Nibble Guru - Computing queries demystified Tuesday, December 02, 2008
Home
My Account / Register
Login / Logout
Post your Problem!
Search

About Us
Contact Us



List Home > Operating System > Windows NT/2000/XP/2003 >   [ Post New Problem ]

Welcome back !
TrackingID : 519
Posted : Thursday, April 15th, 2004 01:47:39 AM
By : k0rny3
services.exe causing major problem!Configuration:
Hi!
I have a real annoying problem since 2 days.
everytime i am connected to the internet (at least the problem only occured everytime i was connecte to it - so i suppose it has something in concern with that) i get the message that i should save all my data because windows is about to shutdown due to an unexpected termination of services.exe through NT-Autority ... it also sais something about Status-Code 128. sometimes it happens after like 5 minutes iam connected to the net sometimes it happens after ~2 hours.
i know that this error occured for some people back in the days when the blaster worm was floating around, but i guess that doesnt concern me now ... even though i downloaded an installed the security patch from MS for that problem but it didnt help.
it also seems only to happen in certain situations ... for instance in never happened yet when i was just browsing th net with IE but it happened several times by using peer-to-peer download software like overnet or when using programs like mIRC or when playing a game over the net before. but this also might be just some stupid coincidence.
so if anyone has any other helpful advice i would really appreciate it ... my english isnt that good so i appologoize for any mistakes and misunderstandings in advance.
below is my hijackthis-log maybe it helps in some way.
thanks in advance!
bye,
k0rny

HJT-LOG:
--------
Logfile of HijackThis v1.97.7
Scan saved at 20:58:29, on 15.04.2004
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:WINNTSystem32smss.exe
C:WINNTsystem32winlogon.exe
C:WINNTsystem32services.exe
C:WINNTsystem32lsass.exe
C:WINNTsystem32svchost.exe
C:ProgrammeGemeinsame DateienSymantec SharedccSetMgr.exe
C:ProgrammeGemeinsame DateienSymantec SharedccEvtMgr.exe
C:WINNTsystem32spoolsv.exe
C:ProgrammeGemeinsame DateienSymantec SharedccProxy.exe
C:WINNTSystem32CTSvcCDA.exe
C:WINNTSystem32svchost.exe
C:ProgrammeNorton AntiVirusnavapsvc.exe
C:ProgrammeNorton AntiVirusAdvToolsNPROTECT.EXE
C:WINNTSystem32nvsvc32.exe
C:WINNTsystem32regsvc.exe
C:ProgrammeNorton AntiVirusSAVScan.exe
C:WINNTsystem32MSTask.exe
C:ProgrammeGemeinsame DateienSymantec SharedSNDSrvc.exe
C:WINNTSystem32WBEMWinMgmt.exe
C:WINNTExplorer.EXE
C:WINNTSystem32mspmspsv.exe
C:WINNTsystem32svchost.exe
C:WINNTsystem32devldr32.exe
C:ProgrammeCreativeSBLive2kAudioHQAHQTB.EXE
C:ProgrammeKarnaRazerrazertra.exe
C:WINNTSystem32spooldriversw32x863hpztsb05.exe
C:ProgrammeQuickTimeqttask.exe
C:ProgrammeJavaj2re1.4.2_01binjusched.exe
C:ProgrammeGemeinsame DateienSymantec SharedccApp.exe
C:ProgrammeDU MeterDUMeter.exe
C:WINNTsystem32internat.exe
C:ProgrammeSpamPalspampal.exe
C:WINNTsystem32wuauclt.exe
C:WINNTSystem32msdtc.exe
C:ProgrammeInternet Exploreriexplore.exe
C:ProgrammeInternet ExplorerIEXPLORE.EXE
E:STUFF_EhijackthisHijackThis.exe
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.inode.at/
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Window Title = Inode
R1 - HKCUSoftwareMicrosoftInternet Explorer,SearchAssistant = ,
R1 - HKCUSoftwareMicrosoftInternet Explorer,CustomizeSearch = ,
R3 - URLSearchHook: (no name) - {6CC1C918-AE8B-4373-A5B4-28BA1851E39A} - (no file)
O2 - BHO: (no name) - {029CA12C-89C1-46a7-A3C7-82F2F98635CB} - C:ProgrammeKontikibinbh304181.dll
O2 - BHO: Web assistant - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:ProgrammeGemeinsame DateienSymantec SharedAdBlockingNISShExt.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:ProgrammeNorton AntiVirusNavShExt.dll
O2 - BHO: (no name) - {BFC7ED33-6B94-4F52-84B7-1550EED04D1E} - C:WINNTsystem32ejuikqs.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:ProgrammeNorton AntiVirusNavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINNTSystem32msdxm.ocx
O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:ProgrammeGemeinsame DateienSymantec SharedAdBlockingNISShExt.dll
O4 - HKLM..Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINNTSystem32NvCpl.dll,NvStartup
O4 - HKLM..Run: [razertra] C:ProgrammeKarnaRazerrazertra.exe
O4 - HKLM..Run: [AudioHQ] C:ProgrammeCreativeSBLive2kAudioHQAHQTB.EXE
O4 - HKLM..Run: [UpdReg] C:WINNTUpdreg.exe
O4 - HKLM..Run: [Speed racer] C:ProgrammeCreativeSBLive2kPlayCenterCTSRReg.exe
O4 - HKLM..Run: [RealTray] C:ProgrammeRealRealPlayerRealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM..Run: [Go!Zilla dial-up fix] "D:ProgrammeGoZillaGo.exe" /FIXRAS
O4 - HKLM..Run: [nwiz] nwiz.exe /install
O4 - HKLM..Run: [HPDJ Taskbar Utility] C:WINNTSystem32spooldriversw32x863hpztsb05.exe
O4 - HKLM..Run: [NetPumper] "C:ProgrammeNetPumperNetPumperIEProxy.exe"
O4 - HKLM..Run: [QuickTime Task] "C:ProgrammeQuickTimeqttask.exe" -atboottime
O4 - HKLM..Run: [SunJavaUpdateSched] C:ProgrammeJavaj2re1.4.2_01binjusched.exe
O4 - HKLM..Run: [NeroFilterCheck] C:WINNTsystem32NeroCheck.exe
O4 - HKLM..Run: [ccApp] "C:ProgrammeGemeinsame DateienSymantec SharedccApp.exe"
O4 - HKLM..Run: [Advanced Tools Check] C:PROGRA~1NORTON~1AdvToolsADVCHK.EXE
O4 - HKLM..Run: [DU Meter] C:ProgrammeDU MeterDUMeter.exe
O4 - HKCU..Run: [internat.exe] internat.exe
O4 - Startup: SpamPal.lnk = C:ProgrammeSpamPalspampal.exe
O4 - Global Startup: Microsoft Office.lnk = C:ProgrammeMicrosoft OfficeOffice10OSA.EXE
O6 - HKCUSoftwarePoliciesMicrosoftInternet ExplorerRestrictions present
O6 - HKCUSoftwarePoliciesMicrosoftInternet ExplorerControl Panel present
O6 - HKCUSoftwarePoliciesMicrosoftInternet ExplorerToolbarsRestrictions present
O8 - Extra context menu item: Download with GetRight - C:ProgrammeGetRightGRdownload.htm
O8 - Extra context menu item: Download with Go!Zilla - file://C:PROGRA~1GO!ZILLAdownload-with-gozilla.html
O8 - Extra context menu item: Download with NetPumper - C:ProgrammeNetPumperAddUrl.htm
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:PROGRA~1MICROS~2Office10EXCEL.EXE/3000
O8 - Extra context menu item: Open with GetRight Browser - C:ProgrammeGetRightGRbrowse.htm
O9 - Extra 'Tools' menuitem: Sun Java Konsole (HKLM)
O9 - Extra button: Related (HKLM)
O9 - Extra 'Tools' menuitem: Show &Related Links (HKLM)
O9 - Extra button: Real.com (HKLM)
O12 - Plugin for .mp3: C:ProgrammeInternet ExplorerPLUGINSnpqtplugin4.dll
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://www.apple.com/qtactivex/qtplugin.cab
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
O16 - DPF: {2253F320-AB68-4A07-917D-4F12D8884A06} (ChainCast VMR Client Proxy) - http://64.124.45.181/downloads/ccpm_0237.cab
O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - http://www.cult3d.com/download/cult.cab
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} - http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://www.installengine.com/engine/isetup.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://g-cam.g-zone.at/activex/AxisCamControl.ocx
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?38092.4415162037
O16 - DPF: {AE1C01E3-0283-11D3-9B3F-00C04F8EF466} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O16 - DPF: {E0B795B4-FD95-4ABD-A375-27962EFCE8CF} (StarInstall Control) - http://install.serviceurl.de/StarInstall.ocx
O16 - DPF: {FDDBE2B8-6602-4AD8-946D-94C5A32FA6C1} (GINBILLARD8 Class) - http://66.98.132.156/g_bin_eng/billard8_2_0_0_14.cab
O16 - DPF: {FDDBE2B8-6602-4AD8-946D-94C5A32FA6C5} (GINSNOOKER Class) - http://66.98.132.156/g_bin_eng/snooker_2_0_0_14.cab
O17 - HKLMSystemCCSServicesTcpip..{5F20492F-AE9E-4C9F-B726-45D8FA22BC06}: NameServer = 195.34.131.180,195.34.133.11
O17 - HKLMSystemCCSServicesTcpip..{6F0598B0-3ED1-47D2-BDEA-133979B11DCB}: NameServer = 195.58.160.2 195.58.161.3

Operating System : Win2k - SP4
CPU/Processor : 512 MB Ram
RAM : 512 MB Ram

Related Problems :
Comments :
Re: services.exe causing major problem! by aarc03 on April 15th, 2004 09:06:00 AM
If you havent tried running a spyware program I would suggest that you do. Spy-Bot or Adaware works good and you can download for free. Or Pest Patrol is really good but you have to pay for that one. Also make sure your virus program is up to date.
When anybody uses file sharing online such as peer-to-peer you open yourself for all kinds of unwanted crap.
Re: services.exe causing major problem! by Anonymous Ghost on July 19th, 2004 01:09:43 PM
your gay
Re: services.exe causing major problem! by Anonymous Ghost on November 16th, 2004 03:39:47 PM
Go here for a solution at CastleCops:
http://computercops.biz/postp362423.html

Related Problems :
Post a Note :
UserName (not required in anonymous posts)
Password (not required in anonymous posts)
Post Anonymous (check this only if you wish to post anonymously.)
Subject
Comment (limited HTML allowed)



List Home > Operating System > Windows NT/2000/XP/2003 >   [ Post New Problem ]
Copyright © 2001-2008, Nibble Guru