sound skipping and cpu hitting 100%

Discussion in 'Malware Help (A Specialist Will Reply)' started by Raven9969, Dec 3, 2009.

  1. Raven9969

    Raven9969 Private E-2

    So I'm trying to get my friends computer working right again. When ever it plays music from the hard drive is sounds scratchy, but off a cd it sounds fine. I ran the scans in the run and read me first section but it did not fix the problem (but did kill a few hundred viruses). One of the viruses was Bifrost. I put process hacker on the computer and noticed the interupts at times staying between 95 to 100 percent. It seems to happen most when not logged on to the internet or playing music. The operating system is windows xp, any help would be great. I attached the scan logs below (I left off the rootkit scan because it was empty). Thank you in advance!
     

    Attached Files:

  2. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Hello, Raven9969

    I am currently reviewing your logs and will get back to you with a set of instructions as soon as possible. Our queue is working the oldest threads first.

    Thanks for your patience.
    dr.m
     
  3. Raven9969

    Raven9969 Private E-2

    Thank you for checking my logs. I don't know if its a malware problem or software problem, but I hope you can point me to the right direction.
     
  4. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    The below fixes and advice are specific to this member's problem and should be used for issue(s) on this machine only.

    Hello, Raven9969, please do not install any other software while we are still working with you unless instructed. Once we have given you the all clean and final instructions you will be free to install what you want.

    Some comments: You created extra work, when you ran the tools OUT OF SEQUENCE. I've found nothing in your logs that suggest that your sound issues are malware related, but let's take care of some other things.

    - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -

    * Your FireFox version is waaaay outdated: Mozilla Firefox (2.0.0.20)

    Step 1:
    Please run the below, re-boot, then run it again.

    Norton Removal Tool (SymNRT) 2009.0.5.26

    Step 2:
    Question: What did MBAM detect and quarantine on Nov 24 2009? If you have verified the contents as something you don't wish to keep, do this:

    1. Open Malwarebytes Anti-malware
    2. Click the Quarantine tab
    3. Click the Delete All tab
    4. Click the Exit tab
    Step 3:
    Please look in Add/Remove Programs for the following and uninstall if found. If you get any errors just make a note and continue on.


    Step 4:

    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    After clicking Fix, exit HJT.

    Step 5:
    Now we need to use ComboFix.

    • Make sure that combofix.exe that you downloaded while doing the READ & RUN ME is on your Desktop but Do not run it!
      • If it is not on your Desktop, the below will not work.
    • Make sure you have shut down all protection software (antivirus, antispyware, firewall...etc) programs so they do not interfere with the running of ComboFix. *Remember to re-start them before coming back online.
    • If ComboFix tells you it needs to update to a new version, make sure you allow it to update.
    • Open Notepad and copy/paste the text in the below code box into it (make sure you scroll all the way down in the code box to get all lines selected ):

    • Save the above as CFscript.txt and make sure you save it to the same location (should be on your Desktop) as ComboFix.exe
    • At this point, you MUST EXIT ALL BROWSERS NOW before continuing!
    • You should have both the ComboFix.exe and CFScript.txt icons on your Desktop.
      If it asks you to overide the previous file with the same name, click YES.
    • Now use your mouse to drag CFscript.txt on top of ComboFix.exe
      http://img.photobucket.com/albums/v666/sUBs/CFScriptB-4.gif
    • Follow the prompts.
    • When it finishes, a log will be produced named c:\combofix.txt
    • I will ask for this log below
    Note:

    Do not mouseclick combofix's window while it is running. That may cause it to stall.


    Step 6:
    Delete all files and subfolders in the below folders except ones from the current date (Windows will not let you delete the files from the current day).


    Step 7:

    Open CCleaner - select "Cleaner" > "Run Cleaner" <---use this function ONLY!

    Step 8:
    Now go to this link MGTools and download the new version of MGtools....overwrite your previous MGtools.exe file with this one.

    Then run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista, use right click and select Run As Administrator).

    Please attach the below logs to your next reply:
    • C:\MGlogs.zip
    • C:\combofix.txt


    Make sure you tell me if you had any problems running this procedure and give a description of how things are working now!

    dr.m
     
  5. Raven9969

    Raven9969 Private E-2

    I ran every thing on the list, and the sound and video are running slower I think. Still not sure if its a bug or not, but the cpu is still going crazy. After the scans, the browser keeps switching from firefox to internet explorer and the mouse pad and keyboard stop working sometimes until a reboot. I've attached the new logs and hope they can tell you something. Thank you again for helping.
     

    Attached Files:

  6. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Raven9969

    *NOTE: Mouse Pad and Keyboard issues should be taken up in the Hardware Forum

    The DEFAULT browser being changed in the course of running the tools is normal. * Are you meaning something else - like "they keep opening and closing on their own"?

    Your logs don't show any malware issues, but to be thorough:
    • Attach these logs from previous runs of Malwarebytes
      "C:\Documents and Settings\Nadeen Febus\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\"
      mbam-l~1.txt Nov 22 2009 2899 "mbam-log-2009-11-22 (23-41-11).txt"
      mbam-l~2.txt Nov 24 2009 1593 "mbam-log-2009-11-24 (01-43-59).txt"
    • Run the below tool
      SysProt AntiRootkit - How to run

    Please attach the MBAMlogs.txt and SysProtLog.txt log files to your next message.

    dr.m
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds