• بادئ الموضوع بادئ الموضوع mr.fares
  • تاريخ البدء تاريخ البدء
  • المشاهدات 838

mr.fares

زيزوومى مبدع
إنضم
21 أبريل 2013
المشاركات
691
مستوى التفاعل
534
النقاط
620
غير متصل
السلام عليكم



p_526b2vmb1.png


الخدمه دي بتوصل ل99% كمان

مش عارف اوقفها مع العلم اني لسه عامل فورمات للوندوز

الحقيقه انا مش عارف اعمل تقارير ايه فعملت hijack

كود:
Running processes:
C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe
C:\Program Files\IObit\Advanced SystemCare\ASCService.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe
C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe
C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\IObit\Advanced SystemCare\Monitor.exe
C:\Program Files\DriverToolkit\DriverToolkit.exe
C:\Program Files\IObit\Smart Defrag\SmartDefrag.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Google\Update\1.3.33.5\GoogleCrashHandler.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Users\bigbang\AppData\Roaming\Spotify\SpotifyWebHelper.exe
C:\Program Files\BlueStacks\HD-Agent.exe
C:\Program Files\Opera\45.0.2552.888\opera.exe
C:\Program Files\Opera\45.0.2552.888\opera_crashreporter.exe
C:\Program Files\Opera\45.0.2552.888\opera.exe
C:\Program Files\Opera\45.0.2552.888\opera.exe
C:\Program Files\Opera\45.0.2552.888\opera.exe
C:\Program Files\Opera\45.0.2552.888\opera.exe
C:\Program Files\Opera\45.0.2552.888\opera.exe
C:\Program Files\Opera\45.0.2552.888\opera.exe
C:\Program Files\Opera\45.0.2552.888\opera.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.79\deploy\LeagueClient.exe
C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.79\deploy\LeagueClientUx.exe
C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.79\deploy\LeagueClientUxRender.exe
C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.79\deploy\LeagueClientUxRender.exe
C:\Program Files\Opera\45.0.2552.888\opera.exe
C:\Program Files\Opera\45.0.2552.888\opera.exe
C:\Program Files\Opera\45.0.2552.888\opera.exe
C:\Program Files\Opera\45.0.2552.888\opera.exe
C:\Users\bigbang\Desktop\ZyzooM Maintenance Tool V.2.exe
C:\ZyzooM\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Panda Safe Web - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - C:\Program Files\pandasecuritytb\pandasecurityDx.dll
O3 - Toolbar: Panda Safe Web - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - C:\Program Files\pandasecuritytb\pandasecurityDx.dll
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User '?')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User '?')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User '?')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User '?')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Advanced SystemCare Service 10 (AdvancedSystemCareService10) - IObit - C:\Program Files\IObit\Advanced SystemCare\ASCService.exe
O23 - Service: BlueStacks Android Service  (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Plus Android Service  (BstHdPlusAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files\BlueStacks\HD-Plus-Service.exe
O23 - Service: ???? Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: ???? Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HuaweiHiSuiteService.exe - Unknown owner - C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe
O23 - Service: panda_url_filtering Service (panda_url_filtering) - Visicom Media Inc. - C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe






كود:
Running processes
-----------------
* C:\Program Files\IObit\Advanced SystemCare\ASCService.exe (IObit)
* C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe (Visicom Media Inc.)
* C:\Program Files\BlueStacks\HD-Agent.exe (BlueStack Systems, Inc.)
* C:\Windows\System32\csrss.exe (Microsoft Corporation)
* C:\Windows\System32\csrss.exe (Microsoft Corporation)
* C:\Windows\System32\dwm.exe (Microsoft Corporation)
* C:\Program Files\DriverToolkit\DriverToolkit.exe (Megaify Software Co., Ltd.)
* C:\Program Files\Google\Update\1.3.33.5\GoogleCrashHandler.exe (Google Inc.)
* C:\Windows\System32\hkcmd.exe (Intel Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\taskhost.exe (Microsoft Corporation)
* C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe
* C:\Windows\System32\igfxsrvc.exe (Intel Corporation)
* C:\Windows\System32\igfxtray.exe (Intel Corporation)
* C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.79\deploy\LeagueClientUxRender.exe
* C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.79\deploy\LeagueClient.exe
* C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.79\deploy\LeagueClientUxRender.exe
* C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.79\deploy\LeagueClientUx.exe
* C:\Windows\System32\lsass.exe (Microsoft Corporation)
* C:\Windows\System32\lsm.exe (Microsoft Corporation)
  C:\Program Files\Opera\45.0.2552.888\opera_crashreporter.exe (Opera Software)
  C:\Program Files\Opera\45.0.2552.888\opera.exe (Opera Software)
  C:\Program Files\Opera\45.0.2552.888\opera.exe (Opera Software)
  C:\Program Files\Opera\45.0.2552.888\opera.exe (Opera Software)
  C:\Program Files\Opera\45.0.2552.888\opera.exe (Opera Software)
  C:\Program Files\Opera\45.0.2552.888\opera.exe (Opera Software)
  C:\Program Files\Opera\45.0.2552.888\opera.exe (Opera Software)
  C:\Program Files\Opera\45.0.2552.888\opera.exe (Opera Software)
  C:\Program Files\Opera\45.0.2552.888\opera.exe (Opera Software)
  C:\Program Files\Opera\45.0.2552.888\opera.exe (Opera Software)
  C:\Program Files\Opera\45.0.2552.888\opera.exe (Opera Software)
  C:\Program Files\Opera\45.0.2552.888\opera.exe (Opera Software)
  C:\Program Files\Opera\45.0.2552.888\opera.exe (Opera Software)
* C:\Program Files\IObit\Advanced SystemCare\Monitor.exe (IObit)
* C:\Windows\System32\igfxpers.exe (Intel Corporation)
* C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
* C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (Realtek Semiconductor)
* C:\Windows\System32\services.exe (Microsoft Corporation)
* C:\Program Files\IObit\Smart Defrag\SmartDefrag.exe (IObit)
* C:\Windows\System32\spoolsv.exe (Microsoft Corporation)
* C:\Users\bigbang\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Spotify Ltd)
* C:\Windows\System32\taskeng.exe (Microsoft Corporation)
* C:\Windows\explorer.exe (Microsoft Corporation)
* C:\Windows\System32\winlogon.exe (Microsoft Corporation)
* C:\Windows\System32\smss.exe (Microsoft Corporation)
* C:\Windows\System32\wininit.exe (Microsoft Corporation)
  C:\Users\bigbang\Desktop\ZyzooM Maintenance Tool V.2.exe (ZyzooM ForumS)

Unrated items
-------------
004   \BOOTSECT.BAK
004   \bootsqm.dat
004   \CttyeXLWcAAY9Uy.jpg
004   \GAROQ
004 * \ChromeSetup.exe (Google Inc.)
004   \IO.SYS
004   \MSDOS.SYS
004   \pagefile.sys
004   \Detection (1).exe (Husdawg, LLC)
004   \Detection.exe (Husdawg, LLC)
004   \Untitled.png
010 * C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (.NET Runtime Optimization Service)
010   C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe® Flash® Player Update Service 25.0 r0)
010 * C:\Program Files\IObit\Advanced SystemCare\ASCService.exe (Advanced SystemCare Service)
010 * C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe (Anti-phishing Domain Advisor (Powered by Panda Security))
010 * C:\Program Files\BlueStacks\HD-LogRotatorService.exe (BlueStacks Log Rotator Service)
010 * C:\Program Files\BlueStacks\HD-Service.exe (BlueStacks Service)
010 * C:\Program Files\BlueStacks\HD-Plus-Service.exe (BlueStacks Service)
010 * C:\Program Files\Google\Update\GoogleUpdate.exe (Google Installer)
010 * C:\Program Files\Google\Update\GoogleUpdate.exe (Google Installer)
010 * C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe (HuaweiHiSuiteService)
010 * C:\Program Files\Common Files\Steam\SteamService.exe (Steam Client Service)
011   C:\Windows\system32\DRIVERS\atikmdag.sys (amdkmdag)
011   C:\Windows\system32\DRIVERS\atikmpag.sys (amdkmdap)
011   c:\windows\system32\drivers\ASACPI.sys (ATK0110 ACPI Utility)
011 * C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys (BlueStacks Hypervisor for x86)
011 * C:\Program Files\BlueStacks\BstkDrv.sys (Bluestacks Support Driver)
011 * C:\Windows\System32\Drivers\btcusb.sys (Bluetooth USB Device Driver)
011 * C:\Windows\system32\Drivers\DrvAgent32.sys (DriverAgent Direct I/O for 32-bit Windows)
011   C:\Windows\system32\giveio.sys (giveio.sys)
011 * C:\Windows\system32\drivers\HWiNFO32.SYS (HWiNFO x86 Kernel Driver)
011 * C:\Windows\system32\DRIVERS\yk62x86.sys (NDIS6.20 Miniport Driver for Marvell Yukon Ethernet Controller)
011 * C:\Windows\system32\DRIVERS\athr.sys (Qualcomm Atheros Extensible Wireless LAN device driver)
011 * C:\Windows\system32\drivers\RTKVHDA.sys (Realtek(r) High Definition Audio Function Driver)
011 * C:\Windows\System32\Drivers\SmartDefragDriver.sys (SmartDefrag Driver)
011 * C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys (SmbDrvI)
011 * C:\Windows\system32\speedfan.sys (SpeedFan x32 Driver)
011 * C:\Program Files\Panda Security URL Filtering\panda_url_filteringd.sys (Visicom Media Anti-phishing Domain Advisor (Powered by Panda Security))
035   C:\Program Files\Google\Chrome\Application\59.0.3071.86\Installer\chrmstp.exe (Google Inc.) {8A69D345-D564-463c-AFF1-A69D9E530F96}
041 * C:\Program Files\pandasecuritytb\pandasecurityDx.dll {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}
047   Zone: update.drp.su : http://update.drp.su
047   Zone: update.drp.su : https://update.drp.su
052 * C:\Program Files\pandasecuritytb\pandasecurityDx.dll {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}
060   GUID / CLSID not found {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
061 * C:\Windows\System32\IObitSmartDefragExtension.dll (IObit) {189F1E63-33A7-404B-B2F6-8C76A452CC54}
061 * C:\Program Files\WinRAR\rarext.dll (Alexander Roshal) {B41DB860-8EE4-11D2-9906-E49FADC173CA}
073   DriverToolkit Autorun.job : C:\Program Files\DriverToolkit\DriverToolkit.exe (Megaify Software Co., Ltd.)
173 * C:\Program Files\IObit\Advanced SystemCare\ASCExtMenu.dll (IObit) {2803063F-4B8D-4dc6-8874-D1802487FE2D}
173 * C:\Program Files\Notepad++\NppShell_06.dll {00F3C2EC-A6EE-11DE-A03A-EF8F55D89593}
173 * C:\Windows\System32\IObitSmartDefragExtension.dll (IObit) {189F1E63-33A7-404B-B2F6-8C76A452CC54}
173 * C:\Program Files\WinRAR\rarext.dll (Alexander Roshal) {B41DB860-8EE4-11D2-9906-E49FADC173CA}
212 * C:\Program Files\IObit\Advanced SystemCare\DiskDefrag.exe (IObit)
221 * C:\Program Files\IObit\Advanced SystemCare\ASCExtMenu.dll (IObit) {2803063F-4B8D-4dc6-8874-D1802487FE2D}
221 * C:\Program Files\Notepad++\NppShell_06.dll {00F3C2EC-A6EE-11DE-A03A-EF8F55D89593}
221 * C:\Windows\System32\IObitSmartDefragExtension.dll (IObit) {189F1E63-33A7-404B-B2F6-8C76A452CC54}
221 * C:\Program Files\WinRAR\rarext.dll (Alexander Roshal) {B41DB860-8EE4-11D2-9906-E49FADC173CA}
225 * C:\Windows\System32\IObitSmartDefragExtension.dll (IObit) {189F1E63-33A7-404B-B2F6-8C76A452CC54}
225 * C:\Windows\System32\IObitSmartDefragExtension.dll (IObit) {189F1E63-33A7-404B-B2F6-8C76A452CC54}
225 * C:\Program Files\WinRAR\rarext.dll (Alexander Roshal) {B41DB860-8EE4-11D2-9906-E49FADC173CA}
225 * C:\Program Files\WinRAR\rarext.dll (Alexander Roshal) {B41DB860-8EE4-11D2-9906-E49FADC173CA}
227 * C:\Program Files\IObit\Advanced SystemCare\ASCExtMenu.dll (IObit) {2803063F-4B8D-4dc6-8874-D1802487FE2D}
001 The

Missing files
-------------
004 \$Recycle.Bin
004 \boot
004 \Documents
004 \efi
004 \ProgramData
004 \System
011 C:\Windows\system32\drivers\VGPU.sys
 

توقيع : mr.fares
Up
 
توقيع : mr.fares
توقيع : الهمشري
عودة
أعلى