Jump to content

uTorrent freezes constantly


Recommended Posts

Process    PID    CPU    Private Bytes    Working Set    Description    Company Name
System Idle Process 0 65.06 0 K 24 K
Interrupts n/a 0.77 0 K 0 K Hardware Interrupts
DPCs n/a 6.89 0 K 0 K Deferred Procedure Calls
System 4 0.77 108 K 304 K
smss.exe 256 448 K 1,120 K Windows Session Manager Microsoft Corporation
csrss.exe 388 2,172 K 4,312 K Client Server Runtime Process Microsoft Corporation
wininit.exe 424 1,476 K 4,248 K Windows Start-Up Application Microsoft Corporation
services.exe 544 6,396 K 10,156 K Services and Controller app Microsoft Corporation
svchost.exe 692 4,760 K 9,480 K Host Process for Windows Services Microsoft Corporation
dllhost.exe 2948 7,844 K 11,692 K COM Surrogate Microsoft Corporation
WmiPrvSE.exe 3104 8,352 K 12,800 K WMI Provider Host Microsoft Corporation
GPUMonitor.exe 4292 1,632 K 616 K RTHM Helper for GPUMonitor Gadget Nick Connors
wlcomm.exe 5248 25,400 K 1,280 K Windows Live Communications Platform Microsoft Corporation
dllhost.exe 2844 2,652 K 7,064 K COM Surrogate Microsoft Corporation
mcGlidHost.exe 2184 34,132 K 32,088 K Windows Media Center In-band Guide Loader Microsoft Corporation
COMServer2Helper.exe 6044 1,508 K 52 K
prevhost.exe 5388 2,520 K 60 K Preview Handler Surrogate Host Microsoft Corporation
WmiPrvSE.exe 2376 2,916 K 6,392 K WMI Provider Host Microsoft Corporation
nvvsvc.exe 756 1,636 K 4,660 K NVIDIA Driver Helper Service, Version 197.57 NVIDIA Corporation
nvvsvc.exe 1224 3,036 K 8,172 K NVIDIA Driver Helper Service, Version 197.57 NVIDIA Corporation
svchost.exe 796 6,692 K 10,528 K Host Process for Windows Services Microsoft Corporation
RapportMgmtService.exe 848 24,592 K 31,072 K RapportMgmtService Trusteer Ltd.
svchost.exe 972 20,708 K 23,916 K Host Process for Windows Services Microsoft Corporation
audiodg.exe 344 6.12 16,428 K 17,240 K Windows Audio Device Graph Isolation Microsoft Corporation
svchost.exe 1004 0.77 255,300 K 264,376 K Host Process for Windows Services Microsoft Corporation
dwm.exe 3688 1.53 36,080 K 51,472 K Desktop Window Manager Microsoft Corporation
svchost.exe 216 37,540 K 59,608 K Host Process for Windows Services Microsoft Corporation
wuauclt.exe 5840 2,372 K 60 K Windows Update Microsoft Corporation
svchost.exe 304 12,988 K 21,124 K Host Process for Windows Services Microsoft Corporation
svchost.exe 1136 21,984 K 24,536 K Host Process for Windows Services Microsoft Corporation
svchost.exe 1340 12,664 K 14,420 K Host Process for Windows Services Microsoft Corporation
ACService.exe 1476 1,136 K 3,704 K ArcSoft Connect Service ArcSoft Inc.
svchost.exe 1496 8,264 K 13,500 K Host Process for Windows Services Microsoft Corporation
AppleMobileDeviceService.exe 1516 1,512 K 4,540 K Apple Mobile Device Service Apple Inc.
mDNSResponder.exe 1536 2,448 K 5,996 K Bonjour Service Apple Inc.
ekrn.exe 1584 68,020 K 74,392 K ESET Service ESET
mdm.exe 1632 2,444 K 5,556 K Machine Debug Manager Microsoft Corporation
PnkBstrA.exe 1688 1,172 K 3,988 K
PnkBstrB.exe 1732 2,292 K 4,184 K
sppsvc.exe 1756 2,348 K 5,880 K Microsoft Software Protection Platform Service Microsoft Corporation
svchost.exe 1780 8,764 K 18,244 K Host Process for Windows Services Microsoft Corporation
nvSCPAPISvr.exe 1808 2,288 K 5,268 K Stereo Vision Control Panel API Server NVIDIA Corporation
svchost.exe 1844 1,844 K 5,280 K Host Process for Windows Services Microsoft Corporation
TeamViewer_Service.exe 1936 1,156 K 3,744 K TeamViewer Service TeamViewer GmbH
TeamViewer_Service.exe 1956 5,804 K 13,860 K TeamViewer Remote Control Application TeamViewer GmbH
TomTomHOMEService.exe 1984 960 K 2,848 K Windows Service for TomTom HOME TomTom
tvnserver.exe 2012 1,888 K 5,404 K TightVNC Server for Windows GlavSoft LLC.
ULCDRSvr.exe 2044 824 K 2,436 K ULCDRSvr Ulead Systems, Inc.
vmware-usbarbitrator.exe 1240 2,400 K 5,296 K VMware USB Arbitration Service VMware, Inc.
vmnat.exe 1236 1,664 K 4,568 K VMware NAT Service VMware, Inc.
WLIDSVC.EXE 1380 5,040 K 12,452 K Microsoft® Windows Live ID Service Microsoft Corporation
WLIDSVCM.EXE 4048 1,148 K 3,160 K Microsoft® Windows Live ID Service Monitor Microsoft Corporation
vmware-authd.exe 2144 6,080 K 9,860 K VMware Authorization Service VMware, Inc.
vmnetdhcp.exe 2428 1,200 K 3,900 K VMware VMnet DHCP service VMware, Inc.
taskhost.exe 2656 8,696 K 1,068 K Host Process for Windows Tasks Microsoft Corporation
RapportLaunService64.exe 3232 1,996 K 5,036 K RapportLaunService64 Trusteer Ltd.
SearchIndexer.exe 3508 40,292 K 16,612 K Microsoft Windows Search Indexer Microsoft Corporation
svchost.exe 3728 67,368 K 28,428 K Host Process for Windows Services Microsoft Corporation
svchost.exe 3768 2,192 K 5,580 K Host Process for Windows Services Microsoft Corporation
svchost.exe 3084 3,628 K 8,236 K Host Process for Windows Services Microsoft Corporation
iPodService.exe 3152 2,992 K 7,128 K iPodService Module (64-bit) Apple Inc.
svchost.exe 5204 8,392 K 13,972 K Host Process for Windows Services Microsoft Corporation
svchost.exe 1244 1,512 K 3,924 K Host Process for Windows Services Microsoft Corporation
ehrecvr.exe 2972 14,532 K 20,180 K Windows Media Center Receiver Service Microsoft Corporation
alg.exe 7164 1,492 K 4,864 K Application Layer Gateway Service Microsoft Corporation
lsass.exe 560 5,344 K 12,620 K Local Security Authority Process Microsoft Corporation
lsm.exe 568 3,032 K 5,708 K Local Session Manager Service Microsoft Corporation
csrss.exe 460 1.53 11,228 K 22,540 K Client Server Runtime Process Microsoft Corporation
conhost.exe 5340 2,028 K 60 K Console Window Host Microsoft Corporation
winlogon.exe 500 2,880 K 6,972 K Windows Logon Application Microsoft Corporation
explorer.exe 3860 100,948 K 28,760 K Windows Explorer Microsoft Corporation
egui.exe 3720 7,724 K 2,200 K ESET GUI ESET
wmdc.exe 3948 2,884 K 80 K Windows Mobile Device Center Microsoft Corporation
sidebar.exe 3252 3.06 83,456 K 26,260 K Windows Desktop Gadgets Microsoft Corporation
msnmsgr.exe 4132 92,252 K 5,556 K Windows Live Messenger Microsoft Corporation
Steam.exe 4304 91,412 K 4,340 K Steam Valve Corporation
esdprs.exe 4372 71,124 K 96 K Elcomsoft Distributed Password Recovery Server Elcomsoft Co. Ltd.
uTorrent.exe 4408 2.30 10,764 K 5,280 K µTorrent BitTorrent, Inc.
Sup_SmartRAM.exe 4420 3,932 K 2,064 K Smart RAM IObit
Launchy.exe 4500 9,520 K 224 K
SetPoint.exe 4528 8,068 K 740 K Logitech SetPoint Event Manager (UNICODE) Logitech, Inc.
SetPoint32.exe 4864 1,436 K 52 K
KHALMNPR.exe 1744 5,884 K 84 K Logitech KHAL Main Process Logitech, Inc.
privoxy.exe 4552 5,500 K 200 K Privoxy The Privoxy team - www.privoxy.org
MemBoost.exe 4640 14,632 K 984 K Rizone Memory Booster
mirc.exe 3268 47,700 K 9,132 K mIRC mIRC Co. Ltd.
chrome.exe 5288 99,600 K 2,588 K Google Chrome Google Inc.
chrome.exe 5524 9,580 K 100 K Google Chrome Google Inc.
chrome.exe 3148 9,928 K 488 K Google Chrome Google Inc.
chrome.exe 1056 9,728 K 108 K Google Chrome Google Inc.
chrome.exe 1252 19,724 K 228 K Google Chrome Google Inc.
chrome.exe 356 45,820 K 2,632 K Google Chrome Google Inc.
chrome.exe 2368 20,228 K 248 K Google Chrome Google Inc.
chrome.exe 5464 4,016 K 76 K Google Chrome Google Inc.
chrome.exe 5748 50,116 K 5,856 K Google Chrome Google Inc.
chrome.exe 2968 3,900 K 108 K Google Chrome Google Inc.
googletalkplugin.exe 5276 11,904 K 848 K Google Talk Plugin Google
chrome.exe 3540 33,172 K 88 K Google Chrome Google Inc.
chrome.exe 6976 32,792 K 536 K Google Chrome Google Inc.
WinRAR.exe 3452 9,648 K 352 K WinRAR archiver Alexander Roshal
chrome.exe 680 19,700 K 556 K Google Chrome Google Inc.
WinRAR.exe 6196 10,284 K 520 K WinRAR archiver Alexander Roshal
procexp.exe 5676 2,116 K 136 K Sysinternals Process Explorer Sysinternals - www.sysinternals.com
procexp64.exe 6276 2.30 48,104 K 32,624 K Sysinternals Process Explorer Sysinternals - www.sysinternals.com
foobar2000.exe 4060 358,808 K 5,980 K foobar2000
cmd.exe 6024 2,072 K 56 K Windows Command Processor Microsoft Corporation
WinRAR.exe 6524 6.89 9,724 K 5,756 K WinRAR archiver Alexander Roshal
filezilla.exe 4284 0.77 11,524 K 6,948 K FileZilla FTP Client FileZilla Project
FlashFXP.exe 6768 18,972 K 2,532 K FlashFXP IniCom Networks, Inc.
RivaTuner.exe 4144 0.77 5,152 K 2,944 K RivaTuner 2.24 MSI Master Overclocking Area 2009 edition
googletalk.exe 4888 32,924 K 1,636 K Google Talk Google
hqtray.exe 4912 2,372 K 104 K VMware Host Network Access Status Tray Application VMware, Inc.
iTunesHelper.exe 4920 13,084 K 184 K iTunesHelper Apple Inc.

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:16:07, on 14/02/2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.7930.16406)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\IObit\Advanced SystemCare 3\AWC.exe
C:\Program Files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner.exe
C:\Program Files (x86)\ElcomSoft\Distributed Password Recovery\esdprs.exe
C:\Program Files (x86)\IObit\Advanced SystemCare 3\Sup_SmartRAM.exe
C:\Program Files (x86)\Launchy\Launchy.exe
L:\Browser Downloads\memboost\MemBoost.exe
C:\Program Files (x86)\Google\Google Talk\googletalk.exe
L:\Program Files\VMWare\hqtray.exe
C:\Program Files\Logitech\SetPoint\x86\SetPoint32.exe
C:\Program Files (x86)\mIRC\mirc.exe
C:\Users\Sculeh\AppData\Local\Microsoft\Windows Sidebar\Gadgets\GPUMonitor.gadget\GPUMonitor.exe
L:\Program Files\Steam\Steam.exe
L:\Program Files\Apple\iTunesHelper.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files (x86)\Privoxy\privoxy.exe
C:\Users\Sculeh\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
C:\Program Files (x86)\foobar2000\foobar2000.exe
C:\Program Files (x86)\foobar2000\COMServer2Helper.exe
C:\Program Files (x86)\osu!\osu!.exe
L:\Browser Downloads\HijackThis (1).exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: broadcasthost
O1 - Hosts: ::1 localhost
O1 - Hosts: s # slashdot.org
O1 - Hosts: g # google.com
O1 - Hosts:
O1 - Hosts: Fri Nov 20 19:01:41 2009
O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files (x86)\FlashGet\jccatch.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - L:\Program Files\Office12\GrooveShellExtensions.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~2\FlashFXP\IEFlash.dll
O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files (x86)\FlashGet\getflash.dll
O4 - HKLM\..\Run: [googletalk] C:\Program Files (x86)\Google\Google Talk\googletalk.exe /autostart
O4 - HKLM\..\Run: [VMware hqtray] "L:\Program Files\VMWare\hqtray.exe"
O4 - HKLM\..\Run: [iTunesHelper] "L:\Program Files\Apple\iTunesHelper.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Sculeh\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Steam] "L:\Program Files\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [ElcomSoft DPR Server] C:\Program Files (x86)\ElcomSoft\Distributed Password Recovery\esdprs.exe
O4 - HKCU\..\Run: [EADM] "L:\Program Files\EA Games\EADM\EADMUI.exe"
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [SmartRAM] "C:\Program Files (x86)\IObit\Advanced SystemCare 3\Sup_SmartRAM.exe" /m
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10l_ActiveX.exe -update activex
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Rizone Memory Booster.lnk = L:\Browser Downloads\memboost\MemBoost.exe
O4 - Global Startup: Launchy.lnk = C:\Program Files (x86)\Launchy\Launchy.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Privoxy.lnk = C:\Program Files (x86)\Privoxy\privoxy.exe
O8 - Extra context menu item: &Download All with FlashGet - C:\Program Files (x86)\FlashGet\jc_all.htm
O8 - Extra context menu item: &Download with FlashGet - C:\Program Files (x86)\FlashGet\jc_link.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://L:\PROGRA~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - L:\PROGRA~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - L:\PROGRA~1\Office12\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - L:\PROGRA~1\Office12\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files (x86)\FlashGet\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files (x86)\FlashGet\FlashGet.exe
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: l:\program files\vmware\vsocklib.dll
O10 - Unknown file in Winsock LSP: l:\program files\vmware\vsocklib.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.3.9.113.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - L:\Program Files\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
O23 - Service: LibUsb-Win32 - Daemon, Version (libusbd) - http://libusb-win32.sourceforge.net - C:\Windows\system32\libusbd-nt.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Rapport Launching Service (RapportLaunService) - Trusteer Ltd. - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportLaunService64.exe
O23 - Service: Rapport Management Service (RapportMgmtService) - Trusteer Ltd. - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Unknown owner - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (file missing)
O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version5\TeamViewer_Service.exe
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
O23 - Service: TomTomHOMEService - TomTom - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: TightVNC Server (tvnserver) - GlavSoft LLC. - C:\Program Files (x86)\TightVNC\tvnserver.exe
O23 - Service: VMware Agent Service (ufad-ws60) - VMware, Inc. - L:\Program Files\VMWare\vmware-ufad.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - L:\Program Files\VMWare\vmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\system32\vmnetdhcp.exe
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:\Windows\system32\vmnat.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

End of file - 14391 bytes

Link to comment
Share on other sites

Process PID CPU Private Bytes Working Set Description Company Name

System Idle Process 0 63.30 0 K 24 K

Interrupts n/a 0 K 0 K Hardware Interrupts

DPCs n/a 5.09 0 K 0 K Deferred Procedure Calls

System 4 1.46 112 K 304 K

smss.exe 256 448 K 1,112 K Windows Session Manager Microsoft Corporation

csrss.exe 388 2,132 K 4,236 K Client Server Runtime Process Microsoft Corporation

wininit.exe 424 1,464 K 4,248 K Windows Start-Up Application Microsoft Corporation

services.exe 548 6,856 K 10,320 K Services and Controller app Microsoft Corporation

svchost.exe 676 4,660 K 9,404 K Host Process for Windows Services Microsoft Corporation

dllhost.exe 2304 7,620 K 11,476 K COM Surrogate Microsoft Corporation

WmiPrvSE.exe 3308 8,120 K 12,456 K WMI Provider Host Microsoft Corporation

GPUMonitor.exe 5140 1,632 K 616 K RTHM Helper for GPUMonitor Gadget Nick Connors

rundll32.exe 3664 2,272 K 148 K Windows host process (Rundll32) Microsoft Corporation

wlcomm.exe 5404 26,468 K 2,968 K Windows Live Communications Platform Microsoft Corporation

dllhost.exe 5720 2,448 K 6,916 K COM Surrogate Microsoft Corporation

WmiPrvSE.exe 1368 2,532 K 5,800 K WMI Provider Host Microsoft Corporation

dllhost.exe 4940 2,432 K 6,580 K COM Surrogate Microsoft Corporation

nvvsvc.exe 740 1,636 K 4,668 K NVIDIA Driver Helper Service, Version 197.57 NVIDIA Corporation

nvvsvc.exe 1260 3,032 K 8,140 K NVIDIA Driver Helper Service, Version 197.57 NVIDIA Corporation

svchost.exe 780 5,004 K 8,988 K Host Process for Windows Services Microsoft Corporation

RapportMgmtService.exe 840 0.73 21,316 K 27,912 K RapportMgmtService Trusteer Ltd.

svchost.exe 960 1.46 20,092 K 23,504 K Host Process for Windows Services Microsoft Corporation

audiodg.exe 344 7.28 16,424 K 17,216 K Windows Audio Device Graph Isolation Microsoft Corporation

svchost.exe 996 1.46 151,932 K 161,804 K Host Process for Windows Services Microsoft Corporation

dwm.exe 3476 1.46 33,516 K 49,620 K Desktop Window Manager Microsoft Corporation

svchost.exe 216 42,120 K 58,024 K Host Process for Windows Services Microsoft Corporation

taskeng.exe 3712 2,472 K 168 K Task Scheduler Engine Microsoft Corporation

AWC.exe 3868 19,588 K 1,116 K Advanced SystemCare 3 IObit

wuauclt.exe 1664 2,340 K 160 K Windows Update Microsoft Corporation

svchost.exe 456 10,124 K 18,020 K Host Process for Windows Services Microsoft Corporation

svchost.exe 1144 19,276 K 23,940 K Host Process for Windows Services Microsoft Corporation

svchost.exe 1352 11,932 K 13,580 K Host Process for Windows Services Microsoft Corporation

ACService.exe 1480 1,132 K 3,700 K ArcSoft Connect Service ArcSoft Inc.

svchost.exe 1500 1.46 9,640 K 15,100 K Host Process for Windows Services Microsoft Corporation

AppleMobileDeviceService.exe 1520 1,516 K 4,544 K Apple Mobile Device Service Apple Inc.

mDNSResponder.exe 1544 2,220 K 5,776 K Bonjour Service Apple Inc.

ekrn.exe 1584 70,488 K 76,896 K ESET Service ESET

mdm.exe 1636 2,668 K 5,760 K Machine Debug Manager Microsoft Corporation

PnkBstrA.exe 1676 1,168 K 3,984 K

PnkBstrB.exe 1708 2,276 K 4,156 K

sppsvc.exe 1732 2,424 K 6,644 K Microsoft Software Protection Platform Service Microsoft Corporation

svchost.exe 1760 5,508 K 11,732 K Host Process for Windows Services Microsoft Corporation

nvSCPAPISvr.exe 1792 2,300 K 5,284 K Stereo Vision Control Panel API Server NVIDIA Corporation

svchost.exe 1824 1,848 K 5,276 K Host Process for Windows Services Microsoft Corporation

TeamViewer_Service.exe 1852 1,156 K 3,620 K TeamViewer Service TeamViewer GmbH

TeamViewer_Service.exe 1884 5,564 K 14,640 K TeamViewer Remote Control Application TeamViewer GmbH

TomTomHOMEService.exe 1916 956 K 2,848 K Windows Service for TomTom HOME TomTom

tvnserver.exe 1964 1,884 K 5,388 K TightVNC Server for Windows GlavSoft LLC.

ULCDRSvr.exe 2004 828 K 2,420 K ULCDRSvr Ulead Systems, Inc.

vmware-usbarbitrator.exe 1088 2,404 K 5,300 K VMware USB Arbitration Service VMware, Inc.

vmnat.exe 1180 1,668 K 4,572 K VMware NAT Service VMware, Inc.

WLIDSVC.EXE 1568 4,976 K 12,268 K Microsoft® Windows Live ID Service Microsoft Corporation

WLIDSVCM.EXE 4624 1,152 K 3,164 K Microsoft® Windows Live ID Service Monitor Microsoft Corporation

vmware-authd.exe 2108 6,092 K 9,836 K VMware Authorization Service VMware, Inc.

vmnetdhcp.exe 2524 1,192 K 3,896 K VMware VMnet DHCP service VMware, Inc.

SearchIndexer.exe 2760 38,364 K 25,012 K Microsoft Windows Search Indexer Microsoft Corporation

RapportLaunService64.exe 2800 0.73 2,108 K 5,172 K RapportLaunService64 Trusteer Ltd.

svchost.exe 2376 68,536 K 28,020 K Host Process for Windows Services Microsoft Corporation

svchost.exe 2952 1,972 K 5,388 K Host Process for Windows Services Microsoft Corporation

taskhost.exe 3568 8,664 K 1,660 K Host Process for Windows Tasks Microsoft Corporation

svchost.exe 3396 3,468 K 8,112 K Host Process for Windows Services Microsoft Corporation

svchost.exe 4984 7,820 K 13,944 K Host Process for Windows Services Microsoft Corporation

iPodService.exe 1812 3,112 K 7,192 K iPodService Module (64-bit) Apple Inc.

svchost.exe 5948 1,544 K 4,068 K Host Process for Windows Services Microsoft Corporation

lsass.exe 556 7,908 K 16,276 K Local Security Authority Process Microsoft Corporation

lsm.exe 564 3,072 K 5,792 K Local Session Manager Service Microsoft Corporation

csrss.exe 452 11,340 K 32,112 K Client Server Runtime Process Microsoft Corporation

conhost.exe 3608 2,076 K 160 K Console Window Host Microsoft Corporation

winlogon.exe 500 2,876 K 7,112 K Windows Logon Application Microsoft Corporation

explorer.exe 3492 0.73 116,524 K 28,404 K Windows Explorer Microsoft Corporation

egui.exe 4068 7,172 K 1,640 K ESET GUI ESET

wmdc.exe 4076 2,708 K 168 K Windows Mobile Device Center Microsoft Corporation

sidebar.exe 3140 3.64 87,804 K 29,356 K Windows Desktop Gadgets Microsoft Corporation

msnmsgr.exe 3408 0.73 95,772 K 7,252 K Windows Live Messenger Microsoft Corporation

Steam.exe 2212 92,992 K 4,540 K Steam Valve Corporation

esdprs.exe 3620 71,136 K 248 K Elcomsoft Distributed Password Recovery Server Elcomsoft Co. Ltd.

Sup_SmartRAM.exe 3984 3,632 K 2,460 K Smart RAM IObit

Launchy.exe 4148 11,396 K 1,444 K

SetPoint.exe 4200 8,404 K 900 K Logitech SetPoint Event Manager (UNICODE) Logitech, Inc.

SetPoint32.exe 4476 1,532 K 120 K

KHALMNPR.exe 4300 5,532 K 176 K Logitech KHAL Main Process Logitech, Inc.

privoxy.exe 4292 7,064 K 804 K Privoxy The Privoxy team - www.privoxy.org

MemBoost.exe 4364 0.73 14,208 K 3,900 K Rizone Memory Booster

mirc.exe 5440 64,956 K 17,616 K mIRC mIRC Co. Ltd.

PS3DNS.exe 2876 19,836 K 232 K PS3 DNS Redirect

putty.exe 2248 2,352 K 1,572 K SSH, Telnet and Rlogin client Simon Tatham

mpc-hc64.exe 1040 244,156 K 5,716 K Media Player Classic - Homecinema mpc-hc@Sourceforge

chrome.exe 1960 81,820 K 9,036 K Google Chrome Google Inc.

chrome.exe 5932 9,556 K 972 K Google Chrome Google Inc.

chrome.exe 6088 9,776 K 896 K Google Chrome Google Inc.

chrome.exe 288 9,804 K 912 K Google Chrome Google Inc.

chrome.exe 5376 12,640 K 936 K Google Chrome Google Inc.

chrome.exe 5912 9,896 K 588 K Google Chrome Google Inc.

chrome.exe 4924 13,432 K 600 K Google Chrome Google Inc.

chrome.exe 1172 18,912 K 3,072 K Google Chrome Google Inc.

uTorrent.exe 4980 0.73 31,980 K 17,364 K µTorrent BitTorrent, Inc.

chrome.exe 5964 24,868 K 2,880 K Google Chrome Google Inc.

WinRAR.exe 3256 11,080 K 1,364 K WinRAR archiver Alexander Roshal

procexp.exe 5820 1,860 K 136 K Sysinternals Process Explorer Sysinternals - www.sysinternals.com

procexp64.exe 3360 2.91 46,360 K 38,928 K Sysinternals Process Explorer Sysinternals - www.sysinternals.com

RivaTuner.exe 3324 0.73 4,644 K 2,784 K RivaTuner 2.24 MSI Master Overclocking Area 2009 edition

googletalk.exe 4532 33,244 K 2,260 K Google Talk Google

hqtray.exe 4564 2,432 K 620 K VMware Host Network Access Status Tray Application VMware, Inc.

iTunesHelper.exe 4580 5,608 K 276 K iTunesHelper Apple Inc.

javaw.exe 1836 4.37 596,660 K 24,692 K Java Platform SE binary Sun Microsystems, Inc.

Process: uTorrent.exe Pid: 4980

Name Description Company Name Version

advapi32.dll Advanced Windows 32 Base API Microsoft Corporation 6.1.7600.16385

apisetschema.dll ApiSet Schema DLL Microsoft Corporation 6.1.7600.16385

apphelp.dll Application Compatibility Client Library Microsoft Corporation 6.1.7600.16385

ATL80.dll ATL Module for Windows (Unicode) Microsoft Corporation 8.0.50727.4053

cfgmgr32.dll Configuration Manager DLL Microsoft Corporation 6.1.7600.16385

clbcatq.dll COM+ Configuration Catalog Microsoft Corporation 2001.12.8530.16385

comctl32.dll User Experience Controls Library Microsoft Corporation 6.10.7600.16661

comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.1.7600.16385

crypt32.dll Crypto API32 Microsoft Corporation 6.1.7600.16385

cryptbase.dll Base cryptographic API DLL Microsoft Corporation 6.1.7600.16385

cryptsp.dll Cryptographic Service Provider API Microsoft Corporation 6.1.7600.16385

cscapi.dll Offline Files Win32 API Microsoft Corporation 6.1.7600.16385

dbghelp.dll Windows Image Helper Microsoft Corporation 6.1.7600.16385

devobj.dll Device Information Set DLL Microsoft Corporation 6.1.7600.16385

dhcpcsvc.dll DHCP Client Service Microsoft Corporation 6.1.7600.16385

dhcpcsvc6.dll DHCPv6 Client Microsoft Corporation 6.1.7600.16385

dnsapi.dll DNS Client API DLL Microsoft Corporation 6.1.7600.16385

DropboxExt.13.dll Dropbox Shell Extension Dropbox, Inc.

dwmapi.dll Microsoft Desktop Window Manager API Microsoft Corporation 6.1.7600.16385

EhStorShell.dll Windows Enhanced Storage Shell Extension DLL Microsoft Corporation 6.1.7600.16385

FirewallAPI.dll Windows Firewall API Microsoft Corporation 6.1.7600.16385

FWPUCLNT.DLL FWP/IPsec User-Mode API Microsoft Corporation 6.1.7600.16385

GameHook.dll Logitech Gaming Hook (UNICODE) Logitech, Inc.

gdi32.dll GDI Client DLL Microsoft Corporation 6.1.7600.16385

GrooveNew.dll GrooveNew Module Microsoft Corporation 12.0.6413.1000

GrooveShellExtensions.dll GrooveShellExtensions Module Microsoft Corporation 12.0.6421.1000

GrooveUtil.dll GrooveUtil Module Microsoft Corporation 12.0.6423.1000

iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 9.0.7930.16406

imm32.dll Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.1.7600.16385

IPHLPAPI.DLL IP Helper API Microsoft Corporation 6.1.7600.16385

kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 6.1.7600.16385

KernelBase.dll Windows NT BASE API Client DLL Microsoft Corporation 6.1.7600.16385

KernelBase.dll.mui Windows NT BASE API Client DLL Microsoft Corporation 6.1.7600.16385

lgscroll.dll Logitech Scroll Enabler (UNICODE) Logitech, Inc.


lpk.dll Language Pack Microsoft Corporation 6.1.7600.16385

mdnsNSP.dll Bonjour Namespace Provider Apple Inc.

msasn1.dll ASN.1 Runtime APIs Microsoft Corporation 6.1.7600.16415

msctf.dll MSCTF Server DLL Microsoft Corporation 6.1.7600.16385

msctf.dll.mui MSCTF Server DLL Microsoft Corporation 6.1.7600.16385

msi.dll Windows Installer Microsoft Corporation 5.0.7600.16385

msimg32.dll GDIEXT Client DLL Microsoft Corporation 6.1.7600.16385

msvcp71.dll Microsoft® C++ Runtime Library Microsoft Corporation 7.10.3077.0

msvcr71.dll Microsoft® C Runtime Library Microsoft Corporation 7.10.3052.4

msvcr80.dll Microsoft® C Runtime Library Microsoft Corporation 8.0.50727.4927

msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.7600.16385

mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 6.1.7600.16385

normaliz.dll Unicode Normalization DLL Microsoft Corporation 6.1.7600.16385

npmproxy.dll Network List Manager Proxy Microsoft Corporation 6.1.7600.16385

nsi.dll NSI User-mode interface DLL Microsoft Corporation 6.1.7600.16385

ntdll.dll NT Layer DLL Microsoft Corporation 6.1.7600.16559

ntdll.dll NT Layer DLL Microsoft Corporation 6.1.7600.16559

ntmarta.dll Windows NT MARTA provider Microsoft Corporation 6.1.7600.16385

ntshrui.dll Shell extensions for sharing Microsoft Corporation 6.1.7600.16385

ole32.dll Microsoft OLE for Windows Microsoft Corporation 6.1.7600.16624

oleaut32.dll Microsoft Corporation 6.1.7600.16567

profapi.dll User Profile Basic API Microsoft Corporation 6.1.7600.16385

propsys.dll Microsoft Property System Microsoft Corporation 7.0.7600.16385

psapi.dll Process Status Helper Microsoft Corporation 6.1.7600.16385

rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.1.7600.16385

rpcrt4.dll Remote Procedure Call Runtime Microsoft Corporation 6.1.7600.16385

RpcRtRemote.dll Remote RPC Extension Microsoft Corporation 6.1.7600.16385

rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.1.7600.16385

sechost.dll Host for SCM/SDDL/LSA Lookup APIs Microsoft Corporation 6.1.7600.16385

setupapi.dll Windows Setup API Microsoft Corporation 6.1.7600.16385

setupapi.dll.mui Windows Setup API Microsoft Corporation 6.1.7600.16385

shell32.dll Windows Shell Common Dll Microsoft Corporation 6.1.7600.16644

shell32.dll.mui Windows Shell Common Dll Microsoft Corporation 6.1.7600.16385

shfolder.dll Shell Folder Service Microsoft Corporation 6.1.7600.16385

shlwapi.dll Shell Light-weight Utility Library Microsoft Corporation 6.1.7600.16385

slc.dll Software Licensing Client Dll Microsoft Corporation 6.1.7600.16385


srvcli.dll Server Service Client DLL Microsoft Corporation 6.1.7600.16385

sspicli.dll Security Support Provider Interface Microsoft Corporation 6.1.7600.16484


urlmon.dll OLE32 Extensions for Win32 Microsoft Corporation 9.0.7930.16406

user32.dll Multi-User Windows USER API Client DLL Microsoft Corporation 6.1.7600.16385

user32.dll.mui Multi-User Windows USER API Client DLL Microsoft Corporation 6.1.7600.16385

userenv.dll Userenv Microsoft Corporation 6.1.7600.16385

usp10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.7600.16385

uTorrent.exe µTorrent BitTorrent, Inc.

uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.1.7600.16385

version.dll Version Checking and File Installation Libraries Microsoft Corporation 6.1.7600.16385

WindowsCodecs.dll Microsoft Windows Codecs Library Microsoft Corporation 6.1.7600.16385

wininet.dll Internet Extensions for Win32 Microsoft Corporation 9.0.7930.16406

winnsi.dll Network Store Information RPC interface Microsoft Corporation 6.1.7600.16385

Wldap32.dll Win32 LDAP API DLL Microsoft Corporation 6.1.7600.16385

WLIDNSP.DLL Microsoft® Windows Live ID Namespace Provider Microsoft Corporation 6.500.3165.0

wow64.dll Win32 Emulation on NT64 Microsoft Corporation 6.1.7600.16491

wow64cpu.dll AMD64 Wow64 CPU Microsoft Corporation 6.1.7600.16385

wow64win.dll Wow64 Console and Win32 API Logging Microsoft Corporation 6.1.7600.16385

ws2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 6.1.7600.16385

wship6.dll Winsock2 Helper DLL (TL/IPv6) Microsoft Corporation 6.1.7600.16385

WSHTCPIP.DLL Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation 6.1.7600.16385

xmllite.dll Microsoft XmlLite Library Microsoft Corporation 1.3.1000.0

Link to comment
Share on other sites

DropboxExt.13.dll Dropbox Shell Extension Dropbox, Inc.

GameHook.dll Logitech Gaming Hook (UNICODE) Logitech, Inc.

lgscroll.dll Logitech Scroll Enabler (UNICODE) Logitech, Inc.

These DLLs injected into utorrent.exe. Are you using µT in a VM?

Link to comment
Share on other sites

DropboxExt.13.dll Dropbox Shell Extension Dropbox, Inc.

GameHook.dll Logitech Gaming Hook (UNICODE) Logitech, Inc.

lgscroll.dll Logitech Scroll Enabler (UNICODE) Logitech, Inc.

These DLLs injected into utorrent.exe. Are you using µT in a VM?

No, How do I stop them from injecting?

Link to comment
Share on other sites

  • 3 weeks later...


This topic is now archived and is closed to further replies.

  • Create New...