البحار2007

زيزوومي جديد
إنضم
23 أبريل 2008
المشاركات
64
مستوى التفاعل
0
النقاط
80
الإقامة
مقبرة الغزاة
غير متصل
السلام اعاني من بطئ في الجهاز وهي تقرير الاداة
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 4:42:08 PM, on 7/29/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\rnamfler\naofsvc.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\Explorer.EXE
C:\program files\rnamfler\naomf.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe
C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
c:\program files\rnamfler\radprcmp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\XPPRESP3\Desktop\Zyzoom_HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:9666
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R3 - URLSearchHook: xp - {2367DE4F-065D-4638-8C41-4682D7969BAD} - C:\Program Files\Common Files\System\xp\tbu275\xp.dll
O2 - BHO: IDMIEHlprObj Class - {0055C089-8582-441B-A0BF-17B458C2A3A8} - F:\E?C??\IDM_5.11_Build_5_Fixed By Araby\IDMIECC.dll (file missing)
O2 - BHO: XBTP02799 - {536E751B-87CD-4e97-854C-915CD03818A1} - C:\PROGRA~1\COMMON~1\System\xp\tbu275\xp.dll
O2 - BHO: Mario Forever Toolbar Helper - {8036D4D7-AAD3-4793-AB49-329E437155A8} - C:\Program Files\Mario Forever Toolbar\v2.0.0.4\Mario_Forever_Toolbar.dll
O2 - BHO: (no name) - {A5366673-E8CA-11D3-9CD9-0090271D075B} - (no file)
O3 - Toolbar: xp - {2367DE4F-065D-4638-8C41-4682D7969BAD} - C:\Program Files\Common Files\System\xp\tbu275\xp.dll
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [wrna3ls] C:\program files\rnamfler\naomf.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\system32\msconfig.exe /auto
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [IDMan] F:\E?C??\IDM_5.11_Build_5_Fixed By Araby\IDMan.exe /onboot
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Yahoo Messengger] C:\WINDOWS\system32\scvshosts.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Yahoo Messengger] C:\WINDOWS\system32\scvshosts.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')
O8 - Extra context menu item: Download All by FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download All Links with IDM - F:\E?C??\IDM_5.11_Build_5_Fixed By Araby\IEGetAll.htm
O8 - Extra context menu item: Download FLV video with IDM - F:\E?C??\IDM_5.11_Build_5_Fixed By Araby\IEGetVL.htm
O8 - Extra context menu item: Download using FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Download with IDM - F:\E?C??\IDM_5.11_Build_5_Fixed By Araby\IEExt.htm
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: RdnaoFlSvc - Unknown owner - C:\Program Files\rnamfler\naofsvc.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

--
End of file - 4966 bytes
 

ابحث عم هذه القيم واحذفهاا


O2 - BHO: IDMIEHlprObj Class - {0055C089-8582-441B-A0BF-17B458C2A3A8} - F:\E?C??\IDM_5.11_Build_5_Fixed By Araby\IDMIECC.dll (file missing)


O2 - BHO: XBTP02799 - {536E751B-87CD-4e97-854C-915CD03818A1} - C:\PROGRA~1\COMMON~1\System\xp\tbu275\xp.dll


O2 - BHO: (no name) - {A5366673-E8CA-11D3-9CD9-0090271D075B} - (no file)


O4 - HKUS\S-1-5-18\..\Run: [Yahoo Messengger] C:\WINDOWS\system32\scvshosts.exe (User 'SYSTEM')


O4 - HKUS\.DEFAULT\..\Run: [Yahoo Messengger] C:\WINDOWS\system32\scvshosts.exe (User 'Default user')



طريقة الحذف

mg%20(3).png


mg%20(4).png


بعدها اذهب الى اضافة وازالة البرامج واحذف التولبار الموجود عندك (toolbar ) اذا كان لديك تولبار



نزل هالاداة لتنظيف الجهاز



يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي




wh_15149054.png




وتقرير هايجآك جديد​
 
توقيع : السّاجد لله
مشكور وهي التقرير
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:20:21 PM, on 7/29/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\rnamfler\naofsvc.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\Explorer.EXE
C:\program files\rnamfler\naomf.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
c:\program files\rnamfler\radprcmp.exe
C:\WINDOWS\System32\svchost.exe
C:\Documents and Settings\XPPRESP3\Desktop\Zyzoom_HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:9666
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R3 - URLSearchHook: xp - {2367DE4F-065D-4638-8C41-4682D7969BAD} - C:\Program Files\Common Files\System\xp\tbu275\xp.dll (file missing)
O2 - BHO: Mario Forever Toolbar Helper - {8036D4D7-AAD3-4793-AB49-329E437155A8} - C:\Program Files\Mario Forever Toolbar\v2.0.0.4\Mario_Forever_Toolbar.dll
O3 - Toolbar: xp - {2367DE4F-065D-4638-8C41-4682D7969BAD} - C:\Program Files\Common Files\System\xp\tbu275\xp.dll (file missing)
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [wrna3ls] C:\program files\rnamfler\naomf.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\system32\msconfig.exe /auto
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [IDMan] F:\E?C??\IDM_5.11_Build_5_Fixed By Araby\IDMan.exe /onboot
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')
O8 - Extra context menu item: Download All by FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download All Links with IDM - F:\E?C??\IDM_5.11_Build_5_Fixed By Araby\IEGetAll.htm
O8 - Extra context menu item: Download FLV video with IDM - F:\E?C??\IDM_5.11_Build_5_Fixed By Araby\IEGetVL.htm
O8 - Extra context menu item: Download using FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Download with IDM - F:\E?C??\IDM_5.11_Build_5_Fixed By Araby\IEExt.htm
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: RdnaoFlSvc - Unknown owner - C:\Program Files\rnamfler\naofsvc.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

--
End of file - 4215 bytes
 
احذف القيم التاليه
O3 - Toolbar: xp - {2367DE4F-065D-4638-8C41-4682D7969BAD} - C:\Program Files\Common Files\System\xp\tbu275\xp.dll (file missing)

R3 - URLSearchHook: xp - {2367DE4F-065D-4638-8C41-4682D7969BAD} - C:\Program Files\Common Files\System\xp\tbu275\xp.dll (file missing)

O2 - BHO: Mario Forever Toolbar Helper - {8036D4D7-AAD3-4793-AB49-329E437155A8} - C:\Program Files\Mario Forever Toolbar\v2.0.0.4\Mario_Forever_Toolbar.dll

اذهب الى اضافة وازالة البرامج شيل التول بارات كلها
غير برنامج الحمايه
فعل جدار الحمايه
شيل السوبر سباى وير ونزل avg انتى سباى وير>>اخف واقوى

ثم نزل هذه الاداة واتبع الشرح التالي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي




التوافق : ويندوز اكسبي فقط



شرح الاستخدام ,,,,,,
عند تشغيل ملف الاداة تظهر لك هذه الشاشه ,, انتظر ( وتابع مع الصور )

000.png


001.png


وعند ظهور هذه الشاشه ,, اضغط على Close ليتم اعادة تشغيل جهازك (( لتكملة عملية التنظيف ))

002.png


 
بٌَِسٌِِّـِِّـِِّمً آللـِِّـِِّهٍَ آلـِِّـِِّرٌٍحٍّـِِّـِِّمًـِِّـِِّنْ آلـِِّـِِّرٌٍحٍّيَـِِّـِِّـِِّمً

آلسٌِِّـِِّـِِّـِِّلآمً عًٍـِِّـِِّـِِّليَكَمً وٍرٌٍحٍّـِِّـِِّمًة آلـِِّـِِّـِِّـِِّلهٍَ وٍبٌَِرٌٍكَـِِّـِِّآتُِِّْهٍَ

لآ آلـِِّـِِّهٍَ آلآ آللـِِّـِِّـِِّـِِّـِِّـِِّـِِّهٍَ

مًحٍّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّمًدًٍآُ رٌٍسٌِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّوٍل آللـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّهٍَ

آللـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّهٍَ

يَـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّعًٍـِِّـِِّـِِّطُْيَـِِّـِِّـِِّـِِّـِِّكَم آلعًٍـِِّـِِّـِِّـِِّـِِّـِِّـِِّـِِّآفْيَـِِّـِِّـِِّـِِّـِِّهٍَ
 
عودة
أعلى