Jump to content

"Error: The process cannot access the file because it is being....."


riahc3

Recommended Posts

used by another process.

This error is popping up under Windows 7. How do I fix this? Its pretty annoying having to start the torrent up again manually and this has never happened to me in Vista and I dont have any new software that could cause this.

uTorrent 1.8.3

Link to comment
Share on other sites

I used the FAQ and searched for process..... Nothing in the FAQ about this error.

You post this is every fucking thread

"FAQ and Search

Use them.

Chances are, I'm not in the mood for runarounds. If guides ask for info. Provide it before I have to ask for it."

If you know the answer just say it.....

Anyways, I dont have any software different from when I was in Vista so I believe this is a 7 related problem.

Link to comment
Share on other sites

You post this is every fucking thread

"FAQ and Search

Use them.

Chances are, I'm not in the mood for runarounds. If guides ask for info. Provide it before I have to ask for it."

If you know the answer just say it.....

And you're complaining about and replying to a forum signature appearing in every post... why again?

To reiterate: provide us with your list of running processes (get both):

a) get HijackThis from www.trendmicro.com, run it, view the log, and post the contents here

B) get Process Explorer from www.sysinternals.com, run it, Ctrl+D (to show the lower DLL pane), select the µTorrent process from the list, Ctrl+S (and save the list somewhere you'll find easily -- like the Desktop), then post the contents of the saved process list in the .txt file here

Link to comment
Share on other sites

Process Explorer:

Process PID CPU Description Company Name

System Idle Process 0 68.48

Interrupts n/a 0.76 Hardware Interrupts

DPCs n/a 1.52 Deferred Procedure Calls

System 4 3.04

smss.exe 312 Windows Session Manager Microsoft Corporation

csrss.exe 408 Client Server Runtime Process Microsoft Corporation

wininit.exe 480 Windows Start-Up Application Microsoft Corporation

services.exe 532 0.76 Services and Controller app Microsoft Corporation

svchost.exe 716 Host Process for Windows Services Microsoft Corporation

iexplore.exe 4536 Internet Explorer Microsoft Corporation

iexplore.exe 5044 Internet Explorer Microsoft Corporation

iexplore.exe 4372 Internet Explorer Microsoft Corporation

WinRAR.exe 6040 WinRAR archiver Alexander Roshal

iexplore.exe 1592 Internet Explorer Microsoft Corporation

dllhost.exe 5824 COM Surrogate Microsoft Corporation

wlcomm.exe 6592 0.76 Windows Live Communications Platform Microsoft Corporation

explorer.exe 6276 Windows Explorer Microsoft Corporation

dllhost.exe 7388 2.28 COM Surrogate Microsoft Corporation

svchost.exe 792 Host Process for Windows Services Microsoft Corporation

svchost.exe 860 Host Process for Windows Services Microsoft Corporation

audiodg.exe 6396 Windows Audio Device Graph Isolation Microsoft Corporation

svchost.exe 936 Host Process for Windows Services Microsoft Corporation

dwm.exe 2424 1.52 Desktop Window Manager Microsoft Corporation

WUDFHost.exe 3068 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation

WUDFHost.exe 8080 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation

svchost.exe 992 Host Process for Windows Services Microsoft Corporation

wuauclt.exe 4364 Windows Update Microsoft Corporation

CTAudSvc.exe 1112 Creative Audio Service Creative Technology Ltd

svchost.exe 1172 Host Process for Windows Services Microsoft Corporation

svchost.exe 1360 Host Process for Windows Services Microsoft Corporation

spoolsv.exe 1488 Spooler SubSystem App Microsoft Corporation

svchost.exe 1516 Host Process for Windows Services Microsoft Corporation

svchost.exe 1676 Host Process for Windows Services Microsoft Corporation

mdm.exe 1712 Machine Debug Manager Microsoft Corporation

nod32krn.exe 1752 NOD32 Kernel Service Eset

svchost.exe 1784 Host Process for Windows Services Microsoft Corporation

TeamViewer_Service.exe 1832 TeamViewer Service TeamViewer GmbH

TeamViewer.exe 2020 TeamViewer Remote Control Application TeamViewer GmbH

TosBtSrv.exe 1884 TOSHIBA Bluetooth Service TOSHIBA CORPORATION

vmnat.exe 1956 VMware NAT Service VMware, Inc.

WLIDSVC.EXE 2004 Microsoft® Windows Live ID Service Microsoft Corporation

WLIDSVCM.EXE 3212 Microsoft® Windows Live ID Service Monitor Microsoft Corporation

vmware-authd.exe 292 VMware Authorization Service VMware, Inc.

taskhost.exe 2156 Host Process for Windows Tasks Microsoft Corporation

vmnetdhcp.exe 2180 VMware VMnet DHCP service VMware, Inc.

SearchIndexer.exe 2632 Microsoft Windows Search Indexer Microsoft Corporation

SearchProtocolHost.exe 7932 Microsoft Windows Search Protocol Host Microsoft Corporation

SearchFilterHost.exe 6344 Microsoft Windows Search Filter Host Microsoft Corporation

svchost.exe 2668 Host Process for Windows Services Microsoft Corporation

svchost.exe 2892 Host Process for Windows Services Microsoft Corporation

wmpnetwk.exe 3548 Windows Media Player Network Sharing Service Microsoft Corporation

ServiceLayer.exe 1436 ServiceLayer Module Nokia.

NclUSBSrv.exe 2880 USB Media Server Nokia

NclRSSrv.exe 3892 Serial Media Server Nokia

NclMSBTSrv.exe 4116 Microsoft Bluetooth Media Server Nokia

svchost.exe 4688 Host Process for Windows Services Microsoft Corporation

mbamservice.exe 372 3.04 Malwarebytes' Anti-Malware Malwarebytes Corporation

svchost.exe 4488 Host Process for Windows Services Microsoft Corporation

taskhost.exe 4544 Host Process for Windows Tasks Microsoft Corporation

lsass.exe 548 Local Security Authority Process Microsoft Corporation

lsm.exe 556 Local Session Manager Service Microsoft Corporation

csrss.exe 492 Client Server Runtime Process Microsoft Corporation

winlogon.exe 636 Windows Logon Application Microsoft Corporation

explorer.exe 2516 Windows Explorer Microsoft Corporation

nod32kui.exe 2960 NOD32 Control Center GUI Eset

smax4pnp.exe 2968 SMax4PNP Analog Devices, Inc.

CtHelper.exe 2976 CtHelper Application Creative Technology Ltd

AiNap.exe 3036

mbamgui.exe 3132 Malwarebytes' Anti-Malware Malwarebytes Corporation

acrotray.exe 3748 AcroTray Adobe Systems Inc.

vmware-tray.exe 3856 VMware Tray Process VMware, Inc.

daemon.exe 3928 DAEMON Tools Lite DT Soft Ltd

sidebar.exe 3936 Windows Desktop Gadgets Microsoft Corporation

TosBtMng.exe 3992 TosBtMng TOSHIBA CORPORATION.

TosA2dp.exe 3672 TosA2dp TOSHIBA CORPORATION.

TosBtHid.exe 3648 TosBtHid TOSHIBA CORPORATION.

TosBtHSP.exe 3420 TosBtHSP TOSHIBA CORPORATION.

SetPoint.exe 4000 Logitech SetPoint Event Manager (UNICODE) Logitech, Inc.

KHALMNPR.exe 4080 Logitech KHAL Main Process Logitech, Inc.

msnmsgr.exe 7544 6.09 Windows Live Messenger Microsoft Corporation

mirc.exe 7300 mIRC mIRC Co. Ltd.

winamp.exe 5052 Winamp Nullsoft

procexp.exe 5120 10.65 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

aaCenter.exe 3248

uTorrent.exe 5740 1.52 µTorrent BitTorrent, Inc.

Process: uTorrent.exe Pid: 5740

Name Description Company Name Version

{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000003.db

{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000001.db

AcGenral.DLL Windows Compatibility DLL Microsoft Corporation 6.1.7600.16385

AcLayers.DLL Windows Compatibility DLL Microsoft Corporation 6.1.7600.16385

AcXtrnal.DLL Windows Compatibility DLL Microsoft Corporation 6.1.7600.16385

ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 6.1.7600.16385

apphelp.dll Application Compatibility Client Library Microsoft Corporation 6.1.7600.16385

ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.5.2284.0

AUTHZ.dll Authorization Framework Microsoft Corporation 6.1.7600.16385

CFGMGR32.dll Configuration Manager DLL Microsoft Corporation 6.1.7600.16385

CLBCatQ.DLL COM+ Configuration Catalog Microsoft Corporation 2001.12.8530.16385

COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.10.7600.16385

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.1.7600.16385

credssp.dll Credential Delegation Security Package Microsoft Corporation 6.1.7600.16385

CRYPT32.dll Crypto API32 Microsoft Corporation 6.1.7600.16385

CRYPTBASE.dll Base cryptographic API DLL Microsoft Corporation 6.1.7600.16385

CRYPTSP.dll Cryptographic Service Provider API Microsoft Corporation 6.1.7600.16385

CSCAPI.dll Offline Files Win32 API Microsoft Corporation 6.1.7600.16385

CSCDLL.dll Offline Files Temporary Shim Microsoft Corporation 6.1.7600.16385

cscui.dll Client Side Caching UI Microsoft Corporation 6.1.7600.16385

ctagent.DLL ctagent Creative Technology Ltd 6.0.1.1371

cversions.2.db

cversions.2.db

cversions.2.db

DEVOBJ.dll Device Information Set DLL Microsoft Corporation 6.1.7600.16385

dhcpcsvc.DLL DHCP Client Service Microsoft Corporation 6.1.7600.16385

dhcpcsvc6.DLL DHCPv6 Client Microsoft Corporation 6.1.7600.16385

DnsApi.dll DNS Client API DLL Microsoft Corporation 6.1.7600.16385

dwmapi.dll Microsoft Desktop Window Manager API Microsoft Corporation 6.1.7600.16385

EhStorShell.dll Windows Enhanced Storage Shell Extension DLL Microsoft Corporation 6.1.7600.16385

FirewallAPI.dll Windows Firewall API Microsoft Corporation 6.1.7600.16385

fwpuclnt.dll FWP/IPsec User-Mode API Microsoft Corporation 6.1.7600.16385

GDI32.dll GDI Client DLL Microsoft Corporation 6.1.7600.16385

GPAPI.dll Group Policy Client API Microsoft Corporation 6.1.7600.16385

hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 6.1.7600.16385

hnetcfg.dll.mui Home Networking Configuration Manager Microsoft Corporation 6.1.7600.16385

ieframe.dll Internet Browser Microsoft Corporation 8.0.7600.16385

iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 8.0.7600.16385

IMM32.DLL Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.1.7600.16385

imon.dll NOD32 IMON - Internet scanning support Eset 2.70.39.0

Iphlpapi.dll IP Helper API Microsoft Corporation 6.1.7600.16385

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 6.1.7600.16385

KERNELBASE.dll Windows NT BASE API Client DLL Microsoft Corporation 6.1.7600.16385

KernelBase.dll.mui Windows NT BASE API Client DLL Microsoft Corporation 6.1.7600.16385

lgscroll.dll Logitech Scroll Enabler (UNICODE) Logitech, Inc. 4.80.103.0

locale.nls

LPK.dll Language Pack Microsoft Corporation 6.1.7600.16385

MPR.dll Multiple Provider Router DLL Microsoft Corporation 6.1.7600.16385

MSACM32.dll Microsoft ACM Audio Filter Microsoft Corporation 6.1.7600.16385

MSASN1.dll ASN.1 Runtime APIs Microsoft Corporation 6.1.7600.16385

MSCTF.dll MSCTF Server DLL Microsoft Corporation 6.1.7600.16385

MSVCR80.dll Microsoft® C Runtime Library Microsoft Corporation 8.0.50727.4927

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.7600.16385

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 6.1.7600.16385

msxml3.dll MSXML 3.0 SP11 Microsoft Corporation 8.110.7600.16385

msxml3r.dll XML Resources Microsoft Corporation 8.110.7600.16385

netmsg.dll Net Messages DLL Microsoft Corporation 6.1.7600.16385

netshell.dll Network Connections Shell Microsoft Corporation 6.1.7600.16385

netutils.dll Net Win32 API Helpers DLL Microsoft Corporation 6.1.7600.16385

nlaapi.dll Network Location Awareness 2 Microsoft Corporation 6.1.7600.16385

npmproxy.dll Network List Manager Proxy Microsoft Corporation 6.1.7600.16385

NSI.dll NSI User-mode interface DLL Microsoft Corporation 6.1.7600.16385

ntdll.dll NT Layer DLL Microsoft Corporation 6.1.7600.16385

ntmarta.dll Windows NT MARTA provider Microsoft Corporation 6.1.7600.16385

ntshrui.dll Shell extensions for sharing Microsoft Corporation 6.1.7600.16385

ole32.dll Microsoft OLE for Windows Microsoft Corporation 6.1.7600.16385

OLEACC.dll Active Accessibility Core Component Microsoft Corporation 7.0.0.0

oleaccrc.dll Active Accessibility Resource DLL Microsoft Corporation 7.0.0.0

OLEAUT32.dll Microsoft Corporation 6.1.7600.16385

peerdist.dll BranchCache Client Library Microsoft Corporation 6.1.7600.16385

profapi.dll User Profile Basic API Microsoft Corporation 6.1.7600.16385

PROPSYS.dll Microsoft Property System Microsoft Corporation 7.0.7600.16385

PSAPI.DLL Process Status Helper Microsoft Corporation 6.1.7600.16385

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.1.7600.16385

RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 6.1.7600.16385

RpcRtRemote.dll Remote RPC Extension Microsoft Corporation 6.1.7600.16385

rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.1.7600.16385

samcli.dll Security Accounts Manager Client DLL Microsoft Corporation 6.1.7600.16385

sechost.dll Host for SCM/SDDL/LSA Lookup APIs Microsoft Corporation 6.1.7600.16385

SETUPAPI.dll Windows Setup API Microsoft Corporation 6.1.7600.16385

sfc.dll Windows File Protection Microsoft Corporation 6.1.7600.16385

sfc_os.DLL Windows File Protection Microsoft Corporation 6.1.7600.16385

SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.1.7600.16385

shfolder.dll Shell Folder Service Microsoft Corporation 6.1.7600.16385

SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.1.7600.16385

SHUNIMPL.DLL Windows Shell Obsolete APIs Microsoft Corporation 6.1.7600.16385

slc.dll Software Licensing Client Dll Microsoft Corporation 6.1.7600.16385

SortDefault.nls

SortVistaCompat.nls

SortWindows6Compat.dll Sort Version Windows 6.0 Microsoft Corporation 6.1.7600.16385

srvcli.dll Server Service Client DLL Microsoft Corporation 6.1.7600.16385

SSDPAPI.dll SSDP Client API DLL Microsoft Corporation 6.1.7600.16385

SspiCli.dll Security Support Provider Interface Microsoft Corporation 6.1.7600.16385

StaticCache.dat

SXS.DLL Fusion 2.5 Microsoft Corporation 6.1.7600.16385

tiptsf.dll Tablet PC Input Panel Text Services Framework Microsoft Corporation 6.1.7600.16385

upnp.dll UPnP Control Point API Microsoft Corporation 6.1.7600.16385

urlmon.dll OLE32 Extensions for Win32 Microsoft Corporation 8.0.7600.16385

urlmon.dll.mui OLE32 Extensions for Win32 Microsoft Corporation 8.0.7600.16385

USER32.dll Multi-User Windows USER API Client DLL Microsoft Corporation 6.1.7600.16385

USERENV.dll Userenv Microsoft Corporation 6.1.7600.16385

USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.7600.16385

uTorrent.exe µTorrent BitTorrent, Inc. 1.8.3.16010

UxTheme.dll Microsoft UxTheme Library Microsoft Corporation 6.1.7600.16385

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 6.1.7600.16385

webio.dll Web Transfer Protocols API Microsoft Corporation 6.1.7600.16385

WindowsCodecs.dll Microsoft Windows Codecs Library Microsoft Corporation 6.1.7600.16385

WINHTTP.dll Windows HTTP Services Microsoft Corporation 6.1.7600.16385

WINMM.dll MCI API DLL Microsoft Corporation 6.1.7600.16385

WINNSI.DLL Network Store Information RPC interface Microsoft Corporation 6.1.7600.16385

WINSPOOL.DRV Windows Spooler Driver Microsoft Corporation 6.1.7600.16385

wkscli.dll Workstation Service Client DLL Microsoft Corporation 6.1.7600.16385

WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 6.1.7600.16385

WLIDNSP.DLL Microsoft® Windows Live ID Namespace Provider Microsoft Corporation 6.500.3146.0

WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 6.1.7600.16385

wship6.dll Winsock2 Helper DLL (TL/IPv6) Microsoft Corporation 6.1.7600.16385

wshtcpip.dll Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation 6.1.7600.16385

WSOCK32.dll Windows Socket 32-Bit DLL Microsoft Corporation 6.1.7600.16385

HijackThis log:

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 8:24:18 PM, on 8/16/2009

Platform: Unknown Windows (WinNT 6.01.3504)

MSIE: Internet Explorer v8.00 (8.00.7600.16385)

Boot mode: Normal

Running processes:

C:\Windows\system32\taskhost.exe

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Program Files\ESET\nod32kui.exe

C:\Program Files\Analog Devices\Core\smax4pnp.exe

C:\Windows\System32\CtHelper.exe

C:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe

C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Program Files\ASUS\AASP\1.00.59\aaCenter.exe

C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrotray.exe

C:\Program Files\VMware\VMware Workstation\vmware-tray.exe

C:\Program Files\DAEMON Tools Lite\daemon.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe

C:\Program Files\Logitech\SetPoint\SetPoint.exe

C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE

C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe

C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe

C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe

C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Windows\system32\wuauclt.exe

C:\Windows\system32\taskhost.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Program Files\Windows Live\Messenger\msnmsgr.exe

C:\Program Files\Windows Live\Contacts\wlcomm.exe

C:\Program Files\mIRC 2\mirc.exe

C:\Windows\explorer.exe

C:\Program Files\Winamp\winamp.exe

C:\Program Files\Internet Explorer\iexplore.exe

D:\My Documents\My Downloads\procexp.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.neowin.net/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE

O4 - HKLM\..\Run: [soundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe

O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE

O4 - HKLM\..\Run: [iTSecMng] %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START

O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE

O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe

O4 - HKLM\..\Run: [Ai Nap] "C:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe"

O4 - HKLM\..\Run: [CPU Power Monitor] "C:\Program Files\ASUS\AI Suite\AiGear3\CpuPowerMonitor.exe"

O4 - HKLM\..\Run: [Cpu Level Up help] C:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe

O4 - HKLM\..\Run: [ASUS Energy Saving] "C:\Program Files\ASUS\AI Suite\EnergySaving\PwSave.exe"

O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray

O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin

O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"

O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"

O4 - HKLM\..\Run: [Adobe_ID0ENQBO] C:\PROGRA~1\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE

O4 - HKLM\..\Run: [vmware-tray] "C:\Program Files\VMware\VMware Workstation\vmware-tray.exe"

O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-18\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'Default user')

O4 - Startup: Logitech . Product Registration.lnk = C:\Program Files\Common Files\Logishrd\eReg\SetPoint\eReg.exe

O4 - Global Startup: Bluetooth Manager.lnk = ?

O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe

O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html

O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html

O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL

O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll

O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll

O10 - Unknown file in Winsock LSP: c:\program files\vmware\vmware workstation\vsocklib.dll

O10 - Unknown file in Winsock LSP: c:\program files\vmware\vmware workstation\vsocklib.dll

O13 - Gopher Prefix:

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwareupdate/su2/ocx/15108/CTPID.cab

O23 - Service: Adobe Version Cue CS4 - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe

O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe

O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe

O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe

O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe

O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

O23 - Service: TeamViewer 4 (TeamViewer4) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version4\TeamViewer_Service.exe

O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

O23 - Service: VMware Agent Service (ufad-ws60) - VMware, Inc. - C:\Program Files\VMware\VMware Workstation\vmware-ufad.exe

O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files\VMware\VMware Workstation\vmware-authd.exe

O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\system32\vmnetdhcp.exe

O23 - Service: VMware NAT Service - VMware, Inc. - C:\Windows\system32\vmnat.exe

--

End of file - 9656 bytes

Link to comment
Share on other sites

Found the issue:

In Windows 7, there is a additional feature that says: "Allow files in this folder to have contents indexed in addition to file properties"

This was not in Vista.

Thank you Ultima for posting to help out.

And I believe this is a (semi)bug that uTorrent should some how solve: Allowing indexing of files in the downloaded torrents folder while also allowing to download.

Link to comment
Share on other sites

You're misunderstanding the fundamentals of the problem; µTorrent isn't disallowing indexing -- indexers are disallowing access to files. If µTorrent can't access the file because another application decided it wanted to lock the file for exclusive read, then the problem isn't on µTorrent's end. If it were so, then every other application trying to access any file also exhibits the same bug, because no application can get access to a file while it is exclusively locked by another application.

At best, µTorrent can try to do better to inform the user about exactly what process is locking the file when it is having access issues -- and the devs are considering implementing such a feature.

Link to comment
Share on other sites

There are some folders in Vista/7 that are not indexed by default (%PROGRAMDATA% I believe is the variable) . Make uTorrent download the files there and then move them to whereever the user chooses in preferences.

A quick workaround I just thought now.

Link to comment
Share on other sites

Bad workaround that isn't guaranteed to work well in a majority of the cases in which this error shows up anyway (read: other non-Microsoft indexers are much more common sources of this problem, can read whatever directory they feel like, and aren't limited to the built-in Windows indexer's limitations).

The better workaround has been suggested already: pick your own folder, and force whatever indexer you're using to ignore that folder. It's fundamentally the same as what you're suggesting, except it doesn't fall into the trap where you assume "this workaround will save me from having any further problems with indexers" because you're explicitly telling whatever indexer to ignore the folder. If you want the "temporary directory" feel, use the "Put new downloads in" and "Move completed downloads to" options in Preferences > Directories.

Link to comment
Share on other sites

XP never came with a built-in indexer. Don't know what was different about Vista; we don't keep track of the internals of the OS.

It's not "dumb" that other people use other indexers; it's not as if the Windows indexer is the best thing in the world, and some softwares choose to install their own indexers without informing the user anyway -- the most egregious offenders in the past being Roxio and Nero.

Link to comment
Share on other sites

XP had Windows Desktop Search (now Windows Search) avaliable for download and Vista (like I said) had I believe has version 3 of search. The incompatibilty lies that 7 uses version 4 (maybe 5, not sure).

Im using your workaround but I still think uTorrent could at least try to do something to go around this problem

Link to comment
Share on other sites

Windows Search isn't built-in.

I'm not sure what else you want µTorrent to do about it. The cause is known, the workaround is rather simple, it makes perfect sense (considering the fact that it makes no sense to index incomplete files anyway), and it uses the "ignore a folder" functionality implemented in the indexers precisely for skipping folders you know contain constantly-changing, not-to-be-indexed-until-finished data.

Link to comment
Share on other sites

  • 3 weeks later...

Here is my log, disabled indexing on vista, masked the torrent folder in appdat folder from avast, No GoogleDesktop. Help would be appreciated.

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 2:53:06 PM, on 9/2/2009

Platform: Windows Vista SP1 (WinNT 6.00.1905)

MSIE: Internet Explorer v7.00 (7.00.6001.18294)

Boot mode: Normal

Running processes:

C:\Windows\system32\taskeng.exe

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Program Files\Windows Defender\MSASCui.exe

C:\Windows\RtHDVCpl.exe

C:\Windows\WindowsMobile\wmdc.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE

C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

C:\Program Files\Alwil Software\Avast4\ashDisp.exe

C:\Program Files\Dell 968 AIO Printer\dldomon.exe

C:\Program Files\Dell 968 AIO Printer\memcard.exe

C:\Windows\PixArt\Pac207\Monitor.exe

C:\Program Files\Microsoft IntelliType Pro\itype.exe

C:\Program Files\Microsoft IntelliPoint\ipoint.exe

C:\Windows\System32\wpcumi.exe

C:\Program Files\Verizon\McciTrayApp.exe

C:\Program Files\iTunes\iTunesHelper.exe

C:\Windows\ehome\ehtray.exe

C:\Program Files\The Weather Channel FW\Desktop\DesktopWeather.exe

C:\Program Files\Digital Line Detect\DLG.exe

C:\Program Files\Windows Media Player\wmpnscfg.exe

C:\Windows\system32\wbem\unsecapp.exe

C:\Windows\ehome\ehmsas.exe

C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE

C:\Program Files\AIM6\aim6.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe

C:\Program Files\AIM6\aolsoftware.exe

C:\Program Files\BitTorrent\bittorrent.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Alwil Software\Avast4\ashLogV.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://wapp.verizon.net/bookmarks/bmredir.asp?region=all&bw=fiber&cd=7.0unattached&bm=ho_central

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O1 - Hosts: ::1 localhost

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll

O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll

O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe

O4 - HKLM\..\Run: [startCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe

O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start

O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup

O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [dldomon.exe] "C:\Program Files\Dell 968 AIO Printer\dldomon.exe"

O4 - HKLM\..\Run: [MemoryCardManager] "C:\Program Files\Dell 968 AIO Printer\memcard.exe"

O4 - HKLM\..\Run: [Dell 968 AIO Printer Fax Server] "C:\Program Files\Dell 968 AIO Printer\fm3032.exe" /s

O4 - HKLM\..\Run: [Monitor] C:\Windows\PixArt\PAC207\Monitor.exe

O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe"

O4 - HKLM\..\Run: [intelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"

O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [WPCUMI] C:\Windows\system32\WpcUmi.exe

O4 - HKLM\..\Run: [Verizon_McciTrayApp] "C:\Program Files\Verizon\McciTrayApp.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter

O4 - HKCU\..\Run: [DW6] "C:\Program Files\The Weather Channel FW\Desktop\DesktopWeather.exe"

O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')

O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll

O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL

O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll

O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll

O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll

O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll

O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll

O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll

O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll

O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll

O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll

O13 - Gopher Prefix:

O16 - DPF: vzTCPConfig - https://essentialsandextras.verizon.com/whatsnext/mainweb/js/vzTCPConfig.CAB

O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - https://activatemyfios.verizon.net/sdcCommon/download/FIOS/Verizon%20FiOS%20Installer.cab

O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab

O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocache/funwebproducts/ei-4/PopularScreenSaversInitialSetup1.0.1.1.cab

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll

O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cab

O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/eBay_Enhanced_Picture_Control_v1-0-24-0.cab

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w3/resources/VistaMSNPUplden-us.cab

O16 - DPF: {8BC53B30-32E4-4ED3-BEF9-DB761DB77453} (CInstallLPCtrl Object) - http://u3.sandisk.com/download/apps/LPInstaller.CAB

O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab

O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://www.popcap.com/webgames/popcaploader_v10.cab

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL

O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe

O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Windows\system32\AERTSrv.exe

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: dldoCATSCustConnectService - Unknown owner - C:\Windows\system32\spool\DRIVERS\W32X86\3\\dldoserv.exe

O23 - Service: dldo_device - - C:\Windows\system32\dldocoms.exe

O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: McciCMService - Motive Communications, Inc. - C:\Program Files\Common Files\Motive\McciCMService.exe

O23 - Service: ProtexisLicensing - Unknown owner - C:\Windows\system32\PSIService.exe

O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe

O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe

O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe

O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe

O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

Process PID CPU Description Company Name

System Idle Process 0 95.97

Interrupts n/a Hardware Interrupts

DPCs n/a Deferred Procedure Calls

System 4

smss.exe 436

csrss.exe 512

wininit.exe 572

services.exe 616

svchost.exe 836

WmiPrvSE.exe 3976

unsecapp.exe 4580 Sink to receive asynchronous callbacks for WMI client application Microsoft Corporation

ehmsas.exe 4836 Media Center Media Status Aggregator Service Microsoft Corporation

svchost.exe 908

svchost.exe 948

Ati2evxx.exe 1036

Ati2evxx.exe 1568

svchost.exe 1072

audiodg.exe 1224

svchost.exe 1104

WUDFHost.exe 2644

dwm.exe 2824 Desktop Window Manager Microsoft Corporation

svchost.exe 1116

taskeng.exe 2996

taskeng.exe 2416 Task Scheduler Engine Microsoft Corporation

SLsvc.exe 1256

svchost.exe 1300

svchost.exe 1440

aswUpdSv.exe 1680

ashServ.exe 1700

spoolsv.exe 256

svchost.exe 292

AERTSrv.exe 1768

AppleMobileDeviceService.exe 1792

mDNSResponder.exe 1944

svchost.exe 1488

dldocoms.exe 448

McciCMService.exe 1204

mdm.exe 2080

svchost.exe 2180

PSIService.exe 2208

RoxWatch9.exe 2276

svchost.exe 2372

ViewpointService.exe 2400

svchost.exe 2428

XAudio.exe 2544

ashMaiSv.exe 2900

ashWebSv.exe 2968

RoxMediaDB9.exe 3220

svchost.exe 3528

wmpnetwk.exe 4000 0.77

iPodService.exe 1160

aawservice.exe 5956

lsass.exe 628

lsm.exe 644

csrss.exe 580

winlogon.exe 716

explorer.exe 3396 0.77 Windows Explorer Microsoft Corporation

MSASCui.exe 3808 Windows Defender User Interface Microsoft Corporation

RtHDVCpl.exe 3308 HD Audio Control Panel Realtek Semiconductor

wmdc.exe 1200 Windows Mobile Device Center Microsoft Corporation

GrooveMonitor.exe 3704 GrooveMonitor Utility Microsoft Corporation

ashDisp.exe 4100 avast! service GUI component ALWIL Software

ashLogV.exe 5380 avast! Log Viewer ALWIL Software

dldomon.exe 4108 Printer Device Monitor

memcard.exe 4128 0.38 Memory Card Manager Executable

Monitor.exe 4152 Registry Monitor PixArt Imaging Incorporation

itype.exe 4160 IType.exe Microsoft Corporation

ipoint.exe 4168 IPoint.exe Microsoft Corporation

wpcumi.exe 4204 Windows Parental Control Notifications Microsoft Corporation

McciTrayApp.exe 4240 mcci+McciTrayApp Motive Communications, Inc.

iTunesHelper.exe 4272 iTunesHelper Module Apple Inc.

ehtray.exe 4284 Media Center Tray Applet Microsoft Corporation

DesktopWeather.exe 4292 The Weather Channel Interactive, Inc.

DLG.exe 4308 Digital Line Detection Avanquest Software

wmpnscfg.exe 4428 Windows Media Player Network Sharing Service Configuration Application Microsoft Corporation

OUTLOOK.EXE 5028 Microsoft Office Outlook Microsoft Corporation

aim6.exe 5864 AIM AOL LLC

aolsoftware.exe 1540 AOL AOL LLC

anotify.exe 1980 AOL AOL LLC

bittorrent.exe 1940 0.38 BitTorrent BitTorrent, Inc.

firefox.exe 3872 Firefox Mozilla Corporation

procexp.exe 5960 1.54 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

MOM.exe 3268 Catalyst Control Center: Monitoring program Advanced Micro Devices Inc.

CCC.exe 6000 Catalyst Control Centre: Host application ATI Technologies Inc.

notepad.exe 3780

Process: bittorrent.exe Pid: 1940

Name Description Company Name Version

ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 6.0.6001.18000

apphelp.dll Application Compatibility Client Library Microsoft Corporation 6.0.6001.18000

ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.5.2284.2

bittorrent.exe BitTorrent BitTorrent, Inc. 6.2.0.15918

CLBCatQ.DLL COM+ Configuration Catalog Microsoft Corporation 2001.12.6931.18000

COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.10.6001.18000

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.0.6001.18000

dhcpcsvc.DLL DHCP Client Service Microsoft Corporation 6.0.6001.18000

dhcpcsvc6.DLL DHCPv6 Client Microsoft Corporation 6.0.6001.18000

DnsApi.dll DNS Client API DLL Microsoft Corporation 6.0.6001.18000

FirewallAPI.dll Windows Firewall API Microsoft Corporation 6.0.6001.18000

GDI32.dll GDI Client DLL Microsoft Corporation 6.0.6001.18159

GPAPI.dll Group Policy Client API Microsoft Corporation 6.0.6001.18000

hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 6.0.6001.18000

iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 7.0.6001.18294

IMM32.DLL Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.0.6001.18000

Iphlpapi.dll IP Helper API Microsoft Corporation 6.0.6001.18000

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 6.0.6001.18215

kernel32.dll.mui Windows NT BASE API Client DLL Microsoft Corporation 6.0.6001.18000

locale.nls

locale.nls

LPK.DLL Language Pack Microsoft Corporation 6.0.6001.18000

McciContextHook_DSR.dll mcci+McciContextHook Motive Communications, Inc. 6.2.4.91

mdnsNSP.dll Bonjour Namespace Provider Apple Inc. 1.0.6.2

MSCTF.dll MSCTF Server DLL Microsoft Corporation 6.0.6001.18000

msctf.dll.mui MSCTF Server DLL Microsoft Corporation 6.0.6000.16386

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.6001.18000

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 6.0.6001.18000

msxml3.dll MSXML 3.0 SP10 Microsoft Corporation 8.100.1048.0

msxml3r.dll XML Resources Microsoft Corporation 8.20.8730.1

napinsp.dll E-mail Naming Shim Provider Microsoft Corporation 6.0.6001.18000

NETAPI32.dll Net Win32 API DLL Microsoft Corporation 6.0.6001.18157

netshell.dll Network Connections Shell Microsoft Corporation 6.0.6001.18000

NLAapi.dll Network Location Awareness 2 Microsoft Corporation 6.0.6001.18000

NSI.dll NSI User-mode interface DLL Microsoft Corporation 6.0.6001.18000

ntdll.dll NT Layer DLL Microsoft Corporation 6.0.6001.18000

NTMARTA.DLL Windows NT MARTA provider Microsoft Corporation 6.0.6001.18000

ole32.dll Microsoft OLE for Windows Microsoft Corporation 6.0.6001.18000

oleaut32.dll Microsoft Corporation 6.0.6001.18000

pnrpnsp.dll PNRP Name Space Provider Microsoft Corporation 6.0.6001.18000

PROPSYS.dll Microsoft Property System Microsoft Corporation 7.0.6001.16503

PSAPI.DLL Process Status Helper Microsoft Corporation 6.0.6000.16386

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.0.6000.16386

RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 6.0.6001.18247

rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.0.6001.18000

SAMLIB.dll SAM Library DLL Microsoft Corporation 6.0.6001.18000

Secur32.dll Security Support Provider Interface Microsoft Corporation 6.0.6001.18272

SETUPAPI.dll Windows Setup API Microsoft Corporation 6.0.6001.18000

setupapi.dll.mui Windows Setup API Microsoft Corporation 6.0.6001.18000

SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.0.6001.18167

shfolder.dll Shell Folder Service Microsoft Corporation 6.0.6000.16386

SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.0.6001.18000

slc.dll Software Licensing Client Dll Microsoft Corporation 6.0.6001.18000

SSDPAPI.dll SSDP Client API DLL Microsoft Corporation 6.0.6000.16386

SXS.DLL Fusion 2.5 Microsoft Corporation 6.0.6001.18000

upnp.dll UPnP Control Point API Microsoft Corporation 6.0.6001.18000

urlmon.dll OLE32 Extensions for Win32 Microsoft Corporation 7.0.6001.18294

USER32.dll Multi-User Windows USER API Client DLL Microsoft Corporation 6.0.6001.18000

USERENV.dll Userenv Microsoft Corporation 6.0.6001.18000

USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.6001.18000

uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.0.6001.18000

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 6.0.6001.18000

WINHTTP.dll Windows HTTP Services Microsoft Corporation 6.0.6001.18178

WINNSI.DLL Network Store Information RPC interface Microsoft Corporation 6.0.6001.18000

winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 6.0.6000.16386

WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 6.0.6001.18000

wpclsp.dll WPC LSP Microsoft Corporation 1.0.0.1

WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 6.0.6001.18000

wship6.dll Winsock2 Helper DLL (TL/IPv6) Microsoft Corporation 6.0.6001.18000

wshtcpip.dll Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation 6.0.6001.18000

Did I do this right?

Link to comment
Share on other sites

  • 2 weeks later...

Having the same problem BUT it ONLY happens when downloading music files.

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 8:31:40 AM, on 9/16/2009

Platform: Windows Vista SP2 (WinNT 6.00.1906)

MSIE: Internet Explorer v7.00 (7.00.6002.18005)

Boot mode: Normal

Running processes:

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Windows\system32\taskeng.exe

C:\Program Files\Windows Defender\MSASCui.exe

C:\Program Files\Unlocker\UnlockerAssistant.exe

C:\Program Files\CyberLink\Shared files\brs.exe

C:\Windows\RtHDVCpl.exe

C:\Windows\System32\rundll32.exe

C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe

C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Program Files\Windows Mail\WinMail.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\WinRAR\WinRAR.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

C:\Windows\system32\SearchFilterHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O1 - Hosts: ::1 localhost

O2 - BHO: IE7Pro - {00011268-E188-40DF-A514-835FCD78B1BF} - C:\Program Files\IEPro\iepro.dll

O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

O4 - HKLM\..\Run: [unlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe" -H

O4 - HKLM\..\Run: [bDRegion] C:\Program Files\Cyberlink\Shared Files\brs.exe

O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"

O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"

O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice

O4 - HKLM\..\Run: [Corel File Shell Monitor] C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter

O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"

O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"

O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')

O9 - Extra button: IE7Pro Grab and Drag - {000002a3-84fe-43f1-b958-f2c3ca804f1a} - C:\Program Files\IEPro\iepro.dll

O9 - Extra 'Tools' menuitem: IE7Pro Grab and Drag - {000002a3-84fe-43f1-b958-f2c3ca804f1a} - C:\Program Files\IEPro\iepro.dll

O9 - Extra button: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll

O9 - Extra 'Tools' menuitem: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll

O13 - Gopher Prefix:

O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Plugin Control) - http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab

O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Windows\system32\AERTSrv.exe

O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe

O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe

O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe

O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe

O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe

O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

--

End of file - 5848 bytes

Process PID CPU Description Company Name

HijackThis.exe 3836 HijackThis Trend Micro Inc.

procexp.exe 6116 3.08 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

RtHDVCpl.exe 1896 HD Audio Control Panel Realtek Semiconductor

PsiService_2.exe 2776 PsiService PsiService Protexis Inc.

nvvsvc.exe 860 NVIDIA Driver Helper Service, Version 175.16 NVIDIA Corporation

nvSCPAPISvr.exe 2844 Stereo Vision Control Panel API Server NVIDIA Corporation

NMIndexingService.exe 3436 Nero Home Nero AG

wmpnetwk.exe 3452 Windows Media Player Network Sharing Service Microsoft Corporation

WinMail.exe 3400 Windows Mail Microsoft Corporation

winlogon.exe 740 Windows Logon Application Microsoft Corporation

wininit.exe 564 Windows Start-Up Application Microsoft Corporation

taskeng.exe 1972 Task Scheduler Engine Microsoft Corporation

taskeng.exe 2008 Task Scheduler Engine Microsoft Corporation

svchost.exe 812 Host Process for Windows Services Microsoft Corporation

svchost.exe 888 Host Process for Windows Services Microsoft Corporation

svchost.exe 920 Host Process for Windows Services Microsoft Corporation

svchost.exe 1016 Host Process for Windows Services Microsoft Corporation

svchost.exe 1064 0.77 Host Process for Windows Services Microsoft Corporation

svchost.exe 1100 Host Process for Windows Services Microsoft Corporation

svchost.exe 1248 Host Process for Windows Services Microsoft Corporation

svchost.exe 1520 Host Process for Windows Services Microsoft Corporation

svchost.exe 1820 Host Process for Windows Services Microsoft Corporation

svchost.exe 2760 Host Process for Windows Services Microsoft Corporation

svchost.exe 2920 Host Process for Windows Services Microsoft Corporation

svchost.exe 2964 Host Process for Windows Services Microsoft Corporation

spoolsv.exe 1788 Spooler SubSystem App Microsoft Corporation

smss.exe 444 Windows Session Manager Microsoft Corporation

SLsvc.exe 1224 Microsoft Software Licensing Service Microsoft Corporation

sidebar.exe 2088 Windows Sidebar Microsoft Corporation

services.exe 608 Services and Controller app Microsoft Corporation

SearchIndexer.exe 3004 Microsoft Windows Search Indexer Microsoft Corporation

rundll32.exe 1340 Windows host process (Rundll32) Microsoft Corporation

rundll32.exe 1516 Windows host process (Rundll32) Microsoft Corporation

MSASCui.exe 1836 Windows Defender User Interface Microsoft Corporation

lsm.exe 628 Local Session Manager Service Microsoft Corporation

lsass.exe 620 Local Security Authority Process Microsoft Corporation

iexplore.exe 1608 Internet Explorer Microsoft Corporation

explorer.exe 1732 Windows Explorer Microsoft Corporation

dwm.exe 1700 1.54 Desktop Window Manager Microsoft Corporation

csrss.exe 512 Client Server Runtime Process Microsoft Corporation

csrss.exe 576 Client Server Runtime Process Microsoft Corporation

audiodg.exe 1192 Windows Audio Device Graph Isolation Microsoft Corporation

GoogleCrashHandler.exe 192 Google Installer Google Inc.

ekrn.exe 2680 ESET Service ESET

egui.exe 2068 ESET GUI ESET

brs.exe 1648 brs cyberlink

CorelIOMonitor.exe 2076 Corel File Shell Monitor Corel, Inc.

uTorrent.exe 2116 µTorrent BitTorrent, Inc.

AERTSrv.exe 2512 Andrea filters APO access service (32-bit) Andrea Electronics Corporation

RichVideo.exe 2800 RichVideo Module

UnlockerAssistant.exe 2004

System Idle Process 0 92.31

System 4 0.77

Interrupts n/a 0.77 Hardware Interrupts

DPCs n/a 0.77 Deferred Procedure Calls

Process: uTorrent.exe Pid: 2116

Name Description Company Name Version

actxprxy.dll ActiveX Interface Marshaling Library Microsoft Corporation 6.0.6001.18000

ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 6.0.6002.18005

apphelp.dll Application Compatibility Client Library Microsoft Corporation 6.0.6002.18005

ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.5.2284.2

browseui.dll Shell Browser UI Library Microsoft Corporation 6.0.6002.18005

CLBCatQ.DLL COM+ Configuration Catalog Microsoft Corporation 2001.12.6931.18000

COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.10.6002.18005

comctl32.dll.mui User Experience Controls Library Microsoft Corporation 6.10.6001.18000

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.0.6002.18005

dhcpcsvc.DLL DHCP Client Service Microsoft Corporation 6.0.6002.18005

dhcpcsvc6.DLL DHCPv6 Client Microsoft Corporation 6.0.6002.18005

DnsApi.dll DNS Client API DLL Microsoft Corporation 6.0.6002.18005

DUser.dll Windows DirectUser Engine Microsoft Corporation 6.0.6001.18000

duser.dll.mui Windows DirectUser Engine Microsoft Corporation 6.0.6000.16386

dwmapi.dll Microsoft Desktop Window Manager API Microsoft Corporation 6.0.6001.18000

EhStorShell.dll Windows Enhanced Storage Shell Extension Microsoft Corporation 5.2.3790.1830

FirewallAPI.dll Windows Firewall API Microsoft Corporation 6.0.6001.18000

GDI32.dll GDI Client DLL Microsoft Corporation 6.0.6002.18005

GPAPI.dll Group Policy Client API Microsoft Corporation 6.0.6002.18005

hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 6.0.6001.18000

ieframe.dll Internet Explorer Microsoft Corporation 7.0.6002.18071

iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 7.0.6002.18005

IMM32.DLL Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.0.6002.18005

Iphlpapi.dll IP Helper API Microsoft Corporation 6.0.6002.18005

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 6.0.6002.18005

locale.nls

locale.nls

LPK.DLL Language Pack Microsoft Corporation 6.0.6002.18051

MSCTF.dll MSCTF Server DLL Microsoft Corporation 6.0.6002.18005

msshsq.dll Structured Query Microsoft Corporation 7.0.6002.18005

mssprxy.dll Microsoft Search Proxy Microsoft Corporation 7.0.6002.18005

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.6002.18005

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 6.0.6002.18005

msxml3.dll MSXML 3.0 SP10 Microsoft Corporation 8.100.5000.0

msxml3r.dll XML Resources Microsoft Corporation 8.20.8730.1

napinsp.dll E-mail Naming Shim Provider Microsoft Corporation 6.0.6001.18000

NLAapi.dll Network Location Awareness 2 Microsoft Corporation 6.0.6001.18000

NSI.dll NSI User-mode interface DLL Microsoft Corporation 6.0.6001.18000

ntdll.dll NT Layer DLL Microsoft Corporation 6.0.6002.18005

NTMARTA.DLL Windows NT MARTA provider Microsoft Corporation 6.0.6002.18005

ole32.dll Microsoft OLE for Windows Microsoft Corporation 6.0.6002.18005

oleacc.dll Active Accessibility Core Component Microsoft Corporation 4.2.5406.0

oleaccrc.dll Active Accessibility Resource DLL Microsoft Corporation 4.2.5406.0

oleaut32.dll Microsoft Corporation 6.0.6002.18005

pnrpnsp.dll PNRP Name Space Provider Microsoft Corporation 6.0.6001.18000

PROPSYS.dll Microsoft Property System Microsoft Corporation 7.0.6002.18005

PSAPI.DLL Process Status Helper Microsoft Corporation 6.0.6000.16386

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.0.6000.16386

RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 6.0.6002.18024

rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.0.6002.18005

SAMLIB.dll SAM Library DLL Microsoft Corporation 6.0.6002.18005

Secur32.dll Security Support Provider Interface Microsoft Corporation 6.0.6002.18051

SETUPAPI.dll Windows Setup API Microsoft Corporation 6.0.6002.18005

SHDOCVW.dll Shell Doc Object and Control Library Microsoft Corporation 6.0.6002.18005

SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.0.6002.18005

shfolder.dll Shell Folder Service Microsoft Corporation 6.0.6000.16386

SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.0.6002.18005

slc.dll Software Licensing Client Dll Microsoft Corporation 6.0.6002.18005

SSDPAPI.dll SSDP Client API DLL Microsoft Corporation 6.0.6000.16386

SXS.DLL Fusion 2.5 Microsoft Corporation 6.0.6001.18000

thumbcache.dll Microsoft Thumbnail Cache Microsoft Corporation 6.0.6001.18000

tiptsf.dll Tablet PC Input Panel Text Services Framework Microsoft Corporation 6.0.6002.18005

UnlockerHook.dll

upnp.dll UPnP Control Point API Microsoft Corporation 6.0.6001.18000

urlmon.dll OLE32 Extensions for Win32 Microsoft Corporation 7.0.6002.18071

USER32.dll Multi-User Windows USER API Client DLL Microsoft Corporation 6.0.6002.18005

user32.dll.mui Multi-User Windows USER API Client DLL Microsoft Corporation 6.0.6001.18000

USERENV.dll Userenv Microsoft Corporation 6.0.6002.18005

USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.6002.18005

uTorrent.exe µTorrent BitTorrent, Inc. 1.8.3.16010

uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.0.6001.18000

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 6.0.6002.18005

WindowsCodecs.dll Microsoft Windows Codecs Library Microsoft Corporation 6.0.6002.18005

WINHTTP.dll Windows HTTP Services Microsoft Corporation 6.0.6002.18005

WINNSI.DLL Network Store Information RPC interface Microsoft Corporation 6.0.6001.18000

winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 6.0.6002.18005

WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 6.0.6002.18005

WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 6.0.6001.18000

wship6.dll Winsock2 Helper DLL (TL/IPv6) Microsoft Corporation 6.0.6001.18000

wshtcpip.dll Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation 6.0.6001.18000

Link to comment
Share on other sites

I have the same issue. I told google not to look at the downloads directory and turned roxios doodad. Made the area r/w; no indexing. Did the registry stuff.

Thanks in advance for any help.

A.

=====

Here are my logs:

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 9:31:51 AM, on 9/16/2009

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\ibmpmsvc.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\system32\IPSSVC.EXE

C:\Program Files\Trend Micro\BM\TMBMSRV.exe

C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe

C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\Program Files\ThinkPad\Bluetooth Software\bin\btwdins.exe

C:\Program Files\iolo\common\lib\ioloServiceManager.exe

C:\Program Files\LogMeIn\x86\RaMaint.exe

C:\Program Files\LogMeIn\x86\LogMeIn.exe

C:\Program Files\LogMeIn\x86\LMIGuardian.exe

C:\Program Files\Common Files\Protexis\License Service\PSIService.exe

C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe

C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe

C:\WINDOWS\system32\svchost.exe

c:\program files\lenovo\system update\suservice.exe

C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe

C:\Program Files\Trend Micro\Internet Security\TmPfw.exe

C:\Program Files\Trend Micro\Internet Security\TmProxy.exe

C:\WINDOWS\System32\TPHDEXLG.EXE

C:\WINDOWS\system32\TpKmpSVC.exe

C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe

C:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe

C:\Program Files\Lenovo\Rescue and Recovery\adm\IUService.exe

C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe

C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe

C:\Program Files\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\Program Files\Lenovo\Client Security Solution\cssauth.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Synaptics\SynTP\SynTPLpr.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\WINDOWS\system32\TpShocks.exe

C:\PROGRA~1\Lenovo\PkgMgr\HOTKEY\TPHKMGR.exe

C:\Program Files\Lenovo\PkgMgr\HOTKEY\TPONSCR.exe

C:\Program Files\Lenovo\PkgMgr\HOTKEY_1\TpScrex.exe

C:\PROGRA~1\THINKV~2\PrdCtr\LPMGR.exe

C:\PROGRA~1\THINKV~2\AMSG\amsg.exe

C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe

C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe

C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe

C:\WINDOWS\system32\rundll32.exe

C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe

C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE

C:\WINDOWS\system32\TpScrLk.exe

C:\Program Files\Analog Devices\Core\smax4pnp.exe

C:\Program Files\Lenovo\AwayTask\AwaySch.EXE

C:\Program Files\Lenovo\SafeGuard PrivateDisk\pdservice.exe

C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe

C:\Program Files\Roland\VSC32\vsc32cnf.exe

C:\Program Files\Roland\VSC32\vscvol.exe

C:\Program Files\LogMeIn\x86\LogMeInSystray.exe

C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe

C:\Program Files\iTunes\iTunesHelper.exe

C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe

C:\Program Files\Roxio\Media Experience\DMXLauncher.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe

C:\Program Files\Digital Line Detect\DLG.exe

C:\Program Files\LogMeIn\x86\LMIGuardian.exe

C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe

C:\Program Files\Palm\Hotsync.exe

C:\Program Files\iPod\bin\iPodService.exe

C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

C:\Program Files\Mozilla Thunderbird\thunderbird.exe

C:\Program Files\Rhapsody\rhapsody.exe

C:\Program Files\Rhapsody\rhaphlpr.exe

C:\Program Files\Microsoft Office\Office\WINWORD.EXE

C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\WINDOWS\hh.exe

C:\WINDOWS\system32\cmd.exe

C:\cygwin\bin\bash.exe

C:\Documents and Settings\saus\Desktop\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll

O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll

O2 - BHO: ThinkVantage Password Manager - {F040E541-A427-4CF7-85D8-75E3E0F476C5} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll

O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O4 - HKLM\..\Run: [synTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe

O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [TPKMAPHELPER] C:\Program Files\ThinkPad\Utilities\TpKmapAp.exe -helper

O4 - HKLM\..\Run: [TpShocks] TpShocks.exe

O4 - HKLM\..\Run: [TP4EX] tp4ex.exe

O4 - HKLM\..\Run: [TPHOTKEY] C:\PROGRA~1\Lenovo\PkgMgr\HOTKEY\TPHKMGR.exe

O4 - HKLM\..\Run: [LPManager] C:\PROGRA~1\THINKV~2\PrdCtr\LPMGR.exe

O4 - HKLM\..\Run: [AMSG] C:\PROGRA~1\THINKV~2\AMSG\amsg.exe

O4 - HKLM\..\Run: [iSUSScheduler] "c:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start

O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup

O4 - HKLM\..\Run: [ACTray] C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe

O4 - HKLM\..\Run: [ACWLIcon] C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe

O4 - HKLM\..\Run: [PWRMGRTR] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRTR.DLL,PwrMgrBkGndMonitor

O4 - HKLM\..\Run: [bLOG] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\BatLogEx.DLL,StartBattLog

O4 - HKLM\..\Run: [TVT Scheduler Proxy] C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe

O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe"

O4 - HKLM\..\Run: [TPKBDLED] C:\WINDOWS\system32\TpScrLk.exe

O4 - HKLM\..\Run: [soundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe

O4 - HKLM\..\Run: [AwaySch] C:\Program Files\Lenovo\AwayTask\AwaySch.EXE

O4 - HKLM\..\Run: [cssauth] "C:\Program Files\Lenovo\Client Security Solution\cssauth.exe" silent

O4 - HKLM\..\Run: [PDService.exe] "C:\Program Files\Lenovo\SafeGuard PrivateDisk\pdservice.exe"

O4 - HKLM\..\Run: [WinPatrol] C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe -expressboot

O4 - HKLM\..\Run: [vsc32cnf.exe] C:\Program Files\Roland\VSC32\vsc32cnf.exe

O4 - HKLM\..\Run: [vscvol.exe] C:\Program Files\Roland\VSC32\vscvol.exe

O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"

O4 - HKLM\..\Run: [ufSeAgnt.exe] "C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"

O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"

O4 - HKLM\..\Run: [DMXLauncher] "C:\Program Files\Roxio\Media Experience\DMXLauncher.exe"

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"

O4 - HKCU\..\Run: [iSUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -scheduler

O4 - HKUS\S-1-5-19\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-18\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'SYSTEM')

O4 - HKUS\S-1-5-18\..\RunOnce: [configmsi] cmd /c "rmdir /q C:\config.msi" (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [OE] C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe (User 'Default user')

O4 - HKUS\.DEFAULT\..\RunOnce: [configmsi] cmd /c "rmdir /q C:\config.msi" (User 'Default user')

O4 - Global Startup: Digital Line Detect.lnk = ?

O4 - Global Startup: HotSync Manager.lnk = C:\Program Files\Palm\Hotsync.exe

O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200

O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\ThinkPad\Bluetooth Software\btsendto_ie_ctx.htm

O9 - Extra button: (no name) - {0045D4BC-5189-4b67-969C-83BB1906C421} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll

O9 - Extra 'Tools' menuitem: ThinkVantage Password Manager... - {0045D4BC-5189-4b67-969C-83BB1906C421} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll

O9 - Extra button: Software Installer - {D1A4DEBD-C2EE-449f-B9FB-E8409F9A0BC5} - C:\Program Files\Lenovo\PkgMgr\\PkgMgr.exe

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O11 - Options group: [JAVA_IBM] Java (IBM)

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1188623483015

O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL

O20 - Winlogon Notify: ACNotify - ACNotify.dll (file missing)

O20 - Winlogon Notify: AwayNotify - C:\Program Files\Lenovo\AwayTask\AwayNotify.dll

O23 - Service: Ac Profile Manager Service (AcPrfMgrSvc) - Unknown owner - C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe

O23 - Service: Access Connections Main Service (AcSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\ThinkPad\Bluetooth Software\bin\btwdins.exe

O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: ThinkPad PM Service (IBMPMSVC) - Lenovo - C:\WINDOWS\system32\ibmpmsvc.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: iolo FileInfoList Service (ioloFileInfoList) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe

O23 - Service: iolo System Service (ioloSystemService) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: IPS Core Service (IPSSVC) - Lenovo Group Limited - C:\WINDOWS\system32\IPSSVC.EXE

O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\RaMaint.exe

O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LogMeIn.exe

O23 - Service: ProtexisLicensing - Unknown owner - C:\Program Files\Common Files\Protexis\License Service\PSIService.exe

O23 - Service: Lenovo PSA Driver Control (PsaSrv) - Unknown owner - C:\WINDOWS\system32\PsaSrv.exe

O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe

O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe

O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe

O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe

O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe

O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe

O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe

O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

O23 - Service: System Update (SUService) - - c:\program files\lenovo\system update\suservice.exe

O23 - Service: ThinkVantage Registry Monitor Service - Unknown owner - C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe

O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe

O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmPfw.exe

O23 - Service: Trend Micro Proxy Service (TmProxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe

O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Lenovo. - C:\WINDOWS\System32\TPHDEXLG.EXE

O23 - Service: IBM KCU Service (TpKmpSVC) - Unknown owner - C:\WINDOWS\system32\TpKmpSVC.exe

O23 - Service: TSS Core Service (TSSCoreService) - IBM - C:\Program Files\Lenovo\Client Security Solution\tvttcsd.exe

O23 - Service: TVT Backup Service - Lenovo Group Limited - C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe

O23 - Service: TVT Scheduler - Lenovo Group Limited - C:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe

O23 - Service: tvtnetwk - Unknown owner - C:\Program Files\Lenovo\Rescue and Recovery\adm\IUService.exe

--

End of file - 16496 bytes

process explorer

Process PID CPU Description Company Name

System Idle Process 0 95.52

Interrupts n/a Hardware Interrupts

DPCs n/a Deferred Procedure Calls

System 4 0.75

smss.exe 1804 Windows NT Session Manager Microsoft Corporation

csrss.exe 1900 Client Server Runtime Process Microsoft Corporation

winlogon.exe 1928 Windows NT Logon Application Microsoft Corporation

services.exe 1972 0.75 Services and Controller app Microsoft Corporation

lsass.exe 1984 LSA Shell (Export Version) Microsoft Corporation

ati2evxx.exe 240 ATI External Event Utility EXE Module ATI Technologies Inc.

cssauth.exe 1196 cssauth Lenovo Group Limited

explorer.exe 1168 Windows Explorer Microsoft Corporation

SynTPLpr.exe 1820 TouchPad Driver Helper Application Synaptics, Inc.

SynTPEnh.exe 3688 0.75 Synaptics TouchPad Enhancements Synaptics, Inc.

TpShocks.exe 2604 ThinkVantage Active Protection System Lenovo, Ltd. and IBM Corporation.

TPHKMGR.exe 588

TPONSCR.exe 2904

TpScrex.exe 780 ThinkPad UltraZoom Lenovo Group Limited

LPMGR.EXE 728 ThinkVantage Productivity Center Manager Lenovo Group Limited

Amsg.exe 2100 Message Center LENOVO

GoogleDesktop.exe 1680 Google Desktop Google

GoogleDesktop.exe 2932 Google Desktop Google

ACTray.exe 496

ACWLIcon.exe 1536

rundll32.exe 4124 Run a DLL as an App Microsoft Corporation

scheduler_proxy.exe 4776 scheduler_proxy Application Lenovo Group Limited

TpScrLk.exe 4996

smax4pnp.exe 5008 SMax4PNP Analog Devices, Inc.

AwaySch.EXE 5056 Away Scheduler Lenovo Group Limited

pdservice.exe 5544 PrivateDisk Service Utimaco Safeware AG

WinPatrol.exe 5588 WinPatrol System Monitor BillP Studios

Vsc32Cnf.exe 5652 vsc32Cnf.exe Roland

vscvol.exe 5700 VSC Volume Roland

LogMeInSystray.exe 5724 LogMeIn Desktop Application LogMeIn, Inc.

LMIGuardian.exe 6124 LMIGuardian LogMeIn, Inc.

UfSeAgnt.exe 3652 Trend Micro Server Agent Trend Micro Inc.

iTunesHelper.exe 4924 iTunesHelper Module Apple Inc.

RoxWatchTray9.exe 5540 RoxMMTrayApp Module Sonic Solutions

CPSHelpRunner.exe 5388 ROXHelpRunner Module Sonic Solutions

DMXLauncher.exe 5672

ctfmon.exe 3028 CTF Loader Microsoft Corporation

ISUSPM.exe 3828 Macrovision Software Manager Macrovision Corporation

DLG.exe 5756 Digital Line Detection BVRP Software

Hotsync.exe 1772 HotSync® Manager Application PalmSource, Inc

thunderbird.exe 5328 Mozilla Thunderbird Mozilla Corporation

WINWORD.EXE 772 Microsoft Word for Windows Microsoft Corporation

firefox.exe 7748 Firefox Mozilla Corporation

cmd.exe 2176 Windows Command Processor Microsoft Corporation

bash.exe 7844

procexp.exe 4192 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

CLI.exe 4888 CLI Application (Command Line Interface) ATI Technologies Inc.

CLI.exe 4232 0.75 CLI Application (Command Line Interface) ATI Technologies Inc.

rhaphlpr.exe 5500 Rhapsody Helper RealNetworks, Inc.

uTorrent.exe 5220 0.75 µTorrent BitTorrent, Inc.

hh.exe 5432 Microsoft® HTML Help Executable Microsoft Corporation

Process: uTorrent.exe Pid: 5220

Name Description Company Name Version

ACTIVEDS.dll ADs Router Layer DLL Microsoft Corporation 5.1.2600.5512

adsldpc.dll ADs LDAP Provider C DLL Microsoft Corporation 5.1.2600.5512

ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 5.1.2600.5755

appHelp.dll Application Compatibility Client Library Microsoft Corporation 5.1.2600.5512

ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.5.2284.2

browseui.dll Shell Browser UI Library Microsoft Corporation 6.0.2900.5512

CLBCATQ.DLL Microsoft Corporation 2001.12.4414.700

COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.0.2900.5512

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.0.2900.5512

COMRes.dll Microsoft Corporation 2001.12.4414.700

credui.dll Credential Manager User Interface Microsoft Corporation 5.1.2600.5512

CRYPT32.dll Crypto API32 Microsoft Corporation 5.131.2600.5512

CRYPTUI.dll Microsoft Trust UI Provider Microsoft Corporation 5.131.2600.5512

CSCDLL.dll Offline Network Agent Microsoft Corporation 5.1.2600.5512

cscui.dll Client Side Caching UI Microsoft Corporation 5.1.2600.5512

ctype.nls

DnsApi.dll DNS Client API DLL Microsoft Corporation 5.1.2600.5625

dot3api.dll 802.3 Autoconfiguration API Microsoft Corporation 5.1.2600.5512

dot3dlg.dll 802.3 UI Helper Microsoft Corporation 5.1.2600.5512

eappcfg.dll Eap Peer Config Microsoft Corporation 5.1.2600.5512

eappprxy.dll Microsoft EAPHost Peer Client DLL Microsoft Corporation 5.1.2600.5512

GDI32.dll GDI Client DLL Microsoft Corporation 5.1.2600.5698

hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 5.1.2600.5512

ieframe.dll Internet Explorer Microsoft Corporation 8.0.6001.18812

ieframe.dll.mui Internet Explorer Microsoft Corporation 8.0.6001.18702

iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 8.0.6001.18806

IMAGEHLP.dll Windows NT Image Helper Microsoft Corporation 5.1.2600.5512

IMM32.DLL Windows XP IMM32 API Client DLL Microsoft Corporation 5.1.2600.5512

Iphlpapi.dll IP Helper API Microsoft Corporation 5.1.2600.5512

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 5.1.2600.5781

locale.nls

mdnsNSP.dll Bonjour Namespace Provider Apple Inc. 1.0.6.2

MPRAPI.dll Windows NT MP Router Administration DLL Microsoft Corporation 5.1.2600.5512

MSASN1.dll ASN.1 Runtime APIs Microsoft Corporation 5.1.2600.5512

MSCTF.dll MSCTF Server DLL Microsoft Corporation 5.1.2600.5512

msctfime.ime Microsoft Text Frame Work Service IME Microsoft Corporation 5.1.2600.5512

MSVCP60.dll Microsoft ® C++ Runtime Library Microsoft Corporation 6.2.3104.0

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.2600.5512

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 5.1.2600.5625

netapi32.dll Net Win32 API DLL Microsoft Corporation 5.1.2600.5694

netshell.dll Network Connections Shell Microsoft Corporation 5.1.2600.5512

Normaliz.dll Unicode Normalization DLL Microsoft Corporation 6.0.5441.0

ntdll.dll NT Layer DLL Microsoft Corporation 5.1.2600.5755

ntshrui.dll Shell extensions for sharing Microsoft Corporation 5.1.2600.5512

ole32.dll Microsoft OLE for Windows Microsoft Corporation 5.1.2600.5512

oleaut32.dll Microsoft Corporation 5.1.2600.5512

OneX.DLL IEEE 802.1X supplicant library Microsoft Corporation 5.1.2600.5512

PATROLPRO.DLL WinPatrol Helper DLL BillP Studios 1.3.0.0

PROCHLP.DLL IPS Helper DLL Lenovo Group Limited 2.0.6.0

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 5.1.2600.5512

RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 5.1.2600.5795

rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 5.1.2600.5507

rtutils.dll Routing Utilities Microsoft Corporation 5.1.2600.5512

SAMLIB.dll SAM Library DLL Microsoft Corporation 5.1.2600.5512

Secur32.dll Security Support Provider Interface Microsoft Corporation 5.1.2600.5834

SETUPAPI.dll Windows Setup API Microsoft Corporation 5.1.2600.5512

shdocvw.dll Shell Doc Object and Control Library Microsoft Corporation 6.0.2900.5512

SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.0.2900.5622

shfolder.dll Shell Folder Service Microsoft Corporation 6.0.2900.5512

SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.0.2900.5512

sortkey.nls

sorttbls.nls

SynTPFcs.dll SynTPFcs Synaptics, Inc. 7.5.17.20

unicode.nls

urlmon.dll OLE32 Extensions for Win32 Microsoft Corporation 8.0.6001.18806

USER32.dll Windows XP USER API Client DLL Microsoft Corporation 5.1.2600.5512

USERENV.dll Userenv Microsoft Corporation 5.1.2600.5512

uTorrent.exe µTorrent BitTorrent, Inc. 1.8.4.16442

uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.0.2900.5512

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 5.1.2600.5512

WININET.dll Internet Extensions for Win32 Microsoft Corporation 8.0.6001.18806

winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 5.1.2600.5512

WINSTA.dll Winstation Library Microsoft Corporation 5.1.2600.5512

WINTRUST.dll Microsoft Trust Verification APIs Microsoft Corporation 5.131.2600.5512

WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 5.1.2600.5512

WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 5.1.2600.5512

WS2HELP.dll Windows Socket 2.0 Helper for Windows NT Microsoft Corporation 5.1.2600.5512

wshtcpip.dll Windows Sockets Helper DLL Microsoft Corporation 5.1.2600.5512

WTSAPI32.dll Windows Terminal Server SDK APIs Microsoft Corporation 5.1.2600.5512

xpsp2res.dll Service Pack 2 Messages Microsoft Corporation 5.1.2600.5512

Link to comment
Share on other sites

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...