coldwarkid Posted January 8, 2009 Report Share Posted January 8, 2009 hey....i am using 1.8.1 and am getting the disk overload 100% alot.....especially right after i add a new torrent no matter how big or small....i am saving to an internal wd 300gb hd....current transfer mode is ultra dma 4 and 5....transfer mode is set to dma if possible...the pc runs on two hdds with c never being used for saving downloads...the wd is partitioned into three partitions and i use all three partitions to save downloads topc is running xppicture of disk cache option>>http://img80.imageshack.us/my.php?image=uoverloadud2.jpgi would really appreciate any help on this since it just started a few months back and tends to go away for a while but then comes back again Link to comment Share on other sites More sharing options...
DreadWingKnight Posted January 8, 2009 Report Share Posted January 8, 2009 Enable the last 2 options in the cache settings.Post a hijackthis log and process explorer process list with the dll list for the utorrent.exe process too. Link to comment Share on other sites More sharing options...
coldwarkid Posted January 8, 2009 Author Report Share Posted January 8, 2009 thanks for the quick answerhere is the hijackthis log and a screen of the task manager processes but i do not know how i get the dll list for the utorrent.exe??http://img147.imageshack.us/my.php?image=uoverload01dp0.jpgLogfile of Trend Micro HijackThis v2.0.2Scan saved at 16:24:37, on 08.01.2009Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\Ati2evxx.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\Ati2evxx.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\Common Files\AAV\aavus.exeC:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exeC:\WINDOWS\Explorer.EXEC:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYSC:\WINDOWS\system32\tcpsvcs.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\zHotkey.exeC:\Program Files\Zone Labs\ZoneAlarm\zlclient.exeC:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exeC:\WINDOWS\system32\ctfmon.exeC:\Program Files\Bluetack\ProtoWall\ProtoWall.exeC:\Program Files\Webroot\Spy Sweeper\SpySweeper.exeC:\WINDOWS\system32\ZoneLabs\vsmon.exeC:\Program Files\Webroot\Spy Sweeper\SSU.EXEC:\Program Files\Digsby\lib\digsby-app.exeC:\Program Files\uTorrent\uTorrent.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Opera\opera.exeC:\Program Files\Microsoft Office\Office12\EXCEL.EXEC:\Program Files\Java\jre6\bin\java.exeC:\Program Files\Digsby\lib\aspell\bin\aspell.exeC:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exeC:\Program Files\Adobe\Photoshop CS\Photoshop.exeC:\DOCUME~1\ROBERT~1\LOCALS~1\Temp\~e5d141.tmpC:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exeC:\DOCUME~1\ROBERT~1\LOCALS~1\Temp\~e5d141.tmpC:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeC:\Program Files\Trend Micro\HijackThis\HijackThis.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www26.brinkster.com/xgravity/R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.localR3 - Default URLSearchHook is missingO2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dllO2 - BHO: Malicious Scripts Scanner - {55EA1964-F5E4-4D6A-B9B2-125B37655FCB} - C:\Documents and Settings\All Users\Application Data\Prevx\pxbho.dllO2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dllO2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLLO2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dllO2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dllO3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\Program Files\Speed Video Splitter\msdxm.ocxO4 - HKLM\..\Run: [CHotkey] zHotkey.exeO4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"O4 - HKLM\..\Run: [spySweeper] C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe /startintrayO4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exeO4 - HKCU\..\Run: [ProtoWall] "C:\Program Files\Bluetack\ProtoWall\ProtoWall.exe"O4 - HKUS\S-1-5-18\..\RunOnce: [WUAppSetup] C:\Program Files\Common Files\logishrd\WUApp32.exe -v 0x046d -p 0x092f -f video -m logitech -d 10.5.1.2023 (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\RunOnce: [WUAppSetup] C:\Program Files\Common Files\logishrd\WUApp32.exe -v 0x046d -p 0x092f -f video -m logitech -d 10.5.1.2023 (User 'Default user')O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.htmlO8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.htmlO8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.htmlO8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.htmlO8 - Extra context menu item: Save to &Xdrive - res://C:\Program Files\Xdrive\Xdrive Desktop\xdrive.exe/std.htmlO9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dllO9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dllO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLLO9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exeO9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exeO9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dllO9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO16 - DPF: {0A891521-685E-4B6D-A9FD-759BB2CD6A66} (SecureImage Control) - http://www.psapoll.com/img/secure/SecureImage.cabO16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cabO16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dllO16 - DPF: {5F3B3060-09E0-44C6-86F7-BC7B02B57BEE} - http://downloads.shopathomeselect.com/godspeed/grinstall_gsm1009_sp2.cabO16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} - http://upload.facebook.com/controls/FacebookPhotoUploader.cabO16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cabO16 - DPF: {7E8DC73D-69CD-4F67-99B1-8DC6E42F6246} - http://www.easysite.com/controls/ImgX61.CABO16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cabO16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{858718F4-5934-4ACA-B2A6-DABFB5618FBF}: NameServer = 204.127.203.135,216.148.225.135O17 - HKLM\System\CCS\Services\Tcpip\..\{C631B956-8A4B-4413-9D1F-1149563B7FC9}: NameServer = 80.69.100.198,80.69.100.206O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLLO18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dllO18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLLO23 - Service: AAV UpdateService - Unknown owner - C:\Program Files\Common Files\AAV\aavus.exeO23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exeO23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeO23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exeO23 - Service: Bonjour-Dienst (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exeO23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exeO23 - Service: iPod-Dienst (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exeO23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\RaMaint.exeO23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LogMeIn.exeO23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exeO23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exeO23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exeO23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYSO23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exeO23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe--End of file - 9404 bytesnevermind on the dll listProcess list saved on 16:35:58, on 08.01.2009Platform: Windows XP SP2 (WinNT 5.01.2600)[pid] [full path to filename] [file version] [company name]908 C:\WINDOWS\System32\smss.exe 5.1.2600.2180 Microsoft Corporation1048 C:\WINDOWS\system32\winlogon.exe 5.1.2600.2180 Microsoft Corporation1092 C:\WINDOWS\system32\services.exe 5.1.2600.2180 Microsoft Corporation1104 C:\WINDOWS\system32\lsass.exe 5.1.2600.2180 Microsoft Corporation1252 C:\WINDOWS\system32\Ati2evxx.exe 6.14.10.4158 ATI Technologies Inc.1304 C:\WINDOWS\system32\svchost.exe 5.1.2600.2180 Microsoft Corporation1532 C:\WINDOWS\System32\svchost.exe 5.1.2600.2180 Microsoft Corporation1660 C:\WINDOWS\system32\Ati2evxx.exe 6.14.10.4158 ATI Technologies Inc.2008 C:\WINDOWS\system32\spoolsv.exe 5.1.2600.2696 Microsoft Corporation336 C:\Program Files\Common Files\AAV\aavus.exe 13.0.0.11 424 C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe 12.0.758.0 Diskeeper Corporation756 C:\WINDOWS\Explorer.EXE 6.0.2900.2180 Microsoft Corporation1628 C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS 5.0.0.0 New Boundary Technologies, Inc.1836 C:\WINDOWS\system32\tcpsvcs.exe 5.1.2600.0 Microsoft Corporation1876 C:\WINDOWS\system32\svchost.exe 5.1.2600.2180 Microsoft Corporation460 C:\WINDOWS\zHotkey.exe 3.0.0.7 540 C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe 7.0.483.0 Zone Labs, LLC596 C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe 5.5.7.124 Webroot Software, Inc.716 C:\WINDOWS\system32\ctfmon.exe 5.1.2600.2180 Microsoft Corporation180 C:\Program Files\Bluetack\ProtoWall\ProtoWall.exe 2.1.9.0 Bluetack Internet Security Solutions1756 C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe 3.5.6.114 Webroot Software, Inc.2684 C:\WINDOWS\system32\ZoneLabs\vsmon.exe 7.0.483.0 Zone Labs, LLC3668 C:\Program Files\Webroot\Spy Sweeper\SSU.EXE 3100 C:\Program Files\Digsby\lib\digsby-app.exe 1.0.0.0 dotSyntax, LLC2872 C:\Program Files\uTorrent\uTorrent.exe 1.8.1.12639 BitTorrent, Inc.2272 C:\Program Files\Mozilla Firefox\firefox.exe 1.9.0.3257 Mozilla Corporation2636 C:\Program Files\Opera\opera.exe 9.63.10476.0 Opera Software1524 C:\Program Files\Microsoft Office\Office12\EXCEL.EXE 12.0.4518.1014 Microsoft Corporation2292 C:\Program Files\Java\jre6\bin\java.exe 6.0.100.28 Sun Microsystems, Inc.4024 C:\Program Files\Digsby\lib\aspell\bin\aspell.exe 3112 C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe 4.2.0.107 Nero AG3296 C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe 2.12.33.0 Apple Inc.4088 C:\Program Files\Trend Micro\HijackThis\HijackThis.exe 2.0.0.2 Trend Micro Inc.DLLs loaded by process C:\Program Files\uTorrent\uTorrent.exe:[full path to filename] [file version] [company name]C:\WINDOWS\system32\ntdll.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\kernel32.dll 5.1.2600.2945 Microsoft CorporationC:\WINDOWS\system32\ADVAPI32.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\RPCRT4.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll 6.0.2900.2982 Microsoft CorporationC:\WINDOWS\system32\msvcrt.dll 7.0.2600.2180 Microsoft CorporationC:\WINDOWS\system32\GDI32.dll 5.1.2600.3099 Microsoft CorporationC:\WINDOWS\system32\USER32.dll 5.1.2600.3099 Microsoft CorporationC:\WINDOWS\system32\SHLWAPI.dll 6.0.2900.3059 Microsoft CorporationC:\WINDOWS\system32\comdlg32.dll 6.0.2900.2180 Microsoft CorporationC:\WINDOWS\system32\SHELL32.dll 6.0.2900.3051 Microsoft CorporationC:\WINDOWS\system32\WS2_32.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\WS2HELP.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\oleaut32.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\ole32.dll 5.1.2600.2726 Microsoft CorporationC:\WINDOWS\system32\uxtheme.dll 6.0.2900.2180 Microsoft CorporationC:\WINDOWS\system32\MSCTF.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\rsaenh.dll 5.1.2600.2161 Microsoft CorporationC:\WINDOWS\system32\Secur32.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\USERENV.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\netapi32.dll 5.1.2600.2976 Microsoft CorporationC:\WINDOWS\system32\shfolder.dll 6.0.2900.2180 Microsoft CorporationC:\WINDOWS\system32\CLBCATQ.DLL 2001.12.4414.308 Microsoft CorporationC:\WINDOWS\system32\COMRes.dll 2001.12.4414.258 Microsoft CorporationC:\WINDOWS\system32\VERSION.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\hnetcfg.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\DnsApi.dll 5.1.2600.2938 Microsoft CorporationC:\WINDOWS\system32\mswsock.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\System32\wshtcpip.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\Iphlpapi.dll 5.1.2600.2912 Microsoft CorporationC:\WINDOWS\system32\MPRAPI.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\ACTIVEDS.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\adsldpc.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\WLDAP32.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\ATL.DLL 3.5.2284.0 Microsoft CorporationC:\WINDOWS\system32\rtutils.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\SAMLIB.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\system32\SETUPAPI.dll 5.1.2600.2180 Microsoft CorporationC:\Program Files\Bonjour\mdnsNSP.dll 1.0.6.2 Apple Inc.C:\WINDOWS\system32\rasadhlp.dll 5.1.2600.2938 Microsoft CorporationC:\WINDOWS\system32\psapi.dll 5.1.2600.2180 Microsoft CorporationC:\WINDOWS\HKNTDLL.dll Link to comment Share on other sites More sharing options...
DreadWingKnight Posted January 8, 2009 Report Share Posted January 8, 2009 ZoneAlarm may be part of the problem (and is going to likely cause other problems down the road). Only uninstalling it will get it out of the way if it is the problem.WebRoot SpySweeper may also be part of the problem.Process explorer list steps - http://forum.utorrent.com/viewtopic.php?id=29748 Link to comment Share on other sites More sharing options...
coldwarkid Posted January 8, 2009 Author Report Share Posted January 8, 2009 thanks for your help...are those the only issues you see? Link to comment Share on other sites More sharing options...
DreadWingKnight Posted January 8, 2009 Report Share Posted January 8, 2009 They are the two biggest ones, with protowall being #3 Link to comment Share on other sites More sharing options...
coldwarkid Posted January 8, 2009 Author Report Share Posted January 8, 2009 thanks will get on it thenstopped all programs mentioned above...still having the same issue Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.