افضل

زيزوومي جديد
إنضم
5 فبراير 2012
المشاركات
7
مستوى التفاعل
0
النقاط
0
غير متصل
السلام عليكم ورحمة الله وبركاته
شكرا لكم على هذا المنتدى الرائع وعلى الدعم والفائد التي تتفردون في تقديمها
جهازي جديد له اقل من شهرين ومع ذلك من أمس تخرج لي الشاشة الزرقاء وقبلها عند تشغيل اليوتيوب أو أي فيديو يعلق الصوت ويخرج مثل الصدى وعدم وضوح في الصوت مع ثقل في الجهاز ثم يعود لطبيعته يعني مجرد ثواني


تقرير هايجاك

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 04:41:44 م, on 05/02/12
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\ZTE Connection Manager\UIExec.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Zyzoom_Forum_Tools\zyzoom.exe
C:\Windows\SysWOW64\NOTEPAD.EXE
C:\Zyzoom_Forum_Tools\zHijak.com

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
O2 - BHO: Hotspot Shield Class - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - C:\Program Files (x86)\Hotspot Shield\HssIE\HssIE.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [NBAgent] "c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL
O4 - HKLM\..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe hwSetUP
O4 - HKLM\..\Run: [KeNotify] "C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe" LPCM
O4 - HKLM\..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60
O4 - HKLM\..\Run: [UIExec] "C:\Program Files (x86)\ZTE Connection Manager\UIExec.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Sony Ericsson PC Companion] "C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe" /Background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'Default user')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user')
O4 - Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe
O4 - Global Startup: Toshiba Places Icon Utility.lnk = C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe
O8 - Extra context menu item: Add to TOSHIBA Bulletin Board - res://C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
O8 - Extra context menu item: إر&سال إلى OneNote - res://C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: ت&صدير إلى Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office14\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: ملاحظات OneNote الم&رتبطة - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: ملاحظات OneNote الم&رتبطة - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Hotspot Shield Service (hshld) - Unknown owner - C:\Program Files (x86)\Hotspot Shield\bin\openvpnas.exe
O23 - Service: Hotspot Shield Routing Service (HssSrv) - AnchorFree Inc. - C:\Program Files (x86)\Hotspot Shield\HssWPR\hsssrv.exe
O23 - Service: Hotspot Shield Tray Service (HssTrayService) - Unknown owner - C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE
O23 - Service: Hotspot Shield Monitoring Service (HssWd) - Unknown owner - C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @c:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: UI Assistant Service - Unknown owner - C:\Program Files (x86)\ZTE Connection Manager\AssistantServices.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: BitDefender Update Server v2 (Update Server) - BitDefender - C:\Program Files\Common Files\Bitdefender\Bitdefender Arrakis Server\bin\arrakis3.exe
O23 - Service: BitDefender Desktop Update Service (UPDATESRV) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender 2012\updatesrv.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: BitDefender Virus Shield (VSSERV) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender 2012\vsserv.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14852 bytes



ولكم جزيل الشكر
 

سجلات النظام والاخطاء





====== سجل أخطاء النظام ======

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 7040
Message: ‏‏تم تغيير نوع بدء تشغيل الخدمة Windows Search من auto start إلى disabled.
Record Number: 3379
Source Name: Service Control Manager
Time Written: 20111005163150.716410-000
Event Type: معلومات
User: hatem-TOSH\Administrator

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 7036
Message: ‏‏دخلت الخدمة TMachInfo في حالة running.
Record Number: 3378
Source Name: Service Control Manager
Time Written: 20111005163143.477997-000
Event Type: معلومات
User:

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 104
Message: ‏‏تم مسح ملف السجل Setup .
Record Number: 3377
Source Name: Microsoft-Windows-Eventlog
Time Written: 20111005163136.255184-000
Event Type: معلومات
User: hatem-TOSH\Administrator

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 104
Message: ‏‏تم مسح ملف السجل Application .
Record Number: 3376
Source Name: Microsoft-Windows-Eventlog
Time Written: 20111005163136.223984-000
Event Type: معلومات
User: hatem-TOSH\Administrator

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 104
Message: ‏‏تم مسح ملف السجل System .
Record Number: 3375
Source Name: Microsoft-Windows-Eventlog
Time Written: 20111005163136.208384-000
Event Type: معلومات
User: hatem-TOSH\Administrator



===== سجل أخطاء البرامج =====

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 1013
Message: ‏‏تم إيقاف "خدمة Windows Search" بشكلٍ عادي.

Record Number: 2242
Source Name: Microsoft-Windows-Search
Time Written: 20111005163152.000000-000
Event Type: معلومات
User:

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 103
Message: Windows (3852) Windows: The database engine stopped the instance (0).
Record Number: 2241
Source Name: ESENT
Time Written: 20111005163151.000000-000
Event Type: معلومات
User:

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 10
Message: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Record Number: 2240
Source Name: Microsoft-Windows-WMI
Time Written: 20111005163149.000000-000
Event Type: خطأ
User:

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 0
Message: [CheckAuditMode]: Success
Record Number: 2239
Source Name: TOSHIBA Service Station
Time Written: 20111005163147.000000-000
Event Type: معلومات
User:

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 0
Message: Service started successfully.
Record Number: 2238
Source Name: Service1
Time Written: 20111005163143.000000-000
Event Type: معلومات
User:



===== السجل الأمني =====

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 4624
Message: ‏‏تم تسجيل دخول حساب بنجاح.

العنوان:
معرّف الأمان: S-1-5-18
اسم الحساب: WIN-EB3ED8QNQ0M$
مجال الحساب: WORKGROUP
معرّف تسجيل الدخول: 0x3e7

نوع تسجيل الدخول: 5

تسجيل الدخول الجديد:
معرّف الأمان: S-1-5-18
اسم الحساب: SYSTEM
مجال الحساب: NT AUTHORITY
معرّف تسجيل الدخول: 0x3e7
المعرّف الفريد العمومي لتسجيل الدخول: {00000000-0000-0000-0000-000000000000}

معلومات العملية:
معرّف العملية: 0x23c
اسم العملية: C:\Windows\System32\services.exe

معلومات الشبكة:
اسم محطة العمل:
عنوان الشبكة المصدر: -
المنفذ المصدر: -

معلومات المصادقة المفصّلة:
عملية تسجيل الدخول: Advapi
حزمة المصادقة: Negotiate
الخدمات المنقولة: -
اسم الحزمة (NTLM فقط): -
طول المفتاح: 0

يتم تكوين هذا الحدث عند إنشاء جلسة عمل تسجيل دخول، كما يتم تكوينه على الكمبيوتر الذي تم الوصول إليه.

تشير حقول العناوين إلى حساب النظام المحلي الذي طالب بتسجيل الدخول. هذه عبارة عن خدمة بشكل عام (مثل خدمة "الخادم"، أو خدمة محلية مثل Winlogon.exe أو Services.exe).

يشير الحقل "نوع تسجيل الدخول" إلى نوع تسجيل الدخول الذي تم إجراؤه. أكثر أنواع تسجيل الدخول استخداماً هي 2 (محلي) و 3 (شبكة).

تشير حقول "تسجيل الدخول الجديد" إلى الحساب الذي تم إنشاء تسجيل الدخول له( الحساب الذي تم تسجيل الدخول إليه).

تشير حقول الشبكة إلى موقع تكوين طلب تسجيل دخول عن بُعد. لا يتوفر اسم محطة العمل دائماً وقد يُترك فارغاً في بعض الحالات.

توفر حقول معلومات المصادقة معلومات مفصّلة حول طلب تسجيل الدخول المحدد هذا.
- "معرّف تسجيل الدخول العمومي" عبارة عن معرّف فريد يمكن استخدامه للربط بين هذا الحدوث وحدث KDC.
- تشير "الخدمات المنقولة" إلى الخدمات الوسيطة التي شاركت في طلب تسجيل الدخول هذا.
- يشير "اسم الحزمة" إلى البروتوكول الثانوي الذي تم استخدامه من بين بروتوكولات NTLM.
- يشير "طول المفتاح" إلى طول مفتاح جلسة العمل الذي تم تكوينه. سيكون طول المفتاح 0 عند عدم طلب أية مفاتيح جلسات عمل.
Record Number: 1717
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111005163154.725617-000
Event Type: تدقيق النجاح
User:

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 4672
Message: ‏‏تم تخصيص امتيازات خاصة لتسجيل الدخول الجديد.

العنوان:
معرّف الأمان: S-1-5-18
اسم الحساب: SYSTEM
مجال الحساب: NT AUTHORITY
معرّف تسجيل الدخول: 0x3e7

الامتيازات: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 1716
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111005163152.884814-000
Event Type: تدقيق النجاح
User:

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 4624
Message: ‏‏تم تسجيل دخول حساب بنجاح.

العنوان:
معرّف الأمان: S-1-5-18
اسم الحساب: WIN-EB3ED8QNQ0M$
مجال الحساب: WORKGROUP
معرّف تسجيل الدخول: 0x3e7

نوع تسجيل الدخول: 5

تسجيل الدخول الجديد:
معرّف الأمان: S-1-5-18
اسم الحساب: SYSTEM
مجال الحساب: NT AUTHORITY
معرّف تسجيل الدخول: 0x3e7
المعرّف الفريد العمومي لتسجيل الدخول: {00000000-0000-0000-0000-000000000000}

معلومات العملية:
معرّف العملية: 0x23c
اسم العملية: C:\Windows\System32\services.exe

معلومات الشبكة:
اسم محطة العمل:
عنوان الشبكة المصدر: -
المنفذ المصدر: -

معلومات المصادقة المفصّلة:
عملية تسجيل الدخول: Advapi
حزمة المصادقة: Negotiate
الخدمات المنقولة: -
اسم الحزمة (NTLM فقط): -
طول المفتاح: 0

يتم تكوين هذا الحدث عند إنشاء جلسة عمل تسجيل دخول، كما يتم تكوينه على الكمبيوتر الذي تم الوصول إليه.

تشير حقول العناوين إلى حساب النظام المحلي الذي طالب بتسجيل الدخول. هذه عبارة عن خدمة بشكل عام (مثل خدمة "الخادم"، أو خدمة محلية مثل Winlogon.exe أو Services.exe).

يشير الحقل "نوع تسجيل الدخول" إلى نوع تسجيل الدخول الذي تم إجراؤه. أكثر أنواع تسجيل الدخول استخداماً هي 2 (محلي) و 3 (شبكة).

تشير حقول "تسجيل الدخول الجديد" إلى الحساب الذي تم إنشاء تسجيل الدخول له( الحساب الذي تم تسجيل الدخول إليه).

تشير حقول الشبكة إلى موقع تكوين طلب تسجيل دخول عن بُعد. لا يتوفر اسم محطة العمل دائماً وقد يُترك فارغاً في بعض الحالات.

توفر حقول معلومات المصادقة معلومات مفصّلة حول طلب تسجيل الدخول المحدد هذا.
- "معرّف تسجيل الدخول العمومي" عبارة عن معرّف فريد يمكن استخدامه للربط بين هذا الحدوث وحدث KDC.
- تشير "الخدمات المنقولة" إلى الخدمات الوسيطة التي شاركت في طلب تسجيل الدخول هذا.
- يشير "اسم الحزمة" إلى البروتوكول الثانوي الذي تم استخدامه من بين بروتوكولات NTLM.
- يشير "طول المفتاح" إلى طول مفتاح جلسة العمل الذي تم تكوينه. سيكون طول المفتاح 0 عند عدم طلب أية مفاتيح جلسات عمل.
Record Number: 1715
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111005163152.884814-000
Event Type: تدقيق النجاح
User:

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 4738
Message: ‏‏تم تغيير حساب مستخدم.

العنوان:
معرّف الأمان: S-1-5-21-2322380852-1168359927-3199269361-500
اسم الحساب: Administrator
مجال الحساب: WIN-EB3ED8QNQ0M
معرّف تسجيل الدخول: 0x24608

الحساب الهدف:
معرّف الأمان: S-1-5-21-2322380852-1168359927-3199269361-500
اسم الحساب: Administrator
مجال الحساب: WIN-EB3ED8QNQ0M

السمات التي تم تغييرها:
اسم حساب SAM: -
اسم العرض: -
الاسم الأساسي للمستخدم: -
الدليل الرئيسي: -
محرك الأقراص الرئيسي: -
مسار البرنامج النصي: -
مسار ملف التعريف: -
محطات عمل المستخدم: -
آخر تعيين لكلمة المرور: -
انتهاء مدة صلاحية الحساب: -
معرّف المجموعة الأساسية: -
السماح بالتفويض إلى: -
قيمة UAC القديمة: 0x211
قيمة UAC الجديدة: 0x211
التحكم في حساب المستخدم: -
معلمات المستخدم: -
محفوظات معرّف الأمان: -
ساعات تسجيل الدخول: -

معلومات إضافية:
الامتيازات: -
Record Number: 1714
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111005163149.608808-000
Event Type: تدقيق النجاح
User:

Computer Name: WIN-EB3ED8QNQ0M
Event Code: 1102
Message: ‏‏تم مسح سجل التدقيق.
الموضوع:
معرّف الأمان: S-1-5-21-2322380852-1168359927-3199269361-500
اسم الحساب: Administrator
اسم المجال: WIN-EB3ED8QNQ0M
tمعرّف تسجيل الدخول: 0x24608
Record Number: 1713
Source Name: Microsoft-Windows-Eventlog
Time Written: 20111005163136.223984-000
Event Type: تدقيق النجاح
User:



===== تقرير انهيار البرامج =====

==================================================
Process File : McSvHost.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 16/02/33 10:17:00 ص
User Name : All Users
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
Report File Size : 20,574
Report File Path : C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\AppCrash_McSvHost.exe_7f626ad2f1ba4adedaf8241c96f1d2c6d01c8d17_26770d49\Report.wer
==================================================

==================================================
Process File : Startme.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 25/02/33 07:47:25 م
User Name : All Users
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\hatem\AppData\Local\Temp\VCB\Startme.exe
Report File Size : 8,160
Report File Path : C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\AppCrash_Startme.exe_79723a13f8b5a1e3f8cda56b7f8dbe047faa65_035d86db\Report.wer
==================================================

==================================================
Process File : Startme.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 25/02/33 07:19:35 م
User Name : All Users
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\hatem\AppData\Local\Temp\VCB\Startme.exe
Report File Size : 8,160
Report File Path : C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\AppCrash_Startme.exe_79723a13f8b5a1e3f8cda56b7f8dbe047faa65_035d92cc\Report.wer
==================================================

==================================================
Process File : Startme.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 25/02/33 07:16:45 م
User Name : All Users
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\hatem\AppData\Local\Temp\VCB\Startme.exe
Report File Size : 8,160
Report File Path : C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\AppCrash_Startme.exe_79723a13f8b5a1e3f8cda56b7f8dbe047faa65_035d9eed\Report.wer
==================================================

==================================================
Process File : Startme.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 25/02/33 07:48:03 م
User Name : All Users
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\hatem\AppData\Local\Temp\VCB\Startme.exe
Report File Size : 8,160
Report File Path : C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\AppCrash_Startme.exe_cbfd9335674e42d4fc8f86d31c4fe72cd1a38_035dace1\Report.wer
==================================================

==================================================
Process File : WerFault.exe
Event Name : إيقاف التشغيل بشكل غير متوقع
Event Time : 24/02/33 01:24:43 م
User Name : All Users
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\WerFault.exe
Report File Size : 3,506
Report File Path : C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\Kernel_0_0_cab_0d35ef8c\Report.wer
==================================================

==================================================
Process File : rstrui.exe
Event Name : SystemRestore
Event Time : 12/03/33 01:31:53 م
User Name : All Users
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\rstrui.exe
Report File Size : 1,498
Report File Path : C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\NonCritical_6.1.7601_8357da1071c3b4eb2f56442ebbb8a2716b9cbe59_01cc9896\Report.wer
==================================================

==================================================
Process File : svchost.exe
Event Name : مشاكل تثبيت Windows Update
Event Time : 28/02/33 04:11:25 ص
User Name : All Users
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\svchost.exe
Report File Size : 2,078
Report File Path : C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\NonCritical_7.5.7601.17514_bed6abccf7a3ed55ea36f28ff2e41d77ae5c54ef_1c1adfba\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 11/03/33 07:30:21 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 10,922
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_5d38a1517def17a066edca44adadeebbcbb087_0711c956\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 09/03/33 11:07:58 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 10,922
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_5d38a1517def17a066edca44adadeebbcbb087_16119dc4\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 09/03/33 02:12:19 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 10,922
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_6dad305b88685da8e4c84753a535db766236a_165148c3\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 02/03/33 10:19:01 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,404
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_6dad305b88685da8e4c84753a535db766236a_16a59da5\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 11/03/33 07:05:43 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 10,922
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_74a4fd50b0782993cea8d1e9bbea0248e75e16f_15316dbf\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 05/03/33 01:22:25 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,478
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_74a4fd50b0782993cea8d1e9bbea0248e75e16f_1858a082\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 09/03/33 08:20:43 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,478
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_9a6ac6832f64b6f3eaba3f6540fb91885ccb53d4_05387485\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 12/03/33 08:36:03 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 10,996
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_9a6ac6832f64b6f3eaba3f6540fb91885ccb53d4_0664cb78\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 04/03/33 07:27:39 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,478
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_9a6ac6832f64b6f3eaba3f6540fb91885ccb53d4_13f8d661\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 12/03/33 09:02:03 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 10,922
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_9a6ac6832f64b6f3eaba3f6540fb91885ccb53d4_13fd1dbc\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 29/02/33 11:20:16 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,404
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_9a6ac6832f64b6f3eaba3f6540fb91885ccb53d4_144d97eb\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 12/03/33 01:34:48 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 10,922
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_9a6ac6832f64b6f3eaba3f6540fb91885ccb53d4_14edc715\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 09/03/33 07:45:00 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,478
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_a3d1b88ee6218f294a29a873441a1484ea1e21d_05388067\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 01/03/33 05:35:38 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,404
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_a3d1b88ee6218f294a29a873441a1484ea1e21d_0c4dabb9\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 05/03/33 08:21:21 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,404
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_a3d1b88ee6218f294a29a873441a1484ea1e21d_0d320ab9\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 08/03/33 07:57:30 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,478
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_a3d1b88ee6218f294a29a873441a1484ea1e21d_11cca4b7\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 26/02/33 10:50:26 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,478
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_a3d1b88ee6218f294a29a873441a1484ea1e21d_139508c6\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 28/02/33 08:23:39 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,404
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_a3d1b88ee6218f294a29a873441a1484ea1e21d_145d97eb\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 04/03/33 08:17:48 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,404
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_a3d1b88ee6218f294a29a873441a1484ea1e21d_1515a968\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 01/03/33 06:47:03 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,404
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_a3d1b88ee6218f294a29a873441a1484ea1e21d_153d818d\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 10/03/33 05:31:44 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,404
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_a3d1b88ee6218f294a29a873441a1484ea1e21d_1609bac6\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 10/03/33 06:31:06 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,404
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_a3d1b88ee6218f294a29a873441a1484ea1e21d_1621cfeb\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 09/03/33 01:16:46 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,478
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_cbae392b5217d6af9682a8b4d668b2df74aa_05388cf4\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 04/03/33 11:35:44 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,478
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_cbae392b5217d6af9682a8b4d668b2df74aa_1128b135\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 28/02/33 10:27:53 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 10,922
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_cbae392b5217d6af9682a8b4d668b2df74aa_13951583\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 29/02/33 11:54:02 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,404
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_f51478f7d19036436c80457f4bcc6544a3b5b5_1459abb9\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 12/03/33 01:32:05 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 10,922
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_f51478f7d19036436c80457f4bcc6544a3b5b5_15d1e85b\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 12/03/33 01:20:52 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 10,922
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_f85492474195adc217adae77e43c17a9a1ad857_02458d8f\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 07/03/33 10:52:58 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,478
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_f85492474195adc217adae77e43c17a9a1ad857_12d4c580\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 26/02/33 05:54:34 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,478
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_f85492474195adc217adae77e43c17a9a1ad857_13952201\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 07/03/33 03:52:44 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,404
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_f85492474195adc217adae77e43c17a9a1ad857_1689974f\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 07/03/33 09:58:35 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 11,478
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_f85492474195adc217adae77e43c17a9a1ad857_19e0a228\Report.wer
==================================================

==================================================
Process File : PCCompanion.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 13/03/33 04:02:30 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
Report File Size : 10,922
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_PCCompanion.exe_f85492474195adc217adae77e43c17a9a1ad857_1b13bcd9\Report.wer
==================================================

==================================================
Process File : Pexplore.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 28/02/33 03:57:51 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\Pexplore.exe
Report File Size : 9,334
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_Pexplore.exe_3c79437eea211a92b4ddd2327bb60f80afadb_1d266aa9\Report.wer
==================================================

==================================================
Process File : Pexplore.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 28/02/33 03:57:40 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\Pexplore.exe
Report File Size : 9,334
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_Pexplore.exe_3c79437eea211a92b4ddd2327bb60f80afadb_231a53df\Report.wer
==================================================

==================================================
Process File : Pexplore.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 28/02/33 03:57:53 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\Pexplore.exe
Report File Size : 9,334
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_Pexplore.exe_3c79437eea211a92b4ddd2327bb60f80afadb_26927515\Report.wer
==================================================

==================================================
Process File : rundll32.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 12/03/33 08:38:00 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\SysWOW64\rundll32.exe
Report File Size : 9,268
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_rundll32.exe_b9679befd59fb8881ab2489b93a2cb4e96e88ca8_085f2e9e\Report.wer
==================================================

==================================================
Process File : rundll32.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 01/03/33 05:39:24 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\SysWOW64\rundll32.exe
Report File Size : 9,268
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_rundll32.exe_b9679befd59fb8881ab2489b93a2cb4e96e88ca8_131cd632\Report.wer
==================================================

==================================================
Process File : rundll32.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 28/02/33 08:25:52 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\SysWOW64\rundll32.exe
Report File Size : 9,352
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_rundll32.exe_f68efcc26e8ef1dba434ccca51a63fa8bee09579_12c3402a\Report.wer
==================================================

==================================================
Process File : UIMain.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/02/33 08:29:40 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\ZTE Connection Manager\UIMain.exe
Report File Size : 21,492
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_UIMain.exe_6e7430161e943711ec152f9e725c6ce5cc9947e2_10f26775\Report.wer
==================================================

==================================================
Process File : UIMain.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 18/02/33 06:53:34 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\ZTE Connection Manager\UIMain.exe
Report File Size : 22,214
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_UIMain.exe_6e7430161e943711ec152f9e725c6ce5cc9947e2_18c9eaa6\Report.wer
==================================================

==================================================
Process File : UIMain.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 16/02/33 08:11:09 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\ZTE Connection Manager\UIMain.exe
Report File Size : 21,492
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_UIMain.exe_6e7430161e943711ec152f9e725c6ce5cc9947e2_2d22d1ab\Report.wer
==================================================

==================================================
Process File : UIMain.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 20/02/33 06:42:57 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\ZTE Connection Manager\UIMain.exe
Report File Size : 21,492
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_UIMain.exe_6e7430161e943711ec152f9e725c6ce5cc9947e2_42703339\Report.wer
==================================================

==================================================
Process File : UIMain.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 08/03/33 09:10:30 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\ZTE Connection Manager\UIMain.exe
Report File Size : 21,240
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_UIMain.exe_95f2d8e46211767e47a48af32f17dd85fe8cc1b4_053898d6\Report.wer
==================================================

==================================================
Process File : UIMain.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 08/02/33 03:44:14 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\ZTE Connection Manager\UIMain.exe
Report File Size : 21,352
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_UIMain.exe_95f2d8e46211767e47a48af32f17dd85fe8cc1b4_13952e6f\Report.wer
==================================================

==================================================
Process File : UIMain.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 08/02/33 08:31:54 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\ZTE Connection Manager\UIMain.exe
Report File Size : 21,352
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_UIMain.exe_95f2d8e46211767e47a48af32f17dd85fe8cc1b4_13953ace\Report.wer
==================================================

==================================================
Process File : UIMain.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 01/02/33 10:26:24 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\ZTE Connection Manager\UIMain.exe
Report File Size : 20,866
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_UIMain.exe_95f2d8e46211767e47a48af32f17dd85fe8cc1b4_139546b0\Report.wer
==================================================

==================================================
Process File : WINWORDC.EXE
Event Name : ‏‏توقف عن الاستجابة وتم إغلاقه
Event Time : 18/02/33 07:36:01 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : Q:\140066.ara\Office14\WINWORDC.EXE
Report File Size : 13,960
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppHang_WINWORDC.EXE_1516fe7593ca59a5e391d0a88f12ad101e1bfe4b_1560de96\Report.wer
==================================================

==================================================
Process File : Explorer.EXE
Event Name : ‏‏قام المستخدم بإلغاء تنقل معلق.
Event Time : 09/03/33 08:22:07 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\Explorer.EXE
Report File Size : 19,362
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppHang_{F3364BA0-65B9-1_03f722b1c3a9f7342b324b90c4342939636d4_0538a46a\Report.wer
==================================================

==================================================
Process File : iexplore.exe
Event Name : ‏‏توقف عن الاستجابة وتم إغلاقه
Event Time : 30/01/33 10:38:41 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files (x86)\Internet Explorer\iexplore.exe
Report File Size : 3,534
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\Critical_iexplore.exe_2d783a7d07ca9dabd5779f733f8c6d424a9f99_06394d8d\Report.wer
==================================================

==================================================
Process File : msdt.exe
Event Name : ‏‏لم يتم إصلاح المشكلة
Event Time : 30/01/33 01:51:11 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\system32\msdt.exe
Report File Size : 1,650
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\NonCritical_Microsoft Window_bd5996727e9ea1acda90841fa2c99a88df4fb9d6_1f19f3b1\Report.wer
==================================================

==================================================
Process File : rundll32.exe
Event Name : برنامج التشغيل العام المثبت
Event Time : 09/02/33 06:43:54 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\rundll32.exe
Report File Size : 1,734
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_088676ddf3e6fdb9e99b5a1876b4e1398fd_139552ef\Report.wer
==================================================

==================================================
Process File : rundll32.exe
Event Name : برنامج التشغيل العام المثبت
Event Time : 25/02/33 07:15:54 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\rundll32.exe
Report File Size : 1,736
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_3cbea4eb87cac53930f153ea8e5a8befffee35ad_13955ec2\Report.wer
==================================================

==================================================
Process File : rundll32.exe
Event Name : برنامج التشغيل العام المثبت
Event Time : 25/02/33 07:16:15 م
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\rundll32.exe
Report File Size : 1,748
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_6b50a71436a28887e3a5a3d44346fa96b8e1a6e_13956ad3\Report.wer
==================================================

==================================================
Process File : rundll32.exe
Event Name : ‏‏تعذر تحميل برنامج التشغيل
Event Time : 26/02/33 12:39:30 ص
User Name : hatem
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\rundll32.exe
Report File Size : 2,258
Report File Path : C:\Users\hatem\AppData\Local\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_8dd2a6bea57836935d86a299b4735d5c6f632592_13957712\Report.wer
==================================================

==================================================
Process File : McSvHost.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 16/02/33 10:17:00 ص
User Name :
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
Report File Size : 20,574
Report File Path : C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_McSvHost.exe_7f626ad2f1ba4adedaf8241c96f1d2c6d01c8d17_26770d49\Report.wer
==================================================

==================================================
Process File : Startme.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 25/02/33 07:47:25 م
User Name :
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\hatem\AppData\Local\Temp\VCB\Startme.exe
Report File Size : 8,160
Report File Path : C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_Startme.exe_79723a13f8b5a1e3f8cda56b7f8dbe047faa65_035d86db\Report.wer
==================================================

==================================================
Process File : Startme.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 25/02/33 07:19:35 م
User Name :
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\hatem\AppData\Local\Temp\VCB\Startme.exe
Report File Size : 8,160
Report File Path : C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_Startme.exe_79723a13f8b5a1e3f8cda56b7f8dbe047faa65_035d92cc\Report.wer
==================================================

==================================================
Process File : Startme.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 25/02/33 07:16:45 م
User Name :
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\hatem\AppData\Local\Temp\VCB\Startme.exe
Report File Size : 8,160
Report File Path : C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_Startme.exe_79723a13f8b5a1e3f8cda56b7f8dbe047faa65_035d9eed\Report.wer
==================================================

==================================================
Process File : Startme.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 25/02/33 07:48:03 م
User Name :
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\hatem\AppData\Local\Temp\VCB\Startme.exe
Report File Size : 8,160
Report File Path : C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_Startme.exe_cbfd9335674e42d4fc8f86d31c4fe72cd1a38_035dace1\Report.wer
==================================================

==================================================
Process File : WerFault.exe
Event Name : إيقاف التشغيل بشكل غير متوقع
Event Time : 24/02/33 01:24:43 م
User Name :
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\WerFault.exe
Report File Size : 3,506
Report File Path : C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_0_0_cab_0d35ef8c\Report.wer
==================================================

==================================================
Process File : rstrui.exe
Event Name : SystemRestore
Event Time : 12/03/33 01:31:53 م
User Name :
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\rstrui.exe
Report File Size : 1,498
Report File Path : C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_6.1.7601_8357da1071c3b4eb2f56442ebbb8a2716b9cbe59_01cc9896\Report.wer
==================================================

==================================================
Process File : svchost.exe
Event Name : مشاكل تثبيت Windows Update
Event Time : 28/02/33 04:11:25 ص
User Name :
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\svchost.exe
Report File Size : 2,078
Report File Path : C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_7.5.7601.17514_bed6abccf7a3ed55ea36f28ff2e41d77ae5c54ef_1c1adfba\Report.wer
==================================================




===== تقرير الشاشة الزرقاء =====

==================================================
Dump File : 011812-33119-01.dmp
Crash Time : 24/02/33 01:24:18 م
Bug Check String : DRIVER_IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x000000d1
Parameter 1 : 00000000`00000040
Parameter 2 : 00000000`00000002
Parameter 3 : 00000000`00000000
Parameter 4 : fffff880`05892c4d
Caused By Driver : ZTEusbnmea.sys
Caused By Address : ZTEusbnmea.sys+2c4d
File Description :
Product Name :
Company :
File Version :
Processor : x64
Computer Name :
Full Path : C:\Windows\Minidump\011812-33119-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 7601
Dump File Size : 262,144
==================================================

==================================================
Dump File : 020412-29686-01.dmp
Crash Time : 12/03/33 01:19:59 م
Bug Check String : ATTEMPTED_WRITE_TO_READONLY_MEMORY
Bug Check Code : 0x000000be
Parameter 1 : fffff880`01310d78
Parameter 2 : 00000000`03d99121
Parameter 3 : fffff880`035cb660
Parameter 4 : 00000000`0000000b
Caused By Driver : avc3.sys
Caused By Address : avc3.sys+6d78
File Description :
Product Name :
Company :
File Version :
Processor : x64
Computer Name :
Full Path : C:\Windows\Minidump\020412-29686-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 7601
Dump File Size : 262,144
==================================================

==================================================
Dump File : 020512-26270-01.dmp
Crash Time : 13/03/33 03:58:59 م
Bug Check String : ATTEMPTED_WRITE_TO_READONLY_MEMORY
Bug Check Code : 0x000000be
Parameter 1 : fffff880`012fdd78
Parameter 2 : 00000000`03d86121
Parameter 3 : fffff880`035b6660
Parameter 4 : 00000000`0000000b
Caused By Driver : avc3.sys
Caused By Address : avc3.sys+6d78
File Description :
Product Name :
Company :
File Version :
Processor : x64
Computer Name :
Full Path : C:\Windows\Minidump\020512-26270-01.dmp
Processors Count : 4
Major Version : 15
Minor Version : 7601
Dump File Size : 262,144
==================================================

 


====== معلومات نظام التشغيل ======

X64 WIN_7 7601 Service Pack 1


====== قائمة البرامج المثبتة ======

Adobe Reader X (10.1.2) MUI
Atheros Driver Installation Program
Bejeweled 2 Deluxe
Bejeweled 3
Chicken Invaders 3 - Revenge of the Yolk
Chuzzle Deluxe
Contrôle ActiveX Windows Live Mesh pour connexions à distance
Controlo ActiveX do Windows Live Mesh para Ligaç?es Remotas
D3DX10
Definition update for Microsoft Office 2010 (KB982726) 32-Bit Edition
Diner Dash 2 Restaurant Rescue
FATE
Final Drive: Nitro
Galeria de Fotografias do Windows Live
Galerie de photos Windows Live
Google Chrome
Google Toolbar for Internet Explorer
Google Toolbar for Internet Explorer
Google Update Helper
High-Definition Video Playback
Hotspot Shield 2.24
Insaniquarium Deluxe
Intel(R) Management Engine Components
Intel(R) Processor Graphics
Intel(R) Rapid Storage Technology
Java Auto Updater
Java(TM) 6 Update 30
Junk Mail filter update
KinoniDrivers 2.4
K-Lite Mega Codec Pack 5.9.0
Media Go
Mesh Runtime
MetaTrader 4 at FOREX.com
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office Access MUI (Arabic) 2010
Microsoft Office Excel MUI (Arabic) 2010
Microsoft Office Home and Student 2010
Microsoft Office OneNote MUI (Arabic) 2010
Microsoft Office Outlook MUI (Arabic) 2010
Microsoft Office PowerPoint MUI (Arabic) 2010
Microsoft Office Proof (Arabic) 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (French) 2010
Microsoft Office Proofing (Arabic) 2010
Microsoft Office Publisher MUI (Arabic) 2010
Microsoft Office Shared MUI (Arabic) 2010
Microsoft Office Single Image 2010
Microsoft Office Word MUI (Arabic) 2010
Microsoft Primary Interoperability Assemblies 2005
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable - KB2467175
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
MSVCRT
MSVCRT_amd64
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MV2Player (remove only)
Nero 10 Movie ThemePack Basic
Nero BackItUp 10
Nero BackItUp 10 Help (CHM)
Nero BurnRights 10
Nero BurnRights 10 Help (CHM)
Nero Control Center 10
Nero ControlCenter 10 Help (CHM)
Nero Core Components 10
Nero Express 10
Nero Express 10 Help (CHM)
Nero InfoTool 10
Nero InfoTool 10 Help (CHM)
Nero Kwik Media
Nero Multimedia Suite 10 Essentials
Nero RescueAgent 10
Nero RescueAgent 10 Help (CHM)
Nero StartSmart 10
Nero StartSmart 10 Help (CHM)
Nero Update
NeroKwikMedia Help (CHM)
Penguins!
Plants vs. Zombies - Game of the Year
PlayStation(R)Network Downloader
PlayStation(R)Store
Polar Bowler
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealPlayer
Realtek Ethernet Controller Driver
Realtek High Definition Audio Driver
Realtek USB 2.0 Card Reader
RealUpgrade 1.1
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft Office 2010 (KB2553091)
Security Update for Microsoft Office 2010 (KB2553096)
Security Update for Microsoft Office 2010 (KB2553353) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2589320) 32-Bit Edition
Security Update for Microsoft PowerPoint 2010 (KB2553185) 32-Bit Edition
Security Update for Microsoft SharePoint Workspace 2010 (KB2566445)
Skype™ 5.3
Slingo Deluxe
Sony Ericsson PC Companion 2.02.015
Sony Ericsson Update Engine
TOSHIBA Assist
TOSHIBA Bulletin Board
TOSHIBA ConfigFree
TOSHIBA Face Recognition
TOSHIBA Flash Cards Support Utility
TOSHIBA Flash Cards Support Utility
TOSHIBA Hardware Setup
TOSHIBA Hardware Setup
TOSHIBA HDD/SSD Alert
TOSHIBA HDD/SSD Alert
Toshiba Manuals
TOSHIBA Media Controller
TOSHIBA Media Controller Plug-in
TOSHIBA Online Product Information
TOSHIBA Places Icon Utility
TOSHIBA Recovery Media Creator
TOSHIBA Recovery Media Creator Reminder
TOSHIBA Recovery Media Creator Reminder
TOSHIBA ReelTime
TOSHIBA Resolution+ Plug-in for Windows Media Player
TOSHIBA Service Station
TOSHIBA Supervisor Password
TOSHIBA Supervisor Password
TOSHIBA TEMPRO
TOSHIBA Value Added Package
TOSHIBA Value Added Package
TOSHIBA Web Camera Application
TOSHIBA Web Camera Application
TOSHIBA Wireless LAN Indicator
TRORMCLauncher
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft Excel 2010 (KB2553439) 32-Bit Edition
Update for Microsoft Office 2010 (KB2494150)
Update for Microsoft Office 2010 (KB2553065)
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553385) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553455) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553455) 32-Bit Edition
Update for Microsoft Office 2010 (KB2566458)
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition
Update for Microsoft Outlook 2010 (KB2553323) 32-Bit Edition
Update for Microsoft Outlook Social Connector (KB2583935)
Update for Microsoft Outlook Social Connector (KB2583935)
Update Installer for WildTangent Games App
Utility Common Driver
Utility Common Driver
Uzak Ba?lant?lar ?çin Windows Live Mesh ActiveX Denetimi
Wedding Dash 2 - Rings Around the World
WildTangent Games
WildTangent Games App (Toshiba Games)
Windows Live
Windows Live Communications Platform
Windows Live Essentials
Windows Live Essentials
Windows Live Essentials
Windows Live Essentials
Windows Live Foto?raf Galerisi
Windows Live Installer
Windows Live Mail
Windows Live Mail
Windows Live Mail
Windows Live Mail
Windows Live Mail
Windows Live Mesh
Windows Live Mesh
Windows Live Mesh
Windows Live Mesh
Windows Live Mesh
Windows Live Mesh
Windows Live Mesh ActiveX Control for Remote Connections
Windows Live Messenger
Windows Live Messenger
Windows Live Messenger
Windows Live Messenger
Windows Live Messenger
Windows Live Messenger
Windows Live Movie Maker
Windows Live Movie Maker
Windows Live Movie Maker
Windows Live Movie Maker
Windows Live Movie Maker
Windows Live Movie Maker
Windows Live Photo Common
Windows Live Photo Common
Windows Live Photo Common
Windows Live Photo Common
Windows Live Photo Common
Windows Live Photo Common
Windows Live Photo Gallery
Windows Live Photo Gallery
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live Temel Parçalar
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live UX Platform Language Pack
Windows Live UX Platform Language Pack
Windows Live UX Platform Language Pack
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer
Windows Live Writer
Windows Live Writer
Windows Live Writer
Windows Live Writer
Windows Live Writer
Windows Live Writer Resources
Windows Live Writer Resources
Windows Live Writer Resources
Windows Live Writer Resources
Windows Live Writer Resources
ZTE Connection Manager
Zuma Deluxe
التشغيل الفوري Microsoft Office 2010
بريد Windows Live
عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة
معرض صور Windows Live

 
اسعد الله صباحكم
ياليت لو يفزع لي احد الأخوة ويساعدني في قراءة التقارير​
 
مساء الخير
هل من مساعدة
 
اهلا بك اخي
الشاشة الزرقاء بسبب الحماية البيتدفيندر ومودم الكونكت
اعمل تقرير رن سكنر لو سمحت
 


مثل ما تفضل اخونا / ماكس


..


تضارب بين درايفرين


>>>>


وحدة فحص الدرايفرات ببرنامج : البيت دفندر

Active Virus Control filter driver


حظرت درايفر مودم الكونكت


لو تقدر تعمل استثناء لمسار الدرايفر >> عشان مايحظره >> فيسبب تعليق ثم شاشه زرقاء


.......


مسار الدرايفر


%SYSDIR%\DRIVERS\ZTEusbnmea.sys



ضعه في الاستثناءات من الفحص والحمايه التلقائيه
" الفوريه "



 
توقيع : الخفـوق

احذف البرامج التاليه :

من اضافه / ازالة البرامج

Google Toolbar
Hotspot Shield 2.24

- - - - - -

حمل ملف الرن سكنر التالي :

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



نفس الطريقه التاليه :

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي






- - - - - - -



+


عطل تعريف الايثاروس من ادارة الاجهزه بالطريقه التاليه :


تروح لجهاز الكمبيوتر من على سطح المكتب
كليك يمين
تختار اداره / Mange
بتفتح معك نافذه

تضغط على ادارة الاجهزه



iVMyx17hhUmu1.PNG

 
توقيع : الخفـوق
الأساتذة الكرام
الأخ ماكس
الأخ الخفوق
اعجز عن شكركم ولا املك لكم إلا الدعاء بالتوفيق والسداد بالدنيا والآخرة
تم تنفيذ جمع توجيهاتكم وسوف اتابع الجهاز خلال 48 ساعة وإن شاء الله تكون كل مشاكله انحلت​
 
عودة
أعلى