Please help

Status
Not open for further replies.

morpheusv6

Journeyman
I have the following config::rolleyes:
CPU: AMD Athlon 64 3500+
RAM: Transcend 1 GB DDR 400
Motherbaord: Gigabyte GA-K8N51GMF-9
HDD: Seagate SATA 80 GB x 2

I download from the internet via torrent client Azureus from 2am to 8 am (happy hours:)).

But for the past 2 days when I check in the morning, the task manager shows pagefile usage,RAM usage and CPU usage at 100%. :(And the computer acts very sluggish and stops responding. This usually starts about 2 hrs after I start the computer( I know this as my traffic manager reported speeds and the client stopping to download after that time). :-?

Though the antivirus is running(Avast) this problem occurs.
When I intially start the computer the RAM usage is at 40%.


What could the problem be?
My inferences:
1. Virus or hacker attack!!
2. Heated up RAM or CPU (both 7 months old)
3. Heated up HDD(the HDD is barely 6 months old)
4. Program causing the problem(Azureus)

Please help. Its URGENT!!

Thanks.
:)
 

ramharis

Broken In
the question would be what did u download
it you are going to download any thing as a torrent try the bittorrent or the utorrent they are good for torrent download

and try to uninstall the torrent software in the safe mode and run virus scan in the normal mode

if problems still persists try the system restore
 
OP
morpheusv6

morpheusv6

Journeyman
to ramharis: I am downloading movies and the total size of all the torents is around 50 GB

to kiran: downloaded hijackthis. Thanks. But it did not find any suspicious file

My hijackthis log file:
Logfile of HijackThis v1.99.1
Scan saved at 10:27:03 AM, on 1/11/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\system32\spoolsv.exe
E:\Program Files\APC\APC PowerChute Personal Edition\mainserv.exe
E:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
E:\Program Files\Alwil Software\Avast4\ashServ.exe
E:\WINDOWS\system32\oodag.exe
E:\Program Files\PRTG Traffic Grapher\PRTG Traffic Grapher.exe
E:\Program Files\PRTG Traffic Grapher\PRTG Traffic Grapher.exe
E:\WINDOWS\Explorer.EXE
E:\Program Files\PRTG Traffic Grapher\watchdog\prtgwatchdog.exe
E:\WINDOWS\System32\ups.exe
E:\WINDOWS\RTHDCPL.EXE
E:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
E:\Program Files\Alwil Software\Avast4\ashDisp.exe
E:\Program Files\Netropa\Multimedia Keyboard\TrayMon.exe
E:\Program Files\Netropa\Onscreen Display\OSD.exe
E:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
E:\Program Files\Alwil Software\Avast4\ashWebSv.exe
E:\Program Files\APC\APC PowerChute Personal Edition\apcsystray.exe
E:\Program Files\Mozilla Firefox\firefox.exe
E:\Program Files\DAP\DAP.EXE
E:\WINDOWS\system32\ctfmon.exe
E:\Documents and Settings\Devendra\My Documents\My Completed Downloads\hijackthis_199\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = *g.msn.co.in/0SEENIN/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = *live.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = *go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = *go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = *go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = *go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = *g.msn.co.in/0SEENIN/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - E:\Program Files\SiteAdvisor\4608\SiteAdv.dll
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - E:\PROGRA~1\Spyware Doctor\tools\iesdsg.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - E:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - E:\PROGRA~1\Spyware Doctor\tools\iesdpb.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - E:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - E:\Program Files\SiteAdvisor\4608\SiteAdv.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - E:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] E:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [avast!] "E:\Program Files\Alwil Software\Avast4\ashDisp.exe"
O4 - HKCU\..\Run: [ctfmon.exe] E:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: APC UPS Status.lnk = ?
O8 - Extra context menu item: &Clean Traces - E:\Program Files\DAP\Privacy Package\dapcleanerie.htm
O8 - Extra context menu item: &Download with &DAP - E:\Program Files\DAP\dapextie.htm
O8 - Extra context menu item: &Windows Live Search - res://E:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Download &all with DAP - E:\Program Files\DAP\dapextie2.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://E:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\Program Files\Java\jre1.5.0_10\bin\npjpi150_10.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\Program Files\Java\jre1.5.0_10\bin\npjpi150_10.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - E:\PROGRA~1\Spyware Doctor\tools\iesdpb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\MSMSGS.EXE
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - *update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1167508488812
O17 - HKLM\System\CCS\Services\Tcpip\..\{89ED3464-3498-4157-9D75-ACD00740BC33}: NameServer = 61.1.96.69,61.1.96.71
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - E:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - E:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - E:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - E:\Program Files\SiteAdvisor\4608\SiteAdv.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - E:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: APC UPS Service - American Power Conversion Corporation - E:\Program Files\APC\APC PowerChute Personal Edition\mainserv.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - E:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - E:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - E:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - E:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: O&O Defrag - O&O Software GmbH - E:\WINDOWS\system32\oodag.exe
O23 - Service: PRTG Service (PRTGService) - Paessler GmbH - E:\Program Files\PRTG Traffic Grapher\PRTG Traffic Grapher.exe
O23 - Service: PRTG Watchdog (prtgwatchservice) - Unknown owner - E:\Program Files\PRTG Traffic Grapher\watchdog\prtgwatchdog.exe
 
OP
morpheusv6

morpheusv6

Journeyman
Report posted. Another thing I want to mention is that this usually happens when my computer is connected to the internet and switched on for extended periods of time (like 6-7 hrs at a stretch).

Could it be an overheating problem??
 

gary4gar

GaurishSharma.com
why don't u use a firewall like ZA.
check this process


E:\Program Files\PRTG Traffic Grapher\PRTG Traffic Grapher.exe
E:\Program Files\PRTG Traffic Grapher\watchdog\prtgwatchdog.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{89ED3464-3498-4157-9D75-ACD00740BC33}: NameServer = 61.1.96.69,61.1.96.71
O23 - Service: PRTG Service (PRTGService) - Paessler GmbH - E:\Program Files\PRTG Traffic Grapher\PRTG Traffic Grapher.exe
O23 - Service: PRTG Watchdog (prtgwatchservice) - Unknown owner - E:\Program Files\PRTG Traffic Grapher\watchdog\prtgwatchdog.exe
 

Kiran.dks

Technomancer
Ok. I analysed the report and found some problems.
O23 - Service: avast! Mail Scanner - Unknown owner - E:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - E:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

avast! is corrupted. Some files are missing. Web scanner & mail scanner are realtime scanners of avast! required for its normal operation. These are internet related scanners. Your mentioned that problem starts while connected to internet. It is evident that avast! is trying to run the services(which are removed/corrupted) while connected to net, hence squeezing up the CPU.
I suggest you to reinstall avast! and update its definitions.

Let us know the feedback.
 
Last edited:

Vishal Gupta

Microsoft MVP
The Logfile seems OK to me :)
Try to run the comp for 5 or 6 hours without connecting to net and then check whether the problem occurs or not! If it occurs then must be some hardware problem, like overheating ;)
 
Status
Not open for further replies.
Top Bottom