tnvols Posted December 14, 2008 Report Share Posted December 14, 2008 I've used uTorrent for a long time with no problems. Just today, I was downloading and the process kept stopping and gave the error message, "The requested operation cannot be performed on a file with a user-mapped section open." I've defragged the hard drive, uninstalled and re-installed uTorrent. I stopped the torrent, deleted everything and started a different torrent file. I kept restarting the download and finally got it to 99.8% and it's hosed. What's up here? Link to comment Share on other sites More sharing options...
moogly Posted December 14, 2008 Report Share Posted December 14, 2008 Do you have some files indexers or scanners ?Post an HJT log plz.Tutorial: http://forum.utorrent.com/viewtopic.php?id=29748 Link to comment Share on other sites More sharing options...
tnvols Posted December 14, 2008 Author Report Share Posted December 14, 2008 No indexers or scanners! I don't even use Desktop Search. I posted HiJackThis and ProcessExployer logs to the link you included. Link to comment Share on other sites More sharing options...
DreadWingKnight Posted December 14, 2008 Report Share Posted December 14, 2008 No you didn't. And we didn't tell you to either. Link to comment Share on other sites More sharing options...
moogly Posted December 14, 2008 Report Share Posted December 14, 2008 No you can't. The sticky is closed.Copy/paste your logs in this thread. Link to comment Share on other sites More sharing options...
tnvols Posted December 14, 2008 Author Report Share Posted December 14, 2008 Sorry!Logfile of Trend Micro HijackThis v2.0.2Scan saved at 10:45:31 PM, on 12/13/2008Platform: Windows XP SP3 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16762)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\csrss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Windows Defender\MsMpEng.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Alwil Software\Avast4\aswUpdSv.exeC:\Program Files\Lavasoft\Ad-Aware\AAWService.exeC:\Program Files\Alwil Software\Avast4\ashServ.exeC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\System32\SCardSvr.exeC:\Program Files\Java\jre6\bin\jqs.exeC:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exeC:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exeC:\WINDOWS\system32\nvsvc32.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\ThreatFire\TFService.exeC:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exeC:\WINDOWS\Explorer.EXEC:\Program Files\Apoint\Apoint.exeC:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exeC:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exeC:\Program Files\Logitech\QuickCam\Quickcam.exeC:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exeC:\Program Files\Pure Networks\Network Magic\nmapp.exeC:\Program Files\Java\jre6\bin\jusched.exeC:\Program Files\Windows Defender\MSASCui.exeC:\Program Files\ThreatFire\TFTray.exeC:\Program Files\Lavasoft\Ad-Aware\AAWTray.exeC:\WINDOWS\system32\ctfmon.exeC:\Program Files\TechSmith\SnagIt 8\SnagIt32.exeC:\Program Files\WinZip\WZQKPICK.EXEC:\Program Files\Apoint\Apntex.exeC:\Program Files\Apoint\HidFind.exeC:\Program Files\Alwil Software\Avast4\ashMaiSv.exeC:\WINDOWS\system32\wbem\unsecapp.exeC:\WINDOWS\system32\wbem\wmiprvse.exeC:\Program Files\Alwil Software\Avast4\ashWebSv.exeC:\Program Files\TechSmith\SnagIt 8\TSCHelp.exeC:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exeC:\WINDOWS\System32\alg.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\uTorrent\uTorrent.exeC:\Program Files\Trend Micro\HijackThis\HijackThis.exeC:\WINDOWS\system32\wbem\wmiprvse.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\SnagIt 8\SnagItBHO.dllO2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dllO2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dllO2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dllO3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\SnagIt 8\SnagItIEAddin.dllO4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exeO4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [nwiz] nwiz.exe /installquietO4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exeO4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hideO4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"O4 - HKLM\..\Run: [nmctxth] "C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe"O4 - HKLM\..\Run: [nmapp] "C:\Program Files\Pure Networks\Network Magic\nmapp.exe" -autorun -nosplashO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hideO4 - HKLM\..\Run: [ThreatFire] C:\Program Files\ThreatFire\TFTray.exeO4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exeO4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exeO4 - Global Startup: SnagIt 8.lnk = C:\Program Files\TechSmith\SnagIt 8\SnagIt32.exeO4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXEO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLLO9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1226099236709O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cabO23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exeO23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exeO23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exeO23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exeO23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exeO23 - Service: Lavasoft Ad-Aware Service - Unknown owner - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exeO23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exeO23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exeO23 - Service: Pure Networks Platform Service (nmservice) - Cisco Systems, Inc. - C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exeO23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exeO23 - Service: ThreatFire - PC Tools - C:\Program Files\ThreatFire\TFService.exe--End of file - 7601 bytesNumber 2Process PID CPU Description Company NameSystem Idle Process 0 80.95 Interrupts n/a 1.90 Hardware Interrupts DPCs n/a 1.90 Deferred Procedure Calls System 4 smss.exe 408 Windows NT Session Manager Microsoft Corporation csrss.exe 580 Client Server Runtime Process Microsoft Corporation winlogon.exe 892 Windows NT Logon Application Microsoft Corporation services.exe 936 2.86 Services and Controller app Microsoft Corporation svchost.exe 1100 Generic Host Process for Win32 Services Microsoft Corporation unsecapp.exe 3456 WMI Microsoft Corporation wmiprvse.exe 3548 WMI Microsoft Corporation COCIManager.exe 2476 Camera Control Interface Logitech Inc. svchost.exe 1176 Generic Host Process for Win32 Services Microsoft Corporation MsMpEng.exe 1212 Service Executable Microsoft Corporation svchost.exe 1256 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1336 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1468 Generic Host Process for Win32 Services Microsoft Corporation aswUpdSv.exe 1856 avast! Antivirus updating service ALWIL Software AAWService.exe 1868 ashServ.exe 1924 avast! antivirus service ALWIL Software spoolsv.exe 288 Spooler SubSystem App Microsoft Corporation scardsvr.exe 528 Smart Card Resource Management Server Microsoft Corporation jqs.exe 1396 0.95 Java Quick Starter Service Sun Microsystems, Inc. LVComSer.exe 1432 Logitech Video COM Service Logitech Inc. LVComSer.exe 3732 Logitech Video COM Service Logitech Inc. LVPrcSrv.exe 1500 Logitech LVPrcSrv Module. Logitech Inc. nvsvc32.exe 1560 NVIDIA Driver Helper Service, Version 78.11 NVIDIA Corporation svchost.exe 1664 Generic Host Process for Win32 Services Microsoft Corporation TFService.exe 1972 PC Tools ThreatFire Service PC Tools nmsrvc.exe 508 Pure Networks Platform Service Cisco Systems, Inc. ashMaiSv.exe 3332 avast! e-Mail Scanner Service ALWIL Software ashWebSv.exe 3568 avast! Web Scanner ALWIL Software alg.exe 2060 Application Layer Gateway Service Microsoft Corporation svchost.exe 4072 Generic Host Process for Win32 Services Microsoft Corporation lsass.exe 948 LSA Shell (Export Version) Microsoft Corporationexplorer.exe 1280 1.90 Windows Explorer Microsoft Corporation Apoint.exe 2108 4.76 Alps Pointing-device Driver Alps Electric Co., Ltd. hidfind.exe 2620 Alps Pointing-device Driver Alps Electric Co., Ltd. ashDisp.exe 2132 avast! service GUI component ALWIL Software Communications_Helper.exe 2140 Communications Manager Logitech Inc. Quickcam.exe 2148 Camera Software Logitech Inc. nmctxth.exe 2196 Pure Networks Platform Assistant Cisco Systems, Inc. nmapp.exe 2216 Network Magic Application Cisco Systems, Inc. jusched.exe 2240 Java Platform SE binary Sun Microsystems, Inc. MSASCui.exe 2248 Windows Defender User Interface Microsoft Corporation TFTray.exe 2264 PC Tools ThreatFire Tray App PC Tools AAWTray.exe 2308 AAWTray ctfmon.exe 2332 CTF Loader Microsoft Corporation SnagIt32.exe 2392 SnagIt 8 TechSmith Corporation TscHelp.exe 3692 TechSmith HTML Help Helper TechSmith Corporation WZQKPICK.EXE 2424 WinZip Executable WinZip Computing, Inc. firefox.exe 1712 0.95 Firefox Mozilla Corporation HijackThis.exe 2992 HijackThis Trend Micro Inc. notepad.exe 3544 Notepad Microsoft CorporationApntEx.exe 2596 0.95 Alps Pointing-device Driver for Windows NT/2000/XP Alps Electric Co., Ltd.uTorrent.exe 3228 1.90 µTorrent BitTorrent, Inc.procexp.exe 3148 0.95 Sysinternals Process Explorer Sysinternals - www.sysinternals.comProcess: uTorrent.exe Pid: 3228Name Description Company Name VersionACTIVEDS.dll ADs Router Layer DLL Microsoft Corporation 5.01.2600.5512adsldpc.dll ADs LDAP Provider C DLL Microsoft Corporation 5.01.2600.5512ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 5.01.2600.5512appHelp.dll Application Compatibility Client Library Microsoft Corporation 5.01.2600.5512ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.05.2284.0001browseui.dll Shell Browser UI Library Microsoft Corporation 6.00.2900.5512CLBCATQ.DLL Microsoft Corporation 2001.12.4414.0700COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.00.2900.5512comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.00.2900.5512COMRes.dll Microsoft Corporation 2001.12.4414.0700credui.dll Credential Manager User Interface Microsoft Corporation 5.01.2600.5512CRYPT32.dll Crypto API32 Microsoft Corporation 5.131.2600.5512CRYPTUI.dll Microsoft Trust UI Provider Microsoft Corporation 5.131.2600.5512CSCDLL.dll Offline Network Agent Microsoft Corporation 5.01.2600.5512cscui.dll Client Side Caching UI Microsoft Corporation 5.01.2600.5512ctype.nls DnsApi.dll DNS Client API DLL Microsoft Corporation 5.01.2600.5625dot3api.dll 802.3 Autoconfiguration API Microsoft Corporation 5.01.2600.5512dot3dlg.dll 802.3 UI Helper Microsoft Corporation 5.01.2600.5512eappcfg.dll Eap Peer Config Microsoft Corporation 5.01.2600.5512eappprxy.dll Microsoft EAPHost Peer Client DLL Microsoft Corporation 5.01.2600.5512GDI32.dll GDI Client DLL Microsoft Corporation 5.01.2600.5698hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 5.01.2600.5512iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 7.00.6000.16762IMAGEHLP.dll Windows NT Image Helper Microsoft Corporation 5.01.2600.5512IMM32.DLL Windows XP IMM32 API Client DLL Microsoft Corporation 5.01.2600.5512Iphlpapi.dll IP Helper API Microsoft Corporation 5.01.2600.5512kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 5.01.2600.5512LINKINFO.dll Windows Volume Tracking Microsoft Corporation 5.01.2600.5512locale.nls LVPrcInj01.dll Camera Helper Library. Logitech Inc. 11.80.1048.0000mkunicode.dll mmfinfo.dll MPRAPI.dll Windows NT MP Router Administration DLL Microsoft Corporation 5.01.2600.5512MSASN1.dll ASN.1 Runtime APIs Microsoft Corporation 5.01.2600.5512MSCTF.dll MSCTF Server DLL Microsoft Corporation 5.01.2600.5512msctfime.ime Microsoft Text Frame Work Service IME Microsoft Corporation 5.01.2600.5512msi.dll Windows Installer Microsoft Corporation 3.01.4001.5512MSVCP60.dll Microsoft ® C++ Runtime Library Microsoft Corporation 6.02.3104.0000MSVCR80.dll Microsoft® C Runtime Library Microsoft Corporation 8.00.50727.1433msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.00.2600.5512mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 5.01.2600.5625netapi32.dll Net Win32 API DLL Microsoft Corporation 5.01.2600.5694netshell.dll Network Connections Shell Microsoft Corporation 5.01.2600.5512Normaliz.dll Unicode Normalization DLL Microsoft Corporation 6.00.5441.0000ntdll.dll NT Layer DLL Microsoft Corporation 5.01.2600.5512ntshrui.dll Shell extensions for sharing Microsoft Corporation 5.01.2600.5512ole32.dll Microsoft OLE for Windows Microsoft Corporation 5.01.2600.5512oleaut32.dll Microsoft Corporation 5.01.2600.5512OneX.DLL IEEE 802.1X supplicant library Microsoft Corporation 5.01.2600.5512PDFShell.dll PDF Shell Extension Adobe Systems, Inc. 9.00.0000.0332psapi.dll Process Status Helper Microsoft Corporation 5.01.2600.5512rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 5.01.2600.5512RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 5.01.2600.5512rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 5.01.2600.5507rtutils.dll Routing Utilities Microsoft Corporation 5.01.2600.5512SAMLIB.dll SAM Library DLL Microsoft Corporation 5.01.2600.5512Secur32.dll Security Support Provider Interface Microsoft Corporation 5.01.2600.5512SETUPAPI.dll Windows Setup API Microsoft Corporation 5.01.2600.5512shdocvw.dll Shell Doc Object and Control Library Microsoft Corporation 6.00.2900.5512SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.00.2900.5512shfolder.dll Shell Folder Service Microsoft Corporation 6.00.2900.5512SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.00.2900.5512sortkey.nls sorttbls.nls SXS.DLL Fusion 2.5 Microsoft Corporation 5.01.2600.5512unicode.nls USER32.dll Windows XP USER API Client DLL Microsoft Corporation 5.01.2600.5512USERENV.dll Userenv Microsoft Corporation 5.01.2600.5512uTorrent.exe µTorrent BitTorrent, Inc. 1.08.0001.12639uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.00.2900.5512VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 5.01.2600.5512WININET.dll Internet Extensions for Win32 Microsoft Corporation 7.00.6000.16762WINSTA.dll Winstation Library Microsoft Corporation 5.01.2600.5512WINTRUST.dll Microsoft Trust Verification APIs Microsoft Corporation 5.131.2600.5512WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 5.01.2600.5512WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 5.01.2600.5512WS2HELP.dll Windows Socket 2.0 Helper for Windows NT Microsoft Corporation 5.01.2600.5512wshtcpip.dll Windows Sockets Helper DLL Microsoft Corporation 5.01.2600.5512WTSAPI32.dll Windows Terminal Server SDK APIs Microsoft Corporation 5.01.2600.5512xpsp2res.dll Service Pack 2 Messages Microsoft Corporation 5.01.2600.5512 Link to comment Share on other sites More sharing options...
DreadWingKnight Posted December 14, 2008 Report Share Posted December 14, 2008 Threatfire is a known problem package. Uninstall it please. Link to comment Share on other sites More sharing options...
tnvols Posted December 15, 2008 Author Report Share Posted December 15, 2008 Uninstalled Threatfire and I will try the download again to see what happens. Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.