هذا هو التقرير الاول
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 5:10:51 AM, on 1/27/2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Program Files\Zain Connect\Zain Connect.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Windows\system32\RunDll32.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\explorer.exe
C:\Users\Gamal\Downloads\Programs\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTor.dll
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: uTorrentBar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTor.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTor.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Corel Graphics Suite 1117] C:\Program Files\Corel\Corel Graphics 11\Register\registration.exe /title="Corel Graphics Suite 11" /date=122511 serial=DR11CRD-0012082-DGW
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [pdfFactory Pro Dispatcher v3] "C:\Windows\system32\spool\DRIVERS\W32X86\3\fppdis3a.exe" /source=HKLM
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
O17 - HKLM\System\CCS\Services\Tcpip\..\{BE43205D-25E0-4A28-BDF5-EFC16D48E08B}: NameServer = 10.0.1.132 10.0.1.133
O20 - Winlogon Notify: DfLogon - LogonDll.dll (file missing)
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: DFServ - Faronics Corporation - C:\Program Files\Faronics\Deep Freeze\Install C-0\DFServ.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: UDisk Monitor - Unknown owner - C:\Program Files\mDSL\bin\MonServiceUDisk.exe
--
End of file - 6872 bytes
وها هو تقرير البرامج
Adobe AIR Adobe Systems Inc. 12/10/2011 1.5.3.9120
Adobe Flash Player 11 ActiveX Adobe Systems Incorporated 1/4/2012 6.00 MB 11.2.202.160
Adobe Flash Player 11 Plugin Adobe Systems Incorporated 1/1/2012 6.00 MB 11.2.202.160
Adobe InDesign CS5 Adobe Systems Incorporated 12/10/2011 1,655 MB 7.0
Adobe Photoshop CS2 Adobe Systems, Inc. 12/10/2011 9.0
Adobe Reader X (10.1.0) Adobe Systems Incorporated 12/24/2011 113.5 MB 10.1.0
Apple Application Support Apple Inc. 1/2/2012 61.2 MB 2.1.5
Apple Software Update Apple Inc. 1/2/2012 2.38 MB 2.1.3.127
Barcode Label Generator Plus 1.5 Scan Secretary Co. 12/18/2011
CCleaner Piriform 1/13/2012 3.14
Corel Graphics Suite 11 Corel Corporation 12/10/2011 258 MB 11
Driver Genius Professional 11.0.0.1112 Exµs ™ 12/11/2011 16.3 MB 11.0.0.1112
Foxit Reader 5.1 Foxit Corporation 12/10/2011 28.9 MB 5.1.0.1021
Intel(R) Graphics Media *********** Driver Intel Corporation 12/10/2011 54.3 MB 8.15.10.1930
Intel(R) TV Wizard Intel Corporation 12/10/2011
Internet Download Manager 12/11/2011
Java(TM) 7 Update 1 Oracle 12/9/2011 98.9 MB 7.0.10
JonDo 1/13/2012
KONICA MINOLTA HDD TWAIN Ver.3 KONICA MINOLTA 12/11/2011 7.07 MB 3.00.0001
KONICA MINOLTA TWAIN Ver.3 KONICA MINOLTA 12/10/2011 7.41 MB 3.00.0001
Malwarebytes Anti-Malware version 1.60.0.1800 Malwarebytes Corporation 1/20/2012 18.6 MB 1.60.0.1800
Microsoft .NET Framework 4 Client Profile Microsoft Corporation 12/10/2011 38.8 MB 4.0.30319
Microsoft Office File Validation Add-In Microsoft Corporation 12/10/2011 7.95 MB 14.0.5130.5003
Microsoft Office Professional Plus 2007 Microsoft Corporation 12/10/2011 12.0.6612.1000
Microsoft Security Essentials Microsoft Corporation 12/9/2011 2.1.1116.0
Microsoft Silverlight Microsoft Corporation 12/9/2011 20.5 MB 4.0.60831.0
Mozilla Firefox 9.0.1 (x86 en-US) Mozilla 1/13/2012 37.0 MB 9.0.1
pdfFactory Pro 1/14/2012
QuickTime Apple Inc. 1/2/2012 73.3 MB 7.71.80.42
sudani mDSL 12/9/2011
Toon Boom Studio 5.0 Toon Boom Animation Inc. 1/2/2012
uTorrentBar Toolbar uTorrentBar 12/18/2011
Win7codecs Shark007 12/9/2011 63.2 MB 3.0.7
WinRAR 4.10 beta 5 (32-bit) win.rar GmbH 1/13/2012 4.10.5
Zain Connect Huawei Technologies Co.,Ltd 12/9/2011 11.300.05.04.221
µTorrent 12/18/2011 3.0.0