Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Black screen with white cursor


  • This topic is locked This topic is locked
71 replies to this topic

#1 waseemtyr

waseemtyr

  • Members
  • 39 posts
  • OFFLINE
  •  
  • Local time:05:53 PM

Posted 06 October 2014 - 12:46 PM

Dear Sir ,

appreciate your support to help me solving the problem of black screen with white cursor. i have tried all possibles but no luck. Hope you will be able to help me. below is the frst.txt file that i am getting

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-10-2014 01
Ran by SYSTEM on MININT-OJPCGEJ on 06-10-2014 21:23:20
Running from j:\
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Recovery

The current controlset is ControlSet001
ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1870120 2009-10-15] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2009-10-12] (IDT, Inc.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Java\jre6\bin\jusched.exe [171520 2009-12-07] (Sun Microsystems, Inc.)
HKLM\...\Run: [TelevisionFanatic Home Page Guard 64 bit] => C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\AppIntegrator64.exe [485960 2014-06-21] ( )
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2009-11-11] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Corel File Shell Monitor] => C:\Program Files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe [15544 2009-08-25] ()
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\qttask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [DpAgent] => C:\Program Files (x86)\DigitalPersona\Bin\dpagent.exe [842816 2009-07-01] (DigitalPersona, Inc.)
HKLM-x32\...\Run: [QlbCtrl.exe] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [322104 2009-08-20] ( Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [Easybits Recovery] => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [60464 2009-09-02] (EasyBits Software AS)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [WirelessAssistant] => C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [498744 2009-07-23] (Hewlett-Packard)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ApnUpdater] => C:\Program Files (x86)\Ask.com\Updater\Updater.exe [1573576 2012-12-05] (Ask)
HKLM-x32\...\Run: [ApnTBMon] => C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1942424 2014-08-22] (APN)
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe [2640408 2014-08-25] ()
HKLM-x32\...\Run: [WSHelperSetup.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1985824 2013-07-25] (Wondershare)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1985824 2013-07-25] (Wondershare)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43816 2014-07-31] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-09-17] (Apple Inc.)
HKLM-x32\...\Run: [VNT] => C:\Program Files (x86)\VNT\vntldr.exe [196504 2014-08-22] (APN LLC.)
HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [819984 2014-04-13] (BlueStack Systems, Inc.)
HKLM-x32\...\Run: [TelevisionFanatic EPM Support] => C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\64medint.exe [12872 2014-06-21] (Mindspark Interactive Network, Inc.)
HKLM-x32\...\Run: [TelevisionFanatic Search Scope Monitor] => C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\64SrchMn.exe [55368 2014-06-21] (Mindspark)
HKLM-x32\...\Run: [TelevisionFanatic Browser Plugin Loader] => C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\64brmon.exe [61512 2014-06-21] (VER_COMPANY_NAME)
HKLM-x32\...\Run: [TelevisionFanatic Browser Plugin Loader 64] => C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\64brmon64.exe [71752 2014-06-21] (VER_COMPANY_NAME)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\Waseem\...\Run: [LightScribe Control Panel] => C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-10-16] (Hewlett-Packard Company)
HKU\Waseem\...\Run: [Facebook Update] => C:\Users\Waseem\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-12-06] (Facebook Inc.)
HKU\Waseem\...\Run: [Smart Driver Updater] => C:\Program Files (x86)\Smart Driver Updater\SDULauncher.exe [338576 2012-09-20] (Avanquest Software)
HKU\Waseem\...\Run: [HPADVISOR] => C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe [1685048 2009-09-29] (Hewlett-Packard)
HKU\Waseem\...\Run: [WSHelperSetup.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1985824 2013-07-25] (Wondershare)
HKU\Waseem\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22037608 2014-08-26] (Skype Technologies S.A.)
HKU\Waseem\...\Policies\system: [DisableLockWorkstation] 0
HKU\Waseem\...\Policies\system: [DisableChangePassword] 0
Lsa: [Notification Packages] scecli DPPWDFLT

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_928ff2cce8313015\AESTSr64.exe [89600 2009-03-02] (Andrea Electronics Corporation)
S2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166296 2014-08-22] (APN LLC.)
S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [402192 2014-04-13] (BlueStack Systems, Inc.)
S2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [385808 2014-04-13] (BlueStack Systems, Inc.)
S2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [770832 2014-04-13] (BlueStack Systems, Inc.)
S2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
S2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
S2 ftpsvc; C:\Windows\system32\inetsrv\ftpsvc.dll [350720 2012-05-31] (Microsoft Corporation)
S2 hasplms; C:\Windows\system32\hasplms.exe [4180576 2010-09-26] (SafeNet Inc.)
S2 IISADMIN; C:\Windows\system32\inetsrv\inetinfo.exe [15872 2010-11-20] (Microsoft Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
S2 msftesql$SQLEXPRESS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.2\MSSQL\Binn\msftesql.exe [91992 2010-03-25] (Microsoft Corporation)
S2 MSSQL$SQLEXPRESS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.2\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation)
S2 MSSQLSERVER; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.MSSQLSERVER\MSSQL\Binn\sqlservr.exe [43010392 2009-03-29] (Microsoft Corporation)
S2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\17.9.0.12\ccSvcHst.exe [126400 2011-08-03] (Symantec Corporation)
S2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-07-06] ()
S4 SQLSERVERAGENT; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.MSSQLSERVER\MSSQL\Binn\SQLAGENT.EXE [366936 2009-03-29] (Microsoft Corporation)
S2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_928ff2cce8313015\STacSV64.exe [240640 2009-10-12] (IDT, Inc.)
S2 TelevisionFanaticService; C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\64barsvc.exe [88648 2014-06-21] (COMPANYVERS_NAME)
S2 vToolbarUpdater18.1.9; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.9\ToolbarUpdater.exe [1820184 2014-08-25] (AVG Secure Search)
S2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation)
S3 WMSVC; C:\Windows\system32\inetsrv\wmsvc.exe [10752 2009-07-13] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 andnetadb; C:\Windows\System32\Drivers\lgandnetadb.sys [31744 2012-07-02] (Google Inc)
S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [29184 2012-07-02] (LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [36352 2012-07-02] (LG Electronics Inc.)
S3 andnetndis; C:\Windows\System32\DRIVERS\lgandnetndis64.sys [93184 2012-07-04] (LG Electronics Inc.)
S3 androidusb; C:\Windows\System32\Drivers\wsadb.sys [40736 2013-11-04] (Google Inc)
S1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50976 2014-08-25] (AVG Technologies)
S2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [121616 2014-04-13] (BlueStack Systems)
S1 ccHP; C:\Windows\system32\drivers\NISx64\1109000.00C\ccHPx64.sys [593544 2011-08-03] (Symantec Corporation)
S1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2014-09-09] (Symantec Corporation)
S3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [142640 2014-09-09] (Symantec Corporation)
S1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\IPSDefs\20140910.001\IDSvia64.sys [633560 2014-08-22] (Symantec Corporation)
S3 MotoTetraPortableProgX64; C:\Windows\System32\DRIVERS\MotoTetraPortableProgX64.sys [88064 2011-07-25] (Jungo)
S3 MotoTetraPortableProgX64_Enum; C:\Windows\System32\DRIVERS\MotoTetraPortableProgX64_Enum.sys [83968 2011-07-25] (Jungo)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [28416 2008-04-16] (Research In Motion Limited)
S3 SRTSP; C:\Windows\System32\Drivers\NISx64\1109000.00C\SRTSP64.SYS [505392 2010-04-21] (Symantec Corporation)
S1 SRTSPX; C:\Windows\system32\drivers\NISx64\1109000.00C\SRTSPX64.SYS [32304 2010-04-21] (Symantec Corporation)
S0 SymDS; C:\Windows\System32\drivers\NISx64\1109000.00C\SYMDS64.SYS [433200 2009-08-29] (Symantec Corporation)
S0 SymEFA; C:\Windows\System32\drivers\NISx64\1109000.00C\SYMEFA64.SYS [221304 2011-08-21] (Symantec Corporation)
S3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [173104 2012-12-05] (Symantec Corporation)
S1 SymIRON; C:\Windows\system32\drivers\NISx64\1109000.00C\Ironx64.SYS [150064 2010-04-28] (Symantec Corporation)
S1 SYMTDIv; C:\Windows\System32\Drivers\NISx64\1109000.00C\SYMTDIV.SYS [451704 2011-08-21] (Symantec Corporation)
S1 BHDrvx64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\BASHDefs\20140821.007\BHDrvx64.sys [X]
S3 NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\VirusDefs\20140910.002\ENG64.SYS [X]
S3 NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\VirusDefs\20140910.002\EX64.SYS [X]
S3 RTSTOR; system32\drivers\RTSTOR.SYS [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-06 20:11 - 2014-10-06 20:11 - 00000000 ____D () C:\Windows\System32\config\backup
2014-10-02 20:45 - 2014-10-06 21:23 - 00000000 ____D () C:\FRST
2014-10-01 20:46 - 2014-10-01 20:46 - 00028672 _____ () C:\BCD_Backup
2014-10-01 20:46 - 2014-10-01 20:46 - 00025600 ___SH () C:\BCD_Backup.LOG
2014-09-30 20:06 - 2014-09-30 20:06 - 00000000 __SHD () C:\found.000
2014-09-27 06:28 - 2014-09-27 06:29 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-09-27 06:28 - 2014-09-27 06:28 - 00001845 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-09-27 06:28 - 2014-09-27 06:28 - 00001845 _____ () C:\ProgramData\Desktop\QuickTime Player.lnk
2014-09-27 06:27 - 2014-09-27 06:27 - 00054156 ____H () C:\Windows\QTFont.qfn
2014-09-26 07:56 - 2014-09-26 07:56 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-09-26 07:56 - 2014-09-26 07:56 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-09-26 07:45 - 2014-09-26 07:45 - 00000000 ____D () C:\Users\Waseem\AppData\Roaming\Temp
2014-09-26 07:39 - 2014-09-26 07:45 - 17703856 _____ (Adobe Systems Inc.) C:\Users\Waseem\Downloads\AdobeAIR_15.0.0.249.exe
2014-09-26 07:39 - 2014-09-26 07:39 - 00000000 ____D () C:\Users\Waseem\AppData\Local\IAC
2014-09-25 12:31 - 2014-09-27 06:02 - 00003832 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1411677068
2014-09-25 12:31 - 2014-09-27 06:02 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-09-25 12:31 - 2014-09-25 12:31 - 00001135 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-09-25 12:31 - 2014-09-25 12:31 - 00001135 _____ () C:\ProgramData\Desktop\Opera.lnk
2014-09-25 12:31 - 2014-09-25 12:31 - 00000000 ____D () C:\Users\Waseem\AppData\Roaming\Opera Software
2014-09-25 12:31 - 2014-09-25 12:31 - 00000000 ____D () C:\Users\Waseem\AppData\Local\Opera Software
2014-09-25 12:30 - 2014-09-25 12:30 - 00090432 _____ (Baidu, Inc.) C:\Windows\System32\Drivers\BProtectEx.sys
2014-09-25 12:29 - 2014-09-25 12:46 - 00000000 ____D () C:\Users\Waseem\AppData\Roaming\Baidu Security
2014-09-25 12:29 - 2014-09-25 12:29 - 00003544 _____ () C:\Windows\System32\Tasks\060184C3-9766-46a0-B258-F4518A0B2633
2014-09-25 12:28 - 2014-09-25 12:46 - 00003724 _____ () C:\Windows\System32\Tasks\Baidu PC Faster Update
2014-09-25 12:28 - 2014-09-25 12:46 - 00000000 ____D () C:\Users\Public\Documents\Baidu Security
2014-09-25 12:28 - 2014-09-25 12:46 - 00000000 ____D () C:\ProgramData\Documents\Baidu Security
2014-09-25 12:28 - 2014-09-25 12:29 - 00003672 _____ () C:\Windows\System32\Tasks\Baidu PC Faster Service
2014-09-25 12:28 - 2014-09-25 12:28 - 00000000 ____D () C:\Users\Public\Documents\Baidu
2014-09-25 12:28 - 2014-09-25 12:28 - 00000000 ____D () C:\ProgramData\Documents\Baidu
2014-09-25 12:27 - 2014-09-25 12:46 - 00000000 ____D () C:\Program Files (x86)\Baidu Security
2014-09-25 12:27 - 2014-09-25 12:29 - 00000000 ____D () C:\ProgramData\Baidu Security
2014-09-25 12:27 - 2014-09-25 12:27 - 00001213 _____ () C:\Users\Waseem\Desktop\FrostWire 5.lnk
2014-09-25 12:27 - 2014-09-25 12:27 - 00000000 ____D () C:\Users\Waseem\AppData\Roaming\RHEng
2014-09-23 09:04 - 2014-09-09 14:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\tzres.dll
2014-09-23 09:04 - 2014-09-09 13:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-09-18 10:10 - 2014-09-18 10:10 - 00843531 _____ () C:\Users\Waseem\Desktop\Attachments_2014918.zip
2014-09-18 10:06 - 2014-09-18 10:06 - 00023296 _____ () C:\Users\Waseem\Desktop\Servers itmes - FCPGas-Majnoon.xlsx
2014-09-17 08:47 - 2014-09-17 08:47 - 00963330 _____ () C:\Users\Waseem\Desktop\Attachments_2014917.zip
2014-09-11 00:14 - 2014-08-19 10:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll
2014-09-11 00:14 - 2014-08-19 09:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-11 00:14 - 2014-08-18 14:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2014-09-11 00:14 - 2014-08-18 14:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\System32\ieetwcollectorres.dll
2014-09-11 00:14 - 2014-08-18 14:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2014-09-11 00:14 - 2014-08-18 14:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2014-09-11 00:14 - 2014-08-18 14:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\System32\MshtmlDac.dll
2014-09-11 00:14 - 2014-08-18 14:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2014-09-11 00:14 - 2014-08-18 14:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2014-09-11 00:14 - 2014-08-18 14:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll
2014-09-11 00:14 - 2014-08-18 14:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\System32\jscript9diag.dll
2014-09-11 00:14 - 2014-08-18 14:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2014-09-11 00:14 - 2014-08-18 13:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-11 00:14 - 2014-08-18 13:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll
2014-09-11 00:14 - 2014-08-18 13:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-11 00:14 - 2014-08-18 13:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\System32\JavaScriptCollectionAgent.dll
2014-09-11 00:14 - 2014-08-18 13:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-11 00:14 - 2014-08-18 13:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-11 00:14 - 2014-08-18 13:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\System32\msrating.dll
2014-09-11 00:14 - 2014-08-18 13:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2014-09-11 00:14 - 2014-08-18 13:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-11 00:14 - 2014-08-18 13:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-11 00:14 - 2014-08-18 13:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\System32\dxtrans.dll
2014-09-11 00:14 - 2014-08-18 13:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-11 00:14 - 2014-08-18 13:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-11 00:14 - 2014-08-18 13:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-11 00:14 - 2014-08-18 13:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2014-09-11 00:14 - 2014-08-18 13:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2014-09-11 00:14 - 2014-08-18 13:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-11 00:14 - 2014-08-18 13:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-11 00:14 - 2014-08-18 13:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-11 00:14 - 2014-08-18 13:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-11 00:13 - 2014-08-18 15:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2014-09-11 00:13 - 2014-08-18 14:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-11 00:13 - 2014-08-18 14:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2014-09-11 00:13 - 2014-08-18 14:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2014-09-11 00:13 - 2014-08-18 14:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\System32\ieetwproxystub.dll
2014-09-11 00:13 - 2014-08-18 14:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-11 00:13 - 2014-08-18 14:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\System32\ieetwcollector.exe
2014-09-11 00:13 - 2014-08-18 13:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
2014-09-11 00:13 - 2014-08-18 13:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-11 00:13 - 2014-08-18 13:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-11 00:13 - 2014-08-18 13:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-11 00:13 - 2014-08-18 13:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2014-09-11 00:13 - 2014-08-18 13:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\System32\mshtmlmedia.dll
2014-09-11 00:13 - 2014-08-18 13:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-11 00:13 - 2014-08-18 13:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2014-09-11 00:13 - 2014-08-18 13:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-11 00:13 - 2014-08-18 13:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll
2014-09-11 00:13 - 2014-08-18 13:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-11 00:13 - 2014-08-18 13:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-11 00:13 - 2014-08-18 12:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2014-09-11 00:13 - 2014-08-18 12:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-11 00:13 - 2014-08-18 12:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-11 00:13 - 2014-08-18 12:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll
2014-09-11 00:13 - 2014-08-18 12:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-10 09:19 - 2014-06-26 18:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\System32\msmpeg2vdec.dll
2014-09-10 09:19 - 2014-06-26 17:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-09-10 07:46 - 2014-08-01 03:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\System32\TSWorkspace.dll
2014-09-10 07:46 - 2014-08-01 03:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-09-10 07:46 - 2014-06-23 19:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\System32\d3d10warp.dll
2014-09-10 07:46 - 2014-06-23 18:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-09-10 07:45 - 2014-07-06 18:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\System32\lsasrv.dll
2014-09-10 07:45 - 2014-07-06 18:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\System32\kerberos.dll
2014-09-10 07:45 - 2014-07-06 17:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-10 07:45 - 2014-07-06 17:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-10 07:45 - 2014-07-06 17:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-09-10 07:44 - 2014-09-04 18:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll
2014-09-10 07:44 - 2014-09-04 18:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\System32\aeinv.dll
2014-09-09 08:27 - 2014-09-09 08:27 - 01397067 _____ () C:\Users\Waseem\Desktop\Attachments_201499(1).zip
2014-09-09 08:21 - 2014-09-09 08:22 - 00247202 _____ () C:\Users\Waseem\Downloads\Attachments_201499.zip

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-03 22:15 - 2009-07-13 20:45 - 00003072 _____ () C:\Windows\System32\umstartup.etl
2014-10-01 10:13 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\System32\winevt
2014-09-30 07:07 - 2009-07-13 21:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-30 07:07 - 2009-07-13 20:51 - 00140783 _____ () C:\Windows\setupact.log
2014-09-30 07:07 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\System32\inetsrv
2014-09-29 09:12 - 2012-12-05 19:14 - 01204002 _____ () C:\Windows\WindowsUpdate.log
2014-09-29 09:09 - 2012-12-12 11:19 - 00000000 ____D () C:\Users\Waseem\Documents\Outlook Files
2014-09-29 08:58 - 2012-12-05 08:43 - 00000000 ____D () C:\Users\Waseem\AppData\Roaming\Skype
2014-09-29 08:35 - 2013-01-12 09:49 - 00000842 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-29 08:21 - 2012-12-17 07:37 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-09-29 07:28 - 2012-12-06 10:11 - 00000932 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-970465509-1515874038-219573036-1000UA.job
2014-09-29 06:10 - 2009-07-13 20:45 - 00026192 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-29 06:10 - 2009-07-13 20:45 - 00026192 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-29 05:56 - 2013-01-12 09:49 - 00000838 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-28 08:06 - 2009-07-13 21:13 - 01077912 _____ () C:\Windows\System32\PerfStringBackup.INI
2014-09-27 10:31 - 2012-12-07 11:05 - 00000000 ____D () C:\Users\Waseem\AppData\Local\CrashDumps
2014-09-27 10:16 - 2012-12-06 10:11 - 00000910 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-970465509-1515874038-219573036-1000Core.job
2014-09-27 06:28 - 2012-12-05 19:41 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-09-27 06:23 - 2012-12-05 08:43 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-09-27 06:23 - 2012-12-05 08:43 - 00000000 ____D () C:\ProgramData\Skype
2014-09-27 06:19 - 2009-12-07 10:55 - 00000000 ____D () C:\Windows\SysWOW64\Adobe
2014-09-27 05:56 - 2013-06-14 10:12 - 00000000 ____D () C:\Program Files\WinRAR
2014-09-27 05:56 - 2013-06-02 09:01 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-27 05:56 - 2012-12-05 19:24 - 00393458 _____ () C:\Windows\PFRO.log
2014-09-26 11:49 - 2014-05-10 09:27 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-26 07:57 - 2012-12-05 08:47 - 00000000 ____D () C:\Users\Waseem\AppData\Roaming\Adobe
2014-09-26 07:56 - 2009-12-07 11:06 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-09-26 07:53 - 2013-11-04 11:03 - 00000000 ____D () C:\ProgramData\Apple
2014-09-26 07:45 - 2014-06-18 10:29 - 00000000 ____D () C:\Users\Waseem\AppData\Local\Adobe
2014-09-26 07:42 - 2014-04-23 10:07 - 00000000 ____D () C:\ProgramData\BlueStacksSetup
2014-09-25 12:40 - 2009-07-13 19:20 - 00000000 ___HD () C:\Windows\System32\GroupPolicy
2014-09-25 12:40 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy
2014-09-25 12:39 - 2013-01-14 00:54 - 00000000 ____D () C:\Users\Waseem\.frostwire5
2014-09-25 12:37 - 2013-01-14 00:53 - 00000000 ____D () C:\Program Files (x86)\FrostWire 5
2014-09-24 10:02 - 2013-05-17 11:53 - 00000000 ____D () C:\Windows\Minidump
2014-09-24 09:50 - 2013-05-17 11:53 - 596784536 _____ () C:\Windows\MEMORY.DMP
2014-09-24 05:40 - 2012-12-17 07:37 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-24 05:40 - 2012-12-17 07:37 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-24 05:40 - 2012-12-17 07:37 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-18 09:44 - 2013-11-09 10:22 - 00000000 ____D () C:\Program Files (x86)\VNT
2014-09-16 08:48 - 2014-06-21 11:18 - 00000000 ____D () C:\Users\Waseem\AppData\Local\TelevisionFanatic
2014-09-11 11:06 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\rescache
2014-09-11 00:12 - 2012-12-06 11:56 - 01062222 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-09-10 09:19 - 2014-05-06 10:35 - 00000000 ___SD () C:\Windows\System32\CompatTel

Some content of TEMP:
====================
C:\Users\Waseem\AppData\Local\Temp\APNSetup.exe
C:\Users\Waseem\AppData\Local\Temp\Baidu_Secure_SystemUp_4.0.7.72269.exe
C:\Users\Waseem\AppData\Local\Temp\HPQSi.exe
C:\Users\Waseem\AppData\Local\Temp\install_flashplayer13x32axau_ltr5x64d_awk_aih.exe
C:\Users\Waseem\AppData\Local\Temp\install_flashplayer13x32axau_ltr5x64d_awk_aih_1.exe
C:\Users\Waseem\AppData\Local\Temp\jre-6u37-windows-i586-iftw.exe
C:\Users\Waseem\AppData\Local\Temp\jre-7u13-windows-i586-iftw.exe
C:\Users\Waseem\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe
C:\Users\Waseem\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe
C:\Users\Waseem\AppData\Local\Temp\jre-7u21-windows-i586-iftw.exe
C:\Users\Waseem\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe
C:\Users\Waseem\AppData\Local\Temp\jre-7u40-windows-i586-iftw.exe
C:\Users\Waseem\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe
C:\Users\Waseem\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe
C:\Users\Waseem\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\Waseem\AppData\Local\Temp\jre-7u65-windows-i586-iftw.exe
C:\Users\Waseem\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe
C:\Users\Waseem\AppData\Local\Temp\mirc729.exe
C:\Users\Waseem\AppData\Local\Temp\mobilego_full818.exe
C:\Users\Waseem\AppData\Local\Temp\oi_{5D1F8482-45B5-4455-8071-198F7F29F5D0}.exe
C:\Users\Waseem\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Waseem\AppData\Local\Temp\uninstall.exe
C:\Users\Waseem\AppData\Local\Temp\_isD603.exe


==================== Known DLLs (Whitelisted) ================


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== Restore Points  =========================


==================== Memory info ===========================

Percentage of memory in use: 17%
Total physical RAM: 3894.79 MB
Available physical RAM: 3211.79 MB
Total Pagefile: 3892.99 MB
Available Pagefile: 3213.71 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:138.71 GB) (Free:72.72 GB) NTFS
Drive d: (RECOVERY) (Fixed) (Total:22.46 GB) (Free:3.29 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.09 GB) FAT32
Drive f: (SYSTEM) (Fixed) (Total:0.19 GB) (Free:0.16 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive g: (Waseem Data) (Fixed) (Total:136.62 GB) (Free:79.77 GB) NTFS
Drive h: (GSP1RMCPRXFREO_EN_DVD) (CDROM) (Total:3.09 GB) (Free:0 GB) UDF
Drive j: () (Removable) (Total:3.76 GB) (Free:3.76 GB) FAT32
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: BD244589)
Partition 1: (Not Active) - (Size=993 KB) - (Type=42)
Partition 2: (Active) - (Size=199 MB) - (Type=42)
Partition 3: (Not Active) - (Size=138.7 GB) - (Type=42)
Partition 4: (Not Active) - (Size=159.2 GB) - (Type=42)

========================================================
Disk: 2 (Size: 3.8 GB) (Disk ID: 6F20736B)
No partition Table on disk 2.
Disk 2 is a removable device.


LastRegBack: 2014-09-11 10:04

==================== End Of Log ============================


Edited by hamluis, 06 October 2014 - 12:50 PM.
Moved from Win 7 to Malware Removal Logs - Hamluis.


BC AdBot (Login to Remove)

 


#2 Bud_91

Bud_91

  • Malware Response Team
  • 438 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:53 AM

Posted 09 October 2014 - 10:57 AM

Hello and welcome to Bleeping Computer. I am sorry that you are having troubles with your computer and will try my best to help you. I know that being infected is very frustrating, but I will be here to help you through the whole process of cleaning. Removing malware can be difficult and complicated and will most likely take many steps, so please stick with me until I have declared your computer clean. I always recommend printing my instructions before following them in case you cannot keep this webpage open. Please be sure to alway follow all steps exactly as they are written and let me know what happens each time. Stop and ask if something unexpected happens or if you are unsure of how to proceed.

Please respect my volunteered time and stay with me until I declare your computer clean. If you are going to be delayed for a while, please let me know.

Can you tell me what you were doing right before this happened (like installing a new piece of software, or removing something)?
Do you use Norton for your anti-virus?
Can you get into Safe Mode by tapping F8 while the computer is booting?

Edited by Bud_91, 09 October 2014 - 10:59 AM.

If I have not responded to your log in 36 hours, feel free to send me a PM.

If you would like to make a thank-you donation, please click here: btn_donate_SM.png

 

A.K.A. Buddierdl @ GeeksToGo.com


#3 waseemtyr

waseemtyr
  • Topic Starter

  • Members
  • 39 posts
  • OFFLINE
  •  
  • Local time:05:53 PM

Posted 10 October 2014 - 12:01 PM

Thank you very much for your reply.
 
My computer was working normally , but it has a heating problem which lead to immediate/sudden switch off, which i again switch it on and works again.
 
Yes, i do use Norton Anti Virus.
 
Appreciate your prompt reply


#4 waseemtyr

waseemtyr
  • Topic Starter

  • Members
  • 39 posts
  • OFFLINE
  •  
  • Local time:05:53 PM

Posted 10 October 2014 - 12:02 PM

Thank you very much for your reply.
 
My computer was working normally , but it has a heating problem which lead to immediate/sudden switch off, which i again switch it on and working again.
 
 
Yes, i do use Norton Anti Virus.
Appreciate your prompt reply


#5 Bud_91

Bud_91

  • Malware Response Team
  • 438 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:53 AM

Posted 10 October 2014 - 12:26 PM

So, are you no longer having trouble with the black screen and white cursor?

If I have not responded to your log in 36 hours, feel free to send me a PM.

If you would like to make a thank-you donation, please click here: btn_donate_SM.png

 

A.K.A. Buddierdl @ GeeksToGo.com


#6 waseemtyr

waseemtyr
  • Topic Starter

  • Members
  • 39 posts
  • OFFLINE
  •  
  • Local time:05:53 PM

Posted 10 October 2014 - 01:00 PM

i do still have it. i was explaining what was happening before.



#7 waseemtyr

waseemtyr
  • Topic Starter

  • Members
  • 39 posts
  • OFFLINE
  •  
  • Local time:05:53 PM

Posted 10 October 2014 - 01:20 PM

I do still have it. i was explaining what was happening before.
 



#8 Bud_91

Bud_91

  • Malware Response Team
  • 438 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:53 AM

Posted 10 October 2014 - 01:33 PM

Can you get into Safe Mode by tapping F8 while the computer is booting?

If I have not responded to your log in 36 hours, feel free to send me a PM.

If you would like to make a thank-you donation, please click here: btn_donate_SM.png

 

A.K.A. Buddierdl @ GeeksToGo.com


#9 waseemtyr

waseemtyr
  • Topic Starter

  • Members
  • 39 posts
  • OFFLINE
  •  
  • Local time:05:53 PM

Posted 10 October 2014 - 01:36 PM

No , I  cannot .

 



#10 Bud_91

Bud_91

  • Malware Response Team
  • 438 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:53 AM

Posted 10 October 2014 - 02:17 PM

Do you get the options to boot into SafeMode, and then it freezes, or does nothing come up at all when you tap F8 while booting?

If I have not responded to your log in 36 hours, feel free to send me a PM.

If you would like to make a thank-you donation, please click here: btn_donate_SM.png

 

A.K.A. Buddierdl @ GeeksToGo.com


#11 waseemtyr

waseemtyr
  • Topic Starter

  • Members
  • 39 posts
  • OFFLINE
  •  
  • Local time:05:53 PM

Posted 10 October 2014 - 02:25 PM

I get the option to boot into safe mode , then i will reach to the Black Screen with white cursor (i can move the cursor only) and i cannot do any thing else , i tried to press on the shift key 5 time, alt +control + Delete and not thing happen. I can just move the cursor of the mouse

 

thanks,



#12 waseemtyr

waseemtyr
  • Topic Starter

  • Members
  • 39 posts
  • OFFLINE
  •  
  • Local time:05:53 PM

Posted 10 October 2014 - 02:30 PM

please note that i am getting the black screen with white cursor after the windows Logo comes



#13 waseemtyr

waseemtyr
  • Topic Starter

  • Members
  • 39 posts
  • OFFLINE
  •  
  • Local time:05:53 PM

Posted 12 October 2014 - 10:25 AM

will you be able to help me solving my problem.

 

 

thanks,



#14 Bud_91

Bud_91

  • Malware Response Team
  • 438 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:53 AM

Posted 12 October 2014 - 12:13 PM

Yes, sorry for the delay. I am not very active on the forums over the weekend. If I don't have more instructions for your today, I will certainly reply tomorrow.

If I have not responded to your log in 36 hours, feel free to send me a PM.

If you would like to make a thank-you donation, please click here: btn_donate_SM.png

 

A.K.A. Buddierdl @ GeeksToGo.com


#15 waseemtyr

waseemtyr
  • Topic Starter

  • Members
  • 39 posts
  • OFFLINE
  •  
  • Local time:05:53 PM

Posted 12 October 2014 - 12:47 PM

Thank you.






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users