Jump to content

utorrent freezes


Rayne

Recommended Posts

  • Replies 65
  • Created
  • Last Reply

I did an uninstall of System Mechanic 8, but it didn't help. I removed farlsp.dll, but that blocked me from the internet, so I restored it.

I am sending a Logfile of Trend Micro HijackThis and Process Explorer Log:

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 5:45:19 PM, on 3/2/2009

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18372)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe

C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe

C:\Program Files\Common Files\Portrait Displays\Shared\dtsrvc.exe

C:\Program Files\Google\Update\GoogleUpdate.exe

C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

C:\Program Files\Java\jre6\bin\jqs.exe

C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe

C:\WINDOWS\system32\sessmgr.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\vssvc.exe

C:\WINDOWS\system32\SearchIndexer.exe

C:\Program Files\Canon\CAL\CALMAIN.exe

C:\WINDOWS\SM1BG.EXE

C:\Program Files\Canon\Memory Card Utility\iP6700D\PDUiP6700DMon.exe

C:\WINDOWS\system32\rundll32.exe

C:\WINDOWS\system32\devldr32.exe

C:\Program Files\Nuance\PDF Professional 5\pdfpro5hook.exe

C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe

C:\Program Files\SecCopy\SecCopy.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\JetToolBar\JetTB.exe

C:\Program Files\Windows Desktop Search\WindowsSearch.exe

C:\Program Files\BitDefender\BitDefender 2009\seccenter.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\WINDOWS\system32\SearchProtocolHost.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: EWPBrowseObject Class - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.4472\swg.dll

O2 - BHO: Spybot-S&D IE Protection - {B1892F58-1116-4DEC-92AA-577872EC3D3D} - (no file)

O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll

O2 - BHO: ZeonIEEventHelper Class - {DA986D7D-CCAF-47B2-84FE-BFA1549BEBF9} - C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O2 - BHO: Cooliris Plug-In for Internet Explorer - {EAEE5C74-6D0D-4aca-9232-0DA4A7B866BA} - C:\Program Files\PicLensIE\cooliris.dll

O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll

O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll

O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp

O4 - HKLM\..\Run: [TrayServer] C:\Program Files\MAGIX\Movie_Edit_Pro_14_PLUS\TrayServer.exe

O4 - HKLM\..\Run: [sM1BG] C:\WINDOWS\SM1BG.EXE

O4 - HKLM\..\Run: [PRONoMgrWired] C:\Program Files\Intel\PROSetWired\NCS\PROSet\PRONoMgr.exe

O4 - HKLM\..\Run: [PDUiP6700DMon] C:\Program Files\Canon\Memory Card Utility\iP6700D\PDUiP6700DMon.exe

O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent

O4 - HKLM\..\Run: [PDFHook] C:\Program Files\Nuance\PDF Professional 5\pdfpro5hook.exe

O4 - HKLM\..\Run: [bDAgent] "C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe"

O4 - HKCU\..\Run: [second Copy 2000] "C:\Program Files\SecCopy\SecCopy.exe"

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - Global Startup: jetToolBar.lnk = C:\Program Files\JetToolBar\JetTB.exe

O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe

O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm

O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200

O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx

O8 - Extra context menu item: Append the content of the link to existing PDF file - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIEAppend.HTML

O8 - Extra context menu item: Append the content of the selected links to existing PDF file - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIEAppendSelLinks.HTML

O8 - Extra context menu item: Append to existing PDF file - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIEAppend.HTML

O8 - Extra context menu item: Create PDF file - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIECapture.HTML

O8 - Extra context menu item: Create PDF file from the content of the link - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIECapture.HTML

O8 - Extra context menu item: Create PDF files from the selected links - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIECaptureSelLinks.HTML

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000

O8 - Extra context menu item: Open with Nuance PDF Converter 5.0 - res://C:\Program Files\Nuance\PDF Professional 5\cnvres_eng.dll /100

O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

O9 - Extra button: Launch Cooliris - {3437D640-C91A-458f-89F5-B9095EA4C28B} - C:\Program Files\PicLensIE\cooliris.dll

O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files\Bonjour\ExplorerPlugin.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

O9 - Extra button: Researcher - {9455301C-CF6B-11D3-A266-00C04F689C50} - C:\Program Files\Common Files\Microsoft Shared\Encarta Researcher\EROProj.dll

O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll

O17 - HKLM\System\CCS\Services\Tcpip\..\{D672EFF8-A0F8-43DD-9D83-BF7D1264FF52}: NameServer = 205.171.2.65,205.171.3.65

O23 - Service: aawservice - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe

O23 - Service: Adobe Active File Monitor V4 (AdobeActiveFileMonitor4.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe

O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: BitDefender Arrakis Server (Arrakis3) - BitDefender S.R.L. http://www.bitdefender.com - C:\Program Files\Common Files\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: Bonjour Service - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe

O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:\Program Files\Common Files\Portrait Displays\Shared\dtsrvc.exe

O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe

O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: Google Update Service (gupdate1c9873517128178) (gupdate1c9873517128178) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender SRL - C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe

O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe

O23 - Service: SiSoftware Deployment Agent Service (SandraAgentSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2009.SP2\RpcAgentSrv.exe

O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

O23 - Service: UPnPService - Magix AG - C:\Program Files\Common Files\MAGIX Shared\UPnPService\UPnPService.exe

O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S. R. L. - C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe

--

End of file - 11291 bytes

Process PID CPU Description Company Name

System Idle Process 0 84.85

Interrupts n/a Hardware Interrupts

DPCs n/a Deferred Procedure Calls

System 4 3.03

smss.exe 680 Windows NT Session Manager Microsoft Corporation

csrss.exe 728 Client Server Runtime Process Microsoft Corporation

winlogon.exe 760 Windows NT Logon Application Microsoft Corporation

services.exe 804 1.52 Services and Controller app Microsoft Corporation

svchost.exe 980 Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1048 Generic Host Process for Win32 Services Microsoft Corporation

livesrv.exe 1136 BitDefender Update Service BitDefender SRL

vsserv.exe 1152 BitDefender Security Service BitDefender S. R. L.

svchost.exe 1236 Generic Host Process for Win32 Services Microsoft Corporation

GoogleUpdate.exe 556 Google Installer Google Inc.

svchost.exe 1288 Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1564 Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1800 Generic Host Process for Win32 Services Microsoft Corporation

spoolsv.exe 1944 Spooler SubSystem App Microsoft Corporation

PhotoshopElementsFileAgent.exe 304

svchost.exe 364 Generic Host Process for Win32 Services Microsoft Corporation

DTSRVC.exe 436

GoogleUpdaterService.exe 576 gusvc Google

jqs.exe 656 6.82 Java Quick Starter Service Sun Microsystems, Inc.

mdm.exe 724 Machine Debug Manager Microsoft Corporation

sessmgr.exe 1168 Microsoft® Remote Desktop Help Session Manager Microsoft Corporation

svchost.exe 1556 Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1620 Generic Host Process for Win32 Services Microsoft Corporation

vssvc.exe 1792 Microsoft® Volume Shadow Copy Service Microsoft Corporation

searchindexer.exe 184 Microsoft Windows Search Indexer Microsoft Corporation

CALMAIN.exe 2080 Canon Camera Access Library 8 Canon Inc.

alg.exe 3468 Application Layer Gateway Service Microsoft Corporation

lsass.exe 816 1.52 LSA Shell (Export Version) Microsoft Corporation

explorer.exe 1596 Windows Explorer Microsoft Corporation

SM1bg.exe 2352 Cypress USB Mass Storage Driver Background Application Cypress Semiconductor

PDUiP6700DMon.exe 2388 PDUMon CANON INC.

rundll32.exe 2396 Run a DLL as an App Microsoft Corporation

devldr32.exe 2424 DevLdr32 Creative Technology Ltd.

PdfPro5Hook.exe 2448 PdfCreateHook Application Nuance Communications, Inc.

bdagent.exe 2456 0.76 BitDefender Agent BitDefender S.R.L.

seccenter.exe 2652 BitDefender Security Center

SecCopy.exe 2464 Second Copy 2000 Centered Systems

ctfmon.exe 2472 CTF Loader Microsoft Corporation

JetTB.exe 2488 jetToolBar JetAudio, Inc.

firefox.exe 3012 Firefox Mozilla Corporation

WindowsSearch.exe 2496 Windows Search System Tray Microsoft Corporation

uTorrent.exe 4032 0.76 µTorrent BitTorrent, Inc.

procexp.exe 3612 0.76 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

Process: uTorrent.exe Pid: 4032

Name Description Company Name Version

ACTIVEDS.dll ADs Router Layer DLL Microsoft Corporation 5.1.2600.2180

adsldpc.dll ADs LDAP Provider C DLL Microsoft Corporation 5.1.2600.2180

ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 5.1.2600.2180

ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.5.2284.0

CLBCATQ.DLL Microsoft Corporation 2001.12.4414.308

COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.0.2900.2982

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.0.2900.2180

COMRes.dll Microsoft Corporation 2001.12.4414.258

CRYPT32.dll Crypto API32 Microsoft Corporation 5.131.2600.2180

ctype.nls

DnsApi.dll DNS Client API DLL Microsoft Corporation 5.1.2600.3394

FarLsp.dll

GDI32.dll GDI Client DLL Microsoft Corporation 5.1.2600.3466

hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 5.1.2600.2180

IMM32.DLL Windows XP IMM32 API Client DLL Microsoft Corporation 5.1.2600.2180

Iphlpapi.dll IP Helper API Microsoft Corporation 5.1.2600.2912

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 5.1.2600.3119

locale.nls

mdnsNSP.dll Bonjour Namespace Provider Apple Computer, Inc. 1.0.2.9

MPRAPI.dll Windows NT MP Router Administration DLL Microsoft Corporation 5.1.2600.2180

MSASN1.dll ASN.1 Runtime APIs Microsoft Corporation 5.1.2600.2180

MSCTF.dll MSCTF Server DLL Microsoft Corporation 5.1.2600.3319

msctfime.ime Microsoft Text Frame Work Service IME Microsoft Corporation 5.1.2600.2180

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.2600.2180

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 5.1.2600.3394

netapi32.dll Net Win32 API DLL Microsoft Corporation 5.1.2600.3462

ntdll.dll NT Layer DLL Microsoft Corporation 5.1.2600.2180

ole32.dll Microsoft OLE for Windows Microsoft Corporation 5.1.2600.2726

oleaut32.dll Microsoft Corporation 5.1.2600.3266

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 5.1.2600.2938

RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 5.1.2600.3173

rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 5.1.2600.2161

rtutils.dll Routing Utilities Microsoft Corporation 5.1.2600.2180

SAMLIB.dll SAM Library DLL Microsoft Corporation 5.1.2600.2180

Secur32.dll Security Support Provider Interface Microsoft Corporation 5.1.2600.2180

SETUPAPI.dll Windows Setup API Microsoft Corporation 5.1.2600.2180

SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.0.2900.3402

shfolder.dll Shell Folder Service Microsoft Corporation 6.0.2900.2180

SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.0.2900.3395

sortkey.nls

sorttbls.nls

unicode.nls

USER32.dll Windows XP USER API Client DLL Microsoft Corporation 5.1.2600.3099

USERENV.dll Userenv Microsoft Corporation 5.1.2600.2180

uTorrent.exe µTorrent BitTorrent, Inc. 1.8.2.14458

uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.0.2900.2180

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 5.1.2600.2180

WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 5.1.2600.2180

WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 5.1.2600.2180

WS2HELP.dll Windows Socket 2.0 Helper for Windows NT Microsoft Corporation 5.1.2600.2180

wshtcpip.dll Windows Sockets Helper DLL Microsoft Corporation 5.1.2600.2180

Link to comment
Share on other sites

hecookaz, I'm running out of ideas. :/

farlsp.dll seems to be a part of your internet connection.

The only thing I see is to remove completely temporarily BitDefender and check if freezing continues.

If yes, reinstall BD. I know there is guide to set BD correctly: http://forum.utorrent.com/viewtopic.php?pid=319328#p319328

Is it possible to know the max UL speed of your connection and see what you set in uT in Preferences > Bandwidth?

Link to comment
Share on other sites

Evidently it was a winsock problem. I downloaded a utility called LSPFix. Per the literature LSPFix repairs Winsock 2 settings, caused by buggy or improperly removed Internet software that result in loss of Internet access. I ran LSPFix & tried a download and it worked for the first time.

LSPFix worked for me, so if anyone else has a similar problem they could give it a try.

Thanks all for the help. It was a strange problem.

Link to comment
Share on other sites

I'm having the freeze issue also I did a complete system restore recently I'm running Windows 2000 pro had issues but before the restore utorrent worked just fine now nothing so here is a hijack this log if anyone couldLogfile of Trend Micro HijackThis v2.0.2

Scan saved at 3:23:25 PM, on 3/5/2009

Platform: Windows 2000 SP4 (WinNT 5.00.2195)

MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Boot mode: Normal

Running processes:

C:\Winnt\System32\smss.exe

C:\Winnt\system32\csrss.exe

C:\Winnt\system32\winlogon.exe

C:\Winnt\system32\services.exe

C:\Winnt\system32\lsass.exe

C:\Winnt\system32\svchost.exe

C:\WINNT\system32\ZoneLabs\vsmon.exe

C:\Winnt\system32\spoolsv.exe

c:\cpqapps\Aclient\Aclient.exe

C:\Program Files\Compaq\Compaq Management Agents\cpqalert.exe

C:\PROGRA~1\Compaq\COMPAQ~1\CPQWEB~1\WebDmi.exe

C:\Winnt\Cpqdiag\Cpqdfwag.exe

C:\Program Files\Common Files\Authentium\AntiVirus\dvpapi.exe

C:\WINNT\system32\svchost.exe

C:\Winnt\system32\hidserv.exe

C:\Program Files\iolo\common\lib\ioloServiceManager.exe

C:\Program Files\iolo\System Mechanic\IoloSGCtrl.exe

C:\Program Files\Java\jre6\bin\jqs.exe

C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe

C:\Winnt\system32\MSTask.exe

C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe

C:\Program Files\Compaq\Compaq Management Agents\Dmi\Win32\bin\Win32sl.exe

C:\Winnt\System32\WBEM\WinMgmt.exe

C:\Winnt\system32\svchost.exe

C:\Program Files\Webroot\Washer\WasherSvc.exe

C:\Winnt\Explorer.EXE

C:\PROGRA~1\Compaq\COMPAQ~1\cpqdmi.exe

C:\Program Files\Java\jre6\bin\jusched.exe

C:\Program Files\Analog Devices\SoundMAX\SMTray.exe

C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe

C:\WINNT\system32\WBEM\unsecapp.exe

C:\Winnt\MouPter.exe

C:\Program Files\COMPAQ\Easy Access Button Support\StartEAK.exe

C:\Program Files\iolo\System Mechanic\SystemGuardAlerter.exe

C:\Winnt\system32\igfxtray.exe

C:\Winnt\system32\hkcmd.exe

C:\Winnt\system32\igfxpers.exe

C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe

C:\PROGRA~1\Compaq\COMPAQ~1\CHKADMIN.EXE

C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe

C:\Program Files\Webroot\Washer\wwDisp.exe

C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe

C:\Program Files\RocketDock\RocketDock.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Program Files\Compaq\Easy Access Button Support\CPQEAKSYSTEMTRAY.EXE

C:\Program Files\Compaq\Easy Access Button Support\CPQEADM.EXE

C:\Compaq\EAKDRV\EAUSBKBD.EXE

C:\PROGRA~1\Compaq\EASYAC~1\BttnServ.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Webroot\Spy Sweeper\SSU.EXE

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.compaq.com/1Q00CDT/0409/bl8.asp

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.compaq.com/1Q00CDT/0409/bl7.asp

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.compaq.com/1Q00CDT/0409/bl8.asp

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll

O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx

O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll

O3 - Toolbar: Foxit Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll

O4 - HKLM\..\Run: [synchronization Manager] "mobsync.exe" /logon

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"

O4 - HKLM\..\Run: [smapp] "C:\Program Files\Analog Devices\SoundMAX\SMTray.exe"

O4 - HKLM\..\Run: [DrvLsnr] "C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe"

O4 - HKLM\..\Run: [setRefresh] "C:\Program Files\Compaq\SetRefresh\SetRefresh.exe"

O4 - HKLM\..\Run: [mMouse] MouPter.exe

O4 - HKLM\..\Run: [setMou] SetMou.exe

O4 - HKLM\..\Run: [CPQEASYACC] "C:\Program Files\COMPAQ\Easy Access Button Support\StartEAK.exe"

O4 - HKLM\..\Run: [systemGuardAlerter] "C:\Program Files\iolo\System Mechanic\SystemGuardAlerter.exe"

O4 - HKLM\..\Run: [igfxtray] C:\Winnt\system32\igfxtray.exe

O4 - HKLM\..\Run: [igfxhkcmd] C:\Winnt\system32\hkcmd.exe

O4 - HKLM\..\Run: [igfxpers] C:\Winnt\system32\igfxpers.exe

O4 - HKLM\..\Run: [Ad-Watch] "C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe"

O4 - HKLM\..\Run: [ChkAdmin] C:\PROGRA~1\Compaq\COMPAQ~1\CHKADMIN.EXE

O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"

O4 - HKLM\..\Run: [spySweeper] C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe /startintray

O4 - HKLM\..\RunServices: [CPQDFWAG] C:\Winnt\Cpqdiag\CpqDfwAg.exe

O4 - HKCU\..\Run: [Window Washer] "C:\Program Files\Webroot\Washer\wwDisp.exe"

O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"

O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"

O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"

O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe /desktop (User 'Default user')

O8 - Extra context menu item: Customize Menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html

O8 - Extra context menu item: Fill Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O8 - Extra context menu item: RoboForm Toolbar - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O8 - Extra context menu item: Save Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Winnt\web\related.htm

O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Winnt\web\related.htm

O10 - Unknown file in Winsock LSP: c:\winnt\system32\iavlsp.dll

O10 - Unknown file in Winsock LSP: c:\winnt\system32\iavlsp.dll

O10 - Unknown file in Winsock LSP: c:\program files\iolo\common\firewall\ifw_xfilter.dll

O10 - Unknown file in Winsock LSP: c:\program files\iolo\common\firewall\ifw_xfilter.dll

O10 - Unknown file in Winsock LSP: c:\program files\iolo\common\firewall\ifw_xfilter.dll

O10 - Unknown file in Winsock LSP: c:\program files\iolo\common\firewall\ifw_xfilter.dll

O10 - Unknown file in Winsock LSP: c:\program files\iolo\common\firewall\ifw_xfilter.dll

O10 - Unknown file in Winsock LSP: c:\winnt\system32\iavlsp.dll

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1235698118625

O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} (GMNRev Class) - http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection.cab

O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://javadl.sun.com/webapps/download/AutoDL?BundleId=27986

O23 - Service: Altiris Client Service (AClient) - Altiris, Inc. - c:\cpqapps\Aclient\Aclient.exe

O23 - Service: Insight Local Alerter (CPQALERT) - Hewlett-Packard Company - C:\Program Files\Compaq\Compaq Management Agents\cpqalert.exe

O23 - Service: cpqdmi - Compaq Computer Corporation - C:\PROGRA~1\Compaq\COMPAQ~1\cpqdmi.exe

O23 - Service: Insight Web Agent (cpqWebDmi) - Hewlett-Packard Company - C:\PROGRA~1\Compaq\COMPAQ~1\CPQWEB~1\WebDmi.exe

O23 - Service: Remote Diagnostics Enabling Agent (DfwWebAgent) - Hewlett-Packard - C:\Winnt\Cpqdiag\Cpqdfwag.exe

O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\Winnt\System32\dmadmin.exe

O23 - Service: DvpApi (dvpapi) - Authentium, Inc. - C:\Program Files\Common Files\Authentium\AntiVirus\dvpapi.exe

O23 - Service: iolo FileInfoList Service (ioloFileInfoList) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe

O23 - Service: iolo Product Update Service (ioloProductUpdate) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe

O23 - Service: iolo System Service (ioloSystemService) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe

O23 - Service: iolo System Guard (IOLO_SRV) - Unknown owner - C:\Program Files\iolo\System Mechanic\IoloSGCtrl.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe

O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINNT\system32\ZoneLabs\vsmon.exe

O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe

O23 - Service: Win32Sl (WIN32SL) - Intel - C:\Program Files\Compaq\Compaq Management Agents\Dmi\Win32\bin\Win32sl.exe

O23 - Service: Window Washer Engine (wwEngineSvc) - Webroot Software, Inc. - C:\Program Files\Webroot\Washer\WasherSvc.exe

--

End of file - 10576 bytes

and just so ya know iolo security software is installed but disabled.

Link to comment
Share on other sites

Hope this is what you were looking forProcess list saved on 4:42:07 PM, on 3/5/2009

Platform: Windows 2000 SP4 (WinNT 5.00.2195)

[pid] [full path to filename] [file version] [company name]

168 C:\Winnt\System32\smss.exe 5.0.2195.6601 Microsoft Corporation

196 C:\Winnt\system32\csrss.exe 5.0.2195.6601 Microsoft Corporation

216 C:\Winnt\system32\winlogon.exe 5.0.2195.6997 Microsoft Corporation

244 C:\Winnt\system32\services.exe 5.0.2195.7035 Microsoft Corporation

256 C:\Winnt\system32\lsass.exe 5.0.2195.7011 Microsoft Corporation

404 C:\Winnt\system32\svchost.exe 5.0.2134.1 Microsoft Corporation

456 C:\WINNT\system32\ZoneLabs\vsmon.exe 7.0.483.0 Zone Labs, LLC

568 C:\Winnt\system32\spoolsv.exe 5.0.2195.7059 Microsoft Corporation

596 c:\cpqapps\Aclient\Aclient.exe 5.5.103.0 Altiris, Inc.

604 C:\Program Files\Compaq\Compaq Management Agents\cpqalert.exe 5.0.8.1 Hewlett-Packard Company

652 C:\PROGRA~1\Compaq\COMPAQ~1\CPQWEB~1\WebDmi.exe 5.0.8.1 Hewlett-Packard Company

744 C:\Winnt\Cpqdiag\Cpqdfwag.exe 3.1.0.2005 Hewlett-Packard

764 C:\Program Files\Common Files\Authentium\AntiVirus\dvpapi.exe 4.94.107.521 Authentium, Inc.

788 C:\WINNT\system32\svchost.exe 5.0.2134.1 Microsoft Corporation

816 C:\Winnt\system32\hidserv.exe 5.0.2195.6655 Microsoft Corporation

852 C:\Program Files\iolo\common\lib\ioloServiceManager.exe 1.6.3.4

904 C:\Program Files\iolo\System Mechanic\IoloSGCtrl.exe 8.5.4.5

928 C:\Program Files\Java\jre6\bin\jqs.exe 6.0.120.4 Sun Microsystems, Inc.

992 C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe 8.0.0.0 Lavasoft

1088 C:\Winnt\system32\MSTask.exe 4.71.2195.6972 Microsoft Corporation

1128 C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe 3.2.6.0 Analog Devices, Inc.

1152 C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe 3.5.6.114 Webroot Software, Inc.

1352 C:\Program Files\Compaq\Compaq Management Agents\Dmi\Win32\bin\Win32sl.exe 2.0.0.54 Intel

1368 C:\Winnt\System32\WBEM\WinMgmt.exe 1.50.1085.100 Microsoft Corporation

1380 C:\Winnt\system32\svchost.exe 5.0.2134.1 Microsoft Corporation

1408 C:\Program Files\Webroot\Washer\WasherSvc.exe 6.5.5.155 Webroot Software, Inc.

1500 C:\Winnt\Explorer.EXE 5.0.3700.6690 Microsoft Corporation

1552 C:\PROGRA~1\Compaq\COMPAQ~1\cpqdmi.exe 5.0.8.1 Compaq Computer Corporation

1652 C:\Program Files\Java\jre6\bin\jusched.exe 6.0.120.4 Sun Microsystems, Inc.

1776 C:\Program Files\Analog Devices\SoundMAX\SMTray.exe 3.2.14.0 Analog Devices, Inc.

1788 C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe 1.0.0.2 adi

1808 C:\WINNT\system32\WBEM\unsecapp.exe 1.50.1085.7 Microsoft Corporation

1824 C:\Winnt\MouPter.exe 2.2.0.0 Chicony

1864 C:\Program Files\COMPAQ\Easy Access Button Support\StartEAK.exe 8.0.0.330 Compaq Computer Corporation

1876 C:\Program Files\iolo\System Mechanic\SystemGuardAlerter.exe 8.5.4.5

1896 C:\Winnt\system32\igfxtray.exe 3.0.0.4396 Intel Corporation

1912 C:\Winnt\system32\hkcmd.exe 3.0.0.4396 Intel Corporation

1920 C:\Winnt\system32\igfxpers.exe 3.0.0.4396 Intel Corporation

1936 C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe 8.0.0.0 Lavasoft

1760 C:\PROGRA~1\Compaq\COMPAQ~1\CHKADMIN.EXE 5.0.8.1 Hewlett-Packard Company

1884 C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe 7.0.483.0 Zone Labs, LLC

1812 C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe 5.5.7.124 Webroot Software, Inc.

1924 C:\Program Files\Webroot\Washer\wwDisp.exe 6.5.5.155 Webroot Software, Inc.

1952 C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe 6.9.92.0 Siber Systems

1960 C:\Program Files\RocketDock\RocketDock.exe

1968 C:\Program Files\uTorrent\uTorrent.exe 1.8.2.14458 BitTorrent, Inc.

2024 C:\Program Files\Compaq\Easy Access Button Support\CPQEAKSYSTEMTRAY.EXE 8.0.0.379

2044 C:\Program Files\Compaq\Easy Access Button Support\CPQEADM.EXE 8.0.0.411 HP Company

2064 C:\Compaq\EAKDRV\EAUSBKBD.EXE 8.0.0.571 Compaq

2304 C:\PROGRA~1\Compaq\EASYAC~1\BttnServ.exe 6.0.0.437 Compaq Computer Corporation

2168 C:\Program Files\Mozilla Firefox\firefox.exe 1.9.0.3334 Mozilla Corporation

2448 C:\Program Files\Webroot\Spy Sweeper\SSU.EXE

1464 C:\Program Files\Trend Micro\HijackThis\HijackThis.exe 2.0.0.2 Trend Micro Inc.

DLLs loaded by process C:\Winnt\System32\smss.exe:

[full path to filename] [file version] [company name]

C:\Winnt\system32\ntdll.dll 5.0.2195.7006 Microsoft Corporation

C:\Winnt\System32\sfcfiles.dll 5.0.2195.7038 Microsoft Corporation

Link to comment
Share on other sites

Okay got the right program hope this is right logProcess PID CPU Description Company Name

System Idle Process 0 100.00

Interrupts n/a Hardware Interrupts

DPCs n/a Deferred Procedure Calls

System 8

smss.exe 168 Windows NT Session Manager Microsoft Corporation

csrss.exe 196 Client Server Runtime Process Microsoft Corporation

WINLOGON.EXE 216 Windows NT Logon Application Microsoft Corporation

SERVICES.EXE 244 Services and Controller app Microsoft Corporation

svchost.exe 404 Generic Host Process for Win32 Services Microsoft Corporation

unsecapp.exe 1808 Windows Management Instrumentation Microsoft Corporation

BttnServ.exe 2304 Button Server Compaq Computer Corporation

vsmon.exe 456 TrueVector Service Zone Labs, LLC

spoolsv.exe 568 Spooler SubSystem App Microsoft Corporation

AClient.exe 596 aclient Altiris, Inc.

Cpqalert.exe 604 Insight Local Alert Service Hewlett-Packard Company

Webdmi.exe 652 DMI Web Management Service Hewlett-Packard Company

CPQDFWAG.EXE 744 Diagnostics Application Hewlett-Packard

dvpapi.exe 764 Authentium, Inc.

svchost.exe 788 Generic Host Process for Win32 Services Microsoft Corporation

hidserv.exe 816 HID Audio Service Microsoft Corporation

ioloServiceMana 852

IoloSGCtrl.exe 904

jqs.exe 928 Java Quick Starter Service Sun Microsystems, Inc.

AAWService.exe 992 Ad-Aware Service Application Lavasoft

mstask.exe 1088 Task Scheduler Engine Microsoft Corporation

SMAgent.exe 1128 SoundMAX service agent component Analog Devices, Inc.

SpySweeper.exe 1152 Spy Sweeper Engine Webroot Software, Inc.

ssu.exe 2448

Win32sl.exe 1352 WIN32SL Intel

winmgmt.exe 1368 Windows Management Instrumentation Microsoft Corporation

svchost.exe 1380 Generic Host Process for Win32 Services Microsoft Corporation

WasherSvc.exe 1408 Window Washer Engine Webroot Software, Inc.

Cpqdmi.exe 1552 Compaq DMI Service Extension Compaq Computer Corporation

LSASS.EXE 256 LSA Executable and Server DLL (Export Version) Microsoft Corporation

explorer.exe 1500 Windows Explorer Microsoft Corporation

jusched.exe 1652 Java Platform SE binary Sun Microsystems, Inc.

SMTray.exe 1776 SoundMAX System Tray Analog Devices, Inc.

DrvLsnr.exe 1788 DrvListnr adi

MouPter.exe 1824 Chicony Wireless Driver Chicony

STARTEAK.exe 1864 STARTEAK Compaq Computer Corporation

CpqEAKSystemTra 2024 CpqEAKSystemTray MFC Application

CPQEADM.exe 2044 Easy Access Software Demon HP Company

EAUSBKBD.exe 2064 EAUSBKBD Compaq

SystemGuardAler 1876

igfxtray.exe 1896 igfxTray Module Intel Corporation

hkcmd.exe 1912 hkcmd Module Intel Corporation

igfxpers.exe 1920 persistence Module Intel Corporation

AAWTray.exe 1936 Ad-Aware Tray Application Lavasoft

Chkadmin.exe 1760 CHKADMIN MFC Application Hewlett-Packard Company

zlclient.exe 1884 ZoneAlarm Client Zone Labs, LLC

SpySweeperUI.ex 1812 Spy Sweeper Client Executable Webroot Software, Inc.

wwDisp.exe 1924 Window Washer Client Executable Webroot Software, Inc.

robotaskbaricon 1952 RoboForm TaskBar Icon Siber Systems

RocketDock.exe 1960

firefox.exe 2168 Firefox Mozilla Corporation

uTorrent.exe 1968 µTorrent BitTorrent, Inc.

procexp.exe 2468 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

Link to comment
Share on other sites

  • 3 months later...

i`m also having freeze issues. it started when switched from xp to vista(had no problems before). system freezes for a minute or so, but only when i use utorrent. the freezes get longer every time, but if i manage to close it they stop and the system runs fine again. two weeks ago i hab to reinstall vista, but the freezes stayed.

sys specs: Intel Core 2 2.4Ghz, Vista 32bit SP1, Asus Motherboard p5n-e sli, Geforce 8800 GTS, 3GB Ram, Avira Antivir Personal

hijackthis log:

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 23:57:24, on 20.06.2009

Platform: Windows Vista SP1 (WinNT 6.00.1905)

MSIE: Internet Explorer v7.00 (7.00.6001.18248)

Boot mode: Normal

Running processes:

C:\Windows\system32\Dwm.exe

C:\Windows\system32\taskeng.exe

C:\Windows\Explorer.EXE

C:\Program Files\Windows Defender\MSASCui.exe

C:\Program Files\Avira\AntiVir Desktop\avgnt.exe

C:\Program Files\Winamp\winampa.exe

C:\Program Files\Java\jre6\bin\jusched.exe

C:\Program Files\PowerISO\PWRISOVM.EXE

C:\Windows\System32\Ctxfihlp.exe

C:\Program Files\Logitech\QuickCam\Quickcam.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Windows\SYSTEM32\CTXFISPI.EXE

C:\Program Files\Skype\Phone\Skype.exe

C:\Program Files\DAEMON Tools Lite\daemon.exe

C:\Program Files\OpenOffice.org 3\program\soffice.exe

C:\Program Files\OpenOffice.org 3\program\soffice.bin

C:\Program Files\Windows Media Player\wmpnscfg.exe

C:\Program Files\Skype\Plugin Manager\skypePM.exe

C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe

C:\Windows\system32\wuauclt.exe

D:\software\hjthis\HijackThis.exe

D:\software\prozess explorer\procexp.exe

C:\Windows\system32\SearchFilterHost.exe

D:\software\µtorrent\uTorrent.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O1 - Hosts: ::1 localhost

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"

O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE

O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter

O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized

O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKALER DIENST')

O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKALER DIENST')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETZWERKDIENST')

O4 - Startup: Logitech . Produktregistrierung.lnk = C:\Program Files\Logitech\QuickCam\eReg.exe

O4 - Startup: OpenOffice.org 3.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe

O13 - Gopher Prefix:

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O23 - Service: Adobe Active File Monitor V7 (AdobeActiveFileMonitor7.0) - Adobe Systems Incorporated - D:\software\photoshop\PhotoshopElementsFileAgent.exe

O23 - Service: Avira AntiVir Planer (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe

O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe

O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe

O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe

O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe

O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe

O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe

process explorer:

Process PID CPU Description Company Name

System Idle Process 0 97.69

Interrupts n/a 0.77 Hardware Interrupts

DPCs n/a Deferred Procedure Calls

System 4

smss.exe 492

csrss.exe 636

wininit.exe 688

services.exe 732

svchost.exe 964

CTxfispi.exe 2348 SPI (Creative X-Fi Module) Creative Technology Ltd

COCIManager.exe 3140 Camera Control Interface Logitech Inc.

nvvsvc.exe 1028

nvvsvc.exe 1688

svchost.exe 1056

svchost.exe 1092

svchost.exe 1144

audiodg.exe 1284

svchost.exe 1176

dwm.exe 916 Desktopfenster-Manager Microsoft Corporation

svchost.exe 1212

taskeng.exe 1228 Aufgabenplanungsmodul Microsoft Corporation

taskeng.exe 2984

CTAudSvc.exe 1308

SLsvc.exe 1328

svchost.exe 1360

svchost.exe 1476

spoolsv.exe 1764

sched.exe 1812

svchost.exe 1824

PhotoshopElementsFileAgent.exe 2312

avguard.exe 2396

LVPrcSrv.exe 2452

PnkBstrA.exe 2620

svchost.exe 2676

svchost.exe 2696

svchost.exe 2732

SearchIndexer.exe 2764

wmpnetwk.exe 4036

lsass.exe 744

lsm.exe 752

csrss.exe 700

winlogon.exe 936

explorer.exe 1964 Windows-Explorer Microsoft Corporation

MSASCui.exe 972 Windows Defender User Interface Microsoft Corporation

avgnt.exe 2052 Antivirus System Tray Tool Avira GmbH

winampa.exe 2072

jusched.exe 2080 Java Platform SE binary Sun Microsystems, Inc.

PWRISOVM.EXE 2088 PowerISO Virtual Drive Manager PowerISO Computing, Inc.

reader_sl.exe 2096 Adobe Acrobat SpeedLauncher Adobe Systems Incorporated

Ctxfihlp.exe 2104 CTXfiHlp MFC Application Creative Technology Ltd

Quickcam.exe 2112 Camera Software Logitech Inc.

sidebar.exe 2160 Windows-Sidebar Microsoft Corporation

Skype.exe 2184 Skype Skype Technologies S.A.

skypePM.exe 820 Skype Extras Manager Skype Technologies

daemon.exe 2196 DAEMON Tools Lite DT Soft Ltd

wmpnscfg.exe 3936 Windows Media Player Network Sharing Service Configuration Application Microsoft Corporation

procexp.exe 2948 0.77 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

uTorrent.exe 2660 0.77 µTorrent BitTorrent, Inc.

soffice.exe 2276 OpenOffice.org 3.1 OpenOffice.org

soffice.bin 2332 OpenOffice.org 3.1 OpenOffice.org

Process: uTorrent.exe Pid: 2660

Name Description Company Name Version

ADVAPI32.dll Erweiterte Windows 32 Base-API Microsoft Corporation 6.0.6001.18000

ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.5.2284.0

CLBCatQ.DLL COM+ Configuration Catalog Microsoft Corporation 2001.12.6931.18000

COMCTL32.dll Bibliothek für Steuerelemente Microsoft Corporation 6.10.6001.18000

comdlg32.dll DLL für gemeinsame Dialoge Microsoft Corporation 6.0.6001.18000

dhcpcsvc.DLL DHCP Clientdienst Microsoft Corporation 6.0.6001.18000

dhcpcsvc6.DLL DHCPv6-Client Microsoft Corporation 6.0.6001.18000

DnsApi.dll DNS-Client-API-DLL Microsoft Corporation 6.0.6001.18000

FirewallAPI.dll Windows-Firewall-API Microsoft Corporation 6.0.6001.18000

GDI32.dll GDI Client DLL Microsoft Corporation 6.0.6001.18159

GPAPI.dll Gruppenrichtlinienclient-API Microsoft Corporation 6.0.6001.18000

hnetcfg.dll Heimnetzwerkkonfigurations-Manager Microsoft Corporation 6.0.6001.18000

iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 7.0.6001.18248

IMM32.DLL Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.0.6001.18000

Iphlpapi.dll IP-Hilfs-API Microsoft Corporation 6.0.6001.18000

kernel32.dll Client-DLL für Windows NT-Basis-API Microsoft Corporation 6.0.6001.18215

locale.nls

locale.nls

LPK.DLL Language Pack Microsoft Corporation 6.0.6001.18000

MSCTF.dll MSCTF-Server-DLL Microsoft Corporation 6.0.6001.18000

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.6001.18000

mswsock.dll Microsoft Windows Sockets 2.0-Dienstanbieter Microsoft Corporation 6.0.6001.18000

msxml3.dll MSXML 3.0 SP10 Microsoft Corporation 8.100.1048.0

msxml3r.dll XML Resources Microsoft Corporation 8.20.8730.1

napinsp.dll E-Mail-Namenshimanbieter Microsoft Corporation 6.0.6001.18000

NETAPI32.dll Net Win32 API DLL Microsoft Corporation 6.0.6001.18157

netshell.dll Shell für Netzwerkverbindungen Microsoft Corporation 6.0.6001.18000

NLAapi.dll Network Location Awareness 2 Microsoft Corporation 6.0.6001.18000

npmproxy.dll Network List Manager Proxy Microsoft Corporation 6.0.6000.16386

NSI.dll NSI User-mode interface DLL Microsoft Corporation 6.0.6001.18000

ntdll.dll DLL für NT-Layer Microsoft Corporation 6.0.6001.18000

ole32.dll Microsoft OLE für Windows Microsoft Corporation 6.0.6001.18000

oleaut32.dll Microsoft Corporation 6.0.6001.18000

pnrpnsp.dll PNRP-Namespaceanbieter Microsoft Corporation 6.0.6001.18000

PSAPI.DLL Process Status Helper Microsoft Corporation 6.0.6000.16386

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.0.6000.16386

RPCRT4.dll Remoteprozeduraufruf-Laufzeitumgebung Microsoft Corporation 6.0.6001.18247

rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.0.6001.18000

Secur32.dll Security Support Provider Interface Microsoft Corporation 6.0.6001.18215

SHELL32.dll Allgemeine Windows-Shell-DLL Microsoft Corporation 6.0.6001.18167

shfolder.dll Shell Folder Service Microsoft Corporation 6.0.6000.16386

SHLWAPI.dll Shell Light-weight-Dienstprogrammbibliothek Microsoft Corporation 6.0.6001.18000

slc.dll Client-DLL für die Softwarelizenzierung Microsoft Corporation 6.0.6001.18000

SSDPAPI.dll SSDP Client API DLL Microsoft Corporation 6.0.6000.16386

SXS.DLL Fusion 2.5 Microsoft Corporation 6.0.6001.18000

upnp.dll UPnP Control Point API Microsoft Corporation 6.0.6001.18000

urlmon.dll OLE32-Erweiterung für Win32 Microsoft Corporation 7.0.6001.18248

USER32.dll Multi-User Windows USER API Client DLL Microsoft Corporation 6.0.6001.18000

USERENV.dll Userenv Microsoft Corporation 6.0.6001.18000

USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.6001.18000

uTorrent.exe µTorrent BitTorrent, Inc. 1.8.3.15658

uxtheme.dll Microsoft UxTheme-Bibliothek Microsoft Corporation 6.0.6001.18000

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 6.0.6001.18000

WINHTTP.dll Windows HTTP-Dienste Microsoft Corporation 6.0.6001.18178

WINNSI.DLL Network Store Information RPC interface Microsoft Corporation 6.0.6001.18000

winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 6.0.6000.16386

WLDAP32.dll Win32 LDAP-API-DLL Microsoft Corporation 6.0.6001.18000

WS2_32.dll Windows Socket 2.0-32-Bit-DLL Microsoft Corporation 6.0.6001.18000

wship6.dll Winsock2-Hilfs-DLL (TL/IPv6) Microsoft Corporation 6.0.6001.18000

wshtcpip.dll Winsock2-Hilfs-DLL (TL/IPv4) Microsoft Corporation 6.0.6001.18000

any help would be appreciated. i lokked through the forum but couldn`t find anything. sorry if i missed something

Link to comment
Share on other sites

Archived

This topic is now archived and is closed to further replies.


×
×
  • Create New...