Jump to content

crashes in vista 64


dreamer2008

Recommended Posts

Hi. I'm having some problems with utorrent and vista 64. I used utorrent since I first found the torrents, for a few years now and never had any problems, but that was in the time I had XP. This week I bought a new computer system and Vista Ultimate 64 and everything works fine but when I start to download a torrent after a few minutes of normal download the computer freezes and I have to restart. I looked the problem up on the internet and could only find that maybe the problem is with the connection limitation of Vista and I patched it to 70000 connections but the same problem exists. Any suggestions?

Link to comment
Share on other sites

This is the hijackthis log

C:\Program Files (x86)\GIGABYTE\GBTUpd\RunUpd.exe

C:\Program Files (x86)\DAEMON Tools Pro\DTProAgent.exe

C:\Program Files (x86)\RALINK\Common\RaUI.exe

C:\Program Files (x86)\Avira\AntiVir PersonalEdition Classic\avgnt.exe

C:\Program Files (x86)\Norton Ghost\Agent\VProTray.exe

C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe

C:\Program Files (x86)\Winamp\winampa.exe

C:\Program Files (x86)\Mozilla Firefox\firefox.exe

C:\Program Files (x86)\TC UP\totalcmd.exe

C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE

C:\PROGRA~2\Yahoo!\MESSEN~1\ymsgr_tray.exe

C:\Program Files (x86)\uTorrent\uTorrent.exe

C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll

F2 - REG:system.ini: UserInit=userinit.exe

O1 - Hosts: ::1 localhost

O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files (x86)\Yahoo!\Common\yiesrvc.dll

O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll

O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min

O4 - HKLM\..\Run: [Norton Ghost 14.0] "C:\Program Files (x86)\Norton Ghost\Agent\VProTray.exe"

O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe" -start

O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKLM\..\RunOnce: [GBTUpd] "C:\Program Files (x86)\GIGABYTE\GBTUpd\PreRun.exe"

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [iSUSPM Startup] C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup

O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro\DTProAgent.exe"

O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~2\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet

O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')

O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files (x86)\RALINK\Common\RaUI.exe

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files (x86)\Yahoo!\Common\yiesrvc.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL

O13 - Gopher Prefix:

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files (x86)\Yahoo!\Common\Yinsthelper.dll

O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir PersonalEdition Classic\sched.exe

O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir PersonalEdition Classic\avguard.exe

O23 - Service: Ati External Event Utility - Unknown owner - C:\Windows\system32\Ati2evxx.exe (file missing)

O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)

O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

O23 - Service: GEST Service for program management. (GEST Service) - Unknown owner - C:\Program Files (x86)\GIGABYTE\EnergySaver\GSvr.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Norton Ghost - Symantec Corporation - C:\Program Files (x86)\Norton Ghost\Agent\VProSvc.exe

O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

O23 - Service: SymSnapService - Symantec - C:\Program Files (x86)\Norton Ghost\Shared\Drivers\SymSnapServicex64.exe

O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--

End of file - 7950 bytes

The process explorer list:

Process PID CPU Description Company Name

System Idle Process 0 97.12

Interrupts n/a Hardware Interrupts

DPCs n/a Deferred Procedure Calls

System 4

smss.exe 516

csrss.exe 584

wininit.exe 636

services.exe 692

svchost.exe 860

ehmsas.exe 3872 Media Center Media Status Aggregator Service Microsoft Corporation

svchost.exe 996

svchost.exe 260

Ati2evxx.exe 412

Ati2evxx.exe 1480

svchost.exe 532

audiodg.exe 564

svchost.exe 552

dwm.exe 1852 Desktop Window Manager Microsoft Corporation

svchost.exe 592

taskeng.exe 1904 Task Scheduler Engine Microsoft Corporation

taskeng.exe 1536

svchost.exe 1072

SLsvc.exe 1112

svchost.exe 1196

svchost.exe 1312

spoolsv.exe 1844

sched.exe 1892

svchost.exe 1980

avguard.exe 2180

GSvr.exe 2204

VProSvc.exe 2320

svchost.exe 2452

svchost.exe 2468

svchost.exe 2616

SearchIndexer.exe 2648

msdtc.exe 1564

SymSnapServicex64.exe 3228

lsass.exe 704

lsm.exe 712

csrss.exe 656

winlogon.exe 924

explorer.exe 1916 0.76 Windows Explorer Microsoft Corporation

MSASCui.exe 3512 Windows Defender User Interface Microsoft Corporation

RAVCpl64.exe 3524 HD Audio Control Panel Realtek Semiconductor

sidebar.exe 3548 Windows Sidebar Microsoft Corporation

DTProAgent.exe 3664 DAEMON Tools Pro Tray Application DT Soft Ltd.

ehtray.exe 3740 Media Center Tray Applet Microsoft Corporation

RaUI.exe 3800 Ralink Wireless Utility Ralink Technology, Corp.

firefox.exe 4180 Firefox Mozilla Corporation

uTorrent.exe 85932 µTorrent BitTorrent, Inc.

RunUpd.exe 1548

avgnt.exe 3816 Antivirus System Tray Tool Avira GmbH

VProTray.exe 3832 Tray Application Symantec Corporation

issch.exe 3852 InstallShield Update Service Scheduler InstallShield Software Corporation

MOM.exe 3860 Catalyst Control Center: Monitoring program Advanced Micro Devices Inc.

CCC.exe 3180 Catalyst Control Centre: Host application ATI Technologies Inc.

winampa.exe 3900

TOTALCMD.EXE 6516 Total Commander 32 bit international version, file manager replacement for Windows C. Ghisler & Co.

WINWORD.EXE 48468 Microsoft Office Word Microsoft Corporation

splwow64.exe 48712 Thunking Spooler APIS from 32 to 64 Process Microsoft Corporation

notepad.exe 98336 Notepad Microsoft Corporation

pythonw.exe 96348

procexp.exe 102312 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

procexp64.exe 100708 0.76 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

Ymsgr_tray.exe 81548 Yahoo! Messenger Tray Yahoo! Inc.

at the process explorer dll substring there are 3 utorrent dll and 1 explorer.exe handle

Link to comment
Share on other sites

Oh sorry about that, I don't quite know how to use these tools correctly yet, here is the process explorer log

Process PID CPU Description Company Name

System Idle Process 0 94.81

Interrupts n/a Hardware Interrupts

DPCs n/a 0.33 Deferred Procedure Calls

System 4

smss.exe 516

csrss.exe 584

wininit.exe 636

services.exe 692

svchost.exe 860

ehmsas.exe 3872 Media Center Media Status Aggregator Service Microsoft Corporation

svchost.exe 996

svchost.exe 260

Ati2evxx.exe 412

Ati2evxx.exe 1480

svchost.exe 532

audiodg.exe 564

svchost.exe 552

dwm.exe 1852 0.65 Desktop Window Manager Microsoft Corporation

svchost.exe 592

taskeng.exe 1904 Task Scheduler Engine Microsoft Corporation

taskeng.exe 1536

svchost.exe 1072

SLsvc.exe 1112

svchost.exe 1196

svchost.exe 1312

spoolsv.exe 1844

sched.exe 1892

svchost.exe 1980

avguard.exe 2180

GSvr.exe 2204

VProSvc.exe 2320

svchost.exe 2452

svchost.exe 2468

svchost.exe 2616

SearchIndexer.exe 2648

msdtc.exe 1564

SymSnapServicex64.exe 3228

lsass.exe 704

lsm.exe 712

csrss.exe 656

winlogon.exe 924

explorer.exe 1916 Windows Explorer Microsoft Corporation

MSASCui.exe 3512 Windows Defender User Interface Microsoft Corporation

RAVCpl64.exe 3524 HD Audio Control Panel Realtek Semiconductor

sidebar.exe 3548 0.33 Windows Sidebar Microsoft Corporation

DTProAgent.exe 3664 DAEMON Tools Pro Tray Application DT Soft Ltd.

ehtray.exe 3740 Media Center Tray Applet Microsoft Corporation

RaUI.exe 3800 Ralink Wireless Utility Ralink Technology, Corp.

firefox.exe 4180 0.33 Firefox Mozilla Corporation

uTorrent.exe 85932 µTorrent BitTorrent, Inc.

RunUpd.exe 1548

avgnt.exe 3816 Antivirus System Tray Tool Avira GmbH

VProTray.exe 3832 Tray Application Symantec Corporation

issch.exe 3852 InstallShield Update Service Scheduler InstallShield Software Corporation

MOM.exe 3860 Catalyst Control Center: Monitoring program Advanced Micro Devices Inc.

CCC.exe 3180 Catalyst Control Centre: Host application ATI Technologies Inc.

winampa.exe 3900

TOTALCMD.EXE 6516 Total Commander 32 bit international version, file manager replacement for Windows C. Ghisler & Co.

WINWORD.EXE 48468 Microsoft Office Word Microsoft Corporation

splwow64.exe 48712 Thunking Spooler APIS from 32 to 64 Process Microsoft Corporation

pythonw.exe 108332

procexp.exe 110448 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

procexp64.exe 110464 3.58 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

Ymsgr_tray.exe 81548 Yahoo! Messenger Tray Yahoo! Inc.

Process: uTorrent.exe Pid: 85932

Type Name

Desktop \Default

Directory \KnownDlls

Directory \KnownDlls32

Directory \KnownDlls32

Directory \Sessions\1\BaseNamedObjects

File C:\Windows

File C:\Users\Stef\Desktop

File C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18000_none_5cdbaa5a083979cc

File C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18000_none_5cdbaa5a083979cc

File C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18000_none_5cdbaa5a083979cc

File \Device\KsecDD

File C:\Windows\Registration\R000000000006.clb

File \Device\Afd

File \Device\Afd

File \Device\Nsi

File \Device\Afd

File \Device\Afd

File \Device\Afd

File \Device\Afd

File \Device\Afd

File C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18000_none_5cdbaa5a083979cc

File C:\Windows\SysWOW64\en-US\msctf.dll.mui

Key HKLM

Key HKLM\SYSTEM\ControlSet001\Control\SESSION MANAGER

Key HKLM\SYSTEM\ControlSet001\Control\Nls\CustomLocale

Key HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer

Key HKCU

Key HKCU\Software\Classes\Wow6432Node

Key HKCU\Software\Classes\Wow6432Node

Key HKLM\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9

Key HKLM\SYSTEM\ControlSet001\Services\WinSock2\Parameters\NameSpace_Catalog5

Key HKLM\SYSTEM\ControlSet001\Control\Nls\Locale

Key HKLM\SYSTEM\ControlSet001\Control\Nls\Locale\Alternate Sorts

Key HKLM\SYSTEM\ControlSet001\Control\Nls\Language Groups

Mutant \Sessions\1\BaseNamedObjects\µTorrent4823DF041B09

Mutant \Sessions\1\BaseNamedObjects\MSCTF.Asm.MutexDefaultS-1-5-21-2972390042-693275902-3578685457-1000

Section \Sessions\1\BaseNamedObjects\windows_shell_global_counters

Section \BaseNamedObjects\__ComCatalogCache__

Section \BaseNamedObjects\__ComCatalogCache__

Thread uTorrent.exe(85932): 85936

Thread uTorrent.exe(85932): 85936

Thread uTorrent.exe(85932): 85952

Thread uTorrent.exe(85932): 85956

Thread uTorrent.exe(85932): 85980

Thread uTorrent.exe(85932): 85980

Thread uTorrent.exe(85932): 85956

Thread uTorrent.exe(85932): 110232

Thread uTorrent.exe(85932): 85956

Thread uTorrent.exe(85932): 110024

Thread uTorrent.exe(85932): 85980

WindowStation \Sessions\1\Windows\WindowStations\WinSta0

WindowStation \Sessions\1\Windows\WindowStations\WinSta0

and here is the hijacker log again, I remade it, maybe something went wrong the first time

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 2:30:25 PM, on 8/7/2008

Platform: Windows Vista SP1 (WinNT 6.00.1905)

MSIE: Internet Explorer v7.00 (7.00.6001.18000)

Boot mode: Normal

Running processes:

C:\Program Files (x86)\GIGABYTE\GBTUpd\RunUpd.exe

C:\Program Files (x86)\DAEMON Tools Pro\DTProAgent.exe

C:\Program Files (x86)\RALINK\Common\RaUI.exe

C:\Program Files (x86)\Avira\AntiVir PersonalEdition Classic\avgnt.exe

C:\Program Files (x86)\Norton Ghost\Agent\VProTray.exe

C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe

C:\Program Files (x86)\Winamp\winampa.exe

C:\Program Files (x86)\Mozilla Firefox\firefox.exe

C:\Program Files (x86)\TC UP\totalcmd.exe

C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE

C:\PROGRA~2\Yahoo!\MESSEN~1\ymsgr_tray.exe

C:\Program Files (x86)\uTorrent\uTorrent.exe

C:\Python25\pythonw.exe

C:\Windows\SysWOW64\NOTEPAD.EXE

C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll

F2 - REG:system.ini: UserInit=userinit.exe

O1 - Hosts: ::1 localhost

O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files (x86)\Yahoo!\Common\yiesrvc.dll

O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll

O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min

O4 - HKLM\..\Run: [Norton Ghost 14.0] "C:\Program Files (x86)\Norton Ghost\Agent\VProTray.exe"

O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe" -start

O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKLM\..\RunOnce: [GBTUpd] "C:\Program Files (x86)\GIGABYTE\GBTUpd\PreRun.exe"

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [iSUSPM Startup] C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup

O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro\DTProAgent.exe"

O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~2\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet

O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')

O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files (x86)\RALINK\Common\RaUI.exe

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files (x86)\Yahoo!\Common\yiesrvc.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL

O13 - Gopher Prefix:

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files (x86)\Yahoo!\Common\Yinsthelper.dll

O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir PersonalEdition Classic\sched.exe

O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir PersonalEdition Classic\avguard.exe

O23 - Service: Ati External Event Utility - Unknown owner - C:\Windows\system32\Ati2evxx.exe (file missing)

O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)

O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

O23 - Service: GEST Service for program management. (GEST Service) - Unknown owner - C:\Program Files (x86)\GIGABYTE\EnergySaver\GSvr.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Norton Ghost - Symantec Corporation - C:\Program Files (x86)\Norton Ghost\Agent\VProSvc.exe

O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

O23 - Service: SymSnapService - Symantec - C:\Program Files (x86)\Norton Ghost\Shared\Drivers\SymSnapServicex64.exe

O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--

End of file - 8007 bytes

Link to comment
Share on other sites

Here it is:

Process PID CPU Description Company Name

System Idle Process 0 98.37

Interrupts n/a Hardware Interrupts

DPCs n/a Deferred Procedure Calls

System 4

smss.exe 516

csrss.exe 584

wininit.exe 636

services.exe 692

svchost.exe 860

ehmsas.exe 3872 Media Center Media Status Aggregator Service Microsoft Corporation

svchost.exe 996

svchost.exe 260

Ati2evxx.exe 412

Ati2evxx.exe 1480

svchost.exe 532

audiodg.exe 564

svchost.exe 552

dwm.exe 1852 Desktop Window Manager Microsoft Corporation

svchost.exe 592

taskeng.exe 1904 Task Scheduler Engine Microsoft Corporation

taskeng.exe 1536

svchost.exe 1072

SLsvc.exe 1112

svchost.exe 1196

svchost.exe 1312

spoolsv.exe 1844

sched.exe 1892

svchost.exe 1980

avguard.exe 2180

GSvr.exe 2204

VProSvc.exe 2320

svchost.exe 2452

svchost.exe 2468

svchost.exe 2616

SearchIndexer.exe 2648

SearchProtocolHost.exe 113908

SearchFilterHost.exe 112604

msdtc.exe 1564

SymSnapServicex64.exe 3228

lsass.exe 704

lsm.exe 712

csrss.exe 656

winlogon.exe 924

explorer.exe 1916 Windows Explorer Microsoft Corporation

MSASCui.exe 3512 Windows Defender User Interface Microsoft Corporation

RAVCpl64.exe 3524 HD Audio Control Panel Realtek Semiconductor

sidebar.exe 3548 Windows Sidebar Microsoft Corporation

DTProAgent.exe 3664 DAEMON Tools Pro Tray Application DT Soft Ltd.

ehtray.exe 3740 Media Center Tray Applet Microsoft Corporation

RaUI.exe 3800 Ralink Wireless Utility Ralink Technology, Corp.

firefox.exe 4180 0.39 Firefox Mozilla Corporation

uTorrent.exe 85932 µTorrent BitTorrent, Inc.

RunUpd.exe 1548

avgnt.exe 3816 Antivirus System Tray Tool Avira GmbH

VProTray.exe 3832 Tray Application Symantec Corporation

issch.exe 3852 InstallShield Update Service Scheduler InstallShield Software Corporation

MOM.exe 3860 Catalyst Control Center: Monitoring program Advanced Micro Devices Inc.

CCC.exe 3180 Catalyst Control Centre: Host application ATI Technologies Inc.

winampa.exe 3900

TOTALCMD.EXE 6516 Total Commander 32 bit international version, file manager replacement for Windows C. Ghisler & Co.

WINWORD.EXE 48468 Microsoft Office Word Microsoft Corporation

splwow64.exe 48712 Thunking Spooler APIS from 32 to 64 Process Microsoft Corporation

procexp.exe 114604 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

procexp64.exe 114612 1.16 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

Ymsgr_tray.exe 81548 Yahoo! Messenger Tray Yahoo! Inc.

Process: uTorrent.exe Pid: 85932

Name Description Company Name Version

ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 6.00.6001.18000

CLBCatQ.DLL COM+ Configuration Catalog Microsoft Corporation 2001.12.6931.18000

COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.10.6001.18000

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.00.6001.18000

dhcpcsvc.DLL DHCP Client Service Microsoft Corporation 6.00.6001.18000

dhcpcsvc6.DLL DHCPv6 Client Microsoft Corporation 6.00.6001.18000

DNSAPI.dll DNS Client API DLL Microsoft Corporation 6.00.6001.18000

FirewallAPI.dll Windows Firewall API Microsoft Corporation 6.00.6001.18000

GDI32.dll GDI Client DLL Microsoft Corporation 6.00.6001.18023

IMM32.DLL Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.00.6001.18000

Iphlpapi.dll IP Helper API Microsoft Corporation 6.00.6001.18000

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 6.00.6001.18000

locale.nls

locale.nls

LPK.DLL Language Pack Microsoft Corporation 6.00.6001.18000

MSCTF.dll MSCTF Server DLL Microsoft Corporation 6.00.6001.18000

msctf.dll.mui MSCTF Server DLL Microsoft Corporation 6.00.6000.16386

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.00.6001.18000

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 6.00.6001.18000

napinsp.dll E-mail Naming Shim Provider Microsoft Corporation 6.00.6001.18000

NLAapi.dll Network Location Awareness 2 Microsoft Corporation 6.00.6001.18000

npmproxy.dll Network List Manager Proxy Microsoft Corporation 6.00.6000.16386

NSI.dll NSI User-mode interface DLL Microsoft Corporation 6.00.6001.18000

ntdll.dll NT Layer DLL Microsoft Corporation 6.00.6001.18000

ntdll.dll NT Layer DLL Microsoft Corporation 6.00.6001.18000

ole32.dll Microsoft OLE for Windows Microsoft Corporation 6.00.6001.18000

oleaut32.dll Microsoft Corporation 6.00.6001.18000

pnrpnsp.dll PNRP Name Space Provider Microsoft Corporation 6.00.6001.18000

PSAPI.DLL Process Status Helper Microsoft Corporation 6.00.6000.16386

R000000000006.clb

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.00.6000.16386

RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 6.00.6001.18051

rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.00.6001.18000

Secur32.dll Security Support Provider Interface Microsoft Corporation 6.00.6001.18000

SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.00.6001.18062

shfolder.dll Shell Folder Service Microsoft Corporation 6.00.6000.16386

SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.00.6001.18000

USER32.dll Multi-User Windows USER API Client DLL Microsoft Corporation 6.00.6001.18000

USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.6001.18000

uTorrent.exe µTorrent BitTorrent, Inc. 1.08.0000.11705

uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.00.6001.18000

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 6.00.6001.18000

WINNSI.DLL Network Store Information RPC interface Microsoft Corporation 6.00.6001.18000

winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 6.00.6000.16386

WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 6.00.6001.18000

wow64.dll Win32 Emulation on NT64 Microsoft Corporation 6.00.6001.18000

wow64cpu.dll AMD64 Wow64 CPU Microsoft Corporation 6.00.6001.18000

wow64win.dll Wow64 Console and Win32 API Logging Microsoft Corporation 6.00.6001.18000

WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 6.00.6001.18000

wship6.dll Winsock2 Helper DLL (TL/IPv6) Microsoft Corporation 6.00.6001.18000

wshtcpip.dll Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation 6.00.6001.18000

I've updated everything to the latest version: my router, my wireless card and the ralink software and still the same problem. Please help me because I'm starting to run out on ideas on what to do.

Link to comment
Share on other sites

Well the manufacturer's website doesn't have 64bit Vista drivers, the manual/specification doesn't say which RALink chipset they use :/

Have you tried with say, LESS Ctrl-G settings? Like, maybe start @ xx/512 and INCREASE from there? It's a good thing to first check if it can even support LOW networking usage.. you may have got a bad card...

Link to comment
Share on other sites

Solved the problem finally! It was the edimax wireless 7128g card. It took me about an hour of non stop talking to their support to realize (both me and them) that their drivers were not supporting the compatibility between vista 64 and torrent clients in general. They will solve the problem soon now that they know it's serious. I made a LAN connection between the router and my PC and everything works fine now. Thank you very much for your support.

Link to comment
Share on other sites

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...