Windows Servers High CPU usage when no user is logged in

active-directorycpu-usagewindows

Since a few days ago a lot of Windows servers on a corporate domain started to have almost 100% CPU usage. All of them are on VMWare Hosts and even there we can see the 100% CPU usage on the host level.

I've have checked:

  • Changed GPOs on the day we saw first spike, nothing was changed.
  • All software that is distributed centrally, like Antivirus. Uninstalled AV completely for testing on a few servers.
  • Ruled out Virtual problems and started looking to a bare metal server.

The behavoir is exactly as the subject says. If I look at graphs right now, no one is logged in I see the load is around 90% all cores are crazy. If I log in I see everything normal, all cores come to normal usage, 5-8%.

This happens on multiple OS versions, Windows Server 2008R2, 2012R2, 2016. Some with SQL Server.

Btw, RDS servers don't have this problem. CPU usage is normal and graph is the same as it was when problem showed on all the others.

Best Answer

Use one of the may remote task monitors and check the process causing this. Then stop mining.