CPU Constantly Spikes to 100%

Discussion in 'Malware Help (A Specialist Will Reply)' started by fjccommish, Oct 14, 2008.

  1. fjccommish

    fjccommish Private E-2

    I was browsing videos on Youtube when they started lagging. Then the whole computer started lagging, the mouse cursor hesitating, windows taking a long time to open or change. I checked the Performance to find CPU spiking constantly to 100%, even with all programs closed.

    I've run through the procedures in the READ ME FIRST, and will attach the logs. None of the procedures fixed the problem. It took all day to run them because everything is very very slow. Lots of malware was found, including it looked like vundo, but nothing fixed it.

    Please help.

    Attached are the logs from SuperAntiSpyware, ComboFix, and Anti-Malware.

    The next message will contain Mglogs.zip

    I had this problem before with the 100% spiking, but running through the Read Me First procedures fixed it (it seemed to be combofix that did the job that time.)
     

    Attached Files:

  2. fjccommish

    fjccommish Private E-2

    And now, the final log, MGlogs.zip.

    I'm afraid your friends will die on that moon.
     

    Attached Files:

  3. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    just to let you know we are looking over your logs and will get back to you with further instructions :)

    Thanks
    Kestrel13!
     
  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Hi fjccommish

    I can see from your logs that some of the scans were run in safe boot mode and not in normal mode as requested.
    Please make certain the computer is now in normal mode before we do the below:

    1)
    • open up malwarebytes and be sure to update it's definitions and rescan
    • open up SUPERantispyware update it's definitions and rescan

    2) If you haven't already, please disable the Guest account in User accounts.


    3) Run this Disable/Remove Windows Messenger to remove Windows Messenger. Do not confuse Windows Messenger with MSN Messenger because they are not the same. Windows Messenger is a frequent cause of popups.


    4) I can see from your logs that your desktop is extremely cluttered and dis-organised. This is not a good working environment for you and it's a very easy way to lose track of files .. therefore that mess would be an ideal place to harbour malware


    5) Now run the C:\MGtools\GetLogs.bat file by double clicking on it. Then attach the new C:\MGlogs.zip file that will be created by running this.


    So to summarise, in your next reply we would like to see:
    • SUPERantispyware log after being sure you updated
    • Malware Bytes log again be sure to update its definitions first
    • MGlogs.zip

    Thanks :)
    Kestrel13!
     
  5. fjccommish

    fjccommish Private E-2

    Kestrel13! thanks for the help.

    The computer is moving way too slow to try to tackle those desktop items right now.

    The scans have been run in regular windows after updating as instructed.

    The logs are attached.
     

    Attached Files:

  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Yes the problems that you are experiencing could very well relate to all the junk that is sitting on your desktop right now, it's total chaos. I would strongly suggest that you do indeed deal with this now and start to organize your many many files.

    You could also go ahead and post in the software forum with a link back relating to this thread here in the malware removal section so that the people who help you in software are also aware of what's going on and what bases have already been covered... therefore they will know the best way to assist you with the problems you are having.


    Some other things to address:

    1. Did you install OpenOffice.org 2.4 on purpose and do you use it, Or did you unknowingly just click to allow it to be installed when running a Java update? Uninstall it if you do not use it.
    2. Physically unplug your cable to the internet and see if the PC runs any differently. If not, try step 3.
    3. Uninstall AVG8. Any change?
    4. If you want to go the extra step...we can do a scan with GMER but i'm not expecting anything to show; So run this optionally.

    Please download GMER and save it to your desktop:



    * Unzip (extract) it to your desktop.
    * Disconnect from Internet and close all running programs.
    * There is a small chance this application may crash your computer so save any work you have open.
    * Double-click gmer.exe to run it.
    * Let the gmer.sys driver to load if asked.
    * If it gives you a warning at program start about rootkit activity and asks if you want to run a scan... click NO.
    * Click the Rootkit tab.
    * Make sure all the boxes on the right of the screen are checked, EXCEPT for "Show All".
    * Then click the Scan button. Wait for the scan to finish.
    * Once done, click the Copy button.
    * This will copy the results to the clipboard. Open Notepad and press CTRL + V to paste the log, and save it to your desktop. Attach this log to your next reply.

    NOTE: If you're having problems with running gmer.exe, try it in Safe Mode. This tool works in Safe Mode whereas many other rootkit revealers do not.




    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommed you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /u
        • Notes: The space between the combofix" and the /u, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
      • Delete the C:\combofix folder from combofix (if it exists)
    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete the C:\MGlogs.zip
    7. If you are running Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning steps in the READ ME for your Window version and see the steps to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    8. After doing the above, you should work thru the below link:

    Thanks
    Kestrel13!
     
  7. fjccommish

    fjccommish Private E-2

    I deleted the majority of files on the desktop, it made no difference.

    I've used OpenOffice instead of Office for 2 years. Should it be deleted?

    No difference with PC disconnected from Internet or with AVG uninstalled.

    GMER found nothing.

    As suggested posting to the software forum.
     
  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Safe surfing :)
     
  9. fjccommish

    fjccommish Private E-2

    Safe surfing? The computer is still spiking to CPU 100%. There is no surfing.
     
  10. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Hi :)

    As has been suggested to you, you will need to visit the software forum now to work out your problems...we here in malware removal have done alll we can for our part, and your machine is not infected...your issues lie elsewhere.

    Thanks
    Kes
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds