Jump to content

wininit.exe inbound attacks and svchost.exe


Recommended Posts

Hi there, I have recently been having troubles with my pc, for a little while now, I have seen inbound attacks from wininit.exe, and many instances of svchost.exe running, also when i am running a game it will have a "jittery" feel to it, this happens every second time I boot the pc, however I might be wrong, that is just how it appears to me

 

this occurred before 

 

https://forums.malwarebytes.org/index.php?/topic/150256-svchost-causing-my-gpu-to-crash/#entry839170  <--- here is my previous post about this, I decided to uninstall Java as I had heard that the virus that pretends to be svchost is java based, I could not reply as my pc crashed entirely with only my GPU fans running when I would boot up, after some tests at my local pc shop, they assumed it was the ram and motherboard and replaced them as well as formatting and re-installing windows, I have Java, but I am afraid to uninstall it as this might happen again

 

 

I have scanned with Premium Malware bytes, AVG, MSE, HitmanPro

 

 

please help me

Addition.txt

FRST.txt

Link to post
Share on other sites
  • 4 weeks later...

it happened again a few days ago, I decided to do the Windows 7 upgrade trick up repairing the system, after some issues with booting up the system as updates did not work, it is now working, right now I have 12 instances of svchost going, but is seems to lead to the same 27kb file in system32, also I am still having graphics issues with some programs, which might be incompatible hardware or a virus of some sort. I didn't go anywhere unsafe or use p2p or anything, and the fact that MalwareBytes doesn't pick it up isn't pleasant (neither does avast, or any other program)

 

 

my specs are thus

 

fx-4300 amd processor

 

nvidia 760 gigabyte OC

 

1x 8 Gb sticks of ram

 

Windows 7 64 bit

 

on a sandisk 128gb ssd

 

I think I was told that perhaps my motherboard and cpu might have compatibility issues, but I have no idea, and it could be a virus for all I know, if you want video of my graphical issues, let me know

Link to post
Share on other sites
  • Staff

I would like you to rerun FRST for me and send me a new report

If you cannot find it here is the link again.

Please download the Farbar Recovery Scan Tool from here:

http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/ - Click on the BLUE download buttons only - ( The GREEN ones are ads)

save it to your desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

Double-click to run it.

When the tool opens click Yes to disclaimer.

I would like for you to use these settings

Under whitelist I would like everything to be checked

Under optional scan

Only have Addition.txt select (the other three blank)

Press the Scan button.

It will make a two logs (FRST.txt) and (Addition.txt) in the same directory the tool is run from.

Please attach both reports to your reply to me

Link to post
Share on other sites

I would like you to rerun FRST for me and send me a new report

If you cannot find it here is the link again.

Please download the Farbar Recovery Scan Tool from here:

http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/ - Click on the BLUE download buttons only - ( The GREEN ones are ads)

save it to your desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

Double-click to run it.

When the tool opens click Yes to disclaimer.

I would like for you to use these settings

Under whitelist I would like everything to be checked

Under optional scan

Only have Addition.txt select (the other three blank)

Press the Scan button.

It will make a two logs (FRST.txt) and (Addition.txt) in the same directory the tool is run from.

Please attach both reports to your reply to me

Addition.txt

FRST.txt

Link to post
Share on other sites
  • Staff

Hello Zelentron

I thought I had replied to you - very sorry

Nothing is jumping in the reports but we can do some more checking anyway.

These are the programs I would like you to run next, if you have any problems with one of these just skip it and move on to the next one.

-AdwCleaner-

Please download AdwCleaner by Xplode onto your desktop.

  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Scan.
  • After the scan is complete click on "Clean"
  • Confirm each time with Ok.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the content of that logfile with your next answer.
  • You can find the logfile at C:\AdwCleaner[s1].txt as well.
-Junkware-Removal-Tool-

Please download Junkware Removal Tool to your desktop.

  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
When they are complete let me have the two reports and let me know how things are running.

Gringo

Link to post
Share on other sites

nothing has really changed, the jittery-ness with some games is still there, I am now having issues with chrome being very very slow and at times not registering my searches

 

 

also with the AdwCleaner file there was no [s1] file only the ones that had [s0] this file was created one minte after the first one, after I ran the program 

JRT.txt

AdwCleanerS0.txt

Link to post
Share on other sites
  • Staff

Hello Zelentron

We need to reset Chrome back to defaults to completely clear out what is going on.

We can keep the bookmarks by exporting them - Export Bookmarks

Then I need you to go Google Sync and sign into your account

scroll down untill you see the "Stop and Clear" button and click on button

At the prompt click on "Ok"

Now we need to uninstall chrome

I want you to uninstall Chrome and if asked about user data or settings then remove this also

restart the computer and reinstall chrome, You can download The latest version from here - Google Chrome

After you have Chrome reinstalled please check things out and let me know how it is doing.

Gringo

Link to post
Share on other sites
  • Staff

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites
Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    No registered users viewing this page.

Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.