Jump to content

Error: Acces Denied (Ultima plz help me with the follow up)


Recommended Posts


I wrote some couple of days ago, my main problems is i'm getting the access denied error. Your advise was to download the program hijackthis and process explorer, so I did, here are the reports....

(If you want to see our previous conversation, my post goes by the name "Error: Access Denied" by Chilinjob/General/Yesterday 21:00:27)

Process Explorer.exe report

Process PID CPU Description Company Name

System Idle Process 0 95.20

Interrupts n/a Hardware Interrupts

DPCs n/a Deferred Procedure Calls

System 4

smss.exe 468

csrss.exe 544

wininit.exe 592

services.exe 636

svchost.exe 852 1.15

mobsync.exe 3176 Microsoft Sync Center Microsoft Corporation

WmiPrvSE.exe 3660

WmiPrvSE.exe 4832

svchost.exe 912

svchost.exe 1048 0.38

audiodg.exe 1212

svchost.exe 1080

dwm.exe 1720 Desktop Window Manager Microsoft Corporation

WUDFHost.exe 2796

svchost.exe 1092 0.38

taskeng.exe 1936 Task Scheduler Engine Microsoft Corporation

taskeng.exe 2132

SLsvc.exe 1244

svchost.exe 1292

svchost.exe 1452

aawservice.exe 1640

spoolsv.exe 1904

CCSVCHST.EXE 1928 1.15

svchost.exe 588

agrsmsvc.exe 2248

AppleMobileDeviceService.exe 2296

mDNSResponder.exe 2316

svchost.exe 2372


svchost.exe 2480

svchost.exe 2532

SearchIndexer.exe 2592

wmpnetwk.exe 4056

iPodService.exe 3040

AluSchedulerSvc.exe 5524

symlcsvc.exe 4568

lsass.exe 652

lsm.exe 664

csrss.exe 600

winlogon.exe 708

explorer.exe 1764 Windows Explorer Microsoft Corporation

rundll32.exe 3360 Windows host process (Rundll32) Microsoft Corporation

RtHDVCpl.exe 3412 HD Audio Control Panel Realtek Semiconductor

ButtonMonitor.exe 3464 ButtonMonitor

jusched.exe 3540 Java Platform SE binary Sun Microsystems, Inc.

Wallpaper.exe 3576 Desktop Wallpaper Changer James Garton

iTunesHelper.exe 3632 iTunesHelper Module Apple Inc.

GoogleUpdate.exe 3668 Google Installer Google Inc.

wmpnscfg.exe 3692 Windows Media Player Network Sharing Service Configuration Application Microsoft Corporation

TeaTimer.exe 3728 System settings protector Safer Networking Limited

Belkinwcui.exe 3784 Belkin Wireless Client Utility Belkin

bigfix.exe 3820 0.38 BigFix Client Application BigFix Inc.

YahooWidgets.exe 3840 Yahoo! Widgets Yahoo! Inc.

YahooWidgets.exe 3644 Yahoo! Widgets Yahoo! Inc.

YahooWidgets.exe 3268 0.77 Yahoo! Widgets Yahoo! Inc.

YahooWidgets.exe 3164 Yahoo! Widgets Yahoo! Inc.

YahooWidgets.exe 2880 Yahoo! Widgets Yahoo! Inc.

YahooWidgets.exe 3304 Yahoo! Widgets Yahoo! Inc.

YahooWidgets.exe 3976 Yahoo! Widgets Yahoo! Inc.

YahooWidgets.exe 3476 Yahoo! Widgets Yahoo! Inc.

YahooWidgets.exe 3060 Yahoo! Widgets Yahoo! Inc.

procexp.exe 5916 0.38 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

chrome.exe 6008 Google Chrome Google Inc.

chrome.exe 5272 Google Chrome Google Inc.

uTorrent.exe 2832 µTorrent BitTorrent, Inc.

CCSVCHST.EXE 3220 Symantec Service Framework Symantec Corporation

rundll32.exe 3424 Windows host process (Rundll32) Microsoft Corporation

Process: uTorrent.exe Pid: 2832

Name Description Company Name Version

ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 6.00.6001.18000

ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.05.2284.0000

CLBCatQ.DLL COM+ Configuration Catalog Microsoft Corporation 2001.12.6931.18000

COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.10.6001.18000

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.00.6001.18000

dhcpcsvc.DLL DHCP Client Service Microsoft Corporation 6.00.6001.18000

dhcpcsvc6.DLL DHCPv6 Client Microsoft Corporation 6.00.6001.18000

DnsApi.dll DNS Client API DLL Microsoft Corporation 6.00.6001.18000

FirewallAPI.dll Windows Firewall API Microsoft Corporation 6.00.6001.18000

GDI32.dll GDI Client DLL Microsoft Corporation 6.00.6001.18023

GPAPI.dll Group Policy Client API Microsoft Corporation 6.00.6001.18000

hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 6.00.6001.18000

iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 7.00.6001.18000

IMM32.DLL Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.00.6001.18000

Iphlpapi.dll IP Helper API Microsoft Corporation 6.00.6001.18000

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 6.00.6001.18000



LPK.DLL Language Pack Microsoft Corporation 6.00.6001.18000

mdnsNSP.dll Bonjour Namespace Provider Apple Inc. 1.00.0005.0011

MSCTF.dll MSCTF Server DLL Microsoft Corporation 6.00.6001.18000

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.00.6001.18000

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 6.00.6001.18000

msxml3.dll MSXML 3.0 SP10 Microsoft Corporation 8.100.1043.0000

msxml3r.dll XML Resources Microsoft Corporation 8.20.8730.0001

napinsp.dll E-mail Naming Shim Provider Microsoft Corporation 6.00.6001.18000

NETAPI32.dll Net Win32 API DLL Microsoft Corporation 6.00.6001.18000

netshell.dll Network Connections Shell Microsoft Corporation 6.00.6001.18000

NLAapi.dll Network Location Awareness 2 Microsoft Corporation 6.00.6001.18000

npmproxy.dll Network List Manager Proxy Microsoft Corporation 6.00.6000.16386

NSI.dll NSI User-mode interface DLL Microsoft Corporation 6.00.6001.18000

ntdll.dll NT Layer DLL Microsoft Corporation 6.00.6001.18000

ole32.dll Microsoft OLE for Windows Microsoft Corporation 6.00.6001.18000

oleaut32.dll Microsoft Corporation 6.00.6001.18000

pnrpnsp.dll PNRP Name Space Provider Microsoft Corporation 6.00.6001.18000

PSAPI.DLL Process Status Helper Microsoft Corporation 6.00.6000.16386

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.00.6000.16386

RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 6.00.6001.18051

rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.00.6001.18000

Secur32.dll Security Support Provider Interface Microsoft Corporation 6.00.6001.18000

SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.00.6001.18062

shfolder.dll Shell Folder Service Microsoft Corporation 6.00.6000.16386

SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.00.6001.18000

slc.dll Software Licensing Client Dll Microsoft Corporation 6.00.6001.18000

SSDPAPI.dll SSDP Client API DLL Microsoft Corporation 6.00.6000.16386

SXS.DLL Fusion 2.5 Microsoft Corporation 6.00.6001.18000

upnp.dll UPnP Control Point API Microsoft Corporation 6.00.6001.18000

urlmon.dll OLE32 Extensions for Win32 Microsoft Corporation 7.00.6001.18099

USER32.dll Multi-User Windows USER API Client DLL Microsoft Corporation 6.00.6001.18000

USERENV.dll Userenv Microsoft Corporation 6.00.6001.18000

USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.6001.18000

uTorrent.exe µTorrent BitTorrent, Inc. 1.08.0001.11903

uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.00.6001.18000

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 6.00.6001.18000

WINHTTP.dll Windows HTTP Services Microsoft Corporation 6.00.6001.18000

WINNSI.DLL Network Store Information RPC interface Microsoft Corporation 6.00.6001.18000

winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 6.00.6000.16386

WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 6.00.6001.18000

WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 6.00.6001.18000

wship6.dll Winsock2 Helper DLL (TL/IPv6) Microsoft Corporation 6.00.6001.18000

wshtcpip.dll Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation 6.00.6001.18000

Hijackthis report:

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 10:45:02 PM, on 9/9/2008

Platform: Windows Vista SP1 (WinNT 6.00.1905)

MSIE: Internet Explorer v7.00 (7.00.6001.18000)

Boot mode: Normal

Running processes:





C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe




C:\Program Files\IOI\ButtonMonitor.exe

C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe

C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe

C:\Program Files\Wallpaper Master\Wallpaper.exe

C:\Program Files\iTunes\iTunesHelper.exe


C:\Program Files\Windows Media Player\wmpnscfg.exe

C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

C:\Program Files\Belkin\USB F5D7050\Wireless Utility\Belkinwcui.exe

C:\Program Files\BigFix\bigfix.exe

C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe

C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe

C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe

C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe

C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe

C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe

C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe

C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe

C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe


R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gateway.com/g/startpage.html?Ch=Retail&SubCH=nofound&Br=GTW&Loc=ENG_US&Sys=DTP&M=GT5674

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.espn.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gateway.com/g/startpage.html?Ch=Retail&SubCH=nofound&Br=GTW&Loc=ENG_US&Sys=DTP&M=GT5674

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.gateway.com/g/sidepanel.html?Ch=Retail&SubCH=nofound&Br=GTW&Loc=ENG_US&Sys=DTP&M=GT5674

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O1 - Hosts: ::1 localhost

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\coIEPlg.dll

O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (file missing)

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll

O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\windows\system32\BAE.dll

O3 - Toolbar: Show Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\CoIEPlg.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll

O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"

O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

O4 - HKLM\..\Run: [buttonMonitor] C:\Program Files\IOI\ButtonMonitor.exe

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe"

O4 - HKLM\..\Run: [NapsterShell] C:\Program Files\Napster\napster.exe /systray

O4 - HKLM\..\Run: [WallpaperChanger] C:\Program Files\Wallpaper Master\Wallpaper.exe -startup

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe

O4 - HKCU\..\Run: [Google Update] "C:\Users\Pedro\AppData\Local\Google\Update\GoogleUpdate.exe" /c

O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

O4 - Startup: Yahoo! Widgets.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe

O4 - Global Startup: Belkin Wireless USB Utility.lnk = C:\Program Files\Belkin\USB F5D7050\Wireless Utility\Belkinwcui.exe

O4 - Global Startup: BigFix.lnk = C:\Program Files\BigFix\bigfix.exe

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

O13 - Gopher Prefix:

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll

O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe

O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe

O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe

O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe

O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe

O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe

O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\Gateway Games\Gateway Game Console\GameConsoleService.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE

O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe

O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS

O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe


End of file - 8634 bytes

Link to comment
Share on other sites

You're using an old 1.8, update please ;)

As far as the previous post, you could have replied in your old thread instead of making a new one. . . You're on vista, where are you trying to save your files?

I also see iTunes which might cause problems... but I don't know without verification of your save path. ALSO, that's alot of Yahoo Widgets...

Link to comment
Share on other sites

You're using an old 1.8, update please

As far as the previous post, you could have replied in your old thread instead of making a new one. . . You're on vista, where are you trying to save your files?

I also see iTunes which might cause problems... but I don't know without verification of your save path. ALSO, that's alot of Yahoo Widgets...

I. Ok, During the process of removing the 1.8 version I saw that the version I've installed was in fact the lattest version (1.8.1). If a newer version is available plz let me know, if not, I think we can discard that option.

II. If I download a torrent from any page, the file goes straight to my desktop, then I open the file from desktop and the program instantly sends the file to "my downloadas" C:/computer/user/pedro/downlodas. (The view is not in thumbnail mode)

III. Talking about iTunes, maybe we can discard that option, because the problem started long before the error msg.

IV. ¿What was the purpose of doing the Hijackthis and Process Explorer scan?, ¿the origin of the error, can it be viewed from there?¿If so, what could be done?

V. And taking the Widgets in consideration, ¿can that be a factor?, if not, ¿why mention it?

I really, really want this program to work, your help will be appreciated........ A lot

Link to comment
Share on other sites

11903 may be the latest version on auto-update but it's not the latest version. They've resolved some... networking stack problems with Windows in the post 12xxx versions.

Considering the reasons for Access Denied (usually a program tries to access the files you are telling uTorrent to download, or you're trying to save somewhere you don't have access) that's why I mention iTunes and Yahoo Widgets, the first because I know it likes to retag files which causes corruption and unless you tell it NOT to scan your folder for uTorrent downloads it's high possibility that's it. Since you ARE saving to the default \Users directory how about making an exception for the time being for your \downloadas folder in iTunes. I do also know that Yahoo Toolbar creates headaches so I was making sure you knew you had so many copies of the widget application running.

Regarding IV:, both logfiles are mentioned at the bottom of the troubleshooting thread people reference around here http://forum.utorrent.com/viewtopic.php?id=15992 with different purpose, HJT tells others what you have installed and possibly conflicting a bit better than just looking and assuming different factors from http://utorrent.com/faq.php#Incompatible_software whereas PE DLL list on uTorrent.exe tells others exactly what is injected/running inside uTorrent. Many times problems with uTorrent stem from the previously mentioned incompatible software "installing" itself into uTorrent. Most often with either of these logfiles people who report errors have some kind of rogue software or in extreme cases mal/ad/bad-ware installed which leads to these problems.

And finally regarding V, I've never used it so I don't know... does it do "alerts" on files/folders?

Link to comment
Share on other sites

Hey, I think I fix the problem... I'm not going to celebrate, but here's what i did

I. I got rid of the 1.8 build and downloaded the latest version (build 12154)

II. I think when vista downloads a torrent or any file it send's the file to a location that denies access to Utorrent. Excuse my lack of technical language....

III. I didn't do anything with i tunes or the dll, I simply changed the default directory that the browser was sending the file, and put in my desktop, a location that i think vista doesn't mind granting access to, but if the file go to a location in any of "my computer" locations vista automatically denies access to the file....

Link to comment
Share on other sites


This topic is now archived and is closed to further replies.

  • Create New...