[ kivu @ 10.11.2008. 20:45 ] @
Od skora sam poceo da koristim FSC Amilo 3553 (20 dana) koji u sebi ima instaliran Vista Home Premium. E sad postoji nekoliko problema sa wireless-om:
1. Kao prvo prvo saam bio podesio i WPA-PSK i na ruteru i na laptop-u i to je radilo jedno vreme i onda je wireless poceo da zeza...malo radi..malo ne radi...a stalno stoji indikacija da je nekacen na Internet. ZASTO?
2.Odneo sam na drugu lokaciju laptop i sve podesio i nastali su sumljivi problemi. Naime, mogu da surfujem 10-15 i onda browser vise ne reaguje, kao da nije konektovan na Net, dok recimo ping (npr.GOOGLE, YAHOO, AOL) radi bez problema, sve to vreme i kad IE7 i FireFox ne radi. Da bi IE7 i FireFox proradili moram da restartujem komp, ali ce i dalje raditi 10-15. ZASTO?
3. Resetujem kod kuce wireless ruter na fabricke vrednosti(bez ikakvog security-a) kako bi video u cemu je stvar i lokalizovao problem i pozovem komsiju koji bez ikakvog problema se nakaci na wireless sa svojim laptop-om koji ima XP i sve radi?
E sad da li Vista ima neka svoja posebna podesavanja za wireless kod Viste? u Cemu je caka?

Hvala veliko!
[ magna86 @ 11.11.2008. 02:11 ] @
PozZ
ako hoces mi mozemo da bacimo pogled na HjT log koji ces da nam napravis pa da vidimo ima li
nekih malicioznih unosa,tj necemu cemu tu nije mesto..itd..
Citat:
mogu da surfujem 10-15 i onda browser vise ne reaguje

ovo moze lako da prouzrukuje neki virus,mozemo da proverimo

Skini HiJackThis program sa sledeceg linka:
http://www.majorgeeks.com/download5554.html
Stavi ga u zaseban folder na Desktop
-Promeni naziv Foldera i samog
programa u nesto drugo npr. Elite.exe

* Pokreni HijackThis
* Izaberi opciju "Do a system scan and save the logfile"
* Na kraju skeniranja program ce izbaciti tekstualni log.
* taj log kopiraj ovde ( opcije copy / paste)

[ kivu @ 11.11.2008. 16:55 ] @
Pozdrav, kao prvo hvala što si se ponudio za pomoć
Evo ga log ....


----------------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:46:27on 11/11/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Synaptics\SynTP\SynTPStart.exe
C:\Program Files\Launch Manager\HotkeyApp.exe
C:\Program Files\Launch Manager\WisKeyState.exe
C:\Program Files\Launch Manager\OSD.exe
C:\Program Files\Launch Manager\OSDCtrl.exe
C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Users\V&M\Desktop\elite.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\MainDefault_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\MainDefault_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\MainSearch Page = http://go
microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\MainStart Page = http://go
microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\SearchSearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\SearchCustomizeSearch =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper -
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common
Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E}
- C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper -
{9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common
Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui
exe -hide
O4 - HKLM\..\Run: [StartCCC] "c:\Program Files\ATI Technologies\ATI
ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart
exe
O4 - HKLM\..\Run: [HotkeyApp] "C:\Program Files\Launch Manager\HotkeyApp.exe

O4 - HKLM\..\Run: [WisKeyState] "C:\Program Files\Launch Manager\WisKeyState
exe"
O4 - HKLM\..\Run: [LMgrVolOSD] "C:\Program Files\Launch Manager\OSD.exe"
O4 - HKLM\..\Run: [LMgrOSD] "C:\Program Files\Launch Manager\OSDCtrl.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program
Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [FSCRecovery] c:\Program Files\Fujitsu Siemens
Computers\Fujitsu Siemens Computers Recovery\FSCRecoveryReminder.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common
Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft
Office\Office12\GrooveMonitor.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar
exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr
dllShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar
exe /detectMem (User 'NETWORK SERVICE')
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} -
C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer -
{219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows
Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49}
- C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote -
{2670000A-7350-4f3c-8081-5663EE0C6C49} -
C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -
C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} -
C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O23 - Service: Ati External Event Utility - ATI Technologies Inc. -
C:\Windows\system32\Ati2evxx.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program
Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common
Files\Nero\Lib\NMIndexingService.exe
O23 - Service: Fujitsu Siemens Computers Diagnostic Testhandler
(TestHandler) - Fujitsu Siemens Computers - C:\Program Files\Fujitsu Siemens
Computers\SystemDiagnostics\OnlineDiagnostic\TestManager\TestHandler.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software
Technologies LTD - C:\Windows\System32\ZoneLabs\vsmon.exe
O23 - Service: WisLMSvc - Wistron Corp. - C:\Program Files\Launch
Manager\WisLMSvc.exe

--
End of file - 5123 bytes
----------------------------------------------------

Krejnja solucija je ribanje Viste ili prelazak na XP.

Hvala unapred!
[ kristi1 @ 11.11.2008. 17:43 ] @
Preuzmi Ovaj program
Pokreni ga i klikni na Make Writable (u gornjem levom uglu)
Zatim klikni na Restore MS Hosts File pa ok
zatvori program na X

Zatim skini malwarebytes http://www.malwarebytes.org/mbam.php
Imas trojan downloader koji bi ovaj trebao da ocisti

I na kraju skini CWShredder http://www.bleepingcomputer.com/tutorials/tutorial47.html
na ovoj stranici je i download link i uputstvo kako se radi sa ovim programom.

Javi se posle sa svezim HJT logom da vidimo sta je uradjeno.