Hello;
I have been getting the Generic Service Host problem, when using internet and email, and have been trying to find the answers on many forums, including bleeping. The most sense answer has been supplied by Buckeye Sam on these forums, but I believe the solutions will be specific to individual computers as I do not have some of the lines shown in the other fella's Combofix log. Mine follows:
Thom - 06-11-29 19:42:12.33 Service Pack 2
ComboFix 06.11.27W - Running from: "C:\Documents and Settings\Thom\Desktop\Seldom"
((((((((((((((((((((((((((((((( Files Created from 2006-10-29 to 2006-11-29 ))))))))))))))))))))))))))))))))))
2006-11-28 11:02 <DIR> d-------- C:\WINDOWS\Updates
2006-11-28 10:41 <DIR> d-------- C:\Program Files\Trend Micro
2006-11-26 16:05 <DIR> d--h----- C:\WINDOWS\$hf_mig$
2006-11-17 09:18 <DIR> d-------- C:\WINDOWS\system32\Kaspersky Lab
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2006-11-29 06:14 -------- d-------- C:\Program Files\Symantec AntiVirus
2006-11-28 12:44 -------- d-------- C:\Program Files\Common Files\InstallShield
2006-11-28 12:27 -------- d-------- C:\Program Files\Registry Mechanic
2006-11-22 07:14 -------- d-------- C:\Program Files\Movie Maker
2006-11-20 18:17 40 ---hs---- C:\Documents and Settings\Thom\Application Data\.zreglib
2006-11-17 11:01 -------- d-------- C:\Program Files\Common Files\Microsoft Shared
2006-11-14 14:29 -------- d-------- C:\Program Files\Empty Temp Folders 2.8.3
2006-11-11 13:10 -------- d---s---- C:\Documents and Settings\Thom\Application Data\Microsoft
2006-11-03 05:17 -------- d-------- C:\Program Files\Lavasoft Ad-Aware
2006-10-20 13:04 -------- d--h----- C:\Program Files\InstallShield Installation Information
2006-10-20 13:04 -------- d-------- C:\Program Files\Magellan
2006-10-18 14:33 -------- d-------- C:\Program Files\Ipswitch
2006-10-18 14:33 -------- d-------- C:\Documents and Settings\Thom\Application Data\Ipswitch
2006-10-18 14:09 -------- d-------- C:\Documents and Settings\Thom\Application Data\GlobalSCAPE
2006-10-17 10:56 -------- d-------- C:\Program Files\SlySoft
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries are not shown
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"SiS Tray"="C:\\WINDOWS\\System32\\sistray.EXE"
"SiS KHooker"="C:\\WINDOWS\\System32\\khooker.exe"
"SiS7012Utility"="\"C:\\WINDOWS\\System32\\SiSAudUt.exe\" -wdm"
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\j2re1.4.2_04\\bin\\jusched.exe\""
"NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe"
"ccApp"="\"C:\\Program Files\\Common Files\\Symantec Shared\\ccApp.exe\""
"vptray"="C:\\PROGRA~1\\SYMANT~1\\VPTray.exe"
"RegistryMechanic"=""
"iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000000
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
"Source"="file:///C:/DOCUME~1/Thom/LOCALS~1/Temp/msohtml1/01/clip_image001.gif"
"SubscribedURL"="file:///C:/DOCUME~1/Thom/LOCALS~1/Temp/msohtml1/01/clip_image001.gif"
"FriendlyName"=""
"Flags"=dword:00002001
"Position"=hex:2c,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,e8,\
03,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=dword:40000001
"OriginalStateInfo"=hex:18,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,01,00,00,00
"RestoredStateInfo"=hex:dc,ff,d1,02,f3,99,83,7c,70,9a,80,7c,ff,ff,ff,ff,66,9a,\
80,7c,66,9a,80,7c
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\1]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,00,03,00,00,ea,\
03,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=dword:40000004
"OriginalStateInfo"=hex:18,00,00,00,ff,ff,00,00,ff,ff,00,00,ff,ff,ff,ff,ff,ff,\
ff,ff,04,00,00,00
"RestoredStateInfo"=hex:18,00,00,00,6a,02,00,00,23,00,00,00,a4,00,00,00,9a,00,\
00,00,01,00,00,00
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{93994DE8-8239-4655-B1D1-5F4E91300429}"=""
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
Completion time: 06-11-29 19:43:08.03
C:\ComboFix.txt ... 06-11-29 19:43