ponmar Posted January 20, 2009 Report Share Posted January 20, 2009 Hi!Same problem as many others, but havent got any clues on what causes it from the forum so far. when utorrent is running it takes about an hour or so before the system freezez and i have to shut it down using the power button. (i have recently experienced similar crashes when using spotify, if that helps)HijackThis:Logfile of Trend Micro HijackThis v2.0.2Scan saved at 22:12:38, on 2009-01-20Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16762)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\Program\Delade filer\Symantec Shared\ccSetMgr.exeC:\Program\Delade filer\Symantec Shared\ccEvtMgr.exeC:\Program\Lavasoft\Ad-Aware\aawservice.exeC:\WINDOWS\system32\spoolsv.exeC:\Program\Delade filer\Seagate\Schedule2\schedul2.exeC:\Program\Delade filer\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeC:\Program\Bonjour\mDNSResponder.exeC:\Program\Symantec AntiVirus\DefWatch.exeC:\Program\Java\jre6\bin\jqs.exeC:\WINDOWS\system32\nvsvc32.exeC:\WINDOWS\system32\svchost.exeC:\Program\Symantec AntiVirus\Rtvscan.exeC:\WINDOWS\Explorer.EXEC:\Program\Delade filer\Symantec Shared\ccApp.exeC:\Program\SYMANT~1\VPTray.exeC:\WINDOWS\system32\RunDLL32.exeC:\WINDOWS\RTHDCPL.EXEC:\Program\Seagate\DiscWizard\DiscWizardMonitor.exeC:\Program\Seagate\DiscWizard\TimounterMonitor.exeC:\Program\Delade filer\Seagate\Schedule2\schedhlp.exeC:\WINDOWS\system32\rundll32.exeC:\Program\iTunes\iTunesHelper.exeC:\Program\Java\jre6\bin\jusched.exeC:\WINDOWS\system32\ctfmon.exeC:\WINDOWS\System32\svchost.exeC:\Program\iPod\bin\iPodService.exeC:\Program\uTorrent\uTorrent.exeC:\Program\Mozilla Firefox\firefox.exeC:\Documents and Settings\Martin Pontén\Mina dokument\Hjälpverktyg\procexp.exeC:\Documents and Settings\Martin Pontén\Mina dokument\Hjälpverktyg\HiJackThis.exeR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.localR0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = LänkarO2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dllO2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program\Java\jre6\bin\ssv.dllO2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program\Java\jre6\bin\jp2ssv.dllO2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dllO4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNCO4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMENameO4 - HKLM\..\Run: [ccApp] "C:\Program\Delade filer\Symantec Shared\ccApp.exe"O4 - HKLM\..\Run: [vptray] C:\Program\SYMANT~1\VPTray.exeO4 - HKLM\..\Run: [skyTel] SkyTel.EXEO4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [nwiz] nwiz.exe /installO4 - HKLM\..\Run: [sW20] C:\WINDOWS\system32\sw20.exeO4 - HKLM\..\Run: [sW24] C:\WINDOWS\system32\sw24.exeO4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInitO4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXEO4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXEO4 - HKLM\..\Run: [DiscWizardMonitor.exe] C:\Program\Seagate\DiscWizard\DiscWizardMonitor.exeO4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Program\Seagate\DiscWizard\TimounterMonitor.exeO4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program\Delade filer\Seagate\Schedule2\schedhlp.exe"O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program\Delade filer\Apple\Mobile Device Support\bin\AppleSyncNotifier.exeO4 - HKLM\..\Run: [QuickTime Task] "C:\Program\QuickTime\QTTask.exe" -atboottimeO4 - HKLM\..\Run: [iTunesHelper] "C:\Program\iTunes\iTunesHelper.exe"O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program\Java\jre6\bin\jusched.exe"O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exeO4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program\Delade filer\Adobe\Calibration\Adobe Gamma Loader.exeO4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program\Adobe\Acrobat 7.0\Reader\reader_sl.exeO4 - Global Startup: Microsoft Office.lnk = C:\Program\Microsoft Office\Office10\OSA.EXEO8 - Extra context menu item: E&xportera till Microsoft Excel - res://C:\Program\MICROS~2\Office10\EXCEL.EXE/3000O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program\Messenger\msmsgs.exeO16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/FacebookPhotoUploader5.cabO16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.mail.live.com/mail/w1/resources/MSNPUpld.cabO16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - http://upload.facebook.com/controls/FacebookPhotoUploader3.cabO16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1173539575828O16 - DPF: {7584C670-2274-4EFB-B00B-D6AABA6D3850} (Microsoft RDP Client Control (redist)) - http://ts.sit.se/tsweb/msrdp.cabO23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program\Lavasoft\Ad-Aware\aawservice.exeO23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program\Delade filer\Seagate\Schedule2\schedul2.exeO23 - Service: Apple Mobile Device - Apple Inc. - C:\Program\Delade filer\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeO23 - Service: Bonjour-tjänst (Bonjour Service) - Apple Inc. - C:\Program\Bonjour\mDNSResponder.exeO23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\ccEvtMgr.exeO23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\ccPwdSvc.exeO23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\ccSetMgr.exeO23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program\Symantec AntiVirus\DefWatch.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program\Delade filer\InstallShield\Driver\1050\Intel 32\IDriverT.exeO23 - Service: iPod Service - Apple Inc. - C:\Program\iPod\bin\iPodService.exeO23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program\Java\jre6\bin\jqs.exeO23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exeO23 - Service: SAVRoam (SavRoam) - symantec - C:\Program\Symantec AntiVirus\SavRoam.exeO23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\SNDSrvc.exeO23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\SPBBC\SPBBCSvc.exeO23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program\Symantec AntiVirus\Rtvscan.exeO23 - Service: TVersityMediaServer - Unknown owner - C:\Program\TVersity\Media Server\MediaServer.exe--End of file - 8145 bytesProcess explorer:Process PID CPU Description Company NameSystem Idle Process 0 96.21 Interrupts n/a Hardware Interrupts DPCs n/a 0.76 Deferred Procedure Calls System 4 smss.exe 708 Sessionshanteraren i Windows NT Microsoft Corporation csrss.exe 772 Client Server Runtime Process Microsoft Corporation winlogon.exe 812 Inloggningsprogram för Windows NT Microsoft Corporation services.exe 860 0.76 Tjänst- och styrenhetsprogram Microsoft Corporation svchost.exe 1024 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1104 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1144 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1228 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1264 Generic Host Process for Win32 Services Microsoft Corporation ccSetMgr.exe 1484 Symantec Settings Manager Service Symantec Corporation ccEvtMgr.exe 1532 Symantec Event Manager Service Symantec Corporation aawservice.exe 1640 Ad-Aware Service Lavasoft spoolsv.exe 1912 Spooler SubSystem App Microsoft Corporation schedul2.exe 2012 Acronis Scheduler 2 Acronis AppleMobileDeviceService.exe 2032 Apple Mobile Device Service Apple Inc. mDNSResponder.exe 240 Bonjour Service Apple Inc. DefWatch.exe 248 Virus Definition Daemon Symantec Corporation jqs.exe 324 Java Quick Starter Service Sun Microsystems, Inc. nvsvc32.exe 484 NVIDIA Driver Helper Service, Version 91.31 NVIDIA Corporation svchost.exe 536 Generic Host Process for Win32 Services Microsoft Corporation Rtvscan.exe 580 Symantec AntiVirus Symantec Corporation MediaServer.exe 1164 alg.exe 1772 Application Layer Gateway Service Microsoft Corporation svchost.exe 1788 Generic Host Process for Win32 Services Microsoft Corporation iPodService.exe 672 iPodService Module Apple Inc. lsass.exe 872 LSA Shell (Export Version) Microsoft Corporationexplorer.exe 3464 Utforskaren Microsoft Corporation ccApp.exe 3876 Symantec User Session Symantec Corporation VPTray.exe 3924 Symantec AntiVirus Symantec Corporation rundll32.exe 4028 Kör en DLL-fil som ett program Microsoft Corporation RTHDCPL.exe 4036 Realtek HD Audio Control Panel Realtek Semiconductor Corp. DiscWizardMonitor.exe 360 Seagate DiscWizard Monitor Seagate TimounterMonitor.exe 372 Monitor for Acronis True Image Backup Archive Explorer Acronis schedhlp.exe 1048 Acronis Scheduler Helper Acronis iTunesHelper.exe 552 iTunesHelper Module Apple Inc. jusched.exe 1444 Java Platform SE binary Sun Microsystems, Inc. ctfmon.exe 1680 CTF Loader Microsoft Corporation uTorrent.exe 1496 2.27 µTorrent BitTorrent, Inc. firefox.exe 2572 Firefox Mozilla Corporation procexp.exe 3888 Sysinternals Process Explorer Sysinternals - www.sysinternals.comrundll32.exe 1208 Kör en DLL-fil som ett program Microsoft CorporationProcess: uTorrent.exe Pid: 1496Name Description Company Name VersionACTIVEDS.dll DLL-fil för Active Directory Router Layer Microsoft Corporation 5.01.2600.2180adsldpc.dll ADs LDAP-provider C DLL Microsoft Corporation 5.01.2600.2180ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 5.01.2600.2180ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.05.2284.0000CLBCATQ.DLL Microsoft Corporation 2001.12.4414.0308COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.00.2900.2982comdlg32.dll DLL-fil med vanliga dialogrutor Microsoft Corporation 6.00.2900.2180COMRes.dll Microsoft Corporation 2001.12.4414.0258credui.dll Användargränssnitt för referenshanteraren Microsoft Corporation 5.01.2600.2180ctype.nls DnsApi.dll DNS Client API DLL Microsoft Corporation 5.01.2600.3394GDI32.dll GDI Client DLL Microsoft Corporation 5.01.2600.3466hnetcfg.dll Hanteraren för konfiguration av hemnätverk Microsoft Corporation 5.01.2600.2180IMM32.DLL Windows XP IMM32 API Client DLL Microsoft Corporation 5.01.2600.2180Iphlpapi.dll API för IP Helper Microsoft Corporation 5.01.2600.2912kernel32.dll Klient-DLL för Windows NT BASE API Microsoft Corporation 5.01.2600.3119locale.nls LPK.DLL Language Pack Microsoft Corporation 5.01.2600.2180mdnsNSP.dll Bonjour Namespace Provider Apple Inc. 1.00.0005.0011MPRAPI.dll Windows NT MP Router Administration DLL Microsoft Corporation 5.01.2600.2180MSCTF.dll DLL-fil för MSCTF-servern Microsoft Corporation 5.01.2600.3319msctfime.ime Microsoft Text Frame Work Service IME Microsoft Corporation 5.01.2600.2180msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.00.2600.2180mswsock.dll Tjänstprovider för Microsoft Windows Sockets 2.0 Microsoft Corporation 5.01.2600.3394netapi32.dll Net Win32 API DLL Microsoft Corporation 5.01.2600.3462NETSHELL.dll Användargränssnitt för nätverksanslutning Microsoft Corporation 5.01.2600.2180ntdll.dll DLL-fil för NT Layer Microsoft Corporation 5.01.2600.2180NTMARTA.DLL Windows NT MARTA-provider Microsoft Corporation 5.01.2600.2180nview.dll NVIDIA nView Desktop and Window Manager 110.38 NVIDIA Corporation 6.14.0010.11038NVWRSSV.DLL NVIDIA nView Desktop and Window Manager NVIDIA Corporation 6.14.0010.11038ole32.dll Microsoft OLE för Windows Microsoft Corporation 5.01.2600.2726oleaut32.dll Microsoft Corporation 5.01.2600.3266PSAPI.DLL Process Status Helper Microsoft Corporation 5.01.2600.2180rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 5.01.2600.2938RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 5.01.2600.3173rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 5.01.2600.2161rtutils.dll Routing Utilities Microsoft Corporation 5.01.2600.2180SAMLIB.dll SAM Library DLL Microsoft Corporation 5.01.2600.2180Secur32.dll Security Support Provider Interface Microsoft Corporation 5.01.2600.2180SETUPAPI.dll API för installationsprogrammet för Windows Microsoft Corporation 5.01.2600.2180SHELL32.dll DLL-fil för Windows-gränssnittet Microsoft Corporation 6.00.2900.3241shfolder.dll Shell Folder Service Microsoft Corporation 6.00.2900.2180SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.00.2900.2995sortkey.nls sorttbls.nls SXS.DLL Fusion 2.5 Microsoft Corporation 5.01.2600.3019unicode.nls USER32.dll Klient-DLL-fil för Windows XP Microsoft Corporation 5.01.2600.3099USERENV.dll Userenv Microsoft Corporation 5.01.2600.2180USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.420.2600.2180uTorrent.exe µTorrent BitTorrent, Inc. 1.08.0001.12639uxtheme.dll Bibliotek för Microsoft UxTheme Microsoft Corporation 6.00.2900.2180VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 5.01.2600.2180WINMM.dll MCI API DLL Microsoft Corporation 5.01.2600.2180WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 5.01.2600.2180WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 5.01.2600.2180WS2HELP.dll Windows Socket 2.0 Helper for Windows NT Microsoft Corporation 5.01.2600.2180wshtcpip.dll Windows Sockets Helper DLL Microsoft Corporation 5.01.2600.2180xpsp2res.dll Service Pack 2-meddelanden Microsoft Corporation 5.01.2600.2180very thankful for any kind of help!!cheers/martin Link to comment Share on other sites More sharing options...
moogly Posted January 21, 2009 Report Share Posted January 21, 2009 I see only nview.dll NVIDIA nView Desktop and Window Manager 110.38 NVIDIA Corporation 6.14.0010.11038NVWRSSV.DLL NVIDIA nView Desktop and Window Manager NVIDIA Corporation 6.14.0010.11038injected in uT but normally that are not these DLL from Nvidia that are the culprits of freezing/crashing.It could be a pbm with Symantec. Did you set exceptions about uT in Symantec ? Did you check at the Symantec logs to see if something was anormal ?Are you running wireless ? Link to comment Share on other sites More sharing options...
ponmar Posted January 21, 2009 Author Report Share Posted January 21, 2009 thank you for your answer!im not very good at this so; how do i set an utorrent exception in symantec? i got as far as the "exceptions"-tab but under what category can it be found?and yes, im using a wireless connection. my drivers are updated.edit:im now pretty sure that my wireless network card was the problem. tried with a cable and it worked like a charm. the card was a few years old and didnt work well with the router. so running via cable solved my problem. an uppgrade of router and network card would probably do the same. Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.