Jump to content

Utorrent has crashed. Unable to generate crash dump - here we go again


Recommended Posts

At this point of reinstalling utorrent numerous times, I just can't think of anything else to try. I also got rid of all those dat files in application data, etc to no avail.

I know, I know this has been asked before, but it seems to be, unfortunately, a separate problem every single time. Most topics posted here point at incompatibility as the culprit, but in my case nothing has been changed or installed when utorrent started to crash after less than 20 min after starting. In any case can someone help me identify potential candidates from a HJT and PE logs below? I'd really appreciate it as utorrent just can't be used at all in my computer at the moment.

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 12:53:39 AM, on 6/28/2010

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.17055)

Boot mode: Normal

Running processes:







c:\Program Files\Microsoft Security Essentials\MsMpEng.exe






C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe


C:\Program Files\Java\jre6\bin\jqs.exe


C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe


C:\Program Files\Unlocker\UnlockerAssistant.exe

C:\Program Files\Microsoft Security Essentials\msseces.exe

C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

C:\Program Files\Brownie\BrstsWnd.exe

C:\Program Files\Common Files\Java\Java Update\jusched.exe


C:\Program Files\Logitech\SetPoint\SetPoint.exe

C:\Program Files\OSDEx\OSDEx.exe

C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE

C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

C:\Program Files\Recuva\Recuva.exe

C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe


C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)

O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll

O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)

O3 - Toolbar: (no name) - {00000000-5736-4205-0008-f7ed0776fb27} - (no file)

O4 - HKLM\..\Run: [WD Button Manager] WDBtnMgr.exe

O4 - HKLM\..\Run: [unlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe" -H

O4 - HKLM\..\Run: [Lingvo Launcher] "C:\Program Files\ABBYY Lingvo 12\Lvagent.exe" /STARTUP

O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE

O4 - HKLM\..\Run: [MSSE] "c:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey

O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"

O4 - HKLM\..\Run: [brStsWnd] C:\Program Files\Brownie\BrstsWnd.exe Autorun

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

O4 - HKCU\..\Run: [ctfmon.exe] C:\windows\system32\ctfmon.exe

O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c

O4 - HKUS\S-1-5-19\..\RunOnce: [sIA2006] "C:\Program Files\Steganos Internet Anonym 2006\SIA2006.exe" -firstboot (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\RunOnce: [sIA2006] "C:\Program Files\Steganos Internet Anonym 2006\SIA2006.exe" -firstboot (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')

O4 - Startup: Dialog Box Assistant.lnk = C:\Program Files\OSDEx\OSDEx.exe

O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe

O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200

O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html

O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html

O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: Translate with ABBYY &Lingvo - res://C:\Program Files\ABBYY Lingvo 11 Six Languages\Lingvo.exe/3000

O8 - Extra context menu item: Translate with ABBYY &Lingvo... - res://C:\Program Files\ABBYY Lingvo 12\Lingvo.exe/3000

O9 - Extra button: (no name) - {AFC3FA82-AD07-45cd-8B57-983435B9899E} - (no file)

O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {238F6F83-B8B4-11CF-8771-00A024541EE3} - http://a516.g.akamai.net/f/516/25175/7d/runaware.download.akamai.com/25175/citrix/wficat-no-eula.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{4F77BD9C-DCAF-487A-AF41-5F5C871FF12C}: NameServer =,

O17 - HKLM\System\CCS\Services\Tcpip\..\{8692CCBE-B1D2-4EFD-AAE3-A31AFEF2DDB2}: NameServer =,

O17 - HKLM\System\CCS\Services\Tcpip\..\{9D719E55-14A3-41C9-A2A1-EFB37916726C}: NameServer =,

O17 - HKLM\System\CCS\Services\Tcpip\..\{CEC2FD5A-8CB3-45C2-8F6D-6D4658104CC7}: NameServer =,

O17 - HKLM\System\CCS\Services\Tcpip\..\{D9E08FE0-0810-4660-80DC-71AC1D0C576F}: NameServer =,

O20 - Winlogon Notify: !SASWinLogon - Invalid registry found

O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\windows\System32\browseui.dll

O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\windows\System32\browseui.dll

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\windows\system32\Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\SYSTEM32\ati2sgag.exe

O23 - Service: Crypkey License - Unknown owner - crypserv.exe (file missing)

O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: Google Update Service (gupdate1c9874f6308fa8e) (gupdate1c9874f6308fa8e) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: Intuit Update Service (IntuitUpdateService) - Intuit Inc. - C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe

O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe

O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (file missing)

O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\WINDOWS\SYSTEM32\ZoneLabs\vsmon.exe


End of file - 10112 bytes

Process PID CPU Description Company Name Path Version Window Status Verified Signer Command Line

System Idle Process 0 93.94

Interrupts n/a Hardware Interrupts

DPCs n/a 1.52 Deferred Procedure Calls

System 4

smss.exe 584 Windows NT Session Manager Microsoft Corporation C:\WINDOWS\SYSTEM32\smss.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher \SystemRoot\System32\smss.exe

csrss.exe 964 Client Server Runtime Process Microsoft Corporation C:\WINDOWS\SYSTEM32\csrss.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16

winlogon.exe 996 Windows NT Logon Application Microsoft Corporation C:\WINDOWS\SYSTEM32\winlogon.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher winlogon.exe

services.exe 1044 1.52 Services and Controller app Microsoft Corporation C:\WINDOWS\SYSTEM32\services.exe 5.1.2600.5755 (Verified) Microsoft Windows Component Publisher C:\windows\system32\services.exe

ati2evxx.exe 1208 ATI External Event Utility EXE Module ATI Technologies Inc. C:\WINDOWS\SYSTEM32\ati2evxx.exe (Verified) Microsoft Windows Hardware Compatibility Publisher C:\windows\system32\Ati2evxx.exe

svchost.exe 1228 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\system32\svchost -k DcomLaunch

svchost.exe 1276 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\system32\svchost -k rpcss

MsMpEng.exe 1328 AntiMalware Service Executable Microsoft Corporation c:\Program Files\Microsoft Security Essentials\MsMpEng.exe 2.1.6519.0 (Verified) Microsoft Corporation "c:\Program Files\Microsoft Security Essentials\MsMpEng.exe"

svchost.exe 1368 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\System32\svchost.exe -k netsvcs

svchost.exe 1492 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\system32\svchost.exe -k WudfServiceGroup

svchost.exe 1616 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\System32\svchost.exe -k NetworkService

svchost.exe 1660 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\System32\svchost.exe -k LocalService

vsmon.exe 1696 TrueVector Service Check Point Software Technologies LTD C:\WINDOWS\SYSTEM32\ZoneLabs\vsmon.exe (Verified) Check Point Software Technologies Ltd. C:\WINDOWS\SYSTEM32\ZoneLabs\vsmon.exe -service

spoolsv.exe 940 Spooler SubSystem App Microsoft Corporation C:\WINDOWS\SYSTEM32\spoolsv.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\system32\spoolsv.exe

svchost.exe 348 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\System32\svchost.exe -k LocalService

IntuitUpdateService.exe 772 Intuit Update Service Intuit Inc. C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe (Verified) Intuit, Inc. "C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe"

jqs.exe 1852 Java Quick Starter Service Sun Microsystems, Inc. C:\Program Files\Java\jre6\bin\jqs.exe (Verified) Sun Microsystems, Inc. "C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf"

svchost.exe 1936 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\System32\svchost.exe -k imgsvc

ULCDRSvr.exe 2052 ULCDRSvr Ulead Systems, Inc. C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Verified) Ulead Systems, Inc. "C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe"

lsass.exe 1056 LSA Shell (Export Version) Microsoft Corporation C:\WINDOWS\SYSTEM32\lsass.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\system32\lsass.exe

ati2evxx.exe 1424 ATI External Event Utility EXE Module ATI Technologies Inc. C:\WINDOWS\SYSTEM32\ati2evxx.exe (Verified) Microsoft Windows Hardware Compatibility Publisher Ati2evxx.exe -Client

explorer.exe 1172 Windows Explorer Microsoft Corporation C:\WINDOWS\explorer.exe 6.0.2900.5512 Running (Verified) Microsoft Windows Component Publisher C:\windows\Explorer.EXE

WDBtnMgr.exe 3196 WD Button Manager Western Digital Technologies, Inc. C:\WINDOWS\SYSTEM32\WDBtnMgr.exe (Unable to verify) Western Digital Technologies, Inc. "C:\windows\system32\WDBtnMgr.exe"

UnlockerAssistant.exe 3292 C:\Program Files\Unlocker\UnlockerAssistant.exe "C:\Program Files\Unlocker\UnlockerAssistant.exe" -H

msseces.exe 3424 Microsoft Security Essentials User Interface Microsoft Corporation C:\Program Files\Microsoft Security Essentials\msseces.exe 1.0.1961.0 (Verified) Microsoft Corporation "C:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey

zlclient.exe 3476 ZoneAlarm Client Check Point Software Technologies LTD C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe (Verified) Check Point Software Technologies Ltd. "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"

BrStsWnd.exe 3504 brstswnd brother C:\Program Files\Brownie\BrStsWnd.exe (Verified) Brother Industries, ltd. "C:\Program Files\Brownie\BrstsWnd.exe" Autorun

jusched.exe 3528 Java Update Scheduler Sun Microsystems, Inc. C:\Program Files\Common Files\Java\Java Update\jusched.exe (Verified) Sun Microsystems, Inc. "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

ctfmon.exe 3592 CTF Loader Microsoft Corporation C:\WINDOWS\SYSTEM32\ctfmon.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher "C:\windows\system32\ctfmon.exe"

SetPoint.exe 3868 Logitech SetPoint Event Manager (UNICODE) Logitech, Inc. C:\Program Files\Logitech\SetPoint\SetPoint.exe (Verified) Logitech "C:\Program Files\Logitech\SetPoint\SetPoint.exe"

KHALMNPR.exe 1468 Logitech KHAL Main Process Logitech, Inc. C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe (Verified) Logitech KHALMNPR.EXE /API

OSDEx.exe 3936 Dialog Box Assistant Robert Ponomarev C:\Program Files\OSDEx\OSDEx.exe (Unable to verify) Robert Ponomarev "C:\Program Files\OSDEx\OSDEx.exe"

chrome.exe 3176 1.52 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe Running (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe"

chrome.exe 2916 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.01972000.412209430

chrome.exe 3004 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=extension --lang=en-US --force-fieldtest=DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.01906900.306124833 --ignored=" --type=renderer "

chrome.exe 3752 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=CacheSize/CacheSizeGroup_0/DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.04BC9480.1836991751

chrome.exe 1404 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path=C:\windows\system32\Macromed\Flash\NPSWF32.dll --lang=en-US --plugin-data-dir="C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\User Data\Default" --channel=3176.0423BA80.1444245362

chrome.exe 3856 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=CacheSize/CacheSizeGroup_0/DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.04E16900.1365602591

chrome.exe 1344 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=CacheSize/CacheSizeGroup_0/DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.041DF780.2008432659

chrome.exe 3548 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=CacheSize/CacheSizeGroup_0/DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.03E75D80.1865534843

chrome.exe 2564 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=CacheSize/CacheSizeGroup_0/DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.041DFC00.2089680086

chrome.exe 316 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=CacheSize/CacheSizeGroup_0/DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.041DF900.1875301946

chrome.exe 3096 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=CacheSize/CacheSizeGroup_0/DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.05216600.957280721

chrome.exe 1336 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\5.0.375.70\gears.dll" --lang=en-US --plugin-data-dir="C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\User Data\Default" --channel=3176.04BE0C40.357779839

procexp.exe 3688 1.52 Sysinternals Process Explorer Sysinternals - www.sysinternals.com C:\Program Files\ProcessExplorer\procexp.exe Running (Verified) Microsoft Corporation "C:\Program Files\ProcessExplorer\procexp.exe"

Thanks again in advance!

Link to comment
Share on other sites

Hi moogly, thanks for such a quick reply. I'm using the same version of ZA since 2008 (finely tuned and stable otherwise) and haven't updated utorrent from my current version of - the only one permited by a few private trackers I'm using - so, how is this possible that two unchanged, un-updated programs suddenly start hating each other so much after more than two years of perfect tandem? Just curious...

As I waited for a kind person to shed some light to my problem on this forum - it happened to be you, moogly - I also tested a few things by elimination, so to speak. Here, I come to a conclusion that I'd like to share with the rest who's interested (as it disturbs me a great deal) by first asking the following question:

Can an attempt to download a specific torrent crash uTorrent?

After a long trial and error session, I came to a conclusion that every time my uTorrent crashes, it occurs when I try downloading a particular torrent off a private tracker. The torrent itself is a remux of a BD, with mt2s files and all that entails. The forum where this torrent is offered is full of users who have happily downloaded it in full without a single problem.

I never heard of such a possibility that downloading a torrent can crash uTorrent software, but there's first time for everything, as they say...

By the way, it's currently been full 24 hours since I'm using uTorrent with NO problems. Since then, I've downloaded and uploaded completely quite a few files without the software crashing. Obviously, I mean that I'm not trying to download the torrent I've mentioned above. This serves as a further confirmation that this specific torrent is the culprit as I've been happily running my ZA all this time. Thanks again.

Any thoughts?

Link to comment
Share on other sites

Well, you can edit Process Explorer log, because it's wrong.

When uT is running, select utorrent.exe and enable DLL mode (ctrl+D).

Guide: http://forum.utorrent.com/viewtopic.php?id=29748

No I don't think this torrent is the culprit, µT crashes because an application or service interfers with it (or the software is buggy).

In addition, only 2.0.2 is supported here. Just make a try w/o ZA.

Link to comment
Share on other sites

Thank you moogly, here's PE with DLL modes enabled for uTorrent:

Process PID CPU Description Company Name Path Version Window Status Verified Signer Command Line

System Idle Process 0 74.63

Interrupts n/a Hardware Interrupts

DPCs n/a 5.97 Deferred Procedure Calls

System 4

smss.exe 584 Windows NT Session Manager Microsoft Corporation C:\WINDOWS\SYSTEM32\smss.exe 5.1.2600.5512 (Unable to verify) Microsoft Corporation \SystemRoot\System32\smss.exe

csrss.exe 964 Client Server Runtime Process Microsoft Corporation C:\WINDOWS\SYSTEM32\csrss.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16

winlogon.exe 996 Windows NT Logon Application Microsoft Corporation C:\WINDOWS\SYSTEM32\winlogon.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher winlogon.exe

services.exe 1044 1.49 Services and Controller app Microsoft Corporation C:\WINDOWS\SYSTEM32\services.exe 5.1.2600.5755 (Unable to verify) Microsoft Corporation C:\windows\system32\services.exe

ati2evxx.exe 1208 ATI External Event Utility EXE Module ATI Technologies Inc. C:\WINDOWS\SYSTEM32\ati2evxx.exe (Verified) Microsoft Windows Hardware Compatibility Publisher C:\windows\system32\Ati2evxx.exe

svchost.exe 1228 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Unable to verify) Microsoft Corporation C:\windows\system32\svchost -k DcomLaunch

svchost.exe 1276 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Unable to verify) Microsoft Corporation C:\windows\system32\svchost -k rpcss

MsMpEng.exe 1328 AntiMalware Service Executable Microsoft Corporation c:\Program Files\Microsoft Security Essentials\MsMpEng.exe 2.1.6519.0 (Verified) Microsoft Corporation "c:\Program Files\Microsoft Security Essentials\MsMpEng.exe"

svchost.exe 1368 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\System32\svchost.exe -k netsvcs

svchost.exe 1492 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Unable to verify) Microsoft Corporation C:\windows\system32\svchost.exe -k WudfServiceGroup

svchost.exe 1616 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Unable to verify) Microsoft Corporation C:\windows\System32\svchost.exe -k NetworkService

svchost.exe 1660 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Unable to verify) Microsoft Corporation C:\windows\System32\svchost.exe -k LocalService

vsmon.exe 1696 4.48 TrueVector Service Check Point Software Technologies LTD C:\WINDOWS\SYSTEM32\ZoneLabs\vsmon.exe (Verified) Check Point Software Technologies Ltd. C:\WINDOWS\SYSTEM32\ZoneLabs\vsmon.exe -service

spoolsv.exe 940 Spooler SubSystem App Microsoft Corporation C:\WINDOWS\SYSTEM32\spoolsv.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\system32\spoolsv.exe

svchost.exe 348 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\System32\svchost.exe -k LocalService

IntuitUpdateService.exe 772 Intuit Update Service Intuit Inc. C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe (Verified) Intuit, Inc. "C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe"

jqs.exe 1852 Java Quick Starter Service Sun Microsystems, Inc. C:\Program Files\Java\jre6\bin\jqs.exe (Verified) Sun Microsystems, Inc. "C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf"

svchost.exe 1936 Generic Host Process for Win32 Services Microsoft Corporation C:\WINDOWS\SYSTEM32\svchost.exe 5.1.2600.5512 (Unable to verify) Microsoft Corporation C:\windows\System32\svchost.exe -k imgsvc

ULCDRSvr.exe 2052 ULCDRSvr Ulead Systems, Inc. C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Verified) Ulead Systems, Inc. "C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe"

PresentationFontCache.exe 2648 PresentationFontCache.exe Microsoft Corporation C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 3.0.6920.1427 (Verified) Microsoft Corporation C:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe

lsass.exe 1056 LSA Shell (Export Version) Microsoft Corporation C:\WINDOWS\SYSTEM32\lsass.exe 5.1.2600.5512 (Verified) Microsoft Windows Component Publisher C:\windows\system32\lsass.exe

ati2evxx.exe 1424 ATI External Event Utility EXE Module ATI Technologies Inc. C:\WINDOWS\SYSTEM32\ati2evxx.exe (Verified) Microsoft Windows Hardware Compatibility Publisher Ati2evxx.exe -Client

explorer.exe 1172 Windows Explorer Microsoft Corporation C:\WINDOWS\explorer.exe 6.0.2900.5512 Running (Verified) Microsoft Windows Component Publisher C:\windows\Explorer.EXE

WDBtnMgr.exe 3196 WD Button Manager Western Digital Technologies, Inc. C:\WINDOWS\SYSTEM32\WDBtnMgr.exe (Unable to verify) Western Digital Technologies, Inc. "C:\windows\system32\WDBtnMgr.exe"

UnlockerAssistant.exe 3292 C:\Program Files\Unlocker\UnlockerAssistant.exe "C:\Program Files\Unlocker\UnlockerAssistant.exe" -H

msseces.exe 3424 Microsoft Security Essentials User Interface Microsoft Corporation C:\Program Files\Microsoft Security Essentials\msseces.exe 1.0.1961.0 (Verified) Microsoft Corporation "C:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey

zlclient.exe 3476 ZoneAlarm Client Check Point Software Technologies LTD C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe (Verified) Check Point Software Technologies Ltd. "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"

BrStsWnd.exe 3504 brstswnd brother C:\Program Files\Brownie\BrStsWnd.exe (Verified) Brother Industries, ltd. "C:\Program Files\Brownie\BrstsWnd.exe" Autorun

jusched.exe 3528 Java Update Scheduler Sun Microsystems, Inc. C:\Program Files\Common Files\Java\Java Update\jusched.exe (Verified) Sun Microsystems, Inc. "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

ctfmon.exe 3592 CTF Loader Microsoft Corporation C:\WINDOWS\SYSTEM32\ctfmon.exe 5.1.2600.5512 (Unable to verify) Microsoft Corporation "C:\windows\system32\ctfmon.exe"

SetPoint.exe 3868 Logitech SetPoint Event Manager (UNICODE) Logitech, Inc. C:\Program Files\Logitech\SetPoint\SetPoint.exe (Verified) Logitech "C:\Program Files\Logitech\SetPoint\SetPoint.exe"

KHALMNPR.exe 1468 Logitech KHAL Main Process Logitech, Inc. C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe (Verified) Logitech KHALMNPR.EXE /API

OSDEx.exe 3936 Dialog Box Assistant Robert Ponomarev C:\Program Files\OSDEx\OSDEx.exe (Unable to verify) Robert Ponomarev "C:\Program Files\OSDEx\OSDEx.exe"

chrome.exe 3176 1.49 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe Running (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe"

chrome.exe 2916 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.01972000.412209430

chrome.exe 3004 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=extension --lang=en-US --force-fieldtest=DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.01906900.306124833 --ignored=" --type=renderer "

chrome.exe 3752 2.99 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=CacheSize/CacheSizeGroup_0/DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.04BC9480.1836991751

chrome.exe 1404 5.97 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path=C:\windows\system32\Macromed\Flash\NPSWF32.dll --lang=en-US --plugin-data-dir="C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\User Data\Default" --channel=3176.0423BA80.1444245362

chrome.exe 3856 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=CacheSize/CacheSizeGroup_0/DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.04E16900.1365602591

chrome.exe 1344 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=CacheSize/CacheSizeGroup_0/DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.041DF780.2008432659

chrome.exe 3548 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=CacheSize/CacheSizeGroup_0/DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.03E75D80.1865534843

chrome.exe 3164 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=CacheSize/CacheSizeGroup_0/DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.04E16600.250645119

chrome.exe 368 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\5.0.375.70\gears.dll" --lang=en-US --plugin-data-dir="C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\User Data\Default" --channel=3176.0583B540.1351519544

chrome.exe 532 Google Chrome Google Inc. C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Verified) Google Inc "C:\Documents and Settings\EK\Local Settings\Application Data\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=CacheSize/CacheSizeGroup_0/DnsImpact/_default_enabled_prefetch/GlobalSdch/_global_enable_sdch/IPv6_Probe/_IPv6_probe_done/ --channel=3176.04F26C00.694706488

TurboTax.exe 284 TurboTax Intuit C:\Program Files\TurboTax\Deluxe 2009\32bit\TurboTax.exe 2009.9.14.216 Running (Verified) Intuit, Inc. "C:\Program Files\TurboTax\Deluxe 2009\32bit\TurboTax.exe"

notepad.exe 2268 Notepad Microsoft Corporation C:\WINDOWS\SYSTEM32\notepad.exe 5.1.2600.5512 Running (Unable to verify) Microsoft Corporation "C:\windows\system32\NOTEPAD.EXE" C:\Documents and Settings\EK\Desktop\Verizon Wireless return memo.txt

procexp.exe 3708 2.99 Sysinternals Process Explorer Sysinternals - www.sysinternals.com C:\Program Files\ProcessExplorer\procexp.exe Running (Verified) Microsoft Corporation "C:\Program Files\ProcessExplorer\procexp.exe"

uTorrent.exe 3364 C:\Program Files\uTorrent\uTorrent.exe uTorrent.exe /NOINSTALL /BRINGTOFRONT

Process: uTorrent.exe Pid: 3364

Name Description Company Name Version Path

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

<Pagefile Backed> <Pagefile Backed>

ACTIVEDS.dll ADs Router Layer DLL Microsoft Corporation 5.1.2600.5512 C:\windows\system32\ACTIVEDS.dll

adsldpc.dll ADs LDAP Provider C DLL Microsoft Corporation 5.1.2600.5512 C:\windows\system32\adsldpc.dll

ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 5.1.2600.5755 C:\windows\system32\ADVAPI32.dll

appHelp.dll Application Compatibility Client Library Microsoft Corporation 5.1.2600.5512 C:\windows\system32\appHelp.dll

ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.5.2284.2 C:\windows\system32\ATL.DLL

browseui.dll Shell Browser UI Library Microsoft Corporation 6.0.2900.5512 C:\windows\System32\browseui.dll

CFGMGR32.dll Configuration Manager Forwarder DLL Microsoft Corporation 5.1.2600.5512 C:\WINDOWS\System32\CFGMGR32.dll

CLBCATQ.DLL Microsoft Corporation 2001.12.4414.700 C:\windows\system32\CLBCATQ.DLL

COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.0.2900.5512 C:\windows\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\COMCTL32.dll

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.0.2900.5512 C:\windows\system32\comdlg32.dll

COMRes.dll Microsoft Corporation 2001.12.4414.700 C:\windows\system32\COMRes.dll

CRYPT32.dll Crypto API32 Microsoft Corporation 5.131.2600.5512 C:\windows\system32\CRYPT32.dll

CRYPTUI.dll Microsoft Trust UI Provider Microsoft Corporation 5.131.2600.5512 C:\windows\system32\CRYPTUI.dll

CSCDLL.dll Offline Network Agent Microsoft Corporation 5.1.2600.5512 C:\windows\System32\CSCDLL.dll

cscui.dll Client Side Caching UI Microsoft Corporation 5.1.2600.5512 C:\windows\System32\cscui.dll

ctype.nls C:\WINDOWS\SYSTEM32\ctype.nls

davclnt.dll Web DAV Client DLL Microsoft Corporation 5.1.2600.5512 C:\windows\System32\davclnt.dll

DNSAPI.dll DNS Client API DLL Microsoft Corporation 5.1.2600.5625 C:\windows\system32\DNSAPI.dll

drprov.dll Microsoft Terminal Server Network Provider Microsoft Corporation 5.1.2600.5512 C:\windows\System32\drprov.dll

GDI32.dll GDI Client DLL Microsoft Corporation 5.1.2600.5698 C:\windows\system32\GDI32.dll

hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 5.1.2600.5512 C:\windows\system32\hnetcfg.dll

ieframe.dll Internet Explorer Microsoft Corporation 7.0.6000.17055 C:\windows\system32\ieframe.dll

ieframe.dll.mui Internet Explorer Microsoft Corporation 7.0.6000.16414 C:\WINDOWS\SYSTEM32\en-US\ieframe.dll.mui

iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 7.0.6000.17055 C:\windows\system32\iertutil.dll

IMAGEHLP.dll Windows NT Image Helper Microsoft Corporation 5.1.2600.5512 C:\windows\system32\IMAGEHLP.dll

IMM32.DLL Windows XP IMM32 API Client DLL Microsoft Corporation 5.1.2600.5512 C:\windows\system32\IMM32.DLL

index.dat C:\Documents and Settings\EK\Local Settings\Temporary Internet Files\Content.IE5\index.dat

index.dat C:\Documents and Settings\EK\Cookies\index.dat

index.dat C:\Documents and Settings\EK\Local Settings\History\History.IE5\index.dat

Iphlpapi.dll IP Helper API Microsoft Corporation 5.1.2600.5512 C:\windows\system32\Iphlpapi.dll

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 5.1.2600.5781 C:\windows\system32\kernel32.dll

lgscroll.dll Logitech Scroll Enabler (UNICODE) Logitech, Inc. C:\Program Files\Logitech\SetPoint\lgscroll.dll

LINKINFO.dll Windows Volume Tracking Microsoft Corporation 5.1.2600.5512 C:\windows\system32\LINKINFO.dll

locale.nls C:\WINDOWS\SYSTEM32\locale.nls

MediaLibraryNSE.dll Nero File Dialog Nero AG C:\Program Files\Common Files\Ahead\lib\MediaLibraryNSE.dll

MFC71ENU.DLL MFC Language Specific Resources Microsoft Corporation 7.10.3077.0 C:\windows\system32\MFC71ENU.DLL

MFC71U.DLL MFCDLL Shared Library - Retail Version Microsoft Corporation 7.10.3077.0 C:\Program Files\Common Files\Ahead\lib\MFC71U.DLL

MPR.dll Multiple Provider Router DLL Microsoft Corporation 5.1.2600.5512 C:\windows\system32\MPR.dll

MPRAPI.dll Windows NT MP Router Administration DLL Microsoft Corporation 5.1.2600.5512 C:\windows\system32\MPRAPI.dll

MSASN1.dll ASN.1 Runtime APIs Microsoft Corporation 5.1.2600.5875 C:\windows\system32\MSASN1.dll

MSCTF.dll MSCTF Server DLL Microsoft Corporation 5.1.2600.5512 C:\windows\system32\MSCTF.dll

msctfime.ime Microsoft Text Frame Work Service IME Microsoft Corporation 5.1.2600.5512 C:\windows\system32\msctfime.ime

MSGINA.dll Windows NT Logon GINA DLL Microsoft Corporation 5.1.2600.5512 C:\windows\system32\MSGINA.dll

MSVCP71.dll Microsoft® C++ Runtime Library Microsoft Corporation 7.10.3077.0 C:\Program Files\Common Files\Ahead\lib\MSVCP71.dll

MSVCR71.dll Microsoft® C Runtime Library Microsoft Corporation 7.10.3052.4 C:\Program Files\Common Files\Ahead\lib\MSVCR71.dll

MSVCR80.dll Microsoft® C Runtime Library Microsoft Corporation 8.0.50727.3053 C:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca\MSVCR80.dll

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.2600.5512 C:\windows\system32\msvcrt.dll

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 5.1.2600.5625 C:\windows\system32\mswsock.dll

NETAPI32.dll Net Win32 API DLL Microsoft Corporation 5.1.2600.5694 C:\windows\system32\NETAPI32.dll

NETRAP.dll Net Remote Admin Protocol DLL Microsoft Corporation 5.1.2600.5512 C:\windows\System32\NETRAP.dll

NETUI0.dll NT LM UI Common Code - GUI Classes Microsoft Corporation 5.1.2600.5512 C:\windows\System32\NETUI0.dll

NETUI1.dll NT LM UI Common Code - Networking classes Microsoft Corporation 5.1.2600.5512 C:\windows\System32\NETUI1.dll

Normaliz.dll Unicode Normalization DLL Microsoft Corporation 6.0.5441.0 C:\windows\system32\Normaliz.dll

ntdll.dll NT Layer DLL Microsoft Corporation 5.1.2600.5755 C:\windows\system32\ntdll.dll

ntlanman.dll Microsoft® Lan Manager Microsoft Corporation 5.1.2600.5512 C:\windows\System32\ntlanman.dll

NTMARTA.DLL Windows NT MARTA provider Microsoft Corporation 5.1.2600.5512 C:\windows\system32\NTMARTA.DLL

ntshrui.dll Shell extensions for sharing Microsoft Corporation 5.1.2600.5512 C:\windows\system32\ntshrui.dll

ODBC32.dll Microsoft Data Access - ODBC Driver Manager Microsoft Corporation 3.525.1132.0 C:\windows\system32\ODBC32.dll

odbcint.dll Microsoft Data Access - ODBC Resources Microsoft Corporation 3.525.1132.0 C:\windows\system32\odbcint.dll

ole32.dll Microsoft OLE for Windows Microsoft Corporation 5.1.2600.5512 C:\windows\system32\ole32.dll

oleaut32.dll Microsoft Corporation 5.1.2600.5512 C:\windows\system32\oleaut32.dll

OSDExLib.dll Dialog Box Assistant Library Robert Ponomarev C:\Program Files\OSDEx\OSDExLib.dll

PortableDeviceApi.dll Windows Portable Device API Components Microsoft Corporation 5.2.5721.5145 C:\windows\system32\PortableDeviceApi.dll

PSAPI.DLL Process Status Helper Microsoft Corporation 5.1.2600.5512 C:\windows\system32\PSAPI.DLL

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 5.1.2600.5512 C:\windows\system32\rasadhlp.dll

RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 5.1.2600.5795 C:\windows\system32\RPCRT4.dll

rtutils.dll Routing Utilities Microsoft Corporation 5.1.2600.5512 C:\windows\system32\rtutils.dll

SAMLIB.dll SAM Library DLL Microsoft Corporation 5.1.2600.5512 C:\windows\system32\SAMLIB.dll

Secur32.dll Security Support Provider Interface Microsoft Corporation 5.1.2600.5834 C:\windows\system32\Secur32.dll

SETUPAPI.dll Windows Setup API Microsoft Corporation 5.1.2600.5512 C:\windows\system32\SETUPAPI.dll

shdocvw.dll Shell Doc Object and Control Library Microsoft Corporation 6.0.2900.5512 C:\windows\system32\shdocvw.dll

SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.0.2900.5622 C:\windows\system32\SHELL32.dll

SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.0.2900.5912 C:\windows\system32\SHLWAPI.dll

sortkey.nls C:\WINDOWS\SYSTEM32\sortkey.nls

sorttbls.nls C:\WINDOWS\SYSTEM32\sorttbls.nls

sti.dll Still Image Devices client DLL Microsoft Corporation 5.1.2600.5512 C:\WINDOWS\System32\sti.dll

unicode.nls C:\WINDOWS\SYSTEM32\unicode.nls

UnlockerHook.dll C:\Program Files\Unlocker\UnlockerHook.dll

urlmon.dll OLE32 Extensions for Win32 Microsoft Corporation 7.0.6000.17055 C:\windows\system32\urlmon.dll

USER32.dll Windows XP USER API Client DLL Microsoft Corporation 5.1.2600.5512 C:\windows\system32\USER32.dll

USERENV.dll Userenv Microsoft Corporation 5.1.2600.5512 C:\windows\system32\USERENV.dll

uTorrent.exe C:\Program Files\uTorrent\uTorrent.exe

uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.0.2900.5512 C:\windows\system32\uxtheme.dll

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 5.1.2600.5512 C:\windows\system32\VERSION.dll

WININET.dll Internet Extensions for Win32 Microsoft Corporation 7.0.6000.17055 C:\windows\system32\WININET.dll

winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 5.1.2600.5512 C:\windows\System32\winrnr.dll

WINSTA.dll Winstation Library Microsoft Corporation 5.1.2600.5512 C:\windows\system32\WINSTA.dll

WINTRUST.dll Microsoft Trust Verification APIs Microsoft Corporation 5.131.2600.5922 C:\windows\system32\WINTRUST.dll

WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 5.1.2600.5512 C:\windows\system32\WLDAP32.dll

WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 5.1.2600.5512 C:\windows\system32\WS2_32.dll

WS2HELP.dll Windows Socket 2.0 Helper for Windows NT Microsoft Corporation 5.1.2600.5512 C:\windows\system32\WS2HELP.dll

wshtcpip.dll Windows Sockets Helper DLL Microsoft Corporation 5.1.2600.5512 C:\windows\System32\wshtcpip.dll

xpsp2res.dll Service Pack 2 Messages Microsoft Corporation 5.1.2600.5512 C:\windows\system32\xpsp2res.dll

Thanks again, I'd appreciate any input!

Link to comment
Share on other sites

MediaLibraryNSE.dll Nero File Dialog Nero AG C:\Program Files\Common Files\Ahead\lib\MediaLibraryNSE.dll

OSDExLib.dll Dialog Box Assistant Library Robert Ponomarev C:\Program Files\OSDEx\OSDExLib.dll

These 2 DLL are injected into µT, possible culprit of crashes. What's their role?

Anyway make a try w/o ZA.

Link to comment
Share on other sites

Well, I think I was right all along. It's now official, no matter how mysterious it may sound - the torrent I've mentioned in my previous post IS the reason my uTorrent crashes. I know this for a fact because I just used a different (very different) machine with a completely different drive trying to download it, and the same damn thing happened - uTorrent dutifully crashed, giving me the notorious 'uTorrent has crashed. Unable to generate crash dump' message.

I know you've said, moogly, that a torrent is (can't?) unlikely to be the cause of this serious issue. But it is in this case. The only thing I'd really like to find out is why! Why the hell does a seemingly normal torrent from a private tracker that has been downloaded numerous times by other users cause crashes with such ferocity that it even made this other computer freeze altogether?

Just in case, I'm attaching a HJ and a PE reports from this other machine just in case. I don't know what else to do. The only other possible thing would be to ask folks on that private tracker that's the source of this torrent, but I've browsed all their posts so far and seen nothing but 'thank you's to the uploader.

Does it need a priest?...

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 2:20:33 AM, on 6/29/2010

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.17055)

Boot mode: Normal

Running processes:






c:\Program Files\Microsoft Security Essentials\MsMpEng.exe



C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe


C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe


C:\Program Files\Java\jre6\bin\jqs.exe

C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe


C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe




C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe


C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe

C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe

C:\Program Files\TOSHIBA\TouchPad\TPTray.exe

C:\Program Files\ABBYY Lingvo 12\Lvagent.exe




C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe

C:\Program Files\Microsoft Security Essentials\msseces.exe

C:\Program Files\Brownie\BrstsWnd.exe


C:\Program Files\Common Files\Java\Java Update\jusched.exe

C:\Program Files\Skype\Phone\Skype.exe

C:\Program Files\Logitech\SetPoint\SetPoint.exe

C:\Program Files\Zone Labs\ZoneAlarm\zapro.exe

C:\Program Files\Brownie\Brnipmon.exe

C:\Alps Touchpad Driver for Windows XP2000 6.0.305.6\Apoint.exe

C:\Documents and Settings\Lesya & Emin\Desktop\Saved files\Bilderman.exe

C:\Program Files\OSDEx\OSDEx.exe

C:\Program Files\MagicDisc\MagicDisc.exe

C:\Program Files\Apoint2K\Apntex.exe

C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE

C:\Program Files\Skype\Plugin Manager\skypePM.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\NOS\bin\getPlusPlus_Adobe.exe



C:\Program Files\Mozilla Firefox\plugin-container.exe




C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://go.microsoft.com/fwlink/?LinkId=54843

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll

O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe

O4 - HKLM\..\Run: [intelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"

O4 - HKLM\..\Run: [intelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless

O4 - HKLM\..\Run: [sVPWUTIL] C:\Program Files\Toshiba\Windows Utilities\SVPWUTIL.exe SVPwUTIL

O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe

O4 - HKLM\..\Run: [Pinger] c:\toshiba\ivp\ism\pinger.exe /run

O4 - HKLM\..\Run: [WD Button Manager] WDBtnMgr.exe

O4 - HKLM\..\Run: [Lingvo Launcher] "C:\Program Files\ABBYY Lingvo 12\Lvagent.exe" /STARTUP

O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE

O4 - HKLM\..\Run: [PhiBtn] %SystemRoot%\System32\drivers\PhiBtn.exe

O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide

O4 - HKLM\..\Run: [CoolSwitch] C:\WINDOWS\system32\taskswitch.exe

O4 - HKLM\..\Run: [TPSMain] TPSMain.exe

O4 - HKLM\..\Run: [WD Drive Manager] C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe

O4 - HKLM\..\Run: [MSSE] "c:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE

O4 - HKLM\..\Run: [brStsWnd] C:\Program Files\Brownie\BrstsWnd.exe Autorun

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [Desktop Software] "C:\Program Files\Common Files\SupportSoft\bin\bcont.exe" /ini "C:\Program Files\ComcastUI\Desktop Software\uinstaller.ini" /fromrun /starthidden

O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized

O4 - HKCU\..\Policies\Explorer\Run: [NTSpool] NTSpool.exe

O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM')

O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "c:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'Default user')

O4 - Startup: Alps TouchPad Control Driver in Advanced tab of Mouse Properties.lnk = C:\Alps Touchpad Driver for Windows XP2000 6.0.305.6\Apoint.exe

O4 - Startup: ApntEx.exe, some kind of additional driver for Alps TouchPad Control Driver.lnk = C:\Alps Touchpad Driver for Windows XP2000 6.0.305.6\ApntEx.exe

O4 - Startup: Bilderman.lnk = C:\Documents and Settings\Lesya & Emin\Desktop\Saved files\Bilderman.exe

O4 - Startup: Dialog Box Assistant.lnk = C:\Program Files\OSDEx\OSDEx.exe

O4 - Startup: MagicDisc.lnk = C:\Program Files\MagicDisc\MagicDisc.exe

O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe

O4 - Global Startup: ZoneAlarm Pro.lnk = C:\Program Files\Zone Labs\ZoneAlarm\zapro.exe

O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200

O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html

O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html

O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000

O8 - Extra context menu item: Translate with ABBYY &Lingvo... - res://C:\Program Files\ABBYY Lingvo 12\Lingvo.exe/3000

O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O14 - IERESET.INF: START_PAGE_URL=http://www.toshibadirect.com/dpdstart

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1178334029150

O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://crucial.com/controls/cpcScanner.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{E9259E41-27E9-4504-9FB6-3FA3BF6FC912}: NameServer =,

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O20 - AppInit_DLLs: acaptuser32.dll

O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll

O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll

O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe

O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe

O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe

O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe

O23 - Service: Process Monitor (LVPrcSrv) - Unknown owner - c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe (file missing)

O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe

O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe

O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe

O23 - Service: Swupdtmr - Unknown owner - c:\Toshiba\IVP\swupdate\swupdtmr.exe

O23 - Service: Acronis Try And Decide Service (TryAndDecideService) - Unknown owner - C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

O23 - Service: WD Drive Manager Service (WDBtnMgrSvc.exe) - WDC - C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe


End of file - 12011 bytes

Process PID CPU Description Company Name

System Idle Process 0 43.08

Interrupts n/a 1.54 Hardware Interrupts

DPCs n/a 46.15 Deferred Procedure Calls

System 4 1.54

smss.exe 536 Windows NT Session Manager Microsoft Corporation

csrss.exe 592 Client Server Runtime Process Microsoft Corporation

winlogon.exe 616 Windows NT Logon Application Microsoft Corporation

services.exe 660 1.54 Services and Controller app Microsoft Corporation

svchost.exe 836 Generic Host Process for Win32 Services Microsoft Corporation

dllhost.exe 956 COM Surrogate Microsoft Corporation

svchost.exe 916 Generic Host Process for Win32 Services Microsoft Corporation

MsMpEng.exe 980 AntiMalware Service Executable Microsoft Corporation

svchost.exe 1160 Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1236 Generic Host Process for Win32 Services Microsoft Corporation

EvtEng.exe 1284 Intel® PROSet/Wireless Event Log Intel Corporation

S24EvMon.exe 1316 Wireless Management Service Intel Corporation

svchost.exe 1408 Generic Host Process for Win32 Services Microsoft Corporation

svchost.exe 1488 Generic Host Process for Win32 Services Microsoft Corporation

spoolsv.exe 1716 Spooler SubSystem App Microsoft Corporation

svchost.exe 900 Generic Host Process for Win32 Services Microsoft Corporation

schedul2.exe 1116 Acronis Scheduler 2 Acronis

DVDRAMSV.exe 1192 DVD-RAM Utility Helper Service Matsushita Electric Industrial Co., Ltd.

jqs.exe 1096 Java Quick Starter Service Sun Microsystems, Inc.

RegSrvc.exe 1376 Intel® PROSet/Wireless Registry Service Intel Corporation

svchost.exe 1564 Generic Host Process for Win32 Services Microsoft Corporation

TrueImageTryStartService.exe 1744

vsmon.exe 1900 TrueVector Service Zone Labs Inc.

WDBtnMgrSvc.exe 316 WD Drive Manager Service WDC

alg.exe 3500 Application Layer Gateway Service Microsoft Corporation

svchost.exe 520 Generic Host Process for Win32 Services Microsoft Corporation

msiexec.exe 1032 Windows® installer Microsoft Corporation

lsass.exe 688 LSA Shell (Export Version) Microsoft Corporation

explorer.exe 1892 4.62 Windows Explorer Microsoft Corporation

ctfmon.exe 1912 CTF Loader Microsoft Corporation

hkcmd.exe 1764 hkcmd Module Intel Corporation

ZCfgSvc.exe 1788 ZeroCfgSvc MFC Application Intel Corporation

iFrmewrk.exe 1100 Intel Framework MFC Application Intel Corporation

TPTray.exe 2072 TPTray Application COMPAL ELECTRONIC INC.

LvAgent.exe 2100 Lingvo Launcher ABBYY (BIT Software)

PhiBtn.exe 2120 Snapshot and Launch button application Philips

TaskSwitch.exe 2148

TPSMain.exe 2256 TOSHIBA Corporation

TPSBattM.exe 2580 TOSHIBA Corporation

WDBtnMgrUI.exe 2296 WD Drive Manager WDC

msseces.exe 2312 Microsoft Security Essentials User Interface Microsoft Corporation

BrStsWnd.exe 2560 brstswnd brother

BRNIPMON.exe 2864 BrnIPMon Brother Industries, Ltd.

jusched.exe 2576 Java Update Scheduler Sun Microsystems, Inc.

Skype.exe 2620 Skype Skype Technologies S.A.

skypePM.exe 420 Skype Extras Manager Skype Technologies

SetPoint.exe 2796 Logitech SetPoint Event Manager (UNICODE) Logitech, Inc.

KHALMNPR.exe 3676 Logitech KHAL Main Process Logitech, Inc.

zapro.exe 2848 ZoneAlarm Pro Zone Labs Inc.

Apoint.exe 2876 Alps Pointing-device Driver Alps Electric Co., Ltd.

Bilderman.exe 3048 Bilderman http://www.burrrn.net

OSDEx.exe 3056 Dialog Box Assistant Robert Ponomarev

MagicDisc.exe 3172

HiJackThis.exe 3796 HijackThis Trend Micro Inc.

notepad.exe 2724 Notepad Microsoft Corporation

utorrent.exe 3296 1.54

ApntEx.exe 3256 Alps Pointing-device Driver for Windows NT/2000/XP Alps Electric Co., Ltd.

firefox.exe 1872 Firefox Mozilla Corporation

plugin-container.exe 4088 Plugin Container for Firefox Mozilla Corporation

WinRAR.exe 424 WinRAR archiver Alexander Roshal

procexp.exe 776 Sysinternals Process Explorer Sysinternals - www.sysinternals.com

getPlusPlus_Adobe.exe 1464 getPlus+® NOS Microsystems Ltd.

Ivpsvmgr.exe 1524 IVP Service Manager Application TOSHIBA Corporation

Update.exe 3892 Microsoft Security Essentials Update Microsoft Corporation

Process: utorrent.exe Pid: 3296

Name Description Company Name Version

ACTIVEDS.dll ADs Router Layer DLL Microsoft Corporation 5.1.2600.5512

adsldpc.dll ADs LDAP Provider C DLL Microsoft Corporation 5.1.2600.5512

ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 5.1.2600.5755

ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.5.2284.2

CLBCATQ.DLL Microsoft Corporation 2001.12.4414.700

COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.0.2900.5512

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.0.2900.5512

COMRes.dll Microsoft Corporation 2001.12.4414.700


DNSAPI.dll DNS Client API DLL Microsoft Corporation 5.1.2600.5625

GDI32.dll GDI Client DLL Microsoft Corporation 5.1.2600.5698

hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 5.1.2600.5512

IMM32.DLL Windows XP IMM32 API Client DLL Microsoft Corporation 5.1.2600.5512

Iphlpapi.dll IP Helper API Microsoft Corporation 5.1.2600.5512

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 5.1.2600.5781

lgscroll.dll Logitech Scroll Enabler (UNICODE) Logitech, Inc.


LvHook.dll Lingvo Hook DLL ABBYY (BIT Software)

MPRAPI.dll Windows NT MP Router Administration DLL Microsoft Corporation 5.1.2600.5512

MSCTF.dll MSCTF Server DLL Microsoft Corporation 5.1.2600.5512

msctfime.ime Microsoft Text Frame Work Service IME Microsoft Corporation 5.1.2600.5512

MSVCR80.dll Microsoft® C Runtime Library Microsoft Corporation 8.0.50727.3053

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.2600.5512

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 5.1.2600.5625

NETAPI32.dll Net Win32 API DLL Microsoft Corporation 5.1.2600.5694

ntdll.dll NT Layer DLL Microsoft Corporation 5.1.2600.5755

NTMARTA.DLL Windows NT MARTA provider Microsoft Corporation 5.1.2600.5512

ole32.dll Microsoft OLE for Windows Microsoft Corporation 5.1.2600.5512

OLEAUT32.dll Microsoft Corporation 5.1.2600.5512

OSDExLib.dll Dialog Box Assistant Library Robert Ponomarev

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 5.1.2600.5512

RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 5.1.2600.5795

rtutils.dll Routing Utilities Microsoft Corporation 5.1.2600.5512

SAMLIB.dll SAM Library DLL Microsoft Corporation 5.1.2600.5512

Secur32.dll Security Support Provider Interface Microsoft Corporation 5.1.2600.5834

SETUPAPI.dll Windows Setup API Microsoft Corporation 5.1.2600.5512

SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.0.2900.5622

SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.0.2900.5912




USER32.dll Windows XP USER API Client DLL Microsoft Corporation 5.1.2600.5512


uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.0.2900.5512

VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 5.1.2600.5512

winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 5.1.2600.5512

WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 5.1.2600.5512

WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 5.1.2600.5512

WS2HELP.dll Windows Socket 2.0 Helper for Windows NT Microsoft Corporation 5.1.2600.5512

wshtcpip.dll Windows Sockets Helper DLL Microsoft Corporation 5.1.2600.5512

Link to comment
Share on other sites

Thank you DreadWingKnight,

Prevx site may be incorrect cause acaptuser32.dll is just a part of Adobe Acrobat 3D - it'a a 3D capture plug-in. As to whether it still can cause problems, I just don't know, but I've used it since forever.

Yes, it seems (so far) to be the ZoneAlarm. I've had and successfully used this software for years, and this last version has been installed in my computer for the past year and half. I haven't changed my version of uTorrent for one and only reason that a private tracker I use and value the most really doesn't like versions higher than Who knows why but what we care...

Regardless, I've just shut down my ZoneAlarm, and the download is going well; so it seems to be the firewall. However, an interesting nuance has emerged from my analyzing of this problem: in my particular case Zone Alarm causes no problems to uTorrent as long as what's being dowloaded is smaller than a certain size - in my case it has to be bigger than, I think, 100 Gb for uTorrent to crash. Anything else that's smaller downloads just fine with the firewall activated in the background.

Is it something unprecedented (don't you hate that?) or just rare? In any case, I'm hoping not only to resolve it on my computer, but to add something new to a general list of known bittorrent issues.

And as to a specific torrent possibly causing problems - that proved to be not true since I tried downloading something entirely different in content (but similar in size!), and uTorrent crashed again...

Thank you so much again for all insights and attention, moogly and DreadWingKnight.

Link to comment
Share on other sites

Very well, GTHK, what firewall would you suggest for uTorrent? Thanks.

Just after I posted, my uTorrent crashed again. That's it, I'm at loss. Zone Alarm has been shut down for hours, and all this time uTorrent has been downloading one large component out of total of 3 of similar size (27-40 Gb) and was doing fine. What changed? I changed the other two files from 'skip' to 'high priority' to download them as well. uTorrent just vanished withough any messages. It did, however, leave a dump file which I'm posting below. Please, if anyone can tell me from it what the hell's going on with my client, I'd really appreciate it:

*** µTorrent Crash Report ***

Build: 2EF1FF3 (8179) built on Sun Sep 9 12:24:51 2007

Exception C0000005 at 0041BC4A


EAX: 00000002 EBX: 00000089 ECX: 00000096 EDX: 000000CC

ESI: 09F3410F EDI: F60CBEF1 EBP: 013CFA5B ESP: 00F0FDF0

EIP: 0041BC4A EFLAGS: 00010287

Bytes at CS:EIP:

88 14 3E 8D 76 01 72 C4 48 59 88 5D FF 88 45 FE 5F 5E 5B 5D C2 10 00 55

Stack trace:

09F346CB 097BD610 09F3410F 09F340D0 00F0FE18 00416379 013CFA59 000005BD

09F3410F 00000000 00F0FE3C 00416466 00000000 09F3410F 000005BD 00004000

097BD610 002FC000 097BD610 00F0FE64 00419693 000005BD 00003A43 00000037

097B0006 097BD610 00000000 00D8A319 00005A50 00F0FF38 0041AACE 00000037

097BD610 00000000 00000000 00000000 00002238 00000254 00000000 00000000

00000000 00F0FE7C 001C1060 00000000 00F0FE58 7C8095D2 00F0FFDC 71A77228

71A544B0 FFFFFFFF 71A544A8 71AB4D16 00000634 0045F270 00000010 00F0FF34

00F0FF24 71AB2E1F 00D8A318 00D8A318 71AB4D1F 0045F278 097BD610 001CF000

00000000 00F0FF38 00416186 00000634 0045F270 00000010 00F0FF38 004161B9

00002238 0041620A 00000037 097BD610 00000000 00000000 0000369E 09F21808

0FFFA729 00000000 00F0FFAC 00416942 097BD610 00000000 00417230 00610020

0064006E 0012FEC8 00000001 00000000 00000000 00000000 00000000 00000000

00000000 88D82020 A6BBED50 8A5A4090 8AD5DF02 0012FEC8 00000000 057B56E2

00000010 057B5655 057B53F4 057B56E2 00000016 057B5451 006F0C35 00F0FFB4

00417526 00F0FFEC 7C80B729 0012FEC8 00610020 0064006E 0012FEC8 7FFDA000

C0000005 00F0FFC0 00F0FA14 FFFFFFFF 7C839AD8 7C80B730 00000000 00000000

00000000 0041751B 0012FEC8 00000000 00000008 01000100 FFEEFFEE 00000000

00340000 00000000 00F10000 00000100 00F10040 01010000 00000000 00000000

00000000 00000000 00F10040 00000000 00080684 010801F2 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

80078007 80078007 80078007 80078007 80078007 80078007 80078007 80078007

System information:

Windows version 5.1 2600 Service Pack 3

Link to comment
Share on other sites

DreadWingKnight, it's been only shut down. I restarted uTorrent right after it crashed, but this time I allowed only one out of three files to download, skipping the other two. It's morning now, and the file in question has finished downloading without uTorrent crashing at all. So, I changed 'skip' to 'normal' on the second file; let's see it it downloads as well during today.

So, it's 'download one at a time' now... Mystery.

Anyway, thanks guys, I'll have to kill ZA in full tonight and give Comodo a try. If more intriguing and mysterious stuff happens, I'll post here.

Link to comment
Share on other sites

I have a new Sony Vaio VPC-CW290X with an i5 CPU running Windows 7 Home Premium. It has been working great for a couple of months. In the last week or two it has started freezing every time I use utorrent. Reproducibly within minutes of starting utorrent. Complete freeze, nothing can be done, not ctrl-alt-del or anything. Only thing to do is remove the battery. This only happens when I use the wireless-N connection (also when I throttle the download speed to as low as 500 kpbs. It works like a charm when hardwired to the router with an ethernet cable. Files fly in at 1-1.5 mbps via my LinkSys router and Comcast modem (go Comcast, never thought I'd say that :-). And as I said, until recently it did the same also when going wireless. All my drivers are updated using driveragent. I even reinstalled the wireless driver just to try. My desktop, also running Windows 7, 64-bit but on a dual core CPU, uses a wireless USB/LinkSys-N adapter and it works perfectly with utorrent. I am running McAfee total protection on both machines, not Zone Alarm.

Link to comment
Share on other sites

pappapeter, your case may be the wireless drivers conflicting with something else and thus possibly freezing the system. Have you tried letting Windows control the wireless connection, unless of course that's the way you're already doing it :)? If not, try that. My problem is very different and totally mysterious - at least to me...

Link to comment
Share on other sites


This topic is now archived and is closed to further replies.

  • Create New...