• بادئ الموضوع بادئ الموضوع alhayem2010
  • تاريخ البدء تاريخ البدء
  • المشاهدات 2,573
الحالة
مغلق و غير مفتوح للمزيد من الردود.

alhayem2010

زيزوومي نشيط
إنضم
14 يونيو 2010
المشاركات
144
مستوى التفاعل
2
النقاط
170
غير متصل
قد تكون ضحية للتزييف البرامج لم تنجح في هذه النسخه من ويندز في اجتياز التحقق من صحة نسخة ويندز الاصليه



هذي تجيني على سطح المكتب وصار سطح المكتب بخلفيه سوداء

والجهاز ثقيل مره

تكفون ابي الحل بسرعه جهازي مليان ملفات مهمه

الهايجك

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 03:03:37 ص, on 04/01/2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16945)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\ChgService.exe
C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Toshiba\TOSHIBA Applet\TAPPSRV.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\WINDOWS\system32\WgaTray.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\System32\alg.exe
C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
C:\Program Files\Athan\Athan.exe
C:\Program Files\ClocX\ClocX.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\SupportAppXL\AutoDect.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Documents and Settings\USER\Application Data\Microsoft\csrss.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\TaskSwitchXP\TaskSwitchXP.exe
C:\Program Files\VisualTaskTips\VisualTaskTips.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\USER\Application Data\regsrv64.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Documents and Settings\USER\Application Data\1C.exe
C:\Program Files\Java\jre1.6.0_02\bin\jucheck.exe
C:\Documents and Settings\USER\Application Data\1B.exe
C:\Documents and Settings\USER\Application Data\1B.exe
C:\WINDOWS\system32\mspaint.exe
C:\Zyzoom_Forum_Tools\zyzoom.exe
C:\Zyzoom_Forum_Tools\zHijak.com
C:\WINDOWS\system32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,C:\Documents and Settings\USER\Application Data\Microsoft\csrss.exe,C:\Program Files\dxUsFsJL\dxmiqroe.exe
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Messenger Plus Saudi - {9e1b5c68-1ab5-49fe-97a9-d3f777c51663} - C:\Program Files\Messenger_Plus_Saudi\prxtbMess.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (file missing)
O3 - Toolbar: Messenger Plus Saudi Toolbar - {9e1b5c68-1ab5-49fe-97a9-d3f777c51663} - C:\Program Files\Messenger_Plus_Saudi\prxtbMess.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll
O4 - HKLM\..\Run: [ITSecMng] %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [THotkey] C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
O4 - HKLM\..\Run: [Athan] C:\Program Files\Athan\Athan.exe
O4 - HKLM\..\Run: [ClocX] C:\Program Files\ClocX\ClocX.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [TWebCamera] "C:\Program Files\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe" autorun
O4 - HKLM\..\Run: [autodetect] C:\WINDOWS\system32\SupportAppXL\AutoDect.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [Spy-Net] C:\WINDOWS\system32\Spy-Net\server.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [csrss] C:\Documents and Settings\USER\Application Data\Microsoft\csrss.exe
O4 - HKLM\..\Run: [Windows Task Services] C:\Documents and Settings\USER\Application Data\1B.exe
O4 - HKLM\..\RunOnce: [Windows Task Services] C:\Documents and Settings\USER\Application Data\1B.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [TaskSwitchXP] C:\Program Files\TaskSwitchXP\TaskSwitchXP.exe
O4 - HKCU\..\Run: [VisualTaskTips] C:\Program Files\VisualTaskTips\VisualTaskTips.exe
O4 - HKCU\..\Run: [AutorunCleaner] C:\Program Files\Autorun Cleaner\Autorun Cleaner 1.0.exe
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Spy-Net] C:\WINDOWS\system32\Spy-Net\server.exe
O4 - HKCU\..\Run: [csrss] C:\Documents and Settings\USER\Application Data\Microsoft\csrss.exe
O4 - HKCU\..\Run: [Microsoft DLL Registration] C:\Documents and Settings\USER\Application Data\regsrv64.exe
O4 - HKCU\..\Run: [Windows Task Services] C:\Documents and Settings\USER\Application Data\1B.exe
O4 - HKCU\..\RunOnce: [Windows Task Services] C:\Documents and Settings\USER\Application Data\1B.exe
O4 - HKLM\..\Policies\Explorer\Run: [Spy-Net] C:\WINDOWS\system32\Spy-Net\server.exe
O4 - HKLM\..\Policies\Explorer\Run: [csrss] C:\Documents and Settings\USER\Application Data\Microsoft\csrss.exe
O4 - HKLM\..\Policies\Explorer\Run: [Windows Task Services] C:\Documents and Settings\USER\Application Data\1B.exe
O4 - HKCU\..\Policies\Explorer\Run: [Spy-Net] C:\WINDOWS\system32\Spy-Net\server.exe
O4 - HKCU\..\Policies\Explorer\Run: [csrss] C:\Documents and Settings\USER\Application Data\Microsoft\csrss.exe
O4 - HKCU\..\Policies\Explorer\Run: [Windows Task Services] C:\Documents and Settings\USER\Application Data\1B.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: _uninst_16234007.lnk = C:\Documents and Settings\USER\Local Settings\Temp\_uninst_16234007.bat
O4 - Startup: _uninst_48122826.lnk = C:\Documents and Settings\USER\Local Settings\Temp\_uninst_48122826.bat
O4 - Startup: dxmiqroe.exe
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1263288149593
O16 - DPF: {64E89DC6-8EB8-4459-82AE-408E18BB831B} (BMCCtl Class) - http://serv6.7lavoice.org:1999/talkn3.cab
O16 - DPF: {6924091F-CD97-41E1-B1D4-D9079409D413} (IMCv1 Control) - http://216.151.161.74:2010/talk.cab
O16 - DPF: {6AD8DF3E-C8FB-45E1-9EA1-440F11B628F4} (IM Class) - http://serv1.7lavoice.net:1999/imtalk2.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/mic...ls/en/x86/client/muweb_site.cab?1325634313687
O16 - DPF: {7253A666-683F-4D45-B6F1-549188BB79C0} (BMC Control) - http://74.81.165.121/bmc.cab
O16 - DPF: {7253A666-683F-4D45-B6F1-549188BB79C1} (BMC Control) - http://204.188.225.132/bmc.cab
O16 - DPF: {7253A666-6DA5-4FAE-89B3-BC419653381C} (BMC Control) - http://74.81.174.27/bmc.cab
O16 - DPF: {7253A666-804A-1107-A4DC-00E04C504708} (BMC Control) - http://174.34.234.77/bmc.cab
O16 - DPF: {7253A666-804A-1107-A4DC-00E04C504780} (BMC Control) - http://75.126.207.130/bmc.cab
O16 - DPF: {7253A666-804A-1107-A4DC-00E04C504788} (BMC Control) - http://server.8fa9.com/inc/bmc.cab
O16 - DPF: {7253A666-804A-1108-A4DC-00E04C504788} (BMChat Control) - http://voice6.nilevoice.net:1990/inc/bmchat.cab
O16 - DPF: {7553A666-683F-4D45-B6F1-549188BB79C1} (BMC Control) - http://173.242.123.162/bmc.cab
O16 - DPF: {8246AC2B-4733-4964-A744-4BE60C6731D4} (IMS Control) - http://174.34.234.102:1999/ims.cab
O16 - DPF: {9024091F-CD97-41E1-B1D4-D9079409D453} (IMCv1 Control) - http://serv1.7lavoice.net:1999/talk2011.cab
O16 - DPF: {9753A666-804A-1107-A4DC-00E04C504736} (BMC Control) - http://serv6.7lavoice.org:1999/talkn1.cab
O16 - DPF: {9753A666-804A-1107-A4DC-00E04C504762} (BMC Control) - http://serv6.7lavoice.org:1999/talkn2012b1.cab
O16 - DPF: {B7FDB0C3-4724-46D2-B8DB-6FA1DC63F7CA} (ReadUid.UserControlMacEntry) - http://server27.host4ok.com:1999/ReadUid.CAB
O16 - DPF: {C171FF59-8C55-4796-A398-4F5D02B4C763} (IMC_Sec Control) - http://204.188.200.114/imscp/talks3n.cab
O16 - DPF: {C1B7E532-3ECB-4E9E-BB3A-2951FFE67C61} (DownloaderActiveX Control) - http://c6.community.alice.it/download/DownloaderActiveX.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O21 - SSODL: Windows Task Services - C:\Documents and Settings\USER\Application Data\1B.exe - (no file)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: البرنامج الخفي لذاكرة التخزين المؤقت لفئات المكونات - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Avira FireWall (AntiVirFirewallService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe
O23 - Service: Avira AntiVir MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira AntiVir WebGuard (AntiVirWebService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
O23 - Service: Change Modem Device Service - Unknown owner - C:\WINDOWS\System32\ChgService.exe
O23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
O23 - Service: خدمة تحديث Google (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: خدمة Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TOSHIBA Application Service (TAPPSRV) - TOSHIBA Corp. - C:\Program Files\Toshiba\TOSHIBA Applet\TAPPSRV.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
--
End of file - 13578 bytes


البرامج المثبته


====== معلومات نظام التشغيل ======
X86 WIN_XP 2600 Service Pack 3

====== قائمة البرامج المثبتة ======
ACDSee Pro
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Photoshop CS
Adobe Shockwave Player 11.5
Athan Basic 3.6
Avira Premium Security Suite
Bluetooth Stack for Windows by Toshiba
ClocX (1.4)
Compatibility Pack for the 2007 Office system
Conduit Engine
Conexant HD Audio
DirectX10 GFR
Diskeeper 2008 Pro Premier
DivX Plus Web Player
FormatFactory 2.20
Foxit Reader
GMView
Golden Al-Wafi Translator
Google Earth
Google Update Helper
High Definition Audio Driver Package - KB888111
Intel(R) Graphics Media *********** Driver
Intel(R) Graphics Media *********** Driver
Internet Download Manager
iVocalize Web Conference 4
Java(TM) 6 Update 2
K-Lite Mega Codec Pack 5.6.0
Messenger Plus Saudi Toolbar
Messenger Plus! 5
Microsoft .NET Framework 2.0
Microsoft .NET Framework 2.0
Microsoft Application Error Reporting
Microsoft Choice Guard
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office Professional Edition 2003
Microsoft Silverlight
Microsoft Text-to-Speech Engine 4.0 (English)
Microsoft User-Mode Driver Framework Feature Pack 1.0.0 (Pre-Release 5348)
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Mobily Connect Card
Mobily Connect Card
Mobily Connect Card 03031
MSVC80_x86
MSVC80_x86_v2
MSVCRT
Nero OEM
Nokia Connectivity Cable Driver
Nokia PC Suite
Nokia PC Suite
OpenAL
Palringo
PC Connectivity Solution
PowerDVD
REALTEK GbE & FE Ethernet PCI-E NIC Driver
Realtek High Definition Audio Driver
Segoe UI
Skype™ 4.2
Soft Modem with SmartCP
Swiff Point Player 2.1
Synaptics Pointing Device Driver
TaskSwitchXP
TOSHIBA Hotkey Utility
TOSHIBA Web Camera Application
USB 2.0 Card Reader
VC80CRTRedist - 8.0.50727.4053
Visual Task Tips 3.3
WebFldrs XP
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 7
Windows Live Communications Platform
Windows Live Essentials
Windows Live Essentials
Windows Live Messenger
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player 11
Windows XP Service Pack 3
WinRAR archiver
Yahoo! Messenger
Your Uninstaller! 2010
YouTube Download & Convert 1.1.2
أداة التحميل Windows Live Upload Tool
برنامج إصلاح (Hotfix) لـ Windows XP (KB952287)‎
برنامج إصلاح (Hotfix) لـ Windows XP (KB976098-v2)‎
‏‏تحديث الأمان لـ Windows Media Player (KB952069)
‏‏تحديث الأمان لـ Windows Media Player (KB954155)
‏‏تحديث الأمان لـ Windows Media Player (KB968816)
‏‏تحديث الأمان لـ Windows Media Player (KB973540)
تحديث أمان لـ Windows Internet Explorer 7 (KB976325)‎
تحديث أمان لـ Windows XP (KB923561)‎
تحديث أمان لـ Windows XP (KB923789)‎
تحديث أمان لـ Windows XP (KB946648)‎
تحديث أمان لـ Windows XP (KB950762)‎
تحديث أمان لـ Windows XP (KB950974)‎
تحديث أمان لـ Windows XP (KB951066)‎
تحديث أمان لـ Windows XP (KB951376-v2)‎
تحديث أمان لـ Windows XP (KB951748)‎
تحديث أمان لـ Windows XP (KB952004)‎
تحديث أمان لـ Windows XP (KB952954)‎
تحديث أمان لـ Windows XP (KB954459)‎
تحديث أمان لـ Windows XP (KB955069)‎
تحديث أمان لـ Windows XP (KB956572)‎
تحديث أمان لـ Windows XP (KB956744)‎
تحديث أمان لـ Windows XP (KB956802)‎
تحديث أمان لـ Windows XP (KB956803)‎
تحديث أمان لـ Windows XP (KB956844)‎
تحديث أمان لـ Windows XP (KB957097)‎
تحديث أمان لـ Windows XP (KB958644)‎
تحديث أمان لـ Windows XP (KB958687)‎
تحديث أمان لـ Windows XP (KB958869)‎
تحديث أمان لـ Windows XP (KB959426)‎
تحديث أمان لـ Windows XP (KB960225)‎
تحديث أمان لـ Windows XP (KB960803)‎
تحديث أمان لـ Windows XP (KB960859)‎
تحديث أمان لـ Windows XP (KB961371-v2)‎
تحديث أمان لـ Windows XP (KB961501)‎
تحديث أمان لـ Windows XP (KB969059)‎
تحديث أمان لـ Windows XP (KB969947)‎
تحديث أمان لـ Windows XP (KB970238)‎
تحديث أمان لـ Windows XP (KB971486)‎
تحديث أمان لـ Windows XP (KB971557)‎
تحديث أمان لـ Windows XP (KB971633)‎
تحديث أمان لـ Windows XP (KB971657)‎
تحديث أمان لـ Windows XP (KB971961)‎
تحديث أمان لـ Windows XP (KB973354)‎
تحديث أمان لـ Windows XP (KB973507)‎
تحديث أمان لـ Windows XP (KB973525)‎
تحديث أمان لـ Windows XP (KB973869)‎
تحديث أمان لـ Windows XP (KB973904)‎
تحديث أمان لـ Windows XP (KB974112)‎
تحديث أمان لـ Windows XP (KB974318)‎
تحديث أمان لـ Windows XP (KB974392)‎
تحديث أمان لـ Windows XP (KB974571)‎
تحديث أمان لـ Windows XP (KB975025)‎
تحديث أمان لـ Windows XP (KB975467)‎
تحديث أمان لـ Windows XP (KB976325)‎
تحديث لـ Windows XP (KB898461)‎
تحديث لـ Windows XP (KB951978)‎
تحديث لـ Windows XP (KB955759)‎
تحديث لـ Windows XP (KB967715)‎
تحديث لـ Windows XP (KB968389)‎
تحديث لـ Windows XP (KB973687)‎
تحديث لـ Windows XP (KB973815)‎
حزمة برامج تشغيل Windows - Nokia Modem (06/01/2009 7.01.0.4)
حزمة برامج تشغيل Windows - Nokia Modem (10/05/2009 4.2)
حزمة برامج تشغيل Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
قاموس صخر الجديد
مساعد تسجيل الدخول إلى Windows Live
مصحف النور


تقرير رن سنكر


 

توقيع : techno
ناجل التحليل لما بعد التنشيط
 
توقيع : techno





الله يجزاك كل خير وبــي انك ماقصرت واشكرك من كل قلبي على الرد السسسسسسسريع وربــي احس اني لو اشكرك من هنا ليوم القيامه ماتكفين لاكن بقول

الله يجزااك بالجنه انت ومن تحب

الحين رجعت خلفية سطح المكتب زي اول وراحت الرساله اللي تجيني على سطح المكتب اللي مصورها فوق

بس الحين ابي اعرف جهازي فيه فايروسات ولا لا وربي خايف يالغاالي طمني

وثاني شي عندك الافيرا منتهي ابي له مفتاح لاهنت

Avira AntiVir Control Center


تحياتي لك يالغالي​
 
الله يجزاك كل خير وبــي انك ماقصرت واشكرك من كل قلبي على الرد السسسسسسسريع وربــي احس اني لو اشكرك من هنا ليوم القيامه ماتكفين لاكن بقول

الله يجزااك بالجنه انت ومن تحب

الحين رجعت خلفية سطح المكتب زي اول وراحت الرساله اللي تجيني على سطح المكتب اللي مصورها فوق

بس الحين ابي اعرف جهازي فيه فايروسات ولا لا وربي خايف يالغاالي طمني

وثاني شي عندك الافيرا منتهي ابي له مفتاح لاهنت

Avira AntiVir Control Center


تحياتي لك يالغالي [/CENTER]
اللهم آمين واياك وجميع المؤمنين
الان اعد تشغيل الجهاز يعدها تحديث النظام
اذا كل شيئ تمام نحلل مشكلة الثقل والاصابات ان شاء الله
بانتضارك
 
توقيع : techno
ابشر الحين بسوي رستارت

برب
 
تمام يا استاذي بس الجهاز فيه ثقل لما اشغله وتجيني هذي الريالتين

لما اشغل جهازي ولازم اضغط موافق عشان يشتقل



 
توقيع : techno
ابششر واسف اتعبتك معي تحملني
 
بعد ماحملته مافتح يقول خطا اضغط موافق ..؟
 
غيرت اسم البرنامج واشتغل خلاص والحين يبحث فالجهاز
 
اكمل بعد هذي المرحله ولا لا


SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 01/04/2012 at 06:58 AM
Application Version : 5.0.1142
Core Rules Database Version : 8092
Trace Rules Database Version: 5904
Scan type : Complete Scan
Total Scan Time : 02:29:17
Operating System Information
Windows XP Professional 32-bit, Service Pack 3 (Build 5.01.2600)
Administrator
Memory items scanned : 558
Memory threats detected : 0
Registry items scanned : 36588
Registry threats detected : 6
File items scanned : 28738
File threats detected : 68
Trojan.Agent/Gen-Falcomp
HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components
C:\PROGRAM FILES\BURN\BURN.EXE
Disabled.SecurityCenterOption
HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER#ANTIVIRUSDISABLENOTIFY
HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER#UPDATESDISABLENOTIFY
Malware.BiFrost
HKLM\SOFTWARE\BIFROST
HKLM\SOFTWARE\BIFROST#nck
HKU\S-1-5-21-606747145-790525478-725345543-1003\SOFTWARE\BIFROST
Adware.Tracking Cookie
C:\Documents and Settings\USER\Cookies\user@2o7[1].txt [ /2o7 ]
C:\Documents and Settings\USER\Cookies\user@clicksor[1].txt [ /clicksor ]
C:\Documents and Settings\USER\Cookies\user@adinterax[1].txt [ /adinterax ]
C:\Documents and Settings\USER\Cookies\user@mediafire[1].txt [ /mediafire ]
C:\Documents and Settings\USER\Cookies\user@www.googleadservices[1].txt [ /www.googleadservices ]
C:\Documents and Settings\USER\Cookies\user@imrworldwide[2].txt [ /imrworldwide ]
C:\Documents and Settings\USER\Cookies\user@yieldmanager[1].txt [ /yieldmanager ]
C:\Documents and Settings\USER\Cookies\user@mediabrandsww[1].txt [ /mediabrandsww ]
C:\Documents and Settings\USER\Cookies\user@adtech[1].txt [ /adtech ]
C:\Documents and Settings\USER\Cookies\user@yadro[1].txt [ /yadro ]
C:\Documents and Settings\USER\Cookies\user@media6degrees[2].txt [ /media6degrees ]
C:\Documents and Settings\USER\Cookies\user@atdmt[1].txt [ /atdmt ]
C:\Documents and Settings\USER\Cookies\user@adbrite[2].txt [ /adbrite ]
C:\Documents and Settings\USER\Cookies\user@ru4[1].txt [ /ru4 ]
C:\Documents and Settings\USER\Cookies\user@microsoftwllivemkt.112.2o7[1].txt [ /microsoftwllivemkt.112.2o7 ]
C:\Documents and Settings\USER\Cookies\user@histats[1].txt [ /histats ]
C:\Documents and Settings\USER\Cookies\user@revsci[1].txt [ /revsci ]
C:\Documents and Settings\USER\Cookies\user@ads2.almaany[1].txt [ /ads2.almaany ]
C:\Documents and Settings\USER\Cookies\user@myroitracking[1].txt [ /myroitracking ]
C:\Documents and Settings\USER\Cookies\user@tracking1.aleadpay[1].txt [ /tracking1.aleadpay ]
C:\Documents and Settings\USER\Cookies\user@adserver.zonemedia[2].txt [ /adserver.zonemedia ]
C:\Documents and Settings\USER\Cookies\user@ads.ad4game[1].txt [ /ads.ad4game ]
C:\Documents and Settings\USER\Cookies\user@kaspersky.122.2o7[1].txt [ /kaspersky.122.2o7 ]
C:\Documents and Settings\USER\Cookies\user@h.atdmt[2].txt [ /h.atdmt ]
C:\Documents and Settings\USER\Cookies\user@server.cpmstar[1].txt [ /server.cpmstar ]
C:\Documents and Settings\USER\Cookies\user@adv.6rb[1].txt [ /adv.6rb ]
C:\Documents and Settings\USER\Cookies\user@tradefx.advertserve[1].txt [ /tradefx.advertserve ]
C:\Documents and Settings\USER\Cookies\user@fastclick[2].txt [ /fastclick ]
C:\Documents and Settings\USER\Cookies\user@ad.alriyadh[2].txt [ /ad.alriyadh ]
C:\Documents and Settings\USER\Cookies\user@cofidis2.solution.weborama[2].txt [ /cofidis2.solution.weborama ]
C:\Documents and Settings\USER\Cookies\user@ad.zanox[2].txt [ /ad.zanox ]
C:\Documents and Settings\USER\Cookies\user@ads.abyat[2].txt [ /ads.abyat ]
C:\Documents and Settings\USER\Cookies\user@statcounter[1].txt [ /statcounter ]
C:\Documents and Settings\USER\Cookies\user@c.atdmt[2].txt [ /c.atdmt ]
C:\Documents and Settings\USER\Cookies\user@invitemedia[2].txt [ /invitemedia ]
C:\Documents and Settings\USER\Cookies\user@ads.jeelalweb[1].txt [ /ads.jeelalweb ]
C:\Documents and Settings\USER\Cookies\user@ads.arabictrader[2].txt [ /ads.arabictrader ]
C:\Documents and Settings\USER\Cookies\user@islamicfinder[2].txt [ /islamicfinder ]
C:\Documents and Settings\USER\Cookies\user@www.googleadservices[5].txt [ /www.googleadservices ]
C:\Documents and Settings\USER\Cookies\user@adv.hawahome[2].txt [ /adv.hawahome ]
C:\Documents and Settings\USER\Cookies\user@weborama[1].txt [ /weborama ]
C:\Documents and Settings\USER\Cookies\user@www.googleadservices[4].txt [ /www.googleadservices ]
C:\Documents and Settings\USER\Cookies\user@adfarm1.adition[2].txt [ /adfarm1.adition ]
C:\Documents and Settings\USER\Cookies\user@accounts.google[1].txt [ /accounts.google ]
C:\Documents and Settings\USER\Cookies\user@serving-sys[1].txt [ /serving-sys ]
C:\Documents and Settings\USER\Cookies\user@www.googleadservices[3].txt [ /www.googleadservices ]
C:\Documents and Settings\USER\Cookies\user@googleads.g.doubleclick[1].txt [ /googleads.g.doubleclick ]
C:\Documents and Settings\USER\Cookies\user@clickbank[2].txt [ /clickbank ]
C:\Documents and Settings\USER\Cookies\user@www.googleadservices[2].txt [ /www.googleadservices ]
C:\Documents and Settings\USER\Cookies\user@www.dartmediakuwait[1].txt [ /www.dartmediakuwait ]
C:\Documents and Settings\USER\Cookies\user@bs.serving-sys[2].txt [ /bs.serving-sys ]
C:\Documents and Settings\USER\Cookies\user@m1.webstats.motigo[2].txt [ /m1.webstats.motigo ]
C:\Documents and Settings\USER\Cookies\user@zedo[2].txt [ /zedo ]
C:\Documents and Settings\USER\Cookies\user@support.mediafire[1].txt [ /support.mediafire ]
C:\Documents and Settings\USER\Cookies\user@ad.yieldmanager[2].txt [ /ad.yieldmanager ]
C:\Documents and Settings\USER\Cookies\user@tribalfusion[1].txt [ /tribalfusion ]
C:\Documents and Settings\USER\Cookies\user@doubleclick[2].txt [ /doubleclick ]
C:\DOCUMENTS AND SETTINGS\USER\Cookies\user@clkads[3].txt [ Cookie:user@clkads.com/adServe/banners ]
media.scanscout.com [ C:\DOCUMENTS AND SETTINGS\USER\APPLICATION DATA\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UL5FXF26 ]
secure-us.imrworldwide.com [ C:\DOCUMENTS AND SETTINGS\USER\APPLICATION DATA\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UL5FXF26 ]
ia.media-imdb.com [ C:\DOCUMENTS AND SETTINGS\USER\APPLICATION DATA\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UL5FXF26 ]
www.99counters.com [ C:\DOCUMENTS AND SETTINGS\USER\APPLICATION DATA\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UL5FXF26 ]
Trojan.Agent/Gen-Cryptor[Egun]
D:\موسوعة االقرآن الكريم\SUPPORT\LOADING.EXE
D:\موسوعة االقرآن الكريم\QURAN_KAREEM\SUPPORT\LOADING.EXE
Trojan.Agent/Gen-Spammy
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\قائمة ابدأ\البرامج\بدء التشغيل\DXMIQROE.EXE
C:\PROGRAM FILES\WULCPWMI³رEژجDXMIQROE.EXE\DXMIQROE.EXE
C:\PROGRAM FILES\DXUSFSJL\DXMIQROE.EXE
 
الكمبيوتر معرض للخطر تم تشغيل التحديثات التقائيه

هذر رساله جاتني على سطح المكتب لما شغلت الجهاز في جنب الساعه

والجهاز عند التشغيل يطول شويه خصوصا على سطح المكتب يعلق طويل الا انتضر وبعدين يصير طبيعي

يعني الثقل عند التشغيل فقط

خبرني اخوي وش صار
 
ياارب احد بشوف موضوعي ويرد عليه :(
 
ابشر الحين بسسوي
 
تفضل اخوي لقيت اربعين فالعداد ومدري فايروسات ولا وش طلعت لما البرنامج يفحص

وطبقت نفس الشرك اللي ارسلته ليه

وهذا التقرير بعد اعادت التشغيل

Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org
Database version: 7622
Windows 5.1.2600 Service Pack 3
Internet Explorer 7.0.5730.13
04/01/2012 10:13:53 م
mbam-log-2012-01-04 (22-13-53).txt
Scan type: Full scan (C:\|D:\|E:\|)
Objects scanned: 249259
Time elapsed: 16 minute(s), 18 second(s)
Memory Processes Infected: 4
Memory Modules Infected: 0
Registry Keys Infected: 4
Registry Values Infected: 16
Registry Data Items Infected: 1
Folders Infected: 2
Files Infected: 17
Memory Processes Infected:
c:\documents and settings\USER\application data\microsoft\csrss.exe (Trojan.LVBP) -> 2392 -> Unloaded process successfully.
c:\documents and settings\USER\application data\8.exe (Trojan.Agent) -> 340 -> Unloaded process successfully.
c:\documents and settings\USER\application data\8.exe (Trojan.Agent) -> 2492 -> Unloaded process successfully.
c:\documents and settings\USER\application data\regsrv64.exe (Backdoor.Agent) -> 3872 -> Unloaded process successfully.
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CLASSES_ROOT\CLSID\{C1ACFFD6-514E-49DA-B4FF-30D02FEEED14} (Trojan.Downloader) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{4BB1C10E-D349-4C48-A979-1C0E4704A7C5} (Trojan.Downloader) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{F4355BF2-0E20-4F5D-916F-A4903A883A48} (Trojan.Downloader) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\Victim (Malware.Trace) -> Quarantined and deleted successfully.
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\csrss (Trojan.LVBP) -> Value: csrss -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\csrss (Trojan.LVBP) -> Value: csrss -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\csrss (Trojan.LVBP) -> Value: csrss -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\csrss (Trojan.LVBP) -> Value: csrss -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Windows Task Services (Trojan.Agent) -> Value: Windows Task Services -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\Windows Task Services (Trojan.Agent) -> Value: Windows Task Services -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Windows Task Services (Trojan.Agent) -> Value: Windows Task Services -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Windows Task Services (Trojan.Agent) -> Value: Windows Task Services -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\Windows Task Services (Trojan.Agent) -> Value: Windows Task Services -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Windows Task Services (Trojan.Agent) -> Value: Windows Task Services -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\WINDOWS\DOWNLOADED PROGRAM FILES\DOWNLOADERACTIVEX.OCX (Trojan.Downloader) -> Value: DOWNLOADERACTIVEX.OCX -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Microsoft DLL Registration (Backdoor.Agent) -> Value: Microsoft DLL Registration -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Spy-Net (Backdoor.Bifrose) -> Value: Spy-Net -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Spy-Net (Backdoor.Bot) -> Value: Spy-Net -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Spy-Net (Backdoor.Bifrose) -> Value: Spy-Net -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Spy-Net (Backdoor.Bot) -> Value: Spy-Net -> Quarantined and deleted successfully.
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Hijack.UserInit) -> Bad: (C:\Windows\system32\userinit.exe,C:\Documents and Settings\USER\Application Data\Microsoft\csrss.exe,C:\Program Files\VTHFfxTm\dxmiqroe.exe) Good: (userinit.exe) -> Quarantined and deleted successfully.
Folders Infected:
c:\WINDOWS\system32\Spy-Net (Backdoor.SpyNet.M) -> Quarantined and deleted successfully.
c:\Bifrost (Backdoor.Bifrose) -> Quarantined and deleted successfully.
Files Infected:
c:\documents and settings\USER\application data\microsoft\csrss.exe (Trojan.LVBP) -> Quarantined and deleted successfully.
c:\documents and settings\USER\application data\8.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\downloaded program files\downloaderactivex.ocx (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\documents and settings\USER\قائمة ابدأ\البرامج\بدء التشغيل\dxmiqroe.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\documents and settings\USER\my documents\downloads\Programs\ccproxysetup7.0.exe (PUP.CCProxy) -> Not selected for removal.
c:\documents and settings\USER\my documents\الملفات المتلقاة\شيلة 2009.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
c:\documents and settings\USER\my documents\الملفات المتلقاة\شيله 2009.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
c:\documents and settings\USER\سطح المكتب\تحويل التواريخ.exe (Trojan.Banker) -> Quarantined and deleted successfully.
c:\documents and settings\user\application data\xktlti.exe (Worm.Dorkbot) -> Quarantined and deleted successfully.
c:\documents and settings\USER\application data\2A.tmp (Worm.Dorkbot) -> Quarantined and deleted successfully.
c:\documents and settings\USER\application data\7.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\program files\Gaalbdis\dxmiqroe.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\program files\VTHFfxTm\dxmiqroe.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\documents and settings\USER\application data\regsrv64.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\Spy-Net\logs.dat (Backdoor.SpyNet.M) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\Spy-Net\server.exe-up.txt (Backdoor.SpyNet.M) -> Quarantined and deleted successfully.
c:\Bifrost\logg.dat (Backdoor.Bifrose) -> Quarantined and deleted successfully.
 
بأنتظااركم يالغااالين واسفين تعبناكم معنا بس شسوي جهازي متعبني مره ومابي افرمته

قلت تساعدوني وماقصرتو والله ولا راحى تقصرون

الله يقويكم بس ابي تشوفو هالتقرير
 
وينكم يالغالين
بأنتظاركم
 
ارجو النظر في موضوعي تكفون تجملو مابقى شي
 
الحالة
مغلق و غير مفتوح للمزيد من الردود.
عودة
أعلى