I am getting numerous error readings on the two listed errors below:
"svchost.exe - Application Error"
The instruction at "0x009z96bc" referenced memory at "0x00000000". The memory could not be "written".
Click on OK to terminate the program
Click on CANCEL to debug the program
*Clicking on OK or Cancel does not correct the problem.
"Data Execution Pretention - Microsoft Windows"
To help protect your computer, Windows has closed this program.
Name: Generic Host process for Win32 Services
Publisher: Microsoft Corporation
*I tell this message to "Close Message" and it pops up repeatedly. I have to leave the window open and move it over to the far side of the monitor out of sight in order to continue working.
I have done web searches on the above listed errors and have found no help. I have the current releases of AdAware, Spybot Search & Destroy, and Spyguard on the computer. I also run AVG Virus protetion and all my updates are current and the scans are clean.
Posted below are my HiJack this logs and my AdAware Log. All help is greatly appreciated and thanks in advance.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Logfile of HijackThis v1.99.1
Scan saved at 3:06:22 PM, on 9/4/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\atiptaxx.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\ahead\InCD\InCD.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\system32\dumprep.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\SpywareGuard\sgmain.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\Program Files\SpywareGuard\sgbhp.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft Office\OFFICE11\POWERPNT.EXE
C:\WINDOWS\system32\HPZinw12.exe
C:\Program Files\hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/.../search/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/...//www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.rr.com/flash/index.cfm
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/...//www.yahoo.com
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [DXDllRegExe] C:\WINDOWS\system32\dxdllreg.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [{1290A33C-85F5-4164-A1BE-7DD299D4986A}] "C:\Program Files\CyberLink\PowerBackup\PBKScheduler.exe"
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet
O4 - HKCU\..\Run: [Weather] C:\PROGRA~1\AWS\WEATHE~1\Weather.exe 1
O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Event Planner Reminders Tray Icon.lnk = C:\Sierra\Planner\PLNRnote.exe
O4 - Global Startup: Forget Me Not.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5co...b?1115761032163
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://www.popcap.com/games/popcaploader_v6.cab
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
ArchiveData(auto-quarantine- 2005-09-04 14-33-16.bckp)
Referencefile : SE1R64 31.08.2005
======================================================
TRACKING COOKIE
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[0]=IECache Entry : Cookie:jean leblanc@tribalfusion.com/
obj[1]=IECache Entry : Cookie:jean leblanc@perf.overture.com/
obj[2]=IECache Entry : Cookie:jean leblanc@trafficmp.com/
obj[3]=IECache Entry : Cookie:jean leblanc@z1.adserver.com/
obj[4]=IECache Entry : Cookie:jean leblanc@ehg-knightridder.hitbox.com/
obj[5]=IECache Entry : Cookie:jean leblanc@ehg-aarp.hitbox.com/
obj[6]=IECache Entry : Cookie:jean leblanc@sel.as-us.falkag.net/
obj[7]=IECache Entry : Cookie:jean leblanc@zedo.com/
obj[8]=IECache Entry : Cookie:jean leblanc@ads.pointroll.com/
obj[9]=IECache Entry : Cookie:jean leblanc@247realmedia.com/
obj[10]=IECache Entry : Cookie:jean leblanc@ehg.hitbox.com/
obj[11]=IECache Entry : Cookie:jean leblanc@overture.com/
obj[12]=IECache Entry : Cookie:jean leblanc@stat.onestat.com/
obj[13]=IECache Entry : Cookie:jean leblanc@advertising.com/
obj[14]=IECache Entry : Cookie:jean leblanc@doubleclick.net/
obj[15]=IECache Entry : Cookie:jean leblanc@questionmarket.com/
obj[16]=IECache Entry : Cookie:jean leblanc@revenue.net/
obj[17]=IECache Entry : Cookie:jean leblanc@atdmt.com/
obj[18]=IECache Entry : Cookie:jean leblanc@mediaplex.com/
obj[19]=IECache Entry : Cookie:jean leblanc@realmedia.com/
obj[20]=IECache Entry : Cookie:jean leblanc@tripod.com/
obj[21]=IECache Entry : Cookie:jean leblanc@bravenet.com/
obj[22]=IECache Entry : Cookie:jean leblanc@iwon.com/
obj[23]=IECache Entry : Cookie:jean leblanc@data.coremetrics.com/
obj[24]=IECache Entry : Cookie:jean leblanc@2o7.net/
obj[25]=IECache Entry : Cookie:jean leblanc@ehg-rr.hitbox.com/
obj[26]=IECache Entry : Cookie:jean leblanc@imrworldwide.com/cgi-bin
obj[27]=IECache Entry : Cookie:jean leblanc@live365.com/
obj[28]=IECache Entry : Cookie:jean leblanc@edge.ru4.com/
obj[29]=IECache Entry : Cookie:jean leblanc@centrport.net/
obj[30]=IECache Entry : Cookie:jean leblanc@servedby.advertising.com/
obj[31]=IECache Entry : Cookie:jean leblanc@statcounter.com/
obj[32]=IECache Entry : Cookie:jean leblanc@statse.webtrendslive.com/
obj[33]=IECache Entry : Cookie:jean leblanc@casalemedia.com/
obj[34]=IECache Entry : Cookie:jean leblanc@bs.serving-sys.com/
obj[35]=IECache Entry : Cookie:jean leblanc@citi.bridgetrack.com/
obj[36]=IECache Entry : Cookie:jean leblanc@hitbox.com/
obj[37]=IECache Entry : Cookie:jean leblanc@fortunecity.com/
obj[38]=IECache Entry : Cookie:jean leblanc@fastclick.net/
obj[39]=IECache Entry : Cookie:jean leblanc@ehg-attworldnet.hitbox.com/
obj[40]=IECache Entry : Cookie:jean leblanc@as-us.falkag.net/
obj[41]=IECache Entry : Cookie:jean leblanc@mercury.bravenet.com/
obj[42]=IECache Entry : Cookie:jean leblanc@valueclick.com/
obj[43]=IECache Entry : Cookie:jean leblanc@serving-sys.com/
obj[44]=IECache Entry : Cookie:jean leblanc@ads.addynamix.com/
obj[45]=IECache Entry : Cookie:jean leblanc@server.iad.liveperson.net/
obj[46]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@2o7[1].txt
obj[47]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@advertising[1].txt
obj[48]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@atdmt[2].txt
obj[49]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@bravenet[1].txt
obj[50]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@citi.bridgetrack[2].txt
obj[51]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@doubleclick[1].txt
obj[52]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@ehg-rr.hitbox[2].txt
obj[53]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@fortunecity[1].txt
obj[54]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@hitbox[2].txt
obj[55]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@mediaplex[1].txt
obj[56]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@mercury.bravenet[1].txt
obj[57]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@realmedia[1].txt
obj[58]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@servedby.advertising[2].txt
obj[59]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@trafficmp[2].txt
obj[60]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@tribalfusion[2].txt
obj[61]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@tripod[1].txt
obj[62]=IECache Entry : C:\DOCUME~1\JEANLE~1\LOCALS~1\Temp\Cookies\jean leblanc@valueclick[1].txt