• بادئ الموضوع بادئ الموضوع الزغل
  • تاريخ البدء تاريخ البدء
  • المشاهدات 745

الزغل

زيزوومي جديد
إنضم
27 سبتمبر 2008
المشاركات
68
مستوى التفاعل
19
النقاط
90
غير متصل
المسنجر لايقبل ان يضيف اي شخص
الا ادا ضفتوا انا ثم الشخص التاني يضيفني

الدعوه لاتظهر نهائيا لاعندي ولاعندو
هذا تقرير



******** 11-05-18.04 - Administrator 05/19/2011 23:39:46.1.1 - x86
Microsoft Windows XP Professional 5.1.2600.3.1256.962.1033.18.1791.1463 [GMT 3:00]
Running from: c:\documents and settings\Administrator\My Documents\Downloads\Programs\********.exe
AV: Kaspersky Internet Security *Enabled/Updated* {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FW: Kaspersky Internet Security *Enabled* {2C4D4BC6-0793-4956-A9F9-E252435469C0}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\Administrator\Application Data\.#
.
.
((((((((((((((((((((((((( Files Created from 2011-04-19 to 2011-05-19 )))))))))))))))))))))))))))))))
.
.
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-04-14 16:44 . 2011-04-14 16:44 3186 ----a-w- c:\windows\system32\presetup.cmd
2011-04-14 16:44 . 2011-04-14 16:44 28672 ----a-w- c:\windows\system32\setupold.exe
2011-04-14 16:43 . 2011-04-14 16:43 13616 ----a-w- c:\windows\system32\drivers\mvxxmm.sys
2011-04-14 16:43 . 2011-04-14 16:43 5632 ----a-w- c:\windows\system32\drivers\mv64xxmm.sys
2011-04-14 16:43 . 2011-04-14 16:43 13616 ----a-w- c:\windows\system32\drivers\mv61xxmm.sys
2011-04-14 16:34 . 2011-04-14 16:34 1614848 ----a-w- c:\windows\system32\sfcfiles.dll
2011-04-14 16:33 . 2010-12-09 23:39 2069376 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-04-14 16:33 . 2009-11-27 17:23 17920 ----a-w- c:\windows\system32\msyuv.dll
2011-04-14 16:33 . 2009-11-27 16:28 48128 ----a-w- c:\windows\system32\iyuv_32.dll
2011-04-14 16:33 . 2008-04-22 17:03 483328 ----a-w- c:\windows\system32\wzcsvc.dll
2011-04-14 16:33 . 2008-04-14 02:42 52736 ----a-w- c:\windows\system32\wzcsapi.dll
2011-04-14 16:33 . 2008-04-14 02:42 35328 ----a-w- c:\windows\system32\pid.dll
2011-04-14 16:33 . 2008-04-14 02:42 15360 ----a-w- c:\windows\system32\pjlmon.dll
2011-04-14 16:33 . 2008-04-14 02:41 20992 ----a-w- c:\windows\system32\hid.dll
2011-04-14 16:33 . 2008-04-14 02:41 52224 ----a-w- c:\windows\system32\dmutil.dll
2011-04-14 16:33 . 2008-04-14 02:41 47104 ----a-w- c:\windows\system32\cnbjmon.dll
2011-04-14 16:33 . 2008-04-13 21:30 30080 ----a-w- c:\windows\system32\drivers\modem.sys
2011-04-14 16:33 . 2008-04-13 21:26 12288 ----a-w- c:\windows\system32\drivers\tunmp.sys
2011-04-14 16:33 . 2008-04-13 21:26 14592 ----a-w- c:\windows\system32\drivers\ndisuio.sys
2011-04-14 16:33 . 2008-04-13 21:21 61824 ----a-w- c:\windows\system32\drivers\nic1394.sys
2011-04-14 16:33 . 2008-04-13 21:21 60800 ----a-w- c:\windows\system32\drivers\arp1394.sys
2011-04-14 16:33 . 2008-04-13 21:16 25344 ----a-w- c:\windows\system32\drivers\sonydcam.sys
2011-04-14 16:33 . 2008-04-13 21:15 15872 ----a-w- c:\windows\system32\drivers\usbintel.sys
2011-04-14 16:33 . 2008-04-13 21:15 25728 ----a-w- c:\windows\system32\drivers\usbcamd2.sys
2011-04-14 16:33 . 2008-04-13 21:15 25600 ----a-w- c:\windows\system32\drivers\usbcamd.sys
2011-04-14 16:33 . 2008-04-13 21:10 80128 ----a-w- c:\windows\system32\drivers\parport.sys
2011-04-14 16:33 . 2008-04-13 21:09 4352 ----a-w- c:\windows\system32\drivers\swenum.sys
2011-04-14 16:33 . 2008-04-13 21:09 23040 ----a-w- c:\windows\system32\drivers\mouclass.sys
2011-04-14 16:33 . 2008-04-13 21:06 15488 ----a-w- c:\windows\system32\drivers\mssmbios.sys
2011-04-14 16:33 . 2008-04-13 21:06 63744 ----a-w- c:\windows\system32\drivers\mf.sys
2011-04-14 16:33 . 2008-04-13 21:01 37760 ----a-w- c:\windows\system32\drivers\amdk7.sys
2011-04-14 16:33 . 2008-04-13 21:01 37376 ----a-w- c:\windows\system32\drivers\amdk6.sys
2011-04-14 16:33 . 2008-04-13 21:01 36736 ----a-w- c:\windows\system32\drivers\crusoe.sys
2011-04-14 16:33 . 2008-04-13 21:01 42752 ----a-w- c:\windows\system32\drivers\p3.sys
2011-04-14 16:33 . 2008-04-13 21:01 35840 ----a-w- c:\windows\system32\drivers\processr.sys
2011-04-14 16:33 . 2009-11-27 16:28 8704 ----a-w- c:\windows\system32\tsbyuv.dll
2011-04-14 16:33 . 2001-08-17 19:37 77891 ----a-w- c:\windows\system32\usrmlnka.exe
2011-04-14 16:33 . 2001-08-17 19:37 69700 ----a-w- c:\windows\system32\usrshuta.exe
2011-04-14 16:33 . 2001-08-17 19:37 61508 ----a-w- c:\windows\system32\usrprbda.exe
2011-04-14 16:33 . 2001-08-17 19:36 55296 ----a-w- c:\windows\system32\dvdplay.exe
2011-04-14 16:33 . 2001-08-17 19:36 3200 ----a-w- c:\windows\system32\wowfax.dll
2011-04-14 16:33 . 2001-08-17 19:36 13824 ----a-w- c:\windows\system32\wowfaxui.dll
2011-04-14 16:33 . 2001-08-17 19:36 86073 ----a-w- c:\windows\system32\usrfaxa.dll
2011-04-14 16:33 . 2001-08-17 19:36 77890 ----a-w- c:\windows\system32\usrdpa.dll
2011-04-14 16:33 . 2001-08-17 19:36 77883 ----a-w- c:\windows\system32\usrrtosa.dll
2011-04-14 16:33 . 2001-08-17 19:36 69699 ----a-w- c:\windows\system32\usrcoina.dll
2011-04-14 16:33 . 2001-08-17 19:36 61500 ----a-w- c:\windows\system32\usrcntra.dll
2011-04-14 16:33 . 2001-08-17 19:36 53305 ----a-w- c:\windows\system32\usrlbva.dll
2011-04-14 16:33 . 2001-08-17 19:36 49211 ----a-w- c:\windows\system32\usrvpa.dll
2011-04-14 16:33 . 2001-08-17 19:36 49211 ----a-w- c:\windows\system32\usrsdpia.dll
2011-04-14 16:33 . 2001-08-17 19:36 49209 ----a-w- c:\windows\system32\usrv80a.dll
2011-04-14 16:33 . 2001-08-17 19:36 45116 ----a-w- c:\windows\system32\usrvoica.dll
2011-04-14 16:33 . 2001-08-17 19:36 41019 ----a-w- c:\windows\system32\usrsvpia.dll
2011-04-14 16:33 . 2001-08-17 19:36 323641 ----a-w- c:\windows\system32\usrdtea.dll
2011-04-14 16:33 . 2001-08-17 19:36 102457 ----a-w- c:\windows\system32\usrv42a.dll
2011-04-14 16:33 . 2001-08-17 19:36 8192 ----a-w- c:\windows\system32\streamci.dll
2011-04-14 16:33 . 2001-08-17 19:36 72192 ----a-w- c:\windows\system32\sprio800.dll
2011-04-14 16:33 . 2001-08-17 19:36 70656 ----a-w- c:\windows\system32\sprio600.dll
2011-04-14 16:33 . 2001-08-17 19:36 69632 ----a-w- c:\windows\system32\spnike.dll
2011-04-14 16:33 . 2001-08-17 19:36 157696 ----a-w- c:\windows\system32\paqsp.dll
2011-04-14 16:33 . 2001-08-17 19:36 147968 ----a-w- c:\windows\system32\mdwmdmsp.dll
2011-04-14 16:33 . 2001-08-17 11:06 21376 ----a-w- c:\windows\system32\drivers\tsbvcap.sys
2011-04-14 16:33 . 2001-08-17 11:02 262528 ----a-w- c:\windows\system32\drivers\cinemst2.sys
2011-04-14 16:33 . 2001-08-17 11:02 58112 ----a-w- c:\windows\system32\drivers\vdmindvd.sys
2011-04-14 16:33 . 2001-08-17 11:01 51712 ----a-w- c:\windows\system32\drivers\tosdvd.sys
2011-04-14 16:33 . 2001-08-17 10:57 12160 ----a-w- c:\windows\system32\drivers\fsvga.sys
2011-04-14 16:33 . 2001-08-17 10:52 18688 ----a-w- c:\windows\system32\drivers\cdaudio.sys
2011-04-14 16:33 . 2001-08-17 10:48 12160 ----a-w- c:\windows\system32\drivers\mouhid.sys
2011-04-14 16:33 . 2001-08-17 10:24 12032 ----a-w- c:\windows\system32\drivers\riodrv.sys
2011-04-14 16:33 . 2001-08-17 10:24 12032 ----a-w- c:\windows\system32\drivers\rio8drv.sys
2011-04-14 16:33 . 2001-08-17 10:24 12032 ----a-w- c:\windows\system32\drivers\nikedrv.sys
2011-04-14 16:33 . 2001-08-17 10:24 11776 ----a-w- c:\windows\system32\drivers\cpqdap01.sys
2011-04-14 16:30 . 2011-04-14 16:30 990208 ----a-w- c:\windows\system32\syssetup.dll
2011-04-14 16:30 . 2011-04-14 16:30 5120 ----a-w- c:\windows\system32\xpsp4res.dll
2011-04-14 16:30 . 2011-04-14 16:30 44536 ----a-w- c:\windows\system32\wups2.dll
2011-04-14 16:30 . 2011-04-14 16:30 223232 ----a-w- c:\windows\system32\wksprt.exe
2011-04-14 16:30 . 2011-04-14 16:30 12800 ----a-w- c:\windows\system32\wksprtps.dll
2011-04-14 16:30 . 2008-04-14 12:00 21496 ----a-w- c:\windows\system32\wucltui.dll.mui
2011-04-14 16:30 . 2008-04-14 12:00 17400 ----a-w- c:\windows\system32\wuaueng.dll.mui
2011-04-14 16:30 . 2008-04-14 12:00 14840 ----a-w- c:\windows\system32\wuaucpl.cpl.mui
2011-04-14 16:30 . 2008-04-14 12:00 14840 ----a-w- c:\windows\system32\wuapi.dll.mui
2011-04-14 16:30 . 2011-04-14 16:30 29184 ----a-w- c:\windows\system32\drivers\usbccid.sys
2011-04-14 16:30 . 2011-04-14 16:30 57344 ----a-w- c:\windows\system32\uexfat.dll
2011-04-14 16:30 . 2011-04-14 16:30 46080 ----a-w- c:\windows\system32\tswbprxy.exe
2011-04-14 16:30 . 2008-04-14 12:00 611328 ----a-w- c:\windows\system32\uiautomationcore.dll
2011-04-14 16:30 . 2008-04-14 12:00 562064 ----a-w- c:\windows\system32\SecProc_isv.dll
2011-04-14 16:30 . 2008-04-14 12:00 192912 ----a-w- c:\windows\system32\SecProc_ssp_isv.dll
2011-04-14 16:30 . 2008-04-14 12:00 192904 ----a-w- c:\windows\system32\SecProc_ssp.dll
2011-04-14 16:29 . 2011-04-14 16:29 62848 ----a-w- c:\windows\system32\drivers\rspndr.sys
2011-04-14 16:29 . 2011-04-14 16:29 558984 ----a-w- c:\windows\system32\SecProc.dll
2011-04-14 16:29 . 2011-04-14 16:29 10752 ----a-w- c:\windows\system32\rspndr.exe
2011-04-14 16:29 . 2008-04-14 12:00 361872 ----a-w- c:\windows\system32\RmActivate_ssp_isv.exe
2011-04-14 16:29 . 2011-04-14 16:29 36864 ----a-w- c:\windows\system32\qfecheck.exe
2011-04-14 16:29 . 2008-04-14 12:00 575880 ----a-w- c:\windows\system32\RmActivate_isv.exe
2011-04-14 16:29 . 2008-04-14 12:00 567176 ----a-w- c:\windows\system32\RmActivate.exe
2011-04-14 16:29 . 2008-04-14 12:00 362888 ----a-w- c:\windows\system32\RmActivate_ssp.exe
2011-04-14 16:29 . 2011-04-14 16:29 84480 ----a-w- c:\windows\system32\pintool.exe
2011-04-14 16:29 . 2011-04-14 16:29 215920 ----a-w- c:\windows\system32\muweb.dll
2011-04-14 16:29 . 2011-04-14 16:29 88904 ----a-w- c:\windows\system32\msxml4r.dll
2011-04-14 16:29 . 2011-04-14 16:29 274288 ----a-w- c:\windows\system32\mucltui.dll
2011-05-18 06:40 . 2011-05-16 16:43 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
------- Sigcheck -------
.
[-] 2011-04-14 . E17798E1E6FF1CA9C67B8576570E05EE . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\IDM Shell Extension]
@="{CDC95B92-E27C-4745-A8C5-64A52A78855D}"
[HKEY_CLASSES_ROOT\CLSID\{CDC95B92-E27C-4745-A8C5-64A52A78855D}]
2011-03-02 16:23 68216 ----a-w- c:\program files\Internet Download Manager\IDMShellExt.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IDMan"="c:\program files\Internet Download Manager\IDMan.exe" [2011-03-03 3278232]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2010-04-16 3872080]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"USBAntivirus.exe"="c:\program files\USBAntivirus\USBAntivirus.exe" [2011-02-01 3930112]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe" [2010-11-02 365336]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-08-01 13529088]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-09-04 935288]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-01-07 253672]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
SecurityProviders schannel.dll, credssp.dll, digest.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
2008-04-14 12:00 15360 ----a-w- c:\windows\system32\ctfmon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck]
2008-10-07 15:59 33538048 ----a-r- c:\program files\VIA\VIAudioi\HDADeck\HDeck.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Messenger (Yahoo!)]
2010-11-04 18:04 6174008 ----a-w- c:\program files\Yahoo!\Messenger\YahooMessenger.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2008-08-01 06:48 13529088 ----a-w- c:\windows\system32\nvcpl.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2008-08-01 06:48 86016 ----a-w- c:\windows\system32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
2008-08-01 06:48 1630208 ----a-w- c:\windows\system32\nwiz.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
.
R0 mv61xxmm;mv61xxmm;c:\windows\system32\drivers\mv61xxmm.sys [14/04/2011 07:43 م 13616]
R0 mv64xxmm;mv64xxmm;c:\windows\system32\drivers\mv64xxmm.sys [14/04/2011 07:43 م 5632]
R0 mvxxmm;mvxxmm;c:\windows\system32\drivers\mvxxmm.sys [14/04/2011 07:43 م 13616]
R1 IDMTDI;IDMTDI;c:\windows\system32\drivers\idmtdi.sys [03/03/2011 06:05 م 97112]
R1 kl2;kl2;c:\windows\system32\drivers\kl2.sys [09/06/2010 04:43 م 11352]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [07/05/2010 11:06 ص 32856]
R3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\drivers\klmouflt.sys [02/11/2009 07:27 م 19472]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [16/05/2011 06:27 م 876288]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
IE: &تصدير إلى Microsoft Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
IE: Add to Anti-Banner - c:\program files\Kaspersky Lab\Kaspersky Internet Security 2011\ie_banner_deny.htm
IE: تحميل الكل بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEGetAll.htm
IE: تحميل بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEExt.htm
IE: تحميل محتوى FLV بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEGetVL.htm
DPF: Microsoft XML Parser for Java - file:///C:/WINDOWS/Java/classes/xmldso.cab
FF - ProfilePath - c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\v4m2g312.default\
FF - prefs.js: browser.startup.homepage -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

FF - prefs.js: network.proxy.type - 4
.
- - - - ORPHANS REMOVED - - - -
.
AddRemove-HijackThis - c:\documents and settings\Administrator\My Documents\Downloads\Programs\HijackThis.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

Rootkit scan 2011-05-19 23:47
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-1229272821-113007714-1606980848-500\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (Administrator)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,bc,6c,59,5c,98,85,e2,47,9d,55,be,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,bc,6c,59,5c,98,85,e2,47,9d,55,be,\
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10n_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10n_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'explorer.exe'(3644)
c:\windows\system32\WININET.dll
c:\program files\Internet Download Manager\IDMShellExt.dll
c:\windows\system32\msi.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\program files\Internet Download Manager\idmmkb.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Java\jre6\bin\jqs.exe
c:\windows\system32\nvsvc32.exe
c:\windows\system32\wscntfy.exe
c:\program files\Internet Download Manager\IEMonitor.exe
.
**************************************************************************
.
Completion time: 2011-05-19 23:49:32 - machine was rebooted
********-quarantined-files.txt 2011-05-19 20:49
.
Pre-Run: 37,092,843,520 bytes free
Post-Run: 37,074,280,448 bytes free
.
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - B5E816F79A0EA19DA3B89012169266B6
 

حمل الاداة من هذا الموضوع

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


واعمل تقرير هايجاك + قائمة البرامج المثبتة
 
الهايجاك
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:23:47 ص, on 20/05/2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 SP3 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\USBAntivirus\USBAntivirus.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Zyzoom_Forum_Tools\zyzoom.exe
C:\Zyzoom_Forum_Tools\zHijak.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ievkbd.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [USBAntivirus.exe] C:\Program Files\USBAntivirus\USBAntivirus.exe -Hide
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ie_banner_deny.htm
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: &Virtual Keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} (MUCatalogWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Kaspersky Anti-Virus Service (AVP) - Kaspersky Lab ZAO - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 5841 bytes




====== معلومات نظام التشغيل ======

X86 WIN_XP 2600 Service Pack 3


====== قائمة البرامج المثبتة ======

µTorrent
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader 9.2 - Arabic
Internet Download Manager
Java Auto Updater
Java(TM) 6 Update 25
Kaspersky Internet Security 2011
Kaspersky Internet Security 2011
K-Lite Codec Pack 7.1.0 (Full)
Microsoft Application Error Reporting
Microsoft Choice Guard
Microsoft Office Professional Edition 2003
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable
Mozilla Firefox 4.0.1 (x86 en-US)
MSVCRT
Nero 9 Express Version By DR.Ahmed Saker
NVIDIA Drivers
Platform
Real Alternative 2.0.2
Segoe UI
Ultra Video Converter 5.1.0113
USB Drive Antivirus 3.0
VIA Platform Device Manager
WebFldrs XP
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Essentials
Windows Live Messenger
Windows Live Sign-in Assistant
Windows Live Upload Tool
WinRAR archiver
Yahoo! Messenger
 
من الاذن اخوي maax


اخوي هذي مشكله .. في

الهوتميل


وليس بلجهاز انت اعطه ايميلك خله يظيفك ... وشوف بروحله اضاافه ..
 
توقيع : YHYA -KSA
عودة
أعلى