Over 1 million tech questions and answers.

DCOM Server Process Launcher Service terminated unexpectedly

Q: DCOM Server Process Launcher Service terminated unexpectedly

DCOM Server Process Launcher Service terminated unexpectedly
 
 
Here is the log from Security Check
 
 Results of screen317's Security Check version 0.99.79  
 Windows 7 Service Pack 1 x64 (UAC is enabled)  
``````````````Antivirus/Firewall Check:``````````````
 Windows Firewall Enabled!  
 WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````
 MVPS Hosts File  
 Spybot - Search & Destroy 
 Malwarebytes Anti-Malware version 1.75.0.1300  
 Adobe Reader XI  
 Google Chrome 32.0.1700.102  
 Google Chrome 32.0.1700.107  
````````Process Check: objlist.exe by Laurent````````
 Spybot Teatimer.exe is disabled!
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C: 3% 
````````````````````End of Log``````````````````````
 
 
Farbar Service Scanner Version: 02-02-2014
Ran by Administrator (administrator) on 10-02-2014 at 11:06:00
Running from "C:\Users\Administrator\Downloads"
Microsoft Windows 7 Home Premium  Service Pack 1 (X64)
Boot Mode: Normal
****************************************************************
 
Internet Services:
============
 
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.
 
 
Windows Firewall:
=============
 
Firewall Disabled Policy: 
==================
 
 
System Restore:
============
 
System Restore Disabled Policy: 
========================
 
 
Action Center:
============
 
 
Windows Update:
============
 
Windows Autoupdate Disabled Policy: 
============================
 
 
Windows Defender:
==============
 
Other Services:
==============
 
 
File Check:
========
C:\Windows\System32\nsisvc.dll => MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit
C:\Windows\System32\dhcpcore.dll => MD5 is legit
C:\Windows\System32\drivers\afd.sys
[2010-11-20 21:24] - [2010-11-20 21:24] - 0499712 ____A (Microsoft Corporation) D31DC7A16DEA4A9BAF179F3D6FBDB38C
 
C:\Windows\System32\drivers\tdx.sys => MD5 is legit
C:\Windows\System32\Drivers\tcpip.sys
[2010-11-20 21:24] - [2010-11-20 21:24] - 1924480 ____A (Microsoft Corporation) 509383E505C973ED7534A06B3D19688D
 
C:\Windows\System32\dnsrslvr.dll
[2010-11-20 21:24] - [2010-11-20 21:24] - 0183296 ____A (Microsoft Corporation) CD55F5355D8F55D44C9F4ED875705BD6
 
C:\Windows\System32\mpssvc.dll => MD5 is legit
C:\Windows\System32\bfe.dll => MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
C:\Windows\System32\SDRSVC.dll => MD5 is legit
C:\Windows\System32\vssvc.exe => MD5 is legit
C:\Windows\System32\wscsvc.dll => MD5 is legit
C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\System32\wuaueng.dll => MD5 is legit
C:\Windows\System32\qmgr.dll => MD5 is legit
C:\Windows\System32\es.dll => MD5 is legit
C:\Windows\System32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\System32\ipnathlp.dll => MD5 is legit
C:\Windows\System32\iphlpsvc.dll => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\rpcss.dll
[2010-11-20 21:24] - [2010-11-20 21:24] - 0512512 ____A (Microsoft Corporation) 232CF7EA48D5233623CD8BEB17C4DE99
 
 
 
**** End of log ****
 
 
MiniToolBox by Farbar  Version: 23-01-2014
Ran by Administrator (administrator) on 10-02-2014 at 11:07:04
Running from "C:\Users\Administrator\Downloads"
Microsoft Windows 7 Home Premium  Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************
 
========================= IE Proxy Settings: ============================== 
 
Proxy is not enabled.
No Proxy Server is set.
========================= Hosts content: =================================
 
 
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
 
There are 15279 more lines starting with "127.0.0.1"
 
========================= IP Configuration: ================================
 
NETGEAR WNDA4100 N900 Wireless Dual Band USB Adapter = Wireless Network Connection (Connected)
Hamachi Network Interface = Hamachi (Connected)
Realtek PCIe GBE Family Controller = Local Area Connection (Media disconnected)
 
 
# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
 
reset
set global icmpredirects=enabled
add route prefix=0.0.0.0/0 interface="Hamachi" nexthop=25.0.0.1 publish=Yes
set interface interface="Hamachi" forwarding=disabled advertise=disabled metric=9000 siteprefixlength=0 nud=disabled routerdiscovery=disabled managedaddress=disabled otherstateful=disabled weakhostsend=disabled weakhostreceive=disabled ignoredefaultroutes=disabled advertisedrouterlifetime=0 advertisedefaultroute=disabled currenthoplimit=0 forcearpndwolpattern=disabled enabledirectedmacwolpattern=disabled
 
 
popd
# End of IPv4 configuration
 
 
 
Windows IP Configuration
 
   Host Name . . . . . . . . . . . . : Kevin-PC
   Primary Dns Suffix  . . . . . . . : 
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
 
Wireless LAN adapter Wireless Network Connection:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : NETGEAR WNDA4100 N900 Wireless Dual Band USB Adapter
   Physical Address. . . . . . . . . : 28-C6-8E-A7-D0-DA
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::58b9:101d:a296:a22c%13(Preferred) 
   IPv4 Address. . . . . . . . . . . : 192.168.1.2(Preferred) 
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Monday, February 10, 2014 10:47:03 AM
   Lease Expires . . . . . . . . . . : Tuesday, February 11, 2014 10:47:07 AM
   Default Gateway . . . . . . . . . : 192.168.1.1
   DHCP Server . . . . . . . . . . . : 192.168.1.1
   DHCPv6 IAID . . . . . . . . . . . : 321439374
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-19-43-EE-B3-60-A4-4C-59-2B-2B
   DNS Servers . . . . . . . . . . . : 192.168.1.1
   NetBIOS over Tcpip. . . . . . . . : Enabled
 
Ethernet adapter Local Area Connection:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : storm.local
   Description . . . . . . . . . . . : Realtek PCIe GBE Family Controller
   Physical Address. . . . . . . . . : 60-A4-4C-59-2B-2B
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Ethernet adapter Hamachi:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Hamachi Network Interface
   Physical Address. . . . . . . . . : 7A-79-19-11-53-BE
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2620:9b::1911:53be(Preferred) 
   Link-local IPv6 Address . . . . . : fe80::d594:20e7:f292:c87e%14(Preferred) 
   IPv4 Address. . . . . . . . . . . : 25.17.83.190(Preferred) 
   Subnet Mask . . . . . . . . . . . : 255.0.0.0
   Lease Obtained. . . . . . . . . . : Monday, February 10, 2014 10:46:55 AM
   Lease Expires . . . . . . . . . . : Tuesday, February 10, 2015 10:49:09 AM
   Default Gateway . . . . . . . . . : 2620:9b::1900:1
                                       25.0.0.1
   DHCP Server . . . . . . . . . . . : 25.0.0.1
   DHCPv6 IAID . . . . . . . . . . . : 259684712
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-19-43-EE-B3-60-A4-4C-59-2B-2B
   DNS Servers . . . . . . . . . . . : fec0:0:0:ffff::1%1
                                       fec0:0:0:ffff::2%1
                                       fec0:0:0:ffff::3%1
   NetBIOS over Tcpip. . . . . . . . : Enabled
 
Tunnel adapter isatap.{2D0D22BC-CA93-406E-8FB8-F1E6CF2967A3}:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 9:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2001:0:9d38:6ab8:34f1:345c:9ea9:e37(Preferred) 
   Link-local IPv6 Address . . . . . : fe80::34f1:345c:9ea9:e37%12(Preferred) 
   Default Gateway . . . . . . . . . : 
   NetBIOS over Tcpip. . . . . . . . : Disabled
 
Tunnel adapter isatap.{359DB815-133B-40B9-9081-053731685636}:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Server:  UnKnown
Address:  192.168.1.1
 
Name:    google.com
Addresses:  2607:f8b0:4009:803::1009
 74.125.225.68
 74.125.225.71
 74.125.225.72
 74.125.225.73
 74.125.225.69
 74.125.225.70
 74.125.225.78
 74.125.225.66
 74.125.225.67
 74.125.225.65
 74.125.225.64
 
 
Pinging google.com [74.125.225.99] with 32 bytes of data:
Reply from 74.125.225.99: bytes=32 time=25ms TTL=51
Reply from 74.125.225.99: bytes=32 time=25ms TTL=51
 
Ping statistics for 74.125.225.99:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 25ms, Maximum = 25ms, Average = 25ms
Server:  UnKnown
Address:  192.168.1.1
 
Name:    yahoo.com
Addresses:  98.139.183.24
 206.190.36.45
 98.138.253.109
 
 
Pinging yahoo.com [98.139.183.24] with 32 bytes of data:
Reply from 98.139.183.24: bytes=32 time=72ms TTL=42
Reply from 98.139.183.24: bytes=32 time=105ms TTL=44
 
Ping statistics for 98.139.183.24:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 72ms, Maximum = 105ms, Average = 88ms
 
Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
 
Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
 13...28 c6 8e a7 d0 da ......NETGEAR WNDA4100 N900 Wireless Dual Band USB Adapter
 11...60 a4 4c 59 2b 2b ......Realtek PCIe GBE Family Controller
 14...7a 79 19 11 53 be ......Hamachi Network Interface
  1...........................Software Loopback Interface 1
 16...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 12...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
 17...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
===========================================================================
 
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0         25.0.0.1     25.17.83.190   9256
          0.0.0.0          0.0.0.0      192.168.1.1      192.168.1.2     25
         25.0.0.0        255.0.0.0         On-link      25.17.83.190   9256
     25.17.83.190  255.255.255.255         On-link      25.17.83.190   9256
   25.255.255.255  255.255.255.255         On-link      25.17.83.190   9256
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      192.168.1.0    255.255.255.0         On-link       192.168.1.2    281
      192.168.1.2  255.255.255.255         On-link       192.168.1.2    281
    192.168.1.255  255.255.255.255         On-link       192.168.1.2    281
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link      25.17.83.190   9256
        224.0.0.0        240.0.0.0         On-link       192.168.1.2    281
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link      25.17.83.190   9256
  255.255.255.255  255.255.255.255         On-link       192.168.1.2    281
===========================================================================
Persistent Routes:
  Network Address          Netmask  Gateway Address  Metric
          0.0.0.0          0.0.0.0         25.0.0.1  Default 
===========================================================================
 
IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
 14   9020 ::/0                     2620:9b::1900:1
  1    306 ::1/128                  On-link
 12     58 2001::/32                On-link
 12    306 2001:0:9d38:6ab8:34f1:345c:9ea9:e37/128
                                    On-link
 14    276 2620:9b::/96             On-link
 14    276 2620:9b::1911:53be/128   On-link
 14    276 fe80::/64                On-link
 13    281 fe80::/64                On-link
 12    306 fe80::/64                On-link
 12    306 fe80::34f1:345c:9ea9:e37/128
                                    On-link
 13    281 fe80::58b9:101d:a296:a22c/128
                                    On-link
 14    276 fe80::d594:20e7:f292:c87e/128
                                    On-link
  1    306 ff00::/8                 On-link
 12    306 ff00::/8                 On-link
 14    276 ff00::/8                 On-link
 13    281 ff00::/8                 On-link
===========================================================================
Persistent Routes:
 If Metric Network Destination      Gateway
  0 4294967295 2620:9b::/96             On-link
  0   9000 ::/0                     2620:9b::1900:1
===========================================================================
========================= Winsock entries =====================================
 
Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
 
========================= Event log errors: ===============================
 
Application errors:
==================
Error: (02/10/2014 10:47:18 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (02/10/2014 10:43:05 AM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: mshtml.dll, version: 8.0.7601.17514, time stamp: 0x4ce7c7f0
Exception code: 0xc0000005
Fault offset: 0x0000000000108f21
Faulting process id: 0x354
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
 
Error: (02/10/2014 07:36:46 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (02/10/2014 07:33:19 AM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: mshtml.dll, version: 8.0.7601.17514, time stamp: 0x4ce7c7f0
Exception code: 0xc00000fd
Fault offset: 0x000000000035564e
Faulting process id: 0x350
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
 
Error: (02/10/2014 04:46:53 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (02/10/2014 04:42:34 AM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x0000000000792e8d
Faulting process id: 0x350
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
 
Error: (02/10/2014 01:31:44 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (02/10/2014 01:27:43 AM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x00000000013a2e8d
Faulting process id: 0x354
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
 
Error: (02/09/2014 11:06:46 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (02/09/2014 11:02:39 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x00000000005b2e8d
Faulting process id: 0x350
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3
 
 
System errors:
=============
Error: (02/10/2014 10:47:07 AM) (Source: Service Control Manager) (User: )
Description: The Power service terminated with the following error: 
%%4203
 
Error: (02/10/2014 10:45:09 AM) (Source: Service Control Manager) (User: )
Description: The Service Control Manager tried to take a corrective action (Reboot the machine) after the unexpected termination of the Plug and Play service, but this action failed with the following error: 
%%1190
 
Error: (02/10/2014 10:45:08 AM) (Source: Service Control Manager) (User: )
Description: The Plug and Play service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Reboot the machine.
 
Error: (02/10/2014 10:45:08 AM) (Source: Service Control Manager) (User: )
Description: The DCOM Server Process Launcher service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Reboot the machine.
 
Error: (02/10/2014 07:36:14 AM) (Source: Service Control Manager) (User: )
Description: The Power service terminated with the following error: 
%%4203
 
Error: (02/10/2014 07:34:22 AM) (Source: Service Control Manager) (User: )
Description: The Service Control Manager tried to take a corrective action (Reboot the machine) after the unexpected termination of the Plug and Play service, but this action failed with the following error: 
%%1190
 
Error: (02/10/2014 07:34:22 AM) (Source: Service Control Manager) (User: )
Description: The Plug and Play service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Reboot the machine.
 
Error: (02/10/2014 07:34:22 AM) (Source: Service Control Manager) (User: )
Description: The DCOM Server Process Launcher service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Reboot the machine.
 
Error: (02/10/2014 04:46:50 AM) (Source: Service Control Manager) (User: )
Description: The Power service terminated with the following error: 
%%4203
 
Error: (02/10/2014 04:44:47 AM) (Source: Service Control Manager) (User: )
Description: The Service Control Manager tried to take a corrective action (Reboot the machine) after the unexpected termination of the Power service, but this action failed with the following error: 
%%1190
 
 
Microsoft Office Sessions:
=========================
Error: (02/10/2014 10:47:18 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (02/10/2014 10:43:05 AM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1mshtml.dll8.0.7601.175144ce7c7f0c00000050000000000108f2135401cf26650ad3457aC:\Windows\system32\svchost.exeC:\Windows\System32\mshtml.dll69aa446d-9272-11e3-8792-60a44c592b2b
 
Error: (02/10/2014 07:36:46 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (02/10/2014 07:33:19 AM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1mshtml.dll8.0.7601.175144ce7c7f0c00000fd000000000035564e35001cf264d59c612b1C:\Windows\system32\svchost.exeC:\Windows\System32\mshtml.dlle7072383-9257-11e3-a7c0-60a44c592b2b
 
Error: (02/10/2014 04:46:53 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (02/10/2014 04:42:34 AM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1unknown0.0.0.000000000c00000050000000000792e8d35001cf26321852e66dC:\Windows\system32\svchost.exeunknown0c85be83-9240-11e3-af1d-60a44c592b2b
 
Error: (02/10/2014 01:31:44 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (02/10/2014 01:27:43 AM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1unknown0.0.0.000000000c000000500000000013a2e8d35401cf261ddb489627C:\Windows\system32\svchost.exeunknownd3e9ab53-9224-11e3-a26c-60a44c592b2b
 
Error: (02/09/2014 11:06:46 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (02/09/2014 11:02:39 PM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc3c1unknown0.0.0.000000000c000000500000000005b2e8d35001cf25fe58ee22f7C:\Windows\system32\svchost.exeunknown900371be-9210-11e3-a1b2-60a44c592b2b
 
 
=========================== Installed Programs ============================
 
Adobe Reader XI (11.0.03) (Version: 11.0.03)
Age of Wonders: Shadow Magic
Akamai NetSession Interface
Cisco EAP-FAST Module (Version: 2.2.14)
Cisco LEAP Module (Version: 1.0.19)
Cisco PEAP Module (Version: 1.1.6)
DC Universe Online
Dynasty Warriors Online
EverQuest (Version: 1.0.3.183)
Fallout: New Vegas
GeForce Experience NvStream Client Components (Version: 1.6.28)
GOG.com Downloader version 3.6.0 (Version: 3.6.0)
GOG.com Heroes of Might and Magic 3
Google Chrome (Version: 32.0.1700.107)
Google Update Helper (Version: 1.3.22.3)
H&R Block Deluxe + Efile + State 2013 (Version: 13.05.5801)
H&R Block Minnesota 2013 (Version: 1.13.4101)
H&R Block Wisconsin 2013 (Version: 1.13.4001)
Heroes of Might and Magic 3 Complete (Version: 2.0.0.16)
League of Legends (Version: 3.0.0)
LogMeIn Hamachi (Version: 2.2.0.130)
Malwarebytes Anti-Malware version 1.75.0.1300 (Version: 1.75.0.1300)
Marvel Heroes
MechWarrior Online (Version: 1.4.1.0)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft XNA Framework Redistributable 4.0 (Version: 4.0.20823.0)
NETGEAR WNDA4100 Genie (Version: 1.2.0.10)
Neverwinter Nights 2 Complete (Version: 2.1.0.6)
NVIDIA 3D Vision Controller Driver 331.58 (Version: 331.58)
NVIDIA 3D Vision Driver 331.58 (Version: 331.58)
NVIDIA Control Panel 331.58 (Version: 331.58)
NVIDIA GeForce Experience 1.7.1 (Version: 1.7.1)
NVIDIA Graphics Driver 331.58 (Version: 331.58)
NVIDIA HD Audio Driver 1.3.26.4 (Version: 1.3.26.4)
NVIDIA Install Application (Version: 2.1002.140.952)
NVIDIA LED Visualizer 1.0 (Version: 1.0)
NVIDIA PhysX (Version: 9.13.0725)
NVIDIA PhysX System Software 9.13.0725 (Version: 9.13.0725)
NVIDIA ShadowPlay 9.3.21 (Version: 9.3.21)
NVIDIA Stereoscopic 3D Driver (Version: 7.17.13.3158)
NVIDIA Update 9.3.21 (Version: 9.3.21)
NVIDIA Update Components (Version: 9.3.21)
NVIDIA Virtual Audio 1.2.9 (Version: 1.2.9)
Path of Exile
Pdf995 (installed by H&R Block)
PdfEdit995 (installed by H&R Block)
Realtek High Definition Audio Driver (Version: 6.0.1.6526)
SHIELD Streaming (Version: 1.6.53)
Skype™ 6.11 (Version: 6.11.102)
Spotify (Version: 0.9.7.16.g4b197456)
Spybot - Search & Destroy (Version: 2.0.12)
Star Trek Online
Steam (Version: 1.0.0.0)
TEdit 3 (Version: 1.0.0.0)
Terraria
The Witcher Enhanced Edition Director's Cut (Version: 2.0.0.12)
Ventrilo Client (Version: 3.0.8)
WinRAR 5.00 (64-bit) (Version: 5.00.0)
XCOM: Enemy Unknown
X-COM: UFO Defense
 
========================= Memory info: ===================================
 
Percentage of memory in use: 31%
Total physical RAM: 8137.11 MB
Available physical RAM: 5579.99 MB
Total Pagefile: 16272.43 MB
Available Pagefile: 13355.63 MB
Total Virtual: 4095.88 MB
Available Virtual: 3968.75 MB
 
========================= Partitions: =====================================
 
1 Drive c: () (Fixed) (Total:931.41 GB) (Free:472.01 GB) NTFS
 
========================= Users: ========================================
 
User accounts for \\KEVIN-PC
 
Administrator            Guest                    UpdatusUser              
 
 
**** End of log ****
 
 
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
 
Database version: v2014.02.10.04
 
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 8.0.7601.17514
Administrator :: KEVIN-PC [administrator]
 
2/10/2014 11:11:37 AM
mbam-log-2014-02-10 (11-11-37).txt
 
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 231086
Time elapsed: 2 minute(s), 5 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 1
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|BackgroundContainer (PUP.Optional.Conduit) -> Data: "C:\Windows\SysWOW64\Rundll32.exe" "C:\Users\Administrator\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun -> Quarantined and deleted successfully.
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 0
(No malicious items detected)
 
(end)
 
 
Malwarebytes Anti-Rootkit BETA 1.07.0.1009
www.malwarebytes.org
 
Database version: v2014.02.10.04
 
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 8.0.7601.17514
Administrator :: KEVIN-PC [administrator]
 
2/10/2014 11:26:40 AM
mbar-log-2014-02-10 (11-26-40).txt
 
Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled: 
Objects scanned: 249283
Time elapsed: 9 minute(s), 29 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 1
C:\Windows\System32\rpcss.dll (Trojan.Patched) -> No action taken.
 
Physical Sectors Detected: 0
(No malicious items detected)
 
(end)
 
 
---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.07.0.1009
 
© Malwarebytes Corporation 2011-2012
 
OS version: 6.1.7601 Windows 7 Service Pack 1 x64
 
Account is Administrative
 
Internet Explorer version: 8.0.7601.17514
 
File system is: NTFS
Disk drives: C:\ DRIVE_FIXED
CPU speed: 3.093000 GHz
Memory total: 8532381696, free: 5991366656
 
Downloaded database version: v2014.02.10.04
Downloaded database version: v2013.12.18.01
Initializing...
======================
------------ Kernel report ------------
     02/10/2014 11:26:37
------------ Loaded modules -----------
\SystemRoot\system32\ntoskrnl.exe
\SystemRoot\system32\hal.dll
\SystemRoot\system32\kdcom.dll
\SystemRoot\system32\mcupdate_GenuineIntel.dll
\SystemRoot\system32\PSHED.dll
\SystemRoot\system32\CLFS.SYS
\SystemRoot\system32\CI.dll
\SystemRoot\system32\drivers\Wdf01000.sys
\SystemRoot\system32\drivers\WDFLDR.SYS
\SystemRoot\system32\drivers\ACPI.sys
\SystemRoot\system32\drivers\WMILIB.SYS
\SystemRoot\system32\drivers\msisadrv.sys
\SystemRoot\system32\drivers\pci.sys
\SystemRoot\system32\drivers\vdrvroot.sys
\SystemRoot\System32\drivers\partmgr.sys
\SystemRoot\system32\drivers\volmgr.sys
\SystemRoot\System32\drivers\volmgrx.sys
\SystemRoot\System32\drivers\mountmgr.sys
\SystemRoot\system32\drivers\iaStor.sys
\SystemRoot\system32\drivers\atapi.sys
\SystemRoot\system32\drivers\ataport.SYS
\SystemRoot\system32\drivers\msahci.sys
\SystemRoot\system32\drivers\PCIIDEX.SYS
\SystemRoot\system32\drivers\amdxata.sys
\SystemRoot\system32\drivers\fltmgr.sys
\SystemRoot\system32\drivers\fileinfo.sys
\SystemRoot\System32\Drivers\Ntfs.sys
\SystemRoot\System32\Drivers\msrpc.sys
\SystemRoot\System32\Drivers\ksecdd.sys
\SystemRoot\System32\Drivers\cng.sys
\SystemRoot\System32\drivers\pcw.sys
\SystemRoot\System32\Drivers\Fs_Rec.sys
\SystemRoot\system32\drivers\ndis.sys
\SystemRoot\system32\drivers\NETIO.SYS
\SystemRoot\System32\Drivers\ksecpkg.sys
\SystemRoot\System32\drivers\tcpip.sys
\SystemRoot\System32\drivers\fwpkclnt.sys
\SystemRoot\system32\drivers\volsnap.sys
\SystemRoot\System32\Drivers\spldr.sys
\SystemRoot\System32\drivers\rdyboost.sys
\SystemRoot\System32\Drivers\mup.sys
\SystemRoot\System32\drivers\hwpolicy.sys
\SystemRoot\System32\DRIVERS\fvevol.sys
\SystemRoot\system32\drivers\disk.sys
\SystemRoot\system32\drivers\CLASSPNP.SYS
\SystemRoot\system32\drivers\AtiPcie64.sys
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\drivers\VIDEOPRT.SYS
\SystemRoot\System32\drivers\watchdog.sys
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\system32\drivers\rdpencdd.sys
\SystemRoot\system32\drivers\rdprefmp.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\tdx.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\system32\drivers\afd.sys
\SystemRoot\System32\DRIVERS\netbt.sys
\SystemRoot\system32\DRIVERS\wfplwf.sys
\SystemRoot\system32\DRIVERS\pacer.sys
\SystemRoot\system32\DRIVERS\vwififlt.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\system32\DRIVERS\termdd.sys
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\drivers\nsiproxy.sys
\SystemRoot\system32\DRIVERS\mssmbios.sys
\SystemRoot\System32\drivers\discache.sys
\SystemRoot\System32\Drivers\dfsc.sys
\SystemRoot\system32\DRIVERS\blbdrive.sys
\SystemRoot\system32\DRIVERS\tunnel.sys
\SystemRoot\system32\DRIVERS\nvlddmkm.sys
\SystemRoot\System32\drivers\dxgkrnl.sys
\SystemRoot\System32\drivers\dxgmms1.sys
\SystemRoot\system32\DRIVERS\HDAudBus.sys
\SystemRoot\system32\DRIVERS\HECIx64.sys
\SystemRoot\system32\DRIVERS\usbehci.sys
\SystemRoot\system32\DRIVERS\USBPORT.SYS
\SystemRoot\system32\DRIVERS\asmtxhci.sys
\SystemRoot\system32\DRIVERS\Rt64win7.sys
\SystemRoot\system32\DRIVERS\intelppm.sys
\SystemRoot\system32\DRIVERS\wmiacpi.sys
\SystemRoot\system32\DRIVERS\CompositeBus.sys
\SystemRoot\system32\DRIVERS\AgileVpn.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\rassstp.sys
\SystemRoot\system32\DRIVERS\hamachi.sys
\SystemRoot\system32\DRIVERS\kbdclass.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\swenum.sys
\SystemRoot\system32\DRIVERS\ks.sys
\SystemRoot\system32\DRIVERS\umbus.sys
\SystemRoot\system32\drivers\nvvad64v.sys
\SystemRoot\system32\drivers\portcls.sys
\SystemRoot\system32\drivers\drmk.sys
\SystemRoot\system32\drivers\ksthunk.sys
\SystemRoot\system32\DRIVERS\usbhub.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\drivers\nvhda64v.sys
\SystemRoot\system32\drivers\RTKVHD64.sys
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\system32\DRIVERS\asmthub3.sys
\SystemRoot\System32\Drivers\crashdmp.sys
\SystemRoot\System32\Drivers\dump_iaStor.sys
\SystemRoot\System32\Drivers\dump_dumpfve.sys
\SystemRoot\system32\DRIVERS\monitor.sys
\SystemRoot\System32\TSDDD.dll
\SystemRoot\System32\cdd.dll
\SystemRoot\system32\drivers\luafv.sys
\SystemRoot\system32\drivers\WudfPf.sys
\SystemRoot\system32\DRIVERS\netr28ux.sys
\SystemRoot\system32\DRIVERS\vwifibus.sys
\SystemRoot\system32\DRIVERS\usbccgp.sys
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\system32\DRIVERS\lltdio.sys
\SystemRoot\system32\DRIVERS\nwifi.sys
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\system32\DRIVERS\rspndr.sys
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\system32\DRIVERS\kbdhid.sys
\SystemRoot\system32\drivers\HTTP.sys
\SystemRoot\system32\DRIVERS\bowser.sys
\SystemRoot\System32\drivers\mpsdrv.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\system32\DRIVERS\mrxsmb10.sys
\SystemRoot\system32\DRIVERS\mrxsmb20.sys
\SystemRoot\system32\drivers\peauth.sys
\SystemRoot\System32\Drivers\secdrv.SYS
\SystemRoot\System32\DRIVERS\srvnet.sys
\SystemRoot\System32\drivers\tcpipreg.sys
\SystemRoot\System32\DRIVERS\srv2.sys
\SystemRoot\System32\DRIVERS\srv.sys
\SystemRoot\system32\DRIVERS\asyncmac.sys
\??\C:\Windows\system32\drivers\mbamchameleon.sys
\??\C:\Windows\system32\drivers\MBAMSwissArmy.sys
\Windows\System32\ntdll.dll
\Windows\System32\smss.exe
\Windows\System32\apisetschema.dll
----------- End -----------
Done!
<<<1>>>
Upper Device Name: \Device\Harddisk0\DR0
Upper Device Object: 0xfffffa80076cb790
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Ide\IAAStorageDevice-1\
Lower Device Object: 0xfffffa80076ca050
Lower Device Driver Name: \Driver\iaStor\
<<<2>>>
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xfffffa80076cb790, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xfffffa800761ab90, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xfffffa80076cb790, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xfffffa80075f6960, DeviceName: Unknown, DriverName: \Driver\ACPI\
DevicePointer: 0xfffffa80076ca050, DeviceName: \Device\Ide\IAAStorageDevice-1\, DriverName: \Driver\iaStor\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Done!
Drive 0
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: B70BB8EB
 
Partition information:
 
    Partition 0 type is Primary (0x7)
    Partition is ACTIVE.
    Partition starts at LBA: 2048  Numsec = 204800
    Partition file system is NTFS
    Partition is bootable
 
    Partition 1 type is Primary (0x7)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 206848  Numsec = 1953314816
 
    Partition 2 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
Disk Size: 1000204886016 bytes
Sector size: 512 bytes
 
Scanning physical sectors of unpartitioned space on drive 0 (1-2047-1953505168-1953525168)...
Done!
Backup file found for a file C:\Windows\System32\rpcss.dll
Infected: C:\Windows\System32\rpcss.dll --> [Trojan.Patched]
Scan finished
=======================================
 
 
Removal queue found; removal started
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-0-2048-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-r.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\rpcss.dll-k.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\rpcss.dll-u.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\rpcss.dll-r.mbam...
Removal finished
 
Rkill 2.6.5 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
 http://www.bleepingcomputer.com/forums/topic308364.html
 
Program started at: 02/10/2014 11:38:13 AM in x64 mode.
Windows Version: Windows 7 Home Premium Service Pack 1
 
Checking for Windows services to stop:
 
 * No malware services found to stop.
 
Checking for processes to terminate:
 
 * No malware processes found to kill.
 
Checking Registry for malware related settings:
 
 * No issues found in the Registry.
 
Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
 
Performing miscellaneous checks:
 
 * No issues found.
 
Checking Windows Service Integrity: 
 
 * No issues found.
 
Searching for Missing Digital Signatures: 
 
 * C:\Windows\System32\rpcss.dll : 512,512 : 11/20/2010 09:24 PM : 232cf7ea48d5233623cd8beb17c4de99 [NoSig]
 +-> C:\Windows\winsxs\amd64_microsoft-windows-com-base-qfe-rpcss_31bf3856ad364e35_6.1.7601.17514_none_c7f0e16b547f887d\rpcss.dll : 512,000 : 11/20/2010 09:24 PM : 5c627d1b1138676c0a7ab2c2c190d123 [Pos Repl]
 
Checking HOSTS File: 
 
 * Cannot edit the HOSTS file.
 * Permissions Fixed. Administrators can now edit the HOSTS file.
 
 * HOSTS file entries found: 
 
  127.0.0.1 www.007guard.com
  127.0.0.1 007guard.com
  127.0.0.1 008i.com
  127.0.0.1 www.008k.com
  127.0.0.1 008k.com
  127.0.0.1 www.00hq.com
  127.0.0.1 00hq.com
  127.0.0.1 010402.com
  127.0.0.1 www.032439.com
  127.0.0.1 032439.com
  127.0.0.1 www.0scan.com
  127.0.0.1 0scan.com
  127.0.0.1 www.1000gratisproben.com
  127.0.0.1 1000gratisproben.com
  127.0.0.1 1001namen.com
  127.0.0.1 www.1001namen.com
  127.0.0.1 100888290cs.com
  127.0.0.1 www.100888290cs.com
  127.0.0.1 www.100sexlinks.com
  127.0.0.1 100sexlinks.com
 
  20 out of 15299 HOSTS entries shown.
  Please review HOSTS file for further entries.
 
Program finished at: 02/10/2014 11:38:29 AM
Execution time: 0 hours(s), 0 minute(s), and 15 seconds(s)
 

RELEVANCY SCORE 200
Preferred Solution: DCOM Server Process Launcher Service terminated unexpectedly

I recommend downloading and running DAP. It can help sort out any driver and firmware related issues on your system

It's worked out well for many of us in the past.

You can download it direct from this link http://downloaddap.org. (This link will open the download page of DAP so you can save a copy to your computer.)

A: DCOM Server Process Launcher Service terminated unexpectedly

You're infected with Zekos malware.It'll require elevated help. Please follow the instructions in THIS GUIDE starting at Step 6. If you cannot complete a step, skip it and continue.Once the proper logs are created, then make a NEW TOPIC and post it HERE. Please include a description of your computer issues, what you have done to resolve them, and a link to this topic.If you can produce at least some of the logs, then please create the new topic and explain what happens when you try to create the log(s) that you couldn't get. If you cannot produce any of the logs, then still post the topic and explain that you followed the Prep. Guide, were unable to create the logs, and describe what happens when you try to create the logs.It would be helpful if you post a note here once you have completed the steps in the guide and have started your topic in malware removal. Good luck and be patient.If HelpBot replies to your topic, PLEASE follow Step One so it will report your topic to the team members.

Read other 3 answers
RELEVANCY SCORE 189.6

Hello all.

I just bought myself Mass Effect over steam and im having this problem with my computer. I launch the game, play for 5-10 minutes and then i get that error:

"the dcom server process launcher service terminated unexpectedly" A couple of seconds later it will restart.

I have no idea as to how i would fix this, i dont think that i am infected with anything malicious as i have run malwarebytes and spybot s&d, bitdefender is my anti virus program.

Im running Windows 7 ultimate 64 bit.
Sorry if this is not the correct forum to post it in.

Read other answers
RELEVANCY SCORE 189.6

Dcom Server Process Launcher Service Terminated Unexpectedly, PC shuts down in 60 seconds after th error message. Randomly searches are being redirected.

Windows XP Home SP3

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:26:19 AM, on 2/7/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\Program Files\Lexmark 1200 Series\lxczbmon.exe
C:\Program Files\IObit\Advanced SystemCare 3\AWC.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG9\avgemc.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\NO... Read more

Read other answers
RELEVANCY SCORE 189.6

Hi,I'm new to this forum. I found bleepingcomputer.com from hijackthis after downloading the software. I have a really annoying problem. I have a Dell Optiplex 320 and running Windows XP Pro 2002 SP3. About two weeks ago, I started experiencing a problem within Google's search engine listings. Whenever I try to click a link on the search results, it redirects me to a url different from the url listed in the Google search results. (i.e.- The link shows www.bleepingcomputer.com and I'm redirected to www.joeblogsspyware.com) I've tried searching various forums to fix this issue with no luck. I also restored the default settings of IE with no luck. Just a few days ago, my computer started shutting down on me at random. I get an error "System Shutting Down. Shutdown Initiated By NT Authority System" and "DCOM Server Process Launcher Service Terminated Unexpectedly". The computer then shuts down after a 60 second countdown timer expires. I can stop it from shutting down if I open the following START/RUN/ and type "shutdown -a" then hit Enter.I've tried running PC Tools Spyware Doctor, Malwarebytes, Adaware, and McAffee and have not found any viruses. I also removed all programs from ADD/Remove programs that I don't use and don't recognize. I also removed all programs from my start-up that I didn't recognize. (However, there is one called dumprep 0 -u in my %systemroot% folder that keeps popping up in my start-u... Read more

A:DCOM Server Process Launcher Service Terminated Unexpectedly XP

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.Thanks and again sorry for the delay.We need to see some information about what is happening in your machine. Please perform the following scan:Download DDS by sUBs from one of the following links. Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explaination about the tool. No input is needed, the scan is running.Notepad will open with the results.Foll... Read more

Read other 2 answers
RELEVANCY SCORE 189.6

Dear All

I heard you are the ones can see the problem at a glance to HJT logs

--

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:10:16, on 22.06.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.20583)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\NetLimiter\NetLimiter.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\FreePDF_XP\fpassist.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\AirTies\ADSL Hizmet Programę\AirTies_util3.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\NVIDIA\NetworkAccessManager\bin\nSvcIp.exe
C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
... Read more

Read other answers
RELEVANCY SCORE 189.6

Hi,
I followed a previous thread where you noted:

Disable Timer - DONE

I installed PC TOOLS - Spyware Dr. and it is currently running. I am only at 31% and have the following 4 threats:

Adware Advertising
Application. tracking Cookie
Rogue Antispyware security tool
Trojan. Malscript
plus 28 infections.

I don't know how to find the report to send back to you....plus I don't know how to remove these.
Can you please help?

Much appreciated!
 

Read other answers
RELEVANCY SCORE 189.6

Everytime I turn on my Dell computer ( I have windows XP) I get an error stating "The system is shutting down. Please save all work in progress and log off. Any unsaved changes will be lost. The shut down was initiated by NT AUTHORITY/SYSTEM.

Message: Windows must now restart becuase the DCOM Services Process Launcher Service terminated unexpectedly."

I also get another pop-up message stating: "Generic host process for WIN32 services has encountered a problem and needs to close. We are sorry for the inconvenience."

I have downloaded and ran AVG, Malwarebytes' Anti-Malware and Ad-Adware. All programs found viruses/infections which I deleted but the problem is still occuring. Any suggestions?
 

Read other answers
RELEVANCY SCORE 189.6

I have a Windows XP desktop and currently use Firefox instead of IE. I run AVG and zonealarm . I am constantly being shutdown with the 1 minute warning. Attached is my hijack this log. Thank you in advance for your help.

Logfile of HijackThis v1.99.1
Scan saved at 3:32:31 PM, on 1/23/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16945)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\Webroot\Spy Sweeper\WRConsumerService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\AVG\AVG9\avgemc.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
... Read more

A:DCOM server process launcher service terminated unexpectedly

Read other 16 answers
RELEVANCY SCORE 189.6

Out of the blue I restarted my computer and started getting this message:
"DCOM server Process Launcher Service terminated unexpectedly."

Then the window counts down from 60 seconds and restarts. After searching, I've been able to stop the restarting and am considering disabling the DCOM service as others have mentioned, but I'm not sure if it's an essential "service" to keep my computer running normally. I ran HJT and here is the log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:48:39 PM, on 12/7/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Apoint\Apoint.exe
C:\Program Files\Sony\HotKey Utility\HKserv.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBKA.EXE
C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\Sony\HotKey Utility\HKWnd.e... Read more

Read other answers
RELEVANCY SCORE 189.6

Hello people, I am in desperate need of some help here! I am running windows 7 Home Edition SP1 64bit on a 6month old ASUS laptop pc.

I turned on my computer last night after not using it all day and found out that it is restarting automatically right after you login or even you do not login (even I don't type password to login, for 30 sec, the windows went to shutting down by itself).
Once I login, here is the message that I got randomly (when you reboot and login you will get one of that).

WINDOWS MUST NOW RESTART BECAUSE DCOM SERVER PROCESS LAUNCHER SERVICE HAS TERMINATED UNEXPECTEDLY

WINDOWS MUST NOW RESTART BECAUSE THE PLUG AND PLAY SERVICE TERMINATED UNEXPECTEDLY.

WINDOWS MUST NOW RESTART BECAUSE POWER PROCESS SERVICE HAS TERMINATED UNEXPECTEDLY.
but in my case, I can not do anything after login:
I have 10 sec. after the windows show up but I can not make anything run. I can't get into "cmd" or any antivirus program. They won't just open up. Then, the windows restart so I can't follow the steps in that post at all.

1. I got to "Safe mode" but again right after login. The message shows up then restart. even before it restart, i can't make anything run, ie. "cmd" won't open up.

2. Safe mode with command prompt has the same problem also.

3. Start up repair for windows 7 won't work also.

Any recommendations or suggestions would be greatly appreciated. Thank you.
 

Read other answers
RELEVANCY SCORE 189.6

Hello everyone,
I've seem to stumble this problem and i found your site on Google hopefully you guys can help me out Any who i thought this wasn't to serious at first, but now it happening quiet a bit at random times. So this happened about 3-4 times today according to event viewer and I'm really starting worry now. Could you guys please advise me what to do i want to reformat as a last resort if this cant be fixed thanks again!


DDS (Ver_10-03-17.01) - NTFSX64
Run by Johnny at 22:23:23.74 on Thu 07/29/2010
Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_20
Microsoft Windows 7 Professional 6.1.7600.0.1252.1.1033.18.4086.2390 [GMT -4:00]


============== Running Processes ===============

C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exeFaulting application name: svchost.exe_DcomLaunch, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x000007feed130118
Faulting process id: 0x2f4
Faulting application start time: 0x01cb2f7a7ae8deb0
Faulting application path: C:\Windows\system32\svchost.exe
Faulting module path: unknown
Report Id: 25b38777-9b76-11df-94d3-00241d8de11e
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Program Files (x86)\COMODO\COMODO livePCsupport\CLPSLS.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\Windows\... Read more

Read other answers
RELEVANCY SCORE 189.6

I have two laptops on my home network, which both seem to be infected with the same malware.
Both today received a message staying that the DCOM Server Process Launcher Service had terminated unexectedly and that my system would reboot in 60 seconds.

On laptop 1, I dumbly played along and let it reboot and now I can't get most of my automatic services started (tells me the file is missing) and I have no network connections either.

On laptop 2, which I booted when the first was not usable, gave me the same message, but after reading how you resolved this issue for someone else (on my phone), I quickly issued a shutdown -a to prevent it. So far so good, in that I still have internet here and that message hasn't come back.

Anyway, What do I have to do to restore these laptops to good health?
Thanks,
Doug

A:DCOM Server Process Launcher Service Terminated Unexpectedly

Hi Doug,

Do you have by any chance McAfee antivirus installed on those systems?

Download DDS and save it to your desktop from here or here or here.
Disable any script blocker, and then double click dds.scr to run the tool.When done, DDS will open two (2) logs: DDS.txt
Attach.txt

Save both reports to your desktop. Post them back to your topic.

---

Download GMER here by clicking download exe -button and then saving it your desktop:Double-click .exe that you downloaded
Click rootkit-tab, uncheck files option and then click scan.
Don't check
Show All
box while scanning in progress!
When scanning is ready, click Copy.
This copies log to clipboard
Post log (if the log is long, archive it into a zip file and attach instead of posting) in your reply.

Read other 2 answers
RELEVANCY SCORE 189.6

I have received the message "Windows must now restart because the DCOM Server Process Launcher service terminated unexpectedly." My computer just continually restarted and restarted. I was used another computer to research the issue and was able to enter : shutdown -a in the cmd to stop the computer from restarting. I joined this website and downloaded HJT and ran a log. This is my log please let me know how to resolve this issue.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:52:51 AM, on 12/7/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CSHelper.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Apoint\Apoint.exe
C:\WINDOWS\system32\hkc... Read more

A:DCOM Server Process Launcher service terminated unexpectedly

I have received the message "Windows must now restart because the DCOM Server Process Launcher service terminated unexpectedly." My computer just continually restarted and restarted. I was used another computer to research the issue and was able to enter : shutdown -a in the cmd to stop the computer from restarting. I joined this website and downloaded HJT and ran a log. This is my log please let me know how to resolve this issue.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:52:51 AM, on 12/7/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CSHelper.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Apoint\Apoint.exe
C:\WINDOWS\system32\hkc... Read more

Read other 1 answers
RELEVANCY SCORE 189.6

I keep getting this message and my system shuts down. ""NT Authority System windows must shut down DCOM Server Process Launcher service terminated unexpectedly""

I''m running windows xp,

here''s my log

Logfile of HijackThis v1.99.1
Scan saved at 5:31:42 AM, on 9/8/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Running processes:
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\MYWEBS~1\bar\1.bin\m3SrchMn.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2F1.EXE
C:\Program Files\ErrorSmart\ErrorSmart.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\Sony Vaio\Application Data\Smilebox\SmileboxTray.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Tablet.exe
C:\WINDOWS\system32\WTablet\TabUserW.exe
C:\WINDOWS\system32\Tablet.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\DllHost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\Sys... Read more

Read other answers
RELEVANCY SCORE 189.6

i know theres a thread for this on windows xp, but i wasnt sure if it would be different on vista.
basically this message about the DCOM comes up a lot and i dont know why.
also i get a message about the host process for windows service has stopped working.
then also the plug and play service has been terminated unexpectedly.
and right now norton keeps finding some kind of trojan. i may be rubbish with computers but i know thats bad.
oh also my computer crashed twice yesterday, like the screen just went black and blue.
iv also now done scans that have found things called networm and worm win and all sorts of other things. my laptop is pretty messed up at the moment!
please can someone help me!

i downloaded that hijack thing and here is the log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:25:15, on 25/01/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Windows\syste... Read more

Read other answers
RELEVANCY SCORE 189.6

System keeps shutting down with this message displayed.
Did "shutdown -a" to stop timer.
Ran Super Antispyware, Malewarebytes Anti-malware, Spybot S&D, AVG, and CCleaner.
Still having issues.
Below is my Hijack this log.
Any suggestions?
Thank you.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:51:05 PM, on 1/20/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18865)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\AVG\AVG9\avgtray.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\RPG\Tmp\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 -... Read more

Read other answers
RELEVANCY SCORE 189.6

Hi

When ever I start my Laptop, after 5 minutes a warning appears with a 60 seconds time saying " DCOM Server Process launcher service terminated unexpectedly" and my laptop shuts down.

I read the forums and did Run>cmd>shutdown -a

This helps, and warning message goes off. but whenever I restart my Laptop, message appears again.

Can someone tell me the solution.

Thanks
TAN

A:DCOM Server Process launcher service terminated unexpectedly

Hi -

Don't restart the laptop if possible.

Open notepad and copy/paste the text in the quotebox below into it:


Code:

@shutdown -a
Save this as fix.bat Choose to "Save type as - All Files"
It should look like this:

Each time your machine threatens to shutdown, double click on fix.bat & it shall abort the shutdown procedure. That should ease some of your current difficulties.

------------------------------------------------------------------------------------------


Download DDS and save it to your desktop from here, here or here.
Disable any script blocker, and then double click dds to run the tool.When done, DDS will open two (2) logs: DDS.txt
Attach.txt

Save both reports to your desktop.
-----------------------------------------------------

Please include the following logs in your thread:Contents of the DDS.txt posted as text in your reply
Attach the Attach.txt to your post by clicking the Manage Attachments button under Additonal Options>Attach Files on the composition page. Browse to where you saved the file, and click Upload.


Download GMER Rootkit Scanner from here to your desktop. It will be a randomly named executable.Before scanning, make sure all other running programs are closed and no other actions like a scheduled antivirus scan will occur while the scan is being performed. Do not use your computer for anything else during the scan.
Double click the exe file.
The program will begin to run, and perform ... Read more

Read other 19 answers
RELEVANCY SCORE 189.6

I sure hope someone can help. Have read the forum and have attached the hijackthis log. Please take a look. Any help in correcting this would be GREATLY appreciated!!!

Logfile of HijackThis v1.99.1
Scan saved at 1:51:40 PM, on 10/20/2008
Platform: Windows 2003 SP2 (WinNT 5.02.3790)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
D:\Program Files\VERITAS\Backup Exec\NT\beremote.exe
D:\Program Files\VERITAS\Backup Exec\NT\benetns.exe
C:\WINDOWS\system32\cisvc.exe
C:\windows\system32\export\OOCCSVC.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Dell\OpenManage\dataeng\bin\dcevt32.exe
C:\Program Files\Dell\OpenManage\dataeng\bin\dcstor32.exe
C:\WINDOWS\system32\Dfssvc.exe
C:\WINDOWS\System32\dns.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\inetsrv\inetinfo.exe
C:\WINDOWS\System32\ismserv.exe
C:\Program Files\Dell\OpenManage\Array Manager\mr2kserv.exe
C:\Program Files\Exchsrvr\bin\srsmain.exe
C:\Program Files\Microsoft SQL Server\MSSQL$BKUPEXEC\Binn\sqlservr.exe
C:\WINDOWS\system32\ntfrs.exe
C:\Program Files\Dell\OpenManage\oma\bin\omsad32.exe
C:\Program Files\Dell\OpenManage\iws\bin\win32\omaws32.exe
C:\WINDOWS\system32\tcpsvcs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System3... Read more

Read other answers
RELEVANCY SCORE 189.6

Cannot load windows xp. The message says "dcom server process launcher service terminated unexpectedly. Shutdown initiated..." and it gives a countdown. Then it restarts, takes a long time, and ultimately gives the same error message.
In am using Win xp-pro sp3 32-bit system and I do not have the original win xp install disk. I do have another win xp-pro install disk but when I put it in to boot up from it I cant find the recovery part.
P

A:dcom server process launcher service terminated unexpectedly

Hello and welcome to Bleeping Computer! I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.
We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.
To help Bleeping Computer better assist you please perform the following steps:
*************************************************** In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/531681 <<< CLICK THIS LINK
If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.
***************************************************If you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of t... Read more

Read other 2 answers
RELEVANCY SCORE 189.6

Hi, I'm new here so I appologize if I did this wrong. Over the past few days I've been getting errors messages that either say DCOM server process launcher service terminated unexpectedly or Plug and Play service terminated unexpectedly which restarts my computer. I've been going to the cmd prompt and putting shutdown -a to prolong it, but my audio stops working and so does control panel. Malwarebytes anti malware and AVG Antivirus didn't find anything, but tdsskiller says it's rpcss.dll which I can't delete since it's necessary for windows. Anyways, I was hoping I could get some help, here's my logs:
 
Rkill
Rkill 2.6.4 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
 http://www.bleepingcomputer.com/forums/topic308364.html
Program started at: 01/06/2014 10:44:45 PM in x64 mode.
Windows Version: Windows 7 Ultimate
Checking for Windows services to stop:
 * No malware services found to stop.
Checking for processes to terminate:
 * No malware processes found to kill.
Checking Registry for malware related settings:
 * No issues found in the Registry.
Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
Performing miscellaneous checks:
 * Windows Defender Disabled
   [HKLM\SOFTWARE\Microsoft\Windows Defender]
   "DisableAntiSpyware" = dword:00000001
Checking Windows Service Integrity:
 * Windows Defe... Read more

A:DCOM Server Process Launcher Service Terminated Unexpectedly

Hello and welcome to Bleeping Computer! I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.
We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.
To help Bleeping Computer better assist you please perform the following steps:
*************************************************** In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/519944 <<< CLICK THIS LINK
If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.
***************************************************If you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of t... Read more

Read other 2 answers
RELEVANCY SCORE 189.6

Hi. I had put myself down as intermediate but reading here I can see I am a beginner.

I get the DCOM server launcher message and a 60 second timeout. Aware how to stop the timeout. Have tried Malwarebytes and AVG version 9 to no avail. Here is my logfile. Please can you help? It would be much appreciated.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:43:29, on 30/01/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Samsung\Samsung EDS\EDSAgent.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Samsung\Samsung Battery Manager\BatteryManag... Read more

A:DCOM server process launcher service terminated unexpectedly

Read other 6 answers
RELEVANCY SCORE 187.6

Hello,

I was requesting Remote Assistance with Windows Live Messenger with my friend and when he accepted, this message came up. It restarts over and over again. It's been doing this every time I turn it on.
There is also another error but I have no idea what it is.
Heres a pic

Very annoying and I can't do anything with it. Help would be cool. Thanks.

A:[SOLVED] DCOM Server Process Launcher service terminated unexpectedly

HPDirector.exe is a file that is part of the HP Printer software. It tells you ink levels and you can clean the print heads here. Run the setup from the HP Printer Software disc again. If you no longer have the CD, download the software from HP's support/download drivers site. Just type in the model # of our printer to be taken to the drivers page.

Read other 7 answers
RELEVANCY SCORE 187.6

Hi, for awhile now, maybe 3 times a week, I've been getting system shutdown notices with a 1 minute countdown and the following dialogue box:

generic host process for win 32 services
system shutdown
this system is shutting down. this shutdown was initiated by
nt authority\system

also something about DCOM Server Process Launcher Service Terminated Unexpectedly

these shutdowns seem to occur spontaneously, I can't figure out what triggers them. Ad-Aware only found some cookies and nothing major during its last scan, and the problem persists. I just read about using start-->run "shutdown -a" to kill the countdown. here's my hjt log:

Logfile of HijackThis v1.99.1
Scan saved at 11:21:21 AM, on 3/14/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)

Running processes:
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDO... Read more

Read other answers
RELEVANCY SCORE 187.6

Running Windows XP, I get an error that reads "Generic Host Process for Win32 has encountered a problem and must close," then shortly after I get the error posted in the title. I've run "shutdown -a" to stop the timer and run HJT. Any help appreciated.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 1:58:44 PM, on 2/6/2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16981)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
c:\Program Files\Microsoft Security Essentials\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\WINDOWS\Explorer.EXE
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxper... Read more

Read other answers
RELEVANCY SCORE 187.6

Hi!  I just started getting an error message in an alert window:
 
"dcom server process launcher service terminated unexpectedly windows xp. The system is shutting down. Please save all work in process and log off (which it does not allow me to do). Any unsaved changes will be lost. This shut down was initiated by NT Authority DCOM server proces launcer service terminated unexpectedly."
 
My computer then shuts down.  It happens about every twenty minutes.  Thanks in advance for your help.  I really appreciate it.
 
Moderator Edit: Moved from the Malware logs forum due to the absence of any logs
Roger

A:dcom server process launcher service terminated unexpectedly windows xp

Thank you for moving this to the correct place.  I apologize for posting in the wrong place.  I would provide logs but now my computer will not boot and has a blank screen that reads:
"NTLDR is missing
Press CTRL+ALT+DEL to restart"
 
I am at a complete loss.  Thanks again!

Read other 79 answers
RELEVANCY SCORE 185.6

I believe I have somehow gotten some virus.
 
So the story is pretty short, I have just finished building this computer not even a week ago. And ever since the second day I've had it, Windows will popup with an error saying "windows must now restart because the DCOM service process launcher has terminated unexpectedly." I also may sometimes get the error but instead with plug and play service. I've been searching all over the web but cant seem to find a solution, I saw that many people with this problem ran combo fix, so i tried it after backing up my system.
 
 Thanks in advance to anyone who can help me! 
 
Heres the combo fix log:
 
ComboFix 14-01-08.03 - Kyle 01/10/2014  18:16:32.2.4 - x64
Microsoft Windows 7 Professional   6.1.7601.1.1252.1.1033.18.8099.6310 [GMT -5:00]
Running from: c:\users\Kyle\Downloads\ComboFix.exe
AV: AVG Internet Security 2014 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
FW: AVG Internet Security 2014 *Disabled* {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
SP: AVG Internet Security 2014 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\SysWow64\frapsvid.dll
.
.
(((((((((((((((((((((((((   Files Created from 2013-12-10 to 2014-01-10  )))))))))))))))))))))))))))))))
.
.
2... Read more

A:DCOM server process launcher service terminated unexpectedly, Forced Restarts

Nevermind, you may close this thread if you want the problem is solved!
 
I ran a scan with Malwarbytes anit-rootkit and it detected a patch in my rpcss.dll and removed it.

Read other 3 answers
RELEVANCY SCORE 185.6

Hi everyone, 
 
I am having some extremely annoying issues. I'm new to forum posting about computer problems so bare with me if I do anything wrong. 
 
First off, this error occurs very frequently, about once every 1.5 hours. It happens when I'm either playing games or browsing the web. Sometimes I come back and it restarted on it's own. I've ran Adware to see if there were any problems and it came up saying everything was clean. 
 
I have tried defragging my hard drive and even did a error-checking overnight hoping that it would fix it. 
 
Checking my even manager, it is constantly getting "critical errors" for ID41 - Kernal Power. I have looked online for a fix to this and it seems people that get helped, don't really find a solution (from my searching). If anyone can help, that would be greatly appreciated. 

A:dcom server process launcher service terminated unexpectedly and Plug and play

It sounds like you need a new power supply.
 
1. It isn't outputting enough watts for the system's demand.
2. It's failing at higher loads (gamming).

Read other 9 answers
RELEVANCY SCORE 185.6

Randomly getting a pop-up window stating DCOM Server Process Launcher Service terminated unexpectedly.  My computer then shuts down and immediately restarts.  Happens while gaming, surfing the internet, and while computer is on but not is use.  Have done the steps from: 
http://www.bleepingcomputer.com/forums/t/519518/windows-must-now-restart-because-the-dcom-server-process-terminated-unexpectedly/
 
Link to original thread:
http://www.bleepingcomputer.com/forums/t/523847/dcom-server-process-launcher-service-terminated-unexpectedly/

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium 
Boot Device: \Device\HarddiskVolume1
Install Date: 6/7/2013 2:39:28 PM
System Uptime: 2/10/2014 1:10:24 PM (1 hours ago)
.
Motherboard: ASUSTeK COMPUTER INC. |  | H61M-PLUS
Processor: Intel® Core™ i5-3350P CPU @ 3.10GHz | LGA1155 | 3101/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 931 GiB total, 471.681 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP64: 2/9/2014 9:00:49 PM - Scheduled Checkpoint
.
==== Installed Programs ======================
.
Adobe Reader XI (11.0.03)
Age of Wonders: Shadow Magic
Akamai NetSession Interface
Cisco EAP-FAST Module
Cisco LEAP Module
Cisco PEAP Module
DC Universe Online
Dynasty Warriors Online
Eve... Read more

A:DCOM Server Process Launcher Service terminated unexpectedly Windows 7 Logs

Hi and Please download Farbar Recovery Scan Tool and save it to your desktop.Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.Double-click to run it. When the tool opens click Yes to disclaimer.Press Scan button.It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.Type the following in the edit box on FRST, after "Search:".rpcss.dllIt then should look like:Search: rpcss.dllClick Search button and post the log (Search.txt) it makes on the USB drive in your next reply.

Read other 13 answers
RELEVANCY SCORE 185.6

Hello - hoping someone can help. I get an error that says Generic Host process for Win32 services. Then i get the DCOM server error and computer restarts. here is my hijack this log.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:59:47 PM, on 2/1/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\System32\hphmon05.exe
C:\HP\KBD\KBD.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Net... Read more

A:DCOM Server Process Launcher Service terminated unexpectedly (Hijackthis included)

Read other 9 answers
RELEVANCY SCORE 183.6

I have a problem that I have seen has occurred to others in this forum. I have tried to follow some of the advice, but without complete success.

About a week ago one of my PCs started showing this RUNDLL message on startup - "Error loading ruyopaku.dll" - and 10-15 minutes later the system would shut itself down. I would get the message "System Shutting Down. Shutdown Initiated By NT Authority System" and "DCOM Server Process Launcher Service Terminated Unexpectedly". The computer would then shut down after the 60 second countdown timer expired. For a while I was successful in stopping the shutdown by going to START/RUN/ and typing "shutdown -a". I ran an AVG antivirus scan and it found some things that I quarantined, but that did not solve the problem.

So on a recommendation from this forum, I downloaded, installed, and ran Malwarebytes which found quite a few additional viruses and trojans which I also quarantined. I no longer get the missing DLL message on startup, but the system continues to reboot itself and now even the "shutdown -a" does not stop it. I also tried hitting F8 on startup and selecting the option for "No automatic reboot on system failure" but that seems to have no effect either - the system continues to shut itself down and reboot, typically every 5 minutes or so. It's not enough time to do anything - download software, run a scan, etc.

So, the situation is that before I can downl... Read more

Read other answers
RELEVANCY SCORE 172.8

Hello,

I have been getting this error message: " DCOM Server Process Launcher Service terminated unexpectedly" with a 60 second timer, after which my computer restarts. I know how to stop the restart, however I think there are still some sort of virus' on my computer.

I have an XP system. Here is my Hijack Log.... Please help!

Thanks in advance =)
-Amy

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:17:20 PM, on 24/01/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\OpenCASE\OpenCASE Media Agent\MediaAgent.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG9\av... Read more

A:" DCOM Server Process Launcher Service terminated unexpectedly"

Please do not create multiple threads for the same problem.
Continue here: http://forums.techguy.org/malware-r...139-dcom-server-process-launcher-service.html
 

Read other 1 answers
RELEVANCY SCORE 172.8

Hello,

I have been getting this error message: " DCOM Server Process Launcher Service terminated unexpectedly" with a 60 second timer, after which my computer restarts. I know how to stop the restart, however I think there are still some sort of virus' on my computer.

I have an XP system. Here is my Hijack Log.... Please help!

Thanks in advance =)
-Amy

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:17:20 PM, on 24/01/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\OpenCASE\OpenCASE Media Agent\MediaAgent.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG9\av... Read more

Read other answers
RELEVANCY SCORE 172

Hi,

This message keeps coming up on my computer and causes it to turn off. I have tried reading other posts about what to do to stop this but I really don't understand much about computers at all and so none of it makes sense to me!

Could anyone help me by giving me simple steps on how to fix this problem?

Thank you!!

Sophie
 

Read other answers
RELEVANCY SCORE 170.8

Have Dell laptop with Windows Vista. Keep getting error "dcom server process launcher service terminated unexpectedly". After about a minute the system restarts. If I run "shutdown -a", I can stop the constant restarts. I've run a bunch of scans -- nothing found today. I installed malwarebytes and hijack this. Malwarebytes did not find anything today (yesterday it found and deleted a few files). I don't know what to do the the hijack this log. I've attached it -- can you help?Thanks!!PaulaLogfile of Trend Micro HijackThis v2.0.3 (BETA)Scan saved at 11:37:20 AM, on 1/22/2010Platform: Windows Vista SP1 (WinNT 6.00.1905)MSIE: Internet Explorer v8.00 (8.00.6001.18865)Boot mode: NormalRunning processes:C:\Windows\system32\taskeng.exeC:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEC:\Program Files\Dell Support Center\bin\sprtcmd.exeC:\Program Files\Common Files\Symantec Shared\ccApp.exeC:\Program Files\Symantec AntiVirus\VPTray.exeC:\Program Files\Sony\Reader\Data\bin\launcher\Reader Library Launcher.exeC:\Program Files\Windows Sidebar\sidebar.exeC:\Program Files\Windows Media Player\wmpnscfg.exeC:\Windows\system32\wuauclt.exeC:\Program Files\TrendMicro\HiJackThis\HiJackThis.exeR1 - HKCU\Software\Microsoft\Internet Explorer�... Read more

A:Dcom server process launcher terminated unexpectedly

Hello and welcome to Bleeping Computer! We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.Thanks and again sorry for the delay.We need to see some information about what is happening in your machine. Please perform the following scan:Download DDS by sUBs from one of the following links. Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explaination about the tool. No input is needed, the scan is running.Notepad will open with the results.Fo... Read more

Read other 19 answers
RELEVANCY SCORE 170.8

Hello and thanks in advance for your help.My machine is regularly running at upper 90% CPU Usage and at will randomly try to shut down giving the "dcom server process launcher terminated unexpectedly""shutdown -a" has given me time to run some scans, but nothing is found.please helpDDS (Ver_09-12-01.01) - NTFSx86 Run by Shelby at 20:25:41.68 on Sat 01/30/2010Internet Explorer: 8.0.6001.18702AV: AVG Internet Security *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}FW: AVG Firewall *enabled* {8decf618-9569-4340-b34a-d78d28969b66}============== Running Processes ============================= Pseudo HJT Report ===============uSearch Page = hxxp://www.google.comuSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8uDefault_Page_URL = hxxp://desktop.presario.net/scripts/redirectors/presario/deskredir.dll?s=consumer&LC=0409&c=1c00uSearch Bar = hxxp://www.google.com/ieuStart Page = hxxp://www.google.com/uWindow Title = TIESuInternet Connection Wizard,ShellNext = iexploreuSearchURL,(Default) = hxxp://www.google.com/keyword/%suURLSearchHooks: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg9\toolbar\IEToolbar.dllmURLSearchHooks: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg9\toolbar\IEToolbar.dllBHO: {0... Read more

A:dcom server process launcher terminated unexpectedly

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.Thanks and again sorry for the delay.We need to see some information about what is happening in your machine. Please perform the following scan:Download DDS by sUBs from one of the following links. Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explaination about the tool. No input is needed, the scan is running.Notepad will open with the results.Foll... Read more

Read other 3 answers
RELEVANCY SCORE 170.8

"DCOM Server Process Launcher terminated unexpectedly"

This has only happened to me while im playing a game called 'Crysis'. My computer is forced to restart after this message appears. I assume this is due to malware, i did some googling and some other people have said it may be a 'Rootkit'. Thats all i know, and here is my hjt log, Fix me up doc!

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:14:18 AM, on 6/7/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\Program Files\ASUS\EPU\EPU.exe
C:\Program Files (x86)\Java\jre6\bin\jusched.exe
C:\Program Files (x86)\Common Files\Symantec Shared\ccSvcHst.exe
C:\Users\Bobo\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Bobo\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Bobo\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Bobo\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Bobo\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Inte... Read more

A:DCOM Server Process Launcher terminated unexpectedly

bump
 

Read other 1 answers
RELEVANCY SCORE 170.8

I too am having the same problem as several others on the forum. I have dl and ran the TDDSKiller scvript you asked for and am including the log filehere as you requested the others to do. In addition I have something that has hijacked my browser. When I clcik on a link in Google it jumps to random sites rather than the site I wanted, that is unless I request it to open in a new tab, then it seems to go where I want it to. Thank you.

01:04:24:000 3412 TDSS rootkit removing tool 2.2.2 Jan 13 2010 08:42:25
01:04:24:000 3412 ================================================================================
01:04:24:000 3412 SystemInfo:
01:04:24:000 3412 OS Version: 5.1.2600 ServicePack: 3.0
01:04:24:000 3412 Product type: Workstation
01:04:24:000 3412 ComputerName: DCXNYR71
01:04:24:000 3412 UserName: fred ray
01:04:24:000 3412 Windows directory: C:\WINDOWS
01:04:24:000 3412 Processor architecture: Intel x86
01:04:24:000 3412 Number of processors: 1
01:04:24:000 3412 Page size: 0x1000
01:04:24:000 3412 Boot type: Normal boot
01:04:24:000 3412 ================================================================================
01:04:24:015 3412 UnloadDriverW: NtUnloadDriver error 2
01:04:24:015 3412 ForceUnloadDriverW: UnloadDriverW(klmd21) error 2
01:04:24:015 3412 MyNtCreateFileW: NtCreateFile(\??\C:\WINDOWS\system32\drivers\klmd.sys) returned status 00000000
01:04:24:031 3412 UtilityInit: KLMD drop and load success
01:04:24:031 3412 KLMD_OpenDevice: Trying to open KLMD Device(KLMD2... Read more

Read other answers
RELEVANCY SCORE 170.8

I am getting the error dcom server process launcher terminated unexpectedly windows must restart. I have already ran malwarebytes and it finds nothing.

Read other answers
RELEVANCY SCORE 170.8

Occasionally I will get this message after rebooting my computer. Also after returning from the screen saver, the computer will freeze! Any help would be greatly appreciated. Here is the HJT

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:16:10 PM, on 1/25/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft ActiveSync\Wcescomm.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:5555
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-... Read more

A:DCom server process launcher terminated unexpectedly

Anyone with any ideas?
 

Read other 1 answers
RELEVANCY SCORE 170

I didn't have any problems with my system until i let me sister use my computer and I don't know what she opened, downloaded, or looked at but when she was done I installed updates, installed new virus and restarted my computer to make everything work and windows would not start. It would pop up a message saying windows was unable to start correctly and gave an option to try to have it fixed. When I chose this it would pop up a message saying it was unable to fix and I needed to contact windows or my manunifactuar. When I finally figured out how to restore my computer to factory settings, redownloaded my anti virus and ran a scan, where AVG picked up 40 tracking cookies. I have no idea what that is but they fixed some and put others in the virus vault. Just when I was thinking all was well I started getting a message saying thtat my DCOM server process launcher service terminated unexpectedly and is now shuting down. I have no idea what the DCOM server is or why its doing this. It does not do this when i do anything inperticular, its done it while i IM with my husband, or checking email, or watching a movie on netflix. I have run a virus check with AVG everyday and it comes up with nothing. I believe my operating system is windows vista however when I ran hijack the log says something like windows/system32. Any help would be amazing, and i know some about computers but not a lot. here is my hijack log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:46:23 ... Read more

A:Dcom servier process launcher service terminated unexpectedly

Read other 16 answers
RELEVANCY SCORE 167.2

my logs are attached. My computer keeps restarting every 10 to 20 minutes or so and displays one, or the other error message above. If you can help me fix this problem, please let me know. Thank you for your help in advance.Ace

A:Windows must restart because the DCOM server process launcher service terminated or because plug and play service terminated un...

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.Thanks and again sorry for the delay.We need to see some information about what is happening in your machine. Please perform the following scan:Download DDS by sUBs from one of the following links. Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explaination about the tool. No input is needed, the scan is running.Notepad will open with the results.Foll... Read more

Read other 2 answers
RELEVANCY SCORE 166

I have been trying to fix a Trojan viknok and after trying different approaches unsuccessfully, I finally used Kaspersky TDSS Killer.  When rebooting after "fixing", my system shuts down and reboots immediately after starting.  Keeps cycling starting up / shutting down / rebooting.
 
"This system is shutting down ... initiated by NT Authority/ System.
Windows must restart because Dcom server processes launcher service terminated unexpectedly"

Read other answers
RELEVANCY SCORE 163.6

A few days ago my pc started acting funny, at the time I was using Sunbelt Vipre Antivirus Premium, and it detected nothing during it's nightly deep scans I ran on schedule. It started with my pc randomly freezing and rebooting, then I started getting errors saying "Windows must now restart because the DCOM Server Process Launcher Service terminated unexpectedly". I ignored the first instance of that, as it did not happen again until a day or two later, then again in less time in between than the first two, then it would be a few times a day. I've since done a clean reformat of my C drive and fresh install of Windows 7 x64. It's been 2 days since the reformat, and I've been slow to re-install programs and games. I've only installed things I know are from trusted companies and developers, nothing fishy.

Yesterday, I was in the middle of a gaming session when my pc went black, started the shut down process and acted as if it was installing windows updates during the shutdown, only it was saying something about updating registry entries etc etc. Restarted just fine, logged in and hopped back into the gaming session. A few hours later, I got the same DCOM Server error as before, and have since had 3 other instances of it, one of which nothing was open or running on the pc aside from the standard background processes.

I will post logs from both HJT and DDS, appreciate the help when someone can get to it, know you guys (gals) are busy. Thanks!
... Read more

A:DCOM Server Process Launcher terminated unexpectedly. Forced Restart, logs included.

First off sorry for the long double post here, just attempting to get as much information out from the get go to get a bigger jump on the fix (hopefully), as I'll be at work a lot the next few days and won't have much time to tinker with programs or even check this forum for replies or to answer questions.

I've got an update with a bit more information. I noticed that moments before I get the error, my HDD starts scanning like crazy (being loud, I assume like it's searching for files etc..), when I heard this the most recent time, I opened task manager and found that one of the svchost.exe processes was running at over 1 million k, moments later I got the error. Now that may not be significant, but in my past experiences I've not ever seen them go over 300k really. I attempted to capture a screen shot and save it as a .jpeg before it shut down, but was unable to. I did capture one immediately upon restarting my pc, and noticed one of the svchosts.exe usage shot up significantly and then slowed. I'll post a screen shot of the details of that particular one, and will continue to monitor that specific process from time to time. Again, not sure if it's related, or even if the process I have highlighted is the same one that was over 1 mil just before the error.

EDIT: From the time I snapped this screen shot, which was moments before posting this reply, to the time I had posted it, give or take 5-8 minutes. That same svchost.exe has gone form ... Read more

Read other 3 answers
RELEVANCY SCORE 160.8

Hi, New to this posting thing. Looking for some help with computer issues. So here I go.
I have a Lenovo 3000 J series with Vista operating system. (yak). I keep getting DCOM server process laucher service terminated unexpectitly and the system will reboot. If I boot into safe mode then it will stay up. From reading other posting it sounds like I have some malware issues. I downloaded Malwarebytes, updated and run it yesterday and it did find some issues which it removed and rebooted the computer. I thought I had it fixed but it is doing the same thing today. I reupdate an ran it again and it did not find anything. Please help.

A:dcom server process launcher service terminated

Hello and welcome to Bleeping Computer.Try these tools:ATFPlease download ATF Cleaner by Atribune & save it to your desktop.Double-click ATF-Cleaner.exe to run the program.Under Main "Select Files to Delete" choose: Select All.Click the Empty Selected button.If you use Firefox browser click Firefox at the top and choose: Select AllClick the Empty Selected button.
If you would like to keep your saved passwords, please click No at the prompt.If you use Opera browser click Opera at the top and choose: Select AllClick the Empty Selected button.
If you would like to keep your saved passwords, please click No at the prompt.Click Exit on the Main menu to close the program.Note: On Vista, "Windows Temp" is disabled. To empty "Windows Temp" ATF-Cleaner must be "Run as an Administrator".------------------------------------SAS, may take a long time to scanPlease download and scan with SUPERAntiSpyware FreeDouble-click SUPERAntiSypware.exe and use the default settings for installation.An icon will be created on your desktop. Double-click that icon to launch the program.If asked to update the program definitions, click "Yes". If not, update the definitions before scanning by selecting "Check for Updates". (If you encounter any problems while downloading the updates, manually download them from here. Double-click on the hyperlink for Download Installer and save SASDEFINITIONS.EXE to your desktop. Then double-click on SASDEFINI... Read more

Read other 8 answers
RELEVANCY SCORE 160.8

Recently my computer began to get a 1 minute shut down timer after the windows desktop appears saying...Windows must now restart because DCOM server process launcher service terminated. However, I disconnected my modem and it ceased for a while but then reappeared when I connected it once again. I'm completely computer illiterate and so any help would be greatly appreciated...
(windows XP)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:41:56 PM, on 1/24/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe
C:\Program Files\ATT-SST\M... Read more

Read other answers
RELEVANCY SCORE 160.8

My computer came to a blue screen and restarted automatically. When it did, I received a 1:00 minute time stating that the DCOM Server Process Launcher service was terminated. Luckily I was able to stop by the timer by going through Start->Run->"shutdown -a"

I have run HJT and posted the results below. Any help is greatly appreciated. Thanks.

Logfile of HijackThis v1.99.1
Scan saved at 11:41:55 PM, on 10/23/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\Logitech\iTouch\iTouch.exe
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\drivers\svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\DOCUME~1\KRIS&A~1\LOCALS~1\Temp\Temporary Directory 1 for hijackthis[1].zip\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,St... Read more

Read other answers