• بادئ الموضوع بادئ الموضوع بشوشة
  • تاريخ البدء تاريخ البدء
  • المشاهدات 3,474

بشوشة

زيزوومى مميز
إنضم
7 مايو 2011
المشاركات
398
مستوى التفاعل
20
النقاط
480
غير متصل
واحد عطاني ملف تجسس اسمه
Love murderer.scr



حاولت احذفه وابي اتأكد من سلامة جهازي



هذا تقرير هايجاك
....................................................................

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 05:22:22 م, on 15/02/2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
D:\WINXP\System32\smss.exe
D:\WINXP\system32\winlogon.exe
D:\WINXP\system32\services.exe
D:\WINXP\system32\lsass.exe
D:\WINXP\system32\Ati2evxx.exe
D:\WINXP\system32\svchost.exe
D:\WINXP\System32\svchost.exe
D:\WINXP\system32\Ati2evxx.exe
D:\WINXP\system32\spoolsv.exe
D:\WINXP\Explorer.EXE
D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
D:\WINXP\RTHDCPL.EXE
D:\Program Files\Common Files\Java\Java Update\jusched.exe
D:\Program Files\Real\RealPlayer\update\realsched.exe
D:\Program Files\Quick net\ModemListener.exe
D:\Program Files\Ask.com\Updater\Updater.exe
C:\Facemoi\facemoi.exe
D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe
D:\WINXP\system32\ctfmon.exe
D:\Program Files\Windows Live\Messenger\msnmsgr.exe
D:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
C:\Facemoi\facemoi.exe
D:\Program Files\Quick net\HSPA USB MODEM.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe
D:\Program Files\Common Files\DeviceHelper\DeviceManager.exe
D:\Program Files\Comodo\Dragon\dragon_updater.exe
D:\Program Files\Hotspot Shield\bin\openvpnas.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Update\1.3.21.99\GoogleCrashHandler.exe
D:\Program Files\Hotspot Shield\HssWPR\hsssrv.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
D:\Program Files\Hotspot Shield\bin\hsswd.exe
D:\Program Files\Java\jre6\bin\jqs.exe
D:\WINXP\system32\svchost.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
D:\Program Files\Windows Live\Contacts\wlcomm.exe
D:\PROGRA~1\Yahoo!\Messenger\ymsgr_tray.exe
D:\Program Files\Skype\Phone\Skype.exe
D:\Program Files\Hotspot Shield\bin\openvpntray.exe
D:\Program Files\Comodo\Dragon\dragon.exe
D:\Program Files\Comodo\Dragon\dragon.exe
D:\Program Files\Comodo\Dragon\dragon.exe
D:\Program Files\Comodo\Dragon\dragon.exe
D:\Program Files\Comodo\Dragon\dragon.exe
D:\Program Files\Comodo\Dragon\dragon.exe
D:\Program Files\Comodo\Dragon\dragon.exe
D:\Program Files\Comodo\Dragon\dragon.exe
D:\Program Files\Comodo\Dragon\dragon.exe
D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtblfs.exe
D:\Program Files\Comodo\Dragon\dragon.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Program Files\Real\RealPlayer\RecordingManager.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Program Files\Comodo\Dragon\dragon.exe
D:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O1 - Hosts: 65.54.239.80 messenger.hotmail.com
O1 - Hosts: 65.54.239.80 dp.msnmessenger.akadns.net
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - D:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - D:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Hotspot Shield Class - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - D:\Program Files\Hotspot Shield\HssIE\HssIE.dll
O4 - HKLM\..\Run: [GrooveMonitor] "D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] D:\WINXP\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe ARM] "D:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "D:\Program Files\Real\RealPlayer\update\realsched.exe" -osboot
O4 - HKLM\..\Run: [ITSecMng] %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
O4 - HKLM\..\Run: [ModemListener] D:\Program Files\Quick net\ModemListener.exe start
O4 - HKLM\..\Run: [ApnUpdater] "D:\Program Files\Ask.com\Updater\Updater.exe"
O4 - HKLM\..\Run: [Facemoi] c:\Facemoi\facemoi.exe
O4 - HKLM\..\Run: [AVP] "D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe"
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINXP\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "D:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "D:\PROGRA~1\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "D:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Google Update] "D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Facemoi] C:\Facemoi\facemoi.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINXP\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINXP\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth Manager.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: &لوحة المفاتيح الظاهرية - {4248FE82-7FCB-46AC-B270-339F08212110} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: فحص &عناوين مواقع الويب - {CCF151D8-D089-449F-A5A4-D9909053F20F} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINXP\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINXP\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O13 - Gopher Prefix:
O17 - HKLM\System\CCS\Services\Tcpip\..\{23EEE7C6-113D-42FF-AFC4-CC2B2D38B848}: NameServer = 84.235.6.55 84.235.57.230
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - D:\WINXP\system32\Ati2evxx.exe
O23 - Service: خدمة Kaspersky لمكافحة الفيروسات (AVP) - Kaspersky Lab ZAO - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe
O23 - Service: DeviceManager - Unknown owner - D:\Program Files\Common Files\DeviceHelper\DeviceManager.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Unknown owner - D:\Program Files\Comodo\Dragon\dragon_updater.exe
O23 - Service: Hotspot Shield Service (hshld) - Unknown owner - D:\Program Files\Hotspot Shield\bin\openvpnas.exe
O23 - Service: Hotspot Shield Routing Service (HssSrv) - AnchorFree Inc. - D:\Program Files\Hotspot Shield\HssWPR\hsssrv.exe
O23 - Service: Hotspot Shield Tray Service (HssTrayService) - Unknown owner - D:\Program Files\Hotspot Shield\bin\HssTrayService.EXE
O23 - Service: Hotspot Shield Monitoring Service (HssWd) - Unknown owner - D:\Program Files\Hotspot Shield\bin\hsswd.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - D:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - D:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

--
End of file - 11742 bytes
 

توقيع : بشوشة
Adobe Flash Player 10 Plugin
Adobe Flash Player 11 ActiveX
Adobe Reader X (10.1.1) - Arabic
Ask Toolbar
ATI Display Driver
Babylon toolbar on IE
Bluetooth Stack for Windows by Toshiba
Comodo Dragon
DivX Codec
DivX Player
DivX Plus DirectShow Filters
DivX Web Player
Facebook Creator
Facebook Password Extractor
FormatFactory 2.30
GOM Player
Google Earth
HijackThis 2.0.2
Hotspot Shield 2.18
Java(TM) 6 Update 29
Messenger Plus! 5
Microsoft Choice Guard
Microsoft Office Access MUI (Arabic) 2007
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (Arabic) 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (Arabic) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (Arabic) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office Language Pack 2007 - Arabic العربية
Microsoft Office O MUI (Arabic) 2007
Microsoft Office OneNote MUI (Arabic) 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook MUI (Arabic) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (Arabic) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (Arabic) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (Arabic) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Publisher MUI (Arabic) 2007
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (Arabic) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office SharePoint Designer MUI (Arabic) 2007
Microsoft Office Word MUI (Arabic) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Office X MUI (Arabic) 2007
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Mozilla Firefox 10.0.1 (x86 ar)
MSVCRT
Nero 7
Nucleus Kernel Hotmail MSN Password Recovery ver 4.01
Oracle VM VirtualBox 4.0.12
Platinum Hide IP
Quick net
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealPlayer
Realtek High Definition Audio Driver
RealUpgrade 1.1
Security Update for Windows XP (KB923789)
Segoe UI
Skype Click to Call
Skype™ 5.5
Snagit 9.1.1
TeamViewer 7
The KMPlayer (remove only)
VC80CRTRedist - 8.0.50727.762
VLC media player 1.1.11
Windows Live Communications Platform
Windows Live Essentials
Windows Live Essentials
Windows Live Messenger
WinRAR 4.10 beta 4 (32-bit)
Yahoo! Messenger
أداة التحميل Windows Live Upload Tool
برنامج Kaspersky لمكافحة الفيروسات 2012
برنامج Kaspersky لمكافحة الفيروسات 2012
مساعد تسجيل الدخول إلى Windows Live
 
توقيع : بشوشة
السلام عليكم ورحمة الله وبركاته

التقارير سليمه بأذن الله تعالى

يجب ان تقومي باستعاد اعدادات ملف الهوست ، ضروري جداً

من خلال هذا الشرح

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



ومن ثم قومي بتحديث الانتي فايروس لديك ، [ الكاسبر سكاي ]

وافحصي الجهاز بالكامل

كما ينصح بحذف البرامج التاليه

Ask Toolbar

Babylon toolbar on IE

وان شاء الله جهازك ما فيه شيء
:king:
 
توقيع : jor
الكاسبر ماعندي له مفتاح
واحتاج الى برنامج بروكسي واخفاء الاي بي
 
توقيع : بشوشة
الكاسبر ماعندي له مفتاح
واحتاج الى برنامج بروكسي واخفاء الاي بي

طيب تجاهلي الكاسبر قليلاً

سوي الخطوات الي فوق

وهي استعادة اعدادات ملف الهوست

واحذفي البرامج الي قلت عنها

والحين بجيبلك مفتاح كاسبر
 
توقيع : jor
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 06:57:24 م, on 15/02/2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
D:\WINXP\System32\smss.exe
D:\WINXP\system32\winlogon.exe
D:\WINXP\system32\services.exe
D:\WINXP\system32\lsass.exe
D:\WINXP\system32\Ati2evxx.exe
D:\WINXP\system32\svchost.exe
D:\WINXP\System32\svchost.exe
D:\WINXP\system32\Ati2evxx.exe
D:\WINXP\system32\spoolsv.exe
D:\WINXP\Explorer.EXE
D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
D:\WINXP\RTHDCPL.EXE
D:\Program Files\Common Files\Java\Java Update\jusched.exe
D:\Program Files\Real\RealPlayer\update\realsched.exe
D:\Program Files\Quick net\ModemListener.exe
C:\Facemoi\facemoi.exe
D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe
D:\WINXP\system32\ctfmon.exe
D:\Program Files\Windows Live\Messenger\msnmsgr.exe
D:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
C:\Facemoi\facemoi.exe
D:\Program Files\Quick net\HSPA USB MODEM.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe
D:\Program Files\Common Files\DeviceHelper\DeviceManager.exe
D:\Program Files\Comodo\Dragon\dragon_updater.exe
D:\Program Files\Hotspot Shield\bin\openvpnas.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Update\1.3.21.99\GoogleCrashHandler.exe
D:\Program Files\Hotspot Shield\HssWPR\hsssrv.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
D:\Program Files\Hotspot Shield\bin\hsswd.exe
D:\Program Files\Java\jre6\bin\jqs.exe
D:\WINXP\system32\svchost.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
D:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
D:\Program Files\Windows Live\Contacts\wlcomm.exe
D:\PROGRA~1\Yahoo!\Messenger\ymsgr_tray.exe
D:\Program Files\Skype\Phone\Skype.exe
D:\Program Files\Hotspot Shield\bin\openvpntray.exe
D:\Documents and Settings\New XP\Desktop\runscanner.exe
D:\Program Files\Windows Live\Messenger\msnmsgr.exe
D:\WINXP\system32\msiexec.exe
D:\Documents and Settings\New XP\My Documents\Downloads\RHosts.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtblfs.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
D:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - D:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - D:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Hotspot Shield Class - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - D:\Program Files\Hotspot Shield\HssIE\HssIE.dll
O4 - HKLM\..\Run: [GrooveMonitor] "D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] D:\WINXP\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe ARM] "D:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "D:\Program Files\Real\RealPlayer\update\realsched.exe" -osboot
O4 - HKLM\..\Run: [ITSecMng] %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
O4 - HKLM\..\Run: [ModemListener] D:\Program Files\Quick net\ModemListener.exe start
O4 - HKLM\..\Run: [Facemoi] c:\Facemoi\facemoi.exe
O4 - HKLM\..\Run: [AVP] "D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe"
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINXP\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "D:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "D:\PROGRA~1\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "D:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Google Update] "D:\Documents and Settings\New XP\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Facemoi] C:\Facemoi\facemoi.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINXP\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINXP\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth Manager.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: &لوحة المفاتيح الظاهرية - {4248FE82-7FCB-46AC-B270-339F08212110} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: فحص &عناوين مواقع الويب - {CCF151D8-D089-449F-A5A4-D9909053F20F} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINXP\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINXP\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O13 - Gopher Prefix:
O17 - HKLM\System\CCS\Services\Tcpip\..\{23EEE7C6-113D-42FF-AFC4-CC2B2D38B848}: NameServer = 84.235.6.55 84.235.57.230
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - D:\WINXP\system32\Ati2evxx.exe
O23 - Service: خدمة Kaspersky لمكافحة الفيروسات (AVP) - Kaspersky Lab ZAO - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe
O23 - Service: DeviceManager - Unknown owner - D:\Program Files\Common Files\DeviceHelper\DeviceManager.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Unknown owner - D:\Program Files\Comodo\Dragon\dragon_updater.exe
O23 - Service: Hotspot Shield Service (hshld) - Unknown owner - D:\Program Files\Hotspot Shield\bin\openvpnas.exe
O23 - Service: Hotspot Shield Routing Service (HssSrv) - AnchorFree Inc. - D:\Program Files\Hotspot Shield\HssWPR\hsssrv.exe
O23 - Service: Hotspot Shield Tray Service (HssTrayService) - Unknown owner - D:\Program Files\Hotspot Shield\bin\HssTrayService.EXE
O23 - Service: Hotspot Shield Monitoring Service (HssWd) - Unknown owner - D:\Program Files\Hotspot Shield\bin\hsswd.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - D:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - D:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

--
End of file - 11094 bytes
 
توقيع : بشوشة
Adobe Flash Player 10 Plugin
Adobe Flash Player 11 ActiveX
Adobe Reader X (10.1.1) - Arabic
ATI Display Driver
Bluetooth Stack for Windows by Toshiba
Comodo Dragon
DivX Codec
DivX Player
DivX Plus DirectShow Filters
DivX Web Player
Facebook Creator
Facebook Password Extractor
FormatFactory 2.30
GOM Player
Google Earth
HijackThis 2.0.2
Hotspot Shield 2.18
Java(TM) 6 Update 29
Messenger Plus! 5
Microsoft Choice Guard
Microsoft Office Access MUI (Arabic) 2007
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (Arabic) 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (Arabic) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (Arabic) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office Language Pack 2007 - Arabic العربية
Microsoft Office O MUI (Arabic) 2007
Microsoft Office OneNote MUI (Arabic) 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook MUI (Arabic) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (Arabic) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (Arabic) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (Arabic) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Publisher MUI (Arabic) 2007
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (Arabic) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office SharePoint Designer MUI (Arabic) 2007
Microsoft Office Word MUI (Arabic) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Office X MUI (Arabic) 2007
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Mozilla Firefox 10.0.1 (x86 ar)
MSVCRT
Nero 7
Nucleus Kernel Hotmail MSN Password Recovery ver 4.01
Oracle VM VirtualBox 4.0.12
Platinum Hide IP
Quick net
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealPlayer
Realtek High Definition Audio Driver
RealUpgrade 1.1
Security Update for Windows XP (KB923789)
Segoe UI
Skype Click to Call
Skype™ 5.5
Snagit 9.1.1
TeamViewer 7
The KMPlayer (remove only)
VC80CRTRedist - 8.0.50727.762
VLC media player 1.1.11
Windows Live Communications Platform
Windows Live Essentials
Windows Live Essentials
Windows Live Messenger
WinRAR 4.10 beta 4 (32-bit)
Yahoo! Messenger
أداة التحميل Windows Live Upload Tool
برنامج Kaspersky لمكافحة الفيروسات 2012
برنامج Kaspersky لمكافحة الفيروسات 2012
مساعد تسجيل الدخول إلى Windows Live
 
توقيع : بشوشة
الحين تمام

وان شاء الله الجهاز نظيف وما في شيء

وللتأكيد سوي فحص بهذي الاداة

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


واعطيني التقرير في المشاركه القادمه

واتمنى ما تنسيني من الدعاء انا والاخوة الكرام
 
توقيع : jor
Malwarebytes' Anti-Malware 1.51.2.1300
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


Database version: 7622

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

15/02/2012 07:50:22 م
mbam-log-2012-02-15 (19-50-22).txt

Scan type: Full scan (C:\|D:\|)
Objects scanned: 205369
Time elapsed: 37 minute(s), 44 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 4
Registry Values Infected: 1
Registry Data Items Infected: 3
Folders Infected: 1
Files Infected: 3

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\Bifrost (Bifrose.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\--((Mutex))-- (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\XTREMERAT (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Bifrost (Bifrose.Trace) -> Quarantined and deleted successfully.

Registry Values Infected:
HKEY_CURRENT_USER\Software\XtremeRAT\Mutex (Malware.Trace) -> Value: Mutex -> Quarantined and deleted successfully.

Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Folders Infected:
d:\WINXP\system32\Bifrost (Backdoor.Bifrose) -> Quarantined and deleted successfully.

Files Infected:
d:\documents and settings\New XP\application data\addons.dat (Bifrose.Trace) -> Quarantined and deleted successfully.
d:\documents and settings\New XP\application data\microsoft\Windows\--((mutex))--.dat (Malware.Trace) -> Quarantined and deleted successfully.
d:\WINXP\system32\Bifrost\logg.dat (Backdoor.Bifrose) -> Quarantined and deleted successfully.
 
توقيع : بشوشة
جميل جداً

في التقارير السابقه لم تظهر نتائج عملية الاختراق

اما في هذا التقرير يوجد ملفات اختراق في جهازك وتم حذفها

اعطيني تقرير لهذي الاداة

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
 
توقيع : jor
SUPERAntiSpyware Scan Log
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


Generated 02/15/2012 at 08:54 PM

Application Version : 5.0.1144

Core Rules Database Version : 8244
Trace Rules Database Version: 6056

Scan type : Complete Scan
Total Scan Time : 00:23:48

Operating System Information
Windows XP Professional 32-bit, Service Pack 3 (Build 5.01.2600)
Administrator

Memory items scanned : 554
Memory threats detected : 0
Registry items scanned : 33766
Registry threats detected : 0
File items scanned : 22312
File threats detected : 116

Adware.Tracking Cookie
D:\Documents and Settings\New XP\Cookies\new_xp@account.live[1].txt [ /account.live ]
D:\Documents and Settings\New XP\Cookies\new_xp@ad.yieldmanager[2].txt [ /ad.yieldmanager ]
D:\Documents and Settings\New XP\Cookies\new_xp@ads.undertone[2].txt [ /ads.undertone ]
D:\Documents and Settings\New XP\Cookies\new_xp@adtech[1].txt [ /adtech ]
D:\Documents and Settings\New XP\Cookies\new_xp@atdmt.combing[1].txt [ /atdmt.combing ]
D:\Documents and Settings\New XP\Cookies\new_xp@atdmt[2].txt [ /atdmt ]
D:\Documents and Settings\New XP\Cookies\new_xp@bs.serving-sys[1].txt [ /bs.serving-sys ]
D:\Documents and Settings\New XP\Cookies\new_xp@burstnet[1].txt [ /burstnet ]
D:\Documents and Settings\New XP\Cookies\new_xp@c.atdmt[2].txt [ /c.atdmt ]
D:\Documents and Settings\New XP\Cookies\new_xp@divx.112.2o7[1].txt [ /divx.112.2o7 ]
D:\Documents and Settings\New XP\Cookies\new_xp@doubleclick[2].txt [ /doubleclick ]
D:\Documents and Settings\New XP\Cookies\new_xp@h.atdmt[2].txt [ /h.atdmt ]
D:\Documents and Settings\New XP\Cookies\new_xp@imrworldwide[2].txt [ /imrworldwide ]
D:\Documents and Settings\New XP\Cookies\new_xp@interclick[1].txt [ /interclick ]
D:\Documents and Settings\New XP\Cookies\new_xp@liveperson[1].txt [ /liveperson ]
D:\Documents and Settings\New XP\Cookies\new_xp@liveperson[2].txt [ /liveperson ]
D:\Documents and Settings\New XP\Cookies\new_xp@microsoftwllivemkt.112.2o7[1].txt [ /microsoftwllivemkt.112.2o7 ]
D:\Documents and Settings\New XP\Cookies\new_xp@questionmarket[2].txt [ /questionmarket ]
D:\Documents and Settings\New XP\Cookies\new_xp@server.iad.liveperson[2].txt [ /server.iad.liveperson ]
D:\Documents and Settings\New XP\Cookies\new_xp@serving-sys[1].txt [ /serving-sys ]
D:\Documents and Settings\New XP\Cookies\new_xp@tradefx.advertserve[1].txt [ /tradefx.advertserve ]
D:\Documents and Settings\New XP\Cookies\new_xp@www.burstnet[1].txt [ /www.burstnet ]
D:\Documents and Settings\New XP\Cookies\new_xp@zedo[1].txt [ /zedo ]
.zedo.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
m1.webstats.motigo.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.doubleclick.net [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.imrworldwide.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.imrworldwide.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.account.live.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.account.live.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.histats.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.histats.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
wstat.wibiya.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediafire.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.microsoftwllivemkt.112.2o7.net [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adbrite.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.liveperson.net [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
server.iad.liveperson.net [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.liveperson.net [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.h.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.h.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.h.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.h.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.lucidmedia.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ad6media.fr [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ad6media.fr [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.lfstmedia.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.lfstmedia.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.lfstmedia.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.google.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.google.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.doubleclick.net [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adbrite.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atdmt.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
[ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediafire.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediafire.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediafire.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
tradefx.advertserve.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
forexyard.advertserve.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.chitika.net [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mm.chitika.net [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.statcounter.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tribalfusion.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
pub.media-clic.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
[ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.lfstmedia.com [ D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]

Heur.Agent/Gen-WhiteBox
D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\TEMP\INSTALLMONETIZER.EXE
D:\DOCUMENTS AND SETTINGS\NEW XP\LOCAL SETTINGS\TEMP\RAR$EXA0.706\FACEMOI_SETUP\FACEMOI_SETUP.EXE
 
توقيع : بشوشة
ليه تقلت التحديثات التلقائية ؟؟
وليه تقفل جدار الحماية ؟؟

انا اعدت تشغيلهم
 
توقيع : بشوشة
تمام

الحين ادخلي هذا الموضوع واشتركي في الجروب

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


واكتبي رد طلب مفتاح للكاسبر سكاي 2010

وان شاء الله الادارة بترسل لك مفتاح على الايميل

قومي بتفعيل برنامج الحمايه وقومي بعملية التحديث

ومن ثم فحص الجهاز بالكامل

وان شاء الله ما في شيء

وما ابي الا دعاءك الصالح لي وللجميع
:king:
 
توقيع : jor
بالنسبه لهذي الصوره اللي بالبرنامج عندي مختلف عن اللي بالصورة
بعضه وجدته لكن بترتيب مختلف ... ايش اللي اختار .... ودعواتي لكم بظهر الغيب


المقصود هي الصورة رقم 13 في هذه المشاركة
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
 
توقيع : بشوشة
بالنسبه لهذي الصوره اللي بالبرنامج عندي مختلف عن اللي بالصورة
بعضه وجدته لكن بترتيب مختلف ... ايش اللي اختار .... ودعواتي لكم بظهر الغيب

ما فهمت قصدك عن اي صوره
 
توقيع : jor
اخوي جهازي للحين فيه تروجان
 
توقيع : بشوشة
عودة
أعلى