Jump to content

I get "Error: Access Denied" ?


Zephrah44

Recommended Posts

I get "Error: Access Denied" / "Error: The process cannot access the file because it is being used by another process"

The most common causes seem to be Google and MSN Desktop. A possible fix is turn off the indexing feature, or to uninstall them.....How do I do that ?

Link to comment
Share on other sites

There's a utility called Process Explorer (procexp.exe) that will tell you what program is accessing the file. Its better than Unlocker because you don't have to install this piece of software.

http://technet.microsoft.com/en-us/sysinternals/bb896653.aspx

This article explains how to check for Files In Use:

http://ask-leo.com/how_can_i_find_out_who_is_using_a_file_in_use.html

Select Find, Find Handle.... and type in the file in question.

Link to comment
Share on other sites

a) get HijackThis from trendsecure.com, run it, view the log, and post the contents here

B) get Process Explorer from sysinternals.com, run it, Ctrl+D (to show the lower DLL pane), select the µTorrent process from the list, Ctrl+S (and save the list somewhere you'll find easily -- like the Desktop) , then post the contents of the saved process list in the .txt file here

Link to comment
Share on other sites

I have the same problem.

here is my HJT log:

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 10:11:09 PM, on 3/6/2008

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16608)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\taskswitch.exe

C:\WINDOWS\CTHELPER.EXE

C:\WINDOWS\system32\RUNDLL32.EXE

C:\PROGRA~1\Grisoft\AVG7\avgcc.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\PeerGuardian2\pg2.exe

C:\Program Files\Messenger\msmsgs.exe

C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe

C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe

C:\PROGRA~1\Grisoft\AVG7\avgemc.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Program Files\WinRAR\WinRAR.exe

C:\Documents and Settings\WebShocK\Desktop\ProcessExplorer\procexp.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.cnn.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

O2 - BHO: IE7Pro - {00011268-E188-40DF-A514-835FCD78B1BF} - C:\Program Files\IEPro\iepro.dll

O4 - HKLM\..\Run: [CoolSwitch] C:\WINDOWS\system32\taskswitch.exe

O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE

O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exe

O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user')

O9 - Extra button: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll

O9 - Extra 'Tools' menuitem: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe

O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe

O23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe

O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe

O23 - Service: NVIDIA-OMEGA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--

End of file - 4081 bytes

Here is my process log for ProcessExplorer on utorrent.exe

Process PID CPU Description Company Name

System Idle Process 0 96.92

Interrupts n/a Hardware Interrupts

DPCs n/a Deferred Procedure Calls

System 4

smss.exe 604 Windows NT Session Manager Microsoft Corporation

csrss.exe 672 Client Server Runtime Process Microsoft Corporation

winlogon.exe 696 Windows NT Logon Application Microsoft Corporation

services.exe 744 Services and Controller app Microsoft Corporation

svchost.exe 912 Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 992 Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1084 Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1136 Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1288 Generic Host Process for Win32 Services Microsoft Corporation

spoolsv.exe 1604 Spooler SubSystem App Microsoft Corporation

avgamsvr.exe 456 AVG Alert Manager GRISOFT, s.r.o.

avgupsvc.exe 468 AVG Update Service GRISOFT, s.r.o.

avgemc.exe 480 AVG E-Mail Scanner GRISOFT, s.r.o.

nvsvc32.exe 584 NVIDIA Driver Helper Service, Version 169.21 NVIDIA Corporation

alg.exe 2240 Application Layer Gateway Service Microsoft Corporation

lsass.exe 756 LSA Shell (Export Version) Microsoft Corporation

explorer.exe 1720 Windows Explorer Microsoft Corporation

TaskSwitch.exe 1836

CTHELPER.EXE 1844 CtHelper Application Creative Technology Ltd

rundll32.exe 1876 Run a DLL as an App Microsoft Corporation

avgcc.exe 1884 AVG Control Center GRISOFT, s.r.o.

ctfmon.exe 1892 CTF Loader Microsoft Corporation

pg2.exe 1900 PeerGuardian 2 Methlabs

msmsgs.exe 1928 Windows Messenger Microsoft Corporation

uTorrent.exe 1700

procexp.exe 3212 3.08 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

firefox.exe 876 Firefox Mozilla Corporation

WinRAR.exe 1824

Process: uTorrent.exe Pid: 1700

Name Description Company Name Version

ACTIVEDS.dll ADs Router Layer DLL Microsoft Corporation 5.01.2600.2180

adsldpc.dll ADs LDAP Provider C DLL Microsoft Corporation 5.01.2600.2180

ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 5.01.2600.2180

ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.05.2284.0000

CLBCATQ.DLL Microsoft Corporation 2001.12.4414.0310

COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.00.2900.2982

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.00.2900.2180

COMRes.dll Microsoft Corporation 2001.12.4414.0258

ctagent.dll ctagent Creative Technology Ltd 1.00.0000.0012

ctype.nls

DNSAPI.dll DNS Client API DLL Microsoft Corporation 5.01.2600.2938

GDI32.dll GDI Client DLL Microsoft Corporation 5.01.2600.3159

hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 5.01.2600.2180

IMM32.DLL Windows XP IMM32 API Client DLL Microsoft Corporation 5.01.2600.2180

Iphlpapi.dll IP Helper API Microsoft Corporation 5.01.2600.2912

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 5.01.2600.3119

locale.nls

MPRAPI.dll Windows NT MP Router Administration DLL Microsoft Corporation 5.01.2600.2180

MSCTF.dll MSCTF Server DLL Microsoft Corporation 5.01.2600.3284

msctfime.ime Microsoft Text Frame Work Service IME Microsoft Corporation 5.01.2600.2180

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.00.2600.3085

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 5.01.2600.2180

NETAPI32.dll Net Win32 API DLL Microsoft Corporation 5.01.2600.2976

ntdll.dll NT Layer DLL Microsoft Corporation 5.01.2600.2180

ole32.dll Microsoft OLE for Windows Microsoft Corporation 5.01.2600.2846

oleaut32.dll Microsoft Corporation 5.01.2600.3266

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 5.01.2600.2938

RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 5.01.2600.3173

rtutils.dll Routing Utilities Microsoft Corporation 5.01.2600.2180

SAMLIB.dll SAM Library DLL Microsoft Corporation 5.01.2600.2180

Secur32.dll Security Support Provider Interface Microsoft Corporation 5.01.2600.2180

SETUPAPI.dll Windows Setup API Microsoft Corporation 5.01.2600.2180

SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.00.2900.3241

SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.00.2900.3268

sortkey.nls

sorttbls.nls

unicode.nls

USER32.dll Windows XP USER API Client DLL Microsoft Corporation 5.01.2600.3099

uTorrent.exe

uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.00.2900.2523

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 5.01.2600.2180

winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 5.01.2600.2180

WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 5.01.2600.2180

WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 5.01.2600.2180

WS2HELP.dll Windows Socket 2.0 Helper for Windows NT Microsoft Corporation 5.01.2600.2180

wshtcpip.dll Windows Sockets Helper DLL Microsoft Corporation 5.01.2600.2180

Link to comment
Share on other sites

I uninstalled AVG and still get denied :(

I also stopped dkservice.exe as that is a smart defragger that is constantly running in the background and I still get access denied.

Its quite strange, i have been using utorrent and bittorrent for months now with AVG and havent had these problems until i reformatted and reloaded a few days ago. could it be something to do with PeerGuardian?

** EDIT

Fixed the problem by reinstalling utorrent and no AVG. reinstalled avg after and had no problems.

Link to comment
Share on other sites

I too have this same problem, hope someone can help pinpoint the problem. I have read over other posts and tried some of the recommendations but none have worked. I am new to utorrent but I have followed the above instructions and here is my logs.

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 12:23:43 AM, on 08/03/2008

Platform: Windows Vista (WinNT 6.00.1904)

MSIE: Internet Explorer v7.00 (7.00.6000.16609)

Boot mode: Normal

Running processes:

C:\Windows\system32\taskeng.exe

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Windows\RtHDVCpl.exe

C:\Program Files\TOSHIBA\Utilities\KeNotify.exe

C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe

C:\Program Files\Java\jre1.6.0\bin\jusched.exe

C:\Windows\System32\hkcmd.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe

C:\Windows\system32\igfxsrvc.exe

C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe

C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe

C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe

C:\Program Files\Apoint2K\Apoint.exe

C:\Program Files\ltmoh\ltmoh.exe

C:\Program Files\Common Files\Symantec Shared\ccApp.exe

C:\Program Files\Windows Live\Messenger\msnmsgr.exe

C:\Program Files\Apoint2K\ApMsgFwd.exe

C:\Windows\ehome\ehtray.exe

C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe

C:\Program Files\Apoint2K\Apntex.exe

C:\Program Files\TOSHIBA\ConfigFree\CFSwMgr.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Windows\system32\NOTEPAD.EXE

C:\Windows\system32\Taskmgr.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Windows\system32\mmc.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

C:\Windows\system32\SearchFilterHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O1 - Hosts: ::1 localhost

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll

O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll

O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

O4 - HKLM\..\Run: [KeNotify] C:\Program Files\TOSHIBA\Utilities\KeNotify.exe

O4 - HKLM\..\Run: [HWSetup] \HWSetup.exe hwSetUP

O4 - HKLM\..\Run: [sVPWUTIL] C:\Program Files\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL

O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"

O4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exe

O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe

O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe

O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe"

O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE

O4 - HKLM\..\Run: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe

O4 - HKLM\..\Run: [smoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe

O4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe

O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe

O4 - HKLM\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe

O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"

O4 - HKLM\..\Run: [symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"

O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-18\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe (User 'Default user')

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

O13 - Gopher Prefix:

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe

O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe

O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe

O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe

O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe

O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe

O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe

O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\isPwdSvc.exe

O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE

O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe

O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe

O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe

O23 - Service: TOSHIBA Navi Support Service (TNaviSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe

O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe

O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe

O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

--

End of file - 8414 bytes

For process explorer

Process PID CPU Description Company Name

System Idle Process 0 97.76

Interrupts n/a Hardware Interrupts

DPCs n/a 0.75 Deferred Procedure Calls

System 4

smss.exe 556

csrss.exe 624

wininit.exe 668

services.exe 712

svchost.exe 936

igfxsrvc.exe 3804 igfxsrvc Module Intel Corporation

PresentationFontCache.exe 976

svchost.exe 1020

svchost.exe 1140

audiodg.exe 1324

svchost.exe 1176

dwm.exe 4076 Desktop Window Manager Microsoft Corporation

svchost.exe 1200

taskeng.exe 2780

taskeng.exe 2468 Task Scheduler Engine Microsoft Corporation

SLsvc.exe 1372

svchost.exe 1424

svchost.exe 1592

ccSvcHst.exe 1712

AppSvc32.exe 1800

spoolsv.exe 1908

svchost.exe 1932

agrsmsvc.exe 1344

AluSchedulerSvc.exe 1672

CFSvcs.exe 1560

ccSvcHst.exe 1516

svchost.exe 1956

svchost.exe 2056

TNaviSrv.exe 2120

TODDSrv.exe 2152

TosCoSrv.exe 2172

ULCDRSvr.exe 2224

svchost.exe 2320

symlcsvc.exe 5744

usnsvc.exe 6052

SearchIndexer.exe 6056

SearchProtocolHost.exe 276

SearchFilterHost.exe 5224

lsass.exe 724

lsm.exe 732

csrss.exe 676

winlogon.exe 848

explorer.exe 3408 Windows Explorer Microsoft Corporation

RtHDVCpl.exe 2556 HD Audio Control Panel Realtek Semiconductor

KeNotify.exe 816

NDSTray.exe 3868 ConfigFree tray TOSHIBA CORPORATION

CFSwMgr.exe 3288 ConfigFree Switch Manager TOSHIBA CORPORATION

jusched.exe 3432 Java Platform SE binary Sun Microsystems, Inc.

hkcmd.exe 3748 hkcmd Module Intel Corporation

igfxpers.exe 2628 persistence Module Intel Corporation

traybar.exe 2940 traybar Chicony

CEC_MAIN.exe 3548

TPwrMain.exe 2916 TOSHIBA Power Saver TOSHIBA Corporation

SmoothView.exe 1668 SmoothView TOSHIBA Corporation

TCrdMain.exe 3568 TOSHIBA Flash Cards TOSHIBA Corporation

Apoint.exe 3272 Alps Pointing-device Driver Alps Electric Co., Ltd.

ApMsgFwd.exe 1260

ltmoh.exe 2000 LtMoh MFC Application Agere Systems

ccApp.exe 3920 Symantec User Session Symantec Corporation

msnmsgr.exe 3704 Windows Live Messenger Microsoft Corporation

ehtray.exe 1584 Media Center Tray Applet Microsoft Corporation

uTorrent.exe 5608

notepad.exe 5900 Notepad Microsoft Corporation

procexp.exe 4636 1.49 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

notepad.exe 5060 Notepad Microsoft Corporation

ApntEx.exe 2140 Alps Pointing-device Driver for Windows NT/2000/XP/Vista Alps Electric Co., Ltd.

firefox.exe 5092 Firefox Mozilla Corporation

notepad.exe 5124

Process: uTorrent.exe Pid: 5608

Name Description Company Name Version

actxprxy.dll ActiveX Interface Marshaling Library Microsoft Corporation 6.00.6000.16386

ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 6.00.6000.16386

apphelp.dll Application Compatibility Client Library Microsoft Corporation 6.00.6000.16386

browseui.dll Shell Browser UI Library Microsoft Corporation 6.00.6000.16386

C_936.NLS

CLBCatQ.DLL COM+ Configuration Catalog Microsoft Corporation 2001.12.6930.16386

COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.10.6000.20533

comctl32.dll.mui User Experience Controls Library Microsoft Corporation 6.10.6000.20533

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.00.6000.16386

dhcpcsvc.DLL DHCP Client Service Microsoft Corporation 6.00.6000.16512

dhcpcsvc6.DLL DHCPv6 Client Microsoft Corporation 6.00.6000.16512

DNSAPI.dll DNS Client API DLL Microsoft Corporation 6.00.6000.16386

DUser.dll Windows DirectUser Engine Microsoft Corporation 6.00.6000.16386

duser.dll.mui Windows DirectUser Engine Microsoft Corporation 6.00.6000.16386

FirewallAPI.dll Windows Firewall API Microsoft Corporation 6.00.6000.16501

GDI32.dll GDI Client DLL Microsoft Corporation 6.00.6000.16386

iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 7.00.6000.16386

IMM32.DLL Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.00.6000.16386

Iphlpapi.dll IP Helper API Microsoft Corporation 6.00.6000.16386

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 6.00.6000.16386

locale.nls

locale.nls

LPK.DLL Language Pack Microsoft Corporation 6.00.6000.16386

MSCTF.dll MSCTF Server DLL Microsoft Corporation 6.00.6000.16386

mssprxy.dll mssprxy.lib Microsoft Corporation 6.00.6000.16386

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.00.6000.16386

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 6.00.6000.16386

napinsp.dll E-mail Naming Shim Provider Microsoft Corporation 6.00.6000.16386

NETAPI32.dll Net Win32 API DLL Microsoft Corporation 6.00.6000.16386

NLAapi.dll Network Location Awareness 2 Microsoft Corporation 6.00.6000.16386

NSI.dll NSI User-mode interface DLL Microsoft Corporation 6.00.6000.16386

ntdll.dll NT Layer DLL Microsoft Corporation 6.00.6000.16386

NTMARTA.DLL Windows NT MARTA provider Microsoft Corporation 6.00.6000.16386

ole32.dll Microsoft OLE for Windows Microsoft Corporation 6.00.6000.16386

OLEAUT32.dll Microsoft Corporation 6.00.6000.16609

pnrpnsp.dll PNRP Name Space Provider Microsoft Corporation 6.00.6000.16386

PROPSYS.dll Microsoft Property System Microsoft Corporation 6.00.6000.16386

PSAPI.DLL Process Status Helper Microsoft Corporation 6.00.6000.16386

R000000000005.clb

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.00.6000.16386

RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 6.00.6000.16525

rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.00.6000.16386

SAMLIB.dll SAM Library DLL Microsoft Corporation 6.00.6000.16386

Secur32.dll Security Support Provider Interface Microsoft Corporation 6.00.6000.16386

SETUPAPI.dll Windows Setup API Microsoft Corporation 6.00.6000.16609

setupapi.dll.mui Windows Setup API Microsoft Corporation 6.00.6000.16609

SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.00.6000.16513

SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.00.6000.16386

tiptsf.dll Tablet PC Input Panel Text Services Framework Microsoft Corporation 6.00.6000.16386

urlmon.dll OLE32 Extensions for Win32 Microsoft Corporation 7.00.6000.16609

USER32.dll Multi-User Windows USER API Client DLL Microsoft Corporation 6.00.6000.16438

user32.dll.mui Multi-User Windows USER API Client DLL Microsoft Corporation 6.00.6000.16386

USERENV.dll Userenv Microsoft Corporation 6.00.6000.16386

USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.6000.16386

uTorrent.exe

uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.00.6000.16386

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 6.00.6000.16386

WINNSI.DLL Network Store Information RPC interface Microsoft Corporation 6.00.6000.16386

winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 6.00.6000.16386

WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 6.00.6000.16386

WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 6.00.6000.16386

wshtcpip.dll Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation 6.00.6000.16386

Link to comment
Share on other sites

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...