Does this sound like malware, or system file corruption?

NobodyIsHome

New member
Local time
10:33 PM
Messages
19
Yesterday when I booted my computer, I got the "Windows is updating, do not turn off your computer (or whatever)" screen. Immediately I was concerned because I did not do any updates the day before, and I have updates set to notify, but not download, the updates. Eventually the log-in screen came up so I logged in and did what I was intending to do. Since I tend to be a little paranoid, when I was done I decided to do a Malwarebytes Anti-malware scan. I started the scan and left the room. Returning 5-10 minutes later, my computer was on the bios screen! I couldn't figure out how to get out of there, so I did a hard shutdown. I then restarted the computer and it booted normally (I mean other than getting the screen "Windows did not shut down properly"). I decided to try the scan again, but this time I first cleaned the drive using Ccleaner. After cleaning I noticed it deleted a larger amount than usual, about 750 megs. Upon close inspection, I notice one file was 700 megs, the CBS_log file under Windows System Log files. I did some quick research online and it seems the cbs log file is a Windows log file that lists system errors. Anyway, I did the MBAM scan and this time it completed, and came back clean. While doing the research on what is a cbs file, I also came across instructions on the "System File Check (SFC) scan." So I did that scan (verify only) and that scan came back "Windows did not find any integrity violations."

Being somewhat paranoid as already stated, today I did a whole C drive scan using 1) Windows Malicious Software Removal Tool; 2) MBAM (again); 3) Malwarebytes Anti-Rootkit; and 4) Avast; and all 4 came back clean.

So, as the header asks, does what happened to my computer yesterday sound like malware, or just a system file(s) corruption? It appears to me to be the latter, but I'd like the opinion of some experts (which I am not). Thanks.
 

My Computer My Computer

Computer type
PC/Desktop
OS
Windows 7 Home Premium 32-bit

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self Built
OS
Win 10 Pro x64
CPU
Intel I5-2500K @3.3GHz
Motherboard
Asrock P67 Extreme4
Memory
16GB G.Skill Ripjaws X (4x4GB)
Graphics Card(s)
EVGA GeForce 750 Ti SC 2GB
Sound Card
ASUS Xonar DG 5.1 Channels 24-bit 96KHz PCI Interface Sound
Monitor(s) Displays
auria eq2367
Screen Resolution
1920 x 1080
Hard Drives
250GB Samsung 850 EVO SSD
1TB WD Blue
1TB Hitachi
PSU
SeaSonic X 650W 80 Plus Gold
Case
Corsair Obsidian 750D
Cooling
Corsair H60, Three 140mm case fans
Keyboard
Logitech Wireless Keyboard K520
Mouse
Logitech Wireless Mouse M310
Internet Speed
Wave Broadband ~ 100 dn 5 up
Antivirus
Windows Defender, Malwarebytes Premium
Browser
Edge, IE11, Chrome
Other Info
Laptop specs: HP g7-1365dx /
CPU: AMD A6-3420M APU with Radeon(tm) HD Graphics /
RAM: Crucial 8Gb (2x4Gb) /
SSD: Crucial M4-CT128M4SSD2 ATA Device/ FW 000F /
GFX: AMD Radeon HD 6520G /
OS: Windows 10 Pro x64

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Lenovo
OS
Windows 7 Home Premium 64-Bit SP1
CPU
Intel Core i7 2600
Motherboard
Lenovo
Memory
8.00 GB Dual-Channel DDR3
Graphics Card(s)
1024MB GeForce GT 420
Sound Card
Intergrated Realtex ALC888S
Monitor(s) Displays
LG W40 series Widescreen
Screen Resolution
1920 by 1080 widescreen
Hard Drives
932GB Hitachi HDS TB
External drive 640 GB also
PSU
300W
Case
Tower
Cooling
yes came installed
Keyboard
Lenovo
Mouse
Laser wirless 5000
Antivirus
MBAM / Superantispyware pro paid for.
Browser
Google /
Other Info
PLDS DVD-RW DH16ABSH
He did a scan, it found no violations.
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Skylake Special #666
OS
Windows 10 Pro x64
CPU
Intel Core i7 6700K
Motherboard
Asus Sabertooth Z170 Mark 1
Memory
GSkill TridentZ RGB 16GB 3600 16-16-16-36
Graphics Card(s)
EVGA GTX 980 Ti SC x2
Sound Card
Realtek High Definition
Monitor(s) Displays
AOC G2460PG
Screen Resolution
1920 x 1080 144Hz
Hard Drives
Samsung 860 Pro 256GB, Seagate Barracuda 4TB x2
PSU
EVGA 1000 P2, EVGA White Custom Braided Cables
Case
Corsair Vengeance C70 Gunmetal Black
Cooling
Corsair H100i v2, Corsair ML120 x2, Thermal Grizzly Kryonaut
Keyboard
Logitech G910 Orion Spectrum
Mouse
Logitech G700s
Internet Speed
Verizon Fios Quantum Gateway 75/75
Antivirus
Windows Defender, Malwarebytes Free 3.8.3
Browser
Chrome
Other Info
Corsair SP120 x4, LG Blu-ray Drive, Durabrand HT-395 100 Watt Dolby Digital Amp, Corsair H2100 Wireless 7.1 Headset
It sounds like one of those gremlins for which we never find the cause. I think you have done the right things and there is nothing to worry about. I doubt that malware would start the system file checker - that just makes no sense.
 

My Computer My Computer

Computer Manufacturer/Model Number
HP, Dell, Gateway, Toshiba - 4 laptops and 2 desktops
OS
Vista, Windows7, Mint Mate, Zorin, Windows 8
CPU
from 1.6GHz Duo to i7
Monitor(s) Displays
2x HP w2207
Hard Drives
5x HDD, 7x SSD, 12x Externals
Keyboard
with trackball - no mices
Mouse
Trackball mice
Internet Speed
DSL 6000
so you did worry about " I'm having a weird Windows Update, i leave them but it comeback with BIOS screen without someone triggering it?

try this check list:
1. are you using laptop? does the F2 keys faulty?
2. did you use bios update program installed? maybe you did do something with the program before.
3. try to dump your bios to file and check the hash with the one you downloaded from manufacturer website and compare it. since setting is in the ram part, you will have same checksum with the bios with same version, if not.. maybe it is some advanced rootkit or virus entered your system.
of course if you don't want to be hassled with this part... just get updated bios and flash your bios with it.
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
CUSTOM
OS
Windows 7 Ultimate x64
CPU
Q6600
Motherboard
Gigabyte EP45 DS3R
Memory
8 GB mixed brand
Graphics Card(s)
Colorful GT260 216 sp
Hard Drives
7TB total
Antivirus
Baidu AV 2015
Browser
Waterfox, Firefox, Chrome, Opera
Last edited:

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom assembled by me :}
OS
Win-7-Pro64bit 7-H-Prem-64bit
CPU
i7-5930K 2nd i9-9940x both water blocked VRM's too
Motherboard
ASUS SABERTOOTH X99 2nd ASUS x299 Apex
Memory
Trident-z 3200C14 2nd Trident-z 3600C16
Graphics Card(s)
EVGA 1080ti ftw3 2nd Titan Xp both water blocked
Sound Card
Built-in Realtek
Monitor(s) Displays
1-AOC G2460PG 24"G-Sync 144Hz/ 2nd 1-ASUS VG248QE 24" 144Hz
Screen Resolution
1920 x 1080 144Hz
Hard Drives
2-Samsung M.2 Evo & Evo Plus
2-Samsung 850 EVO 500GB SSD's/ 3-2.5 W.D. Black 1tb-&3-1tb/3-3.5 WD Black 1tb hdd's
PSU
EVGA SuperNOVA 1000-P2 2nd 1200-P2
Case
2-Corsair Obsidian Series 450D Black ATX Mid Tower
Cooling
Custom water loops
Keyboard
Logitech G710+/ 2nd Logitech G910
Mouse
2-RedDragon M901 Perdition 16400 dpi Gaming mouse = wired
Internet Speed
Comcast Ping 19ms 89.31mbps download speed 6.12mbps upload
Antivirus
Malwarebytes Pro/ Superantispyware Pro
Browser
FireFox & Pale moon
Other Info
2nd ASUS X299 Apex/Intel i9-9940x with Custom water loop/7H-Prem-x64/Corsair 450D case/Ram Trident-z 3600C16 4x8gb / Samsung970Evo plus 500gb SSD/Dual ssd EZ swap evo/PSU EVGA SuperNova 1200w-P2 80+Platinum/GPU Titan Xp /8-ML-140 on push-pull on 2-280GTX rads
You don`t have windows update set to automatic do you ?
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Skylake Special #666
OS
Windows 10 Pro x64
CPU
Intel Core i7 6700K
Motherboard
Asus Sabertooth Z170 Mark 1
Memory
GSkill TridentZ RGB 16GB 3600 16-16-16-36
Graphics Card(s)
EVGA GTX 980 Ti SC x2
Sound Card
Realtek High Definition
Monitor(s) Displays
AOC G2460PG
Screen Resolution
1920 x 1080 144Hz
Hard Drives
Samsung 860 Pro 256GB, Seagate Barracuda 4TB x2
PSU
EVGA 1000 P2, EVGA White Custom Braided Cables
Case
Corsair Vengeance C70 Gunmetal Black
Cooling
Corsair H100i v2, Corsair ML120 x2, Thermal Grizzly Kryonaut
Keyboard
Logitech G910 Orion Spectrum
Mouse
Logitech G700s
Internet Speed
Verizon Fios Quantum Gateway 75/75
Antivirus
Windows Defender, Malwarebytes Free 3.8.3
Browser
Chrome
Other Info
Corsair SP120 x4, LG Blu-ray Drive, Durabrand HT-395 100 Watt Dolby Digital Amp, Corsair H2100 Wireless 7.1 Headset
derekimo wrote:
Did you check your update history?
Yes, the last thing listed was from 2 days before.

americancritic wrote:
have you tried to do a SFC /scannow
Yes, it came back okay.

AddRAM wrote:
You don`t have windows update set to automatic do you?
No, I have it set to check, but download it myself (not automatic).

whs wrote:
It sounds like one of those gremlins for which we never find the cause. I think you have done the right things and there is nothing to worry about.
That's what I'm thinking.

Thanks to everyone for your help/comments.
 

My Computer My Computer

Computer type
PC/Desktop
OS
Windows 7 Home Premium 32-bit
Back
Top