Link to home
Start Free TrialLog in
Avatar of Meldi
Meldi

asked on

How do I remove servicehost.defaultGrp?

A box appears as I am logging off that gives the choices  "cancel" or "end now."  I finally learned to click "end now."  However, this annoying problem began when I installed AOL 10.0.
servicehost.defaultGrp seems to interfere with my AOL connectivity.  
 
Avatar of jcimarron
jcimarron
Flag of United States of America image

Meldi--Do you use AdAware?  It may be necessary to uninstall it.  It is an outdate antimalware program, anyway.
And do you use AIM?  You may have to uninstall that too.
Avatar of Meldi
Meldi

ASKER

jcimarron:

Thanks for your suggestions.  My response and action steps:    

I use Ad-Aware, Spyware Terminator, Symantec AntiVirus, Registry Mechanic, and Malwarebytes' Anti-Malware, and run them all frequently.  Each time I run MBAM, it identifies the following infection:  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntivirusDisableNotify (Disabled.SecurityCenter) -> Bad:(1) Good: (0) -> Quarantined and deleted successfully.  

After restarting, as directed by MBAM, AOL connectivity is working.  However, after a shut down, the next time I turn on the computer, AOL connectivity is again no longer working, and I have to go through the whole process again.    

I have never used AIM.  I inactivated AIM as much as the settings allowed when I first installed the latest AOL edition.  Per your suggestion, I tried to uninstall it AIM, but could not find it in the ADD/REMOVE Programs list.

Thanks for your response.   Meldi
Meldi--I wonder if you have two separate problems.
1)  Problems caused by the installation of AOL 10.  You say the error message started only when you installed AOL.  What did you use for an ISP before AOL 10?  Can you revert to that ISP?
2)  Problems caused by malware.  MBAM is well regarded, but the fact that it continues to find and quarantine a Registry entry suggests it is not getting rid of the malware that is causing the problem.
Run SuperAntiSpyware http://www.superantispyware.com/
and delete whatever it defines as malware.
Then run HiJackThis. http://www.download.com/Trend-Micro-HijackThis/3000-8022_4-10227353.html
 If you need help in interpreting the log post it here or run the auto-analysis offered here.  http://www.hijackthis.de/
P.S.  Did you uninstall Adaware?
Avatar of Meldi

ASKER

I uninstalled Ad-Aware and ran SuperAntiSpyware.
I ran HijackThis and obtained the attach log file. I have no idea what to do with it.


hijackthis.log
ASKER CERTIFIED SOLUTION
Avatar of jcimarron
jcimarron
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of Meldi

ASKER


O. K.  This sounds good.  I'll try it all and let you know.  Thanks!
Meldi--There is a typo in my post above
"O4 - Startup: powerreg schedulerv2.exe
ViewpointService.exe"
should read "O4 - Startup: powerreg schedulerv2.exe"  (Delete ViewpointService.exe--which is covered a few lines later.)
Avatar of Meldi

ASKER

jclmarron,

It worked!  I performed a restart, a shut down, and a log off several times after following your sugestions for the HiJackThis log file.  Response is good and servicehost.defaultGrp is GONE!  AOL connectivity is connecting.

I don't know which of the four items in the HiJackThis log was the problem, or if was all of them, but I couldn't be more pleased with the results.  Thank you so much!!!

Meldi
 
Meldi--You are most welcome.  
Avatar of Meldi

ASKER

I am writing to correct my last post.  I was wrong -  servicehost.defaultGrp is not gone.

Whenever servicehost.defaultGrp displays at log off, AOL fails to launch at the next sign in.  I run MBAM and it displays -  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntivirusDisableNotify (Disabled.SecurityCenter) -> Bad:(1) Good: (0) -> Quarantined and deleted successfully.

I restart and AOL will then launch at that time.  However, at the next log off, the cycle repeats.  I am going to send this information to AOL.  Maybe they will have answers.

I was finally able to remove AIM.  Thanks again.  Meldi