Problem : windows detect : no audio device , Local Area Connection not connected. after start up for 20-60 minutes. render every program running afterward no SOUND.
Known symptoms :
- 1. 2 warning message :
,Data Execution Prevention decided to close this program : Generic Host Process for Win32 Services ,Publisher Microsoft Corporation.
,Generic Host Process for Win32 Services encountered a problem and needed to be close.
- 2. right after Windows start up, Control Panel>Sound and Audio Device have Realtek audio detected and everything if perfectly fine.
after 5-30 minutes afterward, a strange loading occur then Sound and Audio Device detect no audio device.
every program running after the strange loading occur cannot initialize Direct Sound then terminated ,some program can still be running but no sound at all.
every program running before the strange loading occur (include system sound , firefox's flash sound) still able to play its sound perfectly fine.
- 3. right after Windows start up, Network Connection>Local Area Connection (to my modem) connected , it's perfectly fine as everyday.
after 30-90 minutes afterward, ADSL connection being cut and the Local Area Connection is no longer detect modem , Repair option cannot re-new IP address as quickly as if no modem being connect to PC.
Possible cause I suspect :
- 1. a Virus/Trojan/malware from a porn ADS accidentally clicked in an imagehosting 's viewer page.
nothing happen at that moment but after shut down PC and then power-on ,the Known symptoms appear.
- 2. a malware directly tranfer from Hamachi virtual LAN network
one of network participant blaming he got a disastrous virus through hamachi but he formated his PC already. I don't know whether he face the same problem as i am.
- 3. S.W.A.T.4 : The Stetchkov syndicate , i recently bittorrented from piratebay.org a few days ago.
What have I done this far :
- 1. using http://www.windowsecurity.com/trojanscan/ scanned PC. some cookies and a trojan found in 2 years ago unused software.
- 2. using Kaspersky Antivirus scanned PC in normal mode ,full scan 3 hours. 2 virus 1 trojan found in 2 years ago unused software.
- 3. using conbofix scanned PC after closing all program possible.
the combofix request a restart due to Daemon tool's virtual drive disably ,then perform scanning PC as described in http://www.bleepingcomputer.com/combofix/how-to-use-combofix
after 24 hours have passed ,no sign of completion from the proclaim 10 minutes long scanning. I decide to terminated combofix by clicking the X button in its top right corner.
the only side effect seem to appear is the disfunction of Daemon's virtual drive : unable to initilize. AND some files being left in C:\
- 4. using Kaspersky Antivirus scanned PC in Safe mode ,full scan 1.45 hours. nothing found.
- 5. using Hijackthis scanned PC then analyzed in http://www.hijackthis.de/ . no irregular found.
- 6. using SpyBot search&destroy scanned PC in normal mode. some cookies and 1 spyware (megaupload toolbar) found.
- 7. using malwarebyte's anti malware scanned PC in normal mode. nothing found.
- 8. looking in Device Manager after the Known symptoms occur.
,Sound video and game controllers -> Realtek High definition audio is still there and working properly.
,Network Adapters -> NVIDIA nForce Networking Controller is still there and working properly.
my PC spec :
- Windows XP professional SP2 version 2002
- AMD Athlon 64 X2 Dual ,Core processor 4200+ 2.21 GHz , Ram 2GB.
The problem still existed.
I need to restart windows every time i want to re-establish SOUND ,LAN after the strange occur.
What should I do ?
I still believe this is the work of virus , but I've never heard any virus doing something like this.
PS. sometime the blue color XP taskbar revert back to grey color Classic taskbar.
EDIT: Moved from XP to Am I Infected forum ~ Hamluis.
Edited by hamluis, 27 June 2010 - 10:30 AM.