Jump to content
Sign in to follow this  
Superior

Generic Host Process For Win32 Services

Recommended Posts



Bila aku online, dalam 5-10minit, skrin kat atas ni akan keluar, internet aku akan putus, tapi connection masih ada(icon connection kat jam masih ada tapi takleh nak disconnect). Utk main internet semula, aku kena restart balik pc. (HDD 320GB)

Aku dah format pc banyak kali dah drive C ni, & install Windows XP.

Rasanya ada virus ke spyware bertapak dalam partition D aku ke? Dah guna AV, antispyware banyak dah ni.. dah buang semua tapi masih ada.

Yang herannya bila aku pakai hdd lain(HDD 40GB) sbg primary, n jadikan HDD yang kena ni (HDD 320GB) jadi slave.. Ok je tenet aku main..

Tolong la.. Jap lagi tenet aku putus ni.

tgk.. kan dah putus.. Edited by Superior

Share this post


Link to post
Share on other sites
Ok ni hasil aku guna Hijackthis. save log.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:38:25 AM, on 11/26/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\LimeWire\LimeWire.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\PROGRA~1\AVG\AVG8\aAvgApi.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Smapp] C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Startup: LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{52080555-A534-4200-8D0A-BA1F1FE3F321}: NameServer = 202.188.0.133 202.188.1.5
O17 - HKLM\System\CCS\Services\Tcpip\..\{94E1E31F-3DD5-4EA2-BB7E-3245699B9271}: NameServer = 202.188.1.5,202.188.0.133
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe

--
End of file - 5394 bytes

Share this post


Link to post
Share on other sites
QUOTE(kunyit09 @ Nov 26 2008, 02:05 PM) <{POST_SNAPBACK}>
heheheh..ni la kerja microsft...nak suruh guna ori....nak x nak,kena update windows...

download ni
http://www.microsoft.com/downloads/details...;displaylang=en


source:http://support.microsoft.com/kb/894391


ha lebih kurang kena download hotfix camtu jugak...tapi ak x sure, nanti ak rujuk balik, kiter kasi genuine kat dier huhu,

Share this post


Link to post
Share on other sites
Ok aku dah install bende tu.. tgk dan lihat.. bende tu datang ke tak jap lagi..

Share this post


Link to post
Share on other sites
Apsal masih ada lagi?

Kat pc lain aku guna cd XP yang sama ok je..

Tolong aku, otai2...

Share this post


Link to post
Share on other sites
Kalau repair, ape yg aku nak kena repair. apa command yang nak masukkan?

D:\COPY E:\I386\ntldr c: <--- jangan kata buat bende ni plak masa repair. NTLDR x missing pun..

IE8? Ada kena mengena ngan Internet Browser???

Share this post


Link to post
Share on other sites
TQ la.. Aku join lowyat May 2006.. Tu baru 1st posting aku.. Sebelum ni aku masuk Garage Sales, jadi kiriman mata tak tambah mcm kat sini Jual Beli.. Huhuhu.. Bedal la cakap omputih kat sana. Hehehehe..

Dah kat sini xde otai2..

BTW, tq kunyit...

Share this post


Link to post
Share on other sites
QUOTE(Superior @ Nov 26 2008, 11:24 AM) <{POST_SNAPBACK}>


Bila aku online, dalam 5-10minit, skrin kat atas ni akan keluar, internet aku akan putus, tapi connection masih ada(icon connection kat jam masih ada tapi takleh nak disconnect). Utk main internet semula, aku kena restart balik pc. (HDD 320GB)

Aku dah format pc banyak kali dah drive C ni, & install Windows XP.

Rasanya ada virus ke spyware bertapak dalam partition D aku ke? Dah guna AV, antispyware banyak dah ni.. dah buang semua tapi masih ada.

Yang herannya bila aku pakai hdd lain(HDD 40GB) sbg primary, n jadikan HDD yang kena ni (HDD 320GB) jadi slave.. Ok je tenet aku main..

Tolong la.. Jap lagi tenet aku putus ni.

tgk.. kan dah putus..


ko punye masalah sama cam aku punye dulu....try rujuk TOPIC NIE
apa yang perlu ko buat cume perlu ON Firewall kat control panel tue jer...... Edited by kecik-88

Share this post


Link to post
Share on other sites
QUOTE (Superior @ Nov 26 2008, 11:38 AM) <{POST_SNAPBACK}>
C:\PROGRA~1\AVG\AVG8\avgtray.exe

aku dah agak dah.mesti ada menatang ni jugak.pasal aku perasan same kes happend kat kustomer aku.1st bende ni ada kat dalam pc dia.AVG 8.0.teori aku

1)kena virus
2)OS vulnurable.mesti cd XP tahun bila ntah digunakan.

Share this post


Link to post
Share on other sites
Mungkin punca terjadinya masalah aku ni disebabkan oleh aku turn off firewall aku seperti yang dialami oleh kecik-88. aku ada turn off sebab thread ni.. http://forum.putera.com/tanya/t22189.html ada sorang tu kata kalau nak LAN antara 2 PC, turn off je firewall. So aku buat la mcm tu.. Lepas tu aku wat la connection ke internet. tak lama lepas tu masalah ni timbul.

Bila aku try cara naj2921, satu per satu.. aku dapat rasakan kali ini aku dapat online lama sikit. Connection internet sampai sekarang tak putus2. Dah sejam 3minit aku online ni.

So? conclusion dia? Bukan lah disebabkan aku pakai IE6 ke apa..

Btw, terima kasih semua yang sudi memberikan bantuan. Sayang korang... hahahahha..

Share this post


Link to post
Share on other sites
aliff92? Aku rasa dia ni baru 16thn ni sebab 92 tu merujuk thn lahir dia kot.. Banyak duit ko 16thn pakai Windows XP ori?? Ke ko ni anak Datuk?

Share this post


Link to post
Share on other sites
apalah
setakat cakap suruh pakai ori baik ko sponser kat membe membe
kalau aku kaya jgn kata window ori ,microsoft pun aku beli aku tukar jadi microsopan

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...
Sign in to follow this  

×
×
  • Create New...