bidomo Posted June 19, 2008 Report Share Posted June 19, 2008 Hi everyone!1st post for me, I'm glad to be here...Well, I'm having bad CRC in almost everything I'm getting lately, so I have to CRC check once and again, and there are always lost parts...I'd re-downloaded lost parts almost 5 times before they were successfully downloaded, this happens in 2 different Hard disk, in different partitions in each one.Could it be a Virus or spyware??Any help will be highly appreciated.Note: Only happens with uTorrent, don't have any other client installed, and firefox works fine Link to comment Share on other sites More sharing options...
jewelisheaven Posted June 19, 2008 Report Share Posted June 19, 2008 uT doesn't use CRC... if the torrent is reporting ERROR: CRC failed, that relates to Windows saying your data isn't being written correctly.I don't know what you're talking about when you say you crc check ... you mean right click, force recheck?Does the RED parts of your files (check Files tab) change between rechecks? If so, yes get HiJackThis and create a full log and paste it below. Link to comment Share on other sites More sharing options...
bidomo Posted June 19, 2008 Author Report Share Posted June 19, 2008 Ummm, my bad, didn't know about Crc, maybe MD5, I'm not to much deeper on that kind of algorithms, so didn't really know...Yes, the parts changes not eventually but alwaysI'm gonna run HijackThis in normal windows and in a PE CD too.So I will edit this post as necessary----------------------------------------------------------------This is from normal XP MCELogfile of HijackThis v1.99.1Scan saved at 04:04:38 a.m., on 19/06/2008Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16674)Running processes:F:\WINDOWS\System32\smss.exeF:\WINDOWS\system32\winlogon.exeF:\WINDOWS\system32\services.exeF:\WINDOWS\system32\lsass.exeF:\WINDOWS\system32\svchost.exeF:\WINDOWS\System32\svchost.exeF:\WINDOWS\system32\spoolsv.exeF:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeF:\WINDOWS\eHome\ehRecvr.exeF:\WINDOWS\eHome\ehSched.exeF:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exeF:\WINDOWS\system32\nvsvc32.exeF:\Program Files\TVersity\Media Server\MediaServer.exeF:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vmount2.exeF:\WINDOWS\system32\vmnat.exeF:\Program Files\VMware\VMware Workstation\vmware-authd.exeF:\WINDOWS\system32\vmnetdhcp.exeF:\WINDOWS\system32\dllhost.exeF:\WINDOWS\Explorer.EXEF:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exeF:\Program Files\VMware\VMware Workstation\vmware-tray.exeF:\Program Files\Java\jre1.6.0_05\bin\jusched.exeF:\WINDOWS\system32\rundll32.exeF:\WINDOWS\system32\RUNDLL32.EXEF:\Program Files\Musicmatch\Musicmatch Jukebox\MMDiag.exeF:\Program Files\Microsoft IntelliType Pro\itype.exeF:\Program Files\Musicmatch\Musicmatch Jukebox\mim.exeF:\WINDOWS\ehome\ehtray.exeF:\WINDOWS\system32\CmUCReye.exeF:\WINDOWS\eHome\ehmsas.exeF:\Program Files\Messenger\msmsgs.exeF:\WINDOWS\system32\ctfmon.exeF:\Program Files\iPod\bin\iPodService.exeF:\Program Files\Windows Live\Messenger\usnsvc.exeF:\Program Files\XBCDRC\XBCDRC.exeF:\Program Files\Winamp\winamp.exeF:\program files\runit.exeF:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exeF:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exeF:\PROGRA~1\MOZILL~1\FIREFOX.EXEF:\Documents and Settings\bidomo\Desktop\HijackThis.exeR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - F:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dllO2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - D:\PROGRAMS\FLASHGET\jccatch.dll (file missing)O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - F:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - F:\PROGRA~1\FlashFXP\IEFlash.dllO3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - F:\PROGRA~1\FlashGet\fgiebar.dllO4 - HKLM\..\Run: [XboxStat] "f:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe" silentrunO4 - HKLM\..\Run: [vmware-tray] F:\Program Files\VMware\VMware Workstation\vmware-tray.exeO4 - HKLM\..\Run: [VMware hqtray] "F:\Program Files\VMware\VMware Workstation\hqtray.exe"O4 - HKLM\..\Run: [sunJavaUpdateSched] "F:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXEO4 - HKLM\..\Run: [RemoteControl] "F:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"O4 - HKLM\..\Run: [QuickTime Task] "F:\Program Files\QuickTime Alternative\QTTask.exe" -atboottimeO4 - HKLM\..\Run: [PHIME2002ASync] F:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNCO4 - HKLM\..\Run: [PHIME2002A] F:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMENameO4 - HKLM\..\Run: [nwiz] nwiz.exe /installO4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE F:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInitO4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE F:\WINDOWS\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [NBKeyScan] "F:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"O4 - HKLM\..\Run: [MimBoot] F:\Program Files\Musicmatch\Musicmatch Jukebox\mimboot.exeO4 - HKLM\..\Run: [LanguageShortcut] "F:\Program Files\CyberLink\PowerDVD\Language\Language.exe"O4 - HKLM\..\Run: [itype] "f:\Program Files\Microsoft IntelliType Pro\itype.exe"O4 - HKLM\..\Run: [iTunesHelper] "F:\Program Files\iTunes\iTunesHelper.exe"O4 - HKLM\..\Run: [iMJPMIG8.1] "F:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32O4 - HKLM\..\Run: [ehTray] F:\WINDOWS\ehome\ehtray.exeO4 - HKLM\..\Run: [CmUCRRun] F:\WINDOWS\system32\CmUCReye.exeO4 - HKLM\..\Run: [AVP] "F:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXEO4 - HKLM\..\Run: [Acronis Scheduler2 Service] "F:\Program Files\Common Files\Maxtor\Schedule2\schedhlp.exe"O4 - HKLM\..\RunOnce: [Remove Norton Ghost] cmd /c rmdir /q /s "F:\Program Files\Norton Ghost\"O4 - HKCU\..\Run: [Nero MediaHome] "F:\Program Files\Nero\Nero8\Nero MediaHome\NeroMediaHome.exe"O4 - HKCU\..\Run: [MsnMsgr] "F:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /backgroundO4 - HKCU\..\Run: [MSMSGS] "F:\Program Files\Messenger\msmsgs.exe" /backgroundO4 - HKCU\..\Run: [indxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "F:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020O4 - HKCU\..\Run: [CTFMON.EXE] F:\WINDOWS\system32\ctfmon.exeO4 - HKCU\..\Run: [AnyDVD] F:\Program Files\SlySoft\AnyDVD\AnyDVD.exeO4 - Startup: Runit.lnk = F:\Program Files\Runit.exeO4 - Startup: XBCDRC.lnk = F:\Program Files\XBCDRC\XBCDRC.exeO4 - Startup: µTorrent.lnk = F:\Program Files\uTorrent\uTorrent.exeO8 - Extra context menu item: &Download All with FlashGet - D:\PROGRAMS\FLASHGET\jc_all.htmO8 - Extra context menu item: &Download with FlashGet - D:\PROGRAMS\FLASHGET\jc_link.htmO8 - Extra context menu item: E&xportar a Microsoft Excel - res://F:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - F:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - F:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - F:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dllO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - F:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLLO9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - F:\PROGRA~1\FlashGet\flashget.exeO9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - F:\PROGRA~1\FlashGet\flashget.exeO9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exeO11 - Options group: [iNTERNATIONAL] International*O15 - Trusted Zone: *.musicmatch.comO15 - Trusted Zone: *.musicmatch.com (HKLM)O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{20F41C00-4547-4640-A7D7-04F07775C674}: NameServer = 200.33.146.194,200.33.146.202O17 - HKLM\System\CS1\Services\Tcpip\..\{20F41C00-4547-4640-A7D7-04F07775C674}: NameServer = 200.33.146.194,200.33.146.202O17 - HKLM\System\CS2\Services\Tcpip\..\{20F41C00-4547-4640-A7D7-04F07775C674}: NameServer = 200.33.146.194,200.33.146.202O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - F:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLLO18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - F:\Program Files\Common Files\Microsoft Shared\Help\hxds.dllO18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - F:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLLO18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - F:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLLO20 - Winlogon Notify: klogon - F:\WINDOWS\system32\klogon.dllO20 - Winlogon Notify: WgaLogon - F:\WINDOWS\SYSTEM32\WgaLogon.dllO21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - F:\WINDOWS\system32\WPDShServiceObj.dllO23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - F:\Program Files\Common Files\Maxtor\Schedule2\schedul2.exeO23 - Service: Apple Mobile Device - Apple, Inc. - F:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeO23 - Service: Kaspersky Anti-Virus 6.0 (AVP) - Unknown owner - F:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r (file missing)O23 - Service: DynDNS Updater Service (DynDNS_Updater_Service) - Kana Solution - F:\Program Files\DynDNS Updater\DynDNS.exeO23 - Service: Servicio del iPod (iPod Service) - Apple Inc. - F:\Program Files\iPod\bin\iPodService.exeO23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - F:\WINDOWS\system32\nvsvc32.exeO23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - F:\Program Files\CyberLink\Shared files\RichVideo.exeO23 - Service: TVersityMediaServer - Unknown owner - F:\Program Files\TVersity\Media Server\MediaServer.exeO23 - Service: VMware Agent Service (ufad-ws60) - Unknown owner - F:\Program Files\VMware\VMware Workstation\vmware-ufad.exe" -d "F:\Program Files\VMware\VMware Workstation\\" -s ufad-p2v.xml (file missing)O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - F:\Program Files\VMware\VMware Workstation\vmware-authd.exeO23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - F:\WINDOWS\system32\vmnetdhcp.exeO23 - Service: VMware Virtual Mount Manager Extended (vmount2) - VMware, Inc. - F:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vmount2.exeO23 - Service: VMware NAT Service - VMware, Inc. - F:\WINDOWS\system32\vmnat.exeO23 - Service: VNC Server Version 4 (WinVNC4) - Unknown owner - F:\Program Files\RealVNC\VNC4\WinVNC4.exe" -service (file missing)O23 - Service: XAMPP Service (XAMPP) - Unknown owner - c:\xampp\service.exe Link to comment Share on other sites More sharing options...
jewelisheaven Posted June 19, 2008 Report Share Posted June 19, 2008 Not full log... you didn't answer my question.Maybe try uninstalling TVersity, search for other users' experiences with it.. You uninstalled KAV? What is an exe doing in your base %PROGRAM FILES% folder... i.e. "What does runit.exe do?"What is important, WHAT is the error. If it's in the status column, see below, if not http://utorrent.com/faq.php#What_does_Wasted_and_hashfails_mean.3FAside from verifying it's none of your software by uninstalling it all one by one, it could be hardware... so I'd suggest running chkdsk /f on your hard drive and running a memory tester overnight to save you that trouble. Link to comment Share on other sites More sharing options...
bidomo Posted June 19, 2008 Author Report Share Posted June 19, 2008 Sorry, Red parts of the failed files does indeed change, and sometimes let me extract (when in RARs) but the resulting file fails...Older downloads work fine while extracted.Other funny thing is, windows made something like a maintenance by itself... it started running CHKDSK in F: (where my systemroot is), after some test, it started deleting some stuff, orphan headers or somewhat like that (can't find the log file), this deleted almost all of the Application data files under my user, deleted files from Desktop, deleted firefox configuration, bookmarks, extensions, and some other stuff, utorrent configuration included.I'm gonna try uninstalling TVersityKAV is not uninstalled, could this be the problem?? (causes trouble with Youtube)%program_files%\runit.exe is a program I've placed there, trusted, long time usingI've been thinking hardware too, but my PC is semi new, so don't really know... because windows fails almost always when bad hard disk or memory... I'm gonna run memtest or something Link to comment Share on other sites More sharing options...
Firon Posted June 19, 2008 Report Share Posted June 19, 2008 Random CRC errors are hardware failures. More than likely it's your RAM.And Windows is surprisingly tolerant to RAM issues. Link to comment Share on other sites More sharing options...
bidomo Posted June 20, 2008 Author Report Share Posted June 20, 2008 Bad RAM module, hope is the only one and the motherboard not being damaged Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.