Jump to content

Disk overload using 1.8.1


coldwarkid

Recommended Posts

hey....i am using 1.8.1 and am getting the disk overload 100% alot.....especially right after i add a new torrent no matter how big or small....

i am saving to an internal wd 300gb hd....current transfer mode is ultra dma 4 and 5....transfer mode is set to dma if possible...the pc runs on two hdds with c never being used for saving downloads...the wd is partitioned into three partitions and i use all three partitions to save downloads to

pc is running xp

picture of disk cache option>>

http://img80.imageshack.us/my.php?image=uoverloadud2.jpg

i would really appreciate any help on this since it just started a few months back and tends to go away for a while but then comes back again

Link to comment
Share on other sites

thanks for the quick answer

here is the hijackthis log and a screen of the task manager processes but i do not know how i get the dll list for the utorrent.exe??

http://img147.imageshack.us/my.php?image=uoverload01dp0.jpg

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 16:24:37, on 08.01.2009

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Common Files\AAV\aavus.exe

C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS

C:\WINDOWS\system32\tcpsvcs.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\zHotkey.exe

C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Bluetack\ProtoWall\ProtoWall.exe

C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe

C:\WINDOWS\system32\ZoneLabs\vsmon.exe

C:\Program Files\Webroot\Spy Sweeper\SSU.EXE

C:\Program Files\Digsby\lib\digsby-app.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Opera\opera.exe

C:\Program Files\Microsoft Office\Office12\EXCEL.EXE

C:\Program Files\Java\jre6\bin\java.exe

C:\Program Files\Digsby\lib\aspell\bin\aspell.exe

C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe

C:\Program Files\Adobe\Photoshop CS\Photoshop.exe

C:\DOCUME~1\ROBERT~1\LOCALS~1\Temp\~e5d141.tmp

C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe

C:\DOCUME~1\ROBERT~1\LOCALS~1\Temp\~e5d141.tmp

C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www26.brinkster.com/xgravity/

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

R3 - Default URLSearchHook is missing

O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: Malicious Scripts Scanner - {55EA1964-F5E4-4D6A-B9B2-125B37655FCB} - C:\Documents and Settings\All Users\Application Data\Prevx\pxbho.dll

O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)

O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll

O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\Program Files\Speed Video Splitter\msdxm.ocx

O4 - HKLM\..\Run: [CHotkey] zHotkey.exe

O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"

O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"

O4 - HKLM\..\Run: [spySweeper] C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe /startintray

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [ProtoWall] "C:\Program Files\Bluetack\ProtoWall\ProtoWall.exe"

O4 - HKUS\S-1-5-18\..\RunOnce: [WUAppSetup] C:\Program Files\Common Files\logishrd\WUApp32.exe -v 0x046d -p 0x092f -f video -m logitech -d 10.5.1.2023 (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\RunOnce: [WUAppSetup] C:\Program Files\Common Files\logishrd\WUApp32.exe -v 0x046d -p 0x092f -f video -m logitech -d 10.5.1.2023 (User 'Default user')

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000

O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html

O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html

O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html

O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html

O8 - Extra context menu item: Save to &Xdrive - res://C:\Program Files\Xdrive\Xdrive Desktop\xdrive.exe/std.html

O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL

O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe

O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe

O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {0A891521-685E-4B6D-A9FD-759BB2CD6A66} (SecureImage Control) - http://www.psapoll.com/img/secure/SecureImage.cab

O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll

O16 - DPF: {5F3B3060-09E0-44C6-86F7-BC7B02B57BEE} - http://downloads.shopathomeselect.com/godspeed/grinstall_gsm1009_sp2.cab

O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} - http://upload.facebook.com/controls/FacebookPhotoUploader.cab

O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab

O16 - DPF: {7E8DC73D-69CD-4F67-99B1-8DC6E42F6246} - http://www.easysite.com/controls/ImgX61.CAB

O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab

O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{858718F4-5934-4ACA-B2A6-DABFB5618FBF}: NameServer = 204.127.203.135,216.148.225.135

O17 - HKLM\System\CCS\Services\Tcpip\..\{C631B956-8A4B-4413-9D1F-1149563B7FC9}: NameServer = 80.69.100.198,80.69.100.206

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLL

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O23 - Service: AAV UpdateService - Unknown owner - C:\Program Files\Common Files\AAV\aavus.exe

O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: Bonjour-Dienst (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe

O23 - Service: iPod-Dienst (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\RaMaint.exe

O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LogMeIn.exe

O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe

O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe

--

End of file - 9404 bytes

nevermind on the dll list

Process list saved on 16:35:58, on 08.01.2009

Platform: Windows XP SP2 (WinNT 5.01.2600)

[pid] [full path to filename] [file version] [company name]

908 C:\WINDOWS\System32\smss.exe 5.1.2600.2180 Microsoft Corporation

1048 C:\WINDOWS\system32\winlogon.exe 5.1.2600.2180 Microsoft Corporation

1092 C:\WINDOWS\system32\services.exe 5.1.2600.2180 Microsoft Corporation

1104 C:\WINDOWS\system32\lsass.exe 5.1.2600.2180 Microsoft Corporation

1252 C:\WINDOWS\system32\Ati2evxx.exe 6.14.10.4158 ATI Technologies Inc.

1304 C:\WINDOWS\system32\svchost.exe 5.1.2600.2180 Microsoft Corporation

1532 C:\WINDOWS\System32\svchost.exe 5.1.2600.2180 Microsoft Corporation

1660 C:\WINDOWS\system32\Ati2evxx.exe 6.14.10.4158 ATI Technologies Inc.

2008 C:\WINDOWS\system32\spoolsv.exe 5.1.2600.2696 Microsoft Corporation

336 C:\Program Files\Common Files\AAV\aavus.exe 13.0.0.11

424 C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe 12.0.758.0 Diskeeper Corporation

756 C:\WINDOWS\Explorer.EXE 6.0.2900.2180 Microsoft Corporation

1628 C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS 5.0.0.0 New Boundary Technologies, Inc.

1836 C:\WINDOWS\system32\tcpsvcs.exe 5.1.2600.0 Microsoft Corporation

1876 C:\WINDOWS\system32\svchost.exe 5.1.2600.2180 Microsoft Corporation

460 C:\WINDOWS\zHotkey.exe 3.0.0.7

540 C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe 7.0.483.0 Zone Labs, LLC

596 C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe 5.5.7.124 Webroot Software, Inc.

716 C:\WINDOWS\system32\ctfmon.exe 5.1.2600.2180 Microsoft Corporation

180 C:\Program Files\Bluetack\ProtoWall\ProtoWall.exe 2.1.9.0 Bluetack Internet Security Solutions

1756 C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe 3.5.6.114 Webroot Software, Inc.

2684 C:\WINDOWS\system32\ZoneLabs\vsmon.exe 7.0.483.0 Zone Labs, LLC

3668 C:\Program Files\Webroot\Spy Sweeper\SSU.EXE

3100 C:\Program Files\Digsby\lib\digsby-app.exe 1.0.0.0 dotSyntax, LLC

2872 C:\Program Files\uTorrent\uTorrent.exe 1.8.1.12639 BitTorrent, Inc.

2272 C:\Program Files\Mozilla Firefox\firefox.exe 1.9.0.3257 Mozilla Corporation

2636 C:\Program Files\Opera\opera.exe 9.63.10476.0 Opera Software

1524 C:\Program Files\Microsoft Office\Office12\EXCEL.EXE 12.0.4518.1014 Microsoft Corporation

2292 C:\Program Files\Java\jre6\bin\java.exe 6.0.100.28 Sun Microsystems, Inc.

4024 C:\Program Files\Digsby\lib\aspell\bin\aspell.exe

3112 C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe 4.2.0.107 Nero AG

3296 C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe 2.12.33.0 Apple Inc.

4088 C:\Program Files\Trend Micro\HijackThis\HijackThis.exe 2.0.0.2 Trend Micro Inc.

DLLs loaded by process C:\Program Files\uTorrent\uTorrent.exe:

[full path to filename] [file version] [company name]

C:\WINDOWS\system32\ntdll.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\kernel32.dll 5.1.2600.2945 Microsoft Corporation

C:\WINDOWS\system32\ADVAPI32.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\RPCRT4.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll 6.0.2900.2982 Microsoft Corporation

C:\WINDOWS\system32\msvcrt.dll 7.0.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\GDI32.dll 5.1.2600.3099 Microsoft Corporation

C:\WINDOWS\system32\USER32.dll 5.1.2600.3099 Microsoft Corporation

C:\WINDOWS\system32\SHLWAPI.dll 6.0.2900.3059 Microsoft Corporation

C:\WINDOWS\system32\comdlg32.dll 6.0.2900.2180 Microsoft Corporation

C:\WINDOWS\system32\SHELL32.dll 6.0.2900.3051 Microsoft Corporation

C:\WINDOWS\system32\WS2_32.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\WS2HELP.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\oleaut32.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\ole32.dll 5.1.2600.2726 Microsoft Corporation

C:\WINDOWS\system32\uxtheme.dll 6.0.2900.2180 Microsoft Corporation

C:\WINDOWS\system32\MSCTF.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\rsaenh.dll 5.1.2600.2161 Microsoft Corporation

C:\WINDOWS\system32\Secur32.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\USERENV.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\netapi32.dll 5.1.2600.2976 Microsoft Corporation

C:\WINDOWS\system32\shfolder.dll 6.0.2900.2180 Microsoft Corporation

C:\WINDOWS\system32\CLBCATQ.DLL 2001.12.4414.308 Microsoft Corporation

C:\WINDOWS\system32\COMRes.dll 2001.12.4414.258 Microsoft Corporation

C:\WINDOWS\system32\VERSION.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\hnetcfg.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\DnsApi.dll 5.1.2600.2938 Microsoft Corporation

C:\WINDOWS\system32\mswsock.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\System32\wshtcpip.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\Iphlpapi.dll 5.1.2600.2912 Microsoft Corporation

C:\WINDOWS\system32\MPRAPI.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\ACTIVEDS.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\adsldpc.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\WLDAP32.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\ATL.DLL 3.5.2284.0 Microsoft Corporation

C:\WINDOWS\system32\rtutils.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\SAMLIB.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\system32\SETUPAPI.dll 5.1.2600.2180 Microsoft Corporation

C:\Program Files\Bonjour\mdnsNSP.dll 1.0.6.2 Apple Inc.

C:\WINDOWS\system32\rasadhlp.dll 5.1.2600.2938 Microsoft Corporation

C:\WINDOWS\system32\psapi.dll 5.1.2600.2180 Microsoft Corporation

C:\WINDOWS\HKNTDLL.dll

Link to comment
Share on other sites

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...