laptop mi se zamrzne

laptop mi se zamrzne

offline
  • Pridružio: 10 Avg 2013
  • Poruke: 103

Pozdrav,desava mi se kad sam na youtube i na facebook-u da se jednostavno zamrzne komp,ne reaguje ni tastatura ni mis,dok ne resetujem na dugme komp,i opet radi neko vreme i tako stalno,taj problem se javlja vec skoro mesec dana...otvorio sam temu i rekli su mi da se ovamo javim.
skenirao sam avastom citav komp i nista ni 1 detekcija,internet imam liwest,protok je 15 mb
evo text sa DDS


mycity.rs/must-login.png

mycity.rs/must-login.png




DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 10.21.2
Run by PC at 20:19:40 on 2013-08-18
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.1.1033.18.1012.236 [GMT 2:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
C:\Program Files\Motorola\Bluetooth\obexsrv.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\System32\rundll32.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Motorola\Bluetooth\audiosrv.exe
C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k secsvcs
.
============== Pseudo HJT Report ===============
.
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [BTMTrayAgent] rundll32.exe "c:\program files\motorola\bluetooth\btmshell.dll",TrayApp
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {bd707fe6-39f6-4bda-9265-86a76719bdc5} - c:\program files\motorola\bluetooth\btmiesend.htm
TCP: NameServer = 212.33.36.155 212.33.55.5
TCP: Interfaces\{5CC4FFFD-6453-4EDA-9837-8707DFA1C306} : DHCPNameServer = 212.33.36.155 212.33.55.5
TCP: Interfaces\{5CC4FFFD-6453-4EDA-9837-8707DFA1C306}\96E6475627269647F586F6473707F647 : DHCPNameServer = 192.168.137.1 8.8.8.8
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Notify: igfxcui - igfxdev.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\pc\appdata\roaming\mozilla\firefox\profiles\tvkc97xg.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.rs/
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\popularscreensavers_7iei\installr\1.bin\NP7iEISb.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_7_700_224.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
.
============= SERVICES / DRIVERS ===============
.
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2013-5-20 738504]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2013-5-20 361032]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2013-5-20 21256]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-5-20 58680]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2013-5-20 44808]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service;c:\program files\motorola\bluetooth\obexsrv.exe [2013-8-16 512776]
R3 Bluetooth Device Manager;Bluetooth Device Manager;c:\program files\motorola\bluetooth\devmgrsrv.exe [2013-8-16 3537672]
R3 Bluetooth Media Service;Bluetooth Media Service;c:\program files\motorola\bluetooth\audiosrv.exe [2013-8-16 824584]
R3 BTMUSB;Motorola Bluetooth Radio Service;c:\windows\system32\drivers\btmusb.sys [2013-8-16 377344]
R3 netr28;Ralink 802.11n Extensible Wireless Driver;c:\windows\system32\drivers\netr28.sys [2012-12-6 2046560]
R3 RSPCIESTOR;Realtek PCIE CardReader Driver;c:\windows\system32\drivers\RtsPStor.sys [2013-5-20 230944]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2013-5-20 267880]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 BTMCOM;Bluetooth Serial Port;c:\windows\system32\drivers\btmcom.sys [2013-8-16 41344]
S3 Revoflt;Revoflt;c:\windows\system32\drivers\revoflt.sys [2013-8-16 27192]
.
=============== Created Last 30 ================
.
2013-08-16 15:21:57 41344 ----a-w- c:\windows\system32\drivers\btmcom.sys
2013-08-16 15:19:19 324872 ----a-w- c:\windows\system32\btmcls.dll
2013-08-16 15:19:18 377344 ----a-w- c:\windows\system32\drivers\btmusb.sys
2013-08-16 15:19:16 -------- d-----w- c:\program files\Motorola
2013-08-16 15:19:10 -------- d-----w- c:\program files\Mozilla Maintenance Service
2013-08-16 15:18:51 -------- d-----w- c:\program files\common files\Macrovision Shared
2013-08-16 15:03:11 -------- d-----w- c:\users\pc\appdata\local\VS Revo Group
2013-08-16 15:01:55 -------- d-----w- c:\programdata\VS Revo Group
2013-08-16 15:01:49 27192 ----a-w- c:\windows\system32\drivers\revoflt.sys
2013-08-16 15:01:24 -------- d-----w- c:\program files\VS Revo Group
2013-08-16 14:09:13 53248 ----a-w- c:\windows\system32\CSVer.dll
2013-08-16 14:08:42 -------- d-----w- C:\Intel
2013-08-16 13:32:33 7016152 ----a-w- c:\programdata\microsoft\windows defender\definition updates\backup\mpengine.dll
2013-08-16 13:32:11 7143960 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{830ff05a-2cd4-42b6-b6f4-09efc0788668}\mpengine.dll
2013-08-13 10:36:23 -------- d-----w- c:\program files\Skillbrains
2013-08-13 10:30:36 -------- d-----w- c:\program files\CPUID
2013-08-10 12:25:24 -------- d-----w- c:\program files\CCleaner
.
==================== Find3M ====================
.
2013-06-11 19:36:20 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-06-11 19:36:19 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
.
============= FINISH: 20:22:10,90 ===============

offline
  • magna86  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 21 Jun 2008
  • Poruke: 6102

Pozdrav,
DDS log ne pokazuje znakove maliciozne aktivnosti.

Problem koji opisujes verovatno nije prouzrokovan malware-om ali da bi u potpunosti bili sigurni u to idemo na jos jednu, dodatnu proveru na sa mocnim Gmer AntiRootkit skenerom;



Preuzmite program GMER sa donjeg linka na Desktop:


GMER download
Kliknite dati link;
Kada se otvori dijalog za izbor lokacije na kojoj treba sačuvati file, odaberite Desktop i kliknite Save.



Dvoklikom pokrenite GMER.
Sačekajte da se završi uvodno skeniranje - ukoliko se pojavi bilo kakav upit, kliknite No;

kliknite Scan i sačekajte da skeniranje bude završeno;

kliknite Save ... - izveštaj sačuvajte na Desktop (pod nazivom Gmer1);

kliknite desnim tasterom u prozor programa Gmer i odaberite Options > 3rd party - kliknite Scan;

po završetku skeniranja kliknite Save ... - izveštaj sačuvajte na Desktop (pod nazivom Gmer2);

kliknite taster >>> i odaberite Autostart karticu;

po završetku kratkotrajnog skeniranja, kliknite Copy;

otvorite Notepad i u njega postavite kopirani tekst - izveštaj sačuvajte na Desktop (pod nazivom Gmer3);


Slikoviti prikaz postupka

Priložite sva tri izveštaja uz poruku korišćenjem opcije Prikači fajl.

offline
  • Pridružio: 10 Avg 2013
  • Poruke: 103

evo ga odradio sam

mycity.rs/must-login.png


mycity.rs/must-login.png


mycity.rs/must-login.png

offline
  • magna86  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 21 Jun 2008
  • Poruke: 6102

Pozdrav 14256u7 ,

Analiza pokazuje da u sistemu nemas aktivan malware. Logovi su u potpunosti cisti, problem koji ti imas nije prouzrokovan infekciom.

Prepurucujem ti da savet i pomoc potrazis u odgovarajucem podforumu ukoliko vec nisi to uradio.

offline
  • Pridružio: 10 Avg 2013
  • Poruke: 103

u kojem pod forumu ??? trazio sam pomoc u hardrawe i uputili su me ovamo...de sad?

offline
  • magna86  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 21 Jun 2008
  • Poruke: 6102

14256u7 ::u kojem pod forumu ??? trazio sam pomoc u hardrawe i uputili su me ovamo...de sad?

Nisam gledao zaista.
Ako su te uputili ovamo, hteli su da provere da nije neki malware uzrok problema da bi znali ljudi sta dalje da rade. Sad znas da malware nije uzrok.

Ko je trenutno na forumu
 

Ukupno su 475 korisnika na forumu :: 44 registrovanih, 1 sakriven i 430 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 357magnum, _commandos_, _Rade, _Sale, AleksSE, Andrija357, Bahuss, Boris90, cincarin, Cirkon, denisnapast2015, dragoljub11987, dragon986, Drug pukovnik, Faki-Valjevo, Filip Marinković, goxin, h8propaganda, Hoegaarden, HrcAk47, ikan, Marko Marković, mačković, MB120mm, Mihajlo, milekNS, nemkea71, pavle_pzs, pedja63, Pohovani_00, raketaš, riva, rovac, Singidunumac, Sirius, Snorks, Srki94, stalker, Steeeefan, stegonosa, suton, Toni, VJ, xJeremijAx