100% CPU - Highjack logs (RESOLVED)

  1. #11
    CharlieB is offline Newbie

    Re: 100% CPU - Highjack logs

    Im afraid that we are now clean according to Kaspersky but CPU still at 100%.

    Is there anything else we can try or are we now at the end?

    (great support btw and I will be making a donation, fix or not.)


  2. #12
    VopThis is offline Senior Member (Canada)
    Is there anything else we can try or are we now at the end?
    There are still many things to try. Although we have been finding malware, your primary dominating issues could very well be hardware and/or driver related.



    Go into 'task manager' (Ctrl+Alt+Delete keys) and report back what process(es) seem to be hogging the CPU (% CPU utilized).



    Also could be a corrupt Driver. Is the CPU performance no better in SAFE MODE? Different or minimal drivers are used in SAFE MODE.




    Do you have an optical mouse that may have gotten banged around? Such a mouse (in particular) is very delicate and a flaky mouse could be one device that could account for excessive demands being placed on the CPU. See:

    http://www.google.ca/search?hl=en&q=...G=Search&meta=




    In the meantime, you can try a few additional cleanup procedures, if you want:

    Please download ATF Cleaner http://www.atribune.org/ccount/click.php?id=1 by Atribune.
    This program is for XP and Windows 2000 only

    It does not require any installation and uses minimal system resources. It is set up to clean IE, FireFox and Opera, and detects the browsers you have and grays out the other(s).
    • Double-click ATF-Cleaner.exe to run the program.
      Under Main choose: Select All
      Recommend UNCHECKING COOKIES if you rely on system remembered passwords.
      Click the Empty Selected button.

    If you use Firefox browser
    • Click Firefox at the top and choose: Select All EXCEPT FIREFOX SAVED PASSWORDS
      Click the Empty Selected button.
      NOTE: If you would like to keep your saved passwords, please click No at the prompt.

    If you use Opera browser
    • Click Opera at the top and choose: Select All EXCEPT COOKIES AND SAVED PASSWORDS
      Click the Empty Selected button.
      NOTE: If you would like to keep your cookies and saved passwords, please click No at the prompt.



    Click Exit on the Main menu to close the program.





    Download deldomains:
    http://www.mvps.org/winhelp2002/DelDomains.inf
    To use: right-click and select: Install (no need to restart)
    Note: This will remove all entries in the "Trusted Zone" and "Ranges" also.


    Note: Because this will remove all entries in both the Trusted Zone and the Restricted Zone, any program, tool, or settings that were previously used to set restrictions will need to be reset:
    Examples: (if these are being used),
    • Spybot's "Immunize" feature is affected, you will need to re-immunize
    • SpywareBlaster's "Enable all protection" feature will have to be re-enabled
    • IE-SPYADS will have to be reinstalled


    Get hoster here:
    http://www.funkytoad.com/download/hoster.zip

    Unzip it to a convenient place and open the program.
    Choose "Restore Original Hosts" and press "OK".
    Close the program.

  3. #13
    CharlieB is offline Newbie
    "Also could be a corrupt Driver. Is the CPU performance no better in SAFE MODE? Different or minimal drivers are used in SAFE MODE."

    Success! - Finding and deleting the viruses that were present and reinstalling the drivers has resolved the issue.

    Many thanks indeed! I will inform all commercial contacts about this most helpful site.


    *Donation sent from - al@davidjason.co.uk*
    Last edited by CharlieB; 27-03-2006 at 08:06 PM.

  4. #14
    VopThis is offline Senior Member (Canada)
    Save 20% on AVG Internet Security 2012 Suite!
    Success! - Finding and deleting the viruses that were present and reinstalling the drivers has resolved the issue.
    Excellent news!!

    Am I to gather that you found several processes running in the 'Task Manager' for which you were able to determine were 'badware'? Can you expand on the process that you followed and what these processes were described as or named. Was 'VirusTotal' a useful resource in making your determinations, etc.?

+ Reply to Thread
Page 2 of 2 FirstFirst 1 2