jimbob37 Posted December 18, 2007 Report Share Posted December 18, 2007 I have been using utorrent for some time now but it has just started to act in a very strange way.When I first open the application it all works normally for about 20 seconds.After this it stops responding completely and then slowly allocates 2Gb of system memory with 100% CPU use.When it gets to 2GB the CPU use drops to 0% but the application is still unresponsive.I am running the latest version of utorrent downloaded from the web today. Windows XP sp2 and every hotfix. Use AVG free for my AV and to the best of my knowledge have no additional firewall in place.My router is a Netgear WGR614 V6Any help greatly appreciated. Link to comment Share on other sites More sharing options...
Firon Posted December 18, 2007 Report Share Posted December 18, 2007 Post a HijackThis log. Link to comment Share on other sites More sharing options...
jimbob37 Posted December 18, 2007 Author Report Share Posted December 18, 2007 Log as requested:Logfile of Trend Micro HijackThis v2.0.2Scan saved at 12:45:26, on 18/12/2007Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16574)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\Ati2evxx.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\Ati2evxx.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\system32\spoolsv.exeC:\Program Files\QuickTime\qttask.exeC:\PROGRA~1\Grisoft\AVG7\avgcc.exeC:\Program Files\HP\HP Software Update\HPWuSchd2.exeC:\Program Files\Google\Google Desktop Search\GoogleDesktop.exeC:\WINDOWS\system32\ctfmon.exeC:\Program Files\Microsoft ActiveSync\wcescomm.exeC:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exeC:\Program Files\MSN Messenger\MsnMsgr.ExeC:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXEC:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exeC:\Program Files\HP\Digital Imaging\bin\hpqtra08.exeC:\PROGRA~1\MICROS~3\rapimgr.exeC:\PROGRA~1\Grisoft\AVG7\avgamsvr.exeC:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exeC:\Program Files\Google\Google Desktop Search\GoogleDesktop.exeC:\PROGRA~1\Grisoft\AVG7\avgupsvc.exeC:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exeC:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exeC:\WINDOWS\system32\HPZipm12.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Google\Google Desktop Search\GoogleDesktop.exeC:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exeC:\Program Files\Common Files\Nero\Lib\NMIndexingService.exeC:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exeC:\Program Files\Internet Explorer\IEXPLORE.EXEC:\PROGRA~1\MICROS~2\OFFICE11\OUTLOOK.EXEC:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXEC:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Trend Micro\HijackThis\HijackThis.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dllO2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dllO3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dllO4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottimeO4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exeO4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUPO4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exeO4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -kO4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startupO4 - HKCU\..\Run: [startCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exeO4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exeO4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /backgroundO4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user')O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exeO4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exeO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000O9 - Extra button: (no name) - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - (no file)O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dllO9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dllO9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dllO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLLO9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cabO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cabO20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLLO23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exeO23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exeO23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exeO23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exeO23 - Service: Google Desktop Manager 5.1.709.19590 (GoogleDesktopManager-091907-194040) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exeO23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exeO23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exeO23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exeO23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe--End of file - 7794 bytes Link to comment Share on other sites More sharing options...
Firon Posted December 18, 2007 Report Share Posted December 18, 2007 Does it happen even with no .torrents running? Link to comment Share on other sites More sharing options...
jimbob37 Posted December 18, 2007 Author Report Share Posted December 18, 2007 No only when I try and download somthing.EDITSorry it does happen even with no torrents added. It just takes a lot longer to start to happening. Link to comment Share on other sites More sharing options...
jewelisheaven Posted December 18, 2007 Report Share Posted December 18, 2007 Google Desktop Search is on the Incompatible Software list. Why is it running twice?Also Disable Nero Scout's Indexing of your uT download folder. Link to comment Share on other sites More sharing options...
Switeck Posted December 19, 2007 Report Share Posted December 19, 2007 Problem causers?:O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exeO23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe Link to comment Share on other sites More sharing options...
jewelisheaven Posted December 19, 2007 Report Share Posted December 19, 2007 First, depends if he has it to backup EVERYTHING.Second, that's Nero Scout (new from v 7 on) Link to comment Share on other sites More sharing options...
jimbob37 Posted December 19, 2007 Author Report Share Posted December 19, 2007 I have remove all of the potentially difficult apps from my system.The problem has not been resolved by this.fresh copy of Hijackthis log:Logfile of Trend Micro HijackThis v2.0.2Scan saved at 09:09:59, on 19/12/2007Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16574)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\Ati2evxx.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\Ati2evxx.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\system32\spoolsv.exeC:\PROGRA~1\Grisoft\AVG7\avgcc.exeC:\Program Files\HP\HP Software Update\HPWuSchd2.exeC:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exeC:\WINDOWS\system32\ctfmon.exeC:\Program Files\Microsoft ActiveSync\wcescomm.exeC:\Program Files\MSN Messenger\MsnMsgr.ExeC:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXEC:\Program Files\HP\Digital Imaging\bin\hpqtra08.exeC:\PROGRA~1\MICROS~3\rapimgr.exeC:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exeC:\PROGRA~1\Grisoft\AVG7\avgamsvr.exeC:\PROGRA~1\Grisoft\AVG7\avgupsvc.exeC:\WINDOWS\system32\HPZipm12.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\MSN Messenger\usnsvc.exeC:\Program Files\Trend Micro\HijackThis\HijackThis.exeC:\WINDOWS\system32\wuauclt.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dllO2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dllO3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dllO4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUPO4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exeO4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"O4 - HKCU\..\Run: [startCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exeO4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /backgroundO4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user')O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exeO4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exeO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000O9 - Extra button: (no name) - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - (no file)O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dllO9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dllO9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dllO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLLO9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cabO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cabO23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exeO23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exeO23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exeO23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exeO23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exeO23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe--End of file - 6013 bytes Link to comment Share on other sites More sharing options...
DreadWingKnight Posted December 19, 2007 Report Share Posted December 19, 2007 Try seeing what processes are hooking into uTorrent using process explorer Link to comment Share on other sites More sharing options...
jimbob37 Posted December 19, 2007 Author Report Share Posted December 19, 2007 Downloaded Process explorer.Where should I be looking for the information you requested?Should there be a + sign next to utorrrent if there are other processes hooking into it or do you want the DLL/Handel information?Sorry for the confusion I have never used Process Explorer before. Link to comment Share on other sites More sharing options...
jewelisheaven Posted December 19, 2007 Report Share Posted December 19, 2007 If the lower pane is not enabled, press Ctrl-L. Then press Ctrl-D to put it into DLL mode (I think this is default).Press Ctrl-A to save the list, and then paste it into here if you're not sure what you are looking at.NOTE: ANY DLLs listed NOT owned by Microsoft Corporation AND which are outside \system32 YOU SHOULD KNOW about. If they shouldn't be there... that is a certain sign of ad/mal/spy ware. Link to comment Share on other sites More sharing options...
jimbob37 Posted December 19, 2007 Author Report Share Posted December 19, 2007 List as requestedProcess PID CPU Description Company NameSystem Idle Process 0 82.89 Interrupts n/a Hardware Interrupts DPCs n/a 1.32 Deferred Procedure Calls System 4 smss.exe 644 Windows NT Session Manager Microsoft Corporationexplorer.exe 1304 Windows Explorer Microsoft Corporation avgcc.exe 1356 AVG Control Center GRISOFT, s.r.o. hpwuSchd2.exe 2292 Hewlett-Packard Product Assistant Hewlett-Packard Co. ctfmon.exe 2444 CTF Loader Microsoft Corporation wcescomm.exe 2472 ActiveSync Connection Manager Microsoft Corporation msnmsgr.exe 2520 Messenger Microsoft Corporation GoogleToolbarNotifier.exe 2540 GoogleToolbarNotifier Google Inc. hpqtra08.exe 2684 HP Digital Imaging Monitor Hewlett-Packard Development Company, L.P. hpqste08.exe 3680 HP CUE Status Hewlett-Packard Development Company, L.P. iexplore.exe 3604 Internet Explorer Microsoft Corporation iexplore.exe 2816 Internet Explorer Microsoft Corporation iexplore.exe 3388 Internet Explorer Microsoft Corporation procexp.exe 956 1.32 Sysinternals Process Explorer Sysinternals uTorrent.exe 244 13.16 µTorrent BitTorrent, Inc.MOM.exe 2460 Catalyst Control Center: Monitoring program ATI Technologies Inc. CCC.exe 3304 Catalyst Control Centre: Host application ATI Technologies Inc.Process: uTorrent.exe Pid: 244Name Description Company Name Version<Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> ACTIVEDS.dll ADs Router Layer DLL Microsoft Corporation 5.01.2600.3264adsldpc.dll ADs LDAP Provider C DLL Microsoft Corporation 5.01.2600.3264ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 5.01.2600.3264ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.05.2284.0001CLBCATQ.DLL Microsoft Corporation 2001.12.4414.0700COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.00.2900.3264comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.00.2900.3264COMRes.dll Microsoft Corporation 2001.12.4414.0700credui.dll Credential Manager User Interface Microsoft Corporation 5.01.2600.3264CRYPT32.dll Crypto API32 Microsoft Corporation 5.131.2600.3264ctype.nls DHCPCSVC.DLL DHCP Client Service Microsoft Corporation 5.01.2600.3264DNSAPI.dll DNS Client API DLL Microsoft Corporation 5.01.2600.3264dot3api.dll 802.3 Autoconfiguration API Microsoft Corporation 5.01.2600.3264dot3dlg.dll 802.3 UI Helper Microsoft Corporation 5.01.2600.3264EapolQec.dll Microsoft EAPOL NAP Enforcement Client Microsoft Corporation 5.01.2600.3264eappcfg.dll Eap Peer Config Microsoft Corporation 5.01.2600.3264eappprxy.dll Microsoft EAPHost Peer Client DLL Microsoft Corporation 5.01.2600.3264ESENT.dll Server Database Storage Engine Microsoft Corporation 5.01.2600.3264GDI32.dll GDI Client DLL Microsoft Corporation 5.01.2600.3264hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 5.01.2600.3264iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 7.00.6000.16574IMM32.DLL Windows XP IMM32 API Client DLL Microsoft Corporation 5.01.2600.3264Iphlpapi.dll IP Helper API Microsoft Corporation 5.01.2600.3264kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 5.01.2600.3264locale.nls lspcs.dll filter lsp Solid Oak 1.00.0000.0011MPRAPI.dll Windows NT MP Router Administration DLL Microsoft Corporation 5.01.2600.3264MSASN1.dll ASN.1 Runtime APIs Microsoft Corporation 5.01.2600.3264MSCTF.dll MSCTF Server DLL Microsoft Corporation 5.01.2600.3264msctfime.ime Microsoft Text Frame Work Service IME Microsoft Corporation 5.01.2600.3264MSVCP60.dll Microsoft ® C++ Runtime Library Microsoft Corporation 6.02.3104.0000msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.00.2600.3264mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 5.01.2600.3264NETAPI32.dll Net Win32 API DLL Microsoft Corporation 5.01.2600.3264netman.dll Network Connections Manager Microsoft Corporation 5.01.2600.3264netshell.dll Network Connections Shell Microsoft Corporation 5.01.2600.3264Normaliz.dll Unicode Normalization DLL Microsoft Corporation 6.00.5441.0000ntdll.dll NT Layer DLL Microsoft Corporation 5.01.2600.3264ole32.dll Microsoft OLE for Windows Microsoft Corporation 5.01.2600.3264oleaut32.dll Microsoft Corporation 5.01.2600.3264OneX.DLL IEEE 802.1X supplicant library Microsoft Corporation 5.01.2600.3264QUtil.dll Quarantine Utilities Microsoft Corporation 5.01.2600.3264rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 5.01.2600.3264RASAPI32.dll Remote Access API Microsoft Corporation 5.01.2600.3264rasman.dll Remote Access Connection Manager Microsoft Corporation 5.01.2600.3264RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 5.01.2600.3264rtutils.dll Routing Utilities Microsoft Corporation 5.01.2600.3264SAMLIB.dll SAM Library DLL Microsoft Corporation 5.01.2600.3264Secur32.dll Security Support Provider Interface Microsoft Corporation 5.01.2600.3264SETUPAPI.dll Windows Setup API Microsoft Corporation 5.01.2600.3264SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.00.2900.3264shfolder.dll Shell Folder Service Microsoft Corporation 6.00.2900.3264SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.00.2900.3264sortkey.nls sorttbls.nls TAPI32.dll Microsoft® Windows Telephony API Client DLL Microsoft Corporation 5.01.2600.3264unicode.nls USER32.dll Windows XP USER API Client DLL Microsoft Corporation 5.01.2600.3264uTorrent.exe µTorrent BitTorrent, Inc. 1.08.0000.7041uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.00.2900.3264VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 5.01.2600.3264WININET.dll Internet Extensions for Win32 Microsoft Corporation 7.00.6000.16574WINMM.dll MCI API DLL Microsoft Corporation 5.01.2600.3264winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 5.01.2600.3264WINSTA.dll Winstation Library Microsoft Corporation 5.01.2600.3264WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 5.01.2600.3264WMI.dll WMI DC and DP functionality Microsoft Corporation 5.01.2600.3264WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 5.01.2600.3264WS2HELP.dll Windows Socket 2.0 Helper for Windows NT Microsoft Corporation 5.01.2600.3264wshtcpip.dll Windows Sockets Helper DLL Microsoft Corporation 5.01.2600.3264WTSAPI32.dll Windows Terminal Server SDK APIs Microsoft Corporation 5.01.2600.3264WZCSAPI.DLL Wireless Zero Configuration service API Microsoft Corporation 5.01.2600.3264WZCSvc.DLL Wireless Zero Configuration Service Microsoft Corporation 5.01.2600.3264 Link to comment Share on other sites More sharing options...
DreadWingKnight Posted December 19, 2007 Report Share Posted December 19, 2007 Do you have cybersitter installed?Have you tried uninstalling it? Link to comment Share on other sites More sharing options...
jewelisheaven Posted December 19, 2007 Report Share Posted December 19, 2007 LSP injection lspcs.dll filter lsp Solid Oak 1.00.0000.0011If you don't recognize it, start->run->cmdcd\dir/s lspcs.dllDo you recognize where it is seeing itself? Can you remove the program associated with it? Try running LSPFix if not. Link to comment Share on other sites More sharing options...
jimbob37 Posted December 19, 2007 Author Report Share Posted December 19, 2007 I have never had CyberSitter installed on my computer but.......Installing and then removing it has solved my problems!Many thanks for your help in getting this resolved. Link to comment Share on other sites More sharing options...
jewelisheaven Posted December 19, 2007 Report Share Posted December 19, 2007 Thank HiJackThis and Firon.Don't forget to post in the official appreciation thread. Link to comment Share on other sites More sharing options...
Firon Posted December 20, 2007 Report Share Posted December 20, 2007 I've never heard of CyberSitter doing this... How bizarre! Link to comment Share on other sites More sharing options...
jewelisheaven Posted December 20, 2007 Report Share Posted December 20, 2007 Doesn't matter, if it injects the DLL into uT's process, process explorer can see it Maybe we should add some more recent problem programs into the Incompatible Software list?Edit: I forgot to mention DWKnight above. DWKnight is always right Link to comment Share on other sites More sharing options...
Ultima Posted December 20, 2007 Report Share Posted December 20, 2007 Just being listed in the FAQ as an incompatible software for any reason should be enough to make anyone suspicious of the software (at least it would make me suspicious). Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.