Jump to content

µTorrent 2.1-beta crashes


albert_kes

Recommended Posts

Posted

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 2:00:12, on 01.11.2009

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\ESET\ESET Smart Security\egui.exe

C:\WINDOWS\RTHDCPL.EXE

C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe

C:\Program Files\Cyberlink\Shared Files\brs.exe

C:\WINDOWS\system32\RUNDLL32.EXE

C:\Program Files\DAEMON Tools Lite\daemon.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\WinZip\WZQKPICK.EXE

C:\Program Files\2gis\UpdateClientWin32\UpdateClientService.exe

C:\WINDOWS\system32\ASTSRV.EXE

C:\Program Files\ESET\ESET Smart Security\ekrn.exe

C:\WINDOWS\system32\hasplms.exe

C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe

C:\Program Files\Common Files\Rhozet\Carbon Coder\Kernel\PNXSERVR.exe

c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe

C:\Program Files\Common Files\Rhozet\Carbon Coder\Kernel\PNXKERNL.Exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\QIP Infium\infium.exe

C:\Program Files\Opera 10 Beta\opera.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Program Files\PRMT8\PRMT\prmt.exe

C:\Program Files\PRMT8\PrmtSvr.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Internet Explorer\iexplore.exe

D:\MUsor\procexp.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Ссылки

O2 - BHO: SnagIt Toolbar Loader - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\Snagit 9\SnagitBHO.dll

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O3 - Toolbar: Snagit - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\Snagit 9\SnagitIEAddin.dll

O3 - Toolbar: PROMT - {892E81F6-EC63-4d13-8422-835A7A05D6EB} - C:\Program Files\PRMT8\PRMTIE\prmtie.dll

O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice

O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM\..\Run: [skyTel] SkyTel.EXE

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [RemoteControl9] "C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe"

O4 - HKLM\..\Run: [PDVD9LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe"

O4 - HKLM\..\Run: [bDRegion] C:\Program Files\Cyberlink\Shared Files\brs.exe

O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /install

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\RunOnce: [WiseStubReboot] MSIEXEC /quiet SKIP_PPU_DRIVER_INSTALL=1 /I "C:\Program Files\Common Files\Wise Installation Wizard\WISB83FC356B7C0441F8A4DD71E088E7974_9_09_0428.MSI" TRANSFORMS="C:\Program Files\Common Files\Wise Installation Wizard\WISB83FC356B7C0441F8A4DD71E088E7974_9_09_0428.MST" WISE_SETUP_EXE_PATH="c:\nvidia\displaydriver\190.38\international\PhysX_9.09.0428_SystemSoftware.exe"

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE

O8 - Extra context menu item: &Экспорт в Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

O8 - Extra context menu item: Настроить параметры перевода - C:\Program Files\PRMT8\PRMTIE\options.htm

O8 - Extra context menu item: Незнакомые слова - C:\Program Files\PRMT8\PRMTIE\infopanel.htm

O8 - Extra context menu item: Перевести - C:\Program Files\PRMT8\PRMTIE\translat.htm

O8 - Extra context menu item: Перевести страницу - C:\Program Files\PRMT8\PRMTIE\page.htm

O8 - Extra context menu item: Поиск в Интернете - C:\Program Files\PRMT8\PRMTIE\search.htm

O9 - Extra button: (no name) - {4034D172-4C52-49de-A6A1-E75F8F591FEC} - C:\Program Files\PRMT8\PRMTIE\options.htm

O9 - Extra 'Tools' menuitem: Настроить параметры перевода - {4034D172-4C52-49de-A6A1-E75F8F591FEC} - C:\Program Files\PRMT8\PRMTIE\options.htm

O9 - Extra button: Справочные материалы - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {A2DA13D5-AC77-43b7-963B-40445EBCB8E0} - C:\Program Files\PRMT8\PRMTIE\prmtie5.htm

O9 - Extra 'Tools' menuitem: Перевести - {A2DA13D5-AC77-43b7-963B-40445EBCB8E0} - C:\Program Files\PRMT8\PRMTIE\prmtie5.htm

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe

O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1250646610345

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{1CF4EDB5-4325-49A8-925A-1E31575E0052}: NameServer = 62.33.169.242 80.82.162.82

O17 - HKLM\System\CS1\Services\Tcpip\..\{1CF4EDB5-4325-49A8-925A-1E31575E0052}: NameServer = 62.33.169.242 80.82.162.82

O23 - Service: 2GIS UpdateClientService - ДубльГИС - C:\Program Files\2gis\UpdateClientWin32\UpdateClientService.exe

O23 - Service: Nalpeiron Licensing Service (ASTSRV) - Nalpeiron Ltd. - C:\WINDOWS\system32\ASTSRV.EXE

O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe

O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe

O23 - Service: Журнал событий (Eventlog) - Корпорация Майкрософт - C:\WINDOWS\system32\services.exe

O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: HASP License Manager (hasplms) - Aladdin Knowledge Systems Ltd. - C:\WINDOWS\system32\hasplms.exe

O23 - Service: Служба COM записи компакт-дисков IMAPI (ImapiService) - Корпорация Майкрософт - C:\WINDOWS\system32\imapi.exe

O23 - Service: NetMeeting Remote Desktop Sharing (mnmsrvc) - Корпорация Майкрософт - C:\WINDOWS\system32\mnmsrvc.exe

O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe

O23 - Service: Nexus Server (Carbon Coder) (Nexus Server) - Unknown owner - C:\Program Files\Common Files\Rhozet\Carbon Coder\Kernel\PNXSERVR.exe

O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: Plug and Play (PlugPlay) - Корпорация Майкрософт - C:\WINDOWS\system32\services.exe

O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe

O23 - Service: Диспетчер сеанса справки для удаленного рабочего стола (RDSessMgr) - Корпорация Майкрософт - C:\WINDOWS\system32\sessmgr.exe

O23 - Service: Смарт-карты (SCardSvr) - Корпорация Майкрософт - C:\WINDOWS\System32\SCardSvr.exe

O23 - Service: Журналы и оповещения производительности (SysmonLog) - Корпорация Майкрософт - C:\WINDOWS\system32\smlogsvc.exe

O23 - Service: Теневое копирование тома (VSS) - Корпорация Майкрософт - C:\WINDOWS\System32\vssvc.exe

O23 - Service: Адаптер производительности WMI (WmiApSrv) - Корпорация Майкрософт - C:\WINDOWS\system32\wbem\wmiapsrv.exe

--

End of file - 9729 bytes

Process PID CPU Description Company Name

System Idle Process 0 96.92

Interrupts n/a Hardware Interrupts

DPCs n/a Deferred Procedure Calls

System 4

smss.exe 784 Диспетчер сеанса Windows NT Корпорация Майкрософт

csrss.exe 848 Client Server Runtime Process Microsoft Corporation

winlogon.exe 872 Программа входа в систему Windows NT Корпорация Майкрософт

services.exe 916 0.38 Приложение служб и контроллеров Корпорация Майкрософт

nvsvc32.exe 1100 NVIDIA Driver Helper Service, Version 191.07 NVIDIA Corporation

svchost.exe 1132 Generic Host Process for Win32 Services Microsoft Corporation

dllhost.exe 11900 COM Surrogate Microsoft Corporation

PrmtSvr.exe 8040 PrmtSVR Module PROMT Ltd.

wmiprvse.exe 7816 WMI Microsoft Corporation

svchost.exe 1200 Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1296 Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1424 Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1464 Generic Host Process for Win32 Services Microsoft Corporation

spoolsv.exe 1612 Spooler SubSystem App Microsoft Corporation

svchost.exe 1480 Generic Host Process for Win32 Services Microsoft Corporation

UpdateClientService.exe 1688 Центр обновлений ДубльГИС (служба) ДубльГИС

ASTSRV.EXE 1716 Nalpeiron Highend Service Nalpeiron Ltd.

ekrn.exe 1764 ESET Service ESET

hasplms.exe 1896 Aladdin HASP License Manager Service Aladdin Knowledge Systems Ltd.

NBService.exe 212 Nero BackItUp Nero AG

PNXSERVR.exe 620 1.15

PNXKERNL.exe 2288

PsiService_2.exe 996 PsiService PsiService Protexis Inc.

alg.exe 3956 Application Layer Gateway Service Microsoft Corporation

svchost.exe 4064 Generic Host Process for Win32 Services Microsoft Corporation

lsass.exe 928 LSA Shell (Export Version) Microsoft Corporation

explorer.exe 1944 Проводник Корпорация Майкрософт

egui.exe 192 ESET GUI ESET

RTHDCPL.exe 188 Realtek HD Audio Control Panel Realtek Semiconductor Corp.

PDVD9Serv.exe 264 PowerDVD RC Service CyberLink Corp.

brs.exe 308 brs cyberlink

rundll32.exe 348 Запуск библиотеки DLL как приложения Корпорация Майкрософт

daemon.exe 360 DAEMON Tools Lite DT Soft Ltd

ctfmon.exe 376 CTF Loader Microsoft Corporation

WZQKPICK.EXE 464 WinZip Executable WinZip Computing, S.L.

infium.exe 10148 QIP Infium QIP

opera.exe 10164 Opera Internet Browser Opera Software

prmt.exe 7548 PROMT Editor PROMT Ltd.

iexplore.exe 6656 Internet Explorer Microsoft Corporation

iexplore.exe 6832 Internet Explorer Microsoft Corporation

iexplore.exe 1932 Internet Explorer Microsoft Corporation

procexp.exe 6132 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

uTorrent.exe 3044 1.54 µTorrent BitTorrent, Inc.

Last files http://narod.ru/disk/14648226000/DMP.rar.html

Has established µTorrent 2.1-beta-17085. I understand, that it is yet stable version. Regularly the program falls and gives out such window

1239bd0cf6d9t.jpg

It is normal?

Posted

Excuse, if what not so has made. I do not know English, therefore difficultly to understand that it is necessary to make. Once again excuse, I will search for the answer in other places...

Posted

I have no problem with you continuing the same issue in the same thread.

It's when you make a new thread instead of replying that is annoying AND against the rules.

Now post the process explorer process list with the dll list for the utorrent.exe process.

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...