الحالة
مغلق و غير مفتوح للمزيد من الردود.

صقر مطير

زيزوومى مبدع
داعــــم للمنتـــــدى
إنضم
17 أكتوبر 2010
المشاركات
460
مستوى التفاعل
208
النقاط
620
الإقامة
كـــــــــوكــــــــــــ الأرض ـــــــــــــــب
غير متصل
السلام عليكم ورحمة الله وبركاته

مشكلتي اليوم بالتحديد طلعت لي شاشة الموت ( الزرقاء اكثر من مرة )

صورة التحليل
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


ملف تقرير شاشة الزرقاء في الموجود في وندوز في فولدر Minidump
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



جزاكم الرحمن خيراُ
 

توقيع : صقر مطير
حمل الاداة من هذا الموضوع

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


واعمل تقرير هايجاك + قائمة البرامج المثبتة + سجلات النظام والاخطاء
 
وبعد اذن اخوي نور

كما هو واضح بالصوره السبب مشفر الكتابه KeyScramble :: QFX software

احذفه وان شاء الله ماتشوف الا العافيه

ولاتنسى تحدث تعاريف الجهاز لاخر الاصدارات :d:
 
توقيع : LINEZERO
حياك الرحمن أخوي

هذا تقرير هايجاك

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 06:19:22 ص, on 5/20/2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Internet Download Manager\IDMan.exe
C:\Program Files (x86)\KeyScrambler\KeyScrambler.exe
C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
C:\Program Files (x86)\Zain e-GO\Zain e-GO\Mobile Connect.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10o_ActiveX.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: myBabylon English Toolbar - {b2e293ee-fd7e-4c71-a714-5f4750d8d7b7} - C:\Program Files (x86)\myBabylon_English\tbmyBa.dll
R3 - URLSearchHook: MyAshampoo Toolbar - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files (x86)\MyAshampoo\prxtbMyAs.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
O2 - BHO: SnagIt Toolbar Loader - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files (x86)\TechSmith\Snagit 10\SnagitBHO.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\prxConduitEngine.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\IPS\IPSBHO.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Babylon IE plugin - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll
O2 - BHO: MyAshampoo - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files (x86)\MyAshampoo\prxtbMyAs.dll
O2 - BHO: myBabylon English Toolbar - {b2e293ee-fd7e-4c71-a714-5f4750d8d7b7} - C:\Program Files (x86)\myBabylon_English\tbmyBa.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\prxConduitEngine.dll
O3 - Toolbar: myBabylon English Toolbar - {b2e293ee-fd7e-4c71-a714-5f4750d8d7b7} - C:\Program Files (x86)\myBabylon_English\tbmyBa.dll
O3 - Toolbar: Snagit - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files (x86)\TechSmith\Snagit 10\SnagitIEAddin.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll
O3 - Toolbar: MyAshampoo Toolbar - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files (x86)\MyAshampoo\prxtbMyAs.dll
O4 - HKLM\..\Run: [************' Anti-Malware] "C:\Program Files (x86)\************' Anti-Malware\mbamgui.exe" /starttray
O4 - HKLM\..\Run: [KeyScrambler] C:\Program Files (x86)\KeyScrambler\keyscrambler.exe /a
O4 - HKCU\..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
O8 - Extra context menu item: Internet Download Manager تحميل بواسطة - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Translate this web page with Babylon - res://C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm
O8 - Extra context menu item: Translate with Babylon - res://C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Action.htm
O8 - Extra context menu item: ت&صدير إلى Microsoft Excel - res://C:\PROGRA~2\Microsoft Office\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files (x86)\Internet Download Manager\IEGetVL.htm
O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files (x86)\Paltalk Messenger\Paltalk.exe
O9 - Extra button: (no name) - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files (x86)\KeyScrambler\KeyScramblerIE.dll
O9 - Extra 'Tools' menuitem: &KeyScrambler Options - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files (x86)\KeyScrambler\KeyScramblerIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\Microsoft Office\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll
O9 - Extra 'Tools' menuitem: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {68459DB3-59C9-449D-815B-65F729385C16} (VoiceSecure Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O17 - HKLM\System\CCS\Services\Tcpip\..\{8D636070-EC12-4589-B036-5E817C4541D2}: NameServer = 156.154.70.22,156.154.71.22
O17 - HKLM\System\CCS\Services\Tcpip\..\{90537AD6-B25A-4ECD-BDD9-296836CFD37D}: NameServer = 156.154.70.22,156.154.71.22
O17 - HKLM\System\CCS\Services\Tcpip\..\{A91E6E23-06CE-435A-B722-34D36D00F1AA}: NameServer = 10.41.128.2 10.41.128.1
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\guard32.dll
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Defragmentation-Service (DfSdkS) - mst software GmbH, Germany - C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 8\DfsdkS64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: خدمة تحديث Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: خدمة Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMService - ************ Corporation - C:\Program Files (x86)\************' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SolidConverterPDFReadSpool (SCPDFReadSpool) - Solid Documents, LLC - C:\Program Files (x86)\SolidDocuments\Solid Converter PDF\SCPDFV6\SolidConverterPDFServicex64.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Ashampoo LiveTuner Service (WO_LiveService) - Unknown owner - C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 8\LiveTunerService.exe
--
End of file - 12969 bytes
 
توقيع : صقر مطير
وهذا تقرير البرامج المنبثقة


====== معلومات نظام التشغيل ======
X64 WIN_7 7601 Service Pack 1

====== قائمة البرامج المثبتة ======
Update for Microsoft Office 2007 (KB2508958)
"Nero SoundTrax Help
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader 9.4.3
Advertising Center
Ashampoo WinOptimizer 8 v.8.0.1
AVG PC Tuneup 2011
Babylon
Conduit Engine
COWON Media Center - jetAudio Plus VX
CyberLink YouCam
CyberLink YouCam
Digital Line Detect
DolbyFiles
FixCleaner
FormatFactory 2.60
Google Update Helper
HiJackThis
ImagXpress
Internet Download Manager
Junk Mail filter update
KeyScrambler
K-Lite Codec Pack 7.0.0 (Full)
************' Anti-Malware
Medal of Honor
Menu Templates - Starter Kit
Messenger Plus! 5
Microsoft Choice Guard
Microsoft Games for Windows - LIVE Redistributable
Microsoft Games for Windows Marketplace
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Access MUI (Arabic) 2007
Microsoft Office Enterprise 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (Arabic) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (Arabic) 2007
Microsoft Office InfoPath MUI (Arabic) 2007
Microsoft Office OneNote MUI (Arabic) 2007
Microsoft Office Outlook MUI (Arabic) 2007
Microsoft Office PowerPoint MUI (Arabic) 2007
Microsoft Office Proof (Arabic) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proofing (Arabic) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Publisher MUI (Arabic) 2007
Microsoft Office Shared MUI (Arabic) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Word MUI (Arabic) 2007
Microsoft Silverlight
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable - KB2467175
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Movie Templates - Starter Kit
Mozilla Firefox 4.0.1 (x86 ar)
MSVCRT
MSXML 4.0 SP2 Parser and SDK
MyAshampoo Toolbar
myBabylon_English Toolbar
Nero 9
Nero BurningROM
Nero BurnRights
Nero BurnRights
Nero ControlCenter
Nero ControlCenter
Nero CoverDesigner
Nero CoverDesigner Help
Nero Disc Copy Gadget
Nero Disc Copy Gadget Help
Nero DiscSpeed
Nero DiscSpeed
Nero DriveSpeed
Nero DriveSpeed
Nero Express
Nero InfoTool
Nero InfoTool
Nero Installer
Nero Live
Nero Live Help
Nero PhotoSnap
Nero PhotoSnap Help
Nero Recode
Nero Recode Help
Nero Rescue Agent
Nero RescueAgent Help
Nero ShowTime
Nero ShowTime
Nero StartSmart
Nero StartSmart Help
Nero Vision
Nero Vision
Nero WaveEditor
Nero WaveEditor Help
NeroBurningROM
NeroExpress
neroxml
NirSoft BlueScreenView
Norton Internet Security
NVIDIA PhysX
OpenAL
PaltalkScene
Pro Evolution Soccer 2011, âهًٌèے 1.0
RealPlayer
Realtek High Definition Audio Driver
RealUpgrade 1.0
Sakhr Dictionary
Security Update for 2007 Microsoft Office System (KB2288621)
Security Update for 2007 Microsoft Office System (KB2288931)
Security Update for 2007 Microsoft Office System (KB2345043)
Security Update for 2007 Microsoft Office System (KB2466156)
Security Update for 2007 Microsoft Office System (KB2509488)
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB976321)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft Office Access 2007 (KB979440)
Security Update for Microsoft Office Access 2007 (KB979440)
Security Update for Microsoft Office Excel 2007 (KB2464583)
Security Update for Microsoft Office Groove 2007 (KB2494047)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office PowerPoint 2007 (KB982158)
Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623)
Security Update for Microsoft Office Publisher 2007 (KB2284697)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Word 2007 (KB2344993)
Snagit 10
Solid Converter PDF
SoundTrax
UE3Redist
Update for 2007 Microsoft Office System (KB2284654)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office OneNote 2007 (KB980729)
Update for Microsoft Office Outlook 2007 (KB2509470)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Outlook 2007 Junk Email Filter (KB2536413)
USB Disk Security
Windows Live Communications Platform
Windows Live Essentials
Windows Live Essentials
Windows Live Messenger
WinRAR archiver
WinZip 12.0
Xilisoft DVD Creator 6
Yahoo! Messenger
Zain e-GO
أداة التحميل Windows Live Upload Tool
بريد Windows Live
تحديث لـ Microsoft Office Excel 2007 Help (KB963678)
تحديث لـ Microsoft Office Powerpoint 2007 Help (KB963669)
تحديث لـ Microsoft Office Word 2007 Help (KB963665)
 
توقيع : صقر مطير
وهذا تقرير اسجلات النظام والأخطاء


====== سجل أخطاء النظام ======
Computer Name: dell-PC
Event Code: 11
Message: Custom dynamic link libraries are being loaded for every application. The system administrator should review the list of libraries to ensure they are related to trusted applications.
Record Number: 64541
Source Name: Microsoft-Windows-Wininit
Time Written: 20110519215355.267666-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM
Computer Name: dell-PC
Event Code: 43029
Message: Display is not active
Record Number: 64502
Source Name: atikmdag
Time Written: 20110519215345.985650-000
Event Type: Error
User:
Computer Name: dell-PC
Event Code: 52236
Message: CPLIB :: General - Invalid Parameter
Record Number: 64501
Source Name: atikmdag
Time Written: 20110519215345.985650-000
Event Type: Error
User:
Computer Name: dell-PC
Event Code: 1
Message: Realtek PCIe FE Family Controller is disconnected from network.
Record Number: 64489
Source Name: RTL8167
Time Written: 20110519215340.463240-000
Event Type: Warning
User:
Computer Name: dell-PC
Event Code: 6008
Message: The previous system shutdown at 12:51:46 ص on ‏20/‏05/‏2011 was unexpected.
Record Number: 64477
Source Name: EventLog
Time Written: 20110519215346.000000-000
Event Type: Error
User:

===== سجل أخطاء البرامج =====
Computer Name: dell-PC
Event Code: 1001
Message: Detection of product '{45A66726-69BC-466B-A7A4-12FCBA4883D7}', feature 'Complete' failed during request for component '{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}'
Record Number: 18471
Source Name: MsiInstaller
Time Written: 20110519232240.000000-000
Event Type: Warning
User: dell-PC\dell
Computer Name: dell-PC
Event Code: 1004
Message: Detection of product '{45A66726-69BC-466B-A7A4-12FCBA4883D7}', feature 'Complete', component '{00000000-7E98-44CE-B049-C477CC0A2B00}' failed. The resource 'HKEY_CURRENT_USER\Software\Trend Micro\HiJackThis\' does not exist.
Record Number: 18470
Source Name: MsiInstaller
Time Written: 20110519232240.000000-000
Event Type: Warning
User: dell-PC\dell
Computer Name: dell-PC
Event Code: 10
Message: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Record Number: 18454
Source Name: Microsoft-Windows-WMI
Time Written: 20110519222830.000000-000
Event Type: Error
User:
Computer Name: dell-PC
Event Code: 10
Message: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Record Number: 18428
Source Name: Microsoft-Windows-WMI
Time Written: 20110519222000.000000-000
Event Type: Error
User:
Computer Name: dell-PC
Event Code: 10
Message: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Record Number: 18400
Source Name: Microsoft-Windows-WMI
Time Written: 20110519215516.000000-000
Event Type: Error
User:

===== السجل الأمني =====
Computer Name: dell-PC
Event Code: 4902
Message: The Per-user audit policy table was created.
Number of Elements: 0
Policy ID: 0x323cf
Record Number: 17605
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20110519215345.330448-000
Event Type: Audit Success
User:
Computer Name: dell-PC
Event Code: 4624
Message: An account was successfully logged on.
Subject:
Security ID: S-1-0-0
Account Name: -
Account Domain: -
Logon ID: 0x0
Logon Type: 0
New Logon:
Security ID: S-1-5-18
Account Name: SYSTEM
Account Domain: NT AUTHORITY
Logon ID: 0x3e7
Logon GUID: {00000000-0000-0000-0000-000000000000}
Process Information:
Process ID: 0x4
Process Name:
Network Information:
Workstation Name: -
Source Network Address: -
Source Port: -
Detailed Authentication Information:
Logon Process: -
Authentication Package: -
Transited Services: -
Package Name (NTLM only): -
Key Length: 0
This event is generated when a logon session is created. It is generated on the computer that was accessed.
The subject fields indicate the account on the local system which requested the logon. This is most commonly a service such as the Server service, or a local process such as Winlogon.exe or Services.exe.
The logon type field indicates the kind of logon that occurred. The most common types are 2 (interactive) and 3 (network).
The New Logon fields indicate the account for whom the new logon was created, i.e. the account that was logged on.
The network fields indicate where a remote logon request originated. Workstation name is not always available and may be left blank in some cases.
The authentication information fields provide detailed information about this specific logon request.
- Logon GUID is a unique identifier that can be used to correlate this event with a KDC event.
- Transited services indicate which intermediate services have participated in this logon request.
- Package name indicates which sub-protocol was used among the NTLM protocols.
- Key length indicates the length of the generated session key. This will be 0 if no session key was requested.
Record Number: 17604
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20110519215345.268048-000
Event Type: Audit Success
User:
Computer Name: dell-PC
Event Code: 4608
Message: Windows is starting up.
This event is logged when LSASS.EXE starts and the auditing subsystem is initialized.
Record Number: 17603
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20110519215345.252448-000
Event Type: Audit Success
User:
Computer Name: dell-PC
Event Code: 1101
Message: Audit events have been dropped by the transport. 0
Record Number: 17602
Source Name: Microsoft-Windows-Eventlog
Time Written: 20110519215347.311652-000
Event Type: Audit Success
User:
Computer Name: dell-PC
Event Code: 1102
Message: The audit log was cleared.
Subject:
Security ID: S-1-5-21-1293116361-2237028826-271262087-1000
Account Name: dell
Domain Name: dell-PC
Logon ID: 0x56453
Record Number: 17601
Source Name: Microsoft-Windows-Eventlog
Time Written: 20110519213636.120511-000
Event Type: Audit Success
User:

===== تقرير انهيار البرامج =====
==================================================
Process File : svchost.exe
Event Name : Windows Update installation problem
Event Time : 5/20/2011 06:06:50 ص
User Name : All Users
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\svchost.exe
Report File Size : 2,266
Report File Path : C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\NonCritical_7.5.7601.17514_78efc842cf92e79bab1c4f2fb5bd805f263a65_044c817e\Report.wer
==================================================
==================================================
Process File : svchost.exe
Event Name : Windows Update installation problem
Event Time : 5/20/2011 06:06:50 ص
User Name :
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\svchost.exe
Report File Size : 2,266
Report File Path : C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_7.5.7601.17514_78efc842cf92e79bab1c4f2fb5bd805f263a65_044c817e\Report.wer
==================================================


===== تقرير الشاشة الزرقاء =====
 
توقيع : صقر مطير
وبعد اذن اخوي نور



كما هو واضح بالصوره السبب مشفر الكتابه KeyScramble :: QFX software

احذفه وان شاء الله ماتشوف الا العافيه


ولاتنسى تحدث تعاريف الجهاز لاخر الاصدارات :d:



حياك الرحمن اخوي Expertise
انا بعد من شفت تقرير الشاشة الزرقاء قلت هذه من مشفر الكتابة بس مو داخل راسي المشكلة من عنده !
قلت نتاكد من الأخوة حفظهم الرحمن
نتظر الاخو ماكـــــــــس ليطلعنا على ما هو مفيد :b:

تحيا لك يا اخوي
في رعاية الرحمن
 
توقيع : صقر مطير
ازالة مشفر الكتابه فيك فيك :d: .. لازالة المشكله ؛؛ ومن المحتمل انك تستطيع تحديث تعاريف الجهاز
بتعاريف حديثه تناسب نوع الويندوز وتنتهي المشكله دون ازالة البرنامج

طبعاً ويفضل بعد انت تترك الخبراء ياخذوا نظره على التقارير :smile:

كل الغلاااا
 
توقيع : LINEZERO
وبعد اذن اخوي نور


كما هو واضح بالصوره السبب مشفر الكتابه KeyScramble :: QFX software

احذفه وان شاء الله ماتشوف الا العافيه


ولاتنسى تحدث تعاريف الجهاز لاخر الاصدارات :d:
مافي كلام بعد الشيخ :kmj-by0000 (72):

ولا تنسى احذف اي شي اسمه تولبار من اضافة وازالة البرامج
 
أخوي صاحب المشكلة

كلام الاخ Expertise صحيح 100%

بالنسبة للهايجاك

احذف هذه القيم:

R3 - URLSearchHook: myBabylon English Toolbar - {b2e293ee-fd7e-4c71-a714-5f4750d8d7b7} - C:\Program Files (x86)\myBabylon_English\tbmyBa.dll

R3 - URLSearchHook: MyAshampoo Toolbar - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files (x86)\MyAshampoo\prxtbMyAs.dll

O16 - DPF: {68459DB3-59C9-449D-815B-65F729385C16} (VoiceSecure Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


O17 - HKLM\System\CCS\Services\Tcpip\..\{8D636070-EC12-4589-B036-5E817C4541D2}: NameServer =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
,
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


O17 - HKLM\System\CCS\Services\Tcpip\..\{90537AD6-B25A-4ECD-BDD9-296836CFD37D}: NameServer =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
,
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


O17 - HKLM\System\CCS\Services\Tcpip\..\{A91E6E23-06CE-435A-B722-34D36D00F1AA}: NameServer = 10.41.128.2 10.41.128.1

وانصحك بحذف أي برنامج toolbar من جهازك! :d:
 
توقيع : yones7x
ازالة مشفر الكتابه فيك فيك :d: .. لازالة المشكله ؛؛ ومن المحتمل انك تستطيع تحديث تعاريف الجهاز
بتعاريف حديثه تناسب نوع الويندوز وتنتهي المشكله دون ازالة البرنامج

طبعاً ويفضل بعد انت تترك الخبراء ياخذوا نظره على التقارير :smile:

كل الغلاااا


حياك الرحمن يا اخوي Expertise
كنت ابي اتحايل على عدم حذف البرنامج لا السالفة ما دخلت الراسي من شفت التقرير قلت نعرضها على ناس اكثر خبرة مني :b: ولكن النتيجة لزوم نحذف :d:
انا احدث دايم التعاريف والنظام
تحيا لك يا اخوي
وجزاك الرحمن خير على روح التعاون
تحيا
 
توقيع : صقر مطير
مافي كلام بعد الشيخ :kmj-by0000 (72):

ولا تنسى احذف اي شي اسمه تولبار من اضافة وازالة البرامج


حياك الرحمن يا اخوي ماكـــس
تم تحديث النسخة مشفر الكتابة
وتم حذف جميع التولبارات
جزاك الرحمن خيراً يا اخوي
تحيا
 
توقيع : صقر مطير
هل باقي اي مشاكل اخرى ؟
 
أخوي صاحب المشكلة

كلام الاخ Expertise صحيح 100%

بالنسبة للهايجاك

احذف هذه القيم:

R3 - URLSearchHook: myBabylon English Toolbar - {b2e293ee-fd7e-4c71-a714-5f4750d8d7b7} - C:\Program Files (x86)\myBabylon_English\tbmyBa.dll

R3 - URLSearchHook: MyAshampoo Toolbar - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files (x86)\MyAshampoo\prxtbMyAs.dll

O16 - DPF: {68459DB3-59C9-449D-815B-65F729385C16} (VoiceSecure Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


O17 - HKLM\System\CCS\Services\Tcpip\..\{8D636070-EC12-4589-B036-5E817C4541D2}: NameServer =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
,
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


O17 - HKLM\System\CCS\Services\Tcpip\..\{90537AD6-B25A-4ECD-BDD9-296836CFD37D}: NameServer =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
,
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


O17 - HKLM\System\CCS\Services\Tcpip\..\{A91E6E23-06CE-435A-B722-34D36D00F1AA}: NameServer = 10.41.128.2 10.41.128.1

وانصحك بحذف أي برنامج toolbar من جهازك! :d:


حياك الرحمن يا اخوي يونس :b:
يا اخوي لا نسطيع حذف بعض القيم لأن انا دايم ادخل شات صوتي :d:
لأن بعض القيم تابعة للشات الصوتي :b:
ولكن تم التخلص من التوبلر من الجهاز مع العلم انه أمن :b: ببس ممكن تصير ثغرة
وتم التخلص من بعض القيم الغير مرغوبة :ok:

تحيا لك يا اخوي يونس
وجزاك الرحمن خيراً
في رعاية الرحمن
 
توقيع : صقر مطير
هل باقي اي مشاكل اخرى ؟

مشكور يا اخوي ماكس :b:
خلاص للحين كل شي تمام
جزاكم الرحمن خيرا
ولكن اذا في مشكلة ثانية وما قدرنا على حلها ممكن نستعين فيكم :d:
بارك الله فيك

تم حل المشكلة
في رعاية الرحمن
 
توقيع : صقر مطير
الله يوفقك اخوي
 
الحالة
مغلق و غير مفتوح للمزيد من الردود.
عودة
أعلى