reggee Posted June 26, 2011 Report Share Posted June 26, 2011 Today installed New utorrent update 3.0after install, utorrent won't boot anymore. When I click the utorrent icon, my screen flashes a little real quick 2 times, then nothing.then I try again, and I get the message that utorrent is already running, please kill it's processes.in task manager, utorrent is running after I click the icon.I tried uninstall - reinstall, didn't work.OS: Win XP Home editionPlease help Link to comment Share on other sites More sharing options...
reggee Posted June 27, 2011 Author Report Share Posted June 27, 2011 bump Link to comment Share on other sites More sharing options...
DreadWingKnight Posted June 27, 2011 Report Share Posted June 27, 2011 http://forum.utorrent.com/viewtopic.php?id=29748 Link to comment Share on other sites More sharing options...
reggee Posted June 28, 2011 Author Report Share Posted June 28, 2011 Step 1HijackThis 2.0.0.4 log:Logfile of Trend Micro HijackThis v2.0.4Scan saved at 10:16:11, on 28-6-2011Platform: Windows XP SP3 (WinNT 5.01.2600)MSIE: Internet Explorer v8.00 (8.00.6001.18702)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\csrss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\Ati2evxx.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\COMODO\COMODO Internet Security\cmdagent.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Sandboxie\SbieSvc.exeC:\WINDOWS\system32\Ati2evxx.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\Avira\AntiVir Desktop\sched.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Avira\AntiVir Desktop\avguard.exeC:\WINDOWS\eHome\ehRecvr.exeC:\WINDOWS\eHome\ehSched.exeC:\Program Files\Java\jre6\bin\jqs.exeC:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exeC:\Program Files\Avira\AntiVir Desktop\avshadow.exeC:\WINDOWS\system32\PnkBstrA.exeC:\Program Files\Sitecom\Common\RegistryWriter.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\system32\svchost.exeC:\Program Files\ThreatFire\TFService.exeC:\Program Files\UPHClean\uphclean.exeC:\WINDOWS\ehome\ehtray.exeC:\Program Files\Avira\AntiVir Desktop\avgnt.exeC:\WINDOWS\RTHDCPL.EXEC:\Program Files\COMODO\COMODO Internet Security\cfp.exeC:\Program Files\ThreatFire\TFTray.exeC:\WINDOWS\system32\ctfmon.exeC:\Program Files\Spybot - Search & Destroy\TeaTimer.exeC:\WINDOWS\system32\dllhost.exeC:\WINDOWS\eHome\ehmsas.exeC:\WINDOWS\System32\alg.exeC:\Program Files\uTorrent\uTorrent.exeC:\WINDOWS\system32\wbem\wmiprvse.exeC:\Documents and Settings\O2\Bureaublad\HijackThis.exeC:\WINDOWS\system32\wbem\wmiprvse.exeR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = KoppelingenO1 - Hosts: 255.255.255.255 broadcasthostO1 - Hosts: ::1 localhostO1 - Hosts: 216.34.181.45 s # slashdot.orgO1 - Hosts: 64.233.187.104 g # google.comO2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 - BHO: QFX Software KeyScrambler - {2B9F5787-88A5-4945-90E7-C4B18563BC5E} - C:\Program Files\KeyScrambler\KeyScramblerIE.dllO2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dllO2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dllO2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dllO2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dllO2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dllO4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exeO4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /minO4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXEO4 - HKLM\..\Run: [SkyTel] SkyTel.EXEO4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXEO4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -hO4 - HKLM\..\Run: [ThreatFire] C:\Program Files\ThreatFire\TFTray.exeO4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exeO4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTOO4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exeO4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Lokale service')O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Netwerkservice')O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exeO9 - Extra button: (no name) - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dllO9 - Extra 'Tools' menuitem: &KeyScrambler Options - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dllO9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dllO9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dllO9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dllO9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dllO9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO9 - Extra button: CarbonPoker - {e4e8c758-34b4-44bb-8ef9-1f0786e81d2d} - C:\Documents and Settings\O2\Menu Start\Programma's\CarbonPoker\CarbonPoker.lnk (HKCU)O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase6770.cabO16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1280422545515O16 - DPF: {A1F2F2CE-06AF-483C-9F12-D3BAA72477D6} (BatchDownloader Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/DigWXMSN.cabO16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cabO16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cabO18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dllO20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dllO20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLLO22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dllO22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dllO23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exeO23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exeO23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exeO23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exeO23 - Service: Belkin Wifi Service - Unknown owner - C:\Program Files\Belkin\F5D8053\v6\WifiSvc.exe (file missing)O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exeO23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exeO23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exeO23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exeO23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exeO23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exeO23 - Service: Ralink Registry Writer (RalinkRegistryWriter) - Ralink Technology, Corp. - C:\Program Files\Sitecom\Common\RegistryWriter.exeO23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files\WinPcap\rpcapd.exeO23 - Service: Sandboxie Service (SbieSvc) - SANDBOXIE L.T.D - C:\Program Files\Sandboxie\SbieSvc.exeO23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exeO23 - Service: ThreatFire - PC Tools - C:\Program Files\ThreatFire\TFService.exe--End of file - 9720 bytesStep 2Process Explorer:Process PID CPU Private Bytes Working Set Description Company NameSystem Idle Process 0 38.28 0 K 28 K System 4 1.56 0 K 264 K Interrupts n/a < 0.01 0 K 0 K Hardware Interrupts and DPCs smss.exe 568 172 K 432 K Windows NT Session Manager Microsoft Corporation csrss.exe 872 1.56 1.976 K 4.496 K Client Server Runtime Process Microsoft Corporation winlogon.exe 908 11.860 K 3.244 K Toepassing Windows NT-aanmelding Microsoft Corporation services.exe 952 6.056 K 9.204 K Services en controllertoepassingen Microsoft Corporation ati2evxx.exe 1164 5.016 K 7.516 K ATI External Event Utility EXE Module ATI Technologies Inc. svchost.exe 1180 7.376 K 10.632 K Generic Host Process for Win32 Services Microsoft Corporation ehmsas.exe 3808 3.524 K 6.708 K Media Center Media Status Aggregator Service Microsoft Corporation wmiprvse.exe 3392 5.700 K 9.152 K WMI Microsoft Corporation svchost.exe 1232 5.988 K 9.864 K Generic Host Process for Win32 Services Microsoft Corporation cmdagent.exe 1320 49.388 K 4.456 K COMODO Internet Security COMODO svchost.exe 1352 41.676 K 55.808 K Generic Host Process for Win32 Services Microsoft Corporation SbieSvc.exe 1404 3.832 K 6.528 K Sandboxie Service SANDBOXIE L.T.D svchost.exe 1644 11.212 K 14.500 K Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1688 3.756 K 6.516 K Generic Host Process for Win32 Services Microsoft Corporation spoolsv.exe 1852 7.240 K 10.004 K Spooler SubSystem App Microsoft Corporation sched.exe 1900 4.884 K 1.004 K Antivirus Scheduler Avira GmbH svchost.exe 1948 4.160 K 7.484 K Generic Host Process for Win32 Services Microsoft Corporation avguard.exe 444 98.120 K 12.384 K Antivirus On-Access Service Avira GmbH avshadow.exe 1460 1.144 K 3.560 K AntiVir shadow copy service Avira GmbH ehrecvr.exe 512 5.120 K 8.328 K Media Center Receiver Service Microsoft Corporation ehSched.exe 632 4.364 K 8.772 K Media Center Scheduler-service Microsoft Corporation jqs.exe 800 5.484 K 1.724 K Java(TM) Quick Starter Service Sun Microsystems, Inc. LVPrcSrv.exe 968 6.656 K 9.340 K Logitech LVPrcSrv Module. Logitech Inc. PnkBstrA.exe 1640 4.500 K 6.212 K RegistryWriter.exe 1724 3.368 K 5.916 K RalinkRegistryWriter Ralink Technology, Corp. svchost.exe 2200 6.392 K 9.328 K Generic Host Process for Win32 Services Microsoft Corporation TFService.exe 2252 17.264 K 4.552 K PC Tools ThreatFire Service PC Tools uphclean.exe 2276 3.688 K 6.516 K User Profile Hive Cleanup Service Microsoft Corporation dllhost.exe 3604 5.024 K 9.980 K COM Surrogate Microsoft Corporation alg.exe 2360 4.840 K 8.144 K Application Layer Gateway Service Microsoft Corporation lsass.exe 964 6.744 K 11.288 K LSA Shell (Export Version) Microsoft Corporation ati2evxx.exe 1616 6.128 K 8.952 K ATI External Event Utility EXE Module ATI Technologies Inc. taskmgr.exe 3668 5.156 K 3.052 K Windows Taakbeheer Microsoft Corporationexplorer.exe 2160 0.78 35.404 K 46.588 K Windows Verkenner Microsoft Corporation ehtray.exe 3108 5.256 K 5.528 K Media Center Tray Applet Microsoft Corporation avgnt.exe 3124 5.436 K 1.688 K Antivirus System Tray Tool Avira GmbH RTHDCPL.EXE 3160 25.480 K 25.848 K Realtek HD Audio Control Panel Realtek Semiconductor Corp. cfp.exe 3272 23.092 K 7.384 K COMODO Internet Security COMODO TFTray.exe 3292 10.616 K 3.416 K PC Tools ThreatFire Tray App PC Tools ctfmon.exe 3300 3.680 K 7.020 K CTF Loader Microsoft Corporation TeaTimer.exe 3360 1.56 62.244 K 67.856 K System settings protector Safer-Networking Ltd. firefox.exe 2780 200.220 K 217.444 K Firefox Mozilla Corporation uTorrent.exe 1684 50.00 27.888 K 29.316 K µTorrent BitTorrent, Inc. HijackThis.exe 1960 8.692 K 14.052 K HijackThis Trend Micro Inc. notepad.exe 648 4.964 K 1.580 K Kladblok Microsoft Corporation procexp.exe 1840 6.25 21.076 K 28.008 K Sysinternals Process Explorer Sysinternals - www.sysinternals.comStep 3There was no .dmp file found in the C:\program files\utorrent directoryAdditional info:When I click the utorrent icon, the screen flashes real quick once and nothing seems to happen however in task manager you can see that utorrent did start.Screenshot of taskmanager (note: I run a dutch version of windows xp)This is what the error looks like, after I try to start utorrent again:That's about as much info as I can give :sStrange huh?Please help. Link to comment Share on other sites More sharing options...
DreadWingKnight Posted June 28, 2011 Report Share Posted June 28, 2011 Does the problem persist with threatfire and/or superantispyware uninstalled? Link to comment Share on other sites More sharing options...
reggee Posted June 28, 2011 Author Report Share Posted June 28, 2011 Alright here is what I did:*Uninstalled superantispyware*uninstalled utorrent*uninstalled ThreatFirereboot*Run CCleaner*Run CCleaner's registry cleaner*Disabled Teatimer <-- edit: I forgot this oneI am about to install utorrent again right now, I'll keep you updated. Link to comment Share on other sites More sharing options...
reggee Posted June 28, 2011 Author Report Share Posted June 28, 2011 THANKS! IT WORKED!!Wow you guys really are professionals!! =)) =D Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.