الحالة
مغلق و غير مفتوح للمزيد من الردود.

الشبح المدمر

زيزوومي نشيط
إنضم
18 فبراير 2008
المشاركات
123
مستوى التفاعل
1
النقاط
170
غير متصل
السلام عليكم ورحمة الله وبركاته..

أخواني ارجوكم تساعدوني بهالمشكلة الصعبة واللي مالها حل وهاى اصعب مشكلة بالكمبيوتر مرت معي وانا كل ماأواجه مشكلة بلجأ لهالمنتدى وبجد فادني بأشياء كتير واعطاني معلومات كثيرة ومفيدة..
ومشكلتي ياأخوان اني حملت كراك او باتش لبرنامج وكان شرط الكراك اني اوقف برنامج الحماية (الكاسبر سكاي) وعندما شغلت الكراك وقعت بالفخ وهو انو اختفى برنامج الحماية وعاد التشغيل ولما عاد التشغيل تفاجئت انو لما رحت اشغل الريجستري ماشتغل تطلعلي رسالة بتقلي تم ايقافه من قبل المسؤول ولما اجيت اشغل ادارة المهام (تاسك مانجر) برضو نفس الشي وملفات exe ماعادت تشتغل والبرامج الي بجانب الساعة ماعادت تشتغل وكل ماأشغل ملف exe تطلعلي رسالة خطأ وانا جربت اعيد تنصيب الكاسبر مليون مرة ومازبط الفيروس بمنع تنصيبه علما بأني نصبت غيرهم من برامج الحماية متل افيرا والافاست وغيرهم ومازبطو وغيرها من المشاكل صابتني..
ياأخوان انا كل اللي بديا منكم انو تساعدوني وانشالله مايكون طلبي تقيل عليكم بس انا محتاجكم وماتبخلو علي رجاء ساعدوني بأدوات مفيدة ومجربة عالقليل اعطوني اداة توقف عمل الفيروسات..
مع اني جربت ادوات كتير منها الكاسبر واداة الافاست وغيرهااااا..
انشالله انكم تلقو حل لمشكلتي وبكون ممنونلكم كتير...
 

اخي المشكله دي كانت عندي واتحلت لما فرمت الهارد كله

وحاول تنسخ الحاجات المهمه على اسطوانه
بس قبل ما ترجع تنزلها على الجهاز اعملها فصح ببرنامج فيروسات كويس

وللعلم هذا الفيرس جديد
والحقيقة انا ملقتش له حل غير فرمتت الهارد
 
توقيع : qlb elmo7e6
اخي شكرا لك على ردك وتفاعلك معي...
انا احد الاشخاص ايضا نصحني بهذه النقطة بس انا بعرض مشكلتي بلكي حد يلاقيلي طريقة قبل ماأتغلب مع هالجهاز..
طيب اخي ازا انا فرمتت الهارد وعملت نسخة احتياطية للملفات بنفع انو انسخهم على سيديات ديفيدي..
والسؤال التاني شو افضل برنامج حماية بعمل فحص كويس,..
 
اول شيء انا بنت مش ولد

ممكن تعمل لهم نسخة احتياطية بس قبل ما تنزلهم تعمل لهم اسكان الاول
وانا ارجح برنامج كاسبر سكاي
 
توقيع : qlb elmo7e6
الحلول موجودة بأذن الله ,,

حمل هذا البرنامج

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


شغل البرنامج ==> واضغط على
Do a system scan and save log
لحظات .. ويظهر لك تقرير داخل المفكرة==> انسخه والصقه بردك القادم
 
التعديل الأخير بواسطة المشرف:
توقيع : Corporation
انا اسف qlb elmo7e6 مانتبهت منيح يعني من عجقتي ومربوك وماعرفان شو بدي اعمل ماتواخزيني وانا بتشكرك كتير على افادتك وعلى تفاعلك معي...

اخي comp aq 99 شكرا لك على ردك وتفاعلك معي وانشالله تنحل الامور على ايديك وهاد التقرير اتفضل..



Scan saved at 23:45:14, on 4/4/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\FixCamera.exe
C:\WINDOWS\vsnpstd3.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\MSN Messenger\usnsvc.exe
E:\Zyzoom_HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [FixCamera] C:\WINDOWS\FixCamera.exe
O4 - HKLM\..\Run: [tsnpstd3] C:\WINDOWS\tsnpstd3.exe
O4 - HKLM\..\Run: [snpstd3] C:\WINDOWS\vsnpstd3.exe
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [is-8Q4PB] "C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-8Q4PB\is-8Q4PB.exe"
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [protect_autorun] C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\ir_ext_temp_2\AutoPlay\Docs\CPE17AntiAutoruna.exe /start
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Webshots.lnk = C:\Program Files\Webshots\WebshotsTray.exe
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{449C023E-59E1-4144-86AE-72339F466DEF}: NameServer = 212.14.234.36 195.68.208.230
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - Unknown owner - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe (file missing)
O23 - Service: ESET Service (ekrn) - Unknown owner - C:\Program Files\ESET\ESET Smart Security\ekrn.exe (file missing)
O23 - Service: is-8Q4PB - Kaspersky Lab - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-8Q4PB\is-8Q4PB.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe
--
End of file - 6235 bytes
 
علما ان القيمة رقم o7 كل ماأحذفها ترجع مرة تانية
 
عطل جمميع برآمج الحماية

مثلا أذا كنت مركب الكاسبر اي أي برنامج أعمل له خروج من جنب الساعة

نزل هذه الاداة

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


عند تشغيلها بتظهر لك رسالة ,, اضغط على >> Yes
بعدها بتظهر لك رساله ثانيه ,, اضغط على >> Yes

اثناء الفحص ممكن يعاد تشغيل الجهاز
وبعد اعادة التشغيل ,, سوف تبدأ الاداة بالفحص مرره ثانيه
انتظر حتى يظهر لك تقرير ،، وبذلك يكون الفحص انتهى الصق التقرير بمشاركتك القادمة
 
توقيع : Corporation

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي

هذه هي الدليل من التقرير على وجود الفيروس :d:
أمر طبيعي تحذفها وترجع كل هذا من عمل الفايروس :smile:
 
توقيع : Corporation
رح اعمل زي ماقلتلي وشكرا لك..
 
اخي العزيز الشبح المدمر انا كان عندي نفس المشكلة والاخ كومباك 99 والاخ فارس وبعض الاخوة مشكورين والله ما قصروا وانحلت المشكلة والفيروس اللي سبب المشكلة دي كان من الفلاش مومري .

انصحك ان تقوم بتحميل كاسبر اسكاي انترنت سيكيورتي بآخر تحديث او افاست 4.8 وتعمل له تحديث ايضا وبعدين سوي اسكان لكل الجهاز (( كامل البارتيشنات ))

وان شاء الله تنحل المشكلة عندك ولو فيه ملفات انقلها داخل cd وقبل ما تنزل اي ملف سوي له اسكان والسليم نزله والمصاب اوعى تنزله ليرجع ليك الفايروس والافضل تجيب فلاش مومري وتنقل عليها المفات الهامة وبعد ما تخلص الجهاز من الفيروس اعمل اسكان للفلاش والسليم نزله والمصاب سيبك منه حذاري من تنزيل اي ملف قبل عمل اسكان
 
اخي exe412 شكرا لك على ردك وعلى المعلومات القيمة وانا هلأ بهالوقت الحالي مابقدر احمل لا الكاسبر ولا اي برنامج حماية لانو الفيروس مسيطر سيطرة تامة وانشالله يشتغلو بعد ازالة الفيروس..

اخي كومباك 99 تفضل التقرير...

ComboFix 09-04-04.01 - Administrator 2009-04-05 0:11:17.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1256.966.1033.18.446.150 [GMT 2:00]
Running from: E:\ComboFix.exe
AV: ESET Smart Security 4.0 *On-access scanning enabled* (Updated)
AV: Kaspersky Internet Security *On-access scanning disabled* (Outdated)
FW: ESET Personal firewall *enabled*
FW: Kaspersky Internet Security *disabled*
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\system32\404Fix.exe
c:\windows\system32\Agent.OMZ.Fix.exe
c:\windows\system32\drivers\RKHit.sys
c:\windows\system32\dumphive.exe
c:\windows\system32\IEDFix.C.exe
c:\windows\system32\IEDFix.exe
c:\windows\system32\o4Patch.exe
c:\windows\system32\Process.exe
c:\windows\system32\SrchSTS.exe
c:\windows\system32\tmp.reg
c:\windows\system32\VACFix.exe
c:\windows\system32\VCCLSID.exe
c:\windows\system32\winitn.dll
c:\windows\system32\WS2Fix.exe
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_ASC3360PR
-------\Legacy_ISODRIVE
-------\Legacy_RKHIT
-------\Service_ISODrive

((((((((((((((((((((((((( Files Created from 2009-03-04 to 2009-04-04 )))))))))))))))))))))))))))))))
.
2009-04-04 16:40 . 2009-04-04 16:40 <DIR> d-------- c:\program files\Steinberg
2009-04-04 16:40 . 2009-04-04 16:40 <DIR> d-------- c:\program files\LUXONIX
2009-04-04 16:39 . 2009-04-04 16:39 <DIR> d-------- c:\program files\UltraISO
2009-04-04 16:39 . 2009-04-04 16:39 <DIR> d-------- c:\program files\Common Files\EZB Systems
2009-04-04 16:21 . 2004-08-03 23:08 26,496 --a--c--- c:\windows\system32\dllcache\usbstor.sys
2009-04-04 00:34 . 2009-04-04 00:34 91,700 --a------ c:\windows\system32\drivers\klin.dat
2009-04-04 00:34 . 2009-04-05 00:14 86,048 --ahs---- c:\windows\system32\drivers\fidbox2.dat
2009-04-04 00:34 . 2009-04-04 00:34 85,860 --a------ c:\windows\system32\drivers\klick.dat
2009-04-04 00:34 . 2009-04-05 00:14 17,444 --ahs---- c:\windows\system32\drivers\fidbox2.idx
2009-04-04 00:33 . 2009-04-04 00:33 <DIR> d-------- c:\program files\Kaspersky Lab
2009-04-04 00:33 . 2009-04-04 00:33 81,465 --a------ c:\windows\system32\drivers\klif.cab
2009-04-03 23:28 . 2009-04-03 23:28 <DIR> d-------- c:\program files\Alwil Software
2009-04-03 20:12 . 2009-04-03 20:12 <DIR> d-------- C:\Temp
2009-04-03 20:09 . 2009-04-03 20:09 317 --a------ c:\windows\tmp75.jpg
2009-04-03 18:45 . 2009-04-03 18:45 79 --a------ c:\windows\system32\asr_nbufq
2009-04-03 14:22 . 2009-04-03 14:22 <DIR> d-------- c:\program files\MEDA MP3 Splitter
2009-04-03 14:21 . 2009-04-03 14:21 <DIR> d-------- c:\program files\AML Products
2009-04-03 14:21 . 2009-04-03 14:21 2,535,424 --a------ c:\windows\system32\agsaamj.dll
2009-04-03 14:21 . 2002-01-05 06:48 974,848 --a------ c:\windows\system32\mfc70.dll
2009-04-03 14:21 . 2009-04-03 14:21 610,304 --a------ c:\windows\system32\agsaamg.dll
2009-04-03 14:21 . 2002-01-05 05:40 487,424 --a------ c:\windows\system32\msvcp70.dll
2009-04-03 14:21 . 2009-04-03 14:21 372,736 --a------ c:\windows\system32\agsaamc.dll
2009-04-03 14:21 . 2002-01-05 11:37 344,064 --a------ c:\windows\system32\msvcr70.dll
2009-04-03 14:21 . 2003-08-07 15:01 237,568 --a------ c:\windows\system32\lame_enc.dll
2009-04-03 14:21 . 2009-04-03 14:21 90,112 --a------ c:\windows\system32\agsaami.dll
2009-04-03 14:21 . 2009-04-03 14:21 53,760 --a------ c:\windows\system\ppacklib.dll
2009-04-03 14:21 . 2005-06-21 17:48 1 --a------ c:\windows\sslzdlt.dll
2009-04-03 14:20 . 2009-04-03 14:20 <DIR> d-------- c:\documents and settings\Administrator\Application Data\COWON
2009-04-03 14:18 . 2009-04-03 14:18 <DIR> d-------- c:\program files\Common Files\COWON
2009-04-03 14:16 . 2009-04-03 14:16 <DIR> d-------- c:\program files\Windows Media Connect 2
2009-04-03 14:15 . 2009-04-03 14:15 <DIR> d-------- c:\windows\system32\LogFiles
2009-04-03 14:15 . 2009-04-03 14:15 <DIR> d-------- c:\windows\system32\drivers\UMDF
2009-04-02 23:44 . 2008-03-05 11:41 148,496 --a------ c:\windows\system32\drivers\67910662.sys
2009-04-02 18:46 . 2009-04-02 21:48 <DIR> d-------- c:\program files\PianitoStudio
2009-04-02 13:06 . 2009-04-05 00:15 7,014,432 --ahs---- c:\windows\system32\drivers\fidbox.dat
2009-04-02 13:06 . 2009-04-05 00:14 98,264 --ahs---- c:\windows\system32\drivers\fidbox.idx
2009-04-02 13:02 . 2009-04-02 13:07 <DIR> d-------- c:\program files\Your Uninstaller 2008
2009-04-02 13:02 . 2009-04-02 21:43 <DIR> d-a------ c:\documents and settings\All Users\Application Data\TEMP
2009-04-02 13:02 . 2009-04-02 13:02 <DIR> d-------- c:\documents and settings\Administrator\Application Data\URSoft
2009-04-02 12:31 . 2009-04-02 12:31 81 --a------ c:\windows\system32\asr_qwpvy
2009-04-02 12:25 . 2009-04-02 12:25 20,953 --a------ c:\windows\system32\epfwdata.bin
2009-04-02 10:32 . 2009-04-02 10:32 <DIR> d-------- C:\LightC
2009-04-02 10:03 . 2009-04-02 10:03 42 --a------ c:\windows\system32\Jiii_PNUCT.pnc
2009-04-02 10:02 . 2009-04-02 10:02 42 --a------ c:\windows\system32\AK083E209605E394C.lie
2009-04-02 10:00 . 2009-04-02 10:00 <DIR> d---s---- c:\documents and settings\Administrator\UserData
2009-04-02 09:52 . 2004-08-03 22:58 15,104 --a------ c:\windows\system32\drivers\usbscan.sys
2009-04-02 09:39 . 2008-10-16 14:06 268,648 --a------ c:\windows\system32\mucltui.dll
2009-04-02 09:39 . 2008-10-16 14:06 208,744 --a------ c:\windows\system32\muweb.dll
2009-04-02 09:39 . 2008-10-16 14:06 27,496 --a------ c:\windows\system32\mucltui.dll.mui
2009-04-02 01:04 . 2009-04-02 01:04 <DIR> d-------- c:\documents and settings\Administrator\Application Data\ESET
2009-04-02 00:54 . 2009-04-02 00:54 <DIR> d-------- c:\documents and settings\All Users\Application Data\ESET
2009-04-01 23:56 . 2006-10-26 19:56 32,592 --a------ c:\windows\system32\msonpmon.dll
2009-04-01 23:54 . 2009-04-01 23:54 <DIR> d-------- c:\program files\MSBuild
2009-04-01 23:54 . 2009-04-01 23:54 <DIR> d-------- c:\program files\Microsoft Works
2009-04-01 23:49 . 2009-04-01 23:59 <DIR> d-------- c:\documents and settings\All Users\Application Data\Microsoft Help
2009-04-01 23:48 . 2009-04-01 23:48 <DIR> dr-h----- C:\MSOCache
2009-04-01 22:18 . 2009-04-01 22:18 268 --ah----- C:\sqmdata05.sqm
2009-04-01 22:18 . 2009-04-01 22:18 244 --ah----- C:\sqmnoopt05.sqm
2009-04-01 21:38 . 2009-04-01 21:38 268 --ah----- C:\sqmdata04.sqm
2009-04-01 21:38 . 2009-04-01 21:38 244 --ah----- C:\sqmnoopt04.sqm
2009-04-01 21:32 . 2009-04-02 22:22 <DIR> d-------- c:\program files\Internet Download Manager
2009-04-01 21:32 . 2009-04-01 22:19 <DIR> d-------- c:\documents and settings\Administrator\Application Data\IDM
2009-04-01 21:32 . 2009-04-05 00:15 <DIR> d-------- c:\documents and settings\Administrator\Application Data\DMCache
2009-04-01 21:13 . 2009-04-05 00:16 <DIR> d-------- c:\documents and settings\All Users\Application Data\Kaspersky Lab
2009-04-01 20:49 . 2009-04-02 21:49 <DIR> d-------- c:\program files\Unlocker
2009-04-01 20:49 . 2009-04-02 21:37 <DIR> d-------- c:\documents and settings\Administrator\Application Data\Desktopicon
2009-04-01 20:42 . 2009-04-02 09:37 <DIR> d-------- c:\program files\ma-config.com
2009-04-01 20:42 . 2009-04-01 20:42 <DIR> d-------- c:\documents and settings\All Users\Application Data\ma-config.com
2009-04-01 20:36 . 2009-04-01 20:36 268 --ah----- C:\sqmdata03.sqm
2009-04-01 20:36 . 2009-04-01 20:36 244 --ah----- C:\sqmnoopt03.sqm
2009-04-01 20:34 . 2004-08-04 10:56 16,384 --a------ c:\windows\system32\ipsink.ax
2009-04-01 20:34 . 2004-08-04 09:10 15,360 --a------ c:\windows\system32\drivers\StreamIP.sys
2009-04-01 20:34 . 2004-08-04 09:10 11,136 --a------ c:\windows\system32\drivers\SLIP.sys
2009-04-01 20:34 . 2004-08-04 09:10 10,880 --a------ c:\windows\system32\drivers\NdisIP.sys
2009-04-01 20:34 . 2004-08-04 08:58 5,504 --a------ c:\windows\system32\drivers\MSTEE.sys
2009-04-01 20:33 . 2004-08-04 09:10 85,376 --a------ c:\windows\system32\drivers\NABTSFEC.sys
2009-04-01 20:33 . 2004-08-04 09:10 19,328 --a------ c:\windows\system32\drivers\WSTCODEC.SYS
2009-04-01 20:33 . 2004-08-04 09:10 17,024 --a------ c:\windows\system32\drivers\CCDECODE.sys
2009-04-01 20:32 . 2009-04-02 21:45 <DIR> d-------- c:\program files\Common Files\snpstd3
2009-04-01 20:32 . 2006-04-12 22:11 147,456 --a------ c:\windows\system32\rsnpstd3.dll
2009-04-01 20:32 . 2006-07-03 20:31 94,208 --a------ c:\windows\amcap.exe
2009-04-01 20:32 . 2006-10-05 19:50 61,440 --a------ c:\windows\system32\vsnpstd3.dll
2009-04-01 20:32 . 2005-11-23 23:55 53,248 --a------ c:\windows\system32\csnpstd3.dll
2009-04-01 20:32 . 2005-11-23 23:55 53,248 --a------ c:\windows\csnpstd3.dll
2009-04-01 20:32 . 2007-01-31 03:50 20,480 --a------ c:\windows\FixCamera.exe
2009-04-01 20:30 . 2009-04-01 20:30 <DIR> d-------- C:\epson
2009-04-01 20:22 . 2009-04-01 20:22 268 --ah----- C:\sqmdata02.sqm
2009-04-01 20:22 . 2009-04-01 20:22 244 --ah----- C:\sqmnoopt02.sqm
2009-04-01 20:15 . 2009-04-01 20:15 268 --ah----- C:\sqmdata01.sqm
2009-04-01 20:15 . 2009-04-01 20:15 244 --ah----- C:\sqmnoopt01.sqm
2009-04-01 20:07 . 2009-04-01 20:07 <DIR> d-------- C:\log
2009-04-01 19:59 . 2009-04-01 23:15 <DIR> d--h----- c:\windows\$hf_mig$
2009-04-01 19:58 . 2009-04-01 19:58 <DIR> d--h----- c:\windows\system32\GroupPolicy
2009-04-01 19:55 . 2009-04-01 19:55 <DIR> d-------- c:\documents and settings\Administrator\Contacts
2009-04-01 19:46 . 2009-04-02 18:29 <DIR> d-------- c:\documents and settings\All Users\Application Data\Kaspersky Lab Setup Files
2009-04-01 19:43 . 2009-04-01 19:43 <DIR> d-------- c:\documents and settings\Administrator\Application Data\InstallShield
2009-04-01 13:52 . 2006-09-15 20:41 10,205,696 --a------ c:\windows\system32\drivers\snpstd3.sys
2009-04-01 13:52 . 2009-04-03 15:42 921,600 --a------ c:\windows\vsnpstd3.exe
2009-04-01 13:52 . 2004-08-04 10:56 90,624 --a------ c:\windows\system32\kswdmcap.ax
2009-04-01 13:52 . 2004-08-04 10:56 61,952 --a------ c:\windows\system32\kstvtune.ax
2009-04-01 13:52 . 2004-08-04 10:56 53,760 --a------ c:\windows\system32\vfwwdm32.dll
2009-04-01 13:52 . 2004-08-04 10:56 43,008 --a------ c:\windows\system32\ksxbar.ax
2009-04-01 13:52 . 2004-08-04 10:56 28,672 --a------ c:\windows\system32\vidcap.ax
2009-04-01 13:52 . 2004-02-28 03:36 15,498 --a------ c:\windows\snpstd3.ini
2009-04-01 13:52 . 2004-02-28 03:36 13,023 --a------ c:\windows\snpstd3.src
2009-04-01 13:51 . 2009-04-01 13:51 <DIR> d-------- c:\program files\Thomson
2009-04-01 13:51 . 2003-12-08 21:53 53,600 --a------ c:\windows\system32\drivers\alcan5wn.sys
2009-04-01 13:50 . 2003-12-08 12:53 70,688 -ra------ c:\windows\system32\drivers\alcaudsl.sys
2009-04-01 13:50 . 2003-12-08 11:53 5,606 --a------ c:\windows\system32\stci.dll
2009-04-01 13:50 . 2003-12-08 12:53 5,280 -ra------ c:\windows\system32\drivers\alcawh.sys
2009-04-01 13:50 . 2003-12-08 12:53 3,968 -ra------ c:\windows\system32\drivers\alcacr.sys
2009-04-01 07:18 . 2006-06-16 16:06 307,200 -ra------ c:\windows\system32\atiiiexx.dll
2009-04-01 07:18 . 2006-04-28 10:05 127,614 -ra------ c:\windows\system32\atiicdxx.dat
2009-04-01 07:18 . 2006-04-05 07:36 6,005 -ra------ c:\windows\system32\atifglpf.xml
2009-04-01 07:17 . 2006-02-08 10:44 1,114,674 -ra------ c:\windows\system32\drivers\ativcaxx.cpa
2009-04-01 07:17 . 2005-10-14 04:10 58,560 -ra------ c:\windows\system32\drivers\ativckxx.vp
2009-04-01 07:17 . 2006-06-16 16:55 29,616 -ra------ c:\windows\system32\drivers\ativvpxx.vp
2009-04-01 07:17 . 2006-02-08 10:44 929 -ra------ c:\windows\system32\drivers\ativcaxx.vp
2009-04-01 06:50 . 2009-04-01 06:50 268 --ah----- C:\sqmdata00.sqm
2009-04-01 06:50 . 2009-04-01 06:50 244 --ah----- C:\sqmnoopt00.sqm
2009-04-01 06:48 . 2009-04-02 21:49 <DIR> d-------- c:\program files\Total Video Converter
2009-04-01 06:48 . 2009-04-02 15:50 <DIR> d-------- c:\program files\SaveNow
2009-04-01 06:48 . 2009-04-02 09:37 <DIR> d-------- c:\program files\Living Waterfalls Screensaver
2009-04-01 06:48 . 2001-08-10 01:50 1,306,817 --a------ c:\windows\Living Waterfalls.scr
2009-04-01 06:47 . 2009-04-01 19:52 <DIR> d-------- c:\program files\Webshots
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-03-31 11:46 --------- d-----w c:\program files\microsoft frontpage
2004-08-03 22:56 160,578 --sha-r c:\windows\system32\qzbik.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2004-08-04 15360]
"IDMan"="c:\program files\Internet Download Manager\IDMan.exe" [2009-04-02 2745776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpeedTouch USB Diagnostics"="c:\program files\Thomson\SpeedTouch USB\Dragdiag.exe" [2009-04-03 944640]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2009-04-03 249856]
"FixCamera"="c:\windows\FixCamera.exe" [2007-01-31 20480]
"snpstd3"="c:\windows\vsnpstd3.exe" [2009-04-03 921600]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"is-8Q4PB"="c:\documents and settings\All Users\Desktop\Kaspersky Lab Tool\is-8Q4PB\is-8Q4PB.exe" [2008-06-07 217088]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-04 15360]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableTaskMgr"= 1 (0x1)
"DisableRegistryTools"= 1 (0x1)
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\system]
"NoConfigPage"= 0 (0x0)
"NoDevMgrPage"= 0 (0x0)
"NoFileSysPage"= 0 (0x0)
"NoVirtMemPage"= 0 (0x0)
[HKLM\~\startupfolder\C:^Documents and Settings^Administrator^Start Menu^Programs^Startup^Webshots.lnk]
path=c:\documents and settings\Administrator\Start Menu\Programs\Startup\Webshots.lnk
backup=c:\windows\pss\Webshots.lnkStartup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
backup=c:\windows\pss\Adobe Reader Speed Launch.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Synchronizer.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk
backup=c:\windows\pss\Adobe Reader Synchronizer.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Microsoft Office.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk
backup=c:\windows\pss\Microsoft Office.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
--a------ 2005-12-16 12:57 94208 c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
--a------ 2004-08-04 00:56 15360 c:\windows\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
--a------ 2009-04-03 15:21 122880 c:\program files\CyberLink\PowerDVD\Language\Language.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
--a------ 2009-04-03 15:39 5738496 c:\program files\MSN Messenger\msnmsgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
--a------ 2001-07-09 10:50 155648 c:\windows\system32\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
--a------ 2009-04-03 15:21 108032 c:\program files\CyberLink\PowerDVD\PDVDServ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
--a------ 2009-04-03 15:33 249856 c:\program files\Common Files\Real\Update_OB\realsched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Yahoo! Pager]
--a------ 2009-04-03 15:41 4734976 c:\program files\Yahoo!\Messenger\YAHOOMESSENGER.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
-r------- 2005-05-04 04:43 69632 c:\windows\Alcmtr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
-r------- 2005-10-15 03:51 14864384 c:\windows\RTHDCPL.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001
"UacDisableNotify"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001
"AntiVirusDisableNotify"=dword:00000001
"FirewallDisableNotify"=dword:00000001
"FirewallOverride"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
"UacDisableNotify"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"c:\\Program Files\\MSN Messenger\\livecall.exe"=
"c:\\WINDOWS\\ALCMTR.EXE"=
"c:\\WINDOWS\\system32\\userinit.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YServer.exe"=
"c:\\Program Files\\Nero\\Nero 7\\Nero StartSmart\\NeroStartSmart.exe"=
"c:\\WINDOWS\\system32\\MsiExec.exe"=
"c:\\WINDOWS\\system32\\wuauclt.exe"=
"c:\\WINDOWS\\system32\\mmc.exe"=
"c:\\Program Files\\Thomson\\SpeedTouch USB\\Dragdiag.exe"=
"c:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"i:\\أخرى\\برامج\\برامج للكمبيوتر\\برنامج الاشكال الصوتية.exe"=
"i:\\أخرى\\برنامج ميديا بلير 11.exe"=
"i:\\LC-1518B1.exe"=
"c:\\Program Files\\MSN Messenger\\usnsvc.exe"=
"i:\\أخرى\\برامج\\برامج للكمبيوتر\\برنامج الكاسبر سكاي2008\\Kaspersky Internet Security v7.0.1.325 Final by NOOR\\kis7.0.1.325en.exe"=
"i:\\أخرى\\برامج\\برامج للكمبيوتر\\العاب\\لعبة الكابتن ماجد باللغة العربية\\VirtuaNES.exe"=
"c:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WLLoginProxy.exe"=
"i:\\أخرى\\برامج\\برامج للكمبيوتر\\برنامج البيانو\\برنامج البيانو.exe"=
"c:\\Program Files\\Internet Download Manager\\IDMan.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\GrooveMonitor.exe"=
"unwise_.exe"= unwise_.exe:SYSTEM
"c:\\WINDOWS\\Fonts\\unwise_.exe"=
"i:\\?I??\\E?C??\\E?C?? ????E??E?\\E??C?? C?CO?C? C???E?E.exe"=
"i:\\?I??\\E??C?? ??I?C E??? 11.exe"=
"i:\\?I??\\E?C??\\E?C?? ????E??E?\\E??C?? C??C?E? ??C?2008\\Kaspersky Internet Security v7.0.1.325 Final by NOOR\\kis7.0.1.325en.exe"=
"i:\\?I??\\E?C??\\E?C?? ????E??E?\\C??CE\\??EE C??CEE? ?C?I EC??UE C???E?E\\VirtuaNES.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"8236:TCP"= 8236:TCP:svbeiuuk
"9991:TCP"= 9991:TCP:PORT2
"1013:TCP"= 1013:TCP:BS
"9999:TCP"= 9999:TCP:PORT1
"55656:TCP"= 55656:TCP:FD
R1 is-8Q4PBdrv;is-8Q4PBdrv;c:\windows\system32\drivers\67910662.sys [2009-04-02 148496]
R3 abp470n5;abp470n5;\??\c:\windows\system32\drivers\ermiup.sys --> c:\windows\system32\drivers\ermiup.sys [?]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [2007-12-13 24592]
S2 ekrn;ESET Service;"c:\program files\ESET\ESET Smart Security\ekrn.exe" --> c:\program files\ESET\ESET Smart Security\ekrn.exe [?]
S2 is-8Q4PB;is-8Q4PB;c:\documents and settings\All Users\Desktop\Kaspersky Lab Tool\is-8Q4PB\is-8Q4PB.exe [2009-04-02 217088]
S2 jwjjuhaxt;Time Server;c:\windows\system32\svchost.exe -k netsvcs [2004-08-04 14336]
S2 lwsokqa;Image System;c:\windows\system32\svchost.exe -k netsvcs [2004-08-04 14336]
S2 ympuscoih;Shell Security;c:\windows\system32\svchost.exe -k netsvcs [2004-08-04 14336]
S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [2008-12-20 266240]
S4 Windows Hosts Controller;Windows Hosts Controller;c:\windows\Fonts\unwise_.exe [2009-04-03 140430]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
jwjjuhaxt
lwsokqa
ympuscoih
.
- - - - ORPHANS REMOVED - - - -
HKLM-Run-tsnpstd3 - c:\windows\tsnpstd3.exe
HKLM-Run-UnlockerAssistant - c:\program files\Unlocker\UnlockerAssistant.exe
HKLM-Run-egui - c:\program files\ESET\ESET Smart Security\egui.exe
HKLM-Run-Win32BaseServiceMOD - (no file)
HKLM-Run-Karen - (no file)
HKLM-Run-raVe - (no file)
HKLM-Run-startIE - (no file)
HKLM-Run-SystemInit - (no file)
MSConfigStartUp-SaveNow - c:\program files\SaveNow\SaveNow.exe
MSConfigStartUp-Trickler - c:\docume~1\admini~1\locals~1\temp\fsg\fsg.exe

.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.maannews.net/
IE: &تصدير إلى Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: تحميل الكل بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEGetAll.htm
IE: تحميل بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEExt.htm
IE: تحميل محتوى FLV بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEGetVL.htm
.
.
------- File Associations -------
.
txtfile=NOTEPAD %1
vbefile\shell\edit\command=c:\windows\Notepad.exe %1
vbsfile\shell\edit\command=c:\windows\Notepad.exe %1
.
**************************************************************************
catchme 0.3.1375 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


Rootkit scan 2009-04-05 00:16:47
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet002\Services\jwjjuhaxt]
"ServiceDll"="c:\windows\system32\qzbik.dll"
--
[HKEY_LOCAL_MACHINE\System\ControlSet002\Services\lwsokqa]
"ServiceDll"="c:\windows\system32\qzbik.dll"
--
[HKEY_LOCAL_MACHINE\System\ControlSet002\Services\ympuscoih]
"ServiceDll"="c:\windows\system32\qzbik.dll"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(792)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\klogon.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\ati2evxx.exe
c:\windows\system32\ati2evxx.exe
c:\program files\CyberLink\Shared files\RichVideo.exe
c:\windows\system32\slserv.exe
c:\program files\Internet Download Manager\IEMonitor.exe
.
**************************************************************************
.
Completion time: 2009-04-05 0:19:02 - machine was rebooted
ComboFix-quarantined-files.txt 2009-04-04 22:18:57
Pre-Run: 15,357,136,896 bytes free
Post-Run: 15,316,332,544 bytes free
360 --- E O F --- 2009-04-01 17:59:40
 
وانا اقرأ بالتقرير ادارة المهام والريجستري مبين متل عين الشمس انو القيمة متغيرة من 0 الى1 وانشالله تقدر تساعدني..

اخي ازا مارديت هلأ رح ارد عليك بكرا..
 
للعلم تم حذف 12 أصابة يالغالي ,,

والحين ارجع هات لي تقرير هايجاك جديد​
 
توقيع : Corporation
تفضل..


Scan saved at 00:37:36, on 4/5/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
E:\Zyzoom_HijackThis_2.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [FixCamera] C:\WINDOWS\FixCamera.exe
O4 - HKLM\..\Run: [snpstd3] C:\WINDOWS\vsnpstd3.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [is-8Q4PB] "C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-8Q4PB\is-8Q4PB.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Webshots.lnk = C:\Program Files\Webshots\WebshotsTray.exe
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{449C023E-59E1-4144-86AE-72339F466DEF}: NameServer = 212.14.234.36 195.68.208.230
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - Unknown owner - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe (file missing)
O23 - Service: ESET Service (ekrn) - Unknown owner - C:\Program Files\ESET\ESET Smart Security\ekrn.exe (file missing)
O23 - Service: is-8Q4PB - Kaspersky Lab - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-8Q4PB\is-8Q4PB.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe
--
End of file - 5918 bytes
 
أسمع طبق التالي ,,

اعمل التالي

عطل استعادة النظام وابقها معطلة حسب الشرح التالي

dis_sys_xp.jpg


ثم

حمل الاداة التالية

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي



شغلها فتظهر لك واجهة الاداة
احتر خيار التنظيف مش الفحص > لا تنسى فتظهر شاشة الدوس للفحص
اتركها حتى تنتهي ويظهر التقرير
انسخه والصقه بمشاركتك القادمة


بس تخلص ارفق لي التقرير مع تقرير للهايجاك جديد
 
توقيع : Corporation
اخى فى الله كان عندى نفس الى عندك استعمل هذا البرنامج

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي

 
واعمل fast scan
 
شكرا لكم اخواني والله بجد انتو ماقصرتو انا رح اعمل متل مابـتأمروني ومشكور كتير..
 
تفضل اخي كومباك 99 التقرير..


Engine Load Time : 22141 milliseconds
AV DAT Version : 5492.0000 488805 detections Built Sunday, January 11, 2009
Extra DAT : 0 detections

Process : C:\WINDOWS\System32\svchost.exe : contains "Trojan" called "W32/Conficker!mem" (No Action Taken (Clean failed) )
Process : C:\WINDOWS\system32\svchost.exe : contains "Trojan" called "W32/Conficker!mem" (No Action Taken (Clean failed) )
Process : C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
Process : C:\Program Files\Common Files\Real\Update_OB\realsched.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
Process : C:\WINDOWS\vsnpstd3.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
Process : C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
Memory : Repair Failed
Please wait ... building list of critical files to scan
File : C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Common Files\InstallShield\engine\6\Intel 32\iKernel.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSE7.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLED.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Common Files\Real\GToolbar\GoogleToolbarInstaller.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Common Files\Real\Update_OB\RealOneMessageCenter.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Common Files\Real\Update_OB\realsched.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Common Files\Real\Update_OB\rnxproc.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Common Files\Real\Update_OB\upgrdhlp.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\CyberLink\PowerDVD\Language\Language.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\InstallShield Installation Information\{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\InstallShield Installation Information\{ECD03DA7-5952-406A-8156-5F0C93618D1F}\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Internet Download Manager\Uninstall.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\JetAudio\JetAudio.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\JetAudio\jetchat.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\JetAudio\jetlyric.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\ma-config.com\maconfservice.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Messenger\msmsgs.exe : contains "Virus" called "W32/Sality.ao" (No Action Taken (Clean failed) )
File : C:\Program Files\Microsoft Office\Office10\FRONTPG.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Microsoft Office\Office10\GRAPH.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Microsoft Office\Office10\msohtmed.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Microsoft Office\Office10\PROFLWIZ.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Microsoft Office\Office12\excelcnv.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Microsoft Office\Office12\GRAPH.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Microsoft Office\Office12\INFOPATH.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Microsoft Office\Office12\MSACCESS.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Microsoft Office\Office12\msohtmed.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Microsoft Office\Office12\MSPUB.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Microsoft Office\Office12\MSTORE.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Microsoft Office\Office12\Wordconv.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\MSN Messenger\livecall.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\MSN Messenger\MsnMsgr.Exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\MSN Messenger\msvs.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\MSN Messenger\usnsvc.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Nero\Nero 7\Core\Nero.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Nero\Nero 7\Nero Fast CD-DVD Burning Plug-in\WMPBurn.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Nero\Nero 7\Nero ImageDrive\ImageDrive.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Nero\Nero 7\nero\uninstall\UNNERO.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\PianitoStudio\PianitoStudio.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Real\RealPlayer\realplay.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Real\RealPlayer\RecordingManager.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Real\RealPlayer\rphelperapp.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Real\RealPlayer\Setup\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Thomson\SpeedTouch USB\DragDiag.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Unlocker\uninst.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Windows Media Player\wmlaunch.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Windows Media Player\wmpenc.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Windows Media Player\wmpnetwk.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Windows Media Player\wmsetsdk.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\DTNaskh\DTNASKH.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\DTRuqah\DTRUQAH.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\DW\DW20.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\DW\DWTRIG20.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\EQUATION\EQNEDT32.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\Msinfo\OFFPRV10.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\MSINFO\OINFOP12.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\COMMON~1\MICROS~1\Office10\DW.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\LIVING~1\UNINSTAL.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\MICROS~2\Office10\1025\MSOHELP.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\MICROS~2\Office10\MSTORDB.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\MICROS~2\Office10\MSTORE.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\MICROS~2\Office10\OSA.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\MICROS~2\Office12\1033\ONELEV.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\MICROS~2\Office12\CNFNOT32.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\MICROS~2\Office12\DSSM.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\MICROS~2\Office12\GROOVE.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\MICROS~2\Office12\MSQRY32.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\MICROS~2\Office12\MSTORDB.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\MICROS~2\Office12\OIS.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\MICROS~2\Office12\VPREVIEW.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\MSNMES~1\DEVICE~1\msgrdvmn.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\MSNMES~1\msnmsgr.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\PROGRA~1\Yahoo!\MESSEN~1\YServer.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : C:\WINDOWS\vsnpstd3.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : I:\أخرى\برنامج Jetaudio\JAD7_BASIC.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
Critical : Repair Failed
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
c:\Documents and Settings\Administrator\NTUSER.DAT : Scan Failed
c:\Documents and Settings\Administrator\ntuser.dat.LOG : Scan Failed
File : c:\Documents and Settings\Administrator\Desktop\The Dictionary\Uninstal.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Documents and Settings\Administrator\Desktop\The Dictionary\Uninstal.exe : Repaired
c:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\Administrator\Local Settings\temp\Perflib_Perfdata_c50.dat : Scan Failed
File : c:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files\Kaspersky Internet Security 2009\english\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files\Kaspersky Internet Security 2009\english\setup.exe : Repaired
File : c:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files\Kaspersky Internet Security 7.0.1.325\English\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files\Kaspersky Internet Security 7.0.1.325\English\setup.exe : Repaired
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
File : c:\epson\epson10609\SETUP.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\epson\epson10609\SETUP.EXE : Repaired
File : c:\MSOCache\All Users\{90120000-0115-0409-0000-0000000FF1CE}-C\DW20.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\MSOCache\All Users\{90120000-0115-0409-0000-0000000FF1CE}-C\DW20.EXE : Repaired
File : c:\MSOCache\All Users\{90120000-0115-0409-0000-0000000FF1CE}-C\dwtrig20.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\MSOCache\All Users\{90120000-0115-0409-0000-0000000FF1CE}-C\dwtrig20.exe : Repaired
File : c:\MSOCache\All Users\{91120000-002E-0000-0000-0000000FF1CE}-C\ose.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\MSOCache\All Users\{91120000-002E-0000-0000-0000000FF1CE}-C\ose.exe : Repaired
File : c:\MSOCache\All Users\{91120000-002E-0000-0000-0000000FF1CE}-C\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\MSOCache\All Users\{91120000-002E-0000-0000-0000000FF1CE}-C\setup.exe : Repaired
File : c:\Program Files\Adobe\Adobe Help Viewer\1.0\ahv.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Adobe\Adobe Help Viewer\1.0\ahv.exe : Repaired
File : c:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe : Repaired
File : c:\Program Files\Adobe\Reader 8.0\Setup Files\{AC76BA86-7AD7-1033-7B44-A80000000002}\Setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Adobe\Reader 8.0\Setup Files\{AC76BA86-7AD7-1033-7B44-A80000000002}\Setup.exe : Repaired
File : c:\Program Files\AML Products\Power AMR MP3 WAV WMA M4A AC3 Audio Converter\audio.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\AML Products\Power AMR MP3 WAV WMA M4A AC3 Audio Converter\audio.exe : Repaired
File : c:\Program Files\AML Products\Power AMR MP3 WAV WMA M4A AC3 Audio Converter\r.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\AML Products\Power AMR MP3 WAV WMA M4A AC3 Audio Converter\r.exe : Repaired
File : c:\Program Files\AML Products\Power AMR MP3 WAV WMA M4A AC3 Audio Converter\reg.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\AML Products\Power AMR MP3 WAV WMA M4A AC3 Audio Converter\reg.exe : Repaired
File : c:\Program Files\AML Products\Power AMR MP3 WAV WMA M4A AC3 Audio Converter\tag.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\AML Products\Power AMR MP3 WAV WMA M4A AC3 Audio Converter\tag.exe : Repaired
File : c:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe : Repaired
File : c:\Program Files\Common Files\Adobe\Updater5\AdobeUpdaterInstallMgr.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Adobe\Updater5\AdobeUpdaterInstallMgr.exe : Repaired
File : c:\Program Files\Common Files\Ahead\Lib\NeroScoutOptions.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Ahead\Lib\NeroScoutOptions.exe : Repaired
File : c:\Program Files\Common Files\Ahead\Lib\NeroUpgrade.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Ahead\Lib\NeroUpgrade.exe : Repaired
File : c:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe : Repaired
File : c:\Program Files\Common Files\Microsoft Shared\MSSearch\Bin\SrchAdmStp.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Microsoft Shared\MSSearch\Bin\SrchAdmStp.exe : Repaired
File : c:\Program Files\Common Files\Microsoft Shared\Office10\CONVTEXT.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Microsoft Shared\Office10\CONVTEXT.EXE : Repaired
File : c:\Program Files\Common Files\Microsoft Shared\OFFICE12\ACECNFLT.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Microsoft Shared\OFFICE12\ACECNFLT.EXE : Repaired
File : c:\Program Files\Common Files\Microsoft Shared\OFFICE12\OFFDIAG.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Microsoft Shared\OFFICE12\OFFDIAG.EXE : Repaired
File : c:\Program Files\Common Files\Microsoft Shared\OFFICE12\OFFLB.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Microsoft Shared\OFFICE12\OFFLB.EXE : Repaired
File : c:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\ODEPLOY.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\ODEPLOY.EXE : Repaired
File : c:\Program Files\Common Files\Microsoft Shared\web server extensions\50\bin\CFGWIZ.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Microsoft Shared\web server extensions\50\bin\CFGWIZ.EXE : Repaired
File : c:\Program Files\Common Files\Microsoft Shared\web server extensions\50\bin\OWSADM.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Microsoft Shared\web server extensions\50\bin\OWSADM.EXE : Repaired
File : c:\Program Files\Common Files\Microsoft Shared\web server extensions\50\bin\OWSRMADM.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Microsoft Shared\web server extensions\50\bin\OWSRMADM.EXE : Repaired
File : c:\Program Files\Common Files\Microsoft Shared\web server extensions\50\bin\TCPTEST.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Microsoft Shared\web server extensions\50\bin\TCPTEST.EXE : Repaired
File : c:\Program Files\Common Files\Microsoft Shared\web server extensions\50\isapi\FPCOUNT.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Microsoft Shared\web server extensions\50\isapi\FPCOUNT.EXE : Repaired
File : c:\Program Files\Common Files\Real\Update_OB\realsched.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\Real\Update_OB\realsched.exe : Repaired
File : c:\Program Files\Common Files\snpstd3\tsnpstd3.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Common Files\snpstd3\tsnpstd3.exe : Repaired
File : c:\Program Files\CyberLink\PowerDVD\CLDMA.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\CyberLink\PowerDVD\CLDMA.exe : Repaired
File : c:\Program Files\CyberLink\PowerDVD\cltest.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\CyberLink\PowerDVD\cltest.exe : Repaired
File : c:\Program Files\CyberLink\PowerDVD\dvdrgn.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\CyberLink\PowerDVD\dvdrgn.exe : Repaired
File : c:\Program Files\CyberLink\PowerDVD\PowerDVD.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\CyberLink\PowerDVD\PowerDVD.exe : Repaired
File : c:\Program Files\CyberLink\PowerDVD\OLRSubmission\OLRStateCheck.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\CyberLink\PowerDVD\OLRSubmission\OLRStateCheck.exe : Repaired
File : c:\Program Files\CyberLink\PowerDVD\OLRSubmission\OLRSubmission.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\CyberLink\PowerDVD\OLRSubmission\OLRSubmission.exe : Repaired
File : c:\Program Files\CyberLink\Shared files\richvideoinstall.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\CyberLink\Shared files\richvideoinstall.exe : Repaired
File : c:\Program Files\CyberLink\Shared files\richvideouninstall.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\CyberLink\Shared files\richvideouninstall.exe : Repaired
File : c:\Program Files\InstallShield Installation Information\{1735AD57-FD6E-4EB5-A276-56C2574D6412}\Setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\InstallShield Installation Information\{1735AD57-FD6E-4EB5-A276-56C2574D6412}\Setup.exe : Repaired
File : c:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe : Repaired
File : c:\Program Files\InstallShield Installation Information\{9A3EABC0-CA06-11D4-BF77-00104B130C19}\Setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\InstallShield Installation Information\{9A3EABC0-CA06-11D4-BF77-00104B130C19}\Setup.exe : Repaired
File : c:\Program Files\InstallShield Installation Information\{D41FAAA9-8048-4906-86B2-9AADEA1FA0B7}\Setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\InstallShield Installation Information\{D41FAAA9-8048-4906-86B2-9AADEA1FA0B7}\Setup.exe : Repaired
File : c:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\setup.exe : Repaired
File : c:\Program Files\Internet Download Manager\IDMGrHlp.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Internet Download Manager\IDMGrHlp.exe : Repaired
File : c:\Program Files\JetAudio\ffmpeg_vx.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\JetAudio\ffmpeg_vx.exe : Repaired
File : c:\Program Files\JetAudio\JcServer.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\JetAudio\JcServer.exe : Repaired
File : c:\Program Files\JetAudio\JetAudio.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\JetAudio\JetAudio.exe : Repaired
File : c:\Program Files\JetAudio\JetCast.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\JetAudio\JetCast.exe : Repaired
File : c:\Program Files\JetAudio\JetDown.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\JetAudio\JetDown.exe : Repaired
File : c:\Program Files\JetAudio\JetRecorder.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\JetAudio\JetRecorder.exe : Repaired
File : c:\Program Files\JetAudio\JetTrim.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\JetAudio\JetTrim.exe : Repaired
File : c:\Program Files\JetAudio\jetUpdate.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\JetAudio\jetUpdate.exe : Repaired
File : c:\Program Files\JetAudio\JetVidCnv.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\JetAudio\JetVidCnv.exe : Repaired
File : c:\Program Files\JetAudio\JetVidCopy.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\JetAudio\JetVidCopy.exe : Repaired
File : c:\Program Files\JetAudio\Skin\makejsk.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\JetAudio\Skin\makejsk.exe : Repaired
File : c:\Program Files\JetAudio\Vis\vis_synesth_config.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\JetAudio\Vis\vis_synesth_config.exe : Repaired
File : c:\Program Files\ma-config.com\mcsettings.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\ma-config.com\mcsettings.exe : Repaired
File : c:\Program Files\Messenger\msmsgs.exe : contains "Virus" called "W32/Sality.ao" (No Action Taken (Clean failed) )
c:\Program Files\Messenger\msmsgs.exe : Repair Failed
File : c:\Program Files\Microsoft Office\Office10\FRONTPG.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office10\FRONTPG.EXE : Repaired
File : c:\Program Files\Microsoft Office\Office10\MCDLC.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office10\MCDLC.EXE : Repaired
File : c:\Program Files\Microsoft Office\Office10\MSIMPORT.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office10\MSIMPORT.EXE : Repaired
File : c:\Program Files\Microsoft Office\Office10\VTIDB.EXE : contains "Virus" called "W32/Sality.ao" (No Action Taken (Clean failed) )
c:\Program Files\Microsoft Office\Office10\VTIDB.EXE : Repair Failed
File : c:\Program Files\Microsoft Office\Office10\VTIDISC.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office10\VTIDISC.EXE : Repaired
File : c:\Program Files\Microsoft Office\Office10\VTIFORM.EXE : contains "Virus" called "W32/Sality.ao" (No Action Taken (Clean failed) )
c:\Program Files\Microsoft Office\Office10\VTIFORM.EXE : Repair Failed
File : c:\Program Files\Microsoft Office\Office10\VTIPRES.EXE : contains "Virus" called "W32/Sality.ao" (No Action Taken (Clean failed) )
c:\Program Files\Microsoft Office\Office10\VTIPRES.EXE : Repair Failed
File : c:\Program Files\Microsoft Office\Office12\CLVIEW.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office12\CLVIEW.EXE : Repaired
File : c:\Program Files\Microsoft Office\Office12\DRAT.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office12\DRAT.EXE : Repaired
File : c:\Program Files\Microsoft Office\Office12\GrooveClean.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office12\GrooveClean.exe : Repaired
File : c:\Program Files\Microsoft Office\Office12\GrooveMigrator.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office12\GrooveMigrator.exe : Repaired
File : c:\Program Files\Microsoft Office\Office12\OIS.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office12\OIS.EXE : Repaired
File : c:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE : Repaired
File : c:\Program Files\Microsoft Office\Office12\REGFORM.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office12\REGFORM.EXE : Repaired
File : c:\Program Files\Microsoft Office\Office12\SCANOST.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office12\SCANOST.EXE : Repaired
File : c:\Program Files\Microsoft Office\Office12\SCANPST.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office12\SCANPST.EXE : Repaired
File : c:\Program Files\Microsoft Office\Office12\SELFCERT.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office12\SELFCERT.EXE : Repaired
File : c:\Program Files\Microsoft Office\Office12\SETLANG.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Microsoft Office\Office12\SETLANG.EXE : Repaired
File : c:\Program Files\MSN\MSNCoreFiles\Install\msnsusii.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\MSN\MSNCoreFiles\Install\msnsusii.exe : Repaired
File : c:\Program Files\MSN\MSNCoreFiles\Install\MSN9Components\Digcore.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\MSN\MSNCoreFiles\Install\MSN9Components\Digcore.exe : Repaired
File : c:\Program Files\MSN\MSNCoreFiles\Install\MSN9Components\Msncli.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\MSN\MSNCoreFiles\Install\MSN9Components\Msncli.exe : Repaired
File : c:\Program Files\MSN Messenger\msnmsgr.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\MSN Messenger\msnmsgr.exe : Repaired
File : c:\Program Files\MSN Messenger\Device Manager\dpinst.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\MSN Messenger\Device Manager\dpinst.exe : Repaired
File : c:\Program Files\Nero\Nero 7\Core\NeroCmd.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Nero\Nero 7\Core\NeroCmd.exe : Repaired
File : c:\Program Files\Nero\Nero 7\Nero StartSmart\NeroStartSmart.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Nero\Nero 7\Nero StartSmart\NeroStartSmart.exe : Repaired
File : c:\Program Files\Nero\Nero 7\Nero WaveEditor\DXEnum.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Nero\Nero 7\Nero WaveEditor\DXEnum.exe : Repaired
File : c:\Program Files\PianitoStudio\PianitoStudio.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\PianitoStudio\PianitoStudio.exe : Repaired
File : c:\Program Files\Real\RealPlayer\RealPlay.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Real\RealPlayer\RealPlay.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\Alcmtr.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Realtek\InstallShield\Alcmtr.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\ChCfg.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Realtek\InstallShield\ChCfg.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\KB888111xpsp2.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Realtek\InstallShield\KB888111xpsp2.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\RtlUpd.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Realtek\InstallShield\RtlUpd.exe : Repaired
File : c:\Program Files\Realtek\InstallShield\SoundMan.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Realtek\InstallShield\SoundMan.exe : Repaired
File : c:\Program Files\Thomson\SpeedTouch USB\tools\dm.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Thomson\SpeedTouch USB\tools\dm.exe : Repaired
File : c:\Program Files\Thomson\SpeedTouch USB\tools\regutil.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Thomson\SpeedTouch USB\tools\regutil.exe : Repaired
File : c:\Program Files\Thomson\SpeedTouch USB\tools\scan.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Thomson\SpeedTouch USB\tools\scan.exe : Repaired
File : c:\Program Files\Total Video Converter\regsvr32.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Total Video Converter\regsvr32.exe : Repaired
File : c:\Program Files\Total Video Converter\TVC.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Total Video Converter\TVC.EXE : Repaired
File : c:\Program Files\UltraISO\Patch.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\UltraISO\Patch.exe : Repaired
File : c:\Program Files\UltraISO\drivers\IsoCmd.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\UltraISO\drivers\IsoCmd.exe : Repaired
File : c:\Program Files\Unlocker\eBay_shortcuts_1016.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Unlocker\eBay_shortcuts_1016.exe : Repaired
File : c:\Program Files\Windows Media Connect 2\wmccds.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Windows Media Connect 2\wmccds.exe : Repaired
File : c:\Program Files\Windows Media Connect 2\WMCCFG.exe : contains "Virus" called "W32/Sality.ao" (No Action Taken (Clean failed) )
c:\Program Files\Windows Media Connect 2\WMCCFG.exe : Repair Failed
File : c:\Program Files\Windows Media Player\wmdbexport.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Windows Media Player\wmdbexport.exe : Repaired
File : c:\Program Files\Windows Media Player\wmpnscfg.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Windows Media Player\wmpnscfg.exe : Repaired
File : c:\Program Files\Windows Media Player\wmpshare.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Windows Media Player\wmpshare.exe : Repaired
File : c:\Program Files\Yahoo!\Messenger\Ymsgr_tray.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Yahoo!\Messenger\Ymsgr_tray.exe : Repaired
File : c:\Program Files\Yahoo!\Messenger\yupdater.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Yahoo!\Messenger\yupdater.exe : Repaired
File : c:\Program Files\Your Uninstaller 2008\fos.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\Program Files\Your Uninstaller 2008\fos.exe : Repaired
File : c:\WINDOWS\vsnpstd3.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
c:\WINDOWS\vsnpstd3.exe : Repaired
File : c:\WINDOWS\system32\asr_nbufq : contains "Virus" called "W32/Sdbot.worm!ftp" (Deleted )
c:\WINDOWS\system32\asr_nbufq : Deleted
File : c:\WINDOWS\system32\qzbik.dll\qzbik.dll : contains "Virus" called "W32/Conficker.worm.gen.a" (Deleted )
c:\WINDOWS\system32\qzbik.dll : Deleted
c:\WINDOWS\system32\config\default : Scan Failed
c:\WINDOWS\system32\config\default.LOG : Scan Failed
c:\WINDOWS\system32\config\SAM : Scan Failed
c:\WINDOWS\system32\config\SAM.LOG : Scan Failed
c:\WINDOWS\system32\config\SECURITY : Scan Failed
c:\WINDOWS\system32\config\SECURITY.LOG : Scan Failed
c:\WINDOWS\system32\config\software : Scan Failed
c:\WINDOWS\system32\config\software.LOG : Scan Failed
c:\WINDOWS\system32\config\system : Scan Failed
c:\WINDOWS\system32\config\system.LOG : Scan Failed
c:\WINDOWS\system32\drivers\fidbox.dat : Scan Failed
c:\WINDOWS\system32\drivers\fidbox.idx : Scan Failed
c:\WINDOWS\system32\drivers\fidbox2.dat : Scan Failed
c:\WINDOWS\system32\drivers\fidbox2.idx : Scan Failed
Scanning the registry
Registry : Clean

Summary :-
FilesFound : 27247
FilesScanned : 14758
FilesNotScanned : 12489

ObjectsFound : 62414
ObjectsInfected : 204
ObjectsCleaned : 194
ObjectsDeleted : 2

FilesInfected : 113
FilesCleaned : 106
FilesMoved : 0
FilesDeleted : 2

Started at : 15:00:56 Sunday, April 05, 2009
Ended at : 15:29:52 Sunday, April 05, 2009
Duration : 28 minutes 55 seconds
2584 MB scanned in 1735 seconds = 1525 KB/s
Engine Version : 5300.2777
Engine Load Time : 20359 milliseconds
AV DAT Version : 5492.0000 488805 detections Built Sunday, January 11, 2009
Extra DAT : 0 detections


Summary :-
FilesFound : 5
FilesScanned : 3
FilesNotScanned : 2

ObjectsFound : 5
ObjectsInfected : 0
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 15:30:15 Sunday, April 05, 2009
Ended at : 15:30:16 Sunday, April 05, 2009
Duration : 0 seconds
Engine Version : 5300.2777
Engine Load Time : 18719 milliseconds
AV DAT Version : 5492.0000 488805 detections Built Sunday, January 11, 2009
Extra DAT : 0 detections

File : e:\cs16patch_full_V22.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
e:\cs16patch_full_V22.exe : Repaired
File : e:\SmitfraudFix.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
e:\SmitfraudFix.exe : Repaired
File : e:\SmitfraudFix\Process.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
e:\SmitfraudFix\Process.exe : Repaired
File : e:\SmitfraudFix\Reboot.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
e:\SmitfraudFix\Reboot.exe : Repaired
File : e:\SmitfraudFix\SmiUpdate.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
e:\SmitfraudFix\SmiUpdate.exe : Repaired
File : e:\SmitfraudFix\UIFix.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
e:\SmitfraudFix\UIFix.exe : Repaired
File : e:\SmitfraudFix\unzip.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
e:\SmitfraudFix\unzip.exe : Repaired
File : e:\SmitfraudFix\WS2Fix.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
e:\SmitfraudFix\WS2Fix.exe : Repaired

Summary :-
FilesFound : 69
FilesScanned : 62
FilesNotScanned : 7

ObjectsFound : 76
ObjectsInfected : 8
ObjectsCleaned : 8
ObjectsDeleted : 0

FilesInfected : 8
FilesCleaned : 8
FilesMoved : 0
FilesDeleted : 0

Started at : 15:30:36 Sunday, April 05, 2009
Ended at : 15:31:16 Sunday, April 05, 2009
Duration : 39 seconds
67 MB scanned in 39 seconds = 1785 KB/s
Engine Version : 5300.2777
Engine Load Time : 18625 milliseconds
AV DAT Version : 5492.0000 488805 detections Built Sunday, January 11, 2009
Extra DAT : 0 detections


Summary :-
FilesFound : 5
FilesScanned : 3
FilesNotScanned : 2

ObjectsFound : 5
ObjectsInfected : 0
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 15:31:35 Sunday, April 05, 2009
Ended at : 15:31:36 Sunday, April 05, 2009
Duration : 0 seconds
Engine Version : 5300.2777
Engine Load Time : 18062 milliseconds
AV DAT Version : 5492.0000 488805 detections Built Sunday, January 11, 2009
Extra DAT : 0 detections

File : H:\MSOCache\All Users\{90120000-0115-0409-0000-0000000FF1CE}-C\DW20.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
H:\MSOCache\All Users\{90120000-0115-0409-0000-0000000FF1CE}-C\DW20.EXE : Repaired

Summary :-
FilesFound : 29946
FilesScanned : 22908
FilesNotScanned : 7038

ObjectsFound : 36737
ObjectsInfected : 1
ObjectsCleaned : 1
ObjectsDeleted : 0

FilesInfected : 1
FilesCleaned : 1
FilesMoved : 0
FilesDeleted : 0

Started at : 15:31:55 Sunday, April 05, 2009
Ended at : 15:46:18 Sunday, April 05, 2009
Duration : 14 minutes 23 seconds
2765 MB scanned in 863 seconds = 3 MB/s
Engine Version : 5300.2777
Engine Load Time : 18812 milliseconds
AV DAT Version : 5492.0000 488805 detections Built Sunday, January 11, 2009
Extra DAT : 0 detections

File : I:\aswclnr.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\aswclnr.exe : Repaired
File : I:\LC-1518B1.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\LC-1518B1.exe : Repaired
File : I:\Podmailing_Setup_0_11_1.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\Podmailing_Setup_0_11_1.exe : Repaired
File : I:\ati catalyst 8.5rc1 xp\AtiCimUn.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\ati catalyst 8.5rc1 xp\AtiCimUn.exe : Repaired
File : I:\ati catalyst 8.5rc1 xp\ATIPCE\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\ati catalyst 8.5rc1 xp\ATIPCE\setup.exe : Repaired
File : I:\ati catalyst 8.5rc1 xp\NET64A\setupnet.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\ati catalyst 8.5rc1 xp\NET64A\setupnet.exe : Repaired
File : I:\ati catalyst 8.5rc1 xp\SBDrv\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\ati catalyst 8.5rc1 xp\SBDrv\setup.exe : Repaired
File : I:\ati catalyst 8.5rc1 xp\TVW_HSUSB\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\ati catalyst 8.5rc1 xp\TVW_HSUSB\setup.exe : Repaired
File : I:\Battlefield2v1.0NoDVDFixedexeEng\Battlefield.2.NoCD.crack-RELOADED.Bohne\BF2.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\Battlefield2v1.0NoDVDFixedexeEng\Battlefield.2.NoCD.crack-RELOADED.Bohne\BF2.exe : Repaired
File : I:\RECYCLER\S-1-5-21-823518204-1425521274-839522115-500\De1.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\RECYCLER\S-1-5-21-823518204-1425521274-839522115-500\De1.exe : Repaired
File : I:\RECYCLER\S-1-5-21-823518204-1425521274-839522115-500\De2.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\RECYCLER\S-1-5-21-823518204-1425521274-839522115-500\De2.exe : Repaired
File : I:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042806.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042806.exe : Repaired
File : I:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042811.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042811.exe : Repaired
File : I:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042820.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042820.exe : Repaired
File : I:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042843.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042843.exe : Repaired
File : I:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042848.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042848.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001073.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001073.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001076.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001076.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001077.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001077.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001079.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001079.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001080.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001080.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001081.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001081.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001082.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001082.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001083.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001083.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001084.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001084.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001085.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001085.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001086.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001086.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001087.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001087.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001088.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001088.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001089.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001089.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001091.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001091.exe : Repaired
File : I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001092.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP14\A0001092.exe : Repaired
File : I:\winamp_pro_5.52_with_working_patch_3ashqalbramj\winamp552_full_emusic-7plus_en-us.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\winamp_pro_5.52_with_working_patch_3ashqalbramj\winamp552_full_emusic-7plus_en-us.exe : Repaired
File : I:\أخرى\برنامج ميديا بلير 11.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برنامج ميديا بلير 11.exe : Repaired
File : I:\أخرى\برامج\برنامج بي سي ستيوت للنوكيا.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برنامج بي سي ستيوت للنوكيا.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج افانت برورز.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج افانت برورز.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج الاشكال الصوتية.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج الاشكال الصوتية.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج الفايرفوكس.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج الفايرفوكس.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج تعريف الماسح الضوئي.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج تعريف الماسح الضوئي.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتزيين المواضيع في المنتدى.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتزيين المواضيع في المنتدى.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لربط بين جهازين.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لربط بين جهازين.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لضغط الملفات.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لضغط الملفات.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لقياس درجة حرارة الجهاز.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لقياس درجة حرارة الجهاز.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج للمراقبة.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج للمراقبة.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\لتصوير ديسك توب.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\لتصوير ديسك توب.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\العاب\CS 1.6\CStrike_1.6\hl.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\العاب\CS 1.6\CStrike_1.6\hl.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\العاب\CS 1.6\CStrike_1.6\hlds.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\العاب\CS 1.6\CStrike_1.6\hlds.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\العاب\CS 1.6\CStrike_1.6\hltv.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\العاب\CS 1.6\CStrike_1.6\hltv.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\العاب\CS 1.6\CStrike_1.6\UNWISE.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\العاب\CS 1.6\CStrike_1.6\UNWISE.EXE : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\العاب\CS 1.6\CStrike_1.6\WriteMiniDump.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\العاب\CS 1.6\CStrike_1.6\WriteMiniDump.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\العاب\لعبة الكابتن ماجد باللغة العربية\VirtuaNES.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\العاب\لعبة الكابتن ماجد باللغة العربية\VirtuaNES.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برامج الطمر على المايك\f9.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : I:\أخرى\برامج\برامج للكمبيوتر\برامج الطمر على المايك\mic.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برامج الطمر على المايك\mic.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج اكسبلولر 8\IE8-WindowsXP-x86-ENU.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج اكسبلولر 8\IE8-WindowsXP-x86-ENU.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج الايزو\UltraISO PE 9.0.0.2336

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي

: contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج الايزو\UltraISO PE 9.0.0.2336

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي

: Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج البلوتوث\BlueSoleil 2.3 VoIP\instmsia.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج البلوتوث\BlueSoleil 2.3 VoIP\instmsia.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج البلوتوث\BlueSoleil 2.3 VoIP\instmsiw.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج البلوتوث\BlueSoleil 2.3 VoIP\instmsiw.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج البلوتوث\BlueSoleil 2.3 VoIP\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج البلوتوث\BlueSoleil 2.3 VoIP\setup.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج التورنت\Auto install BitComet v0.90 2007.06.19.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج التورنت\Auto install BitComet v0.90 2007.06.19.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج التورنت\BitComet_0.90_setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج التورنت\BitComet_0.90_setup.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج الحرامي\theif36\THEIF36.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج الحرامي\theif36\THEIF36.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج الديفيدي\Cyberlink PowerDVD v7.0.2211\Setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج الديفيدي\Cyberlink PowerDVD v7.0.2211\Setup.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج الديفيدي\Cyberlink PowerDVD v7.0.2211\RichVideo\RichVideo.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج الديفيدي\Cyberlink PowerDVD v7.0.2211\RichVideo\RichVideo.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج الديفيدي\Cyberlink PowerDVD v7.0.2211\RichVideo\RichVideoInstall.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج الديفيدي\Cyberlink PowerDVD v7.0.2211\RichVideo\RichVideoInstall.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج الديفيدي\Cyberlink PowerDVD v7.0.2211\RichVideo\RichVideoUnInstall.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج الديفيدي\Cyberlink PowerDVD v7.0.2211\RichVideo\RichVideoUnInstall.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج الريل بلير اصدار اخير\RealPlayer11GOLD.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج الريل بلير اصدار اخير\RealPlayer11GOLD.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج السيريالات\Auto install Serials_2000_7.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج السيريالات\Auto install Serials_2000_7.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج الكاسبر سكاي2008\Kaspersky Internet Security v7.0.1.325 Final by NOOR\kis7.0.1.325en.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج الكاسبر سكاي2008\Kaspersky Internet Security v7.0.1.325 Final by NOOR\kis7.0.1.325en.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج الماسنجر hotmail\Auto install Windows Live Messenger-Ar.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج الماسنجر hotmail\Auto install Windows Live Messenger-Ar.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج النيرو\Auto install Nero 7 Lite 7.9.6.0 Final.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج النيرو\Auto install Nero 7 Lite 7.9.6.0 Final.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج الويرنر لضغط الملفات\winrar.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج الويرنر لضغط الملفات\winrar.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج بابليون لترجمة النصوص\4gvbnj65\Babylon7_setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج بابليون لترجمة النصوص\4gvbnj65\Babylon7_setup.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج دليل الانترنت\dlel\setup.exe : contains "Virus" called "W32/Sality.ao" (No Action Taken (Clean failed) )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج دليل الانترنت\dlel\setup.exe : Repair Failed
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لازالة النصوص من الصورة\emy 37\crack\Inpaint.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لازالة النصوص من الصورة\emy 37\crack\Inpaint.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لاسترجاع المحذوفات\Auto install Recover My Files.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لاسترجاع المحذوفات\Auto install Recover My Files.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لاصلاح الاكسبلورر\IEFix.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لاصلاح الاكسبلورر\IEFix.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لاضافة الابتسامات\Auto Stop old smiles.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لاضافة الابتسامات\Auto Stop old smiles.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لاضافة ايقونات للفارة\Cursor XP\Setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لاضافة ايقونات للفارة\Cursor XP\Setup.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتحويل الصورة الى تيكست\pic to txt\Ascgen dotNET.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتحويل الصورة الى تيكست\pic to txt\Ascgen dotNET.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتحويل ملفات البور بوينت الى فلاش\pfsetup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتحويل ويندوز اكس بي الى فيستا\Pack_Vista_Inspirat_1.1.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتحويل ويندوز اكس بي الى فيستا\Pack_Vista_Inspirat_1.1.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع الالعاب\SpeederXP 1.80 patch.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع الالعاب\SpeederXP 1.80 patch.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع التحميل\idman514.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع التحميل\idman514.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع التحميل\Cracked EXE\IDMan.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع التحميل\Cracked EXE\IDMan.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع التصفح\simple dns plus v4 by genial78\simple dns plus v4 by genial78\sdnsplus-setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع التصفح\simple dns plus v4 by genial78\simple dns plus v4 by genial78\sdnsplus-setup.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع النت\cfosspeed-v407-build1379.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع النت\cfosspeed-v407-build1379.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع النت\BramjNeT_ IslamTiTO\cFosSpeed v4.00.1283 x86\cfosspeed-v400.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع النت\BramjNeT_ IslamTiTO\cFosSpeed v4.00.1283 x86\cfosspeed-v400.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع النت\cFosSpeed v4.20 Build 1389 Final\cfosspeed-v420.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع النت\cFosSpeed v4.20 Build 1389 Final\cfosspeed-v420.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع النت\Patch\v4.x.Patch.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع النت\Patch\v4.x.Patch.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع الهارديسك\ramsaverpro.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع الهارديسك\ramsaverpro.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع الهارديسك2\TIGER\ramsaverpro.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتسريع الهارديسك2\TIGER\ramsaverpro.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتغيير الاصوات\funnyvoice\funnyvoice.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتغيير الاصوات\funnyvoice\funnyvoice.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتغيير الايبي\برنامج لتغيير الايبي.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتغيير الايبي\برنامج لتغيير الايبي.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتغيير ايقونات الملفات\HappyEdit.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتغيير ايقونات الملفات\HappyEdit.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتغيير ايقونات الملفات\HappyIcon.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتغيير ايقونات الملفات\HappyIcon.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتغيير ايقونات الملفات\HappyMedia.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتغيير ايقونات الملفات\HappyMedia.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتغيير ايقونات الملفات\install.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتغيير ايقونات الملفات\install.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتغيير ايقونات الملفات\uninst.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتغيير ايقونات الملفات\uninst.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتقطيع الفيديو وتحريره\Easy Video Editor v2.0\Easy Video Editor v2.0.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتقطيع الفيديو وتحريره\Easy Video Editor v2.0\Easy Video Editor v2.0.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتقطيع الفيديو وتحريره\Easy Video Editor v2.0\keygen.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتقطيع الفيديو وتحريره\Easy Video Editor v2.0\keygen.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتكبير الصور الصغيرة\PhotoZoom_Prol_v2.26 By IslamTiTO2\PhotoZoom Pro 2 Setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لتكبير الصور الصغيرة\PhotoZoom_Prol_v2.26 By IslamTiTO2\PhotoZoom Pro 2 Setup.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لجعل وندوز xp اصلي\برنامج لجعل ويندوز xp اصلي\برنامج لجعل ويندوز xp اصلي\WgaTray.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لجعل وندوز xp اصلي\برنامج لجعل ويندوز xp اصلي\برنامج لجعل ويندوز xp اصلي\WgaTray.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لحذف ملفات دون استرجاعها\bcwipe3\bcwipe3.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لحذف ملفات دون استرجاعها\bcwipe3\bcwipe3.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لعمل الشروحات\snagit.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لعمل الشروحات\snagit.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لعمل تواقيع فلاش\mixfx.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لعمل تواقيع فلاش\mixfx.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لفحص درجة حرارة الجهاز\gfhgf4dcn3\hddinsp.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لفحص درجة حرارة الجهاز\gfhgf4dcn3\hddinsp.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لفحص درجة حرارة الجهاز\gfhgf4dcn3\crack\HDInspector.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لفحص درجة حرارة الجهاز\gfhgf4dcn3\crack\HDInspector.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لفك قفل الملف المضغوط\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لفك قفل الملف المضغوط\setup.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لمعرفة من اقفل المحادثة\whosclosingmyconvo\whosclosingmyconvo.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لمعرفة من اقفل المحادثة\whosclosingmyconvo\whosclosingmyconvo.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج لنطق الصور الشخصية\crazytalk.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج لنطق الصور الشخصية\crazytalk.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج مايكروسوفت اوفس 2008\ملف التعريب\setup.exe : contains "Virus" called "W32/Sality.ao" (No Action Taken (Clean failed) )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج مايكروسوفت اوفس 2008\ملف التعريب\setup.exe : Repair Failed
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج مايكروسوفت اوفس 2008\ملف التعريب\Office.ar-sa\DW20.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج مايكروسوفت اوفس 2008\ملف التعريب\Office.ar-sa\DW20.EXE : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج مايكروسوفت اوفس 2008\ملف التعريب\Office.ar-sa\dwtrig20.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج مايكروسوفت اوفس 2008\ملف التعريب\Office.ar-sa\dwtrig20.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج مايكروسوفت اوفس 2008\ملف التعريب\OMUI.ar-sa\ose.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج مايكروسوفت اوفس 2008\ملف التعريب\OMUI.ar-sa\ose.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج مايكروسوفت اوفس 2008\ملف التعريب\PMUI.ar-sa\ose.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج مايكروسوفت اوفس 2008\ملف التعريب\PMUI.ar-sa\ose.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج مايكروسوفت اوفس 2008\ملف التعريب\VisMUI.ar-sa\ose.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج مايكروسوفت اوفس 2008\ملف التعريب\VisMUI.ar-sa\ose.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\برنامج محلل الشخصية\mo7ll\mo7ll\محلل شخصى.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\برنامج محلل الشخصية\mo7ll\mo7ll\محلل شخصى.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\تحويل الصور الى متحركه\تحويل الصور الى متحركه\UnFREEz.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\تحويل الصور الى متحركه\تحويل الصور الى متحركه\UnFREEz.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\خاص_سان اندرياس\N00bmodeV2.0\N00bmodeV2.0\installer.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\خاص_سان اندرياس\N00bmodeV2.0\N00bmodeV2.0\installer.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\كاسبر سكاي 2009\1\لا تنس ذكر الله\التعريب.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\كاسبر سكاي 2009\1\لا تنس ذكر الله\التعريب.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\كاسبر سكاي 2009\KIS.2009.AS061-aljawariss\kis8.0.0.357en.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\كاسبر سكاي 2009\KIS.2009.AS061-aljawariss\kis8.0.0.357en.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\كاسبر سكاي 2009\KIS.2009.AS061-aljawariss\kis8.0.0.357_ar\kis8.0.0.357_ar.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\كاسبر سكاي 2009\KIS.2009.AS061-aljawariss\kis8.0.0.357_ar\kis8.0.0.357_ar.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\لاستخراج الاميلات\Setup.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\لاستخراج الاميلات\Setup.EXE : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\لتحويل صيغة swf الى اي صيغة\SetupSwishvideo.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\لتحويل صيغة swf الى اي صيغة\SetupSwishvideo.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\لجعل ويندوز فيستا اصلي\VistaActivator.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\لجعل ويندوز فيستا اصلي\VistaActivator.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\للكتابة بخط اليد في المسنجر\JournalViewer1.5_KB886179_ENU.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\للكتابة بخط اليد في المسنجر\JournalViewer1.5_KB886179_ENU.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\للكتابة بخط اليد في المسنجر\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\للكتابة بخط اليد في المسنجر\setup.exe : Repaired
File : I:\أخرى\برامج\برامج للكمبيوتر\ماسنجر الياهو\التعريب\التعريب\Setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برامج للكمبيوتر\ماسنجر الياهو\التعريب\التعريب\Setup.exe : Repaired
File : I:\أخرى\برامج\برنامج لتحويل الفيديو الى DVD وحرقه\Keygen\Keygen.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برنامج لتحويل الفيديو الى DVD وحرقه\Keygen\Keygen.exe : Repaired
File : I:\أخرى\برامج\برنامج لترجمة الافلام\SubtitleWorkshop251.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برنامج لترجمة الافلام\SubtitleWorkshop251.exe : Repaired
File : I:\أخرى\برامج\برنامج لدمج الترجمة مع الفيلم\vobsub2.23\VobSub v2.23.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برنامج لدمج الترجمة مع الفيلم\vobsub2.23\VobSub v2.23.exe : Repaired
File : I:\أخرى\برامج\برنامج لعمل قرص DVD\1CDVDC5.0.2.7\patch\1Click.DVD.COPY.5.0.2.7 Patch_by_P!mPdOG!(Clean Version).exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\برامج\برنامج لعمل قرص DVD\1CDVDC5.0.2.7\patch\1Click.DVD.COPY.5.0.2.7 Patch_by_P!mPdOG!(Clean Version).exe : Repaired
File : I:\أخرى\دبابات\دبابات\PTANKS.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\دبابات\دبابات\PTANKS.EXE : Repaired
File : I:\أخرى\دبابات\دبابات\اللعبة.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\دبابات\دبابات\اللعبة.exe : Repaired
File : I:\أخرى\فيديو\workplace\workplace.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\فيديو\workplace\workplace.exe : Repaired
File : I:\أخرى\كراك لكسر الالعاب\techno-www.zyzoom.org crack\4in1 MiniGames CrackPak.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\كراك لكسر الالعاب\techno-www.zyzoom.org crack\4in1 MiniGames CrackPak.exe : Repaired
File : I:\أخرى\لتشغيل الافلام المضغوطة\Dziobas RAR Player 0.006.2 Portable\DziobasPlayer0.006.4.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\لتشغيل الافلام المضغوطة\Dziobas RAR Player 0.006.2 Portable\DziobasPlayer0.006.4.exe : Repaired
File : I:\أخرى\لعبة الشاحنات\Portable Monster Truck Fury.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\لعبة الشاحنات\Portable Monster Truck Fury.exe : Repaired
File : I:\أخرى\لعبة حرب الفضاء\AstroAvenger[2]\AstroAvenger\AstroAvenger.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\أخرى\لعبة حرب الفضاء\AstroAvenger[2]\AstroAvenger\AstroAvenger.exe : Repaired
File : I:\أغاني\أغاني وطنية\فلاشات\Palastine_Kids.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : I:\أغاني\أغاني وطنية\فلاشات\Quds.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
File : I:\افضل برنامج صيانة\TU2008TrialEN.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\افضل برنامج صيانة\TU2008TrialEN.exe : Repaired
File : I:\برنامج اكروبات ريدر\AdbeRdr70_enu_full.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\برنامج اكروبات ريدر\AdbeRdr70_enu_full.exe : Repaired
File : I:\تعريب اوفس\mshaz1000\setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\تعريب اوفس\mshaz1000\setup.exe : Repaired
File : I:\تعريب اوفس\mshaz1000\Office.ar-sa\DW20.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\تعريب اوفس\mshaz1000\Office.ar-sa\DW20.EXE : Repaired
File : I:\تعريب اوفس\mshaz1000\Office.ar-sa\dwtrig20.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\تعريب اوفس\mshaz1000\Office.ar-sa\dwtrig20.exe : Repaired
File : I:\تعريب اوفس\mshaz1000\OMUI.ar-sa\ose.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\تعريب اوفس\mshaz1000\OMUI.ar-sa\ose.exe : Repaired
File : I:\تعريب اوفس\mshaz1000\PMUI.ar-sa\ose.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\تعريب اوفس\mshaz1000\PMUI.ar-sa\ose.exe : Repaired
File : I:\تعريب اوفس\mshaz1000\VisMUI.ar-sa\ose.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\تعريب اوفس\mshaz1000\VisMUI.ar-sa\ose.exe : Repaired
File : I:\صور\FixIEDef.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\FixIEDef.exe : Repaired
File : I:\صور\MsgPlusLive-450.exe : contains "Virus" called "W32/Sality.ao" (No Action Taken (Clean failed) )
I:\صور\MsgPlusLive-450.exe : Repair Failed
File : I:\صور\صـور\تسالي\cat-a-pu.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\cat-a-pu.exe : Repaired
File : I:\صور\صـور\تسالي\circus.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\circus.exe : Repaired
File : I:\صور\صـور\تسالي\Crossroads.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Crossroads.exe : Repaired
File : I:\صور\صـور\تسالي\Funeral.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Funeral.exe : Repaired
File : I:\صور\صـور\تسالي\HusbandWife.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\HusbandWife.exe : Repaired
File : I:\صور\صـور\تسالي\I Want To Spend My Lifetime Loving You.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\I Want To Spend My Lifetime Loving You.exe : Repaired
File : I:\صور\صـور\تسالي\I Will Be Here.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\I Will Be Here.exe : Repaired
File : I:\صور\صـور\تسالي\loft_story_01.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\loft_story_01.exe : Repaired
File : I:\صور\صـور\تسالي\LOVE POEM.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\LOVE POEM.EXE : Repaired
File : I:\صور\صـور\تسالي\LOVE SAYING.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\LOVE SAYING.EXE : Repaired
File : I:\صور\صـور\تسالي\magiccards.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\magiccards.exe : Repaired
File : I:\صور\صـور\تسالي\minimagi.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\minimagi.exe : Repaired
File : I:\صور\صـور\تسالي\Monobole.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Monobole.EXE : Repaired
File : I:\صور\صـور\تسالي\REAL STORY.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\REAL STORY.EXE : Repaired
File : I:\صور\صـور\تسالي\VALENTINE PRESENT.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\VALENTINE PRESENT.EXE : Repaired
File : I:\صور\صـور\تسالي\Valentine.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Valentine.exe : Repaired
File : I:\صور\صـور\تسالي\VIAGRA.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\VIAGRA.EXE : Repaired
File : I:\صور\صـور\تسالي\Viva For Ever.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Viva For Ever.exe : Repaired
File : I:\صور\صـور\تسالي\When Ever When Ever.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\When Ever When Ever.exe : Repaired
File : I:\صور\صـور\تسالي\WorldTra.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\WorldTra.exe : Repaired
File : I:\صور\صـور\تسالي\خليني بالجو.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\خليني بالجو.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\أسامة بن لادن.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\أسامة بن لادن.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\أطفال فلسطين.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\أطفال فلسطين.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\أولى حروب القرن.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\أولى حروب القرن.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\الاستشهاديون.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\الاستشهاديون.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\الانتفاضة 2(1).exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\الانتفاضة 2(1).exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\الدرة.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\الدرة.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\انتفاضة الأقصى.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\انتفاضة الأقصى.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\بالقوة حقك يعود.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\بالقوة حقك يعود.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\ثوار.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\ثوار.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\جرح وأمل.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\جرح وأمل.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\دفاعا عن الأقصى.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\دفاعا عن الأقصى.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\فلسطين مهلاً.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\فلسطين مهلاً.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\في كفي حجر.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\في كفي حجر.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\قوافل العائدين.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\قوافل العائدين.EXE : Repaired
File : I:\صور\صـور\تسالي\Flashat\من أجل القدس.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\من أجل القدس.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\هو رامي أو محمد.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\هو رامي أو محمد.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\وين الملايين.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\وين الملايين.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\-0AF5~1.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\-0AF5~1.EXE : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\-76CA~1.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\-76CA~1.EXE : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\-9CDF~1.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\-9CDF~1.EXE : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\1455~1.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\1455~1.EXE : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\4419~1.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\4419~1.EXE : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\F2B1~1.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\F2B1~1.EXE : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\naser jarrar.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\naser jarrar.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\qaes 3odwan.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\qaes 3odwan.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\yosef sarkaje.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\yosef sarkaje.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\اخواننا الافغان.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\اخواننا الافغان.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\الارهاب الصهيوني.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\الارهاب الصهيوني.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\الله جل جلاله.exe : contains "Virus" called "W32/Sality.gen" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\الله جل جلاله.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\بطولات الحكام العرب.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\بطولات الحكام العرب.EXE : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\جمال سليم.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\جمال سليم.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\حرب ابادة.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\حرب ابادة.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\شهداء.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\شهداء.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\صلاح شحادة.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\صلاح شحادة.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\عملية تصفية الشهيد محمود صلاح.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\عملية تصفية الشهيد محمود صلاح.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\قتل اطفال فلسطين.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\قتل اطفال فلسطين.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\لحظة حزن.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\لحظة حزن.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\eljam3a flashes\معاناة الفلسطينيين.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\eljam3a flashes\معاناة الفلسطينيين.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\Flash\Alaqsa.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\Flash\Alaqsa.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\Flash\aqsa.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\Flash\aqsa.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\Flash\Dorra.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\Flash\Dorra.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\Flash\Friends.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\Flash\Friends.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\Flash\Mohammad Dorra.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\Flash\Mohammad Dorra.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\Flash\NAKBAH.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\Flash\NAKBAH.EXE : Repaired
File : I:\صور\صـور\تسالي\Flashat\Flash\palestine.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\Flash\palestine.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\Flash\Palestine2.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\Flash\Palestine2.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\Flash\Palestine3.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\Flash\Palestine3.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\Flash\Quds.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\Flash\Quds.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\alaqsa.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\alaqsa.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\american airplanes.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\american airplanes.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\cat fight.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\cat fight.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\DANCER.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\DANCER.EXE : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\discomouse.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\discomouse.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\EGGS.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\EGGS.EXE : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\elnajah.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\elnajah.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\mad.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\mad.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\MALEON.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\MALEON.EXE : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\Millionaire+$.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\Millionaire+$.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\monky.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\monky.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\NBA.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\NBA.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\palestine1.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\palestine1.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\QANA.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\QANA.EXE : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\sharoon.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\sharoon.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\story.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\story.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\tanks.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\tanks.EXE : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\waznak dahab.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\waznak dahab.exe : Repaired
File : I:\صور\صـور\تسالي\Flashat\flashat\what happend.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\Flashat\flashat\what happend.exe : Repaired
File : I:\صور\صـور\تسالي\games\37... Games\e-gon.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\games\37... Games\e-gon.exe : Repaired
File : I:\صور\صـور\تسالي\games\37... Games\FZR COM GAME.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\games\37... Games\FZR COM GAME.exe : Repaired
File : I:\صور\صـور\تسالي\games\37... Games\POKE.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\games\37... Games\POKE.exe : Repaired
File : I:\صور\صـور\تسالي\games\37... Games\Uconvert.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\games\37... Games\Uconvert.EXE : Repaired
File : I:\صور\صـور\تسالي\games\37... Games\GAMES\Games Nabers.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\games\37... Games\GAMES\Games Nabers.exe : Repaired
File : I:\صور\صـور\تسالي\games\37... Games\GAMES\Games Nabers_original.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\games\37... Games\GAMES\Games Nabers_original.exe : Repaired
File : I:\صور\صـور\تسالي\games\37... Games\GAMES\SPIDER.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\games\37... Games\GAMES\SPIDER.EXE : Repaired
File : I:\صور\صـور\تسالي\games\37... Games\GAMES\Tetrix 2001.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\صـور\تسالي\games\37... Games\GAMES\Tetrix 2001.exe : Repaired
File : I:\صور\مقالب\_10\مقلب الميه\WATER.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\مقالب\_10\مقلب الميه\WATER.exe : Repaired
File : I:\صور\مقالب\_11\مقلب الهاكر والاختراق\hack.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\مقالب\_11\مقلب الهاكر والاختراق\hack.exe : Repaired
File : I:\صور\مقالب\_5\مقلب الرسالة الهاكر\HakersInCm.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\مقالب\_5\مقلب الرسالة الهاكر\HakersInCm.exe : Repaired
File : I:\صور\مقالب\_8\مقلب القنبلة\dotexe.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\صور\مقالب\_8\مقلب القنبلة\dotexe.exe : Repaired
File : I:\لتشغيل ملفات flv\flvplayer_setup.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
I:\لتشغيل ملفات flv\flvplayer_setup.exe : Repaired

Summary :-
FilesFound : 18073
FilesScanned : 8066
FilesNotScanned : 10007

ObjectsFound : 18948
ObjectsInfected : 252
ObjectsCleaned : 249
ObjectsDeleted : 0

FilesInfected : 248
FilesCleaned : 245
FilesMoved : 0
FilesDeleted : 0

Started at : 15:46:38 Sunday, April 05, 2009
Ended at : 16:10:47 Sunday, April 05, 2009
Duration : 24 minutes 8 seconds
3152 MB scanned in 1448 seconds = 2 MB/s
Engine Version : 5300.2777
Engine Load Time : 18625 milliseconds
AV DAT Version : 5492.0000 488805 detections Built Sunday, January 11, 2009
Extra DAT : 0 detections

File : J:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042807.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042807.exe : Repaired
File : J:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042809.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042809.exe : Repaired
File : J:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042812.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042812.exe : Repaired
File : J:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042816.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042816.exe : Repaired
File : J:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042822.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{058C914B-D386-4662-A204-EB538C5B4870}\RP9\A0042822.exe : Repaired
File : J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000307.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000307.exe : Repaired
File : J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000308.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000308.exe : Repaired
File : J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000309.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000309.exe : Repaired
File : J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000310.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000310.exe : Repaired
File : J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000473.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000473.exe : Repaired
File : J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000475.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000475.exe : Repaired
File : J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000481.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000481.exe : Repaired
File : J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000482.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000482.exe : Repaired
File : J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000483.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000483.exe : Repaired
File : J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000484.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000484.exe : Repaired
File : J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000485.exe : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\System Volume Information\_restore{19ACF66F-7779-456B-B2A9-E7293D92FD63}\RP4\A0000485.exe : Repaired
File : J:\Visual Basic 6.0 pro\SMSINST.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\SMSINST.EXE : Repaired
File : J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\OLETOOLS\OLEVIEW.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\OLETOOLS\OLEVIEW.EXE : Repaired
File : J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\PDWIZARD\CHS\SETUP.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\PDWIZARD\CHS\SETUP.EXE : Repaired
File : J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\PDWIZARD\ITL\SETUP.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\PDWIZARD\ITL\SETUP.EXE : Repaired
File : J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\PDWIZARD\KOR\SETUP.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\PDWIZARD\KOR\SETUP.EXE : Repaired
File : J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\REGUTILS\REGIT.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\REGUTILS\REGIT.EXE : Repaired
File : J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\UNSUPPRT\MIGRWIZ\CSWIZ32.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\UNSUPPRT\MIGRWIZ\CSWIZ32.EXE : Repaired
File : J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\UNSUPPRT\TYPLIB\C1.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\UNSUPPRT\TYPLIB\C1.EXE : Repaired
File : J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\UNSUPPRT\TYPLIB\CL.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\UNSUPPRT\TYPLIB\CL.EXE : Repaired
File : J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\UNSUPPRT\TYPLIB\MKTYPLIB.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\COMMON\TOOLS\VB\UNSUPPRT\TYPLIB\MKTYPLIB.EXE : Repaired
File : J:\Visual Basic 6.0 pro\COMMON\TOOLS\WINAPI\APILOAD.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\COMMON\TOOLS\WINAPI\APILOAD.EXE : Repaired
File : J:\Visual Basic 6.0 pro\OS\MSAPPS\MSINFO\MSINFO32.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\OS\MSAPPS\MSINFO\MSINFO32.EXE : Repaired
File : J:\Visual Basic 6.0 pro\OS\MSAPPS\REPOSTRY\MIGREPV2.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\OS\MSAPPS\REPOSTRY\MIGREPV2.EXE : Repaired
File : J:\Visual Basic 6.0 pro\VB98\LINK.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\VB98\LINK.EXE : Repaired
File : J:\Visual Basic 6.0 pro\VB98\WIZARDS\PDWIZARD\MAKECAB.EXE : contains "Virus" called "W32/Sality.ao" (Cleaned )
J:\Visual Basic 6.0 pro\VB98\WIZARDS\PDWIZARD\MAKECAB.EXE : Repaired

Summary :-
FilesFound : 5054
FilesScanned : 3297
FilesNotScanned : 1757

ObjectsFound : 7705
ObjectsInfected : 31
ObjectsCleaned : 31
ObjectsDeleted : 0

FilesInfected : 31
FilesCleaned : 31
FilesMoved : 0
FilesDeleted : 0

Started at : 16:11:06 Sunday, April 05, 2009
Ended at : 16:15:05 Sunday, April 05, 2009
Duration : 3 minutes 58 seconds
505 MB scanned in 238 seconds = 2 MB/s
 
الحالة
مغلق و غير مفتوح للمزيد من الردود.
عودة
أعلى