Jump to content

Utorrent 3.4.2-32891 Crashing every startup - every 30 minutes - Unstable


duytrung

Recommended Posts

Hi all, :)

 

HijackThis LOG:

 

Logfile of Trend Micro HijackThis v2.0.5Scan saved at 6:39:06 PM, on 9/08/2014Platform: Windows 7 SP1 (WinNT 6.00.3505)MSIE: Internet Explorer v11.0 (11.00.9600.17207)CHROME: 36.0.1985.125FIREFOX: 31.0 (x86 en-US)Boot mode: NormalRunning processes:C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security Technical Preview 15.0.0\avpui.exeC:\Program Files (x86)\Internet Download Manager\IDMan.exeC:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXEC:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exeC:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exeC:\Program Files (x86)\Common Files\Java\Java Update\jusched.exeC:\Program Files (x86)\iTunes\iTunesHelper.exeC:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exeC:\Program Files (x86)\Mozilla Firefox\firefox.exeC:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exeC:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exeD:\Programs\HijackThis.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [url=http://go.microsoft.com/fwlink/?LinkId=69157]http://go.microsoft.com/fwlink/?LinkId=69157[/url]R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [url=http://go.microsoft.com/fwlink/p/?LinkId=255141]http://go.microsoft.com/fwlink/p/?LinkId=255141[/url]R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [url=http://go.microsoft.com/fwlink/?LinkId=54896]http://go.microsoft.com/fwlink/?LinkId=54896[/url]R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = [url=http://go.microsoft.com/fwlink/?LinkId=54896]http://go.microsoft.com/fwlink/?LinkId=54896[/url]R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = [url=http://go.microsoft.com/fwlink/p/?LinkId=255141]http://go.microsoft.com/fwlink/p/?LinkId=255141[/url]R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htmR1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.localR0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dllO2 - BHO: CrossriderApp0032850 - {11111111-1111-1111-1111-110311281150} - (no file)O2 - BHO: Microsoft Web Test Recorder 12.0 Helper - {432dd630-7e03-4c97-9d62-b99f52df4fc2} - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dllO2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security Technical Preview 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dllO2 - BHO: CmjBrowserHelperObject Object - {6FE6A929-59D1-4763-91AD-29B61CFFB35B} - C:\Program Files (x86)\Mindjet\MindManager 14\Mm8InternetExplorer.dllO2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLLO2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security Technical Preview 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dllO2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre\bin\ssv.dllO2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dllO2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security Technical Preview 15.0.0\IEExt\OnlineBanking\online_banking_bho.dllO2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLLO2 - BHO: ReasonableToolbar.ToolbarBHO - {d8961a1e-25db-33c9-a7c9-3d3e3266b5b8} - mscoree.dll (file missing)O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre\bin\jp2ssv.dllO2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security Technical Preview 15.0.0\IEExt\UrlAdvisor\klwtbbho.dllO3 - Toolbar: ReasonableToolbar - {c9a6357b-25cc-4bcf-96c1-78736985d413} - mscoree.dll (file missing)O4 - HKLM\..\Run: [ISBMgr.exe] "C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe"O4 - HKLM\..\Run: [vmware-tray.exe] "C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe"O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"O4 - HKLM\..\Run: [PowerDVD13Agent] "C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe"O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottimeO4 - HKLM\..\Run: [MMReminderService] C:\Program Files (x86)\Mindjet\MindManager 14\MMReminderService.exeO4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE -startupO4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe" -quietO4 - HKCU\..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onbootO4 - Startup: EvernoteClipper.lnk = C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exeO4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXEO8 - Extra context menu item: &Download All with FlashGet - D:\Programs\FlashGet\jc_all.htmO8 - Extra context menu item: &Download with FlashGet - D:\Programs\FlashGet\jc_link.htmO8 - Extra context menu item: Add to Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security Technical Preview 15.0.0\ie_banner_deny.htmO8 - Extra context menu item: Clip image - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=4O8 - Extra context menu item: Clip selection - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=3O8 - Extra context menu item: Clip this page - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=1O8 - Extra context menu item: Clip URL - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=0O8 - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htmO8 - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htmO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000O8 - Extra context menu item: New note - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\NewNote.htmlO8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105O9 - Extra button: Virtual Keyboard - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security Technical Preview 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dllO9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dllO9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dllO9 - Extra button: Send to MindManager - {2F72393D-2472-4F82-B600-ED77F354B7FF} - C:\Program Files (x86)\Mindjet\MindManager 14\Mm8InternetExplorer.dllO9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dllO9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dllO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLLO9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.htmlO9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.htmlO9 - Extra button: URLs check - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security Technical Preview 15.0.0\IEExt\UrlAdvisor\klwtbbho.dllO11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphicsO16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - [url=http://content.systemrequirementslab.com/bin/srldetect_intel_4.5.15.0.cab]http://content.systemrequirementslab.com/bin/srldetect_intel_4.5.15.0.cab[/url]O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dllO23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exeO23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exeO23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exeO23 - Service: Kaspersky Anti-Virus Service 15.0.0 (AVP15.0.0) - Kaspersky Lab ZAO - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security Technical Preview 15.0.0\avp.exeO23 - Service: AWiCSrvc - Atheros Communications - C:\Program Files (x86)\Ubiquiti\AWiCSrvc.exeO23 - Service: Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\Windows\system32\BtwRSupportService.exe (file missing)O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exeO23 - Service: @%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000 (c2wts) - Unknown owner - C:\Program Files (x86)\Windows Identity Foundation\v3.5\c2wtshost.exe (file missing)O23 - Service: CyberLink PowerDVD 13 Media Server Monitor Service - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exeO23 - Service: CyberLink PowerDVD 13 Media Server Service - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exeO23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exeO23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exeO23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exeO23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exeO23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exeO23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exeO23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exeO23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exeO23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exeO23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exeO23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\system32\vmnetdhcp.exeO23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exeO23 - Service: VMware NAT Service - VMware, Inc. - C:\Windows\system32\vmnat.exeO23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe--
:(

30345-utorrent.46bb.dmp

30460-utorrent.df62.dmp

31405-utorrent.b758.dmp

32549-utorrent.689a.dmp

32549-utorrent.903f.dmp

32691-utorrent.0edb.dmp

32691-utorrent.634e.dmp

32691-utorrent.6cb6.dmp

32691-utorrent.7a60.dmp

32691-utorrent.b0f8.dmp

32691-utorrent.fae4.dmp

32891-utorrent.005b.dmp

32891-utorrent.07ab.dmp

32891-utorrent.08ef.dmp

32891-utorrent.1131.dmp

32891-utorrent.23a6.dmp

32891-utorrent.248f.dmp

32891-utorrent.306a.dmp

32891-utorrent.3e0b.dmp

32891-utorrent.44c6.dmp

32891-utorrent.4ef0.dmp

32891-utorrent.4f7c.dmp

32891-utorrent.5901.dmp

32891-utorrent.613a.dmp

32891-utorrent.6977.dmp

32891-utorrent.7b3e.dmp

32891-utorrent.98f4.dmp

32891-utorrent.9f7d.dmp

32891-utorrent.aa40.dmp

32891-utorrent.b91e.dmp

32891-utorrent.c00e.dmp

32891-utorrent.c919.dmp

32891-utorrent.e2ae.dmp

32891-utorrent.e5a0.dmp

32891-utorrent.e7a2.dmp

32891-utorrent.fd43.dmp

 

 

 

 

Currently using Utorrent 3.4.2-32891, it crashing every startup, display a dialog to choose whether to restart or quit running. I dont know if the bugs were sent. Here is the link to compress of 36 dumps of mainly version 3.4.2-32891. Please take a look for good.

Sorry for flooding you with alot of dumps :D

 

 

Links:

 

-----------------------------------

 

h##p://sendfile.su/1009802

 

-----------------------------------

 

Best wishes

 

Mike

Link to comment
Share on other sites

Process List:

 

Process    CPU    Private Bytes    Working Set    PID    Description    Company Name
System Idle Process    82.08    0 K    24 K    0        
System    0.38    188 K    980 K    4        
 Interrupts    0.81    0 K    0 K    n/a    Hardware Interrupts and DPCs    
 smss.exe        552 K    808 K    508        
csrss.exe    < 0.01    2,948 K    3,808 K    688        
 conhost.exe        3,212 K    2,740 K    1588        
wininit.exe        1,724 K    3,008 K    740        
 services.exe        9,220 K    10,640 K    808        
  svchost.exe    0.01    7,860 K    10,068 K    996    Host Process for Windows Services    Microsoft Corporation
   igfxsrvc.exe        4,676 K    5,484 K    3880    igfxsrvc Module    Intel Corporation
   unsecapp.exe        4,176 K    8,012 K    900        
   unsecapp.exe        3,972 K    8,032 K    4412    Sink to receive asynchronous callbacks for WMI client application    Microsoft Corporation
   WmiPrvSE.exe        7,312 K    13,972 K    4372        
   cavwp.exe        17,800 K    2,376 K    5720        
   WmiPrvSE.exe        6,384 K    10,472 K    2800        
  svchost.exe        7,952 K    8,868 K    604    Host Process for Windows Services    Microsoft Corporation
  cmdagent.exe    0.07    22,524 K    15,516 K    748    COMODO Internet Security    COMODO
  svchost.exe    < 0.01    19,748 K    15,700 K    1068    Host Process for Windows Services    Microsoft Corporation
  svchost.exe        28,036 K    19,428 K    1112    Host Process for Windows Services    Microsoft Corporation
   audiodg.exe    0.01    25,056 K    22,476 K    1284        
  svchost.exe    0.27    146,624 K    145,356 K    1152    Host Process for Windows Services    Microsoft Corporation
   wlanext.exe        10,056 K    11,492 K    1580        
   dwm.exe        3,776 K    5,868 K    3156    Desktop Window Manager    Microsoft Corporation
   WUDFHost.exe        4,576 K    9,216 K    5676        
  svchost.exe    < 0.01    11,040 K    13,780 K    1192    Host Process for Windows Services    Microsoft Corporation
  svchost.exe    2.33    36,944 K    46,428 K    1224    Host Process for Windows Services    Microsoft Corporation
   taskeng.exe        4,104 K    8,148 K    7156        
   taskeng.exe        4,252 K    8,264 K    1056        
  svchost.exe        4,576 K    5,104 K    1304    Host Process for Windows Services    Microsoft Corporation
  spoolsv.exe        10,032 K    8,672 K    1728    Spooler SubSystem App    Microsoft Corporation
  svchost.exe        12,424 K    12,644 K    1768    Host Process for Windows Services    Microsoft Corporation
  svchost.exe        7,324 K    5,980 K    1932    Host Process for Windows Services    Microsoft Corporation
  AppleMobileDeviceService.exe    0.01    8,384 K    8,572 K    1952    YSLoader.exe    Apple Inc.
  avp.exe    0.01    170,892 K    30,052 K    1272    Kaspersky Anti-Virus    Kaspersky Lab ZAO
   avpui.exe    < 0.01    100,064 K    96,460 K    3864    Kaspersky Anti-Virus    Kaspersky Lab ZAO
  BtwRSupportService.exe    < 0.01    4,564 K    4,360 K    1864    Bluetooth Radio Management Support    Broadcom Corporation.
  mDNSResponder.exe        4,964 K    5,848 K    1612    Bonjour Service    Apple Inc.
  CLMSMonitorServicePDVD13.exe        2,788 K    3,596 K    1544    Media Server Monitor Service    CyberLink
  CLMSServerPDVD13.exe    < 0.01    10,740 K    9,604 K    1532    Media Server Service    CyberLink
  EvtEng.exe        9,608 K    12,596 K    2056    Intel® PROSet/Wireless Event Log Service    Intel® Corporation
  IpOverUsbSvc.exe        10,332 K    7,316 K    2156         Microsoft Corporation
  LMS.exe    0.05    4,068 K    4,920 K    2600    Local Manageability Service    Intel Corporation
  mdm.exe    0.03    3,980 K    6,108 K    2640    Machine Debug Manager    Microsoft Corporation
  RegSrvc.exe        4,680 K    6,732 K    2724    Intel® PROSet/Wireless Registry Service    Intel® Corporation
  sqlwriter.exe        4,572 K    5,536 K    2756    SQL Server VSS Writer - 64 Bit    Microsoft Corporation
  svchost.exe        4,348 K    4,868 K    2784    Host Process for Windows Services    Microsoft Corporation
  TeamViewer_Service.exe        6,664 K    12,076 K    2844    TeamViewer 9    TeamViewer GmbH
  VESMgr.exe        7,552 K    7,820 K    2896    VAIO Event Service (Service Module)    Sony Corporation
   VESMgrSub.exe    0.09    7,052 K    7,828 K    3572        
  vmnat.exe    < 0.01    3,536 K    4,660 K    2968        
  svchost.exe        44,252 K    31,248 K    3004    Host Process for Windows Services    Microsoft Corporation
  ZeroConfigService.exe        10,144 K    16,196 K    3032    Intel® PROSet/Wireless Zero Configure Service    Intel® Corporation
  taskhost.exe    0.01    15,616 K    14,136 K    3024    Host Process for Windows Tasks    Microsoft Corporation
  vmnetdhcp.exe        9,164 K    4,272 K    3236        
  vmware-usbarbitrator64.exe    < 0.01    6,124 K    7,436 K    3264    VMware USB Arbitration Service    VMware, Inc.
  vmware-authd.exe        7,016 K    6,476 K    3556    VMware Authorization Service    VMware, Inc.
  SearchIndexer.exe    < 0.01    55,668 K    55,912 K    220    Microsoft Windows Search Indexer    Microsoft Corporation
  svchost.exe        4,316 K    8,412 K    5192    Host Process for Windows Services    Microsoft Corporation
  iPodService.exe    0.01    4,952 K    9,588 K    5764    iPodService Module (64-bit)    Apple Inc.
  UNS.exe    < 0.01    5,888 K    11,092 K    2284    User Notification Service    Intel Corporation
  TrustedInstaller.exe        6,372 K    11,936 K    5548    Windows Modules Installer    Microsoft Corporation
  taskhost.exe        7,944 K    11,684 K    6556        
  svchost.exe        3,380 K    6,088 K    3604    Host Process for Windows Services    Microsoft Corporation
 lsass.exe    2.14    7,340 K    10,192 K    832    Local Security Authority Process    Microsoft Corporation
 lsm.exe        5,140 K    4,896 K    840        
csrss.exe    0.29    26,688 K    21,836 K    768        
winlogon.exe        3,516 K    4,604 K    936        
explorer.exe    0.27    53,500 K    62,428 K    3196    Windows Explorer    Microsoft Corporation
 iFrmewrk.exe        8,200 K    13,356 K    3688    Intel® PROSet/Wireless Framework    Intel® Corporation
 SynTPEnh.exe    < 0.01    10,996 K    8,548 K    3696    Synaptics TouchPad Enhancements    Synaptics Incorporated
 hkcmd.exe        5,288 K    9,260 K    3788    hkcmd Module    Intel Corporation
 igfxpers.exe        5,336 K    7,244 K    3808    persistence Module    Intel Corporation
 CisTray.exe    0.01    6,048 K    4,720 K    4088    COMODO Internet Security    COMODO
  cis.exe        6,252 K    3,428 K    5700    COMODO Internet Security    COMODO
 IDMan.exe        18,724 K    26,740 K    4436    Internet Download Manager (IDM)    Tonec Inc.
  IEMonitor.exe    0.03    3,456 K    8,092 K    6008    Internet Download Manager agent for click monitoring in IE-based browsers    Tonec Inc.
 Viber.exe    0.29    119,492 K    132,112 K    4480    Viber    
 EvernoteClipper.exe    < 0.01    3,712 K    8,776 K    4788    Evernote Clipper    Evernote Corp., 305 Walnut Street, Redwood City, CA 94063
 ONENOTEM.EXE        2,756 K    1,572 K    4812    Microsoft Office OneNote Quick Launcher    Microsoft Corporation
 firefox.exe    0.23    398,340 K    396,312 K    1392    Firefox    Mozilla Corporation
  plugin-container.exe        16,712 K    18,924 K    3228    Plugin Container for Firefox    Mozilla Corporation
   FlashPlayerPlugin_14_0_0_145.exe    < 0.01    6,236 K    12,324 K    6356    Adobe Flash Player 14.0 r0    Adobe Systems, Inc.
    FlashPlayerPlugin_14_0_0_145.exe        14,432 K    18,528 K    6400    Adobe Flash Player 14.0 r0    Adobe Systems, Inc.
 ProcExp.exe        4,396 K    9,136 K    6800    Sysinternals Process Explorer    Sysinternals - www.sysinternals.com
  ProcExp64.exe    6.54    24,952 K    41,052 K    6156    Sysinternals Process Explorer    Sysinternals - www.sysinternals.com
ISBMgr.exe        4,056 K    8,936 K    4936        Sony Corporation
vmware-tray.exe        3,100 K    6,680 K    4976    VMware Tray Process    VMware, Inc.
PowerDVD13Agent.exe    0.08    55,852 K    64,828 K    4992    PowerDVD 13    CyberLink Corp.
MmReminderService.exe        11,744 K    18,464 K    5064    MindManager Topic Alerts    Mindjet
jusched.exe        2,920 K    6,676 K    5096    Java Update Scheduler    Oracle Corporation
PWRISOVM.EXE        5,228 K    11,452 K    5108    PowerISO Virtual Drive Manager    Power Software Ltd
iTunesHelper.exe    < 0.01    8,240 K    16,068 K    4104    iTunesHelper    Apple Inc.
trustedadssvc.exe    < 0.01    19,924 K    32,768 K    1028    PrivDog Service    AdTrustMedia
SynTPHelper.exe        3,400 K    5,792 K    5668        
Ymsgr_tray.exe        20,432 K    9,488 K    5812    Yahoo! Messenger Tray    Yahoo! Inc.
uTorrent.exe    3.92    145,600 K    160,932 K    6344    µTorrent    BitTorrent Inc.

 

Link to comment
Share on other sites

Is this you are after?

 

Process: uTorrent.exe Pid: 7632

Type    Name
ALPC Port    \RPC Control\OLE966FA003409E4120862D8ACD45EB
Desktop    \Default
Directory    \KnownDlls
Directory    \KnownDlls32
Directory    \KnownDlls32
Directory    \Sessions\1\BaseNamedObjects
Event    \KernelObjects\MaximumCommitCondition
Event    \Sessions\1\BaseNamedObjects\OleDfRoot3FE5F4E73291C24
Event    \Sessions\1\BaseNamedObjects\OleDfRootC002195D3333FD7A
Event    \Sessions\1\BaseNamedObjects\OleDfRootF78DAD64602B4DA2
File    C:\Windows
File    \Device\swmon_dt_010109_kl1
File    D:\Utorrent
File    C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2
File    C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18455_none_72d576ad8665e853
File    C:\Windows\SysWOW64\en-US\setupapi.dll.mui
File    \FileSystem\Filters\FltMgrMsg
File    \Device\KsecDD
File    C:\Windows\SysWOW64\en-US\crypt32.dll.mui
File    \Device\KsecDD
File    C:\Users\Sakura\AppData\Roaming\Microsoft\SystemCertificates\My
File    \Device\Nsi
File    \Device\KsecDD
File    \Device\Afd
File    \Device\Afd
File    C:\Users\Sakura\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
File    \Device\KsecDD
File    \Device\Afd
File    \Device\Afd
File    \Device\Afd
File    \Device\Afd
File    C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2
File    C:\Windows\Fonts\StaticCache.dat
File    D:\Utorrent\ie\ie.1407717185.tmp
File    C:\Windows\SysWOW64\en-US\msctf.dll.mui
File    C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2
File    C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2
File    \Device\Afd
File    C:\Windows\SysWOW64\en-US\ieframe.dll.mui
File    \Device\Afd
File    D:\Utorrent\ie\ie.1407717186.tmp
File    C:\Windows\SysWOW64\en-US\KernelBase.dll.mui
File    D:\Utorrent\ie\ie.1407717187.tmp
File    \Device\Afd
File    C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2
File    C:\Windows\SysWOW64\en-US\shell32.dll.mui
File    C:\Windows\SysWOW64\en-US\mshtml.dll.mui
File    C:\Windows\SysWOW64\en-US\urlmon.dll.mui
File    C:\Windows\SysWOW64\en-US\wship6.dll.mui
File    C:\Windows\SysWOW64\en-US\wshtcpip.dll.mui
File    C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2
File    C:\Windows\SysWOW64\en-US\hnetcfg.dll.mui
File    C:\Windows\Fonts\calibrib.ttf
File    \Device\Afd
File    C:\Users\Sakura\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6W6GWEKR\B7764929[4].htm
File    C:\Windows\SysWOW64\en-US\jscript9.dll.mui
File    \Device\Afd
File    \Device\Afd
File    \Device\Afd
File    D:\Downloads\tgrb-pt.zip.!ut
Key    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
Key    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
Key    HKLM\SYSTEM\ControlSet001\Control\Nls\Sorting\Versions
Key    HKLM
Key    HKLM\SYSTEM\ControlSet001\Control\SESSION MANAGER
Key    HKLM\SYSTEM\ControlSet001\Control\Nls\CustomLocale
Key    HKCU
Key    HKU
Key    HKLM\SYSTEM\ControlSet001\services\crypt32
Key    HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config
Key    HKLM\SOFTWARE\Microsoft\SystemCertificates\CA
Key    HKCU\Software\Microsoft\SystemCertificates\My
Key    HKCU\Software\Microsoft\SystemCertificates\CA
Key    HKLM\SOFTWARE\Microsoft\EnterpriseCertificates\CA
Key    HKCU
Key    HKLM\SOFTWARE\Microsoft\SystemCertificates\Disallowed
Key    HKCU\Software\Microsoft\SystemCertificates\Disallowed
Key    HKLM\SOFTWARE\Microsoft\EnterpriseCertificates\Disallowed
Key    HKCU
Key    HKLM\SOFTWARE\Microsoft\SystemCertificates\ROOT
Key    HKLM\SOFTWARE\Microsoft\EnterpriseCertificates\Root
Key    HKCU\Software\Microsoft\SystemCertificates\Root
Key    HKLM\SOFTWARE\Microsoft\SystemCertificates\AuthRoot
Key    HKLM\SOFTWARE\Microsoft\SystemCertificates\TrustedPeople
Key    HKLM\SOFTWARE\Microsoft\SystemCertificates\SmartCardRoot
Key    HKCU\Software\Microsoft\SystemCertificates\TrustedPeople
Key    HKCU\Software\Microsoft\SystemCertificates\SmartCardRoot
Key    HKLM\SOFTWARE\Microsoft\EnterpriseCertificates\TrustedPeople
Key    HKCU
Key    HKLM\SOFTWARE\Microsoft\SystemCertificates\trust
Key    HKCU\Software\Microsoft\SystemCertificates\trust
Key    HKLM\SOFTWARE\Microsoft\EnterpriseCertificates\Trust
Key    HKCU
Key    HKLM\SOFTWARE\Policies\Microsoft\SystemCertificates
Key    HKCU\Software\Policies\Microsoft\SystemCertificates
Key    HKLM\SYSTEM\ControlSet001\services\WinSock2\Parameters\Protocol_Catalog9
Key    HKLM\SYSTEM\ControlSet001\services\WinSock2\Parameters\NameSpace_Catalog5
Key    HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Key    HKLM\SYSTEM\ControlSet001\Control\Nls\Locale\Alternate Sorts
Key    HKLM\SYSTEM\ControlSet001\Control\Nls\Locale
Key    HKLM\SYSTEM\ControlSet001\Control\Nls\Language Groups
Key    HKCU\Software\Classes
Key    HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer
Key    HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl
Key    HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl
Key    HKLM\SOFTWARE\Policies
Key    HKCU\Software\Policies
Key    HKCU\Software
Key    HKLM\SOFTWARE\Wow6432Node
Key    HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache
Key    HKCU\Software\Classes
Key    HKCR\MIME\Database\Content Type\application/vnd.wolfram.player
Key    HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\PropertyBag
Key    HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{B4BFCC3A-DB2C-424C-B029-7FE99A87C641}\PropertyBag
Key    HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}\PropertyBag
Key    HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{D65231B0-B2F1-4857-A4CE-A8E7C6EA7D27}\PropertyBag
Key    HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\PropertyBag
Key    HKCR\MIME\Database\Content Type\application/vnd.wolfram.nb
Key    HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
Key    HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
Key    HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History
Key    HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer
Key    HKCR\MIME\Database\Content Type\application/x-silverlight-2
Key    HKCR\MIME\Database\Content Type\application/mathematica
Key    HKCR\MIME\Database\Content Type\application/vnd.wolfram.cdf.text
Key    HKCR\MIME\Database\Content Type\application/vnd.wolfram.mathematica
Key    HKCR\MIME\Database\Content Type\application/vnd.wolfram.cdf
Key    HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\NavigatorPluginsList\Wolfram Mathematica Control
Key    HKCU\Software\Microsoft\Windows NT\CurrentVersion\Network\Location Awareness
Key    HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer
Key    HKCR\MIME\Database\Content Type\application/x-silverlight
Key    HKLM\SYSTEM\ControlSet001\Control\Nls\CodePage
Key    HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\NavigatorPluginsList
Mutant    \Sessions\1\BaseNamedObjects\µTorrent4823DF041B09
Mutant    \Sessions\1\BaseNamedObjects\!IECompat!Mutex
Mutant    \Sessions\1\BaseNamedObjects\ZonesLockedCacheCounterMutex
Mutant    \Sessions\1\BaseNamedObjects\MSCTF.Asm.MutexDefault1
Mutant    \Sessions\1\BaseNamedObjects\ZonesCacheCounterMutex
Mutant    \Sessions\1\BaseNamedObjects\!BrowserEmulation!SharedMemory!Mutex
Mutant    \Sessions\1\BaseNamedObjects\_!SHMSFTHISTORY!_
Section    \Sessions\1\BaseNamedObjects\mchLLEW2$1dd0
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $7769f9e0
Section    \Sessions\1\BaseNamedObjects\AutoUnhookMap$00001dd0$10000000
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $71ac0000
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $776c1287
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $730912c6
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $73092384
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $75acf784
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $754c103d
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $754c1072
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $75132642
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $75135429
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $754ec9b5
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $756a7bcc
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $756ae743
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $756acbfb
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $687d1320
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $687d1210
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $756a58b3
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $750b124e
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $756a5ea6
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $756ac332
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $756d480f
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $756ab895
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d802bf
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d8027b
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d3835c
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d37603
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d2ee09
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d36110
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d28332
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d33baa
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d312a5
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d33c61
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d28bff
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d3612e
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d29679
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d3781f
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d297d2
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d86cfc
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d376e0
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d86d5d
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d37668
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d4c112
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d4d0f5
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d4ff4a
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d4ec68
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d3291f
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d4eb96
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d888eb
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d32d64
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d33698
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d3c4b6
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d87dd7
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d69f1d
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d2efc9
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d36c30
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d290d3
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d32da4
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $76d71497
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $776a0550
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $776a0004
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $776a0084
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $776a1cb4
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $776a1d8c
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $7769fcb0
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $776a0694
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $776a0df4
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $776a1be4
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $7769ffa4
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $7769fdc8
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $776a00b4
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $7769fd64
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $7769fec0
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $776a088c
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $776a0ed8
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $776a08a4
Section    \Sessions\1\BaseNamedObjects\NamedBuffer, mAH, Process $00001dd0, API $776a03b8
Section    \Sessions\1\BaseNamedObjects\windows_shell_global_counters
Section    \BaseNamedObjects\__ComCatalogCache__
Section    \BaseNamedObjects\__ComCatalogCache__
Section    \Sessions\1\BaseNamedObjects\windows_ie_global_counters
Section    \Sessions\1\BaseNamedObjects\windows_ie_global_counters
Section    \Sessions\1\BaseNamedObjects\UrlZonesSM_Sakura
Section    \Sessions\1\BaseNamedObjects\windows_webcache_bloom_section_{7F4DDE9A-AF7C-4A8F-AC81-B431CE7DDED1}
Section    \Sessions\1\BaseNamedObjects\windows_webcache_bloom_section_{DD6108DC-6670-4A03-BE30-E392BD9CFFBD}
Section    \Sessions\1\BaseNamedObjects\windows_webcache_bloom_section_{F68ECEB0-D1F2-427F-95F3-321E2FED57B0}
Section    \Sessions\1\BaseNamedObjects\MSIMGSIZECacheMap
Section    \BaseNamedObjects\windows_shell_global_counters
Thread    uTorrent.exe(7632): 8112
Thread    uTorrent.exe(7632): 8112
Thread    uTorrent.exe(7632): 7608
Thread    uTorrent.exe(7632): 7608
Thread    uTorrent.exe(7632): 7532
Thread    uTorrent.exe(7632): 7696
Thread    uTorrent.exe(7632): 5088
Thread    uTorrent.exe(7632): 7172
Thread    uTorrent.exe(7632): 1996
Thread    uTorrent.exe(7632): 7864
Thread    uTorrent.exe(7632): 7208
Thread    uTorrent.exe(7632): 7704
Thread    uTorrent.exe(7632): 7172
Thread    uTorrent.exe(7632): 7864
Thread    uTorrent.exe(7632): 2436
Thread    uTorrent.exe(7632): 7864
Thread    uTorrent.exe(7632): 1040
Thread    uTorrent.exe(7632): 7456
Thread    uTorrent.exe(7632): 7860
Thread    uTorrent.exe(7632): 7828
Thread    uTorrent.exe(7632): 4944
Thread    uTorrent.exe(7632): 6712
Thread    uTorrent.exe(7632): 7276
Thread    uTorrent.exe(7632): 7188
Thread    uTorrent.exe(7632): 7188
Thread    uTorrent.exe(7632): 7184
Thread    uTorrent.exe(7632): 7292
Thread    uTorrent.exe(7632): 1396
Thread    uTorrent.exe(7632): 6196
Thread    uTorrent.exe(7632): 7184
Thread    uTorrent.exe(7632): 2664
Thread    uTorrent.exe(7632): 7184
Thread    uTorrent.exe(7632): 7184
Thread    uTorrent.exe(7632): 4528
Thread    uTorrent.exe(7632): 7860
Thread    uTorrent.exe(7632): 7444
Thread    uTorrent.exe(7632): 6536
Thread    uTorrent.exe(7632): 7396
Thread    uTorrent.exe(7632): 7228
Thread    uTorrent.exe(7632): 7252
Thread    uTorrent.exe(7632): 8176
Thread    uTorrent.exe(7632): 7236
Thread    uTorrent.exe(7632): 7236
Thread    uTorrent.exe(7632): 6368
Thread    uTorrent.exe(7632): 7288
Thread    uTorrent.exe(7632): 7240
Thread    uTorrent.exe(7632): 2436
Thread    uTorrent.exe(7632): 1040
Thread    uTorrent.exe(7632): 1528
Thread    uTorrent.exe(7632): 6504
Thread    uTorrent.exe(7632): 6504
Thread    uTorrent.exe(7632): 1996
Thread    uTorrent.exe(7632): 7440
Thread    uTorrent.exe(7632): 5476
Thread    uTorrent.exe(7632): 5476
Thread    uTorrent.exe(7632): 7860
Thread    uTorrent.exe(7632): 4968
Thread    uTorrent.exe(7632): 7068
Thread    uTorrent.exe(7632): 7808
Thread    uTorrent.exe(7632): 6504
Thread    uTorrent.exe(7632): 7992
Thread    uTorrent.exe(7632): 1908
Thread    uTorrent.exe(7632): 6392
Thread    uTorrent.exe(7632): 7412
Thread    uTorrent.exe(7632): 1044
Thread    uTorrent.exe(7632): 1528
Thread    uTorrent.exe(7632): 3568
Thread    uTorrent.exe(7632): 4616
Thread    uTorrent.exe(7632): 4648
Thread    uTorrent.exe(7632): 6120
Thread    uTorrent.exe(7632): 3016
Thread    uTorrent.exe(7632): 4768
Thread    uTorrent.exe(7632): 4376
Thread    uTorrent.exe(7632): 5044
Thread    uTorrent.exe(7632): 676
Thread    uTorrent.exe(7632): 6896
Thread    uTorrent.exe(7632): 5216
Thread    uTorrent.exe(7632): 6904
Thread    uTorrent.exe(7632): 4392
Thread    uTorrent.exe(7632): 6176
Thread    uTorrent.exe(7632): 7896
WindowStation    \Sessions\1\Windows\WindowStations\WinSta0
WindowStation    \Sessions\1\Windows\WindowStations\WinSta0

 

=====================================================

Link to comment
Share on other sites

Crash again!

 

Process    CPU    Private Bytes    Working Set    PID    Description    Company Name
System Idle Process    69.24    0 K    24 K    0        
System    1.21    160 K    60 K    4        
 Interrupts    2.76    0 K    0 K    n/a    Hardware Interrupts and DPCs    
 smss.exe        552 K    140 K    508        
csrss.exe    < 0.01    2,976 K    1,776 K    688        
 conhost.exe        3,212 K    380 K    1588        
wininit.exe        1,724 K    336 K    740        
 services.exe        9,120 K    5,688 K    808        
 lsass.exe        7,484 K    5,920 K    832    Local Security Authority Process    Microsoft Corporation
 lsm.exe        5,312 K    1,980 K    840        
csrss.exe    0.36    28,680 K    15,544 K    768        
 conhost.exe        3,252 K    636 K    4240    Console Window Host    Microsoft Corporation
winlogon.exe        3,516 K    456 K    936        
explorer.exe    0.22    114,236 K    79,852 K    3196    Windows Explorer    Microsoft Corporation
 iFrmewrk.exe        8,524 K    4,152 K    3688    Intel® PROSet/Wireless Framework    Intel® Corporation
 SynTPEnh.exe    < 0.01    11,900 K    1,976 K    3696    Synaptics TouchPad Enhancements    Synaptics Incorporated
 hkcmd.exe        5,292 K    2,068 K    3788    hkcmd Module    Intel Corporation
 igfxpers.exe        5,372 K    3,016 K    3808    persistence Module    Intel Corporation
 CisTray.exe    0.02    6,220 K    2,392 K    4088    COMODO Internet Security    COMODO
  cis.exe    < 0.01    18,932 K    3,620 K    5700    COMODO Internet Security    COMODO
 IDMan.exe        22,472 K    7,288 K    4436    Internet Download Manager (IDM)    Tonec Inc.
  IEMonitor.exe    0.05    3,656 K    5,476 K    6008    Internet Download Manager agent for click monitoring in IE-based browsers    Tonec Inc.
 Viber.exe    0.88    131,540 K    38,844 K    4480    Viber    
 EvernoteClipper.exe    < 0.01    3,712 K    1,408 K    4788    Evernote Clipper    Evernote Corp., 305 Walnut Street, Redwood City, CA 94063
 ONENOTEM.EXE        2,756 K    844 K    4812    Microsoft Office OneNote Quick Launcher    Microsoft Corporation
 firefox.exe    0.79    936,940 K    886,644 K    3492    Firefox    Mozilla Corporation
  plugin-container.exe    0.67    19,792 K    9,832 K    6980    Plugin Container for Firefox    Mozilla Corporation
   FlashPlayerPlugin_14_0_0_145.exe    0.14    6,976 K    3,548 K    6212    Adobe Flash Player 14.0 r0    Adobe Systems, Inc.
    FlashPlayerPlugin_14_0_0_145.exe    0.98    105,416 K    41,072 K    6972    Adobe Flash Player 14.0 r0    Adobe Systems, Inc.
 UniKeyNT.exe        4,432 K    1,652 K    2252        
 uTorrent.exe    16.84    247,752 K    208,476 K    7632    µTorrent    BitTorrent Inc.
  notepad++.exe    0.01    20,740 K    27,292 K    6396    Notepad++ : a free (GNU) source code editor    Don HO don.h@free.fr
ISBMgr.exe        4,092 K    1,784 K    4936        Sony Corporation
vmware-tray.exe        3,100 K    1,276 K    4976    VMware Tray Process    VMware, Inc.
MmReminderService.exe        11,744 K    1,928 K    5064    MindManager Topic Alerts    Mindjet
jusched.exe        5,468 K    2,268 K    5096    Java Update Scheduler    Oracle Corporation
PWRISOVM.EXE        6,020 K    5,356 K    5108    PowerISO Virtual Drive Manager    Power Software Ltd
iTunesHelper.exe    < 0.01    8,696 K    2,520 K    4104    iTunesHelper    Apple Inc.
trustedadssvc.exe    < 0.01    21,664 K    6,352 K    1028    PrivDog Service    AdTrustMedia
SynTPHelper.exe        3,404 K    492 K    5668        
Ymsgr_tray.exe        20,432 K    1,416 K    5812    Yahoo! Messenger Tray    Yahoo! Inc.
SyncServer.exe        10,588 K    944 K    4360    YSLoader.exe    Apple Inc.

Process: uTorrent.exe Pid: 7632

Name    Description    Company Name    Path
{14315AE4-EF15-400B-AAB9-D4E28D3DE262}.2.ver0x0000000000000001.db            C:\ProgramData\Microsoft\Windows\Caches\{14315AE4-EF15-400B-AAB9-D4E28D3DE262}.2.ver0x0000000000000001.db
{6882D3BE-F8DF-499A-95BA-7500F0B8C18E}.2.ver0x0000000000000001.db            C:\ProgramData\Microsoft\Windows\Caches\{6882D3BE-F8DF-499A-95BA-7500F0B8C18E}.2.ver0x0000000000000001.db
{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000036.db            C:\ProgramData\Microsoft\Windows\Caches\{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000036.db
{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x000000000000004b.db            C:\Users\Sakura\AppData\Local\Microsoft\Windows\Caches\{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x000000000000004b.db
{CFE1D42A-0FAC-4E58-9EAB-E45DA5729694}.2.ver0x0000000000000001.db            C:\ProgramData\Microsoft\Windows\Caches\{CFE1D42A-0FAC-4E58-9EAB-E45DA5729694}.2.ver0x0000000000000001.db
{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db            C:\ProgramData\Microsoft\Windows\Caches\{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
~FontCache-FontFace.dat            C:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-FontFace.dat
~FontCache-S-1-5-21-3275550235-1436980161-3967423367-1000.dat            C:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-S-1-5-21-3275550235-1436980161-3967423367-1000.dat
~FontCache-System.dat            C:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-System.dat
1AAEA155F43265E4265D6BD858866B9359BB3729            D:\Utorrent\dlimagecache\1AAEA155F43265E4265D6BD858866B9359BB3729
25A67F778E50ABECBC878C8AD880BF17F4D4064A            D:\Utorrent\dlimagecache\25A67F778E50ABECBC878C8AD880BF17F4D4064A
3B170F5E4FDD2D04346DDC2ED6EF5BF58166A601            D:\Utorrent\dlimagecache\3B170F5E4FDD2D04346DDC2ED6EF5BF58166A601
3BB6B33D4793BE9EBA1DF3FFCF7FA5432583C072            D:\Utorrent\dlimagecache\3BB6B33D4793BE9EBA1DF3FFCF7FA5432583C072
501939404FFCAC8501EF558B0A7340AC86050C59            D:\Utorrent\dlimagecache\501939404FFCAC8501EF558B0A7340AC86050C59
77E17EF9002282D08E43059B5BCEAE527E2E3A56            D:\Utorrent\dlimagecache\77E17EF9002282D08E43059B5BCEAE527E2E3A56
77E17EF9002282D08E43059B5BCEAE527E2E3A56            D:\Utorrent\dlimagecache\77E17EF9002282D08E43059B5BCEAE527E2E3A56
77E17EF9002282D08E43059B5BCEAE527E2E3A56            D:\Utorrent\dlimagecache\77E17EF9002282D08E43059B5BCEAE527E2E3A56
94D34A216CFBA6B7F0CEAED50E4BBB86C6DA84EF            D:\Utorrent\dlimagecache\94D34A216CFBA6B7F0CEAED50E4BBB86C6DA84EF
962D4787C88899243CC570649A1034F41C52623A            D:\Utorrent\dlimagecache\962D4787C88899243CC570649A1034F41C52623A
A997C13C3063D3C08C02F2ED59069D29EA173C99            D:\Utorrent\dlimagecache\A997C13C3063D3C08C02F2ED59069D29EA173C99
actxprxy.dll    ActiveX Interface Marshaling Library    Microsoft Corporation    C:\Windows\SysWOW64\actxprxy.dll
advapi32.dll    Advanced Windows 32 Base API    Microsoft Corporation    C:\Windows\SysWOW64\advapi32.dll
api-ms-win-downlevel-advapi32-l1-1-0.dll    ApiSet Stub DLL    Microsoft Corporation    C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
api-ms-win-downlevel-advapi32-l2-1-0.dll    ApiSet Stub DLL    Microsoft Corporation    C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
api-ms-win-downlevel-normaliz-l1-1-0.dll    ApiSet Stub DLL    Microsoft Corporation    C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
api-ms-win-downlevel-ole32-l1-1-0.dll    ApiSet Stub DLL    Microsoft Corporation    C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
api-ms-win-downlevel-shell32-l1-1-0.dll    ApiSet Stub DLL    Microsoft Corporation    C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
api-ms-win-downlevel-shlwapi-l1-1-0.dll    ApiSet Stub DLL    Microsoft Corporation    C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
api-ms-win-downlevel-shlwapi-l2-1-0.dll    ApiSet Stub DLL    Microsoft Corporation    C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
api-ms-win-downlevel-user32-l1-1-0.dll    ApiSet Stub DLL    Microsoft Corporation    C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
api-ms-win-downlevel-version-l1-1-0.dll    ApiSet Stub DLL    Microsoft Corporation    C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
apisetschema.dll    ApiSet Schema DLL    Microsoft Corporation    C:\Windows\System32\apisetschema.dll
apphelp.dll    Application Compatibility Client Library    Microsoft Corporation    C:\Windows\SysWOW64\apphelp.dll
atl.dll    ATL Module for Windows XP (Unicode)    Microsoft Corporation    C:\Windows\SysWOW64\atl.dll
ATL90.dll    ATL Module for Windows (Unicode)    Microsoft Corporation    C:\Windows\winsxs\x86_microsoft.vc90.atl_1fc8b3b9a1e18e3b_9.0.30729.6161_none_51cd0a7abbe4e19b\ATL90.dll
AudioSes.dll    Audio Session    Microsoft Corporation    C:\Windows\SysWOW64\AudioSes.dll
B2AB655DA862F07CAB11AB47598A72C89DD94405            D:\Utorrent\dlimagecache\B2AB655DA862F07CAB11AB47598A72C89DD94405
B6346BED79119E2FD3565DB2A06FE2B074535363            D:\Utorrent\dlimagecache\B6346BED79119E2FD3565DB2A06FE2B074535363
bcrypt.dll    Windows Cryptographic Primitives Library (Wow64)    Microsoft Corporation    C:\Windows\SysWOW64\bcrypt.dll
bcryptprimitives.dll    Windows Cryptographic Primitives Library    Microsoft Corporation    C:\Windows\SysWOW64\bcryptprimitives.dll
C_1250.NLS            C:\Windows\System32\C_1250.NLS
C_1251.NLS            C:\Windows\System32\C_1251.NLS
C_1253.NLS            C:\Windows\System32\C_1253.NLS
C_1256.NLS            C:\Windows\System32\C_1256.NLS
C_28591.NLS            C:\Windows\System32\C_28591.NLS
C_950.NLS            C:\Windows\System32\C_950.NLS
cabinet.dll    Microsoft® Cabinet File API    Microsoft Corporation    C:\Windows\SysWOW64\cabinet.dll
calibrib.ttf            C:\Windows\Fonts\calibrib.ttf
cfgmgr32.dll    Configuration Manager DLL    Microsoft Corporation    C:\Windows\SysWOW64\cfgmgr32.dll
clbcatq.dll    COM+ Configuration Catalog    Microsoft Corporation    C:\Windows\SysWOW64\clbcatq.dll
comctl32.dll    User Experience Controls Library    Microsoft Corporation    C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
comctl32.dll.mui    User Experience Controls Library    Microsoft Corporation    C:\Windows\winsxs\x86_microsoft.windows.c..-controls.resources_6595b64144ccf1df_6.0.7600.16385_en-us_581cd2bf5825dde9\comctl32.dll.mui
comdlg32.dll    Common Dialogs DLL    Microsoft Corporation    C:\Windows\SysWOW64\comdlg32.dll
comdlg32.dll.mui    Common Dialogs DLL    Microsoft Corporation    C:\Windows\SysWOW64\en-US\comdlg32.dll.mui
counters.dat            C:\Users\Sakura\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
credssp.dll    Credential Delegation Security Package    Microsoft Corporation    C:\Windows\SysWOW64\credssp.dll
crypt32.dll    Crypto API32    Microsoft Corporation    C:\Windows\SysWOW64\crypt32.dll
crypt32.dll.mui    Crypto API32    Microsoft Corporation    C:\Windows\SysWOW64\en-US\crypt32.dll.mui
cryptbase.dll    Base cryptographic API DLL    Microsoft Corporation    C:\Windows\SysWOW64\cryptbase.dll
cryptsp.dll    Cryptographic Service Provider API    Microsoft Corporation    C:\Windows\SysWOW64\cryptsp.dll
cscapi.dll    Offline Files Win32 API    Microsoft Corporation    C:\Windows\SysWOW64\cscapi.dll
cversions.2.db            C:\ProgramData\Microsoft\Windows\Caches\cversions.2.db
cversions.2.db            C:\ProgramData\Microsoft\Windows\Caches\cversions.2.db
cversions.2.db            C:\ProgramData\Microsoft\Windows\Caches\cversions.2.db
cversions.2.db            C:\ProgramData\Microsoft\Windows\Caches\cversions.2.db
cversions.2.db            C:\ProgramData\Microsoft\Windows\Caches\cversions.2.db
cversions.2.db            C:\ProgramData\Microsoft\Windows\Caches\cversions.2.db
d2d1.dll    Microsoft D2D Library    Microsoft Corporation    C:\Windows\SysWOW64\d2d1.dll
d3d10warp.dll    Direct3D 10 Rasterizer    Microsoft Corporation    C:\Windows\SysWOW64\d3d10warp.dll
d3d11.dll    Direct3D 11 Runtime    Microsoft Corporation    C:\Windows\SysWOW64\d3d11.dll
davclnt.dll    Web DAV Client DLL    Microsoft Corporation    C:\Windows\SysWOW64\davclnt.dll
davhlpr.dll    DAV Helper DLL    Microsoft Corporation    C:\Windows\SysWOW64\davhlpr.dll
DC612C471ED091A5E609B42B5838A17B785944FE            D:\Utorrent\dlimagecache\DC612C471ED091A5E609B42B5838A17B785944FE
DC612C471ED091A5E609B42B5838A17B785944FE            D:\Utorrent\dlimagecache\DC612C471ED091A5E609B42B5838A17B785944FE
DC612C471ED091A5E609B42B5838A17B785944FE            D:\Utorrent\dlimagecache\DC612C471ED091A5E609B42B5838A17B785944FE
devobj.dll    Device Information Set DLL    Microsoft Corporation    C:\Windows\SysWOW64\devobj.dll
dhcpcsvc.dll    DHCP Client Service    Microsoft Corporation    C:\Windows\SysWOW64\dhcpcsvc.dll
dhcpcsvc6.dll    DHCPv6 Client    Microsoft Corporation    C:\Windows\SysWOW64\dhcpcsvc6.dll
dinput8.dll    Microsoft DirectInput    Microsoft Corporation    C:\Windows\SysWOW64\dinput8.dll
dnsapi.dll    DNS Client API DLL    Microsoft Corporation    C:\Windows\SysWOW64\dnsapi.dll
drprov.dll    Microsoft Remote Desktop Session Host Server Network Provider    Microsoft Corporation    C:\Windows\SysWOW64\drprov.dll
dsound.dll    DirectSound    Microsoft Corporation    C:\Windows\SysWOW64\dsound.dll
dui70.dll    Windows DirectUI Engine    Microsoft Corporation    C:\Windows\SysWOW64\dui70.dll
duser.dll    Windows DirectUser Engine    Microsoft Corporation    C:\Windows\SysWOW64\duser.dll
duser.dll.mui    Windows DirectUser Engine    Microsoft Corporation    C:\Windows\SysWOW64\en-US\duser.dll.mui
dwmapi.dll    Microsoft Desktop Window Manager API    Microsoft Corporation    C:\Windows\SysWOW64\dwmapi.dll
DWrite.dll    Microsoft DirectX Typography Services    Microsoft Corporation    C:\Windows\SysWOW64\DWrite.dll
dxgi.dll    DirectX Graphics Infrastructure    Microsoft Corporation    C:\Windows\SysWOW64\dxgi.dll
dxgidebug.dll    DXGI Debug Binary    Microsoft Corporation    C:\Windows\SysWOW64\dxgidebug.dll
EhStorShell.dll    Windows Enhanced Storage Shell Extension DLL    Microsoft Corporation    C:\Windows\SysWOW64\EhStorShell.dll
ExplorerFrame.dll    ExplorerFrame    Microsoft Corporation    C:\Windows\SysWOW64\ExplorerFrame.dll
explorerframe.dll.mui    ExplorerFrame    Microsoft Corporation    C:\Windows\SysWOW64\en-US\explorerframe.dll.mui
Faultrep.dll    Windows User Mode Crash Reporting DLL    Microsoft Corporation    C:\Windows\SysWOW64\Faultrep.dll
FirewallAPI.dll    Windows Firewall API    Microsoft Corporation    C:\Windows\SysWOW64\FirewallAPI.dll
Flash32_14_0_0_145.ocx    Adobe Flash Player 14.0 r0    Adobe Systems, Inc.    C:\Windows\SysWOW64\Macromed\Flash\Flash32_14_0_0_145.ocx
Flash32_14_0_0_145.ocx    Adobe Flash Player 14.0 r0    Adobe Systems, Inc.    C:\Windows\SysWOW64\Macromed\Flash\Flash32_14_0_0_145.ocx
fltLib.dll    Filter Library    Microsoft Corporation    C:\Windows\SysWOW64\fltLib.dll
FWPUCLNT.DLL    FWP/IPsec User-Mode API    Microsoft Corporation    C:\Windows\SysWOW64\FWPUCLNT.DLL
gdi32.dll    GDI Client DLL    Microsoft Corporation    C:\Windows\SysWOW64\gdi32.dll
GdiPlus.dll    Microsoft GDI+    Microsoft Corporation    C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18455_none_72d576ad8665e853\GdiPlus.dll
gpapi.dll    Group Policy Client API    Microsoft Corporation    C:\Windows\SysWOW64\gpapi.dll
GROOVEEX.DLL    Microsoft SharePoint Workspace Extensions    Microsoft Corporation    C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
GrooveIntlResource.dll    Microsoft SharePoint Workspace Intl Resource Module    Microsoft Corporation    C:\Program Files (x86)\Microsoft Office\Office14\1033\GrooveIntlResource.dll
guard32.dll    COMODO Internet Security    COMODO    C:\Windows\SysWOW64\guard32.dll
hnetcfg.dll    Home Networking Configuration Manager    Microsoft Corporation    C:\Windows\SysWOW64\hnetcfg.dll
hnetcfg.dll.mui    Home Networking Configuration Manager    Microsoft Corporation    C:\Windows\SysWOW64\en-US\hnetcfg.dll.mui
IconCodecService.dll    Converts a PNG part of the icon to a legacy bmp icon    Microsoft Corporation    C:\Windows\SysWOW64\IconCodecService.dll
ie.1407717185.tmp            D:\Utorrent\ie\ie.1407717185.tmp
ie.1407717186.tmp            D:\Utorrent\ie\ie.1407717186.tmp
ie.1407717187.tmp            D:\Utorrent\ie\ie.1407717187.tmp
ieframe.dll    Internet Browser    Microsoft Corporation    C:\Windows\SysWOW64\ieframe.dll
ieframe.dll.mui    Internet Browser    Microsoft Corporation    C:\Windows\SysWOW64\en-US\ieframe.dll.mui
ieproxy.dll    IE ActiveX Interface Marshaling Library    Microsoft Corporation    C:\Program Files (x86)\Internet Explorer\ieproxy.dll
iertutil.dll    Run time utility for Internet Explorer    Microsoft Corporation    C:\Windows\SysWOW64\iertutil.dll
imagehlp.dll    Windows NT Image Helper    Microsoft Corporation    C:\Windows\SysWOW64\imagehlp.dll
imm32.dll    Multi-User Windows IMM32 API Client DLL    Microsoft Corporation    C:\Windows\SysWOW64\imm32.dll
IPHLPAPI.DLL    IP Helper API    Microsoft Corporation    C:\Windows\SysWOW64\IPHLPAPI.DLL
jscript9.dll    Microsoft ® JScript    Microsoft Corporation    C:\Windows\SysWOW64\jscript9.dll
jscript9.dll.mui    Microsoft ® JScript    Microsoft Corporation    C:\Windows\SysWOW64\en-US\jscript9.dll.mui
kernel32.dll    Windows NT BASE API Client DLL    Microsoft Corporation    C:\Windows\SysWOW64\kernel32.dll
KernelBase.dll    Windows NT BASE API Client DLL    Microsoft Corporation    C:\Windows\SysWOW64\KernelBase.dll
KernelBase.dll.mui    Windows NT BASE API Client DLL    Microsoft Corporation    C:\Windows\SysWOW64\en-US\KernelBase.dll.mui
linkinfo.dll    Windows Volume Tracking    Microsoft Corporation    C:\Windows\SysWOW64\linkinfo.dll
locale.nls            C:\Windows\System32\locale.nls
logging.dll    Logging Library    Microsoft Corporation    C:\Users\Sakura\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328_1\logging.dll
lpk.dll    Language Pack    Microsoft Corporation    C:\Windows\SysWOW64\lpk.dll
mdnsNSP.dll    Bonjour Namespace Provider    Apple Inc.    C:\Program Files (x86)\Bonjour\mdnsNSP.dll
mlang.dll    Multi Language Support DLL    Microsoft Corporation    C:\Windows\SysWOW64\mlang.dll
MMDevAPI.dll    MMDevice API    Microsoft Corporation    C:\Windows\SysWOW64\MMDevAPI.dll
MMDevAPI.dll.mui    MMDevice API    Microsoft Corporation    C:\Windows\SysWOW64\en-US\MMDevAPI.dll.mui
mpr.dll    Multiple Provider Router DLL    Microsoft Corporation    C:\Windows\SysWOW64\mpr.dll
mpr.dll.mui    Multiple Provider Router DLL    Microsoft Corporation    C:\Windows\SysWOW64\en-US\mpr.dll.mui
msasn1.dll    ASN.1 Runtime APIs    Microsoft Corporation    C:\Windows\SysWOW64\msasn1.dll
mscms.dll    Microsoft Color Matching System DLL    Microsoft Corporation    C:\Windows\SysWOW64\mscms.dll
msctf.dll    MSCTF Server DLL    Microsoft Corporation    C:\Windows\SysWOW64\msctf.dll
msctf.dll.mui    MSCTF Server DLL    Microsoft Corporation    C:\Windows\SysWOW64\en-US\msctf.dll.mui
mshtml.dll    Microsoft ® HTML Viewer    Microsoft Corporation    C:\Windows\SysWOW64\mshtml.dll
mshtml.dll.mui    Microsoft ® HTML Viewer    Microsoft Corporation    C:\Windows\SysWOW64\en-US\mshtml.dll.mui
msimg32.dll    GDIEXT Client DLL    Microsoft Corporation    C:\Windows\SysWOW64\msimg32.dll
MSIMGSIZ.DAT            C:\Users\Sakura\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
msimtf.dll    Active IMM Server DLL    Microsoft Corporation    C:\Windows\SysWOW64\msimtf.dll
msls31.dll    Microsoft Line Services library file    Microsoft Corporation    C:\Windows\SysWOW64\msls31.dll
mssprxy.dll    Microsoft Search Proxy    Microsoft Corporation    C:\Windows\SysWOW64\mssprxy.dll
msvcp110.dll    Microsoft® C Runtime Library    Microsoft Corporation    C:\Users\Sakura\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328_1\msvcp110.dll
msvcp80.dll    Microsoft® C++ Runtime Library    Microsoft Corporation    C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6229_none_d089f796442de10e\msvcp80.dll
msvcp90.dll    Microsoft® C++ Runtime Library    Microsoft Corporation    C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll
msvcr110.dll    Microsoft® C Runtime Library    Microsoft Corporation    C:\Users\Sakura\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328_1\msvcr110.dll
msvcr80.dll    Microsoft® C Runtime Library    Microsoft Corporation    C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6229_none_d089f796442de10e\msvcr80.dll
msvcr90.dll    Microsoft® C Runtime Library    Microsoft Corporation    C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll
msvcrt.dll    Windows NT CRT DLL    Microsoft Corporation    C:\Windows\SysWOW64\msvcrt.dll
mswsock.dll    Microsoft Windows Sockets 2.0 Service Provider    Microsoft Corporation    C:\Windows\SysWOW64\mswsock.dll
msxml3.dll    MSXML 3.0 SP11    Microsoft Corporation    C:\Windows\SysWOW64\msxml3.dll
msxml3r.dll    XML Resources    Microsoft Corporation    C:\Windows\SysWOW64\msxml3r.dll
msxml6.dll    MSXML 6.0 SP3    Microsoft Corporation    C:\Windows\SysWOW64\msxml6.dll
msxml6r.dll    XML Resources    Microsoft Corporation    C:\Windows\SysWOW64\msxml6r.dll
ncrypt.dll    Windows cryptographic library    Microsoft Corporation    C:\Windows\SysWOW64\ncrypt.dll
netprofm.dll    Network List Manager    Microsoft Corporation    C:\Windows\SysWOW64\netprofm.dll
netshell.dll    Network Connections Shell    Microsoft Corporation    C:\Windows\SysWOW64\netshell.dll
netutils.dll    Net Win32 API Helpers DLL    Microsoft Corporation    C:\Windows\SysWOW64\netutils.dll
networkexplorer.dll    Network Explorer    Microsoft Corporation    C:\Windows\SysWOW64\networkexplorer.dll
nlaapi.dll    Network Location Awareness 2    Microsoft Corporation    C:\Windows\SysWOW64\nlaapi.dll
normaliz.dll    Unicode Normalization DLL    Microsoft Corporation    C:\Windows\SysWOW64\normaliz.dll
npmproxy.dll    Network List Manager Proxy    Microsoft Corporation    C:\Windows\SysWOW64\npmproxy.dll
nsi.dll    NSI User-mode interface DLL    Microsoft Corporation    C:\Windows\SysWOW64\nsi.dll
ntdll.dll    NT Layer DLL    Microsoft Corporation    C:\Windows\System32\ntdll.dll
ntdll.dll    NT Layer DLL    Microsoft Corporation    C:\Windows\SysWOW64\ntdll.dll
ntlanman.dll    Microsoft® Lan Manager    Microsoft Corporation    C:\Windows\SysWOW64\ntlanman.dll
ntmarta.dll    Windows NT MARTA provider    Microsoft Corporation    C:\Windows\SysWOW64\ntmarta.dll
ntshrui.dll    Shell extensions for sharing    Microsoft Corporation    C:\Windows\SysWOW64\ntshrui.dll
OFFICE.ODF    Microsoft Office culture data dll    Microsoft Corporation    C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
ole32.dll    Microsoft OLE for Windows    Microsoft Corporation    C:\Windows\SysWOW64\ole32.dll
oleaut32.dll        Microsoft Corporation    C:\Windows\SysWOW64\oleaut32.dll
powrprof.dll    Power Profile Helper DLL    Microsoft Corporation    C:\Windows\SysWOW64\powrprof.dll
profapi.dll    User Profile Basic API    Microsoft Corporation    C:\Windows\SysWOW64\profapi.dll
propsys.dll    Microsoft Property System    Microsoft Corporation    C:\Windows\SysWOW64\propsys.dll
propsys.dll.mui    Microsoft Property System    Microsoft Corporation    C:\Windows\SysWOW64\en-US\propsys.dll.mui
psapi.dll    Process Status Helper    Microsoft Corporation    C:\Windows\SysWOW64\psapi.dll
rasadhlp.dll    Remote Access AutoDial Helper    Microsoft Corporation    C:\Windows\SysWOW64\rasadhlp.dll
riched20.dll    Rich Text Edit Control, v3.1    Microsoft Corporation    C:\Windows\SysWOW64\riched20.dll
rpcrt4.dll    Remote Procedure Call Runtime    Microsoft Corporation    C:\Windows\SysWOW64\rpcrt4.dll
RpcRtRemote.dll    Remote RPC Extension    Microsoft Corporation    C:\Windows\SysWOW64\RpcRtRemote.dll
rsaenh.dll    Microsoft Enhanced Cryptographic Provider    Microsoft Corporation    C:\Windows\SysWOW64\rsaenh.dll
samcli.dll    Security Accounts Manager Client DLL    Microsoft Corporation    C:\Windows\SysWOW64\samcli.dll
samlib.dll    SAM Library DLL    Microsoft Corporation    C:\Windows\SysWOW64\samlib.dll
schannel.dll    TLS / SSL Security Provider    Microsoft Corporation    C:\Windows\SysWOW64\schannel.dll
sechost.dll    Host for SCM/SDDL/LSA Lookup APIs    Microsoft Corporation    C:\Windows\SysWOW64\sechost.dll
secur32.dll    Security Support Provider Interface    Microsoft Corporation    C:\Windows\SysWOW64\secur32.dll
setupapi.dll    Windows Setup API    Microsoft Corporation    C:\Windows\SysWOW64\setupapi.dll
setupapi.dll.mui    Windows Setup API    Microsoft Corporation    C:\Windows\SysWOW64\en-US\setupapi.dll.mui
shdocvw.dll    Shell Doc Object and Control Library    Microsoft Corporation    C:\Windows\SysWOW64\shdocvw.dll
shell32.dll    Windows Shell Common Dll    Microsoft Corporation    C:\Windows\SysWOW64\shell32.dll
shell32.dll.mui    Windows Shell Common Dll    Microsoft Corporation    C:\Windows\SysWOW64\en-US\shell32.dll.mui
ShellStreams.dll    Apple Photostreams UI Shell Extension    Apple Inc.    C:\Program Files (x86)\Common Files\Apple\Internet Services\ShellStreams.dll
ShellStreamsLocalized.dll    Apple Photostreams UI Resources    Apple Inc.    C:\Program Files (x86)\Common Files\Apple\Internet Services\ShellStreams.resources\en.lproj\ShellStreamsLocalized.dll
shlwapi.dll    Shell Light-weight Utility Library    Microsoft Corporation    C:\Windows\SysWOW64\shlwapi.dll
SkyDriveShell.dll    Microsoft OneDrive Shell Extension    Microsoft Corporation    C:\Users\Sakura\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328_1\SkyDriveShell.dll
slc.dll    Software Licensing Client Dll    Microsoft Corporation    C:\Windows\SysWOW64\slc.dll
SortDefault.nls            C:\Windows\Globalization\Sorting\SortDefault.nls
srvcli.dll    Server Service Client DLL    Microsoft Corporation    C:\Windows\SysWOW64\srvcli.dll
ssdpapi.dll    SSDP Client API DLL    Microsoft Corporation    C:\Windows\SysWOW64\ssdpapi.dll
sspicli.dll    Security Support Provider Interface    Microsoft Corporation    C:\Windows\SysWOW64\sspicli.dll
StaticCache.dat            C:\Windows\Fonts\StaticCache.dat
stdole2.tlb        Microsoft Corporation    C:\Windows\SysWOW64\stdole2.tlb
StructuredQuery.dll    Structured Query    Microsoft Corporation    C:\Windows\SysWOW64\StructuredQuery.dll
sxs.dll    Fusion 2.5    Microsoft Corporation    C:\Windows\SysWOW64\sxs.dll
Telemetry.dll    Telemetry Library    Microsoft Corporation    C:\Users\Sakura\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328_1\Telemetry.dll
thumbcache.dll    Microsoft Thumbnail Cache    Microsoft Corporation    C:\Windows\SysWOW64\thumbcache.dll
tiptsf.dll    Tablet PC Input Panel Text Services Framework    Microsoft Corporation    C:\Program Files (x86)\Common Files\microsoft shared\ink\tiptsf.dll
upnp.dll    UPnP Control Point API    Microsoft Corporation    C:\Windows\SysWOW64\upnp.dll
urlmon.dll    OLE32 Extensions for Win32    Microsoft Corporation    C:\Windows\SysWOW64\urlmon.dll
urlmon.dll.mui    OLE32 Extensions for Win32    Microsoft Corporation    C:\Windows\SysWOW64\en-US\urlmon.dll.mui
user32.dll    Multi-User Windows USER API Client DLL    Microsoft Corporation    C:\Windows\SysWOW64\user32.dll
user32.dll.mui    Multi-User Windows USER API Client DLL    Microsoft Corporation    C:\Windows\SysWOW64\en-US\user32.dll.mui
userenv.dll    Userenv    Microsoft Corporation    C:\Windows\SysWOW64\userenv.dll
usp10.dll    Uniscribe Unicode script processor    Microsoft Corporation    C:\Windows\SysWOW64\usp10.dll
uTorrent.exe    µTorrent    BitTorrent Inc.    D:\Utorrent\uTorrent.exe
uxtheme.dll    Microsoft UxTheme Library    Microsoft Corporation    C:\Windows\SysWOW64\uxtheme.dll
version.dll    Version Checking and File Installation Libraries    Microsoft Corporation    C:\Windows\SysWOW64\version.dll
webio.dll    Web Transfer Protocols API    Microsoft Corporation    C:\Windows\SysWOW64\webio.dll
WindowsCodecs.dll    Microsoft Windows Codecs Library    Microsoft Corporation    C:\Windows\SysWOW64\WindowsCodecs.dll
WindowsCodecsExt.dll    Microsoft Windows Codecs Extended Library    Microsoft Corporation    C:\Windows\SysWOW64\WindowsCodecsExt.dll
winhttp.dll    Windows HTTP Services    Microsoft Corporation    C:\Windows\SysWOW64\winhttp.dll
wininet.dll    Internet Extensions for Win32    Microsoft Corporation    C:\Windows\SysWOW64\wininet.dll
winmm.dll    MCI API DLL    Microsoft Corporation    C:\Windows\SysWOW64\winmm.dll
winnsi.dll    Network Store Information RPC interface    Microsoft Corporation    C:\Windows\SysWOW64\winnsi.dll
winsta.dll    Winstation Library    Microsoft Corporation    C:\Windows\SysWOW64\winsta.dll
wintrust.dll    Microsoft Trust Verification APIs    Microsoft Corporation    C:\Windows\SysWOW64\wintrust.dll
wkscli.dll    Workstation Service Client DLL    Microsoft Corporation    C:\Windows\SysWOW64\wkscli.dll
Wldap32.dll    Win32 LDAP API DLL    Microsoft Corporation    C:\Windows\SysWOW64\Wldap32.dll
wow64.dll    Win32 Emulation on NT64    Microsoft Corporation    C:\Windows\System32\wow64.dll
wow64cpu.dll    AMD64 Wow64 CPU     Microsoft Corporation    C:\Windows\System32\wow64cpu.dll
wow64win.dll    Wow64 Console and Win32 API Logging    Microsoft Corporation    C:\Windows\System32\wow64win.dll
wpdshext.dll    Portable Devices Shell Extension    Microsoft Corporation    C:\Windows\SysWOW64\wpdshext.dll
ws2_32.dll    Windows Socket 2.0 32-Bit DLL    Microsoft Corporation    C:\Windows\SysWOW64\ws2_32.dll
wship6.dll    Winsock2 Helper DLL (TL/IPv6)    Microsoft Corporation    C:\Windows\SysWOW64\wship6.dll
wship6.dll.mui    Winsock2 Helper DLL (TL/IPv6)    Microsoft Corporation    C:\Windows\SysWOW64\en-US\wship6.dll.mui
WSHTCPIP.DLL    Winsock2 Helper DLL (TL/IPv4)    Microsoft Corporation    C:\Windows\SysWOW64\WSHTCPIP.DLL
wshtcpip.dll.mui    Winsock2 Helper DLL (TL/IPv4)    Microsoft Corporation    C:\Windows\SysWOW64\en-US\wshtcpip.dll.mui
wsock32.dll    Windows Socket 32-Bit DLL    Microsoft Corporation    C:\Windows\SysWOW64\wsock32.dll
xmllite.dll    Microsoft XmlLite Library    Microsoft Corporation    C:\Windows\SysWOW64\xmllite.dll
zipfldr.dll    Compressed (zipped) Folders    Microsoft Corporation    C:\Windows\SysWOW64\zipfldr.dll

 

Link to dumps:

 

http://sendfile.su/1010350

Link to comment
Share on other sites

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...