artgun Публикувано Май 24, 2007 Report Share Публикувано Май 24, 2007 Здравейте,Стана вече месец откакто по-долното съобщение ми трови живота : " Exception EAccessViolation in module services.exe at 0001EDC8. Access violation at address 0041EDC8 in module 'services.exe' Read of address 00000000 ... " Реших сам да се справям, дори "Help&Support" услугата активирах , обаче нещо не мога да се ориентирам какъв е точно проблема и вече се поуморих да се ровя из сайта на Чичко Бил - Помагайте ! Малко разяснения - ползвам Windows XP SP2Когато за пръв път се появи грешката си помислих, че е блокирана услуга от Comodo Antivirus или Comodo Firewall, които предният ден бях инсталирал, обаче не е.Сканирал съм с всички по известни анти-някакви си програми - няма гадини ( докато не се открият ) Благодаря за вниманието ! Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Май 24, 2007 Report Share Публикувано Май 24, 2007 Кога се появява това съобщение - при конкретни обстоятелства, когато му скимне и т.н.? Това съобщение на син екран ли е, системата забива ли, трябва ли рестарт? Опиши малко по-подробно проблема.Провери в Event Log-a за грешки. Сканирай дяловете си за грешки и ги поправи. Едно сканиране с Можеш да пуснеш и едно LOG-че на HijackThis 1.99.1 (208KB) тук, за да го видим. Може и да не помогне, но знае ли човек. Цитирай Link to comment Сподели другаде More sharing options...
artgun Публикувано Май 24, 2007 Author Report Share Публикувано Май 24, 2007 Кога се появява това съобщение - при конкретни обстоятелства, когато му скимне и т.н.? Това съобщение на син екран ли е, системата забива ли, трябва ли рестарт? Опиши малко по-подробно проблема.Провери в Event Log-a за грешки. Сканирай дяловете си за грешки и ги поправи. Едно сканиране с Можеш да пуснеш и едно LOG-че на HijackThis 1.99.1 (208KB) тук, за да го видим. Може и да не помогне, но знае ли човек. Голям съм заплес !Значи въпросното съобщение ( грешка ) се появява единствено и само след рестарт на системата и по никакъв начин ( поне според мен ) не влияе на стабилността и.Ето го и логчето : Logfile of Trend Micro HijackThis v2.0.0 (BETA)Scan saved at 23:02:06, on 24.5.2007 г.Platform: Windows XP SP2 (WinNT 5.01.2600)Boot mode: Normal Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\Common Files\Acronis\Schedule2\schedul2.exeD:\PROGRAMS\Comodo\CBOClean\BOCORE.exeD:\PROGRAMS\Comodo\Firewall\cmdagent.exeC:\Program Files\Comodo\common\CAVASpy\cavasm.exeC:\WINDOWS\system32\CTsvcCDA.exeD:\PROGRAMS\Diskeeper\DkService.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\system32\ctfmon.exeC:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXEC:\WINDOWS\system32\nvsvc32.exeC:\WINDOWS\system32\PSIService.exeD:\PROGRAMS\Alcohol 120\StarWind\StarWindService.exeC:\WINDOWS\system32\MsPMSPSv.exeC:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exeC:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exeC:\Program Files\DU Meter\DUMeter.exeD:\PROGRAMS\Comodo\Firewall\CPF.exeC:\Program Files\Comodo\VEngine\VEngine.exeC:\Program Files\Java\jre1.6.0_01\bin\jusched.exeD:\PROGRAMS\Comodo\Comodo AntiVirus\Cavaud.exeD:\PROGRAMS\My Folders\MyFolders.exeD:\PROGRAMS\Process Explorer 10.21 (kaldata.com)\procexp.exeD:\PROGRAMS\Comodo\Comodo AntiVirus\CMain.exeD:\PROGRAMS\Comodo\CBOClean\BOC423.EXED:\PROGRAMS\Maxthon2\Maxthon.exeD:\PROGRAMS\HiJackThis_v2.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - D:\PROGRAMS\Orbitdownloader\orbitcth.dllO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dllO2 - BHO: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLLO2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - D:\PROGRAMS\AiRoboForm\roboform.dllO2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dllO2 - BHO: IE 4.x-6.x BHO for Download Master - {9961627E-4059-41B4-8E0E-A7D6B3854ADF} - D:\PROGRAMS\DOWNLO~1\dmiehlp.dllO2 - BHO: ESigil Browser Helper - {A968A4B4-C492-4834-B651-17602C3885C8} - C:\Program Files\Comodo\VEngine\ESigil.dllO2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dllO3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - D:\PROGRAMS\AiRoboForm\roboform.dllO3 - Toolbar: DM Bar - {0E1230F8-EA50-42A9-983C-D22ABC2EED3C} - D:\PROGRAMS\Download Master\dmbar.dllO3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dllO3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLLO4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe"O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe /rO4 - HKLM\..\Run: [DU Meter] C:\Program Files\DU Meter\DUMeter.exeO4 - HKLM\..\Run: [COMODO Firewall Pro] "D:\PROGRAMS\Comodo\Firewall\CPF.exe" /backgroundO4 - HKLM\..\Run: [bOC-423] D:\PROGRAMS\Comodo\CBOClean\BOC423.exeO4 - HKLM\..\Run: [VEngine] C:\Program Files\Comodo\VEngine\VEngine.exeO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"O4 - HKLM\..\Run: [services] C:\RECYCLER\Services\services.exeO4 - HKLM\..\Run: [cnfgCav] "D:\PROGRAMS\Comodo\Comodo AntiVirus\CMain.exe"O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInitO4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exeO4 - HKUS\S-1-5-20\..\RunOnce: [nltide2] cmd.exe /C rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,L,,4,N (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-18\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')O4 - Global Startup: procexp.exe.lnk = D:\PROGRAMS\Process Explorer 10.21 (kaldata.com)\procexp.exeO4 - Global Startup: Sentinel.lnk = C:\Program Files\Runtimeware.com\Sentinel2\Sentinel.exeO8 - Extra context menu item: &Download by Orbit - res://D:\PROGRAMS\Orbitdownloader\orbitmxt.dll/201O8 - Extra context menu item: &Grab video by Orbit - res://D:\PROGRAMS\Orbitdownloader\orbitmxt.dll/204O8 - Extra context menu item: Customize Menu - file://D:\PROGRAMS\AiRoboForm\RoboFormComCustomizeIEMenu.htmlO8 - Extra context menu item: Do&wnload selected by Orbit - res://D:\PROGRAMS\Orbitdownloader\orbitmxt.dll/203O8 - Extra context menu item: Down&load all by Orbit - res://D:\PROGRAMS\Orbitdownloader\orbitmxt.dll/202O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\PROGRAMS\MICROS~1\OFFICE11\EXCEL.EXE/3000O8 - Extra context menu item: Fill Forms - file://D:\PROGRAMS\AiRoboForm\RoboFormComFillForms.htmlO8 - Extra context menu item: RoboForm TaskBar Icon - file://D:\PROGRAMS\AiRoboForm\RoboFormComTaskBarIcon.htmlO8 - Extra context menu item: RoboForm Toolbar - file://D:\PROGRAMS\AiRoboForm\RoboFormComShowToolbar.htmlO8 - Extra context menu item: Закачать ВСЕ при помощи Download Master - D:\PROGRAMS\Download Master\dmieall.htmO8 - Extra context menu item: Закачать при помощи Download Master - D:\PROGRAMS\Download Master\dmie.htmO9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dllO9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://D:\PROGRAMS\AiRoboForm\RoboFormComFillForms.htmlO9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://D:\PROGRAMS\AiRoboForm\RoboFormComFillForms.htmlO9 - Extra button: Customize - {320AF880-6646-11D3-ABEE-C5DBF3571F4E} - file://D:\PROGRAMS\AiRoboForm\RoboFormComCustomizeIEMenu.htmlO9 - Extra 'Tools' menuitem: Customize Menu - {320AF880-6646-11D3-ABEE-C5DBF3571F4E} - file://D:\PROGRAMS\AiRoboForm\RoboFormComCustomizeIEMenu.htmlO9 - Extra button: TaskBar - {320AF880-6646-11D3-ABEE-C5DBF3571F51} - file://D:\PROGRAMS\AiRoboForm\RoboFormComTaskBarIcon.htmlO9 - Extra 'Tools' menuitem: RoboForm TaskBar Icon - {320AF880-6646-11D3-ABEE-C5DBF3571F51} - file://D:\PROGRAMS\AiRoboForm\RoboFormComTaskBarIcon.htmlO9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://D:\PROGRAMS\AiRoboForm\RoboFormComShowToolbar.htmlO9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://D:\PROGRAMS\AiRoboForm\RoboFormComShowToolbar.htmlO9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dllO9 - Extra button: Download Master - {8DAE90AD-4583-4977-9DD4-4360F7A45C74} - D:\PROGRAMS\Download Master\dmaster.exeO9 - Extra 'Tools' menuitem: &Download Master - {8DAE90AD-4583-4977-9DD4-4360F7A45C74} - D:\PROGRAMS\Download Master\dmaster.exeO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRAMS\MICROS~1\OFFICE11\REFIEBAR.DLLO9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15026/CTSUEng.cabO16 - DPF: {0D6709DD-4ED8-40CA-B459-2757AEEF7BEE} (Dldrv2 Control) - http://download.gigabyte.com.tw/object/Dldrv.ocxO16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownlo.../sysreqlab2.cabO16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cabO16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15028/CTPID.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{CC1375FB-8312-4D3E-8E5C-CACC126C0DF0}: NameServer = 84.54.128.9 84.54.128.8O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLLO20 - Winlogon Notify: monln - C:\WINDOWS\SYSTEM32\monln.dllO22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dllO22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dllO23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exeO23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exeO23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - D:\PROGRAMS\AVG Anti-Spyware 7.5\guard.exeO23 - Service: BOCore - COMODO - D:\PROGRAMS\Comodo\CBOClean\BOCORE.exeO23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Unknown owner - C:\Program Files\Bonjour\mDNSResponder.exe (file missing)O23 - Service: Comodo Application Agent (CmdAgent) - COMODO - D:\PROGRAMS\Comodo\Firewall\cmdagent.exeO23 - Service: Comodo Anti-Virus and Anti-Spyware Service - Comodo Inc. - C:\Program Files\Comodo\common\CAVASpy\cavasm.exeO23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exeO23 - Service: Diskeeper - Diskeeper Corporation - D:\PROGRAMS\Diskeeper\DkService.exeO23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exeO23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exeO23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exeO23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exeO23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - D:\PROGRAMS\Alcohol 120\StarWind\StarWindService.exe --End of file - 11632 bytes Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Май 24, 2007 Report Share Публикувано Май 24, 2007 Дъългичък log. С тъмно синьо е моят коментар. Макар, че ти дадох версия 1.99.1, ти сканира с 2.00.0 Beta. Ето това трябва да е проблемът:O4 - HKLM\..\Run: [services] C:\RECYCLER\Services\services.exe Иначе можеш да махнеш и следните ако искаш или ако предното не помогне:O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe"O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"O4 - HKUS\S-1-5-18\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')O4 - Global Startup: procexp.exe.lnk = D:\PROGRAMS\Process Explorer 10.21 (kaldata.com)\procexp.exe [това не знам защо си го настроил да се стартира автоматично]...O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)...O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Unknown owner - C:\Program Files\Bonjour\mDNSResponder.exe (file missing)O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe [не ми се вижда особено важна]O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [също мисля, че не е нужна, но може и да греша в твоя случай]O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [отново считам за излишна]O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exeO23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - D:\PROGRAMS\Alcohol 120\StarWind\StarWindService.exe [не мисля, че ще навреди да се спре] После можеш да отвориш панела на услугите (Start -> Run -> пишеш services.msc -> OK) и услугатани Acronis Scheduler2 Service да я обърнеш на Manual. Цитирай Link to comment Сподели другаде More sharing options...
artgun Публикувано Май 24, 2007 Author Report Share Публикувано Май 24, 2007 Благодаря от сърце, Night_Raven ! Изтрих указаните от теб записи и стана, а после и услугите ошетах ( даже се поувлякох малко ) Благодаря ! Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Май 24, 2007 Report Share Публикувано Май 24, 2007 Оставил съм без да искам Acronis Scheduler2 Service в горния списък и не знам кое си направил първо - чистенето с HijackThis или ръчната промяна. Провери пак дали е на Manual и ако не е, я направи да бъде. Не е фатална, просто без нея няма да работи Acronis TrueImage. Цитирай Link to comment Сподели другаде More sharing options...
artgun Публикувано Май 24, 2007 Author Report Share Публикувано Май 24, 2007 Оставил съм без да искам Acronis Scheduler2 Service в горния списък и не знам кое си направил първо - чистенето с HijackThis или ръчната промяна. Провери пак дали е на Manual и ако не е, я направи да бъде. Не е фатална, просто без нея няма да работи Acronis TrueImage. Това го научих от неволя преди време - благодаря за напомнянето ! Цитирай Link to comment Сподели другаде More sharing options...
Препоръчан пост
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.