|
|
|||||||||
|
|||||||||
| |||||||||
|
|
|
| |||||||||
![]() |
|
|
«
Previous Thread
|
Next Thread
»
|
Thread Tools | Search this Thread | Rate Thread | Display Modes |
|
|
|
Be the architects of evolution and help create the mobile internet future. It’s your move---enter to win here! |
|
#1
|
|||
|
|||
|
exporer.exe uses 99/100% of CPU System freezes
Whenever I try and open windows explorer it freezes, and the cpu usage become 100%. If I leave it running for a few minutes I eventually get an IRQL error (with no driver). Also if I try and browse (from the run dialog for example) then it freezes after a few seconds, as does the start menu.
Everything else works fine. I can navigate through the dos prompt. I am thinking that is a spyware/adware issue as this is what most people with the problem have reported (I've spent a good couple of days reading on the net). I've tried disabling everything in taskmgr and it still doesn't work. I have run antivirus, spybot, adaware, hijack this, cwshredder bho monitor - and can find no evidence of spyware...although as I mentioned before I suspect it IS some poorly written spyware. My hijack log Logfile of HijackThis v1.97.7 Scan saved at 04:53:48, on 21/06/2004 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\SYSTEM32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\S Tools\Symantec\Norton Ghost 2003\GhostStartService.exe C:\WINDOWS\System32\inetsrv\inetinfo.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\Inetpub\mysql\bin\mysqld-nt.exe C:\Program Files\Panda Software\Panda Antivirus Platinum\Firewall\PavFires.exe C:\WINDOWS\SYSTEM32\Ati2evxx.exe C:\Program Files\Panda Software\Panda Antivirus Platinum\pavsrv51.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Panda Software\Panda Antivirus Platinum\AVENGINE.EXE C:\WINDOWS\System32\sstray.exe C:\PROGRA~1\ITOOLS~1\DAP\DAP.EXE C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb07.exe C:\Program Files\System\Java\j2re1.4.2_03\bin\jusched.exe C:\Program Files\Multimedia\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe C:\Program Files\S Tools\Alcohol Soft\Alcohol 120\Alcohol.exe C:\Program Files\Panda Software\Panda Antivirus Platinum\APVXDWIN.EXE C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\WINDOWS\System32\ctfmon.exe C:\Program Files\Panda Software\Panda Antivirus Platinum\pavProxy.exe C:\WINDOWS\System32\cmd.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\myUserName\Desktop\HijackThis.exe C:\WINDOWS\System32\taskmgr.exe C:\WINDOWS\system32\NOTEPAD.EXE R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = URL R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = URL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = URL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = URL R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C%3A%5CProgram%20Files%5CI%20Tools%5CNetscape%5CNetscape%207%5Csearchplugins%5CNetscape_UK.src"); (C:\Documents and Settings\myUserName\Application Data\Mozilla\Profiles\default\x8vp890w.slt\prefs.js) O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Multimedia\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\S Tools\Spybot - Search & Files\Digidesign\Drivers\MMERefresh.exe Destroy\SDHelper.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [nForce Tray Options] sstray.exe /r O4 - HKLM\..\Run: [DownloadAccelerator] C:\PROGRA~1\ITOOLS~1\DAP\DAP.EXE /STARTUP O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb07.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\System\Java\j2re1.4.2_03\bin\jusched.exe O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\S Tools\SlySoft\CloneCD\CloneCDTray.exe" /s O4 - HKLM\..\Run: [DigidesignMMERefresh] C:\Program O4 - HKLM\..\Run: [mmtask] C:\Program Files\Multimedia\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe O4 - HKLM\..\Run: [Alcohol.exe Autorun] C:\Program Files\S Tools\Alcohol Soft\Alcohol 120\Alcohol.exe /startup O4 - HKLM\..\Run: [SCANINICIO] "C:\Program Files\Panda Software\Panda Antivirus Platinum\Inicio.exe" O4 - HKLM\..\Run: [APVXDWIN] "C:\Program Files\Panda Software\Panda Antivirus Platinum\APVXDWIN.EXE" /s O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\Multimedia\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\ITOOLS~1\DAP\dapextie.htm O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\ITOOLS~1\DAP\dapextie2.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM) O9 - Extra button: Research (HKLM) O9 - Extra button: Messenger (HKLM) O9 - Extra 'Tools' menuitem: Messenger (HKLM) O16 - DPF: ppctlcab - URL O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - URL O16 - DPF: {2FC9A21E-2069-4E47-8235-36318989DB13} (PPSDKActiveXScanner.MainScreen) - URL O16 - DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} (Office Update Installation Engine) - URL O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - URL O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - URL O16 - DPF: {74FFE28D-2378-11D5-990C-006094235084} (IBM Access Support) - URL O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - URL O16 - DPF: {A8658086-E6AC-4957-BC8E-7D54A7E8A78E} (SassCln Object) - URL O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - URL O16 - DPF: {E855A2D4-987E-4F3B-A51C-64D10A7E2479} (EPSImageControl Class) - URL Any help would be greatly appreciated because I REALLY cant figure this out, and rebuilding the system would be a huge pain. |
|
#2
|
||||
|
||||
|
There's a new forum for all this stuff... moved.
EDIT: I just realised that you posted this here too, so I deleted the other one. Last edited by edwinbrains : June 22nd, 2004 at 08:11 AM. |
|
#3
|
|||
|
|||
|
I would fix these with hijackthis:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = O4 - HKLM\..\Run: [DigidesignMMERefresh] C:\Program But other than that there is no malware present that can be seen with hijackthis and the entries I am having you fix will not affect CPU. |
![]() |
| Viewing: Dev Shed Forums > System Administration > Antivirus Protection > exporer.exe uses 99/100% of CPU System freezes |
| Thread Tools | Search this Thread |
| Display Modes | Rate This Thread |
|
|
|
|