desertdude Posted February 24, 2010 Report Share Posted February 24, 2010 Hi there n00b here, Utorrent was working super fabously until I upgraded to 2.0 Now its just freezes first and then seconds later the entire system freezes, nothing works. Can't close it also. I have to disconnect my battery and power to switch off my laptop ( LG400 Vista Basic ) and reboot everytime. I tried to get a dump file but the system crashes/freezes and after reboot there isn't any dump file.Now I even tried downgrading to previous version now utorrent will open and after 10 15 minutes freeze everything again. I've been lookign aorund and tried a lot of answers posted here, Disabled windows firewall, Spydoctor, Defender Assigned affinity it to one core, running in xp compatibilty mode. Nothing works. So much so now no torrent client works. I even tried Vuze ( Hated it BTW ! ) that is also doing the same thing.Note all my woes started the moment I started using 2.0Anyways before you aske here are the Log files, can't get any dump files as system crashes. In task manager I click create dump file and its hangs. Later on are reboot can't see any or dunno where and how ?This is HijackLogfile of Trend Micro HijackThis v2.0.2Scan saved at 3:20:56 PM, on 2/24/2010Platform: Windows Vista (WinNT 6.00.1904)MSIE: Internet Explorer v7.00 (7.00.6000.16386)Boot mode: NormalRunning processes:C:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEC:\Windows\system32\taskeng.exeC:\Program Files\Windows Defender\MSASCui.exeC:\Windows\System32\igfxtray.exeC:\Windows\System32\hkcmd.exeC:\Windows\System32\igfxpers.exeC:\Windows\RtHDVCpl.exeC:\Program Files\LG Software\On Screen Display\HotKey.exeC:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exeC:\Program Files\LG Software\BatteryMiser\BatteryMiser5.exeC:\Program Files\Common Files\Real\Update_OB\realsched.exeC:\Program Files\UltraVPN\bin\openvpn-gui.exeC:\Program Files\Windows Media Player\wmplayer.exeC:\Windows\system32\wbem\unsecapp.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Users\JUNIZA\AppData\Local\Temp\Rar$EX00.489\procexp.exeC:\Program Files\HijackThis\HijackThis.exeC:\Program Files\uTorrent\uTorrent.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\tbVuze.dllO1 - Hosts: ::1 localhostO2 - BHO: Browser Defender BHO - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dllO2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dllO2 - BHO: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\tbVuze.dllO3 - Toolbar: PC Tools Browser Guard - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dllO3 - Toolbar: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\tbVuze.dllO4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hideO4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exeO4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exeO4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exeO4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exeO4 - HKLM\..\Run: [KeybdUtility] C:\Program Files\LG Software\On Screen Display\HotKey.exeO4 - HKLM\..\Run: [iAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"O4 - HKLM\..\Run: [batteryMiser 5] C:\Program Files\LG Software\BatteryMiser\BatteryMiser5.exeO4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osbootO4 - HKLM\..\Run: [openvpn-gui] C:\Program Files\UltraVPN\bin\openvpn-gui.exeO4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')O13 - Gopher Prefix: O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exeO23 - Service: Browser Defender Update Service - Threat Expert Ltd. - C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exeO23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files\MAGIX\Common\Database\bin\fbserver.exeO23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exeO23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exeO23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe--End of file - 4773 bytesBTW for what its worth I got a couple of errors running the scan and save log file aswellExplorer fileProcess PID CPU Description Company NameSystem Idle Process 0 94.07 Interrupts n/a Hardware Interrupts DPCs n/a Deferred Procedure Calls System 4 smss.exe 424 Windows Session Manager Microsoft Corporationcsrss.exe 556 Client Server Runtime Process Microsoft Corporationwininit.exe 604 Windows Start-Up Application Microsoft Corporation services.exe 648 1.48 Services and Controller app Microsoft Corporation svchost.exe 860 Host Process for Windows Services Microsoft Corporation WmiPrvSE.exe 2864 WMI Provider Host Microsoft Corporation unsecapp.exe 3256 Sink to receive asynchronous callbacks for WMI client application Microsoft Corporation WmiPrvSE.exe 3716 WMI Provider Host Microsoft Corporation svchost.exe 916 Host Process for Windows Services Microsoft Corporation svchost.exe 968 Host Process for Windows Services Microsoft Corporation svchost.exe 1044 Host Process for Windows Services Microsoft Corporation audiodg.exe 1208 Windows Audio Device Graph Isolation Microsoft Corporation svchost.exe 1128 Host Process for Windows Services Microsoft Corporation dwm.exe 1708 0.74 Desktop Window Manager Microsoft Corporation WUDFHost.exe 2724 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation svchost.exe 1152 Host Process for Windows Services Microsoft Corporation taskeng.exe 1880 Task Scheduler Engine Microsoft Corporation taskeng.exe 2748 Task Scheduler Engine Microsoft Corporation SLsvc.exe 1264 Microsoft Software Licensing Service Microsoft Corporation svchost.exe 1312 Host Process for Windows Services Microsoft Corporation svchost.exe 1472 Host Process for Windows Services Microsoft Corporation spoolsv.exe 1820 Spooler SubSystem App Microsoft Corporation svchost.exe 1848 Host Process for Windows Services Microsoft Corporation agrsmsvc.exe 1404 Agere Soft Modem Call Progress Service Agere Systems BDTUpdateService.exe 1744 Browser Defender Update Service Threat Expert Ltd. svchost.exe 1084 Host Process for Windows Services Microsoft Corporation IAANTmon.exe 1240 RAID Monitor Intel Corporation svchost.exe 2112 Host Process for Windows Services Microsoft Corporation svchost.exe 2156 Host Process for Windows Services Microsoft Corporation svchost.exe 2216 Host Process for Windows Services Microsoft Corporation SearchIndexer.exe 2272 Microsoft Windows Search Indexer Microsoft Corporation mscorsvw.exe 3432 .NET Runtime Optimization Service Microsoft Corporation lsass.exe 660 Local Security Authority Process Microsoft Corporation lsm.exe 668 Local Session Manager Service Microsoft Corporationcsrss.exe 616 Client Server Runtime Process Microsoft Corporationwinlogon.exe 748 Windows Logon Application Microsoft Corporationexplorer.exe 1724 Windows Explorer Microsoft Corporation MSASCui.exe 2032 Windows Defender User Interface Microsoft Corporation igfxtray.exe 276 igfxTray Module Intel Corporation hkcmd.exe 288 hkcmd Module Intel Corporation igfxpers.exe 296 persistence Module Intel Corporation RtHDVCpl.exe 360 HD Audio Control Panel Realtek Semiconductor HotKey.exe 352 HotKey LG Electronics IAAnotif.exe 524 Event Monitor User Notification Tool Intel Corporation BatteryMiser5.exe 596 Battery Miser LG Electronics Inc. realsched.exe 1904 RealNetworks Scheduler RealNetworks, Inc. openvpn-gui.exe 1012 firefox.exe 3236 Firefox Mozilla Corporation uTorrent.exe 2720 0.74 µTorrent BitTorrent, Inc.wmplayer.exe 3044 Windows Media Player Microsoft Corporationprocexp.exe 3180 2.22 Sysinternals Process Explorer Sysinternals - www.sysinternals.comProcess: uTorrent.exe Pid: 2720Name Description Company Name VersionADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 6.0.6000.16386CLBCatQ.DLL COM+ Configuration Catalog Microsoft Corporation 2001.12.6930.16386COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.10.6000.16386comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.0.6000.16386CRYPT32.dll Crypto API32 Microsoft Corporation 6.0.6000.16386dhcpcsvc.DLL DHCP Client Service Microsoft Corporation 6.0.6000.16386dhcpcsvc6.DLL DHCPv6 Client Microsoft Corporation 6.0.6000.16386DnsApi.dll DNS Client API DLL Microsoft Corporation 6.0.6000.16386FirewallAPI.dll Windows Firewall API Microsoft Corporation 6.0.6000.16386GDI32.dll GDI Client DLL Microsoft Corporation 6.0.6000.16386IMM32.DLL Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.0.6000.16386Iphlpapi.dll IP Helper API Microsoft Corporation 6.0.6000.16386kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 6.0.6000.16820locale.nls locale.nls LPK.DLL Language Pack Microsoft Corporation 6.0.6000.16386McIdle.dll McIdle dynamic link library LG Electronics Inc. 1.0.0.1MSASN1.dll ASN.1 Runtime APIs Microsoft Corporation 6.0.6000.16386MSCTF.dll MSCTF Server DLL Microsoft Corporation 6.0.6000.16386msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.6000.16386mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 6.0.6000.16386napinsp.dll E-mail Naming Shim Provider Microsoft Corporation 6.0.6000.16386NLAapi.dll Network Location Awareness 2 Microsoft Corporation 6.0.6000.16386npmproxy.dll Network List Manager Proxy Microsoft Corporation 6.0.6000.16386NSI.dll NSI User-mode interface DLL Microsoft Corporation 6.0.6000.16386ntdll.dll NT Layer DLL Microsoft Corporation 6.0.6000.16386ole32.dll Microsoft OLE for Windows Microsoft Corporation 6.0.6000.16386oleaut32.dll Microsoft Corporation 6.0.6000.16609pnrpnsp.dll PNRP Name Space Provider Microsoft Corporation 6.0.6000.16386PSAPI.DLL Process Status Helper Microsoft Corporation 6.0.6000.16386rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.0.6000.16386RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 6.0.6000.16850rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.0.6000.16386Secur32.dll Security Support Provider Interface Microsoft Corporation 6.0.6000.16820SETUPAPI.dll Windows Setup API Microsoft Corporation 6.0.6000.16609setupapi.dll.mui Windows Setup API Microsoft Corporation 6.0.6000.16609SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.0.6000.16386shfolder.dll Shell Folder Service Microsoft Corporation 6.0.6000.16386SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.0.6000.16386USER32.dll Multi-User Windows USER API Client DLL Microsoft Corporation 6.0.6000.16386USERENV.dll Userenv Microsoft Corporation 6.0.6000.16386USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.6000.16386uTorrent.exe µTorrent BitTorrent, Inc. 1.8.5.17414uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.0.6000.16386VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 6.0.6000.16386WINNSI.DLL Network Store Information RPC interface Microsoft Corporation 6.0.6000.16386winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 6.0.6000.16386WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 6.0.6000.16386WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 6.0.6000.16386wshbth.dll Windows Sockets Helper DLL Microsoft Corporation 6.0.6000.16386wship6.dll Winsock2 Helper DLL (TL/IPv6) Microsoft Corporation 6.0.6000.16386wshtcpip.dll Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation 6.0.6000.16386Hope someone can help me out there Thanks in advance Link to comment Share on other sites More sharing options...
DreadWingKnight Posted February 24, 2010 Report Share Posted February 24, 2010 McIdle.dll McIdle dynamic link library LG Electronics Inc. 1.0.0.1And why is this injecting itself into the uTorrent process? Link to comment Share on other sites More sharing options...
desertdude Posted February 24, 2010 Author Report Share Posted February 24, 2010 I wouldn't have the slightest clue. I'm really not well versed with this sort of stuff. heck I dont even know what that is ?What is it and what should I do ? Do you think this is the what is messing up everything ?Sorry for being such a n00b, but you will really have to talk to me in very laymans termsShould I delete this .dll ?In my previous life I've had a lot of trouble with missing dll's and wound'nt want it to happen again this timeUPDATE=======I found that Mcidle.dll was from the the battery management program battery miser. So I closed that but still exactly the same. So thats not it. Any clues what else ? Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.