Jump to content

Large amount of CFC errors since 1.8 upgrade


Tympanicman

Recommended Posts

  • 4 weeks later...

Is this the correct info?

Process PID CPU Description Company Name

System Idle Process 0 77.08

Interrupts n/a 9.25 Hardware Interrupts

DPCs n/a 3.08 Deferred Procedure Calls

System 4

smss.exe 676 Windows Session Manager Microsoft Corporation

csrss.exe 748 Client Server Runtime Process Microsoft Corporation

wininit.exe 832 Windows Start-Up Application Microsoft Corporation

services.exe 888 Services and Controller app Microsoft Corporation

svchost.exe 1144 Host Process for Windows Services Microsoft Corporation

WmiPrvSE.exe 3276 WMI Provider Host Microsoft Corporation

mobsync.exe 3688 Microsoft Sync Center Microsoft Corporation

unsecapp.exe 4032 Sink to receive asynchronous callbacks for WMI client application Microsoft Corporation

ehmsas.exe 1524 Media Center Media Status Aggregator Service Microsoft Corporation

WmdHost.exe 5804 Windows Mobile Device Center Sync Host Microsoft Corporation

OUTLOOK.EXE 2524 Microsoft Office Outlook Microsoft Corporation

svchost.exe 1208 Host Process for Windows Services Microsoft Corporation

svchost.exe 1240 Host Process for Windows Services Microsoft Corporation

svchost.exe 1344 Host Process for Windows Services Microsoft Corporation

audiodg.exe 1512 Windows Audio Device Graph Isolation Microsoft Corporation

svchost.exe 1420 Host Process for Windows Services Microsoft Corporation

WUDFHost.exe 2456 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation

dwm.exe 3692 Desktop Window Manager Microsoft Corporation

WUDFHost.exe 1368 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation

svchost.exe 1436 Host Process for Windows Services Microsoft Corporation

taskeng.exe 1700 Task Scheduler Engine Microsoft Corporation

taskeng.exe 3560 Task Scheduler Engine Microsoft Corporation

taskeng.exe 4284 Task Scheduler Engine Microsoft Corporation

SLsvc.exe 1548 Microsoft Software Licensing Service Microsoft Corporation

svchost.exe 1588 Host Process for Windows Services Microsoft Corporation

svchost.exe 1716 Host Process for Windows Services Microsoft Corporation

spoolsv.exe 1884 Spooler SubSystem App Microsoft Corporation

svchost.exe 1908 Host Process for Windows Services Microsoft Corporation

schedul2.exe 1044 Acronis Scheduler 2 Acronis

AppleMobileDeviceService.exe 592 Apple Mobile Device Service Apple Inc.

avgwdsvc.exe 992 AVG Watchdog Service AVG Technologies CZ, s.r.o.

avgrsx.exe 3844 AVG Resident Shield Service AVG Technologies CZ, s.r.o.

svchost.exe 1500 Host Process for Windows Services Microsoft Corporation

svchost.exe 1944 Host Process for Windows Services Microsoft Corporation

StarWindServiceAE.exe 708 StarWind iSCSI Target (Alcohol Edition) Rocket Division Software

svchost.exe 1808 Host Process for Windows Services Microsoft Corporation

TrueImageTryStartService.exe 2160

svchost.exe 2348 Host Process for Windows Services Microsoft Corporation

SearchIndexer.exe 2376 Microsoft Windows Search Indexer Microsoft Corporation

svchost.exe 3100 Host Process for Windows Services Microsoft Corporation

wmpnetwk.exe 3748 Windows Media Player Network Sharing Service Microsoft Corporation

iPodService.exe 5600 iPodService Module Apple Inc.

lsass.exe 912 Local Security Authority Process Microsoft Corporation

lsm.exe 920 Local Session Manager Service Microsoft Corporation

csrss.exe 840 Client Server Runtime Process Microsoft Corporation

winlogon.exe 932 Windows Logon Application Microsoft Corporation

explorer.exe 4012 Windows Explorer Microsoft Corporation

MSASCui.exe 2812 Windows Defender User Interface Microsoft Corporation

jusched.exe 2828 Java Platform SE binary Sun Microsystems, Inc.

wmdc.exe 2820 Windows Mobile Device Center Microsoft Corporation

TrueImageMonitor.exe 2936 Acronis True Image Monitor Acronis

TimounterMonitor.exe 2952 Monitor for Acronis True Image Backup Archive Explorer Acronis

schedhlp.exe 2976 Acronis Scheduler Helper Acronis

avgtray.exe 3020 AVG Tray Monitor AVG Technologies CZ, s.r.o.

SOUNDMAN.EXE 2696 Realtek Sound Manager Realtek Semiconductor Corp.

rundll32.exe 3136 Windows host process (Rundll32) Microsoft Corporation

OpenDNS Updater.exe 3176 OpenDNS Updater for Windows OpenDNS

iTunesHelper.exe 3252 iTunesHelper Module Apple Inc.

sidebar.exe 3448 7.71 Windows Sidebar Microsoft Corporation

sidebar.exe 4924 Windows Sidebar Microsoft Corporation

wmpnscfg.exe 3468 Windows Media Player Network Sharing Service Configuration Application Microsoft Corporation

ehtray.exe 3664 Media Center Tray Applet Microsoft Corporation

RocketDock.exe 3736

firefox.exe 1064 1.54 Firefox Mozilla Corporation

uTorrent.exe 5144 µTorrent BitTorrent, Inc.

myiHome-server.exe 2040

hamachi.exe 3792 Hamachi Client LogMeIn Inc.

GROOVE.EXE 3004 Microsoft Office Groove Microsoft Corporation

winvnc.exe 3240 VNC server for Win32 UltraVNC

rundll32.exe 3184 Windows host process (Rundll32) Microsoft Corporation

procexp.exe 4944 1.54 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

Process: uTorrent.exe Pid: 5144

Name Description Company Name Version

ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 6.00.6001.18000

ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.05.2284.0000

avgrsstx.dll AVG Resident Shield Starter AVG Technologies CZ, s.r.o. 8.00.0000.0134

CLBCatQ.DLL COM+ Configuration Catalog Microsoft Corporation 2001.12.6931.18000

COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.10.6001.18000

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.00.6001.18000

dhcpcsvc.DLL DHCP Client Service Microsoft Corporation 6.00.6001.18000

dhcpcsvc6.DLL DHCPv6 Client Microsoft Corporation 6.00.6001.18000

DnsApi.dll DNS Client API DLL Microsoft Corporation 6.00.6001.18000

FirewallAPI.dll Windows Firewall API Microsoft Corporation 6.00.6001.18000

GDI32.dll GDI Client DLL Microsoft Corporation 6.00.6001.18023

GPAPI.dll Group Policy Client API Microsoft Corporation 6.00.6001.18000

hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 6.00.6001.18000

iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 7.00.6001.18148

IMM32.DLL Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.00.6001.18000

Iphlpapi.dll IP Helper API Microsoft Corporation 6.00.6001.18000

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 6.00.6001.18000

locale.nls

locale.nls

LPK.DLL Language Pack Microsoft Corporation 6.00.6001.18000

MSCTF.dll MSCTF Server DLL Microsoft Corporation 6.00.6001.18000

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.00.6001.18000

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 6.00.6001.18000

msxml3.dll MSXML 3.0 SP10 Microsoft Corporation 8.100.1048.0000

msxml3r.dll XML Resources Microsoft Corporation 8.20.8730.0001

napinsp.dll E-mail Naming Shim Provider Microsoft Corporation 6.00.6001.18000

NETAPI32.dll Net Win32 API DLL Microsoft Corporation 6.00.6001.18157

netshell.dll Network Connections Shell Microsoft Corporation 6.00.6001.18000

NLAapi.dll Network Location Awareness 2 Microsoft Corporation 6.00.6001.18000

npmproxy.dll Network List Manager Proxy Microsoft Corporation 6.00.6000.16386

NSI.dll NSI User-mode interface DLL Microsoft Corporation 6.00.6001.18000

ntdll.dll NT Layer DLL Microsoft Corporation 6.00.6001.18000

ole32.dll Microsoft OLE for Windows Microsoft Corporation 6.00.6001.18000

oleaut32.dll Microsoft Corporation 6.00.6001.18000

pnrpnsp.dll PNRP Name Space Provider Microsoft Corporation 6.00.6001.18000

PSAPI.DLL Process Status Helper Microsoft Corporation 6.00.6000.16386

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.00.6000.16386

RocketDock.dll

RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 6.00.6001.18051

rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.00.6001.18000

Secur32.dll Security Support Provider Interface Microsoft Corporation 6.00.6001.18000

SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.00.6001.18062

shfolder.dll Shell Folder Service Microsoft Corporation 6.00.6000.16386

SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.00.6001.18000

slc.dll Software Licensing Client Dll Microsoft Corporation 6.00.6001.18000

SSDPAPI.dll SSDP Client API DLL Microsoft Corporation 6.00.6000.16386

SXS.DLL Fusion 2.5 Microsoft Corporation 6.00.6001.18000

upnp.dll UPnP Control Point API Microsoft Corporation 6.00.6001.18000

urlmon.dll OLE32 Extensions for Win32 Microsoft Corporation 7.00.6001.18148

USER32.dll Multi-User Windows USER API Client DLL Microsoft Corporation 6.00.6001.18000

USERENV.dll Userenv Microsoft Corporation 6.00.6001.18000

USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.6001.18000

uTorrent.exe µTorrent BitTorrent, Inc. 1.08.0001.12639

uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.00.6001.18000

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 6.00.6001.18000

WINHTTP.dll Windows HTTP Services Microsoft Corporation 6.00.6001.18000

WINNSI.DLL Network Store Information RPC interface Microsoft Corporation 6.00.6001.18000

winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 6.00.6000.16386

WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 6.00.6001.18000

WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 6.00.6001.18000

wship6.dll Winsock2 Helper DLL (TL/IPv6) Microsoft Corporation 6.00.6001.18000

wshtcpip.dll Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation 6.00.6001.18000

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 1:08:09 PM, on 11/14/2008

Platform: Windows Vista SP1 (WinNT 6.00.1905)

MSIE: Internet Explorer v7.00 (7.00.6001.18000)

Boot mode: Normal

Running processes:

C:\Windows\system32\taskeng.exe

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Program Files\Windows Defender\MSASCui.exe

C:\Program Files\Java\jre6\bin\jusched.exe

C:\Windows\WindowsMobile\wmdc.exe

C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe

C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe

C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe

C:\Program Files\AVG\AVG8\avgtray.exe

C:\Windows\SOUNDMAN.EXE

C:\Windows\System32\rundll32.exe

C:\Program Files\OpenDNS Updater\OpenDNS Updater.exe

C:\Windows\System32\rundll32.exe

C:\Program Files\iTunes\iTunesHelper.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\Windows Media Player\wmpnscfg.exe

C:\Windows\ehome\ehtray.exe

C:\Windows\System32\mobsync.exe

C:\Program Files\RocketDock\RocketDock.exe

C:\Windows\system32\wbem\unsecapp.exe

C:\Windows\ehome\ehmsas.exe

C:\Program Files\myiHome\app\myiHome-server.exe

C:\Program Files\Hamachi\hamachi.exe

C:\Program Files\Microsoft Office\Office12\GROOVE.EXE

C:\Program Files\UltraVNC\winvnc.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Windows\WindowsMobile\WmdHost.exe

C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

O1 - Hosts: ::1 localhost

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"

O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe

O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe

O4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe

O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe"

O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe

O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE

O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [OpenDNS Update] "C:\Program Files\OpenDNS Updater\OpenDNS Updater.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"

O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount

O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')

O4 - Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe

O4 - Startup: Microsoft Office Groove.lnk = C:\Program Files\Microsoft Office\Office12\GROOVE.EXE

O4 - Startup: UltraVNC Server.lnk = C:\Program Files\UltraVNC\winvnc.exe

O4 - Global Startup: myiHome Server.lnk = C:\Program Files\myiHome\app\myiHome-server.exe

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

O13 - Gopher Prefix:

O17 - HKLM\System\CCS\Services\Tcpip\..\{C1682671-19AA-4A76-9970-6DD40FAE47ED}: NameServer = 192.168.0.1,208.67.220.220

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll

O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL,avgrsstx.dll

O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe

O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe

O23 - Service: Acronis Try And Decide Service (TryAndDecideService) - Unknown owner - C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe

--

End of file - 7958 bytes

Link to comment
Share on other sites

  • 1 month later...
  • 4 months later...

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...