kokla
زيزوومى متألق
غير متصل
من فضلك قم بتحديث الصفحة لمشاهدة المحتوى المخفي
هدا التقرير بعد الفحص BitDefender QuickScan
يجب عليك
تسجيل الدخول
او
تسجيل لمشاهدة الرابط المخفي
PHP:
Scan date/time: Fri Mar 27 23:11:26 2009
Machine Id: 48D093A5
Processes
----------
<unsigned> Internet Lock service component 200 C:\Program Files\Internet Lock\ILSvc.exe
<unsigned> Invisible Browsing HTTP Proxy 824 C:\Program Files\Invisible Browsing\servers\Http\ibhttp.exe
<unsigned> IBService.exe 2000 C:\Program Files\Invisible Browsing\servers\IBService.exe
<unsigned> IBSocks.exe 776 C:\Program Files\Invisible Browsing\servers\Socks\IBSocks.exe
<unsigned> Invisible Browsing 452 C:\Program Files\Invisible Browsing\servers\Socks\IBSocksManager.exe
<unsigned> Internet Download Manager (IDM) 456 C:\Program Files\K-Lite Codec Pack\Internet Download Manager\IDMan.exe
<verified> Internet Explorer 808 C:\Program Files\Internet Explorer\iexplore.exe
<verified> Internet Explorer 3480 C:\Program Files\Internet Explorer\iexplore.exe
<verified> Internet Download Manager agent for click monitori 3264 C:\Program Files\K-Lite Codec Pack\Internet Download Manager\IEMonitor.exe
<verified> Windows Explorer 1412 C:\WINDOWS\Explorer.EXE
<verified> Application Layer Gateway Service 732 C:\WINDOWS\System32\alg.exe
<verified> Indexing Service filter daemon 3632 C:\WINDOWS\system32\cidaemon.exe
<verified> Content Index service 1400 C:\WINDOWS\system32\cisvc.exe
<verified> Client Server Runtime Process 328 C:\WINDOWS\system32\csrss.exe
<verified> LSA Shell (Export Version) 1144 C:\WINDOWS\system32\lsass.exe
<verified> Services and Controller app 1084 C:\WINDOWS\system32\services.exe
<verified> Generic Host Process for Win32 Services 300 C:\WINDOWS\system32\svchost.exe
<verified> Generic Host Process for Win32 Services 432 C:\WINDOWS\system32\svchost.exe
<verified> Generic Host Process for Win32 Services 552 C:\WINDOWS\system32\svchost.exe
<verified> Generic Host Process for Win32 Services 944 C:\WINDOWS\System32\svchost.exe
<verified> Generic Host Process for Win32 Services 1648 C:\WINDOWS\system32\svchost.exe
<verified> Windows NT Logon Application 692 C:\WINDOWS\system32\winlogon.exe
Autoruns and critical files
---------------------------
c:\program files\k-lite codec pack\internet download manager\idman.exe
c:\program files\kaspersky lab\kaspersky internet security 8.0\adialhk.dll
c:\program files\tuneup utilities 2009\oneclickstarter.exe
c:\windows\pchealth\helpctr\binaries\msconfig.exe
c:\windows\system32\ati2evxx.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\cryptnet.dll
c:\windows\system32\cscdll.dll
c:\windows\system32\dimsntfy.dll
c:\windows\system32\kdnus.exe
c:\windows\system32\klogon.dll
c:\windows\system32\logonui.exe
c:\windows\system32\mswsock.dll
c:\windows\system32\rsvpsp.dll
c:\windows\system32\rundll32.exe
c:\windows\system32\sclgntfy.dll
c:\windows\system32\wgalogon.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wlnotify.dll
Browser plugins
---------------
c:\program files\common files\adobe\acrobat\activex\acroiehelpershim.dll
c:\program files\google\googletoolbar1.dll
c:\program files\google\googletoolbarnotifier\3.1.807.1746\swg.dll
c:\program files\java\jre6\bin\jp2ssv.dll
c:\program files\java\jre6\bin\ssv.dll
c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
c:\program files\k-lite codec pack\internet download manager\idmiecc.dll
c:\program files\k-lite codec pack\real\browser\plugins\nppl3260.dll
c:\program files\k-lite codec pack\real\browser\plugins\nprpjplug.dll
c:\program files\mozilla firefox\plugins\npnul32.dll
c:\program files\mozilla firefox\plugins\npoffice.dll
c:\program files\mozilla firefox\plugins\nppdf32.dll
c:\program files\mozilla firefox\plugins\npswf32.dll
c:\program files\yahoo!\common\yiesrvc.dll
c:\program files\yahoo!\companion\installs\cpn\yt.dll
c:\program files\yahoo!\shared\npystate.dll
c:\windows\bdoscandel.exe
c:\windows\downloaded program files\activeqscan.ocx
c:\windows\downloaded program files\bdupd.dll
c:\windows\downloaded program files\gp.ocx
c:\windows\downloaded program files\imcsec.dll
c:\windows\downloaded program files\ipsupd.dll
c:\windows\downloaded program files\oscan82.ocx
c:\windows\downloaded program files\rufsi.dll
c:\windows\downloaded program files\wlscbase.dll
c:\windows\network diagnostic\xpnetdiag.exe
c:\windows\system32\shdocvw.dll
c:\windows\system32\shgina32.dll
Missing files
-------------
File not found: C:\Program Files\ASUS\SmartDoctor\atidgllk.sys
referenced in: HKLM\System\CurrentControlSet\Services\atidgllk\"ImagePath"
File not found: C:\Program Files\Trend Micro\BM\TMBMSRV.exe
referenced in: HKLM\System\CurrentControlSet\Services\TMBMServer\"ImagePath"
File not found: C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
referenced in: HKLM\System\CurrentControlSet\Services\SfCtlCom\"ImagePath"
File not found: C:\Program Files\Trend Micro\Internet Security\TmPfw.exe
referenced in: HKLM\System\CurrentControlSet\Services\TmPfw\"ImagePath"
File not found: C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
referenced in: HKLM\System\CurrentControlSet\Services\TmProxy\"ImagePath"
File not found: C:\Program Files\Trend Micro\TrendSecure\SecurityActivityDashboard\tmarsvc.exe
referenced in: HKLM\System\CurrentControlSet\Services\Security Activity Dashboard Service\"ImagePath"
File not found: C:\Program Files\WildGames\Game Console - WildGames\GameConsoleService.exe
referenced in: HKLM\System\CurrentControlSet\Services\GameConsoleService\"ImagePath"
File not found: C:\WINDOWS\System32\hidserv.dll
referenced in: HKLM\System\CurrentControlSet\Services\HidServ\Parameters\"ServiceDll"
File not found: C:\WINDOWS\system32\HDDSvc.exe
referenced in: HKLM\System\CurrentControlSet\Services\HDDSvc\"ImagePath"
File not found: system32\Drivers\neokdss.sys
referenced in: HKLM\System\CurrentControlSet\Services\neokdss\"ImagePath"
File not found: yayvWoPg.dll
referenced in: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\yayvWoPg\"DllName"
Scan
----
C:\WINDOWS\system32\kdnus.exe - could not be scanned
No file uploaded.
Found 1 infected item!
C:\WINDOWS\system32\shgina32.dll - Trojan.Generic.821176
Process iexplore.exe (808) - is affected by Trojan.Generic.821176
Process iexplore.exe (3480) - is affected by Trojan.Generic.821176
C:\Program Files\K-Lite Codec Pack\Internet Download Manager\idmmkb.dll - is monitoring your applications
