Is igfxtray a trojan?

Solved
quichelorraine Posted messages 8 Registration date   Status Membre Last intervention   -  
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   -
Good evening!

I'm not really sure how to articulate my problem, but I'll start by saying this: I lent my computer to my brother, who is into streaming, during my vacation, and upon my return, I noticed some slowdowns on certain software (Ableton Live 9, among others, a DAW).
It allowed me to see that my processor was being used much more than before my departure, and I began searching for possible viruses but found nothing conclusive, even after several scans.

On the forums, I've heard about igfxtray, which is associated with problems similar to mine and the possibility that it could be a trojan. On these forums, they said "if igfxtray is malicious, it will be in a different location than C:\windows\System32," but I can't figure out if that's the case for me because when I search the disk, igfxtray has two locations,
one in system32 and another in C:\Windows\System32\DriverStore\FileRepository\kt116274.inf_amd64_neutral_520f23c4dc0c6f55



So, being somewhat uninformed about all this, I don't know what to think because the answer might be quite simple and I could be on the wrong track.

Thank you in advance!

4 réponses

Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 710
 
Hi,

No, it’s related to Intel.

To check the computer, I invite you to run this FRST analysis and return the reports:

Follow the FRST tutorial. ( take the time to read carefully - everything is well explained ).

Download and run the FRST scan,
Wait for the scan to finish, a message will indicate that the analysis is complete.

Three FRST reports will be generated:
  • FRST.txt
  • Shortcut.txt
  • Additionnal.txt


Send these 3 reports to the website https://pjjoint.malekal.com/ to share them.
In return, provide the 3 pjjoint links that lead to the reports here in a new response so that we can consult them.

--
Please press a key to continue the disinfection...
1
quichelorraine Posted messages 8 Registration date   Status Membre Last intervention  
 
Ok great, I'll do that!
0
quichelorraine Posted messages 8 Registration date   Status Membre Last intervention  
 
Due to a lack of availability, I was only able to complete the tutorial today, but here are the 3 links:

FRST: https://pjjoint.malekal.com/files.php?id=FRST_20180812_b14e9g13x10u12

Addition: https://pjjoint.malekal.com/files.php?id=20180812_u5k13r14r12h11

Shortcut: https://pjjoint.malekal.com/files.php?id=20180812_c5b13i12r13r11
0
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 710 > quichelorraine Posted messages 8 Registration date   Status Membre Last intervention  
 
Everything is fine.
Eventually, uninstall Avast Secure Browser
Not very useful.
0
quichelorraine Posted messages 8 Registration date   Status Membre Last intervention  
 
Okay, thank you very much for your help! So I really don't see where these slowdowns are coming from.
0
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 710
 
50 degrees is not hot.

You have 8 GB of RAM, which is more than enough.
Does it lag as soon as Windows starts, or do you need to have the internet browser open?

You should check if you have abnormal CPU usage.
A screenshot of the system resource monitor with processes sorted by CPU usage as shown in the tutorial would be helpful.

Check if you have any corrupted files with SFC ( System File Check )
Download AUTO-SFC and follow the procedure
At the end of the scan, you will receive a report "CBS.log"
Send this to https://pjjoint.malekal.com/
Then respond here with the pjjoint link.

--
Please press any key to continue the disinfection...
1
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 710
 
Install Speccy.
Provide the CPU (processor) and GPU (graphics card) temperatures when you launch a movie.
Also check the hard drive (storage section) and the SMART data reported by Speccy, particularly if the drive status is "good".
See Speccy Tutorial for help

Check in the Task Manager to ensure there isn't a process consuming too many resources.

--
Please press a key to continue the disinfection...
0
quichelorraine Posted messages 8 Registration date   Status Membre Last intervention  
 

The status is indeed good, the temperature stays around 50° for the CPU, however, the GPU showed no temperature
As for the task manager, nothing too demanding but something strange, when I start the task manager, there is a spike in memory and CPU usage (around 50%) and then it instantly goes back to much lower values.
0
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 710 > quichelorraine Posted messages 8 Registration date   Status Membre Last intervention  
 
Uninstall Avast!, see if it has an impact.
0
quichelorraine Posted messages 8 Registration date   Status Membre Last intervention  
 
I just did it and I restarted but the same problems are still there,
I don't know much about it but can overheating damage the processor?
0
quichelorraine Posted messages 8 Registration date   Status Membre Last intervention  
 
Not without a browser, no problem, and with a little more but very slight.
But it's rather with Ableton Live that the slowdowns are bothersome, with or without the browser open.

That's all:

https://pjjoint.malekal.com/files.php?id=20180814_h6d11g13k15e9

and:

0
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 710
 
No more ideas than that, try reinstalling the app to see.
0
quichelorraine Posted messages 8 Registration date   Status Membre Last intervention  
 
That's it!!

By checking the performance settings, the computer was in energy-saving mode ... I switched it to "high performance" and no more issues.
It's a bit of a silly story..
Thank you for all your advice!
0
Malekal_morte- Posted messages 178136 Registration date   Status Modérateur, Contributeur sécurité Last intervention   24 710 > quichelorraine Posted messages 8 Registration date   Status Membre Last intervention  
 
ok great =)
0