Navigacija
Lista poslednjih: 16, 32, 64, 128 poruka.

Generic host process problem!!!

[es] :: Zaštita :: Generic host process problem!!!

[ Pregleda: 2852 | Odgovora: 11 ] > FB > Twit

Postavi temu Odgovori

Autor

Pretraga teme: Traži
Markiranje Štampanje RSS

mihajlovic novica
nezaposlen

Član broj: 189112
Poruke: 14
195.252.70.*

ICQ: 491939474


Profil

icon Generic host process problem!!!20.10.2009. u 11:51 - pre 176 meseci
ovako posle nekog vremena rada na kompu izbaci mi taj problem evo i loga:

Generic Host Process for Win32 Services has encountered a problem and needs to close. We are sorry for the inconvenience.

Error signature:

szAppName : svchost.exe szAppVer : 5.1.2600.5512
szModName : AcGenral.dll szModVer : 5.1.2600.5512 offset : 000116e2

The following files will be included in this error:
C:\DOCUME~1\milan\LOCALS~1\Temp\WERb46f.dir00\svchost.exe.mdmp
C:\DOCUME~1\milan\LOCALS~1\Temp\WERb46f.dir00\appcompat.txt


znaci kad se to desi kao da su mi se pobrisali sound driveri i nemam zvuk(dok ne restartujem komp)sta bi moglo biti problem i kako da ga resim??? koristim win xp sp 3 i nisam imao takvih problema do sada.
e sada ako imate jos neko pitanje pored ovoga necu moci da vam odgovorim jer cu biti na poslu do veceras.
hvala unapred
 
Odgovor na temu

Dashkes

Član broj: 90973
Poruke: 845



+27 Profil

icon Re: Generic host process problem!!!20.10.2009. u 11:55 - pre 176 meseci
Skinite program HijackThis.
Kada ga preuzmete, preimenujte fajl u bilo sta, npr. “destruct0.exe”. Pokrenite ga i kliknite “Do a system scan and save a logfile”. Taj log iskopirajte ovde.
 
Odgovor na temu

mihajlovic novica
nezaposlen

Član broj: 189112
Poruke: 14
195.252.70.*

ICQ: 491939474


Profil

icon Re: Generic host process problem!!!20.10.2009. u 12:00 - pre 176 meseci
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:59:22 PM, on 10/20/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18372)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\DU Meter\DUMeterSvc.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
c:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Program Files\LClock\LClock.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\DU Meter\DUMeter.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Digsby\lib\digsby-app.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/*http://www.yahoo.com/ext/search/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbox.digsby.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://searchbox.digsby.com/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: StylerToolBar - {D2F8F919-690B-4EA2-9FA7-A203D1E04F75} - C:\Program Files\Styler\TB\StylerTB.dll
O4 - HKLM\..\Run: [LClock] C:\Program Files\LClock\LClock.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [SoftickPPP] "C:\Program Files\Softick\PPP\Bin\PPPGate.exe"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKCU\..\Run: [DU Meter] C:\Program Files\DU Meter\DUMeter.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O4 - Startup: digsby.lnk = C:\Program Files\Digsby\digsby.exe
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file:///C:/Program%20Files/Chessmaster%20Challenge/Images/stg_drm.ocx
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file:///C:/Program%20Files/Chessmaster%20Challenge/Images/armhelper.ocx
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia....ockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{BFFD36EB-35F3-4E7C-81FD-B0E545DCA425}: NameServer = 10.10.2.69,10.10.2.79
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: DU Meter Service (DUMeterSvc) - Hagel Technologies Ltd - C:\Program Files\DU Meter\DUMeterSvc.exe
O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Update Service (gupdate1c9a989fa518a12) (gupdate1c9a989fa518a12) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe

--
End of file - 7091 bytes
 
Odgovor na temu

magna86
Anti Malware Fighter

Član broj: 189287
Poruke: 557

Sajt: www.mycity.rs/Ambulanta


+16 Profil

icon Re: Generic host process problem!!!20.10.2009. u 19:11 - pre 176 meseci
baci pogled i skini update...mozda resi problem...ako ne ..cekaj dalje upute moderatora

http://support.microsoft.com/kb/894391
 
Odgovor na temu

mihajlovic novica
nezaposlen

Član broj: 189112
Poruke: 14
195.252.70.*

ICQ: 491939474


Profil

icon Re: Generic host process problem!!!21.10.2009. u 01:18 - pre 176 meseci
skinuo sam update i probao da instaliram ali mi je prekinuo instalaciju i rekao mi da je verzija mog vindowsa vec update-ovana i kao sto rekoh u prvom postu imam service pack 3,tako da videcu sta ce dashkes da kaze ako me nije zaboravio...
 
Odgovor na temu

Dashkes

Član broj: 90973
Poruke: 845



+27 Profil

icon Re: Generic host process problem!!!21.10.2009. u 07:42 - pre 176 meseci
Nisam, nisam nikako. :)
Log deluje cist.
• Preuzmite i instalirajte program Malwarebytes` Anti-Malware - http://www.malwarebytes.org/mbam-download.php
• Pokrenite ga i izvrsite update(Update > Check for Updates) i po zavrsetku potvrdite sa OK.
• Posle update-a odaberi Scanner, oznacite Perform full scan i pritisnite Scan.
• Kada se skeniranje zavrsi pritisnite OK, pa Show Results da vidite izvestaj.
• Proverite da li su svi pronadjeni fajlovi stiklirani(ako nisu selektujte ih), pritisnite Remove Selected i potvrdite sa OK.
• Program ce vas upitati da restartujes racunar i vi to potvrdite.
• Takodje posle ukljanjanje malware-a sa racunara dobicete log fajl(izvestaj) koji cete iskopirati ovde.
 
Odgovor na temu

acoobradovic

Član broj: 65293
Poruke: 133
*.crnagora.net.



+1 Profil

icon Re: Generic host process problem!!!21.10.2009. u 08:56 - pre 176 meseci
Osim apdejta KB894391 treba instalirati i KB921883 da bi se sprijecio taj problem, mada ako vec imate service pack 3 trebalo bi da su vec ukljuceni u njega.U svakom slucaju pokusajte da reinstalirate te zakrpe iako prijavljuje da su vec instalirane. Ako se posle skeniranja sa malwarebytes-om pokaze da je racunar cist onda mozete da pokusate da reinstalirate zvucnu karticu sa novijim drajverom koji ce biti digitaly signed od microsoft-a. Jel se gubi mrezna konekcija kad se desi taj problem?
 
Odgovor na temu

mihajlovic novica
nezaposlen

Član broj: 189112
Poruke: 14
195.252.70.*

ICQ: 491939474


Profil

icon Re: Generic host process problem!!!21.10.2009. u 11:37 - pre 176 meseci
@acobradovic ne gubi se konekcija . . . evo upravo imam problem ali normalno sam prikacen na net...
inace probao sam i ovaj drugi update ali opet isto :S

[Ovu poruku je menjao mihajlovic novica dana 21.10.2009. u 12:48 GMT+1]
 
Odgovor na temu

mihajlovic novica
nezaposlen

Član broj: 189112
Poruke: 14
195.252.70.*

ICQ: 491939474


Profil

icon Re: Generic host process problem!!!22.10.2009. u 01:12 - pre 176 meseci
evo loga dashkes izvini sto kasnim radim ko crnac pa ne mogu da stignem na sve strane :)

Malwarebytes' Anti-Malware 1.41
Database version: 2775
Windows 5.1.2600 Service Pack 3

10/22/2009 2:10:00 AM
mbam-log-2009-10-22 (02-10-00).txt

Scan type: Full Scan (C:\|D:\|)
Objects scanned: 224219
Time elapsed: 1 hour(s), 18 minute(s), 50 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 3
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 3

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{500bca15-57a7-4eaf-8143-8c619470b13d} (Worm.Allaple) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Monopod (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> Quarantined and deleted successfully.

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
C:\System Volume Information\_restore{7825EB45-1877-41DD-BBB3-16EE175924DB}\RP394\A0135753.exe (Virus.Virut) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{7825EB45-1877-41DD-BBB3-16EE175924DB}\RP394\A0135754.exe (Virus.Virut) -> Quarantined and deleted successfully.
C:\WINDOWS\Tasks\{BB65B0FB-5712-401b-B616-E69AC55E2757}.job (Trojan.Downloader) -> Quarantined and deleted successfully.
 
Odgovor na temu

magna86
Anti Malware Fighter

Član broj: 189287
Poruke: 557

Sajt: www.mycity.rs/Ambulanta


+16 Profil

icon Re: Generic host process problem!!!23.10.2009. u 01:18 - pre 176 meseci
gadno...gadno...
mbam je detektovao izmedju ostalog i ovo:
Code:
Virus.Virut


Resetuj system restore i mozda ce detekcija nestati (mozda)


Korisna Tema:
http://www.elitesecurity.org/t...-Wolfenstein-kocenje-interneta

Poguraj Odmah Dr.Web ( tamo imas uputstvo ) i javi nam jel detektovao sta,ili jos bolje kopiraj nam njegov log.
Po zavrsetku procesa, klikni File > Save report list i sacuvaj log na Desktopu

Iskopiraj sadrsaj Dr.Web CureIt loga u temu na forumu.


[Ovu poruku je menjao magna86 dana 23.10.2009. u 02:29 GMT+1]

[Ovu poruku je menjao magna86 dana 23.10.2009. u 03:15 GMT+1]
 
Odgovor na temu

mihajlovic novica
nezaposlen

Član broj: 189112
Poruke: 14
195.252.70.*

ICQ: 491939474


Profil

icon Re: Generic host process problem!!!24.10.2009. u 16:31 - pre 176 meseci
e zaboravio sam da kazem da je posle skeniranja sa malwarebytes-om za sada sve ok nije izbacivalo gresku...nadam se da je resio problem,ako ne javicu.hvala svima na izdvojenom vremenu.
 
Odgovor na temu

magna86
Anti Malware Fighter

Član broj: 189287
Poruke: 557

Sajt: www.mycity.rs/Ambulanta


+16 Profil

icon Re: Generic host process problem!!!24.10.2009. u 16:52 - pre 176 meseci
odradi ti za svaki slucaj sad odmah scan sa Dr.Web-om...nista te nekosta...cisto da znas na cemu si
 
Odgovor na temu

[es] :: Zaštita :: Generic host process problem!!!

[ Pregleda: 2852 | Odgovora: 11 ] > FB > Twit

Postavi temu Odgovori

Navigacija
Lista poslednjih: 16, 32, 64, 128 poruka.