Mohamed Arfat

زيزوومي جديد
إنضم
22 سبتمبر 2014
المشاركات
62
مستوى التفاعل
11
النقاط
90
غير متصل
السلام عليكم
اخواني ممكن حل لمشلة regsvr32 أداه لاسترجاع الملفات او أي شئ
وشكرا
 

نفس المشكلة في ال safe mode
 

المرفقات

  • ss.webp
    ss.webp
    10.2 KB · المشاهدات: 9
السلام عليكم جرب عمل تحديث للنظام وبعدها حمل
هذه الاسطوانة وقم بعمل فحص الاوتوران واختر فحص
ببرنامج roguekiller دعه يكمل حتي النهاية ...
 
السلام عليكم
تم الفحص ببرنامج herd protect scanner
وبرنامج Rougekiller
ودا تقرير الفحص
RogueKiller V12.9.9.0 (x64) [Feb 27 2017] (Free) by Adlice Software
mail :

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


Feedback :

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


Website :

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


Blog :

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي



Operating System : Windows 7 (6.1.7600) 64 bits version
Started in : Normal mode
User : El Tanahy [Administrator]
Started from : C:\Program Files\RogueKiller\RogueKiller64.exe
Mode : Delete -- Date : 03/09/2017 16:30:06 (Duration : 00:36:19)

¤¤¤ Processes : 0 ¤¤¤

¤¤¤ Registry : 5 ¤¤¤
[PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-4065352818-2594516365-3593403650-1000\Software\IM -> Deleted
[PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-4065352818-2594516365-3593403650-1000\Software\IM -> Deleted
[PUP.Gen0] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\BaiduAntivirusIconLock | (default) : {0A93904A-BB1E-4a0c-9753-B57B9AE272CC} -> Deleted
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-4065352818-2594516365-3593403650-1000\Software\Microsoft\Internet Explorer\Main | Search Bar : Preserve -> Replaced (

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي

)
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-4065352818-2594516365-3593403650-1000\Software\Microsoft\Internet Explorer\Main | Search Bar : Preserve -> Replaced (

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي

)

¤¤¤ Tasks : 0 ¤¤¤

¤¤¤ Files : 4 ¤¤¤
[PUP.Gen1][Folder] C:\ProgramData\Trymedia -> Deleted
[PUP.Gen1][Folder] C:\ProgramData\Trymedia\data -> Deleted
[PUP.Gen1][Folder] C:\ProgramData\Trymedia\licenses -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AdbCmdServer.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AdbWinApi.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AdbWinUsbApi.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\am5tools.tools -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\am5tools2.tools -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AndroidDaemon.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AndroidDevice.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AndroidServer.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AndroidServerUp.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\arkFS.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\arkGraphic.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\arkImage.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\arkIOStub.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\AsyncTask.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\atl100.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Bin\box.tools -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Bin\box2.tools -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Bin\mtools.tools -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Bin\mtools2.tools -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Bin -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\bugreport.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Common.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\component -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\ConnectManager.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\ConnectUI.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Daemon.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\DaemonProxy.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\DebugModeBrand.brand -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\DebugModeConfigV2.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\DeviceDesc.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\DownloadMgr.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\DriverTools.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\DriverToolsX64.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\GF.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\jwlxtzqn.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\jwlxtzqnui.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\libexpatw.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\libimagequant.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\libjpegturbo.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\libpng.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\libtcmalloc.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\Log4cplus.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\lua.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\main.properties -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\maMainFrame.rdb -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\maMainFrame.tpc -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\mdb.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\msvcp100.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\msvcr100.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\NetHub.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\NetworkMgr.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\QQPMIpc.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\RubikEngine.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\SdkClient.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\sqlite.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\tadb.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\TADInstaller.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\tinyxml.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\UnReDevice.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\xGraphic32.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514\zlib.dll -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\1.0.0.514 -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\AndroidAssistHelper_KingRoot.exe.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\AndroidDevice_AndroidServer.exe.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\AndroidDevice_KingRoot.exe.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\AndroidServer.ini -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\AndroidServer2 -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\androidserverupdate.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\daemon.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\DeviceDesc.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\DeviceInfo\USB_VID_04E8&PID_6860_4B138F365F81824E.model -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\DeviceInfo -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\driverinstall.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\DriverMin.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\IPCClient.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\main.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\MDBFeature.ini -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\qqapp_update.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\qqdownload.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\sdkclient_KingRoot.exe.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\slist.ini -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\tadinstaller.log.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\UnrecognizedDevice.xml -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer\UnReDevice.xml -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\AndroidServer -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\dlcore.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\DownloadProxyPS.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\extract.dll -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\Tencentdl.exe -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\tnproxy.dll -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload -> Deleted
[PUP.Gen1][File] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload.zip -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\Components -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager\DeviceInfo -> Deleted
[PUP.Gen1][Folder] C:\Users\El Tanahy\AppData\Roaming\Tencent\QQPhoneManager -> Deleted
[PUP.Gen1][Folder] C:\ProgramData\Trymedia -> ERROR [3]
[Adw.Cloudguard][File] C:\Program Files\Reason\herdProtect\Scanner\Microsoft.Win32.TaskScheduler.dll -> Deleted

¤¤¤ WMI : 0 ¤¤¤

¤¤¤ Hosts File : 0 ¤¤¤

¤¤¤ Antirootkit : 0 (Driver: Loaded) ¤¤¤

¤¤¤ Web browsers : 3 ¤¤¤
[PUM.NewTab][Firefox:Config] 7vo20f73.default : user_pref("browser.newtab.url", "Google"); -> Deleted
[PUP.Gen1][Chrome:Config] ChromeDefaultData2 [SecurePrefs] : homepage [

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي

-> Deleted
[PUP.Gen1][Chrome:Config] ChromeDefaultData2 [SecurePrefs] : session.startup_urls [

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي

-> Deleted

¤¤¤ MBR Check : ¤¤¤
+++++ PhysicalDrive0: ST500DM002-1BD142 ATA Device +++++
--- User ---
[MBR] bc07cd7650ae987fa5422230ee08e680
[BSP] e626c1a170be44cae503871eb381c59f : Windows Vista/7/8|VT.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 63 | Size: 35840 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
1 - [XXXXXX] EXTEN-LBA (0xf) [VISIBLE] Offset (sectors): 73400985 | Size: 441097 MB
User = LL1 ... OK
User = LL2 ... OK
 
الحمدلله برنامج adwcleaner اشتغل
ودا تقريره
# AdwCleaner v6.044 - Logfile created 09/03/2017 at 17:20:31
# Updated on 28/02/2017 by Malwarebytes
# Database : 2017-03-09.1 [Local]
# Operating System : Windows 7 Home Basic (X64)
# Username : El Tanahy - WARRIRIOR
# Running from : C:\Users\El Tanahy\Desktop\Clean\adwcleaner_6.044.exe
# Mode: Clean
# Support :

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي





***** [ Services ] *****



***** [ Folders ] *****

[#] Folder deleted on reboot: C:\Users\El Tanahy\AppData\Roaming\Wise Registry Cleaner
[#] Folder deleted on reboot: C:\Windows\SysNative\Tasks\Auslogics
[#] Folder deleted on reboot: C:\ProgramData\Logic Cramble
[#] Folder deleted on reboot: C:\ProgramData\Application Data\Logic Cramble
[#] Folder deleted on reboot: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Registry Cleaner
[#] Folder deleted on reboot: C:\Program Files (x86)\Wise\Wise Registry Cleaner


***** [ Files ] *****



***** [ DLL ] *****



***** [ WMI ] *****



***** [ Shortcuts ] *****



***** [ Scheduled Tasks ] *****

[-] Task deleted: GetValue


***** [ Registry ] *****

[-] Key deleted: HKLM\SOFTWARE\WISECLEANER
[-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wise Registry Cleaner_is1


***** [ Web browsers ] *****



*************************

:: "Tracing" keys deleted
:: Winsock2 - Deleted C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [1523 Bytes] - [09/03/2017 17:20:31]
C:\AdwCleaner\AdwCleaner[S0].txt - [1616 Bytes] - [09/03/2017 17:20:00]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [1669 Bytes] ##########
 
اها اسف اخي لم اضع لك رابط موضوع الاسطوانة
بسبب تشويش:222D:222love: حدث لي اسف نسيت ههه انظر
لهذه الجملة PUP.Gen:imp:1:smilingimp: هذا الادوير او الدودة هي

سبب المشاكل احذف الكل ببرنامج roguekiller
ثم اعد نفس الفحص انظر هل مازالت الاصابة موجودة
بالتوفيق...
للفائدة هاهي الاسطوانة احفظها عندك:
...
مثبت اسطوانه فريق الدعم لفحص الجهاز والتخلص من أصعب الفيروسات (الإصدار السادس)
...
 
ولا يهمك ياغالي كفايه اهتمامك بالمشكلة
جاري
 
عودة
أعلى