السلام عليكم
تم الفحص ببرنامج herd protect scanner
وبرنامج Rougekiller
ودا تقرير الفحص
RogueKiller V12.9.9.0 (x64) [Feb 27 2017] (Free) by Adlice Software
mail :
Feedback :
Website :
Blog :
Operating System : Windows 7 (6.1.7600) 64 bits version
Started in : Normal mode
User : El Tanahy [Administrator]
Started from : C:\Program Files\RogueKiller\RogueKiller64.exe
Mode : Delete -- Date : 03/09/2017 16:30:06 (Duration : 00:36:19)
¤¤¤ Processes : 0 ¤¤¤
¤¤¤ Registry : 5 ¤¤¤
[PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-4065352818-2594516365-3593403650-1000\Software\IM -> Deleted
[PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-4065352818-2594516365-3593403650-1000\Software\IM -> Deleted
[PUP.Gen0] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\BaiduAntivirusIconLock | (default) : {0A93904A-BB1E-4a0c-9753-B57B9AE272CC} -> Deleted
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-4065352818-2594516365-3593403650-1000\Software\Microsoft\Internet Explorer\Main | Search Bar : Preserve -> Replaced (
)
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-4065352818-2594516365-3593403650-1000\Software\Microsoft\Internet Explorer\Main | Search Bar : Preserve -> Replaced (
)
¤¤¤ Tasks : 0 ¤¤¤
¤¤¤ Files : 4 ¤¤¤
[PUP.Gen1][Folder] C:\ProgramData\Trymedia -> Deleted
[PUP.Gen1][Folder] C:\ProgramData\Trymedia\data -> Deleted
[PUP.Gen1][Folder] C:\ProgramData\Trymedia\licenses -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AdbCmdServer.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AdbWinApi.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AdbWinUsbApi.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\am5tools.tools -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\am5tools2.tools -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AndroidDaemon.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AndroidDevice.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AndroidServer.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AndroidServerUp.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\arkFS.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\arkGraphic.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\arkImage.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\arkIOStub.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AsyncTask.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\atl100.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Bin\box.tools -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Bin\box2.tools -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Bin\mtools.tools -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Bin\mtools2.tools -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Bin -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\bugreport.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Common.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\component -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\ConnectManager.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\ConnectUI.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Daemon.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\DaemonProxy.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\DebugModeBrand.brand -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\DebugModeConfigV2.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\DeviceDesc.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\DownloadMgr.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\DriverTools.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\DriverToolsX64.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\GF.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\jwlxtzqn.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\jwlxtzqnui.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\libexpatw.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\libimagequant.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\libjpegturbo.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\libpng.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\libtcmalloc.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Log4cplus.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\lua.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\main.properties -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\maMainFrame.rdb -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\maMainFrame.tpc -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\mdb.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\msvcp100.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\msvcr100.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\NetHub.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\NetworkMgr.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\QQPMIpc.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\RubikEngine.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\SdkClient.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\sqlite.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\tadb.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\TADInstaller.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\tinyxml.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\UnReDevice.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\xGraphic32.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\zlib.dll -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514 -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\AndroidAssistHelper_KingRoot.exe.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\AndroidDevice_AndroidServer.exe.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\AndroidDevice_KingRoot.exe.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\AndroidServer.ini -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\AndroidServer2 -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\androidserverupdate.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\daemon.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\DeviceDesc.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\DeviceInfo\USB_VID_04E8&PID_6860_4B138F365F81824E.model -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\DeviceInfo -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\driverinstall.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\DriverMin.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\IPCClient.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\main.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\MDBFeature.ini -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\qqapp_update.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\qqdownload.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\sdkclient_KingRoot.exe.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\slist.ini -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\tadinstaller.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\UnrecognizedDevice.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\UnReDevice.xml -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\dlcore.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\DownloadProxyPS.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\extract.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\Tencentdl.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\tnproxy.dll -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload.zip -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\DeviceInfo -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager -> Deleted
[PUP.Gen1][Folder] C:\ProgramData\Trymedia -> ERROR [3]
[Adw.Cloudguard][File] C:\Program Files\Reason\herdProtect\Scanner\Microsoft.Win32.TaskScheduler.dll -> Deleted
¤¤¤ WMI : 0 ¤¤¤
¤¤¤ Hosts File : 0 ¤¤¤
¤¤¤ Antirootkit : 0 (Driver: Loaded) ¤¤¤
¤¤¤ Web browsers : 3 ¤¤¤
[PUM.NewTab][Firefox:Config] 7vo20f73.default : user_pref("browser.newtab.url", "Google"); -> Deleted
[PUP.Gen1][Chrome:Config] ChromeDefaultData2 [SecurePrefs] : homepage [
-> Deleted
[PUP.Gen1][Chrome:Config] ChromeDefaultData2 [SecurePrefs] : session.startup_urls [
-> Deleted
¤¤¤ MBR Check : ¤¤¤
+++++ PhysicalDrive0: ST500DM002-1BD142 ATA Device +++++
--- User ---
[MBR] bc07cd7650ae987fa5422230ee08e680
[BSP] e626c1a170be44cae503871eb381c59f : Windows Vista/7/8|VT.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 63 | Size: 35840 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
1 - [XXXXXX] EXTEN-LBA (0xf) [VISIBLE] Offset (sectors): 73400985 | Size: 441097 MB
User = LL1 ... OK
User = LL2 ... OK