thompa Posted November 25, 2009 Report Share Posted November 25, 2009 Hi Im a bit new to this but hope I got the logs right. When running uT it wont startup "on screen" but process are running and this started a fewdays ago and it helped to shut down process and restart but now I cant get it too start att all not even reboot works. Ive tried reinstalling, and now even tested latest beta. Logfile of Trend Micro HijackThis v2.0.2Scan saved at 11:30:56, on 2009-11-25Platform: Windows Vista SP2 (WinNT 6.00.1906)MSIE: Internet Explorer v8.00 (8.00.6001.18828)Boot mode: NormalRunning processes:C:\Program Files\Norton 360\Engine\3.0.0.134\ccSvcHst.exeC:\Windows\system32\taskeng.exec:\Program Files\Bioscrypt\VeriSoft\Bin\AsGHost.exeC:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEC:\Program Files\Synaptics\SynTP\SynTPEnh.exeC:\Program Files\HP\QuickPlay\QPService.exeC:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exeC:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exeC:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exeC:\Program Files\HP\HP Software Update\hpwuSchd2.exeC:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exeC:\WINDOWS\System32\rundll32.exeC:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exeC:\Program Files\Java\jre6\bin\jusched.exeC:\Program Files\Hewlett-Packard\Shared\HpqToaster.exeC:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exeC:\Program Files\HP\Digital Imaging\bin\hpqbam08.exeC:\Program Files\Synaptics\SynTP\SynTPHelper.exeC:\Windows\system32\conime.exeC:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\iexplore.exeC:\Windows\system32\taskmgr.exeC:\Program Files\uTorrent\uTorrent.exeC:\Windows\system32\SearchProtocolHost.exeC:\Windows\system32\SearchFilterHost.exeC:\Program Files\Trend Micro\HijackThis\HijackThis.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=SV_SE&c=73&bd=Pavilion&pf=laptopR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gp.se/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=SV_SE&c=73&bd=Pavilion&pf=laptopR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=SV_SE&c=73&bd=Pavilion&pf=laptopR0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost;*.localR0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhostO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files\Adobe\/Adobe Contribute CS3/contributeieplugin.dllO2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dllO2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton 360\Engine\3.0.0.134\coIEPlg.dllO2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton 360\Engine\3.0.0.134\IPSBHO.DLLO2 - BHO: Inloggningshjälp för Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dllO2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dllO2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dllO2 - BHO: VeriSoft Access Manager - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dllO3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dllO3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dllO3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files\Adobe\/Adobe Contribute CS3/contributeieplugin.dllO3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\3.0.0.134\coIEPlg.dllO3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dllO4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hideO4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exeO4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /StartO4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exeO4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exeO4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exeO4 - HKLM\..\Run: [CognizanceTS] rundll32.exe c:\PROGRA~1\BIOSCR~1\VeriSoft\Bin\ASTSVCC.dll,RegisterModuleO4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exeO4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe"O4 - HKLM\..\Run: [Adobe_ID0EYTHM] C:\PROGRA~1\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXEO4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInitO4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottimeO4 - HKLM\..\Run: [PrnStatusMX] C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exeO4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exeO4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRunO4 - HKCU\..\Run: [shadow] C:\Program Files\NewTech Infosystems\NTI Shadow for ReadyNAS\Shadow.exe --minimizeO4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exeO4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exeO4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJÄNST')O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJÄNST')O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NÄTVERKSTJÄNST')O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exeO4 - Global Startup: BankID säkerhetsprogram.lnk = C:\Program Files\Personal\bin\Personal.exeO4 - Global Startup: EPSI ToolBar.lnk = C:\EPC\Toolbar\EPSIBar.exeO4 - Global Startup: Google Calendar Sync.lnk = C:\Program Files\Google\Google Calendar Sync\GoogleCalendarSync.exeO4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exeO8 - Extra context menu item: Append to existing PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.htmlO8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.htmlO8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.htmlO8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.htmlO8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.htmlO8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.htmlO8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.htmlO8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.htmlO8 - Extra context menu item: E&xportera till Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000O9 - Extra button: Blogga detta - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dllO9 - Extra 'Tools' menuitem: &Blogga detta i Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dllO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLLO13 - Gopher Prefix: O15 - Trusted Zone: http://www.bredbandskollen.seO15 - Trusted Zone: http://groda.dlinkddns.comO15 - Trusted IP range: http://192.168.0.129O18 - Protocol: leaf - {2E510A8E-17FD-40FA-9BCE-255EFF1EC8D6} - C:\Program Files\NETGEAR ReadyNAS\Remote\bin\LeafAPLPHandler.dllO18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - C:\Program Files\Norton 360\Engine\3.0.0.134\coIEPlg.dllO20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLLO23 - Service: Adobe Version Cue CS3 - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\Adobe Version Cue CS3\Server\bin\VersionCueCS3.exeO23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeO23 - Service: Automatisk LiveUpdate-schemaläggare - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)O23 - Service: Bonjour-tjänst (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exeO23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exeO23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exeO23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exeO23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exeO23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exeO23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exeO23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exeO23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exeO23 - Service: Norton 360 (N360) - Symantec Corporation - C:\Program Files\Norton 360\Engine\3.0.0.134\ccSvcHst.exeO23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exeO23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exeO23 - Service: SlingAgentService - Sling Media Inc. - C:\Program Files\Sling Media\SlingAgent\SlingAgentService.exeO23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exeO23 - Service: Web Update Wizard Service V4 (WebUpdate4) - Data Perceptions / PowerProgrammer - C:\Windows\system32\WebUpdateSvc4.exeO23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe--End of file - 12390 bytesProcess PID CPU Description Company NameSystem Idle Process 0 84.37 Interrupts n/a Hardware Interrupts DPCs n/a 3.07 Deferred Procedure Calls System 4 smss.exe 472 csrss.exe 608 wininit.exe 660 services.exe 704 svchost.exe 908 WmiPrvSE.exe 3924 asghost.exe 3348 Global Virtual Card Host Cognizance Corporation HpqToaster.exe 4260 HpqToaster Module hpqbam08.exe 5896 HP CUE Alert Popup Window Objects Hewlett-Packard Co. svchost.exe 952 nvvsvc.exe 980 rundll32.exe 1440 svchost.exe 1008 svchost.exe 1184 audiodg.exe 1304 svchost.exe 1228 dwm.exe 1540 0.77 Fönsterhanteraren för skrivbordet Microsoft Corporation svchost.exe 1240 taskeng.exe 3412 taskeng.exe 3332 Motor för Schemaläggaren Microsoft Corporation taskeng.exe 2428 svchost.exe 1328 SLsvc.exe 1348 svchost.exe 1376 svchost.exe 1648 spoolsv.exe 1912 svchost.exe 1936 AppleMobileDeviceService.exe 480 mDNSResponder.exe 576 svchost.exe 616 CLCapSvc.exe 600 svchost.exe 1292 LSSrvc.exe 1572 ccSvcHst.exe 808 ccSvcHst.exe 2708 svchost.exe 1120 svchost.exe 1864 svchost.exe 1432 SlingAgentService.exe 348 svchost.exe 2116 WebUpdateSvc4.exe 2176 svchost.exe 2212 WLIDSVC.EXE 2276 WLIDSVCM.EXE 3048 SearchIndexer.exe 2292 1.53 SearchProtocolHost.exe 5036 4.60 Microsoft Windows Search Protocol Host Microsoft Corporation SearchFilterHost.exe 3500 XAudio.exe 2340 hpqwmiex.exe 2384 svchost.exe 3664 HPHC_Service.exe 2976 wmpnetwk.exe 4440 0.77 FNPLicensingService.exe 5252 iPodService.exe 5448 lsass.exe 768 lsm.exe 776 csrss.exe 672 winlogon.exe 748 explorer.exe 3932 1.53 Utforskaren Microsoft Corporation SynTPEnh.exe 3208 Synaptics TouchPad Enhancements Synaptics, Inc. SynTPHelper.exe 1492 QPService.exe 3608 HP QuickPlay Resident Program CyberLink Corp. QLBCTRL.exe 1484 QLB Controller Hewlett-Packard Development Company, L.P. HPWAMain.exe 3440 HPWAMain Module Hewlett-Packard Development Company, L.P. WiFiMsg.exe 2880 Module to process WiFi messages. Hewlett-Packard Development Company, L.P. hpwuSchd2.exe 3676 Hewlett-Packard Product Assistant Hewlett-Packard Co. Acrotray.exe 2356 AcroTray Adobe Systems Inc. rundll32.exe 3460 Windows-värdprocess (Rundll32) Microsoft Corporation PrnStatusMX.exe 2096 Status Monitor. Marvell Semiconductor, Inc. jusched.exe 4192 Java Platform SE binary Sun Microsystems, Inc. iexplore.exe 5248 Internet Explorer Microsoft Corporation iexplore.exe 2076 Internet Explorer Microsoft Corporation WinRAR.exe 5388 WinRAR archiver Alexander Roshal procexp.exe 5748 Sysinternals Process Explorer Sysinternals - www.sysinternals.com iexplore.exe 4164 Internet Explorer Microsoft Corporation taskmgr.exe 4620 Aktivitetshanteraren Microsoft Corporation uTorrent.exe 3788 µTorrent BitTorrent, Inc. OUTLOOK.EXE 3976 3.07 Microsoft Office Outlook Microsoft Corporationhpqste08.exe 5620 HP CUE Status Root Hewlett-Packard Co.conime.exe 932 notepad.exe 4496 Hope fully some ones understand these logs. Greatful for all help.Thompa Link to comment Share on other sites More sharing options...
moogly Posted November 25, 2009 Report Share Posted November 25, 2009 Edit Process Explorer log, you need to select utorrent.exe and enable DLL mode (ctrl+d). Link to comment Share on other sites More sharing options...
thompa Posted November 25, 2009 Author Report Share Posted November 25, 2009 Hopefully this is it .-)Process PID CPU Description Company NameSystem Idle Process 0 96.93 Interrupts n/a Hardware Interrupts DPCs n/a Deferred Procedure Calls System 4 0.76 smss.exe 476 csrss.exe 608 wininit.exe 660 services.exe 704 svchost.exe 908 asghost.exe 3780 Global Virtual Card Host Cognizance Corporation WmiPrvSE.exe 3584 ehmsas.exe 4268 Media Center Media Status Aggregator Service Microsoft Corporation HpqToaster.exe 4300 HpqToaster Module hpqbam08.exe 6088 HP CUE Alert Popup Window Objects Hewlett-Packard Co. svchost.exe 956 nvvsvc.exe 984 rundll32.exe 1408 svchost.exe 1012 svchost.exe 1152 audiodg.exe 1320 svchost.exe 1224 dwm.exe 3760 Fönsterhanteraren för skrivbordet Microsoft Corporation svchost.exe 1248 taskeng.exe 3660 Motor för Schemaläggaren Microsoft Corporation taskeng.exe 3284 svchost.exe 1344 SLsvc.exe 1360 svchost.exe 1444 svchost.exe 1584 spoolsv.exe 1884 svchost.exe 1908 AppleMobileDeviceService.exe 496 mDNSResponder.exe 564 svchost.exe 588 CLCapSvc.exe 12 svchost.exe 1176 LSSrvc.exe 1312 ccSvcHst.exe 2012 ccSvcHst.exe 3604 svchost.exe 868 svchost.exe 2044 svchost.exe 372 SlingAgentService.exe 720 svchost.exe 2060 WebUpdateSvc4.exe 2124 svchost.exe 2176 WLIDSVC.EXE 2212 WLIDSVCM.EXE 2920 SearchIndexer.exe 2244 XAudio.exe 2280 hpqwmiex.exe 2316 svchost.exe 1388 wmpnetwk.exe 4260 0.76 HPHC_Service.exe 4780 FNPLicensingService.exe 3960 iPodService.exe 1736 lsass.exe 716 lsm.exe 724 csrss.exe 668 winlogon.exe 804 explorer.exe 3836 Utforskaren Microsoft Corporation SynTPEnh.exe 2008 Synaptics TouchPad Enhancements Synaptics, Inc. SynTPHelper.exe 5756 QPService.exe 3032 HP QuickPlay Resident Program CyberLink Corp. QLBCTRL.exe 1900 QLB Controller Hewlett-Packard Development Company, L.P. HPWAMain.exe 2404 HPWAMain Module Hewlett-Packard Development Company, L.P. WiFiMsg.exe 3188 Module to process WiFi messages. Hewlett-Packard Development Company, L.P. hpwuSchd2.exe 3356 Hewlett-Packard Product Assistant Hewlett-Packard Co. Acrotray.exe 2696 AcroTray Adobe Systems Inc. rundll32.exe 1100 Windows-värdprocess (Rundll32) Microsoft Corporation PrnStatusMX.exe 2152 Status Monitor. Marvell Semiconductor, Inc. iTunesHelper.exe 3708 iTunesHelper Apple Inc. jusched.exe 1496 Java Platform SE binary Sun Microsystems, Inc. Shadow.exe 1732 Shadow NewTech Infosystems, Inc. ehtray.exe 1500 Media Center Tray Applet Microsoft Corporation wmpnscfg.exe 1804 Konfigurationsprogram för nätverksdelning i Windows Media Player Microsoft Corporation uTorrent.exe 4196 µTorrent BitTorrent, Inc. iexplore.exe 1784 Internet Explorer Microsoft Corporation iexplore.exe 3300 Internet Explorer Microsoft Corporation WinRAR.exe 5528 WinRAR archiver Alexander Roshal procexp.exe 2580 0.76 Sysinternals Process Explorer Sysinternals - www.sysinternals.comhpqste08.exe 5820 HP CUE Status Root Hewlett-Packard Co.Process: uTorrent.exe Pid: 4196Name Description Company Name VersionADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 6.0.6002.18005APSHook.dll Application Protection Hook Cognizance Corporation 2.0.0.15ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.5.2284.2CLBCatQ.DLL COM+ Configuration Catalog Microsoft Corporation 2001.12.6931.18000COMCTL32.dll Bibliotek för användargränssnittskontroller Microsoft Corporation 6.10.6002.18005comdlg32.dll DLL-fil med vanliga dialogrutor Microsoft Corporation 6.0.6002.18005CRYPT32.dll 32-bitars kryptografi-API Microsoft Corporation 6.0.6002.18005dhcpcsvc.DLL Tjänsten DHCP Client Microsoft Corporation 6.0.6002.18005dhcpcsvc6.DLL DHCPv6-klient Microsoft Corporation 6.0.6002.18005DnsApi.dll DLL-fil med API för DNS-klient Microsoft Corporation 6.0.6002.18005dwmapi.dll Microsoft Desktop Window Manager API Microsoft Corporation 6.0.6001.18000FirewallAPI.dll API för Windows-brandväggen Microsoft Corporation 6.0.6001.18000GDI32.dll GDI Client DLL Microsoft Corporation 6.0.6002.18005GPAPI.dll API för grupprincipklient Microsoft Corporation 6.0.6002.18005hnetcfg.dll Hanteraren för konfiguration av hemnätverk Microsoft Corporation 6.0.6001.18000iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 8.0.6001.18828IMM32.DLL Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.0.6002.18005Iphlpapi.dll IP Helper API Microsoft Corporation 6.0.6002.18005ItClient.dll SSO Hook Module Cognizance Corporation 2.1.0.102kernel32.dll Klient-DLL för Windows NT BASE API Microsoft Corporation 6.0.6002.18005locale.nls locale.nls LPK.DLL Language Pack Microsoft Corporation 6.0.6002.18051mdnsNSP.dll Bonjour Namespace Provider Apple Inc. 1.0.6.2MSASN1.dll ASN.1 Runtime APIs Microsoft Corporation 6.0.6002.18106MSCTF.dll DLL-fil för MSCTF-servern Microsoft Corporation 6.0.6002.18005msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.6002.18005mswsock.dll Tjänstprovider för Microsoft Windows Sockets 2.0 Microsoft Corporation 6.0.6002.18005msxml3.dll MSXML 3.0 SP10 Microsoft Corporation 8.100.5002.0msxml3r.dll XML Resources Microsoft Corporation 8.20.8730.1napinsp.dll Provider för e-postnamngivnings-shim Microsoft Corporation 6.0.6001.18000NETAPI32.dll Net Win32 API DLL Microsoft Corporation 6.0.6002.18005netshell.dll Användargränssnitt för nätverksanslutning Microsoft Corporation 6.0.6002.18005NLAapi.dll Network Location Awareness 2 Microsoft Corporation 6.0.6001.18000NSI.dll NSI User-mode interface DLL Microsoft Corporation 6.0.6001.18000ntdll.dll DLL-fil för NT Layer Microsoft Corporation 6.0.6002.18005NTMARTA.DLL Windows NT MARTA-provider Microsoft Corporation 6.0.6002.18005ole32.dll Microsoft OLE för Windows Microsoft Corporation 6.0.6002.18005OLEACC.dll Active Accessibility Core Component Microsoft Corporation 7.0.6002.18155oleaccrc.dll Active Accessibility Resource DLL Microsoft Corporation 7.0.6002.18155oleaut32.dll Microsoft Corporation 6.0.6002.18005pnrpnsp.dll PNRP-namnområdesprovider Microsoft Corporation 6.0.6001.18000PSAPI.DLL Process Status Helper Microsoft Corporation 6.0.6000.16386R00000000000e.clb rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.0.6000.16386RPCRT4.dll Körning av RPC (Remote Procedure Call) Microsoft Corporation 6.0.6002.18024rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.0.6002.18005SAMLIB.dll SAM Library DLL Microsoft Corporation 6.0.6002.18005Secur32.dll Security Support Provider Interface Microsoft Corporation 6.0.6002.18051SETUPAPI.dll API för installationsprogrammet för Windows Microsoft Corporation 6.0.6002.18005SHELL32.dll DLL-fil för Windows-gränssnittet Microsoft Corporation 6.0.6002.18005shfolder.dll Shell Folder Service Microsoft Corporation 6.0.6000.16386SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.0.6002.18005slc.dll Klient-dll för programvarulicens Microsoft Corporation 6.0.6002.18005SSDPAPI.dll SSDP Client API DLL Microsoft Corporation 6.0.6000.16386SXS.DLL Fusion 2.5 Microsoft Corporation 6.0.6001.18000upnp.dll UPnP Control Point API Microsoft Corporation 6.0.6001.18000urlmon.dll OLE32-tillägg för Win32 Microsoft Corporation 8.0.6001.18828USER32.dll Fleranvändarklient-DLL-fil för Windows Microsoft Corporation 6.0.6002.18005USERENV.dll Userenv Microsoft Corporation 6.0.6002.18005USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.6002.18005uTorrent.exe µTorrent BitTorrent, Inc. 2.0.0.17341uxtheme.dll Bibliotek för Microsoft UxTheme Microsoft Corporation 6.0.6001.18000VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 6.0.6002.18005WINHTTP.dll Windows HTTP Services Microsoft Corporation 6.0.6002.18005WINNSI.DLL Network Store Information RPC interface Microsoft Corporation 6.0.6001.18000winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 6.0.6002.18005WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 6.0.6002.18005WS2_32.dll DLL-filen för Windows Socket 2.0 32-Bit Microsoft Corporation 6.0.6001.18000wshbth.dll Windows Sockets Helper DLL Microsoft Corporation 6.0.6002.18005wship6.dll Winsock2 Helper DLL (TL/IPv6) Microsoft Corporation 6.0.6001.18000wshtcpip.dll Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation 6.0.6001.18000ReThompa Link to comment Share on other sites More sharing options...
moogly Posted November 25, 2009 Report Share Posted November 25, 2009 ItClient.dll SSO Hook Module Cognizance Corporation 2.1.0.102What's that DLL injected into uT? Link to comment Share on other sites More sharing options...
thompa Posted November 25, 2009 Author Report Share Posted November 25, 2009 it´s a fingerprint scanner whith soft that uses his dll. (log in manager), have now uninstalled this but no difference in uT behavior. Thompa Link to comment Share on other sites More sharing options...
GTHK Posted November 25, 2009 Report Share Posted November 25, 2009 http://service1.symantec.com/Support/tsgeninfo.nsf/docid/2005033108162039 Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.