• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 988
  • Last Modified:

Infected SBS 2003 server?

I am monitoring an SBS 2003 Premium server which in saying the CPU is 33% to 80% busy while System Idle Process is constantly 87% to 95%.

The Server is protected by Symantec Endpoint and if it wasn't a server I would run Combofix.

Any ideas?
0
mikeabc27
Asked:
mikeabc27
  • 7
  • 4
1 Solution
 
mikeabc27Author Commented:
Sorry I meant to add Show processes from all users is ticked.
0
 
treetop3Commented:
Hi,

Although it may appear to users that their CPU is being monopolized by the idle process, it is merely acting as a sort of placeholder during "free time" (therefore, whenever the idle process appears to be consuming most of the CPU, it is proof that no other process wants that CPU time)

In other words when this process is consuming the CPU there are no other processes looking to use the CPU, the CPU is Idle and free.

Is the Server Slow ?
0
 
mikeabc27Author Commented:
Yes, it feels like more than 60% of cpu being used. Slow to save and just got msg Disk is Full.

I was just surprised that CPU Usage doesn't equal System Idle minus running processes.
0
Making Bulk Changes to Active Directory

Watch this video to see how easy it is to make mass changes to Active Directory from an external text file without using complicated scripts.

 
treetop3Commented:
Clear out the disk to free up space with tresizer and atfcleaner this will improve speed as the page file is filling up
0
 
mikeabc27Author Commented:
101GB showing as free and available, so I checked the quotas and 2 were on 99.9% full but no warning received. I've increased these from 1GB to 5GB and the CPU is running at 1% to 4%
0
 
Lee W, MVPTechnology and Business Process AdvisorCommented:
Last time I say something like that, the system was suffering from a high hardware interrupt rate - found this using Process Explorer.  Is this a proper server or a home built system acting like a server?

Do cleanup the C: drive - for 20+ things you can do, see http://www.lwcomputing.com/tips/static/bootdrivesize.asp
0
 
mikeabc27Author Commented:
Checked remotely this and CPU usage still at 20% to 40% while System Idel around 2% to 10% - no indication of why the CPU is so busy.

I built the server myself around 7 years ago and it started life with an Adaptec 3920 and 2 x 53GB SCSIs, high end (workstation) motherboard and P4 cpu. When the Adaptec died I switched the disks for a 250GB SATA, They have to replace this in the next 6 months, I'm just trying to get it to last a little longer.

I'll check out the article.
0
 
treetop3Commented:
Do you have a VirusScan or some sort of indexing software or Shadow Copy enabled
0
 
mikeabc27Author Commented:
I have had to stop the disk cleam up as no-one can connect to server. Will do over the weekend.

treetop -Using Symantec Enfdpoint on the server but cannot see any processes using excess CPU power. What I do not get is CPU usage - 40% I would expect = System Idle + running process = 60%. but I am getting - system idle = 92% and other processes 4%, as if CPU usage was only 96%.

When the CPU usage read 40% it feels like it.
 
0
 
treetop3Commented:
Do you have the relevant exclusions set for Symantec

System Idle is only run once nothing else is running and the CPU is Idle
0
 
mikeabc27Author Commented:
Sorry for delay in reply. Certain scheduled programs were causing problems and when these were rescheduled it resolved the problem.
0
 
mikeabc27Author Commented:
resolved myself
0

Featured Post

Learn to develop an Android App

Want to increase your earning potential in 2018? Pad your resume with app building experience. Learn how with this hands-on course.

  • 7
  • 4
Tackle projects and never again get stuck behind a technical roadblock.
Join Now