الحالة
مغلق و غير مفتوح للمزيد من الردود.

AseelAlhomaidi

زيزوومي نشيط
إنضم
12 أبريل 2014
المشاركات
170
مستوى التفاعل
45
النقاط
210
الإقامة
Riyadh, Saudi Arabia
غير متصل
السلام عليكم لدي جهاز dell intel pentium dual core ram 2 gb
مشكلته يعلق كثير وفي بدء التشغيل يقعد 5 دقائق عشان يشتغل ممكن تساعدوني وشكرا
 

المصدر:
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

في منتدى :
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


17- يمنع منعا باتا المشاركة بحل المشاكل بالقسم لمن تقل مشاركاته عن 300 مشاركة
 
التعديل الأخير بواسطة المشرف:
توقيع : Shrieef Al Tite
عذرا اخواني لم اكن موجودا هذا اليوم سأجرب الحلول وارجع لكم
 
ياااخواني اظن ان جهازي فيه فيروسات خرب علي فلاشي وتظهر اختصارات للملف على الفلاش والذاكرة وو كيف ازيلها الله يرضى عليكم؟
 
توقيع : Mr.AzOz
قم بعمل التالي اخي ..

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

أخي للتوضيح فقط انا لدي نسختين وحده 7 والثانية اكس بي في اي وحدة اعمل فحص للمفات علما ان التعليق والتهنيج في ويندوز 7 ولكن اشعر ان هناك فيروسات ويوجد فيروس الاختصارات كلما ركبت فلاش او ذاكره في اي ويندوز اعمل فحص اخي؟
 
ويندوز 7
 
توقيع : Mr.AzOz
هذا فحص اداة RKILL

Rkill 2.6.8 by Lawrence Abrams (Grinler)
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


Program started at: 11/24/2014 01:39:34 PM in x86 mode.
Windows Version: Windows 7 Ultimate

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* No malware processes found to kill.

Checking Registry for malware related settings:

* No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
* HKLM\Software\Classes\.exe\shell found and deleted!


Performing miscellaneous checks:

* Windows Defender Disabled

[HKLM\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware" = dword:00000001

* Windows Firewall Disabled

[HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = dword:00000000

Checking Windows Service Integrity:

* Windows Defender (WinDefend) is not Running.
Startup Type set to: Manual

* Windows Update (wuauserv) is not Running.
Startup Type set to: Disabled

Searching for Missing Digital Signatures:

* No issues found.

Checking HOSTS File:

* No issues found.

Program finished at: 11/24/2014 01:44:05 PM
Execution time: 0 hours(s), 4 minute(s), and 30 seconds(s)
 
قم بعمل التالي اخي ..

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

هذا فحص المالويربايت

Malwarebytes Anti-Malware
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


Scan Date: 02/02/36
Scan Time: 01:53:24 م
Logfile: a.txt
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.11.24.04
Rootkit Database: v2014.11.22.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 7
CPU: x86
File System: NTFS
User: DELL

Scan Type: Threat Scan
Result: Cancelled
Objects Scanned: 0
(No malicious items detected)
Time Elapsed: 1 min, 5 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)
 
توقيع : Mr.AzOz
عذرا اخي على الاطالة في الرد هذا فحص الهيتمان برو

كود:
HitmanPro 3.7.9.232
www.hitmanpro.com

   Computer name . . . . : DELL-PC
   Windows . . . . . . . : 6.1.0.7600.X86/2
   User name . . . . . . : DELL-PC\DELL
   UAC . . . . . . . . . : Enabled
   License . . . . . . . : Trial (30 days left)

   Scan date . . . . . . : 2014-11-24 20:25:01
   Scan mode . . . . . . : Normal
   Scan duration . . . . : 10m 20s
   Disk access mode  . . : Direct disk access (SRB)
   Cloud . . . . . . . . : Internet
   Reboot  . . . . . . . : Yes

   Threats . . . . . . . : 2
   Traces  . . . . . . . : 244

   Objects scanned . . . : 1,210,383
   Files scanned . . . . : 23,636
   Remnants scanned  . . : 314,380 files / 872,367 keys

Malware _____________________________________________________________________

   C:\ProgramData\Wincert\del_DLL_nsf5AB2.dll -> Deleted
      Size . . . . . . . : 7,168 bytes
      Age  . . . . . . . : 328.3 days (2013-12-31 12:14:04)
      Entropy  . . . . . : 5.0
      SHA-256  . . . . . : 667985D140FF2E4AB20FDF12F1F5195693E0AB32318827D446CA182CC311F1EE
    > Kaspersky  . . . . : not-a-virus:WebToolbar.Win32.SearchSuite.a
      Fuzzy  . . . . . . : 98.0


Malware remnants ____________________________________________________________

   HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}\ (Jotzey) -> Deleted

Potential Unwanted Programs _________________________________________________

   C:\Program Files\Movies Toolbar\ (iLivid) -> PendingDelete
   C:\Program Files\Movies Toolbar\SafetyNut\ (iLivid) -> PendingDelete
   C:\Program Files\Movies Toolbar\SafetyNut\configmgrc2.cfg (iLivid) -> PendingDelete
   C:\Program Files\Movies Toolbar\SafetyNut\del_DM_LL_nsn288E.dll (iLivid) -> PendingDelete
   C:\Program Files\Movies Toolbar\SafetyNut\favicon.ico (iLivid) -> PendingDelete
   C:\Program Files\Movies Toolbar\SafetyNut\Helper.dll (iLivid) -> PendingDelete
   C:\Program Files\Movies Toolbar\SafetyNut\Internet Explorer Settings.exe (iLivid) -> PendingDelete
   C:\Program Files\Movies Toolbar\SafetyNut\safetycrt.dll (iLivid) -> PendingDelete
   C:\Program Files\Movies Toolbar\SafetyNut\safetynut.exe (iLivid) -> PendingDelete
   C:\Program Files\Movies Toolbar\SafetyNut\SafetyNutManager.exe (iLivid) -> PendingDelete
   C:\Program Files\Movies Toolbar\SafetyNut\trz9B84.tmp (iLivid) -> PendingDelete
   C:\Program Files\Movies Toolbar\SafetyNut\trzD181.tmp (iLivid) -> PendingDelete
   C:\Program Files\Movies Toolbar\SafetyNut\Uninstall.exe (iLivid) -> PendingDelete
   C:\ProgramData\Babylon\ (Babylon) -> Deleted
   C:\ProgramData\BitGuard\ (SpeedUpMyPC) -> Deleted
   C:\ProgramData\BrowserProtect\ (Claro) -> Deleted
   C:\Users\DELL\AppData\Local\Babylon\ (Babylon) -> Deleted
   C:\Users\DELL\AppData\Local\Babylon\Setup\ (Babylon) -> Deleted
   C:\Users\DELL\AppData\Local\Babylon\Setup\Setup2.zpb (Babylon) -> Deleted
   C:\Users\DELL\AppData\Local\Babylon\Setup\Setup3.zpb (Babylon) -> Deleted
   C:\Users\DELL\AppData\Local\Conduit\ (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\Conduit\Chrome\CT3289075\ (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\Conduit\Chrome\CT3289075\CHUninstaller.exe (Conduit) -> Deleted
      Size . . . . . . . : 1,249,720 bytes
      Age  . . . . . . . : 326.7 days (2014-01-02 03:41:04)
      Entropy  . . . . . : 6.2
      SHA-256  . . . . . : EC40C366719FDE299DB18061242C6225BD43D53AB87FFB098B968F90AB809CC2
      RSA Key Size . . . : 2048
      Authenticode . . . : Valid
      Fuzzy  . . . . . . : -1.0

   C:\Users\DELL\AppData\Local\Conduit\Chrome\CT3289075\configutaion.json (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\Conduit\Chrome\CT3289075\Uninstaller.ico (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\Conduit\Chrome\CT3289075\UninstallerUI.exe (Conduit) -> Deleted
      Size . . . . . . . : 1,719,000 bytes
      Age  . . . . . . . : 326.7 days (2014-01-02 03:41:04)
      Entropy  . . . . . : 6.4
      SHA-256  . . . . . : 7FAEA3CA8909A0FDEECF7CF932F76A8C56F112CE8AEF4D77690B574175EE1C1F
      RSA Key Size . . . : 2048
      Authenticode . . . : Valid
      Fuzzy  . . . . . . : -1.0

   C:\Users\DELL\AppData\Local\Cool_Mirage\ (FTDownloader) -> Deleted
   C:\Users\DELL\AppData\Local\Cool_Mirage\PutLockerDownloader.exe_Url_rtbikzaovrghkzdvzitroqtqnobjwq1t\1.1.4.0\ (FTDownloader) -> Deleted
   C:\Users\DELL\AppData\Local\Cool_Mirage\PutLockerDownloader.exe_Url_rtbikzaovrghkzdvzitroqtqnobjwq1t\1.1.4.0\user.config (FTDownloader) -> Deleted
   C:\Users\DELL\AppData\Local\NativeMessaging\ (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\NativeMessaging\CT3289075\ (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\NativeMessaging\CT3289075\1_0_0_10\ (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\NativeMessaging\CT3289075\1_0_0_10\nmHostConfig.json (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\NativeMessaging\CT3289075\1_0_0_10\nmHostManifest.json (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\NativeMessaging\CT3289075\1_0_0_10\TBMessagingHost.exe (Conduit) -> Deleted
      Size . . . . . . . : 1,025,312 bytes
      Age  . . . . . . . : 301.9 days (2014-01-26 22:32:45)
      Entropy  . . . . . : 6.1
      SHA-256  . . . . . : EC4BCB7C3145AFA4757F764601B413E045DE6499B7F63E5C22F799E7013A8231
      Product  . . . . . : TBMessagingHost
      Publisher  . . . . : Conduit Ltd.
      Description  . . . : TBMessagingHost
      Version  . . . . . : 1.0.1.3
      RSA Key Size . . . : 2048
      LanguageID . . . . : 1037
      Authenticode . . . : Valid
      Fuzzy  . . . . . . : -7.0

   C:\Users\DELL\AppData\Local\NativeMessaging\CT3289075\1_0_0_7\ (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\NativeMessaging\CT3289075\1_0_0_7\nmHostConfig.json (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\NativeMessaging\CT3289075\1_0_0_7\nmHostManifest.json (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\NativeMessaging\CT3289075\1_0_0_7\TBMessagingHost.exe (Conduit) -> Deleted
      Size . . . . . . . : 1,000,224 bytes
      Age  . . . . . . . : 326.7 days (2014-01-02 03:41:07)
      Entropy  . . . . . : 6.1
      SHA-256  . . . . . : 6427A3F0C6C1C8ACF2A45D846861F952D7850C852304272F0CE22DE5B5FB00D1
      Product  . . . . . : TBMessagingHost
      Publisher  . . . . : Conduit Ltd.
      Description  . . . : TBMessagingHost
      Version  . . . . . : 1.0.0.7
      RSA Key Size . . . : 2048
      LanguageID . . . . : 1037
      Authenticode . . . : Valid
      Fuzzy  . . . . . . : -7.0

   C:\Users\DELL\AppData\Local\NativeMessaging\CT3289075\1_0_0_9\ (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\NativeMessaging\CT3289075\1_0_0_9\nmHostConfig.json (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\NativeMessaging\CT3289075\1_0_0_9\nmHostManifest.json (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\NativeMessaging\CT3289075\1_0_0_9\TBMessagingHost.exe (Conduit) -> Deleted
      Size . . . . . . . : 1,009,952 bytes
      Age  . . . . . . . : 313.2 days (2014-01-15 14:33:08)
      Entropy  . . . . . : 6.1
      SHA-256  . . . . . : E1BAF545BEDEA8BD54133B9513A6E5E0D927F2CAE9CD2368A4C55855BB86B71B
      Product  . . . . . : TBMessagingHost
      Publisher  . . . . : Conduit Ltd.
      Description  . . . : TBMessagingHost
      Version  . . . . . : 1.0.0.9
      RSA Key Size . . . : 2048
      LanguageID . . . . : 1037
      Authenticode . . . : Valid
      Fuzzy  . . . . . . : -7.0

   C:\Users\DELL\AppData\Local\NativeMessaging\CT3289075\nmHostManifest.json (Conduit) -> Deleted
   C:\Users\DELL\AppData\Local\Pay-By-Ads\ (PayByAds) -> Deleted
   C:\Users\DELL\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.15.4\ (PayByAds) -> Deleted
   C:\Users\DELL\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.15.4\dsrlte.exe (PayByAds) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\ (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075.130064539389933152.search.history.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075.130064539389933152.search.selectedEngineId.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075.130064539389933152.search.settings.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075.installUsage.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075.installUsageEarly.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075.NOTIFICATION_ID.notifications-repository.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075.NOTIFICATION_ID.notifications-service_1774143.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075.NOTIFICATION_ID.notifications-servicemap.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075.NotificationSettings.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075.savedPositions.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075.searchProtectorData.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075.searchUserMode.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.3.serviceLayer_services_appsMetadata.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.3.serviceLayer_services_appTrackingFirstTime.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.3.serviceLayer_services_Configuration.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.3.serviceLayer_services_gottenAppsContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.3.serviceLayer_services_installUsage_ToolbarInstall.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.3.serviceLayer_services_installUsage_ToolbarInstallEarly.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.3.serviceLayer_services_login.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.3.serviceLayer_services_otherAppsContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.3.serviceLayer_services_searchAPI.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.3.serviceLayer_services_serviceMap.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.3.serviceLayer_services_toolbarContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.3.serviceLayer_services_toolbarSettings.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.3.serviceLayer_services_translation.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.503.serviceLayer_services_appsMetadata.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.503.serviceLayer_services_appTrackingFirstTime.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.503.serviceLayer_services_Configuration.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.503.serviceLayer_services_gottenAppsContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.503.serviceLayer_services_login.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.503.serviceLayer_services_otherAppsContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.503.serviceLayer_services_searchAPI.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.503.serviceLayer_services_serviceMap.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.503.serviceLayer_services_toolbarContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.503.serviceLayer_services_toolbarSettings.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.24.3.503.serviceLayer_services_translation.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.0.540.serviceLayer_services_appsMetadata.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.0.540.serviceLayer_services_appTrackingFirstTime.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.0.540.serviceLayer_services_Configuration.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.0.540.serviceLayer_services_gottenAppsContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.0.540.serviceLayer_services_login.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.0.540.serviceLayer_services_otherAppsContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.0.540.serviceLayer_services_searchAPI.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.0.540.serviceLayer_services_serviceMap.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.0.540.serviceLayer_services_toolbarContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.0.540.serviceLayer_services_toolbarSettings.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.0.540.serviceLayer_services_translation.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.2.507.serviceLayer_services_appsMetadata.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.2.507.serviceLayer_services_appTrackingFirstTime.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.2.507.serviceLayer_services_Configuration.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.2.507.serviceLayer_services_gottenAppsContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.2.507.serviceLayer_services_login.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.2.507.serviceLayer_services_otherAppsContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.2.507.serviceLayer_services_searchAPI.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.2.507.serviceLayer_services_serviceMap.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.2.507.serviceLayer_services_toolbarContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.2.507.serviceLayer_services_toolbarSettings.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_10.26.2.507.serviceLayer_services_translation.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_RAW.serviceLayer_services_appsMetadata.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_RAW.serviceLayer_services_appTrackingFirstTime.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_RAW.serviceLayer_services_Configuration.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_RAW.serviceLayer_services_gottenAppsContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_RAW.serviceLayer_services_installUsage_ToolbarInstall.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_RAW.serviceLayer_services_installUsage_ToolbarInstallEarly.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_RAW.serviceLayer_services_login.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_RAW.serviceLayer_services_otherAppsContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_RAW.serviceLayer_services_searchAPI.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_RAW.serviceLayer_services_serviceMap.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_RAW.serviceLayer_services_toolbarContextMenu.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_RAW.serviceLayer_services_toolbarSettings.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\CT3289075_RAW.serviceLayer_services_translation.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\localStorageBackup.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\toolbar_initializing_logger.txt.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\ToolbarFullUserID.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Conduit\ChromeExtData\cflheckfmhopnialghigdlggahiomebp\Repository\ToolbarUserId.txt (Conduit) -> Deleted
   C:\Users\DELL\AppData\LocalLow\Delta\ (Delta Search) -> Deleted
   C:\Users\DELL\AppData\Roaming\Babylon\ (Babylon) -> Deleted
   C:\Users\DELL\AppData\Roaming\Babylon\log_file.txt (Babylon) -> Deleted
   C:\Users\DELL\Documents\Optimizer Pro\ (PCOptimizerPro) -> Deleted
   C:\Users\DELL\Documents\Optimizer Pro\CookiesException.txt (PCOptimizerPro) -> Deleted
   HKLM\SOFTWARE\Classes\AppID\secman.DLL\ (Babylon) -> Deleted
   HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}\ (Babylon) -> Deleted
   HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}\ (FTDownloader) -> Deleted
   HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}\ (Babylon) -> Deleted
   HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}\ (Babylon) -> Deleted
   HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}\ (Babylon) -> Deleted
   HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}\ (Babylon) -> Deleted
   HKLM\SOFTWARE\Classes\Prod.cap\ (Claro) -> Deleted
   HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1\ (Babylon) -> Deleted
   HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager\ (Babylon) -> Deleted
   HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}\ (Babylon) -> Deleted
   HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{52db1893-8a90-4192-aede-08e00b8f8473}\ (AskBar) -> Deleted
   HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}\ (AskBar) -> Deleted
   HKLM\SOFTWARE\Microsoft\Tracing\dsrlte_RASAPI32\ (KeepMySearch) -> Deleted
   HKLM\SOFTWARE\Microsoft\Tracing\dsrlte_RASMANCS\ (KeepMySearch) -> Deleted
   HKLM\SOFTWARE\Microsoft\Tracing\dsrsetup_RASAPI32\ (KeepMySearch) -> Deleted
   HKLM\SOFTWARE\Microsoft\Tracing\dsrsetup_RASMANCS\ (KeepMySearch) -> Deleted
   HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASAPI32\ (iLivid) -> Deleted
   HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASMANCS\ (iLivid) -> Deleted
   HKLM\SOFTWARE\Microsoft\Tracing\LiveSupport_RASAPI32\ (PCOptimizerPro) -> Deleted
   HKLM\SOFTWARE\Microsoft\Tracing\LiveSupport_RASMANCS\ (PCOptimizerPro) -> Deleted
   HKLM\SOFTWARE\Microsoft\Tracing\OptimizerPro_RASAPI32\ (PCOptimizerPro) -> Deleted
   HKLM\SOFTWARE\Microsoft\Tracing\OptimizerPro_RASMANCS\ (PCOptimizerPro) -> Deleted
   HKLM\SOFTWARE\Microsoft\Tracing\OptProStart_RASAPI32\ (PCOptimizerPro) -> Deleted
   HKLM\SOFTWARE\Microsoft\Tracing\OptProStart_RASMANCS\ (FLV Player) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe\ (SearchQU) -> Deleted
   HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}\ (FLV Player) -> Deleted
   HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}\ (FLV Player) -> Deleted
   HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_F06DEFF2-5B9C-490D-910F-35D3A9119622\ (Linkey) -> Deleted
   HKLM\SYSTEM\ControlSet001\services\F06DEFF2-5B9C-490D-910F-35D3A9119622\ (Linkey) -> PendingDelete
   HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_F06DEFF2-5B9C-490D-910F-35D3A9119622\ (Linkey) -> Deleted
   HKLM\SYSTEM\ControlSet002\services\F06DEFF2-5B9C-490D-910F-35D3A9119622\ (Linkey) -> PendingDelete
   HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_F06DEFF2-5B9C-490D-910F-35D3A9119622\ (Linkey) -> PendingDelete
   HKLM\SYSTEM\CurrentControlSet\services\F06DEFF2-5B9C-490D-910F-35D3A9119622\ (Linkey) -> PendingDelete
   HKU\.DEFAULT\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}\ (FLV Player) -> Deleted
   HKU\S-1-5-18\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}\ (FLV Player) -> PendingDelete
   HKU\S-1-5-19\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}\ (FLV Player) -> Deleted
   HKU\S-1-5-20\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}\ (FLV Player) -> Deleted
   HKU\S-1-5-21-1162593966-2508125119-48896423-1000\Software\APN PIP\ (AskBar) -> Deleted
   HKU\S-1-5-21-1162593966-2508125119-48896423-1000\Software\APNDTX\ (iMesh) -> Deleted
   HKU\S-1-5-21-1162593966-2508125119-48896423-1000\Software\AppDataLow\Software\Conduit\ (Conduit) -> Deleted
   HKU\S-1-5-21-1162593966-2508125119-48896423-1000\Software\AppDataLow\Software\SmartBar\ (Conduit) -> Deleted
   HKU\S-1-5-21-1162593966-2508125119-48896423-1000\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}\ (FLV Player) -> Deleted
   HKU\S-1-5-21-1162593966-2508125119-48896423-1000\Software\BabSolution\ (Babylon) -> Deleted
   HKU\S-1-5-21-1162593966-2508125119-48896423-1000\Software\Classes\keepmysearch\ (KeepMySearch) -> Deleted
   HKU\S-1-5-21-1162593966-2508125119-48896423-1000\Software\Conduit\ (Conduit) -> Deleted
   HKU\S-1-5-21-1162593966-2508125119-48896423-1000\Software\iLivid\ (iLivid) -> Deleted
   HKU\S-1-5-21-1162593966-2508125119-48896423-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} (iLivid)
   HKU\S-1-5-21-1162593966-2508125119-48896423-1000\Software\Microsoft\Internet Explorer\SearchScopes\{52db1893-8a90-4192-aede-08e00b8f8473}\ (AskBar) -> Deleted
   HKU\S-1-5-21-1162593966-2508125119-48896423-1000\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}\ (AskBar) -> Deleted
   HKU\S-1-5-21-1162593966-2508125119-48896423-1000\Software\Softonic\ (Softonic) -> Deleted
   HKU\S-1-5-21-1162593966-2508125119-48896423-1000_Classes\keepmysearch\ (KeepMySearch) -> PendingDelete

Cookies _____________________________________________________________________

   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:ad.360yield.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:ad.mlnadvertising.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:ad.reklamport.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.ad4game.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.chargeads.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.clicmanager.fr
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.creative-serving.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.iphoneislam.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.nervora.net
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.pubmatic.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.servebom.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.yahoo.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:adservingstew.biz
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:adtechus.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:advertising.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:at.atwola.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:atdmt.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:burstnet.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:casalemedia.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:chitika.net
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:collective-media.net
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:doubleclick.net
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:fastclick.net
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:kontera.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:mm.chitika.net
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:oracle.112.2o7.net
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:revsci.net
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:ru4.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:serving-sys.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:smartadserver.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:specificclick.net
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:tacoda.at.atwola.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:track.adform.net
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:tribalfusion.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:ttbeuropcar.solution.weborama.fr
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:weborama.fr
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:www.burstnet.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:www.googleadservices.com
   C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Cookies:zedo.com
 
وهذا فحص adwcleaner

# AdwCleaner v4.102 - Report created 26/11/2014 at 02:40:51
# Updated 23/11/2014 by Xplode
# Database : 2014-11-25.1 [Live]
# Operating System : Windows 7 Ultimate (32 bits)
# Username : DELL - DELL-PC
# Running from : C:\Users\DELL\Downloads\Programs\adwcleaner_4.102.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : hshld
[#] Service Deleted : hsstrayservice
Service Deleted : hsswd
[#] Service Deleted : Update maucampo
[#] Service Deleted : Util maucampo
[#] Service Deleted : {ef8714df-a44b-464c-9034-549a70dc4cd7}Gw

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\baidu
[#] Folder Deleted : C:\ProgramData\Browser Manager
Folder Deleted : C:\ProgramData\hotspot shield
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\hotspot shield
Folder Deleted : C:\Program Files\hotspot shield
Folder Deleted : C:\Program Files\maucampo
Folder Deleted : C:\Program Files\Minibar
Folder Deleted : C:\Program Files\Volaro
Folder Deleted : C:\Windows\system32\hotspot shield
Folder Deleted : C:\Windows\system32\config\systemprofile\AppData\Roaming\hotspot shield
Folder Deleted : C:\Users\DELL\AppData\Local\Bundled software uninstaller
Folder Deleted : C:\Users\DELL\AppData\Local\torch
Folder Deleted : C:\Users\DELL\AppData\Local\webplayer
Folder Deleted : C:\Users\DELL\AppData\Roaming\baidu
Folder Deleted : C:\Users\DELL\AppData\Roaming\hotspot shield
Folder Deleted : C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PutLockerDownloader.com
Folder Deleted : C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\torch
Folder Deleted : C:\Users\Public\Documents\baidu
File Deleted : C:\END
File Deleted : C:\Users\DELL\AppData\Roaming\LiveSupport.exe_log.txt
File Deleted : C:\Users\DELL\AppData\Roaming\regsvr32.exe_log.txt
File Deleted : C:\Users\DELL\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Torch.lnk
File Deleted : C:\Users\DELL\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Hao123.lnk
File Deleted : C:\Users\DELL\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Hao123.lnk
File Deleted : C:\Users\DELL\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Hao123.lnk
File Deleted : C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch.lnk
File Deleted : C:\Users\DELL\Desktop\Hao123.lnk

***** [ Scheduled Tasks ] *****

Task Deleted : SomotoUpdateCheckerAutoStart
Task Deleted : Yahoo! Search
Task Deleted : Yahoo! Search Updater

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaimdcedbpbcjjbbnfcbbjcngmomic
Key Deleted : HKCU\Software\Google\Chrome\Extensions\cflheckfmhopnialghigdlggahiomebp
Key Deleted : HKLM\SOFTWARE\Classes\Applications\Torch.exe
Key Deleted : HKLM\SOFTWARE\Classes\HssIE.HssIEApp
Key Deleted : HKLM\SOFTWARE\Classes\HssIE.HssIEApp.1
Key Deleted : HKLM\SOFTWARE\Classes\PutLockerDownloader
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\torch.exe
Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x64]
Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x86]
Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x64]
Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x86]
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Update maucampo
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Util maucampo
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{338A754C-B46E-4BF2-8AC8-23DE36862AD3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{BEAA0C04-ED15-4C17-800B-28716025A4E4}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E69D4A59-73DE-4E38-9FB3-740EC4D9060D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{338A754C-B46E-4BF2-8AC8-23DE36862AD3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{c99fdc39-a1ae-4b24-8d71-e5274f8d7c54}
Key Deleted : HKCU\Software\anchorfree
Key Deleted : HKCU\Software\Myfree Codec
Key Deleted : HKCU\Software\PIP
Key Deleted : HKCU\Software\SafetyNut
Key Deleted : HKCU\Software\torch
Key Deleted : HKLM\SOFTWARE\BetterSurf
Key Deleted : HKLM\SOFTWARE\hotspotshield
Key Deleted : HKLM\SOFTWARE\maucampo
Key Deleted : HKLM\SOFTWARE\Myfree Codec
Key Deleted : HKLM\SOFTWARE\PIP
Key Deleted : HKLM\SOFTWARE\SafetyNut
Key Deleted : HKLM\SOFTWARE\torch
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\torch
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FilesFrog Update Checker
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\maucampo
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe

***** [ Browsers ] *****

-\\ Internet Explorer v0.0.0.0

Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]

-\\ Google Chrome v


*************************

AdwCleaner[R0].txt - [10398 octets] - [26/11/2014 02:37:06]
AdwCleaner[S0].txt - [8287 octets] - [26/11/2014 02:40:51]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8347 octets] ##########
 
اعمل التالي ..

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
هذا تقرير عن قائمة البرامج المثبتة

1.0 المعــلم العـربي
7-Data Android Recovery version 1.0
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Reader X (10.1.5) - Arabic
Apple Mobile Device Support
Apple Software Update
Avast Free Antivirus
Baidu PC Faster
BlackBerry Desktop Software 7.1
BlackBerry Desktop Software 7.1
BlackBerry Device Software v5.0.0 for the BlackBerry 8520 smartphone
BlackBerry Device Software v6.0.0 for the BlackBerry 9300 smartphone
BlackBerry Device Software v6.0.0 for the BlackBerry 9700 smartphone
BlackBerry Device Software v6.0.0 for the BlackBerry 9800 smartphone
BlackBerry Device Software v7.1.0 for the BlackBerry 9220 smartphone
BlackBerry Device Software v7.1.0 for the BlackBerry 9320 smartphone
BlackBerry Device Software v7.1.0 for the BlackBerry 9360 smartphone
BlackBerry Device Software v7.1.0 for the BlackBerry 9790 smartphone
BlackBerry Device Software v7.1.0 for the BlackBerry 9900 smartphone
Bonjour
CCleaner
Clean Master
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
EasyBCD 2.2
Free Zip 9.20
HiJackThis
Hotfix for Microsoft .NET Framework 4 Client Profile (KB2461678)
iFunbox (v2.9.2421.748), iFunbox DevTeam
iFunBox 2014 (v3.4.697.652), iFunbox DevTeam
Intel(R) Graphics Media Accelerator Driver
Internet Download Manager
iTunes
Java 8 Update 20
Java 8 Update 25
Java SE Development Kit 8 Update 20
K-Lite Mega Codec Pack 9.7.5
Ma-Config.com
Malwarebytes Anti-Malware version 2.0.2.1012
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft .NET Framework 4 Extended
Microsoft Office Access MUI (Arabic) 2010
Microsoft Office Excel MUI (Arabic) 2010
Microsoft Office Groove MUI (Arabic) 2010
Microsoft Office InfoPath MUI (Arabic) 2010
Microsoft Office OneNote MUI (Arabic) 2010
Microsoft Office Outlook MUI (Arabic) 2010
Microsoft Office PowerPoint MUI (Arabic) 2010
Microsoft Office Professional Plus 2010
Microsoft Office Professional Plus 2010
Microsoft Office Proof (Arabic) 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (French) 2010
Microsoft Office Proofing (Arabic) 2010
Microsoft Office Publisher MUI (Arabic) 2010
Microsoft Office Shared MUI (Arabic) 2010
Microsoft Office Word MUI (Arabic) 2010
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
Microsoft_VC100_CRT_SP1_x86
Mobily Connect Card
MSVC80_x86_v2
MSVC90_x86
Nokia Connectivity Cable Driver
Nokia PC Suite
Nokia PC Suite
Nokia Suite
Nokia Suite
PC App Store
PC Connectivity Solution
RocketDock 1.3.5
Samsung Kies
Samsung Kies
Samsung Kies3
Samsung Kies3
SAMSUNG USB Driver for Mobile Phones
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
Security Update for Microsoft .NET Framework 4 Extended (KB2736428)
Security Update for Microsoft .NET Framework 4 Extended (KB2742595)
Security Update for Microsoft InfoPath 2010 (KB2553322) 32-Bit Edition
Security Update for Microsoft InfoPath 2010 (KB2553431) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2553091)
Security Update for Microsoft Office 2010 (KB2553371) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2553447) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2598039) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2598243) 32-Bit Edition
Security Update for Microsoft Visio Viewer 2010 (KB2597981) 32-Bit Edition
Skype™ 6.1
The KMPlayer (remove only)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Extended (KB2468871)
Update for Microsoft .NET Framework 4 Extended (KB2600217)
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition
VLC media player 2.0.5
Windows XP Mode
WinRAR 5.10 beta 3 (32-bit)
Wondershare MobileTrans ( Version 6.0.3 )
Your Uninstaller! 7
حزمة برامج تشغيل Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass (12/06/2010 4.0.0000.00000)
حزمة برامج تشغيل Windows - Nokia Modem (02/25/2011 4.7)
حزمة برامج تشغيل Windows - Nokia Modem (02/25/2011 7.01.0.9)
حزمة برامج تشغيل Windows - Nokia pccsmcfd “LegacyDriver” (05/31/2012 7.1.2.0)
دعم تطبيق Apple
 
احذف البرامج التاليه ..

Baidu PC Faster
Clean Master
HiJackThis
Malwarebytes Anti-Malware version 2.0.2.1012
Ma-Config.com
Free Zip 9.20
المعلم العربي


ثم ..

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


واعمل تقرير StartUp جديد ..
 
توقيع : Mr.AzOz
احذف البرامج التاليه ..

Baidu PC Faster
Clean Master
HiJackThis
Malwarebytes Anti-Malware version 2.0.2.1012
Ma-Config.com
Free Zip 9.20
المعلم العربي


ثم ..

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


واعمل تقرير StartUp جديد ..
فعلت كل شيء وهذا رابط التقرير startup

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
 
الصق التقرير هناا اخي :]
 
توقيع : Mr.AzOz
الصق التقرير هناا اخي :]


Start-Up Items; List generated by Start-Up Tool.
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

IDMan
Name:IDMan
Command:C:\Program Files\Internet Download Manager\IDMan.exe /onboot
Reg_Path:HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
Status:enabled
Description:Internet Download Manager (IDM)
Company:Tonec Inc.


Name:
Command:
Reg_Path:HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
Status:enabled
Description:n/a
Company:n/a


AvastUI.exe
Name:AvastUI.exe
Command:"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
Reg_Path:HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Status:enabled
Description:avast! Antivirus
Company:AVAST Software


IgfxTray
Name:IgfxTray
Command:C:\Windows\system32\igfxtray.exe
Reg_Path:HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Status:enabled
Description:igfxTray Module
Company:Intel Corporation


HotKeysCmds
Name:HotKeysCmds
Command:C:\Windows\system32\hkcmd.exe
Reg_Path:HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Status:enabled
Description:hkcmd Module
Company:Intel Corporation


Persistence
Name:Persistence
Command:C:\Windows\system32\igfxpers.exe
Reg_Path:HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Status:enabled
Description:persistence Module
Company:Intel Corporation


_uninst_.lnk
Name:_uninst_.lnk
Command:C:\Users\DELL\AppData\Local\Temp\_uninst_.bat
LinkPath:C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\_uninst_.lnk
Status:enabled
Description:n/a
Company:n/a
 
شيل علامة الصح من ..

IDMan
_uninst_.lnk


ثم Apply , ثم هذا ..

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


واعد فحص المالوير بايت ..
سويت Cancel للفحص انت ليش ؟
 
توقيع : Mr.AzOz
الحالة
مغلق و غير مفتوح للمزيد من الردود.
عودة
أعلى