abdelkader206

زيزوومى فضى
إنضم
14 أكتوبر 2007
المشاركات
3,234
مستوى التفاعل
146
النقاط
850
الإقامة
الجزائر (غرب)
غير متصل
السلام عليكم ورحمة الله وبركاته
لدي مشكل مع فيروس يظهر على شكل ملف اسمه
Nouveau dossier
في جميع الاقراص
وعند حذفه يرجه مرة ثانية
وكذلك برنامج الحماية ESET Smart Security
لا يتعرف على الفيروس
رابط التقارير

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


علما انني ما استطعت رفع التقارير على موقع الرفع المذكور في الموضوع المثبت
 

توقيع : abdelkader206
السلام عليكم
أخي
احذف

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.facemoods.com/?a=ostpl&s={searchTerms}&f=4

O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1

وشغل ع الsafe mode وافحص ميلويربايت

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي

 
توقيع : Alp Arslan
التقرير في الوضع العادي
************' Anti-Malware 1.50.1.1100

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي



Database version: 5742

Windows 5.1.2600 Service Pack 2
Internet Explorer 8.0.6001.18702

15/02/2011 18:06:36
mbam-log-2011-02-15 (18-06-36).txt

Scan type: Full scan (C:\|D:\|E:\|)
Objects scanned: 207345
Time elapsed: 2 hour(s), 26 minute(s), 17 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 2
Registry Values Infected: 1
Registry Data Items Infected: 2
Folders Infected: 0
Files Infected: 19

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_PPDRV (Worm.KoobFace) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\PPDrv (Worm.KoobFace) -> Quarantined and deleted successfully.

Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\RunVer (Worm.AutoRun) -> Value: RunVer -> Quarantined and deleted successfully.

Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell (Hijack.Shell) -> Bad: (Explorer.exe RunVer.exe) Good: (Explorer.exe) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL\CheckedValue (PUM.Hijack.System.Hidden) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.

Folders Infected:
(No malicious items detected)

Files Infected:
c:\documents and settings\Kader\local settings\application data\thinstall\Cache\Stubs\2e16d370105aeb3342f1ac62d0d66754f36c6\splash screen.exe (Trojan.Backdoor) -> Quarantined and deleted successfully.
c:\documents and settings\Kader\local settings\application data\thinstall\Cache\Stubs\4718ba467a52ded6a2cc1c3a55fea294b08a7b\TSCHelp.exe (Trojan.Backdoor) -> Quarantined and deleted successfully.
c:\documents and settings\Kader\local settings\application data\thinstall\Cache\Stubs\c86abfa6c4591daf6ea51a7214397121fa542\snagiteditor.exe (Trojan.Backdoor) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\OLD248.tmp (Trojan.Agent.Gen) -> Quarantined and deleted successfully.
c:\WINDOWS\LastGood\system32\calc.exe (Trojan.Agent.Gen) -> Quarantined and deleted successfully.
d:\system volume information\_restore{18c4ff8b-2696-415e-ac71-c6f7a1ba001b}\RP345\A0146245.exe (Trojan.Backdoor) -> Quarantined and deleted successfully.
d:\system volume information\_restore{18c4ff8b-2696-415e-ac71-c6f7a1ba001b}\RP345\A0146246.exe (Trojan.Backdoor) -> Quarantined and deleted successfully.
d:\system volume information\_restore{18c4ff8b-2696-415e-ac71-c6f7a1ba001b}\RP345\A0146250.exe (Trojan.Backdoor) -> Quarantined and deleted successfully.
d:\system volume information\_restore{18c4ff8b-2696-415e-ac71-c6f7a1ba001b}\RP345\A0146251.exe (Trojan.Backdoor) -> Quarantined and deleted successfully.
d:\system volume information\_restore{18c4ff8b-2696-415e-ac71-c6f7a1ba001b}\RP372\A0157423.exe (Spyware.AdaEbook) -> Quarantined and deleted successfully.
d:\system volume information\_restore{18c4ff8b-2696-415e-ac71-c6f7a1ba001b}\RP372\A0157424.exe (Spyware.AdaEbook) -> Quarantined and deleted successfully.
e:\system volume information\_restore{18c4ff8b-2696-415e-ac71-c6f7a1ba001b}\RP403\A0166565.exe (Spyware.AdaEbook) -> Quarantined and deleted successfully.
e:\system volume information\_restore{18c4ff8b-2696-415e-ac71-c6f7a1ba001b}\RP335\A0143553.exe (Spyware.AdaEbook) -> Quarantined and deleted successfully.
e:\system volume information\_restore{b81182da-73a4-471a-9888-1ae26f00fac1}\RP229\A0060601.exe (Spyware.AdaEbook) -> Quarantined and deleted successfully.
e:\برامج ما بعد الفورمات\bluesoleil 6.4.275.0withmobile\ivt bluesoleil 6.4.249\keygen.exe (Trojan.Agent) -> Quarantined and deleted successfully.
e:\برامج ما بعد الفورمات\internet download manager\الكراك مع الشرح\SnDk&p.exe (RiskWare.Tool.CK) -> Quarantined and deleted successfully.
e:\برامج ما بعد الفورمات\office 2010\mini-kms_activator_v1.1_office.2010.vl.eng.exe (Riskware.Keygen) -> Quarantined and deleted successfully.
e:\برامج ما بعد الفورمات\tuneup utilities 2011\keygen.exe (RiskWare.Tool.CK) -> Quarantined and deleted successfully.
c:\protector plus\PPDRV.SYS (Worm.KoobFace) -> Quarantined and deleted successfully.

 
توقيع : abdelkader206
التقرير في الوضع الامن
************' Anti-Malware 1.50.1.1100

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي



Database version: 5742

Windows 5.1.2600 Service Pack 2 (Safe Mode)
Internet Explorer 8.0.6001.18702

15/02/2011 19:20:17
mbam-log-2011-02-15 (19-20-17).txt

Scan type: Full scan (A:\|C:\|D:\|E:\|F:\|)
Objects scanned: 206275
Time elapsed: 1 hour(s), 6 minute(s), 29 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

 
توقيع : abdelkader206
بقي لدي هذا الملف لم استطيع حذفه حتى في الوضع الامن
اضنه فيروس
4534160e63b25f20e3a4eb080718a0b0.jpg

 
توقيع : abdelkader206
حمل الاداة من هذا الموضوع

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي



واعمل تقرير هايجاك + رن سكنر

------------------

3b3ce221851b60a78bfa55cbd704e323.jpg
 
تقرير الهايجاك
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 09:30:43, on 16/02/2011
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\USB Safely Remove\USBSRService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Protector Plus\PPAVMon.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\Program Files\JetAudio\jetAudio.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\Zyzoom_Forum_Tools\zyzoom.exe
C:\Zyzoom_Forum_Tools\zHijak.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R3 - URLSearchHook: Salaf Guide Toolbar - {1b53182f-27cf-4e9e-8efb-8d75d84a244a} - C:\Program Files\Salaf_Guide\tbSala.dll
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Salaf Guide Toolbar - {1b53182f-27cf-4e9e-8efb-8d75d84a244a} - C:\Program Files\Salaf_Guide\tbSala.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: facemoods Helper - {64182481-4F71-486b-A045-B233BD0DA8FC} - C:\Program Files\facemoods.com\facemoods\1.4.17.3\bh\facemoods.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Salaf Guide Toolbar - {1b53182f-27cf-4e9e-8efb-8d75d84a244a} - C:\Program Files\Salaf_Guide\tbSala.dll
O3 - Toolbar: facemoods Toolbar - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - C:\Program Files\facemoods.com\facemoods\1.4.17.3\facemoodsTlbr.dll
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: ت&صدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


O17 - HKLM\System\CCS\Services\Tcpip\..\{E1103073-D1BE-43D9-A165-2BC26C38E036}: NameServer = 8.8.8.8
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
O23 - Service: BsMobileCS - IVT Corporation - C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: خدمة تحديث Google (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Protector Plus Anti-virus Monitor Service (ProtectorPlusAVMonitor) - Proland Software Pvt Ltd. - C:\Protector Plus\PPAVMon.exe
O23 - Service: Protector Plus Service (ProtectorPlusService) - Proland Software - C:\Protector Plus\PPServ.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
O23 - Service: USB Safely Remove Assistant (USBSafelyRemoveService) - Unknown owner - C:\Program Files\USB Safely Remove\USBSRService.exe

--
End of file - 7334 bytes

 
توقيع : abdelkader206
رن سكنر
Runscanner logfile

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي



* = signed file
- = file not found

General info
------------
Computer name : ABDELKADER
Creation time : 16/02/2011 09:32:23
Hosts <> 127.0.0.1 : 0
Hosts file location : %SystemRoot%\System32\drivers\etc
IE version : 8.0.6001.18702
OS : Microsoft Windows XP
OS Build : 2600
OS SP : Service Pack 2
RunScanner Version : 2.0.0.50
User Language : العربية (السعودية)
User rights : Administrator
Windows folder : C:\WINDOWS

Running processes
-----------------
* C:\WINDOWS\system32\alg.exe (Microsoft Corporation)
C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe (IVT Corporation)
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe (IVT Corporation)
C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe (IVT Corporation)
* C:\WINDOWS\system32\csrss.exe (Microsoft Corporation)
C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
* C:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
* C:\Program Files\ESET\ESET Smart Security\ekrn.exe (ESET)
* C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\Program Files\Internet Download Manager\IDMan.exe (Tonec Inc.)
* C:\Program Files\Internet Download Manager\IEMonitor.exe (Tonec Inc.)
* C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
C:\Program Files\JetAudio\JetAudio.exe (JetAudio, Inc.)
* C:\WINDOWS\system32\lsass.exe (Microsoft Corporation)
* C:\Program Files\Mozilla Firefox\plugin-container.exe (Mozilla Corporation)
* C:\Protector Plus\PPAVMON.EXE (Proland Software Pvt Ltd.)
* C:\WINDOWS\system32\services.exe (Microsoft Corporation)
* C:\WINDOWS\system32\spoolsv.exe (Microsoft Corporation)
* C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe (TuneUp Software)
* C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe (TuneUp Software)
* C:\Program Files\USB Safely Remove\USBSRService.exe
C:\WINDOWS\explorer.exe (Microsoft Corporation)
C:\WINDOWS\system32\winlogon.exe (Microsoft Corporation)
* C:\WINDOWS\system32\smss.exe (Microsoft Corporation)
* C:\WINDOWS\system32\wuauclt.exe (Microsoft Corporation)
C:\Program Files\WinRAR\WinRAR.exe
* C:\WINDOWS\system32\wbem\wmiprvse.exe (Microsoft Corporation)
C:\Zyzoom_Forum_Tools\zyzoom.exe

Unrated items
-------------
003 C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
008 C:\WINDOWS\system32\CTFMON.EXE (Microsoft Corporation)
010 C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe (BsHelpCS)
010 C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe (BsMobileCS)
010 * C:\Protector Plus\PPAVMon.exe (Protector Plus Anti-virus Monitor Service)
010 * C:\Protector Plus\PPServ.exe (Protector Plus Service)
010 C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (ServiceLayer)
010 * C:\Program Files\USB Safely Remove\USBSRService.exe (USB Safely Remove Assistant)
011 C:\WINDOWS\system32\drivers\BIOS.sys (BIOS)
011 * C:\Protector Plus\PPEMSCAN.sys (Protector Plus Email Scan Driver)
011 C:\WINDOWS\system32\DRIVERS\umpusbxp.sys (UMP Serial Port Driver)
011 C:\Program Files\Unlocker\UnlockerDriver5.sys (UnlockerDriver5)
011 C:\WINDOWS\system32\DRIVERS\xfilt.sys (VIA SATA IDE Hot-plug Driver)
011 C:\WINDOWS\system32\DRIVERS\videX32.sys (videX32)
012 C:\WINDOWS\system32\CTFMON.EXE (Microsoft Corporation)
012 C:\WINDOWS\system32\CTFMON.EXE (Microsoft Corporation)
012 C:\WINDOWS\system32\CTFMON.EXE (Microsoft Corporation)
030 C:\WINDOWS\system32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}
030 C:\WINDOWS\system32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}
030 C:\WINDOWS\system32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}
030 C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1}
030 C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) {8f6b0360-b80d-11d0-a9b3-006097942311}
030 C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) {8f6b0360-b80d-11d0-a9b3-006097942311}
030 C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) {8f6b0360-b80d-11d0-a9b3-006097942311}
030 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {733AC4CB-F1A4-11d0-B951-00A0C90312E1}
031 C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) {3050F406-98B5-11CF-BB82-00AA00BDCE0B}
031 C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) {3dd53d40-7b8b-11D0-b013-00aa0059ce02}
031 C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) {79eac9e7-baf9-11ce-8c82-00aa004ba90b}
031 C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) {79eac9e3-baf9-11ce-8c82-00aa004ba90b}
031 C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) {79eac9e4-baf9-11ce-8c82-00aa004ba90b}
031 C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) {79eac9e2-baf9-11ce-8c82-00aa004ba90b}
031 C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) {79eac9e5-baf9-11ce-8c82-00aa004ba90b}
031 C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B}
031 C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) {79eac9e7-baf9-11ce-8c82-00aa004ba90b}
031 C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B}
031 C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) {79eac9e6-baf9-11ce-8c82-00aa004ba90b}
031 C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}
031 C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) {76E67A63-06E9-11D2-A840-006008059382}
031 C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B}
034 C:\WINDOWS\Explorer.exe (Microsoft Corporation)
035 C:\WINDOWS\system32\mscories.dll (Microsoft Corporation) {89B4C1CD-B018-4511-B0A1-5476DBF70820}
040 C:\Program Files\Salaf_Guide\tbSala.dll (Conduit Ltd.) {1b53182f-27cf-4e9e-8efb-8d75d84a244a}
041 C:\Program Files\facemoods.com\facemoods\1.4.17.3\facemoodsTlbr.dll (facemoods.com) {DB4E9724-F518-4dfd-9C7C-78B52103CAB9}
041 C:\Program Files\Salaf_Guide\tbSala.dll (Conduit Ltd.) {1b53182f-27cf-4e9e-8efb-8d75d84a244a}
042 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {92780B25-18CC-41C8-B9BE-3C9C571A8263}
044 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {01E04581-4EEE-11D0-BFE9-00AA005B4383}
045 C:\Program Files\Salaf_Guide\tbSala.dll (Conduit Ltd.) {1B53182F-27CF-4E9E-8EFB-8D75D84A244A}
045 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {01E04581-4EEE-11D0-BFE9-00AA005B4383}
045 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {0E5CBF21-D15F-11D0-8301-00AA005B4383}
050 C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) {AEB6717E-7E19-11d0-97EE-00C04FD91972}
051 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {438755C2-A8BA-11D1-B96B-00A0C90312E1}
052 C:\Program Files\Salaf_Guide\tbSala.dll (Conduit Ltd.) {1b53182f-27cf-4e9e-8efb-8d75d84a244a}
052 C:\Program Files\facemoods.com\facemoods\1.4.17.3\bh\facemoods.dll (facemoods.com BHO) {64182481-4F71-486b-A045-B233BD0DA8FC}
060 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {fbeb8a05-beee-4442-804e-409d6c4515e9}
060 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {7849596a-48ea-486e-8937-a2a3009f31a9}
060 C:\WINDOWS\system32\stobject.dll (Microsoft Corporation) {35CEC8A3-2BE6-11D2-8773-92E220524153}
060 C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation) {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {01E04581-4EEE-11d0-BFE9-00AA005B4383}
061 C:\WINDOWS\system32\wuaucpl.cpl (Microsoft Corporation) {5F327514-6C5E-4d60-8F16-D07FA08A78ED}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {F61FFEC1-754F-11d0-80CA-00AA005B4383}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {67EA19A0-CCEF-11d0-8024-00C04FD75D13}
061 C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation) {7D559C10-9FE9-11d0-93F7-00AA0059CE02}
061 C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation) {E6CC6978-6B6E-11D0-BECA-00C04FD940BE}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {EFA24E61-B078-11d0-89E4-00C04FC9E26E}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {D20EA4E1-3957-11d2-A40B-0C5020524152}
061 C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) {25336920-03f9-11cf-8fd0-00aa00686f13}
061 C:\WINDOWS\system32\hticons.dll (Hilgraeve, Inc.) {88895560-9AA2-1069-930E-00AA0030EBC8}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {131A6951-7F78-11D0-A979-00C04FD705A2}
061 C:\Program Files\JetAudio\JetFlExt.dll (JetAudio) {8D1636FD-CA49-4B4E-90E4-0A20E03A15E8}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {A5E46E3A-8849-11D1-9D8C-00C04FC99D61}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {7BA4C742-9E81-11CF-99D3-00AA004AE837}
061 C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) {3050f3d9-98b5-11cf-bb82-00aa00bdce0b}
061 C:\WINDOWS\system32\mydocs.dll (Microsoft Corporation) {ECF03A33-103D-11d2-854D-006008059367}
061 C:\WINDOWS\system32\mydocs.dll (Microsoft Corporation) {ECF03A32-103D-11d2-854D-006008059367}
061 C:\WINDOWS\system32\mydocs.dll (Microsoft Corporation) {4a7ded0a-ad25-11d0-98a8-0800361b1103}
061 C:\Program Files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll (Nokia) {416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A}
061 C:\WINDOWS\System32\cscui.dll (Microsoft Corporation) {10CFC467-4392-11d2-8DB4-00C04FA31A66}
061 C:\WINDOWS\System32\cscui.dll (Microsoft Corporation) {750fdf0e-2a26-11d1-a3ea-080036587f03}
061 C:\WINDOWS\system32\themeui.dll (Microsoft Corporation) {41E300E0-78B6-11ce-849B-444553540000}
061 C:\WINDOWS\system32\wpdshext.dll (Microsoft Corporation) {35786D3C-B075-49b9-88DD-029876E11C01}
061 C:\WINDOWS\system32\wpdshext.dll (Microsoft Corporation) {D6791A63-E7E2-4fee-BF52-5DED8E86E9B8}
061 C:\WINDOWS\system32\Audiodev.dll (Microsoft Corporation) {640167b4-59b0-47a6-b335-a6b3c0695aea}
061 C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation) {D8BD2030-6FC9-11D0-864F-00AA006809D9}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {9461b922-3c5a-11d2-bf8b-00c04fb93661}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {2559a1f7-21d7-11d4-bdaf-00c04f60b9f0}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {0A89A860-D7B1-11CE-8350-444553540000}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {ECD4FC4C-521C-11D0-B792-00A0C90312E1}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {3CCF8A41-5C85-11d0-9796-00AA00B90ADF}
061 C:\WINDOWS\system32\dfshim.dll (Microsoft Corporation) {E37E2028-CE1A-4f42-AF05-6CEABC4E5D75}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {ECD4FC4D-521C-11D0-B792-00A0C90312E1}
061 C:\WINDOWS\system32\dfshim.dll (Microsoft Corporation) {e82a2d71-5b2f-43a0-97b8-81be15854de8}
061 C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation) {F5175861-2688-11d0-9C5E-00AA00A45957}
061 C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation) {ABBE31D0-6DAE-11D0-BECA-00C04FD940BE}
061 C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation) {E8BB6DC0-6B4E-11d0-92DB-00A0C90C2BD7}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {7376D660-C583-11d0-A3A5-00C04FD706EC}
061 C:\Program Files\Unlocker\UnlockerCOM.dll {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83}
061 C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation) {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
061 C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation) {7FC0B86E-5FA7-11d1-BC7C-00C04FD929DB}
061 C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation) {E3A8BDE6-ABCE-11d0-BC4B-00C04FD929DB}
061 C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation) {08165EA0-E946-11CF-9C87-00AA005127ED}
061 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
061 C:\WINDOWS\system32\NETSHELL.dll (Microsoft Corporation) {7007ACC7-3202-11D1-AAD2-00805FC1270E}
061 C:\WINDOWS\system32\NETSHELL.dll (Microsoft Corporation) {992CFFA0-F557-101A-88EC-00DD010CCC48}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {D20EA4E1-3957-11d2-A40B-0C5020524153}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {EF8AD2D1-AE36-11D1-B2D2-006097DF8C11}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {AF4F6510-F982-11d0-8595-00AA004CD6D8}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {00BB2763-6A77-11D0-A535-00C04FD7D062}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {2559a1f5-21d7-11d4-bdaf-00c04f60b9f0}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {2559a1f1-21d7-11d4-bdaf-00c04f60b9f0}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {2559a1f2-21d7-11d4-bdaf-00c04f60b9f0}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {2559a1f4-21d7-11d4-bdaf-00c04f60b9f0}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {2559a1f0-21d7-11d4-bdaf-00c04f60b9f0}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {169A0691-8DF9-11d1-A1C4-00C04FD75D13}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {07798131-AF23-11d1-9111-00A0C98BA67D}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {22BF0C20-6DA7-11D0-B373-00A0C9034938}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {00BB2765-6A77-11D0-A535-00C04FD7D062}
061 C:\WINDOWS\system32\syncui.dll (Microsoft Corporation) {85BBD920-42A0-1069-A2E4-08002B30309D}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {A2B0DD40-CC59-11d0-A3A5-00C04FD706EC}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {5E6AB780-7743-11CF-A12B-00AA004AE837}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {acf35015-526e-4230-9596-becbe19f0ac9}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {6756A641-DE71-11d0-831B-00AA005B4383}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {6935DB93-21E8-4ccc-BEB9-9FE3C77A297A}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {03C036F1-A186-11D0-824A-00AA005B4383}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {00BB2764-6A77-11D0-A535-00C04FD7D062}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {ECD4FC4E-521C-11D0-B792-00A0C90312E1}
061 C:\WINDOWS\system32\wiashext.dll (Microsoft Corporation) {3F953603-1008-4f6e-A73A-04AAC7A992F1}
061 C:\WINDOWS\system32\wiashext.dll (Microsoft Corporation) {83bbcbf3-b28a-4919-a5aa-73027445d672}
061 C:\WINDOWS\system32\wiashext.dll (Microsoft Corporation) {905667aa-acd6-11d2-8080-00805f6596d2}
061 C:\WINDOWS\system32\wiashext.dll (Microsoft Corporation) {E211B736-43FD-11D1-9EFB-0000F8757FCD}
061 C:\WINDOWS\system32\wiashext.dll (Microsoft Corporation) {FB0C9C8A-6C50-11D1-9F1D-0000F8757FCD}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {91EA3F8B-C99B-11d0-9815-00C04FD91972}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {6413BA2C-B461-11d1-A18A-080036B11A03}
061 C:\WINDOWS\System32\cscui.dll (Microsoft Corporation) {AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {A08C11D2-A228-11d0-825B-00AA005B4383}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {DD313E04-FEFF-11d1-8ECD-0000F87A470C}
061 C:\WINDOWS\system32\diskcopy.dll (Microsoft Corporation) {59099400-57FF-11CE-BD94-0020AF85B590}
061 C:\WINDOWS\system32\ntshrui.dll (Microsoft Corporation) {40dd6e20-7c17-11ce-a804-00aa003ca9f6}
061 C:\WINDOWS\system32\ntshrui.dll (Microsoft Corporation) {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6}
061 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {EFA24E64-B078-11d0-89E4-00C04FC9E26E}
061 C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) {7e653215-fa25-46bd-a339-34a2790f3cb7}
062 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {0D2E74C4-3C34-11d2-A27E-00C04FC30871}
062 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {24F14F01-7B1C-11d1-838f-0000F80461CF}
062 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {24F14F02-7B1C-11d1-838f-0000F80461CF}
062 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {66742402-F9B9-11D1-A202-0000F81FEDEE}
064 C:\WINDOWS\system32\comdlg32.dll (Microsoft Corporation)
064 C:\WINDOWS\system32\ole32.dll (Microsoft Corporation)
064 C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
064 C:\WINDOWS\system32\url.dll (Microsoft Corporation)
064 C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
064 C:\WINDOWS\system32\user32.dll (Microsoft Corporation)
064 C:\WINDOWS\system32\wininet.dll (Microsoft Corporation)
067 C:\WINDOWS\system32\cscdll.dll (Microsoft Corporation)
069 C:\WINDOWS\system32\BsMonSvr.dll (IVT Corporation)
100 Start Page HKCU :

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


102 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {4D5C8C25-D075-11d0-B416-00C04FB90376}
105 ت&صدير إلى Microsoft Excel : res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
105 تحميل الكل بواسطة Internet Download Manager : C:\Program Files\Internet Download Manager\IEGetAll.htm
105 تحميل بواسطة Internet Download Manager : C:\Program Files\Internet Download Manager\IEExt.htm
105 تحميل محتوى FLV بواسطة Internet Download Manager : C:\Program Files\Internet Download Manager\IEGetVL.htm
120 NameServer {E1103073-D1BE-43D9-A165-2BC26C38E036} : 8.8.8.8
150 DisableSR : 1
153 C:\WINDOWS\system32\midimap.dll (Microsoft Corporation)
171 C:\WINDOWS\system32\NiwradSoft.scr
173 C:\WINDOWS\system32\syncui.dll (Microsoft Corporation) {85BBD920-42A0-1069-A2E4-08002B30309D}
173 C:\WINDOWS\System32\cscui.dll (Microsoft Corporation) {750fdf0e-2a26-11d1-a3ea-080036587f03}
173 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {09799AFB-AD67-11d1-ABCD-00C04FC30936}
173 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {A470F8CF-A1E8-4f65-8335-227475AA5C46}
173 C:\WINDOWS\system32\_PPCXM_.DLL (Proland Software) {e33318a0-7321-11d6-9c95-0040056df1d1}
173 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
173 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) طرف القائمة ابدأ
221 C:\WINDOWS\system32\syncui.dll (Microsoft Corporation) {85BBD920-42A0-1069-A2E4-08002B30309D}
221 C:\WINDOWS\System32\cscui.dll (Microsoft Corporation) {750fdf0e-2a26-11d1-a3ea-080036587f03}
221 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {09799AFB-AD67-11d1-ABCD-00C04FC30936}
221 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {A470F8CF-A1E8-4f65-8335-227475AA5C46}
221 C:\WINDOWS\system32\_PPCXM_.DLL (Proland Software) {e33318a0-7321-11d6-9c95-0040056df1d1}
221 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
221 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) طرف القائمة ابدأ
223 C:\Program Files\JetAudio\JetFlExt.dll (JetAudio) {8D1636FD-CA49-4B4E-90E4-0A20E03A15E8}
223 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {7BA4C740-9E81-11CF-99D3-00AA004AE837}
223 C:\Program Files\Unlocker\UnlockerCOM.dll {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83}
225 C:\WINDOWS\system32\syncui.dll (Microsoft Corporation) {85BBD920-42A0-1069-A2E4-08002B30309D}
225 C:\WINDOWS\system32\syncui.dll (Microsoft Corporation) {85BBD920-42A0-1069-A2E4-08002B30309D}
225 C:\Program Files\JetAudio\JetFlExt.dll (JetAudio) {8D1636FD-CA49-4B4E-90E4-0A20E03A15E8}
225 C:\Program Files\JetAudio\JetFlExt.dll (JetAudio) {8D1636FD-CA49-4B4E-90E4-0A20E03A15E8}
225 C:\WINDOWS\system32\_PPCXM_.DLL (Proland Software) {e33318a0-7321-11d6-9c95-0040056df1d1}
225 C:\WINDOWS\system32\_PPCXM_.DLL (Proland Software) {e33318a0-7321-11d6-9c95-0040056df1d1}
225 C:\Program Files\Unlocker\UnlockerCOM.dll {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83}
225 C:\Program Files\Unlocker\UnlockerCOM.dll {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83}
225 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
225 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
227 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {A470F8CF-A1E8-4f65-8335-227475AA5C46}
227 C:\WINDOWS\System32\cscui.dll (Microsoft Corporation) {750fdf0e-2a26-11d1-a3ea-080036587f03}
227 C:\WINDOWS\system32\ntshrui.dll (Microsoft Corporation) {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6}
227 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
229 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) {D969A300-E7FF-11d0-A93B-00A0C90F2719}
231 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
231 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
231 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
231 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
241 C:\WINDOWS\System32\cscui.dll (Microsoft Corporation) {750fdf0e-2a26-11d1-a3ea-080036587f03}
251 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
253 C:\WINDOWS\system32\ntshrui.dll (Microsoft Corporation) {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6}
253 C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
254 C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) {67EA19A0-CCEF-11d0-8024-00C04FD75D13}
254 C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) {217FC9C0-3AEA-1069-A2DB-08002B30309D}
254 C:\WINDOWS\system32\BsShell.dll (IVT Corporation) {F40807E9-BFD1-44F6-AEB0-27E063BD14CA}
254 C:\WINDOWS\system32\mydocs.dll (Microsoft Corporation) {ECF03A33-103D-11d2-854D-006008059367}
254 C:\Program Files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll (Nokia) {416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A}
254 C:\WINDOWS\system32\ntshrui.dll (Microsoft Corporation) {40dd6e20-7c17-11ce-a804-00aa003ca9f6}

Missing files
-------------
011 C:\WINDOWS\system32\drivers\Abiosdsk.sys
011 C:\WINDOWS\system32\drivers\abp480n5.sys
011 C:\WINDOWS\system32\drivers\adpu160m.sys
011 C:\WINDOWS\system32\drivers\Aha154x.sys
011 C:\WINDOWS\system32\drivers\aic78u2.sys
011 C:\WINDOWS\system32\drivers\aic78xx.sys
011 C:\WINDOWS\system32\drivers\AliIde.sys
011 C:\WINDOWS\system32\drivers\amsint.sys
011 C:\WINDOWS\system32\drivers\asc.sys
011 C:\WINDOWS\system32\drivers\asc3350p.sys
011 C:\WINDOWS\system32\drivers\asc3550.sys
011 C:\WINDOWS\system32\drivers\Atdisk.sys
011 C:\WINDOWS\system32\drivers\cd20xrnt.sys
011 C:\WINDOWS\system32\drivers\CmdIde.sys
011 C:\WINDOWS\system32\drivers\Cpqarray.sys
011 C:\WINDOWS\system32\drivers\dac2w2k.sys
011 C:\WINDOWS\system32\drivers\dac960nt.sys
011 C:\WINDOWS\system32\drivers\dpti2o.sys
011 C:\WINDOWS\system32\drivers\hpn.sys
011 C:\WINDOWS\system32\drivers\i2omp.sys
011 C:\WINDOWS\system32\drivers\ini910u.sys
011 C:\WINDOWS\system32\drivers\IntelIde.sys
011 C:\WINDOWS\system32\drivers\mraid35x.sys
011 C:\WINDOWS\system32\drivers\perc2.sys
011 C:\WINDOWS\system32\drivers\perc2hib.sys
011 C:\WINDOWS\system32\drivers\ql1080.sys
011 C:\WINDOWS\system32\drivers\Ql10wnt.sys
011 C:\WINDOWS\system32\drivers\ql12160.sys
011 C:\WINDOWS\system32\drivers\ql1240.sys
011 C:\WINDOWS\system32\drivers\ql1280.sys
011 C:\WINDOWS\system32\drivers\Simbad.sys
011 C:\WINDOWS\system32\drivers\Sparrow.sys
011 C:\WINDOWS\system32\drivers\sym_hi.sys
011 C:\WINDOWS\system32\drivers\sym_u3.sys
011 C:\WINDOWS\system32\drivers\symc810.sys
011 C:\WINDOWS\system32\drivers\symc8xx.sys
011 C:\WINDOWS\system32\drivers\TosIde.sys
011 C:\WINDOWS\system32\drivers\ultra.sys

 
توقيع : abdelkader206
الله يعافيك

عطنا
قائمة البرامج المثبته

وبالنسبه لـ اداة رن سكنر ليس هذا المطلوب تأكد من الشرح اخي
 


====== معلومات نظام التشغيل ======

X86 WIN_XP 2600 Service Pack 2


====== قائمة البرامج المثبتة ======

Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader X - Arabic
ALLConverter PRO 1.1
Any Video Converter 3.1.8
Apple Application Support
Apple Software Update
Assistant de connexion Windows Live
Auslogics Disk Defrag
Bluesoleil 6.4.275.0
Carbide.ui S60 Theme Edition 3.1
CCleaner
Configuration DivX
COWON Media Center - jetAudio Basic VX
ESET Smart Security
facemoods
FormatFactory 2.60
Google Update Helper
High Definition Audio Driver Package - KB888111
HiJackThis
HijackThis 2.0.2
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows XP (KB926239)
Hotfix for Windows XP (KB976002-v5)
Installation Windows Live
Installation Windows Live
Internet Download Manager
Internet Download Manager
Java Auto Updater
Java(TM) 6 Update 20
Java(TM) 6 Update 23
Key Checker version 3.2.2
K-Lite Codec Pack 6.9.0 (Full)
Messenger Plus! 5
Microsoft .NET Framework 2.0
Microsoft .NET Framework 2.0
Microsoft Application Error Reporting
Microsoft Choice Guard
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
Microsoft Office Access MUI (Arabic) 2007
Microsoft Office Enterprise 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (Arabic) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (Arabic) 2007
Microsoft Office InfoPath MUI (Arabic) 2007
Microsoft Office OneNote MUI (Arabic) 2007
Microsoft Office Outlook MUI (Arabic) 2007
Microsoft Office PowerPoint MUI (Arabic) 2007
Microsoft Office Proof (Arabic) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proofing (Arabic) 2007
Microsoft Office Publisher MUI (Arabic) 2007
Microsoft Office Shared MUI (Arabic) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Word MUI (Arabic) 2007
Microsoft Software Update for Web Folders (Arabic) 12
Microsoft User-Mode Driver Framework Feature Pack 1.9
Microsoft Visual C++ 2005 Redistributable
Mozilla Firefox (3.6.13)
Mozilla Firefox 4.0b11 (x86 ar)
MSVC80_x86_v2
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 6 Service Pack 2 (KB973686)
Nokia Connectivity Cable Driver
Nokia PC Suite
Nokia PC Suite
OpenSubtitlesPlayer V4.X
Outil de téléchargement Windows Live
PC Connectivity Solution
Platform
Plato Video To iPod PSP 3GP 11.11.02
Protector Plus for Windows
QuickTime
Real Alternative 1.9.0 Lite
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealPlayer
RealUpgrade 1.1
Salaf Guide Toolbar
Security Update for 2007 Microsoft Office System (KB951550)
Security Update for 2007 Microsoft Office System (KB951944)
Segoe UI
Seven Remix XP 2.41
Skype Toolbars
Skype™ 5.1
The KMPlayer (remove only)
TuneUp Utilities 2011
TuneUp Utilities 2011
TuneUp Utilities Language Pack (fr-FR)
Unlocker 1.9.0
Update for 2007 Microsoft Office System (KB967642)
Update for Outlook 2007 Junk Email Filter (KB2492475)
USB Safely Remove 4.5
VC80CRTRedist - 8.0.50727.4053
VIA Display Driver 6.14.10.0099
VIA Platform Device Manager
VIA Rhine-Family Fast-Ethernet Adapter
VLC media player 1.1.7
WebFldrs XP
Windows Genuine Advantage Notifications (KB905474)
Windows Installer 3.1 (KB893803)
Windows Internet Explorer 8
Windows Live Call
Windows Live Communications Platform
Windows Live Messenger
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player 11
WinRAR 4.00 بيتا 6 (32-بت)
Yahoo! Messenger
Your Uninstaller! 2010
‏‏إصلاح السريع لـ Windows Media Player 11 (KB939683)
أوزو ميديا 9.0
برنامج إصلاح (Hotfix) لـ Windows XP (KB942288-v3)‎
برنامج إصلاح (Hotfix) لـ Windows XP (KB952287)‎
برنامج إصلاح (Hotfix) لـ Windows XP (KB981793)‎
‏‏تحديث الأمان لـ Windows Media Player (KB952069)
‏‏تحديث الأمان لـ Windows Media Player (KB954155)
‏‏تحديث الأمان لـ Windows Media Player (KB973540)
‏‏تحديث الأمان لـ Windows Media Player (KB978695)
‏‏تحديث الأمان لـ Windows Media Player 11 (KB954154)
‏‏تحديث الأمان لـ Windows XP (KB941569)
تحديث أمان لـ Windows Internet Explorer 8 (KB971961)‎
تحديث أمان لـ Windows Internet Explorer 8 (KB981332)‎
تحديث أمان لـ Windows Internet Explorer 8 (KB982381)‎
تحديث أمان لـ Windows XP (KB2229593)‎
تحديث أمان لـ Windows XP (KB923561)‎
تحديث أمان لـ Windows XP (KB946648)‎
تحديث أمان لـ Windows XP (KB950762)‎
تحديث أمان لـ Windows XP (KB950974)‎
تحديث أمان لـ Windows XP (KB951376-v2)‎
تحديث أمان لـ Windows XP (KB951748)‎
تحديث أمان لـ Windows XP (KB952004)‎
تحديث أمان لـ Windows XP (KB952954)‎
تحديث أمان لـ Windows XP (KB955069)‎
تحديث أمان لـ Windows XP (KB956572)‎
تحديث أمان لـ Windows XP (KB956802)‎
تحديث أمان لـ Windows XP (KB956803)‎
تحديث أمان لـ Windows XP (KB956844)‎
تحديث أمان لـ Windows XP (KB958470)‎
تحديث أمان لـ Windows XP (KB958644)‎
تحديث أمان لـ Windows XP (KB958869)‎
تحديث أمان لـ Windows XP (KB959426)‎
تحديث أمان لـ Windows XP (KB960803)‎
تحديث أمان لـ Windows XP (KB960859)‎
تحديث أمان لـ Windows XP (KB961501)‎
تحديث أمان لـ Windows XP (KB969059)‎
تحديث أمان لـ Windows XP (KB970238)‎
تحديث أمان لـ Windows XP (KB970430)‎
تحديث أمان لـ Windows XP (KB971032)‎
تحديث أمان لـ Windows XP (KB971468)‎
تحديث أمان لـ Windows XP (KB971657)‎
تحديث أمان لـ Windows XP (KB972270)‎
تحديث أمان لـ Windows XP (KB973507)‎
تحديث أمان لـ Windows XP (KB973869)‎
تحديث أمان لـ Windows XP (KB973904)‎
تحديث أمان لـ Windows XP (KB974112)‎
تحديث أمان لـ Windows XP (KB974318)‎
تحديث أمان لـ Windows XP (KB974392)‎
تحديث أمان لـ Windows XP (KB974571)‎
تحديث أمان لـ Windows XP (KB975025)‎
تحديث أمان لـ Windows XP (KB975467)‎
تحديث أمان لـ Windows XP (KB975560)‎
تحديث أمان لـ Windows XP (KB975561)‎
تحديث أمان لـ Windows XP (KB975562)‎
تحديث أمان لـ Windows XP (KB975713)‎
تحديث أمان لـ Windows XP (KB977816)‎
تحديث أمان لـ Windows XP (KB977914)‎
تحديث أمان لـ Windows XP (KB978037)‎
تحديث أمان لـ Windows XP (KB978338)‎
تحديث أمان لـ Windows XP (KB978542)‎
تحديث أمان لـ Windows XP (KB978601)‎
تحديث أمان لـ Windows XP (KB978706)‎
تحديث أمان لـ Windows XP (KB979309)‎
تحديث أمان لـ Windows XP (KB979482)‎
تحديث أمان لـ Windows XP (KB979559)‎
تحديث أمان لـ Windows XP (KB979683)‎
تحديث أمان لـ Windows XP (KB980195)‎
تحديث أمان لـ Windows XP (KB980218)‎
تحديث أمان لـ Windows XP (KB980232)‎
تحديث لـ Windows Internet Explorer 8 (KB976662)‎
تحديث لـ Windows XP (KB898461)‎
تحديث لـ Windows XP (KB932823-v3)‎
تحديث لـ Windows XP (KB955759)‎
تحديث لـ Windows XP (KB961503)‎
تحديث لـ Windows XP (KB967715)‎
تحديث لـ Windows XP (KB968389)‎
تحديث لـ Windows XP (KB971737)‎
تحديث لـ Windows XP (KB973687)‎
تحديث لـ Windows XP (KB973815)‎
حزمة برامج تشغيل Windows - Nokia Modem (06/09/2010 7.01.0.8)
حزمة برامج تشغيل Windows - Nokia Modem (10/07/2010 4.6)
حزمة برامج تشغيل Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)


 
توقيع : abdelkader206
طبق هذا >>

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي



من الحذف والاظافة احذف

facemoods


ثم حدد القيم التاليه
O2 - BHO: facemoods Helper - {64182481-4F71-486b-A045-B233BD0DA8FC} - C:\Program Files\facemoods.com\facemoods\1.4.17.3\bh\facemood s.dll

O3 - Toolbar: facemoods Toolbar - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - C:\Program Files\facemoods.com\facemoods\1.4.17.3\facemoodsTl br.dll


ثم ضع اشارة الصح على كل القيم المطلوب منك حذفها حسب الشرح التالي​


bf28ac475e05cc3563b98b204f5a4535.png


911376dd57542a52a620006373c8483c.png


ونظف جهازك بهذه الاداة​


يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي



وبلغنا اخر النتائج​
 
توقيع : abdelkader206
SmitFraudFix v2.424

Scan done at 12:43:17.93, Wed 02/16/2011
Run from C:\Documents and Settings\Kader\Application Data\IDM\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
The filesystem type is NTFS
Fix run in normal mode

»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

»»»»»»»»»»»»»»»»»»»»»»»» Killing process


»»»»»»»»»»»»»»»»»»»»»»»» hosts


127.0.0.1 localhost
127.0.0.1 tonec.com
127.0.0.1

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


127.0.0.1 registeridm.com
127.0.0.1

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


127.0.0.1 secure.registeridm.com
127.0.0.1 internetdownloadmanager.com
127.0.0.1

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


127.0.0.1 secure.internetdownloadmanager.com
127.0.0.1 mirror.internetdownloadmanager.com
...

»»»»»»»»»»»»»»»»»»»»»»»» VACFix

VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix

S!Ri's WS2Fix: LSP not Found.


»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix

GenericRenosFix by S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files


»»»»»»»»»»»»»»»»»»»»»»»» IEDFix

IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri



»»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix

Agent.OMZ.Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» 404Fix

404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» RK


»»»»»»»»»»»»»»»»»»»»»»»» DNS

Description: WAN (PPP/SLIP) Interface
DNS Server Search Order: 8.8.8.8

HKLM\SYSTEM\CCS\Services\Tcpip\..\{E1103073-D1BE-43D9-A165-2BC26C38E036}: NameServer=8.8.8.8
HKLM\SYSTEM\CS1\Services\Tcpip\..\{E1103073-D1BE-43D9-A165-2BC26C38E036}: NameServer=8.8.8.8


»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files


»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, following keys are not inevitably infected!!!

"System"=""


»»»»»»»»»»»»»»»»»»»»»»»» RK.2



»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning

Registry Cleaning done.

»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» End


 
توقيع : abdelkader206

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:11:06, on 16/02/2011
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\USB Safely Remove\USBSRService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Protector Plus\PPAVMon.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\explorer.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\WinRAR\WinRAR.exe
C:\Zyzoom_Forum_Tools\zyzoom.exe
C:\Zyzoom_Forum_Tools\zHijak.com

O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: ت&صدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


O17 - HKLM\System\CCS\Services\Tcpip\..\{E1103073-D1BE-43D9-A165-2BC26C38E036}: NameServer = 8.8.8.8
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
O23 - Service: BsMobileCS - IVT Corporation - C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: خدمة تحديث Google (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Protector Plus Anti-virus Monitor Service (ProtectorPlusAVMonitor) - Proland Software Pvt Ltd. - C:\Protector Plus\PPAVMon.exe
O23 - Service: Protector Plus Service (ProtectorPlusService) - Proland Software - C:\Protector Plus\PPServ.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
O23 - Service: USB Safely Remove Assistant (USBSafelyRemoveService) - Unknown owner - C:\Program Files\USB Safely Remove\USBSRService.exe

--
End of file - 6142 bytes

 
توقيع : abdelkader206
تقريرك سليم بس عندك عدة اشياء لازم تسويها

اولا هذا

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي



بعدين ركب برنامج حماية النورتن معدوم احذفه احسن

شرح حذف البرنامج

افضل الوسائل لحذف البرنامج ومن تجريه شخصية هي عن طريق ملف التنصيب نفسه
بتم الحذف كاملا ودون اي اثر او بقايا للبرنامج
اولا يتم تعطيل البرنامج عن العمل واغلاق كافة البرامج من متصفح وغيره

f3027ad4b8d8d7db56b6c3412f590570.png


ثم شغل ملف التثبيت وتابع الشرح

f78c4f7fa99d3e5f2b039bc889de8d29.png


424a2a7e64a267c340eeafd9a7331dc1.png


00cdf4f1363486542baecd0c80f04e81.png


7892cd54bb762d156bceaaeaaa16fb17.png


1fb82288bffa5f9248b7b7adc8ab34c4.png


bd4b610c2f9286c95f85fff215339b5a.png


والخطوة الاخيرة والاهم اعادة تشغيل الجهاز

fa21f97328303ea4d4346d6f3a1ba529.png




وانصحك بهذا

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي




مفتاحه من هنا

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي




موفق خير اخوي
 
بقي لدي هذا الملف لم استطيع حذفه مع انني جربت جميع الادوات التي اعطيتمونيها
حتى مع TFC تظهر هذه الرسالة
4534160e63b25f20e3a4eb080718a0b0.jpg

-------------------
تم تثبيت تحديث win xp sp3
جاري تحميل النورتون
وجزاكم الله خيرا وبارك الله فيكم

 
توقيع : abdelkader206
اواجه مشكلة في حذف برنامج
ESET Smart Security
بالرغم من انني استعملت أداة
ESETUninstaller
في الوضع العادي و الامن
+++
كما لم استطيع ازالته بالطريقة التي ذكرها الاخ البارون
لان الملفات بصيغة msi
لم تعد تفتح في جهازي

 
توقيع : abdelkader206
عودة
أعلى