illrider Posted June 19, 2011 Report Share Posted June 19, 2011 Okay I have tried to fix this with no solution found. Utorrent keeps locking up and I constantly get Disk Overload 100% message which is causing my DL speeds to suffer bad. I have tried to mess with the cache size and unclicked the:Enable caching of disk writes box[Please help. Here is log:Logfile of Trend Micro HijackThis v2.0.4Scan saved at 9:12:16 PM, on 6/18/2011Platform: Windows 7 SP1 (WinNT 6.00.3505)MSIE: Internet Explorer v9.00 (9.00.8112.16421)Boot mode: NormalRunning processes:C:\Windows\system32\taskhost.exeC:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEC:\Windows\System32\igfxtray.exeC:\Windows\System32\hkcmd.exeC:\Windows\System32\igfxpers.exeC:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exeC:\Windows\system32\igfxsrvc.exeC:\Program Files\Immunet Protect\2.0.17\iptray.exeC:\Program Files\Real\RealPlayer\Update\realsched.exeC:\Program Files\Synaptics\SynTP\SynTPEnh.exeC:\Program Files\HP\HP Software Update\hpwuschd2.exeC:\Program Files\Common Files\Java\Java Update\jusched.exeC:\Program Files\iTunes\iTunesHelper.exeC:\Windows\System32\mobsync.exeC:\Program Files\HP\Digital Imaging\bin\hpqtra08.exeC:\Program Files\Synaptics\Scrybe\scrybe.exeC:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exeC:\Program Files\Sony\VAIO Care\listener.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Mozilla Firefox\plugin-container.exeC:\Windows\system32\NOTEPAD.EXEC:\Users\Justin\Downloads\HijackThis.exeC:\Users\Justin\Downloads\utorrent_1.8.5.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.localR0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - {472734EA-242A-422b-ADF8-83D1E48CC825} - (no file)R3 - URLSearchHook: (no name) - {ba14329e-9550-4989-b3f2-9732e92d17cc} - (no file)O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dllO2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dllO2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dllO2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLLO2 - BHO: TwonkyBeam - {D6E0063B-7B09-45C9-A51D-1FB51840EBE0} - (no file)O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dllO2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dllO3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dllO4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exeO4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exeO4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exeO4 - HKLM\..\Run: [Google Quick Search Box] "C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe" /autorunO4 - HKLM\..\Run: [immunet Protect] "C:\Program Files\Immunet Protect\2.0.17\iptray.exe"O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Real\RealPlayer\Update\realsched.exe" -osbootO4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottimeO4 - HKLM\..\Run: [synTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exeO4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exeO4 - HKLM\..\Run: [skytel] Skytel.exeO4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exeO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exeO4 - HKCU\..\Run: [Desktop Software] "C:\Program Files\Common Files\SupportSoft\bin\bcont.exe" /ini "C:\Program Files\ComcastUI\Desktop Software\uinstaller.ini" /fromrun /starthiddenO4 - HKCU\..\Run: [uTorrent] "C:\Users\Justin\Downloads\utorrent_1.8.5.exe"O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exeO4 - Global Startup: Scrybe.lnk = ?O4 - Global Startup: WDDMStatus.lnk = C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exeO8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200O8 - Extra context menu item: Add to Playlist - res://C:\Program Files\PacketVideo\TwonkyBeam\Internet Explorer\TwonkyIEPlugin.dll/314O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.htmlO8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dllO9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dllO9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dllO9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dllO9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dllO11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphicsO16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} (GMNRev Class) - http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection2.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{159F45E4-A04F-40AD-835F-6DAC45BAD393}: NameServer = 68.87.74.166,68.87.68.166O17 - HKLM\System\CCS\Services\Tcpip\..\{67CB309B-9DD4-47CD-8DD4-90455045D3C7}: NameServer = 68.87.74.166,68.87.68.166O17 - HKLM\System\CS1\Services\Tcpip\..\{159F45E4-A04F-40AD-835F-6DAC45BAD393}: NameServer = 68.87.74.166,68.87.68.166O17 - HKLM\System\CS2\Services\Tcpip\..\{159F45E4-A04F-40AD-835F-6DAC45BAD393}: NameServer = 68.87.74.166,68.87.68.166O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLLO23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exeO23 - Service: Comcast AntiSpyware (AntiSpywareService) - Unknown owner - C:\Program Files\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exeO23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exeO23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exeO23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exeO23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exeO23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exeO23 - Service: Immunet Protect (ImmunetProtect) - Immunet Corporation - C:\Program Files\Immunet Protect\2.0.17\agent.exeO23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exeO23 - Service: NIHardwareService - Unknown owner - C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe (file missing)O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Windows\RtkAudioService.exeO23 - Service: VAIO Care Performance Service (SampleCollector) - Sony Corporation - C:\Program Files\Sony\VAIO Care\VCPerfService.exeO23 - Service: Scrybe Updater (ScrybeUpdater) - Synaptics, Inc. - C:\Program Files\Synaptics\Scrybe\Service\ScrybeUpdater.exeO23 - Service: VUAgent - Sony Corporation - C:\Program Files\Sony\VAIO Update 5\VUAgent.exeO23 - Service: WDDMService - WDC - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exeO23 - Service: WD File Management Engine (WDFME) - Unknown owner - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDFME\WDFME.exeO23 - Service: WD File Management Shadow Engine (WDSC) - Unknown owner - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSC.exeO23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe--End of file - 9852 bytes here is Procep Log tooProcess PID CPU Private Bytes Working Set Description Company NameSystem Idle Process 0 84.15 0 K 24 K System 4 1.55 92 K 19,716 K Interrupts n/a 1.74 0 K 0 K Hardware Interrupts and DPCs smss.exe 280 264 K 824 K csrss.exe 420 < 0.01 2,164 K 4,084 K wininit.exe 472 928 K 3,348 K services.exe 528 4,528 K 8,184 K svchost.exe 708 2,912 K 7,004 K Host Process for Windows Services Microsoft Corporation igfxsrvc.exe 2516 1,804 K 4,980 K igfxsrvc Module Intel Corporation mobsync.exe 3948 < 0.01 1,816 K 6,464 K Microsoft Sync Center Microsoft Corporation dllhost.exe 9240 2,144 K 7,660 K COM Surrogate Microsoft Corporation svchost.exe 784 0.08 3,732 K 6,992 K Host Process for Windows Services Microsoft Corporation svchost.exe 848 16,664 K 16,712 K Host Process for Windows Services Microsoft Corporation audiodg.exe 6900 16,436 K 15,040 K svchost.exe 912 70,260 K 74,544 K Host Process for Windows Services Microsoft Corporation dwm.exe 1668 2.39 37,396 K 21,192 K Desktop Window Manager Microsoft Corporation svchost.exe 976 0.10 23,392 K 35,260 K Host Process for Windows Services Microsoft Corporation taskeng.exe 548 1,292 K 4,272 K VCSpt.exe 1856 840 K 532 K VAIOUpdt.exe 2656 3,204 K 1,176 K VAIOUpdt.exe 2668 2,936 K 1,128 K VCsystray.exe 3752 21,940 K 1,416 K svchost.exe 1120 0.01 8,972 K 14,360 K Host Process for Windows Services Microsoft Corporation RTKAUDIOSERVICE.EXE 1188 724 K 2,952 K Realtek Audio Service Realtek Semiconductor svchost.exe 1240 < 0.01 14,820 K 18,104 K Host Process for Windows Services Microsoft Corporation spoolsv.exe 1396 < 0.01 13,088 K 20,640 K Spooler SubSystem App Microsoft Corporation svchost.exe 1424 12,724 K 13,020 K Host Process for Windows Services Microsoft Corporation taskhost.exe 1552 7,152 K 7,616 K Host Process for Windows Tasks Microsoft Corporation ComcastAntiSpyService.exe 1684 2,952 K 6,364 K AppleMobileDeviceService.exe 1772 < 0.01 1,720 K 6,268 K MobileDeviceService Apple Inc. mDNSResponder.exe 1820 1,492 K 4,696 K Bonjour Service Apple Inc. svchost.exe 1880 0.09 6,856 K 35,024 K Host Process for Windows Services Microsoft Corporation PresentationFontCache.exe 1952 12,524 K 10,284 K PresentationFontCache.exe Microsoft Corporation svchost.exe 2032 2,360 K 6,464 K Host Process for Windows Services Microsoft Corporation agent.exe 300 < 0.01 32,516 K 6,264 K Immunet Protect Agent Immunet Corporation svchost.exe 768 692 K 2,724 K Host Process for Windows Services Microsoft Corporation svchost.exe 1260 664 K 2,676 K Host Process for Windows Services Microsoft Corporation ScrybeUpdater.exe 1572 3,100 K 8,048 K Scrybe Update Manager. Synaptics, Inc. svchost.exe 2084 3,764 K 6,572 K Host Process for Windows Services Microsoft Corporation WDDMService.exe 2168 0.18 3,472 K 6,516 K WD Drive Manager Service WDC WDFME.exe 2228 < 0.01 48,952 K 38,680 K WD File Management Engine WDSC.exe 2380 12,248 K 10,868 K WD Shadow Copy XAudio.exe 2804 < 0.01 668 K 2,336 K Modem Audio Service Conexant Systems, Inc. svchost.exe 3352 0.01 3,028 K 6,140 K Host Process for Windows Services Microsoft Corporation wmpnetwk.exe 3428 12,860 K 11,276 K Windows Media Player Network Sharing Service Microsoft Corporation iPodService.exe 4160 0.02 1,984 K 5,264 K iPodService Module (32-bit) Apple Inc. svchost.exe 4440 0.01 9,392 K 11,676 K Host Process for Windows Services Microsoft Corporation VCPerfService.exe 6000 9,952 K 13,236 K VAIO Care Performance Service Sony Corporation listener.exe 4320 812 K 3,276 K VaioCare Window Listener Application Sony of America Corporation svchost.exe 4480 0.02 68,236 K 34,220 K Host Process for Windows Services Microsoft Corporation VUAgent.exe 5672 3,608 K 8,612 K VUAgent.exe Sony Corporation SearchIndexer.exe 4004 < 0.01 40,324 K 28,288 K Microsoft Windows Search Indexer Microsoft Corporation svchost.exe 10188 2,892 K 3,308 K Host Process for Windows Services Microsoft Corporation msiexec.exe 8592 7,544 K 14,704 K Windows® installer Microsoft Corporation VSSVC.exe 9364 4,956 K 9,200 K Microsoft® Volume Shadow Copy Service Microsoft Corporation svchost.exe 8816 1,440 K 4,236 K Host Process for Windows Services Microsoft Corporation lsass.exe 544 < 0.01 3,892 K 9,508 K Local Security Authority Process Microsoft Corporation lsm.exe 552 1,440 K 3,156 K csrss.exe 480 0.47 1,724 K 16,100 K winlogon.exe 624 1,668 K 4,672 K explorer.exe 1732 0.13 36,496 K 57,144 K Windows Explorer Microsoft Corporation igfxtray.exe 2412 1,232 K 4,404 K igfxTray Module Intel Corporation hkcmd.exe 2456 1,308 K 4,328 K hkcmd Module Intel Corporation igfxpers.exe 2464 1,120 K 4,320 K persistence Module Intel Corporation GoogleQuickSearchBox.exe 2480 < 0.01 13,552 K 24,160 K Google Quick Search Box Google Inc. iptray.exe 2728 < 0.01 5,164 K 5,704 K Immunet Protect Tray Client Immunet realsched.exe 2812 1,692 K 580 K RealNetworks Scheduler RealNetworks, Inc. SynTPEnh.exe 3720 0.28 7,216 K 10,800 K Synaptics TouchPad Enhancements Synaptics Incorporated hpwuschd2.exe 2832 664 K 2,544 K hpwuSchd Application Hewlett-Packard jusched.exe 3112 892 K 3,552 K Java Update Scheduler Sun Microsystems, Inc. iTunesHelper.exe 3704 < 0.01 4,652 K 11,160 K iTunesHelper Apple Inc. hpqtra08.exe 2120 3,004 K 9,412 K HP Digital Imaging Monitor Hewlett-Packard Co. scrybe.exe 4012 0.10 128,176 K 34,512 K Scrybe Executable Synaptics Incorporated WDDMStatus.exe 2708 0.79 9,944 K 20,196 K WD Drive Manager Status Western Digital Technologies, Inc. firefox.exe 9528 0.26 182,016 K 196,488 K Firefox Mozilla Corporation plugin-container.exe 10176 0.45 16,552 K 22,392 K Plugin Container for Firefox Mozilla Corporation WinRAR.exe 9268 < 0.01 6,188 K 14,604 K WinRAR archiver Alexander Roshal procexp.exe 8680 5.19 17,924 K 36,608 K Sysinternals Process Explorer Sysinternals - www.sysinternals.com utorrent_1.8.5.exe 9976 1.58 5,820 K 11,048 K µTorrent BitTorrent, Inc.GoogleCrashHandler.exe 2092 1,560 K 532 K taskmgr.exe 8748 0.36 7,252 K 16,796 K Link to comment Share on other sites More sharing options...
moogly Posted June 19, 2011 Report Share Posted June 19, 2011 Only µT 2.2.1 is supported (and beta versions), upgrade. Link to comment Share on other sites More sharing options...
illrider Posted June 19, 2011 Author Report Share Posted June 19, 2011 I am running 2.2.1 for some reason when i updated it never changed the file name though. Link to comment Share on other sites More sharing options...
moogly Posted June 19, 2011 Report Share Posted June 19, 2011 So upgrade to 2.2.1 then edit Process Explorer log: enable DLL mode (ctrl+D). Link to comment Share on other sites More sharing options...
illrider Posted June 20, 2011 Author Report Share Posted June 20, 2011 okayProcess PID CPU Private Bytes Working Set Description Company NameXAudio.exe 2804 0.01 676 K 1,776 K Modem Audio Service Conexant Systems, Inc.WUDFHost.exe 11484 1,340 K 4,980 K wmpnetwk.exe 3428 15,296 K 11,944 K Windows Media Player Network Sharing Service Microsoft Corporationwinlogon.exe 624 1,668 K 3,624 K wininit.exe 472 928 K 2,668 K WDSC.exe 2380 12,244 K 7,816 K WD Shadow Copy WDFME.exe 2228 < 0.01 50,624 K 21,500 K WD File Management Engine WDDMStatus.exe 2708 0.42 13,716 K 23,292 K WD Drive Manager Status Western Digital Technologies, Inc.WDDMService.exe 2168 0.34 3,868 K 6,096 K WD Drive Manager Service WDCVUAgent.exe 5672 3,792 K 6,404 K VUAgent.exe Sony CorporationVCsystray.exe 3752 21,956 K 2,468 K VCSpt.exe 1856 840 K 532 K VCPerfService.exe 6000 10,508 K 11,208 K VAIO Care Performance Service Sony CorporationVAIOUpdt.exe 2656 3,508 K 2,332 K VAIOUpdt.exe 2668 2,972 K 1,296 K uTorrent.exe 7268 2.00 4,984 K 11,036 K µTorrent BitTorrent, Inc.taskhost.exe 1552 7,612 K 7,692 K Host Process for Windows Tasks Microsoft Corporationtaskhost.exe 11608 6,844 K 8,080 K taskeng.exe 548 1,348 K 3,776 K System Idle Process 0 58.81 0 K 24 K System 4 1.24 104 K 23,784 K SynTPEnh.exe 3720 0.50 7,368 K 8,296 K Synaptics TouchPad Enhancements Synaptics Incorporatedsvchost.exe 708 3,372 K 6,016 K Host Process for Windows Services Microsoft Corporationsvchost.exe 784 0.05 4,472 K 6,708 K Host Process for Windows Services Microsoft Corporationsvchost.exe 848 0.11 18,740 K 15,236 K Host Process for Windows Services Microsoft Corporationsvchost.exe 912 0.02 80,808 K 80,116 K Host Process for Windows Services Microsoft Corporationsvchost.exe 976 1.56 32,412 K 32,452 K Host Process for Windows Services Microsoft Corporationsvchost.exe 1120 0.18 13,924 K 17,744 K Host Process for Windows Services Microsoft Corporationsvchost.exe 1240 0.23 16,388 K 12,816 K Host Process for Windows Services Microsoft Corporationsvchost.exe 1424 0.04 11,620 K 9,820 K Host Process for Windows Services Microsoft Corporationsvchost.exe 1880 0.50 8,524 K 39,700 K Host Process for Windows Services Microsoft Corporationsvchost.exe 2032 2,312 K 5,760 K Host Process for Windows Services Microsoft Corporationsvchost.exe 768 700 K 2,304 K Host Process for Windows Services Microsoft Corporationsvchost.exe 1260 664 K 2,296 K Host Process for Windows Services Microsoft Corporationsvchost.exe 2084 3,520 K 5,664 K Host Process for Windows Services Microsoft Corporationsvchost.exe 3352 0.01 3,056 K 5,772 K Host Process for Windows Services Microsoft Corporationsvchost.exe 4440 0.06 10,088 K 10,368 K Host Process for Windows Services Microsoft Corporationsvchost.exe 10188 3,544 K 2,968 K Host Process for Windows Services Microsoft Corporationsvchost.exe 12248 2,204 K 4,472 K Host Process for Windows Services Microsoft Corporationspoolsv.exe 1396 0.01 13,100 K 9,636 K Spooler SubSystem App Microsoft Corporationsmss.exe 280 264 K 664 K services.exe 528 4,756 K 6,568 K SearchIndexer.exe 4004 < 0.01 43,400 K 17,296 K Microsoft Windows Search Indexer Microsoft CorporationScrybeUpdater.exe 1572 3,348 K 7,672 K Scrybe Update Manager. Synaptics, Inc.scrybe.exe 4012 0.14 128,192 K 20,072 K Scrybe Executable Synaptics IncorporatedRTKAUDIOSERVICE.EXE 1188 724 K 2,392 K Realtek Audio Service Realtek Semiconductorrealsched.exe 2140 1,744 K 564 K RealNetworks Scheduler RealNetworks, Inc.procexp.exe 1028 14.83 20,664 K 35,896 K Sysinternals Process Explorer Sysinternals - www.sysinternals.comPresentationFontCache.exe 1952 12,584 K 6,744 K PresentationFontCache.exe Microsoft CorporationOSPPSVC.EXE 9744 2,536 K 4,856 K mobsync.exe 3948 < 0.01 1,836 K 5,132 K Microsoft Sync Center Microsoft CorporationmDNSResponder.exe 1820 1,516 K 3,768 K Bonjour Service Apple Inc.lsm.exe 552 1,608 K 2,776 K lsass.exe 544 < 0.01 4,048 K 7,508 K Local Security Authority Process Microsoft Corporationlistener.exe 4320 812 K 2,852 K VaioCare Window Listener Application Sony of America Corporationjusched.exe 3112 892 K 2,740 K Java Update Scheduler Sun Microsystems, Inc.iTunesHelper.exe 3704 < 0.01 5,432 K 8,692 K iTunesHelper Apple Inc.iTunes.exe 6592 0.23 82,104 K 93,536 K iTunes Apple Inc.iptray.exe 2728 < 0.01 5,340 K 7,476 K Immunet Protect Tray Client ImmunetiPodService.exe 4160 0.03 2,072 K 4,592 K iPodService Module (32-bit) Apple Inc.Interrupts n/a 1.71 0 K 0 K Hardware Interrupts and DPCs igfxtray.exe 2412 1,276 K 3,592 K igfxTray Module Intel Corporationigfxsrvc.exe 2516 2,360 K 4,444 K igfxsrvc Module Intel Corporationigfxpers.exe 2464 1,156 K 3,888 K persistence Module Intel CorporationIDVaultSvc.exe 1868 0.02 28,316 K 14,436 K IDVaultSvc White Sky, Inc.IDVault.exe 8384 10.35 855,500 K 123,556 K Protection Suite White Sky, Inc.hpwuschd2.exe 2832 664 K 2,184 K hpwuSchd Application Hewlett-Packardhpqtra08.exe 2120 3,036 K 6,456 K HP Digital Imaging Monitor Hewlett-Packard Co.hkcmd.exe 2456 1,380 K 3,660 K hkcmd Module Intel CorporationGoogleQuickSearchBox.exe 2480 < 0.01 13,956 K 16,788 K Google Quick Search Box Google Inc.GoogleCrashHandler.exe 2092 1,560 K 532 K firefox.exe 6480 0.72 206,880 K 168,092 K Firefox Mozilla Corporationexplorer.exe 8836 0.17 38,288 K 49,556 K Windows Explorer Microsoft Corporationehmsas.exe 11420 1,004 K 3,604 K Media Center Media Status Aggregator Service Microsoft Corporationdwm.exe 1668 4.60 54,300 K 26,280 K Desktop Window Manager Microsoft Corporationdistnoted.exe 676 1,304 K 4,608 K distnoted Apple Inc.csrss.exe 420 0.01 2,364 K 3,988 K csrss.exe 480 0.74 1,852 K 27,368 K conhost.exe 7552 680 K 2,708 K Console Window Host Microsoft Corporationconhost.exe 7872 688 K 2,676 K Console Window Host Microsoft CorporationComcastAntiSpyService.exe 1684 2,952 K 4,740 K ccSvcHst.exe 8728 0.32 82,436 K 84,408 K Symantec Service Framework Symantec CorporationccSvcHst.exe 9964 0.01 17,576 K 10,296 K audiodg.exe 7568 16,648 K 15,160 K AppleMobileDeviceService.exe 1772 < 0.01 3,744 K 8,392 K MobileDeviceService Apple Inc.AppleMobileDeviceHelper.exe 9392 5,036 K 13,604 K MobileDeviceHelper Apple Inc.agent.exe 300 0.02 34,700 K 8,412 K Immunet Protect Agent Immunet CorporationProcess: uTorrent.exe Pid: 7268Name Description Company Name Versionlocale.nls oleaut32.dll Microsoft Corporation 6.1.7601.17567SortDefault.nls StaticCache.dat uTorrent.exe µTorrent BitTorrent, Inc. 2.2.1.25302advapi32.dll Advanced Windows 32 Base API Microsoft Corporation 6.1.7601.17514apisetschema.dll ApiSet Schema DLL Microsoft Corporation 6.1.7600.16385cryptbase.dll Base cryptographic API DLL Microsoft Corporation 6.1.7600.16385mdnsNSP.dll Bonjour Namespace Provider Apple Inc. 2.0.5.0clbcatq.dll COM+ Configuration Catalog Microsoft Corporation 2001.12.8530.16385comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.1.7601.17514cryptsp.dll Cryptographic Service Provider API Microsoft Corporation 6.1.7600.16385dhcpcsvc.dll DHCP Client Service Microsoft Corporation 6.1.7600.16385dhcpcsvc6.dll DHCPv6 Client Microsoft Corporation 6.1.7600.16385dnsapi.dll DNS Client API DLL Microsoft Corporation 6.1.7601.17570FWPUCLNT.DLL FWP/IPsec User-Mode API Microsoft Corporation 6.1.7601.17514gdi32.dll GDI Client DLL Microsoft Corporation 6.1.7601.17514msimg32.dll GDIEXT Client DLL Microsoft Corporation 6.1.7600.16385sechost.dll Host for SCM/SDDL/LSA Lookup APIs Microsoft Corporation 6.1.7600.16385wininet.dll Internet Extensions for Win32 Microsoft Corporation 9.0.8112.16421IPHLPAPI.DLL IP Helper API Microsoft Corporation 6.1.7601.17514lpk.dll Language Pack Microsoft Corporation 6.1.7600.16385dwmapi.dll Microsoft Desktop Window Manager API Microsoft Corporation 6.1.7600.16385rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.1.7600.16385ole32.dll Microsoft OLE for Windows Microsoft Corporation 6.1.7601.17514uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.1.7600.16385mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 6.1.7601.17514msvcr90.dll Microsoft® C Runtime Library Microsoft Corporation 9.0.30729.6161msvcp90.dll Microsoft® C++ Runtime Library Microsoft Corporation 9.0.30729.6161msctf.dll MSCTF Server DLL Microsoft Corporation 6.1.7600.16385msctf.dll.mui MSCTF Server DLL Microsoft Corporation 6.1.7600.16385imm32.dll Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.1.7601.17514user32.dll Multi-User Windows USER API Client DLL Microsoft Corporation 6.1.7601.17514winnsi.dll Network Store Information RPC interface Microsoft Corporation 6.1.7600.16385nsi.dll NSI User-mode interface DLL Microsoft Corporation 6.1.7600.16385ntdll.dll NT Layer DLL Microsoft Corporation 6.1.7601.17514urlmon.dll OLE32 Extensions for Win32 Microsoft Corporation 9.0.8112.16430psapi.dll Process Status Helper Microsoft Corporation 6.1.7600.16385rpchrome10browserrecordhelper.dll RealPlayer Chrome Browser Helper RealNetworks, Inc. 12.0.1.647rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.1.7600.16385rpcrt4.dll Remote Procedure Call Runtime Microsoft Corporation 6.1.7601.17514iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 9.0.8112.16430sspicli.dll Security Support Provider Interface Microsoft Corporation 6.1.7601.17514shfolder.dll Shell Folder Service Microsoft Corporation 6.1.7600.16385shlwapi.dll Shell Light-weight Utility Library Microsoft Corporation 6.1.7601.17514normaliz.dll Unicode Normalization DLL Microsoft Corporation 6.1.7600.16385usp10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.7601.17514comctl32.dll User Experience Controls Library Microsoft Corporation 6.10.7601.17514profapi.dll User Profile Basic API Microsoft Corporation 6.1.7600.16385userenv.dll Userenv Microsoft Corporation 6.1.7601.17514version.dll Version Checking and File Installation Libraries Microsoft Corporation 6.1.7600.16385FirewallAPI.dll Windows Firewall API Microsoft Corporation 6.1.7600.16385msi.dll Windows Installer Microsoft Corporation 5.0.7601.17514kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 6.1.7601.17514KernelBase.dll Windows NT BASE API Client DLL Microsoft Corporation 6.1.7601.17514msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.7600.16385shell32.dll Windows Shell Common Dll Microsoft Corporation 6.1.7601.17514ws2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 6.1.7601.17514WSHTCPIP.DLL Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation 6.1.7600.16385wship6.dll Winsock2 Helper DLL (TL/IPv6) Microsoft Corporation 6.1.7600.16385Logfile of Trend Micro HijackThis v2.0.4Scan saved at 9:03:32 AM, on 6/20/2011Platform: Windows 7 SP1 (WinNT 6.00.3505)MSIE: Internet Explorer v9.00 (9.00.8112.16421)Boot mode: NormalRunning processes:C:\Windows\system32\taskhost.exeC:\Windows\system32\Dwm.exeC:\Windows\System32\igfxtray.exeC:\Windows\System32\hkcmd.exeC:\Windows\System32\igfxpers.exeC:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exeC:\Windows\system32\igfxsrvc.exeC:\Program Files\Immunet Protect\2.0.17\iptray.exeC:\Program Files\Synaptics\SynTP\SynTPEnh.exeC:\Program Files\HP\HP Software Update\hpwuschd2.exeC:\Program Files\Common Files\Java\Java Update\jusched.exeC:\Program Files\iTunes\iTunesHelper.exeC:\Windows\System32\mobsync.exeC:\Program Files\HP\Digital Imaging\bin\hpqtra08.exeC:\Program Files\Synaptics\Scrybe\scrybe.exeC:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exeC:\Program Files\Sony\VAIO Care\listener.exeC:\Program Files\Constant Guard Protection Suite\IDVault.exeC:\Windows\ehome\ehmsas.exeC:\Windows\explorer.exeC:\Program Files\Real\RealPlayer\update\realsched.exeC:\Program Files\iTunes\iTunes.exeC:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exeC:\Windows\system32\conhost.exeC:\Program Files\Common Files\Apple\Apple Application Support\distnoted.exeC:\Windows\system32\conhost.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\uTorrent\uTorrent.exeC:\Users\Justin\Desktop\procexp.exeC:\Users\Justin\Downloads\HijackThis.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.localR0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - {472734EA-242A-422b-ADF8-83D1E48CC825} - (no file)R3 - URLSearchHook: (no name) - {ba14329e-9550-4989-b3f2-9732e92d17cc} - (no file)O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dllO2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dllO2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Security Suite\Engine\5.0.0.125\coIEPlg.dllO2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Security Suite\Engine\5.0.0.125\IPS\IPSBHO.DLLO2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dllO2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLLO2 - BHO: Constant Guard Protection Suite (COM) - {B84CDBE7-1B46-494B-A188-01D4C52DEB61} - C:\Program Files\Constant Guard Protection Suite\NativeBHO.dllO2 - BHO: TwonkyBeam - {D6E0063B-7B09-45C9-A51D-1FB51840EBE0} - (no file)O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dllO2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dllO3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dllO3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Security Suite\Engine\5.0.0.125\coIEPlg.dllO4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exeO4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exeO4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exeO4 - HKLM\..\Run: [Google Quick Search Box] "C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe" /autorunO4 - HKLM\..\Run: [immunet Protect] "C:\Program Files\Immunet Protect\2.0.17\iptray.exe"O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Real\RealPlayer\Update\realsched.exe" -osbootO4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottimeO4 - HKLM\..\Run: [synTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exeO4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exeO4 - HKLM\..\Run: [skytel] Skytel.exeO4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exeO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"O4 - HKLM\..\Run: [GIDDesktop] C:\Program Files\SFT\GuardedID\gidd.exe /sO4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exeO4 - HKCU\..\Run: [Desktop Software] "C:\Program Files\Common Files\SupportSoft\bin\bcont.exe" /ini "C:\Program Files\ComcastUI\Desktop Software\uinstaller.ini" /fromrun /starthiddenO4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"O4 - Global Startup: Constant Guard.lnk = C:\Program Files\Constant Guard Protection Suite\IDVault.exeO4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exeO4 - Global Startup: Scrybe.lnk = ?O4 - Global Startup: WDDMStatus.lnk = C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exeO8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200O8 - Extra context menu item: Add to Playlist - res://C:\Program Files\PacketVideo\TwonkyBeam\Internet Explorer\TwonkyIEPlugin.dll/314O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.htmlO8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dllO9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dllO9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dllO9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dllO9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dllO11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphicsO16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} (GMNRev Class) - http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection2.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{159F45E4-A04F-40AD-835F-6DAC45BAD393}: NameServer = 68.87.74.166,68.87.68.166O17 - HKLM\System\CCS\Services\Tcpip\..\{67CB309B-9DD4-47CD-8DD4-90455045D3C7}: NameServer = 68.87.74.166,68.87.68.166O17 - HKLM\System\CS1\Services\Tcpip\..\{159F45E4-A04F-40AD-835F-6DAC45BAD393}: NameServer = 68.87.74.166,68.87.68.166O17 - HKLM\System\CS2\Services\Tcpip\..\{159F45E4-A04F-40AD-835F-6DAC45BAD393}: NameServer = 68.87.74.166,68.87.68.166O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLLO23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exeO23 - Service: Comcast AntiSpyware (AntiSpywareService) - Unknown owner - C:\Program Files\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exeO23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exeO23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exeO23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exeO23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exeO23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exeO23 - Service: CGPS Service (IDVaultSvc) - White Sky, Inc. - C:\Program Files\Constant Guard Protection Suite\IDVaultSvc.exeO23 - Service: Immunet Protect (ImmunetProtect) - Immunet Corporation - C:\Program Files\Immunet Protect\2.0.17\agent.exeO23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exeO23 - Service: Norton Security Suite (N360) - Symantec Corporation - C:\Program Files\Norton Security Suite\Engine\5.1.0.29\ccSvcHst.exeO23 - Service: NIHardwareService - Unknown owner - C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe (file missing)O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Windows\RtkAudioService.exeO23 - Service: VAIO Care Performance Service (SampleCollector) - Sony Corporation - C:\Program Files\Sony\VAIO Care\VCPerfService.exeO23 - Service: Scrybe Updater (ScrybeUpdater) - Synaptics, Inc. - C:\Program Files\Synaptics\Scrybe\Service\ScrybeUpdater.exeO23 - Service: VUAgent - Sony Corporation - C:\Program Files\Sony\VAIO Update 5\VUAgent.exeO23 - Service: WDDMService - WDC - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exeO23 - Service: WD File Management Engine (WDFME) - Unknown owner - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDFME\WDFME.exeO23 - Service: WD File Management Shadow Engine (WDSC) - Unknown owner - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSC.exeO23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe--End of file - 11179 bytes Link to comment Share on other sites More sharing options...
moogly Posted June 20, 2011 Report Share Posted June 20, 2011 It's injected into utorrent;exe, what's that?rpchrome10browserrecordhelper.dll RealPlayer Chrome Browser Helper RealNetworks, Inc. 12.0.1.647But I see you're using Norton 360, this security suite is known to be buggy with P2P applications. Try with Norton 360 uninstalled (use Symantec Removal Tool), you can use MS Security Essentials and Win Firewall temporarily during the test, it's free and fast to install. Link to comment Share on other sites More sharing options...
illrider Posted June 21, 2011 Author Report Share Posted June 21, 2011 Removed Norton and deleted that other file( it was associated with RealPlayer from Crome but i uninstalled realplayer) and I still get Disk Overload and my DL comes to a halt ?????Never had this problem until i upgraded to the new Utorrent here is new log:Logfile of Trend Micro HijackThis v2.0.4Scan saved at 2:48:41 PM, on 6/21/2011Platform: Windows 7 SP1 (WinNT 6.00.3505)MSIE: Internet Explorer v9.00 (9.00.8112.16421)Boot mode: NormalRunning processes:C:\Windows\system32\taskhost.exeC:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEC:\Windows\system32\taskeng.exeC:\Program Files\Sony\VAIO Care\VCSpt.exeC:\Program Files\Sony\VAIO Update 4\VAIOUpdt.exeC:\Program Files\Sony\VAIO Update 5\VAIOUpdt.exeC:\Windows\System32\igfxtray.exeC:\Windows\System32\hkcmd.exeC:\Windows\system32\igfxsrvc.exeC:\Windows\System32\igfxpers.exeC:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exeC:\Program Files\Immunet Protect\2.0.17\iptray.exeC:\Program Files\Synaptics\SynTP\SynTPEnh.exeC:\Program Files\HP\HP Software Update\hpwuschd2.exeC:\Program Files\Common Files\Java\Java Update\jusched.exeC:\Program Files\iTunes\iTunesHelper.exeC:\Program Files\Synaptics\SynTP\SynTPHelper.exeC:\Program Files\uTorrent\uTorrent.exeC:\Program Files\HP\Digital Imaging\bin\hpqtra08.exeC:\Windows\System32\mobsync.exeC:\Program Files\Synaptics\Scrybe\scrybe.exeC:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Sony\VAIO Care\listener.exeC:\Program Files\Mozilla Firefox\plugin-container.exeC:\Program Files\Windows Defender\MSASCui.exeC:\Program Files\Sony\VAIO Care\VCsystray.exeC:\Users\Justin\Desktop\procexp.exeC:\Users\Justin\Downloads\HijackThis.exeC:\Windows\system32\SearchFilterHost.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.localR0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - {472734EA-242A-422b-ADF8-83D1E48CC825} - (no file)R3 - URLSearchHook: (no name) - {ba14329e-9550-4989-b3f2-9732e92d17cc} - (no file)O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dllO2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dllO2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLLO2 - BHO: TwonkyBeam - {D6E0063B-7B09-45C9-A51D-1FB51840EBE0} - (no file)O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dllO2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dllO3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dllO4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exeO4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exeO4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exeO4 - HKLM\..\Run: [Google Quick Search Box] "C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe" /autorunO4 - HKLM\..\Run: [immunet Protect] "C:\Program Files\Immunet Protect\2.0.17\iptray.exe"O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottimeO4 - HKLM\..\Run: [synTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exeO4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exeO4 - HKLM\..\Run: [skytel] Skytel.exeO4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exeO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exeO4 - HKCU\..\Run: [Desktop Software] "C:\Program Files\Common Files\SupportSoft\bin\bcont.exe" /ini "C:\Program Files\ComcastUI\Desktop Software\uinstaller.ini" /fromrun /starthiddenO4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exeO4 - Global Startup: Scrybe.lnk = ?O4 - Global Startup: WDDMStatus.lnk = C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exeO8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200O8 - Extra context menu item: Add to Playlist - res://C:\Program Files\PacketVideo\TwonkyBeam\Internet Explorer\TwonkyIEPlugin.dll/314O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.htmlO8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dllO9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dllO9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dllO9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dllO9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dllO11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphicsO16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} (GMNRev Class) - http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection2.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{159F45E4-A04F-40AD-835F-6DAC45BAD393}: NameServer = 68.87.74.166,68.87.68.166O17 - HKLM\System\CCS\Services\Tcpip\..\{67CB309B-9DD4-47CD-8DD4-90455045D3C7}: NameServer = 68.87.74.166,68.87.68.166O17 - HKLM\System\CS1\Services\Tcpip\..\{159F45E4-A04F-40AD-835F-6DAC45BAD393}: NameServer = 68.87.74.166,68.87.68.166O17 - HKLM\System\CS2\Services\Tcpip\..\{159F45E4-A04F-40AD-835F-6DAC45BAD393}: NameServer = 68.87.74.166,68.87.68.166O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLLO23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exeO23 - Service: Comcast AntiSpyware (AntiSpywareService) - Unknown owner - C:\Program Files\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exeO23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exeO23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exeO23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exeO23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exeO23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exeO23 - Service: Immunet Protect (ImmunetProtect) - Immunet Corporation - C:\Program Files\Immunet Protect\2.0.17\agent.exeO23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exeO23 - Service: NIHardwareService - Unknown owner - C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe (file missing)O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Windows\RtkAudioService.exeO23 - Service: VAIO Care Performance Service (SampleCollector) - Sony Corporation - C:\Program Files\Sony\VAIO Care\VCPerfService.exeO23 - Service: Scrybe Updater (ScrybeUpdater) - Synaptics, Inc. - C:\Program Files\Synaptics\Scrybe\Service\ScrybeUpdater.exeO23 - Service: VUAgent - Sony Corporation - C:\Program Files\Sony\VAIO Update 5\VUAgent.exeO23 - Service: WDDMService - WDC - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exeO23 - Service: WD File Management Engine (WDFME) - Unknown owner - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDFME\WDFME.exeO23 - Service: WD File Management Shadow Engine (WDSC) - Unknown owner - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSC.exeO23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe--End of file - 10290 bytesHere is Process Explorer log:Process PID CPU Private Bytes Working Set Description Company NameXAudio.exe 2812 0.02 676 K 2,344 K Modem Audio Service Conexant Systems, Inc.wmpnetwk.exe 3712 0.03 11,524 K 9,132 K Windows Media Player Network Sharing Service Microsoft Corporationwinlogon.exe 604 1,860 K 5,476 K wininit.exe 472 908 K 3,332 K WDSC.exe 2572 12,296 K 10,880 K WD Shadow Copy WDFME.exe 2196 < 0.01 46,932 K 36,428 K WD File Management Engine WDDMStatus.exe 4044 0.48 5,924 K 14,828 K WD Drive Manager Status Western Digital Technologies, Inc.WDDMService.exe 2156 0.57 3,176 K 6,216 K WD Drive Manager Service WDCVUAgent.exe 1784 3,520 K 8,544 K VUAgent.exe Sony CorporationVCsystray.exe 3636 21,540 K 828 K VCSpt.exe 1164 856 K 532 K VCPerfService.exe 5092 9,456 K 10,288 K VAIO Care Performance Service Sony CorporationVAIOUpdt.exe 2464 1,728 K 1,028 K VAIOUpdt.exe 2476 2,928 K 1,036 K uTorrent.exe 2176 1.40 54,884 K 61,688 K µTorrent BitTorrent, Inc.taskhost.exe 1648 7,000 K 7,112 K Host Process for Windows Tasks Microsoft Corporationtaskeng.exe 760 1,440 K 4,792 K System Idle Process 0 46.95 0 K 24 K System 4 6.19 52 K 4,192 K SynTPHelper.exe 4068 612 K 2,476 K SynTPEnh.exe 3268 0.57 7,252 K 10,796 K Synaptics TouchPad Enhancements Synaptics Incorporatedsvchost.exe 696 0.11 2,784 K 6,716 K Host Process for Windows Services Microsoft Corporationsvchost.exe 776 3,684 K 6,952 K Host Process for Windows Services Microsoft Corporationsvchost.exe 840 0.14 16,504 K 15,892 K Host Process for Windows Services Microsoft Corporationsvchost.exe 896 0.10 59,292 K 68,224 K Host Process for Windows Services Microsoft Corporationsvchost.exe 964 0.22 17,864 K 30,084 K Host Process for Windows Services Microsoft Corporationsvchost.exe 1104 0.03 7,288 K 12,472 K Host Process for Windows Services Microsoft Corporationsvchost.exe 1240 0.01 9,228 K 10,744 K Host Process for Windows Services Microsoft Corporationsvchost.exe 1412 0.02 9,296 K 12,024 K Host Process for Windows Services Microsoft Corporationsvchost.exe 1900 0.25 6,680 K 38,068 K Host Process for Windows Services Microsoft Corporationsvchost.exe 1432 2,284 K 6,448 K Host Process for Windows Services Microsoft Corporationsvchost.exe 1864 748 K 2,764 K Host Process for Windows Services Microsoft Corporationsvchost.exe 636 724 K 2,716 K Host Process for Windows Services Microsoft Corporationsvchost.exe 2108 3,684 K 6,568 K Host Process for Windows Services Microsoft Corporationsvchost.exe 3428 0.03 2,756 K 5,632 K Host Process for Windows Services Microsoft Corporationsvchost.exe 4452 3.54 8,792 K 10,616 K Host Process for Windows Services Microsoft Corporationsvchost.exe 3188 67,596 K 33,212 K Host Process for Windows Services Microsoft Corporationspoolsv.exe 1384 0.01 11,860 K 17,856 K Spooler SubSystem App Microsoft Corporationsmss.exe 280 328 K 888 K services.exe 532 4,144 K 7,800 K SearchProtocolHost.exe 4932 < 0.01 1,824 K 6,292 K SearchIndexer.exe 3236 0.01 22,928 K 12,824 K Microsoft Windows Search Indexer Microsoft CorporationSearchFilterHost.exe 2184 1,664 K 4,364 K ScrybeUpdater.exe 2052 2,548 K 7,544 K Scrybe Update Manager. Synaptics, Inc.scrybe.exe 3996 0.20 128,116 K 33,644 K Scrybe Executable Synaptics IncorporatedRTKAUDIOSERVICE.EXE 1180 728 K 2,956 K Realtek Audio Service Realtek Semiconductorprocexp.exe 5908 23.20 18,748 K 34,912 K Sysinternals Process Explorer Sysinternals - www.sysinternals.comPresentationFontCache.exe 1948 12,540 K 10,296 K PresentationFontCache.exe Microsoft Corporationplugin-container.exe 5412 9,368 K 13,956 K Plugin Container for Firefox Mozilla CorporationMSASCui.exe 5700 3,540 K 11,500 K Windows Defender User Interface Microsoft Corporationmobsync.exe 4004 < 0.01 1,608 K 5,804 K Microsoft Sync Center Microsoft CorporationmDNSResponder.exe 1868 1,448 K 4,624 K Bonjour Service Apple Inc.lsm.exe 548 1,316 K 3,036 K lsass.exe 540 3,328 K 8,556 K Local Security Authority Process Microsoft Corporationlistener.exe 3032 816 K 3,348 K VaioCare Window Listener Application Sony of America Corporationjusched.exe 3940 860 K 3,404 K Java Update Scheduler Sun Microsystems, Inc.iTunesHelper.exe 4012 < 0.01 4,632 K 11,172 K iTunesHelper Apple Inc.iptray.exe 2876 < 0.01 4,852 K 5,424 K Immunet Protect Tray Client ImmunetiPodService.exe 3984 0.10 1,696 K 4,968 K iPodService Module (32-bit) Apple Inc.Interrupts n/a 9.94 0 K 0 K Hardware Interrupts and DPCs igfxtray.exe 2612 1,220 K 4,392 K igfxTray Module Intel Corporationigfxsrvc.exe 2680 1,736 K 4,840 K igfxsrvc Module Intel Corporationigfxpers.exe 2756 1,140 K 4,320 K persistence Module Intel Corporationhpwuschd2.exe 3928 664 K 2,580 K hpwuSchd Application Hewlett-Packardhpqtra08.exe 724 3,024 K 9,548 K HP Digital Imaging Monitor Hewlett-Packard Co.hkcmd.exe 2640 1,268 K 4,292 K hkcmd Module Intel CorporationGoogleQuickSearchBox.exe 2856 < 0.01 11,864 K 21,696 K Google Quick Search Box Google Inc.GoogleCrashHandler.exe 440 1,564 K 532 K firefox.exe 5460 1.17 210,380 K 215,552 K Firefox Mozilla Corporationexplorer.exe 1844 0.09 31,068 K 35,128 K Windows Explorer Microsoft Corporationdwm.exe 1808 3.56 38,948 K 20,536 K Desktop Window Manager Microsoft Corporationcsrss.exe 420 0.01 1,424 K 3,684 K csrss.exe 480 0.99 1,736 K 28,004 K ComcastAntiSpyService.exe 1736 3,084 K 6,480 K audiodg.exe 4880 16,452 K 15,272 K armsvc.exe 1664 820 K 2,904 K Adobe Acrobat Update Service Adobe Systems IncorporatedAppleMobileDeviceService.exe 1788 < 0.01 1,716 K 6,260 K MobileDeviceService Apple Inc.agent.exe 1580 0.01 21,564 K 5,516 K Immunet Protect Agent Immunet CorporationProcess: uTorrent.exe Pid: 2176Name Description Company Name Versionlocale.nls SortDefault.nls StaticCache.dat oleaut32.dll Microsoft Corporation 6.1.7601.17567uTorrent.exe µTorrent BitTorrent, Inc. 2.2.1.25302advapi32.dll Advanced Windows 32 Base API Microsoft Corporation 6.1.7601.17514apisetschema.dll ApiSet Schema DLL Microsoft Corporation 6.1.7600.16385apphelp.dll Application Compatibility Client Library Microsoft Corporation 6.1.7601.17514atl.dll ATL Module for Windows XP (Unicode) Microsoft Corporation 3.5.2284.0cryptbase.dll Base cryptographic API DLL Microsoft Corporation 6.1.7600.16385mdnsNSP.dll Bonjour Namespace Provider Apple Inc. 2.0.5.0cscui.dll Client Side Caching UI Microsoft Corporation 6.1.7601.17514clbcatq.dll COM+ Configuration Catalog Microsoft Corporation 2001.12.8530.16385comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.1.7601.17514cfgmgr32.dll Configuration Manager DLL Microsoft Corporation 6.1.7601.17514credssp.dll Credential Delegation Security Package Microsoft Corporation 6.1.7601.17514cryptsp.dll Cryptographic Service Provider API Microsoft Corporation 6.1.7600.16385devobj.dll Device Information Set DLL Microsoft Corporation 6.1.7600.16385dhcpcsvc.dll DHCP Client Service Microsoft Corporation 6.1.7600.16385dhcpcsvc6.dll DHCPv6 Client Microsoft Corporation 6.1.7600.16385dnsapi.dll DNS Client API DLL Microsoft Corporation 6.1.7601.17570sxs.dll Fusion 2.5 Microsoft Corporation 6.1.7601.17514FWPUCLNT.DLL FWP/IPsec User-Mode API Microsoft Corporation 6.1.7601.17514gdi32.dll GDI Client DLL Microsoft Corporation 6.1.7601.17514msimg32.dll GDIEXT Client DLL Microsoft Corporation 6.1.7600.16385gpapi.dll Group Policy Client API Microsoft Corporation 6.1.7600.16385hnetcfg.dll.mui Home Networking Configuration Manager Microsoft Corporation 6.1.7600.16385hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 6.1.7600.16385sechost.dll Host for SCM/SDDL/LSA Lookup APIs Microsoft Corporation 6.1.7600.16385wininet.dll Internet Extensions for Win32 Microsoft Corporation 9.0.8112.16421IPHLPAPI.DLL IP Helper API Microsoft Corporation 6.1.7601.17514lpk.dll Language Pack Microsoft Corporation 6.1.7600.16385dwmapi.dll Microsoft Desktop Window Manager API Microsoft Corporation 6.1.7600.16385rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 6.1.7600.16385ole32.dll Microsoft OLE for Windows Microsoft Corporation 6.1.7601.17514propsys.dll Microsoft Property System Microsoft Corporation 7.0.7601.17514uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.1.7600.16385WindowsCodecs.dll Microsoft Windows Codecs Library Microsoft Corporation 6.1.7601.17514mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 6.1.7601.17514msctf.dll.mui MSCTF Server DLL Microsoft Corporation 6.1.7600.16385msctf.dll MSCTF Server DLL Microsoft Corporation 6.1.7600.16385msxml3.dll MSXML 3.0 SP11 Microsoft Corporation 8.110.7601.17514imm32.dll Multi-User Windows IMM32 API Client DLL Microsoft Corporation 6.1.7601.17514user32.dll Multi-User Windows USER API Client DLL Microsoft Corporation 6.1.7601.17514netutils.dll Net Win32 API Helpers DLL Microsoft Corporation 6.1.7601.17514netshell.dll Network Connections Shell Microsoft Corporation 6.1.7601.17514npmproxy.dll Network List Manager Proxy Microsoft Corporation 6.1.7600.16385nlaapi.dll Network Location Awareness 2 Microsoft Corporation 6.1.7601.17514winnsi.dll Network Store Information RPC interface Microsoft Corporation 6.1.7600.16385nsi.dll NSI User-mode interface DLL Microsoft Corporation 6.1.7600.16385ntdll.dll NT Layer DLL Microsoft Corporation 6.1.7601.17514cscdll.dll Offline Files Temporary Shim Microsoft Corporation 6.1.7601.17514cscapi.dll Offline Files Win32 API Microsoft Corporation 6.1.7601.17514urlmon.dll OLE32 Extensions for Win32 Microsoft Corporation 9.0.8112.16430psapi.dll Process Status Helper Microsoft Corporation 6.1.7600.16385rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 6.1.7600.16385rpcrt4.dll Remote Procedure Call Runtime Microsoft Corporation 6.1.7601.17514RpcRtRemote.dll Remote RPC Extension Microsoft Corporation 6.1.7601.17514iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 9.0.8112.16430sspicli.dll Security Support Provider Interface Microsoft Corporation 6.1.7601.17514srvcli.dll Server Service Client DLL Microsoft Corporation 6.1.7601.17514ntshrui.dll Shell extensions for sharing Microsoft Corporation 6.1.7601.17514shfolder.dll Shell Folder Service Microsoft Corporation 6.1.7600.16385shlwapi.dll Shell Light-weight Utility Library Microsoft Corporation 6.1.7601.17514slc.dll Software Licensing Client Dll Microsoft Corporation 6.1.7600.16385ssdpapi.dll SSDP Client API DLL Microsoft Corporation 6.1.7600.16385tiptsf.dll Tablet PC Input Panel Text Services Framework Microsoft Corporation 6.1.7600.16385normaliz.dll Unicode Normalization DLL Microsoft Corporation 6.1.7600.16385usp10.dll Uniscribe Unicode script processor Microsoft Corporation 1.626.7601.17514upnp.dll UPnP Control Point API Microsoft Corporation 6.1.7601.17514comctl32.dll User Experience Controls Library Microsoft Corporation 6.10.7601.17514profapi.dll User Profile Basic API Microsoft Corporation 6.1.7600.16385userenv.dll Userenv Microsoft Corporation 6.1.7601.17514version.dll Version Checking and File Installation Libraries Microsoft Corporation 6.1.7600.16385webio.dll Web Transfer Protocols API Microsoft Corporation 6.1.7601.17514EhStorShell.dll Windows Enhanced Storage Shell Extension DLL Microsoft Corporation 6.1.7600.16385FirewallAPI.dll Windows Firewall API Microsoft Corporation 6.1.7600.16385winhttp.dll Windows HTTP Services Microsoft Corporation 6.1.7601.17514msi.dll Windows Installer Microsoft Corporation 5.0.7601.17514KernelBase.dll.mui Windows NT BASE API Client DLL Microsoft Corporation 6.1.7600.16385KernelBase.dll Windows NT BASE API Client DLL Microsoft Corporation 6.1.7601.17514kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 6.1.7601.17514msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.7600.16385setupapi.dll Windows Setup API Microsoft Corporation 6.1.7601.17514shell32.dll Windows Shell Common Dll Microsoft Corporation 6.1.7601.17514ws2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 6.1.7601.17514WSHTCPIP.DLL Winsock2 Helper DLL (TL/IPv4) Microsoft Corporation 6.1.7600.16385wship6.dll Winsock2 Helper DLL (TL/IPv6) Microsoft Corporation 6.1.7600.16385wkscli.dll Workstation Service Client DLL Microsoft Corporation 6.1.7601.17514msxml3r.dll XML Resources Microsoft Corporation 8.110.7600.16385 Link to comment Share on other sites More sharing options...
moogly Posted June 22, 2011 Report Share Posted June 22, 2011 So maybe the issue is with µT, not Norton.Do you have some crashdumps (.dmp) in %appdata%\utorrent? If yes, upload them to http://www.mediafire.com/ and post the link here or send it to admin Firon by email. Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.