alchemist.zim Posted September 11, 2008 Report Share Posted September 11, 2008 I'm taking a new look at this problem that many people seem to be having...I've been using zonealarm for the last 3 years, and utorrent for the past 2 in XP...never (AND I DO MEAN NEVER) had a problem at all with utorrent or zone alarm...recently got a new laptop which came with Vista. I was unable to find all the drivers for XP so I'm stuck with Vista. I swear by zone alarm, and utorrent. Both programs do their jobs perfectly with minimal fuss. Now since I've been using Vista utorrent will not close properly. The icon will disappear for the try but the UI will still be on the screen. I cannot close utorrent using the task manager, or pskill. Here is my question is there anyone here using Vista, zonealarm, and utorrent and are not having a problem???Also to the mods...I have 2 DMP files that I can upload if you want to take a look at them, both are after utorrent crashed, but still running, if there is any other information that you might need just let me know any help or ideas are appreciated thanksLogfile of Trend Micro HijackThis v2.0.2Scan saved at 9:41:23 PM, on 9/10/2008Platform: Windows Vista SP1 (WinNT 6.00.1905)MSIE: Internet Explorer v7.00 (7.00.6001.18000)Boot mode: NormalRunning processes:C:\Windows\system32\taskeng.exeC:\Windows\Explorer.EXEC:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exeC:\Program Files\Apoint\Apoint.exeC:\Program Files\Sony\ISB Utility\ISBMgr.exeC:\Windows\WindowsMobile\wmdSync.exeC:\Program Files\VMware\VMware Workstation\vmware-tray.exeC:\Program Files\VMware\VMware Workstation\hqtray.exeC:\Windows\System32\rundll32.exeC:\Program Files\Apoint\ApMsgFwd.exeC:\Windows\System32\rundll32.exeC:\Program Files\Apoint\Apntex.exeC:\Program Files\Windows Media Player\wmpnscfg.exeC:\Windows\system32\wbem\unsecapp.exeC:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Maxthon2\Maxthon.exeZ:\Softwarez\ZY-tools\HiJackThis.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.localR0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhostO2 - BHO: (no name) - {423499C6-2D7A-07AE-0211-5F00B8CD8D9E} - (no file)O2 - BHO: (no name) - {5D3F11B3-7CCE-4B33-AB97-D66D565AE499} - (no file)O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dllO2 - BHO: (no name) - {B6479578-D655-46C4-909A-4A8EB0ADAE5A} - (no file)O2 - BHO: (no name) - {EDCB994E-8528-4160-9AA2-666A5CDCF263} - (no file)O2 - BHO: (no name) - {FC183704-7163-46B9-9509-D7E2E73790B8} - (no file)O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exeO4 - HKLM\..\Run: [ISBMgr.exe] "C:\Program Files\Sony\ISB Utility\ISBMgr.exe"O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdSync.exeO4 - HKLM\..\Run: [vmware-tray] C:\Program Files\VMware\VMware Workstation\vmware-tray.exeO4 - HKLM\..\Run: [VMware hqtray] "C:\Program Files\VMware\VMware Workstation\hqtray.exe"O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStartO4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInitO4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')O4 - Global Startup: Bluetooth.lnk = ?O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions presentO6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel presentO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htmO8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htmO9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dllO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLLO9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htmO9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htmO13 - Gopher Prefix: O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exeO23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exeO23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper\DkService.exeO23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exeO23 - Service: OSCM Utility Service - Sprint Spectrum, L.L.C - C:\Program Files\Novatel Wireless\Sprint\Sprint PCS Connection Manager\OSCMUtilityService.exeO23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\Windows\system32\stacsv.exeO23 - Service: VMware Agent Service (ufad-ws60) - VMware, Inc. - C:\Program Files\VMware\VMware Workstation\vmware-ufad.exeO23 - Service: uvnc_service - UltraVNC - C:\Program Files\UltraVNC\WinVNC.exeO23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files\Sony\VAIO Event Service\VESMgr.exeO23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files\VMware\VMware Workstation\vmware-authd.exeO23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\system32\vmnetdhcp.exeO23 - Service: VMware Virtual Mount Manager Extended (vmount2) - VMware, Inc. - C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vmount2.exeO23 - Service: VMware NAT Service - VMware, Inc. - C:\Windows\system32\vmnat.exeO23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Windows\System32\ZoneLabs\vsmon.exeO23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe--End of file - 6391 bytesProcess list saved on 10:33:13 PM, on 9/10/2008Platform: Windows Vista SP1 (WinNT 6.00.1905)[pid] [full path to filename] [file version] [company name]1864 C:\Windows\system32\taskeng.exe 6.0.6001.18000 Microsoft Corporation2044 C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe 3.6.0.18140 Sony Corporation1972 C:\Windows\Explorer.EXE 6.0.6001.18000 Microsoft Corporation2412 C:\Program Files\Apoint\Apoint.exe 7.0.7.152 Alps Electric Co., Ltd.2420 C:\Program Files\Sony\ISB Utility\ISBMgr.exe 2.2.0.6110 Sony Corporation2436 C:\Windows\WindowsMobile\wmdSync.exe 6.0.6000.16386 Microsoft Corporation2444 C:\Program Files\VMware\VMware Workstation\vmware-tray.exe 6.0.2658.0 VMware, Inc.2452 C:\Program Files\VMware\VMware Workstation\hqtray.exe 6.0.2658.0 VMware, Inc.2492 C:\Windows\System32\rundll32.exe 6.0.6000.16386 Microsoft Corporation2548 C:\Program Files\Apoint\ApMsgFwd.exe 7.0.0.18 Alps Electric Co., Ltd.3028 C:\Windows\System32\rundll32.exe 6.0.6000.16386 Microsoft Corporation3060 C:\Program Files\Apoint\Apntex.exe 7.0.1.26 Alps Electric Co., Ltd.3164 C:\Program Files\Windows Media Player\wmpnscfg.exe 11.0.6001.7000 Microsoft Corporation3252 C:\Windows\system32\wbem\unsecapp.exe 6.0.6001.18000 Microsoft Corporation3720 C:\Program Files\Internet Explorer\iexplore.exe 7.0.6001.18000 Microsoft Corporation2900 C:\Program Files\Maxthon2\Maxthon.exe 2.1.3.2430 Maxthon International ltd.2408 C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe 8.0.15.0 Check Point Software Technologies LTD2012 C:\Windows\system32\NOTEPAD.EXE 6.0.6001.18000 Microsoft Corporation3420 Z:\Softwarez\ZY-tools\HiJackThis.exe 2.0.0.2 Trend Micro Inc.DLLs loaded by process C:\Windows\system32\taskeng.exe:[full path to filename] [file version] [company name]C:\Windows\system32\ntdll.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\kernel32.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\ADVAPI32.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\RPCRT4.dll 6.0.6001.18051 Microsoft CorporationC:\Windows\system32\USER32.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\GDI32.dll 6.0.6001.18023 Microsoft CorporationC:\Windows\system32\msvcrt.dll 7.0.6001.18000 Microsoft CorporationC:\Windows\system32\SHELL32.dll 6.0.6001.18062 Microsoft CorporationC:\Windows\system32\SHLWAPI.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\ole32.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\OLEAUT32.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\Secur32.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\XmlLite.dll 1.2.1009.0 Microsoft CorporationC:\Windows\system32\MPR.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\IMM32.DLL 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\MSCTF.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\LPK.DLL 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\USP10.dll 1.626.6001.18000 Microsoft CorporationC:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18000_none_5cdbaa5a083979cc\comctl32.dll 6.10.6001.18000 Microsoft CorporationC:\Windows\system32\rsaenh.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\CLBCatQ.DLL 2001.12.6931.18000 Microsoft CorporationC:\Windows\system32\tschannel.dll 6.0.6000.16386 Microsoft CorporationC:\Windows\System32\HotStartUserAgent.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\System32\slc.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\MsCtfMonitor.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\MSUTB.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\dwmapi.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\WTSAPI32.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\System32\PlaySndSrv.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\System32\WINMM.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\System32\OLEACC.dll 4.2.5406.0 Microsoft CorporationC:\Windows\system32\uxtheme.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\System32\TMM.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\SETUPAPI.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\System32\POWRPROF.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\System32\d3d9.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\System32\VERSION.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\System32\d3d8thk.dll 6.0.6000.16386 Microsoft CorporationC:\Windows\system32\NTMARTA.DLL 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\WLDAP32.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\WS2_32.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\NSI.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\PSAPI.DLL 6.0.6000.16386 Microsoft CorporationC:\Windows\system32\SAMLIB.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\WINTRUST.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\CRYPT32.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\MSASN1.dll 6.0.6000.16386 Microsoft CorporationC:\Windows\system32\USERENV.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\imagehlp.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\nvapi.dll 7.15.11.128 NVIDIA CorporationC:\Windows\System32\QAgent.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\System32\fwpuclnt.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\System32\QUtil.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\System32\wevtapi.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\apphelp.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\wdmaud.drv 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\ksuser.dll 6.0.6000.16386 Microsoft CorporationC:\Windows\system32\MMDevAPI.DLL 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\AVRT.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\AUDIOSES.DLL 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\audioeng.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\msacm32.drv 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\MSACM32.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\midimap.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\WINSTA.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\dimsjob.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\ncrypt.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\GPAPI.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\pautoenr.dll 6.0.6000.16386 Microsoft CorporationC:\Windows\system32\NETAPI32.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\certcli.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\ATL.DLL 3.5.2284.0 Microsoft CorporationC:\Windows\system32\WININET.dll 7.0.6001.18099 Microsoft CorporationC:\Windows\system32\Normaliz.dll 6.0.6000.16386 Microsoft CorporationC:\Windows\system32\iertutil.dll 7.0.6001.18000 Microsoft CorporationC:\Windows\system32\certenroll.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\NTDSAPI.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\DNSAPI.dll 6.0.6001.18000 Microsoft CorporationC:\Windows\system32\WinSCard.dll 6.0.6001.18000 Microsoft CorporationSystem InformationComputer System Model: VGN-FZ290E (Notebook) Manufacturer: Sony Corporation Version %s: A222ADHVAdvanced Power Management AC Power Status: Online Battery Charge Status: HighProcessor Model: 2x Intel(R) Core(TM)2 Duo CPU T7250 @ 2.00GHz Socket/Slot: N/A (None) Frequency: 2000 MHz FSB Speed: 200 MHz Signature: GenuineIntel Vendor: Intel Corporation L1 Cache: 64 KB L2 Cache: 2048 KB L3 Cache: 0 KBMainboard Model: VAIOSystem BIOS Vendor: Phoenix Technologies LTD Version %s: R1120J7 Date: 07/04/2007 Size: 1024 KBVideo System Monitor: Generic PnP Monitor Monitor: Generic PnP Monitor Video Card: @oem6.inf,%nvidia_g86.dev_0426.1%;NVIDIA GeForce 8400M GT Screen Resolution: 1280x800 32 bitPhysical Storage Device CD-ROM/DVD: PIONEER DVD-RW DVR-K17 ATA Device Hard Disk: FUJITSU MHX2250BT Hard Disk: MemoryStick0 Device Hard Disk: SD1 Device Hard Disk: WD 2500BEV External USB Device Hard Disk: USB Flash Memory USB DeviceLogical Storage Device System (C:): 40946 MB (23059 MB Free) NTFS Archive (D:): 197525 MB (27110 MB Free) NTFS Alchemy Muzic (H:): 238472 MB (141850 MB Free) NTFSPeripherals Mouse: Alps Pointing-device for VAIO Mouse: HID-compliant mouse Mouse: HID-compliant mouse Keyboard: HID Keyboard Device Keyboard: Standard PS/2 KeyboardCommunication Device(s) Modem: HDAUDIO SoftV92 Data Fax Modem with SmartCP Network Card 1: Intel(R) Wireless WiFi Link 4965AGN Network Card 2: Marvell Yukon 88E8036 PCI-E Fast Ethernet Controller Network Card 3: Microsoft Windows Mobile Remote AdapterOperating System(s) Windows Family: Professional Service Pack: Service Pack 1 Version Number: 6.0 (Build 6001) Link to comment Share on other sites More sharing options...
Firon Posted September 11, 2008 Report Share Posted September 11, 2008 Uninstall Zone Alarm. It's a ZA problem that only appears to happen on Vista. Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.