Windows 7 Forums

Welcome to Windows 7 Forums. Our forum is dedicated to helping you find support and solutions for any problems regarding your Windows 7 PC be it Dell, HP, Acer, Asus or a custom build. We also provide an extensive Windows 7 tutorial section that covers a wide range of tips and tricks.

Windows 7: Persistant virus?

15 Oct 2013   #31

Windows 7 Home Premium 64-bit

Your doing great! The computer is getting cleaner.

How's it running, so far?

I'd like to see a new log from Farbar. Please, do not edit the results.

Please download Farbar Service Scanner (FSS) and run it on the computer with the issue.
  • Make sure the following options are checked:
  • Internet Services
  • Windows Firewall
  • System Restore
  • Security Center/Action Center
  • Windows Update
  • Windows Defender
  • Other Services
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.

My System SpecsSystem Spec
15 Oct 2013   #32

Windows 7 Home Premium 64Bit

Its running alot faster than it was! Cpu going for mid usage and suddenly dropping to 0 is still concerning me, will post results in a few
My System SpecsSystem Spec
15 Oct 2013   #33

Windows 7 Home Premium 64Bit

Farbar Service Scanner Version: 13-09-2013
Ran by Michael (administrator) on 15-10-2013 at 07:00:59
Running from "C:\Users\Michael\Desktop\Tools\Downloads"
Microsoft Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal

Internet Services:

Connection Status:
Localhost is accessible.
LAN connected.
Google IP is accessible. is accessible. is accessible.

Windows Firewall:

Firewall Disabled Policy:

System Restore:

System Restore Disabled Policy:

Action Center:

Windows Update:

Windows Autoupdate Disabled Policy:

Windows Defender:
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Demand. The default start type is Auto.
The ImagePath of WinDefend service is OK.
The ServiceDll of WinDefend service is OK.

Windows Defender Disabled Policy:
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]

Other Services:

File Check:
C:\Windows\System32\nsisvc.dll => MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit
C:\Windows\System32\dhcpcore.dll => MD5 is legit
[2013-10-11 01:24] - [2013-09-14 02:10] - 0497152 ____A (Microsoft Corporation) 314C17917AC8523EC77A710215012A65

C:\Windows\System32\drivers\tdx.sys => MD5 is legit
[2013-10-11 01:24] - [2013-09-08 03:30] - 1903552 ____A (Microsoft Corporation) 40AF23633D197905F03AB5628C558C51

C:\Windows\System32\dnsrslvr.dll => MD5 is legit
C:\Windows\System32\mpssvc.dll => MD5 is legit
C:\Windows\System32\bfe.dll => MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
C:\Windows\System32\SDRSVC.dll => MD5 is legit
C:\Windows\System32\vssvc.exe => MD5 is legit
C:\Windows\System32\wscsvc.dll => MD5 is legit
C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\System32\wuaueng.dll => MD5 is legit
C:\Windows\System32\qmgr.dll => MD5 is legit
C:\Windows\System32\es.dll => MD5 is legit
C:\Windows\System32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\System32\ipnathlp.dll => MD5 is legit
C:\Windows\System32\iphlpsvc.dll => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit

**** End of log ****
My System SpecsSystem Spec

15 Oct 2013   #34
Microsoft MVP

Windows 7 Ultimate X64 SP1

Well I guess you went on. did you run the Delete part of ADware cleaner? do it if not.

Instead of posting miles of text, next time in the Adavanced Reply (Big yellow button) press the icon that is the # symbol and paste the text between the [ code] TEXT HERE[ /code]
My System SpecsSystem Spec
15 Oct 2013   #35

Windows 7 Home Premium 64Bit

Yeah i did run the delete part of Adware, any ideas about the cpu usage issue?
My System SpecsSystem Spec
15 Oct 2013   #36
Microsoft MVP

Windows 7 Ultimate X64 SP1

In the start search, type in resmon to open resource monitor and click on CPU tab and look through the list to see what is using the CPU cycles.

This is the preferred, best way to upload an image to a post.
Screenshots and Files - Upload and Post in Seven Forums
You may also upload a photo or image as you would a file, without using the Snipping tool.
My System SpecsSystem Spec
15 Oct 2013   #37

Windows 7 Home Premium 64Bit

SVC host is using most memory, it seems to be on the processes list no less than 5 times
My System SpecsSystem Spec
15 Oct 2013   #38
Microsoft MVP

Windows 7 Ultimate X64 SP1

Svchoost.exe is a w7 process which run system functions in the back ground. Anything else look suspicious? what I wanted was a snip of the Resource Monitor.
My System SpecsSystem Spec
15 Oct 2013   #39

Windows 7 Home Premium 64Bit

there we go

Attached Thumbnails
Persistant virus?-untitled.png   Persistant virus?-untitled-1.png   Persistant virus?-untitled-2.png  
My System SpecsSystem Spec
15 Oct 2013   #40
Microsoft MVP

Windows 7 Ultimate X64 SP1

Thanks, I see nothing out of the ordinary there. try it for a day or two and see how it goes.
Sorry about my being vague.
My System SpecsSystem Spec

 Persistant virus?

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Similar help and support threads
Thread Forum
Having a persistant issue with picture thumbnails
I have visited many forums and I have tried multiple solutions but none have worked. my pictures are not showing a thumbnail preview. I have checked boxes in the system advanced settings, and in the folder options. I cannot figure this out. and before anyone asks, yes I have tried changing...
Music, Pictures & Video
Persistant bootmgr problems
Hi all I am currently having some very frustrating issues with the Windows 7 installation on my new PC, I cannot seem Windows to boot from my SSD (where my fresh windows installation is). I have done a fair amount of reading on the topic and it seems alot af people get this problem but none of...
Installation & Setup
Persistant BSOD for almost a year !
Hi folks, - x86 (32-bit) - retail version - Hardware from 2007 - Age of current OS installation - ca. 2 weeks Please help, this is doing my head in! Brief History Machine started Bluescreening after a new mobo was fitted whilst running Vista. I couldn't get it
BSOD Help and Support
Persistant BSOD's
I bought my laptop back in March and it ran fine until last month. I made no particular changes, but one day it suddenly began to crash often, especially while playing games. I took it back to the shop and after two weeks they said there was nothing wrong at all. After a few days, the BSOD's...
BSOD Help and Support
Persistant BSODs
I am trying to fix a custom built pc, about 7 months old. It has been suffering very persistent BSODs over the past few months (say, 4). Windows 7 Ultimate x64 Original and first installation of W7 Its a full retail version The hardware is about 7 months old, the OS installation too. ...
BSOD Help and Support
Persistant STOP: 124 Error
Hi built the family a new rig recently however i seem to be suffering a spate of STOP: 0X00000124 Hardware errors and can not find a way to stop them even after many driver changes. The problem usualy manifests itself during 3D gaming (however it has happened when playing Zynga Poker on FaceBook)....
BSOD Help and Support

Our Sites

Site Links

About Us

Find Us

Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

Designer Media Ltd

All times are GMT -5. The time now is 11:32.

Twitter Facebook Google+

Windows 7 Forums

Seven Forums Android App Seven Forums IOS App