MrOreo Posted June 9, 2008 Report Share Posted June 9, 2008 In the last week, utorrent has started to take up mass memory. My best theory is something is conflicting with uTorrent that is causing up to 2GB of my 4GB memory to be used by uTorrent. I get the not responding message very quickly upon boot up of the software.-edit. This all started when I added CyberSitter to my computer. I did remove it and I even went and did all those registry deletions I was supposed to but the problem still remains.-/editWindows Vista BusinessAMD X2 4000+4GB PC6400300GB HDHere's my hijack this logLogfile of Trend Micro HijackThis v2.0.2Scan saved at 6:36:56 PM, on 6/8/2008Platform: Windows Vista SP1 (WinNT 6.00.1905)MSIE: Internet Explorer v7.00 (7.00.6001.18000)Boot mode: NormalRunning processes:C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exeC:\Program Files (x86)\Razer\Diamondback\razerhid.exeC:\Program Files (x86)\Common Files\LogiShrd\LComMgr\Communications_Helper.exeC:\Program Files (x86)\OpenOffice.org 2.4\program\soffice.exeC:\Program Files (x86)\AVG\AVG8\avgtray.exeC:\Program Files (x86)\Java\jre1.6.0_04\bin\jusched.exeC:\Program Files (x86)\Razer\Diamondback\razerofa.exeC:\Program Files (x86)\OpenOffice.org 2.4\program\soffice.BINC:\Program Files (x86)\Java\jre1.6.0_04\bin\jucheck.exeC:\Program Files (x86)\Trend Micro\HijackThis\This Hijack.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)F2 - REG:system.ini: UserInit=userinit.exeO1 - Hosts: ::1 localhostO4 - HKLM\..\Run: [Diamondback] "C:\Program Files (x86)\Razer\Diamondback\razerhid.exe"O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Reader_sl.exe"O4 - HKLM\..\Run: [x3watch] "C:\Program Files (x86)\X3watch\x3watch.exe"O4 - HKLM\..\Run: [MSI AutoUpdater ©] CHICO2~2.exeO4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~2\AVG\AVG8\avgtray.exeO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Java\jre1.6.0_04\bin\jusched.exe"O4 - HKLM\..\RunServices: [MSI AutoUpdater ©] CHICO2~2.exeO4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRunO4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenterO4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files (x86)\Windows Live\Messenger\MsnMsgr.Exe" /backgroundO4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')O4 - Startup: OpenOffice.org 2.4.lnk = C:\Program Files (x86)\OpenOffice.org 2.4\program\quickstart.exeO9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre1.6.0_04\bin\ssv.dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre1.6.0_04\bin\ssv.dllO9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dllO9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dllO13 - Gopher Prefix: O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cabO16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://plugin.driveragent.com/files/driveragent.cabO18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG8\avgpp.dllO23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeO23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~2\AVG\AVG8\avgemc.exeO23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~2\AVG\AVG8\avgwdsvc.exeO23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)O23 - Service: iPod Service - Apple Inc. - C:\Program Files (x86)\iPod\bin\iPodService.exeO23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVCSer64.exeO23 - Service: Process Monitor (LVPrcS64) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exeO23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exeO23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exeO23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exeO23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exeO23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exeO23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)--End of file - 7895 bytesProcess Explorer:Process PID CPU Description Company NameSystem Idle Process 0 91.63 Interrupts n/a Hardware Interrupts DPCs n/a Deferred Procedure Calls System 4 smss.exe 508 Windows Session Manager Microsoft Corporationcsrss.exe 576 Client Server Runtime Process Microsoft Corporationwininit.exe 620 Windows Start-Up Application Microsoft Corporation services.exe 676 Services and Controller app Microsoft Corporation svchost.exe 904 Host Process for Windows Services Microsoft Corporation LVPrS64H.exe 1072 Logitech LVPrS64H Module. Logitech Inc. WmiPrvSE.exe 3848 WMI Provider Host Microsoft Corporation unsecapp.exe 3900 Sink to receive asynchronous callbacks for WMI client application Microsoft Corporation svchost.exe 964 Host Process for Windows Services Microsoft Corporation svchost.exe 1000 Host Process for Windows Services Microsoft Corporation svchost.exe 404 Host Process for Windows Services Microsoft Corporation audiodg.exe 1064 Windows Audio Device Graph Isolation Microsoft Corporation svchost.exe 516 Host Process for Windows Services Microsoft Corporation dwm.exe 1996 2.31 Desktop Window Manager Microsoft Corporation LVPrcSrv.exe 124 Logitech LVPrcSrv Module. Logitech Inc. svchost.exe 1028 Host Process for Windows Services Microsoft Corporation taskeng.exe 1956 Task Scheduler Engine Microsoft Corporation taskeng.exe 2260 Task Scheduler Engine Microsoft Corporation taskeng.exe 3880 Task Scheduler Engine Microsoft Corporation svchost.exe 1120 Host Process for Windows Services Microsoft Corporation SLsvc.exe 1164 Microsoft Software Licensing Service Microsoft Corporation svchost.exe 1200 Host Process for Windows Services Microsoft Corporation svchost.exe 1352 Host Process for Windows Services Microsoft Corporation spoolsv.exe 1540 Spooler SubSystem App Microsoft Corporation svchost.exe 1568 Host Process for Windows Services Microsoft Corporation AppleMobileDeviceService.exe 2220 Apple Mobile Device Service Apple, Inc. avgwdsvc.exe 2340 AVG Watchdog Service AVG Technologies CZ, s.r.o. avgrsa.exe 3988 AVG Resident Shield Service AVG Technologies CZ, s.r.o. svchost.exe 2588 Host Process for Windows Services Microsoft Corporation LVCSer64.exe 2624 Logitech Video COM Service Logitech Inc. LVCSer64.exe 2908 Logitech Video COM Service Logitech Inc. svchost.exe 2896 Host Process for Windows Services Microsoft Corporation svchost.exe 2936 Host Process for Windows Services Microsoft Corporation svchost.exe 2968 Host Process for Windows Services Microsoft Corporation SDWinSec.exe 1456 Spybot-S&D Security Center integration Safer Networking Ltd. avgemc.exe 1836 AVG E-Mail Scanner AVG Technologies CZ, s.r.o. wmpnetwk.exe 1220 Windows Media Player Network Sharing Service Microsoft Corporation usnsvc.exe 2532 Messenger Sharing USN Journal Reader Service Microsoft Corporation svchost.exe 4180 Host Process for Windows Services Microsoft Corporation lsass.exe 688 Local Security Authority Process Microsoft Corporation lsm.exe 696 Local Session Manager Service Microsoft Corporationcsrss.exe 640 Client Server Runtime Process Microsoft Corporationwinlogon.exe 820 Windows Logon Application Microsoft Corporationexplorer.exe 1316 1.54 Windows Explorer Microsoft Corporation MSASCui.exe 2016 Windows Defender User Interface Microsoft Corporation RAVCpl64.exe 1312 HD Audio Control Panel Realtek Semiconductor rundll32.exe 2056 Windows host process (Rundll32) Microsoft Corporation sidebar.exe 2112 Windows Sidebar Microsoft Corporation msnmsgr.exe 2172 Windows Live Messenger Microsoft Corporation wmpnscfg.exe 3980 Windows Media Player Network Sharing Service Configuration Application Microsoft Corporation firefox.exe 5368 Firefox Mozilla Corporationrundll32.exe 2348 Windows host process (Rundll32) Microsoft Corporationrazerhid.exe 2428 razerhid MFC Application razerofa.exe 2576 Razer OFA - On-the-Fly Sensitivity Adjustment Razer Inc.Communications_Helper.exe 2440 Communications Manager Logitech Inc.soffice.exe 2484 OpenOffice.org 2.4 OpenOffice.org soffice.bin 3556 OpenOffice.org 2.4 OpenOffice.orgavgtray.exe 2548 AVG Tray Monitor AVG Technologies CZ, s.r.o.jusched.exe 2564 Java Platform SE binary Sun Microsystems, Inc. jucheck.exe 1900 Java Update Checker Sun Microsystems, Inc.notepad.exe 748 Notepad Microsoft Corporationprocexp.exe 5140 Sysinternals Process Explorer Sysinternals - www.sysinternals.com procexp64.exe 5240 4.62 Sysinternals Process Explorer Sysinternals - www.sysinternals.com Link to comment Share on other sites More sharing options...
jewelisheaven Posted June 9, 2008 Report Share Posted June 9, 2008 ... You didn't have utorrent.exe selected. Ctrl-D Also.. uhm, in Task Manager how much RAM is being used? And does it slowly increase.. .or is it constant from bootup? Link to comment Share on other sites More sharing options...
Firon Posted June 9, 2008 Report Share Posted June 9, 2008 Is it utorrent.exe eating tons of RAM or just your available RAM dropping? Link to comment Share on other sites More sharing options...
MrOreo Posted June 9, 2008 Author Report Share Posted June 9, 2008 when i hit ctrl-d nothing showed up for the uTorrent. It's just a white window, but other windows have things going. RAM is being used. When I first start it's at 5Mb, and moves up after 10 secs jumping to 100MB and within a minute to 2 it's up to 2GB Link to comment Share on other sites More sharing options...
jewelisheaven Posted June 9, 2008 Report Share Posted June 9, 2008 There's something in the FAQ bout blank dialogs.Append the process explorer DLL list to the previous post or post it below (you need uT highlighted when you save the log) Link to comment Share on other sites More sharing options...
MrOreo Posted June 9, 2008 Author Report Share Posted June 9, 2008 That would be good advice if I had either of the antivirus software installed. I have shut off close to everything. I am still getting nothing on process explorer. Link to comment Share on other sites More sharing options...
jewelisheaven Posted June 9, 2008 Report Share Posted June 9, 2008 You have to click uT in the list.....open procexp.exe, Ctrl-D, click utorrent.exe, Ctrl-A... it's not that involved Link to comment Share on other sites More sharing options...
MrOreo Posted June 9, 2008 Author Report Share Posted June 9, 2008 Ok, So I re-installed cybersitter, deleted the registry key that holds the password:HKLM\System\CurrentControlSet\control\SecurityProviders\NetSet\MSwcf\EMP\and then uninstalled it via the software. Now everything seems to be working on this end. Link to comment Share on other sites More sharing options...
DreadWingKnight Posted June 9, 2008 Report Share Posted June 9, 2008 lspcs.dll filter lsp Solid Oak 1.00.0000.0011Mighty suspicious this. Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.