"CPU usage" @ 100%, WTF?

Discussion in 'Software' started by shockt327, Apr 20, 2007.

  1. MickeyRoush

    MickeyRoush Specialist

    These are normal readings.

    It still sounds like something is corrupt or malicious.

    Sorry if I mention something that you've already tried. This thread is getting long.:eek:
    But have you tried using CCleaner.
    http://majorgeeks.com/CCleaner_Slim_No_Yahoo_Toolbar_English_d4191.html

    After cleaning it and fixing any issues.
    Could you post what it shows under Tools:
    First what is under Uninstall. (For this list you can select Save text to file and then copy and past it here.)
    Second what is under Start Up. (For this you would have to print screen it or just type it up manually. Sorry :eek:)

    Sorry if this sounds like a lot of work, I'm still wanting to look at some areas of interest that may be causing your issue. :eek:

    Also did you run this yet?
    http://majorgeeks.com/McAfee_Avert_Labs_Rootkit_Detective_d5447.html
    Let me know if it finds anything hidden before you try to use it to fix anything. I just want to know if it finds anything hidden. And it's safe to use with any other anti virus, spyware, etc. as it is stand alone. You can just delete it when done.
     
  2. shockt327

    shockt327 Private First Class

    I use Ccleaner quite a bit.

    http://i26.photobucket.com/albums/c117/shocktrooper327/ccleaner.jpg

    Here's my uninstall list:

    Adobe Download Manager 2.0 (Remove Only)
    Adobe Flash Player 9 ActiveX
    Adobe Flash Player Plugin
    Adobe Photoshop 7.0.1
    Adobe Reader 7.0.9
    Apple Software Update
    ATI - Software Uninstall Utility
    ATI Control Panel
    ATI Display Driver
    AVG 7.5
    BCM V.92 56K Modem
    Broadcom 440x 10/100 Integrated Controller
    CCleaner (remove only)
    Comcast High-Speed Internet Install Wizard
    Comcast Toolbar
    Dell Photo Printer 720
    Dell ResourceCD
    Dell TrueMobile 1300 WLAN Mini-PCI Card
    Desktop Doctor
    GrabIt 1.6.2 Beta (build 940)
    Hotfix for Windows XP (KB914440)
    InterActual Player
    IObit SmartDefrag Beta 2.1
    iPod for Windows 2005-10-12
    iPod Updater 2004-08-06
    iTunes
    Java(TM) SE Runtime Environment 6
    LimeWire 4.12.6
    Microsoft Office Professional Edition 2003
    Mozilla Firefox (2.0.0.4)
    MSN Music Assistant
    MSXML 4.0 SP2 (KB927978)
    Netflix Movie Viewer
    PowerDVD 5.1
    QuickTime
    RealPlayer
    Security Update for Windows Internet Explorer 7 (KB928090)
    Security Update for Windows Internet Explorer 7 (KB931768)
    Security Update for Windows Internet Explorer 7 (KB933566)
    Security Update for Windows Media Player (KB911564)
    Security Update for Windows Media Player 10 (KB911565)
    Security Update for Windows Media Player 10 (KB917734)
    Security Update for Windows Media Player 6.4 (KB925398)
    Security Update for Windows XP (KB890046)
    Security Update for Windows XP (KB893066)
    Security Update for Windows XP (KB893756)
    Security Update for Windows XP (KB896358)
    Security Update for Windows XP (KB896422)
    Security Update for Windows XP (KB896423)
    Security Update for Windows XP (KB896424)
    Security Update for Windows XP (KB896428)
    Security Update for Windows XP (KB899587)
    Security Update for Windows XP (KB899591)
    Security Update for Windows XP (KB901017)
    Security Update for Windows XP (KB901214)
    Security Update for Windows XP (KB902400)
    Security Update for Windows XP (KB904706)
    Security Update for Windows XP (KB905414)
    Security Update for Windows XP (KB905749)
    Security Update for Windows XP (KB908519)
    Security Update for Windows XP (KB908531)
    Security Update for Windows XP (KB911280)
    Security Update for Windows XP (KB911562)
    Security Update for Windows XP (KB911567)
    Security Update for Windows XP (KB911927)
    Security Update for Windows XP (KB912919)
    Security Update for Windows XP (KB913446)
    Security Update for Windows XP (KB913580)
    Security Update for Windows XP (KB914388)
    Security Update for Windows XP (KB914389)
    Security Update for Windows XP (KB917159)
    Security Update for Windows XP (KB917422)
    Security Update for Windows XP (KB917953)
    Security Update for Windows XP (KB918118)
    Security Update for Windows XP (KB918439)
    Security Update for Windows XP (KB919007)
    Security Update for Windows XP (KB920213)
    Security Update for Windows XP (KB920214)
    Security Update for Windows XP (KB920670)
    Security Update for Windows XP (KB920683)
    Security Update for Windows XP (KB920685)
    Security Update for Windows XP (KB921398)
    Security Update for Windows XP (KB921883)
    Security Update for Windows XP (KB922616)
    Security Update for Windows XP (KB922819)
    Security Update for Windows XP (KB923191)
    Security Update for Windows XP (KB923414)
    Security Update for Windows XP (KB923689)
    Security Update for Windows XP (KB923694)
    Security Update for Windows XP (KB923980)
    Security Update for Windows XP (KB924191)
    Security Update for Windows XP (KB924270)
    Security Update for Windows XP (KB924667)
    Security Update for Windows XP (KB925902)
    Security Update for Windows XP (KB926255)
    Security Update for Windows XP (KB926436)
    Security Update for Windows XP (KB927779)
    Security Update for Windows XP (KB927802)
    Security Update for Windows XP (KB928255)
    Security Update for Windows XP (KB928843)
    Security Update for Windows XP (KB929123)
    Security Update for Windows XP (KB930178)
    Security Update for Windows XP (KB931261)
    Security Update for Windows XP (KB931784)
    Security Update for Windows XP (KB932168)
    Security Update for Windows XP (KB935839)
    Security Update for Windows XP (KB935840)
    Shockwave
    SigmaTel AC97 Audio Drivers
    Sonic DLA
    Sonic RecordNow!
    Sonic Update Manager
    Spybot - Search & Destroy 1.4
    Star Wars ScreenThemes
    Update for Windows XP (KB898461)
    Update for Windows XP (KB900485)
    Update for Windows XP (KB904942)
    Update for Windows XP (KB910437)
    Update for Windows XP (KB916595)
    Update for Windows XP (KB920872)
    Update for Windows XP (KB922582)
    Update for Windows XP (KB927891)
    Update for Windows XP (KB929338)
    Update for Windows XP (KB930916)
    Update for Windows XP (KB931836)
    Update for Windows XP (KB936357)
    VideoLAN VLC media player 0.8.4a
    WebFldrs XP
    Windows Defender Signatures
    Windows Genuine Advantage Notifications (KB905474)
    Windows Installer 3.1 (KB893803)
    Windows Internet Explorer 7
    Windows Media Format Runtime
    Windows Media Player 10
    Windows XP Hotfix - KB873339
    Windows XP Hotfix - KB885250
    Windows XP Hotfix - KB885835
    Windows XP Hotfix - KB885836
    Windows XP Hotfix - KB886185
    Windows XP Hotfix - KB887472
    Windows XP Hotfix - KB887742
    Windows XP Hotfix - KB888113
    Windows XP Hotfix - KB888302
    Windows XP Hotfix - KB890859
    Windows XP Hotfix - KB891781
    Windows XP Service Pack 2
    WinRAR archiver
    Yahoo! Toolbar
     
  3. MickeyRoush

    MickeyRoush Specialist

    Okay, so far I would do the following:


    Remove this:
    Adobe Download Manager 2.0 (Remove Only)
    (You don't really need this, it installs with their products)

    Remove this:
    Apple Software Update
    (As above, you don't need this, it installs with their products)

    Remove this:
    Adobe Reader 7.0.9
    and install latest here:
    http://majorgeeks.com/Adobe_Reader_d3852.html

    Remove this:
    GrabIt 1.6.2 Beta (build 940)
    (This is a beta version and has been known to have bugs. You an always reinstall it if you need it later.)

    Remove this:
    Star Wars ScreenThemes
    (These have been known to cause issues. You can always reinstall later.)

    Do you need this/if not remove it:
    Yahoo! Toolbar
    (It may not be causing your issues, but if you don't need/use it, why have it?)

    Do you need this/if not remove it:
    Comcast Toolbar
    (It may not be causing your issues, but if you don't need/use it, why have it?) You can always download it again, if you're a Comcast user.

    Do you need this/if not remove it:
    Netflix Movie Viewer
    (This has been known to conflict/cause issues with Windows Media Player and Internet Explorer) You can always reinstall later.

    Are you happy with this/if not remove it:
    VideoLAN VLC media player 0.8.4a
    (I've had issues with this program in the past, therefore I prefer not to use it.) You can always reinstall it later.

    Are you happy with this:
    RealPlayer
    (I know a lot of people use it, in fact I used too. But I prefer my users not install it, only time you'll need it is if you want view a video in their format. Which shouldn't happen very often nowadays.) It's up to you. But if it were me, I'd remove it. I don't need it and I'll pass on any video that is in their format.

    Also, did you run the McAfee tool that I suggested?

    I have some more questions. But I'll leave it at that for right now.

    I hope you don't mind removing those programs. :eek: That is just what I would do. :(
     
  4. NICK ADSL UK

    NICK ADSL UK MajorGeeks Forum Administrator Staff Member

    Just a reminder in that you should only have the essential program's in your start up folder like firewall /AV / Antispyware ETC. You should remove everything else.
     
  5. shockt327

    shockt327 Private First Class

    I don't even know what most of that stuff is. Could you look at the list and tell me exactly what to get rid of?

    Thanks...
     
  6. shockt327

    shockt327 Private First Class

    I uninstalled everything, am I'm running the McAfee tool right now.

    I'll get back to you as soon as if is finished. :)
     
  7. shockt327

    shockt327 Private First Class

    OK, I ran the McAfee tool, here is what it found:

    HKLM\SOFTWARE\Classes\ActiveScan\CLSID
    HKLM\SOFTWARE\Classes\ActiveScan\CurVer
    HKLM\SOFTWARE\Classes\ActiveScan.1\CLSID
    HKLM\SOFTWARE\Classes\ActiveScan_Installer\CLSID
    HKLM\SOFTWARE\Classes\ActiveScan_Installer\CurVer
    HKLM\SOFTWARE\Classes\ActiveScan_Installer.1\CLSID
    HKLM\SOFTWARE\Classes\ASControl.ControlConexion\CLSID
    HKLM\SOFTWARE\Classes\ASControl.ControlConexion\CurVer
    HKLM\SOFTWARE\Classes\ASControl.ControlConexion.1\CLSID
    HKLM\SOFTWARE\Classes\ASControl.Lista\CLSID
    HKLM\SOFTWARE\Classes\ASControl.Lista\CurVer
    HKLM\SOFTWARE\Classes\ASControl.Lista.1\CLSID
    HKLM\SOFTWARE\Classes\ASControl.Reporte\CLSID
    HKLM\SOFTWARE\Classes\ASControl.Reporte\CurVer
    HKLM\SOFTWARE\Classes\ASControl.Reporte.1\CLSID
    HKLM\SOFTWARE\Classes\ASControl.ReportHebrew\CLSID
    HKLM\SOFTWARE\Classes\ASControl.ReportHebrew\CurVer
    HKLM\SOFTWARE\Classes\ASControl.ReportHebrew.1\CLSID
    HKLM\SOFTWARE\Classes\ASControl.Seleccion\CLSID
    HKLM\SOFTWARE\Classes\ASControl.Seleccion\CurVer
    HKLM\SOFTWARE\Classes\ASControl.Seleccion.1\CLSID
    HKLM\SOFTWARE\Classes\BDSCANONLINE.BDSCANONLINECtrl.1\CLSID
    HKLM\SOFTWARE\Classes\PAVPZ.SOS\CLSID
    HKLM\SOFTWARE\Classes\PAVPZ.SOS\CurVer
    HKLM\SOFTWARE\Classes\PAVPZ.SOS.1\CLSID
     
  8. candive

    candive Corporal

    Sounds to me like the SVCHOST Runaway has been removed.
    If when you restart and immediately go to processes & SVC is not using more then 50% CPU after approx 30 seconds, you have accomplished what you set out to do.
    There are more than one SVCHost present and system idle process because they are used by your PC and belong there.
     
    Last edited: Jul 18, 2007
  9. candive

    candive Corporal

    Thanks
     
  10. MickeyRoush

    MickeyRoush Specialist

    Holy crap Batman (I can use that word, can't I? :eek::D) I've never seen it find that much stuff before. rolleyes

    Let me research these and see if you should remove them.

    By the way, is your machine running any better? Or is it still running at 100%?
     
  11. MickeyRoush

    MickeyRoush Specialist

    Do you still have any Panda Software on your machine?
    I'm assuming you just did the online scan?

    Everything McAfee found is left from Panda.
    http://www.siteadvisor.com/sites/pandasoftware.es/downloads/6394818/

    If it were me personally, I would have McAfee remove them. You don't want anything hidden on your machine. Especially if you're not using it. (Even though I have extensive experience with malware, I'm am no expert on it like the members here are. As these are supposedly left by Panda a reputable company.) But that's up to you. I don't know the effects that it could cause. Make sure you back up everything, have system restore set a point before you do it. I've had it remove everything it's found in the past and never had any problems. But you always take a chance when you mess with these type of files, registry keys, etc. (Even though I have extensive experience with malware, I'm am no expert on it like the Malware Forum members here are.)

    Also for your reading:
    There are vulnerabilities caused by these that Panda leaves behind.
    http://xforce.iss.net/xforce/xfdb/30318
    (Don't download that patch on the above website, I just wanted you to read it)

    Let me know what you decide. Especially if it's running any better. Also if you uninstalled everything I suggested, you should have a couple of things less running at startup.

    Since a couple of members suggested modifying your startup programs you may want to get them to help you with that has well. I may be able to help with that too. ;)

    I wait for your reply. ;)
     
  12. shockt327

    shockt327 Private First Class

    I'm actually not quite sure what to get rid of for start up. Exactly what should I get rid of?

    And yes, I am going to get rid of all that Pandaware stuff. I don't know how or why I didn't get rid of it in the first place.

    BTW - It runs slightly better. I can get about 15 minutes of video before it freezes up, before it used to do that right away. With that being said, I'm currently hovering around 90% CPU right now.
     
  13. candive

    candive Corporal

    See my Next Post
     
    Last edited: Jul 23, 2007
  14. candive

    candive Corporal

  15. candive

    candive Corporal

  16. MickeyRoush

    MickeyRoush Specialist


    You could try to do as Bugballou suggested earlier. You actually will be disabling items, etc. Not removing them.


    But first try what candive, suggested as per Windows Updates.


    Then we can look at msconfig, to be disable some, but working with the services is better to do first.

    Let us know what happens after you make sure you have updated Windows. You may need a hotfix as someone stated earlier as well.
     
  17. shockt327

    shockt327 Private First Class

  18. candive

    candive Corporal

    No do this first.

    Start, Control Panel, Automatic updates.
    Make sure "Automatic" is checked.

    Start, Run, (type) "services.msc" (without the quotes), OK.
    Maximize the screen, be sure Automatic Updates is set to "Automatic".
    If it is not, left click twice on the words "Automatic Updates".
    Choose "General" Tab.
    Startup type should say "Automatic" if it does not click on the drop down arrow.
    Choose Automatic, Apply, OK.

    Then,
    Start, All programs, at the top you will find "Microsoft update" or "Windows update."
    On the Microsoft page you will be able to check for Critical Updates.
    Follow the instructions given there, you may have to allow active x, do so.
     
  19. gennarpierce

    gennarpierce Private E-2

    We've run into this problem and it appears to be the Automatic update service. They may have corrected this in 8.1, but to disable it do the following...

    1. Go to the "Help" menu.
    2. Select "Check for Updates"
    3. Go to Preferences (you may have to 'cancel' if you aren't current or just update completely, then go back to help and you'll get a window w/a 'Preferences' button).
    4. Disable check for updates by unchecking the box at the top of the resulting menu.

    I hope that helps you out.
     
  20. shockt327

    shockt327 Private First Class

    You mean "help and support" that is on the right hand side of the start window?
     
  21. gennarpierce

    gennarpierce Private E-2

    no, in acrobat reader 8
     
  22. shockt327

    shockt327 Private First Class

    I got rid of acrobat...I use Foxit now.
     
  23. shockt327

    shockt327 Private First Class

    So I just go to Ccleaner - Tools - Start-up tab - and hit "delete entry" for what exactly??? I don't even know what half of these are for....

    I see:

    ctfmon.exe
    BCMSMMSG
    ATIModeChange
    ATIPTA
    dla
    DVDLauncher
    tgcmd
    AVG7_CC
    QuickTimeTask
    iTunesHelper
     
  24. shockt327

    shockt327 Private First Class

    Just thinking out loud...

    I was browsing the help menu. I noticed that I can use a troubleshooter for the videocard. Could the videocard be my prob? Should I use the troubleshooter?
     
  25. shockt327

    shockt327 Private First Class

    bump...
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds