Solved I believe I have found a virus or two by accident

BinkerNate

New member
I was curious as Malwarebytes, MSE, and even ESET didn't find anything like this, while SUPERAntiSpyware found adware but not these, though I'm not too sure: but I brought up start task manager and looked under processes and found two that weren't under my user name (just so you know, under "users" it's just me), and after looking them up on google, learned that they might be trojans. They are: csrss.exe, and winlogon.exe. Well, that last one isn't really a trojan, but wasn't under my user name so I brought it up here just in case.

I don't want to get in trouble, as I need to do some accounting-related stuff soon n my comp., so I need to know if they are trojans or not, and if they are, how to get rid of them right away. Any ideas, and could there be more? (Again, Malwarebytes, MSE, SUPERAnti and ESET didn't pick this up)
 

My Computer

Computer Manufacturer/Model Number
Gateway SX2802-07
OS
Windows 7
CPU
Intel Pentium E5300
Motherboard
WG43M
Graphics Card(s)
Intel(R) G45/G43 Express Chipset
Sound Card
Realtek High Definition Audio
Monitor(s) Displays
Acer S232HL
Keyboard
Standard PS/2
Mouse
HID-Compliant

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Home made Desktop
OS
Windows 10 Pro. 64/ version 1709 Windows 7 Pro/64
CPU
Intel i7-6800K @ 4.3
Motherboard
ASUS X-99 Deluxe II
Memory
Corsair Platinum 16 gig @2400
Graphics Card(s)
EVGA GTX 1070 OC
Monitor(s) Displays
Asus 27" LED LCD/VE278Q
Screen Resolution
1920-1080 or 1280-720 HDMI
Hard Drives
INTEL SSD 730-240 Gb Sata 3.0/
PSU
EVGA Platium 1200W
Case
Phanteks Luxe Tempered Glass 8 fans/ one radiator
Cooling
XSPC/ Water Cooled CPU
Keyboard
Das 4 Professional
Mouse
Logitech M705/MX Anywhere 2-S
Internet Speed
100 mbits
Antivirus
Microsoft Security Essentials/ Malwarebytes Premium 3.0/ SAS
Browser
I.E. 11 default/Firefox/ ISP Time Warner Cable/Spectrum
Other Info
LG BluRay Burner/
Sound system-KLipsch-THX/
Icy Dock ssd Hot Swap bays.
So, no then, right? I thought I would check
 

My Computer

Computer Manufacturer/Model Number
Gateway SX2802-07
OS
Windows 7
CPU
Intel Pentium E5300
Motherboard
WG43M
Graphics Card(s)
Intel(R) G45/G43 Express Chipset
Sound Card
Realtek High Definition Audio
Monitor(s) Displays
Acer S232HL
Keyboard
Standard PS/2
Mouse
HID-Compliant
Yeah, they are both good.
there are viruses that use names very very close to csrss and people confuse them for the real thing which might be why you read something confusing on the matter.
 

My Computer

Computer Manufacturer/Model Number
Insane hobo technologies. ;-)
OS
Windows 7 x64
CPU
Intel i7 2600k
Motherboard
Asrock z68 extreme 4 gen 3
Memory
G.skill Ripjaw 16gigs @ 1866
Graphics Card(s)
Nvidia gtx580 (evga)
Sound Card
Integrated HD audio + hdmi
Monitor(s) Displays
24" ASUS widescreen + 42" insignia
Screen Resolution
1080p (1920x1080)
Hard Drives
128 Samsung 830
256 Samsung 840
3 x 1tb storage drive (various)
1 western digital 1tb (eSATA)
1 Seagate 1tb (eSATA)
PSU
1 kilowatt SLI/Crossfire rated Silverstone modular
Case
NZXT Phantom + additional 220 fan
Cooling
Zalmann
Keyboard
Microsoft wireless 3000 (v2)
Mouse
MS - wireless 5000 (bluetrack)
Internet Speed
depends on if you ask me or my provider.
Other Info
The above information is provided as is, and the author assumes no responsibility for issues it may cause with your sanity or fanboyism.
You should really put more trust into your security software. If they say you do not have an infection, it is highly likely you do not have an infection. Second guessing is unproductive and doom to failure.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Alienware Aurora ALX R4
OS
Windows 10 Pro (x64)
CPU
Intel Core i7-3930K (3.2GHz - 4.5GHz)
Motherboard
Alienware Aurora-R4 x79
Memory
4x Samsung 4GB PC3-12800 DDR3 (16GB 1600MHz)
Graphics Card(s)
Nvidia Geforce GTX 690
Sound Card
SteelSeries Siberia Elite
Monitor(s) Displays
Dell UltraSharp U3011
Screen Resolution
2560x1600
Hard Drives
Samsung 850 Pro 256 GB, Seagate 1TB Desktop Hybrid HDD, 2x Western Digital 4TB Green HDD
PSU
875W Some Dell PSU <.<
Case
Alienware Aurora ALX
Cooling
Custom Liquid Cooling (EK CPU & GPU blocks) dual EK 480RAD
Keyboard
Logitech G710+ Mechanical
Mouse
Logitech G700s
Internet Speed
Verizon Fios (50 mbps average)
Other Info
Server: Intel NUC D54250WYK: i5-4250U, 16GB, 256 GB mSATA, Windows Server 2012 R2
Usually you can tell by the location of the process. E.g. the real csrss.exe has to be in C:\Windows\System32
 

My Computer

Computer Manufacturer/Model Number
HP, Dell, Gateway, Toshiba - 4 laptops and 2 desktops
OS
Vista, Windows7, Mint Mate, Zorin, Windows 8
CPU
from 1.6GHz Duo to i7
Monitor(s) Displays
2x HP w2207
Hard Drives
5x HDD, 7x SSD, 12x Externals
Keyboard
with trackball - no mices
Mouse
Trackball mice
Internet Speed
DSL 6000
Yup, its there. Thanks guys, problem's solved.
 

My Computer

Computer Manufacturer/Model Number
Gateway SX2802-07
OS
Windows 7
CPU
Intel Pentium E5300
Motherboard
WG43M
Graphics Card(s)
Intel(R) G45/G43 Express Chipset
Sound Card
Realtek High Definition Audio
Monitor(s) Displays
Acer S232HL
Keyboard
Standard PS/2
Mouse
HID-Compliant
crss.exe and winlogon.exe are both valid system files, neither is a Trojan if both reside in System32.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Alienware Aurora ALX R4
OS
Windows 10 Pro (x64)
CPU
Intel Core i7-3930K (3.2GHz - 4.5GHz)
Motherboard
Alienware Aurora-R4 x79
Memory
4x Samsung 4GB PC3-12800 DDR3 (16GB 1600MHz)
Graphics Card(s)
Nvidia Geforce GTX 690
Sound Card
SteelSeries Siberia Elite
Monitor(s) Displays
Dell UltraSharp U3011
Screen Resolution
2560x1600
Hard Drives
Samsung 850 Pro 256 GB, Seagate 1TB Desktop Hybrid HDD, 2x Western Digital 4TB Green HDD
PSU
875W Some Dell PSU <.<
Case
Alienware Aurora ALX
Cooling
Custom Liquid Cooling (EK CPU & GPU blocks) dual EK 480RAD
Keyboard
Logitech G710+ Mechanical
Mouse
Logitech G700s
Internet Speed
Verizon Fios (50 mbps average)
Other Info
Server: Intel NUC D54250WYK: i5-4250U, 16GB, 256 GB mSATA, Windows Server 2012 R2
Back
Top