amro sallah010

زيزوومى متألق
إنضم
11 يناير 2009
المشاركات
390
مستوى التفاعل
0
النقاط
470
الإقامة
مصر- القاهرة
غير متصل
عتدى مشاكل كتيرة بالجهاز
الويندوز والأفيرا لايقبل التحديث
ودة تقرير الأفيرا

Avira AntiVir Premium
Report file date: Sunday, April 05, 2009 17:37

Scanning for 1284893 virus strains and unwanted programs.

Licensee : amro sallah
Serial number : 1103545655-PEPWE-0001
Platform : Windows XP
Windows version : (Service Pack 3) [5.1.2600]
Boot mode : Normally booted
Username : SYSTEM
Computer name : ELKING_AMRO

Version information:
BUILD.DAT : 9.0.0.420 21382 Bytes 11/03/2009 15:37:00
AVSCAN.EXE : 9.0.3.3 464641 Bytes 24/02/2009 10:13:28
AVSCAN.DLL : 9.0.3.0 40705 Bytes 27/02/2009 08:58:26
LUKE.DLL : 9.0.3.2 209665 Bytes 20/02/2009 09:35:50
LUKERES.DLL : 9.0.2.0 12033 Bytes 27/02/2009 08:58:54
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 10:30:38
ANTIVIR1.VDF : 7.1.2.12 3336192 Bytes 11/02/2009 18:33:28
ANTIVIR2.VDF : 7.1.2.105 513536 Bytes 03/03/2009 05:41:16
ANTIVIR3.VDF : 7.1.2.127 110592 Bytes 05/03/2009 12:58:22
Engineversion : 8.2.0.100
AEVDF.DLL : 8.1.1.0 106868 Bytes 27/01/2009 15:36:42
AESCRIPT.DLL : 8.1.1.56 352634 Bytes 26/02/2009 18:01:58
AESCN.DLL : 8.1.1.7 127347 Bytes 12/02/2009 09:44:26
AERDL.DLL : 8.1.1.3 438645 Bytes 29/10/2008 16:24:42
AEPACK.DLL : 8.1.3.10 397686 Bytes 04/03/2009 11:06:12
AEOFFICE.DLL : 8.1.0.36 196987 Bytes 26/02/2009 18:01:58
AEHEUR.DLL : 8.1.0.100 1618295 Bytes 25/02/2009 13:49:16
AEHELP.DLL : 8.1.2.2 119158 Bytes 26/02/2009 18:01:58
AEGEN.DLL : 8.1.1.24 336244 Bytes 04/03/2009 11:06:12
AEEMU.DLL : 8.1.0.9 393588 Bytes 09/10/2008 12:32:40
AECORE.DLL : 8.1.6.6 176501 Bytes 17/02/2009 12:22:44
AEBB.DLL : 8.1.0.3 53618 Bytes 09/10/2008 12:32:40
AVWINLL.DLL : 9.0.0.3 18177 Bytes 12/12/2008 06:48:00
AVPREF.DLL : 9.0.0.1 43777 Bytes 05/12/2008 08:32:16
AVREP.DLL : 8.0.0.3 155905 Bytes 20/01/2009 12:34:30
AVREG.DLL : 9.0.0.0 36609 Bytes 05/12/2008 08:32:10
AVARKT.DLL : 9.0.0.1 292609 Bytes 09/02/2009 05:52:26
AVEVTLOG.DLL : 9.0.0.7 167169 Bytes 30/01/2009 08:37:10
SQLITE3.DLL : 3.6.1.0 326401 Bytes 28/01/2009 13:03:50
SMTPLIB.DLL : 9.2.0.25 28417 Bytes 02/02/2009 06:21:34
NETNT.DLL : 9.0.0.0 11521 Bytes 05/12/2008 08:32:12
RCIMAGE.DLL : 9.0.0.21 2622721 Bytes 09/02/2009 09:19:36
RCTEXT.DLL : 9.0.35.0 90369 Bytes 11/03/2009 13:37:38

Configuration settings for the scan:
Jobname.............................: Complete system scan
Configuration file..................: c:\program files\avira\antivir desktop\sysscan.avp
Logging.............................: low
Primary action......................: repair
Secondary action....................: delete
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:, D:, E:, F:, G:,
Process scan........................: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: on
Scan all files......................: All files
Scan archives.......................: on
Recursion depth.....................: 20
Smart extensions....................: on
Macro heuristic.....................: on
File heuristic......................: medium

Start of the scan: Sunday, April 05, 2009 17:37

Initiating scan of system files:
Signed -> 'C:\WINDOWS\system32\svchost.exe'
Signed -> 'C:\WINDOWS\system32\winlogon.exe'
Signed -> 'C:\WINDOWS\explorer.exe'
Signed -> 'C:\WINDOWS\system32\smss.exe'
Signed -> 'C:\WINDOWS\system32\wininet.DLL'
Signed -> 'C:\WINDOWS\system32\wsock32.DLL'
Signed -> 'C:\WINDOWS\system32\ws2_32.DLL'
Signed -> 'C:\WINDOWS\system32\services.exe'
Signed -> 'C:\WINDOWS\system32\lsass.exe'
Signed -> 'C:\WINDOWS\system32\csrss.exe'
Signed -> 'C:\WINDOWS\system32\drivers\kbdclass.sys'
Signed -> 'C:\WINDOWS\system32\spoolsv.exe'
Signed -> 'C:\WINDOWS\system32\alg.exe'
Signed -> 'C:\WINDOWS\system32\wuauclt.exe'
Signed -> 'C:\WINDOWS\system32\advapi32.DLL'
Signed -> 'C:\WINDOWS\system32\user32.DLL'
Signed -> 'C:\WINDOWS\system32\gdi32.DLL'
Signed -> 'C:\WINDOWS\system32\kernel32.DLL'
Signed -> 'C:\WINDOWS\system32\ntdll.DLL'
Signed -> 'C:\WINDOWS\system32\ntoskrnl.exe'
Signed -> 'C:\WINDOWS\system32\ctfmon.exe'
The system files were scanned ('21' files)

Starting search for hidden objects.
'33339' objects were checked, '0' hidden objects were found.

The scan of running processes will be started
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'IEMonitor.exe' - '1' Module(s) have been scanned
Scan process 'reader_sl.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'IDMan.exe' - '1' Module(s) have been scanned
Scan process 'op_mon.exe' - '0' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'Explorer.EXE' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '0' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'AVWEBGRD.EXE' - '1' Module(s) have been scanned
Scan process 'mqtgsvc.exe' - '1' Module(s) have been scanned
Scan process 'mqsvc.exe' - '1' Module(s) have been scanned
Scan process 'searchindexer.exe' - '1' Module(s) have been scanned
Scan process 'VC6SecS.exe' - '1' Module(s) have been scanned
Scan process 'snmp.exe' - '1' Module(s) have been scanned
Scan process 'tcpsvcs.exe' - '1' Module(s) have been scanned
Scan process 'SeaPort.exe' - '1' Module(s) have been scanned
Scan process 'mdm.exe' - '1' Module(s) have been scanned
Scan process 'McSACore.exe' - '1' Module(s) have been scanned
Scan process 'inetinfo.exe' - '1' Module(s) have been scanned
Scan process 'mscorsvw.exe' - '1' Module(s) have been scanned
Scan process 'cisvc.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'acs.exe' - '0' Module(s) have been scanned
Scan process 'msdtc.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'SMSS.EXE' - '1' Module(s) have been scanned
37 processes with 37 modules were scanned

Starting master boot sector scan:

Start scanning boot sectors:

Starting to scan executable files (registry).
The registry was scanned ( '59' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
[NOTE] This file is a Windows system file.
[NOTE] This file cannot be opened for scanning.
Begin scan in 'D:\' <COCTEL>
Begin scan in 'E:\' <MP3>
E:\win.vbe
[DETECTION] Contains recognition pattern of the BAT/AutoRun.NAA batch virus
[NOTE] A backup was created as '4a46d603.qua' ( QUARANTINE )
[NOTE] The file was deleted!
E:\CD\Restoration.exe
[DETECTION] Is the TR/Agent.387584.B Trojan
[NOTE] A backup was created as '4a4bdaef.qua' ( QUARANTINE )
[NOTE] The file was deleted!
E:\CD\Program\PDF Reader.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] A backup was created as '4a1edaea.qua' ( QUARANTINE )
[NOTE] The file was deleted!
E:\CD\Program\Restoration.exe
[DETECTION] Is the TR/Agent.387584.B Trojan
[NOTE] A backup was created as '4a4bdb10.qua' ( QUARANTINE )
[NOTE] The file was deleted!
E:\CD\Program\Temp Clean.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] A backup was created as '4a45db13.qua' ( QUARANTINE )
[NOTE] The file was deleted!
Begin scan in 'F:\' <SYSTEM>
F:\PRO\xp tools\XP.Tools.rar
[0] Archive type: RAR
--> XP.Tools.CodeGen.exe
[DETECTION] Is the TR/Crypt.NSPM.Gen Trojan
[NOTE] A backup was created as '4a06db4e.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\PRO\net\New Folder\libraryfiles.rar
[0] Archive type: RAR
--> libraryfiles.exe
[DETECTION] Contains recognition pattern of the ADSPY/EShoper.BC.1 adware or spyware
[NOTE] A backup was created as '4a3adbb4.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\PRO\net\New Folder\camfrog 3.94 + patch.rar
[0] Archive type: RAR
--> camfrog 3.94 + patch\camfrog.video.chat.3.9x-patch-[maxtreme].exe
--> Object
[2] Archive type: RSRC
--> Object
[DETECTION] Is the TR/Agent.57874 Trojan
--> camfrog 3.94 + patch\CamfrogHistory.dll
[DETECTION] Is the TR/Agent.57874 Trojan
[NOTE] A backup was created as '4a45dbcc.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\PRO\New Folder (2)\New Folder\virous\antivir_workstation_winu_en_h.exe
[DETECTION] Contains code of the W32/Sality.Y Windows virus
[NOTE] A backup was created as '4a4cdd17.qua' ( QUARANTINE )
[NOTE] The file was repaired!
F:\PRO\New Folder (3)\antivir_workstation_winu_en_hp.exe
[DETECTION] Contains code of the W32/Sality.Y Windows virus
[NOTE] A backup was created as '4a4cdd34.qua' ( QUARANTINE )
[NOTE] The file was repaired!
F:\PRO\red\New Folder\IDM5.14.InclPatchUnreal.rar
[0] Archive type: RAR
--> Patch_UnReal\PatchUpdate2.exe
[DETECTION] Is the TR/Gendal.143360 Trojan
[NOTE] A backup was created as '4a25dd20.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\New Folder (2)\(F) 3P_GAMES\Fscommand\betty.exe
[0] Archive type: NSIS
--> [UnknownDir]/bbb.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] A backup was created as '4a4ce02a.qua' ( QUARANTINE )
[NOTE] The file was deleted!
F:\New Folder (2)\Ice tower الولد الشقى\jhhsbl\CRAZYTAX.ACE
[0] Archive type: ACE
--> t
[WARNING] The file could not be opened!
--> t.abs
[WARNING] No further files can be extracted from this archive. The archive will be closed
[WARNING] No further files can be extracted from this archive. The archive will be closed
Begin scan in 'G:\' <P&G>
G:\PROGRAMS\temp clean.exe
[DETECTION] Contains code of the W32/Sality.Y Windows virus
[NOTE] A backup was created as '4a45e65d.qua' ( QUARANTINE )
[NOTE] The file was repaired!
G:\PROGRAMS\TEMP CLEAN 2.1.exe
[DETECTION] Contains code of the W32/Sality.Y Windows virus
[NOTE] A backup was created as '4a25e64e.qua' ( QUARANTINE )
[NOTE] The file was repaired!
G:\PROGRAMS\recover 4 all\recover 4 all free\PRO.EXE
[0] Archive type: ZIP SFX (self extracting)
--> U.R4P
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] A backup was created as '4a27e76e.qua' ( QUARANTINE )
[NOTE] The file was deleted!
G:\PROGRAMS\recover 4 all\recover 4 all free\U.R4P
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] A backup was created as '4a2ae74b.qua' ( QUARANTINE )
[NOTE] The file was deleted!
G:\PROGRAMS\تركيب الوجوه\كراكه\tbefob22-2005-12-09.rar
[0] Archive type: RAR
--> Crack.eXe
[DETECTION] Is the TR/Bancos.KQ Trojan
[NOTE] A backup was created as '4a3de7a3.qua' ( QUARANTINE )
[NOTE] The file was deleted!
G:\PROGRAMS\تعريب اسد سى\98c7c2712f.rar
[0] Archive type: RAR
--> keygen & Patch\Patch\Patch.exe
[DETECTION] Is the TR/Agent.228864.A Trojan
[NOTE] A backup was created as '4a3be77c.qua' ( QUARANTINE )
[NOTE] The file was deleted!
G:\PROGRAMS\كويك تايم\كراك\Quick Time.rar
[0] Archive type: RAR
--> Quick Time\Keygen.exe
[DETECTION] Is the TR/Agent.SK.24 Trojan
[NOTE] A backup was created as '4a41e7c4.qua' ( QUARANTINE )
[NOTE] The file was deleted!
G:\PROGRAMS\مدرب الطباعة\كراك\patch.exe
[DETECTION] Is the TR/Feutel.AV.15 Trojan
[NOTE] A backup was created as '4a4ce7b5.qua' ( QUARANTINE )
[NOTE] The file was deleted!
G:\PROGRAMS\XP PROF EN\I386\REGEDIT.EXE
[DETECTION] Contains code of the W32/Sality.Y Windows virus
[NOTE] A backup was created as '4a1feb14.qua' ( QUARANTINE )
[NOTE] The file was repaired!
G:\PROGRAMS\WIN SP 3\I386\MSICUU.EX_
[0] Archive type: CAB (Microsoft)
--> msicuu.exe
[DETECTION] Is the TR/Crypt.FKM.Gen Trojan
[NOTE] A backup was created as '4a21ee85.qua' ( QUARANTINE )
[NOTE] The file was deleted!
G:\PROGRAMS\WIN SP 3\I386\REGEDIT.EXE
[DETECTION] Contains code of the W32/Sality.Y Windows virus
[NOTE] A backup was created as '4a1feeca.qua' ( QUARANTINE )
[NOTE] The file was repaired!


End of the scan: Sunday, April 05, 2009 20:34
Used time: 2:57:04 Hour(s)

The scan has been done completely.

8210 Scanned directories
505677 Files were scanned
24 Viruses and/or unwanted programs were found
0 Files were classified as suspicious
17 files were deleted
6 Viruses and unwanted programs were repaired
23 Files were moved to quarantine
0 Files were renamed
1 Files cannot be scanned
505652 Files not concerned
17989 Archives were scanned
4 Warnings
24 Notes
33339 Objects were scanned with rootkit scan
0 Hidden objects were found




ودة الهاى جاك

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:14:18 م, on 05/04/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\WINDOWS\system32\inetsrv\inetinfo.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\tcpsvcs.exe
C:\WINDOWS\System32\snmp.exe
C:\Program Files\HHVcdV6Sys\VC6SecS.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\mqsvc.exe
C:\WINDOWS\system32\mqtgsvc.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Winamp\winamp.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\cidaemon.exe
G:\PRO\Zyzoom_HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: IDMIEHlprObj Class - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: MSN Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar\01.01.2607.0\ar-xa\msntb.dll (file missing)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [OutpostMonitor] C:\PROGRA~1\Agnitum\OUTPOS~1\op_mon.exe /tray /noservice
O4 - HKLM\..\Run: [OutpostFeedBack] "C:\Program Files\Agnitum\Outpost Firewall Pro\feedback.exe" /dump:os_startup
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: تدوين هذا في المدونة - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &تدوين هذا في Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Outpost Firewall Pro Quick Tune - {44627E97-789B-40d4-B5C2-58BD171129A1} - C:\Program Files\Agnitum\Outpost Firewall Pro\ie_bar.dll
O9 - Extra button: C-SMS - {C1E3533C-70F6-4f36-B97C-032C8A5EE759} - C:\Program Files\C-SMS\c-sms.exe (file missing)
O9 - Extra 'Tools' menuitem: Send an SMS using C-SMS - {C1E3533C-70F6-4f36-B97C-032C8A5EE759} - C:\Program Files\C-SMS\c-sms.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O20 - AppInit_DLLs: c:\progra~1\agnitum\outpos~1\wl_hook.dll
O23 - Service: Agnitum Client Security Service (acssrv) - Agnitum Ltd. - C:\PROGRA~1\Agnitum\OUTPOS~1\acs.exe
O23 - Service: Avira AntiVir MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira AntiVir WebGuard (AntiVirWebService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: Virtual CD v6 Management Service (VC6SecS) - H+H Software GmbH - C:\Program Files\HHVcdV6Sys\VC6SecS.exe

--
End of file - 7712 bytes


أرجو حلا
والشكر مقدما
 

توقيع : amro sallah010
فين الخبراء؟؟؟؟؟؟؟؟
 
توقيع : amro sallah010
ألووووووو
 
توقيع : amro sallah010
حياك الله عزيزي ...

ما هي مشكلتك بضبط ؟

يعني أيش الرسالة أي تطلعلك لما تسوي تحديث ؟

و بخصوص التقرير أعمل التالي ...

حدد هذه القيم و أعمل لها أصلاح ...

O3 - Toolbar: MSN Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar\01.01.2607.0\ar-xa\msntb.dll (file missing)

O9 - Extra button: C-SMS - {C1E3533C-70F6-4f36-B97C-032C8A5EE759} - C:\Program Files\C-SMS\c-sms.exe (file missing)

O9 - Extra 'Tools' menuitem: Send an SMS using C-SMS - {C1E3533C-70F6-4f36-B97C-032C8A5EE759} - C:\Program Files\C-SMS\c-sms.exe (file missing)

طريقة الأصلاح ...




mg%20%283%29.png




mg%20%284%29.png



يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


او

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي




التوافق : ويندوز اكسبيفقط




شرح الاستخدام ,,,,,,
عند تشغيل ملف الاداة تظهر لك هذه الشاشه ,, انتظر ( وتابع مع الصور )

000.png


001.png


وعند ظهور هذه الشاشه ,, اضغط على Close ليتم اعادة تشغيل جهازك (( لتكملة عملية التنظيف ))

002.png


و بعدها عطيني تقرير جديد ولا تنسى تفسير للمشكلة ...
 
التعديل الأخير بواسطة المشرف:
توقيع : MMA_LORD_735
أشكرك حبيبى
رسالة الأفيرا
an error eccourred during the file download
ورسالة التحديث
some updates cannot installing
وانا مصطب اوتبوت مع الأفيرا
رسايله كتير
وهتاك رسايل كتير عن ملفات dll مفقودة
وكل ما أرجعها مفيش فايدة
وللعلم ليس كل خصائص الأفيرا شغالة
حاسس ان فى تعارض
حيث عند تنصيب الأوتبوت
كان هناك رسالة تعارض مع الأفيرا
ولم أزل علامة الصح

وانا دلوقنى بنفذ الخطوات
ثوانى وارفع التقرير
والشكر مرة تانية
 
توقيع : amro sallah010
أشكرك حبيبى
رسالة الأفيرا
an error eccourred during the file download
ورسالة التحديث
some updates cannot installing
وانا مصطب اوتبوت مع الأفيرا
رسايله كتير
وهتاك رسايل كتير عن ملفات dll مفقودة
وكل ما أرجعها مفيش فايدة
وللعلم ليس كل خصائص الأفيرا شغالة
حاسس ان فى تعارض
حيث عند تنصيب الأوتبوت
كان هناك رسالة تعارض مع الأفيرا
ولم أزل علامة الصح

وانا دلوقنى بنفذ الخطوات
ثوانى وارفع التقرير
والشكر مرة تانية

لعفو يا غالي ...

رسايل لـdll لمفقودة أيش هي بضبط ؟

عطيني رسالة ...

و هات لتقرير ...

و في التحديث بس هذي الرسالة تجيك ؟
 
توقيع : MMA_LORD_735
للأسف مش عارف اصورها
بس هى كتير
ومنها chick utility config
والأفيرا ايقونته متغيرة بجوار الساعة
وخاصيتى web guared
mail gouerd
غير نشطين فى قايمة كليك يمين على ايقونة الأفيرا فى التاسك بار
ولما اضغط للتحديث ثوانى ويكتب الرسالة اللى كتبتهالك
وتحديثات الويندوز
على net fram
,guneous

ودة التقرير الجديد
 
توقيع : amro sallah010
كل ما اضغط ع أداة الهايجاك الجهاز يهنك
واعدت التشغيل 3 مرات
الى ان نقلت الأداة على شطح المكتب
والجهاز اصبح تقيل فى استعماله وعند الأقلاع
وهذا التقري
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 02:35:42 ص, on 06/04/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\WINDOWS\system32\inetsrv\inetinfo.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\tcpsvcs.exe
C:\WINDOWS\System32\snmp.exe
C:\Program Files\HHVcdV6Sys\VC6SecS.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\mqsvc.exe
C:\WINDOWS\system32\mqtgsvc.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Administrator\Desktop\Zyzoom_HijackThis.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Program Files\Mozilla Firefox\firefox.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: IDMIEHlprObj Class - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [OutpostMonitor] C:\PROGRA~1\Agnitum\OUTPOS~1\op_mon.exe /tray /noservice
O4 - HKLM\..\Run: [OutpostFeedBack] "C:\Program Files\Agnitum\Outpost Firewall Pro\feedback.exe" /dump:os_startup
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: تدوين هذا في المدونة - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &تدوين هذا في Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Outpost Firewall Pro Quick Tune - {44627E97-789B-40d4-B5C2-58BD171129A1} - C:\Program Files\Agnitum\Outpost Firewall Pro\ie_bar.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O20 - AppInit_DLLs: c:\progra~1\agnitum\outpos~1\wl_hook.dll
O23 - Service: Agnitum Client Security Service (acssrv) - Agnitum Ltd. - C:\PROGRA~1\Agnitum\OUTPOS~1\acs.exe
O23 - Service: Avira AntiVir MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira AntiVir WebGuard (AntiVirWebService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: Virtual CD v6 Management Service (VC6SecS) - H+H Software GmbH - C:\Program Files\HHVcdV6Sys\VC6SecS.exe

--
End of file - 7341 bytes

ر
 
توقيع : amro sallah010
احذف جميع برامج الحماية عندك وارفع تقرير جديد
 
ok
جارى الحذف
 
توقيع : amro sallah010
حذفت الأفيرا
والأوتبوست
بyour unistaller
وكمات ع الأفيرا باداة reg cleaner
وأدى الهايجاك

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 04:40:36 م, on 06/04/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Internet Download Manager\IDMan.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\inetsrv\inetinfo.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\tcpsvcs.exe
C:\WINDOWS\System32\snmp.exe
C:\Program Files\HHVcdV6Sys\VC6SecS.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\mqsvc.exe
C:\WINDOWS\system32\mqtgsvc.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\taskmgr.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Documents and Settings\Administrator\Desktop\Zyzoom_HijackThis.e xe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: IDMIEHlprObj Class - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: تدوين هذا في المدونة - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &تدوين هذا في Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: Virtual CD v6 Management Service (VC6SecS) - H+H Software GmbH - C:\Program Files\HHVcdV6Sys\VC6SecS.exe

--
End of file - 5949 bytes
 
توقيع : amro sallah010
كيف الاوضاع عندك بعد حذف برامج الحماية ؟
 
كانت المشكلة فى تحديث الويندوز والأفيرا
ودلوقتى حذفت الأفيرا
والويندوز لا يقبل تحديث
 
توقيع : amro sallah010
ماهي رسالة الخطأ التي تظهر ؟
 
دى رسالة تحديث الويندوز

some updates cannot installing
 
توقيع : amro sallah010
حمل هذه الاداة

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


شغلها بدبل كلك

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


ثم اضغط موافق
وانتظر حتى تخرج هذه الرسالة

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


اضغط موافق واعد تشغيل الجهاز
اعد بعدها تثبيت التحديثات وان شاء الله خير
 
أخى ماكس
التحديث متوقف عند هذه النافذة
i5512_untitled.bmp
 
توقيع : amro sallah010
up
 
توقيع : amro sallah010
جرب تعيد تشغيل الجهاز
او
عند اكتمال التحديث قم باغلاق الجهاز حتى يتم تثبيته اثناء اغلاق النظام
 
أخى ماكس
جربت اعادة التشغيل
نزل تعريف وبقى الأخر واعدت استخدام الأداة
وظهرت هذه الرسالة
i5743_untitled.bmp

وقد حاولت تنزيل ويندوز اخر من داخل الويندوزعلى ال d

ولكن عند اعلدة التشغيل الجهاز بيقف عند الدخول
اريد مسحه
وكذالك مسحه من الشاشة الأولى التى تخيرنى بين الويندوزين

والجهاز دلوقتى خالى من برامج الحماية
أريد تنزيل الأفيرا والأوتبوت
عايز تسخة افيرا انتى فيروس بريميوم 9.00.420 تقبل التحديث بدون مشاكل مع مقتاح مضمون
أنظر لهذه الرسالة عند ترجمة جوجل
i5755_untitled.bmp


وكذالك هذه عند الإًصلاح بdial fix
نظهر هذه
i5763_untitled.bmp


هتاك ملقات ناقصة فى هذا الملف
وهندما اضغط cancel
تظهر
i5765_untitled.bmp


والنسخة اللى عندى sp2
ابحث فيها عن هذه الملفات لا اجدها
الظاهر حزمة sp3 نزلت من التحديث ناقصة
ServicePackCache
 
توقيع : amro sallah010
عودة
أعلى