Jump to content

i have fallen victim to a late night flurry of clicking the accept button on a 3rd party download... i am now reaping the consequences. 

 

i seem to have a virus. its attached to the app svchost.exe (local) which will sparadictly use 50% of my CPU and grab 1.5GB of RAM. 

 

i checked the file location and it goes back to *gulp* system32. 

 

i do NOT want to play around in that dark hell hole of files. 

 

if i "end the process" cpu usage goes away and im fine. BUT if i end the RAM process then everything freaks out and the Areo appearance disappears and reverts to basic.

 

any ideas? 

 

i honestly have no idea which program this could be tied to.

Big Bertha3570k @ 4.5GhzASRock Fatal1ty Z777970 DCUII TOP EVGA GTX 780Swiftech H220 w/ NF-F1216GB RAM128GB Kingston HyperX 3K1TB Western Digital Black40GB Western Digital Raptor 10K PeripheralsMionix 3200 MouseCMStorm Quickfire Rapid w/ Cherry MX Blues2 x Dell U2713HM AudioAsus ROG Orion Pro HeadsetSony XB-500AKG K240Bose AE2i​Fiio E10

Samsung Galaxy S45.0" 1920x1080p Super AMOLED screen16GB Storage2600 mAh battery1.9Ghz quad-core Krait CPU2GB RAMCyanogenMod CameraNikon D310018x55mm NIKKOR VR Lens14.2 MP
Link to comment
https://linustechtips.com/topic/43891-svchostexe-meh/
Share on other sites

Link to post
Share on other sites

Re-Instal windows i gues...

 

ya i'll stick to these random CPU spikes then go through the pain of reformatting my SSD  <_<

Big Bertha3570k @ 4.5GhzASRock Fatal1ty Z777970 DCUII TOP EVGA GTX 780Swiftech H220 w/ NF-F1216GB RAM128GB Kingston HyperX 3K1TB Western Digital Black40GB Western Digital Raptor 10K PeripheralsMionix 3200 MouseCMStorm Quickfire Rapid w/ Cherry MX Blues2 x Dell U2713HM AudioAsus ROG Orion Pro HeadsetSony XB-500AKG K240Bose AE2i​Fiio E10

Samsung Galaxy S45.0" 1920x1080p Super AMOLED screen16GB Storage2600 mAh battery1.9Ghz quad-core Krait CPU2GB RAMCyanogenMod CameraNikon D310018x55mm NIKKOR VR Lens14.2 MP
Link to comment
https://linustechtips.com/topic/43891-svchostexe-meh/#findComment-574509
Share on other sites

Link to post
Share on other sites

MBAM usually does the trick for simple viruses...

 

If not seek the guidance of a specialist. (plenty of free support online)

 

running it right now :)

Big Bertha3570k @ 4.5GhzASRock Fatal1ty Z777970 DCUII TOP EVGA GTX 780Swiftech H220 w/ NF-F1216GB RAM128GB Kingston HyperX 3K1TB Western Digital Black40GB Western Digital Raptor 10K PeripheralsMionix 3200 MouseCMStorm Quickfire Rapid w/ Cherry MX Blues2 x Dell U2713HM AudioAsus ROG Orion Pro HeadsetSony XB-500AKG K240Bose AE2i​Fiio E10

Samsung Galaxy S45.0" 1920x1080p Super AMOLED screen16GB Storage2600 mAh battery1.9Ghz quad-core Krait CPU2GB RAMCyanogenMod CameraNikon D310018x55mm NIKKOR VR Lens14.2 MP
Link to comment
https://linustechtips.com/topic/43891-svchostexe-meh/#findComment-574526
Share on other sites

Link to post
Share on other sites

MBAM usually does the trick for simple viruses...

 

If not seek the guidance of a specialist. (plenty of free support online)

 

 

Try a scan with mawarebytes.

 

 

MB found 3 things, so i got happy, uninstalled...rebooted and tit didnt work  :(

Big Bertha3570k @ 4.5GhzASRock Fatal1ty Z777970 DCUII TOP EVGA GTX 780Swiftech H220 w/ NF-F1216GB RAM128GB Kingston HyperX 3K1TB Western Digital Black40GB Western Digital Raptor 10K PeripheralsMionix 3200 MouseCMStorm Quickfire Rapid w/ Cherry MX Blues2 x Dell U2713HM AudioAsus ROG Orion Pro HeadsetSony XB-500AKG K240Bose AE2i​Fiio E10

Samsung Galaxy S45.0" 1920x1080p Super AMOLED screen16GB Storage2600 mAh battery1.9Ghz quad-core Krait CPU2GB RAMCyanogenMod CameraNikon D310018x55mm NIKKOR VR Lens14.2 MP
Link to comment
https://linustechtips.com/topic/43891-svchostexe-meh/#findComment-574637
Share on other sites

Link to post
Share on other sites

Try booting safemode and running MBAM a few times...

 

Like I said above, I don't know of any specialist here but, if you cant find any elsewhere I know of a few I can refer you to.

 

thanks dude. 

 

like i said, if i kill the process it doesnt pop up so i might just keep doing that if all else fails. 

Big Bertha3570k @ 4.5GhzASRock Fatal1ty Z777970 DCUII TOP EVGA GTX 780Swiftech H220 w/ NF-F1216GB RAM128GB Kingston HyperX 3K1TB Western Digital Black40GB Western Digital Raptor 10K PeripheralsMionix 3200 MouseCMStorm Quickfire Rapid w/ Cherry MX Blues2 x Dell U2713HM AudioAsus ROG Orion Pro HeadsetSony XB-500AKG K240Bose AE2i​Fiio E10

Samsung Galaxy S45.0" 1920x1080p Super AMOLED screen16GB Storage2600 mAh battery1.9Ghz quad-core Krait CPU2GB RAMCyanogenMod CameraNikon D310018x55mm NIKKOR VR Lens14.2 MP
Link to comment
https://linustechtips.com/topic/43891-svchostexe-meh/#findComment-574665
Share on other sites

Link to post
Share on other sites

See if you can figure out what is calling it...

 

If you can remove that from startup Mbam should clean it up

 

sometimes svchost.exe can exist outside sys32 and be a virus however mine is the legit one inside sys32...thats the problem. i know the location i cant delete it though

Big Bertha3570k @ 4.5GhzASRock Fatal1ty Z777970 DCUII TOP EVGA GTX 780Swiftech H220 w/ NF-F1216GB RAM128GB Kingston HyperX 3K1TB Western Digital Black40GB Western Digital Raptor 10K PeripheralsMionix 3200 MouseCMStorm Quickfire Rapid w/ Cherry MX Blues2 x Dell U2713HM AudioAsus ROG Orion Pro HeadsetSony XB-500AKG K240Bose AE2i​Fiio E10

Samsung Galaxy S45.0" 1920x1080p Super AMOLED screen16GB Storage2600 mAh battery1.9Ghz quad-core Krait CPU2GB RAMCyanogenMod CameraNikon D310018x55mm NIKKOR VR Lens14.2 MP
Link to comment
https://linustechtips.com/topic/43891-svchostexe-meh/#findComment-574736
Share on other sites

Link to post
Share on other sites

sometimes svchost.exe can exist outside sys32 and be a virus however mine is the legit one inside sys32...thats the problem. i know the location i cant delete it though

I don't know why, but some programs like teamviewer are great at bypassing certain security features, I'm not sure if it works for system32 stuff, but it gets around most admin locks. You should try deleting the file through cmd with admin privileges using the 'del' command

I am good at computer

Spoiler

Motherboard: Gigabyte G1 sniper 3 | CPU: Intel 3770k @5.1Ghz | RAM: 32Gb G.Skill Ripjaws X @1600Mhz | Graphics card: EVGA 980 Ti SC | HDD: Seagate barracuda 3298534883327.74B + Samsung OEM 5400rpm drive + Seatgate barracude 2TB | PSU: Cougar CMX 1200w | CPU cooler: Custom loop

Link to comment
https://linustechtips.com/topic/43891-svchostexe-meh/#findComment-574747
Share on other sites

Link to post
Share on other sites

I don't know why, but some programs like teamviewer are great at bypassing certain security features, I'm not sure if it works for system32 stuff, but it gets around most admin locks. You should try deleting the file through cmd with admin privileges using the 'del' command

 

svchost can be a major component in windows...a delete inside System32 is never good  :unsure:

Big Bertha3570k @ 4.5GhzASRock Fatal1ty Z777970 DCUII TOP EVGA GTX 780Swiftech H220 w/ NF-F1216GB RAM128GB Kingston HyperX 3K1TB Western Digital Black40GB Western Digital Raptor 10K PeripheralsMionix 3200 MouseCMStorm Quickfire Rapid w/ Cherry MX Blues2 x Dell U2713HM AudioAsus ROG Orion Pro HeadsetSony XB-500AKG K240Bose AE2i​Fiio E10

Samsung Galaxy S45.0" 1920x1080p Super AMOLED screen16GB Storage2600 mAh battery1.9Ghz quad-core Krait CPU2GB RAMCyanogenMod CameraNikon D310018x55mm NIKKOR VR Lens14.2 MP
Link to comment
https://linustechtips.com/topic/43891-svchostexe-meh/#findComment-574749
Share on other sites

Link to post
Share on other sites

The problem isn't svchost! It is only a service host (do you see it now?)

What it does is host other services basically providing a start location.

You need to download Process Explorer and dig into it in order to really

know what is running all that CPU power.

If you're having trouble with it I will be able to assist you.

Just ask.

Link to comment
https://linustechtips.com/topic/43891-svchostexe-meh/#findComment-574894
Share on other sites

Link to post
Share on other sites

try rougekiller.. I hope it helps

i9-9900K || MSI MPG Z390M GAMING EDGE AC || Gigabyte RTX 2080 Super Gaming OC || 16GBCorsair Vengeance LPX 3200Mhz || Samsung EVO 970 Plus Samsung 850 EVO 2TB + Crucial BX100 500GB + 4TB HGST NAS || Factal Design Define Mini C TG || Corsair RM750x || Corsair H100i Pro RGB || Acer Predator XB271HU

Link to comment
https://linustechtips.com/topic/43891-svchostexe-meh/#findComment-575057
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×