أخى الكريم أشكرك جزيلا على متابعتك مشكلتى
بالنسبة لطلبك الخاص بتقرير الفيروسات , أحب أن أقول لك أننى قومت بعمل فورمات كامل للهارد ورغم ذلك إستمرت المشكلة ,
وهذا هو التقرير المطلوب بعد إستخدام برنامج Malwarebytes Anti-Malware
Malwarebytes Anti-Malware 1.75.0.1300
Database version: v2013.11.15.03
Windows XP Service Pack 3 x86 NTFS
Internet Explorer 6.0.2900.5512
mahmoud :: MAHMOUD-E7DA [administrator]
15/11/2013 12:05:02 م
mbam-log-2013-11-15 (12-05-02).txt
Scan type: Full scan (C:\|D:\|E:\|F:\|H:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 278000
Time elapsed: 20 minute(s), 26 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 3
HKCR\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} (PUP.Optional.BrowseFox.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{73AD5D47-66E5-4127-80CA-C0EEDABAFBCC} (Adware.Superweb) -> Quarantined and deleted successfully.
HKCU\Software\1ClickDownload (PUP.Optional.1ClickDownload.A) -> Quarantined and deleted successfully.
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 56
C:\Documents and Settings\mahmoud\Local Settings\Temp\PIPInstaller_PTV_.exe (PUP.Optional.Spigot.A) -> Quarantined and deleted successfully.
C:\Documents and Settings\mahmoud\Local Settings\Temp\eboostr.exe (PUP.Hacktool.Patcher) -> Quarantined and deleted successfully.
C:\Program Files\Okoker Easy Recorder\Okoker Easy Recorder.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Program Files\Internet Download Manager\Patch.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP11\A0017221.exe (PUP.Hacktool.Patcher) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP13\A0027382.exe (PUP.Optional.AdLyrics) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP13\A0027383.exe (PUP.Optional.AdLyrics) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP13\A0027394.exe (PUP.Optional.CrossRider) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP14\A0027488.exe (PUP.RiskwareTool.CK) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP14\A0034609.exe (PUP.Hacktool.Patcher) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP16\A0035900.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP16\A0036932.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP11\A0017395.exe (PUP.Hacktool.Patcher) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP14\A0029511.exe (PUP.RiskwareTool.CK) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP5\A0001012.exe (PUP.Hacktool.Patcher) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP6\A0001172.exe (RiskWare.Tool.CK) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP8\A0005587.exe (PUP.Optional.Spigot.A) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP8\A0005588.exe (PUP.Riskware.Patcher) -> Quarantined and deleted successfully.
D:\بـرامــج\نسخ ويندوز\البرامج\عمل إسطوانة ويندوز وحرق الاسطوانه\PowerISO 5.8 Final\أحدث نسخة\PowerISO 5.8 Final.rar (Malware.Packer) -> Quarantined and deleted successfully.
D:\بـرامــج\نسخ ويندوز\البرامج\نسخ الويندوز كاملة\ويندوز سفن\تفعيل ويندوز سيفن\Windows Loader.rar (Backdoor.Agent.DC) -> Quarantined and deleted successfully.
D:\بـرامــج\نسخ ويندوز\البرامج\نسخ الويندوز كاملة\ويندوز سفن\تفعيل ويندوز سيفن\Windows Loader\Windows Loader.exe (Backdoor.Agent.DC) -> Quarantined and deleted successfully.
D:\بـرامــج\نسخ ويندوز\شروحات\خاص بصناعة نسخة ويندوز خاصة بإسمك\صناعة اسطوانة ويندوز من الألف للياء.rar (Spyware.AdaEbook) -> Quarantined and deleted successfully.
D:\بـرامــج\وينرررررررررار\برامج حل مشاكل فك الضغط\Portable Recovery Toolbox for RAR 1.1.8.17\Portable Recovery Toolbox for RAR 1.1.8.17.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\بـرامــج\وينرررررررررار\برامج حل مشاكل فك الضغط\Portable Recovery Toolbox for RAR 1.1.8.17\Portable Recovery Toolbox for RAR__
(Trojan.Agent) -> Quarantined and deleted successfully.
D:\بـرامــج\وينرررررررررار\برامج فك الضغط\نسخة بين القديم والحديث\WinRAR.4.20.Beta.2.x86.x64.ouez.MaZiKa2daY.CoM.rar (PUP.RiskwareTool.CK) -> Quarantined and deleted successfully.
D:\بـرامــج\وينرررررررررار\برامج فك الضغط\نسخة بين القديم والحديث\WinRAR.4.20.Beta.2.x86.x64.ouez.MaZiKa2daY.CoM\Keygen.exe (PUP.RiskwareTool.CK) -> Quarantined and deleted successfully.
D:\بـرامــج\إخفاء الأى بى الشهير\Platinum Hide IP 3.3.1.8 Final.rar (PUP.Riskware.Patcher) -> Quarantined and deleted successfully.
D:\بـرامــج\إخفاء الأى بى الشهير\Platinum Hide IP 3.3.1.8 Final\platinum.patch.exe (PUP.Riskware.Patcher) -> Quarantined and deleted successfully.
D:\بـرامــج\إخفاء الأى بى الشهير\Platinum Hide IP 3.3.1.8 Final\PlatinumHideIP-3.3.1.8.Setup.exe (PUP.Optional.Spigot.A) -> Quarantined and deleted successfully.
D:\بـرامــج\إسترجاع الملفات بعد الفورمات\ده أحدث واحد بس مش شغال\Recover.My.Files.Pro.5.2.1.1964.Engh3.MaZiKa2daY.CoM\Patch.rar (PUP.Hacktool.Patcher) -> Quarantined and deleted successfully.
D:\بـرامــج\إسترجاع الملفات بعد الفورمات\ده أحدث واحد بس مش شغال\Recover.My.Files.Pro.5.2.1.1964.Engh3.MaZiKa2daY.CoM\Patch\Ptch3.exe (PUP.Hacktool.Patcher) -> Quarantined and deleted successfully.
D:\بـرامــج\برنامج تحويل الفلاش الى رام\eBooste_from_abohusen.rar (Trojan.Agent) -> Quarantined and deleted successfully.
D:\بـرامــج\تسجيل الصوت\Okoker.Easy.Recorder.4.0.Cracked-7UP909.MAX2FORUM.COM.rar (Backdoor.Bot) -> Quarantined and deleted successfully.
D:\بـرامــج\تسجيل الصوت\Okoker.Easy.Recorder.4.0.Cracked-7UP909.MAX2FORUM.COM\Crack\Okoker Easy Recorder.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
D:\بـرامــج\داون لود\أحدث نسخة\MyEgY.CoM.IDM 6.18 Build 7.By.vibration.rar (PUP.Hacktool.Patcher) -> Quarantined and deleted successfully.
D:\بـرامــج\داون لود\أحدث نسخة\Patch\IDM v6.xx PATCH.exe (PUP.Hacktool.Patcher) -> Quarantined and deleted successfully.
D:\بـرامــج\داون لود\أحدث نسخة\Patch\Patch.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP20\A0006934.exe (RiskWare.Tool.CK) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP20\A0006935.exe (RiskWare.Tool.CK) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP34\A0007503.exe (RiskWare.Tool.CK) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP38\A0014038.exe (PUP.RiskwareTool.CK) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP38\A0014041.exe (PUP.RiskwareTool.CK) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP38\A0014044.exe (Trojan.Agent) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP38\A0014045.exe (RiskWare.Tool.CK) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP38\A0014066.exe (PUP.Hacktool.Patcher) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP38\A0014087.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP38\A0014091.exe (PUP.Hacktool.Patcher) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP38\A0014095.exe (PUP.Optional.Spigot.A) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP38\A0014096.exe (PUP.Riskware.Patcher) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP38\A0015713.exe (PUP.UltraReach) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP38\A0015903.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
F:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP9\A0009668.exe (PUP.Riskware.Patcher) -> Quarantined and deleted successfully.
F:\System Volume Information\_restore{36B6BC23-988E-45E7-B0F8-CB72DFED3330}\RP9\A0009669.exe (PUP.Optional.Spigot.A) -> Quarantined and deleted successfully.
F:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP37\A0011560.exe (PUP.UltraReach) -> Quarantined and deleted successfully.
F:\System Volume Information\_restore{B569516A-0258-4D63-8983-A878C16F44E4}\RP37\A0011750.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\mahmoud\Local Settings\Temp\eboostr.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
(end)
ثانيا : بالنسبة لطلب تقرير الهاى جاك فهذا هو التقرير كما طلبته ياأخى الكريم
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:36:24 ص, on 15/11/2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Vimicro Corporation\VMUVC\VMonitor.exe
C:\WINDOWS\USB Vibration\8101\USB Gamepad.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\PowerISO\PWRISOVM.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\eBoostr\eBoostrCP.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\eBoostr\EBstrSvc.exe
C:\Program Files\PANDORA.TV\PanService\KMPService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
C:\Program Files\PANDORA.TV\PanService\KMPProcess.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\ping.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Documents and Settings\mahmoud\My Documents\Downloads\Programs\mbam-setup-1.75.0.1300.exe
C:\DOCUME~1\mahmoud\LOCALS~1\Temp\is-NLBUJ.tmp\mbam-setup-1.75.0.1300.tmp
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [VMonitorVMUVC] "C:\Program Files\Vimicro Corporation\VMUVC\VMonitor.exe" VMUVC
O4 - HKLM\..\Run: [USB Gamepad] C:\WINDOWS\USB Vibration\8101\USB Gamepad.exe -boot
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: eBoostr Control Panel.lnk = C:\Program Files\eBoostr\eBoostrCP.exe
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: AppleChargerSrv - Unknown owner - C:\WINDOWS\system32\AppleChargerSrv.exe
O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) - WIBU-SYSTEMS AG - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
O23 - Service: eBoostr Service (EBOOSTRSVC) - eBoostr.com - C:\Program Files\eBoostr\EBstrSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files\PANDORA.TV\PanService\KMPService.exe
--
End of file - 5716 bytes
وهذه أيضا صورة لإمكانيات جهازى ,
مع العلم أن هذه المشاكل لم تحدث لى إلا بعد شراء المازر بورد الجديدة motherboard ultra durable gigabyte g41mt - s2pt
أتمنى أن تجد حلا لمشكلتى ؟