barisyarali Posted March 2, 2010 Report Share Posted March 2, 2010 Process PID CPU Description Company NameSystem Idle Process 0 96.15 Interrupts n/a Hardware Interrupts DPCs n/a 0.77 Deferred Procedure Calls System 4 smss.exe 328 csrss.exe 440 wininit.exe 500 services.exe 556 svchost.exe 732 igfxsrvc.exe 2916 igfxsrvc Module Intel Corporation dllhost.exe 2956 COM Surrogate Microsoft Corporation svchost.exe 804 svchost.exe 908 audiodg.exe 1080 svchost.exe 948 dwm.exe 988 0.77 Masaüstü Pencere Yöneticisi Microsoft Corporation svchost.exe 992 svchost.exe 1140 svchost.exe 1248 spoolsv.exe 1416 svchost.exe 1448 mDNSResponder.exe 1528 ekrn.exe 1568 ramaint.exe 1604 LogMeIn.exe 1628 LMIGuardian.exe 1648 nlsvc.exe 1720 NLClient.exe 2168 NetLimiter 2 Client Locktime Software NMSAccessU.exe 1760 SeaPort.exe 1840 svchost.exe 1880 taskhost.exe 1072 Windows Görevleri İçin Ana Bilgisayar İşlemi Microsoft Corporation svchost.exe 2540 SearchIndexer.exe 3200 SearchProtocolHost.exe 432 SearchFilterHost.exe 2720 wmpnetwk.exe 3492 svchost.exe 3680 svchost.exe 3952 usnsvc.exe 2472 svchost.exe 3456 taskhost.exe 2676 lsass.exe 572 lsm.exe 580 csrss.exe 508 winlogon.exe 632 explorer.exe 1484 Windows Gezgini Microsoft Corporation LogMeInSystray.exe 2260 LogMeIn Desktop Application LogMeIn, Inc. LMIGuardian.exe 2304 LMIGuardian LogMeIn, Inc. jusched.exe 2392 Java Platform SE binary Sun Microsystems, Inc. egui.exe 2516 ESET GUI ESET hkcmd.exe 2904 hkcmd Module Intel Corporation igfxpers.exe 2968 persistence Module Intel Corporation msnmsgr.exe 3008 Windows Live Messenger Microsoft Corporation DTLite.exe 3040 DAEMON Tools Lite DT Soft Ltd firefox.exe 2184 Firefox Mozilla Corporation uTorrent.exe 3304 procexp.exe 1676 2.31 Sysinternals Process Explorer Sysinternals - www.sysinternals.comProcess: uTorrent.exe Pid: 3304Name Description Company Name Version-----Logfile of Trend Micro HijackThis v2.0.3 (BETA)Scan saved at 22:58:57, on 02.03.2010Platform: Unknown Windows (WinNT 6.01.3504)MSIE: Internet Explorer v8.00 (8.00.7600.16385)Boot mode: NormalRunning processes:C:\Windows\system32\Dwm.exeC:\Windows\system32\taskhost.exeC:\Windows\Explorer.EXEC:\Program Files\NetLimiter 2 Pro\NLClient.exeC:\Program Files\LogMeIn\x86\LogMeInSystray.exeC:\Program Files\LogMeIn\x86\LMIGuardian.exeC:\Program Files\Java\jre6\bin\jusched.exeC:\Program Files\ESET\ESET NOD32 Antivirus\egui.exeC:\Windows\System32\hkcmd.exeC:\Windows\system32\igfxsrvc.exeC:\Windows\System32\igfxpers.exeC:\Program Files\Windows Live\Messenger\msnmsgr.exeC:\Program Files\DAEMON Tools Lite\DTLite.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Windows\system32\taskhost.exeC:\Program Files\uTorrent\uTorrent.exeC:\Windows\system32\SearchFilterHost.exeC:\Program Files\TrendMicro\HiJackThis\HiJackThis.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blankR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local;*.localR0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: s127.0.0.1 localhostO2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dllO2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)O2 - BHO: Windows Live Oturum Açma Yardım Aracı - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dllO2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dllO2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (file missing)O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (file missing)O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitserviceO4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottimeO4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"O4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exeO4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exeO4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exeO4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /backgroundO4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorunO4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'Local Service')O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'Local Service')O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')O13 - Gopher Prefix: O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cabO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cabO23 - Service: Bonjour Service - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exeO23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exeO23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exeO23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\RaMaint.exeO23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LogMeIn.exeO23 - Service: NetLimiter (nlsvc) - Locktime Software - C:\Program Files\NetLimiter 2 Pro\nlsvc.exeO23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exeO23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exeO23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe--End of file - 5616 bytes Link to comment Share on other sites More sharing options...
GTHK Posted March 3, 2010 Report Share Posted March 3, 2010 # get Process Explorer from www.sysinternals.com, run it, Ctrl+D (to show the lower DLL pane), select the µTorrent process from the list, Ctrl+S (and save the list somewhere you'll find easily -- like the Desktop), then post the contents of the saved process list in the .txt file here Link to comment Share on other sites More sharing options...
barisyarali Posted March 4, 2010 Author Report Share Posted March 4, 2010 Process PID CPU Description Company NameSystem Idle Process 0 86.92 Interrupts n/a 2.29 Hardware Interrupts DPCs n/a 2.29 Deferred Procedure Calls System 4 smss.exe 292 csrss.exe 400 wininit.exe 460 services.exe 516 svchost.exe 696 igfxsrvc.exe 2788 igfxsrvc Module Intel Corporation svchost.exe 768 svchost.exe 832 audiodg.exe 3228 svchost.exe 908 dwm.exe 1796 0.76 Masaüstü Pencere Yöneticisi Microsoft Corporation svchost.exe 936 svchost.exe 1076 svchost.exe 1196 spoolsv.exe 1408 svchost.exe 1440 mDNSResponder.exe 1528 ekrn.exe 1588 ramaint.exe 1632 taskhost.exe 1696 Windows Görevleri İçin Ana Bilgisayar İşlemi Microsoft Corporation LogMeIn.exe 1836 LMIGuardian.exe 1968 nlsvc.exe 2008 NLClient.exe 2052 NetLimiter 2 Client Locktime Software NMSAccessU.exe 112 SeaPort.exe 344 svchost.exe 416 svchost.exe 2240 SearchIndexer.exe 3248 wmpnetwk.exe 3512 svchost.exe 3756 svchost.exe 4084 svchost.exe 2396 usnsvc.exe 200 lsass.exe 544 lsm.exe 552 csrss.exe 468 winlogon.exe 664 explorer.exe 1868 Windows Gezgini Microsoft Corporation LogMeInSystray.exe 1660 LogMeIn Desktop Application LogMeIn, Inc. LMIGuardian.exe 1864 LMIGuardian LogMeIn, Inc. jusched.exe 2604 Java Platform SE binary Sun Microsystems, Inc. egui.exe 2612 ESET GUI ESET hkcmd.exe 2656 hkcmd Module Intel Corporation igfxpers.exe 2688 persistence Module Intel Corporation msnmsgr.exe 2700 Windows Live Messenger Microsoft Corporation DTLite.exe 2780 DAEMON Tools Lite DT Soft Ltd uTorrent.exe 2672 µTorrent BitTorrent, Inc. firefox.exe 3168 5.34 Firefox Mozilla Corporation procexp.exe 2408 1.52 Sysinternals Process Explorer Sysinternals - www.sysinternals.comProcess: uTorrent.exe Pid: 2672Name Description Company Name VersionADVAPI32.dll Gelişmiş Windows 32 Tabanlı API Microsoft Corporation 6.1.7600.16385ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.5.2284.0AUTHZ.dll Authorization Framework Microsoft Corporation 6.1.7600.16385C_1252.NLS CLBCatQ.DLL COM+ Configuration Catalog Microsoft Corporation 2001.12.8530.16385COMCTL32.dll Kullanıcı Deneyimi Denetimleri Kitaplığı Microsoft Corporation 6.10.7600.16385comdlg32.dll Ortak iletişim DLL Microsoft Corporation 6.1.7600.16385credssp.dll Credential Delegation Security Package Microsoft Corporation 6.1.7600.16385CRYPT32.dll Şifreleme API32 Microsoft Corporation 6.1.7600.16385CRYPTBASE.dll Base cryptographic API DLL Microsoft Corporation 6.1.7600.16385CRYPTSP.dll Cryptographic Service Provider API Microsoft Corporation 6.1.7600.16385dhcpcsvc.DLL DHCP İstemci Hizmeti Microsoft Corporation 6.1.7600.16385dhcpcsvc6.DLL DHCPv6 İstemcisi Microsoft Corporation 6.1.7600.16385DnsApi.dll DNS İstemcisi API DLL'si Microsoft Corporation 6.1.7600.16385dwmapi.dll Microsoft Masaüstü Pencere Yöneticisi API'si Microsoft Corporation 6.1.7600.16385FirewallAPI.dll Windows Güvenlik Duvarı API Microsoft Corporation 6.1.7600.16385fwpuclnt.dll FWP/IPsec Kullanıcı Modu API'si Microsoft Corporation 6.1.7600.16385GDI32.dll GDI Client DLL Microsoft Corporation 6.1.7600.16385GPAPI.dll Grup İlkesi İstemcisi API'si Microsoft Corporation 6.1.7600.16385hnetcfg.dll Ev Ağı Yapılandırma Yöneticisi Microsoft Corporation 6.1.7600.16385iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 8.0.7600.16385IMM32.DLL Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.1.7600.16385Iphlpapi.dll IP Helper API Microsoft Corporation 6.1.7600.16385kernel32.dll Win32 Kernel çekirdek bileşeni Microsoft Corporation 6.1.7600.16481KERNELBASE.dll Win32 Kernel çekirdek bileşeni Microsoft Corporation 6.1.7600.16385KernelBase.dll.mui Win32 Kernel çekirdek bileşeni Microsoft Corporation 6.1.7600.16385locale.nls LPK.dll Language Pack Microsoft Corporation 6.1.7600.16385mdnsNSP.dll Bonjour Namespace Provider Apple Computer, Inc. 1.0.3.1MSASN1.dll ASN.1 Runtime APIs Microsoft Corporation 6.1.7600.16415MSCTF.dll MSCTF Server DLL Microsoft Corporation 6.1.7600.16385msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.7600.16385mswsock.dll Microsoft Windows Sockets 2.0 Servis Sağlayıcı Microsoft Corporation 6.1.7600.16385msxml3.dll MSXML 3.0 SP11 Microsoft Corporation 8.110.7600.16385msxml3r.dll XML Resources Microsoft Corporation 8.110.7600.16385netshell.dll Ağ Bağlantılar Kabuğu Microsoft Corporation 6.1.7600.16385netutils.dll Net Win32 API Helpers DLL Microsoft Corporation 6.1.7600.16385nlaapi.dll Network Location Awareness 2 Microsoft Corporation 6.1.7600.16385NSI.dll NSI User-mode interface DLL Microsoft Corporation 6.1.7600.16385ntdll.dll NT Katmanı DLL'si Microsoft Corporation 6.1.7600.16385ntmarta.dll Windows NT MARTA sağlayıcı Microsoft Corporation 6.1.7600.16385ole32.dll Windows için Microsoft OLE Microsoft Corporation 6.1.7600.16385oleaut32.dll Microsoft Corporation 6.1.7600.16385peerdist.dll BranchCache İstemci Kitaplığı Microsoft Corporation 6.1.7600.16385profapi.dll User Profile Basic API Microsoft Corporation 6.1.7600.16385rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.1.7600.16385RPCRT4.dll Uzaktan Yordam Çağrısı Çalıştırma Zamanı Modülü Microsoft Corporation 6.1.7600.16385RpcRtRemote.dll Remote RPC Extension Microsoft Corporation 6.1.7600.16385rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.1.7600.16385sechost.dll Host for SCM/SDDL/LSA Lookup APIs Microsoft Corporation 6.1.7600.16385SHELL32.dll Windows Shell Ortak Dll'i Microsoft Corporation 6.1.7600.16385shfolder.dll Shell Folder Service Microsoft Corporation 6.1.7600.16385SHLWAPI.dll Kabuk Hafif Hizmet Programı Kitaplığı Microsoft Corporation 6.1.7600.16385slc.dll Yazılım Lisansı İstemci Dll'si Microsoft Corporation 6.1.7600.16385SortDefault.nls SSDPAPI.dll SSDP Client API DLL Microsoft Corporation 6.1.7600.16385SspiCli.dll Security Support Provider Interface Microsoft Corporation 6.1.7600.16385StaticCache.dat SXS.DLL Fusion 2.5 Microsoft Corporation 6.1.7600.16385upnp.dll UPnP Denetim Noktası API'si Microsoft Corporation 6.1.7600.16385urlmon.dll Win32 için OLE32 Uzantıları Microsoft Corporation 8.0.7600.16490USER32.dll Çok Kullanıcılı Windows USER API İstemci DLL'si Microsoft Corporation 6.1.7600.16385USERENV.dll Userenv Microsoft Corporation 6.1.7600.16385USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.7600.16385uTorrent.exe µTorrent BitTorrent, Inc. 2.0.0.18296uxtheme.dll Microsoft UxTheme Kitaplığı Microsoft Corporation 6.1.7600.16385VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 6.1.7600.16385webio.dll Web Aktarımı Protokolleri API'si Microsoft Corporation 6.1.7600.16385WINHTTP.dll Windows HTTP Hizmetleri Microsoft Corporation 6.1.7600.16385WINNSI.DLL Network Store Information RPC interface Microsoft Corporation 6.1.7600.16385wkscli.dll Workstation Service Client DLL Microsoft Corporation 6.1.7600.16385WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 6.1.7600.16385WS2_32.dll Windows Socket 2.0 32 Bit DLL'si Microsoft Corporation 6.1.7600.16385wship6.dll Winsock2 Yardımcı DLL (TL/IPv6) Microsoft Corporation 6.1.7600.16385wshtcpip.dll Winsock2 Yardımcı DLL (TL/IPv4) Microsoft Corporation 6.1.7600.16385 Link to comment Share on other sites More sharing options...
moogly Posted March 4, 2010 Report Share Posted March 4, 2010 Are you running wireless? If yes, what are the wireless card and drivers? Link to comment Share on other sites More sharing options...
barisyarali Posted March 4, 2010 Author Report Share Posted March 4, 2010 Lenovo N 500 NotebookIntel® WiFi Link 5100 AGNv : 13.0.0.107I think this report also important..==================================================Dump File : 030410-22947-01.dmpCrash Time : 04.03.2010 17:22:22Bug Check String : DRIVER_IRQL_NOT_LESS_OR_EQUALBug Check Code : 0x000000d1Parameter 1 : 0x01000000Parameter 2 : 0x00000002Parameter 3 : 0x00000000Parameter 4 : 0x874bad3fCaused By Driver : tcpip.sysCaused By Address : tcpip.sys+5bd3fFile Description : TCP/IP SürücüsüProduct Name : Microsoft® Windows® İşletim SistemiCompany : Microsoft CorporationFile Version : 6.1.7600.16385 (win7_rtm.090713-1255)Processor : 32-bitComputer Name : Full Path : C:\Windows\minidump\030410-22947-01.dmpProcessors Count : 2Major Version : 15Minor Version : 7600================================================== Link to comment Share on other sites More sharing options...
DreadWingKnight Posted March 4, 2010 Report Share Posted March 4, 2010 Check with intel and lenovo for wireless driver updates. Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.