Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: possible virus that is writing to my drive very quickly  (Read 5228 times)

0 Members and 1 Guest are viewing this topic.

talontromper

    Topic Starter


    Hopeful
  • Thanked: 11
    • Yes
    • Yes
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
possible virus that is writing to my drive very quickly
« on: August 27, 2009, 06:13:40 PM »
i just bought a brand new HP pavilion dv7 entertainment laptop here are the specs:
AMD Turion X2 dual-core moblie rm-74 (clocked 2.20 ghz)
4 gig of ram
64 bit OS (Vista Home Premium)
blue ray drive
Atheros wireless 54 mbps a,g,n
ATI Radeon hd 3650 512 dedicated ram
virus software: norton internet security v. 16.0.0.125, SuperantiSpyware
possible pgrms of value: ccleaner v. 2.23.993
recent installed skype, vista sp2, Nero startsmart essentials v. 3.10.1.1, defraggaler v1.13.155, and super build 36
(no vista CD)
also have 2 mapped drives to a local network windows xp dell 4100

The drive originally started out with around 10 to 15 gigs of data... I added family photos and a  DVD few movies via dvdfab hd (no longer on system). that brought the total data up to 45 gigs. Now just two weeks later the master drive has 154 gigs of data.  This is the first virus to have stumped me in how to remove it via registry or some form of virus scan... please help


Thought that id add the programs running on my system via process explorer
Process   PID   CPU   Description   Company Name   Image Type   Virtualized   Memory Priority
System Idle Process   0   82.02         64-bit      
 Interrupts   n/a   0.77   Hardware Interrupts      64-bit      
 DPCs   n/a      Deferred Procedure Calls      64-bit      
 System   4            n/a      
  smss.exe   456            n/a      
csrss.exe   528            n/a      
csrss.exe   592            n/a      
wininit.exe   600            n/a      
 services.exe   680            n/a      
  svchost.exe   840            n/a      
   WmiPrvSE.exe   3972            n/a      
   HpqToaster.exe   5068      HpqToaster Module      32-bit      5
   FlashUtil10c.exe   4848      Adobe Flash Player Helper 10.0 r32   Adobe Systems, Inc.   32-bit      5
  svchost.exe   900            n/a      
  svchost.exe   936            n/a      
  Ati2evxx.exe   300            n/a      
   Ati2evxx.exe   1296            n/a      
  svchost.exe   352            n/a      
   audiodg.exe   960            n/a      5
  svchost.exe   488            n/a      
   wlanext.exe   1588            n/a      
   dwm.exe   1100   0.77   Desktop Window Manager   Microsoft Corporation   64-bit      5
  svchost.exe   492            n/a      
   taskeng.exe   676            n/a      
   taskeng.exe   3112      Task Scheduler Engine   Microsoft Corporation   64-bit      5
  stacsv64.exe   832            n/a      
  svchost.exe   1192            n/a      
  SLsvc.exe   1212            n/a      
  svchost.exe   1248            n/a      
  hpservice.exe   1324            n/a      
  svchost.exe   1408            n/a      
  spoolsv.exe   1696            n/a      
  svchost.exe   1732            n/a      
  AESTSr64.exe   1940            n/a      
  agr64svc.exe   1956            n/a      
  AppleMobileDeviceService.exe   1968            n/a      
  avgwdsvc.exe   1980            n/a      
   avgnsa.exe   3964            n/a      
  mDNSResponder.exe   2000            n/a      
  svchost.exe   2016            n/a      
  LSSrvc.exe   1292            n/a      
  lxcycoms.exe   2072            n/a      
  MDM.EXE   2100            n/a      
  ccSvcHst.exe   2156            n/a      
   ccSvcHst.exe   3152            n/a      5
  svchost.exe   2244            n/a      
  BLService.exe   2300            n/a      
  RichVideo.exe   2412            n/a      
  svchost.exe   2456            n/a      
  TVCapSvc.exe   2584            n/a      
  TVSched.exe   2608            n/a      
  svchost.exe   2632            n/a      
  SearchIndexer.exe   2664            n/a      
   SearchFilterHost.exe   6868            n/a      
   SearchProtocolHost.exe   8008            n/a      
  HPHC_Service.exe   1752            n/a      
  wmpnetwk.exe   4456            n/a      
  hpqWmiEx.exe   4664            n/a      
  Com4QLBEx.exe   4824            n/a      
  PresentationFontCache.exe   4728            n/a      
  svchost.exe   3048            n/a      
 lsass.exe   692            n/a      
 lsm.exe   700            n/a      
winlogon.exe   640            n/a      
explorer.exe   3508      Windows Explorer   Microsoft Corporation   64-bit      5
 SynTPEnh.exe   3852      Synaptics TouchPad Enhancements   Synaptics, Inc.   64-bit      5
  SynTPHelper.exe   5776            n/a      5
 SmartMenu.exe   3860      HP MediaSmart SmartMenu   Hewlett-Packard   64-bit      5
 wmpnscfg.exe   4304      Windows Media Player Network Sharing Service Configuration Application   Microsoft Corporation   64-bit      5
 iexplore.exe   7540      Internet Explorer   Microsoft Corporation   32-bit   Virtualized   5
  iexplore.exe   7932      Internet Explorer   Microsoft Corporation   32-bit   Virtualized   5
 procexp.exe   8628      Sysinternals Process Explorer   Sysinternals - www.sysinternals.com   32-bit      5
  procexp64.exe   3608   2.32   Sysinternals Process Explorer   Sysinternals - www.sysinternals.com   64-bit      5
QLBCTRL.exe   1908      Quick Launch Buttons    Hewlett-Packard Development Company, L.P.   32-bit      5
hpwuSchd2.exe   3436      hpwuSchd Application   Hewlett-Packard   32-bit      5
HPWAMain.exe   292      HP Wireless Assistant main program   Hewlett-Packard   64-bit      5
avgtray.exe   984      AVG Tray Monitor   AVG Technologies CZ, s.r.o.   32-bit      5
ielowutil.exe   6084      Internet Explorer   Microsoft Corporation   32-bit      4
sviewpro.exe   6864   0.77         n/a      5
SUPERAntiSpyware.exe   2472   13.93         n/a      5

« Last Edit: August 27, 2009, 06:40:45 PM by talontromper »
"One does not discover new lands without consenting to lose sight of the shore for a very long time." - Andre Gide

patio

  • Moderator


  • Genius
  • Maud' Dib
  • Thanked: 1769
    • Yes
  • Experience: Beginner
  • OS: Windows 7
Re: possible virus that is writing to my drive very quickly
« Reply #1 on: August 27, 2009, 06:56:58 PM »
DLoad Sequoia View and see what's taking up your space...
" Anyone who goes to a psychiatrist should have his head examined. "

talontromper

    Topic Starter


    Hopeful
  • Thanked: 11
    • Yes
    • Yes
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: possible virus that is writing to my drive very quickly
« Reply #2 on: August 27, 2009, 07:07:10 PM »
ok ill download that and get back to you
"One does not discover new lands without consenting to lose sight of the shore for a very long time." - Andre Gide

talontromper

    Topic Starter


    Hopeful
  • Thanked: 11
    • Yes
    • Yes
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: possible virus that is writing to my drive very quickly
« Reply #3 on: August 27, 2009, 07:19:41 PM »
i ran this and the math that i did comes up to 82 gigs then that still doesn't account for nearly 80 gigs of data
"One does not discover new lands without consenting to lose sight of the shore for a very long time." - Andre Gide

patio

  • Moderator


  • Genius
  • Maud' Dib
  • Thanked: 1769
    • Yes
  • Experience: Beginner
  • OS: Windows 7
Re: possible virus that is writing to my drive very quickly
« Reply #4 on: August 27, 2009, 07:24:55 PM »
It should show all usage of the HDD...
Where are your other readings coming from ? ?
" Anyone who goes to a psychiatrist should have his head examined. "

talontromper

    Topic Starter


    Hopeful
  • Thanked: 11
    • Yes
    • Yes
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: possible virus that is writing to my drive very quickly
« Reply #5 on: August 27, 2009, 07:33:43 PM »
my computer window and defraggeler they say that 155 sequioa says 99.1 gigs have been used
« Last Edit: August 27, 2009, 08:02:07 PM by talontromper »
"One does not discover new lands without consenting to lose sight of the shore for a very long time." - Andre Gide

talontromper

    Topic Starter


    Hopeful
  • Thanked: 11
    • Yes
    • Yes
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: possible virus that is writing to my drive very quickly
« Reply #6 on: August 27, 2009, 10:43:21 PM »
Here is another possible symptom is Microsoft Internet Explorer has stopped working properly, and I reset it and again today it started again saying that its stopped working properly.
"One does not discover new lands without consenting to lose sight of the shore for a very long time." - Andre Gide

talontromper

    Topic Starter


    Hopeful
  • Thanked: 11
    • Yes
    • Yes
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: possible virus that is writing to my drive very quickly
« Reply #7 on: August 28, 2009, 11:28:56 AM »
what is the most simple way to start from scratch and just do a full wipe... since i don't have the boot cd or pin number. i could order a vista cd from hp but with windows 7 coming out in november i'd rather just reformat or try to wait it out.. idk is the a way to just allow write to the HDD using my approval for all writes and the data that i don't allow to not write?
"One does not discover new lands without consenting to lose sight of the shore for a very long time." - Andre Gide

smeezekitty

  • Guest
Re: possible virus that is writing to my drive very quickly
« Reply #8 on: August 28, 2009, 06:25:22 PM »
sure thats a good idea
you may only get asked evrey 2-15 seconds
hope you can keep pressing enter or the mouse button

mroilfield



    Mentor
  • Thanked: 42
    • Yes
    • Yes
  • Computer: Specs
  • Experience: Experienced
  • OS: Windows 11
Re: possible virus that is writing to my drive very quickly
« Reply #9 on: August 29, 2009, 12:53:56 AM »
If this is a "Brand New" laptop then it should have come with either some recovery disk or have a recovery partition on it. If it has neither I would contact the vendor you bought it from or HP directly and get a set of recovery disk from them.
You can't fix Stupid!!!