ComboFix 08-10-19.04 - Administrator 2008-10-21 16:47:48.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1256.966.1033.18.106 [GMT -7:00]
Running from: C:\Documents and Settings\Administrator\Desktop\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((( Files Created from 2008-09-21 to 2008-10-21 )))))))))))))))))))))))))))))))
.
2008-10-21 09:02 . 2008-04-13 20:42 146,432 --a------ C:\WINDOWS\system\WINSPOOL.DRV
2008-10-21 09:02 . 2008-04-13 13:24 68,768 --a------ C:\WINDOWS\system\MMSYSTEM.DLL
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-10-21 23:28 --------- d-----w C:\Program Files\microsoft frontpage
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-13 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" [2008-04-13 208952]
"PHIME2002ASync"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" [2008-04-13 455168]
"PHIME2002A"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" [2008-04-13 455168]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2008-04-13 15360]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
*Newly Created Service* - FASTUSERSWITCHINGCOMPATIBILITY
*Newly Created Service* - MSISERVER
*Newly Created Service* - PROCEXP90
*Newly Created Service* - RECAGENT
*Newly Created Service* - SSDPSRV
*Newly Created Service* - TERMSERVICE
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
Rootkit scan 2008-10-21 16:49:22
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-10-21 16:50:38
ComboFix-quarantined-files.txt 2008-10-21 23:50:34
Pre-Run: 6,276,128,768 bytes free
Post-Run: 6,275,604,480 bytes free
53
عملت فورمات للجهاز وعدت استخدام الاداة
وهاي النتيجة
هلأ صح هيك ولا باقي الفايروس
ارجو الرد
ولو أمكن تحطوا رابط تحميل افضل نسخة من برنامج كاسبر سكاى هنا
جزاكم الله خيراً