• بادئ الموضوع بادئ الموضوع ahmed97
  • تاريخ البدء تاريخ البدء
  • المشاهدات 1,152
الحالة
مغلق و غير مفتوح للمزيد من الردود.

ahmed97

زيزوومى مميز
إنضم
22 سبتمبر 2012
المشاركات
360
مستوى التفاعل
92
النقاط
490
غير متصل
السلام عليكم

مشكلة كل ماافتح جهازي يطلع لي نافذة ماعرف وش تقول
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

والجهازي بطئ مع اني مو محل كثير برامج + مو محمل العاب ؟؟
 

حياك اخي ..

اعمل التالي بالترتيب ..

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


ولاتنسى تلصق التقارير هناا ..
 
توقيع : Mr.AzOz
المشكلة انحلت حق قوقل كروم + لاق بس سويت تقارير ..
RKILL
Rkill 2.6.8 by Lawrence Abrams (Grinler)
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


Program started at: 11/25/2014 04:20:06 PM in x86 mode.
Windows Version: Microsoft Windows XP Service Pack 3

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* No malware processes found to kill.

Checking Registry for malware related settings:

* No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
* HKLM\Software\Classes\.exe\shell found and deleted!


Performing miscellaneous checks:

* Reparse Point/Junctions Found (Most likely legitimate)!

* C:\WINDOWS\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a => C:\WINDOWS\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_4.0.0.0_x-ww_29b51492 [Dir]
* C:\WINDOWS\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Workflow.Compiler\v4.0_4.0.0.0__31bf3856ad364e35 => C:\WINDOWS\WinSxS\MSIL_Microsoft.Workflow.Compiler_31bf3856ad364e35_4.0.0.0_x-ww_97359ba5 [Dir]

Checking Windows Service Integrity:

* HidServ [Missing ServiceDLL Value]

Searching for Missing Digital Signatures:

* C:\WINDOWS\System32\sfcfiles.dll : 1,614,848 : 06/22/2010 04:19 PM : 600d58665d16bfbb776efefb0e80532d [NoSig]

* C:\WINDOWS\System32\UxTheme.dll : 218,624 : 04/25/2008 07:41 PM : e35fabbe7f63cb9ae2a06a449392e3f6 [NoSig]

Checking HOSTS File:

* HOSTS file entries found:

127.0.0.1 localhost

Program finished at: 11/25/2014 04:20:48 PM
Execution time: 0 hours(s), 0 minute(s), and 42 seconds(s)
 
تقرير adwcleane..
# AdwCleaner v4.102 - Report created 26/11/2014 at 15:23:00
# Updated 23/11/2014 by Xplode
# Database : 2014-11-23.7 [Local]
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : HP - HP-49CD5491BF5C
# Running from : C:\Documents and Settings\HP\My Documents\Downloads\adwcleaner_4.102.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

[!] Folder Deleted : C:\GeniusXXAddon
[!] Folder Deleted : C:\onewebsearch
Folder Deleted : C:\Documents and Settings\All Users\Application Data\baidu
Folder Deleted : C:\Documents and Settings\All Users\Application Data\Goobzo
Folder Deleted : C:\Documents and Settings\All Users\Application Data\SNT
Folder Deleted : C:\Documents and Settings\All Users\Application Data\soaFeiweebb
Folder Deleted : C:\Documents and Settings\All Users\Application Data\55b0dedc1615ffd4
Folder Deleted : C:\Program Files\Application Updater
Folder Deleted : C:\Program Files\SNT
Folder Deleted : C:\WINDOWS\system32\hotspot shield
Folder Deleted : C:\Documents and Settings\Administrator\Local Settings\Application Data\torch
Folder Deleted : C:\Documents and Settings\ASPNET\Local Settings\Application Data\torch
Folder Deleted : C:\Documents and Settings\fbwuser.HP-49CD5491BF5C\Local Settings\Application Data\torch
Folder Deleted : C:\Documents and Settings\Guest\Local Settings\Application Data\torch
Folder Deleted : C:\Documents and Settings\HelpAssistant\Local Settings\Application Data\torch
Folder Deleted : C:\Documents and Settings\HP\Local Settings\Application Data\genienext
Folder Deleted : C:\Documents and Settings\HP\Local Settings\Application Data\torch
Folder Deleted : C:\Documents and Settings\HP\Application Data\baidu
Folder Deleted : C:\Documents and Settings\HP\Application Data\Browser Extensions
Folder Deleted : C:\Documents and Settings\HP\Application Data\Search Protection
Folder Deleted : C:\Documents and Settings\HP\Application Data\Search Settings
Folder Deleted : C:\Documents and Settings\HP\Application Data\SkypEmoticons
Folder Deleted : C:\Documents and Settings\HP\Application Data\Slick Savings
Folder Deleted : C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Application Data\torch
[!] Folder Deleted : C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fbleobagloeaagachfmbkiilpmammnog
[!] Folder Deleted : C:\Documents and Settings\ASPNET\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fbleobagloeaagachfmbkiilpmammnog
[!] Folder Deleted : C:\Documents and Settings\fbwuser.HP-49CD5491BF5C\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fbleobagloeaagachfmbkiilpmammnog
[!] Folder Deleted : C:\Documents and Settings\Guest\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fbleobagloeaagachfmbkiilpmammnog
[!] Folder Deleted : C:\Documents and Settings\HelpAssistant\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fbleobagloeaagachfmbkiilpmammnog
[!] Folder Deleted : C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fbleobagloeaagachfmbkiilpmammnog
[!] Folder Deleted : C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gjldhpohiefpnchjacnkajgadkmadpoi
[!] Folder Deleted : C:\Documents and Settings\ASPNET\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gjldhpohiefpnchjacnkajgadkmadpoi
[!] Folder Deleted : C:\Documents and Settings\fbwuser.HP-49CD5491BF5C\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gjldhpohiefpnchjacnkajgadkmadpoi
[!] Folder Deleted : C:\Documents and Settings\Guest\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gjldhpohiefpnchjacnkajgadkmadpoi
[!] Folder Deleted : C:\Documents and Settings\HelpAssistant\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gjldhpohiefpnchjacnkajgadkmadpoi
[!] Folder Deleted : C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gjldhpohiefpnchjacnkajgadkmadpoi
[!] Folder Deleted : C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ipjhehpmjeeihnkoomcpclcmjbejclee
[!] Folder Deleted : C:\Documents and Settings\ASPNET\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ipjhehpmjeeihnkoomcpclcmjbejclee
[!] Folder Deleted : C:\Documents and Settings\fbwuser.HP-49CD5491BF5C\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ipjhehpmjeeihnkoomcpclcmjbejclee
[!] Folder Deleted : C:\Documents and Settings\Guest\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ipjhehpmjeeihnkoomcpclcmjbejclee
[!] Folder Deleted : C:\Documents and Settings\HelpAssistant\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ipjhehpmjeeihnkoomcpclcmjbejclee
[!] Folder Deleted : C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ipjhehpmjeeihnkoomcpclcmjbejclee
Folder Deleted : C:\Documents and Settings\Administrator\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\fbleobagloeaagachfmbkiilpmammnog
Folder Deleted : C:\Documents and Settings\ASPNET\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\fbleobagloeaagachfmbkiilpmammnog
Folder Deleted : C:\Documents and Settings\fbwuser.HP-49CD5491BF5C\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\fbleobagloeaagachfmbkiilpmammnog
Folder Deleted : C:\Documents and Settings\Guest\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\fbleobagloeaagachfmbkiilpmammnog
Folder Deleted : C:\Documents and Settings\HelpAssistant\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\fbleobagloeaagachfmbkiilpmammnog
Folder Deleted : C:\Documents and Settings\HP\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\fbleobagloeaagachfmbkiilpmammnog
Folder Deleted : C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\fbleobagloeaagachfmbkiilpmammnog
Folder Deleted : C:\Documents and Settings\Administrator\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\gjldhpohiefpnchjacnkajgadkmadpoi
Folder Deleted : C:\Documents and Settings\ASPNET\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\gjldhpohiefpnchjacnkajgadkmadpoi
Folder Deleted : C:\Documents and Settings\fbwuser.HP-49CD5491BF5C\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\gjldhpohiefpnchjacnkajgadkmadpoi
Folder Deleted : C:\Documents and Settings\Guest\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\gjldhpohiefpnchjacnkajgadkmadpoi
Folder Deleted : C:\Documents and Settings\HelpAssistant\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\gjldhpohiefpnchjacnkajgadkmadpoi
Folder Deleted : C:\Documents and Settings\HP\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\gjldhpohiefpnchjacnkajgadkmadpoi
Folder Deleted : C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\gjldhpohiefpnchjacnkajgadkmadpoi
Folder Deleted : C:\Documents and Settings\Administrator\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\ipjhehpmjeeihnkoomcpclcmjbejclee
Folder Deleted : C:\Documents and Settings\ASPNET\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\ipjhehpmjeeihnkoomcpclcmjbejclee
Folder Deleted : C:\Documents and Settings\fbwuser.HP-49CD5491BF5C\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\ipjhehpmjeeihnkoomcpclcmjbejclee
Folder Deleted : C:\Documents and Settings\Guest\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\ipjhehpmjeeihnkoomcpclcmjbejclee
Folder Deleted : C:\Documents and Settings\HelpAssistant\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\ipjhehpmjeeihnkoomcpclcmjbejclee
Folder Deleted : C:\Documents and Settings\HP\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\ipjhehpmjeeihnkoomcpclcmjbejclee
Folder Deleted : C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\ipjhehpmjeeihnkoomcpclcmjbejclee
File Deleted : C:\Documents and Settings\HP\daemonprocess.txt
File Deleted : C:\Documents and Settings\HP\Application Data\LiveSupport.exe_log.txt
File Deleted : C:\Documents and Settings\HP\Application Data\regsvr32.exe_log.txt

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
Key Deleted : HKCU\Software\bb62e28591030e826081bf1f4a74c0b8
Key Deleted : HKCU\Software\dfa25fe23302741d4d6ecede0cc9153b
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{FD3EED90-3F72-40BD-BE19-92B6C6222C49}
Key Deleted : HKCU\Software\anchorfree
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\AppDataLow\Software\Object Browser
Key Deleted : HKCU\Software\AppDataLow\Software\Browser Extensions
Key Deleted : HKLM\SOFTWARE\Cheat Engine\OpenCandy
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Linkey
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{7DD5E91C-3864-77EC-7635-D14910C2A03E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Settings Manager
Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\DOCUME~1\HP\LOCALS~1\APPLIC~1\Linkey\IEEXTE~1\iedll.dll
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\30C16B15B255BD349A1157B8A83E2AF9
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1CAE30F47D14B41B5FC8FA53658044

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v


-\\ Google Chrome v38.0.2125.111

[C:\Documents and Settings\HP\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://go.speedbit.com/search.aspx?s=E37b&q={searchTerms}
[C:\Documents and Settings\HP\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT1561552&CUI=UN72132434325127163&UM=2
[C:\Documents and Settings\HP\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT1561552&CUI=UN72132434325127163&UM=2
[C:\Documents and Settings\HP\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.amaizingsearches.info/?l=1&q={searchTerms}&pid=298&r=2014/04/12&hid=188235533804575018&lg=EN&cc=CH&unqvl=51
[C:\Documents and Settings\HP\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

[C:\Documents and Settings\HP\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

[C:\Documents and Settings\HP\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://go.speedbit.com/search.aspx?s=E37b&q={searchTerms}

-\\ Comodo Dragon v

[C:\Documents and Settings\HP\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://go.speedbit.com/search.aspx?s=E37b&q={searchTerms}
[C:\Documents and Settings\HP\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT1561552&CUI=UN72132434325127163&UM=2
[C:\Documents and Settings\HP\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT1561552&CUI=UN72132434325127163&UM=2
[C:\Documents and Settings\HP\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.amaizingsearches.info/?l=1&q={searchTerms}&pid=298&r=2014/04/12&hid=188235533804575018&lg=EN&cc=CH&unqvl=51
[C:\Documents and Settings\HP\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

[C:\Documents and Settings\HP\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

[C:\Documents and Settings\HP\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://go.speedbit.com/search.aspx?s=E37b&q={searchTerms}

*************************

AdwCleaner[R3].txt - [12951 octets] - [26/11/2014 15:20:46]
AdwCleaner[S3].txt - [14639 octets] - [26/11/2014 15:23:00]

########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [14700 octets] ##########
 
تقرير المالوير بايت مو كامل ..
المهم يعني انتهت مشكلتك ؟
 
توقيع : Mr.AzOz
يب خلاص انتهت مشكور
 
بالتوفيق ..
 
توقيع : Mr.AzOz
الحالة
مغلق و غير مفتوح للمزيد من الردود.
عودة
أعلى