JacksonTeoh Posted July 29, 2010 Report Posted July 29, 2010 hey, guys.I know this topic has been up for quite awhile now, I've read a bunch of it but still couldn't solve my problem. I don't have Zone Alarm for starters. I have Crawler toolbar, Symantec antivirus and also Spyware Terminator and that's it.I have always been using uTorrent until about 2 months ago, it stopped responding whenever I open it. I tried using Vuze but nothing beats uTorrent, so i gave up on Vuze but my uTorrent keeps on "not responding"And also when I tried opening it, sometimes it will say, "uTorrent is running but not responding, please close all uTorrent.... bla bla bla"Any way to solve this?
DreadWingKnight Posted July 29, 2010 Report Posted July 29, 2010 http://forum.utorrent.com/viewtopic.php?id=29748 <-- these logs please.
JacksonTeoh Posted July 30, 2010 Author Report Posted July 30, 2010 yeap, it's 2.0.3 and my OS is Windows 7For some reason, my HijackThis can't produce the log file.It says, "For some reason, your system denied write access to the Hosts file"
JacksonTeoh Posted July 30, 2010 Author Report Posted July 30, 2010 my god... i feel like a noob Thanks!This is the log:Logfile of Trend Micro HijackThis v2.0.4Scan saved at 6:17:27 PM, on 30-Jul-2010Platform: Windows 7 (WinNT 6.00.3504)MSIE: Internet Explorer v8.00 (8.00.7600.16385)Boot mode: NormalRunning processes:C:\Windows\system32\Dwm.exeC:\Windows\system32\taskhost.exeC:\Windows\Explorer.EXEC:\Windows\System32\igfxtray.exeC:\Windows\System32\hkcmd.exeC:\Windows\System32\igfxpers.exeC:\Program Files\Winamp\winampa.exeC:\Windows\system32\igfxsrvc.exeC:\Program Files\Launch Manager\LManager.exeC:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exeC:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exeC:\Windows\PLFSetI.exeC:\Program Files\Synaptics\SynTP\SynTPEnh.exeC:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exeC:\Program Files\CyberLink\Shared Files\brs.exeC:\Program Files\Common Files\Symantec Shared\ccApp.exeC:\Program Files\Symantec AntiVirus\VPTray.exeC:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exeC:\Program Files\Acer\Optical Drive Power Management\ODDPWR.exeC:\Program Files\Microsoft Office\Office12\GrooveMonitor.exeC:\Program Files\Spyware Terminator\SpywareTerminatorShield.ExeC:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exeC:\Program Files\Common Files\Real\Update_OB\realsched.exeC:\Windows\system32\wbem\unsecapp.exeC:\Program Files\Synaptics\SynTP\SynTPHelper.exeC:\Program Files\Common Files\Java\Java Update\jusched.exeC:\Program Files\Windows Sidebar\sidebar.exeC:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exeC:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exeC:\PROGRA~1\Raptr\raptr.exeC:\Program Files\Symantec AntiVirus\SavUI.exeC:\Program Files\Acer\Acer PowerSmart Manager\ePowerTray.exeC:\Windows\system32\igfxext.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\PROGRA~1\Crawler\CToolbar.exeC:\Program Files\uTorrent\uTorrent.exeC:\Program Files\Trend Micro\HiJackThis\HiJackThis.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\tbVuze.dllO2 - BHO: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing)O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\ctbr.dllO2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dllO2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~4\Office12\GR469A~1.DLLO2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dllO2 - BHO: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\tbVuze.dllO2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dllO3 - Toolbar: &Crawler Toolbar - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\PROGRA~1\Crawler\ctbr.dllO3 - Toolbar: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing)O3 - Toolbar: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\tbVuze.dllO4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exeO4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exeO4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exeO4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"O4 - HKLM\..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exeO4 - HKLM\..\Run: [iAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exeO4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -sO4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exeO4 - HKLM\..\Run: [synTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exeO4 - HKLM\..\Run: [RemoteControl9] "C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe"O4 - HKLM\..\Run: [PDVD9LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe"O4 - HKLM\..\Run: [bDRegion] C:\Program Files\Cyberlink\Shared Files\brs.exeO4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exeO4 - HKLM\..\Run: [backupManagerTray] "C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -kO4 - HKLM\..\Run: [Acer ePower Management] C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTrayLauncher.exeO4 - HKLM\..\Run: [ODDPwr] "C:\Program Files\Acer\Optical Drive Power Management\ODDPwr.exe"O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"O4 - HKLM\..\Run: [spywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"O4 - HKLM\..\Run: [sMSTray] C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exeO4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osbootO4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscriptO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRunO4 - HKCU\..\Run: [spywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"O4 - HKCU\..\Run: [Google Update] "C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe" /cO4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\\Phone\Skype.exe" /nosplash /minimizedO4 - HKCU\..\Run: [Raptr] C:\PROGRA~1\Raptr\raptrstub.exe --startupO4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exeO4 - Startup: syscron.exeO4 - Global Startup: Bluetooth.lnk = ?O8 - Extra context menu item: Crawler Search - tbr:iemenuO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htmO8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htmO9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dllO9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dllO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLLO9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htmO9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htmO18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~4\Office12\GRA32A~1.DLLO18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLLO18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~1\Crawler\ctbr.dllO23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exeO23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exeO23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exeO23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exeO23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exeO23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exeO23 - Service: Symantec Eraser Service (EraserSvc11010) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exeO23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exeO23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXEO23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exeO23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exeO23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exeO23 - Service: Acer ODD Power Service (ODDPwrSvc) - Acer Incorporated - C:\Program Files\Acer\Optical Drive Power Management\ODDPWRSvc.exeO23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exeO23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exeO23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exeO23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe--End of file - 11592 bytes
moogly Posted July 30, 2010 Report Posted July 30, 2010 We need the Process Explorer log please. Reread the link posted by DWK.
JacksonTeoh Posted July 30, 2010 Author Report Posted July 30, 2010 Process PID CPU Private Bytes Working Set Description Company NameSystem Idle Process 0 33.55 0 K 24 K Interrupts n/a 0 K 0 K Hardware Interrupts DPCs n/a 0 K 0 K Deferred Procedure Calls System 4 0.60 48 K 256 K smss.exe 268 260 K 748 K csrss.exe 392 1,372 K 3,220 K csrss.exe 444 2,180 K 33,144 K wininit.exe 452 964 K 3,352 K services.exe 508 4,080 K 6,784 K svchost.exe 664 3,296 K 7,252 K Host Process for Windows Services Microsoft Corporation igfxsrvc.exe 812 1,900 K 5,216 K igfxsrvc Module Intel Corporation WmiPrvSE.exe 2348 3,316 K 7,384 K unsecapp.exe 3312 1,220 K 4,688 K Sink to receive asynchronous callbacks for WMI client application Microsoft Corporation WmiPrvSE.exe 3848 2,020 K 5,028 K SavUI.exe 3228 4,416 K 12,600 K Symantec AntiVirus Symantec Corporation igfxext.exe 4376 1,868 K 5,488 K igfxext Module Intel Corporation CToolbar.exe 504 24,972 K 30,780 K Crawler Toolbar Crawler.com svchost.exe 736 3,848 K 6,852 K Host Process for Windows Services Microsoft Corporation svchost.exe 816 15,992 K 14,396 K Host Process for Windows Services Microsoft Corporation svchost.exe 876 59,428 K 65,780 K Host Process for Windows Services Microsoft Corporation dwm.exe 1536 1.80 61,304 K 40,940 K Desktop Window Manager Microsoft Corporation svchost.exe 900 16,936 K 26,540 K Host Process for Windows Services Microsoft Corporation svchost.exe 1036 4,424 K 7,676 K Host Process for Windows Services Microsoft Corporation svchost.exe 1152 9,440 K 11,276 K Host Process for Windows Services Microsoft Corporation ccSvcHst.exe 1252 10,000 K 4,956 K Symantec Service Framework Symantec Corporation spoolsv.exe 1520 4,748 K 8,664 K Spooler SubSystem App Microsoft Corporation svchost.exe 1576 8,208 K 10,832 K Host Process for Windows Services Microsoft Corporation taskhost.exe 1656 7,720 K 8,708 K Host Process for Windows Tasks Microsoft Corporation btwdins.exe 1772 1,396 K 4,612 K Bluetooth Support Server Broadcom Corporation. DefWatch.exe 1812 1,452 K 4,864 K Virus Definition Daemon Symantec Corporation ePowerSvc.exe 1920 1,660 K 5,284 K ePowerSvc Acer Incorporated ePowerEvent.exe 4444 0.60 1,112 K 4,788 K NBService.exe 1968 2,580 K 7,520 K Nero BackItUp Nero AG IScheduleSvc.exe 108 4,176 K 8,124 K Backup Manager Module NewTech Infosystems, Inc. ODDPWRSvc.exe 1880 1,360 K 4,760 K ODDPwr service Acer Incorporated IoctlSvc.exe 1304 644 K 2,492 K PLFlash DeviceIoControl Service Prolific Technology Inc. sp_rsser.exe 984 59,136 K 23,716 K Spyware Terminator Realtime Shield Service Crawler.com svchost.exe 2056 1,268 K 4,284 K Host Process for Windows Services Microsoft Corporation Rtvscan.exe 2104 43.13 53,160 K 170,120 K Symantec AntiVirus Symantec Corporation IAANTmon.exe 2192 1,772 K 5,032 K RAID Monitor Intel Corporation SearchIndexer.exe 2588 20,996 K 11,288 K Microsoft Windows Search Indexer Microsoft Corporation svchost.exe 3796 3,648 K 7,336 K Host Process for Windows Services Microsoft Corporation lsass.exe 532 0.60 3,412 K 8,124 K Local Security Authority Process Microsoft Corporation lsm.exe 540 1,400 K 3,088 K winlogon.exe 556 1,688 K 4,656 K explorer.exe 1668 53,584 K 70,420 K Windows Explorer Microsoft Corporation igfxtray.exe 404 1,720 K 5,148 K igfxTray Module Intel Corporation hkcmd.exe 412 1,572 K 4,712 K hkcmd Module Intel Corporation igfxpers.exe 384 1,732 K 5,224 K persistence Module Intel Corporation winampa.exe 448 2,044 K 5,476 K LManager.exe 2768 9,804 K 10,760 K IAAnotif.exe 2776 1,924 K 5,772 K Event Monitor User Notification Tool Intel Corporation RtHDVCpl.exe 2784 8,260 K 9,064 K Realtek HD Audio Manager Realtek Semiconductor PLFSetI.exe 2792 1,320 K 4,828 K DefaultSettingEXE MFC Application SynTPEnh.exe 2800 3.00 3,536 K 11,240 K Synaptics TouchPad Enhancements Synaptics Incorporated SynTPHelper.exe 3380 608 K 2,456 K PDVD9Serv.exe 2808 1,272 K 4,636 K PowerDVD RC Service CyberLink Corp. brs.exe 2828 832 K 3,300 K brs cyberlink ccApp.exe 2848 2,884 K 1,656 K Symantec User Session Symantec Corporation VPTray.exe 2932 3,628 K 11,952 K Symantec AntiVirus Symantec Corporation BackupManagerTray.exe 3000 1,888 K 6,296 K Acer Backup Manager NewTech Infosystems, Inc. ODDPWR.exe 3084 1,452 K 4,948 K ODDPWR Acer Incorporated GrooveMonitor.exe 3152 1,888 K 6,668 K GrooveMonitor Utility Microsoft Corporation SpywareTerminatorShield.Exe 3192 7,504 K 13,356 K Spyware Terminator Realtime Shield Crawler.com SMSTray.exe 3212 3,260 K 8,108 K SMSTray.exe SAMSUNG ELECTRONICS realsched.exe 3280 2,028 K 276 K RealNetworks Scheduler RealNetworks, Inc. jusched.exe 3400 908 K 3,368 K Java Update Scheduler Sun Microsystems, Inc. sidebar.exe 3416 0.60 41,264 K 34,264 K Windows Desktop Gadgets Microsoft Corporation SpywareTerminatorUpdate.exe 3440 9,784 K 18,940 K Crawler Spyware Terminator Crawler.com BTTray.exe 3620 5,968 K 11,476 K Bluetooth Tray Application Broadcom Corporation. firefox.exe 6976 152,900 K 172,444 K Firefox Mozilla Corporation WinRAR.exe 3272 9,300 K 15,736 K WinRAR archiver Alexander Roshal procexp.exe 4272 16.17 20,048 K 34,156 K Sysinternals Process Explorer Sysinternals - www.sysinternals.comraptr.exe 3132 56,216 K 67,492 K Raptr Client ePowerTray.exe 4288 3,092 K 9,576 K ePowerTray Acer IncorporateduTorrent.exe 5488 14,316 K 21,764 K µTorrent BitTorrent, Inc.
DreadWingKnight Posted July 30, 2010 Report Posted July 30, 2010 Still missing the dll list for the utorrent.exe process
JacksonTeoh Posted July 30, 2010 Author Report Posted July 30, 2010 Oops, sorry...Process PID CPU Private Bytes Working Set Description Company NameSystem Idle Process 0 20.22 0 K 24 K Interrupts n/a 0 K 0 K Hardware Interrupts DPCs n/a 0 K 0 K Deferred Procedure Calls System 4 0.72 48 K 256 K smss.exe 268 260 K 748 K csrss.exe 392 1,396 K 3,240 K csrss.exe 444 2,224 K 24,288 K wininit.exe 452 964 K 3,352 K services.exe 508 3,968 K 6,748 K svchost.exe 664 3,296 K 7,252 K Host Process for Windows Services Microsoft Corporation igfxsrvc.exe 812 1,928 K 5,276 K igfxsrvc Module Intel Corporation WmiPrvSE.exe 2348 3,316 K 7,384 K unsecapp.exe 3312 1,196 K 4,680 K Sink to receive asynchronous callbacks for WMI client application Microsoft Corporation WmiPrvSE.exe 3848 2,104 K 5,180 K SavUI.exe 3228 4,616 K 12,856 K Symantec AntiVirus Symantec Corporation igfxext.exe 4376 1,880 K 5,520 K igfxext Module Intel Corporation CToolbar.exe 504 24,856 K 30,732 K Crawler Toolbar Crawler.com SkypeNames2.exe 7936 1,608 K 5,376 K SkypeNames Skype Technologies S.A. svchost.exe 736 3,888 K 6,884 K Host Process for Windows Services Microsoft Corporation svchost.exe 816 15,932 K 14,356 K Host Process for Windows Services Microsoft Corporation svchost.exe 876 0.72 60,784 K 67,292 K Host Process for Windows Services Microsoft Corporation dwm.exe 1536 0.72 62,068 K 41,660 K Desktop Window Manager Microsoft Corporation svchost.exe 900 16,848 K 26,476 K Host Process for Windows Services Microsoft Corporation svchost.exe 1036 4,392 K 7,648 K Host Process for Windows Services Microsoft Corporation svchost.exe 1152 9,384 K 11,252 K Host Process for Windows Services Microsoft Corporation ccSvcHst.exe 1252 10,036 K 5,560 K Symantec Service Framework Symantec Corporation spoolsv.exe 1520 4,704 K 8,652 K Spooler SubSystem App Microsoft Corporation svchost.exe 1576 8,176 K 10,884 K Host Process for Windows Services Microsoft Corporation taskhost.exe 1656 7,720 K 8,776 K Host Process for Windows Tasks Microsoft Corporation btwdins.exe 1772 1,396 K 4,612 K Bluetooth Support Server Broadcom Corporation. DefWatch.exe 1812 1,628 K 5,300 K Virus Definition Daemon Symantec Corporation ePowerSvc.exe 1920 1,676 K 5,296 K ePowerSvc Acer Incorporated ePowerEvent.exe 4444 1,112 K 4,788 K NBService.exe 1968 2,580 K 7,520 K Nero BackItUp Nero AG IScheduleSvc.exe 108 4,176 K 8,124 K Backup Manager Module NewTech Infosystems, Inc. ODDPWRSvc.exe 1880 1,360 K 4,760 K ODDPwr service Acer Incorporated IoctlSvc.exe 1304 644 K 2,492 K PLFlash DeviceIoControl Service Prolific Technology Inc. sp_rsser.exe 984 59,152 K 25,636 K Spyware Terminator Realtime Shield Service Crawler.com SpywareTerminator.Exe 7100 24.55 128,888 K 143,436 K svchost.exe 2056 1,268 K 4,284 K Host Process for Windows Services Microsoft Corporation Rtvscan.exe 2104 46.22 48,676 K 166,344 K Symantec AntiVirus Symantec Corporation IAANTmon.exe 2192 1,772 K 5,032 K RAID Monitor Intel Corporation SearchIndexer.exe 2588 20,976 K 10,204 K Microsoft Windows Search Indexer Microsoft Corporation svchost.exe 3796 3,564 K 7,300 K Host Process for Windows Services Microsoft Corporation svchost.exe 7940 692 K 1,984 K Host Process for Windows Services Microsoft Corporation lsass.exe 532 3,412 K 8,120 K Local Security Authority Process Microsoft Corporation lsm.exe 540 1,448 K 3,076 K winlogon.exe 556 1,688 K 4,656 K explorer.exe 1668 53,276 K 70,268 K Windows Explorer Microsoft Corporation igfxtray.exe 404 1,720 K 5,148 K igfxTray Module Intel Corporation hkcmd.exe 412 1,572 K 4,712 K hkcmd Module Intel Corporation igfxpers.exe 384 1,732 K 5,224 K persistence Module Intel Corporation winampa.exe 448 2,044 K 5,476 K LManager.exe 2768 9,804 K 10,760 K IAAnotif.exe 2776 1,924 K 5,772 K Event Monitor User Notification Tool Intel Corporation RtHDVCpl.exe 2784 8,260 K 9,064 K Realtek HD Audio Manager Realtek Semiconductor PLFSetI.exe 2792 1,320 K 4,828 K DefaultSettingEXE MFC Application SynTPEnh.exe 2800 3,536 K 11,256 K Synaptics TouchPad Enhancements Synaptics Incorporated SynTPHelper.exe 3380 608 K 2,456 K PDVD9Serv.exe 2808 1,272 K 4,636 K PowerDVD RC Service CyberLink Corp. brs.exe 2828 832 K 3,300 K brs cyberlink ccApp.exe 2848 2,868 K 456 K Symantec User Session Symantec Corporation VPTray.exe 2932 3,628 K 11,952 K Symantec AntiVirus Symantec Corporation BackupManagerTray.exe 3000 1,888 K 6,296 K Acer Backup Manager NewTech Infosystems, Inc. ODDPWR.exe 3084 1,452 K 4,948 K ODDPWR Acer Incorporated GrooveMonitor.exe 3152 1,888 K 6,668 K GrooveMonitor Utility Microsoft Corporation SpywareTerminatorShield.Exe 3192 0.72 7,436 K 13,336 K Spyware Terminator Realtime Shield Crawler.com SMSTray.exe 3212 3,260 K 8,108 K SMSTray.exe SAMSUNG ELECTRONICS realsched.exe 3280 2,192 K 2,068 K RealNetworks Scheduler RealNetworks, Inc. jusched.exe 3400 908 K 3,368 K Java Update Scheduler Sun Microsystems, Inc. sidebar.exe 3416 0.72 41,240 K 34,236 K Windows Desktop Gadgets Microsoft Corporation SpywareTerminatorUpdate.exe 3440 9,808 K 19,108 K Crawler Spyware Terminator Crawler.com BTTray.exe 3620 5,968 K 11,476 K Bluetooth Tray Application Broadcom Corporation. firefox.exe 6976 185,472 K 206,180 K Firefox Mozilla Corporation WinRAR.exe 3272 9,392 K 16,000 K WinRAR archiver Alexander Roshal procexp.exe 7532 4.33 21,336 K 34,852 K Sysinternals Process Explorer Sysinternals - www.sysinternals.comraptr.exe 3132 56,040 K 67,424 K Raptr Client ePowerTray.exe 4288 3,092 K 9,588 K ePowerTray Acer IncorporateduTorrent.exe 5488 0.72 15,124 K 22,648 K µTorrent BitTorrent, Inc.Process: uTorrent.exe Pid: 5488Name Description Company Name VersionADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 6.1.7600.16385apphelp.dll Application Compatibility Client Library Microsoft Corporation 6.1.7600.16385ATL80.DLL ATL Module for Windows (Unicode) Microsoft Corporation 8.0.50727.762btkeyind.dll btmmhook.dll Multimedia Keys Hook DLL Broadcom Corporation. 6.2.0.9700CFGMGR32.dll Configuration Manager DLL Microsoft Corporation 6.1.7600.16385CLBCatQ.DLL COM+ Configuration Catalog Microsoft Corporation 2001.12.8530.16385COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.10.7600.16385comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.1.7600.16385CRYPT32.dll Crypto API32 Microsoft Corporation 6.1.7600.16385CRYPTBASE.dll Base cryptographic API DLL Microsoft Corporation 6.1.7600.16385CRYPTSP.dll Cryptographic Service Provider API Microsoft Corporation 6.1.7600.16385cscapi.dll Offline Files Win32 API Microsoft Corporation 6.1.7600.16385DEVOBJ.dll Device Information Set DLL Microsoft Corporation 6.1.7600.16385dhcpcsvc.DLL DHCP Client Service Microsoft Corporation 6.1.7600.16385dhcpcsvc6.DLL DHCPv6 Client Microsoft Corporation 6.1.7600.16385DnsApi.dll DNS Client API DLL Microsoft Corporation 6.1.7600.16385dwmapi.dll Microsoft Desktop Window Manager API Microsoft Corporation 6.1.7600.16385EhStorShell.dll Windows Enhanced Storage Shell Extension DLL Microsoft Corporation 6.1.7600.16385FirewallAPI.dll Windows Firewall API Microsoft Corporation 6.1.7600.16385fwpuclnt.dll FWP/IPsec User-Mode API Microsoft Corporation 6.1.7600.16385GDI32.dll GDI Client DLL Microsoft Corporation 6.1.7600.16385GR469A~1.DLL GrooveShellExtensions Module Microsoft Corporation 12.0.4518.1014GrooveNew.DLL GrooveNew Module Microsoft Corporation 12.0.4518.1014GrooveUtil.DLL GrooveUtil Module Microsoft Corporation 12.0.4518.1014iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 8.0.7600.16385IMM32.DLL Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.1.7600.16385index.dat index.dat index.dat Iphlpapi.dll IP Helper API Microsoft Corporation 6.1.7600.16385kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 6.1.7600.16385KERNELBASE.dll Windows NT BASE API Client DLL Microsoft Corporation 6.1.7600.16385KernelBase.dll.mui Windows NT BASE API Client DLL Microsoft Corporation 6.1.7600.16385locale.nls LPK.dll Language Pack Microsoft Corporation 6.1.7600.16385ltc_help.dll LTC Technologies Overlay - Helper Module LTC Technologies 1.0.0.1MSASN1.dll ASN.1 Runtime APIs Microsoft Corporation 6.1.7600.16385MSCTF.dll MSCTF Server DLL Microsoft Corporation 6.1.7600.16385msctf.dll.mui MSCTF Server DLL Microsoft Corporation 6.1.7600.16385MSImg32.dll GDIEXT Client DLL Microsoft Corporation 6.1.7600.16385MSVCP71.dll Microsoft® C++ Runtime Library Microsoft Corporation 7.10.3077.0MSVCR71.dll Microsoft® C Runtime Library Microsoft Corporation 7.10.3052.4MSVCR80.dll Microsoft® C Runtime Library Microsoft Corporation 8.0.50727.4927msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.7600.16385mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 6.1.7600.16385napinsp.dll E-mail Naming Shim Provider Microsoft Corporation 6.1.7600.16385netprofm.dll Network List Manager Microsoft Corporation 6.1.7600.16385netutils.dll Net Win32 API Helpers DLL Microsoft Corporation 6.1.7600.16385NLAapi.dll Network Location Awareness 2 Microsoft Corporation 6.1.7600.16385Normaliz.dll Unicode Normalization DLL Microsoft Corporation 6.1.7600.16385npmproxy.dll Network List Manager Proxy Microsoft Corporation 6.1.7600.16385NSI.dll NSI User-mode interface DLL Microsoft Corporation 6.1.7600.16385ntdll.dll NT Layer DLL Microsoft Corporation 6.1.7600.16385ntmarta.dll Windows NT MARTA provider Microsoft Corporation 6.1.7600.16385ntshrui.dll Shell extensions for sharing Microsoft Corporation 6.1.7600.16385ole32.dll Microsoft OLE for Windows Microsoft Corporation 6.1.7600.16385oleaut32.dll Microsoft Corporation 6.1.7600.16385pnrpnsp.dll PNRP Name Space Provider Microsoft Corporation 6.1.7600.16385profapi.dll User Profile Basic API Microsoft Corporation 6.1.7600.16385PROPSYS.dll Microsoft Property System Microsoft Corporation 7.0.7600.16385PSAPI.DLL Process Status Helper Microsoft Corporation 6.1.7600.16385rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.1.7600.16385RASAPI32.dll Remote Access API Microsoft Corporation 6.1.7600.16385rasman.dll Remote Access Connection Manager Microsoft Corporation 6.1.7600.16385rpchromebrowserrecordhelper.dll RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 6.1.7600.16385RpcRtRemote.dll Remote RPC Extension Microsoft Corporation 6.1.7600.16385rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.1.7600.16385rtutils.dll Routing Utilities Microsoft Corporation 6.1.7600.16385sechost.dll Host for SCM/SDDL/LSA Lookup APIs Microsoft Corporation 6.1.7600.16385sensapi.dll SENS Connectivity API DLL Microsoft Corporation 6.1.7600.16385SETUPAPI.dll Windows Setup API Microsoft Corporation 6.1.7600.16385SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.1.7600.16385shfolder.dll Shell Folder Service Microsoft Corporation 6.1.7600.16385SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.1.7600.16385slc.dll Software Licensing Client Dll Microsoft Corporation 6.1.7600.16385SortDefault.nls srvcli.dll Server Service Client DLL Microsoft Corporation 6.1.7600.16385SspiCli.dll Security Support Provider Interface Microsoft Corporation 6.1.7600.16385StaticCache.dat SysHook.dll SysHook Dynamic Link Library Acer Incorporated 4.2.3006.0tiptsf.dll Tablet PC Input Panel Text Services Framework Microsoft Corporation 6.1.7600.16385urlmon.dll OLE32 Extensions for Win32 Microsoft Corporation 8.0.7600.16385urlmon.dll.mui OLE32 Extensions for Win32 Microsoft Corporation 8.0.7600.16385USER32.dll Multi-User Windows USER API Client DLL Microsoft Corporation 6.1.7600.16385USERENV.dll Userenv Microsoft Corporation 6.1.7600.16385USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.7600.16385uTorrent.exe µTorrent BitTorrent, Inc. 2.0.3.20664uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.1.7600.16385VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 6.1.7600.16385WindowsCodecs.dll Microsoft Windows Codecs Library Microsoft Corporation 6.1.7600.16385WININET.dll Internet Extensions for Win32 Microsoft Corporation 8.0.7600.16385wininet.dll.mui Internet Extensions for Win32 Microsoft Corporation 8.0.7600.16385WINNSI.DLL Network Store Information RPC interface Microsoft Corporation 6.1.7600.16385winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 6.1.7600.16385WINSPOOL.DRV Windows Spooler Driver Microsoft Corporation 6.1.7600.16385wkscli.dll Workstation Service Client DLL Microsoft Corporation 6.1.7600.16385WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 6.1.7600.16385WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 6.1.7600.16385wshbth.dll Windows Sockets Helper DLL Microsoft Corporation 6.1.7600.16385wship6.dll Winsock2 Helper DLL (TL/IPv6) Microsoft Corporation 6.1.7600.16385wshtcpip.dll Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation 6.1.7600.16385
moogly Posted July 30, 2010 Report Posted July 30, 2010 You have a ton of DLL injected into utorrent.exe, don't be surprised one of them is the culprit.btkeyind.dll btmmhook.dll Multimedia Keys Hook DLL Broadcom Corporation. 6.2.0.9700ltc_help.dll LTC Technologies Overlay - Helper Module LTC Technologies 1.0.0.1rpchromebrowserrecordhelper.dll SysHook.dll SysHook Dynamic Link Library Acer Incorporated 4.2.3006.0What's their role?
JacksonTeoh Posted July 30, 2010 Author Report Posted July 30, 2010 some of them like "Acer" is my computer manufacturer, "Broadcom" is the manufacturer of my integrated circuit. Not sure about LTC though
Recommended Posts
Archived
This topic is now archived and is closed to further replies.