ashserv.exe big cpu occupancy is not related to scanning but as i read here searching for a solution
“The new rootkit scan happens about two minutes after your desktop is up as it needs to compare what windows API shows against what is hidden, so it shouldn’t get in the way too much”
i tryed to boot and doing nothing but checking the task manager
infact after two minutes hd started working and ashserv.exe started growing in cpu occupancy so slowing the pc , you can do only soft work until the ashserv stops his work
in my pc xp sp2 2.8hz 1giga ram it takes about 12 minutes for ashserv to stop using the cpu so much , then everything is perfect
i hope this helps to find a way for avast to reduce or eliminate the problem
The rootkit scan needs to compare two sets of data as you found.
However, I don’t notice any impact on my system which is no speed freak. If as you say, you are doing nothing, how does it slow your system.
What you are seeing doesn’t seem to be the rootkit scan but something else (as your system is effectively more powerful than mine), so we need to find what else is going on.
Have (or did) you another AV installed in this system, if so what was it and how did you get rid of it ?
What other security based software do you have (especially that which is also running) ?
Is the avast ’ a ’ icon rotating during this high CPU (what percentage is attributed to ashServ.exe) ?
What sensitivity do you have the Standard Shield on (normal is the default) ?
i made several tryes , after the ashserv occupancy grows up if i navigate or do other things i notice that the pc is slower
i have no other av or similar programs and only necessary programs running in task manager , explorer , ashdp , cfmon
i had avg 3 years ago ,uninstalled in the classical way
normal or high has no influence , the icon is not rotating(obvious i’m doing nothing ) ,after two minutes i see the hd working and ashserv starts growing in occupancy
The reason for asking about the sensitivity is if you had it on High it would be scanning more files. However, if the icon isn’t rotating then it may have stalled as the rootkit scan should take seconds rather than minutes.
Vlk, always says that the guidelines for solving of the problem “ashServ.exe using too much CPU” has always been the same:
Check if the avast tray icon is spinning (while CPU usage is high)
If it is, click it (wait for the dialog box to open), and check which file is being scanned (the Last Scanned field); the Scanned Count value should be increasing (spinning icon means a scan is in progress)
Find out which of the providers is scanning the file (click “Details” button and check out the Last Scanned value for each of the providers). The most common providers that may cause this are Standard Shield, P2P Shield and IM Shield.
Again this may not be to helpful as you say the avast icon isn’t rotating, but it is worth checking.
Short of that revealing anything I would suggest a clean reinstall.
Download the avast! Uninstall Utility, find it here and save it to your HDD.
Now uninstall (see below) using the Add Remove programs, reboot, run the avast Uninstall Utility, reboot, install the latest version, reboot.
It may be necessary to disable the avast! Self-Defence module (Program Settings, Troubleshooting section) if you are unable to uninstall using the Add Remove Programs before running the Uninstall Utility. Or, boot into safe-mode and start aswClear.exe (the uninstall utility) from there.
This is something that I said in another topic, and it relates to something either Vlk or Igor said in explanation of the rootkit scan. I can’t recall the topic now but I do remember it being stated that it runs after two minutes as there needs to be a delay, otherwise the scan might happen too soon before a rootkit is established so wouldn’t appear in the comparison.
I don’t know if a value in the avast4.ini file would be a particularly good idea.
it would then be possible to start it earlier possibly missing a rootkit not yet established.
the longer you delay it the more programs that would be running and some of those might throw up interesting results (not least an alert), by the fact that they are hidden (for legitimate reasons).
I think the Rootkit detection alert needs to be looked at as it isn’t too clear if something is a rootkit or just suspicious/hidden. We have already seen this user confusion in the forums.
Each computer has a different startup profile… stablishing two minutes without a possible change for this is, imho, a big mistake. It will make boot time longer and, in some cases, will mess the boot/login… you can bet it.
We’ll have new messages in the next program update (I have already translated them).
in my pc xp sp2 2.8hz 1giga ram it takes about 12 minutes for ashserv to stop using the cpu so much , then everything is perfect
I have to doubt that this has anything to do with a rootkit scan at all. If, the information here is anywhere near correct there is some other problem. I have no issues of this kind (12 minutes!) on my old XP SP2 system (1Ghz and 512Mb).
Please don’t take this the wrong way Tech … but what has the timing got to do with this?
Surely the problem here is not the timing of the rootkit scan but what is happening on this system that is taking up so much CPU. On my systems this scan takes seconds not many minutes.
The user is not going to like the scan at any time if it makes the system so slow.
strange
probably i have just realized avast has never scanned my mail in 3 years
i had “outlook-excange” in avast , never seen the icon of mail in work and no written confirmation in mails sent
in the last avast installed there is “internet mail” and now works even with “outlook-excange” terminated , but i use outlook express not mail in internet , with “internet mail” i now see that mails are scanned
“outlook-excange” doesn’t work with outlook express ?
Open a command window, type cmd in the windows, start, Run window, then try changing the folder to the avast4 folder and type the command again or contain the path in quotes " " as well, not just the “SUPERQUICK” part.
once booted , i can do the quick scan option but standard and thorough don’t work scan is stopped wuile scanning windows dir, i read that rootkit scan is done only on standard and thorough
ok i remembered well (read somewhere)
so it is almost impossible to understand why avast locks up in standard and through mode i think (they lock in windows dir but other antivirus do not lock up and this lock up wasnì’t present time ago maybe before the rotkit scan , who knows ?),anyway boot scan , quick and scan with other antivirus are all ok
at least i have discovered that my mail was not protected and i solved it
i prefer avast anyway , has blocked those few dangers i met and has solved with a network scan a huge problem in another pc with another antivirus that was fooled by a bad virus