• بادئ الموضوع بادئ الموضوع سوكره
  • تاريخ البدء تاريخ البدء
  • المشاهدات 2,256
الحالة
مغلق و غير مفتوح للمزيد من الردود.

سوكره

زيزوومي جديد
إنضم
10 أبريل 2008
المشاركات
92
مستوى التفاعل
0
النقاط
110
غير متصل
السلام عليكم ورحمة الله وبركاته

ماستغني عنكم ابدآآ :er:

جهازي اذا شغلته ياخذ علي الاقل 20 دقيقه علي مايشتل واوقات ماتفتح صفحه

سودا مكتوب فيها خيارين للوندوز ومايفتح يعني تجلس الصفحه السودا طول الوقت :er:

سويت فحص وطلع معاي كذا





Engine Version : 5300.2777
Engine Load Time : 26031 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Process : C:\WINDOWS\Explorer.EXE : contains "Trojan" called "BackDoor-DKI!mem" (No Action Taken )
Memory : Infected
Please wait ... building list of critical files to scan
Critical : Clean
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\ntuser.dat : Scan Failed
c:\Documents and Settings\USer\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_f84.dat : Scan Failed
File : c:\Program Files\Internet Download Manager\Patch.exe : contains "Trojan" called "Generic.dx" (No Action Taken )
c:\Program Files\Internet Download Manager\Patch.exe : No action taken
File : c:\Program Files\Real_SC\opt.exe : contains "Virus" called "W32/Sdbot.worm" (No Action Taken )
c:\Program Files\Real_SC\opt.exe : No action taken
c:\WINDOWS\system32\system32.exe : Scan Failed
c:\WINDOWS\system32\config\default : Scan Failed
c:\WINDOWS\system32\config\default.LOG : Scan Failed
c:\WINDOWS\system32\config\SAM : Scan Failed
c:\WINDOWS\system32\config\SAM.LOG : Scan Failed
c:\WINDOWS\system32\config\SECURITY : Scan Failed
c:\WINDOWS\system32\config\SECURITY.LOG : Scan Failed
c:\WINDOWS\system32\config\software : Scan Failed
c:\WINDOWS\system32\config\software.LOG : Scan Failed
c:\WINDOWS\system32\config\system : Scan Failed
c:\WINDOWS\system32\config\system.LOG : Scan Failed
c:\WINDOWS\Temp\Perflib_Perfdata_23c.dat : Scan Failed
Scanning the registry
Engine Version : 5300.2777
Engine Load Time : 22828 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Process : C:\WINDOWS\Explorer.EXE : contains "Trojan" called "BackDoor-DKI!mem" (No Action Taken )
Memory : Infected
Please wait ... building list of critical files to scan
Critical : Clean
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\ntuser.dat : Scan Failed
c:\Documents and Settings\USer\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application \tmp.edb : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_124.dat : Scan Failed
c:\WINDOWS\system32\system32.exe : Scan Failed
c:\WINDOWS\system32\config\default : Scan Failed
c:\WINDOWS\system32\config\default.LOG : Scan Failed
c:\WINDOWS\system32\config\SAM : Scan Failed
c:\WINDOWS\system32\config\SAM.LOG : Scan Failed
c:\WINDOWS\system32\config\SECURITY : Scan Failed
c:\WINDOWS\system32\config\SECURITY.LOG : Scan Failed
c:\WINDOWS\system32\config\software : Scan Failed
c:\WINDOWS\system32\config\software.LOG : Scan Failed
c:\WINDOWS\system32\config\system : Scan Failed
c:\WINDOWS\system32\config\system.LOG : Scan Failed
c:\WINDOWS\Temp\Perflib_Perfdata_22c.dat : Scan Failed
Scanning the registry
Registry : Clean

Summary :-
FilesFound : 94349
FilesScanned : 60461
FilesNotScanned : 33888

ObjectsFound : 148913
ObjectsInfected : 1
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 12:49:43 م 25 صفر, 1430
Ended at : 01:45:56 م 25 صفر, 1430
Duration : 56 minutes 12 seconds
7577 MB scanned in 3372 seconds = 2 MB/s
Engine Version : 5300.2777
Engine Load Time : 23875 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections


Summary :-
FilesFound : 430
FilesScanned : 314
FilesNotScanned : 116

ObjectsFound : 447
ObjectsInfected : 0
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 01:46:23 م 25 صفر, 1430
Ended at : 01:46:39 م 25 صفر, 1430
Duration : 15 seconds
85 MB scanned in 15 seconds = 5 MB/s
Engine Version : 5300.2777
Engine Load Time : 23328 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Process : C:\WINDOWS\Explorer.EXE : contains "Trojan" called "BackDoor-DKI!mem" (No Action Taken )
Memory : Infected
Please wait ... building list of critical files to scan
Critical : Clean
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\ntuser.dat : Scan Failed
c:\Documents and Settings\USer\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Safe Browsing-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Current Session : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\History Index 2009-04-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\History-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Thumbnails-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Visited Links : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\dfsr.db : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\fsr.log : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\\SharingMetadata\Working\database_141C_362F_72A0_7BC1\fsrtmp.log : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\tmp.edb : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\etilqs_6fjGDy9a7tOtiYH : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\etilqs_GYDQEvyMvwB9psv : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_b14.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF6EA1.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF6EB3.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DFADC2.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DFADD7.tmp : Scan Failed
c:\WINDOWS\system32\system32.exe : Scan Failed
c:\WINDOWS\system32\config\default : Scan Failed
c:\WINDOWS\system32\config\default.LOG : Scan Failed
c:\WINDOWS\system32\config\SAM : Scan Failed
c:\WINDOWS\system32\config\SAM.LOG : Scan Failed
c:\WINDOWS\system32\config\SECURITY : Scan Failed
c:\WINDOWS\system32\config\SECURITY.LOG : Scan Failed
c:\WINDOWS\system32\config\software : Scan Failed
c:\WINDOWS\system32\config\software.LOG : Scan Failed
c:\WINDOWS\system32\config\system : Scan Failed
c:\WINDOWS\system32\config\system.LOG : Scan Failed
c:\WINDOWS\Temp\Perflib_Perfdata_4e8.dat : Scan Failed
Scanning the registry
Registry : Clean

Summary :-
FilesFound : 78633
FilesScanned : 49422
FilesNotScanned : 29211

ObjectsFound : 136863
ObjectsInfected : 1
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 14:45:47 07 ربيع الثاني, 1430
Ended at : 15:32:03 07 ربيع الثاني, 1430
Duration : 46 minutes 16 seconds
6136 MB scanned in 2776 seconds = 2 MB/s
Engine Version : 5300.2777
Engine Load Time : 24937 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

File : d:\Documents and Settings\USer\My Documents\آحدث اصدار لعملاق برامج التحميل داونلود منيجر\الكراك\Patch & keygen\Patch\IDMan Crack.exe : contains "Trojan" called "Generic.dx" (No Action Taken )
d:\Documents and Settings\USer\My Documents\آحدث اصدار لعملاق برامج التحميل داونلود منيجر\الكراك\Patch & keygen\Patch\IDMan Crack.exe : No action taken

Summary :-
FilesFound : 13313
FilesScanned : 8055
FilesNotScanned : 5258

ObjectsFound : 14718
ObjectsInfected : 1
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 1
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 15:32:31 07 ربيع الثاني, 1430
Ended at : 15:36:31 07 ربيع الثاني, 1430
Duration : 3 minutes 59 seconds
656 MB scanned in 239 seconds = 2 MB/s
 

وعليكم السلام ورحمة الله

اعيدي الفحص مرة اخرى واختاري خيار التنظيف

وقبل عمل الفحص عطلي استعادة النظام

dis_sys_xp.jpg
 
توقيع : AbOdy
اوكي بس لو تأخرت اعذرني لانه مره بطيء
 
Engine Version : 5300.2777
Engine Load Time : 21157 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Process : C:\WINDOWS\Explorer.EXE : contains "Trojan" called "BackDoor-DKI!mem" (Cleaned )
Memory : Repaired
Please wait ... building list of critical files to scan
Critical : Clean
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\ntuser.dat : Scan Failed
c:\Documents and Settings\USer\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_160.dat : Scan Failed
File : c:\Program Files\Internet Download Manager\Patch.exe : contains "Trojan" called "Generic.dx" (Deleted )
c:\Program Files\Internet Download Manager\Patch.exe : Deleted
File : c:\Program Files\Real_SC\opt.exe : contains "Virus" called "W32/Sdbot.worm" (Deleted )
c:\Program Files\Real_SC\opt.exe : Deleted
File : c:\System Volume Information\_restore{657B0042-4B6C-4A0D-8D62-F0A1D6AB8AE4}\RP366\A0139777.exe : contains "Trojan" called "Generic.dx" (Deleted )
c:\System Volume Information\_restore{657B0042-4B6C-4A0D-8D62-F0A1D6AB8AE4}\RP366\A0139777.exe : Deleted
File : c:\System Volume Information\_restore{657B0042-4B6C-4A0D-8D62-F0A1D6AB8AE4}\RP366\A0139778.exe : contains "Virus" called "W32/Sdbot.worm" (Deleted )
c:\System Volume Information\_restore{657B0042-4B6C-4A0D-8D62-F0A1D6AB8AE4}\RP366\A0139778.exe : Deleted
c:\WINDOWS\system32\system32.exe : Scan Failed
c:\WINDOWS\system32\config\default : Scan Failed
c:\WINDOWS\system32\config\default.LOG : Scan Failed
c:\WINDOWS\system32\config\SAM : Scan Failed
c:\WINDOWS\system32\config\SAM.LOG : Scan Failed
c:\WINDOWS\system32\config\SECURITY : Scan Failed
c:\WINDOWS\system32\config\SECURITY.LOG : Scan Failed
c:\WINDOWS\system32\config\software : Scan Failed
c:\WINDOWS\system32\config\software.LOG : Scan Failed
c:\WINDOWS\system32\config\system : Scan Failed
c:\WINDOWS\system32\config\system.LOG : Scan Failed
c:\WINDOWS\Temp\Perflib_Perfdata_214.dat : Scan Failed
Scanning the registry
Registry : Clean

Summary :-
FilesFound : 95013
FilesScanned : 60883
FilesNotScanned : 34130

ObjectsFound : 149671
ObjectsInfected : 5
ObjectsCleaned : 1
ObjectsDeleted : 4

FilesInfected : 4
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 4

Started at : 05:39:26 م 24 صفر, 1430
Ended at : 06:30:17 م 24 صفر, 1430
Duration : 50 minutes 51 seconds
7575 MB scanned in 3051 seconds = 2 MB/s
Engine Version : 5300.2777
Engine Load Time : 22468 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections


Summary :-
FilesFound : 430
FilesScanned : 314
FilesNotScanned : 116

ObjectsFound : 447
ObjectsInfected : 0
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 06:30:41 م 24 صفر, 1430
Ended at : 06:30:54 م 24 صفر, 1430
Duration : 13 seconds
85 MB scanned in 13 seconds = 6 MB/s
Engine Version : 5300.2777
Engine Load Time : 21703 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Process : C:\WINDOWS\Explorer.EXE : contains "Trojan" called "BackDoor-DKI!mem" (Cleaned )
Memory : Repaired
Please wait ... building list of critical files to scan
Critical : Clean
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\ntuser.dat : Scan Failed
c:\Documents and Settings\USer\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\\SharingMetadata\pending.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\dfsr.db : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\fsr.log : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\tmp.edb : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\BCG7.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\BCG8.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\BCG9.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_d38.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Photoshop Temp5600 : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DFCE4C.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DFCE5E.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DFE1FE.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DFE249.tmp : Scan Failed
c:\WINDOWS\system32\system32.exe : Scan Failed
c:\WINDOWS\system32\config\default : Scan Failed
c:\WINDOWS\system32\config\default.LOG : Scan Failed
c:\WINDOWS\system32\config\SAM : Scan Failed
c:\WINDOWS\system32\config\SAM.LOG : Scan Failed
c:\WINDOWS\system32\config\SECURITY : Scan Failed
c:\WINDOWS\system32\config\SECURITY.LOG : Scan Failed
c:\WINDOWS\system32\config\software : Scan Failed
c:\WINDOWS\system32\config\software.LOG : Scan Failed
c:\WINDOWS\system32\config\system : Scan Failed
c:\WINDOWS\system32\config\system.LOG : Scan Failed
Engine Version : 5300.2777
Engine Load Time : 24922 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Process : C:\WINDOWS\Explorer.EXE : contains "Trojan" called "BackDoor-DKI!mem" (Cleaned )
Memory : Repaired
Please wait ... building list of critical files to scan
Critical : Clean
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\ntuser.dat : Scan Failed
c:\Documents and Settings\USer\ntuser.dat.LOG : Scan Failed
File : c:\Documents and Settings\USer\Desktop\3m 2 ‏(G‎)\autorun.inf : contains "Virus" called "W32/Perlovga" (Deleted )
c:\Documents and Settings\USer\Desktop\3m 2 ‏(G‎)\autorun.inf : Deleted
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_8d8.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_cbc.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Rar$EX00.750\MSNLoader.exe : Scan Failed
c:\WINDOWS\system32\system32.exe : Scan Failed
c:\WINDOWS\system32\config\default : Scan Failed
c:\WINDOWS\system32\config\default.LOG : Scan Failed
c:\WINDOWS\system32\config\SAM : Scan Failed
c:\WINDOWS\system32\config\SAM.LOG : Scan Failed
c:\WINDOWS\system32\config\SECURITY : Scan Failed
c:\WINDOWS\system32\config\SECURITY.LOG : Scan Failed
c:\WINDOWS\system32\config\software : Scan Failed
c:\WINDOWS\system32\config\software.LOG : Scan Failed
c:\WINDOWS\system32\config\system : Scan Failed
c:\WINDOWS\system32\config\system.LOG : Scan Failed
c:\WINDOWS\Temp\Perflib_Perfdata_5b4.dat : Scan Failed
Scanning the registry
Registry : Clean

Summary :-
FilesFound : 86506
FilesScanned : 54829
FilesNotScanned : 31677

ObjectsFound : 141153
ObjectsInfected : 2
ObjectsCleaned : 1
ObjectsDeleted : 1

FilesInfected : 1
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 1

Started at : 03:31:01 ص 27 صفر, 1430
Ended at : 04:21:42 ص 27 صفر, 1430
Duration : 50 minutes 40 seconds
6584 MB scanned in 3040 seconds = 2 MB/s
Engine Version : 5300.2777
Engine Load Time : 26969 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections


Summary :-
FilesFound : 348
FilesScanned : 263
FilesNotScanned : 85

ObjectsFound : 365
ObjectsInfected : 0
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 04:22:13 ص 27 صفر, 1430
Ended at : 04:22:26 ص 27 صفر, 1430
Duration : 13 seconds
81 MB scanned in 13 seconds = 6 MB/s
Engine Version : 5300.2777
Engine Load Time : 21843 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections


Summary :-
FilesFound : 1
FilesScanned : 0
FilesNotScanned : 1

ObjectsFound : 1
ObjectsInfected : 0
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 04:23:03 ص 27 صفر, 1430
Ended at : 04:23:03 ص 27 صفر, 1430
Duration : 0 seconds
Engine Version : 5300.2777
Engine Load Time : 21938 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Process : C:\WINDOWS\Explorer.EXE : contains "Trojan" called "BackDoor-DKI!mem" (Cleaned )
Memory : Repaired
Please wait ... building list of critical files to scan
Critical : Clean
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
Terminating scan ...
Scanning the registry
Engine Version : 5300.2777
Engine Load Time : 23906 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Process : C:\WINDOWS\Explorer.EXE : contains "Trojan" called "BackDoor-DKI!mem" (Cleaned )
Memory : Repaired
Please wait ... building list of critical files to scan
Critical : Clean
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\ntuser.dat : Scan Failed
c:\Documents and Settings\USer\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\call1024.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\call256.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\call512.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\callmember256.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\chat1024.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\chat512.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\chat8192.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\chatmember256.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\chatmsg1024.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\chatmsg2048.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\chatmsg256.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\chatmsg512.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\chatmsg8192.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\contactgroup256.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\index2.dat : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\main.lock : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\profile16384.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\transfer256.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\transfer512.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\user1024.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\user16384.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\user256.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\user4096.dbb : Scan Failed
c:\Documents and Settings\USer\Application Data\Skype\hno0o0fa\voicemail256.dbb : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\\SharingMetadata\pending.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\dfsr.db : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\fsr.log : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\fsrtmp.log : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\tmp.edb : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_f40.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF61F6.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF620D.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF6BEE.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF6C00.tmp : Scan Failed
c:\WINDOWS\system32\config\default : Scan Failed
c:\WINDOWS\system32\config\default.LOG : Scan Failed
c:\WINDOWS\system32\config\SAM : Scan Failed
c:\WINDOWS\system32\config\SAM.LOG : Scan Failed
c:\WINDOWS\system32\config\SECURITY : Scan Failed
c:\WINDOWS\system32\config\SECURITY.LOG : Scan Failed
c:\WINDOWS\system32\config\software : Scan Failed
c:\WINDOWS\system32\config\software.LOG : Scan Failed
c:\WINDOWS\system32\config\system : Scan Failed
c:\WINDOWS\system32\config\system.LOG : Scan Failed
c:\WINDOWS\Temp\Perflib_Perfdata_804.dat : Scan Failed
Scanning the registry
Registry : Clean

Summary :-
FilesFound : 88645
FilesScanned : 55780
FilesNotScanned : 32865

ObjectsFound : 144906
ObjectsInfected : 1
ObjectsCleaned : 1
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 10:44:59 م 28 صفر, 1430
Ended at : 11:41:20 م 28 صفر, 1430
Duration : 56 minutes 21 seconds
6628 MB scanned in 3381 seconds = 2007 KB/s
Engine Version : 5300.2777
Engine Load Time : 24813 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections


Summary :-
FilesFound : 348
FilesScanned : 263
FilesNotScanned : 85

ObjectsFound : 365
ObjectsInfected : 0
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 11:41:47 م 28 صفر, 1430
Ended at : 11:42:00 م 28 صفر, 1430
Duration : 12 seconds
81 MB scanned in 12 seconds = 6 MB/s
Engine Version : 5300.2777
Engine Load Time : 23265 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections


Summary :-
FilesFound : 4
FilesScanned : 2
FilesNotScanned : 2

ObjectsFound : 5
ObjectsInfected : 0
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 11:42:23 م 28 صفر, 1430
Ended at : 11:42:26 م 28 صفر, 1430
Duration : 3 seconds
54 MB scanned in 3 seconds = 18 MB/s
Engine Version : 5300.2777
Engine Load Time : 21281 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections


Summary :-
FilesFound : 2
FilesScanned : 1
FilesNotScanned : 1

ObjectsFound : 2
ObjectsInfected : 0
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 11:42:48 م 28 صفر, 1430
Ended at : 11:42:48 م 28 صفر, 1430
Duration : 0 seconds
Engine Version : 5300.2777
Engine Load Time : 33843 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Process : C:\WINDOWS\Explorer.EXE : contains "Trojan" called "BackDoor-DKI!mem" (Cleaned )
Memory : Repaired
Please wait ... building list of critical files to scan
Critical : Clean
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\ntuser.dat : Scan Failed
c:\Documents and Settings\USer\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Current Session : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\History Index 2009-01-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\History Index 2009-02-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\History-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Thumbnails-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Visited Links : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\\SharingMetadata\pending.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\dfsr.db : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\fsr.log : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\fsrtmp.log : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\tmp.edb : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\etilqs_gTDbANv6kGRJcKX : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\etilqs_WFakuQTSoHVjR5s : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_344.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_f84.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF2CEF.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF2D5A.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF39C2.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF39D4.tmp : Scan Failed
Engine Version : 5300.2777
Engine Load Time : 22875 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Process : C:\WINDOWS\Explorer.EXE : contains "Trojan" called "BackDoor-DKI!mem" (Cleaned )
Memory : Repaired
Please wait ... building list of critical files to scan
Terminating scan ...
Critical : Clean
Scanning the computer's cookie directories
Engine Version : 5300.2777
Engine Load Time : 23453 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Memory : Clean
Please wait ... building list of critical files to scan
Critical : Clean
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\ntuser.dat : Scan Failed
c:\Documents and Settings\USer\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Safe Browsing-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Current Session : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\History Index 2009-04-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\History-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Thumbnails-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Visited Links : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\\SharingMetadata\pending.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\dfsr.db : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\fsr.log : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\tmp.edb : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\etilqs_6fjGDy9a7tOtiYH : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\etilqs_GYDQEvyMvwB9psv : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_cbc.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF8B69.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF8B9A.tmp : Scan Failed
Terminating scan ...
Scanning the registry
Terminating scan ...
Registry : Clean
Terminating scan ...

Summary :-
FilesFound : 56624
FilesScanned : 34975
FilesNotScanned : 21649

ObjectsFound : 68630
ObjectsInfected : 0
ObjectsCleaned : 0
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 15:37:46 07 ربيع الثاني, 1430
Ended at : 16:05:46 07 ربيع الثاني, 1430
Duration : 28 minutes 0 seconds
3711 MB scanned in 1680 seconds = 2 MB/s
Terminating scan ...
Engine Version : 5300.2777
Engine Load Time : 21859 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Memory : Clean
Please wait ... building list of critical files to scan
Critical : Clean
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\ntuser.dat : Scan Failed
c:\Documents and Settings\USer\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Safe Browsing-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Current Session : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\History Index 2009-04-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\History-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Thumbnails-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Visited Links : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\\SharingMetadata\pending.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\dfsr.db : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\fsr.log : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\tmp.edb : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\etilqs_6fjGDy9a7tOtiYH : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\etilqs_GYDQEvyMvwB9psv : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_5c4.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF8B69.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF8B9A.tmp : Scan Failed
c:\WINDOWS\system32\system32.exe : Scan Failed
c:\WINDOWS\system32\config\default : Scan Failed
c:\WINDOWS\system32\config\default.LOG : Scan Failed
c:\WINDOWS\system32\config\SAM : Scan Failed
c:\WINDOWS\system32\config\SAM.LOG : Scan Failed
c:\WINDOWS\system32\config\SECURITY : Scan Failed
c:\WINDOWS\system32\config\SECURITY.LOG : Scan Failed
c:\WINDOWS\system32\config\software : Scan Failed
c:\WINDOWS\system32\config\software.LOG : Scan Failed
c:\WINDOWS\system32\config\system : Scan Failed
c:\WINDOWS\system32\config\system.LOG : Scan Failed
Terminating scan ...
Scanning the registry
Engine Version : 5300.2777
Engine Load Time : 26468 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Process : C:\WINDOWS\Explorer.EXE : contains "Trojan" called "BackDoor-DKI!mem" (Cleaned )
Memory : Repaired
Please wait ... building list of critical files to scan
Critical : Clean
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\ntuser.dat : Scan Failed
c:\Documents and Settings\USer\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Safe Browsing-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Current Session : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\History Index 2009-04-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\History-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Thumbnails-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Visited Links : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\\SharingMetadata\pending.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\dfsr.db : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\fsr.log : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\tmp.edb : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\etilqs_QTgL2EsHm6aJcWr : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_fb4.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DFA4F4.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DFA50B.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DFC1F9.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DFC2EF.tmp : Scan Failed
c:\WINDOWS\system32\system32.exe : Scan Failed
c:\WINDOWS\system32\config\default : Scan Failed
c:\WINDOWS\system32\config\default.LOG : Scan Failed
c:\WINDOWS\system32\config\SAM : Scan Failed
c:\WINDOWS\system32\config\SAM.LOG : Scan Failed
c:\WINDOWS\system32\config\SECURITY : Scan Failed
c:\WINDOWS\system32\config\SECURITY.LOG : Scan Failed
c:\WINDOWS\system32\config\software : Scan Failed
c:\WINDOWS\system32\config\software.LOG : Scan Failed
c:\WINDOWS\system32\config\system : Scan Failed
c:\WINDOWS\system32\config\system.LOG : Scan Failed
c:\WINDOWS\Temp\Perflib_Perfdata_5d0.dat : Scan Failed
Scanning the registry
Engine Version : 5300.2777
Engine Load Time : 28204 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

Process : C:\WINDOWS\Explorer.EXE : contains "Trojan" called "BackDoor-DKI!mem" (Cleaned )
Memory : Repaired
Please wait ... building list of critical files to scan
Critical : Clean
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
c:\Documents and Settings\LocalService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\LocalService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\NTUSER.DAT : Scan Failed
c:\Documents and Settings\NetworkService\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\ntuser.dat : Scan Failed
c:\Documents and Settings\USer\ntuser.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Current Session : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\History Index 2009-04-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\History-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Thumbnails-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Visited Links : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data-journal : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\\SharingMetadata\pending.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\dfsr.db : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-\SharingMetadata\Working\database_141C_362F_72A0_7BC1\fsr.log : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Messenger\al-7bub@windowslive.com\SharingMetadata\Working\database_141C_362F_72A0_7BC1\tmp.edb : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\etilqs_WLv251CCcTv0IIV : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\fla15.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\fla8.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_534.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\Perflib_Perfdata_f8c.dat : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF5270.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF527E.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF770E.tmp : Scan Failed
c:\Documents and Settings\USer\Local Settings\Temp\~DF7762.tmp : Scan Failed
c:\WINDOWS\system32\system32.exe : Scan Failed
c:\WINDOWS\system32\config\default : Scan Failed
c:\WINDOWS\system32\config\default.LOG : Scan Failed
c:\WINDOWS\system32\config\SAM : Scan Failed
c:\WINDOWS\system32\config\SAM.LOG : Scan Failed
c:\WINDOWS\system32\config\SECURITY : Scan Failed
c:\WINDOWS\system32\config\SECURITY.LOG : Scan Failed
c:\WINDOWS\system32\config\software : Scan Failed
c:\WINDOWS\system32\config\software.LOG : Scan Failed
c:\WINDOWS\system32\config\system : Scan Failed
c:\WINDOWS\system32\config\system.LOG : Scan Failed
c:\WINDOWS\Temp\Perflib_Perfdata_628.dat : Scan Failed
Scanning the registry
Registry : Clean

Summary :-
FilesFound : 76939
FilesScanned : 48144
FilesNotScanned : 28795

ObjectsFound : 133778
ObjectsInfected : 1
ObjectsCleaned : 1
ObjectsDeleted : 0

FilesInfected : 0
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 0

Started at : 11:25:19 م 07 ربيع الثاني, 1430
Ended at : 12:13:07 ص 08 ربيع الثاني, 1430
Duration : 47 minutes 48 seconds
6077 MB scanned in 2868 seconds = 2 MB/s
Engine Version : 5300.2777
Engine Load Time : 27859 milliseconds
AV DAT Version : 5492.0000 488805 detections Built 15 محرم, 1430
Extra DAT : 0 detections

File : d:\Documents and Settings\USer\My Documents\آحدث اصدار لعملاق برامج التحميل داونلود منيجر\الكراك\Patch & keygen\Patch\IDMan Crack.exe : contains "Trojan" called "Generic.dx" (Deleted )
d:\Documents and Settings\USer\My Documents\آحدث اصدار لعملاق برامج التحميل داونلود منيجر\الكراك\Patch & keygen\Patch\IDMan Crack.exe : Deleted

Summary :-
FilesFound : 13310
FilesScanned : 8053
FilesNotScanned : 5257

ObjectsFound : 14715
ObjectsInfected : 1
ObjectsCleaned : 0
ObjectsDeleted : 1

FilesInfected : 1
FilesCleaned : 0
FilesMoved : 0
FilesDeleted : 1

Started at : 12:13:37 ص 08 ربيع الثاني, 1430
Ended at : 12:18:05 ص 08 ربيع الثاني, 1430
Duration : 4 minutes 27 seconds
656 MB scanned in 267 seconds = 2 MB/s
 
تمام

اعملي تقرير للهايجاك
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

اذا انتهى التحميل ==> شغل البرنامج ==> واضغط على Do a system scan and save log
لحظات .. ويظهر لك تقرير اعمل تحديد الكل ==> انسخه والصقه بردك القادم​
 
توقيع : AbOdy
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 06:54:28 م, on 04/04/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\USer\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\Program Files\ManyCam 2.3\ManyCam.exe
C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IDMan.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\Ela-Salaty\Salaty.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE
C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IEMonitor.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\PROGRA~1\AVANTB~1\avant.exe
C:\Program Files\Java\jre6\bin\jucheck.exe
C:\Documents and Settings\USer\My Documents\Downloads\Programs\HiJackThis.exe
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IDMIECC.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe" /min
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [windows] C:\WINDOWS\system32\system32.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\USer\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [ManyCam] "C:\Program Files\ManyCam 2.3\ManyCam.exe"
O4 - HKCU\..\Run: [IDMan] C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IDMan.exe /onboot
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Ela-Salaty.lnk = C:\Program Files\Ela-Salaty\Salaty.exe
O4 - Global Startup: BlueSoleil.lnk = ?
O4 - Global Startup: PalTalk.lnk = C:\Program Files\Paltalk Messenger\paltalk.exe
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IEGetVL.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\ssv.dll
O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6924091F-CD97-41E1-B1D4-D9079409D413} (IMCv1 Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: Antiwpa - C:\WINDOWS\SYSTEM32\antiwpa.dll
O23 - Service: Avira AntiVir Premium MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe
O23 - Service: Avira AntiVir Premium Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe
O23 - Service: Avira AntiVir Premium Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe
O23 - Service: Avira AntiVir Premium WebGuard (antivirwebservice) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Avira AntiVir Premium MailGuard helper service (AVEService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
--
End of file - 7668 bytes
 
قومي بحذف هذه القيم


O4 - HKLM\..\Run: [windows] C:\WINDOWS\system32\system32.exe


O4 - Global Startup: BlueSoleil.lnk = ?



طريقة الحذف




mg%20%283%29.png


mg%20%284%29.png




بعدها اذهب الى اضافة وازالة البرامج واحذف التولبار الموجود عندك (toolbar)>> ممكن ما يكون موجود


ثم نزل هذه الاداة واتبع الشرح التالي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

او

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



التوافق : ويندوز اكسبيفقط


شرح الاستخدام ,,,,,,
عند تشغيل ملف الاداة تظهر لك هذه الشاشه ,, انتظر ( وتابع مع الصور )

000.png


001.png


وعند ظهور هذه الشاشه ,, اضغط على Close ليتم اعادة تشغيل جهازك (( لتكملة عملية التنظيف ))

002.png




وبعد عمل المطلوب ارفقي لي تقرير جديد​
 
التعديل الأخير بواسطة المشرف:
توقيع : AbOdy
O4 - HKLM\..\Run: [windows] C:\WINDOWS\system32\system32.exe
حاولت احذفه ومارضي نهائي

كم مره ورفض ينحذف


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 04:21:00 م, on 05/04/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\USer\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IDMan.exe
C:\Program Files\Ela-Salaty\Salaty.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE
C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IEMonitor.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\PROGRA~1\AVANTB~1\avant.exe
C:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\USer\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\USer\My Documents\Downloads\Programs\HiJackThis.exe
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IDMIECC.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe" /min
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [windows] C:\WINDOWS\system32\system32.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\USer\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [ManyCam] "C:\Program Files\ManyCam 2.3\ManyCam.exe"
O4 - HKCU\..\Run: [IDMan] C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IDMan.exe /onboot
O4 - HKCU\..\RunOnce: [Privacy Suite] "C:\Documents and Settings\USer\Application Data\cleaner\CSPSeraser.exe" "/R:C:\Documents and Settings\USer\Application Data\CyberScrub\Privacy Suite"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Ela-Salaty.lnk = C:\Program Files\Ela-Salaty\Salaty.exe
O4 - Global Startup: PalTalk.lnk = C:\Program Files\Paltalk Messenger\paltalk.exe
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IEGetVL.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\ssv.dll
O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6924091F-CD97-41E1-B1D4-D9079409D413} (IMCv1 Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: Antiwpa - C:\WINDOWS\SYSTEM32\antiwpa.dll
O23 - Service: Avira AntiVir Premium MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe
O23 - Service: Avira AntiVir Premium Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe
O23 - Service: Avira AntiVir Premium Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe
O23 - Service: Avira AntiVir Premium WebGuard (antivirwebservice) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Avira AntiVir Premium MailGuard helper service (AVEService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
--
End of file - 7709 bytes
 
طيب لازم القيمه تنحذف

وبما ان الهايجاك ماقام بالواجب رح نتطرق لحذفها يدويا


اذهبي لهذا المسار

C:\WINDOWS\system32\system32.exe


الملف الي بالون الأحمر طبقي عليه هذا البرنامج للحذف

حمل الاداة ذي ::
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


اضغط على الملف الي بتحذفه بزر الماوس الأيمن

ثم اختر كم في الصورة :::

tutorial1.png



ثم بعد ذلك اختر بدل NO action كلمة delete ثم اضغط Unlock all وسيحذف بحول الله


tutorial2.png




وبعدها اعيدي تشغيل الجهاز وارفعي تقرير جديد​
 
توقيع : AbOdy
مالقيت الا با الاحمر بحثت ودورته ومالقيته نهائي :(
 
تأكدتي من اضهار الملفات المخفيه ؟؟
 
توقيع : AbOdy
ايه تأكدت :(
 

عطل استعادة النظام حسب الشرح التالي


dis_sys_xp.jpg




حمل اداة الكاسبر من الرابط التالي


يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



بعد التحميل ،، دبل كلك وسيتم استخراج ملف الاداة الى مجلد بسطح المكتب لحظات وتبدأ الاداة بالعمل


تابع الشرح لفحص الجهاز وتنظيفه وارفاق التقرير



zyzoom-7ce8879e89.png



zyzoom-cdd75c8aa3.png



zyzoom-89156f000e.png



zyzoom-6d533c4f2e.png



zyzoom-f20f3644d0.png



ثم قم بضغط التقرير ورفعه هنا>>>>
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


ورفعي التقرير على اي مركز رفع
 
توقيع : AbOdy
بعد كر وفر وضرب وقتل خلصنا وطلع التقرير

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



اخوي من بعد ماحملت الكاسبر وجهازي يطفي كل شوي ابي احذفه كيف؟
 
بعد كر وفر وضرب وقتل خلصنا وطلع التقرير

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

التقرير سليم 100%


اخوي من بعد ماحملت الكاسبر وجهازي يطفي كل شوي ابي احذفه كيف؟

اختي هذه اداة الكاسبر بورتبال يعني من غير تثبيت ومالها دخل في مشكلة اطفاء الجهاز

فيه عندك اصابه قويه ومو راضيه تنحذف

اعملي لي تقرير هايجاك جديد
 
توقيع : AbOdy
شاكره اهتمامك وتواجدك المستمر سواء لي او لغيري والله يوفقك يارب


وهذا التقرير


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 04:06:58 م, on 07/04/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\USer\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\Program Files\ManyCam 2.3\ManyCam.exe
C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IDMan.exe
C:\Program Files\Ela-Salaty\Salaty.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE
C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IEMonitor.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\USer\My Documents\Downloads\Programs\HiJackThis.exe
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IDMIECC.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe" /min
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [windows] C:\WINDOWS\system32\system32.exe
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\USer\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [ManyCam] "C:\Program Files\ManyCam 2.3\ManyCam.exe"
O4 - HKCU\..\Run: [IDMan] C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IDMan.exe /onboot
O4 - HKCU\..\RunOnce: [Privacy Suite] "C:\Documents and Settings\USer\Application Data\cleaner\CSPSeraser.exe" "/R:C:\Documents and Settings\USer\Application Data\CyberScrub\Privacy Suite"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Ela-Salaty.lnk = C:\Program Files\Ela-Salaty\Salaty.exe
O4 - Startup: is-8P0RK.lnk = C:\Documents and Settings\USer\Desktop\Virus Removal Tool2\is-8P0RK\startup.exe
O4 - Startup: is-KQJDC.lnk = C:\Documents and Settings\USer\Desktop\Virus Removal Tool1\is-KQJDC\startup.exe
O4 - Global Startup: PalTalk.lnk = C:\Program Files\Paltalk Messenger\paltalk.exe
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Documents and Settings\Default User\Local Settings\Temp\bh11ySa6d\IEGetVL.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\ssv.dll
O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6924091F-CD97-41E1-B1D4-D9079409D413} (IMCv1 Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: Antiwpa - C:\WINDOWS\SYSTEM32\antiwpa.dll
O23 - Service: Avira AntiVir Premium MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe
O23 - Service: Avira AntiVir Premium Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe
O23 - Service: Avira AntiVir Premium Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe
O23 - Service: Avira AntiVir Premium WebGuard (antivirwebservice) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Avira AntiVir Premium MailGuard helper service (AVEService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
--
End of file - 7774 bytes
 
الأصابه موجوده الى الأن

حمل اداة دكتور ويب للفحص والتنظيف وهي محدثه بتاريخ اليوم

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


(( اذا كنت تستخدم كاسبر أعمل له خروج من جوار الساعه أولاً ))

i72j1t42q3.jpg


شرح عمل الاداة ::

بعد التحميل نقوم بتشغيلها .. ونعمل كما بالصور ::

3oh2ql4moe.jpg


ثم

wb3gi1nm8j.jpg


ثم ننتظر قليلاً يتم فحص الذاكرة فقط ..

وبعد الانتهاء نعمل كما بالصوره للفحص الشامل للجهاز

m3m2rh4xtf.jpg


وفي حال العثور على فايروس أثناء الفحص وظهرت هذه الرساله

نعمل الاتي لحذف الاصابه وتنظيفها ::

vwopk5zb2n.jpg


ثم ننتظر أنتهاء الفحص الشامل (( قد يتأخر الفحص على حسب حجم ملفاتك على الجهاز ))

وعند الانتهاء نعمل الاتي ::

vgcih1gsrj.jpg


ثم نقوم بحذف الفايروسات المكتشفه ::

1h71ch58um.jpg


(( ثم أعد تشغيل الجهاز ))



بعد عمل المطلوب ارفعي لي تقرير هايجاك جديد​
 
توقيع : AbOdy
كل ماجيت بسوي التطبيق علي الصوره الثانيه اللي انت حاطها يطلعلي كذا واذا حطيت موافق تقفل الصفحه كلها



يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
 
الفايروس ماسك الجهاز من جميع النواحي

شوفي يا الغاليه

حملي هالأداة

متوافق مع فستا واكس بي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



بعد تشغيل الاداة تقوم الاداة بعمل اختصار لها على سطح المكتب باسم Totally Clean

ثم تظهر الواجهه

zyzoom-b60ef3050d.jpg



  • الضغط على رقم (1) >> انتر >> لتحديث الاداة ان وجد ((ستعود القائمه الرئيسيه تلقائيا" عند الانتهاء من التحديث))


الضغط على (3) >> انتر >> لعمل فحص وحجر الملفات المصابه وانشاء تقرير (( الشاشه الحمراء )) <<< ويفضل الفحص من الوضع الامن وسيطلب الجهاز اعادة تشغيل عند الانتهاء



عند الانتهاء من الفحص سيظهر لك تقرير قم بحفظه


بعد عمل الفحص والتنظيف بالأداة عطيني التقرير الي يطلع لك مع تقرير هايجاك جديد​
 
توقيع : AbOdy
الحالة
مغلق و غير مفتوح للمزيد من الردود.
عودة
أعلى