• بادئ الموضوع بادئ الموضوع mostafa3114
  • تاريخ البدء تاريخ البدء
  • المشاهدات 1,473
الحالة
مغلق و غير مفتوح للمزيد من الردود.

mostafa3114

زيزوومى متألق
إنضم
16 أغسطس 2008
المشاركات
301
مستوى التفاعل
66
النقاط
410
غير متصل
السلام عليكم ورحمة الله وبركاته
مشكلتى فى التصفح باكسبلورر 8 وعند غلق الصفحة يتم تعليق الماوس اما باقى المتصفحات شغالة كويس بدون هذه المشكلة
ادناه تقرير هايجاك
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 02:26:08 م, on 02/01/2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\userini.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Everything\Everything.exe
C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\userini.exe
C:\Documents and Settings\mostafa\Application Data\i6g8xs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\VistaSwitcher\vswitch.exe
C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\WINDOWS\TEMP\js8dth3w.exe
C:\WINDOWS\TEMP\dlthr823.exe
C:\WINDOWS\TEMP\fidfh35ac.exe
C:\Program Files\Java\jre7\bin\jqs.exe
c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\cd0ehng2.exe
C:\Zyzoom_Forum_Tools\zyzoom.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Zyzoom_Forum_Tools\zHijak.com
C:\DOCUME~1\mostafa\LOCALS~1\Temp\f1ku.exe
C:\DOCUME~1\mostafa\LOCALS~1\Temp\f1ku.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Magdy Mohamed Zahyan
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
O1 - Hosts: 122.224.6.164 zeus.sunke.info
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
O4 - HKLM\..\Run: [PowerTweaK Menu] C:\WINDOWS\system32\mmm.exe
O4 - HKLM\..\Run: [UnlockerAssistant] C:\Program Files\Unlocker\UnlockerAssistant.exe -H
O4 - HKLM\..\Run: [Everything] "C:\Program Files\Everything\Everything.exe" -startup
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [userini] C:\WINDOWS\system32\userini.exe
O4 - HKLM\..\Run: [i6g8xs] C:\Documents and Settings\mostafa\Application Data\i6g8xs.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [VistaSwitcher] "C:\Program Files\VistaSwitcher\vswitch.exe" /startup
O4 - HKCU\..\Run: [SkinClock] C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [Chrome updater] C:\WINDOWS\TEMP\js8dth3w.exe
O4 - HKCU\..\Run: [Network Driver] C:\WINDOWS\TEMP\dlthr823.exe
O4 - HKCU\..\Run: [Firefox updater] C:\WINDOWS\TEMP\fidfh35ac.exe
O4 - HKLM\..\Policies\Explorer\Run: [jzv9] C:\DOCUME~1\mostafa\LOCALS~1\Temp\f1ku.exe
O4 - HKLM\..\Policies\Explorer\Run: [userini] C:\WINDOWS\system32\userini.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [VistaSwitcher] "C:\Program Files\VistaSwitcher\vswitch.exe" /startup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [SkinClock] C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Chrome updater] C:\WINDOWS\TEMP\js8dth3w.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Network Driver] C:\WINDOWS\TEMP\dlthr823.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Firefox updater] C:\WINDOWS\TEMP\fidfh35ac.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Policies\Explorer\Run: [userini] C:\WINDOWS\system32\userini.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O4 - HKUS\.DEFAULT\..\Policies\Explorer\Run: [userini] C:\WINDOWS\system32\userini.exe (User 'Default user')
O4 - Global Startup: Clean Windows MZM 2011 .lnk = C:\Program Files\Clean Windows MZM 2011 By Magdy Zahyan\Clean Windows MZM 2011 By Magdy Zahyan.bat
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
O20 - AppInit_DLLs: C:\WINDOWS\system32\mshostup.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: McAfee Application Installer Cleanup (0320401325458546) (0320401325458546mcinstcleanup) - Unknown owner - C:\DOCUME~1\mostafa\LOCALS~1\Temp\032040~1.EXE (file missing)
O23 - Service: Chrome updater - Unknown owner - C:\DOCUME~1\mostafa\LOCALS~1\Temp\k4isjgh3s.bat (file missing)
O23 - Service: Firefox updater - Unknown owner - C:\DOCUME~1\mostafa\LOCALS~1\Temp\fyjf7whcs.bat (file missing)
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe
O23 - Service: MouseDriver - Unknown owner - C:\Documents.exe (file missing)
O23 - Service: Network Manager - Unknown owner - C:\DOCUME~1\mostafa\LOCALS~1\Temp\b9ahgksys.bat (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Windows Accounts Driver (WindowsRemote) - Unknown owner - C:\WINDOWS\system32\cd0ehng2.exe

--
End of file - 8237 bytes
البرامج المثبتة

====== قائمة البرامج المثبتة ======

7-Zip 9.20
Adobe Flash Player 10 Plugin
AIMP2 v2.61 By Magdy Zahyan
Atomic Alarm Clock By MMZahyan
Attribute Changer 6.20
AVG PC Tuneup 2011 By Magdy Zahyan
CCleaner
Clean Windows MZM 2011 By Magdy Zahyan
Close All Windows By Magdy Zahyan
CometBird 5.0 (x86 en-US)
DAMN NFO Viewer
Defraggler 2.06.328
EASEUS Partition Master 9.0.0 Home Edition
Eraser 5.8
Everything
eXPander
FastStone MaxView 2.4 By Magdy Mohamed Zahyan
FileTargets 1.4.1
FolderSizes 5 By Magdy Mohamed Zahyan
foobar2000 v1.1.7
Foxit Reader 5.0
HashCheck Shell Extension (x86-32)
Hotfix for Windows XP (KB2633952)
IDM 6.7.8.1 + 8 Themes By Magdy Zahyan
Java(TM) 7
Kels' CPL Bonus Pack!
K-Lite Codec Pack 7.6.0 (Full)
McAfee SiteAdvisor
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Mozilla Firefox 6.0.2 (x86 ar)
Nero Burning ROM v8.3.2.1 Micro Eng
Notepad++
NVIDIA Drivers
Open Command Prompt Shell Extension (x86-32)
Platform
PowerTweaK Menu (mmm)
RapidTyping 4.1 By Magdy Zahyan
Real Alternative 2.0.2
RefreshEM
RegShot
RegTeaks
Resource Hacker
Security Update for Microsoft Windows (KB2564958)
Security Update for Windows Internet Explorer 8 (KB2618444)
Security Update for Windows XP (KB2544893-v2)
Security Update for Windows XP (KB2570947)
Security Update for Windows XP (KB2592799)
Security Update for Windows XP (KB2618451)
Security Update for Windows XP (KB2619339)
Security Update for Windows XP (KB2620712)
Security Update for Windows XP (KB2624667)
Security Update for Windows XP (KB2633171)
Security Update for Windows XP (KB2639417)
SendTo Xtras
Service Tweaker
TeraCopy 2.2 beta 3
True Transparency 1.4
UltraISO Premium V9.36
Uninstall.Tool.2.9.6 By MMZahyan
Unlocker 1.9.0
Update for Windows XP (KB2641690)
VIA Platform Device Manager
VistaSwitcher
VLC media player 1.0.5
WebFldrs XP
WinRAR
XnView Shell Extension

ولكم كثير تقديرى
 

وعليكم السلام ورحمة الله وبركاته

اخذف هذه القيم في الهايجاك

O1 - Hosts: 122.224.6.164 zeus.sunke.info

O4 - HKLM\..\Run: [userini] C:\WINDOWS\system32\userini.exe

O4 - HKLM\..\Policies\Explorer\Run: [jzv9] C:\DOCUME~1\mostafa\LOCALS~1\Temp\f1ku.exe

O4 - HKLM\..\Policies\Explorer\Run: [userini] C:\WINDOWS\system32\userini.exe

O4 - HKUS\S-1-5-18\..\Policies\Explorer\Run: [userini] C:\WINDOWS\system32\userini.exe (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Policies\Explorer\Run: [userini] C:\WINDOWS\system32\userini.exe (User 'Default user')








لحذف القيم المطلوب منك حذفها اتبع التالي

ضع اشارة الصح على كل القيم المطلوب منك حذفها حسب الشرح التالي

bf28ac475e05cc3563b98b204f5a4535.png


911376dd57542a52a620006373c8483c.png
 
توقيع : M.$py.M
اخى الكريم تم حذف القيم المذكورة وللاسف مازالت المشكلة قائمة
ومن جهة اخرى عند عمل تقرير هايجاك مرة اخرى اجد هذه القيمة موجودة مرة ثانية
O1 - Hosts: 122.224.6.164 zeus.sunke.info
وأسف لتعبك
 
معلش اخوي

اعمل على التالي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


ef13e017c7f665988b0203b7f6263df3.png


96cdb19a12f25918281cd580e18ea6d8.png


2bf73c43713bd700fce4d3e42e53e06f.png


942c6b91ff169506f993add2690f82ed.png

a400c0bd18f19d5be03699a3b20e7a6a.png



انسخ ما بداخل التقرير والصقه بمشاركتك القادمة
 
توقيع : M.$py.M
بارك الله فيك
ها هو التقرير المطلوب
Malwarebytes' Anti-Malware 1.25
Database version: 1062
Windows 5.1.2600 Service Pack 3

05:55:50 م 02/01/2012
mbam-log-01-02-2012 (17-55-50).txt

Scan type: Full Scan (C:\|D:\|E:\|F:\|G:\|)
Objects scanned: 84721
Time elapsed: 9 minute(s), 53 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 1
Registry Data Items Infected: 1
Folders Infected: 0
Files Infected: 2

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\windows explorer (Trojan.Agent) -> Quarantined and deleted successfully.

Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders (Trojan.Agent) -> Data: c:\docume~1\mostafa\applic~1\okthegnr.dll -> Quarantined and deleted successfully.

Folders Infected:
(No malicious items detected)

Files Infected:
C:\Documents and Settings\mostafa\Application Data\kaloloms.dll (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\mostafa\Application Data\okthegnr.dll (Trojan.Agent) -> Quarantined and deleted successfully.
 
هل تم حل المشكلة؟
 
توقيع : M.$py.M
للاسف مازالت المشكلة قائمة واكرر اسفى لتعبك معى
 
اخي اعطيني تقرير هايجاك جديد
 
توقيع : M.$py.M
آسف على التاخير لانقطاع النت اليوم

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:53:24 م, on 03/01/2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\userini.exe
C:\Program Files\Everything\Everything.exe
C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Documents and Settings\mostafa\Application Data\i6g8xs.exe
C:\WINDOWS\system32\userini.exe
C:\WINDOWS\system32\userini.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\VistaSwitcher\vswitch.exe
C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\WINDOWS\TEMP\js8dth3w.exe
C:\WINDOWS\TEMP\dlthr823.exe
C:\WINDOWS\TEMP\fidfh35ac.exe
C:\WINDOWS\system32\userini.exe
C:\Program Files\Java\jre7\bin\jqs.exe
c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\cd0ehng2.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\DOCUME~1\mostafa\LOCALS~1\Temp\f1ku.exe
C:\DOCUME~1\mostafa\LOCALS~1\Temp\f1ku.exe
C:\DOCUME~1\mostafa\LOCALS~1\Temp\j7ncjnlt5.exe
C:\WINDOWS\explorer.exe
C:\Zyzoom_Tools\zyzoom.exe
C:\Zyzoom_Tools\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O1 - Hosts: 122.224.6.164 zeus.sunke.info
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
O4 - HKLM\..\Run: [PowerTweaK Menu] C:\WINDOWS\system32\mmm.exe
O4 - HKLM\..\Run: [UnlockerAssistant] C:\Program Files\Unlocker\UnlockerAssistant.exe -H
O4 - HKLM\..\Run: [Everything] "C:\Program Files\Everything\Everything.exe" -startup
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [i6g8xs] C:\Documents and Settings\mostafa\Application Data\i6g8xs.exe
O4 - HKLM\..\Run: [userini] C:\WINDOWS\system32\userini.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [VistaSwitcher] "C:\Program Files\VistaSwitcher\vswitch.exe" /startup
O4 - HKCU\..\Run: [SkinClock] C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [Chrome updater] C:\WINDOWS\TEMP\js8dth3w.exe
O4 - HKCU\..\Run: [Network Driver] C:\WINDOWS\TEMP\dlthr823.exe
O4 - HKCU\..\Run: [Firefox updater] C:\WINDOWS\TEMP\fidfh35ac.exe
O4 - HKCU\..\Run: [engel] C:\Documents and Settings\mostafa\Application Data\updates\updates.exe
O4 - HKCU\..\Run: [userini] C:\WINDOWS\system32\userini.exe
O4 - HKLM\..\Policies\Explorer\Run: [jzv9] C:\WINDOWS\TEMP\f1ku.exe
O4 - HKLM\..\Policies\Explorer\Run: [userini] C:\WINDOWS\system32\userini.exe
O4 - HKCU\..\Policies\Explorer\Run: [userini] C:\WINDOWS\system32\userini.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [VistaSwitcher] "C:\Program Files\VistaSwitcher\vswitch.exe" /startup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [SkinClock] C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Network Driver] C:\WINDOWS\TEMP\dlthr823.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Firefox updater] C:\WINDOWS\TEMP\fidfh35ac.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O4 - Global Startup: Clean Windows MZM 2011 .lnk = C:\Program Files\Clean Windows MZM 2011 By Magdy Zahyan\Clean Windows MZM 2011 By Magdy Zahyan.bat
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O13 - Gopher Prefix:
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
O20 - AppInit_DLLs: C:\WINDOWS\system32\mshostup.dll
O23 - Service: McAfee Application Installer Cleanup (0320401325458546) (0320401325458546mcinstcleanup) - Unknown owner - C:\DOCUME~1\mostafa\LOCALS~1\Temp\032040~1.EXE (file missing)
O23 - Service: Chrome updater - Unknown owner - C:\DOCUME~1\mostafa\LOCALS~1\Temp\k4isjgh3s.bat (file missing)
O23 - Service: Firefox updater - Unknown owner - C:\DOCUME~1\mostafa\LOCALS~1\Temp\fyjf7whcs.bat (file missing)
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe
O23 - Service: MouseDriver - Unknown owner - C:\Documents.exe (file missing)
O23 - Service: Network Manager - Unknown owner - C:\DOCUME~1\mostafa\LOCALS~1\Temp\b9ahgksys.bat (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Windows Accounts Driver (WindowsRemote) - Unknown owner - C:\WINDOWS\system32\cd0ehng2.exe

--
End of file - 7830 bytes
 
اضافة لعلها تفيد فى البحث عن الحل

عند فتح صفحة فى الاكسبلورر واعمل لها
minimize
ثم فتح صفحة جديدة فى الاكسبلورر يمكننى غلقها دون تعليق الماوس
 
توقيع : techno
والله ان اى كلمات تعجز عن تقديم الشكر والامتنان لحسن تعاونكم واهتمامك
كعهدى بكم دائما
وارجو غلق الموضوع وذلك لظهور عدة مشاكل اخرى فى نسخة الويندوز لدى وتم تنزيل نسخة اخرى ولكم تحياتى وتقديرى
 
بارك الله فيكم

يُغلق ..
 
توقيع : د. أفاست
الحالة
مغلق و غير مفتوح للمزيد من الردود.
عودة
أعلى