1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Help, Generic Host Process Win32

Discussion in 'Malware and Virus Removal Archive' started by RED2GAUGE, 2007/12/01.

  1. 2007/12/14
    RED2GAUGE

    RED2GAUGE Inactive Thread Starter

    Joined:
    2007/11/30
    Messages:
    12
    Likes Received:
    0
    followed the instructions and still persists.....no firewall, no ics, error message still there.
     
  2. 2007/12/15
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    Just wanted you to know I haven't forgotten about you. Still not quite sure what to try next. The WMI Diagnosis log you sent indicates that both ICS and Security Center are running, yet you report that they aren't. Confuses me a bit. :confused: Would you post the exact error messages you are getting please?

    Still getting the 'no active mixer device' error too? Check the Device Manager for errors.
     

  3. to hide this advert.

  4. 2007/12/15
    RED2GAUGE

    RED2GAUGE Inactive Thread Starter

    Joined:
    2007/11/30
    Messages:
    12
    Likes Received:
    0
    no worries about the response, im in no hurry.

    i still do get the "no active mixer ". i did check the Device Manager and no errors. I did not see any exclamation signs.

    but i think i ran WMI when the message did not appear. I can run WMI again when the message appears, if you want me to.

    Somehow the error message does not appear when i click on "log name" right away after restarting/starting my computer. But if i restart/start my computer and wait for some time to click on my "log name ", thats when i get the message. hopefully i am not confusing you with this paragraph.

    I can try to run WMI again when the error message pops up, just let me know.
     
  5. 2007/12/18
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    Please do run the WMI Diag utility again and send me the log file.

    Highlight and copy the contents of the code box below.

    Code:
    sc queryex sharedaccess> "%userprofile%\desktop\query.txt "
    echo.>> "%userprofile%\desktop\query.txt "
    sc qc sharedaccess>> "%userprofile%\desktop\query.txt "
    sc queryex wscsvc>> "%userprofile%\desktop\query.txt "
    echo.>> "%userprofile%\desktop\query.txt "
    sc qc wscsvc>> "%userprofile%\desktop\query.txt "
    sc queryex WinMgmt>> "%userprofile%\desktop\query.txt "
    echo.>> "%userprofile%\desktop\query.txt "
    sc qc WinMgmt>> "%userprofile%\desktop\query.txt "
    start notepad  "%userprofile%\desktop\query.txt "
    
    
    Click Start>Run and type cmd then hit enter to open a command window.
    Right click and select paste in the command window. If notepad doesn't open a text file named query.txt that was created on the desktop, hit enter 1 time and it should open. Close the command window and post the contents of query.txt here.
     
  6. 2007/12/21
    RED2GAUGE

    RED2GAUGE Inactive Thread Starter

    Joined:
    2007/11/30
    Messages:
    12
    Likes Received:
    0
    this query is when when32 is present.

    also did the wmi when win32 is present which i will send.


    SERVICE_NAME: sharedaccess
    TYPE : 20 WIN32_SHARE_PROCESS
    STATE : 1 STOPPED
    (NOT_STOPPABLE,NOT_PAUSABLE,IGNORES_SHUTDOWN)
    WIN32_EXIT_CODE : 1067 (0x42b)
    SERVICE_EXIT_CODE : 0 (0x0)
    CHECKPOINT : 0x0
    WAIT_HINT : 0x0
    PID : 0
    FLAGS :

    [SC] GetServiceConfig SUCCESS

    SERVICE_NAME: sharedaccess
    TYPE : 20 WIN32_SHARE_PROCESS
    START_TYPE : 2 AUTO_START
    ERROR_CONTROL : 1 NORMAL
    BINARY_PATH_NAME : C:\WINDOWS\system32\svchost.exe -k netsvcs
    LOAD_ORDER_GROUP :
    TAG : 0
    DISPLAY_NAME : Windows Firewall/Internet Connection Sharing (ICS)
    DEPENDENCIES : Netman
    : WinMgmt
    SERVICE_START_NAME : LocalSystem

    SERVICE_NAME: wscsvc
    TYPE : 20 WIN32_SHARE_PROCESS
    STATE : 1 STOPPED
    (NOT_STOPPABLE,NOT_PAUSABLE,IGNORES_SHUTDOWN)
    WIN32_EXIT_CODE : 1067 (0x42b)
    SERVICE_EXIT_CODE : 0 (0x0)
    CHECKPOINT : 0x0
    WAIT_HINT : 0x0
    PID : 0
    FLAGS :

    [SC] GetServiceConfig SUCCESS

    SERVICE_NAME: wscsvc
    TYPE : 20 WIN32_SHARE_PROCESS
    START_TYPE : 2 AUTO_START
    ERROR_CONTROL : 1 NORMAL
    BINARY_PATH_NAME : C:\WINDOWS\System32\svchost.exe -k netsvcs
    LOAD_ORDER_GROUP :
    TAG : 0
    DISPLAY_NAME : Security Center
    DEPENDENCIES : RpcSs
    : winmgmt
    SERVICE_START_NAME : LocalSystem

    SERVICE_NAME: WinMgmt
    TYPE : 20 WIN32_SHARE_PROCESS
    STATE : 4 RUNNING
    (STOPPABLE,PAUSABLE,ACCEPTS_SHUTDOWN)
    WIN32_EXIT_CODE : 0 (0x0)
    SERVICE_EXIT_CODE : 0 (0x0)
    CHECKPOINT : 0x0
    WAIT_HINT : 0x0
    PID : 3284
    FLAGS :

    [SC] GetServiceConfig SUCCESS

    SERVICE_NAME: WinMgmt
    TYPE : 20 WIN32_SHARE_PROCESS
    START_TYPE : 2 AUTO_START
    ERROR_CONTROL : 0 IGNORE
    BINARY_PATH_NAME : C:\WINDOWS\system32\svchost.exe -k netsvcs
    LOAD_ORDER_GROUP :
    TAG : 0
    DISPLAY_NAME : Windows Management Instrumentation
    DEPENDENCIES : RPCSS
    SERVICE_START_NAME : LocalSystem
     
  7. 2008/01/12
    mamacita

    mamacita Inactive

    Joined:
    2008/01/12
    Messages:
    2
    Likes Received:
    0
    HELP! adware win32 virtuemode

    for the last week my comp has been screwing up i scanned it with the anti virus and it shows that adware win32 virtumonde is attached to some of my files and programs. i cant disinfect the problem but i also dont want to delete it as it may delete the file and not making the programs work..
    what should i do?
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.