problem posle login screen-a

problem posle login screen-a

offline
  • Huskar
  • Pridružio: 31 Maj 2008
  • Poruke: 885

Naime, desilo mi se(odjednom,jer je radilo kako treba) da se posle login screena desi to da se prosto ekran dodje u stanje da je upaljen, ali ne daje sliku. I kada recimo hocu da proverim da li je i tastatura zabagovala,nije.(Ukljucujem/iskljucujem) caps lock,num lock,itd.Ili tako, ili se podigne normalno ali posle 20 ak sekundi zamrzne kursor i tastatura takodje. i nista ne mogu da uradim sem da izvadim bateriju.

U safe modu radi normalno,odatle i pisem.
Skenirao sam anty spyware i anty mallware ali nista nije pomoglo. Mallware nije bilo, dok je anty spyware nasao par nekih trojanaca itd. Takodje sam pomocu Tune Up-a brisao temp, registre...

Sta moze biti problem? Navodim da je laptop skoro nov(6 meseci star).

offline
  • magna86  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 21 Jun 2008
  • Poruke: 6101

Tomislave, znas i sam pravila ovog dela foruma.
Isprati uputstvo koje je dato ovde:
http://www.mycity.rs/Ambulanta/Kako-otvoriti-temu-u-Ambulanti.html

Postavi odgovarajuce logove i mi cemo proveriti da li je uzrok tvom problemu neki malware.
Ako imas problema sa pokretanjem odredjenih programa naglasi nam to.

Takodje preporucujem ti da otvoris jos jednu temu u Windows podforumu da bi ti kolege sa tog podforuma takodje mogli dati savete.

offline
  • Huskar
  • Pridružio: 31 Maj 2008
  • Poruke: 885

da,da..Wink idu idu logovi,malo sam pozurio sa klikanjem Very Happy
nemam problema sa otvaranjem programa
.
DDS (Ver_2011-08-26.01) - NTFSx86 NETWORK
Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_31
Run by 7 at 17:54:52 on 2012-03-18
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.1.1033.18.2667.2114 [GMT 1:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\Explorer.EXE
C:\Windows\system32\ctfmon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://eu.ask.com/?l=dis&o=101916
uURLSearchHooks: UrlSearchHook Class: {00000000-6e41-4fd3-8538-502f5495e5fc} -
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\progra~1\micros~2\office12\GR469A~1.DLL
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - c:\program files\avast software\avast\aswWebRepIE.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - c:\program files\avast software\avast\aswWebRepIE.dll
TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
mRun: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRunOnce: [aswAhAScr.dll] "c:\program files\avast software\avast\aswregsvr.exe" "c:\program files\avast software\avast\AhAScr.dll"
mRunOnce: [aswasOutExt.dll] "c:\program files\avast software\avast\aswregsvr.exe" "c:\program files\avast software\avast\asOutExt.dll"
mRunOnce: [aswaswOtl.dll] "c:\program files\avast software\avast\aswregsvr.exe" "c:\program files\avast software\avast\aswOtl.dll"
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\blueto~1.lnk - c:\program files\lenovo\bluetooth software\BTTray.exe
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - d:\progra~1\micros~1\office10\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - c:\program files\lenovo\bluetooth software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\lenovo\bluetooth software\btsendto_ie.htm
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\lenovo\bluetooth software\btsendto_ie.htm
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
TCP: DhcpNameServer = 10.0.0.254
TCP: Interfaces\{2B0227B4-0AAA-40F6-A99C-848111DE9441} : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{4DE59600-07FA-4903-8E8E-9BEECDDD91FA} : NameServer = 208.67.222.222
TCP: Interfaces\{4DE59600-07FA-4903-8E8E-9BEECDDD91FA} : DhcpNameServer = 10.0.0.254
TCP: Interfaces\{4DE59600-07FA-4903-8E8E-9BEECDDD91FA}\1405F52594D494E494 : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{4DE59600-07FA-4903-8E8E-9BEECDDD91FA}\24F6371613 : NameServer = 208.67.222.222
TCP: Interfaces\{4DE59600-07FA-4903-8E8E-9BEECDDD91FA}\24F6371613 : DhcpNameServer = 10.0.0.254
TCP: Interfaces\{4DE59600-07FA-4903-8E8E-9BEECDDD91FA}\24F637161374 : NameServer = 208.67.222.222
TCP: Interfaces\{4DE59600-07FA-4903-8E8E-9BEECDDD91FA}\24F637161374 : DhcpNameServer = 10.0.0.254
TCP: Interfaces\{4DE59600-07FA-4903-8E8E-9BEECDDD91FA}\4716D6465697 : NameServer = 208.67.222.222
TCP: Interfaces\{4DE59600-07FA-4903-8E8E-9BEECDDD91FA}\4716D6465697 : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{4DE59600-07FA-4903-8E8E-9BEECDDD91FA}\8474533303 : NameServer = 208.67.222.222
TCP: Interfaces\{4DE59600-07FA-4903-8E8E-9BEECDDD91FA}\8474533303 : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{4DE59600-07FA-4903-8E8E-9BEECDDD91FA}\84745353231413D2739364031413 : NameServer = 208.67.222.222
TCP: Interfaces\{4DE59600-07FA-4903-8E8E-9BEECDDD91FA}\84745353231413D2739364031413 : DhcpNameServer = 192.168.1.1 192.168.1.1
TCP: Interfaces\{4DE59600-07FA-4903-8E8E-9BEECDDD91FA}\A6564735075656460294144402230282053545E492 : DhcpNameServer = 192.168.1.1
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\progra~1\micros~2\office12\GRA32A~1.DLL
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\progra~1\micros~2\office12\GR469A~1.DLL
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\7\appdata\roaming\mozilla\firefox\profiles\seboah0b.default\
FF - prefs.js: browser.startup.homepage - google.rs
FF - plugin: c:\program files\google\update\1.3.21.99\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\plugin2\npdeployJava1.dll
FF - plugin: c:\program files\java\jre6\bin\plugin2\npjp2.dll
.
============= SERVICES / DRIVERS ===============
.
R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\drivers\vwififlt.sys [2009-7-14 48128]
R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCore.exe [2011-7-19 123264]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\drivers\L1C62x86.sys [2011-9-16 68208]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\drivers\vwifimp.sys [2009-7-14 14336]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2011-9-16 612184]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2011-9-16 337880]
S1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2011-7-22 12880]
S1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2011-7-12 67664]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2010-12-8 176128]
S2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2011-9-16 20696]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2011-9-16 57688]
S2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2012-3-18 44768]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2011-9-16 136176]
S2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2012-2-17 652360]
S2 NAUpdate;Nero Update;c:\program files\nero\update\NASvc.exe [2010-5-4 503080]
S3 amdkmdag;amdkmdag;c:\windows\system32\drivers\atikmdag.sys [2010-12-8 6575104]
S3 amdkmdap;amdkmdap;c:\windows\system32\drivers\atikmpag.sys [2010-12-8 229888]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 btwampfl;Bluetooth AMP USB Filter;c:\windows\system32\drivers\btwampfl.sys [2011-9-16 297000]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\drivers\btwl2cap.sys [2011-9-16 33320]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2011-9-16 136176]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2011-12-14 20464]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\system32\drivers\RtsUVStor.sys [2011-9-16 218624]
S3 vm2uvcflt;Vimicro USB Camera Filter 2;c:\windows\system32\drivers\vm2uvcflt.sys [2011-9-16 12624]
S3 vm332avs;Lenovo Camera2;c:\windows\system32\drivers\vm332avs.sys [2011-9-16 203088]
.
=============== Created Last 30 ================
.
2012-03-18 14:41:30 -------- d-----w- c:\users\7\appdata\roaming\SUPERAntiSpyware.com
2012-03-18 14:41:18 -------- d-----w- c:\programdata\!SASCORE
2012-03-18 14:41:14 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2012-03-18 14:41:14 -------- d-----w- c:\program files\SUPERAntiSpyware
2012-03-18 11:51:45 44376 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2012-03-17 19:15:30 -------- d-----w- c:\program files\Microsoft Virtual PC
2012-03-10 09:00:09 472808 ----a-w- c:\windows\system32\deployJava1.dll
2012-03-08 13:29:49 -------- d-----w- c:\users\7\appdata\roaming\YoudaGames
2012-03-08 13:12:50 -------- d-----w- c:\program files\Governor of Poker 2
2012-03-02 09:09:16 -------- d-----w- c:\program files\Cheat Engine 6.1
2012-03-01 13:55:47 48648 ----a-w- c:\programdata\microsoft\ehome\packages\mceclientux\updateablemarkup-2\Markup.dll
2012-02-29 15:12:13 48648 ----a-w- c:\programdata\microsoft\ehome\packages\mceclientux\updateablemarkup\Markup.dll
2012-02-27 16:05:34 -------- d-----w- c:\users\7\VirtualBox VMs
2012-02-27 16:05:13 -------- d-----w- c:\users\7\.VirtualBox
2012-02-27 16:05:03 158512 ----a-w- c:\windows\system32\drivers\VBoxDrv.sys
2012-02-27 16:04:54 -------- d-----w- c:\program files\Oracle
2012-02-24 21:30:42 41424 ----a-w- c:\windows\system32\drivers\VBoxUSBMon.sys
2012-02-24 17:56:58 -------- d-----w- c:\users\7\appdata\roaming\Canneverbe Limited
2012-02-24 17:56:58 -------- d-----w- c:\programdata\Canneverbe Limited
2012-02-24 13:47:23 -------- d-----w- c:\users\7\appdata\roaming\e-academy Inc
2012-02-24 13:47:23 -------- d-----w- c:\users\7\appdata\local\e-academy Inc
.
==================== Find3M ====================
.
2012-03-15 16:31:06 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-03-07 00:15:19 41184 ----a-w- c:\windows\avastSS.scr
2012-03-07 00:03:51 612184 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-03-07 00:01:48 57688 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-01-18 13:25:55 413696 ----a-w- c:\windows\system32\wrap_oal.dll
2012-01-18 13:25:55 110592 ----a-w- c:\windows\system32\OpenAL32.dll
.
============= FINISH: 17:55:39,15 ===============

https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

offline
  • magna86  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 21 Jun 2008
  • Poruke: 6101

Tomislave, ja ovde ne vidim aktivan malware osim par ostataka u registry vec deinstaliranog Ask Toolbara.


Preuzmi regfix.reg sa ovog linka i sacuvaj ga na Desktop.
https://www.mycity.rs/must-login.png

Pokreni regfix.reg dvoklikom. Na upit klikni na Yes.
On ce ukloniti ostatke od AskToolbara.

To je to. Pozz Wink

Ko je trenutno na forumu
 

Ukupno su 673 korisnika na forumu :: 36 registrovanih, 5 sakrivenih i 632 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3028 - dana 22 Nov 2019 07:47

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., aca018, babaroga, bijons, bojank, Cigi, Cirkon, dehhhhi, Denaya, Djurica-Majkl Staniševski, doloress, Dorcolac, ekser222, elenemste, HrcAk47, komkom, kybonacci, madza, Markoni29, mercedesamg, Mercury, Milan A. Nikolic, milan47, nemkea71, nikolaus112, oldtimer, repac, Snorks, spektorsky, stug, theNedjeljko, Vlada78, vlvl, voja64, zixmix, 79693