⋞ أבــωــآسْ

زيزوومي جديد
إنضم
13 يناير 2011
المشاركات
128
مستوى التفاعل
1
النقاط
0
الإقامة
قطر
غير متصل
السلام عليكم ورحمه الله وبركاته

اخواني لو سمحتوا جهازي فيه فايروس

وما عندي حمايه وبرنامج Microsoft Office

ما يشتغل عندي وهو اهم شئ بالنسبه لي لان اغلب شغلي عليه

وفي برامج غيرها ما تشتغل مثل ريل بلير والفوتوشوب والسويتش ماكس

وفي برامج كثيره

ارجو المساعده

أرجوكم لا تبخلوا علي :f:
 

موجوده عندك هذي الاداه
3b3ce221851b60a78bfa55cbd704e323.jpg



اضغطي على زر الغاء الحظر

ثم اعيدي تشغيل الجهاز وجربي تحميله مره ثانيه اذا مانفع

جربي هذا


او حمل من هنا
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



واتبع التالي كما موجود بالصور

ea08c3cbb5dbcd924d38f139c3c581bd.png


d0c260d02fbaa03d00ed056c68686a77.png
 

أخووي rd-19

جيت بفتحه طلعت لي هالرساله

0ff3ce162e4700a6c681bd69d6269a60.jpg
 
معليش تعبتك شوي

هذي انا جربتها تشتغل حمليها

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
 
لا عادي والله اخووي

انا اللي تعبتك

يعطيك العافيه
 
اعيدي تشغيل الجهاز ثم طبقي مشاركة اخوي البارون هذي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي




او ان كان عندك اللي طلبت منك تحملينه

اللي هذا
نزله من هنا وثبته على جهازك وحدثه واعمل الفحص

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


جربي تحاولين تثبتينه الان بعد اعادة التشغيل
 
أخووي rd-19

الحمدالله بعد ما عطيتني البرنامج وثبته

اشتغلت معاي اداة مالووير بايت

والحين يفص واذا كمل بنزل التقرير

 
هذا التقرير

************' Anti-Malware 1.50
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

نسخة قاعدة البيانات : 5537
Windows 5.1.2600 Service Pack 2
Internet Explorer 7.0.5730.11

18/01/2011 03:47:19 ص
mbam-log-2011-01-18 (03-47-19).txt

نوع الفحص : فحص كامل (C:\|D:\|)
الكائنات المفحوصة : 198732
الوقت المنقضي : 29 دقيقة, 23 ثانية

عمليات الذاكرة المصابة : 0
وحدات الذاكرة المصابة : 0
مفاتيح الريجستري المصابة : 7
قيم الريجستري المصابة : 0
مواد بيانات الريجستري المصابة : 3
المجلدات المصابة : 16
الملفات المصابة : 40

عمليات الذاكرة المصابة :
(لم يتم إكتشاف مواد ضارة)

وحدات الذاكرة المصابة :
(لم يتم إكتشاف مواد ضارة)

مفاتيح الريجستري المصابة :
HKEY_CLASSES_ROOT\CLSID\{E8CFC029-8420-4EAE-ADEF-915BDC77E1DC} (Spyware.AdaEbook) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\تعلم الفوتشوب بسهولة.MyNSHandler (Spyware.AdaEbook) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1D4DB7D2-6EC9-47a3-BD87-1E41684E07BB} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\.pox (Rogue.FixTool) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\pofile (Rogue.FixTool) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EA12F03F-0973-4715-9CBA-F2845999E777}_is1 (PUP.PerfectOptimizer) -> Not selected for removal.

قيم الريجستري المصابة :
(لم يتم إكتشاف مواد ضارة)

مواد بيانات الريجستري المصابة :
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

المجلدات المصابة :
c:\program files\funwebproducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Installr (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Installr\1.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Installr\2.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\perfect optimizer (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Backup (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Backup\application (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Backup\Registry (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Backup\Registry\firstbackup (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Backup\Registry\fullbackup (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Backup\Service (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\config (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Data (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Data\Service (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Temp (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Update (PUP.PerfectOptimizer) -> Not selected for removal.

الملفات المصابة :
c:\program files\perfect optimizer\FreeUse.dll (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\License.dll (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\SEClean.DLL (Rogue.Multiple) -> Quarantined and deleted successfully.
c:\program files\perfect optimizer\SERes.DLL (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Update.exe (Rogue.Multiple) -> Quarantined and deleted successfully.
c:\program files\perfect optimizer\winupdate.exe (Rogue.Multiple) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Installr\1.bin\F3EZSETP.DLL (PUP.FunWebProducts) -> Not selected for removal.
c:\program files\funwebproducts\Installr\2.bin\F3EZSETP.DLL (PUP.FunWebProducts) -> Not selected for removal.
c:\WINDOWS\mui\FALLBACK\0401\calc.exe.mui (Trojan.FakeAlert) -> Quarantined and deleted successfully.
d:\faxh.VIR (Malware.Packer.Gen) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Installr\2.bin\F3PLUGIN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Installr\2.bin\NPFUNWEB.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\perfect optimizer\aamd532.dll (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\ActiveX.dat (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Apps.dat (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\components.dat (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Config.db (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\installdll.dll (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\miraclelib.dll (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\perfectoptimizer.ini (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\sqlite3.dll (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\unins000.dat (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\unins000.exe (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\website.url (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\config\about.bmp (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\config\head.bmp (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\config\lng2const.xml (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\config\logo.ico (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\config\Menu.xml (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\config\perfectoptimzer.chm (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\config\register.jpg (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\config\smalllogo.bmp (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\config\splash.jpg (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\config\website.url (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Data\Service\campus_model.bat (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Data\Service\default_model.bat (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Data\Service\home_model.bat (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Data\Service\interner_model.bat (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Data\Service\notebook_model.bat (PUP.PerfectOptimizer) -> Not selected for removal.
c:\program files\perfect optimizer\Data\Service\office_model.bat (PUP.PerfectOptimizer) -> Not selected for removal.
 
الحمدلله

تمام التمام

عطيني تقرير هايجاك
 
تقرير هايجاك

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 05:05:45 ص, on 18/01/2011
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17055)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
C:\WINDOWS\system32\agrsmsvc.exe
C:\WINDOWS\system32\cisvc.exe
C:\PROGRA~1\DIGICH~1.0\DIGICH~2.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\wjview.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe
C:\Program Files\Cyberlink\Shared Files\brs.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\Program Files\Zain e-GO\Zain e-GO\Zain e-GO.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Zyzoom_Forum_Tools\zyzoom.exe
C:\WINDOWS\explorer.exe
C:\Zyzoom_Forum_Tools\zHijak.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R3 - URLSearchHook: ToolbarURLSearchHook Class - {CA3EB689-8F09-4026-AA10-B9534C691CE0} - C:\Program Files\HyperSnap Toolbar\tbhelper.dll
O2 - BHO: IE7Pro - {00011268-E188-40DF-A514-835FCD78B1BF} - C:\Program Files\IEPro\iepro.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: SMTTB2009 - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files\HyperSnap Toolbar\tbcore3.dll
O3 - Toolbar: HyperSnap Toolbar - {338B4DFE-2E2C-4338-9E41-E176D497299E} - C:\Program Files\HyperSnap Toolbar\tbcore3.dll
O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files\IEPro\IEProRecorder.dll
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [RemoteControl8] "C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe"
O4 - HKLM\..\Run: [BDRegion] C:\Program Files\Cyberlink\Shared Files\brs.exe
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
O9 - Extra button: IE7Pro Grab and Drag - {000002a3-84fe-43f1-b958-f2c3ca804f1a} - C:\Program Files\IEPro\iepro.dll
O9 - Extra 'Tools' menuitem: IE7Pro Grab and Drag - {000002a3-84fe-43f1-b958-f2c3ca804f1a} - C:\Program Files\IEPro\iepro.dll
O9 - Extra button: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll
O9 - Extra 'Tools' menuitem: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O17 - HKLM\System\CCS\Services\Tcpip\..\{02BBD27A-18E5-4DBC-95AA-A0ACC9BFA9BF}: NameServer = 10.40.128.2 10.40.128.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{02BBD27A-18E5-4DBC-95AA-A0ACC9BFA9BF}: NameServer = 10.40.128.2 10.40.128.1
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\WINDOWS\system32\agrsmsvc.exe
O23 - Service: DigiChat 4.0 Server (DigiChat_4.0_Server) - Zero G - C:\PROGRA~1\DIGICH~1.0\DIGICH~2.EXE
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

--
End of file - 6753 bytes

 
وان شاء احمل الاداه

واطبق

 
اوكي

موفقه يارب
 
اختي كان عندك دودة السيلتي انصحك بتطبيق هذي المشاركة

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
 
عودة
أعلى