Jump to content


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.


Ping.exe Help

  • Please log in to reply
1 reply to this topic

#1 jambatt


  • Members
  • 2 posts
  • Local time:05:40 PM

Posted 01 December 2011 - 04:26 AM

Hey ive only just recently had this problem with my computer, it becomes dramatically slower at sometimes I go to CTRL + ALT + DEL > Start task manager > resource management.. My CPU is at max capacity 100% and there is a TLP/IP file called Ping.exe which is taking up most of that 100%, Ive tried many differnt ways of deleting this file but it re-appears every 2-3mins, What do i do?

Edit: Moved topic from Windows 7 to the more appropriate forum. ~ Animal

BC AdBot (Login to Remove)


#2 jambatt

  • Topic Starter

  • Members
  • 2 posts
  • Local time:05:40 PM

Posted 01 December 2011 - 05:30 AM

GMER - http://www.gmer.net
Rootkit scan 2011-12-01 21:29:41
Windows 6.1.7601 Service Pack 1
Running: gmer.exe

---- Registry - GMER 1.0.15 ----

Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\506313f379db
Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\506313f37b25
Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\506313f379db (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\506313f37b25 (not active ControlSet)
Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{E8DAACC9-D589-2F32-4074-1265654B09A2}
Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{E8DAACC9-D589-2F32-4074-1265654B09A2}@janiajbkkbmeadfcdfko 0x62 0x61 0x61 0x68 ...
Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{E8DAACC9-D589-2F32-4074-1265654B09A2}@ianjillnjjbmkkofbj 0x6B 0x61 0x69 0x67 ...

---- Files - GMER 1.0.15 ----

File C:\Users\Jamie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CT693TTS\catalog[1].list 0 bytes
File C:\Users\Jamie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VPTB4IIB\stamp[2].txt 0 bytes
File C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKD6M8XQ\detect[1].act 267 bytes
File C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKD6M8XQ\news-and-reviews[1].txt 122568 bytes
File C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKD6M8XQ\gossipcenter_com[1].txt 56621 bytes
File C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\PFTNM4U9.txt 0 bytes
File C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\6RXPJT5O.txt 0 bytes
File C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\HSA4L718.txt 0 bytes
File C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\YBKMF0LH.txt 0 bytes
File C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\AMSA49H2.txt 0 bytes
File C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\JLT4EW1W.txt 0 bytes
File C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\4SVO8WLX.txt 0 bytes
File C:\Windows\Temp\flaB8E9.tmp 0 bytes
File C:\Windows\Temp\flaD5F8.tmp 8121280 bytes

---- EOF - GMER 1.0.15 ----

Not sure if this helps

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users