 PM 2.5.0.2506 438.00 KB (448,512 bytes) 7/21/2002 4:49 PM
tcm.exe c:\program files\the cleaner\tcm.exe 1944 8 204800 1413120 10/7/2002 12:55 PM 1.0.0.1023 244.50 KB (250,368 bytes) 5/28/2002 7:19 AM
vptray.exe c:\program files\navnt\vptray.exe 1928 8 204800 1413120 10/7/2002 12:55 PM 7.60.00.926 72.00 KB (73,728 bytes) 9/24/2001 7:59 AM
winlogon.exe c:\windows\system32\winlogon.exe 452 13 204800 1413120 10/7/2002 12:55 PM 5.1.2600.0 (xpclient.010817-1148) 420.00 KB (430,080 bytes) 8/18/2001 6:00 AM
wmiapsrv.exe c:\windows\system32\wbem\wmiapsrv.exe 240 8 204800 1413120 10/7/2002 12:55 PM 5.1.2600.0 (xpclient.010817-1148) 114.50 KB (117,248 bytes) 10/7/2002 3:41 AM
wmiprvse.exe Not Available 1060 8 Not Available Not Available 10/7/2002 1:11 PM Not Available Not Available Not Available
 
Turn off your anti virus software and go to there is a "Free Online Scan" which is surprisingly fast. There is a link there to skip registration. It will prompt you to install some active X I believe it is the anti virus agent of some sort.

This way you can confirm there is now virus.
 
...what make are your HDD?,let me know so I can relate what your problem may be!
 
Try turning off some of the services. You'd be suprised on how many wothless process are taking up your resources. Black Viper is the man and can help you out with that.


Make sure that all of your hardware and software is XP compatible. I had the same problem on a Compaq Presario. It turns out that the video driver was causing my problems all along. I removed the manufactures driver and let XP install its default driver. All worked fine after that.Good luck.
 
A star for dcowboysr1...had lost the link to viper's page...Tanx1
 
Well I have been running XP with my current software for months with no problems. And I did try going to trend micro's site but it wouldn't finish downloading the software. I have since reset my bios, reformatted, and reinstalled windows. This time I did not install anything from the other drive and my computer is running great. There has got to be a new virus on my other drive the AV's aren't picking up on? What should I do about it, I don't want to format that drive because I have about 9 gigs of games, progs, music, etc...
 
For sure, to find out WHAT the virus is try the scan at

May I advocate FREE AVG from grisoft.com?
Used it a long time on many computers=no problems.
No, I work for myself. I love free code that works, that's all.
 
Can i at this point give 2 thumbs up for Grisofts AVG. No i dont work for them, but i do like a free virus checker (personal use) and free updates - remember a virus checker is only as good as the updates.

Cheers

Dan ----------------------------------------
There are 2 types of computer, the prototype and the obsolete!!
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top