View Full Version : Zoom Fails to Start CPU 100% - System Mechanic 7 Iolo DMV service problem
wrensoft
01-13-2007, 11:38 PM
This is a post about an issue we have become aware of today.
The System Mechanic 7 product from a company known as Iolo can interfere with the Zoom Search Engine (http://www.wrensoft.com/zoom/index.html) functioning (and other software for that matter).
The symptoms of the problem are
The Zoom Search application fails to start.
There are no error messages and no windows that open. Nothing to indicate the nature of the failure
The CPU usage hits 100% and stays there. (If you have dual core CPU's you'll see usage stuck at 50%)
The the windows task manager you'll see the ZoomIndexer.exe task running but nothing else happening
This effects both V4 and V5 of Zoom and apparently some other applications.The cause of the problem seems to be that System Mechanic 7 contains a Windows service called, iolo DMV Service, IOLODMVSVC.EXE. This service starts itself when windows boots up.
Once started this iolo DMV Service seems to be inserting code into other processes. That is to say, Iolo are adding new code to our software before it runs. This is not normal behaviour for software but is more typical of Rootkit and virus behaviour.
Iolo also completely fail to document this software on their web site which makes matters even worse and more suspicious.
Finally even after you uninstall System Mechanic 7, Iolo leaves this DMV Service running on your system. So uninstalling System Mechanic 7 doesn't fix the problem as the software doesn't completely uninstall (another typical trait of spyware).
Fixing the problem requires you to uninstall System Mechanic 7 and then manually disable the iolo DMV service from the Windows Control panel / Administrative tools window.
The offending code inserted into other processes is contained in the DLL, ioloHL.dll
What exactly this DLL does, we don't know. But it does screw up other applications. I would like to think it is an accidental flaw in System Mechanic, but why not allow it to be uninstalled? And why not document its existence? So unfortunately we have to classify System Mechanic as malware until we hear differently from them (we have reported this issue but have no response as yet).
However once the service is disabled, the DLL is not inserted and the problem is fixed.
Screen shots:
Here is a screen shot showing the iolo service (after it has has been manually disabled)
http://www.wrensoft.com/images/forumimages/iolo-DMV-service.jpg
Here is a screen shot showing Iolo System Mechanic 7 hooking code into our process.
http://www.wrensoft.com/images/forumimages/iolo-code-insertion.jpg
Thanks to Rob Latour for helping us get to the bottom of this issue.
wrensoft
01-15-2007, 10:04 AM
After some further research and some information from nick_s at Wilders (http://www.wilderssecurity.com/showthread.php?t=161038) it seems the System Mechanic 7 call chain is,
Windows boots & runs ioloDMVSvc.exe as a service, which dynamically drops mchlnjDrv.sys as a file and then starts it as a kernel mode device driver. Once the device driver is in place it hooks all applications upon startup and does a code insertion of the ioloHL.dll into their process space.
Then ioloHL.dll stuffs up big time and gets itself into an endless loop. Using up all your CPU time.
MchInjDrv.sys is part of 3rd party API hooking software development kit call madCodeHook from a guy called Mathias Rauen. It is used by rootkits and security software from comapnies that don't know how to write their own device drivers or don't have time to. It can be used for good or evil depending on the DLL being injected into other software.
We also got an automated reply to the E-Mail we sent to Iolo, telling us how to defragment files. Cute.
martbd
01-21-2007, 02:44 PM
This file also interferes with Say The Time
wrensoft
01-21-2007, 08:31 PM
We have been in contact with a number of other software developers. We are aware of half a dozen different companies which also have a problem with System Mechanic 7. It seems to be related to the use of a particular library called Armadillo for license key management.
It has been a week now, still no reply from Iolo.
Hi,
I've got the same problem, loaded System Mechanic 7 and now Zoom Indexer won't run.
One symptom I notice is that in Windows task manager I see 2 instances ZoomIndexer.exe running even though I only try to start it once.
I have also contacted Iolo customer service and am waiting for their repsonse. I suppose I'll just have to delete System Mechanic if they don't fix it.
It may just be coincidental but Adobe Photoshop Elements stopped working as well and I had to reinstall it and Recordnow CD writer software also stopped working (permanently).
Cheers
Les
One symptom I notice is that in Windows task manager I see 2 instances ZoomIndexer.exe running even though I only try to start it once.
This is normal behaviour with Zoom, and is not a symptom of the System Mechanic problem. Each instance of Zoom will appear as two "ZoomIndexer.exe" processes in the Process list of the Windows Task Manager.
pbacon
01-27-2007, 10:39 AM
I get exactly the same problems with a program called Auction Sentry. I have uninstalled System Mechanic 7 thanks to your instructions. Hopefully iolo may get round to acknowledging their problem sometime soon.
Peter
Iolo seem to have fixed this problem.
There have been quite a few System Mechanic updates over the last few days and today my Zoomindexer is working again.
wrensoft
01-29-2007, 09:10 PM
Do you have the exact version number for the new version?
Hi,
Version 7.1.4 is the current version I have.
Les
Mike123
02-06-2007, 04:10 PM
It appears System Mechanics 7 has additional issues in addition to those previously reported.
After a recent installation of mechanics 7 professional as an upgrade from Mechanics 6, the program installed and ran ok for a few days.
Now the program refuses to boot even after an uninstall and a reinstall.
Also the iolo anitvirus that installed with mechanics 7 appears to have quit functioning..
Any ideas?
wrensoft
02-06-2007, 07:02 PM
I feel for you, but System Mechanics 7 is not our product. If it doesn't work (and clearly it doesn't seem to) please contact Iolo, or just get a refund, or do a credit card charge back if they don't answer E-mails.
Unfortunately many of these companies will only take action when it starts to hurt their bottom line.
It has been about 3 weeks now and Iolo never answered our support request.
Jjiinx
02-15-2007, 05:29 PM
It appears System Mechanics 7 has additional issues in addition to those previously reported.
After a recent installation of mechanics 7 professional as an upgrade from Mechanics 6, the program installed and ran ok for a few days.
Now the program refuses to boot even after an uninstall and a reinstall.
Also the iolo anitvirus that installed with mechanics 7 appears to have quit functioning..
Any ideas?
I also had this problem, I did two things today to try and resolve it and one of them worked
a) disable the iolo DMV Service
b) after a clean installation (make sure that its running fine) archive the iolo folder in your Program Files and keep it in a safe place. When SM stops running, just extract the files and replace everything
Opa_Theo
03-07-2007, 11:01 AM
I'm a fanatic System Mechanic user from the moment that they brought out rel. 4. Switching from rel. 6 to rel. 7 give me a lot of mess and troubles.
A refund seems to be impossible for clients outside the USA (too much administrative troubles) and emails to their administration and sales department are only answered with an automatic reply (complaint of a lot of users).
Strange, the more that my problem with PRTG Traffic Grapher, only occurs with every 'even' update and NOT with an 'odd' update. So 7.1.3 and 7.1.5 gave no problem, 7.1.4 and 7.1.6 : problems.
wrensoft
03-07-2007, 06:28 PM
As it seems Iolo are not contactable (we didn't have any luck either), forget trying to get a refund from Iolo, just call your credit card company and do a charge back. Tell them the product you ordered is not working and all attempts to contact the company have failed.
MaraBlue
04-24-2007, 09:31 PM
As it seems Iolo are not contactable (we didn't have any luck either), forget trying to get a refund from Iolo, just call your credit card company and do a charge back. Tell them the product you ordered is not working and all attempts to contact the company have failed.
I can't thank you ENOUGH for posting this, and for taking time to attempt follow-ups.
System Mechanic 7 has "broken" several software apps I use, and even stopped my ability to update Windows (even manually).
I had originally tried to contact them because SMSystemAnalyzer.exe was crashing once a day since I installed SM 7. I got caught in the email version of "voice mail hell", with no solution offered.
After I'd submitted a detailed support ticket (and found their online system doesn't work with Firefox), I received a reply stating "after careful review of your issue, we feel you can find the answer in our knowledge base."
I'd already gone through the KB and found NOTHING. I had taken the time to submit a very detailed support request (I own a hosting company and handle the majority of the support tickets, so I know what details to include!), and they didn't even bother to read it.
What bothers me the most....for years and years I used v4 and 5 and they ran beautifully. I didn't think twice about installing and PAYING FOR version 7.
Never again....
MaraBlue
04-24-2007, 09:33 PM
I'm a fanatic System Mechanic user from the moment that they brought out rel. 4. Switching from rel. 6 to rel. 7 give me a lot of mess and troubles.
A refund seems to be impossible for clients outside the USA (too much administrative troubles) and emails to their administration and sales department are only answered with an automatic reply (complaint of a lot of users).
Strange, the more that my problem with PRTG Traffic Grapher, only occurs with every 'even' update and NOT with an 'odd' update. So 7.1.3 and 7.1.5 gave no problem, 7.1.4 and 7.1.6 : problems.
Same issues here!
And it's not just users outside the USA who have problems with refunds of the Iolo products...
Annaleewe
11-16-2007, 02:58 PM
I have same problems :(
_ (http://game-poker-online.tripod.com/real-money-online-poker.html)_ (http://game-poker-online.tripod.com/casino-game-online-play-poker-top.html)_ (http://game-poker-online.tripod.com/best-online-poker-room.html)_ (http://game-poker-online.tripod.com/beat-game-online-play-poker.html)_ (http://game-poker-online.tripod.com/play-poker-online-no-download.html)
Anna
rangergord
02-23-2008, 11:31 AM
I have System Mechanic version 7.5.7 and have not noticed any problems.
First, is there a way to detect if SM is still up to its tricks?
Second, does anyone know if Iolo has corrected these problems in 7.5.7?
harleyflanders
08-15-2008, 05:54 PM
I have had several programs fail since
installing System Mechanic, most important,
Bit Torrent.
I try to upload their update; after uploading 5-10%
and a few hours, the upload closes itself down.
Technical support, yuck again. They invited me 5 days ago
to send a system snapshot, which I did. Never acknowledged,
even with 2 reminders from me.
HF
vBulletin® v3.7.0, Copyright ©2000-2009, Jelsoft Enterprises Ltd.