المستحيل 2

زيزوومى متألق
إنضم
18 أكتوبر 2007
المشاركات
342
مستوى التفاعل
65
النقاط
440
الإقامة
يسي
غير متصل
تقرير هيجك
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 07:10:38 م, on 13/02/12
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Ad Muncher\AdMunch.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\TechSmith\Snagit 10\Snagit32.exe
C:\Program Files\TechSmith\Snagit 10\TSCHelp.exe
C:\Program Files\TechSmith\Snagit 10\SnagPriv.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\TechSmith\Snagit 10\snagiteditor.exe
C:\Windows\Explorer.EXE
C:\Users\qwex\Desktop\bluescreenview\BlueScreenView.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Zyzoom_Forum_Tools\zyzoom.exe
C:\Zyzoom_Forum_Tools\zHijak.com

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: SnagIt Toolbar Loader - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\Snagit 10\SnagitBHO.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Snagit - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\Snagit 10\SnagitIEAddin.dll
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [Ad Muncher] "C:\Program Files\Ad Muncher\AdMunch.exe" /bt
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [Update] C:\Users\qwex\AppData\Roaming\Drivers\av5tg9cdll.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: PalTalk.lnk = C:\Program Files\Paltalk Messenger\paltalk.exe
O4 - Global Startup: Snagit 10.lnk = C:\Program Files\TechSmith\Snagit 10\Snagit32.exe
O8 - Extra context menu item: Block frame with Ad Muncher -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O8 - Extra context menu item: Block image with Ad Muncher -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O8 - Extra context menu item: Block link with Ad Muncher -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O8 - Extra context menu item: Don't filter page with Ad Muncher -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Report page to the Ad Muncher developers -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O8 - Extra context menu item: إر&سال إلى OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: ت&صدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Avira FireWall (AntiVirFirewallService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe
O23 - Service: Avira Mail Protection (AntiVirMailService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Web Protection (AntiVirWebService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
O23 - Service: Ast Service - Nalpeiron Ltd. - C:\Windows\system32\\AstSrv.exe

--
End of file - 6900 bytes




====== معلومات نظام التشغيل ======

X86 WIN_7 7601 Service Pack 1


====== قائمة البرامج المثبتة ======

Update for Microsoft Office 2007 (KB2508958)
Ad Muncher v4.91 Build 32562
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Ashampoo Burning Studio 10 v.10.0.15
Avira Internet Security 2012
CCleaner
Foxit Phantom 2.2.3.1112 By MMZahyan
Internet Download Manager
Java Auto Updater
Java(TM) 6 Update 30
MetaStock Professional 11.0
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Client Profile ARA Language Pack
Microsoft Office 2007 Primary Interop Assemblies
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Access MUI (Arabic) 2007
Microsoft Office Enterprise 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (Arabic) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (Arabic) 2007
Microsoft Office InfoPath MUI (Arabic) 2007
Microsoft Office OneNote MUI (Arabic) 2007
Microsoft Office Outlook MUI (Arabic) 2007
Microsoft Office PowerPoint MUI (Arabic) 2007
Microsoft Office Proof (Arabic) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proofing (Arabic) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Publisher MUI (Arabic) 2007
Microsoft Office Shared MUI (Arabic) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Word MUI (Arabic) 2007
Microsoft Silverlight
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft Windows Debugging Symbols
Mozilla Firefox 10.0.1 (x86 ar)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Paltalk Messenger
PCI SoftV92 Modem
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for حزمة اللغة العربية لـ Microsoft .NET Framework 4 (KB2478663)
Security Update for حزمة اللغة العربية لـ Microsoft .NET Framework 4 (KB2518870)
Snagit 10.0.1
Tag Cambridge Exams Demo 3.7.0.2
TickerChartLive
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 suites (KB2596686) 32-Bit Edition
Update for Microsoft Office Script Editor Help (KB963671)
VLC media player 1.1.11
vShare.tv plugin 1.3
Windows Media Player Firefox Plugin
WinRAR 4.00 (32-bit)
Your Uninstaller! 7
تحديث لـ Microsoft Office Excel 2007 Help (KB963678)
تحديث لـ Microsoft Office Powerpoint 2007 Help (KB963669)
تحديث لـ Microsoft Office Word 2007 Help (KB963665)
حزمة اللغة العربية لـ Microsoft .NET Framework 4

runscanner
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



تقرير bluescreenview
==================================================
Filename : ntkrnlpa.exe
Address In Stack : ntkrnlpa.exe+12187b
From Address : 0x82a48000
To Address : 0x82e5a000
Size : 0x00412000
Time Stamp : 0x4ea76eb4
Time String : 28/11/32 05:21:40 ص
Product Name : Microsoft® Windows® Operating System
File Description : NT Kernel & System
File Version : 6.1.7601.17713 (win7sp1_gdr.111025-1505)
Company : Microsoft Corporation
Full Path : C:\Windows\system32\ntkrnlpa.exe
==================================================
 

فينكم يااحبه
 
اهلا بك
اعمل التالي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

تفضل
Malwarebytes' Anti-Malware 1.51.2.1300
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


Database version: 912021405

Windows 6.1.7601 Service Pack 1
Internet Explorer 8.0.7601.17514

14/02/12 11:44:11 م
mbam-log-2012-02-14 (23-44-11).txt

Scan type: Full scan (A:\|C:\|D:\|E:\|F:\|)
Objects scanned: 265739
Time elapsed: 24 minute(s), 41 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)
 
اعمل تقرير رن سكنر

واعمل صورة لحرارة الجهاز

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
 
توقيع : M.$py.M
الحرارة عادية

اخي اعمل على التالي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي






عملت نفس الخطوات لكن لم اجد ملفات فيltemfixer
علما انهيت جميع الخطوات كلها
.........................................
كذالك عندي مشكلة اذا اغلاقة الجهاز وشغلته تظهر رساله خطا في تشغيل المستكشف ثم يغلق المستكشف ويشتعل من جديد
ومشكله في المتصفح فيرفكس كل شوي يغلق من حاله وخاصة في اليوتوب هل اطرح المشاك في موضوع خاص او هذا يكفي
 
حمل ملف رن سكنر التالي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


وطبق عليه خطوات التنظيف


وهل ترتفع حرارة الجهاز اكثر ؟
 
من اداة الصيانة اعمل تقرير سجلات النظام والاخطاء
 
من اداة الصيانة اعمل تقرير سجلات النظام والاخطاء
تفضل



====== سجل أخطاء النظام ======

Computer Name: 37L4247F27-08
Event Code: 7036
Message: ‏‏دخلت الخدمة Plug and Play في حالة stopped.
Record Number: 5
Source Name: Service Control Manager
Time Written: 20101120215742.697406-000
Event Type: معلومات
User:

Computer Name: 37L4247F27-08
Event Code: 20010
Message: ‏‏قام واحد أو أكثر من الأنظمة الفرعية الخاصة بأجهزة "التوصيل والتشغيل" بتغيير الحالة.

تم تمكين النظام الفرعي لتثبيت PlugPlay: 'false'
تم تمكين النظام الفرعي للتخزين المؤقت لـ PlugPlay: 'false'

Record Number: 4
Source Name: Microsoft-Windows-UserPnp
Time Written: 20101120215742.697406-000
Event Type: معلومات
User: NT AUTHORITY\SYSTEM

Computer Name: 37L4247F27-08
Event Code: 7036
Message: ‏‏دخلت الخدمة Software Protection في حالة stopped.
Record Number: 3
Source Name: Service Control Manager
Time Written: 20101120215742.479005-000
Event Type: معلومات
User:

Computer Name: 37L4247F27-08
Event Code: 7036
Message: ‏‏دخلت الخدمة Windows Event Log في حالة stopped.
Record Number: 2
Source Name: Service Control Manager
Time Written: 20101120215742.338605-000
Event Type: معلومات
User:

Computer Name: 37L4247F27-08
Event Code: 7036
Message: ‏‏دخلت الخدمة Volume Shadow Copy في حالة stopped.
Record Number: 1
Source Name: Service Control Manager
Time Written: 20101120215742.323005-000
Event Type: معلومات
User:



===== سجل أخطاء البرامج =====

Computer Name: 37L4247F27-08
Event Code: 1001
Message: ‏‏المستودع الذي يحتوي على أخطاء , النوع 0
اسم الحدث: PnPRequestAdditionalSoftware
الاستجابة: غير متوفر
معرف ملف الخزانة: 0

توقيع المشكلة:
P1: x86
P2: USB\VID_0458&PID_003A&REV_0100
P3: 6.1.1.0
P4: 0401
P5: input.inf
P6: *
P7:
P8:
P9:
P10:

الملفات المرفقة:

قد تكون هذه الملفات متوفرة هنا:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x86_d9605397d0c7bc94d1e98a7199e8c611138d280_cab_01026c2a

رمز التحليل:
إعادة البحث عن حل: 0
معرف التقرير: efaccc95-07db-11e1-b1b5-dc16be8936ce
حالة التقرير: 6
Record Number: 5
Source Name: Windows Error Reporting
Time Written: 20111105182820.000000-000
Event Type: معلومات
User:

Computer Name: 37L4247F27-08
Event Code: 5617
Message: Windows Management Instrumentation Service subsystems initialized successfully
Record Number: 4
Source Name: Microsoft-Windows-WMI
Time Written: 20111105182654.000000-000
Event Type: معلومات
User:

Computer Name: 37L4247F27-08
Event Code: 5615
Message: Windows Management Instrumentation Service started sucessfully
Record Number: 3
Source Name: Microsoft-Windows-WMI
Time Written: 20111105182649.000000-000
Event Type: معلومات
User:

Computer Name: 37L4247F27-08
Event Code: 4625
Message: ‏‏يمنع النظام الفرعي EventSystem إدخالات سجل الأحداث المتكررة لمدة 86400 ثانية. يمكن التحكم في مهلة المنع بواسطة قيمة REG_DWORD تسمى SuppressDuplicateDuration تحت مفتاح التسجيل التالي: HKLM\Software\Microsoft\EventSystem\EventLog.
Record Number: 2
Source Name: Microsoft-Windows-EventSystem
Time Written: 20111105182645.000000-000
Event Type: معلومات
User:

Computer Name: 37L4247F27-08
Event Code: 1531
Message: ‏‏بدأ تشغيل خدمة ملف تعريف المستخدم بنجاح.


Record Number: 1
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20111105182644.948507-000
Event Type: معلومات
User: NT AUTHORITY\SYSTEM



===== السجل الأمني =====

Computer Name: 37L4247F27-08
Event Code: 4735
Message: ‏‏تم تغيير مجموعة محلية ذات تأمين ممكّن.

العنوان:
معرّف الأمان: S-1-5-18
اسم الحساب: 37L4247F27-08$
مجال الحساب: WORKGROUP
معرّف تسجيل الدخول: 0x3e7

المجموعة:
معرّف الأمان: S-1-5-32-551
اسم المجموعة: Backup Operators
مجال المجموعة: Builtin

السمات التي تم تغييرها:
اسم حساب SAM: -
محفوظات معرّف الأمان: -

معلومات إضافية:
الامتيازات: -
Record Number: 5
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111105182617.991660-000
Event Type: تدقيق النجاح
User:

Computer Name: 37L4247F27-08
Event Code: 4731
Message: ‏‏تم إنشاء مجموعة محلية ذات تأمين ممكّن.

العنوان:
معرّف الأمان: S-1-5-18
اسم الحساب: 37L4247F27-08$
مجال الحساب: WORKGROUP
معرّف تسجيل الدخول: 0x3e7

المجموعة الجديدة:
معرّف الأمان: S-1-5-32-551
اسم المجموعة: Backup Operators
مجال المجموعة: Builtin

السمات:
اسم حساب SAM: Backup Operators
محفوظات معرّف الأمان: -

معلومات إضافية:
الامتيازات: -
Record Number: 4
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111105182617.976060-000
Event Type: تدقيق النجاح
User:

Computer Name: 37L4247F27-08
Event Code: 4902
Message: ‏‏تم إنشاء جدول نهج التدقيق لكل مستخدم.

عدد العناصر: 0
معرّف النهج: 0x243e8
Record Number: 3
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111105182617.492459-000
Event Type: تدقيق النجاح
User:

Computer Name: 37L4247F27-08
Event Code: 4624
Message: ‏‏تم تسجيل دخول حساب بنجاح.

العنوان:
معرّف الأمان: S-1-0-0
اسم الحساب: -
مجال الحساب: -
معرّف تسجيل الدخول: 0x0

نوع تسجيل الدخول: 0

تسجيل الدخول الجديد:
معرّف الأمان: S-1-5-18
اسم الحساب: SYSTEM
مجال الحساب: NT AUTHORITY
معرّف تسجيل الدخول: 0x3e7
المعرّف الفريد العمومي لتسجيل الدخول: {00000000-0000-0000-0000-000000000000}

معلومات العملية:
معرّف العملية: 0x4
اسم العملية:

معلومات الشبكة:
اسم محطة العمل: -
عنوان الشبكة المصدر: -
المنفذ المصدر: -

معلومات المصادقة المفصّلة:
عملية تسجيل الدخول: -
حزمة المصادقة: -
الخدمات المنقولة: -
اسم الحزمة (NTLM فقط): -
طول المفتاح: 0

يتم تكوين هذا الحدث عند إنشاء جلسة عمل تسجيل دخول، كما يتم تكوينه على الكمبيوتر الذي تم الوصول إليه.

تشير حقول العناوين إلى حساب النظام المحلي الذي طالب بتسجيل الدخول. هذه عبارة عن خدمة بشكل عام (مثل خدمة "الخادم"، أو خدمة محلية مثل Winlogon.exe أو Services.exe).

يشير الحقل "نوع تسجيل الدخول" إلى نوع تسجيل الدخول الذي تم إجراؤه. أكثر أنواع تسجيل الدخول استخداماً هي 2 (محلي) و 3 (شبكة).

تشير حقول "تسجيل الدخول الجديد" إلى الحساب الذي تم إنشاء تسجيل الدخول له( الحساب الذي تم تسجيل الدخول إليه).

تشير حقول الشبكة إلى موقع تكوين طلب تسجيل دخول عن بُعد. لا يتوفر اسم محطة العمل دائماً وقد يُترك فارغاً في بعض الحالات.

توفر حقول معلومات المصادقة معلومات مفصّلة حول طلب تسجيل الدخول المحدد هذا.
- "معرّف تسجيل الدخول العمومي" عبارة عن معرّف فريد يمكن استخدامه للربط بين هذا الحدوث وحدث KDC.
- تشير "الخدمات المنقولة" إلى الخدمات الوسيطة التي شاركت في طلب تسجيل الدخول هذا.
- يشير "اسم الحزمة" إلى البروتوكول الثانوي الذي تم استخدامه من بين بروتوكولات NTLM.
- يشير "طول المفتاح" إلى طول مفتاح جلسة العمل الذي تم تكوينه. سيكون طول المفتاح 0 عند عدم طلب أية مفاتيح جلسات عمل.
Record Number: 2
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111105182614.684454-000
Event Type: تدقيق النجاح
User:

Computer Name: 37L4247F27-08
Event Code: 4608
Message: ‏‏يتم الآن بدء تشغيل Windows.

يتم تسجيل هذا الحدث عند بدء تشغيل LSASS.EXE وتهيئة نظام التدقيق.
Record Number: 1
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111105182614.575254-000
Event Type: تدقيق النجاح
User:



===== تقرير انهيار البرامج =====

==================================================
Process File : TickerChartLive.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 20/03/33 11:32:55 ص
User Name : All Users
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\UniTicker\TickerChartLive\TickerChartLive.exe
Report File Size : 24,080
Report File Path : C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\AppCrash_TickerChartLive._743c699cf253df745d13a49f7c3e61caf3c44957_081fcba7\Report.wer
==================================================

==================================================
Process File : Eqdatsrv.exe
Event Name : ‏‏توقف عن الاستجابة وتم إغلاقه
Event Time : 18/03/33 09:04:24 م
User Name : All Users
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Equis\MetaStock\Servers\Eqdatsrv.exe
Report File Size : 3,546
Report File Path : C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\Critical_Eqdatsrv.exe_42ed2ea545c15738d9565996aa9543bc484e6c_2334be5d\Report.wer
==================================================

==================================================
Process File : svchost.exe
Event Name : مشاكل تثبيت Windows Update
Event Time : 21/03/33 07:50:26 م
User Name : All Users
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\svchost.exe
Report File Size : 2,086
Report File Path : C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\NonCritical_7.5.7601.17514_95955762bfd1ebe97ead64154eb970ab72c5_0150ba79\Report.wer
==================================================

==================================================
Process File : svchost.exe
Event Name : مشاكل تثبيت Windows Update
Event Time : 21/03/33 07:50:26 م
User Name : All Users
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\svchost.exe
Report File Size : 2,086
Report File Path : C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\NonCritical_7.5.7601.17514_c542784bda6a896066222ce7fa4bd580b6c52458_0c28bf1a\Report.wer
==================================================

==================================================
Process File : MpCmdRun.exe
Event Name : MpTelemetry
Event Time : 18/03/33 09:10:42 ص
User Name : All Users
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Defender\MpCmdRun.exe
Report File Size : 2,014
Report File Path : C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\NonCritical_8024402c_eae1492941e9345dd519441a16a35f278cd6238_03908bbb\Report.wer
==================================================

==================================================
Process File : av5tg9cdll.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 02:15:04 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\AppData\Roaming\Drivers\av5tg9cdll.exe
Report File Size : 3,894
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_av5tg9cdll.exe_2ff06d5549cd726a54433068ced2f3f92b15c237_0e21fa45\Report.wer
==================================================

==================================================
Process File : av5tg9cdll.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 22/03/33 03:50:08 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\AppData\Roaming\Drivers\av5tg9cdll.exe
Report File Size : 3,894
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_av5tg9cdll.exe_2ff06d5549cd726a54433068ced2f3f92b15c237_0f13762a\Report.wer
==================================================

==================================================
Process File : av5tg9cdll.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 23/03/33 05:42:56 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\AppData\Roaming\Drivers\av5tg9cdll.exe
Report File Size : 3,894
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_av5tg9cdll.exe_392fb5a5146e66c864f6556b67e582ea12d3f1_0f892f97\Report.wer
==================================================

==================================================
Process File : av5tg9cdll.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 07:03:37 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\AppData\Roaming\Drivers\av5tg9cdll.exe
Report File Size : 3,894
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_av5tg9cdll.exe_3df4fcdc92d2f3838b3465e52e1577a0832d9_0a21d76a\Report.wer
==================================================

==================================================
Process File : av5tg9cdll.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 08:04:08 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\AppData\Roaming\Drivers\av5tg9cdll.exe
Report File Size : 3,894
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_av5tg9cdll.exe_3df4fcdc92d2f3838b3465e52e1577a0832d9_0bc55e83\Report.wer
==================================================

==================================================
Process File : av5tg9cdll.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 20/03/33 01:38:33 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\AppData\Roaming\Drivers\av5tg9cdll.exe
Report File Size : 3,894
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_av5tg9cdll.exe_3df4fcdc92d2f3838b3465e52e1577a0832d9_0f29140c\Report.wer
==================================================

==================================================
Process File : av5tg9cdll.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 20/03/33 11:30:22 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\AppData\Roaming\Drivers\av5tg9cdll.exe
Report File Size : 3,894
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_av5tg9cdll.exe_3df4fcdc92d2f3838b3465e52e1577a0832d9_0f8d4e8c\Report.wer
==================================================

==================================================
Process File : av5tg9cdll.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 22/03/33 03:53:25 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\AppData\Roaming\Drivers\av5tg9cdll.exe
Report File Size : 3,894
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_av5tg9cdll.exe_ca35fefb7de6256925b33d8f473695b643c9e88_014e735d\Report.wer
==================================================

==================================================
Process File : av5tg9cdll.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 08:40:18 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\AppData\Roaming\Drivers\av5tg9cdll.exe
Report File Size : 3,894
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_av5tg9cdll.exe_ca35fefb7de6256925b33d8f473695b643c9e88_0a017203\Report.wer
==================================================

==================================================
Process File : av5tg9cdll.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 22/03/33 01:49:22 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\AppData\Roaming\Drivers\av5tg9cdll.exe
Report File Size : 3,894
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_av5tg9cdll.exe_ca35fefb7de6256925b33d8f473695b643c9e88_0fc8e964\Report.wer
==================================================

==================================================
Process File : burningstudio10.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 18/03/33 01:48:13 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Ashampoo\Ashampoo Burning Studio 10\burningstudio10.exe
Report File Size : 18,848
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_burningstudio10._ef79be60ecb294dff963a72e69ee14f314bdd68_0c5c7f5c\Report.wer
==================================================

==================================================
Process File : DriverEasy.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 22/03/33 03:39:43 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Easeware\DriverEasy\DriverEasy.exe
Report File Size : 11,638
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_drivereasy.exe_f5e5df7561f589dc2b12ddb1ee92f864acb46_083de8ba\Report.wer
==================================================

==================================================
Process File : DriverEasy.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 22/03/33 12:22:19 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\Desktop\DriverEasy Professional v3.1.1.40990\DriverEasy Professional v3.1.1.40990\crack\DriverEasy.exe
Report File Size : 11,892
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_drivereasy.exe_f5e5df7561f589dc2b12ddb1ee92f864acb46_162cb8b7\Report.wer
==================================================

==================================================
Process File : DriverEasy.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 10:26:41 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\Desktop\DriverEasy Professional v3.1.1.40990\DriverEasy Professional v3.1.1.40990\crack\DriverEasy.exe
Report File Size : 12,288
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_drivereasy.exe_f5e5df7561f589dc2b12ddb1ee92f864acb46_235edb23\Report.wer
==================================================

==================================================
Process File : DriverEasy.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 10:26:31 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\Desktop\DriverEasy Professional v3.1.1.40990\DriverEasy Professional v3.1.1.40990\crack\DriverEasy.exe
Report File Size : 11,800
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_drivereasy.exe_f5e5df7561f589dc2b12ddb1ee92f864acb46_2432b404\Report.wer
==================================================

==================================================
Process File : DriverEasy.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 10:26:19 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\Desktop\DriverEasy Professional v3.1.1.40990\DriverEasy Professional v3.1.1.40990\crack\DriverEasy.exe
Report File Size : 12,014
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_drivereasy.exe_f5e5df7561f589dc2b12ddb1ee92f864acb46_26168537\Report.wer
==================================================

==================================================
Process File : Explorer.EXE
Event Name : ‏‏تم التوقف عن العمل
Event Time : 22/03/33 03:49:54 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\Explorer.EXE
Report File Size : 19,816
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_Explorer.EXE_14637ee6cb6ef20a9fbfddc556493d5397297c9_0f0f4e5f\Report.wer
==================================================

==================================================
Process File : Explorer.EXE
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 08:39:43 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\Explorer.EXE
Report File Size : 19,082
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_Explorer.EXE_23d330a5f9d16fecab298e9fb151f73781ba3f5_098d2625\Report.wer
==================================================

==================================================
Process File : Explorer.EXE
Event Name : ‏‏تم التوقف عن العمل
Event Time : 22/03/33 03:53:11 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\Explorer.EXE
Report File Size : 20,140
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_Explorer.EXE_3bb189f5483a1a299f6c89f690256bbb4d16339f_082648d4\Report.wer
==================================================

==================================================
Process File : explorer.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 23/03/33 05:42:50 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\explorer.exe
Report File Size : 6,664
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_explorer.exe_415e995858219bd1f79d69f0f7f014c4d27771f_0ded17a4\Report.wer
==================================================

==================================================
Process File : explorer.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 02:14:58 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\explorer.exe
Report File Size : 6,664
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_explorer.exe_429cb89c4a639de2de8bfedd2f155832f0811b_0efddf85\Report.wer
==================================================

==================================================
Process File : Explorer.EXE
Event Name : ‏‏تم التوقف عن العمل
Event Time : 23/03/33 05:42:39 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\Explorer.EXE
Report File Size : 19,482
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_Explorer.EXE_4ec1941b4a2264ffd7a84985629fb86d61438a_0c49075f\Report.wer
==================================================

==================================================
Process File : explorer.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 20/03/33 01:38:21 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\explorer.exe
Report File Size : 6,664
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_explorer.exe_554211bd42372728c93cac5ce54de15a460dbfc_0dace925\Report.wer
==================================================

==================================================
Process File : explorer.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 20/03/33 11:30:16 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\explorer.exe
Report File Size : 6,664
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_explorer.exe_6968e66ac32bd82e6ae96bf2368671cbed6ab957_0e293706\Report.wer
==================================================

==================================================
Process File : Explorer.EXE
Event Name : ‏‏تم التوقف عن العمل
Event Time : 22/03/33 01:49:07 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\Explorer.EXE
Report File Size : 19,736
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_Explorer.EXE_78d3d274b76df215522b6f313581402db607c5e_0c3cbaf5\Report.wer
==================================================

==================================================
Process File : Explorer.EXE
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 08:03:39 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\Explorer.EXE
Report File Size : 19,072
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_Explorer.EXE_7b4fd8ea38d13164832a9938bb5c978e3c7db34_090d10a2\Report.wer
==================================================

==================================================
Process File : Explorer.EXE
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 07:03:14 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\Explorer.EXE
Report File Size : 21,054
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_Explorer.EXE_819a80ab1189d325349cc2b5c672abf01f331b49_0cd98cd3\Report.wer
==================================================

==================================================
Process File : explorer.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 08:40:09 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\explorer.exe
Report File Size : 6,664
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_explorer.exe_99dd2824a58c5c1b3bb6536cf29d1e6585f76_0e615282\Report.wer
==================================================

==================================================
Process File : Explorer.EXE
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 02:14:41 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\Explorer.EXE
Report File Size : 19,958
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_Explorer.EXE_a3d0325675324e1b88df803260d9a6847ee68f56_0c15c495\Report.wer
==================================================

==================================================
Process File : Explorer.EXE
Event Name : ‏‏تم التوقف عن العمل
Event Time : 20/03/33 11:29:58 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\Explorer.EXE
Report File Size : 17,764
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_Explorer.EXE_de1289902cc7331837afb35aaa6a889ea4dae55_0a391cb3\Report.wer
==================================================

==================================================
Process File : explorer.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 22/03/33 03:53:18 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\explorer.exe
Report File Size : 6,664
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_explorer.exe_e3df9c98d1aa6a972a67e18363dd2e284204_08be5c44\Report.wer
==================================================

==================================================
Process File : explorer.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 08:03:55 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\explorer.exe
Report File Size : 6,664
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_explorer.exe_e3df9c98d1aa6a972a67e18363dd2e284204_0e1542c9\Report.wer
==================================================

==================================================
Process File : explorer.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 22/03/33 01:49:16 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\explorer.exe
Report File Size : 6,664
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_explorer.exe_fdbb12672db6e8161a15e068745ba9c3399cac0_0e18ca02\Report.wer
==================================================

==================================================
Process File : explorer.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 22/03/33 03:50:03 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\explorer.exe
Report File Size : 6,664
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_explorer.exe_fdbb12672db6e8161a15e068745ba9c3399cac0_0fff5e28\Report.wer
==================================================

==================================================
Process File : explorer.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 21/03/33 07:03:29 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\explorer.exe
Report File Size : 6,664
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_explorer.exe_fe413b7b7816703bf996869f7c0948f6eb9bb72_0f4dbc6b\Report.wer
==================================================

==================================================
Process File : Explorer.EXE
Event Name : ‏‏تم التوقف عن العمل
Event Time : 20/03/33 01:38:12 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\Explorer.EXE
Report File Size : 18,176
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_Explorer.EXE_ffcd7e458237bd55d0e38cd52f6a97bda46411_0b64d622\Report.wer
==================================================

==================================================
Process File : firefox.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 22/03/33 01:22:03 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Mozilla Firefox\firefox.exe
Report File Size : 16,240
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_6deee7cf97186ebe68c472dddbcf7a5ebee6c264_37ef15fc\Report.wer
==================================================

==================================================
Process File : TickerChartLive.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 23/03/33 01:33:31 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\UniTicker\TickerChartLive\TickerChartLive.exe
Report File Size : 24,142
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_TickerChartLive._ca316f2b1f4a817d337f9d762261f24429a_326c14b0\Report.wer
==================================================

==================================================
Process File : burningstudio10.exe
Event Name : ‏‏توقف عن الاستجابة وتم إغلاقه
Event Time : 18/03/33 08:29:46 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Ashampoo\Ashampoo Burning Studio 10\burningstudio10.exe
Report File Size : 16,722
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppHang_burningstudio10._4139237e13fc51da84b380ebeb5c8cf055a4_85dd1996\Report.wer
==================================================

==================================================
Process File : mbam.exe
Event Name : ‏‏توقف عن الاستجابة وتم إغلاقه
Event Time : 22/03/33 11:18:13 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Users\qwex\AppData\Local\Temp\zxq2\mbam.exe
Report File Size : 11,386
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppHang_mbam.exe_662e8fd8c1f097b1abdd973ae1a7430b5536b31_1d70fa9b\Report.wer
==================================================

==================================================
Process File : wordpad.exe
Event Name : ‏‏توقف عن الاستجابة وتم إغلاقه
Event Time : 22/03/33 02:40:18 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows NT\Accessories\wordpad.exe
Report File Size : 9,516
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppHang_wordpad.exe_aed03a31fe249438518ee645e0c267f27dd2468c_03f38e6a\Report.wer
==================================================

==================================================
Process File : Explorer.EXE
Event Name : ‏‏قام المستخدم بإلغاء تنقل معلق.
Event Time : 18/03/33 08:53:45 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\Explorer.EXE
Report File Size : 25,212
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppHang_{FBEB8A05-BEEE-4_a5a9b3385cb701f34b3232a38913e74696a11_06b2f9f6\Report.wer
==================================================

==================================================
Process File : Explorer.EXE
Event Name : ‏‏قام المستخدم بإلغاء تنقل معلق.
Event Time : 20/03/33 08:53:24 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\Explorer.EXE
Report File Size : 23,888
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppHang_{FBEB8A05-BEEE-4_a5a9b3385cb701f34b3232a38913e74696a11_11833875\Report.wer
==================================================

==================================================
Process File : WerFault.exe
Event Name : إيقاف التشغيل بشكل غير متوقع
Event Time : 21/03/33 02:13:58 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\WerFault.exe
Report File Size : 4,480
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\Kernel_0_0_cab_034b941e\Report.wer
==================================================

==================================================
Process File : WerFault.exe
Event Name : إيقاف التشغيل بشكل غير متوقع
Event Time : 21/03/33 07:02:38 م
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\WerFault.exe
Report File Size : 4,410
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\Kernel_0_0_cab_078384a9\Report.wer
==================================================

==================================================
Process File : Setup.exe
Event Name : ‏‏يتعذر تثبيت برنامج التشغيل
Event Time : 22/03/33 03:32:09 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Driver Checker\download\Intel_Graphics_Media For Win7x32\Setup.exe
Report File Size : 2,078
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\NonCritical_x86_523c70f945d430bc2389a9ec87e8315e47bbc61_08eefec9\Report.wer
==================================================

==================================================
Process File : Setup.exe
Event Name : ‏‏يتعذر تثبيت برنامج التشغيل
Event Time : 22/03/33 03:32:08 ص
User Name : qwex
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Driver Checker\download\Intel_Graphics_Media For Win7x32\Setup.exe
Report File Size : 2,078
Report File Path : C:\Users\qwex\AppData\Local\Microsoft\Windows\WER\ReportArchive\NonCritical_x86_523c70f945d430bc2389a9ec87e8315e47bbc61_0feefdb1\Report.wer
==================================================

==================================================
Process File : TickerChartLive.exe
Event Name : ‏‏تم التوقف عن العمل
Event Time : 20/03/33 11:32:55 ص
User Name :
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\UniTicker\TickerChartLive\TickerChartLive.exe
Report File Size : 24,080
Report File Path : C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_TickerChartLive._743c699cf253df745d13a49f7c3e61caf3c44957_081fcba7\Report.wer
==================================================

==================================================
Process File : Eqdatsrv.exe
Event Name : ‏‏توقف عن الاستجابة وتم إغلاقه
Event Time : 18/03/33 09:04:24 م
User Name :
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Equis\MetaStock\Servers\Eqdatsrv.exe
Report File Size : 3,546
Report File Path : C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Critical_Eqdatsrv.exe_42ed2ea545c15738d9565996aa9543bc484e6c_2334be5d\Report.wer
==================================================

==================================================
Process File : svchost.exe
Event Name : مشاكل تثبيت Windows Update
Event Time : 21/03/33 07:50:26 م
User Name :
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\svchost.exe
Report File Size : 2,086
Report File Path : C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_7.5.7601.17514_95955762bfd1ebe97ead64154eb970ab72c5_0150ba79\Report.wer
==================================================

==================================================
Process File : svchost.exe
Event Name : مشاكل تثبيت Windows Update
Event Time : 21/03/33 07:50:26 م
User Name :
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Windows\System32\svchost.exe
Report File Size : 2,086
Report File Path : C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_7.5.7601.17514_c542784bda6a896066222ce7fa4bd580b6c52458_0c28bf1a\Report.wer
==================================================

==================================================
Process File : MpCmdRun.exe
Event Name : MpTelemetry
Event Time : 18/03/33 09:10:42 ص
User Name :
Exception Code :
Exception Offset :
Fault Module Name :
Fault Module Version:
Process Path : C:\Program Files\Windows Defender\MpCmdRun.exe
Report File Size : 2,014
Report File Path : C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_8024402c_eae1492941e9345dd519441a16a35f278cd6238_03908bbb\Report.wer
==================================================




===== تقرير الشاشة الزرقاء =====

==================================================
Dump File : 021312-34647-01.dmp
Crash Time : 21/03/33 02:13:39 ص
Bug Check String : BAD_POOL_HEADER
Bug Check Code : 0x00000019
Parameter 1 : 0x00000020
Parameter 2 : 0xcc23aa90
Parameter 3 : 0xcc23ab18
Parameter 4 : 0x0a110403
Caused By Driver : halmacpi.dll
Caused By Address : halmacpi.dll+5ba9
File Description : Hardware Abstraction Layer DLL
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 6.1.7601.17514 (win7sp1_rtm.101119-1850)
Processor : 32-bit
Computer Name :
Full Path : C:\Windows\Minidump\021312-34647-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 7601
Dump File Size : 144,824
==================================================

==================================================
Dump File : 021312-35084-01.dmp
Crash Time : 21/03/33 07:02:24 م
Bug Check String : KERNEL_MODE_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000008e
Parameter 1 : 0xc0000005
Parameter 2 : 0x82b6987b
Parameter 3 : 0xb11c6a5c
Parameter 4 : 0x00000000
Caused By Driver : ntkrnlpa.exe
Caused By Address : ntkrnlpa.exe+12187b
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 6.1.7601.17713 (win7sp1_gdr.111025-1505)
Processor : 32-bit
Computer Name :
Full Path : C:\Windows\Minidump\021312-35084-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 7601
Dump File Size : 144,824
==================================================
 
السلام عليكم ورحمة الله وبركاته

الشاشه الزرقاء تظهر بسبب هذا الملف

ntkrnlpa.exe

ومن خلال بحث في جوجل :hh:

تبين انه تابع للنظام ، والتقرير يبين ذلك ايضاً


Product Name : Microsoft® Windows® Operating System


افضل حل وجدته انك تعمل اصلاح للنظام

و جرب اعمل تحديث لنسخة الويندوز

وان شاء الله تنحل المشكله

 
توقيع : jor
السلام عليكم ورحمة الله وبركاته

الشاشه الزرقاء تظهر بسبب هذا الملف

ntkrnlpa.exe

ومن خلال بحث في جوجل :hh:

تبين انه تابع للنظام ، والتقرير يبين ذلك ايضاً


Product Name : Microsoft® Windows® Operating System


افضل حل وجدته انك تعمل اصلاح للنظام

و جرب اعمل تحديث لنسخة الويندوز

وان شاء الله تنحل المشكله

ممكن طريقة اصلاح النظام
اما التحديثات فان باستمرار احدثها
 
AdapterDeviceID: 2772
AdapterVendorID: 8086
Add-ons: flashlight@stephennolan.com.au:1.1,{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:2.0.3,ffxtlbr@babylon.com:1.1.9,{3d7eb24f-2740-49df-8937-200b1cc08f8a}:1.5.15.1,{972ce4c6-7e08-4474-a285-3208198ce6fd}:10.0.2
AvailableVirtualMemory: 1809473536
BuildID: 20120215223356
CrashTime: 1330054504
EMCheckCompatibility: true
FramePoisonBase: 00000000f0de0000
FramePoisonSize: 65536
InstallTime: 1329519762
Notes: AdapterVendorID: 8086, AdapterDeviceID: 2772, AdapterSubsysID: 00000000, AdapterDriverVersion: 8.15.10.1749
D3D10 Layers? D3D10 Layers-
D3D9 Layers? D3D9 Layers-

ProductName: Firefox
ReleaseChannel: release
SecondsSinceLastCrash: 10666
StartupTime: 1330054374
SystemMemoryUsePercentage: 31
Theme: classic/1.0
Throttleable: 1
TotalVirtualMemory: 2147352576
URL:
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

Vendor: Mozilla
Version: 10.0.2
Winsock_LSP: AVSDA over [MSAFD Tcpip [TCP/IP]] : 2 : 1 : C:\Program Files\Avira\AntiVir Desktop\avsda.dll
AVSDA over [MSAFD Tcpip [UDP/IP]] : 2 : 2 :
AVSDA over [MSAFD Tcpip [TCP/IPv6]] : 2 : 1 : C:\Program Files\Avira\AntiVir Desktop\avsda.dll
AVSDA over [MSAFD Tcpip [UDP/IPv6]] : 2 : 2 :
MSAFD Tcpip [TCP/IP] : 2 : 1 : %SystemRoot%\system32\mswsock.dll
MSAFD Tcpip [UDP/IP] : 2 : 2 :
MSAFD Tcpip [RAW/IP] : 2 : 3 : %SystemRoot%\system32\mswsock.dll
MSAFD Tcpip [TCP/IPv6] : 2 : 1 :
MSAFD Tcpip [UDP/IPv6] : 2 : 2 : %SystemRoot%\system32\mswsock.dll
MSAFD Tcpip [RAW/IPv6] : 2 : 3 :
موفر خدمة RSVP TCPv6 : 2 : 1 : %SystemRoot%\system32\mswsock.dll
موفر خدمة RSVP TCP : 2 : 1 :
موفر خدمة RSVP UDPv6 : 2 : 2 : %SystemRoot%\system32\mswsock.dll
موفر خدمة RSVP UDP : 2 : 2 :
AVSDA : 2 : 1 :
MSAFD NetBIOS [\Device\NetBT_Tcpip_{E5A5D14A-6B70-4A98-B3D9-33E877E6C670}] SEQPACKET 7 : 2 : 5 : %SystemRoot%\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{E5A5D14A-6B70-4A98-B3D9-33E877E6C670}] DATAGRAM 7 : 2 : 2 :
MSAFD NetBIOS [\Device\NetBT_Tcpip_{28EBBDBB-CFE6-4522-B6F5-6B8BFCEAB3B4}] SEQPACKET 3 : 2 : 5 : %SystemRoot%\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{28EBBDBB-CFE6-4522-B6F5-6B8BFCEAB3B4}] DATAGRAM 3 : 2 : 2 :
MSAFD NetBIOS [\Device\NetBT_Tcpip_{149789D4-7662-4A2E-B3FA-B5963117E97C}] SEQPACKET 0 : 2 : 5 : %SystemRoot%\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{149789D4-7662-4A2E-B3FA-B5963117E97C}] DATAGRAM 0 : 2 : 2 :
MSAFD NetBIOS [\Device\NetBT_Tcpip6_{9C1428AD-7929-4FD5-8B39-C886B04010BF}] SEQPACKET 1 : 2 : 5 : %SystemRoot%\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip6_{9C1428AD-7929-4FD5-8B39-C886B04010BF}] DATAGRAM 1 : 2 : 2 :
MSAFD NetBIOS [\Device\NetBT_Tcpip6_{73E6524B-1FC5-4CD1-A5C4-22450D0C11FC}] SEQPACKET 5 : 2 : 5 : %SystemRoot%\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip6_{73E6524B-1FC5-4CD1-A5C4-22450D0C11FC}] DATAGRAM 5 : 2 : 2 :
MSAFD NetBIOS [\Device\NetBT_Tcpip6_{E5A5D14A-6B70-4A98-B3D9-33E877E6C670}] SEQPACKET 8 : 2 : 5 : %SystemRoot%\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip6_{E5A5D14A-6B70-4A98-B3D9-33E877E6C670}] DATAGRAM 8 : 2 : 2 :
MSAFD NetBIOS [\Device\NetBT_Tcpip6_{7E8F46AC-B98B-43D0-B8A1-289C96E663A5}] SEQPACKET 6 : 2 : 5 : %SystemRoot%\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip6_{7E8F46AC-B98B-43D0-B8A1-289C96E663A5}] DATAGRAM 6 : 2 : 2 :
MSAFD NetBIOS [\Device\NetBT_Tcpip6_{28EBBDBB-CFE6-4522-B6F5-6B8BFCEAB3B4}] SEQPACKET 4 : 2 : 5 : %SystemRoot%\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip6_{28EBBDBB-CFE6-4522-B6F5-6B8BFCEAB3B4}] DATAGRAM 4 : 2 : 2 :
MSAFD NetBIOS [\Device\NetBT_Tcpip6_{149789D4-7662-4A2E-B3FA-B5963117E97C}] SEQPACKET 2 : 2 : 5 : %SystemRoot%\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip6_{149789D4-7662-4A2E-B3FA-B5963117E97C}] DATAGRAM 2 : 2 : 2 :

يحتوي هذا البلاغ على معلومات تقنيّة عنْ حالة التطبيق عند حدوث الانهيار.
 
 
توقيع : format
بارك الله فيك لكن ستخدمة الطريق ونفس المشكلة مستمرة
 
من اداة الصيانة اعمل تقرير سجلات النظام والاخطاء
 
توقيع : format
عودة
أعلى