lesser-equity

Magazine
Go Back   Computer Juice > Computer Software > Windows Operating Systems

Register


Default SVCHOST.exe using large amount of RAM?

Hey os it it normal for an instance of svchost.exe [in vista 64] to use just under 200, 000 K of ram? I'm sure it's never been this much before... Last week or so i've noticed it's been quite high. I have 4gb ram installed, so it's not "affecting" my ...


Reply
 
Thread Tools
  #1  
Old 17th May 2008, 13:07
Member Group
 
Posts: 48
Default SVCHOST.exe using large amount of RAM?

Hey os it it normal for an instance of svchost.exe [in vista 64] to use just under 200, 000 K of ram?

I'm sure it's never been this much before... Last week or so i've noticed it's been quite high.

I have 4gb ram installed, so it's not "affecting" my performance per se, but that doesn't mean it's right, right?

When i click "go to service(s)" it's using the following:

WPDBusEnum
WLansvc
WdiSystemHost
Wudfsvc
UxSms
TrkWks
TabletINputService
SysMain
PcsSvc
Netman
hidserv
AudioEndpointBuilder

virus [avira antivir & avast! ] and spyware [spybot] scan show nothing untoward.

IS it normal? Any way to get it down?

COs my usual mem usage in vista is around 24% with nothing open, and around 32% with firefox, MSN, and a few Adobe Air apps open, yet i noticed it at around 35% idle now, and almost 40% with just firefox open.

"hmmm"

Any advice/expertise welcome guys [and guyettes!]
  #2  
Old 17th May 2008, 13:33
Moderator Group
 
Skill Level: Advanced
Posts: 7,136
Default SVCHOST.exe using large amount of RAM?

Quote:
virus [avira antivir & avast! ]
You should never run two AV's at the same time.

----------
Download and rename HijackThis (HJT)
  • Double-click on HJTInstall.
  • Click on the Install button.
  • It will automatically place HJT in C:\Program Files\TrendMicro\HijackThis\HijackThis.exe
  • Upon install, HijackThis should open for you.
    • Close HijackThis and rename it.
    • Go to C:\Program Files\Trend Micro\HijackThis.exe
    • Right click on HijackThis.exe and select Rename
    • Type in sniper.exe and press Enter
    • Right-click on sniper.exe and select Send To > Desktop (create shortcut)
  • From the desktop open Hijackthis.
  • If using Windows Vista, Right-click and Run As Administrator
  • Click on Do a system scan and save a log file
  • Hijackthis will scan and then a log will open in notepad.
  • Copy and then paste the entire contents of the log in your post.
    • Do not have Hijackthis fix anything yet. Most of what it finds will be harmless or even required.
Note: Although we have renamed Hijackthis to sniper, we will still refer to it as Hijackthis or HJT.
__________________

  #3  
Old 17th May 2008, 13:44
Member Group
 
Posts: 48
Default SVCHOST.exe using large amount of RAM?

i don't run two virus scans AT the same time, i just installed a new one, and sometimes run one or the other - or in the case of an "issue" both - but separately.

anyway, here it is!
---
I Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:43:14 PM, on 5/17/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\SysWOW64\conime.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files (x86)\Mozilla Firefox 3 Beta 5\firefox.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre1.6.0_05\bin\ssv.dll
O13 - Gopher Prefix:
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/par...an_unicode.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files (x86)\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {4A85DBE0-BFB2-4119-8401-186A7C6EB653} - http://messenger.zone.msn.com/binary/MJSS.cab69309.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary...o.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary...t.cab56907.cab
O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab57176.cab
O16 - DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} (GoPetsWeb Control) - https://secure.gopetslive.com/dev/GoPetsWeb.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 6072 bytes
  #4  
Old 17th May 2008, 14:02
Moderator Group
 
Skill Level: Advanced
Posts: 7,136
Default SVCHOST.exe using large amount of RAM?

Have Hijackthis fix this O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

----------

Here are some ideas to try. http://www.roundtripsolutions.com/bl...of-svchostexe/
__________________

  #5  
Old 17th May 2008, 16:23
Member Group
 
Posts: 48
Default SVCHOST.exe using large amount of RAM?

thanks, it's lower than it was - and funnily enough i found that article on google a while back and disabled auto update which lowered it a bit too.
  #6  
Old 17th May 2008, 17:44
Moderator Group
 
Skill Level: Advanced
Posts: 2,915
Default SVCHOST.exe using large amount of RAM?

Glad it has stopped being so greedy.

I think the only real way to stop it is to reinstall. I have no idea why it goes crazy sometimes though.

Yes, disabling Auto Updates does help a bit. Just remember to stay on top of updates.
__________________
serverguy

__________________

My System: Eclipse

Processor(s):
Intel C2D E7200 OC'd @ 3.6Ghz
Motherboard:
Asus P5Q Pro
RAM Memory:
OCZ 8GB 800Mhz
Graphics Card(s):
Saphire Radeon 4850
Sound Card:
Onboard
Hard Drive(s):
Vast
Optical Drive(s):
Sony al cheapo one.
Case / PSU:
Antec Three Hundred
Cooling:
Arctic Cooler 7 Pro, 3 case fans.
Network / Internet:
Titan ADSL
Monitor(s):
Dual 19" LCD
Operating System(s):
XP SP3
  #7  
Old 18th May 2008, 09:01
Member Group
 
Posts: 48
Default SVCHOST.exe using large amount of RAM?

Yeah i do stay on top of updates, mostly out of boredom lol.

Anyway, it's using 152, 540~ K now... but everything feels more responsive than before, and on boot up - idle RAM is at the "normal" 24%.

Side note, does anyone else hate the when you press ctrl + alt + del in vista it gives you options instead of bringing up the Task Manager automatically? *grumble*
  #8  
Old 18th May 2008, 10:25
Moderator Group
 
Skill Level: Advanced
Posts: 7,136
Default SVCHOST.exe using large amount of RAM?

Right clicking on the task bar opens a context menu, which has Task Manager as an option.
__________________

  #9  
Old 18th May 2008, 10:48
Moderator Group
 
Skill Level: Advanced
Posts: 2,915
Default SVCHOST.exe using large amount of RAM?

Quote:
Originally Posted by d0od View Post
Side note, does anyone else hate the when you press ctrl + alt + del in vista it gives you options instead of bringing up the Task Manager automatically? *grumble*
Try hitting Ctrl + Shift + Esc
__________________
serverguy

  #10  
Old 18th May 2008, 16:18
Member Group
 
Posts: 48
Default SVCHOST.exe using large amount of RAM?

Haha awesome! i knew it was on the taskbar menu [how i usually use it] but the new ctrl + shift + esc is the shizzle! :D

[gawwwd i'm a nerd]
Reply

Donate

Register

Bookmarks

Similar Threads
Thread Thread Starter Forum Replies Last Post
Svchost 100% Cpu Usage Windows Update ghbnic Windows Operating Systems 0 12th Aug 2009 04:25
Svchost.exe and It's Appetite. Razer Windows Operating Systems 9 30th Jul 2009 14:39
Multiple Svchost.exe's Running Paul4763 General Software Chat 2 24th Jul 2009 02:43
Wireless Drops/stops During Large Amount of Data Transfer mctw Networking, Modems & VoIP 11 19th Apr 2009 13:22
Svchost.exe running very high in mem usage craiig Windows Operating Systems 3 28th Apr 2008 06:30
Thread Tools




Arabic Bulgarian Chinese (Simplified) Chinese (Traditional) Croatian Czech Danish Dutch English Finnish French German Greek Hebrew Hungarian Italian Japanese Korean Latvian Lithuanian Norwegian Polish Portuguese Romanian Russian Serbian Slovak Spanish Swedish Thai Turkish Ukrainian

Copyright ©2006 - 2009 Computer Juice.

Powered by vBulletin® Copyright ©2000 - 2009 Jelsoft Enterprises Ltd. SEO by vBSEO ©2009, Crawlability, Inc.