assem Posted December 9, 2008 Report Share Posted December 9, 2008 hi,im using utorrent 1.8.1 with a windows server 2003 64bitwhenever i start download utorrent start eating mem usage until its crash, (usually its crash at 1.9gb of ram usage)no matter the speed download is, or the file size, just when start download,when i do seeding it work very good, no problem at all, and the usage of memory is about 8-10 mbanyone had this problem before? any solution available ?btw,i've tried other version of the utorrent including the 1.7.7 and 1.9 alpha and all of them have this problem,my spec:4 gig ram,xeon 2.83gwindows server 2003 r2, 64 bit sp2 Link to comment Share on other sites More sharing options...
DreadWingKnight Posted December 9, 2008 Report Share Posted December 9, 2008 Post a hijackthis log and process explorer process list with the DLL list for the utorrent.exe process please. Link to comment Share on other sites More sharing options...
ameinild Posted December 9, 2008 Report Share Posted December 9, 2008 Under Advanced -> Disc Cache, disable Windows caching of reads and writes. Windows cache has a memory leak that makes uTorrent eat all your memory...See if i helps... Link to comment Share on other sites More sharing options...
moogly Posted December 9, 2008 Report Share Posted December 9, 2008 Post HJT & PE logs.Tutorial: http://forum.utorrent.com/viewtopic.php?id=29748 Link to comment Share on other sites More sharing options...
assem Posted December 9, 2008 Author Report Share Posted December 9, 2008 i hope this can give some information about my problem.Logfile of Trend Micro HijackThis v2.0.2Scan saved at 22:47:02, on 09/12/2008Platform: Windows 2003 SP2 (WinNT 5.02.3790)MSIE: Internet Explorer v7.00 (7.00.6000.16735)Boot mode: NormalRunning processes:C:\WINDOWS\SysWOW64\ctfmon.exeC:\Documents and Settings\Administrator\Desktop\HJTInstall.exeC:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exeC:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = res://shdoclc.dll/hardAdmin.htmR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = res://shdoclc.dll/hardAdmin.htmR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = res://shdoclc.dll/hardAdmin.htmR1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005F2 - REG:system.ini: UserInit=userinitO2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~2\FlashFXP\IEFlash.dllO4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME (x86)\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\SysWow64\IME\TINTLGNT\TINTSETP.EXE /SYNCO4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\SysWow64\IME\TINTLGNT\TINTSETP.EXE /IMENameO4 - HKLM\..\Run: [JMB36X Configure] C:\WINDOWS\SysWOW64\JMRaidTool.exe bootO4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXEO4 - HKCU\..\Run: [µTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe"O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent1.9\uTorrent.exe"O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-20\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')O15 - ESC Trusted Zone: http://mirror.1nsk.ruO15 - ESC Trusted Zone: http://fs3.filehippo.comO15 - ESC Trusted Zone: http://fs4.filehippo.comO15 - ESC Trusted Zone: http://www.filehippo.comO15 - ESC Trusted Zone: http://*.filehippo.comO15 - ESC Trusted Zone: http://www.google-analytics.comO15 - ESC Trusted Zone: http://pagead2.googlesyndication.comO15 - ESC Trusted Zone: http://runonce.msn.comO15 - ESC Trusted Zone: http://internap.dl.sourceforge.netO15 - ESC Trusted Zone: http://download.utorrent.comO15 - ESC Trusted Zone: http://m.webtrends.comO15 - ESC Trusted Zone: http://*.windowsupdate.comO15 - ESC Trusted Zone: http://runonce.msn.com (HKLM)O15 - ESC Trusted Zone: http://*.windowsupdate.com (HKLM)O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1182182446101O17 - HKLM\System\CCS\Services\Tcpip\..\{04EF15B5-2E49-4B9E-8137-B5FA575ED829}: NameServer = 10.48.100.2O17 - HKLM\System\CCS\Services\Tcpip\..\{0E04BDCD-C453-4FC4-90B4-54E019716D6F}: NameServer = 10.48.100.2O17 - HKLM\System\CCS\Services\Tcpip\..\{1073A361-7E3C-474B-AF2F-0B8857382C38}: NameServer = 10.48.100.2O17 - HKLM\System\CCS\Services\Tcpip\..\{1BB85F30-BEA9-4CA7-BD99-E2A39D8981A6}: NameServer = 10.48.100.2O17 - HKLM\System\CCS\Services\Tcpip\..\{3AABE1FB-68F5-450C-BEC1-0DE37833A46E}: NameServer = 10.48.100.2O17 - HKLM\System\CCS\Services\Tcpip\..\{4C541F01-5E77-486F-9149-FE5D64F66451}: NameServer = 10.48.100.2O17 - HKLM\System\CCS\Services\Tcpip\..\{526CB2DA-3368-47B9-97C0-D219CE6789DE}: NameServer = 213.186.33.99O17 - HKLM\System\CCS\Services\Tcpip\..\{64B1D3C0-ED74-4C82-BA2A-E36F011D302A}: NameServer = 10.48.100.2O17 - HKLM\System\CCS\Services\Tcpip\..\{9409D708-7D20-4E71-82E9-E49DBCF7A299}: NameServer = 10.48.100.2O17 - HKLM\System\CCS\Services\Tcpip\..\{97695322-447E-4C65-A0B8-DC6EF243DCD4}: NameServer = 10.48.100.2O17 - HKLM\System\CCS\Services\Tcpip\..\{B2A6165D-32C2-455E-8979-17E9658B690B}: NameServer = 10.48.100.2O17 - HKLM\System\CCS\Services\Tcpip\..\{F815D980-4D5D-4898-A704-AC6E42B255A5}: NameServer = 10.48.100.2O17 - HKLM\System\CS1\Services\Tcpip\..\{04EF15B5-2E49-4B9E-8137-B5FA575ED829}: NameServer = 10.48.100.2O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe (file missing)O23 - Service: Event Log (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe (file missing)O23 - Service: HTTP SSL (HTTPFilter) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)O23 - Service: Distributed Transaction Coordinator (MSDTC) - Unknown owner - C:\WINDOWS\system32\msdtc.exe (file missing)O23 - Service: Net Logon (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: NT LM Security Support Provider (NtLmSsp) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: Plug and Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe (file missing)O23 - Service: IPSEC Services (PolicyAgent) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: Protected Storage (ProtectedStorage) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: Remote Desktop Help Session Manager (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe (file missing)O23 - Service: Security Accounts Manager (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: Virtual Disk Service (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)O23 - Service: Volume Shadow Copy (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe (file missing)O23 - Service: WMI Performance Adapter (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe (file missing)--End of file - 7019 bytesProcess PID CPU Description Company NameSystem Idle Process 0 78.91 Interrupts n/a 0.78 Hardware Interrupts DPCs n/a 3.91 Deferred Procedure Calls System 4 0.39 smss.exe 300 Windows NT Session Manager Microsoft Corporation csrss.exe 348 Client Server Runtime Process Microsoft Corporation winlogon.exe 372 Windows NT Logon Application Microsoft Corporation services.exe 420 Services and Controller app Microsoft Corporation svchost.exe 584 Generic Host Process for Win32 Services Microsoft Corporation wmiprvse.exe 1756 WMI Microsoft Corporation wmiprvse.exe 2144 WMI Microsoft Corporation svchost.exe 676 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 748 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 784 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 800 Generic Host Process for Win32 Services Microsoft Corporation spoolsv.exe 936 Spooler SubSystem App Microsoft Corporation msdtc.exe 972 MS DTCconsole program Microsoft Corporation svchost.exe 1084 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1124 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1384 Generic Host Process for Win32 Services Microsoft Corporation alg.exe 1572 Application Layer Gateway Service Microsoft Corporation svchost.exe 488 Generic Host Process for Win32 Services Microsoft Corporation lsass.exe 432 LSA Shell Microsoft Corporation logon.scr 1932 Logon Screen Saver Microsoft Corporation csrss.exe 2256 Client Server Runtime Process Microsoft Corporation winlogon.exe 812 Windows NT Logon Application Microsoft Corporation rdpclip.exe 2600 RDP Clip Monitor Microsoft Corporationctfmon.exe 592 CTF Loader Microsoft Corporation ctfmon.exe 2848 CTF Loader Microsoft Corporationexplorer.exe 2372 Windows Explorer Microsoft Corporation uTorrent.exe 316 16.02 µTorrent BitTorrent, Inc. procexp.exe 2808 Sysinternals Process Explorer Sysinternals - www.sysinternals.com procexp64.exe 920 Sysinternals Process Explorer Sysinternals - www.sysinternals.comProcess PID CPU Description Company NameSystem Idle Process 0 99.69 Interrupts n/a Hardware Interrupts DPCs n/a Deferred Procedure Calls System 4 smss.exe 300 Windows NT Session Manager Microsoft Corporation csrss.exe 348 Client Server Runtime Process Microsoft Corporation winlogon.exe 372 Windows NT Logon Application Microsoft Corporation services.exe 420 0.31 Services and Controller app Microsoft Corporation svchost.exe 584 Generic Host Process for Win32 Services Microsoft Corporation wmiprvse.exe 1756 WMI Microsoft Corporation svchost.exe 676 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 748 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 784 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 800 Generic Host Process for Win32 Services Microsoft Corporation spoolsv.exe 936 Spooler SubSystem App Microsoft Corporation msdtc.exe 972 MS DTCconsole program Microsoft Corporation svchost.exe 1084 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1124 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1384 Generic Host Process for Win32 Services Microsoft Corporation alg.exe 1572 Application Layer Gateway Service Microsoft Corporation svchost.exe 488 Generic Host Process for Win32 Services Microsoft Corporation lsass.exe 432 LSA Shell Microsoft Corporation logon.scr 1932 Logon Screen Saver Microsoft Corporation csrss.exe 2256 Client Server Runtime Process Microsoft Corporation winlogon.exe 812 Windows NT Logon Application Microsoft Corporation rdpclip.exe 2600 RDP Clip Monitor Microsoft Corporation igfxsrvc.exe 508 igfxsrvc Module Intel Corporationctfmon.exe 592 CTF Loader Microsoft Corporation ctfmon.exe 2848 CTF Loader Microsoft Corporationexplorer.exe 2372 Windows Explorer Microsoft Corporation uTorrent.exe 2976 µTorrent BitTorrent, Inc. firefox.exe 3004 Firefox Mozilla Corporation procexp.exe 2808 Sysinternals Process Explorer Sysinternals - www.sysinternals.com procexp64.exe 3044 Sysinternals Process Explorer Sysinternals - www.sysinternals.comProcess: uTorrent.exe Pid: 2976Name Description Company Name VersionACTIVEDS.dll ADs Router Layer DLL Microsoft Corporation 5.02.3790.3959adsldpc.dll ADs LDAP Provider C DLL Microsoft Corporation 5.02.3790.3959ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 5.02.3790.3959apphelp.dll Application Compatibility Client Library Microsoft Corporation 5.02.3790.3959ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.05.2284.0000CLBCatQ.DLL COM+ Configuration Catalog Microsoft Corporation 2001.12.4720.3959CLUSAPI.dll Cluster API Library Microsoft Corporation 5.02.3790.3959COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.00.3790.3959comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.00.3790.3959COMRes.dll COM+ Resources Microsoft Corporation 2001.12.4720.3959credui.dll Credential Manager User Interface Microsoft Corporation 5.02.3790.3959CRYPT32.dll Crypto API32 Microsoft Corporation 5.131.3790.3959cryptnet.dll Crypto Network Related API Microsoft Corporation 5.131.3790.3959ctype.nls DnsApi.dll DNS Client API DLL Microsoft Corporation 5.02.3790.4318dssenh.dll Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider Microsoft Corporation 5.02.3790.3959GDI32.dll GDI Client DLL Microsoft Corporation 5.02.3790.4237hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 5.02.3790.3959iertutil.dll Run time utility for Internet Explorer Microsoft Corporation 7.00.6000.16735imagehlp.dll Windows NT Image Helper Microsoft Corporation 5.02.3790.3959IMM32.DLL Windows IMM32 API Client DLL Microsoft Corporation 5.02.3790.3959index.dat index.dat index.dat Iphlpapi.dll IP Helper API Microsoft Corporation 5.02.3790.3959kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 5.02.3790.4062locale.nls LPK.DLL Language Pack Microsoft Corporation 5.02.3790.3959MPRAPI.dll Windows NT MP Router Administration DLL Microsoft Corporation 5.02.3790.3959msapsspc.dll MSASN1.dll ASN.1 Runtime APIs Microsoft Corporation 5.02.3790.3959MSCTF.dll MSCTF Server DLL Microsoft Corporation 5.02.3790.3959msctfime.ime Microsoft Text Frame Work Service IME Microsoft Corporation 5.02.3790.3959msnsspc.dll msv1_0.DLL Microsoft Authentication Package v1.0 Microsoft Corporation 5.02.3790.3959msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.00.3790.3959MSVCRT40.dll mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 5.02.3790.4318netapi32.dll Net Win32 API DLL Microsoft Corporation 5.02.3790.4392netshell.dll Network Connections Shell Microsoft Corporation 5.02.3790.3959Normaliz.dll Unicode Normalization DLL Microsoft Corporation 6.00.5441.0000ntdll.dll NT Layer DLL Microsoft Corporation 5.02.3790.3959ntdll.dll NT Layer DLL Microsoft Corporation 5.02.3790.3959ole32.dll Microsoft OLE for Windows Microsoft Corporation 5.02.3790.3959oleaut32.dll Microsoft Corporation 5.02.3790.4202PSAPI.DLL Process Status Helper Microsoft Corporation 5.02.3790.3959R000000000004.clb rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 5.02.3790.3959RASAPI32.dll Remote Access API Microsoft Corporation 5.02.3790.3959rasman.dll Remote Access Connection Manager Microsoft Corporation 5.02.3790.3959rdpsnd.dll Terminal Server MultiMedia Driver Microsoft Corporation 5.02.3790.1830RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 5.02.3790.4115rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 5.02.3790.3959rtutils.dll Routing Utilities Microsoft Corporation 5.02.3790.1830SAMLIB.dll SAM Library DLL Microsoft Corporation 5.02.3790.3959schannel.dll TLS / SSL Security Provider Microsoft Corporation 5.02.3790.4068Secur32.dll Security Support Provider Interface Microsoft Corporation 5.02.3790.3959sensapi.dll SENS Connectivity API DLL Microsoft Corporation 5.02.3790.3959SETUPAPI.dll Windows Setup API Microsoft Corporation 5.02.3790.3959SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.00.3790.4184shfolder.dll Shell Folder Service Microsoft Corporation 6.00.3790.1830SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.00.3790.3959sortkey.nls sorttbls.nls TAPI32.dll Microsoft® Windows(TM) Telephony API Client DLL Microsoft Corporation 5.02.3790.3959unicode.nls urlmon.dll OLE32 Extensions for Win32 Microsoft Corporation 7.00.6000.16735USER32.dll Windows USER API Client DLL Microsoft Corporation 5.02.3790.4033USERENV.dll Userenv Microsoft Corporation 5.02.3790.3959USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.422.3790.3959uTorrent.exe µTorrent BitTorrent, Inc. 1.08.0001.12639UxTheme.dll Microsoft UxTheme Library Microsoft Corporation 6.00.3790.3959VERSION.dll Version Checking and File Installation Libraries Microsoft Corporation 5.02.3790.1830wininet.dll Internet Extensions for Win32 Microsoft Corporation 7.00.6000.16735WINMM.dll MCI API DLL Microsoft Corporation 5.02.3790.3959winrnr.dll LDAP RnR Provider DLL Microsoft Corporation 5.02.3790.3959WINSTA.dll Winstation Library Microsoft Corporation 5.02.3790.3959wintrust.dll Microsoft Trust Verification APIs Microsoft Corporation 5.131.3790.3959WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 5.02.3790.3959wow64.dll Win32 Emulation on NT64 Microsoft Corporation 5.02.3790.3959wow64cpu.dll AMD64 Wow64 CPU Microsoft Corporation 5.02.3790.1830wow64win.dll Wow64 Console and Win32 API Logging Microsoft Corporation 5.02.3790.3959WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 5.02.3790.3959WS2HELP.dll Windows Socket 2.0 Helper for Windows NT Microsoft Corporation 5.02.3790.1830wshtcpip.dll Windows Sockets Helper DLL Microsoft Corporation 5.02.3790.3959xpsp2res.dll Service Pack 2 Messages Microsoft Corporation 5.02.3790.3959the crash dmp files:http://www.youshare.com/Guest/a24763/DisplaySimple Link to comment Share on other sites More sharing options...
DreadWingKnight Posted December 9, 2008 Report Share Posted December 9, 2008 Missing process explorer log. Link to comment Share on other sites More sharing options...
Ultima Posted December 11, 2008 Report Share Posted December 11, 2008 The crash dumps are completely empty too. Download the unpacked build of µTorrent (found in the 1.8.1 announcement thread) and let that one crash instead. And what are your disk cache settings like in Preferences > Advanced > Disk Cache? A screenshot would be best. Link to comment Share on other sites More sharing options...
assem Posted December 11, 2008 Author Report Share Posted December 11, 2008 override cash... set to a 500MBdisable Windows caching both checked Link to comment Share on other sites More sharing options...
thelittlefire Posted December 11, 2008 Report Share Posted December 11, 2008 How about unchecking them. . .That can't be all the running processes, can it?? Why is MSN injecting itself? Link to comment Share on other sites More sharing options...
tagtail072293 Posted December 12, 2008 Report Share Posted December 12, 2008 I have the same problem, utorrent uses more 1.6 GB of my RAM and 99% of my CPU and freezes my computer. Can anyone please help me. Link to comment Share on other sites More sharing options...
DreadWingKnight Posted December 12, 2008 Report Share Posted December 12, 2008 Provide the information requested above. Link to comment Share on other sites More sharing options...
tagtail072293 Posted December 12, 2008 Report Share Posted December 12, 2008 Logfile of Trend Micro HijackThis v2.0.2Scan saved at 2:55:20 PM, on 12/12/2008Platform: Windows XP SP3, v.3311 (WinNT 5.01.2600)MSIE: Internet Explorer v8.00 (8.00.6001.18241)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\Thomson SpeedTouch\ST330\service\st330service.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\Bonjour\mDNSResponder.exeC:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exeC:\Program Files\iolo\common\lib\ioloServiceManager.exeC:\Program Files\Norton Internet Security\Engine\16.2.0.7\ccSvcHst.exeC:\WINDOWS\system32\nvsvc32.exeC:\Program Files\Norton Internet Security\Engine\16.2.0.7\ccSvcHst.exeC:\WINDOWS\Explorer.EXEC:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exeC:\WINDOWS\cyb2k.exeC:\Program Files\Folder Guard Pro\FGKey.exeC:\Program Files\Microsoft Office\Office12\GrooveMonitor.exeC:\WINDOWS\system32\ctfmon.exeC:\Program Files\Windows Live\Messenger\msnmsgr.exeC:\Program Files\Windows Live\Messenger\usnsvc.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\taskmgr.exeC:\Program Files\Trend Micro\HijackThis\HijackThis.exeC:\Program Files\uTorrent\uTorrent.exeR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.avsmedia.com/VideoTools/buy.aspxR3 - URLSearchHook: Live TV Toolbar - {b69a9db4-d0a1-4722-b56b-f20757a29cdf} - C:\Program Files\Live_TV\tbLive.dllO2 - BHO: SnagIt Toolbar Loader - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\SnagIt 9\SnagItBHO.dllO2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 - BHO: MySpace Toolbar - {28AED1AF-B164-44CD-B435-CF04AA955015} - C:\Program Files\MySpace\Toolbar\1.0.14.0\MySpaceToolbar.dllO2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\16.2.0.7\coIEPlg.dllO2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\16.2.0.7\IPSBHO.DLLO2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dllO2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dllO2 - BHO: Live TV Toolbar - {b69a9db4-d0a1-4722-b56b-f20757a29cdf} - C:\Program Files\Live_TV\tbLive.dllO3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\SnagIt 9\SnagItIEAddin.dllO3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\16.2.0.7\coIEPlg.dllO3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dllO3 - Toolbar: Live TV Toolbar - {b69a9db4-d0a1-4722-b56b-f20757a29cdf} - C:\Program Files\Live_TV\tbLive.dllO3 - Toolbar: MySpace Toolbar - {28AED1AF-B164-44CD-B435-CF04AA955015} - C:\Program Files\MySpace\Toolbar\1.0.14.0\MySpaceToolbar.dllO4 - HKLM\..\Run: [RemoteControl8] "C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe"O4 - HKLM\..\Run: [PDVD8LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD8\Language\Language.exe"O4 - HKLM\..\Run: [C2K] C:\WINDOWS\cyb2k.exeO4 - HKLM\..\Run: [FG_Monitor] C:\Program Files\Folder Guard Pro\FGKey.exe /StartO4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [nwiz] nwiz.exe /installO4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exeO4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /backgroundO4 - HKCU\..\Run: [DownloadAccelerator] "C:\Program Files\DAP\DAP.EXE" /STARTUPO8 - Extra context menu item: &Clean Traces - C:\Program Files\DAP\Privacy Package\dapcleanerie.htmO8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htmO8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htmO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htmO9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dllO9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dllO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLLO9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1228755882375O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/flashplayer/current/swflash.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{1098CA37-22A8-4BE8-9075-2731B3E4E293}: NameServer = 193.188.97.209 193.188.97.212O17 - HKLM\System\CS1\Services\Tcpip\..\{1098CA37-22A8-4BE8-9075-2731B3E4E293}: NameServer = 193.188.97.209 193.188.97.212O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dllO18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - C:\Program Files\Norton Internet Security\Engine\16.2.0.7\coIEPlg.dllO23 - Service: Norton2009 Reset (.norton2009Reset) - Unknown owner - C:\Program Files\Norton2009Reset.exeO23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exeO23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exeO23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exeO23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exeO23 - Service: iolo FileInfoList Service (ioloFileInfoList) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exeO23 - Service: iolo System Service (ioloSystemService) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exeO23 - Service: Norton Internet Security - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\16.2.0.7\ccSvcHst.exeO23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exeO23 - Service: SpeedTouch 330 Manager (st330service) - THOMSON Telecom Belgium - C:\Program Files/Thomson SpeedTouch/ST330/service/st330service.exe--End of file - 8339 bytesPROCESS EXPLORER:Process PID CPU Description Company NameSystem Idle Process 0 50.00 Interrupts n/a Hardware Interrupts DPCs n/a Deferred Procedure Calls System 4 2.78 smss.exe 792 Windows NT Session Manager Microsoft Corporation csrss.exe 1036 Client Server Runtime Process Microsoft Corporation winlogon.exe 1252 Windows NT Logon Application Microsoft Corporation services.exe 1344 Services and Controller app Microsoft Corporation svchost.exe 1556 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1656 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1704 Generic Host Process for Win32 Services Microsoft Corporation st330service.exe 1736 SpeedTouch Host Service THOMSON Telecom Belgium svchost.exe 2020 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 228 Generic Host Process for Win32 Services Microsoft Corporation spoolsv.exe 752 Spooler SubSystem App Microsoft Corporation mDNSResponder.exe 1044 Bonjour Service Apple Computer, Inc. DkService.exe 1060 Diskeeper Service Diskeeper Corporation ioloServiceManager.exe 1144 ccSvcHst.exe 1264 Symantec Service Framework Symantec Corporation ccSvcHst.exe 524 Symantec Service Framework Symantec Corporation nvsvc32.exe 124 NVIDIA Driver Helper Service, Version 178.24 NVIDIA Corporation alg.exe 256 Application Layer Gateway Service Microsoft Corporation usnsvc.exe 2504 Messenger Sharing USN Journal Reader Service Microsoft Corporation svchost.exe 3500 Generic Host Process for Win32 Services Microsoft Corporation lsass.exe 1356 LSA Shell (Export Version) Microsoft Corporationexplorer.exe 520 Windows Explorer Microsoft Corporation PDVD8Serv.exe 2240 PowerDVD RC Service Cyberlink Corp. Cyb2k.exe 2280 CYBERsitter Control Panel Solid Oak Software, Inc. FGKey.exe 2292 Folder Guard Utility WinAbility® Software Corporation GrooveMonitor.exe 2308 GrooveMonitor Utility Microsoft Corporation ctfmon.exe 2356 CTF Loader Microsoft Corporation msnmsgr.exe 2380 Windows Live Messenger Microsoft Corporation firefox.exe 3316 Firefox Mozilla Corporation procexp.exe 3304 11.11 Sysinternals Process Explorer Sysinternals - www. . uTorrent.exe 2272 36.11 µTorrent BitTorrent, Inc.Process: uTorrent.exe Pid: 2272Type NamePort Semaphore Semaphore Event Section Port Semaphore Mutant Event Event WmiGuid Event Event Event Port Event Event Event Event IoCompletion IoCompletion IoCompletion Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Event Port Event Semaphore Semaphore Event Event Event Event Event Event Mutant Event Mutant Event Mutant IoCompletion Event Directory \BaseNamedObjectsMutant \BaseNamedObjects\µTorrent4823DF041B09Section \BaseNamedObjects\CiceroSharedMemDefaultS-1-5-21-1390067357-1085031214-725345543-1003Mutant \BaseNamedObjects\CTF.Asm.MutexDefaultS-1-5-21-1390067357-1085031214-725345543-1003Mutant \BaseNamedObjects\CTF.Compart.MutexDefaultS-1-5-21-1390067357-1085031214-725345543-1003Mutant \BaseNamedObjects\CTF.Layouts.MutexDefaultS-1-5-21-1390067357-1085031214-725345543-1003Mutant \BaseNamedObjects\CTF.LBES.MutexDefaultS-1-5-21-1390067357-1085031214-725345543-1003Mutant \BaseNamedObjects\CTF.TimListCache.FMPDefaultS-1-5-21-1390067357-1085031214-725345543-1003MUTEX.DefaultS-1-5-21-1390067357-1085031214-725345543-1003Section \BaseNamedObjects\CTF.TimListCache.FMPDefaultS-1-5-21-1390067357-1085031214-725345543-1003SFM.DefaultS-1-5-21-1390067357-1085031214-725345543-1003Mutant \BaseNamedObjects\CTF.TMD.MutexDefaultS-1-5-21-1390067357-1085031214-725345543-1003Mutant \BaseNamedObjects\DBWinMutexSemaphore \BaseNamedObjects\shell.{210A4BA0-3AEA-1069-A2D9-08002B30309D}Semaphore \BaseNamedObjects\shell.{A48F1A32-A340-11D1-BC6B-00A0C90312E1}Mutant \BaseNamedObjects\ShimCacheMutexSection \BaseNamedObjects\ShimSharedMemoryEvent \BaseNamedObjects\userenv: User Profile setup eventDesktop \DefaultFile \Device\AfdFile \Device\AfdFile \Device\AfdFile \Device\AfdFile \Device\AfdFile \Device\IpFile \Device\IpFile \Device\IpFile \Device\KsecDDFile \Device\RawIpFile \Device\TcpFile \Device\TcpFile \Device\TcpFile \Device\TcpFile \Device\TcpFile \Device\TcpFile \Device\UdpFile \Device\WMIDataDeviceFile \Device\WMIDataDeviceFile \Device\WS2IFSLFile \Device\WS2IFSLFile \Device\WS2IFSLFile \Device\WS2IFSLFile \Device\WS2IFSLKeyedEvent \KernelObjects\CritSecOutOfMemoryEventDirectory \KnownDllsDirectory \WindowsWindowStation \Windows\WindowStations\WinSta0WindowStation \Windows\WindowStations\WinSta0File C:\Documents and Settings\Espiritu SantoFile C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.3311_x-ww_d7cb0e02File C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.3311_x-ww_d7cb0e02Key HKCUKey HKCU\Software\ClassesKey HKLMKey HKLM\SYSTEM\ControlSet001\Control\SecurityProviders\Net98Key HKLM\SYSTEM\ControlSet001\Control\SecurityProviders\NetSet\MSwcf\NSNKey HKLM\SYSTEM\ControlSet001\Control\SecurityProviders\NetSet\MSwcf\NSNKey HKLM\SYSTEM\ControlSet001\Control\SecurityProviders\NetSet\MSwcf\NSNKey HKLM\SYSTEM\ControlSet001\Control\SecurityProviders\NetSet\MSwcf\NSNKey HKLM\SYSTEM\ControlSet001\Control\SecurityProviders\NetSet\MSwcf\NSNKey HKLM\SYSTEM\ControlSet001\Control\SecurityProviders\NetSet\MSwcf\NSNKey HKLM\SYSTEM\ControlSet001\Control\SecurityProviders\NetSet\MSwcf\NSNKey HKLM\SYSTEM\ControlSet001\Control\SecurityProviders\NetSet\MSwcf\NSNKey HKLM\SYSTEM\ControlSet001\Services\NetBT\ParametersKey HKLM\SYSTEM\ControlSet001\Services\NetBT\Parameters\InterfacesKey HKLM\SYSTEM\ControlSet001\Services\Tcpip\LinkageKey HKLM\SYSTEM\ControlSet001\Services\Tcpip\ParametersKey HKLM\SYSTEM\ControlSet001\Services\WinSock2\Parameters\NameSpace_Catalog5Key HKLM\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9Key HKUProcess uTorrent.exe(2272)Thread uTorrent.exe(2272): 1436Thread uTorrent.exe(2272): 1436Thread uTorrent.exe(2272): 1436Thread uTorrent.exe(2272): 1700Thread uTorrent.exe(2272): 1700Thread uTorrent.exe(2272): 176Thread uTorrent.exe(2272): 2584Thread uTorrent.exe(2272): 3632Thread uTorrent.exe(2272): 3632Key HKLM\SYSTEM\ControlSet001\Control\SecurityProviders\NetSet\MSwcf\NSN Link to comment Share on other sites More sharing options...
DreadWingKnight Posted December 12, 2008 Report Share Posted December 12, 2008 Incorrect process explorer log. You need the DLL list, not the stack list. Link to comment Share on other sites More sharing options...
moogly Posted December 12, 2008 Report Share Posted December 12, 2008 Yes select utorrent.exe & enable DLL mode (ctrl+d) in Process Explorer. Link to comment Share on other sites More sharing options...
tagtail072293 Posted December 12, 2008 Report Share Posted December 12, 2008 Process PID CPU Description Company NameSystem Idle Process 0 89.23 Interrupts n/a Hardware Interrupts DPCs n/a 1.54 Deferred Procedure Calls System 4 smss.exe 796 Windows NT Session Manager Microsoft Corporation csrss.exe 1064 1.54 Client Server Runtime Process Microsoft Corporation winlogon.exe 1256 Windows NT Logon Application Microsoft Corporation services.exe 1372 Services and Controller app Microsoft Corporation svchost.exe 1584 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1672 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 1732 Generic Host Process for Win32 Services Microsoft Corporation st330service.exe 1760 SpeedTouch Host Service THOMSON Telecom Belgium svchost.exe 2036 Generic Host Process for Win32 Services Microsoft Corporation svchost.exe 340 Generic Host Process for Win32 Services Microsoft Corporation spoolsv.exe 840 Spooler SubSystem App Microsoft Corporation mDNSResponder.exe 1076 Bonjour Service Apple Computer, Inc. DkService.exe 1092 Diskeeper Service Diskeeper Corporation ioloServiceManager.exe 1176 ccSvcHst.exe 1304 Symantec Service Framework Symantec Corporation ccSvcHst.exe 2956 Symantec Service Framework Symantec Corporation nvsvc32.exe 1600 NVIDIA Driver Helper Service, Version 178.24 NVIDIA Corporation alg.exe 236 Application Layer Gateway Service Microsoft Corporation usnsvc.exe 1104 Messenger Sharing USN Journal Reader Service Microsoft Corporation lsass.exe 1384 LSA Shell (Export Version) Microsoft Corporation taskmgr.exe 3752 Windows TaskManager Microsoft Corporationexplorer.exe 2936 Windows Explorer Microsoft Corporation PDVD8Serv.exe 3408 PowerDVD RC Service Cyberlink Corp. Cyb2k.exe 3472 CYBERsitter Control Panel Solid Oak Software, Inc. FGKey.exe 3488 Folder Guard Utility WinAbility® Software Corporation GrooveMonitor.exe 3548 GrooveMonitor Utility Microsoft Corporation ctfmon.exe 3704 CTF Loader Microsoft Corporation msnmsgr.exe 3840 Windows Live Messenger Microsoft Corporation firefox.exe 2300 Firefox Mozilla Corporation DAP.exe 2588 Download Accelerator Plus (DAP) Speedbit Ltd. uTorrent.exe 604 µTorrent BitTorrent, Inc.procexp.exe 2576 7.69 Sysinternals Process Explorer Sysinternals - www. . Process: uTorrent.exe Pid: 604Name Description Company Name Version<Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> <Pagefile Backed> ACTIVEDS.dll ADs Router Layer DLL Microsoft Corporation 5.01.2600.3311adsldpc.dll ADs LDAP Provider C DLL Microsoft Corporation 5.01.2600.3311ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 5.01.2600.3311ASOEHOOK.DLL AntiSpam OE Hook Symantec Corporation 4.00.0000.0123ATL.DLL ATL Module for Windows XP (Unicode) Microsoft Corporation 3.05.2284.0001COMCTL32.dll User Experience Controls Library Microsoft Corporation 6.00.2900.3311comdlg32.dll Common Dialogs DLL Microsoft Corporation 6.00.2900.3311ctype.nls DnsApi.dll DNS Client API DLL Microsoft Corporation 5.01.2600.3311FGH32.dll Folder Guard Dynamic Link Library WinAbility® Software Corporation 7.09.0001.0417GDI32.dll GDI Client DLL Microsoft Corporation 5.01.2600.3311hnetcfg.dll Home Networking Configuration Manager Microsoft Corporation 5.01.2600.3311IMM32.DLL Windows XP IMM32 API Client DLL Microsoft Corporation 5.01.2600.3311Iphlpapi.dll IP Helper API Microsoft Corporation 5.01.2600.3311kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 5.01.2600.3311locale.nls lspcs.dll filter lsp Solid Oak 1.00.0000.0011mdnsNSP.dll Bonjour Namespace Provider Apple Computer, Inc. 1.00.0003.0001MPRAPI.dll Windows NT MP Router Administration DLL Microsoft Corporation 5.01.2600.3311MSCTF.dll MSCTF Server DLL Microsoft Corporation 5.01.2600.3311msctfime.ime Microsoft Text Frame Work Service IME Microsoft Corporation 5.01.2600.3311msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.00.2600.3311mswsock.dll Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation 5.01.2600.3311NETAPI32.dll Net Win32 API DLL Microsoft Corporation 5.01.2600.3311ntdll.dll NT Layer DLL Microsoft Corporation 5.01.2600.3311ole32.dll Microsoft OLE for Windows Microsoft Corporation 5.01.2600.3311oleaut32.dll Microsoft Corporation 5.01.2600.3311psapi.dll Process Status Helper Microsoft Corporation 5.01.2600.3311rasadhlp.dll Remote Access AutoDial Helper Microsoft Corporation 5.01.2600.3311RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 5.01.2600.3311rsaenh.dll Microsoft Enhanced Cryptographic Provider Microsoft Corporation 5.01.2600.3297rtutils.dll Routing Utilities Microsoft Corporation 5.01.2600.3311SAMLIB.dll SAM Library DLL Microsoft Corporation 5.01.2600.3311Secur32.dll Security Support Provider Interface Microsoft Corporation 5.01.2600.3311SETUPAPI.dll Windows Setup API Microsoft Corporation 5.01.2600.3311SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.00.2900.3311shfolder.dll Shell Folder Service Microsoft Corporation 6.00.2900.3311SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.00.2900.3311sortkey.nls sorttbls.nls unicode.nls USER32.dll Windows XP USER API Client DLL Microsoft Corporation 5.01.2600.3311USERENV.dll Userenv Microsoft Corporation 5.01.2600.3311uTorrent.exe µTorrent BitTorrent, Inc. 1.08.0001.12639uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.00.2900.3311WINSTA.dll Winstation Library Microsoft Corporation 5.01.2600.3311WLDAP32.dll Win32 LDAP API DLL Microsoft Corporation 5.01.2600.3311WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 5.01.2600.3311WS2HELP.dll Windows Socket 2.0 Helper for Windows NT Microsoft Corporation 5.01.2600.3311wshtcpip.dll Windows Sockets Helper DLL Microsoft Corporation 5.01.2600.3311WTSAPI32.dll Windows Terminal Server SDK APIs Microsoft Corporation 5.01.2600.3311 Link to comment Share on other sites More sharing options...
moogly Posted December 12, 2008 Report Share Posted December 12, 2008 You have 3 security DLL injected in uT, surely your issue comes from that:ASOEHOOK.DLL AntiSpam OE Hook Symantec Corporation 4.00.0000.0123FGH32.dll Folder Guard Dynamic Link Library WinAbility® Software Corporation 7.09.0001.0417lspcs.dll filter lsp Solid Oak 1.00.0000.0011The 3rd one is BabyFilter, try to disable or uninstall it to see if crashes continue.AntiSpam of Symantec has nothing to do in uT. Configure it or uninstall it.For Folder Guard, try to configure it with uT folders (for dwl etc). Link to comment Share on other sites More sharing options...
tagtail072293 Posted December 12, 2008 Report Share Posted December 12, 2008 Is there any way to solve the problem without un-installing the baby filter?And how should I configure NOrton Internet Security 2009 Anti-Spam or how can I un-install it. And what should I do for folder guard, how to configure it with the ut folders. Link to comment Share on other sites More sharing options...
moogly Posted December 12, 2008 Report Share Posted December 12, 2008 Before configuring NIS2009 & FG, try to disable/unistall BabyFilter just 5 min and see what is the consequence.Because if it's just the child filter that is the cause, you can use another one less intrusive with uT. Link to comment Share on other sites More sharing options...
tagtail072293 Posted December 12, 2008 Report Share Posted December 12, 2008 Is there any child filer less intrusive with utorrent, I don't know of any other than cybersitter. Can you recommend a product for me..Thank you in advance! Link to comment Share on other sites More sharing options...
moogly Posted December 12, 2008 Report Share Posted December 12, 2008 Try W9 Web Protection, seems to be one of best.http://www1.k9webprotection.com/ Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.