طُمُوح !

زيزوومي جديد
إنضم
4 أبريل 2011
المشاركات
7
مستوى التفاعل
0
النقاط
0
غير متصل

السلام عليكم ورحمة الله وبركاته ...

/

أنا عندي مشكلة في الماسنجر عندما أريد ادخال الايميل والباسوورد
ثم تسجيل دخوول ..

تخرج لي نافذتين متتالين

الأولى :

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


وبعدها هذه :

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


/

أما برنامج الموف ميكر صانع الافلام movie maker ..

حينما أريد فتحه تظهر لي هذه النافذه ..

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



/



ما الحل أرجووكم ساعدووني فأنا أحتاج هذه البرامج كثيره

وعندي أعمال مهمه في الموف ميكر يجب أن أعملها .. :f: :f:

وششكرًا ، وجزاكم الله خيير على هذا الصرح المفييد .. :wink: "
 

توقيع : طُمُوح !
حمل الاداة من هذا الموضوع

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


واعمل تقرير هايجاك + قائمة بالبرامج المثبته

------------------

3b3ce221851b60a78bfa55cbd704e323.jpg
 
توقيع : غَيّوضْ
طلع معي ..

logfile of trend micro hijackthis v2.0.4
scan saved at 07:24:16 م, on 05/04/11
platform: Windows 7 (winnt 6.00.3504)
msie: Internet explorer v8.00 (8.00.7600.16722)
boot mode: Normal

running processes:
C:\program files (x86)\intel\intel matrix storage manager\iaanotif.exe
c:\program files (x86)\microsoft office\office12\onenotem.exe
c:\program files (x86)\sony\isb utility\isbmgr.exe
c:\program files (x86)\real\realplayer\update\realsched.exe
c:\program files (x86)\zte connection manager\uiexec.exe
c:\program files (x86)\common files\spigot\search settings\searchsettings.exe
c:\program files (x86)\yahoo!\messenger\ymsgr_tray.exe
c:\program files\widcomm\bluetooth software\bluetoothheadsetproxy.exe
c:\users\nossa\appdata\local\google\chrome\application\chrome.exe
c:\users\nossa\appdata\local\google\chrome\application\chrome.exe
c:\users\nossa\appdata\local\google\chrome\application\chrome.exe
c:\users\nossa\appdata\local\google\chrome\application\chrome.exe
c:\users\nossa\appdata\local\google\chrome\application\chrome.exe
c:\program files (x86)\orbitdownloader\orbitdm.exe
c:\program files (x86)\orbitdownloader\orbitnet.exe
c:\users\nossa\appdata\local\google\chrome\application\chrome.exe
c:\users\nossa\appdata\local\google\chrome\application\chrome.exe
c:\zyzoom_forum_tools\zyzoom.exe
c:\zyzoom_forum_tools\zhijak.com

r1 - hkcu\software\microsoft\internet explorer\main,default_page_url =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

r1 - hkcu\software\microsoft\internet explorer\main,search page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

r0 - hkcu\software\microsoft\internet explorer\main,start page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

r1 - hklm\software\microsoft\internet explorer\main,default_page_url =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

r1 - hklm\software\microsoft\internet explorer\main,default_search_url =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

r1 - hklm\software\microsoft\internet explorer\main,search page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

r0 - hklm\software\microsoft\internet explorer\main,start page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

r0 - hklm\software\microsoft\internet explorer\search,searchassistant =
r0 - hklm\software\microsoft\internet explorer\search,customizesearch =
r0 - hklm\software\microsoft\internet explorer\main,local page = c:\windows\syswow64\blank.htm
r0 - hkcu\software\microsoft\internet explorer\toolbar,linksfoldername =
r3 - urlsearchhook: Dealio toolbar - {01398b87-61af-4ffb-9ab5-1a1c5fb39a9c} - c:\program files (x86)\dealio toolbar\ie\4.3\dealiotoolbarie.dll
r3 - urlsearchhook: (no name) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - (no file)
r3 - urlsearchhook: Messenger plus saudi toolbar - {9e1b5c68-1ab5-49fe-97a9-d3f777c51663} - c:\program files (x86)\messenger_plus_saudi\prxtbmess.dll
r3 - urlsearchhook: Power karaoke toolbar - {3303e956-2a3a-48e0-be39-2e0ef11a2f44} - c:\program files (x86)\power_karaoke\tbpowe.dll
f2 - reg:system.ini: Userinit=userinit.exe
o2 - bho: Btorbit.com - {000123b4-9b42-4900-b3f7-f4b073efc214} - c:\program files (x86)\orbitdownloader\orbitcth.dll
o2 - bho: Snagit toolbar loader - {00c6482d-c502-44c8-8409-fce54ad9c208} - c:\program files (x86)\techsmith\snagit 10\snagitbho.dll
o2 - bho: Dealio toolbar - {01398b87-61af-4ffb-9ab5-1a1c5fb39a9c} - c:\program files (x86)\dealio toolbar\ie\4.3\dealiotoolbarie.dll
o2 - bho: (no name) - {02478d38-c3f9-4efb-9b51-7695eca05670} - (no file)
o2 - bho: Acroiehelperstub - {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files (x86)\common files\adobe\acrobat\activex\acroiehelpershim.dll
o2 - bho: Pccbho.cpccbho - {22fc6ce8-7d47-479f-b74a-bfbb04adb9af} - c:\program files (x86)\winferno\pc confidential\pccbho.dll
o2 - bho: Realplayer download and record plugin for internet explorer - {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\programdata\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
o2 - bho: Conduit engine - {30f9b915-b755-4826-820b-08fba6bd249d} - c:\program files (x86)\conduitengine\prxconduitengine.dll
o2 - bho: Power karaoke toolbar - {3303e956-2a3a-48e0-be39-2e0ef11a2f44} - c:\program files (x86)\power_karaoke\tbpowe.dll
o2 - bho: Groove gfs browser helper - {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\program files (x86)\microsoft office\office12\grooveshellextensions.dll
o2 - bho: مساعد تسجيل الدخول إلى معرف windows live - {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files (x86)\common files\microsoft shared\windows live\windowslivelogin.dll
o2 - bho: Messenger plus saudi - {9e1b5c68-1ab5-49fe-97a9-d3f777c51663} - c:\program files (x86)\messenger_plus_saudi\prxtbmess.dll
o2 - bho: Windows live messenger companion helper - {9fdde16b-836f-4806-ab1f-1455cbeff289} - c:\program files (x86)\windows live\companion\companioncore.dll
o2 - bho: Google toolbar helper - {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files (x86)\google\google toolbar\googletoolbar_32.dll
o2 - bho: Google toolbar notifier bho - {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files (x86)\google\googletoolbarnotifier\5.5.5126.1836\swg.dll
o2 - bho: Bing bar helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "c:\program files (x86)\microsoft\bingbar\bingext.dll" (file missing)
o2 - bho: Java(tm) plug-in 2 ssv helper - {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files (x86)\java\jre6\bin\jp2ssv.dll (file missing)
o3 - toolbar: Google toolbar - {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files (x86)\google\google toolbar\googletoolbar_32.dll
o3 - toolbar: Snagit - {8ff5e183-abde-46eb-b09e-d2aab95cabe3} - c:\program files (x86)\techsmith\snagit 10\snagitieaddin.dll
o3 - toolbar: Grab pro - {c55bbcd6-41ad-48ad-9953-3609c48eacc7} - c:\program files (x86)\orbitdownloader\grabpro.dll
o3 - toolbar: Messenger plus saudi toolbar - {9e1b5c68-1ab5-49fe-97a9-d3f777c51663} - c:\program files (x86)\messenger_plus_saudi\prxtbmess.dll
o3 - toolbar: Conduit engine - {30f9b915-b755-4826-820b-08fba6bd249d} - c:\program files (x86)\conduitengine\prxconduitengine.dll
o3 - toolbar: Bing bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "c:\program files (x86)\microsoft\bingbar\bingext.dll" (file missing)
o3 - toolbar: Dealio toolbar - {01398b87-61af-4ffb-9ab5-1a1c5fb39a9c} - c:\program files (x86)\dealio toolbar\ie\4.3\dealiotoolbarie.dll
o3 - toolbar: Power karaoke toolbar - {3303e956-2a3a-48e0-be39-2e0ef11a2f44} - c:\program files (x86)\power_karaoke\tbpowe.dll
o4 - hklm\..\run: [isbmgr.exe] "c:\program files (x86)\sony\isb utility\isbmgr.exe"
o4 - hklm\..\run: [nortononlinebackupreminder] "c:\program files (x86)\symantec\norton online backup\activation\nobuactivation.exe" unattended
o4 - hklm\..\run: [groovemonitor] "c:\program files (x86)\microsoft office\office12\groovemonitor.exe"
o4 - hklm\..\run: [switchboard] "c:\program files (x86)\common files\adobe\switchboard\switchboard.exe"
o4 - hklm\..\run: [adobecs5servicemanager] "c:\program files (x86)\common files\adobe\cs5servicemanager\cs5servicemanager.exe" -launchedbylogin
o4 - hklm\..\run: [adobe reader speed launcher] "c:\program files (x86)\adobe\reader 9.0\reader\reader_sl.exe"
o4 - hklm\..\run: [adobe arm] "c:\program files (x86)\common files\adobe\arm\1.0\adobearm.exe"
o4 - hklm\..\run: [tkbellexe] "c:\program files (x86)\real\realplayer\update\realsched.exe" -osboot
o4 - hklm\..\run: [uiexec] "c:\program files (x86)\zte connection manager\uiexec.exe"
o4 - hklm\..\run: [searchsettings] "c:\program files (x86)\common files\spigot\search settings\searchsettings.exe"
o4 - hkcu\..\run: [msnmsgr] "c:\program files (x86)\windows live\messenger\msnmsgr.exe" /background
o4 - hkcu\..\run: [swg] "c:\program files (x86)\google\googletoolbarnotifier\googletoolbarnotifier.exe"
o4 - hkcu\..\run: [google update] "c:\users\nossa\appdata\local\google\update\googleupdate.exe" /c
o4 - hkcu\..\run: [messenger (yahoo!)] "c:\progra~2\yahoo!\messenger\yahoomessenger.exe" -quiet
o4 - hkcu\..\run: [beyluxemessenger] "c:\program files (x86)\beyluxe messenger\beyluxe messenger.exe" /hide
o4 - hkus\s-1-5-19\..\run: [sidebar] %programfiles%\windows sidebar\sidebar.exe /autorun (user 'local service')
o4 - hkus\s-1-5-19\..\runonce: [mctadmin] c:\windows\system32\mctadmin.exe (user 'local service')
o4 - hkus\s-1-5-20\..\run: [sidebar] %programfiles%\windows sidebar\sidebar.exe /autorun (user 'network service')
o4 - hkus\s-1-5-20\..\runonce: [mctadmin] c:\windows\system32\mctadmin.exe (user 'network service')
o4 - startup: Fliptoast.lnk = c:\program files (x86)\fliptoast\fliptoast.exe
o4 - startup: Onenote 2007 screen clipper and launcher.lnk = c:\program files (x86)\microsoft office\office12\onenotem.exe
o4 - global startup: Bluetooth.lnk = ?
O8 - extra context menu item: &download by orbit - res://c:\program files (x86)\orbitdownloader\orbitmxt.dll/201
o8 - extra context menu item: &grab video by orbit - res://c:\program files (x86)\orbitdownloader\orbitmxt.dll/204
o8 - extra context menu item: Do&wnload selected by orbit - res://c:\program files (x86)\orbitdownloader\orbitmxt.dll/203
o8 - extra context menu item: Down&load all by orbit - res://c:\program files (x86)\orbitdownloader\orbitmxt.dll/202
o8 - extra context menu item: E&xport to microsoft excel - res://c:\progra~2\micros~4\office12\excel.exe/3000
o8 - extra context menu item: Google sidewiki... - res://c:\program files (x86)\google\google toolbar\component\googletoolbardynamic_mui_en_89d8574934b26ac4.dll/cmsidewiki.html
o8 - extra context menu item: جاري إرسال الصفحة إلى &جهاز bluetooth... - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
o8 - extra context menu item: جاري إرسال الصورة إلى &جهاز bluetooth... - c:\program files\widcomm\bluetooth software\btsendto_ie_ctx.htm
o9 - extra button: @c:\program files (x86)\windows live\companion\companionlang.dll,-600 - {0000036b-c524-4050-81a0-243669a86b9f} - c:\program files (x86)\windows live\companion\companioncore.dll
o9 - extra button: @c:\program files (x86)\windows live\writer\windowslivewritershortcuts.dll,-1004 - {219c3416-8cb2-491a-a3c7-d9fcddc9d600} - c:\program files (x86)\windows live\writer\writerbrowserextension.dll
o9 - extra 'tools' menuitem: @c:\program files (x86)\windows live\writer\windowslivewritershortcuts.dll,-1003 - {219c3416-8cb2-491a-a3c7-d9fcddc9d600} - c:\program files (x86)\windows live\writer\writerbrowserextension.dll
o9 - extra button: إرسال إلى onenote - {2670000a-7350-4f3c-8081-5663ee0c6c49} - c:\progra~2\micros~4\office12\onbttnie.dll
o9 - extra 'tools' menuitem: إر&سال إلى onenote - {2670000a-7350-4f3c-8081-5663ee0c6c49} - c:\progra~2\micros~4\office12\onbttnie.dll
o9 - extra button: (no name) - {53f6fccd-9e22-4d71-86ea-6e43136192ab} - c:\program files (x86)\winferno\pc confidential\pcconfidential.exe
o9 - extra 'tools' menuitem: Pc confidential - {53f6fccd-9e22-4d71-86ea-6e43136192ab} - c:\program files (x86)\winferno\pc confidential\pcconfidential.exe
o9 - extra button: Pc confidential - {925dab62-f9ac-4221-806a-057bfb1014aa} - c:\program files (x86)\winferno\pc confidential\pcconfidential.exe
o9 - extra button: Research - {92780b25-18cc-41c8-b9be-3c9c571a8263} - c:\progra~2\micros~4\office12\refiebar.dll
o9 - extra button: Send to bluetooth - {cca281ca-c863-46ef-9331-5c8d4460577f} - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
o9 - extra 'tools' menuitem: Send to &bluetooth device... - {cca281ca-c863-46ef-9331-5c8d4460577f} - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
o10 - unknown file in winsock lsp: C:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
o10 - unknown file in winsock lsp: C:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
o16 - dpf: {e2883e8f-472f-4fb0-9522-ac9bf37916a7} -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

o18 - protocol: Groovelocalgws - {88fed34c-f0ca-4636-a375-3cb6248b04cd} - c:\program files (x86)\microsoft office\office12\groovesystemservices.dll
o18 - protocol: Skype4com - {ffc8b962-9b40-4dff-9458-1830c7dd7f5d} - c:\progra~2\common~1\skype\skype4~1.dll
o18 - protocol: Wlpg - {e43ef6cd-a37a-4a9b-9e6f-83f89b8e6324} - c:\program files (x86)\windows live\photo gallery\albumdownloadprotocolhandler.dll
o23 - service: Arcsoft connect daemon (acdaemon) - arcsoft inc. - c:\program files (x86)\common files\arcsoft\connection service\bin\acservice.exe
o23 - service: Adobe active file monitor v7 (adobeactivefilemonitor7.0) - adobe systems incorporated - c:\program files (x86)\adobe\photoshop elements 7.0\photoshopelementsfileagent.exe
o23 - service: @%systemroot%\system32\alg.exe,-112 (alg) - unknown owner - c:\windows\system32\alg.exe (file missing)
o23 - service: Application updater - spigot, inc. - c:\program files (x86)\application updater\applicationupdater.exe
o23 - service: Bluetooth service (btwdins) - broadcom corporation. - c:\program files\widcomm\bluetooth software\btwdins.exe
o23 - service: @%systemroot%\system32\efssvc.dll,-100 (efs) - unknown owner - c:\windows\system32\lsass.exe (file missing)
o23 - service: @%systemroot%\system32\fxsresm.dll,-118 (fax) - unknown owner - c:\windows\system32\fxssvc.exe (file missing)
o23 - service: Flexnet licensing service - acresso software inc. - c:\program files (x86)\common files\macrovision shared\flexnet publisher\fnplicensingservice.exe
o23 - service: خدمة تحديث google (gupdate) (gupdate) - google inc. - c:\program files (x86)\google\update\googleupdate.exe
o23 - service: Google software updater (gusvc) - google - c:\program files (x86)\google\common\google updater\googleupdaterservice.exe
o23 - service: Intel(r) matrix storage event monitor (iaantmon) - intel corporation - c:\program files (x86)\intel\intel matrix storage manager\iaantmon.exe
o23 - service: @keyiso.dll,-100 (keyiso) - unknown owner - c:\windows\system32\lsass.exe (file missing)
o23 - service: @comres.dll,-2797 (msdtc) - unknown owner - c:\windows\system32\msdtc.exe (file missing)
o23 - service: @%systemroot%\system32\netlogon.dll,-102 (netlogon) - unknown owner - c:\windows\system32\lsass.exe (file missing)
o23 - service: Nvidia display driver service (nvsvc) - unknown owner - c:\windows\system32\nvvsvc.exe (file missing)
o23 - service: @%systemroot%\system32\psbase.dll,-300 (protectedstorage) - unknown owner - c:\windows\system32\lsass.exe (file missing)
o23 - service: Roxio upnp renderer 10 - sonic solutions - c:\program files (x86)\roxio\digital home 10\roxioupnprenderer10.exe
o23 - service: Roxio upnp server 10 - sonic solutions - c:\program files (x86)\roxio\digital home 10\roxioupnpservice10.exe
o23 - service: @%systemroot%\system32\locator.exe,-2 (rpclocator) - unknown owner - c:\windows\system32\locator.exe (file missing)
o23 - service: @%systemroot%\system32\samsrv.dll,-1 (samss) - unknown owner - c:\windows\system32\lsass.exe (file missing)
o23 - service: @%systemroot%\system32\snmptrap.exe,-3 (snmptrap) - unknown owner - c:\windows\system32\snmptrap.exe (file missing)
o23 - service: Vaio media plus content importer (sohcimp) - sony corporation - c:\program files (x86)\common files\sony shared\sohlib\sohcimp.exe
o23 - service: Vaio media plus database manager (sohdbsvr) - sony corporation - c:\program files (x86)\common files\sony shared\sohlib\sohdbsvr.exe
o23 - service: Vaio media plus digital media server (sohdms) - sony corporation - c:\program files (x86)\common files\sony shared\sohlib\sohdms.exe
o23 - service: Vaio media plus device searcher (sohds) - sony corporation - c:\program files (x86)\common files\sony shared\sohlib\sohds.exe
o23 - service: Vaio media plus playlist manager (sohplmgr) - sony corporation - c:\program files (x86)\common files\sony shared\sohlib\sohplmgr.exe
o23 - service: @%systemroot%\system32\spoolsv.exe,-1 (spooler) - unknown owner - c:\windows\system32\spoolsv.exe (file missing)
o23 - service: @%systemroot%\system32\sppsvc.exe,-101 (sppsvc) - unknown owner - c:\windows\system32\sppsvc.exe (file missing)
o23 - service: Switchboard - adobe systems incorporated - c:\program files (x86)\common files\adobe\switchboard\switchboard.exe
o23 - service: Cammonitor (ucammonitor) - arcsoft, inc. - c:\program files (x86)\arcsoft\magic-i visual effects 2\ucammonitor.exe
o23 - service: Ui assistant service - unknown owner - c:\program files (x86)\zte connection manager\assistantservices.exe
o23 - service: @%systemroot%\system32\ui0detect.exe,-101 (ui0detect) - unknown owner - c:\windows\system32\ui0detect.exe (file missing)
o23 - service: Vaio entertainment tv device arbitration service - sony corporation - c:\program files (x86)\common files\sony shared\vaio entertainment platform\vzhardwareresourcemanager\vzhardwareresourcemanager\vzhardwareresourcemanager.exe
o23 - service: Vaio event service - sony corporation - c:\program files (x86)\sony\vaio event service\vesmgr.exe
o23 - service: Vaio power management - sony corporation - c:\program files\sony\vaio power management\spmservice.exe
o23 - service: @%systemroot%\system32\vaultsvc.dll,-1003 (vaultsvc) - unknown owner - c:\windows\system32\lsass.exe (file missing)
o23 - service: Vaio content folder watcher (vcfw) - sony corporation - c:\program files (x86)\common files\sony shared\vaio content folder watcher\vcfw.exe
o23 - service: Vaio content metadata intelligent analyzing manager (vcmialzmgr) - sony corporation - c:\program files\sony\vcm intelligent analyzing manager\vcmialzmgr.exe
o23 - service: Vaio content metadata intelligent network service manager (vcminsmgr) - sony corporation - c:\program files\sony\vcm intelligent network service manager\vcminsmgr.exe
o23 - service: Vaio content metadata xml interface (vcmxmlifhelper) - sony corporation - c:\program files\common files\sony shared\vcmxml\vcmxmlifhelper64.exe
o23 - service: Vaio entertainment upnp client adapter (vcsw) - sony corporation - c:\program files (x86)\common files\sony shared\vaio entertainment platform\vcsw\vcsw.exe
o23 - service: @%systemroot%\system32\vds.exe,-100 (vds) - unknown owner - c:\windows\system32\vds.exe (file missing)
o23 - service: Vsnservice - sony corporation - c:\program files\sony\vaio smart network\vsnservice.exe
o23 - service: @%systemroot%\system32\vssvc.exe,-102 (vss) - unknown owner - c:\windows\system32\vssvc.exe (file missing)
o23 - service: Vaio entertainment database service (vzcdbsvc) - sony corporation - c:\program files (x86)\common files\sony shared\vaio entertainment platform\vzcdb\vzcdbsvc.exe
o23 - service: @%systemroot%\system32\wat\watux.exe,-601 (watadminsvc) - unknown owner - c:\windows\system32\wat\watadminsvc.exe (file missing)
o23 - service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - unknown owner - c:\windows\system32\wbengine.exe (file missing)
o23 - service: @%systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiapsrv) - unknown owner - c:\windows\system32\wbem\wmiapsrv.exe (file missing)
o23 - service: @%programfiles%\windows media player\wmpnetwk.exe,-101 (wmpnetworksvc) - unknown owner - c:\program files (x86)\windows media player\wmpnetwk.exe (file missing)
o23 - service: Yahoo! Updater (yahooauservice) - yahoo! Inc. - c:\program files (x86)\yahoo!\softwareupdate\yahooauservice.exe

--
end of file - 19264 bytes

بإنتظظآرك .. الله يعآآفيك ..
 
توقيع : طُمُوح !
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 07:28:34 م, on 05/04/11
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16722)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe
C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
C:\Program Files (x86)\ZTE Connection Manager\UIExec.exe
C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe
C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Users\Nossa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Nossa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Nossa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Nossa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Nossa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Orbitdownloader\orbitdm.exe
C:\Program Files (x86)\Orbitdownloader\orbitnet.exe
C:\Users\Nossa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Nossa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Zyzoom_Forum_Tools\zyzoom.exe
C:\Zyzoom_Forum_Tools\zHijak.com

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files (x86)\Dealio Toolbar\IE\4.3\dealioToolbarIE.dll
R3 - URLSearchHook: (no name) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - (no file)
R3 - URLSearchHook: Messenger Plus Saudi Toolbar - {9e1b5c68-1ab5-49fe-97a9-d3f777c51663} - C:\Program Files (x86)\Messenger_Plus_Saudi\prxtbMess.dll
R3 - URLSearchHook: Power Karaoke Toolbar - {3303e956-2a3a-48e0-be39-2e0ef11a2f44} - C:\Program Files (x86)\Power_Karaoke\tbPowe.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files (x86)\Orbitdownloader\orbitcth.dll
O2 - BHO: SnagIt Toolbar Loader - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files (x86)\TechSmith\Snagit 10\SnagitBHO.dll
O2 - BHO: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files (x86)\Dealio Toolbar\IE\4.3\dealioToolbarIE.dll
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: PCCBHO.CPCCBHO - {22FC6CE8-7D47-479F-B74A-BFBB04ADB9AF} - C:\Program Files (x86)\Winferno\PC Confidential\PCCBHO.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\prxConduitEngine.dll
O2 - BHO: Power Karaoke Toolbar - {3303e956-2a3a-48e0-be39-2e0ef11a2f44} - C:\Program Files (x86)\Power_Karaoke\tbPowe.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: مساعد تسجيل الدخول إلى معرف Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Messenger Plus Saudi - {9e1b5c68-1ab5-49fe-97a9-d3f777c51663} - C:\Program Files (x86)\Messenger_Plus_Saudi\prxtbMess.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.5.5126.1836\swg.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (file missing)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: Snagit - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files (x86)\TechSmith\Snagit 10\SnagitIEAddin.dll
O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files (x86)\Orbitdownloader\GrabPro.dll
O3 - Toolbar: Messenger Plus Saudi Toolbar - {9e1b5c68-1ab5-49fe-97a9-d3f777c51663} - C:\Program Files (x86)\Messenger_Plus_Saudi\prxtbMess.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\prxConduitEngine.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files (x86)\Dealio Toolbar\IE\4.3\dealioToolbarIE.dll
O3 - Toolbar: Power Karaoke Toolbar - {3303e956-2a3a-48e0-be39-2e0ef11a2f44} - C:\Program Files (x86)\Power_Karaoke\tbPowe.dll
O4 - HKLM\..\Run: [ISBMgr.exe] "C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe"
O4 - HKLM\..\Run: [NortonOnlineBackupReminder] "C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe" UNATTENDED
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SwitchBoard] "C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe"
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
O4 - HKLM\..\Run: [UIExec] "C:\Program Files (x86)\ZTE Connection Manager\UIExec.exe"
O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Nossa\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\PROGRA~2\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [BeyluxeMessenger] "C:\Program Files (x86)\Beyluxe Messenger\Beyluxe Messenger.exe" /hide
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: FlipToast.lnk = C:\Program Files (x86)\FlipToast\FlipToast.exe
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/201
O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/204
O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/203
O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/202
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
O8 - Extra context menu item: جاري إرسال الصفحة إلى &جهاز Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: جاري إرسال الصورة إلى &جهاز Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - C:\Program Files (x86)\Winferno\PC Confidential\PCConfidential.exe
O9 - Extra 'Tools' menuitem: PC Confidential - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - C:\Program Files (x86)\Winferno\PC Confidential\PCConfidential.exe
O9 - Extra button: PC Confidential - {925DAB62-F9AC-4221-806A-057BFB1014AA} - C:\Program Files (x86)\Winferno\PC Confidential\PCConfidential.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~4\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Active File Monitor V7 (AdobeActiveFileMonitor7.0) - Adobe Systems Incorporated - c:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: خدمة تحديث Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Roxio UPnP Renderer 10 - Sonic Solutions - C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe
O23 - Service: Roxio Upnp Server 10 - Sonic Solutions - C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: VAIO Media plus Content Importer (SOHCImp) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
O23 - Service: VAIO Media plus Database Manager (SOHDBSvr) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe
O23 - Service: VAIO Media plus Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: VAIO Media plus Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Media plus Playlist Manager (SOHPlMgr) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: CamMonitor (uCamMonitor) - ArcSoft, Inc. - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
O23 - Service: UI Assistant Service - Unknown owner - C:\Program Files (x86)\ZTE Connection Manager\AssistantServices.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
O23 - Service: VAIO Power Management - Sony Corporation - C:\Program Files\Sony\VAIO Power Management\SPMService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: VAIO Content Folder Watcher (VCFw) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
O23 - Service: VAIO Content Metadata Intelligent Analyzing Manager (VcmIAlzMgr) - Sony Corporation - C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
O23 - Service: VAIO Content Metadata Intelligent Network Service Manager (VcmINSMgr) - Sony Corporation - C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe
O23 - Service: VAIO Content Metadata XML Interface (VcmXmlIfHelper) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VSNService - Sony Corporation - C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe

--
End of file - 19264 bytes
 
توقيع : طُمُوح !
عملت اللي قلتي لي .. وسويت الفحص ..

ولما ضغطت على النتائج فتح لي مجلد فيه 3 مفكرات ..

انسخهم واحطهم هناا ؟!
 
توقيع : طُمُوح !
المفكرة الأولى /


Emsisoft Anti-Malware - Version 5.1
Last update: 4/6/2011 12:26:22 PM

Scan settings:

Scan type: Deep Scan
Objects: Memory, Traces, Cookies, C:\
Scan archives: On
Heuristics: Off
ADS Scan: On

Scan start: 4/6/2011 12:43:24 PM


Scanned

Files: 350246
Traces: 587294
Cookies: 242
Processes: 83

Found

Files: 0
Traces: 0
Cookies: 0
Processes: 0
Registry keys: 0

Scan end: 4/6/2011 3:06:44 PM
Scan time: 2:23:20

المفكرة الثانية /


Emsisoft Anti-Malware - Version 5.1
Last update: 4/5/2011 8:32:59 PM

Scan settings:

Scan type: Deep Scan
Objects: Memory, Traces, Cookies, C:\
Scan archives: On
Heuristics: Off
ADS Scan: On

Scan start: 4/5/2011 8:43:07 PM

c:\program files (x86)\Free Offers from Freeze.com detected: Trace.Directory.Freeze!A2
c:\program files (x86)\Winferno detected: Trace.Directory.Winferno!A2
c:\program files (x86)\Winferno\PC Confidential detected: Trace.Directory.PCConfidential!A2
c:\program files (x86)\Winferno\PC Confidential\Graphics detected: Trace.Directory.PCConfidential!A2
c:\program files (x86)\Free Offers from Freeze.com\control.txt detected: Trace.File.Freeze!A2
c:\program files (x86)\Free Offers from Freeze.com\dolphinico.ico detected: Trace.File.Freeze!A2
c:\program files (x86)\Free Offers from Freeze.com\wfallsaw.ico detected: Trace.File.Freeze!A2
c:\program files (x86)\Free Offers from Freeze.com\whalesico.ico detected: Trace.File.Freeze!A2
c:\program files (x86)\Winferno\PC Confidential\Graphics\HandPoint.ico detected: Trace.File.PCConfidential!A2
Value: HKEY_LOCAL_MACHINE\software\microsoft\Windows\HTMLHelp --> PCConfidential.chm detected: Trace.Registry.PCConfidential!A2
Value: HKEY_LOCAL_MACHINE\software\Winferno\PrivateIE --> EXEPath detected: Trace.Registry.PCConfidential!A2
Value: HKEY_LOCAL_MACHINE\software\Winferno\PrivateIE --> Installed detected: Trace.Registry.PCConfidential!A2
Value: HKEY_LOCAL_MACHINE\software\Winferno\WSE2007 --> PCConfidential_CMH detected: Trace.Registry.PCConfidential!A2
Value: HKEY_LOCAL_MACHINE\software\microsoft\IE Setup\DependentComponents --> PC Confidential detected: Trace.Registry.PCConfidential!A2
Key: HKEY_LOCAL_MACHINE\software\Classes\Applications\PCConfidential.exe\ detected: Trace.Registry.PCConfidential!A2
Key: HKEY_LOCAL_MACHINE\software\microsoft\Internet Explorer\Extensions\{53F6FCCD-9E22-4d71-86EA-6E43136192AB}\ detected: Trace.Registry.PCConfidential!A2
Key: HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Uninstall\PCConfidential_is1\ detected: Trace.Registry.PCConfidential!A2
Key: HKEY_USERS\S-1-5-21-953524717-2492531597-2308585988-1003\software\Winferno\PCConfidential\ detected: Trace.Registry.PCConfidential!A2
Key: HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22FC6CE8-7D47-479F-B74A-BFBB04ADB9AF}\ detected: Trace.Registry.Winferno!A2
Key: HKEY_LOCAL_MACHINE\software\Freeze.com\ detected: Trace.Registry.Freeze!A2
Key: HKEY_LOCAL_MACHINE\software\Classes\PCCBHO.CPCCBHO detected: Trace.Registry.MusicOasis!A2
Key: HKEY_LOCAL_MACHINE\software\Classes\CLSID\{22FC6CE8-7D47-479F-B74A-BFBB04ADB9AF} detected: Trace.Registry.MusicOasis!A2
Key: HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22FC6CE8-7D47-479F-B74A-BFBB04ADB9AF} detected: Trace.Registry.MusicOasis!A2
c:\users\nossa\desktop\Check PC For Errors.lnk detected: Trace.File.Registry Cleaner 4.0!A2
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Freeze.com\Installer --> id detected: Trace.Registry.EZ Game Cheats!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@bs.serving-sys[1].txt detected: Trace.TrackingCookie.bs.serving-sys!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@bs.serving-sys[2].txt detected: Trace.TrackingCookie.bs.serving-sys!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@doubleclick[1].txt detected: Trace.TrackingCookie.doubleclick!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@mediaplex[1].txt detected: Trace.TrackingCookie.mediaplex!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@mediaplex[2].txt detected: Trace.TrackingCookie.mediaplex!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@mediaplex[3].txt detected: Trace.TrackingCookie.mediaplex!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@mediaplex[5].txt detected: Trace.TrackingCookie.mediaplex!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@questionmarket[2].txt detected: Trace.TrackingCookie.questionmarket!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@serving-sys[1].txt detected: Trace.TrackingCookie.serving-sys!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@smartadserver[1].txt detected: Trace.TrackingCookie.smartadserver!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@smartadserver[3].txt detected: Trace.TrackingCookie.smartadserver!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@smartadserver[4].txt detected: Trace.TrackingCookie.smartadserver!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@statcounter[1].txt detected: Trace.TrackingCookie.statcounter!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@weborama[1].txt detected: Trace.TrackingCookie.weborama!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@zedo[2].txt detected: Trace.TrackingCookie.zedo!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@doubleclick[2].txt detected: Trace.TrackingCookie.doubleclick!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@google.com[2].txt detected: Trace.TrackingCookie.google.com!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@google.com[3].txt detected: Trace.TrackingCookie.google.com!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@weborama[1].txt detected: Trace.TrackingCookie.weborama!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@zedo[2].txt detected: Trace.TrackingCookie.zedo!A2
C:\Program Files\WinRAR\WinCon.SFX detected: Trojan-Dropper!IK
C:\Program Files (x86)\Free Offers from Freeze.com\16676.url detected: Adware.Win32.Freeze!A2
C:\Program Files (x86)\Free Offers from Freeze.com\16700.url detected: Adware.Win32.Freeze!A2
C:\Program Files (x86)\Free Offers from Freeze.com\16714.url detected: Adware.Win32.Freeze!A2
C:\Program Files (x86)\Winferno\PC Confidential\DeleteIndex.exe detected: Adware.Win32.PCConfidential!A2
C:\Program Files (x86)\Winferno\PC Confidential\PCConfidential.chm detected: Adware.Win32.PCConfidential!A2
C:\Program Files (x86)\Winferno\PC Confidential\PCConfidential.exe detected: Adware.Win32.PCConfidential!A2
C:\Program Files (x86)\Winferno\PC Confidential\PCCST.exe detected: Adware.Win32.PCConfidential!A2
C:\Program Files (x86)\Winferno\PC Confidential\WinCMR.dll detected: Adware.Win32.PCConfidential!A2
C:\Users\Nossa\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ETA3KV4G\mk68622_jdv1206324596h[1].gif detected: Trojan-Clicker.HTML.IFrame!IK
C:\Users\Nossa\AppData\Local\Temp\zxq1\runme.exe detected: Virus.Packed.AutoIt!IK
C:\Users\Nossa\Desktop\SwishMax\SwishMax_Portable_v2.exe detected: Backdoor.Win32.Hupigon!IK
C:\Users\Nossa\Documents\Adorage for Windows Movie Maker - Effects #1.exe/bin\gb-adorage-dshowsupport.dll detected: Trojan-Dropper.Agent!IK
C:\Users\Nossa\Downloads\Adorage for Windows Movie Maker - Effects #1.exe/bin\gb-adorage-dshowsupport.dll detected: Trojan-Dropper.Agent!IK
C:\Users\Nossa\Downloads\Zyzoom_MBAM_1.5.1_3.exe/runme.exe detected: Virus.Packed.AutoIt!IK
C:\Users\Nossa\Downloads\فلاتر.rar/bin\gb-adorage-dshowsupport.dll detected: Trojan-Dropper.Agent!IK
C:\Users\Nossa\Downloads\فلاتر.rar/AdorageI-GfxDatas\full\texture-image\Misc\Wolken02.JPG detected: Trojan-Dropper.Agent!IK
C:\Users\Nossa\Pictures\خوخا\winrar-x64-40b3a.exe/WinCon.SFX detected: Trojan-Dropper!IK
C:\Users\Public\Pictures\M e z z o\SwishMax_Portable_v2-www.jsoftj.com.zip/SwishMax_Portable_v2.exe detected: Backdoor.Win32.Hupigon!IK
C:\Zyzoom_Forum_Tools\1.com detected: Hoax.Win32.Agent.fp!A2
C:\Zyzoom_Forum_Tools\nircmd.dll detected: Trojan.Win32.Agent2!IK

Scanned

Files: 356028
Traces: 587294
Cookies: 262
Processes: 84

Found

Files: 21
Traces: 25
Cookies: 20
Processes: 0
Registry keys: 0

Scan end: 05/04/11 11:09:45 م
Scan time: 2:26:38

C:\Zyzoom_Forum_Tools\nircmd.dll Deleted Trojan.Win32.Agent2!IK
C:\Zyzoom_Forum_Tools\1.com Deleted Hoax.Win32.Agent.fp!A2
C:\Users\Nossa\Documents\Adorage for Windows Movie Maker - Effects #1.exe/bin\gb-adorage-dshowsupport.dll Deleted Trojan-Dropper.Agent!IK
C:\Users\Nossa\Downloads\Adorage for Windows Movie Maker - Effects #1.exe/bin\gb-adorage-dshowsupport.dll Deleted Trojan-Dropper.Agent!IK
C:\Users\Nossa\Downloads\فلاتر.rar/bin\gb-adorage-dshowsupport.dll Deleted Trojan-Dropper.Agent!IK
C:\Users\Nossa\Desktop\SwishMax\SwishMax_Portable_v2.exe Deleted Backdoor.Win32.Hupigon!IK
C:\Users\Public\Pictures\M e z z o\SwishMax_Portable_v2-www.jsoftj.com.zip/SwishMax_Portable_v2.exe Deleted Backdoor.Win32.Hupigon!IK
C:\Users\Nossa\AppData\Local\Temp\zxq1\runme.exe Deleted Virus.Packed.AutoIt!IK
C:\Users\Nossa\Downloads\Zyzoom_MBAM_1.5.1_3.exe/runme.exe Deleted Virus.Packed.AutoIt!IK
C:\Users\Nossa\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ETA3KV4G\mk68622_jdv1206324596h[1].gif Deleted Trojan-Clicker.HTML.IFrame!IK
C:\Program Files (x86)\Winferno\PC Confidential\DeleteIndex.exe Deleted Adware.Win32.PCConfidential!A2
C:\Program Files (x86)\Winferno\PC Confidential\PCConfidential.chm Deleted Adware.Win32.PCConfidential!A2
C:\Program Files (x86)\Winferno\PC Confidential\PCConfidential.exe Deleted Adware.Win32.PCConfidential!A2
C:\Program Files (x86)\Winferno\PC Confidential\PCCST.exe Deleted Adware.Win32.PCConfidential!A2
C:\Program Files (x86)\Winferno\PC Confidential\WinCMR.dll Deleted Adware.Win32.PCConfidential!A2
C:\Program Files (x86)\Free Offers from Freeze.com\16676.url Deleted Adware.Win32.Freeze!A2
C:\Program Files (x86)\Free Offers from Freeze.com\16700.url Deleted Adware.Win32.Freeze!A2
C:\Program Files (x86)\Free Offers from Freeze.com\16714.url Deleted Adware.Win32.Freeze!A2
C:\Program Files\WinRAR\WinCon.SFX Deleted Trojan-Dropper!IK
C:\Users\Nossa\Pictures\خوخا\winrar-x64-40b3a.exe/WinCon.SFX Deleted Trojan-Dropper!IK
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@google.com[2].txt Deleted Trace.TrackingCookie.google.com!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@google.com[3].txt Deleted Trace.TrackingCookie.google.com!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@zedo[2].txt Deleted Trace.TrackingCookie.zedo!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@zedo[2].txt Deleted Trace.TrackingCookie.zedo!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@weborama[1].txt Deleted Trace.TrackingCookie.weborama!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@weborama[1].txt Deleted Trace.TrackingCookie.weborama!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@statcounter[1].txt Deleted Trace.TrackingCookie.statcounter!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@smartadserver[1].txt Deleted Trace.TrackingCookie.smartadserver!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@smartadserver[3].txt Deleted Trace.TrackingCookie.smartadserver!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@smartadserver[4].txt Deleted Trace.TrackingCookie.smartadserver!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@serving-sys[1].txt Deleted Trace.TrackingCookie.serving-sys!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@questionmarket[2].txt Deleted Trace.TrackingCookie.questionmarket!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@mediaplex[1].txt Deleted Trace.TrackingCookie.mediaplex!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@mediaplex[2].txt Deleted Trace.TrackingCookie.mediaplex!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@mediaplex[3].txt Deleted Trace.TrackingCookie.mediaplex!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@mediaplex[5].txt Deleted Trace.TrackingCookie.mediaplex!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@doubleclick[1].txt Deleted Trace.TrackingCookie.doubleclick!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@doubleclick[2].txt Deleted Trace.TrackingCookie.doubleclick!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@bs.serving-sys[1].txt Deleted Trace.TrackingCookie.bs.serving-sys!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@bs.serving-sys[2].txt Deleted Trace.TrackingCookie.bs.serving-sys!A2
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Freeze.com\Installer --> id Deleted Trace.Registry.EZ Game Cheats!A2
c:\users\nossa\desktop\Check PC For Errors.lnk Deleted Trace.File.Registry Cleaner 4.0!A2
Key: HKEY_LOCAL_MACHINE\software\Classes\PCCBHO.CPCCBHO Deleted Trace.Registry.MusicOasis!A2
Key: HKEY_LOCAL_MACHINE\software\Classes\CLSID\{22FC6CE8-7D47-479F-B74A-BFBB04ADB9AF} Deleted Trace.Registry.MusicOasis!A2
Key: HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22FC6CE8-7D47-479F-B74A-BFBB04ADB9AF} Deleted Trace.Registry.MusicOasis!A2
Key: HKEY_LOCAL_MACHINE\software\Freeze.com\ Deleted Trace.Registry.Freeze!A2
Key: HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22FC6CE8-7D47-479F-B74A-BFBB04ADB9AF}\ Deleted Trace.Registry.Winferno!A2
Value: HKEY_LOCAL_MACHINE\software\microsoft\Windows\HTMLHelp --> PCConfidential.chm Deleted Trace.Registry.PCConfidential!A2
Value: HKEY_LOCAL_MACHINE\software\Winferno\PrivateIE --> EXEPath Deleted Trace.Registry.PCConfidential!A2
Value: HKEY_LOCAL_MACHINE\software\Winferno\PrivateIE --> Installed Deleted Trace.Registry.PCConfidential!A2
Value: HKEY_LOCAL_MACHINE\software\Winferno\WSE2007 --> PCConfidential_CMH Deleted Trace.Registry.PCConfidential!A2
Value: HKEY_LOCAL_MACHINE\software\microsoft\IE Setup\DependentComponents --> PC Confidential Deleted Trace.Registry.PCConfidential!A2
Key: HKEY_LOCAL_MACHINE\software\Classes\Applications\PCConfidential.exe\ Deleted Trace.Registry.PCConfidential!A2
Key: HKEY_LOCAL_MACHINE\software\microsoft\Internet Explorer\Extensions\{53F6FCCD-9E22-4d71-86EA-6E43136192AB}\ Deleted Trace.Registry.PCConfidential!A2
Key: HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Uninstall\PCConfidential_is1\ Deleted Trace.Registry.PCConfidential!A2
Key: HKEY_USERS\S-1-5-21-953524717-2492531597-2308585988-1003\software\Winferno\PCConfidential\ Deleted Trace.Registry.PCConfidential!A2
c:\program files (x86)\Winferno\PC Confidential\Graphics\HandPoint.ico Deleted Trace.File.PCConfidential!A2
c:\program files (x86)\Free Offers from Freeze.com\control.txt Deleted Trace.File.Freeze!A2
c:\program files (x86)\Free Offers from Freeze.com\dolphinico.ico Deleted Trace.File.Freeze!A2
c:\program files (x86)\Free Offers from Freeze.com\wfallsaw.ico Deleted Trace.File.Freeze!A2
c:\program files (x86)\Free Offers from Freeze.com\whalesico.ico Deleted Trace.File.Freeze!A2
c:\program files (x86)\Winferno\PC Confidential Deleted Trace.Directory.PCConfidential!A2
c:\program files (x86)\Winferno Deleted Trace.Directory.Winferno!A2
c:\program files (x86)\Free Offers from Freeze.com Deleted Trace.Directory.Freeze!A2

Deleted

Files: 25
Traces: 27
Cookies: 20


المفكرة الثالثة /


Emsisoft Anti-Malware - نسخة 5.0
آخر تحديث: 4/5/2011 8:32:59 PM

إعدادات الفحص:

أنواع الفحص : N/A
العناصر: الذاكرة, الآثار, ملفات إرتباط, C:\
فحص الملفات المضغوطة: إغلاق
المنهج التجريبى : إغلاق
ADS فحص: تشغيل

بداية الفحص: 4/5/2011 8:34:59 PM

c:\program files (x86)\Free Offers from Freeze.com المكتشفة: Trace.Directory.Freeze!A2
c:\program files (x86)\Winferno المكتشفة: Trace.Directory.Winferno!A2
c:\program files (x86)\Winferno\PC Confidential المكتشفة: Trace.Directory.PCConfidential!A2
c:\program files (x86)\Winferno\PC Confidential\Graphics المكتشفة: Trace.Directory.PCConfidential!A2
c:\program files (x86)\Free Offers from Freeze.com\control.txt المكتشفة: Trace.File.Freeze!A2
c:\program files (x86)\Free Offers from Freeze.com\dolphinico.ico المكتشفة: Trace.File.Freeze!A2
c:\program files (x86)\Free Offers from Freeze.com\wfallsaw.ico المكتشفة: Trace.File.Freeze!A2
c:\program files (x86)\Free Offers from Freeze.com\whalesico.ico المكتشفة: Trace.File.Freeze!A2
c:\program files (x86)\Winferno\PC Confidential\Graphics\HandPoint.ico المكتشفة: Trace.File.PCConfidential!A2
Value: HKEY_LOCAL_MACHINE\software\microsoft\Windows\HTMLHelp --> PCConfidential.chm المكتشفة: Trace.Registry.PCConfidential!A2
Value: HKEY_LOCAL_MACHINE\software\Winferno\PrivateIE --> EXEPath المكتشفة: Trace.Registry.PCConfidential!A2
Value: HKEY_LOCAL_MACHINE\software\Winferno\PrivateIE --> Installed المكتشفة: Trace.Registry.PCConfidential!A2
Value: HKEY_LOCAL_MACHINE\software\Winferno\WSE2007 --> PCConfidential_CMH المكتشفة: Trace.Registry.PCConfidential!A2
Value: HKEY_LOCAL_MACHINE\software\microsoft\IE Setup\DependentComponents --> PC Confidential المكتشفة: Trace.Registry.PCConfidential!A2
Key: HKEY_LOCAL_MACHINE\software\Classes\Applications\PCConfidential.exe\ المكتشفة: Trace.Registry.PCConfidential!A2
Key: HKEY_LOCAL_MACHINE\software\microsoft\Internet Explorer\Extensions\{53F6FCCD-9E22-4d71-86EA-6E43136192AB}\ المكتشفة: Trace.Registry.PCConfidential!A2
Key: HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Uninstall\PCConfidential_is1\ المكتشفة: Trace.Registry.PCConfidential!A2
Key: HKEY_USERS\S-1-5-21-953524717-2492531597-2308585988-1003\software\Winferno\PCConfidential\ المكتشفة: Trace.Registry.PCConfidential!A2
Key: HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22FC6CE8-7D47-479F-B74A-BFBB04ADB9AF}\ المكتشفة: Trace.Registry.Winferno!A2
Key: HKEY_LOCAL_MACHINE\software\Freeze.com\ المكتشفة: Trace.Registry.Freeze!A2
Key: HKEY_LOCAL_MACHINE\software\Classes\PCCBHO.CPCCBHO المكتشفة: Trace.Registry.MusicOasis!A2
Key: HKEY_LOCAL_MACHINE\software\Classes\CLSID\{22FC6CE8-7D47-479F-B74A-BFBB04ADB9AF} المكتشفة: Trace.Registry.MusicOasis!A2
Key: HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22FC6CE8-7D47-479F-B74A-BFBB04ADB9AF} المكتشفة: Trace.Registry.MusicOasis!A2
c:\users\nossa\desktop\Check PC For Errors.lnk المكتشفة: Trace.File.Registry Cleaner 4.0!A2
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Freeze.com\Installer --> id المكتشفة: Trace.Registry.EZ Game Cheats!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@bs.serving-sys[1].txt المكتشفة: Trace.TrackingCookie.bs.serving-sys!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@bs.serving-sys[2].txt المكتشفة: Trace.TrackingCookie.bs.serving-sys!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@doubleclick[1].txt المكتشفة: Trace.TrackingCookie.doubleclick!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@mediaplex[1].txt المكتشفة: Trace.TrackingCookie.mediaplex!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@mediaplex[2].txt المكتشفة: Trace.TrackingCookie.mediaplex!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@mediaplex[3].txt المكتشفة: Trace.TrackingCookie.mediaplex!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@mediaplex[5].txt المكتشفة: Trace.TrackingCookie.mediaplex!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@questionmarket[2].txt المكتشفة: Trace.TrackingCookie.questionmarket!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@serving-sys[1].txt المكتشفة: Trace.TrackingCookie.serving-sys!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@smartadserver[1].txt المكتشفة: Trace.TrackingCookie.smartadserver!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@smartadserver[3].txt المكتشفة: Trace.TrackingCookie.smartadserver!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@smartadserver[4].txt المكتشفة: Trace.TrackingCookie.smartadserver!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@statcounter[1].txt المكتشفة: Trace.TrackingCookie.statcounter!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@weborama[1].txt المكتشفة: Trace.TrackingCookie.weborama!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\nossa@zedo[2].txt المكتشفة: Trace.TrackingCookie.zedo!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@doubleclick[2].txt المكتشفة: Trace.TrackingCookie.doubleclick!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@google.com[2].txt المكتشفة: Trace.TrackingCookie.google.com!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@google.com[3].txt المكتشفة: Trace.TrackingCookie.google.com!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@weborama[1].txt المكتشفة: Trace.TrackingCookie.weborama!A2
C:\Users\Nossa\AppData\Roaming\Microsoft\Windows\Cookies\Low\nossa@zedo[2].txt المكتشفة: Trace.TrackingCookie.zedo!A2

المفحوص

الملفات: 4831
الآثار: 587294
ملفات تعريف الإرتباط: 262
العمليات : 84

المكتشفة

الملفات: 0
الآثار: 25
ملفات تعريف الإرتباط: 20
العمليات : 0
مفاتيح الريجستري: 0

نهاية الفحص: 4/5/2011 8:39:26 PM
وقت الفحص : 0:04:27
 
توقيع : طُمُوح !
مو هذا المطلوب أختي انا طلبت تقرير فحص المالوير هذا

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
 
توقيع : غَيّوضْ
عودة
أعلى