• بادئ الموضوع بادئ الموضوع nabil_
  • تاريخ البدء تاريخ البدء
  • المشاهدات 5,459

nabil_

زيزوومي جديد
إنضم
24 أبريل 2009
المشاركات
35
مستوى التفاعل
1
النقاط
40
الإقامة
yemen
غير متصل
السلام عليكم ورحمة الله وبركاته

اخواني اتمنى ان اجد حل لديكم حل هذه المشكله

عند ادخال اي فلاش او ذاكره

يتم اضافة اربعه ملفات

Copy of Shortcut to

وملف اخر

RECYCLER

كما موضح في الصوره


df937419cf37742b23cad911c067685e.png




 

توقيع : غَيّوضْ
شكرا على ردك السريع
ولكن المشكله مختلفه
هذا الفيروس لا يخفي اي ملفات
وقد جربت الطريقه ولكن الملفات بترجع ثاني

هذا تقرير هايجاك

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:33:59 م, on 13/01/2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\USB Disk Security\USBGuard.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\PROGRA~1\WINDOW~4\Datamngr\DATAMN~1.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ESET-phase2.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\WINDOWS\system32\cmd.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Zyzoom_Forum_Tools\zHijak.com
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\explorer.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://dts.search-results.com/sr?src=ieb&appid=113&systemid=406&sr=0&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://dts.search-results.com/sr?src=ieb&appid=113&systemid=406&sr=0&q={searchTerms}
R3 - URLSearchHook: DefaultSearchHook Class - {C94E154B-1459-4A47-966B-4B843BEFC7DB} - C:\Program Files\AskSearch\bin\DefaultSearch.dll
F2 - REG:system.ini: UserInit=userinit.exe ,c:\program files\microsoft\watermark.exe
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~1\WINDOW~4\Datamngr\ToolBar\searchqudtx.dll
O2 - BHO: DataMngr - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\PROGRA~1\WINDOW~4\Datamngr\BROWSE~1.DLL
O2 - BHO: GomPicker - {F0181C6E-9218-4792-9F3C-E8DF52B2F1AC} - C:\Program Files\GRETECH\GomPicker\GomPickerBHO.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O3 - Toolbar: Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~1\WINDOW~4\Datamngr\ToolBar\searchqudtx.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [USB Antivirus] C:\Program Files\USB Disk Security\USBGuard.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [DATAMNGR] C:\PROGRA~1\WINDOW~4\Datamngr\DATAMN~1.EXE
O4 - HKLM\..\Run: [RRT-Auto] C:\Documents and Settings\pc\My Documents\Downloads\Programs\RRT.exe auto
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: ESET-phase2.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Toolbars\Restrictions present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Toolbars\Restrictions present
O8 - Extra context menu item: ت&صدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O20 - AppInit_DLLs:
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: خدمة Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: خدمة Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe

--
End of file - 9159 bytes

 
بعد عمل كما موضح بالصور

شوف التقرير

Malwarebytes' Anti-Malware 1.51.2.1300
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


Database version: 7622

Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512

13/01/2012 07:51:18 م
mbam-log-2012-01-13 (19-51-18).txt

Scan type: Full scan (C:\|J:\|)
Objects scanned: 203924
Time elapsed: 16 minute(s), 21 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 4
Folders Infected: 0
Files Infected: 191

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Hijack.UserInit) -> Bad: (userinit.exe,c:\program files\microsoft\watermark.exe,) Good: (userinit.exe) -> Quarantined and deleted successfully.

Folders Infected:
(No malicious items detected)

Files Infected:
c:\documents and settings\pc\local settings\Temp\eset-1676\7za.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
c:\program files\microsoft\watermark.exe (Trojan.Agent) -> Delete on reboot.
c:\WINDOWS\explorermgr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\CaARWnNS.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\buWlUfjt.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\fKBvpale.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\kWtaiITJ.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\rWrcliNt.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\JufneaEk.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\niaiuWsl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\crwXUOTh.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\TJPjMZJr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\JbwsjUTY.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\kNrBjOQp.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\uXrPNbuq.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ybZZYPWo.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\bcVMsCAD.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\qeWHtLsD.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\EjLocxhT.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\muSPIJMI.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\WmPptyAT.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\uTAlytYc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\AYBlLGuR.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\NTQTtNbD.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\EIHBHooR.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\GPeneZpA.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\bkGECVUu.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ZKyrsncY.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\MpcRMmxg.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\KCXiDcWj.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\MAdXQWoT.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\PtdltLQS.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\osNTZmLK.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\EUExEMYp.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\SDmKGTsi.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\NvQIMrcq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\sPoQErBV.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\LGrEIJpk.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\NPXhxSkq.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\sJhiGPKo.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\RQjWtOBw.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\apPdPXVd.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\EkaPsrhY.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\OBxcyOxq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\XWoPqVSs.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\YAeqUWRf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\dFZVlFFv.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\XbjRAhnu.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\xYwDdiJa.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\dYeAvoCe.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\vdNvgjJB.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\oFTQAqev.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\tLTvAOvN.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\SVMfEdZE.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\bRkPXYbN.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\XegpNBTl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\LxaRsqSI.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\VMrLGDnj.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\TmxUhuLK.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\sfdDXqub.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\qwIdPnCG.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\EVnrfdUO.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ENVBvOsK.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\SAhZgKcx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ZnsGMgvW.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\GnKPqbQK.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\JSrCdDey.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\hkKxotIF.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ejDScxoW.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\KviQjATO.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\lRBohDUD.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\YmwlvyWq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\wuSNmDwU.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\iIynEjjg.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\SiiBpkRS.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\BEKHeKRD.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\HqpYrwmi.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\etQMShLA.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ipGnCBnu.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\NAXAkBoG.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\oqHVbbCA.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\IdlxOFtQ.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\eBOivLty.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\xrEEiCSS.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\kewadjfR.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\QNNjCnko.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\rqSAFpfY.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\wKitFcOd.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\tFwVMFNl.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\gcljEOtE.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\JhGahxjr.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\jWYCKFNj.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\UMBQwEbf.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\HwURFZqO.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\wbSBJCyF.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\mgJrxmHk.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\lRvZJyDp.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\wSblljhh.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\WRvOsKHf.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\DqdUweVx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\WEVMrPlc.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\UKfpcsuR.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ghHKdxrq.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\VhmuSMlR.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\OgLiWEuK.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\YniCTHaM.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\PUNmoUJC.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\kFqKrNfn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\fbvxClyb.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\vGNUVXXt.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\aVvWBiyg.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\dwnwJmaX.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\hdPNHokV.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\mKrBujJj.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\gfxaKKxe.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\oxgbigqh.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\BnQWcxSr.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\fUjXyvJo.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\CBIWjjmN.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ajougAVZ.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ZdfiaatG.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\wflkMrWO.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\EGAepFvB.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\YfpJKLqB.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\BeEUeEDW.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\QOliifkr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\vskUNMpw.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\opOUNrEc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\XAYXgUtr.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\CZSjVQuA.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\Bqfqdgga.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ltvLwZIa.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\aSaclqNr.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\DoAFfSdl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\YYTIbKSi.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\YVNBCJlS.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\erGmSUiM.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\cacKdPUh.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\CsogSfUe.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\roOJdxCd.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\EcgbAKWI.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\xBWSOsHD.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\qjrLXYJP.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\GVwDCCJr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\fuDkNyGM.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ogsafURG.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\CUNEygiw.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ZgPdpprZ.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ZqrOqdCy.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\kvPPDRBn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\QHGpxPKT.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\wHpEmyVs.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\MjkRXsNN.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\OBXXwGQb.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\fOJwbYJf.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ghFNdgbV.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\BKaZXwGe.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\oAegEeMl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\wnbqKqxr.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\VFguawct.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ruryPUVZ.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\aGfAoOCZ.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\twfeabqm.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\dEjLdDyJ.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\qGcGLnMo.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\XYPvjKId.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\OCsFYhAS.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\JntEZUti.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\IwTauQNl.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\quLscScZ.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\LKZJsumH.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\NrQFIxfZ.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\DdBJcnOi.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\SQqOcVgX.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\CBpdOJkb.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\swByiiCS.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\XtJsTyVI.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ImcNoFRI.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\nLaJiiDb.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\tVhnFVMZ.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\jeqLHsQe.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\LsnIGLRi.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\mwIydZaH.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\SLFxFfbA.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\MCXTNcmW.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\ishbonmv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\naHYZsem.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\XlBqYXts.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\kubovVGf.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\pcufJrtr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
j:\RECYCLER\s-4-7-87-5455035318-5655786546-302177506-2740\tJvLEShQ.cpl (Virus.Ramnit) -> Quarantined and deleted successfully.

 
اعد تشغيل الجهاز اخي
واعمل تقرير هايجاك جديد + رن سكنر
 
شكرا على متابعتكم المشكله

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 09:43:08 ص, on 15/01/2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\USB Disk Security\USBGuard.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\PROGRA~1\WINDOW~4\Datamngr\DATAMN~1.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ESET-phase2.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Zyzoom_Forum_Tools\zyzoom.exe
C:\Zyzoom_Forum_Tools\zHijak.com
C:\Program Files\Mozilla Firefox\plugin-container.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://dts.search-results.com/sr?src=ieb&appid=113&systemid=406&sr=0&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://dts.search-results.com/sr?src=ieb&appid=113&systemid=406&sr=0&q={searchTerms}
R3 - URLSearchHook: DefaultSearchHook Class - {C94E154B-1459-4A47-966B-4B843BEFC7DB} - C:\Program Files\AskSearch\bin\DefaultSearch.dll
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~1\WINDOW~4\Datamngr\ToolBar\searchqudtx.dll
O2 - BHO: DataMngr - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\PROGRA~1\WINDOW~4\Datamngr\BROWSE~1.DLL
O2 - BHO: GomPicker - {F0181C6E-9218-4792-9F3C-E8DF52B2F1AC} - C:\Program Files\GRETECH\GomPicker\GomPickerBHO.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O3 - Toolbar: Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~1\WINDOW~4\Datamngr\ToolBar\searchqudtx.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [USB Antivirus] C:\Program Files\USB Disk Security\USBGuard.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [DATAMNGR] C:\PROGRA~1\WINDOW~4\Datamngr\DATAMN~1.EXE
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: ESET-phase2.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Toolbars\Restrictions present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Toolbars\Restrictions present
O8 - Extra context menu item: ت&صدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: خدمة Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: خدمة Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe

--
End of file - 8812 bytes

 
للرفع
 
مشكور اخي على سرعة استجابتك

وبارك الله فيكم

تم عمل كما في الشرح

وتقريبا تم حل نص المشكله

الاختصارات الاربعه التي كانت تظهر

الان لا تظهر نهائيا

ولكن الملف المسمى RECYCLER

لازال موجود وعند حذفه يظهر من جديد

هل لازال هناك حل لهذه المشكله

؟؟؟؟؟



 
عادة كل الملفات تظهر
 
توقيع : format
عودة
أعلى