Forum     

Go Back   Digit Technology Discussion Forum > Software > Software Q&A
Register FAQ Calendar Mark Forums Read

Software Q&A Having trouble with software? Find solutions here


Reply
 
LinkBack Thread Tools Display Modes
Old 20-03-2011, 07:59 PM   #1 (permalink)
Alpha Geek
 
The Incredible's Avatar
 
Join Date: May 2005
Location: Planet Incredible
Posts: 579
Question "serivces.exe" process (how to remove ?)


heyz!

i have an old desktop with winXP running on it. It got infected by some penDrive, and now if I press any key more than once in succession, it won't work.

e.g, if I press '2', it writes '2' but if I again press '2', nothing happens.

i opened task manager and found a process "serivces.exe", obviously I tried ending it, some other processes "net1", "CMD" reruns it.

next i found a file "serivces.exe" in C:\Windows\system32\
so, i ended the process and immediately shredded the file.

But the problem remains!

Any Solution ?
The Incredible is offline   Reply With Quote
Advertisements. Register and be a member of the community to get rid of them.
Advertisement

Old 20-03-2011, 08:16 PM   #2 (permalink)
XLr8
 
arpanmukherjee1's Avatar
 
Join Date: Sep 2008
Posts: 637
Default Re: "serivces.exe" process (how to remove ?)

its a virus and had multiple copies of itself.

use a online scanner or kaspersky trial version
__________________
Quote:
There are more things in heaven and earth, Horatio,
Than are dreamt of in your philosophy.
arpanmukherjee1 is offline   Reply With Quote
Old 21-03-2011, 12:11 AM   #3 (permalink)
Alpha Geek
 
The Incredible's Avatar
 
Join Date: May 2005
Location: Planet Incredible
Posts: 579
Default Re: "serivces.exe" process (how to remove ?)

@arpanmukherjee

I already have AVG Anti-virus, but for some reasons I'm unable to update it. I guess if I try to install Kaspersky Trial Version, AVG's gonna create conflict.

Isn't there a removal tool ?

I don't think an Online Scanner will be able to remove the virus, it'll only detect.
The Incredible is offline   Reply With Quote
Old 21-03-2011, 12:52 AM   #4 (permalink)
XLr8
 
arpanmukherjee1's Avatar
 
Join Date: Sep 2008
Posts: 637
Default Re: "serivces.exe" process (how to remove ?)

Quote:
Originally Posted by The Incredible View Post
Isn't there a removal tool ?
there may be, if u know the name of virus/worm. to find that out i suggested the online scanning

symantec IMO keeps updating its removal tool library

worms may prevent AV s/w like avira or AVG to update. also may slow internet speeds by diverting traffic
__________________
Quote:
There are more things in heaven and earth, Horatio,
Than are dreamt of in your philosophy.
arpanmukherjee1 is offline   Reply With Quote
Old 21-03-2011, 07:34 AM   #5 (permalink)
Banned
 
Join Date: Apr 2010
Location: Jamshedpur
Posts: 1,214
Default Re: "serivces.exe" process (how to remove ?)

Try using Malwarebytes or some online scanner.
pauldmps is offline   Reply With Quote
Old 21-03-2011, 10:47 AM   #6 (permalink)
Stuck in Time...
 
Vyom's Avatar
 
Join Date: May 2009
Location: Land of Logic
Posts: 2,281
Default Re: "serivces.exe" process (how to remove ?)

Such viruses don't get removed easily. But I were in your place, I would have tried Norton Antivirus. It is most effective in cleaning threats easily. It's trial version would be more than useful.
Its better you make backup of your data from the OS partition, and clean re-install the XP.
__________________
Marty: Hey, Doc, we better back up. We don't have enough road to get up to 88.
Doc Brown: Roads? Where we're going, we don't need, "roads!" :)

──── On the Internet you can be Anything you want. It's Strange that, so many people choose to be Stupid! ────
Vyom is offline   Reply With Quote
Old 21-03-2011, 09:31 PM   #7 (permalink)
Sam
will be back
 
Sam's Avatar
 
Join Date: Jan 2010
Location: Guwahati
Posts: 10,135
Default Re: "serivces.exe" process (how to remove ?)

download-install avast & do a boot scan. also try MBAM.
Sam is offline   Reply With Quote
Old 25-03-2011, 02:43 AM   #8 (permalink)
Alpha Geek
 
The Incredible's Avatar
 
Join Date: May 2005
Location: Planet Incredible
Posts: 579
Default Re: "serivces.exe" process (how to remove ?)

I removed my AVG and ZoneAlarm, installed Kaspersky Trial and ran a full scan, it found another virus Win32/Heur, but perhaps it was unable to remove so I deleted the detected files by a shredder.

The problem persists. The same key doesn't works more than once when pressed repeatedly without switching to any other key.

Guys, I can't install each and every Anti-virus software one after another, it'll take days to scan and without any definiteness of error-removal. For instance I've already tried 2 very popular anti-virus software.

Please help!
The Incredible is offline   Reply With Quote
Old 25-03-2011, 10:23 AM   #9 (permalink)
Stuck in Time...
 
Vyom's Avatar
 
Join Date: May 2009
Location: Land of Logic
Posts: 2,281
Default Re: "serivces.exe" process (how to remove ?)

Believe me pal, you system is so screwed at this time, there is no point in even trying to correct it. Now you have two options:

1. Just move the useful files to another drive, and reinstall XP, formatting the current OS.

2. If you want to retain this OS only:
Dual boot, by installing XP on another drive. Then from the new XP, without navigating to other drives, download and install latest Antivirus (any, but with latest updates). Then do deep scan of all drives. In the end, go to original XP, and delete the XP which you installed from the drive.

If you are willing to do step 2, I may write proper steps for it.

All de best.
__________________
Marty: Hey, Doc, we better back up. We don't have enough road to get up to 88.
Doc Brown: Roads? Where we're going, we don't need, "roads!" :)

──── On the Internet you can be Anything you want. It's Strange that, so many people choose to be Stupid! ────
Vyom is offline   Reply With Quote
Old 25-03-2011, 10:36 AM   #10 (permalink)
Alpha Geek
 
CA50's Avatar
 
Join Date: May 2007
Location: GraveYard
Posts: 918
Default Re: "serivces.exe" process (how to remove ?)

@OP, you can't your already installed AV due to this virus, you can try installing Avast in the safe more and run a through boot time scan.

Alternately boot from some linux distro or windows XP live CD and manually find the executable and delete it, make sure you delete all the related files and registry datas as well, else it will regenerate itself.

After doing some googling, found this tool to remove service.exe virus
Unhack me

Reference Link
__________________
| A Bit IP35-Pro | E8400 | GTS250 | Gskill 2x2GB | 1.9 TB | CM EP+ 460W | 2x DVD-RW|
| Win XP x86 | Win 7 Ult x86 | LinuxMint |
| Nokia 2700c |
CA50 is offline   Reply With Quote
Old 25-03-2011, 01:45 PM   #11 (permalink)
Alpha Geek
 
The Incredible's Avatar
 
Join Date: May 2005
Location: Planet Incredible
Posts: 579
Default Re: "serivces.exe" process (how to remove ?)

@CA50

it's "serivces.exe" not "services.exe"

ok, i'll see what i can do.
The Incredible is offline   Reply With Quote
Old 25-03-2011, 02:19 PM   #12 (permalink)
Wise Old Owl
 
pulkitpopli2004's Avatar
 
Join Date: Jul 2010
Location: D!ll!
Posts: 1,132
Default Re: "serivces.exe" process (how to remove ?)

Quote:
Originally Posted by vineet369 View Post
Believe me pal, you system is so screwed at this time, there is no point in even trying to correct it. Now you have two options:

1. Just move the useful files to another drive, and reinstall XP, formatting the current OS.
i had to use the step 1 too... wasnt able to find any solution to this virus last tym..
__________________
I'd explain it to you, but your brain would explode... Trust me :hot:
i5 760, Asus P7P55D-EVO, Zotac GTX 460, VX550, Win7 64bit,4GB RAM @1600MHz, WD 500GB Caviar Black
pulkitpopli2004 is offline   Reply With Quote
Old 25-03-2011, 02:24 PM   #13 (permalink)
Fullbring
 
Zangetsu's Avatar
 
Join Date: Jan 2008
Location: Soul Society
Posts: 5,531
Default Re: "serivces.exe" process (how to remove ?)

@The Incredible: Install Quick Heal Antivirus as it scans the whole system before installation...
__________________
I'm the One you've been Waiting for...
Zangetsu is offline   Reply With Quote
Old 25-03-2011, 02:46 PM   #14 (permalink)
gkbhat.blogspot.com
 
Join Date: Apr 2008
Location: Mangalore/Bangalore
Posts: 103
Default Re: "serivces.exe" process (how to remove ?)

If you can post your startup list i.e msconfig->StartUp with the full command list shown I can help you. If you want to remove the virus doing it manually is the way.
__________________
blogging at http://gkbhat.blogspot.com
gk2k is offline   Reply With Quote
Old 25-03-2011, 09:40 PM   #15 (permalink)
Alpha Geek
 
The Incredible's Avatar
 
Join Date: May 2005
Location: Planet Incredible
Posts: 579
Default Re: "serivces.exe" process (how to remove ?)

@gk2k

in what manner do you want me to post it ? you want a printscreen ?

i just checked the startup list and there a 'something' without a name, so obviously I disabled it. Still not working.

To be precise, if I give a gap of 2 seconds in between pressing the same key, it works.
The Incredible is offline   Reply With Quote
Old 25-03-2011, 10:41 PM   #16 (permalink)
Fullbring
 
Zangetsu's Avatar
 
Join Date: Jan 2008
Location: Soul Society
Posts: 5,531
Default Re: "serivces.exe" process (how to remove ?)

^Did u tried as I said....Try it problem will be solved
__________________
I'm the One you've been Waiting for...
Zangetsu is offline   Reply With Quote
Old 25-03-2011, 11:03 PM   #17 (permalink)
Stuck in Time...
 
Vyom's Avatar
 
Join Date: May 2009
Location: Land of Logic
Posts: 2,281
Default Re: "serivces.exe" process (how to remove ?)

Quote:
Originally Posted by The Incredible View Post
@CA50
it's "serivces.exe" not "services.exe"
Glad you cleared that, cause I was about to request the mods to change the name of thread, cause I thought OP has misspelled it

Quote:
Originally Posted by pulkitpopli2004 View Post
i had to use the step 1 too... wasnt able to find any solution to this virus last tym..
Just after re-installation you mustn't use any other drives, cause there can be viruses lurking in every nook and corner of the folders of other drives. First you need to download and update antivirus, then scan complete system. And then you can use other drives.
I repeat again, DOWNLOAD, not INSTALL FROM OTHER DRIVES!

Quote:
Originally Posted by The Incredible View Post
@gk2k

in what manner do you want me to post it ? you want a printscreen ?

i just checked the startup list and there a 'something' without a name, so obviously I disabled it. Still not working.

To be precise, if I give a gap of 2 seconds in between pressing the same key, it works.
So, you are saying you still want to proceed with manual removal of the virus! You are one brave soul.
__________________
Marty: Hey, Doc, we better back up. We don't have enough road to get up to 88.
Doc Brown: Roads? Where we're going, we don't need, "roads!" :)

──── On the Internet you can be Anything you want. It's Strange that, so many people choose to be Stupid! ────
Vyom is offline   Reply With Quote
Old 26-03-2011, 06:15 PM   #18 (permalink)
gkbhat.blogspot.com
 
Join Date: Apr 2008
Location: Mangalore/Bangalore
Posts: 103
Default Re: "serivces.exe" process (how to remove ?)

@incredible a screen shot if msconfig is difficult a ccleaner screen shot is better.
@vineet369:
I had this type of virus and have removed it manually. I have done it countless times for my friends.
Viruses and worms are nothing but programs that exploit the flaw in the design of the OS
__________________
blogging at http://gkbhat.blogspot.com
gk2k is offline   Reply With Quote
Old 26-03-2011, 10:52 PM   #19 (permalink)
Alpha Geek
 
The Incredible's Avatar
 
Join Date: May 2005
Location: Planet Incredible
Posts: 579
Default Re: "serivces.exe" process (how to remove ?)

@Zangestu: sorry! i didn't.

@gk2k: i ran symantec online scanner and it reported "0 threats"
The Incredible is offline   Reply With Quote
Old 26-03-2011, 11:45 PM   #20 (permalink)
Wise Old Owl
 
Tech.Masti's Avatar
 
Join Date: Dec 2005
Location: ( 22.2° N, 88.2° E )
Posts: 1,507
Default Re: "serivces.exe" process (how to remove ?)

Try Malwarebyte, Superantispyware.... cloud antivirus like Panda cloud, hitman etc,.... All those are free....

Though i also thinks that format and reinstallation of os and then download of antivirus from net without using drive is the best idea....
Tech.Masti is offline   Reply With Quote
Old 28-03-2011, 10:32 PM   #21 (permalink)
Alpha Geek
 
The Incredible's Avatar
 
Join Date: May 2005
Location: Planet Incredible
Posts: 579
Default Re: "serivces.exe" process (how to remove ?)

thnx for all the suggestions,
i tried panda and within 50% of scanning it resulted in 4 threats, for some reasons i couldn't let the scan complete, and now i've to leave the town for 2 months.

i'll look into the matter when i'll return (but the computer would still be used by my family members), now that i know panda resulted in threats when next i'll run the scan i'll note down the threats and will try to remove them manually.

of course, then, i'll post the result here as well.

sorry for the delay and thanx for all the support and suggestions.
The Incredible is offline   Reply With Quote
Old 29-03-2011, 12:02 AM   #22 (permalink)
Stuck in Time...
 
Vyom's Avatar
 
Join Date: May 2009
Location: Land of Logic
Posts: 2,281
Default Re: "serivces.exe" process (how to remove ?)

Sure dude... happy journey... meet you after the break.... (probably )
__________________
Marty: Hey, Doc, we better back up. We don't have enough road to get up to 88.
Doc Brown: Roads? Where we're going, we don't need, "roads!" :)

──── On the Internet you can be Anything you want. It's Strange that, so many people choose to be Stupid! ────
Vyom is offline   Reply With Quote
Old 29-03-2011, 11:19 AM   #23 (permalink)
Fullbring
 
Zangetsu's Avatar
 
Join Date: Jan 2008
Location: Soul Society
Posts: 5,531
Default Re: "serivces.exe" process (how to remove ?)

Quote:
Originally Posted by The Incredible View Post
now that i know panda resulted in threats when next i'll run the scan i'll note down the threats and will try to remove them manually.
No use of pointing down the threats on piece of paper & removing them manually....

The threats cud be polymorphic...so u will be irritated in manual removal process


if u dnt implement the suggestions then y use ur own thinking....
__________________
I'm the One you've been Waiting for...
Zangetsu is offline   Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


 
Latest Threads
- by chris
- by abhidev
- by clmlbx

Advertisement




All times are GMT +5.5. The time now is 05:08 AM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.

Search Engine Optimization by vBSEO 3.3.2