• بادئ الموضوع بادئ الموضوع فاعل الخير
  • تاريخ البدء تاريخ البدء
  • المشاهدات 742
الحالة
مغلق و غير مفتوح للمزيد من الردود.
ف

فاعل الخير

Guest
غير متصل
السلام عليكم ورحمة الله وبركاتة

ابي اعرف نتائج التقارير التالية


هايجاك

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:27:58, on 08/01/2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Real\RealPlayer\update\realsched.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Microsoft Office\Office14\WINWORD.EXE
C:\Windows\System32\mobsync.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
C:\Windows\system32\SearchFilterHost.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.ae
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Real\RealPlayer\update\realsched.exe" -osboot
O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O10 - Broken Internet access because of LSP provider 'c:\program files\bonjour\mdnsnsp.dll' missing
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\system32\guard32.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Cron Service for Prey (CronService) - Fork Ltd. - C:\Prey\platform\windows\cronsvc.exe
O23 - Service: DigiChat 4.0 Server (DigiChat_4.0_Server) - Unknown owner - C:\PROGRA~1\DIGICH~1.0\DIGICH~2.EXE (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe

--
End of file - 4388 bytes

البرامج المثبتة

Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Reader 9.4.7
Adobe Shockwave Player 11.6
Apple Application Support
Apple Software Update
ASUS Ai Charger
COMODO Internet Security
Definition update for Microsoft Office 2010 (KB982726) 32-Bit Edition
HiJackThis
Hotfix for Microsoft .NET Framework 4 Client Profile (KB2461678)
Java(TM) 6 Update 29
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Client Profile
Microsoft Antimalware
Microsoft Choice Guard
Microsoft Office Access MUI (English) 2010
Microsoft Office Access Setup Metadata MUI (English) 2010
Microsoft Office Excel MUI (English) 2010
Microsoft Office Groove MUI (English) 2010
Microsoft Office InfoPath MUI (English) 2010
Microsoft Office OneNote MUI (English) 2010
Microsoft Office Outlook MUI (English) 2010
Microsoft Office PowerPoint MUI (English) 2010
Microsoft Office Professional Plus 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (French) 2010
Microsoft Office Proof (Spanish) 2010
Microsoft Office Proofing (English) 2010
Microsoft Office Publisher MUI (English) 2010
Microsoft Office Shared MUI (English) 2010
Microsoft Office Shared Setup Metadata MUI (English) 2010
Microsoft Office Word MUI (English) 2010
Microsoft Search Enhancement Pack
Microsoft Security Client
Microsoft Silverlight
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft_VC100_CRT_SP1_x86
Mozilla Firefox 10.0 (x86 en-US)
MSVC80_x86_v2
MSVC90_x86
MSVCRT
PC SECURITY TEST 2011
QuickTime
Realtek High Definition Audio Driver
RealUpgrade 1.1
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
SUPERAntiSpyware
swMSM
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft Office 2010 (KB2494150)
Update for Microsoft Office 2010 (KB2553092)
VC 9.0 Runtime
VS10RuntimeWin32
Windows 7 USB/DVD Download Tool
Windows Live Communications Platform
Windows Live Essentials
Windows Live Messenger
Windows Media Player Firefox Plugin
Your Uninstaller! 7
الاوفيس بلاس 2010
الفوتوشوب
برنامج حماية مايكروسوفت
تيم فيوار 6
ريل بلاير
سيكلينر 3
وين رار عبدالله
ويندوز لايف مسن

تم تعديل اسماء بعض البرامج من الريجستري ,,:y: ههه

رن سكنر

http://www.eupload.org/shared/72472runscanner.rar

تقرير اخطاء النظام




===== تقرير انهيار البرامج =====

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 06/01/2012 18:28:13
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 8,966
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_00dae83c\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 08/01/2012 02:24:37
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 9,198
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_023d719a\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 07/01/2012 22:20:19
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 9,198
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_038dc57f\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 06/01/2012 20:41:19
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 8,966
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_03a0c15d\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 06/01/2012 19:50:49
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 9,180
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_04ae89b9\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 08/01/2012 11:18:59
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 9,198
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_0552acc0\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 06/01/2012 17:20:46
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 9,180
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_08f1bd6a\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 06/01/2012 22:58:45
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 9,180
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_0b6697b1\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 06/01/2012 17:32:34
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 9,180
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_0b7c88b4\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 08/01/2012 03:08:04
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 9,198
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_0c7d407d\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 06/01/2012 18:07:38
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 8,966
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_0e149d5d\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 06/01/2012 16:51:29
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 9,180
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_0f8ef164\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 07/01/2012 23:54:40
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 8,984
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_10481ee6\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 07/01/2012 23:21:21
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 9,198
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_1171a534\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 07/01/2012 22:24:32
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 9,198
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_11b5a36f\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 07/01/2012 23:03:40
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 9,198
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_11c17510\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 07/01/2012 01:34:56
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 9,180
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_1275a5a8\Report.wer
==================================================

==================================================
Process File : MessengerDiscovery3.Today.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 07/01/2012 19:57:48
User Name : user
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Live\Messenger\MessengerDiscovery3.Today.exe
Report File Size : 9,198
Report File Path : C:\Users\user\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_messengerdiscove_9fd5a5d5a5228d9785727f886f26a3850f68e2e_17f34ab2\Report.wer
==================================================




===== تقرير الشاشة الزرقاء =====




ابي استلم نتائج التقارير كاااااملة

ملاحظة احس ان في الجهاز شوي تعليق بس انا متأكد ان المشكلة بتنحل لو عرفت نتائج التقارير

:)


 

تم تحديث قاعدة بيانات المالوير بايت الى اخر اصدار

وتم عمل فحص كامل

وازالة الملفات الضارة

وهذا التقرير

Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org

نسخة قاعدة البيانات : 912010802

Windows 6.1.7601 Service Pack 1
Internet Explorer 9.0.8112.16421

08/01/2012 19:05:52
mbam-log-2012-01-08 (19-05-52).txt

نوع الفحص : فحص كامل (C:\|)
الكائنات المفحوصة : 267398
الوقت المنقضي : 3 ساعة, 34 دقيقة, 28 ثانية

عمليات الذاكرة المصابة : 0
وحدات الذاكرة المصابة : 0
مفاتيح الريجستري المصابة : 0
قيم الريجستري المصابة : 0
مواد بيانات الريجستري المصابة : 0
المجلدات المصابة : 0
الملفات المصابة : 3

عمليات الذاكرة المصابة :
(لم يتم إكتشاف مواد ضارة)

وحدات الذاكرة المصابة :
(لم يتم إكتشاف مواد ضارة)

مفاتيح الريجستري المصابة :
(لم يتم إكتشاف مواد ضارة)

قيم الريجستري المصابة :
(لم يتم إكتشاف مواد ضارة)

مواد بيانات الريجستري المصابة :
(لم يتم إكتشاف مواد ضارة)

المجلدات المصابة :
(لم يتم إكتشاف مواد ضارة)

الملفات المصابة :
c:\system volume information\systemrestore\frstaging\Users\user\AppData\Local\Temp\ursoft.your.uninstaller!.pro.v7.3.2011.2.-patch(425).exe (PUP.Hacktool.Patcher) -> Quarantined and deleted successfully.
c:\system volume information\systemrestore\frstaging\Users\user\AppData\Local\Temp\RarSFX0\ursoft.your.uninstaller!.pro.v7.3.2011.2.-patch(421).exe (PUP.Hacktool.Patcher) -> Quarantined and deleted successfully.
c:\system volume information\systemrestore\frstaging\Users\user\AppData\Local\Temp\RarSFX1\ursoft.your.uninstaller!.pro.v7.3.2011.2.-patch(423).exe (PUP.Hacktool.Patcher) -> Quarantined and deleted successfully.

 
الملفات الي كشفها المالوير بايت عبارة عن باتش عادي جدا :q:
 
تغيير اسامي البرامج هذي مشكلة

هل لديك برنامج ثرت فير

وشو هالبرنامج PC SECURITY TEST 2011


وذا Wondershare Time Freeze
 
تغيير اسامي البرامج هذي مشكلة
:i: يعني لازم ارجع البرامج لاسمها الاصلي ؟
هل لديك برنامج ثرت فير
لا
وشو هالبرنامج PC SECURITY TEST 2011


برنامج اختبار قوة برامج الحماية :q:

وذا
Wondershare Time Freeze

هذا البرنامج كان عندي ومسحته وهو نفس وضيفة الديب فريز

وحتى انه مب موجود في تقرير البرامج المثبته:d:
 
الرجاء اغلاق الموضوع


 
الحالة
مغلق و غير مفتوح للمزيد من الردود.
عودة
أعلى