Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: CPU-Auslastung 99% bei Prozess "System"

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

 
Alt 11.10.2010, 15:33   #14
Tangomaus
 
CPU-Auslastung 99% bei Prozess "System" - Standard

CPU-Auslastung 99% bei Prozess "System"



ok, hier die Ergebnisse von virustotal:

Code:
ATTFilter
File name:
decora-d3d.dll
Submission date:
2010-10-11 14:03:00 (UTC)
Current status:
queued (#5) queued analysing finished
Result:
0/ 43 (0.0%)

Antivirus  	Version  	Last Update  	Result
AhnLab-V3	2010.10.11.00	2010.10.11	-
AntiVir	7.10.12.173	2010.10.11	-
Antiy-AVL	2.0.3.7	2010.10.11	-
Authentium	5.2.0.5	2010.10.11	-
Avast	4.8.1351.0	2010.10.11	-
Avast5	5.0.594.0	2010.10.11	-
AVG	9.0.0.851	2010.10.11	-
BitDefender	7.2	2010.10.11	-
CAT-QuickHeal	11.00	2010.10.11	-
ClamAV	0.96.2.0-git	2010.10.11	-
Comodo	6353	2010.10.11	-
DrWeb	5.0.2.03300	2010.10.11	-
Emsisoft	5.0.0.50	2010.10.11	-
eSafe	7.0.17.0	2010.10.07	-
eTrust-Vet	36.1.7904	2010.10.11	-
F-Prot	4.6.2.117	2010.10.11	-
F-Secure	9.0.15370.0	2010.10.11	-
Fortinet	4.2.249.0	2010.10.11	-
GData	21	2010.10.11	-
Ikarus	T3.1.1.90.0	2010.10.11	-
Jiangmin	13.0.900	2010.10.11	-
K7AntiVirus	9.65.2713	2010.10.09	-
Kaspersky	7.0.0.125	2010.10.11	-
McAfee	5.400.0.1158	2010.10.11	-
McAfee-GW-Edition	2010.1C	2010.10.11	-
Microsoft	1.6201	2010.10.11	-
NOD32	5520	2010.10.11	-
Norman	6.06.07	2010.10.11	-
nProtect	2010-10-11.01	2010.10.11	-
Panda	10.0.2.7	2010.10.10	-
PCTools	7.0.3.5	2010.10.11	-
Prevx	3.0	2010.10.11	-
Rising	22.69.00.01	2010.10.11	-
Sophos	4.58.0	2010.10.11	-
Sunbelt	7036	2010.10.11	-
SUPERAntiSpyware	4.40.0.1006	2010.10.10	-
Symantec	20101.2.0.161	2010.10.11	-
TheHacker	6.7.0.1.054	2010.10.10	-
TrendMicro	9.120.0.1004	2010.10.11	-
TrendMicro-HouseCall	9.120.0.1004	2010.10.11	-
VBA32	3.12.14.1	2010.10.11	-
ViRobot	2010.10.4.4074	2010.10.11	-
VirusBuster	12.67.11.0	2010.10.10	-
Additional information
Show all
MD5   : a2a8f4a7128af1a5bcb7535a5cd55319
SHA1  : 14cde2f898767d8ad4e45f2ecca3274e2ea17295
SHA256: 8e765baa73a7cb31c0942c49297d762b0667970f85505e72084fa0758481cfa5
ssdeep: 192:KSnM+Mh+1clWQaWEBh+cELbnf/vicYjZuDqYAe9tUMm6usm2liJ:khTWQy+c6bnX/AZGq/e
9+l6R8
File size : 12800 bytes
First seen: 2010-08-03 00:45:46
Last seen : 2010-10-11 14:03:00
TrID:
Win32 Dynamic Link Library (generic) (65.4%)
Generic Win/DOS Executable (17.2%)
DOS Executable Generic (17.2%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
sigcheck:
publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
PEInfo: PE structure information

[[ basic data ]]
entrypointaddress: 0x2AFE
timedatestamp....: 0x4C3F3C1B (Thu Jul 15 16:49:31 2010)
machinetype......: 0x14c (I386)

[[ 4 section(s) ]]
name, viradd, virsiz, rawdsiz, ntropy, md5
.text, 0x1000, 0x1D28, 0x1E00, 6.04, e8ede46673d80f231515f00fb51515eb
.rdata, 0x3000, 0xBD7, 0xC00, 5.16, 4e287f411db0470751707abaa7b7f680
.data, 0x4000, 0x3C, 0x200, 0.15, 2863725623484c165d7c47ea87d28218
.reloc, 0x5000, 0x134, 0x200, 3.87, e03cdab60f837c99bb0f3277b5208b92

[[ 2 import(s) ]]
MSVCR71.dll: _iob, printf, fopen, sscanf, getenv, fflush, vfprintf, fprintf, __3@YAXPAX@Z, _initterm, malloc, _adjust_fdiv, __CppXcptFilter, _except_handler3, __dllonexit, _onexit, free, __2@YAPAXI@Z
KERNEL32.dll: DisableThreadLibraryCalls

[[ 19 export(s) ]]
TraceImpl, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DRendererDelegate_createFloatTexture@24, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DRendererDelegate_disable@16, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DRendererDelegate_dispose@16, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DRendererDelegate_drawQuad@40, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DRendererDelegate_drawTexture2@96, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DRendererDelegate_drawTexture@68, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DRendererDelegate_enable@16, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DRendererDelegate_getDevicePtr@16, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DRendererDelegate_init@20, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DRendererDelegate_setBlendMode@20, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DRendererDelegate_updateFloatTexture@36, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DShader_disable@16, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DShader_dispose@16, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DShader_enable@16, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DShader_init@20, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DShader_setConstantsF@32, _Java_com_sun_scenario_effect_impl_hw_d3d_D3DShader_setConstantsI@32, _TraceInit@0
ExifTool:
file metadata
CodeSize: 7680
EntryPoint: 0x2afe
FileSize: 12 kB
FileType: Win32 DLL
ImageVersion: 0.0
InitializedDataSize: 4096
LinkerVersion: 7.1
MIMEType: application/octet-stream
MachineType: Intel 386 or later, and compatibles
OSVersion: 4.0
PEType: PE32
Subsystem: Windows GUI
SubsystemVersion: 4.0
TimeStamp: 2010:07:15 18:49:31+02:00
UninitializedDataSize: 0

VT Community

0

    This file has never been reviewed by any VT Community member. Be the first one to comment on it! 


File name:
decora-sse.dll
Submission date:
2010-10-11 14:07:46 (UTC)
Current status:
queued queued analysing finished
Result:
0/ 43 (0.0%)

Antivirus  	Version  	Last Update  	Result
AhnLab-V3	2010.10.11.00	2010.10.11	-
AntiVir	7.10.12.173	2010.10.11	-
Antiy-AVL	2.0.3.7	2010.10.11	-
Authentium	5.2.0.5	2010.10.11	-
Avast	4.8.1351.0	2010.10.11	-
Avast5	5.0.594.0	2010.10.11	-
AVG	9.0.0.851	2010.10.11	-
BitDefender	7.2	2010.10.11	-
CAT-QuickHeal	11.00	2010.10.11	-
ClamAV	0.96.2.0-git	2010.10.11	-
Comodo	6353	2010.10.11	-
DrWeb	5.0.2.03300	2010.10.11	-
Emsisoft	5.0.0.50	2010.10.11	-
eSafe	7.0.17.0	2010.10.07	-
eTrust-Vet	36.1.7904	2010.10.11	-
F-Prot	4.6.2.117	2010.10.11	-
F-Secure	9.0.15370.0	2010.10.11	-
Fortinet	4.2.249.0	2010.10.11	-
GData	21	2010.10.11	-
Ikarus	T3.1.1.90.0	2010.10.11	-
Jiangmin	13.0.900	2010.10.11	-
K7AntiVirus	9.65.2713	2010.10.09	-
Kaspersky	7.0.0.125	2010.10.11	-
McAfee	5.400.0.1158	2010.10.11	-
McAfee-GW-Edition	2010.1C	2010.10.11	-
Microsoft	1.6201	2010.10.11	-
NOD32	5520	2010.10.11	-
Norman	6.06.07	2010.10.11	-
nProtect	2010-10-11.01	2010.10.11	-
Panda	10.0.2.7	2010.10.10	-
PCTools	7.0.3.5	2010.10.11	-
Prevx	3.0	2010.10.11	-
Rising	22.69.00.01	2010.10.11	-
Sophos	4.58.0	2010.10.11	-
Sunbelt	7036	2010.10.11	-
SUPERAntiSpyware	4.40.0.1006	2010.10.10	-
Symantec	20101.2.0.161	2010.10.11	-
TheHacker	6.7.0.1.054	2010.10.10	-
TrendMicro	9.120.0.1004	2010.10.11	-
TrendMicro-HouseCall	9.120.0.1004	2010.10.11	-
VBA32	3.12.14.1	2010.10.11	-
ViRobot	2010.10.4.4074	2010.10.11	-
VirusBuster	12.67.11.0	2010.10.10	-
Additional information
Show all
MD5   : 220a9a46dffd993028271db8b03ac16a
SHA1  : 3934585dbe64790a7ee14a8a12b0978bb891df18
SHA256: 8422c392c2da369356b60790ef0c18fffa6beba74bdb1696436d94f803894102
ssdeep: 768:MHvhnDBibYxg2U6ApHuxCL3xTJnqCcu8ahyW7ILbwERAZCnMk:4vhlYYOZuALhTJnf8lW7I
Lu
File size : 61440 bytes
First seen: 2010-08-02 23:51:20
Last seen : 2010-10-11 14:07:46
TrID:
Win32 Dynamic Link Library (generic) (65.4%)
Generic Win/DOS Executable (17.2%)
DOS Executable Generic (17.2%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
sigcheck:
publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
PEInfo: PE structure information

[[ basic data ]]
entrypointaddress: 0xB524
timedatestamp....: 0x4C3F3C06 (Thu Jul 15 16:49:10 2010)
machinetype......: 0x14c (I386)

[[ 4 section(s) ]]
name, viradd, virsiz, rawdsiz, ntropy, md5
.text, 0x1000, 0xA74C, 0xB000, 5.81, bc66a8c0e7285f09ea7fc72d808dd534
.rdata, 0xC000, 0xF2F, 0x1000, 5.12, 090cda4737b1e3532a3739bbc8295005
.data, 0xD000, 0x28, 0x1000, 0.01, 586326841f6d4db7c7987fcbc4ac4891
.reloc, 0xE000, 0x2F2, 0x1000, 1.62, 9213bed6abe38dd289cc4da9ea00671b

[[ 2 import(s) ]]
MSVCR71.dll: _CIpow, free, _initterm, malloc, floor, __CppXcptFilter, _except_handler3, __dllonexit, _onexit, _adjust_fdiv, ceil
KERNEL32.dll: DisableThreadLibraryCalls

[[ 37 export(s) ]]
_Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1ADDPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1BLUEPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1COLOR_1BURNPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1COLOR_1DODGEPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1DARKENPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1DIFFERENCEPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1EXCLUSIONPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1GREENPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1HARD_1LIGHTPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1LIGHTENPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1MULTIPLYPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1OVERLAYPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1REDPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1SCREENPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1SOFT_1LIGHTPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1SRC_1ATOPPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1SRC_1INPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1SRC_1OUTPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBlend_1SRC_1OVERPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBoxBlurPeer_filterHorizontal@40, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBoxBlurPeer_filterVertical@40, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBoxShadowPeer_filterHorizontalBlack@44, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBoxShadowPeer_filterVertical@48, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBoxShadowPeer_filterVerticalBlack@44, _Java_com_sun_scenario_effect_impl_sw_sse_SSEBrightpassPeer_filter@68, _Java_com_sun_scenario_effect_impl_sw_sse_SSEColorAdjustPeer_filter@80, _Java_com_sun_scenario_effect_impl_sw_sse_SSEDisplacementMapPeer_filter@132, _Java_com_sun_scenario_effect_impl_sw_sse_SSEInvertMaskPeer_filter@64, _Java_com_sun_scenario_effect_impl_sw_sse_SSELinearConvolvePeer_filterHV@52, _Java_com_sun_scenario_effect_impl_sw_sse_SSELinearConvolvePeer_filterVector@72, _Java_com_sun_scenario_effect_impl_sw_sse_SSELinearConvolveShadowPeer_filterHV@56, _Java_com_sun_scenario_effect_impl_sw_sse_SSELinearConvolveShadowPeer_filterVector@76, _Java_com_sun_scenario_effect_impl_sw_sse_SSEPerspectiveTransformPeer_filter@100, _Java_com_sun_scenario_effect_impl_sw_sse_SSEPhongLighting_1DISTANTPeer_filter@140, _Java_com_sun_scenario_effect_impl_sw_sse_SSEPhongLighting_1POINTPeer_filter@140, _Java_com_sun_scenario_effect_impl_sw_sse_SSEPhongLighting_1SPOTPeer_filter@156, _Java_com_sun_scenario_effect_impl_sw_sse_SSESepiaTonePeer_filter@68
ExifTool:
file metadata
CodeSize: 45056
EntryPoint: 0xb524
FileSize: 60 kB
FileType: Win32 DLL
ImageVersion: 0.0
InitializedDataSize: 12288
LinkerVersion: 7.1
MIMEType: application/octet-stream
MachineType: Intel 386 or later, and compatibles
OSVersion: 4.0
PEType: PE32
Subsystem: Windows GUI
SubsystemVersion: 4.0
TimeStamp: 2010:07:15 18:49:10+02:00
UninitializedDataSize: 0

VT Community

0

    This file has never been reviewed by any VT Community member. Be the first one to comment on it!
         

 

Themen zu CPU-Auslastung 99% bei Prozess "System"
adobe, antivir, antivir guard, avira, bho, dateien, desktop, dll, excel, explorer, hijack, hijackthis, hkus\s-1-5-18, internet explorer, ip-adresse, logfile, messenger, microsoft, plug-in, problem, programme, prozess, rundll, software, system, taskleiste, windows, windows xp




Ähnliche Themen: CPU-Auslastung 99% bei Prozess "System"


  1. Win10 Arbeitsspeicher + Datenträger wegen dem Prozess "system" stark überlastet
    Plagegeister aller Art und deren Bekämpfung - 14.10.2015 (15)
  2. Der Prozess "System" hat permanent 50% CPU Last
    Log-Analyse und Auswertung - 28.08.2012 (6)
  3. Prozess "system" verursacht erhöhte Auslastung
    Mülltonne - 29.08.2011 (6)
  4. Der Prozess "System" und seine extreme Speicherauslastung
    Log-Analyse und Auswertung - 06.07.2011 (1)
  5. Prozess "System" im Taskmanager Win7 ohne Dateipfad
    Plagegeister aller Art und deren Bekämpfung - 26.04.2011 (2)
  6. "System"-Prozess verursacht dauerhaft 50% Auslastung
    Log-Analyse und Auswertung - 20.12.2010 (1)
  7. hohe load durch prozess "system" und "explorer.exe" verbindet alleine nach russland
    Plagegeister aller Art und deren Bekämpfung - 08.12.2010 (10)
  8. Prozess "System" hohe Speicherauslastung und langsames Internet
    Log-Analyse und Auswertung - 04.12.2010 (1)
  9. CPU Auslastung 100%,Prozess "System" am höchsten,Pc friert ein,Virus?
    Log-Analyse und Auswertung - 09.08.2010 (4)
  10. "system" prozess braucht alle 17sek 100% prozessor leistung.
    Log-Analyse und Auswertung - 22.03.2010 (7)
  11. Prozess "System" 50% Ausgelastet (Dualcore)
    Log-Analyse und Auswertung - 23.05.2009 (1)
  12. Prozess "system" stark ausgelastet, ist das ein Virus?
    Log-Analyse und Auswertung - 16.06.2008 (2)
  13. Ständig Prozess "tick delete amok.exe" mit 100% Auslastung
    Plagegeister aller Art und deren Bekämpfung - 12.05.2008 (7)
  14. Ewiges Problem Prozess "System"
    Plagegeister aller Art und deren Bekämpfung - 27.06.2007 (5)
  15. Prozess " System " Spinnt
    Plagegeister aller Art und deren Bekämpfung - 17.05.2007 (1)
  16. Prozess "System" hohe auslastung bei Spielen
    Log-Analyse und Auswertung - 20.04.2007 (2)
  17. Prozess "SYSTEM" als Trojaner?
    Plagegeister aller Art und deren Bekämpfung - 16.02.2006 (9)

Zum Thema CPU-Auslastung 99% bei Prozess "System" - ok, hier die Ergebnisse von virustotal: Code: Alles auswählen Aufklappen ATTFilter File name: decora-d3d.dll Submission date: 2010-10-11 14:03:00 (UTC) Current status: queued (#5) queued analysing finished Result: 0/ 43 (0.0%) - CPU-Auslastung 99% bei Prozess "System"...
Archiv
Du betrachtest: CPU-Auslastung 99% bei Prozess "System" auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.