pgmbornet Posted August 6, 2008 Report Posted August 6, 2008 I have been using Utorrent for the past few years and never had a problem with it.Since yesterday, utorrent crashes as soon as i turn it on.Here is the HijackThis log:Logfile of Trend Micro HijackThis v2.0.2Scan saved at 5:51:05 PM, on 06/08/2008Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16574)Boot mode: NormalRunning processes:C:\WINDOWS\system32\csrss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Windows Defender\MsMpEng.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\System32\SCardSvr.exeC:\WINDOWS\system32\msdtc.exeC:\Program Files\Bonjour\mDNSResponder.exeC:\WINDOWS\System32\FTRTSVC.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\locator.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\wbem\wmiapsrv.exeC:\WINDOWS\system32\userinit.exeC:\WINDOWS\Explorer.EXEC:\Program Files\Common Files\InstallShield\UpdateService\issch.exeC:\Program Files\HP\hpcoretech\hpcmpmgr.exeC:\Program Files\3Com\3Com OfficeConnect Wireless Utility\3Com Wireless 11g PC Card\PRISMSVR.EXEC:\Program Files\Java\jre1.6.0_02\bin\jusched.exeC:\WINDOWS\system32\hkcmd.exeC:\WINDOWS\system32\igfxpers.exeC:\Program Files\Windows Defender\MSASCui.exeC:\WINDOWS\system32\msconfig.exeC:\WINDOWS\system32\ctfmon.exeC:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exeC:\Program Files\Windows Live\Messenger\MsnMsgr.ExeC:\WINDOWS\system32\drivers\svchost.exeC:\Program Files\3Com\3Com OfficeConnect Wireless Utility\3Com Wireless 11g PC Card\Monitor.exeC:\Program Files\Windows Live\Messenger\usnsvc.exeC:\WINDOWS\System32\vssvc.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Documents and Settings\pierre bornet\Desktop\HiJackThis.exeC:\WINDOWS\system32\wbem\wmiprvse.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatcher.aspx?tp=aus&qkw=%s&tbid=66028R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blankR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=66028R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=66028R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=66028R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=66028R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = WanadooR1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.localR3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLLR3 - URLSearchHook: (no name) - {0A94B116-4504-4e26-AB05-E61E474AA38B} - C:\Program Files\AskPBar\SrchAstt\1.bin\A9SRCHAS.DLLO2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dllO2 - BHO: Ask Search Assistant BHO - {0A94B111-4504-4e26-AB05-E61E474AA38B} - C:\Program Files\AskPBar\SrchAstt\1.bin\A9SRCHAS.DLLO2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dllO2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dllO2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dllO2 - BHO: 100% Free Chess Toolbar Helper - {AE4F4014-3BF4-4CEB-B46C-3730A2340C4E} - C:\Program Files\100% Free Chess Toolbar\v3.3.0.1\100%_Free_Chess_Toolbar.dll (file missing)O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dllO2 - BHO: Ask Toolbar BHO - {F4D76F01-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLLO3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dllO3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll (file missing)O3 - Toolbar: Ask Toolbar - {F4D76F09-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLLO3 - Toolbar: 100% Free Chess Toolbar - {6F4F95AF-1647-4B72-A632-055405455423} - C:\Program Files\100% Free Chess Toolbar\v3.3.0.1\100%_Free_Chess_Toolbar.dll (file missing)O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -startO4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exeO4 - HKLM\..\Run: [PRISMSVR.EXE] "C:\Program Files\3Com\3Com OfficeConnect Wireless Utility\3Com Wireless 11g PC Card\PRISMSVR.EXE" /APPLYO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"O4 - HKLM\..\Run: [DVD43] C:\PROGRA~1\DVDREG~1\DVDRegionFree.exe /hiddenO4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXEO4 - HKLM\..\Run: [Option Bib Logo Log] C:\Documents and Settings\All Users\Application Data\LICENSE ADMIN OPTION BIB\BOOB COOL.exeO4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exeO4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exeO4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exeO4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimizedO4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hideO4 - HKLM\..\Run: [iSUSPM Startup] c:\progra~1\common~1\instal~1\update~1\isuspm.exe -startupO4 - HKLM\..\Run: [startkey] C:\WINDOWS\system32\server.exeO4 - HKLM\..\Run: [svhosts] C:\WINDOWS\system32:system.exeO4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exeO4 - HKLM\..\Run: [DRam prosessor] msconfig.exeO4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottimeO4 - HKLM\..\Run: [RavAV] C:\WINDOWS\AdobeR.exeO4 - HKLM\..\Run: [lsass driver] C:\WINDOWS\msauc.exeO4 - HKLM\..\Run: [C:\WINDOWS\system32\kdwhz.exe] C:\WINDOWS\system32\kdwhz.exeO4 - HKLM\..\RunServices: [DRam prosessor] msconfig.exeO4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exeO4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exeO4 - HKCU\..\Run: [uniblue RegistryBooster 2] C:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe /SO4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /backgroundO4 - HKCU\..\Run: [startkey] C:\WINDOWS\system32\server.exeO4 - HKCU\..\Run: [Veoh] "C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHideO4 - HKCU\..\Run: [DW6] "C:\Program Files\The Weather Channel FW\Desktop\DesktopWeather.exe"O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exeO4 - HKCU\..\Run: [sVCHOST.EXE] C:\WINDOWS\system32\drivers\svchost.exeO4 - HKCU\..\Run: [iexplorer] C:\WINDOWS\iexplorer.exe --systemO4 - HKUS\S-1-5-18\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'SYSTEM')O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'Default user')O4 - Global Startup: 3Com Wireless 11g PC Card.lnk = C:\Program Files\3Com\3Com OfficeConnect Wireless Utility\3Com Wireless 11g PC Card\Monitor.exeO4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\IBMTOOLS\Apps\Common\Bin\WinCinemaMgr.exeO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exeO9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)O11 - Options group: [JAVA_IBM] Java (IBM)O14 - IERESET.INF: START_PAGE_URL=http://www.lenovo.com/us/en/O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/FacebookPhotoUploader5.cabO16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file:///C:/Program%20Files/Chessmaster%20Challenge/Images/stg_drm.ocxO16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocache/funwebproducts/ei/SmileyCentralFWBInitialSetup1.0.0.15.cabO16 - DPF: {2019DC25-D1C0-11D6-97B3-0008A124F542} (StreamPlug Class) - http://www.streamplug.com/StreamPlug/beta/SP.cabO16 - DPF: {2DAD3559-2923-4935-AD49-B673D2539944} (IASRunner Class) - http://www-307.ibm.com/pc/support/acpir.cabO16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cabO16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://helene-elwynn.spaces.live.com//PhotoUpload/MsnPUpld.cabO16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - http://upload.facebook.com/controls/FacebookPhotoUploader3.cabO16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cabO16 - DPF: {74FFE28D-2378-11D5-990C-006094235084} (IBM Access Support) - https://www-307.ibm.com/pc/support/IbmEgath.cabO16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://javadl-esd.sun.com/update/1.6.0/jinstall-6u2-windows-i586-jc.cabO16 - DPF: {AB86CE53-AC9F-449F-9399-D8ABCA09EC09} (Get_ActiveX Control) - https://h17000.www1.hp.com/ewfrf-JAVA/Secure/HPGetDownloadManager.ocxO16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cabO16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cabO16 - DPF: {D6E7CFB5-C074-4D1C-B647-663D1A8D96BF} (Facebook Photo Uploader 4) - http://upload.facebook.com/controls/FacebookPhotoUploader4_5.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{E15EB97E-9396-42B1-BD6D-A4526CB71C91}: NameServer = 85.255.115.34,85.255.112.63O20 - AppInit_DLLs: c:\progra~1\google\google~1\goec62~1.dllO20 - Winlogon Notify: ACNotify - ACNotify.dll (file missing)O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exeO23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exeO23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exeO23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exeO23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exeO23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe--End of file - 12427 bytesHopefully this will help.Many Thanks.
Firon Posted August 6, 2008 Report Posted August 6, 2008 Hell, just update to 1.8. Easiest thing to try first.
pgmbornet Posted August 6, 2008 Author Report Posted August 6, 2008 C'est fait... mais les crashs continuent.Voila le rapport d'erreurs:C:\DOCUME~1\PIERRE~1\LOCALS~1\Temp\WER78fb.dir00\utorrent-1.8-rc7.upx.exe.mdmpC:\DOCUME~1\PIERRE~1\LOCALS~1\Temp\WER78fb.dir00\appcompat.txt
DreadWingKnight Posted August 6, 2008 Report Posted August 6, 2008 Huh?English section here, remember?<edit>O4 - HKLM\..\Run: [startkey] C:\WINDOWS\system32\server.exeO4 - HKLM\..\Run: [svhosts] C:\WINDOWS\system32:system.exeO4 - HKLM\..\Run: [DRam prosessor] msconfig.exeO4 - HKLM\..\Run: [RavAV] C:\WINDOWS\AdobeR.exeO4 - HKLM\..\Run: [lsass driver] C:\WINDOWS\msauc.exeO4 - HKCU\..\Run: [startkey] C:\WINDOWS\system32\server.exeO4 - HKCU\..\Run: [sVCHOST.EXE] C:\WINDOWS\system32\drivers\svchost.exeO4 - HKCU\..\Run: [iexplorer] C:\WINDOWS\iexplorer.exe --systemMALWARE! GET YOUR SYSTEM CLEANED UP LIKE 3 MONTHS AGO!
Ultima Posted August 6, 2008 Report Posted August 6, 2008 Get Process Explorer from sysinternals.com, run it, Ctrl+D (to show the lower DLL pane), select the µTorrent process from the list, Ctrl+S (and save the list somewhere you'll find easily -- like the Desktop), then post the contents of the saved process list in the .txt file here.Edit Or what DWK said. Indeed, your computer is malware infested.
pgmbornet Posted August 6, 2008 Author Report Posted August 6, 2008 Here you go:Process PID CPU Description Company NameSystem Idle Process 0 98.46 Interrupts n/a Hardware Interrupts DPCs n/a Deferred Procedure Calls System 4 csrss.exe 1092 Client Server Runtime Process Microsoft Corporationwinlogon.exe 1116 Windows NT Logon Application Microsoft Corporation services.exe 1160 Services and Controller app Microsoft Corporation svchost.exe 1356 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1436 Generic Host Process for Win32 Services Microsoft Corporation MsMpEng.exe 1476 Service Executable Microsoft Corporation svchost.exe 1516 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1560 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1696 Generic Host Process for Win32 Services Microsoft Corporation spoolsv.exe 360 Spooler SubSystem App Microsoft Corporation scardsvr.exe 412 Smart Card Resource Management Server Microsoft Corporation msdtc.exe 548 MS DTC console program Microsoft Corporation mDNSResponder.exe 652 Bonjour Service Apple Inc. FTRTSVC.exe 688 FTRTSVC NT Service France Telecom svchost.exe 740 Generic Host Process for Win32 Services Microsoft Corporation locator.exe 884 Rpc Locator Microsoft Corporation svchost.exe 1012 Generic Host Process for Win32 Services Microsoft Corporation wmiapsrv.exe 1136 WMI Performance Adapter Service Microsoft Corporation dllhost.exe 2088 COM Surrogate Microsoft Corporation alg.exe 2312 Application Layer Gateway Service Microsoft Corporation usnsvc.exe 2576 Messenger Sharing USN Journal Reader Service Microsoft Corporation lsass.exe 1180 LSA Shell (Export Version) Microsoft Corporation userinit.exe 2680 explorer.exe 2848 Windows Explorer Microsoft Corporation issch.exe 3136 InstallShield Update Service Scheduler InstallShield Software Corporation hpcmpmgr.exe 3148 HP Framework Component Manager Service Hewlett-Packard Company PRISMSVR.exe 3156 PRISM Profiles Server Module Conexant Systems, Inc. jusched.exe 3164 Java Platform SE binary Sun Microsystems, Inc. hkcmd.exe 3208 hkcmd Module Intel Corporation igfxpers.exe 3216 persistence Module Intel Corporation MSASCui.exe 3288 Windows Defender User Interface Microsoft Corporation msconfig.exe 3360 ctfmon.exe 3488 CTF Loader Microsoft Corporation GoogleToolbarNotifier.exe 3496 GoogleToolbarNotifier Google Inc. msnmsgr.exe 3504 Windows Live Messenger Microsoft Corporation svchost.exe 3868 Monitor.exe 268 WLAN Monitor MFC Application mmc.exe 1008 Microsoft Management Console Microsoft Corporation drwtsn32.exe 2632 DrWatson Postmortem Debugger Microsoft Corporation firefox.exe 2572 Firefox Mozilla Corporation utorrent-1.8-rc7.upx.exe 332 µTorrent BitTorrent, Inc. drwtsn32.exe 2760 DrWatson Postmortem Debugger Microsoft Corporationdrwtsn32.exe 2480 DrWatson Postmortem Debugger Microsoft Corporationprocexp.exe 2532 1.54 Sysinternals Process Explorer Sysinternals - www.sysinternals.comProcess: utorrent-1.8-rc7.upx.exe Pid: 332Name Description Company Name VersionACTIVEDS.dll ADs Router Layer DLL Microsoft Corporation 5.01.2600.2180adsldpc.dll ADs LDAP Provider C DLL Microsoft Corporation 5.01.2600.2180ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 5.01.2600.2180Apphelp.dll Application Compatibility Client Library Microsoft Corporation 5.01.2600.2180ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.05.2284.0000CLBCATQ.DLL Microsoft Corporation 2001.12.4414.0308COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.00.2900.2982comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.00.2900.2180COMRes.dll Microsoft Corporation 2001.12.4414.0258ctype.nls DBGHELP.DLL Windows Image Helper Microsoft Corporation 5.01.2600.2180DNSAPI.dll DNS Client API DLL Microsoft Corporation 5.01.2600.2938GDI32.dll GDI Client DLL Microsoft Corporation 5.01.2600.3159hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 5.01.2600.2180IMM32.DLL Windows XP IMM32 API Client DLL Microsoft Corporation 5.01.2600.2180Iphlpapi.dll IP Helper API Microsoft Corporation 5.01.2600.2912kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 5.01.2600.3119locale.nls LPK.DLL Language Pack Microsoft Corporation 5.01.2600.2180mdnsNSP.dll Bonjour Namespace Provider Apple Inc. 1.00.0004.0012MPRAPI.dll Windows NT MP Router Administration DLL Microsoft Corporation 5.01.2600.2180MSCTF.dll MSCTF Server DLL Microsoft Corporation 5.01.2600.2180msctfime.ime Microsoft Text Frame Work Service IME Microsoft Corporation 5.01.2600.2180msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.00.2600.2180mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 5.01.2600.2180NETAPI32.dll Net Win32 API DLL Microsoft Corporation 5.01.2600.2976ntdll.dll NT Layer DLL Microsoft Corporation 5.01.2600.2180ole32.dll Microsoft OLE for Windows Microsoft Corporation 5.01.2600.2726oleaut32.dll Microsoft Corporation 5.01.2600.3139rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 5.01.2600.2938RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 5.01.2600.3173rtutils.dll Routing Utilities Microsoft Corporation 5.01.2600.2180SAMLIB.dll SAM Library DLL Microsoft Corporation 5.01.2600.2180Secur32.dll Security Support Provider Interface Microsoft Corporation 5.01.2600.2180SETUPAPI.dll Windows Setup API Microsoft Corporation 5.01.2600.2180SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.00.2900.3241shfolder.dll Shell Folder Service Microsoft Corporation 6.00.2900.2180SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.00.2900.2995sortkey.nls sorttbls.nls unicode.nls USER32.dll Windows XP USER API Client DLL Microsoft Corporation 5.01.2600.3099USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.420.2600.2180utorrent-1.8-rc7.upx.exe µTorrent BitTorrent, Inc. 1.08.0000.11705uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.00.2900.2180VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 5.01.2600.2180WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 5.01.2600.2180WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 5.01.2600.2180WS2HELP.dll Windows Socket 2.0 Helper for Windows NT Microsoft Corporation 5.01.2600.2180wshtcpip.dll Windows Sockets Helper DLL Microsoft Corporation 5.01.2600.2180
Firon Posted August 6, 2008 Report Posted August 6, 2008 Your system has TONS of malware. Enough so that I'd say you should reinstall Windows completely and delete any exe on your hard drive.
thelittlefire Posted August 6, 2008 Report Posted August 6, 2008 While you're at it, patch to SP3 before re-connecting to the internet. You should also install AV software... you appear to have the spyware, why not also http://free.grisoft.com
pgmbornet Posted August 6, 2008 Author Report Posted August 6, 2008 I tried... For whatever reason, when I run a scan on AV or Window defender or even try to get on safe mode, the computer shuts down entirely... Any particular reason for that? I mean, it could be the fan... but I ran SIW and the temperature of the computer doesn't exceed 44 C degrees (108 F)... not hot enough to be a Fan problem... With Process explorer, there is an "Interrupts" system under the System Idle Process... maybe it's related? It seems i could kill the process but I have no idea if it's safe or not...Any ideas? Maybe burn my PC and buy a new one? (LOL)
Firon Posted August 6, 2008 Report Posted August 6, 2008 Your Windows is screwed. Reinstall completely.Not System Restore. Reinstall. Hell, you may even wanna format if you've already backed up everything useful.
Recommended Posts
Archived
This topic is now archived and is closed to further replies.