• Best of luck to the class of 2024 for their HSC exams. You got this!
    Let us know your thoughts on the HSC exams here
  • YOU can help the next generation of students in the community!
    Share your trial papers and notes on our Notes & Resources page
MedVision ad

svchost.exe (1 Viewer)

stinger

Banned
Joined
Jun 27, 2003
Messages
134
Location
A place where something is or could be located
whenever i'm on the internet (dial up) after a couple of mintues
| svchost.exe has had an error ... and error log is being made ... you will need to restart the program |

wtf?? i press ok ... most things still work, but i can't right click- open new window ... some applications have not enough memory?

i have no clue what this is

help
 

Huy

Active Member
Joined
Dec 20, 2002
Messages
5,240
Gender
Undisclosed
HSC
N/A
Svchost.exe is a generic host process name for services that run from dynamic-link libraries (DLLs).

The Svchost.exe file is located in the %SystemRoot%\System32 folder. At startup, Svchost.exe checks the services portion of the registry to construct a list of services that it needs to load.

Multiple instances of Svchost.exe can run at the same time. Each Svchost.exe session can contain a grouping of services, so that separate services can run, depending on how and where Svchost.exe is started. This allows for better control and easier debugging.

Svchost.exe groups are identified in the following registry key:
HKEY_LOCAL_MACHINE\Software\Microsoft\WindowsNT\CurrentVersion\Svchost

To view the list of services that are running in Svchost:
Click Start on the Windows taskbar, and then click Run.
In the Open box, type CMD, and then press ENTER.
Type Tasklist /SVC, and then press ENTER.

Sorry this does not help you, but it will explain the function of svchost. See your error report/log which will identify the cause(s) of svchost's termination.
 

Jesus

Christ
Joined
Jun 20, 2003
Messages
102
Location
Bibble
Gender
Undisclosed
HSC
N/A
i get that sometimes, usually i press ok and its fine, it says something cannot be attached right?
 

JRasnier

Member
Joined
Apr 24, 2003
Messages
416
i fixed it before for meeh and my gf's computer by making my firewall block svchost from accessing the net....worked for meeh, and i noticed it only started i think after service pack.....
 

flyin'

EDIT
Joined
Aug 21, 2002
Messages
6,677
Gender
Undisclosed
HSC
N/A
That things, stuffed up my comp for like a week :(
 

flyin'

EDIT
Joined
Aug 21, 2002
Messages
6,677
Gender
Undisclosed
HSC
N/A
I was (and still am) on XP. I ended up using a firewall, and that worked... and then read another thread about a patch.
 

Comedy_Al

Member
Joined
Aug 28, 2003
Messages
109
Location
Newcastle
The blaster worm doesn't do that... it just sends uot millions of pings & packets, sownloads the latest service pack then seletes itself. The worst it can do is slog up a network or net connection. :sleep:
 

Soliah

Member
Joined
May 8, 2003
Messages
146
Location
Sydney, Liverpool
Originally posted by Comedy_Al
The blaster worm doesn't do that... it just sends uot millions of pings & packets, sownloads the latest service pack then seletes itself. The worst it can do is slog up a network or net connection. :sleep:
I beg to differ (on 2K). On an unpatched Win2K the worm is able to screw up svchost remotely. I don't know why or how, but I assume it's due to the fact that since the machine would be open to the worm, a infected PC would just send the DCOM RPC vunerablity to it, causing the RPC service to buffer overun or cause a error in svchost. I few friends of mine blocked only the TCP port 135, and as such still had problems with svchost, being unpatched. However after the RPC patch from MS, such errors stopped.

http://www.atomicmpc.com.au/forums.asp?s=2&c=9&t=3476

There ^^ are a few people who've had that problem.
 
Last edited:

Winston

Active Member
Joined
Aug 30, 2002
Messages
6,128
Gender
Undisclosed
HSC
2003
Originally posted by Soliah
I beg to differ (on 2K). On an unpatched Win2K the worm is able to screw up svchost remotely. I don't know why or how, but I assume it's due to the fact that since the machine would be open to the worm, a infected PC would just send the DCOM RPC vunerablity to it, causing the RPC service to buffer overun or cause a error in svchost. I few friends of mine blocked only the TCP port 135, and as such still had problems with svchost, being unpatched. However after the RPC patch from MS, such errors stopped.

http://www.atomicmpc.com.au/forums.asp?s=2&c=9&t=3476

There ^^ are a few people who've had that problem.
well the blaster worm isnt much of a scare, i mean just enable firewall, and just use the symantec fix tools, but the flaws in which the RPC exposes to malicious kiddies, is a concern, but once again this is windows we're talking about

the whole entire Win 32 API is flawed, thats why MS would not expose their underlying code, woah if its exposed, think of the amount of viruses we'll be seeing per millisecond
 

enak

Limbo
Joined
Oct 18, 2002
Messages
1,046
Location
Sydney
Gender
Undisclosed
HSC
N/A
the whole entire Win 32 API is flawed, thats why MS would not expose their underlying code, woah if its exposed, think of the amount of viruses we'll be seeing per millisecond
You could just decompile the code :)
 

Winston

Active Member
Joined
Aug 30, 2002
Messages
6,128
Gender
Undisclosed
HSC
2003
Originally posted by enak
You could just decompile the code :)

er no.. it's not that easy

the people at MS aren't really that stupid

well i mean everything is possible but it will take time to decompile it all

let alone compiling it takes a week at least...

and besides they use their own compiler which is written just for them

and also.. they use additional obfuscators to scramble the source code

it's not as easy
 

Huy

Active Member
Joined
Dec 20, 2002
Messages
5,240
Gender
Undisclosed
HSC
N/A
...and now I know why I didn't choose SDD!
:D
 

Winston

Active Member
Joined
Aug 30, 2002
Messages
6,128
Gender
Undisclosed
HSC
2003
Originally posted by Huy
...and now I know why I didn't choose SDD!
:D
haha huh?...

why?...

oh no u dont learn this shit in SDD...
sdd is 90 % documentation thats a load of shit

the real shit isnt learnt here
 

enak

Limbo
Joined
Oct 18, 2002
Messages
1,046
Location
Sydney
Gender
Undisclosed
HSC
N/A
Originally posted by Winston
er no.. it's not that easy

the people at MS aren't really that stupid

well i mean everything is possible but it will take time to decompile it all

let alone compiling it takes a week at least...

and besides they use their own compiler which is written just for them

and also.. they use additional obfuscators to scramble the source code

it's not as easy
Point taken :)
 

Users Who Are Viewing This Thread (Users: 0, Guests: 1)

Top