Overclock.net › Forums › Software, Programming and Coding › Operating Systems › Windows › Got a virus, can't find it...
New Posts  All Forums:Forum Nav:

Got a virus, can't find it...

post #1 of 7
Thread Starter 
I downloaded an EXE, scanned it, everything checked out but after clicking on it nothing happened. Huge red flag. I immediately scanned my computer found nothing, and then restarted. Now NOD32 is disabled.

I can't find this virus. NOD32 doesn't pick it up, and Malwarebytes doesn't pick it up. I have system rollbacks disabled, so I need to find it or reformat. What all do you recommend? I haven't had a virus in probably 10 years. Nothing seems to be affected so far, and i'm not signing into any websites.
The Leviathan
(20 items)
 
  
CPUMotherboardGraphicsRAM
Intel i7 6700k @ 4.6GHz MSI Z170A Gaming M7 12GB NVIDIA Titan X (Pascal) 32GB G.Skill Ripjaws V (DDR4 3200) 
Hard DriveHard DriveCoolingCooling
2x 1TB Samsung 850 EVO 138TB unRAID Server 3x 140mm Noctua NF-A14 Noctua NH-D15 
OSMonitorKeyboardPower
Windows 10 Pro x64 65" LG 65E6P (4K OLED) Ducky DK9008 Shine 3  Corsair AX860 
CaseMouseAudioAudio
Corsair Obsidian 750D Logitech G502 Proteus Sprectrum Denon X7200WA (Receiver) 2x Klipsch RF-7 (Front Speakers) 
AudioAudioAudioAudio
4x Klipsch RS-62 (Surround Speakers) Klipsch RC-64 (Center Speaker) 4x Klipsch CDT-5800-C II (Atmos Speakers) 2x SVS PB13-Ultra (Subwoofers) 
  hide details  
Reply
The Leviathan
(20 items)
 
  
CPUMotherboardGraphicsRAM
Intel i7 6700k @ 4.6GHz MSI Z170A Gaming M7 12GB NVIDIA Titan X (Pascal) 32GB G.Skill Ripjaws V (DDR4 3200) 
Hard DriveHard DriveCoolingCooling
2x 1TB Samsung 850 EVO 138TB unRAID Server 3x 140mm Noctua NF-A14 Noctua NH-D15 
OSMonitorKeyboardPower
Windows 10 Pro x64 65" LG 65E6P (4K OLED) Ducky DK9008 Shine 3  Corsair AX860 
CaseMouseAudioAudio
Corsair Obsidian 750D Logitech G502 Proteus Sprectrum Denon X7200WA (Receiver) 2x Klipsch RF-7 (Front Speakers) 
AudioAudioAudioAudio
4x Klipsch RS-62 (Surround Speakers) Klipsch RC-64 (Center Speaker) 4x Klipsch CDT-5800-C II (Atmos Speakers) 2x SVS PB13-Ultra (Subwoofers) 
  hide details  
Reply
post #2 of 7
I recommend a format because if you did not formatted your PC for 10 years. there will definitely be more viruses. Either Way formatting is very helpful because at the end, you get the chance to know what applications and in general, what its on your PC. tongue.gif I DO IT AT LEAST ONCE EVERY 6 MONTHS! smile.gif
Mobile Station
(15 items)
 
  
CPUMotherboardGraphicsRAM
i7 4700MQ  Intel® 8 Series Chipset 2GB GeForce™ GTX 765M 8 GB Kingston HyperX 1600Mhz 
Hard DriveHard DriveOptical DriveCooling
Samsung 840 SSD 250 GB 500 GB 5400rpm HDD Ultra Slim DVDRW X16 Full custom copper cooling  
OSMonitorKeyboardPower
Windows 10 15.6 inch Widescreen LED 1080p Full size isolated keyboard with numeric pad 8 Cell Smart Lithium-ION Battery Pack - 76.96WH 
CaseMouseAudio
Optimus V Barebone Razer Copperhead 2 x Onkyo High Quality Speakers 
  hide details  
Reply
Mobile Station
(15 items)
 
  
CPUMotherboardGraphicsRAM
i7 4700MQ  Intel® 8 Series Chipset 2GB GeForce™ GTX 765M 8 GB Kingston HyperX 1600Mhz 
Hard DriveHard DriveOptical DriveCooling
Samsung 840 SSD 250 GB 500 GB 5400rpm HDD Ultra Slim DVDRW X16 Full custom copper cooling  
OSMonitorKeyboardPower
Windows 10 15.6 inch Widescreen LED 1080p Full size isolated keyboard with numeric pad 8 Cell Smart Lithium-ION Battery Pack - 76.96WH 
CaseMouseAudio
Optimus V Barebone Razer Copperhead 2 x Onkyo High Quality Speakers 
  hide details  
Reply
post #3 of 7
Thread Starter 
I just reformatted last month. Looks like the trojan actually deleted some windows services. I'm not even going to bother, just going to reformat again.

Thanks.
The Leviathan
(20 items)
 
  
CPUMotherboardGraphicsRAM
Intel i7 6700k @ 4.6GHz MSI Z170A Gaming M7 12GB NVIDIA Titan X (Pascal) 32GB G.Skill Ripjaws V (DDR4 3200) 
Hard DriveHard DriveCoolingCooling
2x 1TB Samsung 850 EVO 138TB unRAID Server 3x 140mm Noctua NF-A14 Noctua NH-D15 
OSMonitorKeyboardPower
Windows 10 Pro x64 65" LG 65E6P (4K OLED) Ducky DK9008 Shine 3  Corsair AX860 
CaseMouseAudioAudio
Corsair Obsidian 750D Logitech G502 Proteus Sprectrum Denon X7200WA (Receiver) 2x Klipsch RF-7 (Front Speakers) 
AudioAudioAudioAudio
4x Klipsch RS-62 (Surround Speakers) Klipsch RC-64 (Center Speaker) 4x Klipsch CDT-5800-C II (Atmos Speakers) 2x SVS PB13-Ultra (Subwoofers) 
  hide details  
Reply
The Leviathan
(20 items)
 
  
CPUMotherboardGraphicsRAM
Intel i7 6700k @ 4.6GHz MSI Z170A Gaming M7 12GB NVIDIA Titan X (Pascal) 32GB G.Skill Ripjaws V (DDR4 3200) 
Hard DriveHard DriveCoolingCooling
2x 1TB Samsung 850 EVO 138TB unRAID Server 3x 140mm Noctua NF-A14 Noctua NH-D15 
OSMonitorKeyboardPower
Windows 10 Pro x64 65" LG 65E6P (4K OLED) Ducky DK9008 Shine 3  Corsair AX860 
CaseMouseAudioAudio
Corsair Obsidian 750D Logitech G502 Proteus Sprectrum Denon X7200WA (Receiver) 2x Klipsch RF-7 (Front Speakers) 
AudioAudioAudioAudio
4x Klipsch RS-62 (Surround Speakers) Klipsch RC-64 (Center Speaker) 4x Klipsch CDT-5800-C II (Atmos Speakers) 2x SVS PB13-Ultra (Subwoofers) 
  hide details  
Reply
post #4 of 7
Download free avast, then boot windows in safe mode.
Ex Machin
(14 items)
 
  
CPUMotherboardGraphicsRAM
intel i7 3770k Intel Desktop Board DZ77GA-70K MSI R9 380 4GB G.Skills ripjaws 8gb 
Hard DriveOptical DriveCoolingOS
2x Velociraptor 500mb raid 0 Lg blu ray 12x Zalman CNPS9500 at 2 ball cpu Windows 8 64 bits 
MonitorKeyboardPowerCase
Lg 23EA63V-P IPS cInema Microsoft SideWinder X4 EVGA SuperNova 650 80 gold modular CM Storm Enforcer 
MouseAudio
Razer DeathAdder 2013 Creative SB Recon3D 
  hide details  
Reply
Ex Machin
(14 items)
 
  
CPUMotherboardGraphicsRAM
intel i7 3770k Intel Desktop Board DZ77GA-70K MSI R9 380 4GB G.Skills ripjaws 8gb 
Hard DriveOptical DriveCoolingOS
2x Velociraptor 500mb raid 0 Lg blu ray 12x Zalman CNPS9500 at 2 ball cpu Windows 8 64 bits 
MonitorKeyboardPowerCase
Lg 23EA63V-P IPS cInema Microsoft SideWinder X4 EVGA SuperNova 650 80 gold modular CM Storm Enforcer 
MouseAudio
Razer DeathAdder 2013 Creative SB Recon3D 
  hide details  
Reply
post #5 of 7
I always first look through task manager, try to find suspicious .exes, or suspicious descriptions (or no descriptions) and then use the "open file location" option and see if the .exe is in right place, looks legit, etc, also you can google the name.

If it's not legit, you can try ending the process removing everything related to it, then rebooting and running all kinds of scans.
Gaming PC
(15 items)
 
  
CPUMotherboardGraphicsRAM
Intel Core I5 750 Evga P55 FTW 200 GTX 480 SLI Kingston HyperX 9-9-9-27 
Hard DriveHard DriveCoolingOS
G.Skill(sandforce) SSD Intel 330 series SSD Corsair H80 Windows 8 Pro x64 
MonitorKeyboardPowerCase
2 x 24" Samsung 2494HS 1080p Logitech Illuminated Corsair TX850w Coolermaster Haf X 
MouseMouse Pad
Logitech G400 Ulti-mat teflon coated steel 
  hide details  
Reply
Gaming PC
(15 items)
 
  
CPUMotherboardGraphicsRAM
Intel Core I5 750 Evga P55 FTW 200 GTX 480 SLI Kingston HyperX 9-9-9-27 
Hard DriveHard DriveCoolingOS
G.Skill(sandforce) SSD Intel 330 series SSD Corsair H80 Windows 8 Pro x64 
MonitorKeyboardPowerCase
2 x 24" Samsung 2494HS 1080p Logitech Illuminated Corsair TX850w Coolermaster Haf X 
MouseMouse Pad
Logitech G400 Ulti-mat teflon coated steel 
  hide details  
Reply
post #6 of 7
Task Manager is a joke, try with Microsoft/Sysinternals Process Explorer
Lenovo Beast
(14 items)
 
  
CPUMotherboardGraphicsRAM
Intel Core i5-3570  Lenovo Is7xm AMD SAPPHIRE HD 7850 2GB GDDR5 16GB DDR3 
Hard DriveOptical DriveCoolingOS
SAMSUNG MZ7WD120HAFV (OS) + ST31000524AS (XXX) LG GSA-H44N Cooler Master Hyper 212+ Windows 10 Pro x64 
MonitorKeyboardPowerCase
LG L192WS Dell SK-8115 Corsair HX620 ThermalTake V3 
MouseMouse Pad
Razer Copperhead Maped Cutting Mat 
  hide details  
Reply
Lenovo Beast
(14 items)
 
  
CPUMotherboardGraphicsRAM
Intel Core i5-3570  Lenovo Is7xm AMD SAPPHIRE HD 7850 2GB GDDR5 16GB DDR3 
Hard DriveOptical DriveCoolingOS
SAMSUNG MZ7WD120HAFV (OS) + ST31000524AS (XXX) LG GSA-H44N Cooler Master Hyper 212+ Windows 10 Pro x64 
MonitorKeyboardPowerCase
LG L192WS Dell SK-8115 Corsair HX620 ThermalTake V3 
MouseMouse Pad
Razer Copperhead Maped Cutting Mat 
  hide details  
Reply
post #7 of 7
Antiviruses are rubbish. Anyways, generally they are in taskmgr, msconfig or services.msc. Easy to spot wink.gif some of the viruses are harder to locate through, I use ComboFix then.
Ti-89 Titanium
(13 items)
 
 
CPUMotherboardRAMHard Drive
Motorola 68k @16 MHz Ti-89 HW4 256 KB 2.6 MB Flash ROM 
OSMonitorPowerCase
Ti-89 OS 3.10 LCD Dot-Matrix 160x100 4x 1.5V AAA Ti-89 HW4 Black 
CPUMotherboardGraphicsRAM
Intel Core™ i7 930 Gigabyte GA-X58A-UD3R 2.0 Gigabyte GTX 470 SOC G.Skill RX 2x4GB 1600C8 
Hard DriveHard DriveOptical DriveCooling
PNY Prevail Elite 120GB Hitachi 7K1000.C 1TB LG GH24LS50 Noctua NH-C12P SE14 
OSOSMonitorKeyboard
Windows 8 Pro x64 Lubuntu 13.10 x64 Samsung BX2250 Logitech Illuminated 
PowerCaseMouseAudio
Be Quiet! S.P. E⁷ 600W Fractal Design Core 3000 Logitech G300 AKG K240 Studio 
  hide details  
Reply
Ti-89 Titanium
(13 items)
 
 
CPUMotherboardRAMHard Drive
Motorola 68k @16 MHz Ti-89 HW4 256 KB 2.6 MB Flash ROM 
OSMonitorPowerCase
Ti-89 OS 3.10 LCD Dot-Matrix 160x100 4x 1.5V AAA Ti-89 HW4 Black 
CPUMotherboardGraphicsRAM
Intel Core™ i7 930 Gigabyte GA-X58A-UD3R 2.0 Gigabyte GTX 470 SOC G.Skill RX 2x4GB 1600C8 
Hard DriveHard DriveOptical DriveCooling
PNY Prevail Elite 120GB Hitachi 7K1000.C 1TB LG GH24LS50 Noctua NH-C12P SE14 
OSOSMonitorKeyboard
Windows 8 Pro x64 Lubuntu 13.10 x64 Samsung BX2250 Logitech Illuminated 
PowerCaseMouseAudio
Be Quiet! S.P. E⁷ 600W Fractal Design Core 3000 Logitech G300 AKG K240 Studio 
  hide details  
Reply
New Posts  All Forums:Forum Nav:
  Return Home
  Back to Forum: Windows
Overclock.net › Forums › Software, Programming and Coding › Operating Systems › Windows › Got a virus, can't find it...