Alibaba01 Posted October 19, 2008 Report Share Posted October 19, 2008 Hello,i have also a problem with uTorrent.When utorrent is running, sometimes my PC freeze soon after he has bootet, sometimes he work for minutes or hours, but then its happens again, he freeze. I have to switch them off and start again.Please help me ! - I can´t fix the problem allone.I can´t find a Virus or anything else.Is there a knowing Problem with Antivirus ?I use uTorrent 1.8.1., but also older versions freeze my PC (Athlon 64 3200+).HijackThis logfile:Logfile of Trend Micro HijackThis v2.0.2Scan saved at 14:21:31, on 19.10.2008Platform: Windows XP SP3 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16735)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\Programme\Lavasoft\Ad-Aware\aawservice.exeC:\WINDOWS\Explorer.EXEC:\Programme\Avira\AntiVir Workstation\avgnt.exeC:\WINDOWS\system32\RUNDLL32.EXEC:\Programme\Spybot - Search & Destroy\TeaTimer.exeC:\Programme\Siemens\Gigaset USB Adapter 108\GUI.exeC:\WINDOWS\system32\spoolsv.exeC:\Programme\Avira\AntiVir Workstation\sched.exeC:\Programme\Avira\AntiVir Workstation\avguard.exeC:\Programme\Avira\AntiVir Workstation\avesvc.exeC:\WINDOWS\system32\nvsvc32.exeC:\WINDOWS\system32\svchost.exeC:\Programme\Avira\AntiVir Workstation\avmailc.exeC:\Programme\Avira\AntiVir Workstation\AVWEBGRD.EXEC:\WINDOWS\system32\acs.exeC:\Programme\uTorrent\uTorrent.exeC:\WINDOWS\system32\rundll32.exeC:\Programme\DNA\btdna.exeC:\Programme\Internet Explorer\iexplore.exeC:\Programme\Adobe\Reader 8.0\Reader\AcroRd32.exeC:\Programme\Gemeinsame Dateien\Adobe\Updater5\AdobeUpdater.exeC:\Programme\Outlook Express\msimn.exeC:\WINDOWS\Explorer.EXEC:\Programme\HijackThis\HijackThis.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.de/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157O2 - BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Programme\Real\RealPlayer\rpbrowserrecordplugin.dllO2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dllO4 - HKLM\..\Run: [avgnt] "C:\Programme\Avira\AntiVir Workstation\avgnt.exe" /minO4 - HKLM\..\Run: [nwiz] nwiz.exe /installO4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInitO4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Programme\Spybot - Search & Destroy\TeaTimer.exeO4 - HKCU\..\Run: [bitTorrent DNA] "C:\Programme\DNA\btdna.exe"O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')O4 - Global Startup: Gigaset WLAN Adapter Monitor.lnk = C:\Programme\Siemens\Gigaset USB Adapter 108\GUI.exeO8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000O9 - Extra button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLLO9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dllO9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dllO9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exeO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cabO23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Programme\Lavasoft\Ad-Aware\aawservice.exeO23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exeO23 - Service: Avira AntiVir Professional MailGuard (AntiVirMailService) - Avira GmbH - C:\Programme\Avira\AntiVir Workstation\avmailc.exeO23 - Service: Avira AntiVir Professional Planer (AntiVirScheduler) - Avira GmbH - C:\Programme\Avira\AntiVir Workstation\sched.exeO23 - Service: Avira AntiVir Professional Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir Workstation\avguard.exeO23 - Service: Avira AntiVir Professional WebGuard (antivirwebservice) - Avira GmbH - C:\Programme\Avira\AntiVir Workstation\AVWEBGRD.EXEO23 - Service: Avira AntiVir Professional MailGuard Hilfsdienst (AVEService) - Avira GmbH - C:\Programme\Avira\AntiVir Workstation\avesvc.exeO23 - Service: NBService - Nero AG - C:\Programme\Nero\Nero 7\Nero BackItUp\NBService.exeO23 - Service: NMIndexingService - Nero AG - C:\Programme\Gemeinsame Dateien\Ahead\Lib\NMIndexingService.exeO23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exeO23 - Service: TuneUp Drive Defrag-Dienst (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe--End of file - 5604 bytesProzessExplorer logfile:Process PID CPU Description Company NameSystem Idle Process 0 98.46 Interrupts n/a Hardware Interrupts DPCs n/a Deferred Procedure Calls System 4 smss.exe 508 Windows NT-Sitzungs-Manager Microsoft Corporation csrss.exe 740 Client Server Runtime Process Microsoft Corporation winlogon.exe 764 Windows NT-Anmeldung Microsoft Corporation services.exe 812 Anwendung für Dienste und Controller Microsoft Corporation svchost.exe 976 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1036 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1072 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1152 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1228 Generic Host Process for Win32 Services Microsoft Corporation spoolsv.exe 1956 Spooler SubSystem App Microsoft Corporation sched.exe 2020 Antivirus Scheduler Avira GmbH avguard.exe 552 Antivirus On-Access Service Avira GmbH avesvc.exe 564 Antivirus Engine Service Avira GmbH nvsvc32.exe 600 NVIDIA Driver Helper Service, Version 175.19 NVIDIA Corporation svchost.exe 656 Generic Host Process for Win32 Services Microsoft Corporation wdfmgr.exe 684 Windows User Mode Driver Manager Microsoft Corporation avmailc.exe 404 Antivirus MailScanner Service Avira GmbH avwebgrd.exe 1340 AntiVir WebGuard Service Avira GmbH alg.exe 2396 Application Layer Gateway Service Microsoft Corporation acs.exe 2452 lsass.exe 824 LSA Shell (Export Version) Microsoft Corporationexplorer.exe 1668 Windows Explorer Microsoft Corporation avgnt.exe 1780 Antivirus System Tray Tool Avira GmbH rundll32.exe 1836 Eine DLL-Datei als Anwendung ausführen Microsoft Corporation GUI.exe 1900 GUI MFC Application uTorrent.exe 3008 1.54 iexplore.exe 3320 Internet Explorer Microsoft Corporation notepad.exe 3116 Editor Microsoft Corporation procexp.exe 888 Sysinternals Process Explorer Sysinternals - www.sysinternals.comProcess: uTorrent.exe Pid: 3008Name Description Company Name VersionACTIVEDS.dll ADs Router-Ebene-DLL Microsoft Corporation 5.01.2600.5512adsldpc.dll DLL für ADs LDAP Provider C Microsoft Corporation 5.01.2600.5512ADVAPI32.dll Erweitertes Windows 32 Base-API Microsoft Corporation 5.01.2600.5512appHelp.dll Application Compatibility Client Library Microsoft Corporation 5.01.2600.5512ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.05.2284.0001avsda.dll AntiVir layered service provider Avira GmbH 8.00.0000.0005CLBCATQ.DLL Microsoft Corporation 2001.12.4414.0700COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.00.2900.5512comdlg32.dll DLL für gemeinsame Dialoge Microsoft Corporation 6.00.2900.5512COMRes.dll Microsoft Corporation 2001.12.4414.0700ctype.nls DHook.dll DHook DLL 1.00.0000.0001DNSAPI.dll DNS Client API DLL Microsoft Corporation 5.01.2600.5625GDI32.dll GDI Client DLL Microsoft Corporation 5.01.2600.5512hnetcfg.dll Heimnetzwerkkonfigurations-Manager Microsoft Corporation 5.01.2600.5512ieframe.dll Internet Explorer Microsoft Corporation 7.00.6000.16757ieframe.dll.mui Internet Explorer Microsoft Corporation 7.00.6000.16414iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 7.00.6000.16735IMM32.DLL Windows XP IMM32 API Client DLL Microsoft Corporation 5.01.2600.5512Iphlpapi.dll IP-Hilfs-API Microsoft Corporation 5.01.2600.5512kernel32.dll Client-DLL für Windows NT-Basis-API Microsoft Corporation 5.01.2600.5512locale.nls MFC42.DLL MFCDLL Shared Library - Retail Version Microsoft Corporation 6.02.4131.0000MFC42LOC.DLL MFC Language Specific Resources Microsoft Corporation 6.00.8665.0000MPRAPI.dll Windows NT MP Router Administration DLL Microsoft Corporation 5.01.2600.5512msctfime.ime Microsoft Text Frame Work Service IME Microsoft Corporation 5.01.2600.5512msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.00.2600.5512mswsock.dll Microsoft Windows Sockets 2.0-Dienstanbieter Microsoft Corporation 5.01.2600.5625NETAPI32.dll Net Win32 API DLL Microsoft Corporation 5.01.2600.5512ntdll.dll DLL für NT-Layer Microsoft Corporation 5.01.2600.5512ole32.dll Microsoft OLE für Windows Microsoft Corporation 5.01.2600.5512oleaut32.dll Microsoft Corporation 5.01.2600.5512PSAPI.DLL Process Status Helper Microsoft Corporation 5.01.2600.5512rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 5.01.2600.5512RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 5.01.2600.5512rtutils.dll Routing Utilities Microsoft Corporation 5.01.2600.5512SAMLIB.dll SAM Library DLL Microsoft Corporation 5.01.2600.5512Secur32.dll Security Support Provider Interface Microsoft Corporation 5.01.2600.5512SETUPAPI.dll Windows Setup-API Microsoft Corporation 5.01.2600.5512SHELL32.dll Allgemeine Windows-Shell-DLL Microsoft Corporation 6.00.2900.5512SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.00.2900.5512sortkey.nls sorttbls.nls unicode.nls urlmon.dll OLE32 Extensions for Win32 Microsoft Corporation 7.00.6000.16735USER32.dll Client-DLL für Windows XP USER-API Microsoft Corporation 5.01.2600.5512uTorrent.exe uxtheme.dll Microsoft UxTheme-Bibliothek Microsoft Corporation 6.00.2900.5512VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 5.01.2600.5512winmm.dll MCI API-DLL Microsoft Corporation 5.01.2600.5512winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 5.01.2600.5512WLDAP32.dll Win32 LDAP-API-DLL Microsoft Corporation 5.01.2600.5512WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 5.01.2600.5512WS2HELP.dll Windows Socket 2.0 Helper für Windows NT Microsoft Corporation 5.01.2600.5512wshtcpip.dll Windows Sockets Helper DLL Microsoft Corporation 5.01.2600.5512 Link to comment Share on other sites More sharing options...
DreadWingKnight Posted October 19, 2008 Report Share Posted October 19, 2008 Avira injected. Likely culprit. Link to comment Share on other sites More sharing options...
Ultima Posted October 19, 2008 Report Share Posted October 19, 2008 Disable any HTTP/web/P2P scanner it may have (or make an exception in it for µTorrent). Link to comment Share on other sites More sharing options...
Alibaba01 Posted October 19, 2008 Author Report Share Posted October 19, 2008 Hi Ultima,which HTTP/web/P2P scanner do you mean?Please look at my listning, give an example.For Antivir i made now an exception (WebGuard MIME-Type *.!lut).... i must see what happens ?!? Link to comment Share on other sites More sharing options...
Ultima Posted October 19, 2008 Report Share Posted October 19, 2008 There is no way to exclude the µTorrent executable from being scanned? If not (excluding by MIME type doesn't work), then you may have to disable WebGuard to see if it helps. Link to comment Share on other sites More sharing options...
Alibaba01 Posted November 23, 2008 Author Report Share Posted November 23, 2008 Hi,i found the bug !It was not an Software problem. My mainboard was the malefactor.Some months ago my PC-Power-Supply got broken and the mainboard was also damaged....new board, new luck !Alibaba01 Link to comment Share on other sites More sharing options...
Ultima Posted November 23, 2008 Report Share Posted November 23, 2008 Hm. Odd that it would freeze only while µTorrent is running though. At any rate, it's good to hear that you've solved your problem Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.