just install the Registry Mechanic. If you are not sure which version applies to your system download both of them and try to run them. brett very suspicious, what would it be doing in C:\Windows\System32\MSOffice\services.exe ? I can onyy access myy disk in safe mode booting from a winxp disk. this contact form

Previously had another few viruses I got rid of in appdata they keep coming back as something else! See also: Link BesT Very dangerous when deleted from windows/system32. I'd be grateful if you would note the following: The fixes are specific to your problem and should only be used for the issues on this machine. services.exe was installed in a windows system carpet when I try the free online antivirus scan by panda antivirus. https://answers.microsoft.com/en-us/protect/forum/protect_scanner-protect_scanning/terrible-virus-in-servicesexe/6e4ef6f2-25b3-4ef5-8782-a62783438602

If this file's username is you, it is trojan; if it's "SYSTEM" then it is safe. Added by the ALETS TROJAN! Click Computer & Files (top left). It's under User Name and Services.

  • In my case it's just the Windows Services and Controller app.
  • They may otherwise interfere with our tools.
  • The legitimate services.exe is located under C:\Windows\System32 and is called service control manager.
  • The minute a pop-up window comes to annoy me, I check the programs running in task manager and what do you know!
  • Kartik Arora 144,967 views 0:48 How to remove Google Update from Windows Services - Duration: 2:36.
  • The file size is 272,384bytes (25% of all occurrences), 798,490bytes, 60,416bytes or 86,017bytes.
  • Added by unidentified spyware - recognized by Kaspersky antivirus as Small.X TROJAN!
  • Please copy and paste it to your reply.
  • Doing so may cause your computer to not start properly.

IF it becomes a resource hog, then your problem lies in the apps that trigged it. Finished : << RKreport[15]_D_04202013_02d1224.txt >> RKreport[13]_S_04182013_02d2009.txt ; RKreport[14]_S_04202013_02d1224.txt ; RKreport[15]_D_04202013_02d1224.txt ; RKreport[3]_S_03172013_02d2236.txt ; RKreport[8]_S_04062013_02d1233.txt Back to top #8 gringo_pr gringo_pr Bleepin Gringo Malware Response Team 136,771 posts OFFLINE Gender:Male Dean Tuffey Run ESET Online scanner immediately. Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! "System Update2" definitely not required.

Sign in to add this video to a playlist. Right-click it -> chose "Exit." A popup will warn that protection will now be disabled. I unchecked it. See also: Link Chris If services.exe is located in the system root folder, it is essential and not harmful.

Once I disabled the Bluetooth device and terminated its two process from Task Manager, services.exe stopped using all my CPU. weblink See also: Link Rob Thanks to 00s%b. Loading... Then manually delete the sevices.exe file from the windows folder. (Make sure to leave the real services.exe file which is in the windows/system32 folder, as this is the real program and

ID: 7   Posted December 19, 2012 Hi,**WARNING**Unfortunately one or more of the infections I have identified are Backdoor Trojans, IRCBots or other Malware capable of stealing very important information. Runs at about 1200k in processes. no refrences to it in the registry.

david P It's a trojan, try using HijackThis Open the Misc Tools section Open Process Manager then kill process c:\windows\services.exe then go to C:\WINDOWS and manual delete services.exe Restart and that's

Email tech support at Webroot but haven't heard back yet John Andersen i had that file service and it was on my processes username i found it and the other file Follow the link for the registry fix and delete both C:Windows/services.exe and C:Windows/System32/mssyncr.exe, that's what I did and it's no longer on my computer and trying to dial out See also: Run an AV scan to confirm the services.exe file is now clean. his comment is here Blocked with zone alarm, but still cant get rid of it.

MCAFEE ANTIVIRUS Please navigate to the system tray on the bottom right hand corner and look for a sign. it seems go to work! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! "xp_system" definitely not required. Click on "Yes" to disable the Antivirus guard.

This is normal.When finished, it shall produce a log for you. Logged jeffce Probably Not A Bot Avast Evangelist Massive Poster Posts: 2460 Member of UNITE Re: virus in c:\windows\system32\services.exe Threat: Win32:Sirefef-ZT [Trj] « Reply #10 on: June 20, 2013, 01:30:04 PM Cheers Andy Running as an unprivileged user I have no problems with this process, but when I log on as Administrator the services.exe process hogs the CPU (according to MS's Task wouldn't even let me open it or restore my computer or anything at all .