TechSpot

SlowDownCPU.exe-Virus or Spyware? Plauging friends computer

By sw123
May 27, 2006
  1. Hi

    My friend has a computer:

    MSI Gaming Package

    1 GB RAM
    NVIDIA GeForce FX5700 PCI(maybe PCI-E, I dont exaclty know)
    Intel P4 2.8 GHz

    Or at least I think...he says he doesnt know his specs. This is all I could give you. Search MSI for gaming package specs if you need more.

    Now for the real problem. My friend is infected with SlowDownCPU.exe, and it happens all the time at startup. We can end it at startup and it will stay ended, but it annoys him.

    We scanned with AVG, Spybot Search and Destroy, and Ad-Aware SE. We cannot find any problems. He has a wired hi speed network, so I think it could be a worm. How can we fix it?

    Thanks, sw123
     
  2. Spike

    Spike TS Evangelist Posts: 2,168

    Post us a hjt log and we'll take a look :)
     
  3. sw123

    sw123 TS Rookie Topic Starter Posts: 595

    My friend doesnt have hjt. How can I get it or use it?
     
  4. gmuser2006

    gmuser2006 TS Rookie Posts: 37

  5. sw123

    sw123 TS Rookie Topic Starter Posts: 595

    I already know how to post an HJT log thanx
     
  6. howard_hopkinso

    howard_hopkinso TS Rookie Posts: 24,177   +19

    Go HERE and follow the instructions on your friends computer.

    Post a fresh HJT log, only after doing the above. Instructions on where to get HijackThis are in the above instructions.

    Regards Howard :)
     
  7. sw123

    sw123 TS Rookie Topic Starter Posts: 595

    I will try to get an HJT log sometime, but I can't today, plus he's paranoid about his computer because his grandfather runs a small business and if the computer breaks, he will have to pay a tech to fix it. It will be quite hard to convince him, but I will find someway or another to get an HJT log from his computer. Thanks for the instruction Howard. :)

    sw123
     
  8. sw123

    sw123 TS Rookie Topic Starter Posts: 595

    I got my friend to run HiJackThis and save a logfile. I have problems attaching, so I will copy and paste the logfile. Here it is:



    Again, sorry I didnt attach it :(

    See ya,sw123
     
  9. howard_hopkinso

    howard_hopkinso TS Rookie Posts: 24,177   +19

    No problem with the copied and pasted log in this instance.

    As far as I can tell, that HJT log looks clean.

    Regards Howard :)
     
  10. sw123

    sw123 TS Rookie Topic Starter Posts: 595

    Ohhh...come on...somethings wrong and I know it.

    Also, my friends disk drives also disappeared from My Computer
     
  11. howard_hopkinso

    howard_hopkinso TS Rookie Posts: 24,177   +19

    I`m not disputing something wrong. I`m just saying whatever it is, isn`t caused by spyware etc.

    SlowDownCPU.exe is neither a virus or spyware. It is in fact a legit MSI application.

    However, since you mentioned slowdowncpu.exe, do the following.

    Boot into safe mode. See how HERE. http://www.bleepingcomputer.com/forums/tutorial61.html

    Turn off system restore.(XP/ME only) See how HERE. http://www.bleepingcomputer.com/forums/tutorial56.html

    In Windows Explorer, turn on "Show all files and folders, including hidden and system". See how HERE. http://www.bleepingcomputer.com/forums/tutorial62.html

    Open your task manager, by holding down the ctrl and alt keys and pressing the delete key.

    Click on the processes tab and end process for(if there).

    SlowDownCPU.exe

    Close task manager.

    Run HJT with no other programmes open. Have HJT fix the following, by placing a tick in the little box next to(if there).

    O4 - HKLM\..\Run: [SlowDownCPU] C:\WINDOWS\INF\MSI\SlowDownCPU\SlowDownCPU.exe

    Click on the fix checked button.

    Close HJT.

    Locate and delete the following bold files and/or directories(if there).

    C:\WINDOWS\INF\MSI\SlowDownCPU\SlowDownCPU.exe

    Reboot into normal mode and turn system restore back on.


    Regards Howard :)
     
  12. sw123

    sw123 TS Rookie Topic Starter Posts: 595

    Actually, thanks for the instructions, but I did this to fix it:

    I clicked start then run

    In box typed C:\WINDOWS\INF\MSI\SlowDownCPU

    then found SlowDownCPU.exe and deleted it. I rebooted computer and started up fine and SlowDownCPU was gone. He was so happy. :)

    Thanks for instructions though guys!

    Thanks, sw123
     
  13. howard_hopkinso

    howard_hopkinso TS Rookie Posts: 24,177   +19

    That`s ok mate, no problem.

    Thanks for letting us know.

    Regards Howard :)
     
  14. sw123

    sw123 TS Rookie Topic Starter Posts: 595

    Your welcome.Thank you all for the instructions! :)

    sw123
     
Topic Status:
Not open for further replies.

Similar Topics

Add New Comment

You need to be a member to leave a comment. Join thousands of tech enthusiasts and participate.
TechSpot Account You may also...