Jump to content

getting"It seems like uTorrent is already running, but not responding"


fsasota

Recommended Posts

i can start Utorrent on a fresh boot, but once i close it won't start because i get this message. if i go to task manager, it won't let me end the process.

logfile for when it happens

Logfile of Trend Micro HijackThis v2.0.3 (BETA)

Scan saved at 2:00:38 PM, on 3/17/2010

Platform: Unknown Windows (WinNT 6.01.3504)

MSIE: Internet Explorer v8.00 (8.00.7600.16385)

Boot mode: Normal

Running processes:

C:\Windows\system32\Dwm.exe

C:\Windows\system32\taskhost.exe

C:\Windows\Explorer.EXE

C:\Program Files\Avira\AntiVir Desktop\avgnt.exe

C:\Windows\System32\Ctxfihlp.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Program Files\RocketDock\RocketDock.exe

C:\Program Files\DAEMON Tools Lite\DTLite.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Windows\SYSTEM32\CTXFISPI.EXE

C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe

C:\Program Files\TrendMicro\HiJackThis\HiJackThis.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Windows\system32\SearchFilterHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE

O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"

O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"

O4 - HKCU\..\Run: [Aim] "C:\Program Files\AIM\aim.exe" /d locale=en-US

O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun

O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe

O4 - HKCU\..\Run: [igndlm.exe] C:\Program Files\Download Manager\DLM.exe /windowsstart /startifwork

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe

O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe

O9 - Extra button: PartyCasino - {B4B52284-A248-4c51-9F7C-F0A0C67FCC9D} - C:\Programs\PartyGaming\PartyCasino\RunApp.exe (file missing)

O9 - Extra 'Tools' menuitem: PartyCasino - {B4B52284-A248-4c51-9F7C-F0A0C67FCC9D} - C:\Programs\PartyGaming\PartyCasino\RunApp.exe (file missing)

O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Programs\PartyGaming\PartyPoker\RunApp.exe

O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Programs\PartyGaming\PartyPoker\RunApp.exe

O13 - Gopher Prefix:

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwareupdate/su2/ocx/15111/CTPID.cab

O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll

O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe

O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe

O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe

O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe

O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe

O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe

O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe

O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe

O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe

O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

--

End of file - 5816 bytes

Link to comment
Share on other sites

Happens when uTorrent is trying to take down the connections (from the previous session). Dunno how many you are running but my box needs about 45 secs to dismantle 150 connections. If one connection hits troubles closing, I suppose uTorrent will have to hang until some timeout occurs.

Link to comment
Share on other sites

i only have 5-6 torrents seeding from the same tracker with less than 10 peers usually.

Process PID CPU Description Company Name

System Idle Process 0 96.54

Interrupts n/a Hardware Interrupts

DPCs n/a 0.77 Deferred Procedure Calls

System 4

smss.exe 340 Windows Session Manager Microsoft Corporation

csrss.exe 436 Client Server Runtime Process Microsoft Corporation

wininit.exe 504 Windows Start-Up Application Microsoft Corporation

services.exe 560 Services and Controller app Microsoft Corporation

svchost.exe 740 Host Process for Windows Services Microsoft Corporation

unsecapp.exe 1952 Sink to receive asynchronous callbacks for WMI client application Microsoft Corporation

WmiPrvSE.exe 2104 WMI Provider Host Microsoft Corporation

WmiPrvSE.exe 3504 WMI Provider Host Microsoft Corporation

CTxfispi.exe 3896 SPI (Creative X-Fi Module) Creative Technology Ltd

dllhost.exe 3368 COM Surrogate Microsoft Corporation

dllhost.exe 3160 COM Surrogate Microsoft Corporation

nvvsvc.exe 832 NVIDIA Driver Helper Service, Version 196.21 NVIDIA Corporation

nvvsvc.exe 1368 NVIDIA Driver Helper Service, Version 196.21 NVIDIA Corporation

svchost.exe 872 Host Process for Windows Services Microsoft Corporation

svchost.exe 956 Host Process for Windows Services Microsoft Corporation

audiodg.exe 1152 Windows Audio Device Graph Isolation Microsoft Corporation

svchost.exe 996 1.54 Host Process for Windows Services Microsoft Corporation

dwm.exe 2748 Desktop Window Manager Microsoft Corporation

svchost.exe 1040 Host Process for Windows Services Microsoft Corporation

CTAudSvc.exe 1184 Creative Audio Service Creative Technology Ltd

svchost.exe 1260 Host Process for Windows Services Microsoft Corporation

svchost.exe 1436 Host Process for Windows Services Microsoft Corporation

AAWService.exe 1512 Ad-Aware Service Application Lavasoft

AAWWSC.exe 3192

AAWTray.exe 3848 Ad-Aware Tray Application Lavasoft

spoolsv.exe 1608 Spooler SubSystem App Microsoft Corporation

sched.exe 1644 Antivirus Scheduler Avira GmbH

svchost.exe 1664 Host Process for Windows Services Microsoft Corporation

avguard.exe 1816 Antivirus On-Access Service Avira GmbH

svchost.exe 1860 Host Process for Windows Services Microsoft Corporation

NBService.exe 1884 Nero BackItUp Nero AG

PnkBstrA.exe 1980

sppsvc.exe 2016 Microsoft Software Protection Platform Service Microsoft Corporation

nvSCPAPISvr.exe 128 Stereo Vision Control Panel API Server NVIDIA Corporation

svchost.exe 368 Host Process for Windows Services Microsoft Corporation

taskhost.exe 2776 Host Process for Windows Tasks Microsoft Corporation

SearchIndexer.exe 3876 Microsoft Windows Search Indexer Microsoft Corporation

wmpnetwk.exe 4084 Windows Media Player Network Sharing Service Microsoft Corporation

svchost.exe 2712 Host Process for Windows Services Microsoft Corporation

lsass.exe 584 Local Security Authority Process Microsoft Corporation

lsm.exe 592 Local Session Manager Service Microsoft Corporation

csrss.exe 512 Client Server Runtime Process Microsoft Corporation

winlogon.exe 672 Windows Logon Application Microsoft Corporation

explorer.exe 2804 Windows Explorer Microsoft Corporation

avgnt.exe 3032 Antivirus System Tray Tool Avira GmbH

reader_sl.exe 3056 Adobe Acrobat SpeedLauncher Adobe Systems Incorporated

Ctxfihlp.exe 3072 CTXfiHlp MFC Application Creative Technology Ltd

uTorrent.exe 3100 µTorrent BitTorrent, Inc.

RocketDock.exe 3108

DTLite.exe 3200 DAEMON Tools Lite DT Soft Ltd

sidebar.exe 3300 Windows Desktop Gadgets Microsoft Corporation

procexp.exe 3584 1.15 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

Link to comment
Share on other sites

Process PID CPU Description Company Name

System Idle Process 0 98.85

Interrupts n/a Hardware Interrupts

DPCs n/a Deferred Procedure Calls

System 4 0.38

smss.exe 340 Windows Session Manager Microsoft Corporation

csrss.exe 436 Client Server Runtime Process Microsoft Corporation

wininit.exe 504 Windows Start-Up Application Microsoft Corporation

services.exe 560 Services and Controller app Microsoft Corporation

svchost.exe 740 Host Process for Windows Services Microsoft Corporation

unsecapp.exe 1952 Sink to receive asynchronous callbacks for WMI client application Microsoft Corporation

WmiPrvSE.exe 2104 WMI Provider Host Microsoft Corporation

CTxfispi.exe 3896 SPI (Creative X-Fi Module) Creative Technology Ltd

nvvsvc.exe 832 NVIDIA Driver Helper Service, Version 196.21 NVIDIA Corporation

nvvsvc.exe 1368 NVIDIA Driver Helper Service, Version 196.21 NVIDIA Corporation

svchost.exe 872 Host Process for Windows Services Microsoft Corporation

svchost.exe 956 Host Process for Windows Services Microsoft Corporation

svchost.exe 996 Host Process for Windows Services Microsoft Corporation

dwm.exe 2748 Desktop Window Manager Microsoft Corporation

svchost.exe 1040 0.77 Host Process for Windows Services Microsoft Corporation

CTAudSvc.exe 1184 Creative Audio Service Creative Technology Ltd

svchost.exe 1260 Host Process for Windows Services Microsoft Corporation

svchost.exe 1436 Host Process for Windows Services Microsoft Corporation

AAWService.exe 1512 Ad-Aware Service Application Lavasoft

AAWTray.exe 3848 Ad-Aware Tray Application Lavasoft

spoolsv.exe 1608 Spooler SubSystem App Microsoft Corporation

sched.exe 1644 Antivirus Scheduler Avira GmbH

svchost.exe 1664 Host Process for Windows Services Microsoft Corporation

avguard.exe 1816 Antivirus On-Access Service Avira GmbH

svchost.exe 1860 Host Process for Windows Services Microsoft Corporation

NBService.exe 1884 Nero BackItUp Nero AG

PnkBstrA.exe 1980

nvSCPAPISvr.exe 128 Stereo Vision Control Panel API Server NVIDIA Corporation

svchost.exe 368 Host Process for Windows Services Microsoft Corporation

taskhost.exe 2776 Host Process for Windows Tasks Microsoft Corporation

SearchIndexer.exe 3876 Microsoft Windows Search Indexer Microsoft Corporation

SearchProtocolHost.exe 1960 Microsoft Windows Search Protocol Host Microsoft Corporation

SearchFilterHost.exe 3712 Microsoft Windows Search Filter Host Microsoft Corporation

wmpnetwk.exe 4084 Windows Media Player Network Sharing Service Microsoft Corporation

svchost.exe 2712 Host Process for Windows Services Microsoft Corporation

svchost.exe 448 Host Process for Windows Services Microsoft Corporation

lsass.exe 584 Local Security Authority Process Microsoft Corporation

lsm.exe 592 Local Session Manager Service Microsoft Corporation

csrss.exe 512 Client Server Runtime Process Microsoft Corporation

winlogon.exe 672 Windows Logon Application Microsoft Corporation

explorer.exe 2804 Windows Explorer Microsoft Corporation

avgnt.exe 3032 Antivirus System Tray Tool Avira GmbH

Ctxfihlp.exe 3072 CTXfiHlp MFC Application Creative Technology Ltd

uTorrent.exe 3100 µTorrent BitTorrent, Inc.

RocketDock.exe 3108

firefox.exe 4060 Firefox Mozilla Corporation

DTLite.exe 3200 DAEMON Tools Lite DT Soft Ltd

sidebar.exe 3300 Windows Desktop Gadgets Microsoft Corporation

procexp.exe 2408 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

Process: uTorrent.exe Pid: 3100

Name Description Company Name Version

ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 6.1.7600.16385

CLBCatQ.DLL COM+ Configuration Catalog Microsoft Corporation 2001.12.8530.16385

COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.10.7600.16385

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.1.7600.16385

CRYPTBASE.dll Base cryptographic API DLL Microsoft Corporation 6.1.7600.16385

CRYPTSP.dll Cryptographic Service Provider API Microsoft Corporation 6.1.7600.16385

dhcpcsvc.DLL DHCP Client Service Microsoft Corporation 6.1.7600.16385

dhcpcsvc6.DLL DHCPv6 Client Microsoft Corporation 6.1.7600.16385

DnsApi.dll DNS Client API DLL Microsoft Corporation 6.1.7600.16385

dwmapi.dll Microsoft Desktop Window Manager API Microsoft Corporation 6.1.7600.16385

FirewallAPI.dll Windows Firewall API Microsoft Corporation 6.1.7600.16385

fwpuclnt.dll FWP/IPsec User-Mode API Microsoft Corporation 6.1.7600.16385

GDI32.dll GDI Client DLL Microsoft Corporation 6.1.7600.16385

IMM32.DLL Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.1.7600.16385

Iphlpapi.dll IP Helper API Microsoft Corporation 6.1.7600.16385

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 6.1.7600.16481

KERNELBASE.dll Windows NT BASE API Client DLL Microsoft Corporation 6.1.7600.16385

KernelBase.dll.mui Windows NT BASE API Client DLL Microsoft Corporation 6.1.7600.16385

locale.nls

LPK.dll Language Pack Microsoft Corporation 6.1.7600.16385

MSCTF.dll MSCTF Server DLL Microsoft Corporation 6.1.7600.16385

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.7600.16385

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 6.1.7600.16385

napinsp.dll E-mail Naming Shim Provider Microsoft Corporation 6.1.7600.16385

NLAapi.dll Network Location Awareness 2 Microsoft Corporation 6.1.7600.16385

npmproxy.dll Network List Manager Proxy Microsoft Corporation 6.1.7600.16385

NSI.dll NSI User-mode interface DLL Microsoft Corporation 6.1.7600.16385

ntdll.dll NT Layer DLL Microsoft Corporation 6.1.7600.16385

ole32.dll Microsoft OLE for Windows Microsoft Corporation 6.1.7600.16385

oleaut32.dll Microsoft Corporation 6.1.7600.16385

pnrpnsp.dll PNRP Name Space Provider Microsoft Corporation 6.1.7600.16385

profapi.dll User Profile Basic API Microsoft Corporation 6.1.7600.16385

PSAPI.DLL Process Status Helper Microsoft Corporation 6.1.7600.16385

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.1.7600.16385

RocketDock.dll

RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 6.1.7600.16385

RpcRtRemote.dll Remote RPC Extension Microsoft Corporation 6.1.7600.16385

rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.1.7600.16385

sechost.dll Host for SCM/SDDL/LSA Lookup APIs Microsoft Corporation 6.1.7600.16385

SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.1.7600.16385

shfolder.dll Shell Folder Service Microsoft Corporation 6.1.7600.16385

SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.1.7600.16385

SortDefault.nls

SspiCli.dll Security Support Provider Interface Microsoft Corporation 6.1.7600.16385

StaticCache.dat

USER32.dll Multi-User Windows USER API Client DLL Microsoft Corporation 6.1.7600.16385

USERENV.dll Userenv Microsoft Corporation 6.1.7600.16385

USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.7600.16385

uTorrent.exe µTorrent BitTorrent, Inc. 2.0.1.18408

uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.1.7600.16385

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 6.1.7600.16385

WINNSI.DLL Network Store Information RPC interface Microsoft Corporation 6.1.7600.16385

winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 6.1.7600.16385

WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 6.1.7600.16385

wship6.dll Winsock2 Helper DLL (TL/IPv6) Microsoft Corporation 6.1.7600.16385

wshtcpip.dll Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation 6.1.7600.16385

Link to comment
Share on other sites

  • 1 month later...

thanks moogly:-)

1) My problems began after the last update of the F-Secure

2) I´ve added µT as exception in F-Secure modules

3) Which firewall you recommend? preferably free one

4) Now I´ve disabled the F-Secure, and using Windows own Firewall and µT runs like charm

//Peter

Link to comment
Share on other sites

  • 1 month later...

I am having the same problem and have tried all the solutions that I have found on this site. I have had this netbook for 2 days and since installing utorrent it refuses to actually show up. I get the message "It seems like u torrent is already running, but not responding. Please close all u torrent processes and try again"

So far I have tried:

1. uninstall/reinstall utorrent

2. deleting the appdata files

3. disabling virus protection

4. installing a different torrent program and that wouldn't start either.

Here is my process explorer log with utorrent running:

Process PID CPU Private Bytes Working Set Description Company Name

System Idle Process 0 96.97 0 K 28 K

Interrupts n/a 0 K 0 K Hardware Interrupts

DPCs n/a 0 K 0 K Deferred Procedure Calls

System 4 0.76 0 K 248 K

smss.exe 796 172 K 428 K Windows NT Session Manager Microsoft Corporation

csrss.exe 856 1,860 K 4,412 K Client Server Runtime Process Microsoft Corporation

winlogon.exe 880 8,372 K 5,068 K Windows NT Logon Application Microsoft Corporation

services.exe 924 0.76 2,032 K 3,740 K Services and Controller app Microsoft Corporation

svchost.exe 1108 3,448 K 5,552 K Generic Host Process for Win32 Services Microsoft Corporation

igfxsrvc.exe 824 1,492 K 3,592 K igfxsrvc Module Intel Corporation

wmiprvse.exe 3440 2,012 K 5,512 K WMI Microsoft Corporation

svchost.exe 1192 2,220 K 4,696 K Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1232 26,676 K 39,524 K Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1320 2,036 K 4,280 K Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1348 1,780 K 4,208 K Generic Host Process for Win32 Services Microsoft Corporation

spoolsv.exe 1656 5,208 K 6,824 K Spooler SubSystem App Microsoft Corporation

stacsv.exe 1700 2,232 K 3,816 K IDT PC Audio IDT, Inc.

svchost.exe 1820 1,304 K 3,260 K Generic Host Process for Win32 Services Microsoft Corporation

msdtc.exe 1420 2,064 K 5,188 K MS DTC console program Microsoft Corporation

ENGINE~1.EXE 1500 580 K 1,824 K McAfee Engine Service McAfee, Inc.

HWAPI.exe 1532 15,460 K 9,216 K McAfee HackerWatch Service McAfee, Inc.

McSACore.exe 1836 9,524 K 6,200 K SiteAdvisor McAfee, Inc.

McShield.exe 1872 56,828 K 60,912 K On-Access Scanner service McAfee, Inc.

MpfSrv.exe 1920 53,636 K 6,308 K McAfee Personal Firewall Service McAfee, Inc.

myAgtSvc.exe 1940 8,664 K 10,728 K Managed Services Agent McAfee, Inc.

PsiService_2.exe 156 680 K 2,196 K PsiService PsiService Protexis Inc.

SeaPort.exe 328 3,500 K 7,348 K Microsoft SeaPort Search Enhancement Broker Microsoft Corp.

svchost.exe 1548 2,804 K 4,836 K Generic Host Process for Win32 Services Microsoft Corporation

IAANTmon.exe 1136 2,456 K 4,464 K RAID Monitor Intel Corporation

mqsvc.exe 1404 2,196 K 6,148 K Message Queuing Service Microsoft Corporation

btwdins.exe 2400 2,408 K 3,520 K Bluetooth Support Server Broadcom Corporation.

mqtgsvc.exe 2496 1,548 K 4,088 K Windows NT MSMQ Trigger Service Microsoft Corporation

hpqWmiEx.exe 2944 1,368 K 4,576 K hpqwmiex Module Hewlett-Packard Development Company, L.P.

alg.exe 3432 1,304 K 3,724 K Application Layer Gateway Service Microsoft Corporation

Com4QLBEx.exe 3904 924 K 3,144 K Com for QLB application Hewlett-Packard Development Company, L.P.

lsass.exe 936 4,084 K 1,136 K LSA Shell (Export Version) Microsoft Corporation

explorer.exe 400 13,592 K 24,036 K Windows Explorer Microsoft Corporation

QLBCtrl.exe 572 2,620 K 5,700 K Quick Launch Buttons Hewlett-Packard Development Company, L.P.

IAAnotif.exe 580 2,376 K 4,580 K Event Monitor User Notification Tool Intel Corporation

SynTPEnh.exe 588 0.76 1,608 K 5,944 K Synaptics TouchPad Enhancements Synaptics Incorporated

XTray.exe 596 6,112 K 10,324 K XTray Application McAfee, Inc.

igfxtray.exe 664 1,176 K 3,700 K igfxTray Module Intel Corporation

hkcmd.exe 672 1,108 K 3,628 K hkcmd Module Intel Corporation

igfxpers.exe 684 852 K 3,044 K persistence Module Intel Corporation

sttray.exe 692 6,436 K 11,652 K IDT PC Audio IDT, Inc.

firefox.exe 3636 87,072 K 102,564 K Firefox Mozilla Corporation

HiJackThis.exe 552 3,984 K 8,840 K HijackThis Trend Micro Inc.

procexp.exe 2692 0.76 13,956 K 8,412 K Sysinternals Process Explorer Sysinternals - www.sysinternals.com

notepad.exe 1088 1,128 K 3,588 K Notepad Microsoft Corporation

Here is my hijackthis log with utorrent running:

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

c:\program files\idt\wdm\STacSV.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe

C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Program Files\McAfee\Managed VirusScan\DesktopUI\XTray.exe

C:\WINDOWS\system32\igfxtray.exe

C:\WINDOWS\system32\hkcmd.exe

C:\WINDOWS\system32\igfxpers.exe

C:\Program Files\IDT\WDM\sttray.exe

C:\WINDOWS\system32\igfxsrvc.exe

C:\Program Files\McAfee\Managed VirusScan\VScan\EngineServer.exe

C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe

C:\Program Files\McAfee\SiteAdvisor Enterprise\McSACore.exe

C:\PROGRA~1\McAfee\MANAGE~1\VScan\McShield.exe

C:\Program Files\McAfee\MPF\MPFSrv.exe

C:\Program Files\McAfee\Managed VirusScan\Agent\myAgtSvc.Exe

c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe

C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe

C:\WINDOWS\system32\mqsvc.exe

C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe

C:\WINDOWS\system32\mqtgsvc.exe

C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe

C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\WINDOWS\system32\msiexec.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT/1

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com/sphome.aspx?mkt={SUB_RFC1766}

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT/1

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPNOT/1

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.bing.com/sphome.aspx?mkt={SUB_RFC1766}

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://g.msn.com/HPNOT/1

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll

O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\Managed VirusScan\VScan\ScriptSn.20100605172520.dll

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files\McAfee\SiteAdvisor Enterprise\McIEPlg.dll

O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll

O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll

O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files\McAfee\SiteAdvisor Enterprise\McIEPlg.dll

O4 - HKLM\..\Run: [MsmqIntCert] regsvr32 /s mqrt.dll

O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start

O4 - HKLM\..\Run: [iAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe

O4 - HKLM\..\Run: [synTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [MVS Splash] "C:\Program Files\McAfee\Managed VirusScan\DesktopUI\XTray.exe" /LOGON

O4 - HKLM\..\Run: [McAfee Managed Services Tray] C:\Program Files\McAfee\Managed VirusScan\Agent\StartMyAgtTry.Exe

O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32

O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC

O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC

O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName

O4 - HKLM\..\Run: [igfxTray] C:\WINDOWS\system32\igfxtray.exe

O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe

O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe

O4 - HKLM\..\Run: [sysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe

O4 - HKLM\..\Run: [AESTFltr] %SystemRoot%\system32\AESTFltr.exe /NoDlg

O4 - HKLM\..\Run: [Cpqset] "C:\Program Files\Hewlett-Packard\Default Settings\cpqset.exe"

O4 - Global Startup: Bluetooth.lnk = ?

O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

O8 - Extra context menu item: Send To Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O15 - Trusted Zone: http://*.mcafee.com (HKLM)

O15 - Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)

O15 - Trusted Zone: http://vs.mcafeeasap.com (HKLM)

O15 - Trusted Zone: http://www.mcafeeasap.com (HKLM)

O15 - ESC Trusted Zone: http://*.mcafee.com (HKLM)

O15 - ESC Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)

O15 - ESC Trusted Zone: http://vs.mcafeeasap.com (HKLM)

O15 - ESC Trusted Zone: http://www.mcafeeasap.com (HKLM)

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1275840447046

O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files\McAfee\SiteAdvisor Enterprise\McIEPlg.dll

O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files\McAfee\SiteAdvisor Enterprise\McIEPlg.dll

O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll

O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll

O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe

O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe

O23 - Service: EngineServer - McAfee, Inc. - C:\Program Files\McAfee\Managed VirusScan\VScan\EngineServer.exe

O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe

O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe

O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe

O23 - Service: McAfee SiteAdvisor Enterprise Service - McAfee, Inc. - C:\Program Files\McAfee\SiteAdvisor Enterprise\McSACore.exe

O23 - Service: McShield - McAfee, Inc. - C:\PROGRA~1\McAfee\MANAGE~1\VScan\McShield.exe

O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe

O23 - Service: McAfee Virus and Spyware Protection Service (myAgtSvc) - McAfee, Inc. - C:\Program Files\McAfee\Managed VirusScan\Agent\myAgtSvc.Exe

O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe

O23 - Service: Audio Service (STacSV) - IDT, Inc. - c:\program files\idt\wdm\STacSV.exe

Link to comment
Share on other sites

Sorry about that.

Process: uTorrent.exe Pid: 260

Name Description Company Name Version

ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 5.1.2600.5755

CLBCATQ.DLL Microsoft Corporation 2001.12.4414.700

COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.0.2900.5512

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.0.2900.5512

COMRes.dll Microsoft Corporation 2001.12.4414.700

ctype.nls

DnsApi.dll DNS Client API DLL Microsoft Corporation 5.1.2600.5625

GDI32.dll GDI Client DLL Microsoft Corporation 5.1.2600.5698

hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 5.1.2600.5512

IMM32.DLL Windows XP IMM32 API Client DLL Microsoft Corporation 5.1.2600.5512

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 5.1.2600.5781

locale.nls

LPK.DLL Language Pack Microsoft Corporation 5.1.2600.5512

msctfime.ime Microsoft Text Frame Work Service IME Microsoft Corporation 5.1.2600.5512

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.2600.5512

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 5.1.2600.5625

netapi32.dll Net Win32 API DLL Microsoft Corporation 5.1.2600.5694

ntdll.dll NT Layer DLL Microsoft Corporation 5.1.2600.5755

ole32.dll Microsoft OLE for Windows Microsoft Corporation 5.1.2600.5512

oleaut32.dll Microsoft Corporation 5.1.2600.5512

RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 5.1.2600.5795

rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 5.1.2600.5507

Secur32.dll Security Support Provider Interface Microsoft Corporation 5.1.2600.5834

SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.0.2900.5622

shfolder.dll Shell Folder Service Microsoft Corporation 6.0.2900.5512

SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.0.2900.5912

sortkey.nls

sorttbls.nls

unicode.nls

USER32.dll Windows XP USER API Client DLL Microsoft Corporation 5.1.2600.5512

USERENV.dll Userenv Microsoft Corporation 5.1.2600.5512

USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.420.2600.5512

uTorrent.exe µTorrent BitTorrent, Inc. 2.0.2.19648

uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.0.2900.5512

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 5.1.2600.5512

WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 5.1.2600.5512

WS2HELP.dll Windows Socket 2.0 Helper for Windows NT Microsoft Corporation 5.1.2600.5512

wshtcpip.dll Windows Sockets Helper DLL Microsoft Corporation 5.1.2600.5512

Link to comment
Share on other sites

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...